selinux-policy-devel-3.13.1-192.el7_5.4>t  DH`p[;$ƨD["f{pc?l;+ MX:+yokn?zIHSa) $K TYIիoEHy_{,~}?f|t=V;3Xr%p[-.Y/\iATZ}_xY4ga_R6e468def485afb5dbca357269fc5505373584cf6[;$ƨjM%Ԟ9~; js*JV0"HJO\1}w LqMiP|sa;^pRVk#yz=l` G֏JV&\l2K÷tq5v{ogmQpF *lr.\ftp,Ncg8V~BAHlX\vKr"Bm'->{%e1c%vj6#fWBAUE#?lH60stBW΋Hڭ:དྷd%k .a-[fl OkՊ-_1Ws͎NHNøF[+:⫄H6m9*>̷%S;}q ӟ[E7 d[wfNAJ|jVp,pW&WM$NsH=*-blbzq4sI4y:,駢v`ep>IjWKn93\7)~l^>9 ֘? ֈd * ?pt  TIxI ! I +I @I II II%II $  (28<W9W:W>cGlIH II IX Y \ I] 4<I^ } b d de if ll nt Iu Iv w <Ix `I քCselinux-policy-devel3.13.1192.el7_5.4SELinux policy develSELinux policy development and man page package[3̻x86-01.bsys.centos.orgiCentOSGPLv2+CentOS BuildSystem System Environment/Basehttp://oss.tresys.com/repos/refpolicy/linuxnoarchselinuxenabled && /usr/bin/sepolgen-ifgen 2>/dev/null exit 0p Q1m!,$#}"3,l2M*Y)H/*6#~! .' >"m2G)!n%ZJG'd([N5<(=%/;%-.2<.86+$E+B&26,"2=LJ/b=J/8V 3$27{)55@23'T&;bP+,-M-1,1,2}%@ ($P#!d?!38w44(,h9CO8B.)F4->(}=+0410z4:#=-_?vB-:;/o(]*c) )%$ (.&R$A 0Hn.p]9d)c?$4:G-+*#)p6`3x6/N436!/;5m4A;16-cc0BE*/'n4:>" Q:5dk*26E?$3105-LGr#-v<}46f<5+G05/4J4"3k>4&P"?R7Q#E/T5'U3!5=2!,v%<5;5MK4*G+;",{'/\6Z5*Q357Bf8R4$2҆%$ ,':O&,%$`7v+Z)5,ƾ@w:AiG&5q+0B!x3(.43O8=5-% 46a43*0Q%3-X2s6?y,&*fB$/-,h3=u558+5-/F!t<*J#9DN)LE3)6.W/I=6?(3$O//.(i,L7-%/-78=:&5'9 /c*'MA!-%(0-?<5>+ ^,_-HG8R3v6gFA)gHP.1{%o O1d%%-Y)-K!'#o"U,`2)(E1)l@X0775)7; 17A.;1{5&'\"?2,-934R*-t%w*8S 2+O/?:02w08#([/w/202O///0Qr;G+3*:x0+3s,.413/59X8Bcu$Al%Bi'!O#5($E'8'2**$4(3(*,'])$0-2qQ<H48&E .,.\3U3'4|7i:4K0v,+>06_ 5Q'24!-'G"'4-R04@ 4Fz4/2**9C,602r0AR(,.>K25M+Jb,.4:F-e>u%E#<0=)&%`51-|&/o&1V1!1(91(:0%*,U<6--)</KG$-.-&/D<.,%j&+--(9//+#.6< DM1bJ(A&u'55<[5Y6605&5QX&&;2 J(%/<M1 ZW0].''($#C$-A$47Zf&R" F!A.,),@/7/'A Q'"$#W$-.H3*51E-W+2`-f1t,/,t>234r-04|,6-06=#'4<5p+38D+++,)*<D/~;163 ->Q=)@4>.{.,7"$/<&1I')x'Q() *w''*$#/$AA*"& > -#9/[33"8"r!gL-2'pEL1b5v&9+EA<&]7.v&I,M2OV<~AY#2G5(g5r,2-F1m]'(D/G/.,5E3+433.7363?LW$#9?t d| @ 0U oV 2 H:3 v* ']  O<&K fD M1  x h  Kk  6h|-! Y.N~Pr& -U*pR5a }# @ C!6q ; V*c[ . sGN  l /e*1.; p )  B*p6k N+F4 "jaco d  bN ;+ (t  + ;Q$jY)M N19(f x'" c   ;Y  Y =/+.B#  P' g[= T"\+Z f^\gj  *P  8 !(D+ n Q8&xF ` 3 auV;F C[ $ 8-  1 Q "r PQ: %K EX$& `  *L1 # 8 , EcIn8W " a #e-'<Zĭy;V NMDeYWBbY$5u-\ ҦI 1] Vi-q)II =s + h*/|FjUD'"3^S+ Fq5vA큤A큤A큤A큤A큤A큤A큤A큤A큤A큤A큤[3̃[3[3[3[3[3̃[3+[3+[3+[3,[3,[3,[3,[3,[3,[3,[3,[3,[3-[3-[3-[3-[3-[3-[3-[3-[3-[3-[3.[3.[3.[3.[3.[3.[3.[3.[3.[3.[3/[3/[3/[3/[3/[3̂[3/[3/[3/[3/[3/[30[30[30[30[30[39[39[39[39[39[3:[3:[3:[3:[3:[3:[3:[3:[3:[3;[3;[3;[30[30[30[30[31[31[31[31[31[31[31[31[31[31[32[32[32[32[32[32[32[32[32[32[33[33[33[33[33[33[33[33[33[34[34[34[34[34[34[34[34[35[35[35[35[35[35[35[35[35[36[36[36[36[36[36[36[36[36[37[37[37[37[37[37[37[37[37[37[38[38[38[38[38[38[38[38[39[39[39[39[39[3̂[3;[3;[3<[3<[3<[3<[3<[3<[3<[3<[3<[3=[3=[3=[3=[3=[3=[3=[3=[3>[3>[3>[3>[3>[3>[3>[3>[3>[3>[3?[3?[3?[3?[3?[3?[3?[3;[3;[3;[3;[3C[3C[3C[3C[3C[3C[3C[3C[3D[3D[3D[3D[3D[3D[3D[3D[3D[3E[3E[3?[3?[3@[3@[3@[3@[3@[3@[3@[3@[3@[3A[3A[3A[3A[3A[3A[3A[3A[3A[3B[3B[3B[3B[3B[3B[3B[3B[3B[3C[3̂[3H[3H[3H[3H[3H[3H[3I[3I[3I[3I[3I[3I[3I[3I[3I[3J[3J[3E[3E[3E[3̃[3E[3E[3E[3F[3F[3F[3F[3F[3F[3F[3F[3F[3G[3G[3G[3G[3G[3G[3G[3G[3H[3H[3L[3L[3L[3L[3J[3J[3J[3J[3J[3J[3J[3J[3K[3K[3K[3K[3K[3K[3K[3K[3K[3P[3P[3P[3Q[3Q[3Q[3Q[3Q[3Q[3Q[3̂[3Q[3Q[3Q[3R[3R[3R[3R[3R[3R[3R[3R[3R[3S[3S[3L[3L[3L[3L[3L[3L[3M[3M[3M[3M[3M[3M[3M[3M[3M[3N[3N[3N[3N[3N[3N[3N[3N[3N[3O[3O[3O[3O[3O[3O[3O[3O[3P[3P[3P[3P[3P[3P[3U[3U[3U[3U[3U[3U[3V[3V[3V[3V[3V[3V[3V[3V[3V[3W[3W[3W[3W[3W[3W[3W[3W[3W[3X[3X[3X[3X[3X[3X[3X[3X[3X[3Y[3Y[3̂[3Y[3S[3S[3S[3S[3S[3S[3S[3S[3T[3T[3T[3T[3T[3T[3T[3T[3T[3U[3U[3U[3Z[3[[3[[3[[3[[3[[3[[3[[3[[3[[3\[3\[3\[3\[3\[3\[3\[3\[3\[3][3][3][3][3][3][3][3][3][3^[3^[3^[3^[3^[3^[3^[3^[3^[3_[3_[3_[3_[3_[3_[3_[3_[3_[3_[3`[3`[3`[3`[3`[3`[3`[3`[3`[3`[3a[3a[3a[3a[3a[3a[3a[3a[3b[3b[3b[3b[3b[3b[3b[3b[3b[3c[3c[3c[3c[3c[3c[3c[3c[3c[3c[3d[3Y[3Y[3Y[3Y[3Y[3Y[3Y[3Y[3Z[3Z[3Z[3Z[3Z[3Z[3Z[3Z[3Z[3q[3q[3r[3r[3r[3r[3r[3r[3r[3r[3r[3s[3s[3s[3s[3s[3s[3s[3s[3t[3t[3t[3t[3t[3t[3t[3t[3t[3t[3u[3u[3u[3u[3u[3u[3u[3u[3u[3v[3v[3d[3d[3d[3d[3d[3d[3d[3d[3d[3e[3e[3e[3e[3e[3e[3e[3e[3e[3f[3f[3f[3̂[3f[3f[3f[3f[3f[3f[3f[3g[3g[3g[3g[3g[3g[3g[3g[3g[3g[3h[3h[3h[3h[3h[3h[3h[3h[3h[3i[3i[3i[3i[3i[3i[3i[3i[3i[3i[3j[3j[3j[3j[3j[3j[3j[3j[3k[3k[3k[3k[3k[3k[3k[3k[3k[3l[3l[3l[3l[3l[3̃[3l[3l[3l[3l[3l[3m[3m[3m[3m[3m[3̃[3m[3m[3m[3m[3m[3n[3n[3n[3n[3n[3n[3n[3̃[3n[3n[3o[3o[3o[3o[3o[3o[3o[3o[3o[3o[3p[3p[3p[3p[3p[3p[3p[3p[3p[3q[3q[3q[3q[3q[3q[3q[3y[3y[3y[3y[3y[3y[3y[3y[3z[3z[3z[3z[3z[3z[3z[3z[3z[3{[3{[3{[3{[3{[3{[3{[3{[3v[3v[3v[3v[3̃[3v[3v[3v[3w[3w[3w[3w[3w[3w[3w[3w[3̃[3w[3w[3x[3x[3x[3x[3x[3x[3x[3x[3x[3x[3y[3}[3}[3}[3}[3}[3}[3}[3}[3}[3~[3~[3~[3~[3~[3~[3~[3~[3~[3[3[3[3{[3|[3|[3|[3̃[3|[3|[3|[3|[3|[3|[3|[3[3[3̀[3̀[3̀[3̀[3̃[3̀[3̀[3̀[3[3[3[3[3̀[3̀[3́[3́[3́[3́[3́[3́[3́[3́[3́[3̂[3̂[3̂[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3̅[3[3[3[3[3[3[3[3[3[3[3[3̅[3̅[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3[3̅cd065e896d7eb11e238a05b9102359ea370ec75b27785a81935c985899ed2df6846bbdba1149ef9edd39c6f18d37f29e5ed9cb3670521f142ed6d7d2bf9f2b8342d2c3aa4d008aad3243fd00e4723033e27e253289356cdf2cf9ec46135a8327bceb4f36b0f077b7a232a94e214b3b0a5a85152e4d89c193f92ddaba3ede1ad66442a324c2a8ce81664e7a2631abf01aa910658bd93d29e527f93706b3d68a9cd13448aa5e663c31c6fad83c816d7d51fdabf33cb00f18a3c9f9a2d4251e5fcb84a9eee09ad2ecd540bdb586e0a364d55ee3b7b5223271d96612e89f8e6df69159fd492f3aa42662e2b85aeb7d8500149a7d1895f664e648897c9c5e29c143c6b1e98f7ac14d58d24c5a583aa77dda86bd94f541edefbb24a379585f0f90cb13033ffbfb0ed2134fe1422ff3b8f654c598acba686f154730398d00ac194be249ef599250e5aa3c2b9566e50ee3a3b61ce7c6181685684243fbca044b212ac2efc871d54ff0124d4568c624f80f4bcaa2b22a8defe3a511846da4be3913cf0c6c678074a32a5a67e2f156ff52d9db62c9cbf4c3fbfc75a794fd0157496577a054e8d2b674da02baac40cd966967a898958772286dc8d59ea31b0706f182f6ff470fcb9c92ddc2d3449c1463e586e714608c8676bae0f746870881aac03924b6a12528d70e4bd35b5dfffbc19215201e3cdcca84f3faa464f662f1f446c97a9f36ffb2f7392763cf3a7f9d9f5d703529e3582dcff9768b4f018b0cb2e0d5b5e61686551857d5477401765ef014491a558aafaa128769eee32e308bb29d743cc3a54cb57ff72b32f024ada3f34049608bff351d5a05f0bab224245f7f547af7ccec4d08ccfb166a7aeb7a5a88bd3fa1cff9e9faa8c16a47282bbad3fddf887c66094bb58635589b69ddee39916700448ddcd976c8196d78693bd3354e2000a6567f400293e4ffafe791afa3dd33e66cdbdf664fb180c965de12912b8584838806b93c56f21c6e9d5228f3fd009d08d3f8a4035b1190cd47bc1de00b0ba19504b6f96487d11ae2be8ba402d204e68cbda86182ee977737fa054b92c2c6067bbb9999fc916fe921c82d0b1ed79ec6c6f993f49fdc28e67db429ad0cbef29213f361f8e03fedbed1ac85c98d6fd7a08536f50632016ef523b4cae23363808f442d6a0708216462c714be6378ac43ca0e404f0b2a27965b3c93f27e083507104a6659d9b49315f3830f29478fb72d7dcc1e370e723df49b7ef8f7cceb2df0304004f414048ffdc2f3c18918c3b0af9d18ec10c5a3966897711f3fb007995322a9711b5b77abda8b1d8938032b5b9304f06ff878b5c1cc8eefaf8919a3a28d24bd5fb12f442dafbb7c04a0df318d86706b87158d9d959747a9a2a172caec39609075bf9596b4a4927a4b051e3f49aa2c0d80c40b4fac2e4b61c29d4624aa558235fe0a95ac0d7745289683d029ea7c019b002a3dd74f617d5054147b283182aac2ffefc56002cda535dbf07d341e1accdc386a18d08b166f8045d6dd039deb053d8d8fe4d94894e7e67ad0b32dcf009f9787ac126d8475cfbce431f008e4936340fcdd92c59796881c9ef64f9279061e117f56964d11aedea852cdae748cf7e06469bcd0cb9b97135b3beab977a42f57e953d59aab058c52b83048350d394ef5fa3d2170efc4a1def22b4631927595e597febdf0bfab6610f04b86e81643d4fa258f891f01dc753a5dbcb509417297a53a5bb39cb238e139fb6c843d9c7528af47d3cef5700e4bc39e591dec510ac75ada348847b62b2c7f396d6dc05400416d22f2c94188c119a626f5f27bcf296fefc75e615afb6d71c25750ec5289e5b682c7cedcff3b87e96e1d26fb9e1c07922b584363050457b67c8a138049fe032a409d767df1febd801874ad136e42ed37fcff1d2840472cecf728ea0d86f14a2693a0950828b79a33df7a274544504a1cda97a4cb3a2ce3a33a746a6c6877985f3866f138c5038d1f1ffdea96ece3a640f442f149a351e63b1ac96a189c3427c02e412d83a8aec7badccdfa23ab83aabc91d9a92805a666b86f90fba7b1da012887ddcbb15ccc866da4bd53c85caf6e265b85c705d587d74becbb736f395500de20bf9956d81172e948d9fb910c74b627a5cfc17e67cf408cfbadd8eb1bb1cab2877edff8202851a86daa991d177cb9e41960caf6276235762afe396121227553fd1d549c414f369463e4f7c9e65851e968613fd84ece14c5f2b219f7ebbdce32f1d035a64ce762596dd674f6e8178598220e195e3e50a466e66de30f5f8d4a4571e32a9418fcf63edfe9995dbd663631f5b95188f8253c09d626472f2c2dec3f83a6b5f77d31894083d5858eb42420f8e44ac2a2b72ee025acf8359616cb226290e9d1b0fd57a0fbad5e5e7c89aea437e97eb1b2935a02a227732057e648083326862ff67a3609b74f24d594262ed7eed380b869a60ec1452f8870cc5895b37d5b75765d66e1cb42078981f511b2bcaedd728bac8c00439c7423dd837b2c6541825df65779e2ecb89ba26df33ba781504203d7b9e8d23d04bf0575b636f86e28802fdc705045658c5f2288c4cf993f1bbc8c034630a2204983a6942f023e5dc3676448f0bbdbfb548a0f75fb7c793073b49481935c1f2b3b060838ca0809641f3ca48ea1f0c0cc11789a2a6e0c9eccff741becc1cea30be1c1b07d6ff5ed22fff11ad611404b71d9d709402376b20acaca02c673ec01f7167abf54298c8c2bff49c446743cf340025345dd7df55eb388f3215b9fa93e8c309cff27735aaf29c92f1fe238a64e7d3814e8ecb2a56cf377c057d16305bd62c67696df4cdfc58bcc1e92fe5472a71b778515b05eb9389fb2ed387e401479d4273aa125af2571d1bfdf2174ad64f8610def53123292966442c528d26f6c7f99b19a4a3c9c68509a8233ca8be57b663005ef25acfb8bd7adfcd693e938f507e8e4f35f6a7c20aa27d1014796a6451b0bea99c9ebd9ae80bb37325d7c298b47bfe9026ed293f88dacc68a23fff6c3ca81e448a4f27901b621aa14f8f96df20130c415c3c97a3cc8a7156bd06da9572106ed7a228f4f4e069812db2941e51c6df6846a5a1ba8640b844a83edf6b520b0b4c6dd291252bc24c0570afe26f199e37177e18c28e06e216fb25738c0fb6a3f765f5008f703f7dcdeda8659439fc84fc1e99e98ce2b86e54868732bf28c04c5efafcfc8155cde949b4f0438f21291d7fe7503ee4d75a982186bf16137c54833850b923229e328273d3c8dc3fb74c294116cab7d5a9e2ba37c680d0e6aaf05e101fdc3bc4da83c634ac68f8025dfbe51a4af782b064e9c9ac16042974d01a1716c4b290314a992ab7bbb7e27c253cd3370bf07144dc3dde3fbd24db707132dfdc0bcd56edce11295755cfdd3223fb813407aebcfb7d2e3a9b019927ff6a66fb38c11bf62838d54a13a6b5ead4a0d3a5005b0fc14a9d49773f3c864cb824c51b07ab378904198d5d9100ca0d4fc36cbf747e48c56173571a59b1f2f5d52dc5cef89057bef0deaec26ab6b0514315906f412da774715583c8ff0c65ab7bbd989cb5607e19752764800df67e39323406b1969609ecac5c328255030321dcf3238985339ce5f287838249c500f33208151c7b3a3005298893648b93c3bd25350a93fd87e5524eae2f93999781b62022f0e9a21ff4b4c46b538fa716e5f6c2218535d0b3ff243fc6c91adca44ef12003fde45060b3b3eef0763147c007348ea473b9ba9fd3d9cf0a06bef702ee21f9d337e815b52f79d10cc4ad1a6b94470d946ec96d15eb5653375fa8321a48fae11314eb9fa6e5298a37db6507e32653f528ce63c39eb6c8ab57c47eff9895bcc6470d5e366f6110c6d2fb1ce55f446449c4d95769380033cb5606c49461097fdaeef40105659c108f73622938608bfb73342c39c15c5a308fa31ee010d716e1dfafd10bbd37c779207497c3a21e2a883ff2892eae8d6c6bda5c30661483bf0d7738b5008401bc53b15bbf945309967980a3bf5f580f08e13831029afc8d92b41a43f40d57ab85b2c5d6d69d2e2650d583b4781fa23b6d941ad577b33b5fddb24217d5104202a63ea7197c4d4816cc5721d8903615d698acce26d1f1f1453eafc47d1cb4759e04ada2e57acad37c35ddb8d1ff4186e63640b42811f4c422f688e3aada8974500a386787e557add0975431d7fc13398c9267ca2544dff339b033da3567c231dd899927d3852634edaf3e895339ccce79e41df4dbbc2fcef6914d13d8f13a0ba19ed96fc910af3fe943ee3e244028ee54f53a462fff9635ef00b6a14d37411f7d24eca6a4227c1d93cd8ea19db98b3ea7167d1fc6b1567e1ebcece8c58d2c27c6d1f9b41ae147b035e36d643bc9189c584d76a9dcb69674b83c8f37a48d1969c897e3278d2f07df5e216f6dba91991890b349b8ce429017f0b8cd5b4a488f86c11d72360e0ba869ff54b948e30c68989395242a4dafdbd41968914cb1ed6839befc835a7b325ca4f457f9f41568437720414c5a23c5fcd1d14fcbf2399021f471941744c9f9cdb1aca0042e96f4ee6e361a0de43b87a9d18243e9d0607308c6a9dfec63ceac8eaafdcca7b9e5c363f5ae9f2c8be436ecc096e22ad5b19dc2b6c44394bd140ae17caf65e57ce06713969bda2414f808ff8f1b7468c3f1383fa2dc122d06f9470a7c57ff14b00cd306e38143496740ea0c425c277c0f3f1bf5ea43592b1ddaa235c85883b092c1b8f582c0f3a958f523e689adcd2192b0016f28b57ba312739a11ba86874aea56432e55381a1bc755bba4bd112f7c873af7d07358ab00d3bae8afac0572a4f991c950a9be4cb9e4f09afcef9d12f9ba663869be75936238d1411b6d4e0a2519053ae25974dd75a837542e4bd5796498527d6df32002e2b3419775f123a89aef26183170c9361eeb2a69e5554d728fb108f6709cf9810633aa9859f4d4aedbd493e3a4fda51dab6a868cc14ae78e0bf77e4c36c34fae20d7ce7af0c1365aa1cdecd1cf1afe4ed823ae568cd8124a6161e2aa357c39e313b883147c7be2fc1b31d0b4994303a7857251ed716328516da180096c58c41af526707de2c46adf43e566d433a127554ff54ffcc14f2ed6c29c2cc335a8d4671ec05c24b8b70a7e2632c001b88fac38a1a2cd8ab2af9d230cb6d48fd4c7540cd912e77cd64287b0cb5c86d4b1aa4446c82fa207b109d4074de0cbe5b86ec1a772841e2b0ae2a42bd4a4e849af91bd270654d9ff25404babb0b850a292c4c7ad3e17c22746761d80c899c7b9f5e2985623412ad8e1be3f054fb27e4ef991a266bfcd432772d2aa12cff455ca7ce70ddcebdadda5eac29b4068ba77cd877cfc0713620cefd925fa9f3d787ca25ac0a007442ea50555be6cda97e4bd674c7f58897f5bc1703959d401a3f3755e801bbe34d22c72633615e197fb5054eff5aa46f58f88781413d40173935b143dcec055cffb73c79f76cff87d55bca30d8bfaa77c14f0618b9a398d51a9dca885fb9b27b83f13f72d50fee671cb43c8f4964f18d666fc6084f39b0ebd24308aeb351feb7a6d8e04dedfd9f00dafca1346d18c6af447abbc1e8397d4ce0fa08d135ee7787f279936e8a95894cb7affb903c84f175a4d08c696753a584bc3e8fb50e90842d55fc91ff76e098432be5756aa256fba4e47c1b261ca3d270101b5d475954c040b5e3c2999512c08ade030d4613c35922fe4858eb4bc722f29a519467b6218c30c0a6c931f098322b3bab9d2058ef22f685393d2944be2ad92535559b88d6ecf1bedf5e3440dbbd6e9301a32e3525eb0a0bf691e76a592117635535c7a4e8021a88d3ddf13f884a9afddb6df7ad3cc85fdb557db355cf39593fff85ae5b6f153ad4c1a56163e423dd35657ebec3f8ed363345978be6fc57d43b5e29cf5d39b05ae397ff72b6c56f0b6a105ee5986b1dab824282448a1d69adb347e9f753251fef3bcff9932dc175238627fbff9f1526043eae14121d53f8d5fe51f4b373fd11db308e86b9d23f3aa777a999449add9d382c120cec5fd0f3cc62cba2a1141d89a949c79a0a23a13ccd0f97601e0a1586131c636785d8f9fe5881fb0fce1645ad44f725f69422d5d1ae2bac1d7f7940b42524d8796d231169e0c769b544146418505585e78f026001ac398f1911cb3b465eda8894baf00d8fdf8eabcbedead52e8186a56e66488f3c7ab31168326f99ae0412b6247b25053af227e9c48ea36ba339f654fc70ec3a65bf2c3c26b3d8606b13edbf309c1dd1c3b9041365233b940a72c8998e9fefeccf945e7f79441fdd2188ca135fd34e0c988b99cff0b534c2bf76315386af83b1c7bfb98262d12400a3c3e8d19129ed278488b22c13afef29294ded20bb82ba553fb5a42d0aa558edda3a6eef8aff2c81a82953074625931e9b32f40aa94ccb39cb4fa2969959d51f4a70db36b2402315b5192b9c714e4a0b33c1b5646a12934f42639a3358dba189a633098a5b32d4bcfd572a3771e30f88228919db9d571abd2b24ad303385dc69622752c19cc849e9517f20f3a65105ce1e0cbdeaf8d7541494989609588e69feaf9128d26672c8027f6d7942230c832ba44e4f2cc24b1035aca00b15d7c10c5d372cbb257c0fd653797fcee322eb1991e82db6f66eff4bdf40a1d3768995d3a0db52f58c4f4d95c3275c2c004fcc221c65444edeac85e74572e6ec76313719b78b6e996364ffbc1846f6ccee7805c21e4b8280d26539c914975f935a939fc30f70fed7ec80fe0f8c04385521d3dd3f2131c63f420cb33a6bcd38b40b668d8d3326d8950571d798866147deb3275b2b9238099fa7cdf3a3584d0a6caf4b5e78445af2a82ae0e5749109d9201c524780e4ab4e5287b23b9a4aa66d33aecf1add26b0da2c34307f147728a9f17980be5cfae77b9a3ba0eca840ac09eee46c81390415b8b86cc5201e91aa2cfacafbf214a24c0c5166581d9e86ace3e9baa788bd3ba1003b6bec7d2ef0de50f20112bda448dd79ee25a3c8b3c58cae15b4a0b0f0d645765724739d436aa6865b20f7625100eae338759c580c9ad88707e03502aa3f59d98b0c9842703fcac16211266e88a4e2510f98fa22508ba85a11bf57a31a63b1044aeff44d7a7612e36a92b6fb64142bd6a7e16a4c9d302a8acf0b43ac30ccb8df0745186ad1cfeeda56f01d505c9e2b6085bf72d499f0e00422b9599739b8fca8e13fbb8e52fc6104489c2924c5044d310aeb5a13ab46afa43e79f88cc3563f817a1beaf7ad77d7e460f2f4e05fc644237777cd8aa186f8a48b4eab8ccff3ac906ad0d919b25dea98ae0046745530e693ee5be7c2d69110367a4e340ae473f0bcb7521858c89871c3a2eea9376575898996969b800b2a0c76291f278fc103687cc060c00644d66735fdf54d158f851839ef1627377117b365eacd72342a5f9cbd60239f28b6717520419c1671fe819594101281a85874e83e22e3c0bf0380c0155022c1aac39596cf7a7c6ab91d42cf138b2f770df6b9d52c3353814aa730267d649a73d23da13817a8aecc3b1db02c4ac9ca13af2c9be4ef2844f2ffe7d488256c6c0cdeed2abf138fc3deb2b83b4fd8312e44ceb942b91f97f1fe9296cdbf558461b76d54c7ccbc3094983458e85545a61fac4e20b8d06f3dff27b4deb157d22a54d6093c936d379b88e3fbd8afd6617eef52760e062251a85028d9bcc37a103cc44962ecdf4b9f006ce8c1dee7c350fb22e92aa778a3095553a407dcfbe0d75d403a692d5dec227d419b5a77dc10df154d57c453aa2c8bc68713db7b9412a097ac0f3beada31f38792ddaec8501156474763646262083ee3fda9fb2386722b4ad81aad9c1b741b8ede4227c969ca9b8be0c1683429f571f68394903252440a8a3ef4883b19bab03ce404bf4a4ce6b2a8a93ffc6d547c24e80918b954301d1dddee3f25b5989ba34240de0634363d91cdb449528f66d33b4474987bc40f1e121fa4dfd8990bf25c6d5124d7406796cd0af5c5fe177e58d7c757ccdd91cfd5f5c62484f173b798d58e4a581f89a81845ff61b8eb3499ce6373148602ef51d5c78ed96b6676037164f26d4da7c866c58259ee444f531fce0298cf221b553e41be763ed0a7c163ce8c2e95257fb3d5e3f6ea522836c4107551788bc18998e7eb209a2f3ae9a8347851853d20b6db4e39394629a79276831fa1755a7cf1cd945fb2a009b0370ea2f0d79ce3bdf951aab078ad94d3930a42eeff204c6f8d7345aaacdfb04f9f8bf1f9e86a989f78a8398eb696011299c27685c2277d45ed60730793d3338076af8e602608814a2c98e76988bd215cf2c74e4c4339353ba10c531f9ce9a5318a3df230a7dd736aa5e68a5b0b032a8ab3751062408e296424fe48c631ae6e8fe0749068c9fedbd467a65dd051a811aa7052e4d1c4f97af1dc964f9ffabe8cf6c1dae576159a83da2b1d0dff19f72de0bf75dbee28b961ca7a75383b5cc21d25e8a1882d23ade11a90880d4fb3e6046ecc7fd00e361f2075416fd1507a3a80d8edcbbe34fa11f73672128841e903d67fff86c31cb9d67181f387aa1891db0324938910984e91c9636d1e9184295bae7e18a7fe5e43a7316c9a760e8af5badae6e0ae95b2b2dbbafc947923385558967226c0457c666f3d5fcaba1f8df64440775482da00c9a85224d809422cd1f19ae1f5298abd201e5073d8e59156f3fb5b80cfb8953d809a3de1b13b545098740a521b88582d0f139e5970f02c3a44b1239f3b2d06e26e65ef43e034369897ba71389ac589fe2d3ffc2d7e434e60a55f6867591e09a6204dc28121e25dcb1278cef2e8b7a9152a03262835c6b2dc877c14eae7fb81c3c01fa877eb9a5d02782f1d970c12fae2070921d994b37be9d5477c08d59676cc006d6eb1d4969d16255151ec4721e5f882e0430271ce35018d7e860d9f8a3ed27551d43491ce7ead42987e5ad4eade4c8f4b8fa9e15fe7ded08af0a3c876524d10da82db72e15a1834f9b98fb3535f9b74d797e5e24fe5877ee62809df01e8502aa680022aa069a072052b6364f00bc128e342f4cbc4577b7f6172e431ecad91c37cb9871b5f68860d5a4c7c8d5c66b60dd90ea2bbb00ed901a826bc66fd1fd1d77fde3a3474a49e3f1d753d021abe5eda3165781b9c3effac666edfee8fd7af29138d1256aca9d4ddd6eaa474f40301d09680f2b2cdfb281d9aee55fcee9e964dd5acb870e0c8e45b05ee33239edbf0047e2a93940475dfb1a670fa9f204524f9dcb3e527a9b2e6ba68817f75485eeca5a949dba646f77bf6389b8e95ddf36766ea933c36d6863f85f3a4bef0796da6d29be5d128ab57462a2ad8e8fcd597f741db33a8b6e2af73082e59543cf077e47a38ccfd8dfd77915187ecd3e42fedba68e01faf2fc99d1ca5af8c09139ba084126cd2cc04d6f0838f4058febc97ce2fc7280df7f4c5bdce2533cd4acb0648e5a6d75aa2e10ab92068d31eeaa09bfde231a8a2baf451ac5651908635084a3a0b57c7a5c7a50b312b1debf63fcfddaa6efb7a5928892072b9dc5488c7bd024114d2095c90370383c203727949840b5a90cfe6f92da638c2347eaeb24c6bc1c92eaa08f9e2d2f886dcaa617d437d684492fd5e33eaa8d0942335336445eb894dcdae0cda4af1f6ca12511a686abe42417802fae2724bdadfea0c898ffc9dd0d0be42b95ba8cb26a8ced9e40a8905fe8ca88ef6296aefd172555b969ecf586dbc873a31cc6ef372d0ce8ca825dcfbfbb001ecc140e7c326bd8c5b118f72741ad617c3946a3ea6777ab4324e0f7e988bd3d75781cb3edc1538e1e22728b3678022062ee6cf4b23c0c68fe34f8dc14613f2514ad32e3be43abf6e569ea2742278f1a41257bbb460894aad47d800036e8b2addee57d3ec0116463245e6bfe82f76f0ced008234f5948bc1631ae3f461b8fef00243a338a065706f7ab63a680a9cdcb1ba33b4230474d14aa3dbec98b122e60d9cf16ba5fc6e69416aa1152b7232a23a7c406a860a09892810aa04c01dca1323666422702f1e33ea278a3baf1174645875cdc85225b3c4e0bebe2edccd32ab1fdac312f7612d3fbdbe7435927dff716e47ee81cad325f6541c24efa8efb719ed7dcf340aceada7b527e0eafcb97b3f1cf5d0f27615be61a228229aaea8286608823d4a8d3c284913c85ce493a8ce4caf2e424f868f8b5597509541fcae8ad3bf59504f2d550dfa0769470a0ed59ee6563af897a7a28e6b88a89b4ce2c4fb283c32bedc778d00fbd05e5f77b4809a8115056da60a22845e689acee69cfd8a27564049173a288746b69deed80ed9b31ec7f0c3b30ac6af2bc5c35e0230b3d7aec6d2a5b8f0f336ce074650e9b025b81c3e5caaf8a90863a8fcb61ae232b5a97beabc0f58ad4db6d6223091223b82b485ed46032494c6bc2362588f1046268737eac29e128f9594f79bfb21b58c67e865e0c5515fc803696474b7c70b7c9dbae47b6b01d388603ab732d6f02c7a4e96fe10e15ac12b00d3bfc03cb544f959eeb6283f958f6b541f2b8e647197a8b46e4de146551b96b8f1f07be559d786b711de575ee95993178a3847216b5e83c1beb400cddf6c11450a48d5569fc4a60fb57e238d27ac494ba3c11d0e1d6686675bf91cb8f42a61abef9aecca77ffae926267fd30240f90c750f8d254e2a696e93949561beb724c1777e35f1b8e25480ea82d33db4f90b589e5f1455cc87e213e304b1c679475b0067f7ba919cf0070229f39ed910617f9913ad8abc4acb2411bed0f402dcbaa7f4506f500c0717845bf9495646a3aecf4a4f1ef1dcddccf9d61aa3dc2bcd86e1c542312e5fa6db4eb8d5c1a6baa6a141bd57a8fab0ff91c6b979f463f445022d3fc02cd02b676099fa04b9bcedf4d6d222fd346bac93dedbced9d83a4d211c1025fd30265026e75c67975a7fc98e425f61eb1c904de7a5dd118bf711b7edb17b46864e34808600fb1458a4b8b1301d33c493ccdcd3e1b3950de019c772932964018b6b54bd5c8b5c5451b22500b45554991460cb00462b442d892870c59af1829f108fdb8c4a7e655bfc173f6aba584e37e11c66da46689665429f69469e3ae51b20336112d1f0bf184ca7410c0c0100c763441580ceaf646547ced039fb0e75c25490fa8999dac46c96768f8779a8b5d76dfb7afa2086a8b8e2214e11feafe1b2c3fa8d0ba7b85ccabc17af00684338fa7b94a506eebe14ee9723ff51e20f1172de517aecdfab4775a958928a26f429224f2b118175f1875f7b3833c31567dfc39d8d7007c78e2f0bff55b6d4950704ef73b2c1e94a6e5f9c082810d615d3f2d10d9a5ad786f6d51ee1af97620743012028dc9803947b066a2557c83634665214eae5061dab0ea8b97646f6ee260925f9208cb4ec02d3116edaea3be621e50f84aacb2a88b685b41b22167ac0c257de14d7fce7b701a3d50322b6c751139a1082b3fb6fd0e8cd66915df40c76df3b178c138c2e02b374ce1a85ca0338f8e938fc0e4f9200f556987560aecd7cd54372952a4b6e790c013bc0f8685a30a43af608e2a63daa4427decc691a1e76fd8a2d5b70aae327f80985e9bca6431903716335d5dd3e5d4e4f0911e065beba755c876b29d199ab56145eddcc2232bed3a45125dac6d187f9dc782567ac8c5516bd09e9cb7bcaa7916b686656e9c369a99bff5b798cf48499fb6d63323730b83032a2849e0f20dd29064a41e81766b8b974e822c9b9bcc0433d33c15c986573af1d7f6808be84dc94342338dca2f7d3ca28045e605195ae7c3b694143395e4b26c3039c87e1ed869a6b147feca3c44ae212556103399d83cebcdaafbec3c889f538a015f03dff346d3f711f80e7da0a9e1c71abb4a1d44e1b4054e7bdfbe6b004bfcbb79097ef491377a70abaa4f18e14acfaf854857235ea46ab2a1e4991d020bce71b8bc1864ee5ea0bbeb5b557b4683d6fcd7b1e6d51c7de194a434ed2c0908bb9f5d9fe84d2e56f4db7c52cf33b9a4c5ba13301cc535a173834bfccd96038f8ea3c42c40d60c1bc1378294a0afb185edee4e6c33924ff4799c88231c2ce6740dac7278110d5cf66fdde807d0f19fc190e74bfad5e212e29b0f17a111b3368d45d14b88046f7ba725651c9eee146478d6b35f43581108a47cea7b419d68f85aff7be5518883ba984c9aef008dadf0f7665d2f88c390a62777899bfa5571d396a3ac7029ab4f135f54a2e6f53d2a687e1c38aa4eecffc3cb08445e248007ca39ae381c6071e7bdbdd3d504d64f24399598f5fc32542a16d6117829592806a479314caf133a335c966a0ff52bda85045b203ad414cabb1e4d3d5a671e642514f30be2a38b2c232a5e13b3a3f6cbd3315c6a2fdec2dfae9f1a57275c1fdd4cdc1840ba94ece5de5fffc2daf74dc9bd0cef6a3e643ee2e5f93824be7e71cb1cca87b566b22ddd1b1aaf7aae158dc1f34987fbbb03a7271b4c617c9800b1a511427e9786db03c1affa174210d8ed61b1eff36f5c8c84a431d6e8ef56e4d29a2cdb55d5c9fdda3c600816b1c83f7e2347f991763b04c5d27c0cc127c6dcf176f7721c10f5c936af6640c32eb9eac959ea0cd2fb124c74f6f9224f2ec13364690a95cf188ddcfccaef762a445ed025537386f4e3ead209820ff4d8ac34eb7759a29069256824e1de1cdd928ffcd358d3afb5590629b6fa5964ae7242b404dfb198fbed107a0e156f7c0e902398b72d374c879b9a7ac52efe22e32ce848699a77270ec53c436e9359c376776421ad1a5c33bbd0a409f8ee75729f5b269d92c85cc392d56af8c0772d3bb237dbd821ea184e0e6efdbb984d7f30e50d846bb48159d60c0f5546f1e3b5b593550d10de9d89fafa62815db719eb9561d3707a33ea7eceab08c21eb1dc7bec600ff70cd8a6f50595ed83819404943904d427403717745199fe9d35d0f94a7a01f1ac19bf9864cae370b51960e392184b58317c3f05cd435c91bee0530508b03a0700033a53494a2027755cfb1fe179df0056c23e7ee31f02e32e61f96f0970511e717901c4fa6a2037b85e29484616e19c330650af159f3db6e66b6ba2b4075b683ee3e81068005b42d3b4341d3b2f47fa18b113b179e4e02cc67d22bf2bfd4f01eae7f091cc02929a598411ddd023884aeab5f34ad5e1286324821cc1b3d7b992531da58b6c2df26132ddd2ce73fceac29346c598416ae1ec0c69f408c5f2d90be9b768110f4490f2a495d53c26dc735a62fe5731570bd0abeecb5abb3436f81430a7eaa0e757fafd79bc974e3b8baa1903849f447d90ee6cd10643e38d5243f58bd1c61a6da08d7698347c734cc6c255f770d9d9b33d6a0ccd8cd8ee07321a4e079d09861005fd60fb4c0f23e77501963f7da813beb84396be2fac5911f8a3a1ab5e8a268039d8df18adec1d9e3b563fbb832aa21b9a3bb3f4df512147ba93d5daa94da81ef8588a83c351ccabfde638121ad17f0bcdc3b1e0efc5ec42cddbccd79cd0feba139cad316db332a24334acca403fb62f079b79cfaed27e6b0a0acaa83e23668873c2505aa324ae9d698f47200e089cf3c5b1c6df1dc76fff14c1883da565f772b44e552ff4a7a0a1fdf74c0fb2e9bb0932d697ffd4c80e97e70c4c615d43241dbc6c3ff49392b9f722984c74dd3d4284fdc96086a374413f12d409a386eac88c1a48c006a52b13f46160fe052d7a1d6f52384514b95222abdb55bded77b4c4ac5aa995f21d1bb0fcacfff2b03c75efd6f130a21fd3042991b3bdc0afce54478c95dce1df24aeba5976cfdbbe6ca9e1743486bd295c800cf9bbc656cdd8416ea39e8b49f77861aa581f10899e45bd25e4950b813a3d2b9f84db5e019157d94c0864d83e07f9ddf02131f26c15e0f157994e0fb6c0863b29d7a99dadcb2e7b1a2f9071351643730b35e787a21ce51db0c864c6742582eafc1a2fc2ad3b476c4c31ef8a0078e9df729c290798b8038c5c6efa0f98518cab3d87c38700b06c76f187c452803d77adc8cfd155252260ed576f0f06433c7ded4db64d3ea89ac98e7b8c4243f064d2ccf9cc3cfbf1550ca09b73212a0f76df5ae4415c0ee95cd851cefd2d586be492f6f9e19bd3f86e786f1c34325e0c5530b7a34038e3174d511a2f8eb57ecc091bf24f1ba33ba40a114c5865ddc855f2250ebc93c6f3c7db0ab9cea964863c733f172a67a90768a7417416386b11aab4f40654cfd22c5c1abfdcfee17be77360f63485f230a0b4b03978644cec330513809c0560201c28087fd2f4b92ed3ca45f4700428fa5e6a747a7f843dde409f4239c5330a50406962b384da18e3ea9dd253a166f9490c492b64264a92462e4d5136474f3b17da7458867a597061167cc60724182cdab4dca09a28cc175bfc3a6ea89e3b97cd5aa7a28f96e04966d6be5041435321f54cd31de8f6a33b0c8bf77c8d6a44a391047f2f6d9ce42ac0980a4d75117e075930424729772b971d2b902aae540fe0a996fe2c82c05b5a44fcdedf7ffcad8fa2fed72e4169d812b844948aff8e864f43ac6824925eee04aabefc12a2910138c404ffca35ae691587b7dd5f2f96461361fc4378bd205fe80381342fff4e09fc0282d4770c6d529079893b429a6ef7af28b00aa437d20d196f2843c87c6d1504bb439fb107435eeb42fb4fd99dcedda0b196ce57773c94433f4f391db23e2255f5a7121e9e496d743ae6528ae88d4ff00ae76df93919246d74f35b1645e498612d7aa52e0a2676f39c3746230eb4f38ca84ed96619ba38739af46b5c6c274846e9eef6eb113edfe3441d61a1de073b10c5731789a566450b97e80d0c522fb74d9818645d8895c7761ff5033cf1680d6b62bae4d486342942104adab61386ad1b56bf23155558f8607c3b6848e5f55e4dd97f3668f016827cc3e9859a10f57ff4936fd60650db080d7155d431f3e3890fcdd38566c114ff0bb764c9c25968e0029f7aa12fe9c0d7d0e6786899fe5ebab9a8933949ab6fdb64caa9c817c0db98daf4afad82697b295e3381f0d6e17ee943027c728f42334da0618d5373228b5a16153b6b65acf4638097fa2c22b3ea498a1c993389222174f649c69efb6f7168a2d94189de6df821ec68dba083f98bb3f63ad5971409b330c9ee459e0f2df078b5cbdc37f19c830f78514be6638af7e05c36d433011c669032ce6d4331f61464c55d0fb5e7c461ab5b1d089bc6d5979207c4360988a919721a54fcc002e86ac3b10040607c2a109b02bc3e7201477cd4cd4cb6c87d24de7c984b832a9d4336a968d9b36fa0c36abea04a0e8d9c92bd0b588f49cfadc0063318f1b0ba0decf30e6eae65d645889bb80dbe6a9f97b04b3f8d0f2878bb7da27d08071d3891492e64e84957d3e3fda3035be8f893f3b11fd8ed549a426a7011562c32addb85965c5d051da5f5f990f7c5c329223697d55cb8642c4835b9394afc2bc354b1a378e7702547c6dc6403f74542e90d325c851da25fcb38ed647f4059b2d51ccea24e738ac7f9a7582385c383905e124e45dfd4b7d51b0d5a566f2d42fbaa8b823c6a634d901fc477fe2703b11fd2bbfcde3979a5cc2e0e04e67899d2353038208d112afffaec5573699e1a163f3ffc58f514189934243d024f61e777733d215331d352e5b2c1e00718873dab02f1e2aabfc5e96fb4fd87e9d93dad1451058fab57bee857960df9a8783a9c306946e72ef5c06cf2782c79a33dd393c8decf182d7407b1455d0e8c99f6e1b6ebc5156b0df168c221301dd360779cabdf0d15ec94d8d60da3a8f3d82bf1068b3d39cf8aaf70f71ac4dfa6af9b33969f8e812329f3b2e59a5c5a4e5ce74e11ca7e436b21528b11ff388f39dae5fd8291c03563cb019b9f827b70994a572d03bc31bc4fa029ecb812a5ef0d5add80a7acc4ad329d4ec4c9216f908fb915c1767ce0a925ecddac933832f7337a4ea6771e325b209be5cfc0a314154a4c7e6416f6cd37e8d2c8e510c960300ce951e06c3d8e0a608453c083797dc064cdd2c90f9b9f5f24f3e08369083c6303a45b904ee3fb9b9345482a40bf205d85576cb3dd8c48a49d4c92fcca59ad2796c387ca7f3fae5291506f0f9704efb773d347e0c2552d325cc35353c296f717cd83d4b964977260088f5995abe7bed3f6f2680b0131e4b99fa1c06965ca660bfc8d7624e20c79c1f278739d0a0b9602743da96cff07711b4bd553bd9baa627b861719f36b50fcd587d70764e94b5d4ff6a5139c5dd65dbfa64e75b5baf0e7970172993edab2f3a608ff0bb60b3abfad87ea784ef7d573909409cac38d14cb49f468bb5165f56ebe035fcb4cb052185a5496c107ba14a804fa143982054d613cfca541b45d9285f393fa8f671e0ba60e4be6011a0bac3d3d1ce35a2d8c5b3a7ed6b85d60329328c7f6bfa79b0c0abdcdae1bef0df1ad843caca3c7077b54a20b9be4212b740dd0da63b0c6050c030341ba4961e64545001207a5adeb575bf55965d7842f3a5e94c8c5423d0c02e915120846d7624b6f3cb8b5a4bf3cd8fb87a1a5c7b67e41953ad7e8126af5c3a290134f9b42f2eeb9eccf829d8b44eb188c056d5858b558cfb9232d1f40e0c765921a4bd056c2c2e326088a4b60d103c9d4c55949687933f8c26b30cf7a169a319623b97022d4b992ff1cce7610e194995e48b26a9d7ca577ba93a4b071dfc9aa95a8f2e145e862f173f80761bb565347b44837dfd9c1885e90d0d016b17e4e5582e38d54b90153c74dd8675474ba677ea78520e80de049dff276e81d9a854b1d2410fa2f07611acef558c5346423ac9f692bdfe3e4cd6f707d0caf8e1c47f2388d3a52625196d8c539b867a8a097b2bb8f1c440db3321e1673f3cd4eafc7e710a1ab9676a5d9f5dbe8335a1cc3cd0acfeea39f6d00b6ca19783af6ec45f49da8cd302ea0090634f277f036c8b6856836c15a9c17ef2a2592c2a18be82a7af32a2d536d4bf6bcedb86d4ef9566532334aedb461c45cc747b80558e6a15d5cdbb7c0b1de02e64f7bcff0bd96873a1f193e48a16ffb2723e6a790b1569cae6ba8b9a0d6e106f38ca97a4e5042bdbc643bb54c4009b25123c93798419f31936cf839ec4fb3ca905fcc387da6d0a21e9475c9de88082d23d974146c9366bee4cdfe0462a150a704139d6c611067b4b91d42ceec1f6a46f452ec0bd657e3ee7ada3017975cdc37765fae82462ca16d26d1c556a6a87191275670bc91120fafc6a05d44d93dbffafd1e68054ca10f89da71adab544abd7ea9d76852a2c6ab43f4a48e9acf5c21d07e07a4b95025bab5ca29f78682b687bf5754f88f5a5525fb4fb695b19c392e0ba68f5b93dbf5fa2c4aa69508af604462a79d6cd01d41c7b63fb8c83ebd2776f5f144d246a23bcd1880d11414c554e7f1c25c13058d1cf518eee6600734691e8e01de95217b774ca43a020c0d23f9e05badcb94913f2cc75aa5d2e03fc65980c632a78a82f5a1315c4cb294f923e384306713708bf5fd9bc41d3f47d874596804cf69d0fed4bb06d90b6fec9b350f067019fc2f144bc24addf6bf0c326692dd4b4448ccba7503884396f476ca567aa01fc92b3f4e8d41e9382f2f527ab54d75240d5436dafec10666999d4c42281cf08488aefe7161f6ac37b2d55e3c63e833c0da08d6b4a77f83d18f31d0f17d98e1a94d4c8a108198a61ecbea92b30116cb7627bb138e2b446297ea5dac419742f661c7a63819a08359e520706703de5ea4d4765383bcc944af958d10a9145ce5bf8c58feda017cf700c43ee660a43df781a3dd6969d534b3eabb34562f1a1492a3eb45af08163c4e08c053d378416e2d2a016a75511c69ccc89aa6ae11048e5ff1fad28caa707e503ff095bb9db025e461dbc39357db6a2e5c7b5104da81b06af786cee4f83a6b1f88dc301cae8e05ca282618fe64e9717a759602ad9e752759f66841fe22c0d7614d8d9fa3869b8cf944a8ee0fd038816a04ee729e2c4389c89d4fb2dcd8adc1a5e5d89d256ca9b1049f657c58e89a28c1ca35bf938a64c461ab0b057bf09a77dfc468e7da25cf43d12ca547973e28f94dacb526a475584a200e6c887a25a283e4a23cb895405f72327e0ee7356c586227c9616ee85a837d59355ce20f0879691e333a94538dde368b72e50316d0eb809103fda5d1df2fad69446dfe43948963b7d0b451d011da3f857c91288dcc0927784e42a660095a10df56256a872058be7a43ee3c2c73c27ebb893bdcf04699af42e11be1493fc2ae290f0f6819e7a7fab449c4d4b1cc6c66fef61385eb045202eec9082384fbb22c2866fc6348e4cc7aa1a46ad2c1160accbe3e93b870c9dac741107cce068da362614d824212e46129857e35561b70ab0a1bee5f12f272922ec33e1696a45844aabbde9923fd2af7de9f8f57ded221dbddd89ba68b9538be80941e343c5ec1ec36d77643fed8381ac4f548c21b7d82c912fea30f2cd0490c94d487d9cfc8fc21fcaf4f13a6aec2ccc1af5907181ec2f27ac42c029934667e9cc20b5a24688cdf1f96d1611836d7e02ca5c037367e17702e147a39940883fce90efdaa1f16e2fea792d37d1078d9139b47c59a003b218203f7a610346df0281f02dbdc3a6924cdc8e147984057aa74c2e6d20a918d525f19704a74f1fdb9150cd635dd658d31d6d013476fb6545fde1aeb3d5467a1e453e22ebd3cf7b88cf29cef8557e43260c8cdc098b8f49ba675cd3b15bb71b9161dff23c29767996b0d5a6f6bc4e8481cba9cf4afa5aca9b48d8e5b2da5b86eaf99ec081b25924c939c4f26e16745e3cba5cef41c0b73ff36e72b43ca3b8a0a913a8de7ce0026df0d5bb7a1c4d21e107e6db05505f31e8f9b0379f70bf323e1b9545dce77ce7281f381a9da3ca84a5859a7ca992abceaf41077b5327fe3ff463edffb1caf5a3a3626fc5c6c7de39402be02d5f963481223437899c967be61a64d81197f8b8fe051178894d198622fa006c3744869e524631dc6ce1131383ac91e839f0d12eacf4bafb97e43ba9944b63d8fcf1b386c083d8bc8923a3ea1eeeace816caea5f1a8d92ebe5688d0f29552a3df5174129e37c72c8f5dd81d35c9a8a3ee6501b264df331dcf00c49d3445ad6ecb31984afe263bfecd44c66039339e19ff9fac2cb814cca90b867d0f46b8b5b7ffc13772f581425cc7af853474691fb636872a65ce8ce32192d150e0e429b1f43c0e40dcc17a1bcbf71fe2bde641e5f962784e69891b501ef9d25500b7969dba94d294ae00389f1aa1cae193908323879908663a61ee4509eabc0f428faced239dbbd45337853982e567401d58900d0e66abef061a9dce2ec0c6db7e533dcfa6516223a262162d8d295f53d4d37768e42bb631d581fd2b0d740697095485dcaf799ae5d7375b6d8bfe2f02e1fb7535b04a080056e055089f82f803688b3c74352e0bd4c9cac58f82c3e313cfb5b92ded2febc2357d3a8d7d58c66f9ae09013ca648ca5eeb4306d91b0382729ddf07c908b0d3483d8b6112815a492370389ef0f795b1ecb247d82844675fadc1f44d09d9080418b4f11e0d20f60aead1d24a7dc106c952831b6a6f191efacd1aa42f0e8d1629abc049f46c3d0b69726e2ce29b33fc5f0205ae7608f89b7ec7bb3f4d0d083ac50f795741acf4db633d1e58d6ea0cb4da3ebed5387f3b828aaa782d4defb31360aac77d143b76e3c51cd0eddd11f4bbf3f30742d900c46b5b353a2e452aea063579a96bd7d1704154d1569ff49e1afcc773c3810ae8f069f6dc5e3d1ff45fb7fbfca10b9c21d48c2d1cbf6ba8bd11725ffed728138f4df1cd6f0dde366852f9e9d68a3a53fa91d4c63022556c14d56f2e0c68b9cb8c95f5cacb5fbdc5fa0a973437723f044a8a762431abec46f2374fca420c3e864647723fbaabb42d45bad5753bf2cfddefaddc309b771ab9c17af93a8e3817bf73551f9b27cea541c62f465af7dab72ecf95b869950608fc34f88b866b4b777f1bcc968f9a6b749caaf954524a76078e8ee9185f131a28b5150e34e3a7a0e66632c6b691cd410b298ab9c06aecd17339bc334020402b6f38998e458e75f321e41bfea1425b369746e386b9204e93549370e482574cc67a7974f3997fb394755812700d6b0c1989f2d4feddfd521068844f716a00eee4e2a0028035729879b5381562d1d7f1e97f4f047a35c882c6844444c2e0897b276b225e71f6d1fd916775f04d2a58f9c57bad02fef0272b5e171bde5423a967965667d90462df7ab75365a64f06299b9f36e98b0449a5e79a65c9fe9b3cb9308093423bd19140d54f9d2e74f7356965132048077931edbbcce0e0aa8338ed10cae2b2f93ce729089b56b02327ddfbc4b6788935c1f3062c407ad8b8fa84fb63889aa4d2b66898a3ddbc89a22278811db77e31884bacea36079035cf58a12e7f5446731a28b33bd9417011618a341772274305222ba3112142840bcf09a48df72eb3f0f6ae66cda63aabf0652718e3d9dafdab20ac74ae8dbfbd5fbb87fda4016dc6bea6ffd1ca31bc843e2f0ba0490faa689098988309daa1d110d7f17100df24ebc939bf0f1457f278b990bed9e1f4018ca0f1812cb3b793b7ad025fd6df5a4ad467977c270fd9090fb53972eb2a28a19680195a929a656456c7268a21b79171fcb81af1088c0301cb7adccca802f1447e9977dd0f525347595df7c088c19aae1e41d671881d3b6e265e99f64e12226ab0beec35292e8cd909d2ce01a5eb8efa5946292d890c462aaf6179adfe9fd44b68c85be803e88ebef88eac7338acea48fbbe79c05adc551e028b3ad00e8952e4687a907d10455a00d159311bc4dac614fbed8578c2b929f5cc96c77d300186b3af95aafc552d70775262bb064ef539943052867325c05b75005084050b64daf43e29d088a527f8d060605158317020dd06ca9d7e20f9038de5a555a8de2af97d5040f9c968d5f1a56e45fbc5c7c347d7e8e9398aecd00c52bc33267d76f4a91455df72a516b163b8cf913eb0f7afebe9788acf5aa783225e66b4bdb7fabd010d19dfa6016dbb3e366d3f356667a237f4c6cfc20a12f4b618ba6dd5665450238e469075866559ccac24ae4c08b73e5a51688fcb77ec12d298b87fd8087b49948ed3836243ef95e54e9a587ead64ab0beb9b7f8689ca1c7c424192322a4f53d573acb3bd89a17a659169901c61579c323f547f3f4f65ca5e25ed89e7c4fbda39ad8aa4f97ad6c72c70e1354bd0562157b0926dac67534bac5fa9a42fb654ce6e1c57b663fc33e6633e5e582e9f1356985337ce016d8eb83c6379061ae6ea9ab64ed075363f6ad58ed7565f395a6f1b5f292f053550ffeb73d65b038fbe7d5a0ac3e83a6e489554917bfab28bcc08676c0e313247595bea74aa7762b4f837f255c90750da9cd66c669ddfd9f2540eed9f9fec9b2012bac0a7b261f556b19601d21b813e62d45fdeafe5cc4fe2773d4737b75e831d18b087d488fff8b148d38ac454ce659aceb5f35d8b3bdaaee2f759eeccb7e652a64a47d48af9f50db72c14d42108bf177f62cdf2cc9bad2f42e612bcea796f4386635f1f2aea9e4a6760a064476541e8217c5a3a76f19c87c4676c0533864367c9224b27cbd8fcacf7e4c56d577eda360fb3a336f70c4aff263a8114b2fd24a9ab2e75e07a306686973f3a6906c4818eafbb450d6b748cc02a29561bceaa04324e63b7a82e47f3be7addc1db1d68d2dc71274f7ad34e815a954e8b4df015e0f46ca6f4c3570b47460213f1c1721d5cabaeca2ecbef4dd2aa9157ed5596afc90b43fa266b0710806eec2d79674e9895096ca9a036aa734a6ba696959e7ff9c0ebdc12d66720a2f8289ab7d8c27118c561f07cd00652757490e473464750d201636002f148da5559bcafee810ebc3904509c4b5bb64baf8f78826f8cee90bfa4732384ad7954a734e88d9a05aceee2302a9add5051a196900aebd32e330e7d2a836b19f43b7cbcd7b572f46a11f7c10d8b451462cdbe3882d98ba011a139dc9bc97554548e463d16345ae93a94746011ff6016a0d81c5100fd202b17c3ef45444023bb0d2f99ca1a0460eedc1b9397f01cdef813fb442873f1f746169e21a7b28d1dcc87a36af41147c2655add181b59469d68dfcf446fc0c9126ba5d55c2dc3934e024501b361e0ec03e6ec48853582c5d6662a6933e591b958f464b3a8867d253d2791ff2f39f189e9f55752b14cca73cbc885867423ac32fafba97557c7c0cdb487c02da2978885afaaedca4d58a4e07d9d4c90eb9b56c96ddb8e63cfb7f8ffb990696182ddbe945e553be3ac1268f70f9a9179d699568f3d92b789f6bb16d4cb163b45421c1de0af2e801c81aa1dd9b4550f10d30641ea2b91c1e9d2a8aa26b3e5f9072402dc7cfc46e929a127c461ee8ea62878dd569edf1f1dec906759e488765f4a103d51b75929bafdc471f2f4d1741d59ff0ea6bb4172d5f4a9b9b0765d96772eb237c88cf073f1d3d82be63fc02f55d42b9f07f0732218c917c8954568f25069603faca72c15b3c1648a53807492bd85a580ea9867d183898c694baf9a7442543039e973e3ce819cb9485c0376fd63206ecb5b50e459256a806d3b09ba0854111900ac7fce2426b52bedb59f83cc61bdd00b488fd3d3bb3fc4930e13e2a12c44c76c4e73a8840ed1ee91aa384b1ea6f2121a6f625ce60ae0ce265c45a0cf26d52d4662a4657dde366fc132df7a2876e7da6c32074fe3cdd2ea9390788394479af938b903a9303a0be8e9a351461e457ad58c982454365258300f5492db328f4e85a646ba5184dd120efc1f55e341394d66bbadf99b90ce784f3aaf12fdb4812d7fc0fc76fdf46906155bc000514f24b88194576cc4e07d85a477b87ed0a5a0b5ed2ad426014bff5c8dd342a31dbeb64fa9b828201f535f19b77393d7795e3fe6b32080fbad65f1e7a7773ea80a5a7049e7bb9a76044fbc0c2c2081fcd40056fbc564c4809d173ae15dbc08585bbc5e0b3153c1af9de2e872e82742a9f57fee8d8c3f6380463485d176677e013145bd1e93d4e852312d02fd135c2eb9c3109eb62c0cc35ff92c8b2dccc0ce6820a28fcd0d0ab9d27633b63ac46fbbcb9108205745a35d1b959230db7da842ccdc330080079f8258bd5693262f402031d40b12e22d7503b1b59414e2f56cafbc45d697dc80ebb4b2e10296462c3e494b50ce4b65ea615f1eae272d3894fa47d81e632ba7cc84159ab0ab1cbb5343c9ddd35331c9ce70031e74f62b378001633d6c7619037b7292f5f478b49cbadfe63b46262f9ef6a6714a8f81662fbc63b5b0f2782210afbed6e72b54caa017dfdc935e508b737848e2c06e4bfd5b6dc2f4bb60619945090b2056c55c3bc4274bd8f9b9289e332f10df789249f3eb030499e41c9e072c0224c35e08744b94a6dabeb49bddf50a3c4a1914fbf6a9d15531b9ce73794a527d96d3c585318cb149ce4f76bb32439d26b375478c9ba7fbefee7bf8fb420328c2caa4d9f5a1fd7f2f758d3ed3afdc2f2f17d8f2cdb4016c4dc380e0ff7e57fca6215721f24d7c1ad2e7e123fde82d89c9f357f633eae4810591200efde3fdc6903a492b67b04295340efa12658c93b18fb53e892e855d6abb8b0c84417ebbae87716ae83d5e941c07bd3b09bf2c659d8320fc5cf97950eef6515592ef9ba570940b298761846c164023215b4337b66cfe8a22633f63da7678eceab09d36180286e74979411cda287af80f33ba4a0e099f842e9562a220abca21d27b290e313f74a7a4bd21c69e594126e58324697fd043a1d7f7f823c931305a1453ca8dc731cc3e1ca46107a01f94dd1ec165dddb116717c3e7610da6222175d172406a976062f851f02f423004e40dbc72a4fe3e3231277dfc084f9b17361a33b8e82e7f83a27b2cb900dc8e5d19daf9843aeb1ef8d7f061d9c0f6a6d45ac0d3293c92bc72b659a9006e34f999d529e3621c7886565eda9f770f3d0d18b48e1c1292128b4a593b89ea58d146f972eb8997a337f7f7a98cd87f53ed805c4963873ba14c92a30a35ba88887a7ade5cc5a5060a1d0d53e50e953e9fd8f2c19f8061309960317d4e2cc622c11c44b3e436abcb316e2bbf7e033b45b9859e130261712b56e973ab72d7f22d36fb5a21e1972275ef2402cd920913163aa181c9869dcfefefa104e270e3c9349ecb02ae437894c6f199ed168084f654daf5080e38fb1f420f51e647780491d57a226526a8bcf7c0b2dfdb4b44b9de42310fa9a6516b117ce47602461979d0474ccaf7c18f3b4e665e2842a60bf22c0c2ed7d0ddafc2ef861da83e7c46fc2240f63bb88bfe1d6ad9b0491e030066eb2f3bce68fb6c6024b5213cfb8332ec77a2b4fc7612a032f1d17b92c02d95d5c6a35ddea294dccf6dd169171ace3642559ffdbea44f0f7561d21be0fd6ac05c94dabe0b2626e350dc638a9f2e6f7d7741bc9c73a3bd790b316bece2c26378a8f5e071f71ea727e855b30dcd9f7649af594839ead851edeea2ce213adc7f5976b9b98c1139c2278cb24e33d935a46a91d3ecba866883a9c3900563948606201c282c24f22d111531d5a4ada1abf18bd67cf7edebc607ed99a62a98551ebeced61fe8464af00b6f0d5bf11a158f662c39ecaa955015f8827badfa32eaea9774577c79b6b4c3def74a74ddb5022e97701d7feebf8aee3a894a480dcf1487be73e23e23b86db54803292550a0a30538c87e30475d1880791dec1b9f85a6a771b332b5ae75bd7894c6a6779830fe15646d700664dc339bf95614eba644bd53584efb6b2512503b2228ce27cfe14b102fa4af85b5cf52524f8fc5ac9251661cc7c4c2984bca1a2794b12628e31568c7078f3fea36ccacc2e2fc5c7b9f5b32257911147f29d134a790ad41aa04fe4cebe953fe9f430be78c8869736658aae904f652e4461eed0b2a20787767c310a765d79d9c628a195b925831ce1b9c74e27f5567553f39a8abc8fac3514b78e1dfbad86a50c8fe180271d372b40870373ce7cfedeb2656931d5767e6f81f2484df711a595a263fb42f7f294156cef3bf41b162036d005ad6f68c80a9ff3285e76643dd5d082e1d315c015b9b2ac2233dd09212d48bf118da7d58c7eed8f795dd7b1571ef1fa064822b61007cde0610f55c78835f958bb1d38c0f4d301cb432aba519530c2e47a679b74c6e76ff0b0fd7166149f54193b80223e2f8d30558a78d5951dc5195b73ba020a9da7127e2f9aa723da79cd4988f1ebb3e40781bb286bb9bd6362c13571baee5d908f346deb476834c59983da5e65839cca0723ce18e537fdea46ff53a8c522f9975a28503672670c8b6f37bc865d630dc25de80eaf5d88420f6ca25e7810afcaed99c2a8949bd8a6a3264bb5f05c4d3ae7af36678f62901c522347d6c1b1cb14ba52493cc617281ba62415896e124282e9dc950a167033fa3a348a8a9e07bdfbbccf57a46ed4b43ae2003ab10f4292c1ac5dacd49514b073354893eff5892cd85b520329232d954e0cf3972b994617170bd45c7971b0417402cd2446e83af4577913dd3e10c34b79e6ed86209fa6dd06924617efe6bb269db17d7b8720f4498aa1e17b5e7ba56af1cd531dfc1d40b9dfd00f536dcae07f6ba4f36940d82d82eb70039e694a0240e8dabff6c31e427b70ec1f4e918a28440b7b83e9afb8468db66b58cbfef9646912b779aa9d455479657e3c33727c56dbe769bad09ed14dd455c82a615bf294ff62a12217bda958f90456461d367fa861a0f6b07906a50a70be2673363e9499a9bef4650e5da8a73d96606a5e4bcff05fe0eb6d7b7397b698c04061cb98b3b7e29b70ce5e2224d5adfdf8977bbb9c58a328b29e46821a6b83a045f7e0c3b2795cbadafbca942f11b09c6b64877775698b700210b26a491e9b27f6dfe1b445bf3faef61cda19a2b47dc489d783b06cb20e562936518e578fbdee780492f56fbe272a1c697f4e38e4a2ed6687cc0b0c6c2d4745cfb57dc7a86051aa7117a2773432f78cd18a2e4c6010de110f799f5df926cdc42ed114361733fc8fc929ed84f3210d1b9cf8301cc871abdc4e20de431aa8439ecdeff1073348a40f06d4342d9b4839fb60d3bfb475d21d242d1398b996b557d0d30bd45761d4d048c461174fc0befb6ca5d2e8bddb69b11c1ce863dd939c0adfc3fc606053926029b85ae48ebb03ed6cf519f098c2e8fc9478c96d82744fe8ff997f1a61c07ff4c79cd1e7c4342f4c742fba84605928ed4e11f1ded2b5570685287065968b095c082edb0c5ffdc93ff35f911b02460380188862fc6a0b0c723302705ad6a6ded04bc51f142a8eee68441878ae73cef46ce28f610d6675e441d27739faea57c2e55625952d5919744ee5b652e963fd8c0169234e11ca03156399e4ab7528df4e50599dc30f86d7e8930edb1c65659b3c6f7ca6aa623d5ca5f1c8cad4f970eeba061f0a8026ffedc4bfc621e82d0abfea745f4bcfe4967e062ed0d57c92ec022bd7d197aea3eeba45f149cb96d3c264daceb01259f1a2aea4787c5650689087d87eeb460bae46868b67f7c4576ab80d9885462ad2c2810609c954c4d3ace6cbf40683af9a5f959c9c62d902270fbec76f04c58f04774601452a1c3f86decbfbbe80376867e8bb8185594923045006762681c844c672e95b4f3708f397e0e07da3ef3104217712c42675fa421de2e9c5895b2123f5c58262f2c603dcea1dc0f526eb244931dd44928045bffc5baa4c59d84111b8c9c06ce123a7bf47e1be32117a50519ec1d6f4d0f60cfd2743e72c87554a35e92b6aef9a94ba0ed3495b3857357004fe66b30d3967cbbb5afdc0855ed816d4ec58b70bf7cbfac8614b0ad232518f7338a0f30de5eb5df57846c23cf281ee0013dbbd297f448cf92fd44c5ab5c2a1ac7f727edb439dfc24c57a52f1c931f3c798356a9555fb9e13bb8bd53edf1a3afe09ba8046efd36be0b2af19b478bd3a33080468978d5a8a0cebe263f1ab28cc119fffa15cd9a4e06228af3ae8c0a5a17726ca216deabf415c76bf932be492d6b29b7d473a7897241ba089be91a1d40ba10798aa92c5f6484c0ccb4f6b0ac481007ca58edbf44ce3b1e36b45cc923148a1e67fcf295f839d8ec4f8cc0f2f2b7e78de480019b58bc34b3f7052d88b1f30bcf4cf7aa3877b6eba87e2c2c535aecd1700a4b1db3631387663ed263a6ab8613b3415fd6c68f6b15c540c4140f805a2cb167303d2c4950b4d03a1d47055a33ac07f16a2f1ed2dd46cba85724d23ff6f599bcce00d44ce2f1c3259a124f8f277f0754f1169dadd6d13b1bb49aee1081c0cc00613ad6f1ef6f65d36ac02c03c73e74d069a8eead12e68d19984aa0c70994ff9d07a34c0fea81b4aac94911fdd28b8f055677a6ab3a89f535ce879c0a6924e1073140344259771c735a43f7bed013765536ffdeb9edeb9155190c44df2e10e11a9bc7227df162a2b603adbad26f37c73f79b8becd9dbccbf7c7b27de704008ebd3bffdb546362ea6b01a1600d01744bf2445ea4bbc0aa1b4870d14f989f69cbbea5fdea32c01e26948120b2a5f65feb13349ccab78ba64fb01137694fd3f1bc407aa4bffd0451346c50622eef9fc573c5b6ceb65536b14e18167c7f6030b1e86c12232d176615b41fb4330da60a25775d8d43e37c2c69da9eee7c99d323330831792af68733e9dafd5a45c4e5cc909b9d7d092cb47b30b7057d452e1bc61a6aa43796274d8a74990274a80dc529e646ab2febf1ce082f6e31a37c8dd99b0f61b9029d135eda7dec651cc8d8bb5f65867ddc5de22b00ddc88249f68d7d84fbf079183c094fe9585be3fb98d1e16f459a45ce915f096a759cfd80a9cd208ba1d1dd2395b0796700f6fe6225f62d0670fbf1cd9d0f490262d7f88e3a3f348cf3e5699253fa8d49f96367e4d7b4ef1953eee596a49cb03d35e52bd9c6b9e6dff5b8077f03577965f924e4d71b56aea218564a25dd407c53338d73351c6ce0dfb960c75adf094828505f276112018fad261017d33eb2fc74e191adbbfb5494671dbb8858a1dd756de9c15b3c0b3856885df475f63b95f0d4bd460e8529ed9228998845bcdbb5530425076bc6c89d55a68a503baeea400672993dc2c65ba16f71f535562648f316b9f9fa3ba1441a8d796eb9b2fc36fe1ae0ddc1f62795b22fcee7c3f6f011af7234b7db176296b591b0abaeba0622d2e4c7ccf9b5f3932863cf10961df8df684d33b6e51d7b1ce2580a33c497f2c6605f4ebeb9eee0f0b21638b4d1c2be5d4472f75551771f293e695b7c7f89302f9787ac4752abad7c64854311910e6304a5c45cd2e8656a3a20e7180ed498cfa227539b973ba489b7ff53a5c0d088d6e445d38d8e9cb987544504893d31b6bf76e7732f4bdaf0dbe9e57d5bbb86c7aee10b1fff5fd7a3e0a1adc09bab2fecf56b8b15310d06c6da5fe5df277fad94325536b1c6246ccad733ef797b4f5a76614862f39490ed329aa98e542ec9343f96dd959ab2cafd807cfb2adb31c4d222682b4dabcef7478b31e36b20f4a851c556559b2b33347e2c30fc87c68562488e2687693b26d5bbf9d306ed8f4d72105e55f1313a862d4571b7d993b27c83f4532b3a86e18360ea6ab94d9fe09c4d5c1056dea8ea72976ce0e30e7755f2cfe0ee38cb52bcea797fa4af8a3e4222d0f441eda9ed7f780962444e46e0b3d8b80e0a4532feeda11042812b9d3bd548f6599b59fe955efba0e170c5d4fe89b850986234083bd828426dbb8095291559318031600278d1096b0f4e80f779ed8d200222d3bc98ba8970be4b61cf19c1e439869efb028356f737ea063bd8c653d3499b74f5a30c99fd8422d3f5faf4b081c274b54a23984d63834a87977d118f99cc341f1c2d484179ba4209bef4410b3b0a77e26cdf42dbbd9556e01c7124b4b3480a8f0af46c4bb062a9779d58d3c287f8e0592e063c27fbf3a3733aaf89bea3ce32c509de638e0ece48c812ab02d8015b0e8d5e4defbf4caa687d2b19de5cbe9a61cd783242a06b51642e8f6e19a343e3461087766397189a68dd1ebd334a753de02f79dff96ffcde0289df788a90c7858b1a921cdfd281d57ad74a6cbaf1d40baabe5f36a126932105d1876ef7b1c2a264ae892dadcf470667a9e17d79e73310056eebe9cf146585a41cbdaa4537a29af6d6f6523af2b9211fe500b30617dad26a4a6471f769ce797d637eaa72619ad93fd28d8dde6b8c42ce51968770ded387faa7269ead4b307d216c9bff5f6b101e6ef586447a48baa6e8e8ad926f9b8dcd0d03a362640c4d2bcab3a97326c3a1a4b4db8e34042f3abb3cb2484f140d34b1ed48ba094833e3f48518ef889a4a6157d9046d2ea3f1d6b1087165d4e504dc15f79a8ef7ca99539359c983771658fadc14b36e25198378ac4b36e82a602754276669e474158c227a8fc6951f410640a3f1b07426406ae21e2f4c9a39fca856068476117ee180fcf27558c126e3e9763a050b24ad47925de2235a24b8ff7956ca59b7e6a7b9326c43b96e7a5cda84953055a545058d1d281e99115c3e00fae9afad2435444669179ea7f2547b9a1e557130e8ea24d07f66d9a8f4c27b0791cdc7966232ebbaf224f4f4a47aadf8a45d94feff5c2047853173d13ef97a15bc0de394b9bfb3795e4263bf9e1ae85b84d810a23280632d9b70cfc1af7713065d099efe0dc654f8b5a3729f732f0d2f7e592c440e6271b575d17472bdc90da097ea90c418ebbb95bc688b9e5f088fcc82639a91fabad019cab737d294f70191cfbf35b46e43bd5effdd9539a5b17caa857589f48d9ee5aa476d34987b50715893bd59a39a2dd802889f9e192a6eddae3627ac497888ba966690be5d7d14c471c088755363ad5350ee1dc9b645577dc727ce60a470175841bdbae61bdde95069a2f946c7c61f557c2d7cc5350b34fdf4c331bfbe674b14535a60844b17ee5be832dc248adaeda7a7b766900bd941c1a5348cf4986447c44946621807285773142b4bf922a383349298befa4d70e645a37172736c8e15ad6ecc602f1f397542d43cbe77599c8081d03d134e21595b4b2d8d6d63558aa34ef0a6af799da80c1d4896ab7315a78615769b701d70578535cd3eb56fdb9f4b8c3d3b6b3a70f295732760ca61ba888f645a40e3c887fc4f232a7e4297d55082c1469edef0c68d5d276b0c4cfd4afe04549fe3aac2d1d85c1866d6719cda199c282ee6ef1273075351ae4b95c6abfcdc04521a062230761148b73ff2fee28da994fb8e8f2901d6d0c19d16afe86c34d4357597a5a4fdc5830e4028fadf9712288ee85ce9c7882e839913301f9fd6851ee85c13c97bd7cdf44d7868fcdd5db308ccbab0f35f0b3130baec88521a4f6c29d3a2880f250cd59e94769ffda822a0cc5e15222374a6fd7e551b85584b4036c242b68cb720ba194433541dd9af692125831f2973c68733ee438cdf4b783f39dad9874f3a2309f1a8697892e0e7fdf0028e45e0e0910be284bcc894be42ebef9c5a25b51580f97fc895e117e96ebe896026c18447c023ee4bfe5e0355b15723bc59e42a67d9654487af745b048a58461e622524fb903452cd82af45c6e0295cf11bd36436b570f91b57eede4975b1fda10ed5406adc36408905ba78447ee1952e92c3768af70d2f469d6ea93ec0e426cd2b4187bf38a80ca1d9c1dea601a02c566f147ba2c349c6ac5a1a2aea2a12fe545e1bbb908e56fe69c44cdbbed0a7f98c56df5fdf989e922c2bc3965304b5030f86c6568b98567ed99e730c6641b259082e655c80fb1a6c7d5b8f3f1be0148e17a37028a71855e07eee964f3599943c79efb7344f511134fb677b3f7067049ca86b4ca6a6a8950329f154aeaeea0fcfa7125e381c76bd63f15b63b5361562c083802b23b7c47f8e5604387a1ddefd496e4251567857523383229535d6b35a43fdf9f528a1b17ffbf99687f16c3f382f768ad1c53a391b85f56a2cdc3f4005d90fc23f86107c432ff92918d1f3ea0b4f9d8fb45790474f8345979eb54df891b2503dcf3e0e7661b3f874c3944eda15aa8b5c30bf118bd23c657f9ef3e18728f06027298fc70fc87736cdc3db4699a7356420865043247b6a4b196a3f1f8ac3f6642ab2f7fdb14edcf1b88976c1371b483beeca7a050241f9b92332af862c45b7283573579a5e692da93f077b93035ad25a2a3bb80986d4471aea2302a60927e33e298453f73afe22a26af6ecdb19ab35a355658c0ecc777ebe5792000c6633c28614a8980676af9242e4252013ecfbae9ccea74b00eb024c6866c6107c76b2a3b575e93fe596580bbed152831a88287f30586b0b331677695ba20b3f81c35d11927be328e393795c2751bbb95e2a41cf6430a36d5666513f99c351a79cb92e1ed516aa3ef2d6e9c231d8361cb1a7aefccc418dabd811cfe2325033992738a04503287db9476ec6b55015364747459c5397ac1faada29e5015426140509cb9e3c539863a21b922a2506fb6e3010f2013aba14da7bc9f7ad2fed25ed227401c51d30bdb352ea5e87c46646739107c3697be4ccc704e9089d569e632e710fe35fe5b0291d2675df2980248b31fbe3301a117a33a8b10fc8b76c55cbcc2baddd548c31a1436f18ebfdb59d8aea8aa5f52339ea7a98fe53af0c2e7935f2569f036224c84ce231be2deed8b7f2c3de285d3f13393da1ccc822a93566cfdecd8f0fc2f041402d2b761ff03000c5002f93099de47c9df6a1001181c38e03f1227e133fb7d9919c39be57e347556fff79ac2ebc26eb51fe96de0d473c70bf8069bcc85e9359a565630d26b9a22a1c22ec8f004ab6e7232faeaa23a5a9e00de1e4ef6ef97df93326e5e689ef62bea4c411f2685fd751b5020a5d048306807b1aa9bc225accb441dacc8932a65308cc3c7112b5864bdcdd5cef606ccf7e21d2c758fe061f24c3cbf0d99ac0920e45e095eb00c10dfb2cd86943a537d99276ec9eb925b8c8e6be70994e03e7ea65021a119ff44414d94bd49d987c0ae89bf3fd9079232e044d0d475c99cec085fdecd4bf38e22b87a71236b2b66553df9cd11c717f048b9267c46786007391de04323858c8cadc88fe088639870df3c52da58f7b4faf1f4d652b37704dfdd0abd900c5851ac2b11aa3f7478e37c7758a2bd20eed2137be2d8c4b8ca2f55d3d765a9c087d541f5e3a6d870e4312148fffb89e7b02a120985069487b4e7a299619ed57031625743808e939c758b3894bd637709536d0123b23b7e1328071d100ce7b5934f2ec612aab9462e4622c86f008a0cd0bfa0109cff325a34585f69a25af36f196557ee057e3c1565b80444d454af59f1fcaf254de28a6080eed2f854b44566ccf689dd99264439ca83d5c7f1b466175920cb6a1c290721c06bf1818204c0d8a1dcc144627a1187e838dfa3935e83bc6ed32f19eedde2824f554de5c9587986bb150c1be36a76108e36be7d2c241ee7c61bb1624831ddf0d7f5dd02d433655f7513bc7bfbb9ca6c453ef105357bd4d65f1bb509eaaba4a2e8d7848c5a0b8abf91203b5a471a1b9a50e62de22ec4c5e4309ef64541bc5e0166674adbc2d86ed41cfea8150b679b787f6064226f810959490ea222ff8a412d6f8d37ff2ba17d345c682061e59289f2ccb6e1c97331489f8cf6e1e34695e61ab31892bf9d98851f7f315c23c9a0770ea131882d4f00d134d81a9e13f570a01c44641238234f20a42690dbbf97d831ca96d95080e8fb0f26f58321e48d7c2733be5da866a9252b470214c3a48ef9a76eca76f67eb83c1230b05e610efe2cc629dbbe113671cf9cb211e792cb68fa3b8f1354d78a0ef5ce236f51ac891294c4717ea31cb1e391e14dfc5610bd0b267469a9a9639d09ef5b7825ed7b99bf49bec14bbfaf70501e07017752115ad5e34a86e9ed8910e6ff61ee8e302627dd851a5614f1e9a46434b9f8e664c61b9ae3da1f2267b736eebbe351ccc97211d0a59260e6b2b243d0c51ffce97f0f12aff5094b5deb0deabcbf4a9c181319de456313d5947b638c76063987da30d3580cb7fc0a3e1bc0200a30f261fac9d02fd7ffe5a011d81fc685ed85595e8b8c72649fd8feba2d28632fa7fae4c7ead769848926defdcdc2945f236a2edfeccc9da1a32405b55b8c4906d650e4846eefb35952072ab1a72f3973aa037a282a9f4f879821feeb6a2ab596c49cc28c53193066148fe7018d52b48c4a2ca890ca2d873f45a70cde6eb5ae65b3f4259421020b8200f42e925116ce80ee1ce927e559d4c74310f95e5111411c6b781733fe591d9dea3c29001d974b85552ee415efdc5d28c46cc5a9a0243a44d680cece6d3ed0a8b8be56c48ae51d8429f522554b3c09b7ba34bb1fe3cb52bf026a2a35319ffa5bb4ec5d7752d46d26758c4c3635a8af9cd7084aa90efb3c138bdcd9dc2ed93a85505d2144fa62cde67382a8493ed30a6b04d4ad2ecf20427a34bd0a941318af6cd4fad711c6f04803a35c08157f733ca5db316cfa1c8bf6f3cc8da24f489398a84c1381cce4a02048f19da3cf2b103b23999e4c1fcfab3b9338100c710572db652316fc9374329561110c63bba5106c51da9e4b635af25ffa6f67826cdb6888f3834959173a773369c1dca354b1cbdd07fdfd7a4255e3a7f5c5e6e03086de091e714ea97f37c760adbc0710d4a9f631ffd85e1fc65b55025ee0b012d9f4bba063534332028ba9f6090f028ab22ac51c3544287107daf35779075b470d5eef37ac5f1e9de4a977dd2155ad039e951bb92d3acb2618b681debc74e3064c33e9e148a2d39e352a4c3fb5ae9a0d538b2a3b04b1f2f14a2cf807af90b9891949d84441617ea5b1dc82c95f1e5f63e239a6afbf8b70111f2c40c0b700d8108ae40f08ad5ce61da57c03eefb842cbce1474d8b00bae7dc415520f92a2848084a766f34a2e2951d33e11dcce02388290c8b22d1b4030b1a321dc486ac2882548d4946583834583fc88cd4ad7cdf230941752da64540be19ff724a669336814b7d92f700321226c5fe8a6e69da66f1f3c3ca7ca66ca62e0861fa3c1f817508301c4d364ee7e74ab9f7811dbfc41f2819d5c291de5cb0b1e804932913c6a297cc6e261778a2289abefececf75261acb9fb656ec6dbf19ac5b5111968d07ff8bbe403485b1acdd43ba9bbe4d14ccc11702750ec420aebc04b448bf138eac4d04ac4c8e7df6b48421ea78e6766cc7492ac02f20c4f90d690b4399a858839f24f992d6e4696641b8cc61b58b561895302ebe889532cc29f1cd349b32886810b5377e84e962e9caac66c7f2c757c0173aa41a939af4c8cf55ebe2c8fe26a28bff1c519b17221c7fe2903bca19fdc41aaaba21397c032c81229897898afe9c613f40b054ebdf9ad09772f8153ea1166ab9e823d079362a7e558880a9134e965967fe9f911b6ce1d9da8a4c39ccba3dc52ff06f3dbde7952c5bc82179f35341b25befda3db6d409c6b362c292d503ab54d60472728ce1d08ab220b2408ff2548060fe4f94325d4af98bbbb8491a0a52859c9d486327b2a989935c31b6b056ac646cc67c5c100dfeedcf9959410ff677aecdf55cd84f38c9116ee15346acb518cc52d74726cdd3c72e9857831bd3e3a27ed3d9243696e8ccdd4baf0d54847a8b2a382ab2224a0bc5d346f55609f8009175d207f37446d13f542a38e92dbc6e6617f733fe6965bcabb09b4721218effd036bd965e3a870e6134dd86563e7dc0a77c0c70f030a86c16cd6e1cc2a418fcb505d466ff5d9699f75d13c24c4383ca91cfcf4e3ebc629017f66d88deeaf88b340c1654ede734237e9df3f490fc1099faf2de0eb6ec92c10115eb5c74d70932ec0414f2e6ec243bcfa6bdc9a7b6d1eabef7880c673743c10d44511279dc249a2ec4530e39e125765fd789bc610b19a476547b5b708eb0b325fd4a70ac35d690b533b36883fdc6a74e9a23b8c12ccb63e98c264221a0d90db8ff6f9fcdbba2afbe52d716d61d15b8ecce8b567405de39fd057f48cba90fcc35e4ca441e46a604ad1df325fd7b1e39bf8b3d8e8322790d4a3c3c53ec731fa3cf62e9bad4db1ff6638dbcc69f98e786707390cd19418a67b317086026648c7956f39acf0ae97427ed4eabab4871c096c700015ead72d32492ab1a00a2e43b8519412ab9780a546efe20a5ccbc51a7e7b40dcfe984466c39041f5d5bfc6062b1f21d4601eab922466151fe0fe2e482d9938a56324b51783c6cc885bd25bf4b2c20c0945a31332f113e10f892d8075425dd6dd40f5db26a22faab0443fe12243e0be3440f1b78357524df941f7d59fcca5a9c431399c58c33b82116d9de00409fe88f3184bb86cd898bf4de8e8fe110562d49f5f3e2f16444a957271c4010053cc0458b34c8f5a96c80a209676edb141c88048141d37b2143024d28a636c4a94529857c9b161387e6a14412a6bc2dbcdadaab4070e9a481cac1a0d716aa5be483ee2460ee04d61c7f8a621bde434488927cd3b7ed6a9cde82e6833ab5a9f8b1776ce9a14d4ccc30dbcd654e4b9fd02de541653138ebb367ee19120ff99ea7a61276d8a7bc2ed99f17ae9c14b129800a3fb313ac17e25e494f449488c02ee4bcdb9bcdec0ffc313cb82558486bca01098aa0152124fb46d2b7eef02468b7019d42d7581b990206c4a200674c3481ee9267374f969448a1c05b70d51ee1cf1d7e243f3e97b45f7fbf05daa8ece61d56e00d6dfc747f266508dc62a2775c96014c37417204435cf732cf620f68eda9c62157291c672f385098024416fbf80730b91ecbb1c066e4d6fa8e9b2a55efd33e212e1bd96a8cb03fe87950b8b17713579d5cbcbffab628064639b8e01d766c487bf4d2f88d0ff1fffbf1b5cd970541354408b6c88f12f2104e5f87c20aebe0316ac4f232f253ed0e26111334e4b13ebde5cc59e9f3e621458761ed0aacd9af9126e981347d5e8c89afdda033d2ad27aca4e8d26a6949010022b591b0faf23614a454674147c9ccd0fda472416e73a8d76c53ed4ea0199b714b21a9e26fdca10e3a720cb6e9dd01bafec79c55ce8e89be2b3ae805c0e046977d469e91754dc2d49202125a77525744973817d867e4dddbb31cfdd2ad2772a4e94d2770342b3ee83371b5b5945886abc5ee3685782f6c51fcff2b29684c603d2099607f777bff591b8412a647111f41b1cdba15c5e84b017f43f1f7d59bf16710acae45efbee34b74de9b0e552baf763967967020634c1b5ca0d686759659fbb231c8a9c3dec0733ba5d95c6f31bc3fab67f1c836ee5e74e526e4ee562a0d3a4db1bd2f441370eecb05f93bf9726ce6e1f96723c9e227bf33253b32cb48796f6dfcd6b24f2b3b0b7914f310b47e5698d235637b8263d8cf2ad0951a4f0b964353d109ad2ed101e4686aa3e770a7650fb1d9816b95dcfd247eb93f5b7c493a5f53427c831060ec475eddd51d9c67e93a613e75341870a63970270d92bca5abc5435cdf9966bfbb199d4909d9fdb2bbaa35aa99b27bf2c14ec600a772eb310ec234084e2bac98e6af3aa18cbfc977ef33c196b4089a9791a0e937c92347a2daf5c127180de7170dd8e40ac6cdbfb2fbcb91b6eea31c53089c28b9978996c5fa1cadbefd6cf3f942dda7ac6d1e793db5bfe9e58388ff9820cca7bea50c142d3ed349fd8c589f79225c2fba269d66afb0e1af901ab6c8bca9f19980016432445d5c93b1f980e1f25cfa2b2cf5a26bc2c00d6f631969265b932e90da1e3fd9be85e9b89dfb528f98faf399e4e76e517041a4ae67524b43c1677c02fe5dba98b75fd6d9960098ac339e8cf0b31576b0d25ef258301f17870490a76a6258cacf4209db8f0f16985550b6d6625a5232a3da323c7837135a37b4f78ce176e63b2e6a1ac46b8f5d8db0cfe45a3b25638259926971f564f2276531501c510e6884a179a098f73a30e5bcf767da2f6406d00e4e6b5ccb673feeea2c6ed2ee05f5536d509d60998e58f4fe9599ba8473c752998dbfb3d13b4533fecb99622b1f21875419cca85eb9860153f5c70eff5a69f3ef5c173c749f502e29a863228a03ad49afa84a7bad6b818d7f2ac79e1d9e3dce848cc23bac58f29ecb2f5281a2cb2b9e23498ec716e2e81e86ada9d114df5adbd67a24bd25d42ddb8e6b21c820786b6a3e836c8e11880096c88a76e6b3465b2d61fb111456da58dcbccf7b19b300c88db34699a9ca265599305c22a780e0e1bed18fec6aa777cbd0e9969533401615f79cacfe402f11629b80171a0fb8a59135ce072b263f4b1f743a2f93126ccb16103c733ad014b65d0ac780c99d8068089bb3a4b778ec63c80f6f8d03343ef3770f288c724cbb375f126e2f486529764cfab05a9565c2dfc07a43b546fc4a03f9640a166ac40e3758eb4841f7728a561e1eba6347867bd07c78f06683d2d2e0509e2530289fefa834d66c050df98cf6b0f111f7500652ca14cab4a41fa2d18f1c664626ba70f874a8365ea64d1e1e8a257a1d313a6b652cf6db617dcd22d74378159ef1ce25258c76e1e676aad0722a01e30db706e67788d558e44bd0fb600b177d88096f96dacfd78b5e21300cd368c31a13b025bfc2a1d3d72551eb6f582a093079bc0388374008f389bcfba9b9d5f7fafee470ec24431d572c8f1a821349c25b84863f5ce28c7a85882ed2bc55f8de4e5abcecdfbc41f9e80a83a072d01418a2a544f718ec3d4f6332d1bb2aebb00c6ca66b9999e6bd2bc490523859f0db1dea63779b9f1f84d52cbf3e7dcede8214080c6b54916f512426bc9447266897ad4078118867e0d6746cd99378ff539066b246ecd123bcb3597c4acc172ea13c1e260468fe12b1696ba737e1984e9b593f774c3db1696be6964319b9f9388707bae3ee0858528e3658741dc271e80974045f3ccdcf5c271fa4458e81023f42761c5eb37375dea4e4d4d8b1de0b4724631cb35b0043e7ac67c4edf767115670eaf50370af4cd2637de6c760e5750b8bda3c5351c16a9a5ebc02e2ea24cd10e9fe31deaf0e250d869f933642bcb9da2dd7ae6d92e3c3242c2ca4908bb60f19d68897616973b67dd1f1b037c460f7181782191858f2003a4146daa41901058972d7baf5088dd5f89f294ddf5d0b6af191f36df14250213469c2735942e825ae6d36406817d2ec872e739cc1cb9f0bee817e95e37bb38c24b9bab958654afa1a38dc4c3155c37d1310f014a5860de0637d0a48d23331bf8afc9f5cef164c130ca4a472b360b92d4552f083d6ffc381f8b033bcc0550c42ea706ca15026f0d4171c06e6e3ed636e2d7cfa92856ed74f506e48052766ed8a0d216e767862960f698a7824168fcb010ca1d3a46e8c04ec7e45e1705072d1a554a5ead50980fc7dc0443a2f51f64bb73fa10f183be1e8c4368441ddb9cc5c47845c02ab67194a7f27a109036ef7c44c33ea236f799350705cf63fa5a8ed6d8075b8d483c41a589c4ef7efb716cf495f839a1f22ae433f35d4c5abbe7bbcec3a78ad021babf3e0b9ff84130557125622e93b0795670617a426fa536430d1dc22c79ef99b0474f5fc4a7812efe5c9e2e9f1a23edfed2340ce460b118525836600127c410d977d7f2e9a89a6b571289479ee50ec969a026d8054077f783ac7038fc45f1d7972c01d4ff6811fb44dbad8a5de90b39b8a8c055e25ba81b4839725ae5f33875d468fa381a5866ebfa41f21cf2bcd32c0a3e171ca4cd5ee36fda6a7de9f0c630430e796fcae444eddb481d8c61f7c1c1a6b6b6df269eb1c69ddb5d6e2c4bde345e22546ca393c69f48b4d52019f1cd025393fb97d193b53654aa6bf784c660040145a5d5da90092751a9294b526d087323a04313b76cbe6447ab73707f48abe7628a2d8e2b0a5de8dc8e7d4baf10cf6fb714170a8d0e808f9b00d1e3796967ea69bbf899bb84605751b423872250ad5e61d0162613a0876f1c0aa27c7c9dc629bc9ef8fdbcd6abcd26fcdf55e0bb080028cb3de1e3785a3320ee1652bc1a553fde8f73da96ace4c55e5d140bc4211918ed8694dcc5d974ff47276c8c157260e9099cb8042fc9f9a258a6a107023ad1f91a1cef61a74521564bee71c2c055606b183fb3e5f02c21d21f45d8c3dceb63edb8779d4e54668ea48b3d283b141db2e76e2cd4f4f609d47125519bb969771a27a129b0189caae828e9e8a63295dd30ef3ae37ba1577c473d030e100738beb0de7e6aa5e52e7f968c8bfc4709adfad10b5d2901740c54625168f306997e9ff6a4dd6b3089030fea08c28cf13a58a35e43883a9feaa5b6552041142f20a916a2b4bb0c0892a4ccf1a8707b3bd537b359cd86f831c655102f69601746ba8a29cd9a089cc3796df03360f77c6727dfe70cf7bd1ee97bd070a1b8ff7798ba8dc2e1ca6f09c1ac987da350d1929136cd346b5347b4aa00aa08b1707ffd7ed550b167233ae883db4791025d4d3f0893cae53d0ee29569290f29b0f73b691f05895c9a2c40357ea89b2fdebe78c41e14f014919d17cbe67b0fe6fa854d65c7a2fa0804dd88d8638caa595e49d2bcb1eb6bb45aa447c4f6ff29d308b7785fa01213a796bf7f61237c38b7d6fa76cb760315659cb37e2c88a9cfa7d48353a5e160709aa599f17ab5076cf9010a1aff139e7d908e73c96c1eeda61568730981f77f749455f6d4efa787d9fd40630cae5ce4d302f7cb502afb8a092b1a0447db8c42d95be45ad25ca5db36cd0f24768173e21b968e7f38503c70bfe56101b8152b3e1a32d922a58fe48f8fa01802d578ffce70178b29fcd877d58d2062a166933fc33d52c611c44d98beefc7a2ddfab7b17a455cabf8acab61554a4c1e649c4d228fea931d30314849cb63eea6684d5410dc66d24fa96739949aa615777b13a0849df0f9b95023bfb065c29379f515d4eb24965f0da79ebfa7af2b3852ee22611953769bc08b0df17def102abf69d9e9d2ab0854760e6ee324c6d35d804f0069d65636227f3004c20e2b74a1666b877e0701f933590c14a0693251fb7588d16d011de7e13d98b07a9935ef81774938d1f8dfb137ef0804e32d54efb3566ef86664a6b8d78d19ff938ca4e067e6c9bd56a635ba2884c97a074fd7e5d32a98c6ac2563323e1d7b40da5cc1f7a66385ef4badc4fb28ea729d6a406b13db81f59251659084f059081828fbc0a287f21a7481d8dbacdb4cd8714741779ce7f0b10d23bffed168fe6f15298797240be1ab25efd139f8f6663e275121659798aa25963f01fb9366b0eea86b68b02f48c74ddfd8f7d326a5bcdd419a78d76dc27507ab0aa42971abb2fb8f1b624d62e13980139cfdec46acd5a48fcfc5b86a5e940a9849b14c16368fbd87c5fb40b8f410d515fd63ddfc55c529e5871a4988f6b1478222f54769ccbe8ee2f3b735fa774ab209ee535a968e7f5c73ae0b5de7c384522f475b368931a1de116ed780a373343da60ddf436d33d075b54dc44383d1b526a931061cebb55f946b2b415547f11343fb2be1233678bcf7d349560ff71b11f5ea8eef27435e40088394228db93f8063dea3693be95fa1569f3b3c91b8b67f0b77d4a7523cf67d842d97ff491ac1842f40f10eacde168aec22d2d14732daa332ab4a4c30248538e83dd7afd1ee5d712876feaf7825829e2e7eedfa51679ab1d7c340f9d40420378b49fc3fc42f72a9a0ef50bf647469bdcf7149a89c14818c0ea9b5fee05682c065ca8a9032bb556e10a0a2e7d508f1d60276b6a8186759960374cfed62f261cbbe8b3e77cb01b01c412d961c16cbbff5ec6c655a18f3d99b0b8ba2b4aa9480d626d4534cf488116b5b194add0074a593366f9f4c8ab554393017f7dbcff227adc4f71578342e2d84814a1c949f6d51703ab19ba4460a1548b29a5b52b5214a1bed29e9cc43e8b0590aa3070424a755fbeff2c6ce21c722042d196d7192681845c6f898923b56e5f3a7370eaa6dde6d978e89f788d512a80fc498c33ff338ec7f0c3c600de2bb10c1afe00f096a9ae8df2b5e49cab7828c8b23e925e8b46f8ae63e024d51c5cce6b972e070373aad3419669fce258a3be7b3bbeee648a0c7caae41e311bdc63f25a49691a192ed222014d0071e3d7c64e3592feb0806efb75f5e4af2e6fed4d7d0bd43c4a7c60c815cd80ea50fcf42c7e4f1db51cf0abc3e13f4bf91a43f6f18e5d96161b5662f4ba146e2b2f6212390058c37981ccc6b7f8a188d957f03d955e9d64080cb8010b54d350db79d3f32b95068a570ea03232c72c60631d150f317724b11b487dc910d98e2cb9460ddd235a8dc716278e888689c0d5f78ab3b58c904794b17c4bb64d3d6f28dac34b8a9ee8a1dc6f6bfd1c2e413e4b24ccd3543f6eb8e1b962cf0657bead354f86f08fb83acf0f2d15cdb76cebfbe9efddee249045cc81f0360110d2c9c77265cacf1808e1c01c426620d8e9353ff01078bb31d4e49983b38764b57ede033442be57fe2e7eddbafccba9c67435feef3aa6476bb9f59c22a7186659791f24ea5aa27ff0350e301a756fec499d85eb9faf9d2cfa601d7cc6976b2f4c099c6fd140678717c890ac470d7059e7d3e666acdfa583f2d5f351ce8cf7e17db47b09b29b6646db4334883c7dead3bc7d0ee01dcae538c3d49b1714f3c113d06102aef49d645173306c4f207ec6eac2475bc8fa26926eaab8daa466e6c34ab10668fa741b86b382e92b2214397f748cd625ba2b58e697d0180c69fda71d034cc0670d4abb988426bd872fd41b642ecbfb6be68dfa4f340707a6b6409871faa6e3067219f101d3cb77ddfff917e482730104661cceb733c1c8990e16b5508a890bb1f9e8d2487295eee1701bcac5abc493de597d5d9cba5cd5af580949919869f4f652c32fabbfa516fd7e11158d2757bcdf0f755df173d3f8a550f91664ee1fbfd1fe2e59ae2715ff9aeea4f6e5041aa73aea79be007519d9e80f3fc68f329869d7f478fe0119f2111f54df2cf7b560fb1b47165ffc1567e032beb3572c540c7d5233034db0c556756c31459afc8dd76d68875c38a133ee99c68d6b79db08bcbe71bd7d43beac5e3096a2c6a472c0df4bce2087fe04ae6fc39eff4ea505292100fa2e449a20358a447dac2e932e04d7d18ffdbd3f64116e120f3aae0392e635702f6ab8282c7bedeee6904bc2880bd57531f848c8fa136e125585af4a7a7f206ae99a126a67330b01e99d67b16e0f0f06f556418d3eaebac9ecaf854ac4e450620e22a388b25ae4efdcae411eda11fb962a74e49e12de23e88b8e6e8c72121502ca28ab80ec0a5022692b0cc5062a8d2bf2cfc2be101cb922d31a3bb9f5171d85a0a03cc4c51d0a2ce10fea4c1355bb710ada6ec0f11b69a74187f2b1c63f9ba776ee670eedb92f052f1e90992332cd3d3da29b248ecc997d73887e3ff12e12feb5b1939f61c73c0709582ba97883728722837edd1db6f102788d29df604047d15a1852a5dd7fc7c74f30d392c0a8534255713cca7653257ce25fdeced943975bb6ba8593235be0f4f199d174f7843c720ccc6baf0215e17be990c8d2c9236224392020c2760c7d5610f539f02f2d083e892d69f78c18e755a0f356d6c90a8306674d83c32907c66a654183ed03d261ae20ddc26354f38aa3bdf0760380fc09bd7f12b225901dcc213c71318e05bbebd80f524cf5061ec623cf5bc895b4a6077976a7ddfb9c0cd3fa783259354b6a2d9f284552ed221b78d0b55e8eae65c02003e58fb60c50bff4d44d5bbf786a3f5cbd49c3cc914fc3c602d082d7557c3f7ab7ace38536e001bcf52eb0ef80154322b310e2ea795fe7333d0ba333dc1a7a853d0b9825e34ff5cc055917311b257cf36bf141a2decab2f2adcb50466bd0432e09ff47d854ff60e1443cc6d6dacc027bc112c705ab3b6d6c3de3ef5ce27d4d129fdb066237160be102dc61a8690c459a52b319c974404180caf42f8620ff20f9681d46a8953f4291f3de9ff279d00cb82789f9f3390a83d0f9d38050aec674c5c92bff62cf37d43b50905fbfac7db15ec9b8771850627e1f9e770c312d2138fe017e607b8c1642c6193e31f193b69ffac55c595da60862d4d14c2cfe9a6558b3398ed59bc10b4a1822dd6fb02884f6d44ccefd2acae2137921c5c0e61af9b6845095b45d27820b326e1306ee3ae43d05624e3e2bb39362187700f383b59c51594cb7ae9af7a6e004d2ae29e9ed089968a55efcaa2f352623448f5c54666a6b57111956291dcd7f5a4d181bca27e3145020dc777335c523570d541bc674e94c4934374829c23a70308b1932cfc1e5aacd9156d5f73da866de9ec2d3451247e2f3f3002408fb776a822a58c313e8616d49869e70d2e7926ab78c4f2c95e286db19b74770a15064005f43ccac5d10198033f1a16ef1b73e2fd166acebec28a489847a9ec8537747b5c83997872a38527282e648560e37180d3acab42a72ecac8dc39a281f1c19b64c8c71eb8535c29c8f8b60a4aaad677de1e20a0f21a524e0bb3e1e91926c4021f3070eb5de9d98a8df57c41452f66e5ce73d7900307c01ee5e45201abbbf8f49bfeafe78720bb61856e7752389ff5d32b760488343be6f700a1c9e55fd535ec4584387630c08a2a48f89f1e7efab7c9de516fa1771def7e4dbac84f8db1de0015aafbd1f2d74e64e65fe58fc43a36150672689ebdef7b06b565ce79bc4ec2335c89b84780985086a74e81da4c032429d7852bf47e1a2582f5aec1f1941b69e1bbc90fba5fb70affe6326c8176e8aec10e07621ce08ee5421e74da75fed5eb0c36720ac7bf257418746f2b2c0c9be338ce9c921f610c33f0e07782f4ff6f79986d5c223f8c36bc2c78c90a562098454679df99a70d00195f6aa67023b00fa611d4d09cabe9af0010edd6aab27dc4e4815c7fa245ce20afc7c0c329fbff440a19da43f0dffb49304d7f0aa4fd67445d6fd57778ead94d8ea779f40a51468df59c9f68f9b642929d27db1b62b28faa2f28889ef015c1b547c2a7fa8b98ceff4c4e721b8d7caac45aec0866c1e62eda03a822517e99d42a6a679d36aea470b4ae2a2f97fef10c28943ea9861b09ba728bb660b6bbe5b2f052c88b744bf24caaae05561feb1a5735f213b9bd71892f0188050dd475e72c9740ae547d17dba345b4fafa7aa952bd9e0639a2d3566ee4e9ad19515d523d2e4f36d26ff1e7ef1b609eb3b126823314ba667be6d09e7c435b4d6e68e5a8f1345e55f2a71d50b8b8b105b87c9be2458431d77b36ccd6f89235c8512dbb2d57f8c59f560879332543b473d0d19165422d731c2350156be4658e3d17ab99a5e2816e0bfeb8868a7cb38627522e5d2d86b7307a41f3ad81341c03ca0d7e571b4dbebf47d47a90638207314b6b00686d4427b56330750f0121d400e9d590df382d206d0d812187260693fd726374ab708767b3ff731a9774e56647d00e850b4e31e47f422588d47691d26fae2c91a9cec647376c3061b1a41f12ad3ea960b18424e474d5462a6b43b3b083d7b8eb3cd3e3fb8ad176138ee32c53af44e90cf24ac6d1b3f3a0fc446c2b2d7211c2136b646c59ef7a8ac5a4faf92f201651879cab5905e6c5ad9b39ee8b357259ac5051ca342f48cb3b5f641e6cd4b740095645d8343e36752b1b57a0f6e303a6a7cf32fc24a3870bc0e3897e96712d82a1225701f8be67aac7299b091e2048947f23a93c985b761fb16454f89dd5cc893f1fa3aa7bd95015c9da68d57bcc35ea31bf25d69551683c6931093b2aadd0f37ed9acf6a408ed91f11101f562a2e2c5f16fdecc66dda489676775b1a2d62b09fe66ff297ccccf99f5aaf8488601f66f11b9cfdd0d91241fed97d3c0088963cfbe070f039e5fcac771780e6b2b245be54f17cfe37e425c0de47acc34e25519300a8afff1f835d63680fd56064190b99b6b0c723e7411d0b183ec38d0aae036bab9785586d3d50a0d062a3038681769da5820da23528c36df7f3c9a828fb0adb085ade9890d6b9a3402de639e6619d1e07f6423cf824c9a40d2818f575950e4989742f107de5cf9998413d3c68d6243afa58f2dff4bbb6a97c5c6cfb5f9dc23aa7393ff18ceadaf4bbc3deb8791ab6744ce12d16f90fff60c7d88ad8a30b82042edb1fb6c6411d873e295d3e86ff5ccb94ca3ae8bd5f6b6f6baef56ff9d9f00356a9eaabc41f2f05d94fb7ec0f69329e3ec74e0900a2d326d76e99ea7707e1ce2b7c9e6a3f47ee0d8ab2d7f8cc651eb5cbaa2c6b617062a51b3ac075fadbea8b53d0b781e9091901c608a42fa6a2fb46fa13663a7273defe1808c6027a20202a7fecf228e09b6dc2cc97221bfd0ac131d90c33861c5b993c7248555c7a15c9d90fe9a8a9e5aa990c10b915d04b4c70e248c2d9de995d73f8383c28cd130c13898b8e6c402c079cf7f67027fa945b4782c2a06ec557cc466964d2bf2cf0ec14ebdfe615cfb1133491ccc415e202f1ab98e3c738ea119238f3ccc569ff46181e0b82c4db4e1d997566979b1005abebc940acb548ae12b96ad19af931e1cad7869c80dd8228e000126b3b93d629afb1aa9f487a25701d6ee99e4cf2f5b9f207f73e11763352830ec4e195996180fc56c5d84d0615352894cf5b67f2b1e91974da5e501a8b09f090edde5e77c5366c947b3a2746ce229b5754f6427e403fcb271e487fccf3d74e0fe67009ce4d32c4fc1808882f1d4b65436887c30ac2a06f8c8c8f48d1dc75e1446f6e02f13305f0ac1c859912dab3370f14e7959902351550bd14b3d5b84eacd3998c630db20e49958f0d8366044fc900284d5e8db58504fbd6975535a2ee1ead79b6cc88bc6831f661b1fee9d97dcd7f598338c12befa546a75c7bc86c784b367da4df13f70a59c5bf9933e95654b7701b41963d33993a9e0f46e7281411e4e7a3b97906fca7bb82652c94025930124c911c6dd1333e8f7340448aa6fbaa75ba9380a049b41bb86262d4921453133dcce9bd98da9878ff74c6a6ae2b40dd06c1d8a963ad52aef1b26f73e9c57fd52286f2bc6ce8df8781d3c4c68912a05deaf4ef510089374b5a3ea63672190ae97c9a0c79dbd339b36ca5abfece9fbea88aa5596e65b889133a3e4a75410da0f37a8e1df3926aaad3ecb29aeb83184711c831a4554a7c53288733fecbbbf9f48d272d6b65926e6491c7204b34f76048735d6256dc1a9ed16a62193ef707a785456133801b11691fdd576103235c6ba2978ab05ae19878ccadc36f9574c97ce3a5bc3aab4ed3070dbb7ebfae002d7ea4c48794deab0502b6dbe03c1a49ee52728fd3ec92389993e7464e8d8040e60b211d75bcec5adb4a19ca20af1f2232c652fc25159e12e858f3d07f08910093953401a8f70c11236df7992bc2e113e51b20b22a2296639fa6133b6015f802d6685c2f6ecbb59ae21ebdca7b57e82e05f47ea7bf001c226567f62479c9d59f1f0a4742eaa265f3456bf9dbdfb08fdf6b477a6a10fdad90e7a3355697aec35bf22a8f84b655ed7fb307d0489142c045faaa914e81c608e59c6f88b82749d9567c46aca74b4e1978b741a44795d277cf7243127e1597f2e5a3ae676b42c162909e2acf12f010fb756d886355f41a24888a64d5dd10af3515f3001e6911908bc84e293c988afbdabb7d440a2ec3de96ec06b56b4b9701e95e5ca10b6589c2733c81269da2cfc17b3d47fa89dd30503200099ee675147c9e6f97da5e3a7856a4decc4b86a8961fa3d2bbdca3429a079ac52ccc29477de102741b598f05ff2eaaaca957919242adaf4e729ddf8d1e04b69a669486aff6a0ee039a66c9961c66e0d6d5f78f3a1fff5432c41265936aea1995776862f892861c937f5904d376a339dbf99a02cc9cff84c27f206c5afe488c953a574c797e99f22b5c917e5fd1a90f3c17a4868d0688696a13dc911ff02f1ad4b6203e9d92f77bbe78470dca7c72009d61b3df1e7871b60921a0d54a6ebcaa148260672a3aedff2f9764f8197d9a0b6c934cceb6820a41476eb1b6a9110af53bb182dbf95046145f6bdf102b1cfa86a5afa8b08e603fc927f0460fa9563545c88d7ca5916dfdb5c9b6c767d520679e66bf673ec64502185615b13d9a131fa4651e5c8b40eaa278c771c4fef3acc35ef76d167f79eb68279911984ac9da9e54eb431dd2340ca6c72e04c2da65412db02aaa3246250c507eb8ff42c1d25b629f9340317ce8b71eee0aa0c015b2b905cfa739bcb9db63c6779cbf2a576a132b4028bf070686f89adfaa5ca91fade9b6f6b4df65a63848c502d2d24b94201e4713ecd2aafce1b7eb28ae4f96ab46476eefc5392d6ba2fe7220eb3458363b121c138d122a188c3dc60454f7ef6fbe7479cf56d1a20347d7960a7330ee392fbb02e0d5b59f7881035d8439568b8f438c0d91f38b1467eb4194f28f7a1558882f831aa7bf0679b0059c10180c66abaff9d238887a05ff23493cb18235efb163adc0a06a2c8099bbda391161ad30f52ab2c7627ab44e1ec88fcbfa08277e4418a7a2286601e56877d6269595c4885c64ea809e9c121cad84d8a058b988ad0a3afa281c58f03488f3e30250e87943cfc4073a2c2288b346d6065ca27b286622eb28fee3ce4399894dfbd1846725fad67fa2b818870e0aad72f9499e1fc776431e6fa6a6858f5c6f1f0b56126e8f912a126053d445f27429a596842da82b1c3b8308ffab9ca5d5c88a2d39b0f44968b0ab67222c6b93f8cbd844ddd50399d933006183ee22b86c54554eb39885b193e8735332df26b7d1ff4639c8363ea53abc87a8b8696a1b8dfd51814f19a6bbc18f5c567ee8d89e0a85879c50fc1ac149cba1e9453d5d262d272c3a76a0e254872e1f54e8fa6da6c8d2220605305dc398214609f1e31edd55c8185c46fc00880f28beba2b50b042b26b20d8fd7f26fd662142b0440addcbd3a64e6ee99bb583676f96927d779481a06815551d86c063f27f230f73f4d056137978b57178866a9b6c8acd9cbafbe310a4c336c730d0cc6280111fd237f90c67e4f6815889ffd803bd9cce441ac59e2aadd6e546f9ac17507798d056b2a421d381866b954c30d33a932a629b67e2745913efa188f9bbce163bb69ed44d12c9167c406883793d6e073e31f74637aa4a17cef9a1ff78832e2f648c7f8c9b70478b9a25d5a31e2bc1243d436121cda232311f913f70cfa5c6ebbade99e2d4a5a9b2a872a1b1fc75c65337ddb01ea09c027bb0ab8c5bb00cfe363edbbcaaccd3b997cf926dd2ccdc64d98cdaa4389d8e3c46a789810929302c1e8d10c233932e1144928018bde47eaef06a82746533c7a4b9f35b3138145a19c9fef52a2ffec19dfc42ab55b6dfc6e30ea7f74b2c79ccf9d08747fa68bb7210b8557073f3fd7cfbcb3a57eab551aead27af9f716c1d528efcf4723c5755ddd767ba5543f9a7b1c112d10174ee53670c3efa51b94b73a0922dd298c2ae4bc7585bafc8404413f0042165cdf82fc68e9466646ef85d2a9b52bf523fe8094b7dd275c84288aa10f6fe14c5dd5f3e8b2e30e2f182083b5a1f4b0072bb58e0004fb9868578a1e1fcb8be370bfec6c5b2d0318eef1e9bb50ab89fd834ab0e625af5527a5e6f82f8a3a405eff949692ed2338cb902ca715293b77dadec10b53bf024f432daa9e080dd7f2810c25b850e8c2e0b405d1375275fa5e832390fdc7373e6977f682b358897fdf88ccd4f323356b80cc556eba9346d54c0472b377c06d453348058467141f388a523f6ee723496005e37bbb98d321df49a1884bc3561c19198cc35f2ff429ea6efe3161f569f92e1da035ff641f28c04a0a8064c94101ff7fae10b6a2b278cfbf572df771fa2f418875f6789a371f37167e03c26c143794808a9cba3f10821c3a9a6a419e06c57f5a6dff47370620808ab3cfdb8f2aeaa4c2eeb90405d1ac832bcc1a55bbffa814c3471d27765a5ed6edb3566edd96e20e6f108402df41b49faf48b75484ce9d37936b2f26672e80731901740049f18de88bd5eb2f58dc4afdd7a8f9198992edbed64c2602373c57e2c06bfddc03177ac292e562cbab5e054acd21318a4a10a4805330476c9099e3d7660d79a3b2b8be3c14d05fe246eb1c9964761289d097f71472a6beaa0127023697956632f8ba77250559a15ce9e7f270e6eb1edb62586cfc31cd4fcbed345891201cb9f2834761f84bd88f6ab147e6b3f1ff90139f9c6c4fcca9dca67f6f4474b102eb1d4765f13ddda3746d54e44bdd32806a9a8a179baf0f8d75593777e79ad9eb9a370db4ce21cf5fc496d6e521ddd7f2e86d2fce6bcd92f1dd8028592154f1a8734fedac7795d4c039d5ebd66d4ac8475a137ed935f20c7fad6ec11db1f86058949a36165489f84d9cda1b1bc1d4e247187d32e953e61716bb585c1d0454f7b965292fae8b22536dd70cab60356d1dbd744f7011c840ea57f5b80a17340138bbef39b38a34631fcb4ae8d262656ab1557b3d74e09da980adc68b54c5eb56ba9716374b1522367425691f578ca5d4cfdf22220b7694610d9eff4fad493158fdef22d1c936252b49153004e8c5ae8b53fc55dfc7aee6769d559dc6d0a439d4d709b116e3abb4ead94bc8cda7b0bd12c0a96a151ff242377453f06983beb82d144028101cfc7cb7b12abe9a1ce9de7f714f1c7c24357c98d11145b5a768f01b6e6f2bfa3da6a825728ec4d1186fb56378be287c83bb728ac1f2e844241a0d5cc98b9aab6996b7ecc14b7b499624b294b767111b76681e3bd0002113c7e3206caed1bbaadf9f536c32c97ba20607bd2711ce7fad2a83149529b060620ac3c8be317fcc60c721d23665f16c9e7eb87b8e591da318ca5d60a8cd6c7acc1d3c2d7a06e4483f0186f62e2ba305649189c5e53605892ca44ea79e249bc821f3e82e1c1583e7aadb19f0c574c2e138adaa6efbd425980613fbab36ff49733b6179e15246bc89971830913c0c225e6fd33bab45f351768e60d9016b5dbe6c9f4cce77d160878dc2a27e19edca99840bc821a66df08234e37b482e1cae6644af512098d2495c11ecb228a57c43ec86768f732eaa843d810a0faa286e1fbe63bdc46bf9e852e349d15c0a170c8fffabd3dc7839f6a8190b7184ec66bf453b4eb894885d61e9e21438073e1729f784790935607c7cfded186c2a6b134916d591421f72aef18288cd68f97f0998c659a81d73526766309ac0300415da7b642dfe8ba7e3c9c37af67b4893f119f69985e1e16f4bfc24a1dbb04462575658584d7a752252839e0787f818f41901f5080e1d52f35e165003d5c0f8281cca9a45dc44769f5665d33df75ff7ed753aecec1308e456ddfee4dfb559bb6fb36cfa647b5777228cee24821962f8350ed090a538f12a50724188e273c645315f4da6267f040104edf9029bbb4da1884407f8437f5d1665d870885f1bfcc6b28d3f367465ef32dae8fdb43ffbde9a58f1ae539793f6e4b0e0e995e1faa9d4ef0cbcf8a924cdb8d04b4c6b1c5f27b78382bd068555baee3664a461831989b94c420c1bfc0b53e8e4a1b26a67764ff9d721bd676265bfd2d76548d3ee2aff5fa8c6f28673111195dd8108568c5baeb5928123cc3c1b07c07cfdfb5d1b71a90bc96b083b75ada40678238949c508ba6ce3af28e601b3ff5c087f63876b575fd2eb7323053775f5487a6dabf336946eda37230d3afe6a75e16af37a9193bf5ed51d5efbe577c4527d4cf0d0b8fa8a5f15c3a0c86b2984c2fa556522afdc5cf3989be38b3f1489a775cc80126f4d1a842c5baa1e214526297cf14b7c8c4b7735e9d6c05dabbab4df205c54961c71b8f8eb3088e01a1a670b2d7b5f7f042960fea80d5a4b7db00cdcb715765d11897aac6584687657e883a35e36f6bb2e461ef2ffbb4694e11a41c08e8059b623f10c48f63c62fb5a371680dbcbaefc2f43d32e52de3db301729a1b604cf905eaf28e369efd2b04c8a6bb11d60be37de8897e2fd350db4d073e1e0ecdc8d430eadbcce1c2f9483546647d3dbd75abeb905506182853505c63ed3e3fc8bb6c544a55ec2358f987e91434db7b3b17e514d2f48f7319c7ef30eff72cab9a0852645eadbe45f34bd141f5de7b6dd367854ba7fd6658e0ab2ee66dd20f2bbf921f3cc5a0563ec062df41b6c9a4aadd81c262a9683ed1f5beed2cb04acb8ed18581103daeee290630e04d67226f6ac86d5c680cd7cf4c79256d383aad62adb72a01eec6d9f098d5ce17185b645b64c52293358623fcb8c77479dceacd1f35821b2e43b825223eadade6c6fb97aa9226edb450e9c188133f2b5ab21b3600f488f34a18db510c4fb0c894345fc280833c53bb2bcc559bc70effc2b5eca18b6d2a609fba4f8f44f77c93b8ef7d642011a633d790ec454d67642a944ad1d2aa5e96bc51819452dbfd7177f3dd9e1579be6ac226caa88435614d0c29b519def4c5f36f85425bdaf8dbf6e858cd02aca16c6c9d82a0f18c5090080164047f2e975e9ffeac708d3a2b8be97695b2736897676ed49b9dfda9c890da00b0cb6da8a832264cdb48d8779e719246a6a830fd4033094135fd6b9e636240a4e0349526f4536b5bd4b736cdfcd46a88de2344fa8db7a39fceb5b724a9376f7e51aa417f1a10baf63cf530a4e759c4be80b251ee82cb392bbd7183039d952a0d4d1ed64f506d9efe23b37f970187481518b39553343e89b89c2f6dcce66804b8d45e1d55ec1dc36cc679e462ef0170344a83a53bc23044a873d608da8320ac65e235db368ec238efc73a0203508252577fec225b42f66ed7935d065051184cc0371494b774893d57f30bcfbd03c7ab000091123fb60fa23dc7977917000d8e9ddab549cbf957485e17c342807ad67edd3919d1d5c4c847c8eb7c6fb1b6b756bbcaac63bd1cdc9f8d96cc9f91fdca6af5f66e6ddb2355d6387d4229529bedffda6fe0a77c0907cdfcf445c8c720eff421ee021081d34d0b73b54b3d84781a1ada9dc628a4b59f6253f1a3cff7e82c31014abdfb9015711302df5363c688e3232679cfe23c0b273f68c0e161f6548b019e237cd5078107264365a3215f1528f8cec3cc51954f6d0b2c4565a65b88c2331130e4a70df1d89d4ac6bfc50c642cc8cc1b05040cae31594015470b104163e85a9f519ec28427b47a3a8a0b92dac1276436acbb54bac573e9b83af6955baa5e254871e2e681ac5f42219834da9a5411d59f497c6df3a89b46399e8060121f44b73ac189060dcfdc7e66f426462aeb94eb0d7a16135d140ece4e04fab9f317cd83c2da92777bb26d75957c8d170caff2d1572dee417551be25c2b0446cb6bbccead36a25e3a2f523bc9b6fe3537b3fe0aa0918ff2e90d41ab5d8203c9701bc04cc8b426fbb2b25601df442b472e6b5d3c2dde368e1329c36b3915b82af2137dbe48a5ab8cf13af4b255dbd31ea11473575a63c08ff3d36ed69a0982b7e2faf71b27cc091d7944b25c30144c6f1e98e0ff646ca67f3c1eab89ff4d3cfbdcf15e475bdc50b64f802fd83ffc56f99177e399c256d93b6fe616073e922ccea2b52b84eb6e9ed064f7acaa2bf7fec7dd2bee3d796bc0744082041a06cf8f1e45dd44b8bfc02b1a584fd52817f2c16f6d26828f8fe32f5863cd938c5d2c7cab425f6dc1f78e881bb8e93a5c670d684e54fcd58391b4fcef43c0c997ab715ea08541baad4dabb76072ce6ae8beaf03e48c627465dda54afd436d47f007c5b1c7b52cf55830d6a3dbcd561bac52be9e131182f46854ba40f55c86c7935413f3c9ebaed553f9b9fafb964f0c5a03ee454b8a21bcef78881b1dcd9e4f0944f5e0dee6770f7d32e058739d6a63eb6e264ada03dc9a30d0b1db52bb8d96dc1f7c6265fd93ec0da79c5898fbf9ebb3dc1bb2ffe8ad5eb8ab90e70f448d5fe3fad48c56d1bfcd93dd5b11f413eaeb15c0056ce58e6652cffa6da783774a82e27db165d9d836391ceb88932e5f75f2c339a693b37adc4fab139a31990d7b3efd663c0c581bda3de40fa8ad3c2f8f52d1728c2fcf55f6d1ebbd74086b553b14dd513b6350e3a768b8678ca52b18189a5b85564134db150477a016b7824e73e59449451b33fddc3fca5183dc7d9a198d69544c402d09a96e837c02247e4a6130d6eed2a9f2b30c3611e4ebbb6088bb3a3879d471820da2c293de88772a098d0cf96d9d2fe238fddaa3c8b3ab3cb197d22ae8577ecfb9afcb82d91479cc0ad76cbd76793ee33f5f0e3e89ad0d4dd55cf07353cb8977d3bd98060e117840d167f0db84d406970401cb2938b18074c16b36f9fd560d2658a28f3aee83ffb01f39fd96972dbcddd32018d34891143f8288664e979993eba480034fdab02115f30ad476c5814c52236c0d85a16a0add772a1900494a81249ca00317e44b34c0c1b8f3ccc2ab24562f35da56f5a01fe1666e4700cbc5dc1ef9f7674f1fa53a82de533f9084a762ef55562b17634c10f12f1430c0c7be8aa9798546cd20c5eff8408a3cb350afaddd7ee636cd8ec151e393db773f5bbd9e176a34373d86ef942dd0d79b9e271371ed04fc6bee281bbcbc2cb0964bfde1e396a4c18625e8e24c29951cbdc14718e6d5109b008280824564b993934a23fe2efc18fd47362bfc5617dda8e289af3a913c42af9cebbab95d7a05ef72583571f7cf3444111c2d7cf6631862d9975944aad75d7121705fae35559fcc29c10be0ef7945100115b9f3c54195f6ba9878e79c64132a7fe77767413faf8cbbecf2ff69e85ec340b5692343cbd35c12b18aabc308b5d49214f95c8abe9237658b6f43919438f0789c7154d639c21103181eb034aea16574d9b6b961ebaa798d75ac2904f37e5a683dbb687f10e0818620bbadd332c64b26e0a1f4c6f64cfe00b35e9c5c8265032b1bb6ba5b13d924d0d200a10249cf5b69919d56f2f8ee7d0400c4ebf7153181646511f2519b3bca740aec21d724ced7aa4b820ab901cdfea9c89112d9e50021c63c6707ad027f5ca0be19cb4de574ebbafd938b3e9570d8be400d97da0ee86ba610153c7075ffa8b175ef3946454d98d904b82ce7ca96ff4cbac78721ac8c31f05fbb8e42c55b32556888450385e3540005870da33cfa96ae16bfcc0415d33b05a0a93a45bc613da6ac668304cf61c63649d63fb0284a9c4fd576ad72a86371c8e8b2f43c27ce93027d0c7593926a6d69e87ea5795b61888c1aa80f605d1ba68fb1af27697f8a409f800b9405fc44a2b70c283d640d237b73b444da8326e7171c2f699e87c63a02d79cc10e62da48ed2f97597ab3c57c2944b11186e1df36974cc03a7c87606755b499406d36a35de4966e5a983e8cf04168af815d21fe1af84864fdbc6fc0b1a881b7f266d8cf96c7b67bd124bb3c785236d119466f2ff51edef931037f4fda1951cc8518579c4fd97d9e6e43c8848d5ec133e47a9aa5bc6f49295e63884fcb22e77fc54e4941241b888a31aa59e107b714f37d474deb8b9a62bd3a6e3867e6b8a972ffcbdd03d0c48ae1a206fd72c0edcdc4a97b6b6dc5d3ef0d24d5872567a94b46765a3b0629d58362de6cad7bb3b395799a1c98d7ab4b909d19699256f2e028fa054ce49aa8645a150c2dcf0ebbabd87f87c14285b7475ea9fb1a2b772092d94e4a2332122b14c958c48dc2d147d4f797e5cbb1ade04c953f37555803900b7091ad9c274db66dba1ad056534beb09ff8030ec81d88848d7089d787aaaf897a74f9f91692557e5b306cbc359b986356bdfe5682a624c554dc42f3e521c76711beaa01733ba252670a55910720d4e62e0d294f49c7a5be941ab31619b07f28784a8196105c38585c29fbdfdf32b29c9dff18edb10cd5d176199bbec3d9c4b2eb6a5ee2867b255ad97b2b729af552856a2d69a43380d8e3582bf5a0844ad15b75115a79b3c343c898164ca54480b7c4111b33949585bd30e2e660344012ad27a9e85fdf6ce509e07ea1ad1d81816db8e485d029101155c57641e2839a65c77e5eb43ccd16f81f626bd74c084bacde9e7716266b39a463ab4a1f2055fbdc00c20ea10db76139a5b90e106bfa4a51f41d475c303d094b6aa0303775b834388fee4d6677e18deecb5eaf8c3d591d3cb4c956ae34c7c60fe071f5d3f19cab9a59dd9423c6e88af1fa1223501da07cc214b18724ec1c587951ba0b1dc970bda7dc0ef804fdefebadee0965e023312ab274d01ff551753dc0b7afc85e10b68a9f56428cc2267fab541213b3fbf509cab4daefa4c984e8b1480724e2e399e42086c67fecda7789d5c380e0f257e6e475c63c832aa4b17c31f83ba5d7ca5db9fdc57d4dbc9e8affaad3b65d1b3c4bf0b75df9f602ac32d1ea696219afb6952a294f4b540cce84a33242e065c6fadbd2f5cfa1718d26c9376cb66449aecd642d476cdd411ab79511ea6608cfc150825293218f7599adf85ca16a9a889e601a86c18290020bb9fd1454bf1e2524beebf5685b8b2ba9eb59fcefa66329670c5fe2ca4435c41b5ec4bddd9a69aa5727f8c7026cc337e7f5ea2b85d3e6eadf65d1da59921e9601684cbd6db98176793a8a778e4f97171b0a271463c772de46a0436964b32a57a00ff7e9b78ca13c743767b460bedf3a1d701196e2a87424a7fcdfaf115afcf9476b7992addc11bf5dd4485153818ddfe711c3fc14fb30aa9336100044e5a37d30d6d246459a6c6c38a28b0ee36c5f4ded811a115f23d4853e71cfbc48617fc8d469baeafc65234b2284f93d2a41953de6549f9c41b571867bbb6ff418332d3cbcc109f85d59203bc4d222a70ef70373f65e9cf0780289af7a3d8d168265f3864c5d2e933bacfa2424be11948b89596109584ca6e8ee0144c3d99a82cfab8846844f118601ab906b0b44730d79c9169db3822060b3fe635b51c060ba336c774dd1a5612319c004cd5a626743a468607a7cce9fd29ece8b85e868444b17ce733e80d2eae2e43585ed707a50ce1b2a2173dceff5f35b4dfeb79a69e18ae83d3f8445f0dd7f896096bd7e10383a59f95db4cd85ed6e54ca1cf899e13cd8fcf8d894fdde52f8598fb1581db8f2da9bd57d644127db11aec8803135259c6cad21a3a8cb51b86f5832f74d2d7da4c00ad6e04975e7986d4d7f5182ad6ac51225ea5bf595012f4da7a714ff27a654cbc5614843c848aaa8d1e71be240742e0225408d964430303d332924cf588f4c0bfb75f32c2907095476f00465ce5377a0864ea08f2916a2194b915e61d9829ba0af574d7d8d4fc61be6557c49d9b1893796a674dcd4a2d0ab1540da21721f9ba2889d40d11d15a03f47fb9b4758fb5d396fc3ef09dd2eb17340651bbd4d4d302171b64a5d134a14c2f5761d69baf6e087645f1569ae3c9430bd62569a771c3c9d386357852630d14d59bccaae73e88e79fd335da885dbc26e317a560e886b46237a9bf974c90f17e8d1a3193eb8f6a8a4085fe6afcfc6625155f230cf957b70f5b49cd29207405a11e9464718ee72a94fb48f6854e3a61ce1ad15b2be06290939e06c2dca3293634d1380cbea8776653dcd705517ec2d729f81f6402d57a065a801fad2f4c318f858e12657835c6477ac3168ca4094abd3e684a49eecb3f72361e2950d32c7279a81d3d6a36479bb03f1ac6bfca0e129b096f3fc11b1a31322a3603bdbcf5f25ef6983aabfde61dbbfb31aebf6a6438c0de64b0fb58146993c8339ed1575816a6db7850ad758ee3d1b493442e12deb80ae936380c081a69dfbe7b86cbb28d5c225733e9c7e7674418cc7696f6bc482688210a51cea3c76ba11c21c21d75191c1f92f2834c1a9f9c6d1be9ad98508e7b4876621c126d0a3b9432e15f6aef3241bebfc3cb8f2dab4b96f97a61ee2e7312845d3614d817793f6c40190d7b17ef2b7bfc8ce665fc927dfd178722fa98d37e58d5c3ea763893f1f46390b9e412bb7b986e6f26e6b4998a7b7252bee2a919d92a4f63bcbccf52f7a4236cac4964dce74ba8572e8481de412bb53a0ec1667d3f64526bce5b1d39b5a49449f20a6d274d55e60b0c722a8c3606a1aed9a73738d634bd51a4b4be81283351fabfe38d8bc07b96495b56be9c69adf49958224936770455c97be2e895476df55af2d69e308a5b1f898d2d60896055b8f95f99cda6c961be77245025b3aae7411644fea5d5ed7c0f9fb6a9d48af4287b4be060236cee349ec67d4e94f6da473e30d4d406d95c62c1e7814aafe12b62e4ebfa9b4421b156a67e6743bb98d4bd17da6eec1e5a6591e5b6215675d6704257ca0cd1f71717e12fb61f365c8309df3e3e7646cf2ca5bf8fbb0e602e769c5510b11bbf114744ee38b80e0200a059a64daa7b699ea04851f976a7ac131cc0e2da1375524def3476375b4c4fc0e8eccfb60fa14a03fc3ffd7d905e548bf048ea21d14abf261c03e27ea6d9ec2cc11f5bfdc6a379332dd8f0a6a3b5792c1f1921642c1498dc23802f39f4e43e8f51f3415daa93f1985ad00c9e8768cad571d2016f57b05337882a38ad9f4470d205b1eb895de995fe90369bf0b6c0d73c5923465938cf6750d0a46ef63875d8eb0958c48459bae7ed3d0e6f1a4ff0c876e86f23f199e98d6fc6810cc76de5161e8c5d2e502ef34cdae2115a05ce7760248fbf9d29f89d80de97a7c4ce37d6999ed4c65057c55aa5b6295e0897474a4abd86b58a630b5519e24a96a9c36481adf71efd55879aa8c91bca8fb488847d22a4c6f4e78d57010fec4e1facd832061d739ebca1a419e57741bf45df4d4b79d8520a19332f3d7d0e4f3f6e4d38c9d9bfc94e9cbd680932e46aed90e8c7916cebc1fbd7615653686564c4e78a9f12bc53fcdd921f705a16fbbbf7651555b8ea6893a2e8b18040b605dc64fb82876d13086e165019ffa80ac1052ec090d8007f9920951a196a58aaaaed2a7f9b87b5b738888f4b2a47cbce44248cb55d569e876e1bc4c26cc847bbda68fab5e887b0b8231a216f1104435a64bc5ab416a70951d8bfc50f7dd1e62115bc776fcfc050ce9347ec1a01c73b14fbe192bd3de1c76728c4d77f6ba45a2b380761068617086f09978fb28a08d8377a606e099c8ad9f42dcac63554b356a129a9e9573fcfb207b27baa436c6d4ddb4f8580d914a1263461e304db5e0815f7dd9b755db529032597b770541f8614d9d1881947beb542d2430c76a0a048610027fed90b544277276bcceab9efe607f0340466969ba80f7ef7b8b91fe694ad6f472e2c85a9068fd15ca7fdd3a7398894f4a3dd4f74889d27294143d5f3609d97ac3323c6f3d6ecbe990dcb5d975358f54153f286e78c8cfbc76cf3e2540614252d267ac9327d13fde8abc4b282014be61a11450aa26626c478ccab01c380f39cea9dc5d67501ab68b06bdcd6440d7ece6f784539530afbb27edb7b1a83bf6576ec304ad3538edd4a02e1fe9ff821eda6d9c8f6eb4ebad0d80fc45576ab4426f0b390ce9fb42312c23430d040d85efa8cde8e1a3c47a082d33cbea897edf90b00820032156816c8cc1218b9cbc41108f910a9a072afb6d94c20b5daa083a8c6f1e49570a82b779b06e91e01eeec67ad5fcc586401c91030a8300014a92973e2b4653816cfd1866ebe6a07b7b9050176f3f0fd7deb7094b96dca67a7fab85f80275b5616414ba3d11bed295420cb62860d5a01fe557eba85cab0dfbdd4ed1d7f30cdc0540690d7bfc99ff1e5915e91fd99a5b94d2d26eaabe72c2e727cb88748e83899ee6f2f6efac8eb7d66b7578fa17671b4b70ebdf40a36ec697ece2a6d2b170bd083c0efd515b81acdf563cd24fb683d28671a6016808961ec3d22a2fd18ea4cb86b7d173d639541d9e15ed6a6aa3354690f848017c8f4256885f6a7222de21e07d90d93e7ce1c8448be2af2f07ef183c3e799efaaacf702b9383f0d33fcafaf417e46f62befea6e52aec33e4c1e897a7c5c1f7a1b21f387e9fda617543c9c5bafcf5163ce10e36cc3e75429a6e96b68952ce02db3dd7af0e604f8259f08905edb793f405d5e00798986c58d33a13e5d998b5cec54b5968271a32ce79f80118678f2978011bbaa86de2c53f46fc4e2cc1f38ac5a4d8d6a286c01e5b717c7e3eed1cbcd97e819f688b0f4cbff7fc98215044eff87f28e65559c9b030a0676eac25552b5961084f162e8bb638d52c81b091ddbdaaf684c6f1cce30ff4c8c60f55148aed8bc5894c22114a2f639d4386a74fa9cc6d51f858627d6aa5cb17b019f79584e45f014c5148bd187d10d26195d415be636db9a584aa8c1e640508b63f9a2defd89da52cd27de445e54a93ad18003cb35a752e91df73a688cd65b92b754071ce3f6328f76c6d6f455ed981c4d6d6efdb6ff9b90a37776bbe76d5d47062aa8fbf099a45a4e93a0062b5b70c4fd455fbd6649d36f54adb32a85ed69d81552ddf2e2878f85120b57279c645236986f1affba9e034017145436f7519e5681fa5b9940890979fb54be43bbfa57261ac2d4eb3ffda9d6e5cfc1a2e3adeb63b04d88e621d7e7804722a31635aa57261ac2d4eb3ffda9d6e5cfc1a2e3adeb63b04d88e621d7e7804722a31635a3edab1ff7eb6bf33f108e9ac1a08eb16c954b88a844e3119adf5950b44014eb6685e980f7915026cc95f7d00a2a6805d6e60553dd329beb0ee12bfdfd7fa7b3fe234489f88176e66bd858291d9de7054c6bdcedbb9f19ebedfab02d238b3dad744a748d124dd2c42338bd5626507c39aa36b30c110b979a2456ba51ff183bd5d372fd5afc77f0d7f38658bb86153e8c7472376a5d735412237aea47881eb714ad1ffba188101427d74509d8786310f1e0793a251f31819283664626cbb6286bcdd109bc3de5bef59a8492c6f849e7cf1c2a665d6b5844e749d36a714fc4eb8f652fe79b889ef808d2d515a143bd50327674d18780056158238e627e37eaf784b4505976a7c3561f4c11d3d6507b4c18b802110be70e1266ecd65aa25fca951010f452ebdd24fcc9316642d0a9cd76b9515956e5c1a3a92b587f549f0afbe19bd9b188fe909be6889a961ab6d53b11520bc8ef965b7387b554bd7c482b02b0f4f8cc7b0d397686f82a8768b5c8bbee3351115747b46de41a1faa6f205ef5f3c1c521072b8d856dbff81095a9f8c5cee02504420edf3e7fc22d440dd646a6824f019fb878199014dea84874d11e319609135d4251944a93718a1549871f86355fe20d1895f7218023eb5cf8faf453b0a005931333a36c43d1db78eb11703960faa643e7aca7abd6ab8872822b38e2d1e3f9523f95e89f299eee30a5ec7bc022d4c9bf1863fcb9a4026b1a403542bf1023e48639329303dc944c0bfb4d08c0c2acacf1f755b117b3a63005cd134ddeeef22670952dacac5eec61150a5378efbbbe9893b2f2c73de7b893f46772678c105be501cd8494f51222dbd4309111d45e66154a4e74dfb2af63dad0b61ff21f4f95994201c284fe8f586948c544ff57e966e5d4c6d67e4567369e32511098e8ca3c88647c0c3333a824d8d3cc4a42eaf4ab1bc55eab02c151e601843afc2885ab9824b294c7d32e6352066793e8ccf66630792c212b59813c229fd6622c49ee24576152e8c1ca4c8e5c7cf37fa4e64af69d3aae178e3bea2ee5301e7fe2d7908e04162c5a0d6888bf7b9222c213bf28b19605eb5dc9143c8d61b9b80d5cf522b829938f539a301cd22e79e52f6213df15534953e17076aff00521a5402e73915fd843905ff5a92e6db5564e3ddd38febf2dc6365ca3097bb70b1a14b6b039d07543503d0be32e261deba336cbf0208844363b70c4fd455fbd6649d36f54adb32a85ed69d81552ddf2e2878f85120b57279c67c1f04400c419a3ab62cd4153a1c29a8157c2b7f0f55914cf7f3845f719e4e17@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootselinux-policy-3.13.1-192.el7_5.4.src.rpmselinux-policy-devel       /bin/sh/usr/bin/makecheckpolicym4policycoreutils-develrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PartialHardlinkSets)rpmlib(PayloadFilesHavePrefix)selinux-policyrpmlib(PayloadIsXz)2.52.5-183.0.4-14.6.0-14.0.4-14.0-13.13.1-192.el7_5.45.2-14.11.3[@ZZZI@ZH@Z@ZZz@Zz@ZyZ_:ZWQZV@Z.s@Z)-@Z%8ZZ @ZZNZNYYA@YYW@YW@YYY@Y@Ycl@YP@YJ_YI@YBvY9<@Y6@Y5GY1S@Y0Y.@Y-^Y, @Y, @Y%uYYY@Y@Y@Y.YXQ@XXX@X@X@XXX@XۡXP@XXg@Xg@X~@X@XƉXCXCXX @XXXBXXXs{@XY@XWXRXRXOXJXAb@X@X)@X#X!@XWWSW_@W_@Wv@W;W@WίWW:WQW@WW@W@WW~W@WW~D@W{@Ws@WrfWj}WbW^@WYZ@WYZ@WUeWM|WBW9@W9@W1@W(W V@V@V@V޾V2V@V_VVCV@VZV @VqV }@V }@VBUUU@U@UpUUUUoUoU5@UUȒ@UĝUUWUU@UUK@UUU'Ua@U~@UzUv@UT@U@Tr@T@T@T7TTTC@T@TTT}Tto@TsTk4T`T[bTWn@T?@T>aT6xT6xT@S@SSDSg}@SB@S>S;S:@S9XS5d@S4S2@S0@S,)S*@S)S)S&S&S"@S!S L@SSS@SSc@SSnS @S SK@RRR@RRJ@Ra@RRR&R&RRR=RʚRR@R@R@Rv@Rv@R@RR@R R@R@R|@Rz/@Rz/@RsRpRnQRi RfhR_@R_@R[R[RSRNRNRL RIgRB@RB@R:@R1R-@R-@R(r@R' R%@R7RRNRR@Q@QQdQQ@QQޞ@Q@QکQکQ@QzQQ4Q@@Q@QKQQ@Q@Q@Q@QQ@QQQQ@Q@QQQ@Qzl@Qw@QvwQo@Qo@QnQm=@QkQfQb@Q`@Q^QZ@QQQIQGQ@j@Q9Q8@Q4Q0@Q-@Q& @Q$QQ@QQ@Q @Qh@QsPP@P@PP@P[PP!@P8@PO@P @Pf@PPqP @PP7@P@PPPYP@P@PPPM@PPd@P@PoP{@P{@P@PP5@P@P~P}L@Px@PvPvPuc@Puc@Pr@Pmz@Pmz@Pmz@Pj@Pd?Pd?Pb@PaPaP[@PXb@PWPS@PQPO'PM@PIP@@P>@P8@P7lP2&P2&P,P,P*=P(@P#@P#@P!@P!@P@PkPw@Pw@PP

@NNU@NNl@N@N@NåN@NNNN@NNN@N@NGNGNGN@N@NNS@NS@N^N^N @N @NNj@Nj@NN$@NN@N/N@N@NFNFN@NNN@N@N@N]Ni@Ni@Ni@N|tNyNx@Ns:@NoENoENiNf @N^"@N\N[@NTNS@NS@NC@NBrN:N98@N7N6@N2N.@N*N)f@N(N%qN$ @N@N7@N e@NpNpM@M@Md@Md@MM{@M@M۝M@M@M‘@M@M@M@My@My@M3@M@M@MMM@MMMMTMx@Mx@Mv@MlMbSM[@MRMQ0@MQ0@MJMGMGMA^@M>@M9u@M6@M5M4/@M4/@M0:M,F@M$]@M@M9MMMMM\@M M M@L!L!L@LL@L@L@LOLOL[@L@L@Lr@L L,@L,@Lډ@L7LLLNL@LΫLeL|L@LB@LB@LB@L@LMLL@LdLL{L*@L@L5LLA@LLLL@LcL@L@L@LzL)@L|L|L|L{@LvW@LvW@Ls@Ls@LrbLrbLmLk@LjyLe3Lc@La?@LZLYV@LXLN@LN@LMxLMxLI@LH2LF@LEL=L=L=L;L7@L LT@L@LL@L@L0LLGL@K^K^KKKj@K$@KKK@K@KK@K]K޺K@KtK#@KKՀ@K:@KK͗@KŮ@K\K\K @KKKKK9@KK@KK@K@KKKKrKK~@K,K,K,K@KK8@KKK@KK@KqKqK}+K{@K{@KuBKs@KqN@KjKie@Kf@Ka|@K`*K]KXAKTM@KPXKEKEKEKD{@KC)KA@K;@K2@K0K/c@K+nK*@K(K"4@KK>K>K>JJęJH@JH@JJJ_@J@JjJjJ@Jv@Jv@Jv@Jv@J$J@JJ0@J@J@JG@JG@J@JJ@J@J@JJJ#J@JJJ@J:J@JJQJ@J J J|@JzJyt@Jyt@Jx"JrJrJq@Jn@Jn@JmJhPJeJ\s@JW-@JT@JS8JKOJI@JCfJCfJB@J@J@J?r@J<@J;}J:,@J7@J67J2C@J0J/@J,@J%@JJB@JJMJ J dJ@J@JJ@J*@J*@II@IIA@IIII@I@IIIX@IX@IX@II@I@IcIIo@Io@IzI)@I@IܑI@@II@I@I@IԨIд@I̿In@I3I3I@II@I@IV@IIaIIm@I@I'@II2III@IIIIIIII@III@I1I@III~@I}Iy@Ix_Iw@IuItk@Itk@Io%@Ik0IeIcGIa@I`IVIO@IJ;@IHIAI>]I= @I7@I6tI3I-I@III9@I9@II IP@I@IIg@Ig@HHH@HrH~@H,H@HCHHH @H @Hf@Hf@H@H+H@H׈H׈H7@HBH@HǶH@HH|@HHH@H{@H)HHL@H@H@H@HnH}H|@Ht@HsVHr@Hl@HkmHgy@HcH`H_@H^>HRa@HQHQHO@HFHFH$@DX@DU@DN@DN@DLDH@DGwDGwDDD@@D?D?D;@D;@D:HD:HD2_D1@D1@D-D+@D+@D'D!<@D!<@D!<@DDD@D@D@DDDDDD@D@D@D@D uD $@D D @D @DDDFC@C@C@C@CCCCCR@CCCCC@Ci@CC@C@CtC@C@CC:@CECCC @C @CعCعCعCعCC@C-C-C-C@C@CCǖ@C@CáCáCP@CP@C[C @C @CCg@Cg@CCC!@C~@C,C@CCCCC@CC@C@C@CZCZC @C @CCCf@Cf@Cf@CC@CqCqC @C @C @CCC}@C7@C7@C7@CBCBCYC@C@CC}@CqCqLukas Vrabec - 3.13.1-192.4Lukas Vrabec - 3.13.1-192.3Lukas Vrabec - 3.13.1-192.2Lukas Vrabec - 3.13.1-192.1Lukas Vrabec - 3.13.1-192Lukas Vrabec - 3.13.1-191Lukas Vrabec - 3.13.1-190Lukas Vrabec - 3.13.1-189Lukas Vrabec - 3.13.1-188Lukas Vrabec - 3.13.1-187Lukas Vrabec - 3.13.1-186Lukas Vrabec - 3.13.1-185Lukas Vrabec - 3.13.1-184Lukas Vrabec - 3.13.1-183Lukas Vrabec - 3.13.1-182Lukas Vrabec - 3.13.1-181Lukas Vrabec - 3.13.1-180Lukas Vrabec - 3.13.1-179Lukas Vrabec - 3.13.1-178Lukas Vrabec - 3.13.1-177Lukas Vrabec - 3.13.1-176Lukas Vrabec - 3.13.1-175Lukas Vrabec - 3.13.1-174Lukas Vrabec - 3.13.1-173Lukas Vrabec - 3.13.1-172Lukas Vrabec - 3.13.1-171Lukas Vrabec - 3.13.1-170Lukas Vrabec - 3.13.1-169Lukas Vrabec - 3.13.1-168Lukas Vrabec - 3.13.1-167Lukas Vrabec - 3.13.1-166Lukas Vrabec - 3.13.1-165Lukas Vrabec - 3.13.1-164Lukas Vrabec - 3.13.1-163Lukas Vrabec - 3.13.1-162Lukas Vrabec - 3.13.1-161Lukas Vrabec - 3.13.1-160Lukas Vrabec - 3.13.1-159Lukas Vrabec - 3.13.1-158Lukas Vrabec - 3.13.1-157Lukas Vrabec - 3.13.1-156Lukas Vrabec - 3.13.1-155Lukas Vrabec - 3.13.1-154Lukas Vrabec - 3.13.1-153Lukas Vrabec - 3.13.1-152Lukas Vrabec - 3.13.1-151Lukas Vrabec - 3.13.1-150Lukas Vrabec - 3.13.1-149Lukas Vrabec - 3.13.1-148Lukas Vrabec - 3.13.1-147Lukas Vrabec - 3.13.1-146Lukas Vrabec - 3.13.1-145Lukas Vrabec - 3.13.1-144Lukas Vrabec - 3.13.1-143Lukas Vrabec - 3.13.1-142Lukas Vrabec - 3.13.1-141Lukas Vrabec - 3.13.1-140Lukas Vrabec - 3.13.1-139Lukas Vrabec - 3.13.1-138Lukas Vrabec - 3.13.1-137Lukas Vrabec - 3.13.1-136Lukas Vrabec - 3.13.1-135Lukas Vrabec - 3.13.1-134Lukas Vrabec - 3.13.1-133Lukas Vrabec - 3.13.1-132Lukas Vrabec - 3.13.1-131Lukas Vrabec - 3.13.1-130Lukas Vrabec - 3.13.1-129Lukas Vrabec - 3.13.1-128Lukas Vrabec - 3.13.1-127Lukas Vrabec - 3.13.1-126Lukas Vrabec - 3.13.1-125Lukas Vrabec - 3.13.1-124Lukas Vrabec - 3.13.1-123Lukas Vrabec - 3.13.1-122Lukas Vrabec - 3.13.1-120Lukas Vrabec - 3.13.1-119Lukas Vrabec - 3.13.1-118Lukas Vrabec - 3.13.1-117Lukas Vrabec - 3.13.1-116Lukas Vrabec - 3.13.1-115Lukas Vrabec - 3.13.1-114Lukas Vrabec - 3.13.1-113Lukas Vrabec - 3.13.1-112Lukas Vrabec - 3.13.1-111Lukas Vrabec - 3.13.1-110Lukas Vrabec - 3.13.1-109Lukas Vrabec - 3.13.1-108Lukas Vrabec - 3.13.1-107Lukas Vrabec - 3.13.1-106Miroslav Grepl - 3.13.1-105Lukas Vrabec - 3.13.1-104Lukas Vrabec - 3.13.1-103Dan Walsh - 3.13.1-102Lukas Vrabec - 3.13.1-101Lukas Vrabec - 3.13.1-100Lukas Vrabec - 3.13.1-99Lukas Vrabec - 3.13.1-98Lukas Vrabec - 3.13.1-97Lukas Vrabec - 3.13.1-96Lukas Vrabec - 3.13.1-95Lukas Vrabec - 3.13.1-94Lukas Vrabec - 3.13.1-93Lukas Vrabec - 3.13.1-92Lukas Vrabec - 3.13.1-91Lukas Vrabec - 3.13.1-90Lukas Vrabec - 3.13.1-89Lukas Vrabec - 3.13.1-88Lukas Vrabec - 3.13.1-87Lukas Vrabec - 3.13.1-86Lukas Vrabec - 3.13.1-85Lukas Vrabec - 3.13.1-84Lukas Vrabec - 3.13.1-83Lukas Vrabec - 3.13.1-82Lukas Vrabec - 3.13.1-81Lukas Vrabec - 3.13.1-80Petr Lautrbach - 3.13.1-79Lukas Vrabec - 3.13.1-78Lukas Vrabec - 3.13.1-77Lukas Vrabec - 3.13.1-76Lukas Vrabec - 3.13.1-75Lukas Vrabec - 3.13.1-74Lukas Vrabec - 3.13.1-73Lukas Vrabec - 3.13.1-72Lukas Vrabec - 3.13.1-71Lukas Vrabec - 3.13.1-70Lukas Vrabec - 3.13.1-69Lukas Vrabec - 3.13.1-68Lukas Vrabec - 3.13.1-67Petr Lautrbach - 3.13.1-66Lukas Vrabec 3.13.1-65Lukas Vrabec 3.13.1-64Lukas Vrabec 3.13.1-63Lukas Vrabec 3.13.1-62Lukas Vrabec 3.13.1-61Miroslav Grepl 3.13.1-60Miroslav Grepl 3.13.1-59Lukas Vrabec 3.13.1-58Lukas Vrabec 3.13.1-57Miroslav Grepl 3.13.1-56Lukas Vrabec 3.13.1-55Lukas Vrabec 3.13.1-54Lukas Vrabec 3.13.1-53Lukas Vrabec 3.13.1-52Miroslav Grepl 3.13.1-51Lukas Vrabec 3.13.1-50Lukas Vrabec 3.13.1-49Lukas Vrabec 3.13.1-48Lukas Vrabec 3.13.1-47Lukas Vrabec 3.13.1-46Lukas Vrabec 3.13.1-45Lukas Vrabec 3.13.1-44Lukas Vrabec 3.13.1-43Lukas Vrabec 3.13.1-42Lukas Vrabec 3.13.1-41Lukas Vrabec 3.13.1-40Miroslav Grepl 3.13.1-39Lukas Vrabec 3.13.1-38Lukas Vrabec 3.13.1-37Lukas Vrabec 3.13.1-36Lukas Vrabec 3.13.1-35Lukas Vrabec 3.13.1-34Lukas Vrabec 3.13.1-33Lukas Vrabec 3.13.1-32Miroslav Grepl 3.13.1-31Miroslav Grepl 3.13.1-30Miroslav Grepl 3.13.1-29Miroslav Grepl 3.13.1-28Miroslav Grepl 3.13.1-27Miroslav Grepl 3.13.1-26Miroslav Grepl 3.13.1-25Miroslav Grepl 3.13.1-24Miroslav Grepl 3.13.1-23Miroslav Grepl 3.13.1-22Miroslav Grepl 3.13.1-21Miroslav Grepl 3.13.1-20Miroslav Grepl 3.13.1-19Miroslav Grepl 3.13.1-18Miroslav Grepl 3.13.1-17Miroslav Grepl 3.13.1-16Miroslav Grepl 3.13.1-15Miroslav Grepl 3.13.1-14Miroslav Grepl 3.13.1-13Miroslav Grepl 3.13.1-12Miroslav Grepl 3.13.1-11Miroslav Grepl 3.13.1-10Miroslav Grepl 3.13.1-9Miroslav Grepl 3.13.1-8Miroslav Grepl 3.13.1-7Miroslav Grepl 3.13.1-6Miroslav Grepl 3.13.1-5Miroslav Grepl 3.13.1-4Miroslav Grepl 3.13.1-3Miroslav Grepl 3.13.1-2Miroslav Grepl 3.13.1-1Miroslav Grepl 3.12.1-156Miroslav Grepl 3.12.1-155Miroslav Grepl 3.12.1-154Miroslav Grepl 3.12.1-153Miroslav Grepl 3.12.1-152Miroslav Grepl 3.12.1-151Miroslav Grepl 3.12.1-149Miroslav Grepl 3.12.1-149Miroslav Grepl 3.12.1-148Miroslav Grepl 3.12.1-147Miroslav Grepl 3.12.1-146Miroslav Grepl 3.12.1-145Miroslav Grepl 3.12.1-144Lukas Vrabec 3.12.1-143Miroslav Grepl 3.12.1-142Miroslav Grepl 3.12.1-141Miroslav Grepl 3.12.1-140Miroslav Grepl 3.12.1-139Lukas Vrabec 3.12.1-138Miroslav Grepl 3.12.1-137Miroslav Grepl 3.12.1-136Miroslav Grepl 3.12.1-135Miroslav Grepl 3.12.1-134Miroslav Grepl 3.12.1-133Miroslav Grepl 3.12.1-132Miroslav Grepl 3.12.1-131Miroslav Grepl 3.12.1-130Miroslav Grepl 3.12.1-129Miroslav Grepl 3.12.1-128Miroslav Grepl 3.12.1-127Miroslav Grepl 3.12.1-126Miroslav Grepl 3.12.1-125Miroslav Grepl 3.12.1-124Miroslav Grepl 3.12.1-123Miroslav Grepl 3.12.1-122Miroslav Grepl 3.12.1-121Miroslav Grepl 3.12.1-120Miroslav Grepl 3.12.1-119Miroslav Grepl 3.12.1-118Miroslav Grepl 3.12.1-117Miroslav Grepl 3.12.1-116Miroslav Grepl 3.12.1-115Miroslav Grepl 3.12.1-114Miroslav Grepl 3.12.1-113Miroslav Grepl 3.12.1-112Miroslav Grepl 3.12.1-111Miroslav Grepl 3.12.1-110Miroslav Grepl 3.12.1-109Miroslav Grepl 3.12.1-108Miroslav Grepl 3.12.1-107Dan Walsh 3.12.1-106Miroslav Grepl 3.12.1-105Miroslav Grepl 3.12.1-104Miroslav Grepl 3.12.1-103Miroslav Grepl 3.12.1-102Miroslav Grepl 3.12.1-101Miroslav Grepl 3.12.1-100Miroslav Grepl 3.12.1-99Miroslav Grepl 3.12.1-98Miroslav Grepl 3.12.1-97Miroslav Grepl 3.12.1-96Miroslav Grepl 3.12.1-95Miroslav Grepl 3.12.1-94Miroslav Grepl 3.12.1-94Miroslav Grepl 3.12.1-93Miroslav Grepl 3.12.1-92Miroslav Grepl 3.12.1-91Miroslav Grepl 3.12.1-90Miroslav Grepl 3.12.1-89Miroslav Grepl 3.12.1-88Miroslav Grepl 3.12.1-87Miroslav Grepl 3.12.1-86Miroslav Grepl 3.12.1-85Miroslav Grepl 3.12.1-84Miroslav Grepl 3.12.1-83Miroslav Grepl 3.12.1-82Miroslav Grepl 3.12.1-81Miroslav Grepl 3.12.1-80Miroslav Grepl 3.12.1-79Miroslav Grepl 3.12.1-78Miroslav Grepl 3.12.1-77Miroslav Grepl 3.12.1-76Miroslav Grepl 3.12.1-75Miroslav Grepl 3.12.1-74Miroslav Grepl 3.12.1-73Miroslav Grepl 3.12.1-72Miroslav Grepl 3.12.1-71Miroslav Grepl 3.12.1-70Miroslav Grepl 3.12.1-69Miroslav Grepl 3.12.1-68Miroslav Grepl 3.12.1-67Miroslav Grepl 3.12.1-66Miroslav Grepl 3.12.1-65Miroslav Grepl 3.12.1-64Miroslav Grepl 3.12.1-63Miroslav Grepl 3.12.1-62Miroslav Grepl 3.12.1-61Miroslav Grepl 3.12.1-60Miroslav Grepl 3.12.1-59Miroslav Grepl 3.12.1-58Miroslav Grepl 3.12.1-57Miroslav Grepl 3.12.1-56Miroslav Grepl 3.12.1-55Miroslav Grepl 3.12.1-54Miroslav Grepl 3.12.1-53Miroslav Grepl 3.12.1-52Miroslav Grepl 3.12.1-51Miroslav Grepl 3.12.1-50Miroslav Grepl 3.12.1-49Miroslav Grepl 3.12.1-48Miroslav Grepl 3.12.1-47Miroslav Grepl 3.12.1-46Miroslav Grepl 3.12.1-45Miroslav Grepl 3.12.1-44Miroslav Grepl 3.12.1-43Miroslav Grepl 3.12.1-42Miroslav Grepl 3.12.1-41Miroslav Grepl 3.12.1-40Miroslav Grepl 3.12.1-39Miroslav Grepl 3.12.1-38Miroslav Grepl 3.12.1-37Miroslav Grepl 3.12.1-36Miroslav Grepl 3.12.1-35Miroslav Grepl 3.12.1-34Miroslav Grepl 3.12.1-33Miroslav Grepl 3.12.1-32Miroslav Grepl 3.12.1-31Miroslav Grepl 3.12.1-30Miroslav Grepl 3.12.1-29Dan Walsh 3.12.1-28Dan Walsh 3.12.1-27Miroslav Grepl 3.12.1-26Miroslav Grepl 3.12.1-25Miroslav Grepl 3.12.1-24Miroslav Grepl 3.12.1-23Miroslav Grepl 3.12.1-22Miroslav Grepl 3.12.1-21Miroslav Grepl 3.12.1-20Miroslav Grepl 3.12.1-19Miroslav Grepl 3.12.1-18Miroslav Grepl 3.12.1-17Miroslav Grepl 3.12.1-16Miroslav Grepl 3.12.1-15Miroslav Grepl 3.12.1-14Miroslav Grepl 3.12.1-13Miroslav Grepl 3.12.1-12Miroslav Grepl 3.12.1-11Miroslav Grepl 3.12.1-10Miroslav Grepl 3.12.1-9Miroslav Grepl 3.12.1-8Miroslav Grepl 3.12.1-7Miroslav Grepl 3.12.1-6Miroslav Grepl 3.12.1-5Miroslav Grepl 3.12.1-4Miroslav Grepl 3.12.1-3Miroslav Grepl 3.12.1-2Miroslav Grepl 3.12.1-1Dan Walsh 3.11.1-69.1Miroslav Grepl 3.11.1-69Miroslav Grepl 3.11.1-68Miroslav Grepl 3.11.1-67Miroslav Grepl 3.11.1-66Miroslav Grepl 3.11.1-65Miroslav Grepl 3.11.1-64Miroslav Grepl 3.11.1-63Miroslav Grepl 3.11.1-62Miroslav Grepl 3.11.1-61Miroslav Grepl 3.11.1-60Miroslav Grepl 3.11.1-59Miroslav Grepl 3.11.1-58Miroslav Grepl 3.11.1-57Miroslav Grepl 3.11.1-56Miroslav Grepl 3.11.1-55Miroslav Grepl 3.11.1-54Miroslav Grepl 3.11.1-53Miroslav Grepl 3.11.1-52Miroslav Grepl 3.11.1-51Miroslav Grepl 3.11.1-50Miroslav Grepl 3.11.1-49Miroslav Grepl 3.11.1-48Miroslav Grepl 3.11.1-47Miroslav Grepl 3.11.1-46Miroslav Grepl 3.11.1-45Miroslav Grepl 3.11.1-44Miroslav Grepl 3.11.1-43Miroslav Grepl 3.11.1-42Miroslav Grepl 3.11.1-41Miroslav Grepl 3.11.1-40Miroslav Grepl 3.11.1-39Miroslav Grepl 3.11.1-38Miroslav Grepl 3.11.1-37Miroslav Grepl 3.11.1-36Miroslav Grepl 3.11.1-35Miroslav Grepl 3.11.1-34Miroslav Grepl 3.11.1-33Miroslav Grepl 3.11.1-32Miroslav Grepl 3.11.1-31Miroslav Grepl 3.11.1-30Miroslav Grepl 3.11.1-29Miroslav Grepl 3.11.1-28Miroslav Grepl 3.11.1-27Miroslav Grepl 3.11.1-26Miroslav Grepl 3.11.1-25Miroslav Grepl 3.11.1-24Miroslav Grepl 3.11.1-23Miroslav Grepl 3.11.1-22Miroslav Grepl 3.11.1-21Miroslav Grepl 3.11.1-20Miroslav Grepl 3.11.1-19Miroslav Grepl 3.11.1-18Miroslav Grepl 3.11.1-17Miroslav Grepl 3.11.1-16Dan Walsh 3.11.1-15Miroslav Grepl 3.11.1-14Dan Walsh 3.11.1-13Miroslav Grepl 3.11.1-12Miroslav Grepl 3.11.1-11Miroslav Grepl 3.11.1-10Dan Walsh 3.11.1-9Dan Walsh 3.11.1-8Dan Walsh 3.11.1-7Dan Walsh 3.11.1-6Miroslav Grepl 3.11.1-5Miroslav Grepl 3.11.1-4Miroslav Grepl 3.11.1-3Miroslav Grepl 3.11.1-2Miroslav Grepl 3.11.1-1Miroslav Grepl 3.11.1-0Miroslav Grepl 3.11.0-15Miroslav Grepl 3.11.0-14Miroslav Grepl 3.11.0-13Miroslav Grepl 3.11.0-12Fedora Release Engineering - 3.11.0-11Miroslav Grepl 3.11.0-10Miroslav Grepl 3.11.0-9Miroslav Grepl 3.11.0-8Miroslav Grepl 3.11.0-7Miroslav Grepl 3.11.0-6Miroslav Grepl 3.11.0-5Miroslav Grepl 3.11.0-4Miroslav Grepl 3.11.0-3Miroslav Grepl 3.11.0-2Miroslav Grepl 3.11.0-1Miroslav Grepl 3.10.0-128Miroslav Grepl 3.10.0-127Miroslav Grepl 3.10.0-126Miroslav Grepl 3.10.0-125Miroslav Grepl 3.10.0-124Miroslav Grepl 3.10.0-123Miroslav Grepl 3.10.0-122Miroslav Grepl 3.10.0-121Miroslav Grepl 3.10.0-120Miroslav Grepl 3.10.0-119Miroslav Grepl 3.10.0-118Miroslav Grepl 3.10.0-117Miroslav Grepl 3.10.0-116Miroslav Grepl 3.10.0-115Miroslav Grepl 3.10.0-114Miroslav Grepl 3.10.0-113Miroslav Grepl 3.10.0-112Miroslav Grepl 3.10.0-111Miroslav Grepl 3.10.0-110Miroslav Grepl 3.10.0-109Miroslav Grepl 3.10.0-108Miroslav Grepl 3.10.0-107Miroslav Grepl 3.10.0-106Miroslav Grepl 3.10.0-105Miroslav Grepl 3.10.0-104Miroslav Grepl 3.10.0-103Miroslav Grepl 3.10.0-102Miroslav Grepl 3.10.0-101Miroslav Grepl 3.10.0-100Miroslav Grepl 3.10.0-99Miroslav Grepl 3.10.0-98Miroslav Grepl 3.10.0-97Miroslav Grepl 3.10.0-96Miroslav Grepl 3.10.0-95Miroslav Grepl 3.10.0-94Miroslav Grepl 3.10.0-93Miroslav Grepl 3.10.0-92Miroslav Grepl 3.10.0-91Miroslav Grepl 3.10.0-90Miroslav Grepl 3.10.0-89Miroslav Grepl 3.10.0-88Miroslav Grepl 3.10.0-87Miroslav Grepl 3.10.0-86Miroslav Grepl 3.10.0-85Miroslav Grepl 3.10.0-84Miroslav Grepl 3.10.0-83Miroslav Grepl 3.10.0-82Dan Walsh 3.10.0-81.2Miroslav Grepl 3.10.0-81Miroslav Grepl 3.10.0-80Miroslav Grepl 3.10.0-79Miroslav Grepl 3.10.0-78Miroslav Grepl 3.10.0-77Miroslav Grepl 3.10.0-76Miroslav Grepl 3.10.0-75Dan Walsh 3.10.0-74.2Miroslav Grepl 3.10.0-74Miroslav Grepl 3.10.0-73Miroslav Grepl 3.10.0-72Miroslav Grepl 3.10.0-71Miroslav Grepl 3.10.0-70Miroslav Grepl 3.10.0-69Miroslav Grepl 3.10.0-68Miroslav Grepl 3.10.0-67Miroslav Grepl 3.10.0-66Miroslav Grepl 3.10.0-65Miroslav Grepl 3.10.0-64Miroslav Grepl 3.10.0-63Miroslav Grepl 3.10.0-59Miroslav Grepl 3.10.0-58Dan Walsh 3.10.0-57Dan Walsh 3.10.0-56Dan Walsh 3.10.0-55.2Dan Walsh 3.10.0-55.1Miroslav Grepl 3.10.0-55Dan Walsh 3.10.0-54.1Miroslav Grepl 3.10.0-54Dan Walsh 3.10.0-53.1Miroslav Grepl 3.10.0-53Miroslav Grepl 3.10.0-52Miroslav Grepl 3.10.0-51Dan Walsh 3.10.0-50.2Dan Walsh 3.10.0-50.1Miroslav Grepl 3.10.0-50Miroslav Grepl 3.10.0-49Miroslav Grepl 3.10.0-48Miroslav Grepl 3.10.0-47Dan Walsh 3.10.0-46.1Miroslav Grepl 3.10.0-46Dan Walsh 3.10.0-45.1Miroslav Grepl 3.10.0-45Miroslav Grepl 3.10.0-43Miroslav Grepl 3.10.0-42Miroslav Grepl 3.10.0-41Dan Walsh 3.10.0-40.2Miroslav Grepl 3.10.0-40Dan Walsh 3.10.0-39.3Dan Walsh 3.10.0-39.2Dan Walsh 3.10.0-39.1Miroslav Grepl 3.10.0-39Dan Walsh 3.10.0-38.1Miroslav Grepl 3.10.0-38Miroslav Grepl 3.10.0-37Dan Walsh 3.10.0-36.1Miroslav Grepl 3.10.0-36Dan Walsh 3.10.0-35Dan Walsh 3.10.0-34.7Dan Walsh 3.10.0-34.6Dan Walsh 3.10.0-34.4Miroslav Grepl 3.10.0-34.3Dan Walsh 3.10.0-34.2Dan Walsh 3.10.0-34.1Miroslav Grepl 3.10.0-34Miroslav Grepl 3.10.0-33Dan Walsh 3.10.0-31.1Miroslav Grepl 3.10.0-31Miroslav Grepl 3.10.0-29Miroslav Grepl 3.10.0-28Miroslav Grepl 3.10.0-27Miroslav Grepl 3.10.0-26Miroslav Grepl 3.10.0-25Miroslav Grepl 3.10.0-24Miroslav Grepl 3.10.0-23Miroslav Grepl 3.10.0-22Miroslav Grepl 3.10.0-21Dan Walsh 3.10.0-20Miroslav Grepl 3.10.0-19Miroslav Grepl 3.10.0-18Miroslav Grepl 3.10.0-17Miroslav Grepl 3.10.0-16Miroslav Grepl 3.10.0-14Miroslav Grepl 3.10.0-13Miroslav Grepl 3.10.0-12Miroslav Grepl 3.10.0-11Miroslav Grepl 3.10.0-10Miroslav Grepl 3.10.0-9Miroslav Grepl 3.10.0-8Miroslav Grepl 3.10.0-7Miroslav Grepl 3.10.0-6Miroslav Grepl 3.10.0-5Miroslav Grepl 3.10.0-4Miroslav Grepl 3.10.0-3Miroslav Grepl 3.10.0-2Miroslav Grepl 3.10.0-1Miroslav Grepl 3.9.16-30Dan Walsh 3.9.16-29.1Miroslav Grepl 3.9.16-29Dan Walsh 3.9.16-28.1Miroslav Grepl 3.9.16-27Miroslav Grepl 3.9.16-26Miroslav Grepl 3.9.16-25Miroslav Grepl 3.9.16-24Miroslav Grepl 3.9.16-23Miroslav Grepl 3.9.16-22Miroslav Grepl 3.9.16-21Miroslav Grepl 3.9.16-20Miroslav Grepl 3.9.16-19Miroslav Grepl 3.9.16-18Miroslav Grepl 3.9.16-17Dan Walsh 3.9.16-16.1Miroslav Grepl 3.9.16-16Miroslav Grepl 3.9.16-15Miroslav Grepl 3.9.16-14Miroslav Grepl 3.9.16-13Miroslav Grepl 3.9.16-12Miroslav Grepl 3.9.16-11Miroslav Grepl 3.9.16-10Miroslav Grepl 3.9.16-7Miroslav Grepl 3.9.16-6Miroslav Grepl 3.9.16-5Miroslav Grepl 3.9.16-4Miroslav Grepl 3.9.16-3Miroslav Grepl 3.9.16-2Miroslav Grepl 3.9.16-1Miroslav Grepl 3.9.15-5Miroslav Grepl 3.9.15-2Miroslav Grepl 3.9.15-1Fedora Release Engineering - 3.9.14-2Dan Walsh 3.9.14-1Miroslav Grepl 3.9.13-10Miroslav Grepl 3.9.13-9Dan Walsh 3.9.13-8Miroslav Grepl 3.9.13-7Miroslav Grepl 3.9.13-6Miroslav Grepl 3.9.13-5Miroslav Grepl 3.9.13-4Miroslav Grepl 3.9.13-3Miroslav Grepl 3.9.13-2Miroslav Grepl 3.9.13-1Miroslav Grepl 3.9.12-8Miroslav Grepl 3.9.12-7Miroslav Grepl 3.9.12-6Miroslav Grepl 3.9.12-5Dan Walsh 3.9.12-4Dan Walsh 3.9.12-3Dan Walsh 3.9.12-2Miroslav Grepl 3.9.12-1Dan Walsh 3.9.11-2Miroslav Grepl 3.9.11-1Miroslav Grepl 3.9.10-13Dan Walsh 3.9.10-12Miroslav Grepl 3.9.10-11Miroslav Grepl 3.9.10-10Miroslav Grepl 3.9.10-9Miroslav Grepl 3.9.10-8Miroslav Grepl 3.9.10-7Miroslav Grepl 3.9.10-6Miroslav Grepl 3.9.10-5Dan Walsh 3.9.10-4Miroslav Grepl 3.9.10-3Miroslav Grepl 3.9.10-2Miroslav Grepl 3.9.10-1Miroslav Grepl 3.9.9-4Dan Walsh 3.9.9-3Miroslav Grepl 3.9.9-2Miroslav Grepl 3.9.9-1Miroslav Grepl 3.9.8-7Dan Walsh 3.9.8-6Miroslav Grepl 3.9.8-5Miroslav Grepl 3.9.8-4Dan Walsh 3.9.8-3Dan Walsh 3.9.8-2Dan Walsh 3.9.8-1Dan Walsh 3.9.7-10Dan Walsh 3.9.7-9Dan Walsh 3.9.7-8Dan Walsh 3.9.7-7Dan Walsh 3.9.7-6Dan Walsh 3.9.7-5Dan Walsh 3.9.7-4Dan Walsh 3.9.7-3Dan Walsh 3.9.7-2Dan Walsh 3.9.7-1Dan Walsh 3.9.6-3Dan Walsh 3.9.6-2Dan Walsh 3.9.6-1Dan Walsh 3.9.5-11Dan Walsh 3.9.5-10Dan Walsh 3.9.5-9Dan Walsh 3.9.5-8Dan Walsh 3.9.5-7Dan Walsh 3.9.5-6Dan Walsh 3.9.5-5Dan Walsh 3.9.5-4Dan Walsh 3.9.5-3Dan Walsh 3.9.5-2Dan Walsh 3.9.5-1Dan Walsh 3.9.4-3Dan Walsh 3.9.4-2Dan Walsh 3.9.4-1Dan Walsh 3.9.3-4Dan Walsh 3.9.3-3Dan Walsh 3.9.3-2Dan Walsh 3.9.3-1Dan Walsh 3.9.2-1Dan Walsh 3.9.1-3Dan Walsh 3.9.1-2Dan Walsh 3.9.1-1Dan Walsh 3.9.0-2Dan Walsh 3.9.0-1Dan Walsh 3.8.8-21Dan Walsh 3.8.8-20Dan Walsh 3.8.8-19Dan Walsh 3.8.8-18Dan Walsh 3.8.8-17Dan Walsh 3.8.8-16Dan Walsh 3.8.8-15Dan Walsh 3.8.8-14Dan Walsh 3.8.8-13Dan Walsh 3.8.8-12Dan Walsh 3.8.8-11Dan Walsh 3.8.8-10Dan Walsh 3.8.8-9Dan Walsh 3.8.8-8Dan Walsh 3.8.8-7Dan Walsh 3.8.8-6Dan Walsh 3.8.8-5Dan Walsh 3.8.8-4Dan Walsh 3.8.8-3Dan Walsh 3.8.8-2Dan Walsh 3.8.8-1Dan Walsh 3.8.7-3Dan Walsh 3.8.7-2Dan Walsh 3.8.7-1Dan Walsh 3.8.6-3Miroslav Grepl 3.8.6-2Dan Walsh 3.8.6-1Dan Walsh 3.8.5-1Dan Walsh 3.8.4-1Dan Walsh 3.8.3-4Dan Walsh 3.8.3-3Dan Walsh 3.8.3-2Dan Walsh 3.8.3-1Dan Walsh 3.8.2-1Dan Walsh 3.8.1-5Dan Walsh 3.8.1-4Dan Walsh 3.8.1-3Dan Walsh 3.8.1-2Dan Walsh 3.8.1-1Dan Walsh 3.7.19-22Dan Walsh 3.7.19-21Dan Walsh 3.7.19-20Dan Walsh 3.7.19-19Dan Walsh 3.7.19-17Dan Walsh 3.7.19-16Dan Walsh 3.7.19-15Dan Walsh 3.7.19-14Dan Walsh 3.7.19-13Dan Walsh 3.7.19-12Dan Walsh 3.7.19-11Dan Walsh 3.7.19-10Dan Walsh 3.7.19-9Dan Walsh 3.7.19-8Dan Walsh 3.7.19-7Dan Walsh 3.7.19-6Dan Walsh 3.7.19-5Dan Walsh 3.7.19-4Dan Walsh 3.7.19-3Dan Walsh 3.7.19-2Dan Walsh 3.7.19-1Dan Walsh 3.7.18-3Dan Walsh 3.7.18-2Dan Walsh 3.7.18-1Dan Walsh 3.7.17-6Dan Walsh 3.7.17-5Dan Walsh 3.7.17-4Dan Walsh 3.7.17-3Dan Walsh 3.7.17-2Dan Walsh 3.7.17-1Dan Walsh 3.7.16-2Dan Walsh 3.7.16-1Dan Walsh 3.7.15-4Dan Walsh 3.7.15-3Dan Walsh 3.7.15-2Dan Walsh 3.7.15-1Dan Walsh 3.7.14-5Dan Walsh 3.7.14-4Dan Walsh 3.7.14-3Dan Walsh 3.7.14-2Dan Walsh 3.7.14-1Dan Walsh 3.7.13-4Dan Walsh 3.7.13-3Dan Walsh 3.7.13-2Dan Walsh 3.7.13-1Dan Walsh 3.7.12-1Dan Walsh 3.7.11-1Dan Walsh 3.7.10-5Dan Walsh 3.7.10-4Dan Walsh 3.7.10-3Dan Walsh 3.7.10-2Dan Walsh 3.7.10-1Dan Walsh 3.7.9-4Dan Walsh 3.7.9-3Dan Walsh 3.7.9-2Dan Walsh 3.7.9-1Dan Walsh 3.7.8-11Dan Walsh 3.7.8-9Dan Walsh 3.7.8-8Dan Walsh 3.7.8-7Dan Walsh 3.7.8-6Dan Walsh 3.7.8-5Dan Walsh 3.7.8-4Dan Walsh 3.7.8-3Dan Walsh 3.7.8-2Dan Walsh 3.7.8-1Dan Walsh 3.7.7-3Dan Walsh 3.7.7-2Dan Walsh 3.7.7-1Dan Walsh 3.7.6-1Dan Walsh 3.7.5-8Dan Walsh 3.7.5-7Dan Walsh 3.7.5-6Dan Walsh 3.7.5-5Dan Walsh 3.7.5-4Dan Walsh 3.7.5-3Dan Walsh 3.7.5-2Dan Walsh 3.7.5-1Dan Walsh 3.7.4-4Dan Walsh 3.7.4-3Dan Walsh 3.7.4-2Dan Walsh 3.7.4-1Dan Walsh 3.7.3-1Dan Walsh 3.7.1-1Dan Walsh 3.6.33-2Dan Walsh 3.6.33-1Dan Walsh 3.6.32-17Dan Walsh 3.6.32-16Dan Walsh 3.6.32-15Dan Walsh 3.6.32-13Dan Walsh 3.6.32-12Dan Walsh 3.6.32-11Dan Walsh 3.6.32-10Dan Walsh 3.6.32-9Dan Walsh 3.6.32-8Dan Walsh 3.6.32-7Dan Walsh 3.6.32-6Dan Walsh 3.6.32-5Dan Walsh 3.6.32-4Dan Walsh 3.6.32-3Dan Walsh 3.6.32-2Dan Walsh 3.6.32-1Dan Walsh 3.6.31-5Dan Walsh 3.6.31-4Dan Walsh 3.6.31-3Dan Walsh 3.6.31-2Dan Walsh 3.6.30-6Dan Walsh 3.6.30-5Dan Walsh 3.6.30-4Dan Walsh 3.6.30-3Dan Walsh 3.6.30-2Dan Walsh 3.6.30-1Dan Walsh 3.6.29-2Dan Walsh 3.6.29-1Dan Walsh 3.6.28-9Dan Walsh 3.6.28-8Dan Walsh 3.6.28-7Dan Walsh 3.6.28-6Dan Walsh 3.6.28-5Dan Walsh 3.6.28-4Dan Walsh 3.6.28-3Dan Walsh 3.6.28-2Dan Walsh 3.6.28-1Dan Walsh 3.6.27-1Dan Walsh 3.6.26-11Dan Walsh 3.6.26-10Dan Walsh 3.6.26-9Bill Nottingham 3.6.26-8Dan Walsh 3.6.26-7Dan Walsh 3.6.26-6Dan Walsh 3.6.26-5Dan Walsh 3.6.26-4Dan Walsh 3.6.26-3Dan Walsh 3.6.26-2Dan Walsh 3.6.26-1Dan Walsh 3.6.25-1Dan Walsh 3.6.24-1Dan Walsh 3.6.23-2Dan Walsh 3.6.23-1Dan Walsh 3.6.22-3Dan Walsh 3.6.22-1Dan Walsh 3.6.21-4Dan Walsh 3.6.21-3Tom "spot" Callaway 3.6.21-2Dan Walsh 3.6.21-1Dan Walsh 3.6.20-2Dan Walsh 3.6.20-1Dan Walsh 3.6.19-5Dan Walsh 3.6.19-4Dan Walsh 3.6.19-3Dan Walsh 3.6.19-2Dan Walsh 3.6.19-1Dan Walsh 3.6.18-1Dan Walsh 3.6.17-1Dan Walsh 3.6.16-4Dan Walsh 3.6.16-3Dan Walsh 3.6.16-2Dan Walsh 3.6.16-1Dan Walsh 3.6.14-3Dan Walsh 3.6.14-2Dan Walsh 3.6.14-1Dan Walsh 3.6.13-3Dan Walsh 3.6.13-2Dan Walsh 3.6.13-1Dan Walsh 3.6.12-39Dan Walsh 3.6.12-38Dan Walsh 3.6.12-37Dan Walsh 3.6.12-36Dan Walsh 3.6.12-35Dan Walsh 3.6.12-34Dan Walsh 3.6.12-33Dan Walsh 3.6.12-31Dan Walsh 3.6.12-30Dan Walsh 3.6.12-29Dan Walsh 3.6.12-28Dan Walsh 3.6.12-27Dan Walsh 3.6.12-26Dan Walsh 3.6.12-25Dan Walsh 3.6.12-24Dan Walsh 3.6.12-23Dan Walsh 3.6.12-22Dan Walsh 3.6.12-21Dan Walsh 3.6.12-20Dan Walsh 3.6.12-19Dan Walsh 3.6.12-16Dan Walsh 3.6.12-15Dan Walsh 3.6.12-14Dan Walsh 3.6.12-13Dan Walsh 3.6.12-12Dan Walsh 3.6.12-11Dan Walsh 3.6.12-10Dan Walsh 3.6.12-9Dan Walsh 3.6.12-8Dan Walsh 3.6.12-7Dan Walsh 3.6.12-6Dan Walsh 3.6.12-5Dan Walsh 3.6.12-4Dan Walsh 3.6.12-3Dan Walsh 3.6.12-2Dan Walsh 3.6.12-1Dan Walsh 3.6.11-1Dan Walsh 3.6.10-9Dan Walsh 3.6.10-8Dan Walsh 3.6.10-7Dan Walsh 3.6.10-6Dan Walsh 3.6.10-5Dan Walsh 3.6.10-4Dan Walsh 3.6.10-3Dan Walsh 3.6.10-2Dan Walsh 3.6.10-1Dan Walsh 3.6.9-4Dan Walsh 3.6.9-3Dan Walsh 3.6.9-2Dan Walsh 3.6.9-1Dan Walsh 3.6.8-4Dan Walsh 3.6.8-3Dan Walsh 3.6.8-2Dan Walsh 3.6.8-1Dan Walsh 3.6.7-2Dan Walsh 3.6.7-1Dan Walsh 3.6.6-9Dan Walsh 3.6.6-8Fedora Release Engineering - 3.6.6-7Dan Walsh 3.6.6-6Dan Walsh 3.6.6-5Dan Walsh 3.6.6-4Dan Walsh 3.6.6-3Dan Walsh 3.6.6-2Dan Walsh 3.6.6-1Dan Walsh 3.6.5-3Dan Walsh 3.6.5-1Dan Walsh 3.6.4-6Dan Walsh 3.6.4-5Dan Walsh 3.6.4-4Dan Walsh 3.6.4-3Dan Walsh 3.6.4-2Dan Walsh 3.6.4-1Dan Walsh 3.6.3-13Dan Walsh 3.6.3-12Dan Walsh 3.6.3-11Dan Walsh 3.6.3-10Dan Walsh 3.6.3-9Dan Walsh 3.6.3-8Dan Walsh 3.6.3-7Dan Walsh 3.6.3-6Dan Walsh 3.6.3-3Dan Walsh 3.6.3-2Dan Walsh 3.6.3-1Dan Walsh 3.6.2-5Dan Walsh 3.6.2-4Dan Walsh 3.6.2-3Dan Walsh 3.6.2-2Dan Walsh 3.6.2-1Dan Walsh 3.6.1-15Dan Walsh 3.6.1-14Dan Walsh 3.6.1-13Dan Walsh 3.6.1-12Dan Walsh 3.6.1-11Dan Walsh 3.6.1-10Dan Walsh 3.6.1-9Dan Walsh 3.6.1-8Dan Walsh 3.6.1-7Dan Walsh 3.6.1-4Ignacio Vazquez-Abrams - 3.6.1-2Dan Walsh 3.5.13-19Dan Walsh 3.5.13-18Dan Walsh 3.5.13-17Dan Walsh 3.5.13-16Dan Walsh 3.5.13-15Dan Walsh 3.5.13-14Dan Walsh 3.5.13-13Dan Walsh 3.5.13-12Dan Walsh 3.5.13-11Dan Walsh 3.5.13-9Dan Walsh 3.5.13-8Dan Walsh 3.5.13-7Dan Walsh 3.5.13-6Dan Walsh 3.5.13-5Dan Walsh 3.5.13-4Dan Walsh 3.5.13-3Dan Walsh 3.5.13-2Dan Walsh 3.5.13-1Dan Walsh 3.5.12-3Dan Walsh 3.5.12-2Dan Walsh 3.5.12-1Dan Walsh 3.5.11-1Dan Walsh 3.5.10-3Dan Walsh 3.5.10-2Dan Walsh 3.5.10-1Dan Walsh 3.5.9-4Dan Walsh 3.5.9-3Dan Walsh 3.5.9-2Dan Walsh 3.5.9-1Dan Walsh 3.5.8-7Dan Walsh 3.5.8-6Dan Walsh 3.5.8-5Dan Walsh 3.5.8-4Dan Walsh 3.5.8-3Dan Walsh 3.5.8-1Dan Walsh 3.5.7-2Dan Walsh 3.5.7-1Dan Walsh 3.5.6-2Dan Walsh 3.5.6-1Dan Walsh 3.5.5-4Dan Walsh 3.5.5-3Dan Walsh 3.5.5-2Dan Walsh 3.5.4-2Dan Walsh 3.5.4-1Dan Walsh 3.5.3-1Dan Walsh 3.5.2-2Dan Walsh 3.5.1-5Dan Walsh 3.5.1-4Dan Walsh 3.5.1-3Dan Walsh 3.5.1-2Dan Walsh 3.5.1-1Dan Walsh 3.5.0-1Dan Walsh 3.4.2-14Dan Walsh 3.4.2-13Dan Walsh 3.4.2-12Dan Walsh 3.4.2-11Dan Walsh 3.4.2-10Dan Walsh 3.4.2-9Dan Walsh 3.4.2-8Dan Walsh 3.4.2-7Dan Walsh 3.4.2-6Dan Walsh 3.4.2-5Dan Walsh 3.4.2-4Dan Walsh 3.4.2-3Dan Walsh 3.4.2-2Dan Walsh 3.4.2-1Dan Walsh 3.4.1-5Dan Walsh 3.4.1-3Dan Walsh 3.4.1-2Dan Walsh 3.4.1-1Dan Walsh 3.3.1-48Dan Walsh 3.3.1-47Dan Walsh 3.3.1-46Dan Walsh 3.3.1-45Dan Walsh 3.3.1-44Dan Walsh 3.3.1-43Dan Walsh 3.3.1-42Dan Walsh 3.3.1-41Dan Walsh 3.3.1-39Dan Walsh 3.3.1-37Dan Walsh 3.3.1-36Dan Walsh 3.3.1-33Dan Walsh 3.3.1-32Dan Walsh 3.3.1-31Dan Walsh 3.3.1-30Dan Walsh 3.3.1-29Dan Walsh 3.3.1-28Dan Walsh 3.3.1-27Dan Walsh 3.3.1-26Dan Walsh 3.3.1-25Dan Walsh 3.3.1-24Dan Walsh 3.3.1-23Dan Walsh 3.3.1-22Dan Walsh 3.3.1-21Dan Walsh 3.3.1-20Dan Walsh 3.3.1-19Dan Walsh 3.3.1-18Dan Walsh 3.3.1-17Dan Walsh 3.3.1-16Dan Walsh 3.3.1-15Bill Nottingham 3.3.1-14Dan Walsh 3.3.1-13Dan Walsh 3.3.1-12Dan Walsh 3.3.1-11Dan Walsh 3.3.1-10Dan Walsh 3.3.1-9Dan Walsh 3.3.1-8Dan Walsh 3.3.1-6Dan Walsh 3.3.1-5Dan Walsh 3.3.1-4Dan Walsh 3.3.1-2Dan Walsh 3.3.1-1Dan Walsh 3.3.0-2Dan Walsh 3.3.0-1Dan Walsh 3.2.9-2Dan Walsh 3.2.9-1Dan Walsh 3.2.8-2Dan Walsh 3.2.8-1Dan Walsh 3.2.7-6Dan Walsh 3.2.7-5Dan Walsh 3.2.7-3Dan Walsh 3.2.7-2Dan Walsh 3.2.7-1Dan Walsh 3.2.6-7Dan Walsh 3.2.6-6Dan Walsh 3.2.6-5Dan Walsh 3.2.6-4Dan Walsh 3.2.6-3Dan Walsh 3.2.6-2Dan Walsh 3.2.6-1Dan Walsh 3.2.5-25Dan Walsh 3.2.5-24Dan Walsh 3.2.5-22Dan Walsh 3.2.5-21Dan Walsh 3.2.5-20Dan Walsh 3.2.5-19Dan Walsh 3.2.5-18Dan Walsh 3.2.5-17Dan Walsh 3.2.5-16Dan Walsh 3.2.5-15Dan Walsh 3.2.5-14Dan Walsh 3.2.5-13Dan Walsh 3.2.5-12Dan Walsh 3.2.5-11Dan Walsh 3.2.5-10Dan Walsh 3.2.5-9Dan Walsh 3.2.5-8Dan Walsh 3.2.5-7Dan Walsh 3.2.5-6Dan Walsh 3.2.5-5Dan Walsh 3.2.5-4Dan Walsh 3.2.5-3Dan Walsh 3.2.5-2Dan Walsh 3.2.5-1Dan Walsh 3.2.4-5Dan Walsh 3.2.4-4Dan Walsh 3.2.4-3Dan Walsh 3.2.4-1Dan Walsh 3.2.4-1Dan Walsh 3.2.3-2Dan Walsh 3.2.3-1Dan Walsh 3.2.2-1Dan Walsh 3.2.1-3Dan Walsh 3.2.1-1Dan Walsh 3.1.2-2Dan Walsh 3.1.2-1Dan Walsh 3.1.1-1Dan Walsh 3.1.0-1Dan Walsh 3.0.8-30Dan Walsh 3.0.8-28Dan Walsh 3.0.8-27Dan Walsh 3.0.8-26Dan Walsh 3.0.8-25Dan Walsh 3.0.8-24Dan Walsh 3.0.8-23Dan Walsh 3.0.8-22Dan Walsh 3.0.8-21Dan Walsh 3.0.8-20Dan Walsh 3.0.8-19Dan Walsh 3.0.8-18Dan Walsh 3.0.8-17Dan Walsh 3.0.8-16Dan Walsh 3.0.8-15Dan Walsh 3.0.8-14Dan Walsh 3.0.8-13Dan Walsh 3.0.8-12Dan Walsh 3.0.8-11Dan Walsh 3.0.8-10Dan Walsh 3.0.8-9Dan Walsh 3.0.8-8Dan Walsh 3.0.8-7Dan Walsh 3.0.8-5Dan Walsh 3.0.8-4Dan Walsh 3.0.8-3Dan Walsh 3.0.8-2Dan Walsh 3.0.8-1Dan Walsh 3.0.7-10Dan Walsh 3.0.7-9Dan Walsh 3.0.7-8Dan Walsh 3.0.7-7Dan Walsh 3.0.7-6Dan Walsh 3.0.7-5Dan Walsh 3.0.7-4Dan Walsh 3.0.7-3Dan Walsh 3.0.7-2Dan Walsh 3.0.7-1Dan Walsh 3.0.6-3Dan Walsh 3.0.6-2Dan Walsh 3.0.6-1Dan Walsh 3.0.5-11Dan Walsh 3.0.5-10Dan Walsh 3.0.5-9Dan Walsh 3.0.5-8Dan Walsh 3.0.5-7Dan Walsh 3.0.5-6Dan Walsh 3.0.5-5Dan Walsh 3.0.5-4Dan Walsh 3.0.5-3Dan Walsh 3.0.5-2Dan Walsh 3.0.5-1Dan Walsh 3.0.4-6Dan Walsh 3.0.4-5Dan Walsh 3.0.4-4Dan Walsh 3.0.4-3Dan Walsh 3.0.4-2Dan Walsh 3.0.4-1Dan Walsh 3.0.3-6Dan Walsh 3.0.3-5Dan Walsh 3.0.3-4Dan Walsh 3.0.3-3Dan Walsh 3.0.3-2Dan Walsh 3.0.3-1Dan Walsh 3.0.2-9Dan Walsh 3.0.2-8Dan Walsh 3.0.2-7Dan Walsh 3.0.2-5Dan Walsh 3.0.2-4Dan Walsh 3.0.2-3Dan Walsh 3.0.2-2Dan Walsh 3.0.1-5Dan Walsh 3.0.1-4Dan Walsh 3.0.1-3Dan Walsh 3.0.1-2Dan Walsh 3.0.1-1Dan Walsh 2.6.5-3Dan Walsh 2.6.5-2Dan Walsh 2.6.4-7Dan Walsh 2.6.4-6Dan Walsh 2.6.4-5Dan Walsh 2.6.4-2Dan Walsh 2.6.4-1Dan Walsh 2.6.3-1Dan Walsh 2.6.2-1Dan Walsh 2.6.1-4Dan Walsh 2.6.1-2Dan Walsh 2.6.1-1Dan Walsh 2.5.12-12Dan Walsh 2.5.12-11Dan Walsh 2.5.12-10Dan Walsh 2.5.12-8Dan Walsh 2.5.12-5Dan Walsh 2.5.12-4Dan Walsh 2.5.12-3Dan Walsh 2.5.12-2Dan Walsh 2.5.12-1Dan Walsh 2.5.11-8Dan Walsh 2.5.11-7Dan Walsh 2.5.11-6Dan Walsh 2.5.11-5Dan Walsh 2.5.11-4Dan Walsh 2.5.11-3Dan Walsh 2.5.11-2Dan Walsh 2.5.11-1Dan Walsh 2.5.10-2Dan Walsh 2.5.10-1Dan Walsh 2.5.9-6Dan Walsh 2.5.9-5Dan Walsh 2.5.9-4Dan Walsh 2.5.9-3Dan Walsh 2.5.9-2Dan Walsh 2.5.8-8Dan Walsh 2.5.8-7Dan Walsh 2.5.8-6Dan Walsh 2.5.8-5Dan Walsh 2.5.8-4Dan Walsh 2.5.8-3Dan Walsh 2.5.8-2Dan Walsh 2.5.8-1Dan Walsh 2.5.7-1Dan Walsh 2.5.6-1Dan Walsh 2.5.5-2Dan Walsh 2.5.5-1Dan Walsh 2.5.4-2Dan Walsh 2.5.4-1Dan Walsh 2.5.3-3Dan Walsh 2.5.3-2Dan Walsh 2.5.3-1Dan Walsh 2.5.2-6Dan Walsh 2.5.2-5Dan Walsh 2.5.2-4Dan Walsh 2.5.2-3Dan Walsh 2.5.2-2Dan Walsh 2.5.2-1Dan Walsh 2.5.1-5Dan Walsh 2.5.1-4Dan Walsh 2.5.1-2Dan Walsh 2.5.1-1Dan Walsh 2.4.6-20Dan Walsh 2.4.6-19Dan Walsh 2.4.6-18Dan Walsh 2.4.6-17Dan Walsh 2.4.6-16Dan Walsh 2.4.6-15Dan Walsh 2.4.6-14Dan Walsh 2.4.6-13Dan Walsh 2.4.6-12Dan Walsh 2.4.6-11Dan Walsh 2.4.6-10Dan Walsh 2.4.6-9Dan Walsh 2.4.6-8Dan Walsh 2.4.6-7Dan Walsh 2.4.6-6Dan Walsh 2.4.6-5Dan Walsh 2.4.6-4Dan Walsh 2.4.6-3Dan Walsh 2.4.6-1Dan Walsh 2.4.5-4Dan Walsh 2.4.5-3Dan Walsh 2.4.5-2Dan Walsh 2.4.5-1Dan Walsh 2.4.4-2Dan Walsh 2.4.4-2Dan Walsh 2.4.4-1Dan Walsh 2.4.3-13Dan Walsh 2.4.3-12Dan Walsh 2.4.3-11Dan Walsh 2.4.3-10Dan Walsh 2.4.3-9Dan Walsh 2.4.3-8Dan Walsh 2.4.3-7Dan Walsh 2.4.3-6Dan Walsh 2.4.3-5Dan Walsh 2.4.3-4Dan Walsh 2.4.3-3Dan Walsh 2.4.3-2Dan Walsh 2.4.3-1Dan Walsh 2.4.2-8Dan Walsh 2.4.2-7James Antill 2.4.2-6Dan Walsh 2.4.2-5Dan Walsh 2.4.2-4Dan Walsh 2.4.2-3Dan Walsh 2.4.2-2Dan Walsh 2.4.2-1Dan Walsh 2.4.1-5Dan Walsh 2.4.1-4Dan Walsh 2.4.1-3Dan Walsh 2.4.1-2Dan Walsh 2.4-4Dan Walsh 2.4-3Dan Walsh 2.4-2Dan Walsh 2.4-1Dan Walsh 2.3.19-4Dan Walsh 2.3.19-3Dan Walsh 2.3.19-2Dan Walsh 2.3.19-1James Antill 2.3.18-10James Antill 2.3.18-9Dan Walsh 2.3.18-8Dan Walsh 2.3.18-7Dan Walsh 2.3.18-6Dan Walsh 2.3.18-5Dan Walsh 2.3.18-4Dan Walsh 2.3.18-3Dan Walsh 2.3.18-2Dan Walsh 2.3.18-1Dan Walsh 2.3.17-2Dan Walsh 2.3.17-1Dan Walsh 2.3.16-9Dan Walsh 2.3.16-8Dan Walsh 2.3.16-7Dan Walsh 2.3.16-6Dan Walsh 2.3.16-5Dan Walsh 2.3.16-4Dan Walsh 2.3.16-2Dan Walsh 2.3.16-1Dan Walsh 2.3.15-2Dan Walsh 2.3.15-1Dan Walsh 2.3.14-8Dan Walsh 2.3.14-7Dan Walsh 2.3.14-6Dan Walsh 2.3.14-4Dan Walsh 2.3.14-3Dan Walsh 2.3.14-2Dan Walsh 2.3.14-1Dan Walsh 2.3.13-6Dan Walsh 2.3.13-5Dan Walsh 2.3.13-4Dan Walsh 2.3.13-3Dan Walsh 2.3.13-2Dan Walsh 2.3.13-1Dan Walsh 2.3.12-2Dan Walsh 2.3.12-1Dan Walsh 2.3.11-1Dan Walsh 2.3.10-7Dan Walsh 2.3.10-6Dan Walsh 2.3.10-3Dan Walsh 2.3.10-1Dan Walsh 2.3.9-6Dan Walsh 2.3.9-5Dan Walsh 2.3.9-4Dan Walsh 2.3.9-3Dan Walsh 2.3.9-2Dan Walsh 2.3.9-1Dan Walsh 2.3.8-2Dan Walsh 2.3.7-1Dan Walsh 2.3.6-4Dan Walsh 2.3.6-3Dan Walsh 2.3.6-2Dan Walsh 2.3.6-1Dan Walsh 2.3.5-1Dan Walsh 2.3.4-1Dan Walsh 2.3.3-20Dan Walsh 2.3.3-19Dan Walsh 2.3.3-18Dan Walsh 2.3.3-17Dan Walsh 2.3.3-16Dan Walsh 2.3.3-15Dan Walsh 2.3.3-14Dan Walsh 2.3.3-13Dan Walsh 2.3.3-12Dan Walsh 2.3.3-11Dan Walsh 2.3.3-10Dan Walsh 2.3.3-9Dan Walsh 2.3.3-8Dan Walsh 2.3.3-7Dan Walsh 2.3.3-6Dan Walsh 2.3.3-5Dan Walsh 2.3.3-4Dan Walsh 2.3.3-3Dan Walsh 2.3.3-2Dan Walsh 2.3.3-1Dan Walsh 2.3.2-4Dan Walsh 2.3.2-3Dan Walsh 2.3.2-2Dan Walsh 2.3.2-1Dan Walsh 2.3.1-1Dan Walsh 2.2.49-1Dan Walsh 2.2.48-1Dan Walsh 2.2.47-5Dan Walsh 2.2.47-4Dan Walsh 2.2.47-3Dan Walsh 2.2.47-1Dan Walsh 2.2.46-2Dan Walsh 2.2.46-1Dan Walsh 2.2.45-3Dan Walsh 2.2.45-2Dan Walsh 2.2.45-1Dan Walsh 2.2.44-1Dan Walsh 2.2.43-4Dan Walsh 2.2.43-3Dan Walsh 2.2.43-2Dan Walsh 2.2.43-1Dan Walsh 2.2.42-4Dan Walsh 2.2.42-3Dan Walsh 2.2.42-2Dan Walsh 2.2.42-1Dan Walsh 2.2.41-1Dan Walsh 2.2.40-2Dan Walsh 2.2.40-1Dan Walsh 2.2.39-2Dan Walsh 2.2.39-1Dan Walsh 2.2.38-6Dan Walsh 2.2.38-5Dan Walsh 2.2.38-4Dan Walsh 2.2.38-3Dan Walsh 2.2.38-2Dan Walsh 2.2.38-1Dan Walsh 2.2.37-1Dan Walsh 2.2.36-2Dan Walsh 2.2.36-1James Antill 2.2.35-2Dan Walsh 2.2.35-1Dan Walsh 2.2.34-3Dan Walsh 2.2.34-2Dan Walsh 2.2.34-1Dan Walsh 2.2.33-1Dan Walsh 2.2.32-2Dan Walsh 2.2.32-1Dan Walsh 2.2.31-1Dan Walsh 2.2.30-2Dan Walsh 2.2.30-1Dan Walsh 2.2.29-6Russell Coker 2.2.29-5Dan Walsh 2.2.29-4Dan Walsh 2.2.29-3Dan Walsh 2.2.29-2Dan Walsh 2.2.29-1Dan Walsh 2.2.28-3Dan Walsh 2.2.28-2Dan Walsh 2.2.28-1Dan Walsh 2.2.27-1Dan Walsh 2.2.25-3Dan Walsh 2.2.25-2Dan Walsh 2.2.24-1Dan Walsh 2.2.23-19Dan Walsh 2.2.23-18Dan Walsh 2.2.23-17Karsten Hopp 2.2.23-16Dan Walsh 2.2.23-15Dan Walsh 2.2.23-14Dan Walsh 2.2.23-13Dan Walsh 2.2.23-12Jeremy Katz - 2.2.23-11Jeremy Katz - 2.2.23-10Dan Walsh 2.2.23-9Dan Walsh 2.2.23-8Dan Walsh 2.2.23-7Dan Walsh 2.2.23-5Dan Walsh 2.2.23-4Dan Walsh 2.2.23-3Dan Walsh 2.2.23-2Dan Walsh 2.2.23-1Dan Walsh 2.2.22-2Dan Walsh 2.2.22-1Dan Walsh 2.2.21-9Dan Walsh 2.2.21-8Dan Walsh 2.2.21-7Dan Walsh 2.2.21-6Dan Walsh 2.2.21-5Dan Walsh 2.2.21-4Dan Walsh 2.2.21-3Dan Walsh 2.2.21-2Dan Walsh 2.2.21-1Dan Walsh 2.2.20-1Dan Walsh 2.2.19-2Dan Walsh 2.2.19-1Dan Walsh 2.2.18-2Dan Walsh 2.2.18-1Dan Walsh 2.2.17-2Dan Walsh 2.2.16-1Dan Walsh 2.2.15-4Dan Walsh 2.2.15-3Dan Walsh 2.2.15-1Dan Walsh 2.2.14-2Dan Walsh 2.2.14-1Dan Walsh 2.2.13-1Dan Walsh 2.2.12-1Dan Walsh 2.2.11-2Dan Walsh 2.2.11-1Dan Walsh 2.2.10-1Dan Walsh 2.2.9-2Dan Walsh 2.2.9-1Dan Walsh 2.2.8-2Dan Walsh 2.2.7-1Dan Walsh 2.2.6-3Dan Walsh 2.2.6-2Dan Walsh 2.2.6-1Dan Walsh 2.2.5-1Dan Walsh 2.2.4-1Dan Walsh 2.2.3-1Dan Walsh 2.2.2-1Dan Walsh 2.2.1-1Dan Walsh 2.1.13-1Dan Walsh 2.1.12-3Dan Walsh 2.1.11-1Dan Walsh 2.1.10-1Jeremy Katz - 2.1.9-2Dan Walsh 2.1.9-1Dan Walsh 2.1.8-3Dan Walsh 2.1.8-2Dan Walsh 2.1.8-1Dan Walsh 2.1.7-4Dan Walsh 2.1.7-3Dan Walsh 2.1.7-2Dan Walsh 2.1.7-1Dan Walsh 2.1.6-24Dan Walsh 2.1.6-23Dan Walsh 2.1.6-22Dan Walsh 2.1.6-21Dan Walsh 2.1.6-20Dan Walsh 2.1.6-18Dan Walsh 2.1.6-17Dan Walsh 2.1.6-16Dan Walsh 2.1.6-15Dan Walsh 2.1.6-14Dan Walsh 2.1.6-13Dan Walsh 2.1.6-11Dan Walsh 2.1.6-10Dan Walsh 2.1.6-9Dan Walsh 2.1.6-8Dan Walsh 2.1.6-5Dan Walsh 2.1.6-4Dan Walsh 2.1.6-3Dan Walsh 2.1.6-2Dan Walsh 2.1.6-1Dan Walsh 2.1.4-2Dan Walsh 2.1.4-1Dan Walsh 2.1.3-1Jeremy Katz - 2.1.2-3Dan Walsh 2.1.2-2Dan Walsh 2.1.2-1Dan Walsh 2.1.1-3Dan Walsh 2.1.1-2Dan Walsh 2.1.1-1Dan Walsh 2.1.0-3Dan Walsh 2.1.0-2.Dan Walsh 2.1.0-1.Dan Walsh 2.0.11-2.Dan Walsh 2.0.11-1.Dan Walsh 2.0.9-1.Dan Walsh 2.0.8-1.Dan Walsh 2.0.7-3Dan Walsh 2.0.7-2Dan Walsh 2.0.6-2Dan Walsh 2.0.5-4Dan Walsh 2.0.5-1Dan Walsh 2.0.4-1Dan Walsh 2.0.2-2Dan Walsh 2.0.2-1Dan Walsh 2.0.1-2Dan Walsh 2.0.1-1- Allow certmonger to sends emails Resolves: rhbz#1588363- Allow snapperd_t domain to unmount fs_t filesystems Resolves: rhbz#1561424- Allow snapperd_t to set priority for kernel processes Resolves: rhbz#1558656- Backport several changes for snapperdfrom Fedora Rawhide Resolves: rhbz#1558656- Label /usr/libexec/dbus-1/dbus-daemon-launch-helper as dbusd_exec_t to have systemd dbus services running in the correct domain instead of unconfined_service_t if unconfined.pp module is enabled. Resolves: rhbz#1546721- Allow openvswitch_t stream connect svirt_t Resolves: rhbz#1540702- Allow openvswitch domain to manage svirt_tmp_t sock files Resolves: rhbz#1540702 - Fix broken systemd_tmpfiles_run() interface- Allow dirsrv_t domain to create tmp link files Resolves: rhbz#1536011 - Label /usr/sbin/ldap-agent as dirsrv_snmp_exec_t Resolves: rhbz#1428568 - Allow ipsec_mgmt_t execute ifconfig_exec_t binaries - Allow ipsec_mgmt_t nnp domain transition to ifconfig_t Resolves: rhbz#1539416- Allow svirt_domain to create socket files in /tmp with label svirt_tmp_t Resolves: rhbz#1540702 - Allow keepalived_t domain getattr proc filesystem Resolves: rhbz#1477542 - Rename svirt_sandbox_file_t to container_file_t and svirt_lxc_net_t to container_t Resolves: rhbz#1538544 - Allow ipsec_t nnp transistions to domains ipsec_mgmt_t and ifconfig_t Resolves: rhbz:#1539416 - Allow systemd_logind_t domain to bind on dhcpd_port_t,pki_ca_port_t,flash_port_t Resolves: rhbz#1479350- Allow openvswitch_t domain to read cpuid, write to sysfs files and creating openvswitch_tmp_t sockets Resolves: rhbz#1535196 - Add new interface ppp_filetrans_named_content() Resolves: rhbz#1530601 - Allow keepalived_t read sysctl_net_t files Resolves: rhbz#1477542 - Allow puppetmaster_t domtran to puppetagent_t Resolves: rhbz#1376893 - Allow kdump_t domain to read kernel ring buffer Resolves: rhbz#1540004 - Allow ipsec_t domain to exec ifconfig_exec_t binaries. Resolves: rhbz#1539416 - Allow unconfined_domain_typ to create pppd_lock_t directory in /var/lock Resolves: rhbz#1530601 - Allow updpwd_t domain to create files in /etc with shadow_t label Resolves: rhbz#1412838 - Allow iptables sysctl load list support with SELinux enforced Resolves: rhbz#1535572- Allow virt_domains to acces infiniband pkeys. Resolves: rhbz#1533183 - Label /usr/libexec/ipsec/addconn as ipsec_exec_t to run this script as ipsec_t instead of init_t Resolves: rhbz#1535133 - Allow audisp_remote_t domain write to files on all levels Resolves: rhbz#1534924- Allow vmtools_t domain creating vmware_log_t files Resolves: rhbz#1507048 - Allow openvswitch_t domain to acces infiniband devices Resolves: rhbz#1532705- Allow chronyc_t domain to manage chronyd_keys_t files. Resolves: rhbz#1530525 - Make virtlog_t domain system dbus client Resolves: rhbz#1481109 - Update openvswitch SELinux module Resolves: rhbz#1482682 - Allow virtd_t to create also sock_files with label virt_var_run_t Resolves: rhbz#1484075- Allow domains that manage logfiles to man logdirs Resolves: rhbz#1523811- Label /dev/drm_dp_aux* as xserver_misc_device_t Resolves: rhbz#1520897 - Allow sysadm_t to run puppet_exec_t binaries as puppet_t Resolves: rhbz#1255745- Allow tomcat_t to manage pki_tomcat pid files Resolves: rhbz#1478371 - networkmanager: allow talking to openvswitch Resolves: rhbz#1517247 - Allow networkmanager_t and opensm_t to manage subned endports for IPoIB VLANs Resolves: rhbz#1517895 - Allow domains networkmanager_t and opensm_t to control IPoIB VLANs Resolves: rhbz#1517744 - Fix typo in guest interface file Resolves: rhbz#1468254 - Allow isnsd_t domain to accept tcp connections. Resolves: rhbz#1390208- Allow getty to use usbttys Resolves: rhbz#1514235- Allow ldap_t domain to manage also slapd_tmp_t lnk files Resolves: rhbz#1510883 - Allow cluster_t domain creating bundles directory with label var_log_t instead of cluster_var_log_t Resolves: rhbz:#1508360 - Add dac_read_search and dac_override capabilities to ganesha Resolves: rhbz#1483451- Add dependency for policycoreutils-2.5.18 becuase of new cgroup_seclabel policy capability Resolves: rhbz#1510145- Allow jabber domains to connect to postgresql ports Resolves: rhbz#1438489 - Dontaudit accountsd domain creating dirs in /root Resolves: rhbz#1456760 - Dontaudit slapd_t to block suspend system Resolves: rhbz: #1479759 - Allow spamc_t to stream connect to cyrus. Resolves: rhbz#1382955 - allow imapd to read /proc/net/unix file Resolves: rhbz#1393030 - Allow passenger to connect to mysqld_port_t Resolves: rhbz#1433464- Allow chronyc_t domain to use user_ptys Resolves: rhbz#1470150 - allow ptp4l to read /proc/net/unix file - Allow conmand to use usb ttys. Resolves: rhbz#1505121 - Label all files /var/log/opensm.* as opensm_log_t because opensm creating new log files with name opensm-subnet.lst Resolves: rhbz#1505845 - Allow chronyd daemon to execute chronyc. Resolves: rhbz#1508486 - Allow firewalld exec ldconfig. Resolves: rhbz#1375576 - Allow mozilla_plugin_t domain to dbus chat with devicekit Resolves: rhbz#1460477 - Dontaudit leaked logwatch pipes Resolves: rhbz#1450119 - Label /usr/bin/VGAuthService as vmtools_exec_t to confine this daemon. Resolves: rhbz#1507048 - Allow httpd_t domain to execute hugetlbfs_t files Resolves: rhbz#1507682 - Allow nfsd_t domain to read configfs_t files/dirs Resolves: rhbz#1439442 - Hide all allow rules with ptrace inside deny_ptrace boolean Resolves: rhbz#1421075 - Allow tgtd_t domain to read generic certs Resolves: rhbz#1438532 - Allow ptp4l to send msgs via dgram socket to unprivileged user domains Resolves: rhbz#1429853 - Allow dirsrv_snmp_t to use inherited user ptys and read system state Resolves: rhbz#1428568 - Allow glusterd_t domain to create own tmpfs dirs/files Resolves: rhbz#1411310 - Allow keepalived stream connect to snmp Resolves: rhbz#1401556 - After fix in kernel where LSM hooks for dac_override and dac_search_read capability was swaped we need to fix it also in policy Resolves: rhbz#1507089- Allow pegasus_openlmi_services_t to read generic certs Resolves: rhbz#1462292 - Allow ganesha_t domain to read random device Resolves: rhbz#1494382 - Allow zabbix_t domain to change its resource limits Resolves: rhbz:#1504074 - Add new boolean nagios_use_nfs Resolves: rhbz#1504826 - Allow system_mail_t to search network sysctls Resolves: rhbz#1505779 - Add samba_manage_var_dirs() interface - Fix typo bug in virt filecontext file - Allow nagios_script_t to read nagios_spool_t files Resolves: rhbz#1426824 - Allow samba to manage var dirs/files Resolves: rhbz#1415088 - Allow sbd_t to create own sbd_tmpfs_t dirs/files Resolves: rhbz#1380795 - Allow firewalld and networkmanager to chat with hypervkvp via dbus Resolves: rhbz#1377276 - Allow dmidecode to read rhsmcert_log_t files Resolves: rhbz#1300799 - Allow mail system to connect mariadb sockets. Resolves: rhbz#1368642 - Allow logrotate_t to change passwd and reloead services Resolves: rhbz#1450789 - Allow mail system to connect mariadb sockets. Resolves: rhbz#1368642 - Allow logrotate_t to change passwd and reloead services Resolves: rhbz#1450789 - Allow pegasus_openlmi_services_t to read generic certs Resolves: rhbz#1462292 - Allow ganesha_t domain to read random device Resolves: rhbz#1494382 - Allow zabbix_t domain to change its resource limits Resolves: rhbz:#1504074 - Add new boolean nagios_use_nfs Resolves: rhbz#1504826 - Allow system_mail_t to search network sysctls Resolves: rhbz#1505779 - Add samba_manage_var_dirs() interface - Fix typo bug in virt filecontext file - Allow nagios_script_t to read nagios_spool_t files Resolves: rhbz#1426824 - Allow samba to manage var dirs/files Resolves: rhbz#1415088 - Allow sbd_t to create own sbd_tmpfs_t dirs/files Resolves: rhbz#1380795 - Allow firewalld and networkmanager to chat with hypervkvp via dbus Resolves: rhbz#1377276 - Allow dmidecode to read rhsmcert_log_t files Resolves: rhbz#1300799 - Allow mail system to connect mariadb sockets. Resolves: rhbz#1368642 - Allow logrotate_t to change passwd and reloead services Resolves: rhbz#1450789 - Allow chronyd_t do request kernel module and block_suspend capability Resolves: rhbz#1350765 - Allow system_cronjob_t to create /var/lib/letsencrypt dir with right label Resolves: rhbz#1447278 - Allow httpd_t also read httpd_user_content_type dirs when httpd_enable_homedirs is enables Resolves: rhbz#1491994 - Allow svnserve to use kerberos Resolves: rhbz#1475271 - Allow conman to use ptmx. Add conman_use_nfs boolean Resolves: rhbz#1377915 - Add nnp transition for services using: NoNewPrivileges systemd security feature Resolves: rhbz#1311430 - Add SELinux support for chronyc Resolves: rhbz#1470150 - Add dac_read_search capability to openvswitch_t domain Resolves: rhbz#1501336 - Allow svnserve to manage own svnserve_log_t files/dirs Resolves: rhbz#1480741 - Allow keepalived_t to search network sysctls Resolves: rhbz#1477542 - Allow puppetagent_t domain dbus chat with rhsmcertd_t domain Resolves: rhbz#1446777 - Add dccp_socket into socker_class_set subset Resolves: rhbz#1459941 - Allow iptables_t to run setfiles to restore context on system Resolves: rhbz#1489118 - Label 20514 tcp/udp ports as syslogd_port_t Label 10514 tcp/udp portas as syslog_tls_port_t Resolves: rhbz:#1411400 - Make nnp transition Active Resolves: rhbz#1480518 - Label tcp 51954 as isns_port_t Resolves: rhbz#1390208 - Add dac_read_search capability chkpwd_t Resolves: rhbz#1376991 - Add support for running certbot(letsencrypt) in crontab Resolves: rhbz#1447278 - Add init_nnp_daemon_domain interface - Allow xdm_t to gettattr /dev/loop-control device Resolves: rhbz#1462925 - Allow nnp trasintion for unconfined_service_t Resolves: rhbz#1311430 - Allow unpriv user domains and unconfined_service_t to use chronyc Resolves: rhbz#1470150 - Allow iptables to exec plymouth. Resolves: rhbz#1480374 - Fix typo in fs_unmount_tracefs interface. Resolves: rhbz#1371057 - Label postgresql-check-db-dir as postgresql_exec_t Resolves: rhbz#1490956- We should not ship selinux-policy with permissivedomains enabled. Resolves: rhbz#1494172 - Fix order of installing selinux-policy-sandbox, because of depedencied in sandbox module, selinux-policy-targeted needs to be installed before selinux-policy-sandbox Resolves: rhbz#1492606- Allow tomcat to setsched Resolves: rhbz#1492730 - Fix rules blocking ipa-server upgrade process Resolves: rhbz#1478371 - Add new boolean tomcat_read_rpm_db() Resolves: rhbz#1477887 - Allow tomcat to connect on mysqld tcp ports - Add ctdbd_t domain sys_source capability and allow setrlimit Resolves: rhbz#1491235 - Fix keepalived SELinux module - Allow automount domain to manage mount pid files Resolves: rhbz#1482381 - Allow stunnel_t domain setsched Resolves: rhbz#1479383 - Add keepalived domain setpgid capability Resolves: rhbz#1486638 - Allow tomcat domain to connect to mssql port Resolves: rhbz#1484572 - Remove snapperd_t from unconfined domaines Resolves: rhbz#1365555 - Fix typo bug in apache module Resolves: rhbz#1397311 - Dontaudit that system_mail_t is trying to read /root/ files Resolves: rhbz#1147945 - Make working webadm_t userdomain Resolves: rhbz#1323792 - Allow redis domain to execute shell scripts. Resolves: rhbz#1421326 - Allow system_cronjob_t to create redhat-access-insights.log with var_log_t Resolves: rhbz#1473303 - Add couple capabilities to keepalived domain and allow get attributes of all domains Resolves: rhbz#1429327 - Allow dmidecode read rhsmcertd lock files Resolves: rhbz#1300799 - Add new interface rhsmcertd_rw_lock_files() Resolves: rhbz#1300799 - Label all plymouthd archives as plymouthd_var_log_t Resolves: rhbz#1478323 - Allow cloud_init_t to dbus chat with systemd_timedated_t Resolves: rhbz#1440730 - Allow logrotate_t to write to kmsg Resolves: rhbz#1397744 - Add capability kill to rhsmcertd_t Resolves: rhbz#1398338 - Disable mysqld_safe_t secure mode environment cleansing. Resolves: rhbz#1464063 - Allow winbind to manage smbd_tmp_t files Resolves: rhbz#1475566 - Dontaudit that system_mail_t is trying to read /root/ files Resolves: rhbz#1147945 - Make working webadm_t userdomain Resolves: rhbz#1323792 - Allow redis domain to execute shell scripts. Resolves: rhbz#1421326 - Allow system_cronjob_t to create redhat-access-insights.log with var_log_t Resolves: rhbz#1473303 - Add couple capabilities to keepalived domain and allow get attributes of all domains Resolves: rhbz#1429327 - Allow dmidecode read rhsmcertd lock files Resolves: rhbz#1300799 - Add new interface rhsmcertd_rw_lock_files() Resolves: rhbz#1300799 - Label all plymouthd archives as plymouthd_var_log_t Resolves: rhbz#1478323 - Allow cloud_init_t to dbus chat with systemd_timedated_t Resolves: rhbz#1440730 - Allow logrotate_t to write to kmsg Resolves: rhbz#1397744 - Add capability kill to rhsmcertd_t Resolves: rhbz#1398338 - Disable mysqld_safe_t secure mode environment cleansing. Resolves: rhbz#1464063 - Allow winbind to manage smbd_tmp_t files Resolves: rhbz#1475566 - Add interface systemd_tmpfiles_run - End of file cannot be in comment - Allow systemd-logind to use ypbind Resolves: rhbz#1479350 - Add creating opasswd file with shadow_t SELinux label in auth_manage_shadow() interface Resolves: rhbz#1412838 - Allow sysctl_irq_t assciate with proc_t Resolves: rhbz#1485909 - Enable cgourp sec labeling Resolves: rhbz#1485947 - Add cgroup_seclabel policycap. Resolves: rhbz#1485947 - Allow sshd_t domain to send signull to xdm_t processes Resolves: rhbz#1448959 - Allow updpwd_t domain auth file name trans Resolves: rhbz#1412838 - Allow sysadm user to run systemd-tmpfiles Resolves: rbhz#1325364 - Add support labeling for vmci and vsock device Resolves: rhbz#1451358 - Add userdom_dontaudit_manage_admin_files() interface Resolves: rhbz#1323792 - Allow iptables_t domain to read files with modules_conf_t label Resolves: rhbz#1373220 - init: Add NoNewPerms support for systemd. Resolves: rhbz#1480518 - Add nnp_nosuid_transition policycap and related class/perm definitions. Resolves: rhbz#1480518 - refpolicy: Infiniband pkeys and endports Resolves: rhbz#1464484- Allow certmonger using systemctl on pki_tomcat unit files Resolves: rhbz#1481388- Allow targetd_t to create own tmp files. - Dontaudit targetd_t to exec rpm binary file. Resolves: rhbz#1373860 Resolves: rhbz#1424621- Add few rules to make working targetd daemon with SELinux Resolves: rhbz#1373860 - Allow ipmievd_t domain to load kernel modules Resolves: rhbz#1441081 - Allow logrotate to reload transient systemd unit Resolves: rhbz#1440515 - Add certwatch_t domain dac_override and dac_read_search capabilities Resolves: rhbz#1422000 - Allow postgrey to execute bin_t files and add postgrey into nsswitch_domain Resolves: rhbz#1412072 - Allow nscd_t domain to search network sysctls Resolves: rhbz#1432361 - Allow iscsid_t domain to read mount pid files Resolves: rhbz#1482097 - Allow ksmtuned_t domain manage sysfs_t files/dirs Resolves: rhbz#1413865 - Allow keepalived_t domain domtrans into iptables_t Resolves: rhbz#1477719 - Allow rshd_t domain reads net sysctls Resolves: rhbz#1477908 - Add interface seutil_dontaudit_read_module_store() - Update interface lvm_rw_pipes() by adding also open permission - Label /dev/clp device as vfio_device_t Resolves: rhbz#1477624 - Allow ifconfig_t domain unmount fs_t Resolves: rhbz#1477445 - Label /dev/gpiochip* devices as gpio_device_t Resolves: rhbz#1477618 - Add interface dev_manage_sysfs() Resolves: rhbz#1474989- Label /usr/libexec/sudo/sesh as shell_exec_t Resolves: rhbz#1480791- Allow tomcat_t domain couple capabilities to make working tomcat-jsvc Resolves: rhbz#1470735- Allow llpdad send dgram to libvirt Resolves: rhbz#1472722- Add new boolean gluster_use_execmem Resolves: rhbz#1469027 - Allow cluster_t and glusterd_t domains to dbus chat with ganesha service Resolves: rhbz#1468581- Dontaudit staff_t user read admin_home_t files. Resolves: rhbz#1290633- Allow couple rules needed to start targetd daemon with SELinux in enforcing mode Resolves: rhbz#1424621 - Add interface lvm_manage_metadata Resolves: rhbz#1424621- Allow sssd_t to read realmd lib files. Resolves: rhbz#1436689 - Add permission open to files_read_inherited_tmp_files() interface Resolves: rhbz#1290633 Resolves: rhbz#1457106- Allow unconfined_t user all user namespace capabilties. Resolves: rhbz#1461488- Allow httpd_t to read realmd_var_lib_t files Resolves: rhbz#1436689- Allow named_t to bind on udp 4321 port Resolves: rhbz#1312972 - Allow systemd-sysctl cap. sys_ptrace Resolves: rhbz#1458999- Allow pki_tomcat_t execute ldconfig. Resolves: rhbz#1436689- Allow iscsi domain load kernel module. Resolves: rhbz#1457874 - Allow keepalived domain connect to squid tcp port Resolves: rhbz#1457455 - Allow krb5kdc_t domain read realmd lib files. Resolves: rhbz#1436689 - xdm_t should view kernel keys Resolves: rhbz#1432645- Allow tomcat to connect on all unreserved ports - Allow ganesha to connect to all rpc ports Resolves: rhbz#1448090 - Update ganesha with another fixes. Resolves: rhbz#1448090 - Update rpc_read_nfs_state_data() interface to allow read also lnk_files. Resolves: rhbz#1448090 - virt_use_glusterd boolean should be in optional block Update ganesha module to allow create tmp files Resolves: rhbz#1448090 - Hide broken symptoms when machine is configured with network bounding.- Add new boolean virt_use_glusterd Resolves: rhbz#1455994 - Add capability sys_boot for sbd_t domain - Allow sbd_t domain to create rpc sysctls. Resolves: rhbz#1455631 - Allow ganesha_t domain to manage glusterd_var_run_t pid files. Resolves: rhbz#1448090- Create new interface: glusterd_read_lib_files() - Allow ganesha read glusterd lib files. - Allow ganesha read network sysctls Resolves: rhbz#1448090- Add few allow rules to ganesha module Resolves: rhbz#1448090 - Allow condor_master_t to read sysctls. Resolves: rhbz#1277506 - Add dac_override cap to ctdbd_t domain Resolves: rhbz#1435708 - Label 8750 tcp/udp port as dey_keyneg_port_t Resolves: rhbz#1448090- Add ganesha_use_fusefs boolean. Resolves: rhbz#1448090- Allow httpd_t reading kerberos kdc config files Resolves: rhbz#1452215 - Allow tomcat_t domain connect to ibm_dt_2 tcp port. Resolves: rhbz#1447436 - Allow stream connect to initrc_t domains Resolves: rhbz#1447436 - Allow dnsmasq_t domain to read systemd-resolved pid files. Resolves: rhbz#1453114 - Allow tomcat domain name_bind on tcp bctp_port_t Resolves: rhbz#1451757 - Allow smbd_t domain generate debugging files under /var/run/gluster. These files are created through the libgfapi.so library that provides integration of a GlusterFS client in the Samba (vfs_glusterfs) process. Resolves: rhbz#1447669 - Allow condor_master_t write to sysctl_net_t Resolves: rhbz#1277506 - Allow nagios check disk plugin read /sys/kernel/config/ Resolves: rhbz#1277718 - Allow pcp_pmie_t domain execute systemctl binary Resolves: rhbz#1271998 - Allow nagios to connect to stream sockets. Allow nagios start httpd via systemctl Resolves: rhbz#1247635 - Label tcp/udp port 1792 as ibm_dt_2_port_t Resolves: rhbz#1447436 - Add interface fs_read_configfs_dirs() - Add interface fs_read_configfs_files() - Fix systemd_resolved_read_pid interface - Add interface systemd_resolved_read_pid() Resolves: rhbz#1453114 - Allow sshd_net_t domain read/write into crypto devices Resolves: rhbz#1452759 - Label 8999 tcp/udp as bctp_port_t Resolves: rhbz#1451757- nmbd_t needs net_admin capability like smbd Resolves: rhbz#1431859 - Dontaudit net_admin capability for domains postfix_master_t and postfix_qmgr_t Resolves: rhbz#1431859 - Allow rngd domain read sysfs_t Resolves: rhbz#1451735 - Add interface pki_manage_common_files() Resolves: rhbz#1447436 - Allow tomcat_t domain to manage pki_common_t files and dirs Resolves: rhbz#1447436 - Use stricter fc rules for sssd sockets in /var/run Resolves: rhbz#1448060 - Allow certmonger reads httpd_config_t files Resolves: rhbz#1436689 - Allow keepalived_t domain creating netlink_netfilter_socket. Resolves: rhbz#1451684 - Allow tomcat domain read rpm_var_lib_t files Allow tomcat domain exec rpm_exec_t files Allow tomcat domain name connect on oracle_port_t Allow tomcat domain read cobbler_var_lib_t files. Resolves: rhbz#1451318 - Make able deply overcloud via neutron_t to label nsfs as fs_t Resolves: rhbz#1373321- Allow tomcat domain read rpm_var_lib_t files Allow tomcat domain exec rpm_exec_t files Allow tomcat domain name connect on oracle_port_t Allow tomcat domain read cobbler_var_lib_t files. Resolves: rhbz#1451318 - Allow sssd_t domain creating sock files labeled as sssd_var_run_t in /var/run/ Resolves: rhbz#1448056 Resolves: rhbz#1448060 - Allow tomcat_domain connect to * postgresql_port_t * amqp_port_t Allow tomcat_domain read network sysctls Resolves: rhbz#1450819 - Make able deply overcloud via neutron_t to label nsfs as fs_t Resolves: rhbz#1373321 - Allow netutils setpcap capability Resolves:1444438- Update targetd policy to accommodate changes in the service Resolves: rhbz#1424621 - Allow tomcat_domain connect to * postgresql_port_t * amqp_port_t Allow tomcat_domain read network sysctls Resolves: rhbz#1450819 - Update virt_rw_stream_sockets_svirt() interface to allow confined users set socket options. Resolves: rhbz#1415841 - Allow radius domain stream connec to postgresql Resolves: rhbz#1446145 - Allow virt_domain to read raw fixed_disk_device_t to make working blockcommit Resolves: rhbz#1449977 - Allow glusterd_t domain start ganesha service Resolves: rhbz#1448090 - Made few cosmetic changes in sssd SELinux module Resolves: rhbz#1448060 - sssd-kcm should not run as unconfined_service_t BZ(1447411) Resolves: rhbz#1448060 - Add sssd_secrets labeling Also add named_filetrans interface to make sure all labels are correct Resolves: rhbz#1448056 - Allow keepalived_t domain read usermodehelper_t Resolves: rhbz#1449769 - Allow tomcat_t domain read pki_common_t files Resolves: rhbz#1447436 - Add interface pki_read_common_files() Resolves: rhbz#1447436- Allow hypervkvp_t domain execute hostname Resolves: rhbz#1449064 - Dontaudit sssd_selinux_manager_t use of net_admin capability Resolves: rhbz#1444955 - Allow tomcat_t stream connect to pki_common_t Resolves: rhbz#1447436 - Dontaudit xguest_t's attempts to listen to its tcp_socket - Allow sssd_selinux_manager_t to ioctl init_t sockets Resolves: rhbz#1436689 - Allow _su_t to create netlink_selinux_socket Resolves rhbz#1146987 - Allow unconfined_t to module_load any file Resolves rhbz#1442994- Improve ipa_cert_filetrans_named_content() interface to also allow caller domain manage ipa_cert_t type. Resolves: rhbz#1436689- Allow pki_tomcat_t domain read /etc/passwd. Resolves: rhbz#1436689 - Allow tomcat_t domain read ipa_tmp_t files Resolves: rhbz#1436689 - Label new path for ipa-otpd Resolves: rhbz#1446353 - Allow radiusd_t domain stream connect to postgresql_t Resolves: rhbz#1446145 - Allow rhsmcertd_t to execute hostname_exec_t binaries. Resolves: rhbz#1445494 - Allow virtlogd to append nfs_t files when virt_use_nfs=1 Resolves: rhbz#1402561- Update tomcat policy to adjust for removing unconfined_domain attr. Resolves: rhbz#1432083 - Allow httpd_t domain read also httpd_user_content_type lnk_files. Resolves: rhbz#1383621 - Allow httpd_t domain create /etc/httpd/alias/ipaseesion.key with label ipa_cert_t Resolves: rhbz#1436689 - Dontaudit _gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Label /var/www/html/nextcloud/data as httpd_sys_rw_content_t Resolves: rhbz#1425530 - Add interface ipa_filetrans_named_content() Resolves: rhbz#1432115 - Allow tomcat use nsswitch Resolves: rhbz#1436689 - Allow certmonger_t start/status generic services Resolves: rhbz#1436689 - Allow dirsrv read cgroup files. Resolves: rhbz#1436689 - Allow ganesha_t domain read/write infiniband devices. Resolves: rhbz#1383784 - Allow sendmail_t domain sysctl_net_t files Resolves: rhbz#1369376 - Allow targetd_t domain read network state and getattr on loop_control_device_t Resolves: rhbz#1373860 - Allow condor_schedd_t domain send mails. Resolves: rhbz#1277506 - Alow certmonger to create own systemd unit files. Resolves: rhbz#1436689 - Allow staff to systemctl virt server when staff_use_svirt=1 Resolves: rhbz#1415841 - Allow unconfined_t create /tmp/ca.p12 file with ipa_tmp_t context Resolves: rhbz#1432115 - Label /sysroot/ostree/deploy/rhel-atomic-host/* as root_t Resolves: rhbz#1428112- Alow certmonger to create own systemd unit files. Resolves: rhbz#1436689- Hide broken symptoms when using kernel 3.10.0-514+ with network bonding. Postfix_picup_t domain requires NET_ADMIN capability which is not really needed. Resolves: rhbz#1431859 - Fix policy to reflect all changes in new IPA release Resolves: rhbz#1432115 Resolves: rhbz#1436689- Allow sbd_t to read/write fixed disk devices Resolves: rhbz#1440165 - Add sys_ptrace capability to radiusd_t domain Resolves: rhbz#1426641 - Allow cockpit_session_t domain connects to ssh tcp ports. Resolves: rhbz#1413509- Update tomcat policy to make working ipa install process Resolves: rhbz#1436689- Allow pcp_pmcd_t net_admin capability. - Allow pcp_pmcd_t read net sysctls - Allow system_cronjob_t create /var/run/pcp with pcp_var_run_t Resolves: rhbz#1336211- Fix all AVC denials during pkispawn of CA Resolves: rhbz#1436383 - Update pki interfaces and tomcat module Resolves: rhbz#1436689- Update pki interfaces and tomcat module Resolves: rhbz#1436689- Dontaudit firewalld wants write to /root Resolves: rhbz#1438708 - Dontaudit firewalld to create dirs in /root/ Resolves: rhbz#1438708 - Allow sendmail to search network sysctls Resolves: rhbz#1369376 - Add interface gssd_noatsecure() Resolves: rhbz#1438036 - Add interface gssproxy_noatsecure() Resolves: rhbz#1438036 - Dontaudit pcp_pmlogger_t search for xserver logs. Allow pcp_pmlogger_t to send signals to unconfined doamins Allow pcp_pmlogger_t to send logs to journals Resolves: rhbz#1379371 - Allow chronyd_t net_admin capability to allow support HW timestamping. Resolves: rhbz#1416015 - Update tomcat policy Resolves: rhbz#1436689 Resolves: rhbz#1436383 - Allow certmonger to start haproxy service Resolves: rhbz#1349394 - Allow init noatsecure for gssd and gssproxy Resolves: rhbz#1438036- geoclue wants to dbus chat with avahi Resolves: rhbz#1434286 - Allow iptables get list of kernel modules Resolves: rhbz#1367520 - Allow unconfined_domain_type to enable/disable transient unit Resolves: rhbz#1337041 - Add interfaces init_enable_transient_unit() and init_disable_transient_unit - Revert "Allow sshd setcap capability. This is needed due to latest changes in sshd" Resolves: rhbz#1435264 - Label sysroot dir under ostree as root_t Resolves: rhbz#1428112- Remove ganesha_t domain from permissive domains. Resolves: rhbz#1436988- Allow named_t domain bind on several udp ports Resolves: rhbz#1312972 - Update nscd_use() interface Resolves: rhbz#1281716 - Allow radius_t domain ptrace Resolves: rhbz#1426641 - Update nagios to allos exec systemctl Resolves: rhbz#1247635 - Update pcp SELinux module to reflect all pcp changes Resolves: rhbz#1271998 - Label /var/lib/ssl_db as squid_cache_t Label /etc/squid/ssl_db as squid_cache_t Resolves: rhbz#1325527 - Allow pcp_pmcd_t domain search for network sysctl Allow pcp_pmcd_t domain sys_ptrace capability Resolves: rhbz#1336211- Allow drbd load modules Resolves: rhbz#1134883 - Revert "Add sys_module capability for drbd Resolves: rhbz#1134883" - Allow stapserver list kernel modules Resolves: rhbz#1325976 - Update targetd policy Resolves: rhbz#1373860 - Add sys_admin capability to amanda Resolves: rhbz#1371561 - Allow hypervvssd_t to read all dirs. Resolves: rhbz#1331309 - Label /run/haproxy.sock socket as haproxy_var_run_t Resolves: rhbz#1386233 - Allow oddjob_mkhomedir_t to mamange autofs_t dirs. Resolves: rhbz#1408819 - Allow tomcat to connect on http_cache_port_t Resolves: rhbz#1432083 - Allow geoclue to send msgs to syslog. Resolves: rhbz#1434286 - Allow condor_master_t domain capability chown. Resolves: rhbz#1277506 - Update mta_filetrans_named_content() interface to allow calling domain create files labeled as etc_aliases_t in dir labeled as etc_mail_t. Resolves: rhbz#1167468 - Allow nova domain search for httpd configuration. Resolves: rhbz#1190761 - Add sys_module capability for drbd Resolves: rhbz#1134883 - Allow user_u users stream connect to dirsrv, Allow sysadm_u and staff_u users to manage dirsrv files Resolves: rhbz#1286474 - Allow systemd_networkd_t communicate with systemd_networkd_t via dbus Resolves: rhbz#1278010- Add haproxy_t domain fowner capability Resolves: rhbz#1386233 - Allow domain transition from ntpd_t to hwclock_t domains Resolves: rhbz#1375624 - Allow cockpit_session_t setrlimit and sys_resource Resolves: rhbz#1402316 - Dontaudit svirt_t read state of libvirtd domain Resolves: rhbz#1426106 - Update httpd and gssproxy modules to reflects latest changes in freeipa Resolves: rhbz#1432115 - Allow iptables read modules_conf_t Resolves: rhbz#1367520- Remove tomcat_t domain from unconfined domains Resolves: rhbz#1432083 - Create new boolean: sanlock_enable_home_dirs() Resolves: rhbz#1432783 - Allow mdadm_t domain to read/write nvme_device_t Resolves: rhbz#1431617 - Remove httpd_user_*_content_t domains from user_home_type attribute. This tighten httpd policy and acces to user data will be more strinct, and also fix mutual influente between httpd_enable_homedirs and httpd_read_user_content Resolves: rhbz#1383621 - Dontaudit domain to create any file in /proc. This is kernel bug. Resolves: rhbz#1412679 - Add interface dev_rw_nvme Resolves: rhbz#1431617- Allow gssproxy to get attributes on all filesystem object types. Resolves: rhbz#1430295 - Allow ganesha to chat with unconfined domains via dbus Resolves: rhbz#1426554 - add the policy required for nextcloud Resolves: rhbz#1425530 - Add nmbd_t capability2 block_suspend Resolves: rhbz#1425357 - Label /var/run/chrony as chronyd_var_run_t Resolves: rhbz#1416015 - Add domain transition from sosreport_t to iptables_t Resolves: rhbz#1359789 - Fix path to /usr/lib64/erlang/erts-5.10.4/bin/epmd Resolves: rhbz:#1332803- Update rpm macros Resolves: rhbz#1380854- Add handling booleans via selinux-policy macros in custom policy spec files. Resolves: rhbz#1380854- Allow openvswitch to load kernel modules Resolves: rhbz#1405479- Allow openvswitch read script state. Resolves: rhbz#1405479- Update ganesha policy Resolves: rhbz#1426554 Resolves: rhbz#1383784 - Allow chronyd to read adjtime Resolves: rhbz#1416015 - Fixes for chrony version 2.2 Resolves: rhbz#1416015 - Add interface virt_rw_stream_sockets_svirt() Resolves: rhbz#1415841 - Label /dev/ss0 as gpfs_device_t Resolves: rhbz#1383784 - Allow staff to rw svirt unix stream sockets. Resolves: rhbz#1415841 - Label /rhev/data-center/mnt as mnt_t Resolves: rhbz#1408275 - Associate sysctl_rpc_t with proc filesystems Resolves: rhbz#1350927 - Add new boolean: domain_can_write_kmsg Resolves: rhbz#1415715- Allow rhsmcertd_t dbus chat with system_cronjob_t Resolves: rhbz#1405341 - Allow openvswitch exec hostname and readinitrc_t files Resolves: rhbz#1405479 - Improve SELinux context for mysql_db_t objects. Resolves: rhbz#1391521 - Allow postfix_postdrop to communicate with postfix_master via pipe. Resolves: rhbz#1379736 - Add radius_use_jit boolean Resolves: rhbz#1426205 - Label /var/lock/subsys/iptables as iptables_lock_t Resolves: rhbz#1405441 - Label /usr/lib64/erlang/erts-5.10.4/bin/epmd as lib_t Resolves: rhbz#1332803 - Allow can_load_kernmodule to load kernel modules. Resolves: rhbz#1423427 Resolves: rhbz#1424621- Allow nfsd_t domain to create sysctls_rpc_t files Resolves: rhbz#1405304 - Allow openvswitch to create netlink generic sockets. Resolves: rhbz#1397974 - Create kernel_create_rpc_sysctls() interface Resolves: rhbz#1405304- Allow nfsd_t domain rw sysctl_rpc_t dirs Resolves: rhbz#1405304 - Allow cgdcbxd_t to manage cgroup files. Resolves: rhbz#1358493 - Allow cmirrord_t domain to create netlink_connector sockets Resolves: rhbz#1412670 - Allow fcoemon to create netlink scsitransport sockets Resolves: rhbz#1362496 - Allow quota_nld_t create netlink_generic sockets Resolves: rhbz#1358679 - Allow cgred_t create netlink_connector sockets Resolves: rhbz#1376357 - Add dhcpd_t domain fowner capability Resolves: rhbz#1358485 - Allow acpid to attempt to connect to the Linux kernel via generic netlink socket. Resolves: rhbz#1358478 - Rename docker module to container module Resolves: rhbz#1386916 - Allow setflies to mount tracefs Resolves: rhbz#1376357 - Allow iptables to read nsfs files. Resolves: rhbz#1411316 - Allow systemd_bootchart_t domain create dgram sockets. Resolves: rhbz#1365953 - Rename docker interfaces to container Resolves: rhbz#1386916- Allow initrc_t domain to run rhel-autorelabel script properly during boot process Resolves: rhbz#1379722 - Allow systemd_initctl_t to create and connect unix_dgram sockets Resolves: rhbz#1365947 - Allow ifconfig_t to mount/unmount nsfs_t filesystem Resolves: rhbz#1349814 - Add interfaces allowing mount/unmount nsfs_t filesystem Resolves: rhbz#1349814- Add interface init_stream_connectto() Resolves:rhbz#1365947 - Allow rhsmcertd domain signull kernel. Resolves: rhbz#1379781 - Allow kdumpgui domain to read nvme device - Allow insmod_t to load kernel modules Resolves: rhbz#1421598 - Add interface files_load_kernel_modules() Resolves: rhbz#1421598 - Add SELinux support for systemd-initctl daemon Resolves:rhbz#1365947 - Add SELinux support for systemd-bootchart Resolves: rhbz#1365953- Allow firewalld to getattr open search read modules_object_t:dir Resolves: rhbz#1418391 - Fix label for nagios plugins in nagios file conxtext file Resolves: rhbz#1277718 - Add sys_ptrace capability to pegasus domain Resolves: rhbz#1381238 - Allow sssd_t domain setpgid Resolves:rhbz#1416780 - After the latest changes in nfsd. We should allow nfsd_t to read raw fixed disk. Resolves: rhbz#1350927 - Allow kdumpgui domain to read nvme device Resolves: rhbz#1415084 - su using libselinux and creating netlink_selinux socket is needed to allow libselinux initialization. Resolves: rhbz#1146987 - Add user namespace capability object classes. Resolves: rhbz#1368057 - Add module_load permission to class system Resolves:rhbz#1368057 - Add the validate_trans access vector to the security class Resolves: rhbz#1368057 - Add "binder" security class and access vectors Resolves: rhbz#1368057 - Allow ifconfig_t domain read nsfs_t Resolves: rhbz#1349814 - Allow ping_t domain to load kernel modules. Resolves: rhbz#1388363- Allow systemd container to read/write usermodehelperstate Resolves: rhbz#1403254 - Label udp ports in range 24007-24027 as gluster_port_t Resolves: rhbz#1404152- Allow glusterd_t to bind on glusterd_port_t udp ports. Resolves: rhbz#1404152 - Revert: Allow glusterd_t to bind on med_tlp port.- Allow glusterd_t to bind on med_tlp port. Resolves: rhbz#1404152 - Update ctdbd_t policy to reflect all changes. Resolves: rhbz#1402451 - Label tcp port 24009 as med_tlp_port_t Resolves: rhbz#1404152 - Issue appears during update directly from RHEL-7.0 to RHEL-7.3 or above. Modules pkcsslotd and vbetools missing in selinux-policy package for RHEL-7.3 which causing warnings during SELinux policy store migration process. Following patch fixes issue by skipping pkcsslotd and vbetools modules migration.- Allow ctdbd_t domain transition to rpcd_t Resolves:rhbz#1402451- Fixes for containers Allow containers to attempt to write to unix_sysctls. Allow cotainers to use the FD's leaked to them from parent processes. Resolves: rhbz#1403254- Allow glusterd_t send signals to userdomain. Label new glusterd binaries as glusterd_exec_t Resolves: rhbz#1404152 - Allow systemd to stop glusterd_t domains. Resolves: rhbz#1400493- Make working CTDB:NFS: CTDB failover from selinux-policy POV Resolves: rhbz#1402451- Add kdump_t domain sys_admin capability Resolves: rhbz#1375963- Allow puppetagent_t to access timedated dbus. Use the systemd_dbus_chat_timedated interface to allow puppetagent_t the access. Resolves: rhbz#1399250- Update systemd on RHEL-7.2 box to version from RHEL-7.3 and then as a separate yum command update the selinux policy systemd will start generating USER_AVC denials and will start returning "Access Denied" errors to DBus clients Resolves: rhbz#1393505- Allow cluster_t communicate to fprintd_t via dbus Resolves: rhbz#1349798- Fix error message during update from RHEL-7.2 to RHEL-7.3, when /usr/sbin/semanage command is not installed and selinux-policy-migrate-local-changes.sh script is executed in %post install phase of selinux-policy package Resolves: rhbz#1392010- Allow GlusterFS with RDMA transport to be started correctly. It requires ipc_lock capability together with rw permission on rdma_cm device. Resolves: rhbz#1384488 - Allow glusterd to get attributes on /sys/kernel/config directory. Resolves: rhbz#1384483- Use selinux-policy-migrate-local-changes.sh instead of migrateStore* macros - Add selinux-policy-migrate-local-changes service Resolves: rhbz#1381588- Allow sssd_selinux_manager_t to manage also dir class. Resolves: rhbz#1368097 - Add interface seutil_manage_default_contexts_dirs() Resolves: rhbz#1368097- Add virt_sandbox_use_nfs -> virt_use_nfs boolean substitution. Resolves: rhbz#1355783- Allow pcp_pmcd_t domain transition to lvm_t Add capability kill and sys_ptrace to pcp_pmlogger_t Resolves: rhbz#1309883- Allow ftp daemon to manage apache_user_content Resolves: rhbz#1097775 - Label /etc/sysconfig/oracleasm as oracleasm_conf_t Resolves: rhbz#1331383 - Allow oracleasm to rw inherited fixed disk device Resolves: rhbz#1331383 - Allow collectd to connect on unix_stream_socket Resolves: rhbz#1377259- Allow iscsid create netlink iscsid sockets. Resolves: rhbz#1358266 - Improve regexp for power_unit_file_t files. To catch just systemd power unit files. Resolves: rhbz#1375462- Update oracleasm SELinux module that can manage oracleasmfs_t blk files. Add dac_override cap to oracleasm_t domain. Resolves: rhbz#1331383 - Add few rules to pcp SELinux module to make ti able to start pcp_pmlogger service Resolves: rhbz#1206525- Add oracleasm_conf_t type and allow oracleasm_t to create /dev/oracleasm Resolves: rhbz#1331383 - Label /usr/share/pcp/lib/pmie as pmie_exec_t and /usr/share/pcp/lib/pmlogger as pmlogger_exec_t Resolves: rhbz#1206525 - Allow mdadm_t to getattr all device nodes Resolves: rhbz#1365171 - Add interface dbus_dontaudit_stream_connect_system_dbusd() Resolves:rhbz#1052880 - Add virt_stub_* interfaces for docker policy which is no longer a part of our base policy. Resolves: rhbz#1372705 - Allow guest-set-user-passwd to set users password. Resolves: rhbz#1369693 - Allow samdbox domains to use msg class Resolves: rhbz#1372677 - Allow domains using kerberos to read also kerberos config dirs Resolves: rhbz#1368492 - Allow svirt_sandbox_domains to r/w onload sockets Resolves: rhbz#1342930 - Add interface fs_manage_oracleasm() Resolves: rhbz#1331383 - Label /dev/kfd as hsa_device_t Resolves: rhbz#1373488 - Update seutil_manage_file_contexts() interface that caller domain can also manage file_context_t dirs Resolves: rhbz#1368097 - Add interface to write to nsfs inodes Resolves: rhbz#1372705 - Allow systemd services to use PrivateNetwork feature Resolves: rhbz#1372705 - Add a type and genfscon for nsfs. Resolves: rhbz#1372705 - Allow run sulogin_t in range mls_systemlow-mls_systemhigh. Resolves: rhbz#1290400- Allow arpwatch to create netlink netfilter sockets. Resolves: rhbz#1358261 - Fix file context for /etc/pki/pki-tomcat/ca/ - new interface oddjob_mkhomedir_entrypoint() - Move label for /var/lib/docker/vfs/ to proper SELinux module - Allow mdadm to get attributes from all devices. - Label /etc/puppetlabs as puppet_etc_t. - Allow systemd-machined to communicate to lxc container using dbus - Allow systemd_resolved to send dbus msgs to userdomains Resolves: rhbz#1236579 - Allow systemd-resolved to read network sysctls Resolves: rhbz#1236579 - Allow systemd_resolved to connect on system bus. Resolves: rhbz#1236579 - Make entrypoint oddjob_mkhomedir_exec_t for unconfined_t - Label all files in /dev/oracleasmfs/ as oracleasmfs_t Resolves: rhbz#1331383- Label /etc/pki/pki-tomcat/ca/ as pki_tomcat_cert_t Resolves:rhbz#1366915 - Allow certmonger to manage all systemd unit files Resolves:rhbz#1366915 - Grant certmonger "chown" capability Resolves:rhbz#1366915 - Allow ipa_helper_t stream connect to dirsrv_t domain Resolves: rhbz#1368418 - Update oracleasm SELinux module Resolves: rhbz#1331383 - label /var/lib/kubelet as svirt_sandbox_file_t Resolves: rhbz#1369159 - Add few interfaces to cloudform.if file Resolves: rhbz#1367834 - Label /var/run/corosync-qnetd and /var/run/corosync-qdevice as cluster_var_run_t. Note: corosync policy is now par of rhcs module Resolves: rhbz#1347514 - Allow krb5kdc_t to read krb4kdc_conf_t dirs. Resolves: rhbz#1368492 - Update networkmanager_filetrans_named_content() interface to allow source domain to create also temad dir in /var/run. Resolves: rhbz#1365653 - Allow teamd running as NetworkManager_t to access netlink_generic_socket to allow multiple network interfaces to be teamed together. Resolves: rhbz#1365653 - Label /dev/oracleasmfs as oracleasmfs_t. Add few interfaces related to oracleasmfs_t type Resolves: rhbz#1331383 - A new version of cloud-init that supports the effort to provision RHEL Atomic on Microsoft Azure requires some a new rules that allows dhclient/dhclient hooks to call cloud-init. Resolves: rhbz#1367834 - Allow iptables to creating netlink generic sockets. Resolves: rhbz#1364359- Allow ipmievd domain to create lock files in /var/lock/subsys/ Resolves:rhbz#1349058 - Update policy for ipmievd daemon. Resolves:rhbz#1349058 - Dontaudit hyperkvp to getattr on non security files. Resolves: rhbz#1349356 - Label /run/corosync-qdevice and /run/corosync-qnetd as corosync_var_run_t Resolves: rhbz#1347514 - Fixed lsm SELinux module - Add sys_admin capability to sbd domain Resolves: rhbz#1322725 - Allow vdagent to comunnicate with systemd-logind via dbus Resolves: rhbz#1366731 - Allow lsmd_plugin_t domain to create fixed_disk device. Resolves: rhbz#1238066 - Allow opendnssec domain to create and manage own tmp dirs/files Resolves: rhbz#1366649 - Allow opendnssec domain to read system state Resolves: rhbz#1366649 - Update opendnssec_manage_config() interface to allow caller domain also manage opendnssec_conf_t dirs Resolves: rhbz#1366649 - Allow rasdaemon to mount/unmount tracefs filesystem. Resolves: rhbz#1364380 - Label /usr/libexec/iptables/iptables.init as iptables_exec_t Allow iptables creating lock file in /var/lock/subsys/ Resolves: rhbz#1367520 - Modify interface den_read_nvme() to allow also read nvme_device_t block files. Resolves: rhbz#1362564 - Label /var/run/storaged as lvm_var_run_t. Resolves: rhbz#1264390 - Allow unconfineduser to run ipa_helper_t. Resolves: rhbz#1361636- Dontaudit mock to write to generic certs. Resolves: rhbz#1271209 - Add labeling for corosync-qdevice and corosync-qnetd daemons, to run as cluster_t Resolves: rhbz#1347514 - Revert "Label corosync-qnetd and corosync-qdevice as corosync_t domain" - Allow modemmanager to write to systemd inhibit pipes Resolves: rhbz#1365214 - Label corosync-qnetd and corosync-qdevice as corosync_t domain Resolves: rhbz#1347514 - Allow ipa_helper to read network state Resolves: rhbz#1361636 - Label oddjob_reqiest as oddjob_exec_t Resolves: rhbz#1361636 - Add interface oddjob_run() Resolves: rhbz#1361636 - Allow modemmanager chat with systemd_logind via dbus Resolves: rhbz#1362273 - Allow NetworkManager chat with puppetagent via dbus Resolves: rhbz#1363989 - Allow NetworkManager chat with kdumpctl via dbus Resolves: rhbz#1363977 - Allow sbd send msgs to syslog Allow sbd create dgram sockets. Allow sbd to communicate with kernel via dgram socket Allow sbd r/w kernel sysctls. Resolves: rhbz#1322725 - Allow ipmievd_t domain to re-create ipmi devices Label /usr/libexec/openipmi-helper as ipmievd_exec_t Resolves: rhbz#1349058 - Allow rasdaemon to use tracefs filesystem. Resolves: rhbz#1364380 - Fix typo bug in dirsrv policy - Some logrotate scripts run su and then su runs unix_chkpwd. Allow logrotate_t domain to check passwd. Resolves: rhbz#1283134 - Add ipc_lock capability to sssd domain. Allow sssd connect to http_cache_t Resolves: rhbz#1362688 - Allow dirsrv to read dirsrv_share_t content Resolves: rhbz#1363662 - Allow virtlogd_t to append svirt_image_t files. Resolves: rhbz#1358140 - Allow hypervkvp domain to read hugetlbfs dir/files. Resolves: rhbz#1349356 - Allow mdadm daemon to read nvme_device_t blk files Resolves: rhbz#1362564 - Allow selinuxusers and unconfineduser to run oddjob_request Resolves: rhbz#1361636 - Allow sshd server to acces to Crypto Express 4 (CEX4) devices. Resolves: rhbz#1362539 - Fix labeling issue in init.fc file. Path /usr/lib/systemd/fedora-* changed to /usr/lib/systemd/rhel-*. Resolves: rhbz#1363769 - Fix typo in device interfaces Resolves: rhbz#1349058 - Add interfaces for managing ipmi devices Resolves: rhbz#1349058 - Add interfaces to allow mounting/umounting tracefs filesystem Resolves: rhbz#1364380 - Add interfaces to allow rw tracefs filesystem Resolves: rhbz#1364380 - Add interface dev_read_nvme() to allow reading Non-Volatile Memory Host Controller devices. Resolves: rhbz#1362564 - Label /sys/kernel/debug/tracing filesystem Resolves: rhbz#1364380 - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1357857- Dontaudit mock_build_t can list all ptys. Resolves: rhbz#1271209 - Allow ftpd_t to mamange userhome data without any boolean. Resolves: rhbz#1097775 - Add logrotate permissions for creating netlink selinux sockets. Resolves: rhbz#1283134 - Allow lsmd_plugin_t to exec ldconfig. Resolves: rhbz#1238066 - Allow vnstatd domain to read /sys/class/net/ files Resolves: rhbz#1358243 - Remove duplicate allow rules in spamassassin SELinux module Resolves:rhbz#1358175 - Allow spamc_t and spamd_t domains create .spamassassin file in user homedirs Resolves:rhbz#1358175 - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1357857 - Add new MLS attribute to allow relabeling objects higher than system low. This exception is needed for package managers when processing sensitive data. Resolves: rhbz#1330464 - Allow gnome-keyring also manage user_tmp_t sockets. Resolves: rhbz#1257057 - corecmd: Remove fcontext for /etc/sysconfig/libvirtd Resolves:rhbz#1351382- Allow ipa_dnskey domain to search cache dirs Resolves: rhbz#1350957- Allow ipa-dnskey read system state. Reasolves: rhbz#1350957 - Allow dogtag-ipa-ca-renew-agent-submit labeled as certmonger_t to create /var/log/ipa/renew.log file Resolves: rhbz#1350957- Allow firewalld to manage net_conf_t files. Resolves:rhbz#1304723 - Allow logrotate read logs inside containers. Resolves: rhbz#1303514 - Allow sssd to getattr on fs_t Resolves: rhbz#1356082 - Allow opendnssec domain to manage bind chace files Resolves: rhbz#1350957 - Fix typo in rhsmcertd policy module Resolves: rhbz#1329475 - Allow systemd to get status of systemd-logind daemon Resolves: rhbz#1356141 - Label more ndctl devices not just ndctl0 Resolves: rhbz#1355809- Allow rhsmcertd to copy certs into /etc/docker/cert.d - Add interface docker_rw_config() Resolves: rhbz#1344500 - Fix logrotate fc file to label also /var/lib/logrotate/ dir as logrotate_var_lib_t Resolves: rhbz#1355632 - Allow rhsmcertd to read network sysctls Resolves: rhbz#1329475 - Label /var/log/graphite-web dir as httpd_log_t Resolves: rhbz#1310898 - Allow mock to use generic ptys Resolves: rhbz#1271209 - Allow adcli running as sssd_t to write krb5.keytab file. Resolves: rhbz#1356082 - Allow openvswitch connect to openvswitch_port_t type. Resolves: rhbz#1335024 - Add SELinux policy for opendnssec service. Resolves: rhbz#1350957 - Create new SELinux type for /usr/libexec/ipa/ipa-dnskeysyncd Resolves: rhbz#1350957 - label /dev/ndctl0 device as nvram_device_t Resolves: rhbz#1355809- Allow lttng tools to block suspending Resolves: rhbz#1256374 - Allow creation of vpnaas in openstack Resolves: rhbz#1352710 - virt: add strict policy for virtlogd daemon Resolves:rhbz#1311606 - Update makefile to support snapperd_contexts file Resolves: rhbz#1352681- Allow udev to manage systemd-hwdb files - Add interface systemd_hwdb_manage_config() Resolves: rhbz#1350756 - Fix paths to infiniband devices. This allows use more then two infiniband interfaces. Resolves: rhbz#1210263- Allow virtual machines to rw infiniband devices. Resolves: rhbz#1210263 - Allow opensm daemon to rw infiniband_mgmt_device_t Resolves: rhbz#1210263 - Allow systemd_hwdb_t to relabel /etc/udev/hwdb.bin file. Resolves: rhbz#1350756 - Make label for new infiniband_mgmt deivices Resolves: rhbz#1210263- Fix typo in brltty SELinux module - Add new SELinux module sbd Resolves: rhbz#1322725 - Allow pcp dmcache metrics collection Resolves: rhbz#1309883 - Allow pkcs_slotd_t to create dir in /var/lock Add label pkcs_slotd_log_t Resolves: rhbz#1350782 - Allow openvpn to create sock files labeled as openvpn_var_run_t Resolves: rhbz#1328246 - Allow hypervkvp daemon to getattr on all filesystem types. Resolves: rhbz#1349356 - Allow firewalld to create net_conf_t files Resolves: rhbz#1304723 - Allow mock to use lvm Resolves: rhbz#1271209 - Allow keepalived to create netlink generic sockets. Resolves: rhbz#1349809 - Allow mirromanager creating log files in /tmp Resolves:rhbz#1328818 - Rename few modules to make it consistent with source files Resolves: rhbz#1351445 - Allow vmtools_t to transition to rpm_script domain Resolves: rhbz#1342119 - Allow nsd daemon to manage nsd_conf_t dirs and files Resolves: rhbz#1349791 - Allow cluster to create dirs in /var/run labeled as cluster_var_run_t Resolves: rhbz#1346900 - Allow sssd read also sssd_conf_t dirs Resolves: rhbz#1350535 - Dontaudit su_role_template interface to getattr /proc/kcore Dontaudit su_role_template interface to getattr /dev/initctl Resolves: rhbz#1086240 - Add interface lvm_getattr_exec_files() Resolves: rhbz#1271209 - Fix typo Compliling vs. Compiling Resolves: rhbz#1351445- Allow krb5kdc_t to communicate with sssd Resolves: rhbz#1319933 - Allow prosody to bind on prosody ports Resolves: rhbz#1304664 - Add dac_override caps for fail2ban-client Resolves: rhbz#1316678 - dontaudit read access for svirt_t on the file /var/db/nscd/group Resolves: rhbz#1301637 - Allow inetd child process to communicate via dbus with systemd-logind Resolves: rhbz#1333726 - Add label for brltty log file Resolves: rhbz#1328818 - Allow dspam to read the passwd file Resolves: rhbz#1286020 - Allow snort_t to communicate with sssd Resolves: rhbz#1284908 - svirt_sandbox_domains need to be able to execmod for badly built libraries. Resolves: rhbz#1206339 - Add policy for lttng-tools package. Resolves: rhbz#1256374 - Make mirrormanager as application domain. Resolves: rhbz#1328234 - Add support for the default lttng-sessiond port - tcp/5345. This port is used by LTTng 2.x central tracing registry session daemon. - Add prosody ports Resolves: rhbz#1304664 - Allow sssd read also sssd_conf_t dirs Resolves: rhbz#1350535- Label /var/lib/softhsm as named_cache_t. Allow named_t to manage named_cache_t dirs. Resolves:rhbz#1331315 - Label named-pkcs11 binary as named_exec_t. Resolves: rhbz#1331315 - Allow glusterd daemon to get systemd status Resolves: rhbz#1321785 - Allow logrotate dbus-chat with system_logind daemon Resolves: rhbz#1283134 - Allow pcp_pmlogger to read kernel network state Allow pcp_pmcd to read cron pid files Resolves: rhbz#1336211 - Add interface cron_read_pid_files() Resolves: rhbz#1336211 - Allow pcp_pmlogger to create unix dgram sockets Resolves: rhbz#1336211 - Add hwloc-dump-hwdata SELinux policy Resolves: rhbz#1344054 - Remove non-existing jabberd_spool_t() interface and add new jabbertd_var_spool_t. Resolves: rhbz#1121171 - Remove non-existing interface salk_resetd_systemctl() and replace it with sanlock_systemctl_sanlk_resetd() Resolves: rhbz#1259764 - Create label for openhpid log files. esolves: rhbz#1259764 - Label /var/lib/ganglia as httpd_var_lib_t Resolves: rhbz#1260536 - Allow firewalld_t to create entries in net_conf_t dirs. Resolves: rhbz#1304723 - Allow journalctl to read syslogd_var_run_t files. This allows to staff_t and sysadm_t to read journals Resolves: rhbz#1288255 - Include patch from distgit repo: policy-RHEL-7.1-flask.patch. Resolves: rhbz#1329560 - Update refpolicy to handle hwloc Resolves: rhbz#1344054 - Label /etc/dhcp/scripts dir as bin_t - Allow sysadm_role to run journalctl_t domain. This allows sysadm user to read journals. Resolves: rhbz#1288255- Allow firewalld_t to create entries in net_conf_t dirs. Resolves: rhbz#1304723 - Allow journalctl to read syslogd_var_run_t files. This allows to staff_t and sysadm_t to read journals Resolves: rhbz#1288255 - Allow mongod log to syslog. Resolves: rhbz#1306995 - Allow rhsmcertd connect to port tcp 9090 Resolves: rhbz#1337319 - Label for /bin/mail(x) was removed but /usr/bin/mail(x) not. This path is also needed to remove. Resolves: rhbz#1262483 Resolves: rhbz#1277506 - Label /usr/libexec/mimedefang-wrapper as spamd_exec_t. Resolves: rhbz#1301516 - Add new boolean spamd_update_can_network. Resolves: rhbz#1305469 - Allow rhsmcertd connect to tcp netport_port_t Resolves: rhbz#1329475 - Fix SELinux context for /usr/share/mirrormanager/server/mirrormanager to Label all binaries under dir as mirrormanager_exec_t. Resolves: rhbz#1328234 - Allow prosody to bind to fac_restore tcp port. Resolves: rhbz#1321787 - Allow ninfod to read raw packets Resolves: rhbz#1317964 - Allow pegasus get attributes from qemu binary files. Resolves: rhbz#1260835 - Allow pegasus get attributes from qemu binary files. Resolves: rhbz#1271159 - Allow tuned to use policykit. This change is required by cockpit. Resolves: rhbz#1346464 - Allow conman_t to read dir with conman_unconfined_script_t binary files. Resolves: rhbz#1297323 - Allow pegasus to read /proc/sysinfo. Resolves: rhbz#1265883 - Allow sysadm_role to run journalctl_t domain. This allows sysadm user to read journals. Resolves: rhbz#1288255 - Label tcp ports:16379, 26379 as redis_port_t Resolves: rhbz#1348471 - Allow systemd to relabel /var and /var/lib directories during boot. - Add files_relabel_var_dirs() and files_relabel_var_dirs() interfaces. - Add files_relabelto_var_lib_dirs() interface. - Label tcp port 2004 as mailbox_port_t. Resolves: rhbz#1332843 - Label tcp and udp port 5582 as fac_restore_port_t Resolves: rhbz#1321787 - Allow sysadm_t user to run postgresql-setup. Resolves: rhbz#1282543 - Allow sysadm_t user to dbus chat with oddjob_t. This allows confined admin run oddjob mkhomedirfor script. Resolves: rhbz#1297480 - Update netlink socket classes.- Allow conman to kill conman_unconfined_script. Resolves: rhbz#1297323 - Make conman_unconfined_script_t as init_system_domain. Resolves:rhbz#1297323 - Allow init dbus chat with apmd. Resolves:rhbz#995898 - Patch /var/lib/rpm is symlink to /usr/share/rpm on Atomic, due to this change we need to label also /usr/share/rpm as rpm_var_lib_t. Resolves: rhbz#1233252 - Dontaudit xguest_gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Add mediawiki rules to proper scope Resolves: rhbz#1301186 - Dontaudit xguest_gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Allow mysqld_safe to inherit rlimit information from mysqld Resolves: rhbz#1323673 - Allow collectd_t to stream connect to postgresql. Resolves: rhbz#1344056 - Allow mediawiki-script to read /etc/passwd file. Resolves: rhbz#1301186 - Add filetrans rule that NetworkManager_t can create net_conf_t files in /etc. Resolves: rhbz#1344505 - Add labels for mediawiki123 Resolves: rhbz#1293872 - Fix label for all fence_scsi_check scripts - Allow ip netns to mounton root fs and unmount proc_t fs. Resolves: rhbz#1343776 Resolves: rhbz#1286851 - Allow sysadm_t to run newaliases command. Resolves: rhbz#1344828 - Add interface sysnet_filetrans_named_net_conf() Resolves: rhbz#1344505- Fix several issues related to the SELinux Userspace changes- Allow glusterd domain read krb5_keytab_t files. Resolves: rhbz#1343929 - Fix typo in files_setattr_non_security_dirs. Resolves: rhbz#1115987- Allow tmpreaper_t to read/setattr all non_security_file_type dirs Resolves: rhbz#1115987 - Allow firewalld to create firewalld_var_run_t directory. Resolves: rhbz#1304723 - Add interface firewalld_read_pid_files() Resolves: rhbz#1304723 - Label /usr/libexec/rpm-ostreed as rpm_exec_t. Resolves: rhbz#1340542 - Allow sanlock service to read/write cephfs_t files. Resolves: rhbz#1315332 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added missing docker interfaces: - docker_typebounds - docker_entrypoint Resolves: rhbz#1236580 - Add interface files_setattr_non_security_dirs() Resolves: rhbz#1115987 - Add support for onloadfs - Allow iptables to read firewalld pid files. Resolves: rhbz#1304723 - Add SELinux support for ceph filesystem. Resolves: rhbz#1315332 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) Resolves: rhbz#1236580- Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added missing docker interfaces: - docker_typebounds - docker_entrypoint Resolves: rhbz#1236580 - New interfaces needed for systemd-machinectl Resolves: rhbz#1236580 - New interfaces needed by systemd-machine Resolves: rhbz#1236580 - Add interface allowing sending and receiving messages from virt over dbus. Resolves: rhbz#1236580 - Backport docker policy from Fedora. Related: #1303123 Resolves: #1341257 - Allow NetworkManager_t and policykit_t read access to systemd-machined pid files. Resolves: rhbz#1236580 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added interfaces needed by new docker policy. Related: rhbz#1303123 - Add support for systemd-machined daemon Resolves: rhbz#1236580 - Allow rpm-ostree domain transition to install_t domain from init_t. Resolves: rhbz#1340542- dnsmasq: allow NetworkManager to control dnsmasq via D-Bus Resolves: rhbz#1336722 - Directory Server (389-ds-base) has been updated to use systemd-ask-password. In order to function correctly we need the following added to dirsrv.te Resolves: rhbz#1333198 - sftpd_* booleans are functionless these days. Resolves: rhbz#1335656 - Label /var/log/ganesha.log as gluster_log_t Allow glusterd_t domain to create glusterd_log_t files. Label /var/run/ganesha.pid as gluster_var_run_t. Resolves: rhbz#1335828 - Allow ganesha-ha.sh script running under unconfined_t domain communicate with glusterd_t domains via dbus. Resolves: rhbz#1336760 - Allow ganesha daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled as var_lib_nfs_t. Resolves: rhbz#1336737 - Label /usr/libexec/storaged/storaged as lvm_exec_t to run storaged daemon in lvm_t SELinux domain. Resolves: rhbz#1264390 - Allow systemd_hostanmed_t to read /proc/sysinfo labeled as sysctl_t. Resolves: rhbz#1337061 - Revert "Allow all domains some process flags." Resolves: rhbz#1303644 - Revert "Remove setrlimit to all domains." Resolves: rhbz#1303644 - Label /usr/sbin/xrdp* files as bin_t Resolves: rhbz#1276777 - Add mls support for some db classes Resolves: rhbz#1303651 - Allow systemd_resolved_t to check if ipv6 is disabled. Resolves: rhbz#1236579 - Allow systemd_resolved to read systemd_networkd run files. Resolves: rhbz#1236579- Allow ganesha-ha.sh script running under unconfined_t domain communicate with glusterd_t domains via dbus. Resolves: rhbz#1336760 - Allow ganesha daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled as var_lib_nfs_t. Resolves: rhbz#1336737- Allow logwatch to domtrans to postqueue Resolves: rhbz#1331542 - Label /var/log/ganesha.log as gluster_log_t - Allow glusterd_t domain to create glusterd_log_t files. - Label /var/run/ganesha.pid as gluster_var_run_t. Resolves: rhbz#1335828 - Allow zabbix to connect to postgresql port Resolves: rhbz#1330479 - Add userdom_destroy_unpriv_user_shared_mem() interface. Related: rhbz#1306403 - systemd-logind remove all IPC objects owned by a user on a logout. This covers also SysV memory. This change allows to destroy unpriviledged user SysV shared memory segments. Resolves: rhbz#1306403- We need to restore contexts on /etc/passwd*,/etc/group*,/etc/*shadow* during install phase to get proper labeling for these files until selinux-policy pkgs are installed. Resolves: rhbz#1333952- Add interface glusterd_dontaudit_read_lib_dirs() Resolves: rhbz#1295680 - Dontaudit Occasionally observing AVC's while running geo-rep automation Resolves: rhbz#1295680 - Allow glusterd to manage socket files labeled as glusterd_brick_t. Resolves: rhbz#1331561 - Create new apache content template for files stored in user homedir. This change is needed to make working booleans: - httpd_enable_homedirs - httpd_read_user_content Resolves: rhbz#1246522 - Allow stunnel create log files. Resolves: rhbz#1296851 - Label tcp port 8181 as intermapper_port_t. Resolves: rhbz#1334783 - Label tcp/udp port 2024 as xinuexpansion4_port_t Resolves: rhbz#1334783 - Label tcp port 7002 as afs_pt_port_t Label tcp/udp port 2023 as xinuexpansion3_port_t Resolves: rhbz#1334783 - Dontaudit ldconfig read gluster lib files. Resolves: rhbz#1295680 - Add interface auth_use_nsswitch() to systemd_domain_template. Resolves: rhbz#1236579- Label /usr/bin/ganesha.nfsd as glusterd_exec_t to run ganesha as glusterd_t. Allow glusterd_t stream connect to rpbind_t. Allow cluster_t to create symlink /var/lib/nfs labeled as var_lib_nfs_t. Add interface rpc_filetrans_var_lib_nfs_content() Add new boolean: rpcd_use_fusefs to allow rpcd daemon use fusefs. Resolves: rhbz#1312809 Resolves: rhbz#1323947 - Allow dbus chat between httpd_t and oddjob_t. Resolves: rhbz#1324144 - Label /usr/libexec/ipa/oddjob/org.freeipa.server.conncheck as ipa_helper_exec_t. Resolves: rhbz#1324144 - Label /var/log/ipareplica-conncheck.log file as ipa_log_t Allow ipa_helper_t domain to manage logs labeledas ipa_log_t Allow ipa_helper_t to connect on http and kerberos_passwd ports. Resolves: rhbz#1324144 - Allow prosody to listen on port 5000 for mod_proxy65. Resolves: rhbz#1316918 - Allow pcp_pmcd_t domain to manage docker lib files. This rule is needed to allow pcp to collect container information when SELinux is enabled. Resolves: rhbz#1309454- Allow runnig php7 in fpm mode. From selinux-policy side, we need to allow httpd to read/write hugetlbfs. Resolves: rhbz#1319442 - Allow openvswitch daemons to run under openvswitch Linux user instead of root. This change needs allow set capabilities: chwon, setgid, setuid, setpcap. Resolves: rhbz#1296640 - Remove ftpd_home_dir() boolean from distro policy. Reason is that we cannot make this working due to m4 macro language limits. Resolves: rhbz#1097775 - /bin/mailx is labeled sendmail_exec_t, and enters the sendmail_t domain on execution. If /usr/sbin/sendmail does not have its own domain to transition to, and is not one of several products whose behavior is allowed by the sendmail_t policy, execution will fail. In this case we need to label /bin/mailx as bin_t. Resolves: rhbz#1262483 - Allow nsd daemon to create log file in /var/log as nsd_log_t Resolves: rhbz#1293140 - Sanlock policy update. - New sub-domain for sanlk-reset daemon Resolves: rhbz#1212324 - Label all run tgtd files, not just socket files Resolves: rhbz#1280280 - Label all run tgtd files, not just socket files. Resolves: rhbz#1280280 - Allow prosody to stream connect to sasl. This will allow using cyrus authentication in prosody. Resolves: rhbz#1321049 - unbound wants to use ephemeral ports as a default configuration. Allow to use also udp sockets. Resolves: rhbz#1318224 - Allow prosody to listen on port 5000 for mod_proxy65. Resolves: rhbz#1316918 - Allow targetd to read/write to /dev/mapper/control device. Resolves: rhbz#1063714 - Allow KDM to get status about power services. This change allow kdm to be able do shutdown. Resolves: rhbz#1316724 - Allow systemd-resolved daemon creating netlink_route sockets. Resolves:rhbz#1236579 - Allow systemd_resolved_t to read /etc/passwd file. Allow systemd_resolved_t to write to kmsg_device_t when 'systemd.log_target=kmsg' option is used Resolves: rhbz#1065362 - Label /etc/selinux/(minimum|mls|targeted)/active/ as semanage_store_t Resolves: rhbz#1321943 - Label all nvidia binaries as xserver_exec_t Resolves: rhbz#1322283- Create new permissivedomains CIL module and make it active. Resolves: rhbz#1320451 - Add support for new mock location - /usr/libexec/mock/mock. Resolves: rhbz#1271209 - Allow bitlee to create bitlee_var_t dirs. Resolves: rhbz#1268651 - Allow CIM provider to read sssd public files. Resolves: rhbz#1263339 - Fix some broken interfaces in distro policy. Resolves: rhbz#1121171 - Allow power button to shutdown the laptop. Resolves: rhbz#995898 - Allow lsm plugins to create named fixed disks. Resolves: rhbz#1238066 - Add default labeling for /etc/Pegasus/cimserver_current.conf. It is a correct patch instead of the current /etc/Pegasus/pegasus_current.confResolves: rhbz#1278777 - Allow hyperv domains to rw hyperv devices. Resolves: rhbz#1309361 - Label /var/www/html(/.*)?/wp_backups(/.*)? as httpd_sys_rw_content_t.Resolves: rhbz#1246780 - Create conman_unconfined_script_t type for conman script stored in /use/share/conman/exec/ Resolves: rhbz#1297323 - Fix rule definitions for httpd_can_sendmail boolean. We need to distinguish between base and contrib. - Add support for /dev/mptctl device used to check RAID status. Resolves: rhbz#1258029 - Create hyperv* devices and create rw interfaces for this devices. Resolves: rhbz#1309361 - Add fixes for selinux userspace moving the policy store to /var/lib/selinux. - Remove optional else block for dhcp ping- Allow rsync_export_all_ro boolean to read also non_auth_dirs/files/symlinks. Resolves: rhbz#1263770 - Fix context of "/usr/share/nginx/html". Resolves: rhbz#1261857 - Allow pmdaapache labeled as pcp_pmcd_t access to port 80 for apache diagnostics Resolves: rhbz#1270344 - Allow pmlogger to create pmlogger.primary.socket link file. Resolves: rhbz#1270344 - Label nagios scripts as httpd_sys_script_exec_t. Resolves: rhbz#1260306 - Add dontaudit interface for kdumpctl_tmp_t Resolves: rhbz#1156442 - Allow mdadm read files in EFI partition. Resolves: rhbz#1291801 - Allow nsd_t to bind on nsf_control tcp port. Allow nsd_crond_t to read nsd pid. Resolves: rhbz#1293140 - Label some new nsd binaries as nsd_exec_t Allow nsd domain net_admin cap. Create label nsd_tmp_t for nsd tmp files/dirs Resolves: rhbz#1293140 - Add filename transition that /etc/princap will be created with cupsd_rw_etc_t label in cups_filetrans_named_content() interface. Resolves: rhbz#1265102 - Add missing labeling for /usr/libexec/abrt-hook-ccpp. Resolves: rhbz#1213409 - Allow pcp_pmie and pcp_pmlogger to read all domains state. Resolves: rhbz#1206525 - Label /etc/redis-sentinel.conf as redis_conf_t. Allow redis_t write to redis_conf_t. Allow redis_t to connect on redis tcp port. Resolves: rhbz#1275246 - cockpit has grown content in /var/run directory Resolves: rhbz#1279429 - Allow collectd setgid capability Resolves:#1310898 - Remove declaration of empty booleans in virt policy. Resolves: rhbz#1103153 - Fix typo in drbd policy - Add new drbd file type: drbd_var_run_t. Allow drbd_t to manage drbd_var_run_t files/dirs. Allow drbd_t create drbd_tmp_t files in /tmp. Resolves: rhbz#1134883 - Label /etc/ctdb/events.d/* as ctdb_exec_t. Allow ctdbd_t to setattr on ctdbd_exec_t files. Resolves: rhbz#1293788 - Allow abrt-hook-ccpp to get attributes of all processes because of core_pattern. Resolves: rhbz#1254188 - Allow abrt_t to read sysctl_net_t files. Resolves: rhbz#1254188 - The ABRT coredump handler has code to emulate default core file creation The handler runs in a separate process with abrt_dump_oops_t SELinux process type. abrt-hook-ccpp also saves the core dump file in the very same way as kernel does and a user can specify CWD location for a coredump. abrt-hook-ccpp has been made as a SELinux aware apps to create this coredumps with correct labeling and with this commit the policy rules have been updated to allow access all non security files on a system. - Allow abrt-hook-ccpp to getattr on all executables. - Allow setuid/setgid capabilities for abrt-hook-ccpp. Resolves: rhbz#1254188 - abrt-hook-ccpp needs to have setfscreate access because it is SELinux aware and compute a target labeling. Resolves: rhbz#1254188 - Allow abrt-hook-ccpp to change SELinux user identity for created objects. Resolves: rhbz#1254188 - Dontaudit write access to inherited kdumpctl tmp files. Resolves: rbhz#1156442 - Add interface to allow reading files in efivarfs - contains Linux Kernel configuration options for UEFI systems (UEFI Runtime Variables) Resolves: rhbz#1291801 - Label 8952 tcp port as nsd_control. Resolves: rhbz#1293140 - Allow ipsec to use pam. Resolves: rhbz#1315700 - Allow to log out to gdm after screen was resized in session via vdagent. Resolves: rhbz#1249020 - Allow setrans daemon to read /proc/meminfo. Resolves: rhbz#1316804 - Allow systemd_networkd_t to write kmsg, when kernel was started with following params: systemd.debug systemd.log_level=debug systemd.log_target=kmsg Resolves: rhbz#1298151 - Label tcp port 5355 as llmnr-> Link-Local Multicast Name Resolution Resolves: rhbz#1236579 - Add new selinux policy for systemd-resolved dawmon. Resolves: rhbz#1236579 - Add interface ssh_getattr_server_keys() interface. Resolves: rhbz#1306197 - Allow run sshd-keygen on second boot if first boot fails after some reason and content is not syncedon the disk. These changes are reflecting this commit in sshd. http://pkgs.fedoraproject.org/cgit/rpms/openssh.git/commit/?id=af94f46861844cbd6ba4162115039bebcc8f78ba rhbz#1299106 Resolves: rhbz#1306197 - Allow systemd_notify_t to write to kmsg_device_t when 'systemd.log_target=kmsg' option is used. Resolves: rhbz#1309417 - Remove bin_t label for /etc/ctdb/events.d/. We need to label this scripts as ctdb_exec_t. Resolves: rhbz#1293788- Prepare selinux-policy package for userspace release 2016-02-23. Resolves: rhbz#1305982- Allow sending dbus msgs between firewalld and system_cronjob domains. Resolves: rhbz#1284902 - Allow zabbix-agentd to connect to following tcp sockets. One of zabbix-agentd functions is get service status of ftp,http,innd,pop,smtp protocols. Resolves: rhbz#1242506 - Add new boolean tmpreaper_use_cifs() to allow tmpreaper to run on local directories being shared with Samba. Resolves: rhbz#1284972 - Add support for systemd-hwdb daemon. Resolves: rhbz#1257940 - Add interface fs_setattr_cifs_dirs(). Resolves: rhbz#1284972- Add new SELinux policy fo targetd daemon. Resolves: rhbz#1063714 - Add new SELinux policy fo ipmievd daemon. Resolves: rhbz#1083031 - Add new SELinux policy fo hsqldb daemon. Resolves: rhbz#1083171 - Add new SELinux policy for blkmapd daemon. Resolves: rhbz#1072997 - Allow p11-child to connect to apache ports. - Label /usr/sbin/lvmlockd binary file as lvm_exec_t. Resolves: rhbz#1278028 - Add interface "lvm_manage_lock" to lvm policy. Resolves: rhbz#1063714- Allow openvswitch domain capability sys_rawio. Resolves: rhbz#1278495- Allow openvswitch to manage hugetlfs files and dirs. Resolves: rhbz#1278495 - Add fs_manage_hugetlbfs_files() interface. Resolves: rhbz#1278495- Allow smbcontrol domain to send sigchld to ctdbd domain. Resolves: #1293784 - Allow openvswitch read/write hugetlb filesystem. Resolves: #1278495Allow hypervvssd to list all mountpoints to have VSS live backup working correctly. Resolves:#1247880- Revert Add missing labeling for /usr/libexec/abrt-hook-ccpp patch Resolves: #1254188- Allow search dirs in sysfs types in kernel_read_security_state. Resolves: #1254188 - Fix kernel_read_security_state interface that source domain of this interface can search sysctl_fs_t dirs. Resolves: #1254188- Add missing labeling for /usr/libexec/abrt-hook-ccpp as a part of #1245477 and #1242467 bugs Resolves: #1254188 - We need allow connect to xserver for all sandbox_x domain because we have one type for all sandbox processes. Resolves:#1261938- Remove labeling for modules_dep_t file contexts to have labeled them as modules_object_t. - Update files_read_kernel_modules() to contain modutils_read_module_deps_files() calling because module deps labeling could remain and it allows to avoid regressions. Resolves:#1266928- We need to require sandbox_web_type attribute in sandbox_x_domain_template(). Resolves: #1261938 - ipsec: The NM helper needs to read the SAs Resolves: #1259786 - ipsec: Allow ipsec management to create ptys Resolves: #1259786- Add temporary fixes for sandbox related to #1103622. It allows to run everything under one sandbox type. Resolves:#1261938 - Allow abrt_t domain to write to kernel msg device. Resolves: #1257828 - Allow rpcbind_t domain to change file owner and group Resolves: #1265266- Allow smbcontrol to create a socket in /var/samba which uses for a communication with smbd, nmbd and winbind. Resolves: #1256459- Allow dirsrv-admin script to read passwd file. Allow dirsrv-admin script to read httpd pid files. Label dirsrv-admin unit file and allow dirsrv-admin domains to use it. Resolves: #1230300 - Allow qpid daemon to connect on amqp tcp port. Resolves: #1261805- Label /etc/ipa/nssdb dir as cert_t Resolves:#1262718 - Do not provide docker policy files which is shipped by docker-selinux.rpm Resolves:#1262812- Add labels for afs binaries: dafileserver, davolserver, salvageserver, dasalvager Resolves: #1192338 - Add lsmd_plugin_t sys_admin capability, Allow lsmd_plugin_t getattr from sysfs filesystem. Resolves: #1238079 - Allow rhsmcertd_t send signull to unconfined_service_t domains. Resolves: #1176078 - Remove file transition from snmp_manage_var_lib_dirs() interface which created snmp_var_lib_t dirs in var_lib_t. - Allow openhpid_t daemon to manage snmp files and dirs. Resolves: #1243902 - Allow mdadm_t domain read/write to general ptys and unallocated ttys. Resolves: #1073314 - Add interface unconfined_server_signull() to allow domains send signull to unconfined_service_t Resolves: #1176078- Allow systemd-udevd to access netlink_route_socket to change names for network interfaces without unconfined.pp module. It affects also MLS. Resolves:#1250456- Fix labeling for fence_scsi_check script Resolves: #1255020 - Allow openhpid to read system state Allow openhpid to connect to tcp http port. Resolves: #1244248 - Allow openhpid to read snmp var lib files. Resolves: #1243902 - Allow openvswitch_t domains read kernel dependencies due to openvswitch run modprobe - Allow unconfined_t domains to create /var/run/xtables.lock with iptables_var_run_t Resolves: #1243403 - Remove bin_t label for /usr/share/cluster/fence_scsi_check\.pl Resolves: #1255020- Fix regexp in chronyd.fc file Resolves: #1243764 - Allow passenger to getattr filesystem xattr Resolves: #1196555 - Label mdadm.conf.anackbak as mdadm_conf_t file. Resolves: #1088904 - Revert "Allow pegasus_openlmi_storage_t create mdadm.conf.anacbak file in /etc." - Allow watchdog execute fenced python script. Resolves: #1255020 - Added inferface watchdog_unconfined_exec_read_lnk_files() - Remove labeling for /var/db/.*\.db as etc_t to label db files as system_db_t. Resolves: #1230877- Allow watchdog execute fenced python script. Resolves: #1255020 - Added inferface watchdog_unconfined_exec_read_lnk_files() - Label /var/run/chrony-helper dir as chronyd_var_run_t. Resolves: #1243764 - Allow dhcpc_t domain transition to chronyd_t Resolves: #1243764- Fix postfix_spool_maildrop_t,postfix_spool_flush_t contexts in postfix.fc file. Resolves: #1252442- Allow exec pidof under hypervkvp domain. Resolves: #1254870 - Allow hypervkvp daemon create connection to the system DBUS Resolves: #1254870- Allow openhpid_t to read system state. Resolves: #1244248 - Added labels for files provided by rh-nginx18 collection Resolves: #1249945 - Dontaudit block_suspend capability for ipa_helper_t, this is kernel bug. Allow ipa_helper_t capability net_admin. Allow ipa_helper_t to list /tmp. Allow ipa_helper_t to read rpm db. Resolves: #1252968 - Allow rhsmcertd exec rhsmcertd_var_run_t files and rhsmcerd_tmp_t files. This rules are in hide_broken_sympthons until we find better solution. Resolves: #1243431 - Allow abrt_dump_oops_t to read proc_security_t files. - Allow abrt_dump_oops to signull all domains Allow abrt_dump_oops to read all domains state Allow abrt_dump_oops to ptrace all domains - Add interface abrt_dump_oops_domtrans() - Add mountpoint dontaudit access check in rhsmcertd policy. Resolves: #1243431 - Allow samba_net_t to manage samba_var_t sock files. Resolves: #1252937 - Allow chrome setcap to itself. Resolves: #1251996 - Allow httpd daemon to manage httpd_var_lib_t lnk_files. Resolves: #1253706 - Allow chronyd exec systemctl Resolves: #1243764 - Add inteface chronyd_signal Allow timemaster_t send generic signals to chronyd_t. Resolves: #1243764 - Added interface fs_dontaudit_write_configfs_dirs - Add label for kernel module dep files in /usr/lib/modules Resolves:#916635 - Allow kernel_t domtrans to abrt_dump_oops_t - Added to files_dontaudit_write_all_mountpoints intefface new dontaudit rule, that domain included this interface dontaudit capability dac_override. - Allow systemd-networkd to send logs to systemd-journald. Resolves: #1236616- Fix label on /var/tmp/kiprop_0 Resolves:#1220763 - Allow lldpad_t to getattr tmpfs_t. Resolves: #1246220 - Label /dev/shm/lldpad.* as lldapd_tmpfs_t Resolves: #1246220 - Allow audisp client to read system state.- Allow pcp_domain to manage pcp_var_lib_t lnk_files. Resolves: #1252341 - Label /var/run/xtables.* as iptables_var_run_t Resolves: #1243403- Add interface to read/write watchdog device - Add labels for /dev/memory_bandwith and /dev/vhci. Thanks ssekidde Resolves:#1210237 - Allow apcupsd_t to read /sys/devices Resolves:#1189185 - Allow logrotate to reload services. Resolves: #1242453 - Allow openhpid use libwatchdog plugin. (Allow openhpid_t rw watchdog device) Resolves: #1244260 - Allow openhpid liboa_soap plugin to read generic certs. Resolves: #1244248 - Allow openhpid liboa_soap plugin to read resolv.conf file. Resolves: #1244248 - Label /usr/libexec/chrony-helper as chronyd_exec_t - Allow chronyd_t to read dhcpc state. - Allow chronyd to execute mkdir command.- Allow mdadm to access /dev/random and add support to create own files/dirs as mdadm_tmpfs_t. Resolves:#1073314 - Allow udev, lvm and fsadm to access systemd-cat in /var/tmp/dracut if 'dracut -fv' is executed in MLS. - Allow admin SELinu users to communicate with kernel_t. It is needed to access /run/systemd/journal/stdout if 'dracut -vf' is executed. We allow it for other SELinux users. - Allow sysadm to execute systemd-sysctl in the sysadm_t domain. It is needed for ifup command in MLS mode. - Add fstools_filetrans_named_content_fsadm() and call it for named_filetrans_domain domains. We need to be sure that /run/blkid is created with correct labeling. Resolves:#1183503 - Add support for /etc/sanlock which is writable by sanlock daemon. Resolves:#1231377 - Allow useradd add homedir located in /var/lib/kdcproxy in ipa-server RPM scriplet. Resolves:#1243775 - Allow snapperd to pass data (one way only) via pipe negotiated over dbus Resolves:#1250550 - Allow lsmd also setuid capability. Some commands need to executed under root privs. Other commands are executed under unprivileged user.- Allow openhpid to use libsnmp_bc plugin (allow read snmp lib files). Resolves: #1243902 - Allow lsm_plugin_t to read sysfs, read hwdata, rw to scsi_generic_device Resolves: #1238079 - Allow lsm_plugin_t to rw raw_fixed_disk. Resolves:#1238079 - Allow rhsmcertd to send signull to unconfined_service.- Allow httpd_suexec_t to read and write Apache stream sockets Resolves: #1243569 - Allow qpid to create lnk_files in qpid_var_lib_t Resolves: #1247279- Allow drbd to get attributes from filesystems. - Allow redis to read kernel parameters. Resolves: #1209518 - Allow virt_qemu_ga_t domtrans to passwd_t - Allow audisp_remote_t to start power unit files domain to allow halt system. Resolves: #1186780 - Allow audisp_remote_t to read/write user domain pty. Resolves: #1186780 - Label /usr/sbin/chpasswd as passwd_exec_t. - Allow sysadm to administrate ldap environment and allow to bind ldap port to allow to setup an LDAP server (389ds). Resolves:#1221121- gnome_dontaudit_search_config() needs to be a part of optinal_policy in pegasus.te - Allow pcp_pmcd daemon to read postfix config files. - Allow pcp_pmcd daemon to search postfix spool dirs. Resolves: #1213740 - Added Booleans: pcp_read_generic_logs. Resolves: #1213740 - Allow drbd to read configuration options used when loading modules. Resolves: #1134883 - Allow glusterd to manage nfsd and rpcd services. - Allow glusterd to communicate with cluster domains over stream socket. - glusterd call pcs utility which calls find for cib.* files and runs pstree under glusterd. Dontaudit access to security files and update gluster boolean to reflect these changes.- Allow glusterd to manage nfsd and rpcd services. - Allow networkmanager to communicate via dbus with systemd_hostanmed. Resolves: #1234954 - Allow stream connect logrotate to prosody. - Add prosody_stream_connect() interface. - httpd should be able to send signal/signull to httpd_suexec_t, instead of httpd_suexec_exec_t. - Allow prosody to create own tmp files/dirs. Resolves:#1212498- Allow networkmanager read rfcomm port. Resolves:#1212498 - Remove non exists label. - Fix *_admin intefaces where body is not consistent with header. - Label /usr/afs/ as afs_files_t, Allow afs_bosserver_t create afs_config_t and afs_dbdir_t dirs under afs_files_t, Allow afs_bosserver_t read kerberos config - Remove non exits nfsd_ro_t label. - Make all interfaces related to openshift_cache_t as deprecated. - Add rpm_var_run_t label to rpm_admin header - Add jabberd_lock_t label to jabberd_admin header. - Add samba_unconfined_script_exec_t to samba_admin header. - inn daemon should create innd_log_t objects in var_log_t instead of innd_var_run_t - Fix ctdb policy - Add samba_signull_winbind() - Add samba_signull_unconfined_net() - Allow ctdbd_t send signull to samba_unconfined_net_t. - Allow openshift_initrc_t to communicate with firewalld over dbus Resolves:#1221326- Allow gluster to connect to all ports. It is required by random services executed by gluster. - Add interfaces winbind_signull(), samba_unconfined_net_signull(). - Dontaudit smbd_t block_suspend capability. This is kernel bug. - Allow ctdbd sending signull to process winbind, samba_unconfined_net, to checking if processes exists. - Add tmpreaper booleans to use nfs_t and samba_share_t. - Fix path from /usr/sbin/redis-server to /usr/bin/redis-server - Allow connect ypserv to portmap_port_t - Fix paths in inn policy, Allow innd read innd_log_t dirs, Allow innd execute innd_etc_t files - Add support for openstack-nova-* packages - Allow NetworkManager_t send signull to dnssec_trigger_t. - Allow glusterd to execute showmount in the showmount domain. - Label swift-container-reconciler binary as swift_t. - Allow dnssec_trigger_t relabelfrom dnssec_trigger_var_run_t files. - Add cobbler_var_lib_t to "/var/lib/tftpboot/boot(/.*)?" Resolves:#1213540 - Merge all nova_* labels under one nova_t.- Add logging_syslogd_run_nagios_plugins boolean for rsyslog to allow transition to nagios unconfined plugins Resolves:#1233550 - Allow dnssec_trigger_t create dnssec_trigger_tmp_t files in /var/tmp/ - Add support for oddjob based helper in FreeIPA. - Add new boolean - httpd_run_ipa to allow httpd process to run IPA helper and dbus chat with oddjob. - Add nagios_domtrans_unconfined_plugins() interface. - Update mta_filetrans_named_content() interface to cover more db files. Resolves:#1167468 - Add back ftpd_use_passive_mode boolean with fixed description. - Allow pmcd daemon stream connect to mysqld. - Allow pcp domains to connect to own process using unix_stream_socket. Resolves:#1213709 - Allow abrt-upload-watch service to dbus chat with ABRT daemon and fsetid capability to allow run reporter-upload correctly. - Add new boolean - httpd_run_ipa to allow httpd process to run IPA helper and dbus chat with oddjob. - Add support for oddjob based helper in FreeIPA. - Allow dnssec_trigger_t create dnssec_trigger_tmp_t files in /var/tmp/- Allow iptables to read ctdbd lib files. Resolves:#1224879 - Add systemd_networkd_t to nsswitch domains. - Allow drbd_t write to fixed_disk_device. Reason: drbdmeta needs write to fixed_disk_device during initialization. Resolves:#1130675 - Allow NetworkManager write to sysfs. - Fix cron_system_cronjob_use_shares boolean to call fs interfaces which contain only entrypoint permission. - Add cron_system_cronjob_use_shares boolean to allow system cronjob to be executed from shares - NFS, CIFS, FUSE. It requires "entrypoint" permissios on nfs_t, cifs_t and fusefs_t SELinux types. - Allow NetworkManager write to sysfs. - Allow ctdb_t sending signull to smbd_t, for checking if smbd process exists. - Dontaudit apache to manage snmpd_var_lib_t files/dirs. - Add interface snmp_dontaudit_manage_snmp_var_lib_files(). - Dontaudit mozilla_plugin_t cap. sys_ptrace. - Rename xodbc-connect port to xodbc_connect - Allow ovsdb-server to connect on xodbc-connect and ovsdb tcp ports. - Allow iscsid write to fifo file kdumpctl_tmp_t. Appears when kdump generates the initramfs during the kernel boot. - Dontaudit chrome to read passwd file. - nrpe needs kill capability to make gluster moniterd nodes working. Resolves:#1235587- We allow can_exec() on ssh_keygen on gluster. But there is a transition defined by init_initrc_domain() because we need to allow execute unconfined services by glusterd. So ssh-keygen ends up with ssh_keygen_t and we need to allow to manage /var/lib/glusterd/geo-replication/secret.pem. - Allow sshd to execute gnome-keyring if there is configured pam_gnome_keyring.so. - Allow gnome-keyring executed by passwd to access /run/user/UID/keyring to change a password. - Label gluster python hooks also as bin_t. - Allow glusterd to interact with gluster tools running in a user domain - Add glusterd_manage_lib_files() interface. - ntop reads /var/lib/ntop/macPrefix.db and it needs dac_override. It has setuid/setgid. - Allow samba_t net_admin capability to make CIFS mount working. - S30samba-start gluster hooks wants to search audit logs. Dontaudit it. Resolves:#1224879- Allow glusterd to send generic signals to systemd_passwd_agent processes. - Allow glusterd to access init scripts/units without defined policy - Allow glusterd to run init scripts. - Allow glusterd to execute /usr/sbin/xfs_dbin glusterd_t domain. Resolves:#1224879- Calling cron_system_entry() in pcp_domain_template needs to be a part of optional_policy block. - Allow samba-net to access /var/lib/ctdbd dirs/files. - Allow glusterd to send a signal to smbd. - Make ctdbd as home manager to access also FUSE. - Allow glusterd to use geo-replication gluster tool. - Allow glusterd to execute ssh-keygen. - Allow glusterd to interact with cluster services. - Allow glusterd to connect to the system DBUS for service (acquire_svc). - Label /dev/log correctly. Resolves:#1230932- Back port the latest F22 changes to RHEL7. It should fix most of RHEL7.2 bugs - Add cgdcbxd policy Resolves:#1072493 - Fix ftp_homedir boolean Resolve:#1097775 - Dontaudit ifconfig writing inhertited /var/log/pluto.log. - Allow cluster domain to dbus chat with systemd-logind. Resolves:#1145215 - Dontaudit write access to inherited kdumpctl tmp files Resolves:#1156442 - Allow isnsd_t to communicate with sssd Resolves:#1167702 - Allow rwho_t to communicate with sssd Resolves:#1167718 - Allow sblim_gatherd_t to communicate with sssd Resolves:#1167732 - Allow pkcs_slotd_t to communicate with sssd Resolves:#1167737 - Allow openvswitch_t to communicate with sssd Resolves:#1167816 - Allow mysqld_safe_t to communicate with sssd Resolves:#1167832 - Allow sshd_keygen_t to communicate with sssd Resolves:#1167840 - Add support for iprdbg logging files in /var/log. Resolves:#1174363 - Allow tmpreaper_t to manage ntp log content Resolves:#1176965 - Allow gssd_t to manage ssh keyring Resolves:#1184791 - Allow httpd_sys_script_t to send system log messages Resolves:#1185231 - Allow apcupsd_t to read /sys/devices Resolves:#1189185 - Allow dovecot_t sys_resource capability Resolves:#1191143 - Add support for mongod/mongos systemd unit files. Resolves:#1197038 - Add bacula fixes - Added label mysqld_etc_t for /etc/my.cnf.d/ dir. Resolves:#1203991- Label /usr/libexec/postgresql-ctl as postgresql_exec_t. - Add more restriction on entrypoint for unconfined domains. - Only allow semanage_t to be able to setenforce 0, no all domains that use selinux_semanage interface - Allow all domains to read /dev/urandom. It is needed by all apps/services linked to libgcrypt. There is no harm to allow it by default. - Update policy/mls for sockets related to access perm. Rules were contradictory. - Add nagios_run_pnp4nagios and nagios_run_sudo booleans to allow r un sudo from NRPE utils scripts and allow run nagios in conjunction w ith PNP4Nagios. Resolves:#1201054 - Don't use deprecated userdom_manage_tmpfs_role() interface calliing and use userdom_manage_tmp_role() instead. - Update virt_read_pid_files() interface to allow read also symlinks with virt_var_run_t type - Label /var/lib/tftpboot/aarch64(/.*)? and /var/lib/tftpboot/images2(/.*)? - Add support for iprdbg logging files in /var/log. - Add fixes to rhsmcertd_t - Allow puppetagent_t to transfer firewalld messages over dbus - Add support for /usr/libexec/mongodb-scl-helper RHSCL helper script. - Added label mysqld_etc_t for /etc/my.cnf.d/ dir. - Add support for mongod/mongos systemd unit files. - cloudinit and rhsmcertd need to communicate with dbus - Allow dovecot_t sys_resource capability- ALlow mongod execmem by default. - Update policy/mls for sockets. Rules were contradictory. Resolves:#1207133 - Allow a user to login with different security level via ssh.- Update seutil_manage_config() interface. Resolves:#1185962 - Allow pki-tomcat relabel pki_tomcat_etc_rw_t. - Turn on docker_transition_unconfined by default- Allow virtd to list all mountpoints. Resolves:#1180713- pkcsslotd_lock_t should be an alias for pkcs_slotd_lock_t. - Allow fowner capability for sssd because of selinux_child handling. - ALlow bind to read/write inherited ipsec pipes - Allow hypervkvp to read /dev/urandom and read addition states/config files. - Allow gluster rpm scripletto create glusterd socket with correct labeling. This is a workaround until we get fix in glusterd. - Add glusterd_filetrans_named_pid() interface - Allow radiusd to connect to radsec ports. - Allow setuid/setgid for selinux_child - Allow lsmd plugin to connect to tcp/5988 by default. - Allow lsmd plugin to connect to tcp/5989 by default. - Update ipsec_manage_pid() interface. Resolves:#1184978- Update ipsec_manage_pid() interface. Resolves:#1184978- Allow ntlm_auth running in winbind_helper_t to access /dev/urandom.- Add auditing support for ipsec. Resolves:#1182524 - Label /ostree/deploy/rhel-atomic-host/deploy directory as system_conf_t - Allow netutils chown capability to make tcpdump working with -w- Allow ipsec to execute _updown.netkey script to run unbound-control. - Allow neutron to read rpm DB. - Add additional fixes for hyperkvp * creates new ifcfg-{name} file * Runs hv_set_ifconfig.sh, which does the following * Copies ifcfg-{name} to /etc/sysconfig/network-scripts - Allow svirt to read symbolic links in /sys/fs/cgroups labeled as tmpfs_t - Add labeling for pacemaker.log. - Allow radius to connect/bind radsec ports. - Allow pm-suspend running as virt_qemu_ga to read /var/log/pm-suspend.log - Allow virt_qemu_ga to dbus chat with rpm. - Update virt_read_content() interface to allow read also char devices. - Allow glance-registry to connect to keystone port. Resolves:#1181818- Allow sssd to send dbus all user domains. Resolves:#1172291 - Allow lsm plugin to read certificates. - Fix labeling for keystone CGI scripts. - Make snapperd back as unconfined domain.- Fix bugs in interfaces discovered by sepolicy. - Allow slapd to read /usr/share/cracklib/pw_dict.hwm. - Allow lsm plugins to connect to tcp/18700 by default. - Allow brltty mknod capability to allow create /var/run/brltty/vcsa. - Fix pcp_domain_template() interface. - Fix conman.te. - Allow mon_fsstatd to read /proc/sys/fs/binfmt_misc - Allow glance-scrubber to connect tcp/9191. - Add missing setuid capability for sblim-sfcbd. - Allow pegasus ioctl() on providers. - Add conman_can_network. - Allow chronyd to read chrony conf files located in /run/timemaster/. - Allow radius to bind on tcp/1813 port. - dontaudit block suspend access for openvpn_t - Allow conman to create files/dirs in /tmp. - Update xserver_rw_xdm_keys() interface to have 'setattr'. Resolves:#1172291 - Allow sulogin to read /dev/urandom and /dev/random. - Update radius port definition to have also tcp/18121 - Label prandom as random_device_t. - Allow charon to manage files in /etc/strongimcv labeled as ipsec_conf_t.- Allow virt_qemu_ga_t to execute kmod. - Add missing files_dontaudit_list_security_dirs() for smbd_t in samba_export_all_ro boolean. - Add additionnal MLS attribute for oddjob_mkhomedir to create homedirs. Resolves:#1113725 - Enable OpenStack cinder policy - Add support for /usr/share/vdsm/daemonAdapter - Add support for /var/run/gluster- Remove old pkcsslotd.pp from minimum package - Allow rlogind to use also rlogin ports. - Add support for /usr/libexec/ntpdate-wrapper. Label it as ntpdate_exec_t. - Allow bacula to connect also to postgresql. - Label /usr/libexec/tomcat/server as tomcat_exec_t - Add support for /usr/sbin/ctdbd_wrapper - Add support for /usr/libexec/ppc64-diag/rtas_errd - Allow rpm_script_roles to access system_mail_t - Allow brltty to create /var/run/brltty - Allow lsmd plugin to access netlink_route_socket - Allow smbcontrol to read passwd - Add support for /usr/libexec/sssd/selinux_child and create sssd_selinux_manager_t domain for it Resolves:#1140106 - Allow osad to execute rhn_check - Allow load_policy to rw inherited sssd pipes because of selinux_child - Allow admin SELinux users mounting / as private within a new mount namespace as root in MLS - Add additional fixes for su_restricted_domain_template to make moving to sysadm_r and trying to su working correctly - Add additional booleans substitions- Add seutil_dontaudit_access_check_semanage_module_store() interface Resolves:#1140106 - Update to have all _systemctl() interface also init_reload_services(). - Dontaudit access check on SELinux module store for sssd. - Add labeling for /sbin/iw. - Allow named_filetrans_domain to create ibus directory with correct labeling.- Allow radius to bind tcp/1812 radius port. - Dontaudit list user_tmp files for system_mail_t. - Label virt-who as virtd_exec_t. - Allow rhsmcertd to send a null signal to virt-who running as virtd_t. - Add missing alias for _content_rw_t. Resolves:#1089177 - Allow spamd to access razor-agent.log. - Add fixes for sfcb from libvirt-cim TestOnly bug. - Allow NetworkManager stream connect on openvpn. - Make /usr/bin/vncserver running as unconfined_service_t. - getty_t should be ranged in MLS. Then also local_login_t runs as ranged domain. - Label /etc/docker/certs.d as cert_t.- Label /etc/strongimcv as ipsec_conf_file_t. - Add support for /usr/bin/start-puppet-ca helper script Resolves:#1160727 - Allow rpm scripts to enable/disable transient systemd units. Resolves:#1154613 - Make kpropdas nsswitch domain Resolves:#1153561 - Make all glance domain as nsswitch domains Resolves:#1113281 - Allow selinux_child running as sssd access check on /etc/selinux/targeted/modules/active - Allow access checks on setfiles/load_policy/semanage_lock for selinux_child running as sssd_t Resolves:#1140106- Dontaudit access check on setfiles/load_policy for sssd_t. Resolves:#1140106 - Add kdump_rw_inherited_kdumpctl_tmp_pipes() Resolves:#1156442 - Make linuxptp services as unconfined. - Added new policy linuxptp. Resolves:#1149693 - Label keystone cgi files as keystone_cgi_script_exec_t. Resolves:#1138424 - Make tuned as unconfined domain- Allow guest to connect to libvirt using unix_stream_socket. - Allow all bus client domains to dbus chat with unconfined_service_t. - Allow inetd service without own policy to run in inetd_child_t which is unconfined domain. - Make opensm as nsswitch domain to make it working with sssd. - Allow brctl to read meminfo. - Allow winbind-helper to execute ntlm_auth in the caller domain. Resolves:#1160339 - Make plymouthd as nsswitch domain to make it working with sssd. Resolves:#1160196 - Make drbd as nsswitch domain to make it working with sssd. - Make conman as nsswitch domain to make ipmitool.exp runing as conman_t working. - Add support for /var/lib/sntp directory. - Add fixes to allow docker to create more content in tmpfs ,and donaudit reading /proc - Allow winbind to read usermodehelper - Allow telepathy domains to execute shells and bin_t - Allow gpgdomains to create netlink_kobject_uevent_sockets - Allow mongodb to bind to the mongo port and mongos to run as mongod_t - Allow abrt to read software raid state. - Allow nslcd to execute netstat. - Allow dovecot to create user's home directory when they log into IMAP. - Allow login domains to create kernel keyring with different level.- Allow modemmanger to connectto itself Resolves:#1120152 - Allow pki_tomcat to create link files in /var/lib/pki-ca. Resolves:#1121744 - varnishd needs to have fsetid capability Resolves:#1125165 - Allow snapperd to dbus chat with system cron jobs. Resolves:#1152447 - Allow dovecot to create user's home directory when they log into IMAP Resolves:#1152773 - Add labeling for /usr/sbin/haproxy-systemd-wrapper wrapper to make haproxy running haproxy_t. - ALlow listen and accept on tcp socket for init_t in MLS. Previously it was for xinetd_t. - Allow nslcd to execute netstat. - Add suppor for keepalived unconfined scripts and allow keepalived to read all domain state and kill capability. - Allow nslcd to read /dev/urandom.- Add back kill permisiion for system class Resolves:#1150011- Add back kill permisiion for service class Resolves:#1150011 - Make rhsmcertd_t also as dbus domain. - Allow named to create DNS_25 with correct labeling. - Add cloudform_dontaudit_write_cloud_log() - Call auth_use_nsswitch to apache to read/write cloud-init keys. - Allow cloud-init to dbus chat with certmonger. - Fix path to mon_statd_initrc_t script. - Allow all RHCS services to read system state. - Allow dnssec_trigger_t to execute unbound-control in own domain. - kernel_read_system_state needs to be called with type. Moved it to antivirus.if. - Added policy for mon_statd and mon_procd services. BZ (1077821) - Allow opensm_t to read/write /dev/infiniband/umad1. - Allow mongodb to manage own log files. - Allow neutron connections to system dbus. - Add support for /var/lib/swiftdirectory. - Allow nova-scheduler to read certs. - Allow openvpn to access /sys/fs/cgroup dir. - Allow openvpn to execute systemd-passwd-agent in systemd_passwd_agent_t to make openvpn working with systemd. - Fix samba_export_all_ro/samba_export_all_rw booleans to dontaudit search/read security files. - Add auth_use_nsswitch for portreserve to make it working with sssd. - automount policy is non-base module so it needs to be called in optional block. - ALlow sensord to getattr on sysfs. - Label /usr/share/corosync/corosync as cluster_exec_t. - Allow lmsd_plugin to read passwd file. BZ(1093733) - Allow read antivirus domain all kernel sysctls. - Allow mandb to getattr on file systems - Allow nova-console to connect to mem_cache port. - Make sosreport as unconfined domain. - Allow mondogdb to 'accept' accesses on the tcp_socket port. - ALlow sanlock to send a signal to virtd_t.- Build also MLS policy Resolves:#1138424- Add back kill permisiion for system class - Allow iptables read fail2ban logs. - Fix radius labeled ports - Add userdom_manage_user_tmpfs_files interface - Allow libreswan to connect to VPN via NM-libreswan. - Label 4101 tcp port as brlp port - fix dev_getattr_generic_usb_dev interface - Allow all domains to read fonts - Make sure /run/systemd/generator and system is labeled correctly on creation. - Dontaudit aicuu to search home config dir. - Make keystone_cgi_script_t domain. Resolves:#1138424 - Fix bug in drbd policy, - Added support for cpuplug. - ALlow sanlock_t to read sysfs_t. - Added sendmail_domtrans_unconfined interface - Fix broken interfaces - radiusd wants to write own log files. - Label /usr/libexec/rhsmd as rhsmcertd_exec_t - Allow rhsmcertd send signull to setroubleshoot. - Allow rhsmcertd manage rpm db. - Added policy for blrtty. - Fix keepalived policy - Allow rhev-agentd dbus chat with systemd-logind. - Allow keepalived manage snmp var lib sock files. - Add support for /var/lib/graphite-web - Allow NetworkManager to create Bluetooth SDP sockets - It's going to do the the discovery for DUN service for modems with Bluez 5. - Allow swift to connect to all ephemeral ports by default. - Allow sssd to read selinux config to add SELinux user mapping. - Allow lsmd to search own plguins. - Allow abrt to read /dev/memto generate an unique machine_id and uses sosuploader's algorithm based off dmidecode[1] fields. - ALlow zebra for user/group look-ups. - Allow nova domains to getattr on all filesystems. - Allow collectd sys_ptrace and dac_override caps because of reading of /proc/%i/io for several processes. - Allow pppd to connect to /run/sstpc/sstpc-nm-sstp-service-28025 over unix stream socket. - Allow rhnsd_t to manage also rhnsd config symlinks. - ALlow user mail domains to create dead.letter. - Allow rabbitmq_t read rabbitmq_var_lib_t lnk files. - Allow pki-tomcat to change SELinux object identity. - Allow radious to connect to apache ports to do OCSP check - Allow git cgi scripts to create content in /tmp - Allow cockpit-session to do GSSAPI logins. - Allow sensord read in /proc - Additional access required by usbmuxd- Allow locate to look at files/directories without labels, and chr_file and blk_file on non dev file systems - Label /usr/lib/erlang/erts.*/bin files as bin_t - Add files_dontaudit_access_check_home_dir() inteface. - Allow udev_t mounton udev_var_run_t dirs #(1128618) - Add systemd_networkd_var_run_t labeling for /var/run/systemd/netif and allow systemd-networkd to manage it. - Add init_dontaudit_read_state() interface. - Add label for ~/.local/share/fonts - Allow unconfined_r to access unconfined_service_t. - Allow init to read all config files - Add new interface to allow creation of file with lib_t type - Assign rabbitmq port. - Allow unconfined_service_t to dbus chat with all dbus domains - Add new interfaces to access users keys. - Allow domains to are allowed to mounton proc to mount on files as well as dirs - Fix labeling for HOME_DIR/tmp and HOME_DIR/.tmp directories. - Add a port definition for shellinaboxd - Label ~/tmp and ~/.tmp directories in user tmp dirs as user_tmp_t - Allow userdomains to stream connect to pcscd for smart cards - Allow programs to use pam to search through user_tmp_t dires (/tmp/.X11-unix) - Update to rawhide-contrib changes Resolves:#1123844- Rebase to 3.13.1 which we have in Fedora21 Resolves:#1128284- Back port fixes from Fedora. Mainly OpenStack and Docker fixes- Add policy-rhel-7.1-{base,contrib} patches- Add support for us_cli ports - Fix labeling for /var/run/user//gvfs - add support for tcp/9697 - Additional rules required by openstack, needs backport to F20 and RHEL7 - Additional access required by docker - ALlow motion to use tcp/8082 port - Allow init_t to setattr/relabelfrom dhcp state files - Dontaudit antivirus domains read access on all security files by default - Add missing alias for old amavis_etc_t type - Allow block_suspend cap for haproxy - Additional fixes for instack overcloud - Allow OpenStack to read mysqld_db links and connect to MySQL - Remove dup filename rules in gnome.te - Allow sys_chroot cap for httpd_t and setattr on httpd_log_t - Allow iscsid to handle own unit files - Add iscsi_systemctl() - Allow mongod to create also sock_files in /run with correct labeling - Allow httpd to send signull to apache script domains and don't audit leaks - Allow rabbitmq_beam to connect to httpd port - Allow aiccu stream connect to pcscd - Allow dmesg to read hwdata and memory dev - Allow all freeipmi domains to read/write ipmi devices - Allow sblim_sfcbd to use also pegasus-https port - Allow rabbitmq_epmd to manage rabbit_var_log_t files - Allow chronyd to read /sys/class/hwmon/hwmon1/device/temp2_input - Allow docker to status any unit file and allow it to start generic unit files- Change hsperfdata_root to have as user_tmp_t Resolves:#1076523- Fix Multiple same specifications for /var/named/chroot/dev/zero - Add labels for /var/named/chroot_sdb/dev devices - Add support for strongimcv - Use kerberos_keytab_domains in auth_use_nsswitch - Update auth_use_nsswitch to make all these types as kerberos_keytab_domain to - Allow net_raw cap for neutron_t and send sigkill to dnsmasq - Fix ntp_filetrans_named_content for sntp-kod file - Add httpd_dbus_sssd boolean - Dontaudit exec insmod in boinc policy - Rename kerberos_keytab_domain to kerberos_keytab_domains - Add kerberos_keytab_domain() - Fix kerberos_keytab_template() - Make all domains which use kerberos as kerberos_keytab_domain Resolves:#1083670 - Allow kill capability to winbind_t- varnishd wants chown capability - update ntp_filetrans_named_content() interface - Add additional fixes for neutron_t. #1083335 - Dontaudit getattr on proc_kcore_t - Allow pki_tomcat_t to read ipa lib files - Allow named_filetrans_domain to create /var/cache/ibus with correct labelign - Allow init_t run /sbin/augenrules - Add dev_unmount_sysfs_fs and sysnet_manage_ifconfig_run interfaces - Allow unpriv SELinux user to use sandbox - Add default label for /tmp/hsperfdata_root- Add file subs also for /var/home- Allow xauth_t to read user_home_dir_t lnk_file - Add labeling for lightdm-data - Allow certmonger to manage ipa lib files - Add support for /var/lib/ipa - Allow pegasus to getattr virt_content - Added some new rules to pcp policy - Allow chrome_sandbox to execute config_home_t - Add support for ABRT FAF- Allow kdm to send signull to remote_login_t process - Add gear policy - Turn on gear_port_t - Allow cgit to read gitosis lib files by default - Allow vdagent to read xdm state - Allow NM and fcoeadm to talk together over unix_dgram_socket- Back port fixes for pegasus_openlmi_admin_t from rawhide Resolves:#1080973 - Add labels for ostree - Add SELinux awareness for NM - Label /usr/sbin/pwhistory_helper as updpwd_exec_t- add gnome_append_home_config() - Allow thumb to append GNOME config home files - Allow rasdaemon to rw /dev/cpu//msr - fix /var/log/pki file spec - make bacula_t as auth_nsswitch domain - Identify pki_tomcat_cert_t as a cert_type - Define speech-dispater_exec_t as an application executable - Add a new file context for /var/named/chroot/run directory - update storage_filetrans_all_named_dev for sg* devices - Allow auditctl_t to getattr on all removeable devices - Allow nsswitch_domains to stream connect to nmbd - Allow unprivusers to connect to memcached - label /var/lib/dirsrv/scripts-INSTANCE as bin_t- Allow also unpriv user to run vmtools - Allow secadm to read /dev/urandom and meminfo Resolves:#1079250 - Add booleans to allow docker processes to use nfs and samba - Add mdadm_tmpfs support - Dontaudit net_amdin for /usr/lib/jvm/java-1.7.0-openjdk-1.7.0.51-2.4.5.1.el7.x86_64/jre-abrt/bin/java running as pki_tomcat_t - Allow vmware-user-sui to use user ttys - Allow talk 2 users logged via console too - Allow ftp services to manage xferlog_t - Make all pcp domanis as unconfined for RHEL7.0 beucause of new policies - allow anaconda to dbus chat with systemd-localed- allow anaconda to dbus chat with systemd-localed - Add fixes for haproxy based on bperkins@redhat.com - Allow cmirrord to make dmsetup working - Allow NM to execute arping - Allow users to send messages through talk - Add userdom_tmp_role for secadm_t- Add additional fixes for rtas_errd - Fix transitions for tmp/tmpfs in rtas.te - Allow rtas_errd to readl all sysctls- Add support for /var/spool/rhsm/debug - Make virt_sandbox_use_audit as True by default - Allow svirt_sandbox_domains to ptrace themselves- Allow docker containers to manage /var/lib/docker content- Allow docker to read tmpfs_t symlinks - Allow sandbox svirt_lxc_net_t to talk to syslog and to sssd over stream sockets- Allow collectd to talk to libvirt - Allow chrome_sandbox to use leaked unix_stream_sockets - Dontaudit leaks of sockets into chrome_sandbox_t - If you create a cups directory in /var/cache then it should be labeled cups_rw_etc_t - Run vmtools as unconfined domains - Allow snort to manage its log files - Allow systemd_cronjob_t to be entered via bin_t - Allow procman to list doveconf_etc_t - allow keyring daemon to create content in tmpfs directories - Add proper labelling for icedtea-web - vpnc is creating content in networkmanager var run directory - Label sddm as xdm_exec_t to make KDE working again - Allow postgresql to read network state - Allow java running as pki_tomcat to read network sysctls - Fix cgroup.te to allow cgred to read cgconfig_etc_t - Allow beam.smp to use ephemeral ports - Allow winbind to use the nis to authenticate passwords- Make rtas_errd_t as unconfined domain for F20.It needs additional fixes. It runs rpm at least. - Allow net_admin cap for fence_virtd running as fenced_t - Make abrt-java-connector working - Make cimtest script 03_defineVS.py of ComputerSystem group working - Fix git_system_enable_homedirs boolean - Allow munin mail plugins to read network systcl- Allow vmtools_helper_t to execute bin_t - Add support for /usr/share/joomla - /var/lib/containers should be labeled as openshift content for now - Allow docker domains to talk to the login programs, to allow a process to login into the container - Allow install_t do dbus chat with NM - Fix interface names in anaconda.if - Add install_t for anaconda. A new type is a part of anaconda policy - sshd to read network sysctls- Allow zabbix to send system log msgs - Allow init_t to stream connect to ipsec Resolves:#1060775- Add docker_connect_any boolean- Allow unpriv SELinux users to dbus chat with firewalld - Add lvm_write_metadata() - Label /etc/yum.reposd dir as system_conf_t. Should be safe because system_conf_t is base_ro_file_type - Allow pegasus_openlmi_storage_t to write lvm metadata - Add hide_broken_symptoms for kdumpgui because of systemd bug - Make kdumpgui_t as unconfined domain Resolves:#1044299 - Allow docker to connect to tcp/5000- Allow numad to write scan_sleep_millisecs - Turn on entropyd_use_audio boolean by default - Allow cgred to read /etc/cgconfig.conf because it contains templates used together with rules from /etc/cgrules.conf. - Allow lscpu running as rhsmcertd_t to read /proc/sysinfo - Fix label on irclogs in the homedir - Allow kerberos_keytab_domain domains to manage keys until we get sssd fix - Allow postgresql to use ldap - Add missing syslog-conn port - Add support for /dev/vmcp and /dev/sclp Resolves:#1069310- Modify xdm_write_home to allow create files/links in /root with xdm_home_ - Allow virt domains to read network state Resolves:#1072019- Added pcp rules - dontaudit openshift_cron_t searching random directories, should be back ported to RHEL6 - clean up ctdb.te - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow certmonger to list home dirs- Change userdom_use_user_inherited_ttys to userdom_use_user_ttys for systemd-tty-ask - Add sysnet_filetrans_named_content_ifconfig() interface - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow kerberos keytab domains to manage sssd/userdomain keys" - Allow to run ip cmd in neutron_t domain- Allow block_suspend cap2 for systemd-logind and rw dri device - Add labeling for /usr/libexec/nm-libreswan-service - Allow locallogin to rw xdm key to make Virtual Terminal login providing smartcard pin working - Add xserver_rw_xdm_keys() - Allow rpm_script_t to dbus chat also with systemd-located - Fix ipa_stream_connect_otpd() - update lpd_manage_spool() interface - Allow krb5kdc to stream connect to ipa-otpd - Add ipa_stream_connect_otpd() interface - Allow vpnc to unlink NM pids - Add networkmanager_delete_pid_files() - Allow munin plugins to access unconfined plugins - update abrt_filetrans_named_content to cover /var/spool/debug - Label /var/spool/debug as abrt_var_cache_t - Allow rhsmcertd to connect to squid port - Make docker_transition_unconfined as optional boolean - Allow certmonger to list home dirs- Make snapperd as unconfined domain and add additional fixes for it - Remove nsplugin.pp module on upgrade- Add snapperd_home_t for HOME_DIR/.snapshots directory - Make sosreport as unconfined domain - Allow sosreport to execute grub2-probe - Allow NM to manage hostname config file - Allow systemd_timedated_t to dbus chat with rpm_script_t - Allow lsmd plugins to connect to http/ssh/http_cache ports by default - Add lsmd_plugin_connect_any boolean - Allow mozilla_plugin to attempt to set capabilities - Allow lsdm_plugins to use tcp_socket - Dontaudit mozilla plugin from getattr on /proc or /sys - Dontaudit use of the keyring by the services in a sandbox - Dontaudit attempts to sys_ptrace caused by running ps for mysqld_safe_t - Allow rabbitmq_beam to connect to jabber_interserver_port - Allow logwatch_mail_t to transition to qmail_inject and queueu - Added new rules to pcp policy - Allow vmtools_helper_t to change role to system_r - Allow NM to dbus chat with vmtools - Fix couchdb_manage_files() to allow manage couchdb conf files - Add support for /var/run/redis.sock - dontaudit gpg trying to use audit - Allow consolekit to create log directories and files - Fix vmtools policy to allow user roles to access vmtools_helper_t - Allow block_suspend cap2 for ipa-otpd - Allow pkcsslotd to read users state - Add ioctl to init_dontaudit_rw_stream_socket - Add systemd_hostnamed_manage_config() interface - Remove transition for temp dirs created by init_t - gdm-simple-slave uses use setsockopt - sddm-greater is a xdm type program- Add lvm_read_metadata() - Allow auditadm to search /var/log/audit dir - Add lvm_read_metadata() interface - Allow confined users to run vmtools helpers - Fix userdom_common_user_template() - Generic systemd unit scripts do write check on / - Allow init_t to create init_tmp_t in /tmp.This is for temporary content created by generic unit files - Add additional fixes needed for init_t and setup script running in generic unit files - Allow general users to create packet_sockets - added connlcli port - Add init_manage_transient_unit() interface - Allow init_t (generic unit files) to manage rpc state date as we had it for initrc_t - Fix userdomain.te to require passwd class - devicekit_power sends out a signal to all processes on the message bus when power is going down - Dontaudit rendom domains listing /proc and hittping system_map_t - Dontauit leaks of var_t into ifconfig_t - Allow domains that transition to ssh_t to manipulate its keyring - Define oracleasm_t as a device node - Change to handle /root as a symbolic link for os-tree - Allow sysadm_t to create packet_socket, also move some rules to attributes - Add label for openvswitch port - Remove general transition for files/dirs created in /etc/mail which got etc_aliases_t label. - Allow postfix_local to read .forward in pcp lib files - Allow pegasus_openlmi_storage_t to read lvm metadata - Add additional fixes for pegasus_openlmi_storage_t - Allow bumblebee to manage debugfs - Make bumblebee as unconfined domain - Allow snmp to read etc_aliases_t - Allow lscpu running in pegasus_openlmi_storage_t to read /dev/mem - Allow pegasus_openlmi_storage_t to read /proc/1/environ - Dontaudit read gconf files for cupsd_config_t - make vmtools as unconfined domain - Add vmtools_helper_t for helper scripts. Allow vmtools shutdonw a host and run ifconfig. - Allow collectd_t to use a mysql database - Allow ipa-otpd to perform DNS name resolution - Added new policy for keepalived - Allow openlmi-service provider to manage transitient units and allow stream connect to sssd - Add additional fixes new pscs-lite+polkit support - Add labeling for /run/krb5kdc - Change w3c_validator_tmp_t to httpd_w3c_validator_tmp_t in F20 - Allow pcscd to read users proc info - Dontaudit smbd_t sending out random signuls - Add boolean to allow openshift domains to use nfs - Allow w3c_validator to create content in /tmp - zabbix_agent uses nsswitch - Allow procmail and dovecot to work together to deliver mail - Allow spamd to execute files in homedir if boolean turned on - Allow openvswitch to listen on port 6634 - Add net_admin capability in collectd policy - Fixed snapperd policy - Fixed bugsfor pcp policy - Allow dbus_system_domains to be started by init - Fixed some interfaces - Add kerberos_keytab_domain attribute - Fix snapperd_conf_t def- Addopt corenet rules for unbound-anchor to rpm_script_t - Allow runuser to send send audit messages. - Allow postfix-local to search .forward in munin lib dirs - Allow udisks to connect to D-Bus - Allow spamd to connect to spamd port - Fix syntax error in snapper.te - Dontaudit osad to search gconf home files - Allow rhsmcertd to manage /etc/sysconf/rhn director - Fix pcp labeling to accept /usr/bin for all daemon binaries - Fix mcelog_read_log() interface - Allow iscsid to manage iscsi lib files - Allow snapper domtrans to lvm_t. Add support for /etc/snapper and allow snapperd to manage it. - Make tuned_t as unconfined domain for RHEL7.0 - Allow ABRT to read puppet certs - Add sys_time capability for virt-ga - Allow gemu-ga to domtrans to hwclock_t - Allow additional access for virt_qemu_ga_t processes to read system clock and send audit messages - Fix some AVCs in pcp policy - Add to bacula capability setgid and setuid and allow to bind to bacula ports - Changed label from rhnsd_rw_conf_t to rhnsd_conf_t - Add access rhnsd and osad to /etc/sysconfig/rhn - drbdadm executes drbdmeta - Fixes needed for docker - Allow epmd to manage /var/log/rabbitmq/startup_err file - Allow beam.smp connect to amqp port - Modify xdm_write_home to allow create also links as xdm_home_t if the boolean is on true - Allow init_t to manage pluto.ctl because of init_t instead of initrc_t - Allow systemd_tmpfiles_t to manage all non security files on the system - Added labels for bacula ports - Fix label on /dev/vfio/vfio - Add kernel_mounton_messages() interface - init wants to manage lock files for iscsi- Added osad policy - Allow postfix to deliver to procmail - Allow bumblebee to seng kill signal to xserver - Allow vmtools to execute /usr/bin/lsb_release - Allow docker to write system net ctrls - Add support for rhnsd unit file - Add dbus_chat_session_bus() interface - Add dbus_stream_connect_session_bus() interface - Fix pcp.te - Fix logrotate_use_nfs boolean - Add lot of pcp fixes found in RHEL7 - fix labeling for pmie for pcp pkg - Change thumb_t to be allowed to chat/connect with session bus type - Allow call renice in mlocate - Add logrotate_use_nfs boolean - Allow setroubleshootd to read rpc sysctl- Turn on bacula, rhnsd policy - Add support for rhnsd unit file - Add dbus_chat_session_bus() interface - Add dbus_stream_connect_session_bus() interface - Fix logrotate_use_nfs boolean - Add lot of pcp fixes found in RHEL7 - fix labeling for pmie for pcp pkg - Change thumb_t to be allowed to chat/connect with session bus type - Allow call renice in mlocate - Add logrotate_use_nfs boolean - Allow setroubleshootd to read rpc sysctl - Fixes for *_admin interfaces - Add pegasus_openlmi_storage_var_run_t type def - Add support for /var/run/openlmi-storage - Allow tuned to create syslog.conf with correct labeling - Add httpd_dontaudit_search_dirs boolean - Add support for winbind.service - ALlow also fail2ban-client to read apache logs - Allow vmtools to getattr on all fs - Add support for dey_sapi port - Add logging_filetrans_named_conf() - Allow passwd_t to use ipc_lock, so that it can change the password in gnome-keyring- Update snapper policy - Allow domains to append rkhunter lib files - Allow snapperd to getattr on all fs - Allow xdm to create /var/gdm with correct labeling - Add label for snapper.log - Allow fail2ban-client to read apache log files - Allow thumb_t to execute dbus-daemon in thumb_t- Allow gdm to create /var/gdm with correct labeling - Allow domains to append rkhunterl lib files. #1057982 - Allow systemd_tmpfiles_t net_admin to communicate with journald - Add interface to getattr on an isid_type for any type of file - Update libs_filetrans_named_content() to have support for /usr/lib/debug directory - Allow initrc_t domtrans to authconfig if unconfined is enabled - Allow docker and mount on devpts chr_file - Allow docker to transition to unconfined_t if boolean set - init calling needs to be optional in domain.te - Allow uncofined domain types to handle transient unit files - Fix labeling for vfio devices - Allow net_admin capability and send system log msgs - Allow lldpad send dgram to NM - Add networkmanager_dgram_send() - rkhunter_var_lib_t is correct type - Back port pcp policy from rawhide - Allow openlmi-storage to read removable devices - Allow system cron jobs to manage rkhunter lib files - Add rkhunter_manage_lib_files() - Fix ftpd_use_fusefs boolean to allow manage also symlinks - Allow smbcontrob block_suspend cap2 - Allow slpd to read network and system state info - Allow NM domtrans to iscsid_t if iscsiadm is executed - Allow slapd to send a signal itself - Allow sslget running as pki_ra_t to contact port 8443, the secure port of the CA. - Fix plymouthd_create_log() interface - Add rkhunter policy with files type definition for /var/lib/rkhunter until it is fixed in rkhunter package - Add mozilla_plugin_exec_t for /usr/lib/firefox/plugin-container - Allow postfix and cyrus-imapd to work out of box - Allow fcoemon to talk with unpriv user domain using unix_stream_socket - Dontaudit domains that are calling into journald to net_admin - Add rules to allow vmtools to do what it does - snapperd is D-Bus service - Allow OpenLMI PowerManagement to call 'systemctl --force reboot' - Add haproxy_connect_any boolean - Allow haproxy also to use http cache port by default Resolves:#1058248- Allow apache to write to the owncloud data directory in /var/www/html... - Allow consolekit to create log dir - Add support for icinga CGI scripts - Add support for icinga - Allow kdumpctl_t to create kdump lock file Resolves:#1055634 - Allow kdump to create lnk lock file - Allow nscd_t block_suspen capability - Allow unconfined domain types to manage own transient unit file - Allow systemd domains to handle transient init unit files - Add interfaces to handle transient- Add cron unconfined role support for uncofined SELinux user - Call corenet_udp_bind_all_ports() in milter.te - Allow fence_virtd to connect to zented port - Fix header for mirrormanager_admin() - Allow dkim-milter to bind udp ports - Allow milter domains to send signull itself - Allow block_suspend for yum running as mock_t - Allow beam.smp to manage couchdb files - Add couchdb_manage_files() - Add labeling for /var/log/php_errors.log - Allow bumblebee to stream connect to xserver - Allow bumblebee to send a signal to xserver - gnome-thumbnail to stream connect to bumblebee - Allow xkbcomp running as bumblebee_t to execute bin_t - Allow logrotate to read squid.conf - Additional rules to get docker and lxc to play well with SELinux - Allow bumbleed to connect to xserver port - Allow pegasus_openlmi_storage_t to read hwdata- Allow init_t to work on transitient and snapshot unit files - Add logging_manage_syslog_config() - Update sysnet_dns_name_resolve() to allow connect to dnssec por - Allow pegasus_openlmi_storage_t to read hwdata Resolves:#1031721 - Fix rhcs_rw_cluster_tmpfs() - Allow fenced_t to bind on zented udp port - Added policy for vmtools - Fix mirrormanager_read_lib_files() - Allow mirromanager scripts running as httpd_t to manage mirrormanager pid files - Allow ctdb to create sock files in /var/run/ctdb - Add sblim_filetrans_named_content() interface - Allow rpm scritplets to create /run/gather with correct labeling - Allow gnome keyring domains to create gnome config dirs - Dontaudit read/write to init stream socket for lsmd_plugin_t - Allow automount to read nfs link files - Allow lsm plugins to read/write lsmd stream socket - Allow certmonger to connect ldap port to make IPA CA certificate renewal working. - Add also labeling for /var/run/ctdb - Add missing labeling for /var/lib/ctdb - ALlow tuned to manage syslog.conf. Should be fixed in tuned. #1030446 - Dontaudit hypervkvp to search homedirs - Dontaudit hypervkvp to search admin homedirs - Allow hypervkvp to execute bin_t and ifconfig in the caller domain - Dontaudit xguest_t to read ABRT conf files - Add abrt_dontaudit_read_config() - Allow namespace-init to getattr on fs - Add thumb_role() also for xguest - Add filename transitions to create .spamassassin with correct labeling - Allow apache domain to read mirrormanager pid files - Allow domains to read/write shm and sem owned by mozilla_plugin_t - Allow alsactl to send a generic signal to kernel_t- Add back rpm_run() for unconfined user- Add missing files_create_var_lib_dirs() - Fix typo in ipsec.te - Allow passwd to create directory in /var/lib - Add filename trans also for event21 - Allow iptables command to read /dev/rand - Add sigkill capabilityfor ipsec_t - Add filename transitions for bcache devices - Add additional rules to create /var/log/cron by syslogd_t with correct labeling - Add give everyone full access to all key rings - Add default lvm_var_run_t label for /var/run/multipathd - Fix log labeling to have correct default label for them after logrotate - Labeled ~/.nv/GLCache as being gstreamer output - Allow nagios_system_plugin to read mrtg lib files - Add mrtg_read_lib_files() - Call rhcs_rw_cluster_tmpfs for dlm_controld - Make authconfing as named_filetrans domain - Allow virsh to connect to user process using stream socket - Allow rtas_errd to read rand/urand devices and add chown capability - Fix labeling from /var/run/net-snmpd to correct /var/run/net-snmp Resolves:#1051497 - Add also chown cap for abrt_upload_watch_t. It already has dac_override - Allow sosreport to manage rhsmcertd pid files - Add rhsmcertd_manage_pid_files() - Allow also setgid cap for rpc.gssd - Dontaudit access check for abrt on cert_t - Allow pegasus_openlmi_system providers to dbus chat with systemd-logind- Fix semanage import handling in spec file- Add default lvm_var_run_t label for /var/run/multipathd Resolves:#1051430 - Fix log labeling to have correct default label for them after logrotate - Add files_write_root_dirs - Add new openflow port label for 6653/tcp and 6633/tcp - Add xserver_manage_xkb_libs() - Label tcp/8891 as milter por - Allow gnome_manage_generic_cache_files also create cache_home_t files - Fix aide.log labeling - Fix log labeling to have correct default label for them after logrotate - Allow mysqld-safe write access on /root to make mysqld working - Allow sosreport domtrans to prelikn - Allow OpenvSwitch to connec to openflow ports - Allow NM send dgram to lldpad - Allow hyperv domains to execute shell - Allow lsmd plugins stream connect to lsmd/init - Allow sblim domains to create /run/gather with correct labeling - Allow httpd to read ldap certs - Allow cupsd to send dbus msgs to process with different MLS level - Allow bumblebee to stream connect to apmd - Allow bumblebee to run xkbcomp - Additional allow rules to get libvirt-lxc containers working with docker - Additional allow rules to get libvirt-lxc containers working with docker - Allow docker to getattr on itself - Additional rules needed for sandbox apps - Allow mozilla_plugin to set attributes on usb device if use_spice boolean enabled - httpd should be able to send signal/signull to httpd_suexec_t - Add more fixes for neturon. Domtrans to dnsmasq, iptables. Make neutron as filenamtrans domain.- Add neutron fixes- Allow sshd to write to all process levels in order to change passwd when running at a level - Allow updpwd_t to downgrade /etc/passwd file to s0, if it is not running with this range - Allow apcuspd_t to status and start the power unit file - Allow udev to manage kdump unit file - Added new interface modutils_dontaudit_exec_insmod - Allow cobbler to search dhcp_etc_t directory - systemd_systemctl needs sys_admin capability - Allow sytemd_tmpfiles_t to delete all directories - passwd to create gnome-keyring passwd socket - Add missing zabbix_var_lib_t type - Fix filename trans for zabbixsrv in zabbix.te - Allow fprintd_t to send syslog messages - Add zabbix_var_lib_t for /var/lib/zabbixsrv, also allow zabix to connect to smtp port - Allow mozilla plugin to chat with policykit, needed for spice - Allow gssprozy to change user and gid, as well as read user keyrings - Label upgrades directory under /var/www as httpd_sys_rw_content_t, add other filetrans rules to label content correctly - Allow polipo to connect to http_cache_ports - Allow cron jobs to manage apache var lib content - Allow yppassword to manage the passwd_file_t - Allow showall_t to send itself signals - Allow cobbler to restart dhcpc, dnsmasq and bind services - Allow certmonger to manage home cert files - Add userdom filename trans for user mail domains - Allow apcuspd_t to status and start the power unit file - Allow cgroupdrulesengd to create content in cgoups directories - Allow smbd_t to signull cluster - Allow gluster daemon to create fifo files in glusterd_brick_t and sock_file in glusterd_var_lib_t - Add label for /var/spool/cron.aquota.user - Allow sandbox_x domains to use work with the mozilla plugin semaphore - Added new policy for speech-dispatcher - Added dontaudit rule for insmod_exec_t in rasdaemon policy - Updated rasdaemon policy - Allow system_mail_t to transition to postfix_postdrop_t - Clean up mirrormanager policy - Allow virt_domains to read cert files, needs backport to RHEL7 - Allow sssd to read systemd_login_var_run_t - Allow irc_t to execute shell and bin-t files: - Add new access for mythtv - Allow rsync_t to manage all non auth files - allow modemmanger to read /dev/urand - Allow sandbox apps to attempt to set and get capabilties- Add labeling for /var/lib/servicelog/servicelog.db-journal - Add support for freeipmi port - Add sysadm_u_default_contexts - Make new type to texlive files in homedir - Allow subscription-manager running as sosreport_t to manage rhsmcertd - Additional fixes for docker.te - Remove ability to do mount/sys_admin by default in virt_sandbox domains - New rules required to run docker images within libivrt - Add label for ~/.cvsignore - Change mirrormanager to be run by cron - Add mirrormanager policy - Fixed bumblebee_admin() and mip6d_admin() - Add log support for sensord - Fix typo in docker.te - Allow amanda to do backups over UDP - Allow bumblebee to read /etc/group and clean up bumblebee.te - type transitions with a filename not allowed inside conditionals - Don't allow virt-sandbox tools to use netlink out of the box, needs back port to RHEL7 - Make new type to texlive files in homedir- Allow freeipmi_ipmidetectd_t to use freeipmi port - Update freeipmi_domain_template() - Allow journalctl running as ABRT to read /run/log/journal - Allow NM to read dispatcher.d directory - Update freeipmi policy - Type transitions with a filename not allowed inside conditionals - Allow tor to bind to hplip port - Make new type to texlive files in homedir - Allow zabbix_agent to transition to dmidecode - Add rules for docker - Allow sosreport to send signull to unconfined_t - Add virt_noatsecure and virt_rlimitinh interfaces - Fix labeling in thumb.fc to add support for /usr/lib64/tumbler-1/tumblerddd support for freeipmi port - Add sysadm_u_default_contexts - Add logging_read_syslog_pid() - Fix userdom_manage_home_texlive() interface - Make new type to texlive files in homedir - Add filename transitions for /run and /lock links - Allow virtd to inherit rlimit information Resolves:#975358- Change labeling for /usr/libexec/nm-dispatcher.action to NetworkManager_exec_t Resolves:#1039879 - Add labeling for /usr/lib/systemd/system/mariadb.service - Allow hyperv_domain to read sysfs - Fix ldap_read_certs() interface to allow acess also link files - Add support for /usr/libexec/pegasus/cmpiLMI_Journald-cimprovagt - Allow tuned to run modprobe - Allow portreserve to search /var/lib/sss dir - Add SELinux support for the teamd package contains team network device control daemon. - Dontaudit access check on /proc for bumblebee - Bumblebee wants to load nvidia modules - Fix rpm_named_filetrans_log_files and wine.te - Add conman policy for rawhide - DRM master and input event devices are used by the TakeDevice API - Clean up bumblebee policy - Update pegasus_openlmi_storage_t policy - Add freeipmi_stream_connect() interface - Allow logwatch read madm.conf to support RAID setup - Add raid_read_conf_files() interface - Allow up2date running as rpm_t create up2date log file with rpm_log_t labeling - add rpm_named_filetrans_log_files() interface - Allow dkim-milter to create files/dirs in /tmp - update freeipmi policy - Add policy for freeipmi services - Added rdisc_admin and rdisc_systemctl interfaces - opensm policy clean up - openwsman policy clean up - ninfod policy clean up - Added new policy for ninfod - Added new policy for openwsman - Added rdisc_admin and rdisc_systemctl interfaces - Fix kernel_dontaudit_access_check_proc() - Add support for /dev/uhid - Allow sulogin to get the attributes of initctl and sys_admin cap - Add kernel_dontaudit_access_check_proc() - Fix dev_rw_ipmi_dev() - Fix new interface in devices.if - DRM master and input event devices are used by the TakeDevice API - add dev_rw_inherited_dri() and dev_rw_inherited_input_dev() - Added support for default conman port - Add interfaces for ipmi devices- Allow sosreport to send a signal to ABRT - Add proper aliases for pegasus_openlmi_service_exec_t and pegasus_openlmi_service_t - Label /usr/sbin/htcacheclean as httpd_exec_t Resolves:#1037529 - Added support for rdisc unit file - Add antivirus_db_t labeling for /var/lib/clamav-unofficial-sigs - Allow runuser running as logrotate connections to system DBUS - Label bcache devices as fixed_disk_device_t - Allow systemctl running in ipsec_mgmt_t to access /usr/lib/systemd/system/ipsec.service - Label /usr/lib/systemd/system/ipsec.service as ipsec_mgmt_unit_file_t- Add back setpgid/setsched for sosreport_t- Added fix for clout_init to transition to rpm_script_t (dwalsh@redhat.com)- Dontaudit openshift domains trying to use rawip_sockets, this is caused by a bad check in the kernel. - Allow git_system_t to read git_user_content if the git_system_enable_homedirs boolean is turned on - Add lsmd_plugin_t for lsm plugins - Allow dovecot-deliver to search mountpoints - Add labeling for /etc/mdadm.conf - Allow opelmi admin providers to dbus chat with init_t - Allow sblim domain to read /dev/urandom and /dev/random - Allow apmd to request the kernel load modules - Add glusterd_brick_t type - label mate-keyring-daemon with gkeyringd_exec_t - Add plymouthd_create_log() - Dontaudit leaks from openshift domains into mail domains, needs back port to RHEL6 - Allow sssd to request the kernel loads modules - Allow gpg_agent to use ssh-add - Allow gpg_agent to use ssh-add - Dontaudit access check on /root for myslqd_safe_t - Allow ctdb to getattr on al filesystems - Allow abrt to stream connect to syslog - Allow dnsmasq to list dnsmasq.d directory - Watchdog opens the raw socket - Allow watchdog to read network state info - Dontaudit access check on lvm lock dir - Allow sosreport to send signull to setroubleshootd - Add setroubleshoot_signull() interface - Fix ldap_read_certs() interface - Allow sosreport all signal perms - Allow sosreport to run systemctl - Allow sosreport to dbus chat with rpm - Add glusterd_brick_t files type - Allow zabbix_agentd to read all domain state - Clean up rtas.if - Allow smoltclient to execute ldconfig - Allow sosreport to request the kernel to load a module - Fix userdom_confined_admin_template() - Add back exec_content boolean for secadm, logadm, auditadm - Fix files_filetrans_system_db_named_files() interface - Allow sulogin to getattr on /proc/kcore - Add filename transition also for servicelog.db-journal - Add files_dontaudit_access_check_root() - Add lvm_dontaudit_access_check_lock() interface- Allow watchdog to read /etc/passwd - Allow browser plugins to connect to bumblebee - New policy for bumblebee and freqset - Add new policy for mip6d daemon - Add new policy for opensm daemon - Allow condor domains to read/write condor_master udp_socket - Allow openshift_cron_t to append to openshift log files, label /var/log/openshift - Add back file_pid_filetrans for /var/run/dlm_controld - Allow smbd_t to use inherited tmpfs content - Allow mcelog to use the /dev/cpu device - sosreport runs rpcinfo - sosreport runs subscription-manager - Allow staff_t to run frequency command - Allow systemd_tmpfiles to relabel log directories - Allow staff_t to read xserver_log file - Label hsperfdata_root as tmp_t- More sosreport fixes to make ABRT working- Fix files_dontaudit_unmount_all_mountpoints() - Add support for 2608-2609 tcp/udp ports - Should allow domains to lock the terminal device - More fixes for user config files to make crond_t running in userdomain - Add back disable/reload/enable permissions for system class - Fix manage_service_perms macro - We need to require passwd rootok - Fix zebra.fc - Fix dnsmasq_filetrans_named_content() interface - Allow all sandbox domains create content in svirt_home_t - Allow zebra domains also create zebra_tmp_t files in /tmp - Add support for new zebra services:isisd,babeld. Add systemd support for zebra services. - Fix labeling on neutron and remove transition to iconfig_t - abrt needs to read mcelog log file - Fix labeling on dnsmasq content - Fix labeling on /etc/dnsmasq.d - Allow glusterd to relabel own lib files - Allow sandbox domains to use pam_rootok, and dontaudit attempts to unmount file systems, this is caused by a bug in systemd - Allow ipc_lock for abrt to run journalctl- Fix config.tgz- Fix passenger_stream_connect interface - setroubleshoot_fixit wants to read network state - Allow procmail_t to connect to dovecot stream sockets - Allow cimprovagt service providers to read network states - Add labeling for /var/run/mariadb - pwauth uses lastlog() to update system's lastlog - Allow account provider to read login records - Add support for texlive2013 - More fixes for user config files to make crond_t running in userdomain - Add back disable/reload/enable permissions for system class - Fix manage_service_perms macro - Allow passwd_t to connect to gnome keyring to change password - Update mls config files to have cronjobs in the user domains - Remove access checks that systemd does not actually do- Add support for yubikey in homedir - Add support for upd/3052 port - Allow apcupsd to use PowerChute Network Shutdown - Allow lsmd to execute various lsmplugins - Add labeling also for /etc/watchdog\.d where are watchdog scripts located too - Update gluster_export_all_rw boolean to allow relabel all base file types - Allow x86_energy_perf tool to modify the MSR - Fix /var/lib/dspam/data labeling- Add files_relabel_base_file_types() interface - Allow netlabel-config to read passwd - update gluster_export_all_rw boolean to allow relabel all base file types caused by lsetxattr() - Allow x86_energy_perf tool to modify the MSR - Fix /var/lib/dspam/data labeling - Allow pegasus to domtrans to mount_t - Add labeling for unconfined scripts in /usr/libexec/watchdog/scripts - Add support for unconfined watchdog scripts - Allow watchdog to manage own log files- Add label only for redhat.repo instead of /etc/yum.repos.d. But probably we will need to switch for the directory. - Label /etc/yum.repos.d as system_conf_t - Use sysnet_filetrans_named_content in udev.te instead of generic transition for net_conf_t - Allow dac_override for sysadm_screen_t - Allow init_t to read ipsec_conf_t as we had it for initrc_t. Needed by ipsec unit file. - Allow netlabel-config to read meminfo - Add interface to allow docker to mounton file_t - Add new interface to exec unlabeled files - Allow lvm to use docker semaphores - Setup transitons for .xsessions-errors.old - Change labels of files in /var/lib/*/.ssh to transition properly - Allow staff_t and user_t to look at logs using journalctl - pluto wants to manage own log file - Allow pluto running as ipsec_t to create pluto.log - Fix alias decl in corenetwork.te.in - Add support for fuse.glusterfs - Allow dmidecode to read/write /run/lock/subsys/rhsmcertd - Allow rhsmcertd to manage redhat.repo which is now labeled as system.conf. Allow rhsmcertd to manage all log files. - Additional access for docker - Added more rules to sblim policy - Fix kdumpgui_run_bootloader boolean - Allow dspam to connect to lmtp port - Included sfcbd service into sblim policy - rhsmcertd wants to manaage /etc/pki/consumer dir - Add kdumpgui_run_bootloader boolean - Add support for /var/cache/watchdog - Remove virt_domain attribute for virt_qemu_ga_unconfined_t - Fixes for handling libvirt containes - Dontaudit attempts by mysql_safe to write content into / - Dontaudit attempts by system_mail to modify network config - Allow dspam to bind to lmtp ports - Add new policy to allow staff_t and user_t to look at logs using journalctl - Allow apache cgi scripts to list sysfs - Dontaudit attempts to write/delete user_tmp_t files - Allow all antivirus domains to manage also own log dirs - Allow pegasus_openlmi_services_t to stream connect to sssd_t- Add missing permission checks for nscd- Fix alias decl in corenetwork.te.in - Add support for fuse.glusterfs - Add file transition rules for content created by f5link - Rename quantum_port information to neutron - Allow all antivirus domains to manage also own log dirs - Rename quantum_port information to neutron - Allow pegasus_openlmi_services_t to stream connect to sssd_t- Allow sysadm_t to read login information - Allow systemd_tmpfiles to setattr on var_log_t directories - Udpdate Makefile to include systemd_contexts - Add systemd_contexts - Add fs_exec_hugetlbfs_files() interface - Add daemons_enable_cluster_mode boolean - Fix rsync_filetrans_named_content() - Add rhcs_read_cluster_pid_files() interface - Update rhcs.if with additional interfaces from RHEL6 - Fix rhcs_domain_template() to not create run dirs with cluster_var_run_t - Allow glusterd_t to mounton glusterd_tmp_t - Allow glusterd to unmout al filesystems - Allow xenstored to read virt config - Add label for swift_server.lock and make add filetrans_named_content to make sure content gets created with the correct label - Allow mozilla_plugin_t to mmap hugepages as an executable- Add back userdom_security_admin_template() interface and use it for sysadm_t if sysadm_secadm.pp- Allow sshd_t to read openshift content, needs backport to RHEL6.5 - Label /usr/lib64/sasl2/libsasldb.so.3.0.0 as textrel_shlib_t - Make sur kdump lock is created with correct label if kdumpctl is executed - gnome interface calls should always be made within an optional_block - Allow syslogd_t to connect to the syslog_tls port - Add labeling for /var/run/charon.ctl socket - Add kdump_filetrans_named_content() - Allo setpgid for fenced_t - Allow setpgid and r/w cluster tmpfs for fenced_t - gnome calls should always be within optional blocks - wicd.pid should be labeled as networkmanager_var_run_t - Allow sys_resource for lldpad- Add rtas policy- Allow mailserver_domains to manage and transition to mailman data - Dontaudit attempts by mozilla plugin to relabel content, caused by using mv and cp commands - Allow mailserver_domains to manage and transition to mailman data - Allow svirt_domains to read sysctl_net_t - Allow thumb_t to use tmpfs inherited from the user - Allow mozilla_plugin to bind to the vnc port if running with spice - Add new attribute to discover confined_admins and assign confined admin to it - Fix zabbix to handle attributes in interfaces - Fix zabbix to read system states for all zabbix domains - Fix piranha_domain_template() - Allow ctdbd to create udp_socket. Allow ndmbd to access ctdbd var files. - Allow lldpad sys_rouserce cap due to #986870 - Allow dovecot-auth to read nologin - Allow openlmi-networking to read /proc/net/dev - Allow smsd_t to execute scripts created on the fly labeled as smsd_spool_t - Add zabbix_domain attribute for zabbix domains to treat them together - Add labels for zabbix-poxy-* (#1018221) - Update openlmi-storage policy to reflect #1015067 - Back port piranha tmpfs fixes from RHEL6 - Update httpd_can_sendmail boolean to allow read/write postfix spool maildrop - Add postfix_rw_spool_maildrop_files interface - Call new userdom_admin_user_templat() also for sysadm_secadm.pp - Fix typo in userdom_admin_user_template() - Allow SELinux users to create coolkeypk11sE-Gate in /var/cache/coolkey - Add new attribute to discover confined_admins - Fix labeling for /etc/strongswan/ipsec.d - systemd_logind seems to pass fd to anyone who dbus communicates with it - Dontaudit leaked write descriptor to dmesg- Activate motion policy- Fix gnome_read_generic_data_home_files() - allow openshift_cgroup_t to read/write inherited openshift file types - Remove httpd_cobbler_content * from cobbler_admin interface - Allow svirt sandbox domains to setattr on chr_file and blk_file svirt_sandbox_file_t, so sshd will work within a container - Allow httpd_t to read also git sys content symlinks - Allow init_t to read gnome home data - Dontaudit setroubleshoot_fixit_t execmem, since it does not seem to really need it. - Allow virsh to execute systemctl - Fix for nagios_services plugins - add type defintion for ctdbd_var_t - Add support for /var/ctdb. Allow ctdb block_suspend and read /etc/passwd file - Allow net_admin/netlink_socket all hyperv_domain domains - Add labeling for zarafa-search.log and zarafa-search.pid - Fix hypervkvp.te - Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type - Fix logging policy - Allow syslog to bind to tls ports - Update labeling for /dev/cdc-wdm - Allow to su_domain to read init states - Allow init_t to read gnome home data - Make sure if systemd_logind creates nologin file with the correct label - Clean up ipsec.te- Add auth_exec_chkpwd interface - Fix port definition for ctdb ports - Allow systemd domains to read /dev/urand - Dontaudit attempts for mozilla_plugin to append to /dev/random - Add label for /var/run/charon.* - Add labeling for /usr/lib/systemd/system/lvm2.*dd policy for motion service - Fix for nagios_services plugins - Fix some bugs in zoneminder policy - add type defintion for ctdbd_var_t - Add support for /var/ctdb. Allow ctdb block_suspend and read /etc/passwd file - Allow net_admin/netlink_socket all hyperv_domain domains - Add labeling for zarafa-search.log and zarafa-search.pid - glusterd binds to random unreserved ports - Additional allow rules found by testing glusterfs - apcupsd needs to send a message to all users on the system so needs to look them up - Fix the label on ~/.juniper_networks - Dontaudit attempts for mozilla_plugin to append to /dev/random - Allow polipo_daemon to connect to flash ports - Allow gssproxy_t to create replay caches - Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type- init reload from systemd_localed_t - Allow domains that communicate with systemd_logind_sessions to use systemd_logind_t fd - Allow systemd_localed_t to ask systemd to reload the locale. - Add systemd_runtime_unit_file_t type for unit files that systemd creates in memory - Allow readahead to read /dev/urand - Fix lots of avcs about tuned - Any file names xenstored in /var/log should be treated as xenstored_var_log_t - Allow tuned to inderact with hugepages - Allow condor domains to list etc rw dirs- Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type - Add additional fixes forpegasus_openlmi_account_t - Allow mdadm to read /dev/urand - Allow pegasus_openlmi_storage_t to create mdadm.conf and write it - Add label/rules for /etc/mdadm.conf - Allow pegasus_openlmi_storage_t to transition to fsadm_t - Fixes for interface definition problems - Dontaudit dovecot-deliver to gettatr on all fs dirs - Allow domains to search data_home_t directories - Allow cobblerd to connect to mysql - Allow mdadm to r/w kdump lock files - Add support for kdump lock files - Label zarafa-search as zarafa-indexer - Openshift cgroup wants to read /etc/passwd - Add new sandbox domains for kvm - Allow mpd to interact with pulseaudio if mpd_enable_homedirs is turned on - Fix labeling for /usr/lib/systemd/system/lvm2.* - Add labeling for /usr/lib/systemd/system/lvm2.* - Fix typos to get a new build. We should not cover filename trans rules to prevent duplicate rules - Add sshd_keygen_t policy for sshd-keygen - Fix alsa_home_filetrans interface name and definition - Allow chown for ssh_keygen_t - Add fs_dontaudit_getattr_all_dirs() - Allow init_t to manage etc_aliases_t and read xserver_var_lib_t and chrony keys - Fix up patch to allow systemd to manage home content - Allow domains to send/recv unlabeled traffic if unlabelednet.pp is enabled - Allow getty to exec hostname to get info - Add systemd_home_t for ~/.local/share/systemd directory- Fix lxc labels in config.tgz- Fix labeling for /usr/libexec/kde4/kcmdatetimehelper - Allow tuned to search all file system directories - Allow alsa_t to sys_nice, to get top performance for sound management - Add support for MySQL/PostgreSQL for amavis - Allow openvpn_t to manage openvpn_var_log_t files. - Allow dirsrv_t to create tmpfs_t directories - Allow dirsrv to create dirs in /dev/shm with dirsrv_tmpfs label - Dontaudit leaked unix_stream_sockets into gnome keyring - Allow telepathy domains to inhibit pipes on telepathy domains - Allow cloud-init to domtrans to rpm - Allow abrt daemon to manage abrt-watch tmp files - Allow abrt-upload-watcher to search /var/spool directory - Allow nsswitch domains to manage own process key - Fix labeling for mgetty.* logs - Allow systemd to dbus chat with upower - Allow ipsec to send signull to itself - Allow setgid cap for ipsec_t - Match upstream labeling- Do not build sanbox pkg on MLS- wine_tmp is no longer needed - Allow setroubleshoot to look at /proc - Allow telepathy domains to dbus with systemd logind - Fix handling of fifo files of rpm - Allow mozilla_plugin to transition to itself - Allow certwatch to write to cert_t directories - New abrt application - Allow NetworkManager to set the kernel scheduler - Make wine_domain shared by all wine domains - Allow mdadm_t to read images labeled svirt_image_t - Allow amanda to read /dev/urand - ALlow my_print_default to read /dev/urand - Allow mdadm to write to kdumpctl fifo files - Allow nslcd to send signull to itself - Allow yppasswd to read /dev/urandom - Fix zarafa_setrlimit - Add support for /var/lib/php/wsdlcache - Add zarafa_setrlimit boolean - Allow fetchmail to send mails - Add additional alias for user_tmp_t because wine_tmp_t is no longer used - More handling of ther kernel keyring required by kerberos - New privs needed for init_t when running without transition to initrc_t over bin_t, and without unconfined domain installed- Dontaudit attempts by sosreport to read shadow_t - Allow browser sandbox plugins to connect to cups to print - Add new label mpd_home_t - Label /srv/www/logs as httpd_log_t - Add support for /var/lib/php/wsdlcache - Add zarafa_setrlimit boolean - Allow fetchmail to send mails - Add labels for apache logs under miq package - Allow irc_t to use tcp sockets - fix labels in puppet.if - Allow tcsd to read utmp file - Allow openshift_cron_t to run ssh-keygen in ssh_keygen_t to access host keys - Define svirt_socket_t as a domain_type - Take away transition from init_t to initrc_t when executing bin_t, allow init_t to run chk_passwd_t - Fix label on pam_krb5 helper apps- Allow ldconfig to write to kdumpctl fifo files - allow neutron to connect to amqp ports - Allow kdump_manage_crash to list the kdump_crash_t directory - Allow glance-api to connect to amqp port - Allow virt_qemu_ga_t to read meminfo - Add antivirus_home_t type for antivirus date in HOMEDIRS - Allow mpd setcap which is needed by pulseaudio - Allow smbcontrol to create content in /var/lib/samba - Allow mozilla_exec_t to be used as a entrypoint to mozilla_domtrans_spec - Add additional labeling for qemu-ga/fsfreeze-hook.d scripts - amanda_exec_t needs to be executable file - Allow block_suspend cap for samba-net - Allow apps that read ipsec_mgmt_var_run_t to search ipsec_var_run_t - Allow init_t to run crash utility - Treat usr_t just like bin_t for transitions and executions - Add port definition of pka_ca to port 829 for openshift - Allow selinux_store to use symlinks- Allow block_suspend cap for samba-net - Allow t-mission-control to manage gabble cache files - Allow nslcd to read /sys/devices/system/cpu - Allow selinux_store to use symlinks- Allow xdm_t to transition to itself - Call neutron interfaces instead of quantum - Allow init to change targed role to make uncofined services (xrdp which now has own systemd unit file) working. We want them to have in unconfined_t - Make sure directories in /run get created with the correct label - Make sure /root/.pki gets created with the right label - try to remove labeling for motion from zoneminder_exec_t to bin_t - Allow inetd_t to execute shell scripts - Allow cloud-init to read all domainstate - Fix to use quantum port - Add interface netowrkmanager_initrc_domtrans - Fix boinc_execmem - Allow t-mission-control to read gabble cache home - Add labeling for ~/.cache/telepathy/avatars/gabble - Allow memcache to read sysfs data - Cleanup antivirus policy and add additional fixes - Add boolean boinc_enable_execstack - Add support for couchdb in rabbitmq policy - Add interface couchdb_search_pid_dirs - Allow firewalld to read NM state - Allow systemd running as git_systemd to bind git port - Fix mozilla_plugin_rw_tmpfs_files()- Split out rlogin ports from inetd - Treat files labeld as usr_t like bin_t when it comes to transitions - Allow staff_t to read login config - Allow ipsec_t to read .google authenticator data - Allow systemd running as git_systemd to bind git port - Fix mozilla_plugin_rw_tmpfs_files() - Call the correct interface - corenet_udp_bind_ktalkd_port() - Allow all domains that can read gnome_config to read kde config - Allow sandbox domain to read/write mozilla_plugin_tmpfs_t so pulseaudio will work - Allow mdadm to getattr any file system - Allow a confined domain to executes mozilla_exec_t via dbus - Allow cupsd_lpd_t to bind to the printer port - Dontaudit attempts to bind to ports < 1024 when nis is turned on - Allow apache domain to connect to gssproxy socket - Allow rlogind to bind to the rlogin_port - Allow telnetd to bind to the telnetd_port - Allow ktalkd to bind to the ktalkd_port - Allow cvs to bind to the cvs_port- Cleanup related to init_domain()+inetd_domain fixes - Use just init_domain instead of init_daemon_domain in inetd_core_service_domain - svirt domains neeed to create kobject_uevint_sockets - Lots of new access required for sosreport - Allow tgtd_t to connect to isns ports - Allow init_t to transition to all inetd domains: - openct needs to be able to create netlink_object_uevent_sockets - Dontaudit leaks into ldconfig_t - Dontaudit su domains getattr on /dev devices, move su domains to attribute based calls - Move kernel_stream_connect into all Xwindow using users - Dontaudit inherited lock files in ifconfig o dhcpc_t- Also sock_file trans rule is needed in lsm - Fix labeling for fetchmail pid files/dirs - Add additional fixes for abrt-upload-watch - Fix polipo.te - Fix transition rules in asterisk policy - Add fowner capability to networkmanager policy - Allow polipo to connect to tor ports - Cleanup lsmd.if - Cleanup openhpid policy - Fix kdump_read_crash() interface - Make more domains as init domain - Fix cupsd.te - Fix requires in rpm_rw_script_inherited_pipes - Fix interfaces in lsm.if - Allow munin service plugins to manage own tmpfs files/dirs - Allow virtd_t also relabel unix stream sockets for virt_image_type - Make ktalk as init domain - Fix to define ktalkd_unit_file_t correctly - Fix ktalk.fc - Add systemd support for talk-server - Allow glusterd to create sock_file in /run - Allow xdm_t to delete gkeyringd_tmp_t files on logout - Add fixes for hypervkvp policy - Add logwatch_can_sendmail boolean - Allow mysqld_safe_t to handle also symlinks in /var/log/mariadb - Allow xdm_t to delete gkeyringd_tmp_t files on logout- Add selinux-policy-sandbox pkg0 - Allow rhsmcertd to read init state - Allow fsetid for pkcsslotd - Fix labeling for /usr/lib/systemd/system/pkcsslotd.service - Allow fetchmail to create own pid with correct labeling - Fix rhcs_domain_template() - Allow roles which can run mock to read mock lib files to view results - Allow rpcbind to use nsswitch - Fix lsm.if summary - Fix collectd_t can read /etc/passwd file - Label systemd unit files under dracut correctly - Add support for pam_mount to mount user's encrypted home When a user logs in and logs out using ssh - Add support for .Xauthority-n - Label umount.crypt as lvm_exec_t - Allow syslogd to search psad lib files - Allow ssh_t to use /dev/ptmx - Make sure /run/pluto dir is created with correct labeling - Allow syslog to run shell and bin_t commands - Allow ip to relabel tun_sockets - Allow mount to create directories in files under /run - Allow processes to use inherited fifo files- Add policy for lsmd - Add support for /var/log/mariadb dir and allow mysqld_safe to list this directory - Update condor_master rules to allow read system state info and allow logging - Add labeling for /etc/condor and allow condor domain to write it (bug) - Allow condor domains to manage own logs - Allow glusterd to read domains state - Fix initial hypervkvp policy - Add policy for hypervkvpd - Fix redis.if summary- Allow boinc to connect to @/tmp/.X11-unix/X0 - Allow beam.smp to connect to tcp/5984 - Allow named to manage own log files - Add label for /usr/libexec/dcc/start-dccifd and domtrans to dccifd_t - Add virt_transition_userdomain boolean decl - Allow httpd_t to sendto unix_dgram sockets on its children - Allow nova domains to execute ifconfig - bluetooth wants to create fifo_files in /tmp - exim needs to be able to manage mailman data - Allow sysstat to getattr on all file systems - Looks like bluetoothd has moved - Allow collectd to send ping packets - Allow svirt_lxc domains to getpgid - Remove virt-sandbox-service labeling as virsh_exec_t, since it no longer does virsh_t stuff - Allow frpintd_t to read /dev/urandom - Allow asterisk_t to create sock_file in /var/run - Allow usbmuxd to use netlink_kobject - sosreport needs to getattr on lots of devices, and needs access to netlink_kobject_uevent_socket - More cleanup of svirt_lxc policy - virtd_lxc_t now talks to dbus - Dontaudit leaked ptmx_t - Allow processes to use inherited fifo files - Allow openvpn_t to connect to squid ports - Allow prelink_cron_system_t to ask systemd to reloaddd miscfiles_dontaudit_access_check_cert() - Allow ssh_t to use /dev/ptmx - Make sure /run/pluto dir is created with correct labeling - Allow syslog to run shell and bin_t commands - Allow ip to relabel tun_sockets - Allow mount to create directories in files under /run - Allow processes to use inherited fifo files - Allow user roles to connect to the journal socket- selinux_set_enforce_mode needs to be used with type - Add append to the dontaudit for unix_stream_socket of xdm_t leak - Allow xdm_t to create symlinks in log direcotries - Allow login programs to read afs config - Label 10933 as a pop port, for dovecot - New policy to allow selinux_server.py to run as semanage_t as a dbus service - Add fixes to make netlabelctl working on MLS - AVCs required for running sepolicy gui as staff_t - Dontaudit attempts to read symlinks, sepolicy gui is likely to cause this type of AVC - New dbus server to be used with new gui - After modifying some files in /etc/mail, I saw this needed on the next boot - Loading a vm from /usr/tmp with virt-manager - Clean up oracleasm policy for Fedora - Add oracleasm policy written by rlopez@redhat.com - Make postfix_postdrop_t as mta_agent to allow domtrans to system mail if it is executed by apache - Add label for /var/crash - Allow fenced to domtrans to sanclok_t - Allow nagios to manage nagios spool files - Make tfptd as home_manager - Allow kdump to read kcore on MLS system - Allow mysqld-safe sys_nice/sys_resource caps - Allow apache to search automount tmp dirs if http_use_nfs is enabled - Allow crond to transition to named_t, for use with unbound - Allow crond to look at named_conf_t, for unbound - Allow mozilla_plugin_t to transition its home content - Allow dovecot_domain to read all system and network state - Allow httpd_user_script_t to call getpw - Allow semanage to read pid files - Dontaudit leaked file descriptors from user domain into thumb - Make PAM authentication working if it is enabled in ejabberd - Add fixes for rabbit to fix ##992920,#992931 - Allow glusterd to mount filesystems - Loading a vm from /usr/tmp with virt-manager - Trying to load a VM I got an AVC from devicekit_disk for loopcontrol device - Add fix for pand service - shorewall touches own log - Allow nrpe to list /var - Mozilla_plugin_roles can not be passed into lpd_run_lpr - Allow afs domains to read afs_config files - Allow login programs to read afs config - Allow virt_domain to read virt_var_run_t symlinks - Allow smokeping to send its process signals - Allow fetchmail to setuid - Add kdump_manage_crash() interface - Allow abrt domain to write abrt.socket- Add more aliases in pegasus.te - Add more fixes for *_admin interfaces - Add interface fixes - Allow nscd to stream connect to nmbd - Allow gnupg apps to write to pcscd socket - Add more fixes for openlmi provides. Fix naming and support for additionals - Allow fetchmail to resolve host names - Allow firewalld to interact also with lnk files labeled as firewalld_etc_rw_t - Add labeling for cmpiLMI_Fan-cimprovagt - Allow net_admin for glusterd - Allow telepathy domain to create dconf with correct labeling in /home/userX/.cache/ - Add pegasus_openlmi_system_t - Fix puppet_domtrans_master() to make all puppet calling working in passenger.te - Fix corecmd_exec_chroot() - Fix logging_relabel_syslog_pid_socket interface - Fix typo in unconfineduser.te - Allow system_r to access unconfined_dbusd_t to run hp_chec- Allow xdm_t to act as a dbus client to itsel - Allow fetchmail to resolve host names - Allow gnupg apps to write to pcscd socket - Add labeling for cmpiLMI_Fan-cimprovagt - Allow net_admin for glusterd - Allow telepathy domain to create dconf with correct labeling in /home/userX/.cache/ - Add pegasus_openlmi_system_t - Fix puppet_domtrans_master() to make all puppet calling working in passenger.te -httpd_t does access_check on certs- Add support for cmpiLMI_Service-cimprovagt - Allow pegasus domtrans to rpm_t to make pycmpiLMI_Software-cimprovagt running as rpm_t - Label pycmpiLMI_Software-cimprovagt as rpm_exec_t - Add support for pycmpiLMI_Storage-cimprovagt - Add support for cmpiLMI_Networking-cimprovagt - Allow system_cronjob_t to create user_tmpfs_t to make pulseaudio working - Allow virtual machines and containers to run as user doains, needed for virt-sandbox - Allow buglist.cgi to read cpu info- Allow systemd-tmpfile to handle tmp content in print spool dir - Allow systemd-sysctl to send system log messages - Add support for RTP media ports and fmpro-internal - Make auditd working if audit is configured to perform SINGLE action on disk error - Add interfaces to handle systemd units - Make systemd-notify working if pcsd is used - Add support for netlabel and label /usr/sbin/netlabelctl as iptables_exec_t - Instead of having all unconfined domains get all of the named transition rules, - Only allow unconfined_t, init_t, initrc_t and rpm_script_t by default. - Add definition for the salt ports - Allow xdm_t to create link files in xdm_var_run_t - Dontaudit reads of blk files or chr files leaked into ldconfig_t - Allow sys_chroot for useradd_t - Allow net_raw cap for ipsec_t - Allow sysadm_t to reload services - Add additional fixes to make strongswan working with a simple conf - Allow sysadm_t to enable/disable init_t services - Add additional glusterd perms - Allow apache to read lnk files in the /mnt directory - Allow glusterd to ask the kernel to load a module - Fix description of ftpd_use_fusefs boolean - Allow svirt_lxc_net_t to sys_chroot, modify policy to tighten up svirt_lxc_domain capabilties and process controls, but add them to svirt_lxc_net_t - Allow glusterds to request load a kernel module - Allow boinc to stream connect to xserver_t - Allow sblim domains to read /etc/passwd - Allow mdadm to read usb devices - Allow collectd to use ping plugin - Make foghorn working with SNMP - Allow sssd to read ldap certs - Allow haproxy to connect to RTP media ports - Add additional trans rules for aide_db - Add labeling for /usr/lib/pcsd/pcsd - Add labeling for /var/log/pcsd - Add support for pcs which is a corosync and pacemaker configuration tool- Label /var/lib/ipa/pki-ca/publish as pki_tomcat_cert_t - Add labeling for /usr/libexec/kde4/polkit-kde-authentication-agent-1 - Allow all domains that can domtrans to shutdown, to start the power services script to shutdown - consolekit needs to be able to shut down system - Move around interfaces - Remove nfsd_rw_t and nfsd_ro_t, they don't do anything - Add additional fixes for rabbitmq_beam to allow getattr on mountpoints - Allow gconf-defaults-m to read /etc/passwd - Fix pki_rw_tomcat_cert() interface to support lnk_files- Add support for gluster ports - Make sure that all keys located in /etc/ssh/ are labeled correctly - Make sure apcuspd lock files get created with the correct label - Use getcap in gluster.te - Fix gluster policy - add additional fixes to allow beam.smp to interact with couchdb files - Additional fix for #974149 - Allow gluster to user gluster ports - Allow glusterd to transition to rpcd_t and add additional fixes for #980683 - Allow tgtd working when accessing to the passthrough device - Fix labeling for mdadm unit files- Add mdadm fixes- Fix definition of sandbox.disabled to sandbox.pp.disabled- Allow mdamd to execute systemctl - Allow mdadm to read /dev/kvm - Allow ipsec_mgmt_t to read l2tpd pid content- Allow nsd_t to read /dev/urand - Allow mdadm_t to read framebuffer - Allow rabbitmq_beam_t to read process info on rabbitmq_epmd_t - Allow mozilla_plugin_config_t to create tmp files - Cleanup openvswitch policy - Allow mozilla plugin to getattr on all executables - Allow l2tpd_t to create fifo_files in /var/run - Allow samba to touch/manage fifo_files or sock_files in a samba_share_t directory - Allow mdadm to connecto its own unix_stream_socket - FIXME: nagios changed locations to /log/nagios which is wrong. But we need to have this workaround for now. - Allow apache to access smokeping pid files - Allow rabbitmq_beam_t to getattr on all filesystems - Add systemd support for iodined - Allow nup_upsdrvctl_t to execute its entrypoint - Allow fail2ban_client to write to fail2ban_var_run_t, Also allow it to use nsswitch - add labeling for ~/.cache/libvirt-sandbox - Add interface to allow domains transitioned to by confined users to send sigchld to screen program - Allow sysadm_t to check the system status of files labeled etc_t, /etc/fstab - Allow systemd_localed to start /usr/lib/systemd/system/systemd-vconsole-setup.service - Allow an domain that has an entrypoint from a type to be allowed to execute the entrypoint without a transition, I can see no case where this is a bad thing, and elminiates a whole class of AVCs. - Allow staff to getsched all domains, required to run htop - Add port definition for redis port - fix selinuxuser_use_ssh_chroot boolean- Add prosody policy written by Michael Scherer - Allow nagios plugins to read /sys info - ntpd needs to manage own log files - Add support for HOME_DIR/.IBMERS - Allow iptables commands to read firewalld config - Allow consolekit_t to read utmp - Fix filename transitions on .razor directory - Add additional fixes to make DSPAM with LDA working - Allow snort to read /etc/passwd - Allow fail2ban to communicate with firewalld over dbus - Dontaudit openshift_cgreoup_file_t read/write leaked dev - Allow nfsd to use mountd port - Call th proper interface - Allow openvswitch to read sys and execute plymouth - Allow tmpwatch to read /var/spool/cups/tmp - Add support for /usr/libexec/telepathy-rakia - Add systemd support for zoneminder - Allow mysql to create files/directories under /var/log/mysql - Allow zoneminder apache scripts to rw zoneminder tmpfs - Allow httpd to manage zoneminder lib files - Add zoneminder_run_sudo boolean to allow to start zoneminder - Allow zoneminder to send mails - gssproxy_t sock_file can be under /var/lib - Allow web domains to connect to whois port. - Allow sandbox_web_type to connect to the same ports as mozilla_plugin_t. - We really need to add an interface to corenet to define what a web_client_domain is and - then define chrome_sandbox_t, mozilla_plugin_t and sandbox_web_type to that domain. - Add labeling for cmpiLMI_LogicalFile-cimprovagt - Also make pegasus_openlmi_logicalfile_t as unconfined to have unconfined_domain attribute for filename trans rules - Update policy rules for pegasus_openlmi_logicalfile_t - Add initial types for logicalfile/unconfined OpenLMI providers - mailmanctl needs to read own log - Allow logwatch manage own lock files - Allow nrpe to read meminfo - Allow httpd to read certs located in pki-ca - Add pki_read_tomcat_cert() interface - Add support for nagios openshift plugins - Add port definition for redis port - fix selinuxuser_use_ssh_chroot boolean- Shrink the size of policy by moving to attributes, also add dridomain so that mozilla_plugin can follow selinuxuse_dri boolean. - Allow bootloader to manage generic log files - Allow ftp to bind to port 989 - Fix label of new gear directory - Add support for new directory /var/lib/openshift/gears/ - Add openshift_manage_lib_dirs() - allow virtd domains to manage setrans_var_run_t - Allow useradd to manage all openshift content - Add support so that mozilla_plugin_t can use dri devices - Allow chronyd to change the scheduler - Allow apmd to shut downthe system - Devicekit_disk_t needs to manage /etc/fstab- Make DSPAM to act as a LDA working - Allow ntop to create netlink socket - Allow policykit to send a signal to policykit-auth - Allow stapserver to dbus chat with avahi/systemd-logind - Fix labeling on haproxy unit file - Clean up haproxy policy - A new policy for haproxy and placed it to rhcs.te - Add support for ldirectord and treat it with cluster_t - Make sure anaconda log dir is created with var_log_t- Allow lvm_t to create default targets for filesystem handling - Fix labeling for razor-lightdm binaries - Allow insmod_t to read any file labeled var_lib_t - Add policy for pesign - Activate policy for cmpiLMI_Account-cimprovagt - Allow isnsd syscall=listen - /usr/libexec/pegasus/cimprovagt needs setsched caused by sched_setscheduler - Allow ctdbd to use udp/4379 - gatherd wants sys_nice and setsched - Add support for texlive2012 - Allow NM to read file_t (usb stick with no labels used to transfer keys for example) - Allow cobbler to execute apache with domain transition- condor_collector uses tcp/9000 - Label /usr/sbin/virtlockd as virtd_exec_t for now - Allow cobbler to execute ldconfig - Allow NM to execute ssh - Allow mdadm to read /dev/crash - Allow antivirus domains to connect to snmp port - Make amavisd-snmp working correctly - Allow nfsd_t to mounton nfsd_fs_t - Add initial snapper policy - We still need to have consolekit policy - Dontaudit firefox attempting to connect to the xserver_port_t if run within sandbox_web_t - Dontaudit sandbox apps attempting to open user_devpts_t - Allow dirsrv to read network state - Fix pki_read_tomcat_lib_files - Add labeling for /usr/libexec/nm-ssh-service - Add label cert_t for /var/lib/ipa/pki-ca/publish - Lets label /sys/fs/cgroup as cgroup_t for now, to keep labels consistant - Allow nfsd_t to mounton nfsd_fs_t - Dontaudit sandbox apps attempting to open user_devpts_t - Allow passwd_t to change role to system_r from unconfined_r- Don't audit access checks by sandbox xserver on xdb var_lib - Allow ntop to read usbmon devices - Add labeling for new polcykit authorizor - Dontaudit access checks from fail2ban_client - Don't audit access checks by sandbox xserver on xdb var_lib - Allow apps that connect to xdm stream to conenct to xdm_dbusd_t stream - Fix labeling for all /usr/bim/razor-lightdm-* binaries - Add filename trans for /dev/md126p1- Make vdagent able to request loading kernel module - Add support for cloud-init make it as unconfined domain - Allow snmpd to run smartctl in fsadm_t domain - remove duplicate openshift_search_lib() interface - Allow mysqld to search openshift lib files - Allow openshift cgroup to interact with passedin file descriptors - Allow colord to list directories inthe users homedir - aide executes prelink to check files - Make sure cupsd_t creates content in /etc/cups with the correct label - Lest dontaudit apache read all domains, so passenger will not cause this avc - Allow gssd to connect to gssproxy - systemd-tmpfiles needs to be able to raise the level to fix labeling on /run/setrans in MLS - Allow systemd-tmpfiles to relabel also lock files - Allow useradd to add homdir in /var/lib/openshift - Allow setfiles and semanage to write output to /run/files- Add labeling for /dev/tgt - Dontaudit leak fd from firewalld for modprobe - Allow runuser running as rpm_script_t to create netlink_audit socket - Allow mdadm to read BIOS non-volatile RAM- accountservice watches when accounts come and go in wtmp - /usr/java/jre1.7.0_21/bin/java needs to create netlink socket - Add httpd_use_sasl boolean - Allow net_admin for tuned_t - iscsid needs sys_module to auto-load kernel modules - Allow blueman to read bluetooth conf - Add nova_manage_lib_files() interface - Fix mplayer_filetrans_home_content() - Add mplayer_filetrans_home_content() - mozilla_plugin_config_roles need to be able to access mozilla_plugin_config_t - Revert "Allow thumb_t to append inherited xdm stream socket" - Add iscsi_filetrans_named_content() interface - Allow to create .mplayer with the correct labeling for unconfined - Allow iscsiadmin to create lock file with the correct labeling- Allow wine to manage wine home content - Make amanda working with socket actiovation - Add labeling for /usr/sbin/iscsiadm - Add support for /var/run/gssproxy.sock - dnsmasq_t needs to read sysctl_net_t- Fix courier_domain_template() interface - Allow blueman to write ip_forward - Allow mongodb to connect to mongodb port - Allow mongodb to connect to mongodb port - Allow java to bind jobss_debug port - Fixes for *_admin interfaces - Allow iscsid auto-load kernel modules needed for proper iSCSI functionality - Need to assign attribute for courier_domain to all courier_domains - Fail2ban reads /etc/passwd - postfix_virtual will create new files in postfix_spool_t - abrt triggers sys_ptrace by running pidof - Label ~/abc as mozilla_home_t, since java apps as plugin want to create it - Add passenger fixes needed by foreman - Remove dup interfaces - Add additional interfaces for quantum - Add new interfaces for dnsmasq - Allow passenger to read localization and send signull to itself - Allow dnsmasq to stream connect to quantum - Add quantum_stream_connect() - Make sure that mcollective starts the service with the correct labeling - Add labels for ~/.manpath - Dontaudit attempts by svirt_t to getpw* calls - sandbox domains are trying to look at parent process data - Allow courior auth to create its pid file in /var/spool/courier subdir - Add fixes for beam to have it working with couchdb - Add labeling for /run/nm-xl2tpd.con - Allow apache to stream connect to thin - Add systemd support for amand - Make public types usable for fs mount points - Call correct mandb interface in domain.te - Allow iptables to r/w quantum inherited pipes and send sigchld - Allow ifconfig domtrans to iptables and execute ldconfig - Add labels for ~/.manpath - Allow systemd to read iscsi lib files - seunshare is trying to look at parent process data- Fix openshift_search_lib - Add support for abrt-uefioops-oops - Allow colord to getattr any file system - Allow chrome processes to look at each other - Allow sys_ptrace for abrt_t - Add new policy for gssproxy - Dontaudit leaked file descriptor writes from firewalld - openshift_net_type is interface not template - Dontaudit pppd to search gnome config - Update openshift_search_lib() interface - Add fs_list_pstorefs() - Fix label on libbcm_host.so since it is built incorrectly on raspberry pi, needs back port to F18 - Better labels for raspberry pi devices - Allow init to create devpts_t directory - Temporarily label rasbery pi devices as memory_device_t, needs back port to f18 - Allow sysadm_t to build kernels - Make sure mount creates /var/run/blkid with the correct label, needs back port to F18 - Allow userdomains to stream connect to gssproxy - Dontaudit leaked file descriptor writes from firewalld - Allow xserver to read /dev/urandom - Add additional fixes for ipsec-mgmt - Make SSHing into an Openshift Enterprise Node working- Add transition rules to unconfined domains and to sysadm_t to create /etc/adjtime - with the proper label. - Update files_filetrans_named_content() interface to get right labeling for pam.d conf files - Allow systemd-timedated to create adjtime - Add clock_create_adjtime() - Additional fix ifconfing for #966106 - Allow kernel_t to create boot.log with correct labeling - Remove unconfined_mplayer for which we don't have rules - Rename interfaces - Add userdom_manage_user_home_files/dirs interfaces - Fix files_dontaudit_read_all_non_security_files - Fix ipsec_manage_key_file() - Fix ipsec_filetrans_key_file() - Label /usr/bin/razor-lightdm-greeter as xdm_exec_t instead of spamc_exec_t - Fix labeling for ipse.secrets - Add interfaces for ipsec and labeling for ipsec.info and ipsec_setup.pid - Add files_dontaudit_read_all_non_security_files() interface - /var/log/syslog-ng should be labeled var_log_t - Make ifconfig_var_run_t a mountpoint - Add transition from ifconfig to dnsmasq - Allow ifconfig to execute bin_t/shell_exec_t - We want to have hwdb.bin labeled as etc_t - update logging_filetrans_named_content() interface - Allow systemd_timedate_t to manage /etc/adjtime - Allow NM to send signals to l2tpd - Update antivirus_can_scan_system boolean - Allow devicekit_disk_t to sys_config_tty - Run abrt-harvest programs as abrt_t, and allow abrt_t to list all filesystem directories - Make printing from vmware working - Allow php-cgi from php54 collection to access /var/lib/net-snmp/mib_indexes - Add virt_qemu_ga_data_t for qemu-ga - Make chrome and mozilla able to connect to same ports, add jboss_management_port_t to both - Fix typo in virt.te - Add virt_qemu_ga_unconfined_t for hook scripts - Make sure NetworkManager files get created with the correct label - Add mozilla_plugin_use_gps boolean - Fix cyrus to have support for net-snmp - Additional fixes for dnsmasq and quantum for #966106 - Add plymouthd_create_log() - remove httpd_use_oddjob for which we don't have rules - Add missing rules for httpd_can_network_connect_cobbler - Add missing cluster_use_execmem boolean - Call userdom_manage_all_user_home_type_files/dirs - Additional fix for ftp_home_dir - Fix ftp_home_dir boolean - Allow squit to recv/send client squid packet - Fix nut.te to have nut_domain attribute - Add support for ejabberd; TODO: revisit jabberd and rabbit policy - Fix amanda policy - Add more fixes for domains which use libusb - Make domains which use libusb working correctly - Allow l2tpd to create ipsec key files with correct labeling and manage them - Fix cobbler_manage_lib_files/cobbler_read_lib_files to cover also lnk files - Allow rabbitmq-beam to bind generic node - Allow l2tpd to read ipse-mgmt pid files - more fixes for l2tpd, NM and pppd from #967072- Dontaudit to getattr on dirs for dovecot-deliver - Allow raiudusd server connect to postgresql socket - Add kerberos support for radiusd - Allow saslauthd to connect to ldap port - Allow postfix to manage postfix_private_t files - Add chronyd support for #965457 - Fix labeling for HOME_DIR/\.icedtea - CHange squid and snmpd to be allowed also write own logs - Fix labeling for /usr/libexec/qemu-ga - Allow virtd_t to use virt_lock_t - Allow also sealert to read the policy from the kernel - qemu-ga needs to execute scripts in /usr/libexec/qemu-ga and to use /tmp content - Dontaudit listing of users homedir by sendmail Seems like a leak - Allow passenger to transition to puppet master - Allow apache to connect to mythtv - Add definition for mythtv ports- Add additional fixes for #948073 bug - Allow sge_execd_t to also connect to sge ports - Allow openshift_cron_t to manage openshift_var_lib_t sym links - Allow openshift_cron_t to manage openshift_var_lib_t sym links - Allow sge_execd to bind sge ports. Allow kill capability and reads cgroup files - Remove pulseaudio filetrans pulseaudio_manage_home_dirs which is a part of pulseaudio_manage_home_files - Add networkmanager_stream_connect() - Make gnome-abrt wokring with staff_t - Fix openshift_manage_lib_files() interface - mdadm runs ps command which seems to getattr on random log files - Allow mozilla_plugin_t to create pulseaudit_home_t directories - Allow qemu-ga to shutdown virtual hosts - Add labelling for cupsd-browsed - Add web browser plugins to connect to aol ports - Allow nm-dhcp-helper to stream connect to NM - Add port definition for sge ports- Make sure users and unconfined domains create .hushlogin with the correct label - Allow pegaus to chat with realmd over DBus - Allow cobblerd to read network state - Allow boicn-client to stat on /dev/input/mice - Allow certwatch to read net_config_t when it executes apache - Allow readahead to create /run/systemd and then create its own directory with the correct label- Transition directories and files when in a user_tmp_t directory - Change certwatch to domtrans to apache instead of just execute - Allow virsh_t to read xen lib files - update policy rules for pegasus_openlmi_account_t - Add support for svnserve_tmp_t - Activate account openlmi policy - pegasus_openlmi_domain_template needs also require pegasus_t - One more fix for policykit.te - Call fs_list_cgroups_dirs() in policykit.te - Allow nagios service plugin to read mysql config files - Add labeling for /var/svn - Fix chrome.te - Fix pegasus_openlmi_domain_template() interfaces - Fix dev_rw_vfio_dev definiton, allow virtd_t to read tmpfs_t symlinks - Fix location of google-chrome data - Add support for chome_sandbox to store content in the homedir - Allow policykit to watch for changes in cgroups file system - Add boolean to allow mozilla_plugin_t to use spice - Allow collectd to bind to udp port - Allow collected_t to read all of /proc - Should use netlink socket_perms - Should use netlink socket_perms - Allow glance domains to connect to apache ports - Allow apcupsd_t to manage its log files - Allow chrome objects to rw_inherited unix_stream_socket from callers - Allow staff_t to execute virtd_exec_t for running vms - nfsd_t needs to bind mountd port to make nfs-mountd.service working - Allow unbound net_admin capability because of setsockopt syscall - Fix fs_list_cgroup_dirs() - Label /usr/lib/nagios/plugins/utils.pm as bin_t - Remove uplicate definition of fs_read_cgroup_files() - Remove duplicate definition of fs_read_cgroup_files() - Add files_mountpoint_filetrans interface to be used by quotadb_t and snapperd - Additional interfaces needed to list and read cgroups config - Add port definition for collectd port - Add labels for /dev/ptp* - Allow staff_t to execute virtd_exec_t for running vms- Allow samba-net to also read realmd tmp files - Allow NUT to use serial ports - realmd can be started by systemctl now- Remove userdom_home_manager for xdm_t and move all rules to xserver.te directly - Add new xdm_write_home boolean to allow xdm_t to create files in HOME dirs with xdm_home_t - Allow postfix-showq to read/write unix.showq in /var/spool/postfix/pid - Allow virsh to read xen lock file - Allow qemu-ga to create files in /run with proper labeling - Allow glusterd to connect to own socket in /tmp - Allow glance-api to connect to http port to make glance image-create working - Allow keystonte_t to execute rpm- Fix realmd cache interfaces- Allow tcpd to execute leafnode - Allow samba-net to read realmd cache files - Dontaudit sys_tty_config for alsactl - Fix allow rules for postfix_var_run - Allow cobblerd to read /etc/passwd - Allow pegasus to read exports - Allow systemd-timedate to read xdm state - Allow mout to stream connect to rpcbind - Add labeling just for /usr/share/pki/ca-trust-source instead of /usr/share/pki- Allow thumbnails to share memory with apps which run thumbnails - Allow postfix-postqueue block_suspend - Add lib interfaces for smsd - Add support for nginx - Allow s2s running as jabberd_t to connect to jabber_interserver_port_t - Allow pki apache domain to create own tmp files and execute httpd_suexec - Allow procmail to manger user tmp files/dirs/lnk_files - Add virt_stream_connect_svirt() interface - Allow dovecot-auth to execute bin_t - Allow iscsid to request that kernel load a kernel module - Add labeling support for /var/lib/mod_security - Allow iw running as tuned_t to create netlink socket - Dontaudit sys_tty_config for thumb_t - Add labeling for nm-l2tp-service - Allow httpd running as certwatch_t to open tcp socket - Allow useradd to manager smsd lib files - Allow useradd_t to add homedirs in /var/lib - Fix typo in userdomain.te - Cleanup userdom_read_home_certs - Implement userdom_home_reader_certs_type to allow read certs also on encrypt /home with ecryptfs_t - Allow staff to stream connect to svirt_t to make gnome-boxes working- Allow lvm to create its own unit files - Label /var/lib/sepolgen as selinux_config_t - Add filetrans rules for tw devices - Add transition from cupsd_config_t to cupsd_t- Add filetrans rules for tw devices - Cleanup bad transition lines- Fix lockdev_manage_files() - Allow setroubleshootd to read var_lib_t to make email_alert working - Add lockdev_manage_files() - Call proper interface in virt.te - Allow gkeyring_domain to create /var/run/UID/config/dbus file - system dbus seems to be blocking suspend - Dontaudit attemps to sys_ptrace, which I believe gpsd does not need - When you enter a container from root, you generate avcs with a leaked file descriptor - Allow mpd getattr on file system directories - Make sure realmd creates content with the correct label - Allow systemd-tty-ask to write kmsg - Allow mgetty to use lockdev library for device locking - Fix selinuxuser_user_share_music boolean name to selinuxuser_share_music - When you enter a container from root, you generate avcs with a leaked file descriptor - Make sure init.fc files are labeled correctly at creation - File name trans vconsole.conf - Fix labeling for nagios plugins - label shared libraries in /opt/google/chrome as testrel_shlib_t- Allow certmonger to dbus communicate with realmd - Make realmd working- Fix mozilla specification of homedir content - Allow certmonger to read network state - Allow tmpwatch to read tmp in /var/spool/{cups,lpd} - Label all nagios plugin as unconfined by default - Add httpd_serve_cobbler_files() - Allow mdadm to read /dev/sr0 and create tmp files - Allow certwatch to send mails - Fix labeling for nagios plugins - label shared libraries in /opt/google/chrome as testrel_shlib_t- Allow realmd to run ipa, really needs to be an unconfined_domain - Allow sandbox domains to use inherted terminals - Allow pscd to use devices labeled svirt_image_t in order to use cat cards. - Add label for new alsa pid - Alsa now uses a pid file and needs to setsched - Fix oracleasmfs_t definition - Add support for sshd_unit_file_t - Add oracleasmfs_t - Allow unlabeled_t files to be stored on unlabeled_t filesystems- Fix description of deny_ptrace boolean - Remove allow for execmod lib_t for now - Allow quantum to connect to keystone port - Allow nova-console to talk with mysql over unix stream socket - Allow dirsrv to stream connect to uuidd - thumb_t needs to be able to create ~/.cache if it does not exist - virtd needs to be able to sys_ptrace when starting and stoping containers- Allow alsa_t signal_perms, we probaly should search for any app that can execute something without transition and give it signal_perms... - Add dontaudit for mozilla_plugin_t looking at the xdm_t sockets - Fix deny_ptrace boolean, certain ptrace leaked into the system - Allow winbind to manage kerberos_rcache_host - Allow spamd to create spamd_var_lib_t directories - Remove transition to mozilla_tmp_t by mozilla_t, to allow it to manage the users tmp dirs - Add mising nslcd_dontaudit_write_sock_file() interface - one more fix - Fix pki_read_tomcat_lib_files() interface - Allow certmonger to read pki-tomcat lib files - Allow certwatch to execute bin_t - Allow snmp to manage /var/lib/net-snmp files - Call snmp_manage_var_lib_files(fogorn_t) instead of snmp_manage_var_dirs - Fix vmware_role() interface - Fix cobbler_manage_lib_files() interface - Allow nagios check disk plugins to execute bin_t - Allow quantum to transition to openvswitch_t - Allow postdrop to stream connect to postfix-master - Allow quantum to stream connect to openvswitch - Add xserver_dontaudit_xdm_rw_stream_sockets() interface - Allow daemon to send dgrams to initrc_t - Allow kdm to start the power service to initiate a reboot or poweroff- Add mising nslcd_dontaudit_write_sock_file() interface - one more fix - Fix pki_read_tomcat_lib_files() interface - Allow certmonger to read pki-tomcat lib files - Allow certwatch to execute bin_t - Allow snmp to manage /var/lib/net-snmp files - Don't audit attempts to write to stream socket of nscld by thumbnailers - Allow git_system_t to read network state - Allow pegasas to execute mount command - Fix desc for drdb_admin - Fix condor_amin() - Interface fixes for uptime, vdagent, vnstatd - Fix labeling for moodle in /var/www/moodle/data - Add interface fixes - Allow bugzilla to read certs - /var/www/moodle needs to be writable by apache - Add interface to dontaudit attempts to send dbus messages to systemd domains, for xguest - Fix namespace_init_t to create content with proper labels, and allow it to manage all user content - Allow httpd_t to connect to osapi_compute port using httpd_use_openstack bolean - Fixes for dlm_controld - Fix apache_read_sys_content_rw_dirs() interface - Allow logrotate to read /var/log/z-push dir - Fix sys_nice for cups_domain - Allow postfix_postdrop to acces postfix_public socket - Allow sched_setscheduler for cupsd_t - Add missing context for /usr/sbin/snmpd - Kernel_t needs mac_admin in order to support labeled NFS - Fix systemd_dontaudit_dbus_chat() interface - Add interface to dontaudit attempts to send dbus messages to systemd domains, for xguest - Allow consolehelper domain to write Xauth files in /root - Add port definition for osapi_compute port - Allow unconfined to create /etc/hostname with correct labeling - Add systemd_filetrans_named_hostname() interface- Allow httpd_t to connect to osapi_compute port using httpd_use_openstack bolean - Fixes for dlm_controld - Fix apache_read_sys_content_rw_dirs() interface - Allow logrotate to read /var/log/z-push dir - Allow postfix_postdrop to acces postfix_public socket - Allow sched_setscheduler for cupsd_t - Add missing context for /usr/sbin/snmpd - Allow consolehelper more access discovered by Tom London - Allow fsdaemon to send signull to all domain - Add port definition for osapi_compute port - Allow unconfined to create /etc/hostname with correct labeling - Add systemd_filetrans_named_hostname() interface- Fix file_contexts.subs to label /run/lock correctly- Try to label on controlC devices up to 30 correctly - Add mount_rw_pid_files() interface - Add additional mount/umount interfaces needed by mock - fsadm_t sends audit messages in reads kernel_ipc_info when doing livecd-iso-to-disk - Fix tabs - Allow initrc_domain to search rgmanager lib files - Add more fixes which make mock working together with confined users * Allow mock_t to manage rpm files * Allow mock_t to read rpm log files * Allow mock to setattr on tmpfs, devpts * Allow mount/umount filesystems - Add rpm_read_log() interface - yum-cron runs rpm from within it. - Allow tuned to transition to dmidecode - Allow firewalld to do net_admin - Allow mock to unmont tmpfs_t - Fix virt_sigkill() interface - Add additional fixes for mock. Mainly caused by mount running in mock_t - Allow mock to write sysfs_t and mount pid files - Add mailman_domain to mailman_template() - Allow openvswitch to execute shell - Allow qpidd to use kerberos - Allow mailman to use fusefs, needs back port to RHEL6 - Allow apache and its scripts to use anon_inodefs - Add alias for git_user_content_t and git_sys_content_t so that RHEL6 will update to RHEL7 - Realmd needs to connect to samba ports, needs back port to F18 also - Allow colord to read /run/initial-setup- - Allow sanlock-helper to send sigkill to virtd which is registred to sanlock - Add virt_kill() interface - Add rgmanager_search_lib() interface - Allow wdmd to getattr on all filesystems. Back ported from RHEL6- Allow realmd to create tmp files - FIx ircssi_home_t type to irssi_home_t - Allow adcli running as realmd_t to connect to ldap port - Allow NetworkManager to transition to ipsec_t, for running strongswan - Make openshift_initrc_t an lxc_domain - Allow gssd to manage user_tmp_t files - Fix handling of irclogs in users homedir - Fix labeling for drupal an wp-content in subdirs of /var/www/html - Allow abrt to read utmp_t file - Fix openshift policy to transition lnk_file, sock-file an fifo_file when created in a tmpfs_t, needs back port to RHEL6 - fix labeling for (oo|rhc)-restorer-wrapper.sh - firewalld needs to be able to write to network sysctls - Fix mozilla_plugin_dontaudit_rw_sem() interface - Dontaudit generic ipc read/write to a mozilla_plugin for sandbox_x domains - Add mozilla_plugin_dontaudit_rw_sem() interface - Allow svirt_lxc_t to transition to openshift domains - Allow condor domains block_suspend and dac_override caps - Allow condor_master to read passd - Allow condor_master to read system state - Allow NetworkManager to transition to ipsec_t, for running strongswan - Lots of access required by lvm_t to created encrypted usb device - Allow xdm_t to dbus communicate with systemd_localed_t - Label strongswan content as ipsec_exec_mgmt_t for now - Allow users to dbus chat with systemd_localed - Fix handling of .xsession-errors in xserver.if, so kde will work - Might be a bug but we are seeing avc's about people status on init_t:service - Make sure we label content under /var/run/lock as <> - Allow daemon and systemprocesses to search init_var_run_t directory - Add boolean to allow xdm to write xauth data to the home directory - Allow mount to write keys for the unconfined domain - Add unconfined_write_keys() interface- Add labeling for /usr/share/pki - Allow programs that read var_run_t symlinks also read var_t symlinks - Add additional ports as mongod_port_t for 27018, 27019, 28017, 28018 and 28019 ports - Fix labeling for /etc/dhcp directory - add missing systemd_stub_unit_file() interface - Add files_stub_var() interface - Add lables for cert_t directories - Make localectl set-x11-keymap working at all - Allow abrt to manage mock build environments to catch build problems. - Allow virt_domains to setsched for running gdb on itself - Allow thumb_t to execute user home content - Allow pulseaudio running as mozilla_plugin_t to read /run/systemd/users/1000 - Allow certwatch to execut /usr/bin/httpd - Allow cgred to send signal perms to itself, needs back port to RHEL6 - Allow openshift_cron_t to look at quota - Allow cups_t to read inhered tmpfs_t from the kernel - Allow yppasswdd to use NIS - Tuned wants sys_rawio capability - Add ftpd_use_fusefs boolean - Allow dirsrvadmin_t to signal itself- Allow localectl to read /etc/X11/xorg.conf.d directory - Revert "Revert "Fix filetrans rules for kdm creates .xsession-errors"" - Allow mount to transition to systemd_passwd_agent - Make sure abrt directories are labeled correctly - Allow commands that are going to read mount pid files to search mount_var_run_t - label /usr/bin/repoquery as rpm_exec_t - Allow automount to block suspend - Add abrt_filetrans_named_content so that abrt directories get labeled correctly - Allow virt domains to setrlimit and read file_context- Allow nagios to manage nagios spool files - /var/spool/snmptt is a directory which snmdp needs to write to, needs back port to RHEL6 - Add swift_alias.* policy files which contain typealiases for swift types - Add support for /run/lock/opencryptoki - Allow pkcsslotd chown capability - Allow pkcsslotd to read passwd - Add rsync_stub() interface - Allow systemd_timedate also manage gnome config homedirs - Label /usr/lib64/security/pam_krb5/pam_krb5_cchelper as bin_t - Fix filetrans rules for kdm creates .xsession-errors - Allow sytemd_tmpfiles to create wtmp file - Really should not label content under /var/lock, since it could have labels on it different from var_lock_t - Allow systemd to list all file system directories - Add some basic stub interfaces which will be used in PRODUCT policies- Fix log transition rule for cluster domains - Start to group all cluster log together - Dont use filename transition for POkemon Advanced Adventure until a new checkpolicy update - cups uses usbtty_device_t devices - These fixes were all required to build a MLS virtual Machine with single level desktops - Allow domains to transiton using httpd_exec_t - Allow svirt domains to manage kernel key rings - Allow setroubleshoot to execute ldconfig - Allow firewalld to read generate gnome data - Allow bluetooth to read machine-info - Allow boinc domain to send signal to itself - Fix gnome_filetrans_home_content() interface - Allow mozilla_plugins to list apache modules, for use with gxine - Fix labels for POkemon in the users homedir - Allow xguest to read mdstat - Dontaudit virt_domains getattr on /dev/* - These fixes were all required to build a MLS virtual Machine with single level desktops - Need to back port this to RHEL6 for openshift - Add tcp/8891 as milter port - Allow nsswitch domains to read sssd_var_lib_t files - Allow ping to read network state. - Fix typo - Add labels to /etc/X11/xorg.d and allow systemd-timestampd_t to manage them- Adopt swift changes from lhh@redhat.com - Add rhcs_manage_cluster_pid_files() interface - Allow screen domains to configure tty and setup sock_file in ~/.screen directory - ALlow setroubleshoot to read default_context_t, needed to backport to F18 - Label /etc/owncloud as being an apache writable directory - Allow sshd to stream connect to an lxc domain- Allow postgresql to manage rgmanager pid files - Allow postgresql to read ccs data - Allow systemd_domain to send dbus messages to policykit - Add labels for /etc/hostname and /etc/machine-info and allow systemd-hostnamed to create them - All systemd domains that create content are reading the file_context file and setfscreate - Systemd domains need to search through init_var_run_t - Allow sshd to communicate with libvirt to set containers labels - Add interface to manage pid files - Allow NetworkManger_t to read /etc/hostname - Dontaudit leaked locked files into openshift_domains - Add fixes for oo-cgroup-read - it nows creates tmp files - Allow gluster to manage all directories as well as files - Dontaudit chrome_sandbox_nacl_t using user terminals - Allow sysstat to manage its own log files - Allow virtual machines to setrlimit and send itself signals. - Add labeling for /var/run/hplip- Fix POSTIN scriptlet- Merge rgmanger, corosync,pacemaker,aisexec policies to cluster_t in rhcs.pp- Fix authconfig.py labeling - Make any domains that write homedir content do it correctly - Allow glusterd to read/write anyhwere on the file system by default - Be a little more liberal with the rsync log files - Fix iscsi_admin interface - Allow iscsid_t to read /dev/urand - Fix up iscsi domain for use with unit files - Add filename transition support for spamassassin policy - Allow web plugins to use badly formated libraries - Allow nmbd_t to create samba_var_t directories - Add filename transition support for spamassassin policy - Add filename transition support for tvtime - Fix alsa_home_filetrans_alsa_home() interface - Move all userdom_filetrans_home_content() calling out of booleans - Allow logrotote to getattr on all file sytems - Remove duplicate userdom_filetrans_home_content() calling - Allow kadmind to read /etc/passwd - Dontaudit append .xsession-errors file on ecryptfs for policykit-auth - Allow antivirus domain to manage antivirus db links - Allow logrotate to read /sys - Allow mandb to setattr on man dirs - Remove mozilla_plugin_enable_homedirs boolean - Fix ftp_home_dir boolean - homedir mozilla filetrans has been moved to userdom_home_manager - homedir telepathy filetrans has been moved to userdom_home_manager - Remove gnome_home_dir_filetrans() from gnome_role_gkeyringd() - Might want to eventually write a daemon on fusefsd. - Add policy fixes for sshd [net] child from plautrba@redhat.com - Tor uses a new port - Remove bin_t for authconfig.py - Fix so only one call to userdom_home_file_trans - Allow home_manager_types to create content with the correctl label - Fix all domains that write data into the homedir to do it with the correct label - Change the postgresql to use proper boolean names, which is causing httpd_t to - not get access to postgresql_var_run_t - Hostname needs to send syslog messages - Localectl needs to be able to send dbus signals to users - Make sure userdom_filetrans_type will create files/dirs with user_home_t labeling by default - Allow user_home_manger domains to create spam* homedir content with correct labeling - Allow user_home_manger domains to create HOMEDIR/.tvtime with correct labeling - Add missing miscfiles_setattr_man_pages() interface and for now comment some rules for userdom_filetrans_type to make build process working - Declare userdom_filetrans_type attribute - userdom_manage_home_role() needs to be called withoout usertype attribute because of userdom_filetrans_type attribute - fusefsd is mounding a fuse file system on /run/user/UID/gvfs- Man pages are now generated in the build process - Allow cgred to list inotifyfs filesystem- Allow gluster to get attrs on all fs - New access required for virt-sandbox - Allow dnsmasq to execute bin_t - Allow dnsmasq to create content in /var/run/NetworkManager - Fix openshift_initrc_signal() interface - Dontaudit openshift domains doing getattr on other domains - Allow consolehelper domain to communicate with session bus - Mock should not be transitioning to any other domains, we should keep mock_t as mock_t - Update virt_qemu_ga_t policy - Allow authconfig running from realmd to restart oddjob service - Add systemd support for oddjob - Add initial policy for realmd_consolehelper_t which if for authconfig executed by realmd - Add labeling for gnashpluginrc - Allow chrome_nacl to execute /dev/zero - Allow condor domains to read /proc - mozilla_plugin_t will getattr on /core if firefox crashes - Allow condor domains to read /etc/passwd - Allow dnsmasq to execute shell scripts, openstack requires this access - Fix glusterd labeling - Allow virtd_t to interact with the socket type - Allow nmbd_t to override dac if you turned on sharing all files - Allow tuned to created kobject_uevent socket - Allow guest user to run fusermount - Allow openshift to read /proc and locale - Allow realmd to dbus chat with rpm - Add new interface for virt - Remove depracated interfaces - Allow systemd_domains read access on etc, etc_runtime and usr files, also allow them to connect stream to syslog socket - /usr/share/munin/plugins/plugin.sh should be labeled as bin_t - Remove some more unconfined_t process transitions, that I don't believe are necessary - Stop transitioning uncofnined_t to checkpc - dmraid creates /var/lock/dmraid - Allow systemd_localed to creatre unix_dgram_sockets - Allow systemd_localed to write kernel messages. - Also cleanup systemd definition a little. - Fix userdom_restricted_xwindows_user_template() interface - Label any block devices or char devices under /dev/infiniband as fixed_disk_device_t - User accounts need to dbus chat with accountsd daemon - Gnome requires all users to be able to read /proc/1/- virsh now does a setexeccon call - Additional rules required by openshift domains - Allow svirt_lxc_domains to use inherited terminals, needed to make virt-sandbox-service execute work - Allow spamd_update_t to search spamc_home_t - Avcs discovered by mounting an isci device under /mnt - Allow lspci running as logrotate to read pci.ids - Additional fix for networkmanager_read_pid_files() - Fix networkmanager_read_pid_files() interface - Allow all svirt domains to connect to svirt_socket_t - Allow virsh to set SELinux context for a process. - Allow tuned to create netlink_kobject_uevent_socket - Allow systemd-timestamp to set SELinux context - Add support for /var/lib/systemd/linger - Fix ssh_sysadm_login to be working on MLS as expected- Rename files_rw_inherited_tmp_files to files_rw_inherited_tmp_file - Add missing files_rw_inherited_tmp_files interface - Add additional interface for ecryptfs - ALlow nova-cert to connect to postgresql - Allow keystone to connect to postgresql - Allow all cups domains to getattr on filesystems - Allow pppd to send signull - Allow tuned to execute ldconfig - Allow gpg to read fips_enabled - Add additional fixes for ecryptfs - Allow httpd to work with posgresql - Allow keystone getsched and setsched- Allow gpg to read fips_enabled - Add support for /var/cache/realmd - Add support for /usr/sbin/blazer_usb and systemd support for nut - Add labeling for fenced_sanlock and allow sanclok transition to fenced_t - bitlbee wants to read own log file - Allow glance domain to send a signal itself - Allow xend_t to request that the kernel load a kernel module - Allow pacemaker to execute heartbeat lib files - cleanup new swift policy- Fix smartmontools - Fix userdom_restricted_xwindows_user_template() interface - Add xserver_xdm_ioctl_log() interface - Allow Xusers to ioctl lxdm.log to make lxdm working - Add MLS fixes to make MLS boot/log-in working - Add mls_socket_write_all_levels() also for syslogd - fsck.xfs needs to read passwd - Fix ntp_filetrans_named_content calling in init.te - Allow postgresql to create pg_log dir - Allow sshd to read rsync_data_t to make rsync working - Change ntp.conf to be labeled net_conf_t - Allow useradd to create homedirs in /run. ircd-ratbox does this and we should just allow it - Allow xdm_t to execute gstreamer home content - Allod initrc_t and unconfined domains, and sysadm_t to manage ntp - New policy for openstack swift domains - More access required for openshift_cron_t - Use cupsd_log_t instead of cupsd_var_log_t - rpm_script_roles should be used in rpm_run - Fix rpm_run() interface - Fix openshift_initrc_run() - Fix sssd_dontaudit_stream_connect() interface - Fix sssd_dontaudit_stream_connect() interface - Allow LDA's job to deliver mail to the mailbox - dontaudit block_suspend for mozilla_plugin_t - Allow l2tpd_t to all signal perms - Allow uuidgen to read /dev/random - Allow mozilla-plugin-config to read power_supply info - Implement cups_domain attribute for cups domains - We now need access to user terminals since we start by executing a command outside the tty - We now need access to user terminals since we start by executing a command outside the tty - svirt lxc containers want to execute userhelper apps, need these changes to allow this to happen - Add containment of openshift cron jobs - Allow system cron jobs to create tmp directories - Make userhelp_conf_t a config file - Change rpm to use rpm_script_roles - More fixes for rsync to make rsync wokring - Allow logwatch to domtrans to mdadm - Allow pacemaker to domtrans to ifconfig - Allow pacemaker to setattr on corosync.log - Add pacemaker_use_execmem for memcheck-amd64 command - Allow block_suspend capability - Allow create fifo_file in /tmp with pacemaker_tmp_t - Allow systat to getattr on fixed disk - Relabel /etc/ntp.conf to be net_conf_t - ntp_admin should create files in /etc with the correct label - Add interface to create ntp_conf_t files in /etc - Add additional labeling for quantum - Allow quantum to execute dnsmasq with transition- boinc_cliean wants also execmem as boinc projecs have - Allow sa-update to search admin home for /root/.spamassassin - Allow sa-update to search admin home for /root/.spamassassin - Allow antivirus domain to read net sysctl - Dontaudit attempts from thumb_t to connect to ssd - Dontaudit attempts by readahead to read sock_files - Dontaudit attempts by readahead to read sock_files - Create tmpfs file while running as wine as user_tmpfs_t - Dontaudit attempts by readahead to read sock_files - libmpg ships badly created librarie- Change ssh_use_pts to use macro and only inherited sshd_devpts_t - Allow confined users to read systemd_logind seat information - libmpg ships badly created libraries - Add support for strongswan.service - Add labeling for strongswan - Allow l2tpd_t to read network manager content in /run directory - Allow rsync to getattr any file in rsync_data_t - Add labeling and filename transition for .grl-podcasts- mount.glusterfs executes glusterfsd binary - Allow systemd_hostnamed_t to stream connect to systemd - Dontaudit any user doing a access check - Allow obex-data-server to request the kernel to load a module - Allow gpg-agent to manage gnome content (~/.cache/gpg-agent-info) - Allow gpg-agent to read /proc/sys/crypto/fips_enabled - Add new types for antivirus.pp policy module - Allow gnomesystemmm_t caps because of ioprio_set - Make sure if mozilla_plugin creates files while in permissive mode, they get created with the correct label, user_home_t - Allow gnomesystemmm_t caps because of ioprio_set - Allow NM rawip socket - files_relabel_non_security_files can not be used with boolean - Add interface to thumb_t dbus_chat to allow it to read remote process state - ALlow logrotate to domtrans to mdadm_t - kde gnomeclock wants to write content to /tmp- kde gnomeclock wants to write content to /tmp - /usr/libexec/kde4/kcmdatetimehelper attempts to create /root/.kde - Allow blueman_t to rwx zero_device_t, for some kind of jre - Allow mozilla_plugin_t to rwx zero_device_t, for some kind of jre - Ftp full access should be allowed to create directories as well as files - Add boolean to allow rsync_full_acces, so that an rsync server can write all - over the local machine - logrotate needs to rotate logs in openshift directories, needs back port to RHEL6 - Add missing vpnc_roles type line - Allow stapserver to write content in /tmp - Allow gnome keyring to create keyrings dir in ~/.local/share - Dontaudit thumb drives trying to bind to udp sockets if nis_enabled is turned on - Add interface to colord_t dbus_chat to allow it to read remote process state - Allow colord_t to read cupsd_t state - Add mate-thumbnail-font as thumnailer - Allow sectoolm to sys_ptrace since it is looking at other proceses /proc data. - Allow qpidd to list /tmp. Needed by ssl - Only allow init_t to transition to rsync_t domain, not initrc_t. This should be back ported to F17, F18 - - Added systemd support for ksmtuned - Added booleans ksmtuned_use_nfs ksmtuned_use_cifs - firewalld seems to be creating mmap files which it needs to execute in /run /tmp and /dev/shm. Would like to clean this up but for now we will allow - Looks like qpidd_t needs to read /dev/random - Lots of probing avc's caused by execugting gpg from staff_t - Dontaudit senmail triggering a net_admin avc - Change thumb_role to use thumb_run, not sure why we have a thumb_role, needs back port - Logwatch does access check on mdadm binary - Add raid_access_check_mdadm() iterface- Fix systemd_manage_unit_symlinks() interface - Call systemd_manage_unit_symlinks(() which is correct interface - Add filename transition for opasswd - Switch gnomeclock_dbus_chat to systemd_dbus_chat_timedated since we have switched the name of gnomeclock - Allow sytstemd-timedated to get status of init_t - Add new systemd policies for hostnamed and rename gnomeclock_t to systemd_timedate_t - colord needs to communicate with systemd and systemd_logind, also remove duplicate rules - Switch gnomeclock_dbus_chat to systemd_dbus_chat_timedated since we have switched the name of gnomeclock - Allow gpg_t to manage all gnome files - Stop using pcscd_read_pub_files - New rules for xguest, dontaudit attempts to dbus chat - Allow firewalld to create its mmap files in tmpfs and tmp directories - Allow firewalld to create its mmap files in tmpfs and tmp directories - run unbound-chkconf as named_t, so it can read dnssec - Colord is reading xdm process state, probably reads state of any apps that sends dbus message - Allow mdadm_t to change the kernel scheduler - mythtv policy - Update mandb_admin() interface - Allow dsspam to listen on own tpc_socket - seutil_filetrans_named_content needs to be optional - Allow sysadm_t to execute content in his homedir - Add attach_queue to tun_socket, new patch from Paul Moore - Change most of selinux configuration types to security_file_type. - Add filename transition rules for selinux configuration - ssh into a box with -X -Y requires ssh_use_ptys - Dontaudit thumb drives trying to bind to udp sockets if nis_enabled is turned on - Allow all unpriv userdomains to send dbus messages to hostnamed and timedated - New allow rules found by Tom London for systemd_hostnamed- Allow systemd-tmpfiles to relabel lpd spool files - Ad labeling for texlive bash scripts - Add xserver_filetrans_fonts_cache_home_content() interface - Remove duplicate rules from *.te - Add support for /var/lock/man-db.lock - Add support for /var/tmp/abrt(/.*)? - Add additional labeling for munin cgi scripts - Allow httpd_t to read munin conf files - Allow certwatch to read meminfo - Fix nscd_dontaudit_write_sock_file() interfac - Fix gnome_filetrans_home_content() to include also "fontconfig" dir as cache_home_t - llow mozilla_plugin_t to create HOMEDIR/.fontconfig with the proper labeling- Allow gnomeclock to talk to puppet over dbus - Allow numad access discovered by Dominic - Add support for HOME_DIR/.maildir - Fix attribute_role for mozilla_plugin_t domain to allow staff_r to access this domain - Allow udev to relabel udev_var_run_t lnk_files - New bin_t file in mcelog- Remove all mcs overrides and replace with t1 != mcs_constrained_types - Add attribute_role for iptables - mcs_process_set_categories needs to be called for type - Implement additional role_attribute statements - Sodo domain is attempting to get the additributes of proc_kcore_t - Unbound uses port 8953 - Allow svirt_t images to compromise_kernel when using pci-passthrough - Add label for dns lib files - Bluetooth aquires a dbus name - Remove redundant files_read_usr_file calling - Remove redundant files_read_etc_file calling - Fix mozilla_run_plugin() - Add role_attribute support for more domains- Mass merge with upstream- Bump the policy version to 28 to match selinux userspace - Rebuild versus latest libsepol- Add systemd_status_all_unit_files() interface - Add support for nshadow - Allow sysadm_t to administrate the postfix domains - Add interface to setattr on isid directories for use by tmpreaper - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Add systemd_status_all_unit_files() interface - Add support for nshadow - Allow sysadm_t to administrate the postfix domains - Add interface to setattr on isid directories for use by tmpreaper - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Allow sshd_t sys_admin for use with afs logins - Add labeling for /var/named/chroot/etc/localtim- Allow setroubleshoot_fixit to execute rpm - zoneminder needs to connect to httpd ports where remote cameras are listening - Allow firewalld to execute content created in /run directory - Allow svirt_t to read generic certs - Dontaudit leaked ps content to mozilla plugin - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - init scripts are creating systemd_unit_file_t directories- systemd_logind_t is looking at all files under /run/user/apache - Allow systemd to manage all user tmp files - Add labeling for /var/named/chroot/etc/localtime - Allow netlabel_peer_t type to flow over netif_t and node_t, and only be hindered by MLS, need back port to RHEL6 - Keystone is now using a differnt port - Allow xdm_t to use usbmuxd daemon to control sound - Allow passwd daemon to execute gnome_exec_keyringd - Fix chrome_sandbox policy - Add labeling for /var/run/checkquorum-timer - More fixes for the dspam domain, needs back port to RHEL6 - More fixes for the dspam domain, needs back port to RHEL6 - sssd needs to connect to kerberos password port if a user changes his password - Lots of fixes from RHEL testing of dspam web - Allow chrome and mozilla_plugin to create msgq and semaphores - Fixes for dspam cgi scripts - Fixes for dspam cgi scripts - Allow confine users to ptrace screen - Backport virt_qemu_ga_t changes from RHEL - Fix labeling for dspam.cgi needed for RHEL6 - We need to back port this policy to RHEL6, for lxc domains - Dontaudit attempts to set sys_resource of logrotate - Allow corosync to read/write wdmd's tmpfs files - I see a ptrace of mozilla_plugin_t by staff_t, will allow without deny_ptrace being set - Allow cron jobs to read bind config for unbound - libvirt needs to inhibit systemd - kdumpctl needs to delete boot_t files - Fix duplicate gnome_config_filetrans - virtd_lxc_t is using /dev/fuse - Passenger needs to create a directory in /var/log, needs a backport to RHEL6 for openshift - apcupsd can be setup to listen to snmp trafic - Allow transition from kdumpgui to kdumpctl - Add fixes for munin CGI scripts - Allow deltacloud to connect to openstack at the keystone port - Allow domains that transition to svirt domains to be able to signal them - Fix file context of gstreamer in .cache directory - libvirt is communicating with logind - NetworkManager writes to the systemd inhibit pipe- Allow munin disk plugins to get attributes of all directories - Allow munin disk plugins to get attributes of all directorie - Allow logwatch to get attributes of all directories - Fix networkmanager_manage_lib() interface - Fix gnome_manage_config() to allow to manage sock_file - Fix virtual_domain_context - Add support for dynamic DNS for DHCPv6- Allow svirt to use netlink_route_socket which was a part of auth_use_nsswitch - Add additional labeling for /var/www/openshift/broker - Fix rhev policy - Allow openshift_initrc domain to dbus chat with systemd_logind - Allow httpd to getattr passenger log file if run_stickshift - Allow consolehelper-gtk to connect to xserver - Add labeling for the tmp-inst directory defined in pam_namespace.conf - Add lvm_metadata_t labeling for /etc/multipath- consoletype is no longer used- Add label for efivarfs - Allow certmonger to send signal to itself - Allow plugin-config to read own process status - Add more fixes for pacemaker - apache/drupal can run clamscan on uploaded content - Allow chrome_sandbox_nacl_t to read pid 1 content- Fix MCS Constraints to control ingres and egres controls on the network. - Change name of svirt_nokvm_t to svirt_tcg_t - Allow tuned to request the kernel to load kernel modules- Label /var/lib/pgsql/.ssh as ssh_home_t - Add labeling for /usr/bin/pg_ctl - Allow systemd-logind to manage keyring user tmp dirs - Add support for 7389/tcp port - gems seems to be placed in lots of places - Since xdm is running a full session, it seems to be trying to execute lots of executables via dbus - Add back tcp/8123 port as http_cache port - Add ovirt-guest-agent\.pid labeling - Allow xend to run scsi_id - Allow rhsmcertd-worker to read "physical_package_id" - Allow pki_tomcat to connect to ldap port - Allow lpr to read /usr/share/fonts - Allow open file from CD/DVD drive on domU - Allow munin services plugins to talk to SSSD - Allow all samba domains to create samba directory in var_t directories - Take away svirt_t ability to use nsswitch - Dontaudit attempts by openshift to read apache logs - Allow apache to create as well as append _ra_content_t - Dontaudit sendmail_t reading a leaked file descriptor - Add interface to have admin transition /etc/prelink.cache to the proper label - Add sntp support to ntp policy - Allow firewalld to dbus chat with devicekit_power - Allow tuned to call lsblk - Allow tor to read /proc/sys/kernel/random/uuid - Add tor_can_network_relay boolean- Add openshift_initrc_signal() interface - Fix typos - dspam port is treat as spamd_port_t - Allow setroubleshoot to getattr on all executables - Allow tuned to execute profiles scripts in /etc/tuned - Allow apache to create directories to store its log files - Allow all directories/files in /var/log starting with passenger to be labeled passenger_log_t - Looks like apache is sending sinal to openshift_initrc_t now,needs back port to RHEL6 - Allow Postfix to be configured to listen on TCP port 10026 for email from DSPAM - Add filename transition for /etc/tuned/active_profile - Allow condor_master to send mails - Allow condor_master to read submit.cf - Allow condor_master to create /tmp files/dirs - Allow condor_mater to send sigkill to other condor domains - Allow condor_procd sigkill capability - tuned-adm wants to talk with tuned daemon - Allow kadmind and krb5kdc to also list sssd_public_t - Allow accountsd to dbus chat with init - Fix git_read_generic_system_content_files() interface - pppd wants sys_nice by nmcli because of "syscall=sched_setscheduler" - Fix mozilla_plugin_can_network_connect to allow to connect to all ports - Label all munin plugins which are not covered by munin plugins policy as unconfined_munin_plugin_exec_t - dspam wants to search /var/spool for opendkim data - Revert "Add support for tcp/10026 port as dspam_port_t" - Turning on labeled networking requires additional access for netlabel_peer_t; these allow rules need to be back ported to RHEL6 - Allow all application domains to use fifo_files passed in from userdomains, also allow them to write to tmp_files inherited from userdomain - Allow systemd_tmpfiles_t to setattr on mandb_cache_t- consolekit.pp was not removed from the postinstall script- Add back consolekit policy - Silence bootloader trying to use inherited tty - Silence xdm_dbusd_t trying to execute telepathy apps - Fix shutdown avcs when machine has unconfined.pp disabled - The host and a virtual machine can share the same printer on a usb device - Change oddjob to transition to a ranged openshift_initr_exec_t when run from oddjob - Allow abrt_watch_log_t to execute bin_t - Allow chrome sandbox to write content in ~/.config/chromium - Dontaudit setattr on fontconfig dir for thumb_t - Allow lircd to request the kernel to load module - Make rsync as userdom_home_manager - Allow rsync to search automount filesystem - Add fixes for pacemaker- Add support for 4567/tcp port - Random fixes from Tuomo Soini - xdm wants to get init status - Allow programs to run in fips_mode - Add interface to allow the reading of all blk device nodes - Allow init to relabel rpcbind sock_file - Fix labeling for lastlog and faillog related to logrotate - ALlow aeolus_configserver to use TRAM port - Add fixes for aeolus_configserver - Allow snmpd to connect to snmp port - Allow spamd_update to create spamd_var_lib_t directories - Allow domains that can read sssd_public_t files to also list the directory - Remove miscfiles_read_localization, this is defined for all domains- Allow syslogd to request the kernel to load a module - Allow syslogd_t to read the network state information - Allow xdm_dbusd_t connect to the system DBUS - Add support for 7389/tcp port - Allow domains to read/write all inherited sockets - Allow staff_t to read kmsg - Add awstats_purge_apache_log boolean - Allow ksysguardproces to read /.config/Trolltech.conf - Allow passenger to create and append puppet log files - Add puppet_append_log and puppet_create_log interfaces - Add puppet_manage_log() interface - Allow tomcat domain to search tomcat_var_lib_t - Allow pki_tomcat_t to connect to pki_ca ports - Allow pegasus_t to have net_admin capability - Allow pegasus_t to write /sys/class/net//flags - Allow mailserver_delivery to manage mail_home_rw_t lnk_files - Allow fetchmail to create log files - Allow gnomeclock to manage home config in .kde - Allow bittlebee to read kernel sysctls - Allow logrotate to list /root- Fix userhelper_console_role_template() - Allow enabling Network Access Point service using blueman - Make vmware_host_t as unconfined domain - Allow authenticate users in webaccess via squid, using mysql as backend - Allow gathers to get various metrics on mounted file systems - Allow firewalld to read /etc/hosts - Fix cron_admin_role() to make sysadm cronjobs running in the sysadm_t instead of cronjob_t - Allow kdumpgui to read/write to zipl.conf - Commands needed to get mock to build from staff_t in enforcing mode - Allow mdadm_t to manage cgroup files - Allow all daemons and systemprocesses to use inherited initrc_tmp_t files - dontaudit ifconfig_t looking at fifo_files that are leaked to it - Add lableing for Quest Authentication System- Fix filetrans interface definitions - Dontaudit xdm_t to getattr on BOINC lib files - Add systemd_reload_all_services() interface - Dontaudit write access on /var/lib/net-snmp/mib_indexes - Only stop mcsuntrustedproc from relableing files - Allow accountsd to dbus chat with gdm - Allow realmd to getattr on all fs - Allow logrotate to reload all services - Add systemd unit file for radiusd - Allow winbind to create samba pid dir - Add labeling for /var/nmbd/unexpected - Allow chrome and mozilla plugin to connect to msnp ports- Fix storage_rw_inherited_fixed_disk_dev() to cover also blk_file - Dontaudit setfiles reading /dev/random - On initial boot gnomeclock is going to need to be set buy gdm - Fix tftp_read_content() interface - Random apps looking at kernel file systems - Testing virt with lxc requiers additional access for virsh_t - New allow rules requied for latest libvirt, libvirt talks directly to journald,lxc setup tool needs compromize_kernel,and we need ipc_lock in the container - Allow MPD to read /dev/radnom - Allow sandbox_web_type to read logind files which needs to read pulseaudio - Allow mozilla plugins to read /dev/hpet - Add labeling for /var/lib/zarafa-webap - Allow BOINC client to use an HTTP proxy for all connections - Allow rhsmertd to domain transition to dmidecod - Allow setroubleshootd to send D-Bus msg to ABRT- Define usbtty_device_t as a term_tty - Allow svnserve to accept a connection - Allow xend manage default virt_image_t type - Allow prelink_cron_system_t to overide user componant when executing cp - Add labeling for z-push - Gnomeclock sets the realtime clock - Openshift seems to be storing apache logs in /var/lib/openshift/.log/httpd - Allow lxc domains to use /dev/random and /dev/urandom- Add port defintion for tcp/9000 - Fix labeling for /usr/share/cluster/checkquorum to label also checkquorum.wdmd - Add rules and labeling for $HOME/cache/\.gstreamer-.* directory - Add support for CIM provider openlmi-networking which uses NetworkManager dbus API - Allow shorewall_t to create netlink_socket - Allow krb5admind to block suspend - Fix labels on /var/run/dlm_controld /var/log/dlm_controld - Allow krb5kdc to block suspend - gnomessytemmm_t needs to read /etc/passwd - Allow cgred to read all sysctls- Allow all domains to read /proc/sys/vm/overcommit_memory - Make proc_numa_t an MLS Trusted Object - Add /proc/numactl support for confined users - Allow ssh_t to connect to any port > 1023 - Add openvswitch domain - Pulseaudio tries to create directories in gnome_home_t directories - New ypbind pkg wants to search /var/run which is caused by sd_notify - Allow NM to read certs on NFS/CIFS using use_nfs_*, use_samba_* booleans - Allow sanlock to read /dev/random - Treat php-fpm with httpd_t - Allow domains that can read named_conf_t to be able to list the directories - Allow winbind to create sock files in /var/run/samba- Add smsd policy - Add support for OpenShift sbin labelin - Add boolean to allow virt to use rawip - Allow mozilla_plugin to read all file systems with noxattrs support - Allow kerberos to write on anon_inodefs fs - Additional access required by fenced - Add filename transitions for passwd.lock/group.lock - UPdate man pages - Create coolkey directory in /var/cache with the correct label- Fix label on /etc/group.lock - Allow gnomeclock to create lnk_file in /etc - label /root/.pki as a home_cert_t - Add interface to make sure rpcbind.sock is created with the correct label - Add definition for new directory /var/lib/os-probe and bootloader wants to read udev rules - opendkim should be a part of milter - Allow libvirt to set the kernel sched algorythm - Allow mongod to read sysfs_t - Add authconfig policy - Remove calls to miscfiles_read_localization all domains get this - Allow virsh_t to read /root/.pki/ content - Add label for log directory under /var/www/stickshift- Allow getty to setattr on usb ttys - Allow sshd to search all directories for sshd_home_t content - Allow staff domains to send dbus messages to kdumpgui - Fix labels on /etc/.pwd.lock and friends to be passwd_file_t - Dontaudit setfiles reading urand - Add files_dontaudit_list_tmp() for domains to which we added sys_nice/setsched - Allow staff_gkeyringd_t to read /home/$USER/.local/share/keyrings dir - Allow systemd-timedated to read /dev/urandom - Allow entropyd_t to read proc_t (meminfo) - Add unconfined munin plugin - Fix networkmanager_read_conf() interface - Allow blueman to list /tmp which is needed by sys_nic/setsched - Fix label of /etc/mail/aliasesdb-stamp - numad is searching cgroups - realmd is communicating with networkmanager using dbus - Lots of fixes to try to get kdump to work- Allow loging programs to dbus chat with realmd - Make apache_content_template calling as optional - realmd is using policy kit- Add new selinuxuser_use_ssh_chroot boolean - dbus needs to be able to read/write inherited fixed disk device_t passed through it - Cleanup netutils process allow rule - Dontaudit leaked fifo files from openshift to ping - sanlock needs to read mnt_t lnk files - Fail2ban needs to setsched and sys_nice- Change default label of all files in /var/run/rpcbind - Allow sandbox domains (java) to read hugetlbfs_t - Allow awstats cgi content to create tmp files and read apache log files - Allow setuid/setgid for cupsd-config - Allow setsched/sys_nice pro cupsd-config - Fix /etc/localtime sym link to be labeled locale_t - Allow sshd to search postgresql db t since this is a homedir - Allow xwindows users to chat with realmd - Allow unconfined domains to configure all files and null_device_t service- Adopt pki-selinux policy- pki is leaking which we dontaudit until a pki code fix - Allow setcap for arping - Update man pages - Add labeling for /usr/sbin/mcollectived - pki fixes - Allow smokeping to execute fping in the netutils_t domain- Allow mount to relabelfrom unlabeled file systems - systemd_logind wants to send and receive messages from devicekit disk over dbus to make connected mouse working - Add label to get bin files under libreoffice labeled correctly - Fix interface to allow executing of base_ro_file_type - Add fixes for realmd - Update pki policy - Add tftp_homedir boolean - Allow blueman sched_setscheduler - openshift user domains wants to r/w ssh tcp sockets- Additional requirements for disable unconfined module when booting - Fix label of systemd script files - semanage can use -F /dev/stdin to get input - syslog now uses kerberos keytabs - Allow xserver to compromise_kernel access - Allow nfsd to write to mount_var_run_t when running the mount command - Add filename transition rule for bin_t directories - Allow files to read usr_t lnk_files - dhcpc wants chown - Add support for new openshift labeling - Clean up for tunable+optional statements - Add labeling for /usr/sbin/mkhomedir_helper - Allow antivirus domain to managa amavis spool files - Allow rpcbind_t to read passwd - Allow pyzor running as spamc to manage amavis spool- Add interfaces to read kernel_t proc info - Missed this version of exec_all - Allow anyone who can load a kernel module to compromise kernel - Add oddjob_dbus_chat to openshift apache policy - Allow chrome_sandbox_nacl_t to send signals to itself - Add unit file support to usbmuxd_t - Allow all openshift domains to read sysfs info - Allow openshift domains to getattr on all domains- MLS fixes from Dan - Fix name of capability2 secure_firmware->compromise_kerne- Allow xdm to search all file systems - Add interface to allow the config of all files - Add rngd policy - Remove kgpg as a gpg_exec_t type - Allow plymouthd to block suspend - Allow systemd_dbus to config any file - Allow system_dbus_t to configure all services - Allow freshclam_t to read usr_files - varnishd requires execmem to load modules- Allow semanage to verify types - Allow sudo domain to execute user home files - Allow session_bus_type to transition to user_tmpfs_t - Add dontaudit caused by yum updates - Implement pki policy but not activated- tuned wants to getattr on all filesystems - tuned needs also setsched. The build is needed for test day- Add policy for qemu-qa - Allow razor to write own config files - Add an initial antivirus policy to collect all antivirus program - Allow qdisk to read usr_t - Add additional caps for vmware_host - Allow tmpfiles_t to setattr on mandb_cache_t - Dontaudit leaked files into mozilla_plugin_config_t - Allow wdmd to getattr on tmpfs - Allow realmd to use /dev/random - allow containers to send audit messages - Allow root mount any file via loop device with enforcing mls policy - Allow tmpfiles_t to setattr on mandb_cache_t - Allow tmpfiles_t to setattr on mandb_cache_t - Make userdom_dontaudit_write_all_ not allow open - Allow init scripts to read all unit files - Add support for saphostctrl ports- Add kernel_read_system_state to sandbox_client_t - Add some of the missing access to kdumpgui - Allow systemd_dbusd_t to status the init system - Allow vmnet-natd to request the kernel to load a module - Allow gsf-office-thum to append .cache/gdm/session.log - realmd wants to read .config/dconf/user - Firewalld wants sys_nice/setsched - Allow tmpreaper to delete mandb cache files - Firewalld wants sys_nice/setsched - Allow firewalld to perform a DNS name resolution - Allown winbind to read /usr/share/samba/codepages/lowcase.dat - Add support for HTTPProxy* in /etc/freshclam.conf - Fix authlogin_yubike boolean - Extend smbd_selinux man page to include samba booleans - Allow dhcpc to execute consoletype - Allow ping to use inherited tmp files created in init scripts - On full relabel with unconfined domain disabled, initrc was running some chcon's - Allow people who delete man pages to delete mandb cache files- Add missing permissive domains- Add new mandb policy - ALlow systemd-tmpfiles_t to relabel mandb_cache_t - Allow logrotate to start all unit files- Add fixes for ctbd - Allow nmbd to stream connect to ctbd - Make cglear_t as nsswitch_domain - Fix bogus in interfaces - Allow openshift to read/write postfix public pipe - Add postfix_manage_spool_maildrop_files() interface - stickshift paths have been renamed to openshift - gnome-settings-daemon wants to write to /run/systemd/inhibit/ pipes - Update man pages, adding ENTRYPOINTS- Add mei_device_t - Make sure gpg content in homedir created with correct label - Allow dmesg to write to abrt cache files - automount wants to search virtual memory sysctls - Add support for hplip logs stored in /var/log/hp/tmp - Add labeling for /etc/owncloud/config.php - Allow setroubleshoot to send analysys to syslogd-journal - Allow virsh_t to interact with new fenced daemon - Allow gpg to write to /etc/mail/spamassassiin directories - Make dovecot_deliver_t a mail server delivery type - Add label for /var/tmp/DNS25- Fixes for tomcat_domain template interface- Remove init_systemd and init_upstart boolean, Move init_daemon_domain and init_system_domain to use attributes - Add attribute to all base os types. Allow all domains to read all ro base OS types- Additional unit files to be defined as power unit files - Fix more boolean names- Fix boolean name so subs will continue to work- dbus needs to start getty unit files - Add interface to allow system_dbusd_t to start the poweroff service - xdm wants to exec telepathy apps - Allow users to send messages to systemdlogind - Additional rules needed for systemd and other boot apps - systemd wants to list /home and /boot - Allow gkeyringd to write dbus/conf file - realmd needs to read /dev/urand - Allow readahead to delete /.readahead if labeled root_t, might get created before policy is loaded- Fixes to safe more rules - Re-write tomcat_domain_template() - Fix passenger labeling - Allow all domains to read man pages - Add ephemeral_port_t to the 'generic' port interfaces - Fix the names of postgresql booleans- Stop using attributes form netlabel_peer and syslog, auth_use_nsswitch setsup netlabel_peer - Move netlable_peer check out of booleans - Remove call to recvfrom_netlabel for kerberos call - Remove use of attributes when calling syslog call - Move -miscfiles_read_localization to domain.te to save hundreds of allow rules - Allow all domains to read locale files. This eliminates around 1500 allow rules- Cleanup nis_use_ypbind_uncond interface - Allow rndc to block suspend - tuned needs to modify the schedule of the kernel - Allow svirt_t domains to read alsa configuration files - ighten security on irc domains and make sure they label content in homedir correctly - Add filetrans_home_content for irc files - Dontaudit all getattr access for devices and filesystems for sandbox domains - Allow stapserver to search cgroups directories - Allow all postfix domains to talk to spamd- Add interfaces to ignore setattr until kernel fixes this to be checked after the DAC check - Change pam_t to pam_timestamp_t - Add dovecot_domain attribute and allow this attribute block_suspend capability2 - Add sanlock_use_fusefs boolean - numad wants send/recieve msg - Allow rhnsd to send syslog msgs - Make piranha-pulse as initrc domain - Update openshift instances to dontaudit setattr until the kernel is fixed.- Fix auth_login_pgm_domain() interface to allow domains also managed user tmp dirs because of #856880 related to pam_systemd - Remove pam_selinux.8 which conflicts with man page owned by the pam package - Allow glance-api to talk to mysql - ABRT wants to read Xorg.0.log if if it detects problem with Xorg - Fix gstreamer filename trans. interface- Man page fixes by Dan Walsh- Allow postalias to read postfix config files - Allow man2html to read man pages - Allow rhev-agentd to search all mountpoints - Allow rhsmcertd to read /dev/random - Add tgtd_stream_connect() interface - Add cyrus_write_data() interface - Dontaudit attempts by sandboxX clients connectiing to the xserver_port_t - Add port definition for tcp/81 as http_port_t - Fix /dev/twa labeling - Allow systemd to read modules config- Merge openshift policy - Allow xauth to read /dev/urandom - systemd needs to relabel content in /run/systemd directories - Files unconfined should be able to perform all services on all files - Puppet tmp file can be leaked to all domains - Dontaudit rhsmcertd-worker to search /root/.local - Allow chown capability for zarafa domains - Allow system cronjobs to runcon into openshift domains - Allow virt_bridgehelper_t to manage content in the svirt_home_t labeled directories- nmbd wants to create /var/nmbd - Stop transitioning out of anaconda and firstboot, just causes AVC messages - Allow clamscan to read /etc files - Allow bcfg2 to bind cyphesis port - heartbeat should be run as rgmanager_t instead of corosync_t - Add labeling for /etc/openldap/certs - Add labeling for /opt/sartest directory - Make crontab_t as userdom home reader - Allow tmpreaper to list admin_home dir - Add defition for imap_0 replay cache file - Add support for gitolite3 - Allow virsh_t to send syslog messages - allow domains that can read samba content to be able to list the directories also - Add realmd_dbus_chat to allow all apps that use nsswitch to talk to realmd - Separate out sandbox from sandboxX policy so we can disable it by default - Run dmeventd as lvm_t - Mounting on any directory requires setattr and write permissions - Fix use_nfs_home_dirs() boolean - New labels for pam_krb5 - Allow init and initrc domains to sys_ptrace since this is needed to look at processes not owned by uid 0 - Add realmd_dbus_chat to allow all apps that use nsswitch to talk to realmd- Separate sandbox policy into sandbox and sandboxX, and disable sandbox by default on fresh installs - Allow domains that can read etc_t to read etc_runtime_t - Allow all domains to use inherited tmpfiles- Allow realmd to read resolv.conf - Add pegasus_cache_t type - Label /usr/sbin/fence_virtd as virsh_exec_t - Add policy for pkcsslotd - Add support for cpglockd - Allow polkit-agent-helper to read system-auth-ac - telepathy-idle wants to read gschemas.compiled - Allow plymouthd to getattr on fs_t - Add slpd policy - Allow ksysguardproces to read/write config_usr_t- Fix labeling substitution so rpm will label /lib/systemd content correctly- Add file name transitions for ttyACM0 - spice-vdagent(d)'s are going to log over to syslog - Add sensord policy - Add more fixes for passenger policy related to puppet - Allow wdmd to create wdmd_tmpfs_t - Fix labeling for /var/run/cachefilesd\.pid - Add thumb_tmpfs_t files type- Allow svirt domains to manage the network since this is containerized - Allow svirt_lxc_net_t to send audit messages- Make "snmpwalk -mREDHAT-CLUSTER-MIB ...." working - Allow dlm_controld to execute dlm_stonith labeled as bin_t - Allow GFS2 working on F17 - Abrt needs to execute dmesg - Allow jockey to list the contents of modeprobe.d - Add policy for lightsquid as squid_cron_t - Mailscanner is creating files and directories in /tmp - dmesg is now reading /dev/kmsg - Allow xserver to communicate with secure_firmware - Allow fsadm tools (fsck) to read /run/mount contnet - Allow sysadm types to read /dev/kmsg -- Allow postfix, sssd, rpcd to block_suspend - udev seems to need secure_firmware capability - Allow virtd to send dbus messages to firewalld so it can configure the firewall- Fix labeling of content in /run created by virsh_t - Allow condor domains to read kernel sysctls - Allow condor_master to connect to amqp - Allow thumb drives to create shared memory and semaphores - Allow abrt to read mozilla_plugin config files - Add labels for lightsquid - Default files in /opt and /usr that end in .cgi as httpd_sys_script_t, allow - dovecot_auth_t uses ldap for user auth - Allow domains that can read dhcp_etc_t to read lnk_files - Add more then one watchdog device - Allow useradd_t to manage etc_t files so it can rename it and edit them - Fix invalid class dir should be fifo_file - Move /run/blkid to fsadm and make sure labeling is correct- Fix bogus regex found by eparis - Fix manage run interface since lvm needs more access - syslogd is searching cgroups directory - Fixes to allow virt-sandbox-service to manage lxc var run content- Fix Boolean settings - Add new libjavascriptcoregtk as textrel_shlib_t - Allow xdm_t to create xdm_home_t directories - Additional access required for systemd - Dontaudit mozilla_plugin attempts to ipc_lock - Allow tmpreaper to delete unlabeled files - Eliminate screen_tmp_t and allow it to manage user_tmp_t - Dontaudit mozilla_plugin_config_t to append to leaked file descriptors - Allow web plugins to connect to the asterisk ports - Condor will recreate the lock directory if it does not exist - Oddjob mkhomedir needs to connectto user processes - Make oddjob_mkhomedir_t a userdom home manager- Put placeholder back in place for proper numbering of capabilities - Systemd also configures init scripts- Fix ecryptfs interfaces - Bootloader seems to be trolling around /dev/shm and /dev - init wants to create /etc/systemd/system-update.target.wants - Fix systemd_filetrans call to move it out of tunable - Fix up policy to work with systemd userspace manager - Add secure_firmware capability and remove bogus epolwakeup - Call seutil_*_login_config interfaces where should be needed - Allow rhsmcertd to send signal to itself - Allow thin domains to send signal to itself - Allow Chrome_ChildIO to read dosfs_t- Add role rules for realmd, sambagui- Add new type selinux_login_config_t for /etc/selinux//logins/ - Additional fixes for seutil_manage_module_store() - dbus_system_domain() should be used with optional_policy - Fix svirt to be allowed to use fusefs file system - Allow login programs to read /run/ data created by systemd_login - sssd wants to write /etc/selinux//logins/ for SELinux PAM module - Fix svirt to be allowed to use fusefs file system - Allow piranha domain to use nsswitch - Sanlock needs to send Kill Signals to non root processes - Pulseaudio wants to execute /run/user/PID/.orc- Fix saslauthd when it tries to read /etc/shadow - Label gnome-boxes as a virt homedir - Need to allow svirt_t ability to getattr on nfs_t file systems - Update sanlock policy to solve all AVC's - Change confined users can optionally manage virt content - Handle new directories under ~/.cache - Add block suspend to appropriate domains - More rules required for containers - Allow login programs to read /run/ data created by systemd_logind - Allow staff users to run svirt_t processes- Update to upstream- More fixes for systemd to make rawhide booting from Dan Walsh- Add systemd fixes to make rawhide booting- Add systemd_logind_inhibit_var_run_t attribute - Remove corenet_all_recvfrom_unlabeled() for non-contrib policies because we moved it to domain.if for all domain_type - Add interface for mysqld to dontaudit signull to all processes - Label new /var/run/journal directory correctly - Allow users to inhibit suspend via systemd - Add new type for the /var/run/inhibit directory - Add interface to send signull to systemd_login so avahi can send them - Allow systemd_passwd to send syslog messages - Remove corenet_all_recvfrom_unlabeled() calling fro policy files - Allow editparams.cgi running as httpd_bugzilla_script_t to read /etc/group - Allow smbd to read cluster config - Add additional labeling for passenger - Allow dbus to inhibit suspend via systemd - Allow avahi to send signull to systemd_login- Add interface to dontaudit getattr access on sysctls - Allow sshd to execute /bin/login - Looks like xdm is recreating the xdm directory in ~/.cache/ on login - Allow syslog to use the leaked kernel_t unix_dgram_socket from system-jounald - Fix semanage to work with unconfined domain disabled on F18 - Dontaudit attempts by mozilla plugins to getattr on all kernel sysctls - Virt seems to be using lock files - Dovecot seems to be searching directories of every mountpoint - Allow jockey to read random/urandom, execute shell and install third-party drivers - Add aditional params to allow cachedfiles to manage its content - gpg agent needs to read /dev/random - The kernel hands an svirt domains /SYSxxxxx which is a tmpfs that httpd wants to read and write - Add a bunch of dontaudit rules to quiet svirt_lxc domains - Additional perms needed to run svirt_lxc domains - Allow cgclear to read cgconfig - Allow sys_ptrace capability for snmp - Allow freshclam to read /proc - Allow procmail to manage /home/user/Maildir content - Allow NM to execute wpa_cli - Allow amavis to read clamd system state - Regenerate man pages- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Add realmd and stapserver policies - Allow useradd to manage stap-server lib files - Tighten up capabilities for confined users - Label /etc/security/opasswd as shadow_t - Add label for /dev/ecryptfs - Allow condor_startd_t to start sshd with the ranged - Allow lpstat.cups to read fips_enabled file - Allow pyzor running as spamc_t to create /root/.pyzor directory - Add labelinf for amavisd-snmp init script - Add support for amavisd-snmp - Allow fprintd sigkill self - Allow xend (w/o libvirt) to start virtual machines - Allow aiccu to read /etc/passwd - Allow condor_startd to Make specified domain MCS trusted for setting any category set for the processes it executes - Add condor_startd_ranged_domtrans_to() interface - Add ssd_conf_t for /etc/sssd - accountsd needs to fchown some files/directories - Add ICACLient and zibrauserdata as mozilla_filetrans_home_content - SELinux reports afs_t needs dac_override to read /etc/mtab, even though everything works, adding dontaudit - Allow xend_t to read the /etc/passwd file- Until we figure out how to fix systemd issues, allow all apps that send syslog messages to send them to kernel_t - Add init_access_check() interface - Fix label on /usr/bin/pingus to not be labeled as ping_exec_t - Allow tcpdump to create a netlink_socket - Label newusers like useradd - Change xdm log files to be labeled xdm_log_t - Allow sshd_t with privsep to work in MLS - Allow freshclam to update databases thru HTTP proxy - Allow s-m-config to access check on systemd - Allow abrt to read public files by default - Fix amavis_create_pid_files() interface - Add labeling and filename transition for dbomatic.log - Allow system_dbusd_t to stream connect to bluetooth, and use its socket - Allow amavisd to execute fsav - Allow tuned to use sys_admin and sys_nice capabilities - Add php-fpm policy from Bryan - Add labeling for aeolus-configserver-thinwrapper - Allow thin domains to execute shell - Fix gnome_role_gkeyringd() interface description - Lot of interface fixes - Allow OpenMPI job running as condor_startd_ssh_t to manage condor lib files - Allow OpenMPI job to use kerberos - Make deltacloudd_t as nsswitch_domain - Allow xend_t to run lsscsi - Allow qemu-dm running as xend_t to create tun_socket - Add labeling for /opt/brother/Printers(.*/)?inf - Allow jockey-backend to read pyconfig-64.h labeled as usr_t - Fix clamscan_can_scan_system boolean - Allow lpr to connectto to /run/user/$USER/keyring-22uREb/pkcs11- initrc is calling exportfs which is not confined so it attempts to read nfsd_files - Fixes for passenger running within openshift. - Add labeling for all tomcat6 dirs - Add support for tomcat6 - Allow cobblerd to read /etc/passwd - Allow jockey to read sysfs and and execute binaries with bin_t - Allow thum to use user terminals - Allow cgclear to read cgconfig config files - Fix bcf2g.fc - Remove sysnet_dns_name_resolve() from policies where auth_use_nsswitch() is used for other domains - Allow dbomatic to execute ruby - abrt_watch_log should be abrt_domain - Allow mozilla_plugin to connect to gatekeeper port- add ptrace_child access to process - remove files_read_etc_files() calling from all policies which have auth_use_nsswith() - Allow boinc domains to manage boinc_lib_t lnk_files - Add support for boinc-client.service unit file - Add support for boinc.log - Allow mozilla_plugin execmod on mozilla home files if allow_ex - Allow dovecot_deliver_t to read dovecot_var_run_t - Allow ldconfig and insmod to manage kdumpctl tmp files - Move thin policy out from cloudform.pp and add a new thin poli - pacemaker needs to communicate with corosync streams - abrt is now started on demand by dbus - Allow certmonger to talk directly to Dogtag servers - Change labeling for /var/lib/cobbler/webui_sessions to httpd_c - Allow mozila_plugin to execute gstreamer home files - Allow useradd to delete all file types stored in the users hom - rhsmcertd reads the rpm database - Add support for lightdm- Add tomcat policy - Remove pyzor/razor policy - rhsmcertd reads the rpm database - Dontaudit thumb to setattr on xdm_tmp dir - Allow wicd to execute ldconfig in the networkmanager_t domain - Add /var/run/cherokee\.pid labeling - Allow mozilla_plugin to create mozilla_plugin_tmp_t lnk files too - Allow postfix-master to r/w pipes other postfix domains - Allow snort to create netlink_socket - Add kdumpctl policy - Allow firstboot to create tmp_t files/directories - /usr/bin/paster should not be labeled as piranha_exec_t - remove initrc_domain from tomcat - Allow ddclient to read /etc/passwd - Allow useradd to delete all file types stored in the users homedir - Allow ldconfig and insmod to manage kdumpctl tmp files - Firstboot should be just creating tmp_t dirs and xauth should be allowed to write to those - Transition xauth files within firstboot_tmp_t - Fix labeling of /run/media to match /media - Label all lxdm.log as xserver_log_t - Add port definition for mxi port - Allow local_login_t to execute tmux- apcupsd needs to read /etc/passwd - Sanlock allso sends sigkill - Allow glance_registry to connect to the mysqld port - Dontaudit mozilla_plugin trying to getattr on /dev/gpmctl - Allow firefox plugins/flash to connect to port 1234 - Allow mozilla plugins to delete user_tmp_t files - Add transition name rule for printers.conf.O - Allow virt_lxc_t to read urand - Allow systemd_loigind to list gstreamer_home_dirs - Fix labeling for /usr/bin - Fixes for cloudform services * support FIPS - Allow polipo to work as web caching - Allow chfn to execute tmux- Add support for ecryptfs * ecryptfs does not support xattr * we need labeling for HOMEDIR - Add policy for (u)mount.ecryptfs* - Fix labeling of kerbero host cache files, allow rpc.svcgssd to manage host cache - Allow dovecot to manage Maildir content, fix transitions to Maildir - Allow postfix_local to transition to dovecot_deliver - Dontaudit attempts to setattr on xdm_tmp_t, looks like bogus code - Cleanup interface definitions - Allow apmd to change with the logind daemon - Changes required for sanlock in rhel6 - Label /run/user/apache as httpd_tmp_t - Allow thumb to use lib_t as execmod if boolean turned on - Allow squid to create the squid directory in /var with the correct labe - Add a new policy for glusterd from Bryan Bickford (bbickfor@redhat.com) - Allow virtd to exec xend_exec_t without transition - Allow virtd_lxc_t to unmount all file systems- PolicyKit path has changed - Allow httpd connect to dirsrv socket - Allow tuned to write generic kernel sysctls - Dontaudit logwatch to gettr on /dev/dm-2 - Allow policykit-auth to manage kerberos files - Make condor_startd and rgmanager as initrc domain - Allow virsh to read /etc/passwd - Allow mount to mount on user_tmp_t for /run/user/dwalsh/gvfs - xdm now needs to execute xsession_exec_t - Need labels for /var/lib/gdm - Fix files_filetrans_named_content() interface - Add new attribute - initrc_domain - Allow systemd_logind_t to signal, signull, sigkill all processes - Add filetrans rules for etc_runtime files- Rename boolean names to remove allow_- Mass merge with upstream * new policy topology to include contrib policy modules * we have now two base policy patches- Fix description of authlogin_nsswitch_use_ldap - Fix transition rule for rhsmcertd_t needed for RHEL7 - Allow useradd to list nfs state data - Allow openvpn to manage its log file and directory - We want vdsm to transition to mount_t when executing mount command to make sure /etc/mtab remains labeled correctly - Allow thumb to use nvidia devices - Allow local_login to create user_tmp_t files for kerberos - Pulseaudio needs to read systemd_login /var/run content - virt should only transition named system_conf_t config files - Allow munin to execute its plugins - Allow nagios system plugin to read /etc/passwd - Allow plugin to connect to soundd port - Fix httpd_passwd to be able to ask passwords - Radius servers can use ldap for backing store - Seems to need to mount on /var/lib for xguest polyinstatiation to work. - Allow systemd_logind to list the contents of gnome keyring - VirtualGL need xdm to be able to manage content in /etc/opt/VirtualGL - Add policy for isns-utils- Add policy for subversion daemon - Allow boinc to read passwd - Allow pads to read kernel network state - Fix man2html interface for sepolgen-ifgen - Remove extra /usr/lib/systemd/system/smb - Remove all /lib/systemd and replace with /usr/lib/systemd - Add policy for man2html - Fix the label of kerberos_home_t to krb5_home_t - Allow mozilla plugins to use Citrix - Allow tuned to read /proc/sys/kernel/nmi_watchdog - Allow tune /sys options via systemd's tmpfiles.d "w" type- Dontaudit lpr_t to read/write leaked mozilla tmp files - Add file name transition for .grl-podcasts directory - Allow corosync to read user tmp files - Allow fenced to create snmp lib dirs/files - More fixes for sge policy - Allow mozilla_plugin_t to execute any application - Allow dbus to read/write any open file descriptors to any non security file on the system that it inherits to that it can pass them to another domain - Allow mongod to read system state information - Fix wrong type, we should dontaudit sys_admin for xdm_t not xserver_t - Allow polipo to manage polipo_cache dirs - Add jabbar_client port to mozilla_plugin_t - Cleanup procmail policy - system bus will pass around open file descriptors on files that do not have labels on them - Allow l2tpd_t to read system state - Allow tuned to run ls /dev - Allow sudo domains to read usr_t files - Add label to machine-id - Fix corecmd_read_bin_symlinks cut and paste error- Fix pulseaudio port definition - Add labeling for condor_starter - Allow chfn_t to creat user_tmp_files - Allow chfn_t to execute bin_t - Allow prelink_cron_system_t to getpw calls - Allow sudo domains to manage kerberos rcache files - Allow user_mail_domains to work with courie - Port definitions necessary for running jboss apps within openshift - Add support for openstack-nova-metadata-api - Add support for nova-console* - Add support for openstack-nova-xvpvncproxy - Fixes to make privsep+SELinux working if we try to use chage to change passwd - Fix auth_role() interface - Allow numad to read sysfs - Allow matahari-rpcd to execute shell - Add label for ~/.spicec - xdm is executing lspci as root which is requesting a sys_admin priv but seems to succeed without it - Devicekit_disk wants to read the logind sessions file when writing a cd - Add fixes for condor to make condor jobs working correctly - Change label of /var/log/rpmpkgs to cron_log_t - Access requires to allow systemd-tmpfiles --create to work. - Fix obex to be a user application started by the session bus. - Add additional filename trans rules for kerberos - Fix /var/run/heartbeat labeling - Allow apps that are managing rcache to file trans correctly - Allow openvpn to authenticate against ldap server - Containers need to listen to network starting and stopping events- Make systemd unit files less specific- Fix zarafa labeling - Allow guest_t to fix labeling - corenet_tcp_bind_all_unreserved_ports(ssh_t) should be called with the user_tcp_server boolean - add lxc_contexts - Allow accountsd to read /proc - Allow restorecond to getattr on all file sytems - tmpwatch now calls getpw - Allow apache daemon to transition to pwauth domain - Label content under /var/run/user/NAME/keyring* as gkeyringd_tmp_t - The obex socket seems to be a stream socket - dd label for /var/run/nologin- Allow jetty running as httpd_t to read hugetlbfs files - Allow sys_nice and setsched for rhsmcertd - Dontaudit attempts by mozilla_plugin_t to bind to ssdp ports - Allow setfiles to append to xdm_tmp_t - Add labeling for /export as a usr_t directory - Add labels for .grl files created by gstreamer- Add labeling for /usr/share/jetty/bin/jetty.sh - Add jetty policy which contains file type definitios - Allow jockey to use its own fifo_file and make this the default for all domains - Allow mozilla_plugins to use spice (vnc_port/couchdb) - asterisk wants to read the network state - Blueman now uses /var/lib/blueman- Add label for nodejs_debug - Allow mozilla_plugin_t to create ~/.pki directory and content- Add clamscan_can_scan_system boolean - Allow mysqld to read kernel network state - Allow sshd to read/write condor lib files - Allow sshd to read/write condor-startd tcp socket - Fix description on httpd_graceful_shutdown - Allow glance_registry to communicate with mysql - dbus_system_domain is using systemd to lauch applications - add interfaces to allow domains to send kill signals to user mail agents - Remove unnessary access for svirt_lxc domains, add privs for virtd_lxc_t - Lots of new access required for secure containers - Corosync needs sys_admin capability - ALlow colord to create shm - .orc should be allowed to be created by any app that can create gstream home content, thumb_t to be specific - Add boolean to control whether or not mozilla plugins can create random content in the users homedir - Add new interface to allow domains to list msyql_db directories, needed for libra - shutdown has to be allowed to delete etc_runtime_t - Fail2ban needs to read /etc/passwd - Allow ldconfig to create /var/cache/ldconfig - Allow tgtd to read hardware state information - Allow collectd to create packet socket - Allow chronyd to send signal to itself - Allow collectd to read /dev/random - Allow collectd to send signal to itself - firewalld needs to execute restorecon - Allow restorecon and other login domains to execute restorecon- Allow logrotate to getattr on systemd unit files - Add support for tor systemd unit file - Allow apmd to create /var/run/pm-utils with the correct label - Allow l2tpd to send sigkill to pppd - Allow pppd to stream connect to l2tpd - Add label for scripts in /etc/gdm/ - Allow systemd_logind_t to ignore mcs constraints on sigkill - Fix files_filetrans_system_conf_named_files() interface - Add labels for /usr/share/wordpress/wp-includes/*.php - Allow cobbler to get SELinux mode and booleans- Add unconfined_execmem_exec_t as an alias to bin_t - Allow fenced to read snmp var lib files, also allow it to read usr_t - ontaudit access checks on all executables from mozilla_plugin - Allow all user domains to setexec, so that sshd will work properly if it call setexec(NULL) while running withing a user mode - Allow systemd_tmpfiles_t to getattr all pipes and sockets - Allow glance-registry to send system log messages - semanage needs to manage mock lib files/dirs- Add policy for abrt-watch-log - Add definitions for jboss_messaging ports - Allow systemd_tmpfiles to manage printer devices - Allow oddjob to use nsswitch - Fix labeling of log files for postgresql - Allow mozilla_plugin_t to execmem and execstack by default - Allow firewalld to execute shell - Fix /etc/wicd content files to get created with the correct label - Allow mcelog to exec shell - Add ~/.orc as a gstreamer_home_t - /var/spool/postfix/lib64 should be labeled lib_t - mpreaper should be able to list all file system labeled directories - Add support for apache to use openstack - Add labeling for /etc/zipl.conf and zipl binary - Turn on allow_execstack and turn off telepathy transition for final release- More access required for virt_qmf_t - Additional assess required for systemd-logind to support multi-seat - Allow mozilla_plugin to setrlimit - Revert changes to fuse file system to stop deadlock- Allow condor domains to connect to ephemeral ports - More fixes for condor policy - Allow keystone to stream connect to mysqld - Allow mozilla_plugin_t to read generic USB device to support GPS devices - Allow thum to file name transition gstreamer home content - Allow thum to read all non security files - Allow glance_api_t to connect to ephemeral ports - Allow nagios plugins to read /dev/urandom - Allow syslogd to search postfix spool to support postfix chroot env - Fix labeling for /var/spool/postfix/dev - Allow wdmd chown - Label .esd_auth as pulseaudio_home_t - Have no idea why keyring tries to write to /run/user/dwalsh/dconf/user, but we can dontaudit for now- Add support for clamd+systemd - Allow fresclam to execute systemctl to handle clamd - Change labeling for /usr/sbin/rpc.ypasswd.env - Allow yppaswd_t to execute yppaswd_exec_t - Allow yppaswd_t to read /etc/passwd - Gnomekeyring socket has been moved to /run/user/USER/ - Allow samba-net to connect to ldap port - Allow signal for vhostmd - allow mozilla_plugin_t to read user_home_t socket - New access required for secure Linux Containers - zfs now supports xattrs - Allow quantum to execute sudo and list sysfs - Allow init to dbus chat with the firewalld - Allow zebra to read /etc/passwd- Allow svirt_t to create content in the users homedir under ~/.libvirt - Fix label on /var/lib/heartbeat - Allow systemd_logind_t to send kill signals to all processes started by a user - Fuse now supports Xattr Support- upowered needs to setsched on the kernel - Allow mpd_t to manage log files - Allow xdm_t to create /var/run/systemd/multi-session-x - Add rules for missedfont.log to be used by thumb.fc - Additional access required for virt_qmf_t - Allow dhclient to dbus chat with the firewalld - Add label for lvmetad - Allow systemd_logind_t to remove userdomain sock_files - Allow cups to execute usr_t files - Fix labeling on nvidia shared libraries - wdmd_t needs access to sssd and /etc/passwd - Add boolean to allow ftp servers to run in passive mode - Allow namepspace_init_t to relabelto/from a different user system_u from the user the namespace_init running with - Fix using httpd_use_fusefs - Allow chrome_sandbox_nacl to write inherited user tmp files as we allow it for chrome_sandbox- Rename rdate port to time port, and allow gnomeclock to connect to it - We no longer need to transition to ldconfig from rpm, rpm_script, or anaconda - /etc/auto.* should be labeled bin_t - Add httpd_use_fusefs boolean - Add fixes for heartbeat - Allow sshd_t to signal processes that it transitions to - Add condor policy - Allow svirt to create monitors in ~/.libvirt - Allow dovecot to domtrans sendmail to handle sieve scripts - Lot of fixes for cfengine- /var/run/postmaster.* labeling is no longer needed - Alllow drbdadmin to read /dev/urandom - l2tpd_t seems to use ptmx - group+ and passwd+ should be labeled as /etc/passwd - Zarafa-indexer is a socket- Ensure lastlog is labeled correctly - Allow accountsd to read /proc data about gdm - Add fixes for tuned - Add bcfg2 fixes which were discovered during RHEL6 testing - More fixes for gnome-keyring socket being moved - Run semanage as a unconfined domain, and allow initrc_t to create tmpfs_t sym links on shutdown - Fix description for files_dontaudit_read_security_files() interface- Add new policy and man page for bcfg2 - cgconfig needs to use getpw calls - Allow domains that communicate with the keyring to use cache_home_t instead of gkeyringd_tmpt - gnome-keyring wants to create a directory in cache_home_t - sanlock calls getpw- Add numad policy and numad man page - Add fixes for interface bugs discovered by SEWatch - Add /tmp support for squid - Add fix for #799102 * change default labeling for /var/run/slapd.* sockets - Make thumb_t as userdom_home_reader - label /var/lib/sss/mc same as pubconf, so getpw domains can read it - Allow smbspool running as cups_t to stream connect to nmbd - accounts needs to be able to execute passwd on behalf of users - Allow systemd_tmpfiles_t to delete boot flags - Allow dnssec_trigger to connect to apache ports - Allow gnome keyring to create sock_files in ~/.cache - google_authenticator is using .google_authenticator - sandbox running from within firefox is exposing more leaks - Dontaudit thumb to read/write /dev/card0 - Dontaudit getattr on init_exec_t for gnomeclock_t - Allow certmonger to do a transition to certmonger_unconfined_t - Allow dhcpc setsched which is caused by nmcli - Add rpm_exec_t for /usr/sbin/bcfg2 - system cronjobs are sending dbus messages to systemd_logind - Thumnailers read /dev/urand- Allow auditctl getcap - Allow vdagent to use libsystemd-login - Allow abrt-dump-oops to search /etc/abrt - Got these avc's while trying to print a boarding pass from firefox - Devicekit is now putting the media directory under /run/media - Allow thumbnailers to create content in ~/.thumbails directory - Add support for proL2TPd by Dominick Grift - Allow all domains to call getcap - wdmd seems to get a random chown capability check that it does not need - Allow vhostmd to read kernel sysctls- Allow chronyd to read unix - Allow hpfax to read /etc/passwd - Add support matahari vios-proxy-* apps and add virtd_exec_t label for them - Allow rpcd to read quota_db_t - Update to man pages to match latest policy - Fix bug in jockey interface for sepolgen-ifgen - Add initial svirt_prot_exec_t policy- More fixes for systemd from Dan Walsh- Add a new type for /etc/firewalld and allow firewalld to write to this directory - Add definition for ~/Maildir, and allow mail deliver domains to write there - Allow polipo to run from a cron job - Allow rtkit to schedule wine processes - Allow mozilla_plugin_t to acquire a bug, and allow it to transition gnome content in the home dir to the proper label - Allow users domains to send signals to consolehelper domains- More fixes for boinc policy - Allow polipo domain to create its own cache dir and pid file - Add systemctl support to httpd domain - Add systemctl support to polipo, allow NetworkManager to manage the service - Add policy for jockey-backend - Add support for motion daemon which is now covered by zoneminder policy - Allow colord to read/write motion tmpfs - Allow vnstat to search through var_lib_t directories - Stop transitioning to quota_t, from init an sysadm_t- Add svirt_lxc_file_t as a customizable type- Add additional fixes for icmp nagios plugin - Allow cron jobs to open fifo_files from cron, since service script opens /dev/stdin - Add certmonger_unconfined_exec_t - Make sure tap22 device is created with the correct label - Allow staff users to read systemd unit files - Merge in previously built policy - Arpwatch needs to be able to start netlink sockets in order to start - Allow cgred_t to sys_ptrace to look at other DAC Processes- Back port some of the access that was allowed in nsplugin_t - Add definitiona for couchdb ports - Allow nagios to use inherited users ttys - Add git support for mock - Allow inetd to use rdate port - Add own type for rdate port - Allow samba to act as a portmapper - Dontaudit chrome_sandbox attempts to getattr on chr_files in /dev - New fixes needed for samba4 - Allow apps that use lib_t to read lib_t symlinks- Add policy for nove-cert - Add labeling for nova-openstack systemd unit files - Add policy for keystoke- Fix man pages fro domains - Add man pages for SELinux users and roles - Add storage_dev_filetrans_named_fixed_disk() and use it for smartmon - Add policy for matahari-rpcd - nfsd executes mount command on restart - Matahari domains execute renice and setsched - Dontaudit leaked tty in mozilla_plugin_config - mailman is changing to a per instance naming - Add 7600 and 4447 as jboss_management ports - Add fixes for nagios event handlers - Label httpd.event as httpd_exec_t, it is an apache daemon- Add labeling for /var/spool/postfix/dev/log - NM reads sysctl.conf - Iscsi log file context specification fix - Allow mozilla plugins to send dbus messages to user domains that transition to it - Allow mysql to read the passwd file - Allow mozilla_plugin_t to create mozilla home dirs in user homedir - Allow deltacloud to read kernel sysctl - Allow postgresql_t to connectto itselfAllow postgresql_t to connectto itself - Allow postgresql_t to connectto itself - Add login_userdomain attribute for users which can log in using terminal- Allow sysadm_u to reach system_r by default #784011 - Allow nagios plugins to use inherited user terminals - Razor labeling is not used no longer - Add systemd support for matahari - Add port_types to man page, move booleans to the top, fix some english - Add support for matahari-sysconfig-console - Clean up matahari.fc - Fix matahari_admin() interfac - Add labels for/etc/ssh/ssh_host_*.pub keys- Allow ksysguardproces to send system log msgs - Allow boinc setpgid and signull - Allow xdm_t to sys_ptrace to run pidof command - Allow smtpd_t to manage spool files/directories and symbolic links - Add labeling for jetty - Needed changes to get unbound/dnssec to work with openswan- Add user_fonts_t alias xfs_tmp_t - Since depmod now runs as insmod_t we need to write to kernel_object_t - Allow firewalld to dbus chat with networkmanager - Allow qpidd to connect to matahari ports - policykit needs to read /proc for uses not owned by it - Allow systemctl apps to connecto the init stream- Turn on deny_ptrace boolean- Remove pam_selinux.8 man page. There was a conflict.- Add proxy class and read access for gssd_proxy - Separate out the sharing public content booleans - Allow certmonger to execute a script and send signals to apache and dirsrv to reload the certificate - Add label transition for gstream-0.10 and 12 - Add booleans to allow rsync to share nfs and cifs file sytems - chrome_sandbox wants to read the /proc/PID/exe file of the program that executed it - Fix filename transitions for cups files - Allow denyhosts to read "unix" - Add file name transition for locale.conf.new - Allow boinc projects to gconf config files - sssd needs to be able to increase the socket limit under certain loads - sge_execd needs to read /etc/passwd - Allow denyhost to check network state - NetworkManager needs to read sessions data - Allow denyhost to check network state - Allow xen to search virt images directories - Add label for /dev/megaraid_sas_ioctl_node - Add autogenerated man pages- Allow boinc project to getattr on fs - Allow init to execute initrc_state_t - rhev-agent package was rename to ovirt-guest-agent - If initrc_t creates /etc/local.conf then we need to make sure it is labeled correctly - sytemd writes content to /run/initramfs and executes it on shutdown - kdump_t needs to read /etc/mtab, should be back ported to F16 - udev needs to load kernel modules in early system boot- Need to add sys_ptrace back in since reading any content in /proc can cause these accesses - Add additional systemd interfaces which are needed fro *_admin interfaces - Fix bind_admin() interface- Allow firewalld to read urand - Alias java, execmem_mono to bin_t to allow third parties - Add label for kmod - /etc/redhat-lsb contains binaries - Add boolean to allow gitosis to send mail - Add filename transition also for "event20" - Allow systemd_tmpfiles_t to delete all file types - Allow collectd to ipc_lock- make consoletype_exec optional, so we can remove consoletype policy - remove unconfined_permisive.patch - Allow openvpn_t to inherit user home content and tmp content - Fix dnssec-trigger labeling - Turn on obex policy for staff_t - Pem files should not be secret - Add lots of rules to fix AVC's when playing with containers - Fix policy for dnssec - Label ask-passwd directories correctly for systemd- sshd fixes seem to be causing unconfined domains to dyntrans to themselves - fuse file system is now being mounted in /run/user - systemd_logind is sending signals to processes that are dbus messaging with it - Add support for winshadow port and allow iscsid to connect to this port - httpd should be allowed to bind to the http_port_t udp socket - zarafa_var_lib_t can be a lnk_file - A couple of new .xsession-errors files - Seems like user space and login programs need to read logind_sessions_files - Devicekit disk seems to be being launched by systemd - Cleanup handling of setfiles so most of rules in te file - Correct port number for dnssec - logcheck has the home dir set to its cache- Add policy for grindengine MPI jobs- Add new sysadm_secadm.pp module * contains secadm definition for sysadm_t - Move user_mail_domain access out of the interface into the te file - Allow httpd_t to create httpd_var_lib_t directories as well as files - Allow snmpd to connect to the ricci_modcluster stream - Allow firewalld to read /etc/passwd - Add auth_use_nsswitch for colord - Allow smartd to read network state - smartdnotify needs to read /etc/group- Allow gpg and gpg_agent to store sock_file in gpg_secret_t directory - lxdm startup scripts should be labeled bin_t, so confined users will work - mcstransd now creates a pid, needs back port to F16 - qpidd should be allowed to connect to the amqp port - Label devices 010-029 as usb devices - ypserv packager says ypserv does not use tmp_t so removing selinux policy types - Remove all ptrace commands that I believe are caused by the kernel/ps avcs - Add initial Obex policy - Add logging_syslogd_use_tty boolean - Add polipo_connect_all_unreserved bolean - Allow zabbix to connect to ftp port - Allow systemd-logind to be able to switch VTs - Allow apache to communicate with memcached through a sock_file- Fix file_context.subs_dist for now to work with pre usrmove- More /usr move fixes- Add zabbix_can_network boolean - Add httpd_can_connect_zabbix boolean - Prepare file context labeling for usrmove functions - Allow system cronjobs to read kernel network state - Add support for selinux_avcstat munin plugin - Treat hearbeat with corosync policy - Allow corosync to read and write to qpidd shared mem - mozilla_plugin is trying to run pulseaudio - Fixes for new sshd patch for running priv sep domains as the users context - Turn off dontaudit rules when turning on allow_ypbind - udev now reads /etc/modules.d directory- Turn on deny_ptrace boolean for the Rawhide run, so we can test this out - Cups exchanges dbus messages with init - udisk2 needs to send syslog messages - certwatch needs to read /etc/passwd- Add labeling for udisks2 - Allow fsadmin to communicate with the systemd process- Treat Bip with bitlbee policy * Bip is an IRC proxy - Add port definition for interwise port - Add support for ipa_memcached socket - systemd_jounald needs to getattr on all processes - mdadmin fixes * uses getpw - amavisd calls getpwnam() - denyhosts calls getpwall()- Setup labeling of /var/rsa and /var/lib/rsa to allow login programs to write there - bluetooth says they do not use /tmp and want to remove the type - Allow init to transition to colord - Mongod needs to read /proc/sys/vm/zone_reclaim_mode - Allow postfix_smtpd_t to connect to spamd - Add boolean to allow ftp to connect to all ports > 1023 - Allow sendmain to write to inherited dovecot tmp files - setroubleshoot needs to be able to execute rpm to see what version of packages- Merge systemd patch - systemd-tmpfiles wants to relabel /sys/devices/system/cpu/online - Allow deltacloudd dac_override, setuid, setgid caps - Allow aisexec to execute shell - Add use_nfs_home_dirs boolean for ssh-keygen- Fixes to make rawhide boot in enforcing mode with latest systemd changes- Add labeling for /var/run/systemd/journal/syslog - libvirt sends signals to ifconfig - Allow domains that read logind session files to list them- Fixed destined form libvirt-sandbox - Allow apps that list sysfs to also read sympolicy links in this filesystem - Add ubac_constrained rules for chrome_sandbox - Need interface to allow domains to use tmpfs_t files created by the kernel, used by libra - Allow postgresql to be executed by the caller - Standardize interfaces of daemons - Add new labeling for mm-handler - Allow all matahari domains to read network state and etc_runtime_t files- New fix for seunshare, requires seunshare_domains to be able to mounton / - Allow systemctl running as logrotate_t to connect to private systemd socket - Allow tmpwatch to read meminfo - Allow rpc.svcgssd to read supported_krb5_enctype - Allow zarafa domains to read /dev/random and /dev/urandom - Allow snmpd to read dev_snmp6 - Allow procmail to talk with cyrus - Add fixes for check_disk and check_nagios plugins- default trans rules for Rawhide policy - Make sure sound_devices controlC* are labeled correctly on creation - sssd now needs sys_admin - Allow snmp to read all proc_type - Allow to setup users homedir with quota.group- Add httpd_can_connect_ldap() interface - apcupsd_t needs to use seriel ports connected to usb devices - Kde puts procmail mail directory under ~/.local/share - nfsd_t can trigger sys_rawio on tests that involve too many mountpoints, dontaudit for now - Add labeling for /sbin/iscsiuio- Add label for /var/lib/iscan/interpreter - Dont audit writes to leaked file descriptors or redirected output for nacl - NetworkManager needs to write to /sys/class/net/ib*/mode- Allow abrt to request the kernel to load a module - Make sure mozilla content is labeled correctly - Allow tgtd to read system state - More fixes for boinc * allow to resolve dns name * re-write boinc policy to use boinc_domain attribute - Allow munin services plugins to use NSCD services- Allow mozilla_plugin_t to manage mozilla_home_t - Allow ssh derived domain to execute ssh-keygen in the ssh_keygen_t domain - Add label for tumblerd- Fixes for xguest package- Fixes related to /bin, /sbin - Allow abrt to getattr on blk files - Add type for rhev-agent log file - Fix labeling for /dev/dmfm - Dontaudit wicd leaking - Allow systemd_logind_t to look at process info of apps that exchange dbus messages with it - Label /etc/locale.conf correctly - Allow user_mail_t to read /dev/random - Allow postfix-smtpd to read MIMEDefang - Add label for /var/log/suphp.log - Allow swat_t to connect and read/write nmbd_t sock_file - Allow systemd-tmpfiles to setattr for /run/user/gdm/dconf - Allow systemd-tmpfiles to change user identity in object contexts - More fixes for rhev_agentd_t consolehelper policy- Use fs_use_xattr for squashf - Fix procs_type interface - Dovecot has a new fifo_file /var/run/dovecot/stats-mail - Dovecot has a new fifo_file /var/run/stats-mail - Colord does not need to connect to network - Allow system_cronjob to dbus chat with NetworkManager - Puppet manages content, want to make sure it labels everything correctly- Change port 9050 to tor_socks_port_t and then allow openvpn to connect to it - Allow all postfix domains to use the fifo_file - Allow sshd_t to getattr on all file systems in order to generate avc on nfs_t - Allow apmd_t to read grub.cfg - Let firewallgui read the selinux config - Allow systemd-tmpfiles to delete content in /root that has been moved to /tmp - Fix devicekit_manage_pid_files() interface - Allow squid to check the network state - Dontaudit colord getattr on file systems - Allow ping domains to read zabbix_tmp_t files- Allow mcelog_t to create dir and file in /var/run and label it correctly - Allow dbus to manage fusefs - Mount needs to read process state when mounting gluster file systems - Allow collectd-web to read collectd lib files - Allow daemons and system processes started by init to read/write the unix_stream_socket passed in from as stdin/stdout/stderr - Allow colord to get the attributes of tmpfs filesystem - Add sanlock_use_nfs and sanlock_use_samba booleans - Add bin_t label for /usr/lib/virtualbox/VBoxManage- Add ssh_dontaudit_search_home_dir - Changes to allow namespace_init_t to work - Add interface to allow exec of mongod, add port definition for mongod port, 27017 - Label .kde/share/apps/networkmanagement/certificates/ as home_cert_t - Allow spamd and clamd to steam connect to each other - Add policy label for passwd.OLD - More fixes for postfix and postfix maildro - Add ftp support for mozilla plugins - Useradd now needs to manage policy since it calls libsemanage - Fix devicekit_manage_log_files() interface - Allow colord to execute ifconfig - Allow accountsd to read /sys - Allow mysqld-safe to execute shell - Allow openct to stream connect to pcscd - Add label for /var/run/nm-dns-dnsmasq\.conf - Allow networkmanager to chat with virtd_t- Pulseaudio changes - Merge patches- Merge patches back into git repository.- Remove allow_execmem boolean and replace with deny_execmem boolean- Turn back on allow_execmem boolean- Add more MCS fixes to make sandbox working - Make faillog MLS trusted to make sudo_$1_t working - Allow sandbox_web_client_t to read passwd_file_t - Add .mailrc file context - Remove execheap from openoffice domain - Allow chrome_sandbox_nacl_t to read cpu_info - Allow virtd to relabel generic usb which is need if USB device - Fixes for virt.if interfaces to consider chr_file as image file type- Remove Open Office policy - Remove execmem policy- MCS fixes - quota fixes- Remove transitions to consoletype- Make nvidia* to be labeled correctly - Fix abrt_manage_cache() interface - Make filetrans rules optional so base policy will build - Dontaudit chkpwd_t access to inherited TTYS - Make sure postfix content gets created with the correct label - Allow gnomeclock to read cgroup - Fixes for cloudform policy- Check in fixed for Chrome nacl support- Begin removing qemu_t domain, we really no longer need this domain. - systemd_passwd needs dac_overide to communicate with users TTY's - Allow svirt_lxc domains to send kill signals within their container- Remove qemu.pp again without causing a crash- Remove qemu.pp, everything should use svirt_t or stay in its current domain- Allow policykit to talk to the systemd via dbus - Move chrome_sandbox_nacl_t to permissive domains - Additional rules for chrome_sandbox_nacl- Change bootstrap name to nacl - Chrome still needs execmem - Missing role for chrome_sandbox_bootstrap - Add boolean to remove execmem and execstack from virtual machines - Dontaudit xdm_t doing an access_check on etc_t directories- Allow named to connect to dirsrv by default - add ldapmap1_0 as a krb5_host_rcache_t file - Google chrome developers asked me to add bootstrap policy for nacl stuff - Allow rhev_agentd_t to getattr on mountpoints - Postfix_smtpd_t needs access to milters and cleanup seems to read/write postfix_smtpd_t unix_stream_sockets- Fixes for cloudform policies which need to connect to random ports - Make sure if an admin creates modules content it creates them with the correct label - Add port 8953 as a dns port used by unbound - Fix file name transition for alsa and confined users- Turn on mock_t and thumb_t for unconfined domains- Policy update should not modify local contexts- Remove ada policy- Remove tzdata policy - Add labeling for udev - Add cloudform policy - Fixes for bootloader policy- Add policies for nova openstack- Add fixes for nova-stack policy- Allow svirt_lxc_domain to chr_file and blk_file devices if they are in the domain - Allow init process to setrlimit on itself - Take away transition rules for users executing ssh-keygen - Allow setroubleshoot_fixit_t to read /dev/urand - Allow sshd to relbale tunnel sockets - Allow fail2ban domtrans to shorewall in the same way as with iptables - Add support for lnk files in the /var/lib/sssd directory - Allow system mail to connect to courier-authdaemon over an unix stream socket- Add passwd_file_t for /etc/ptmptmp- Dontaudit access checks for all executables, gnome-shell is doing access(EXEC, X_OK) - Make corosync to be able to relabelto cluster lib fies - Allow samba domains to search /var/run/nmbd - Allow dirsrv to use pam - Allow thumb to call getuid - chrome less likely to get mmap_zero bug so removing dontaudit - gimp help-browser has built in javascript - Best guess is that devices named /dev/bsr4096 should be labeled as cpu_device_t - Re-write glance policy- Move dontaudit sys_ptrace line from permissive.te to domain.te - Remove policy for hal, it no longer exists- Don't check md5 size or mtime on certain config files- Remove allow_ptrace and replace it with deny_ptrace, which will remove all ptrace from the system - Remove 2000 dontaudit rules between confined domains on transition and replace with single dontaudit domain domain:process { noatsecure siginh rlimitinh } ;- Fixes for bootloader policy - $1_gkeyringd_t needs to read $HOME/%USER/.local/share/keystore - Allow nsplugin to read /usr/share/config - Allow sa-update to update rules - Add use_fusefs_home_dirs for chroot ssh option - Fixes for grub2 - Update systemd_exec_systemctl() interface - Allow gpg to read the mail spool - More fixes for sa-update running out of cron job - Allow ipsec_mgmt_t to read hardware state information - Allow pptp_t to connect to unreserved_port_t - Dontaudit getattr on initctl in /dev from chfn - Dontaudit getattr on kernel_core from chfn - Add systemd_list_unit_dirs to systemd_exec_systemctl call - Fixes for collectd policy - CHange sysadm_t to create content as user_tmp_t under /tmp- Shrink size of policy through use of attributes for userdomain and apache- Allow virsh to read xenstored pid file - Backport corenetwork fixes from upstream - Do not audit attempts by thumb to search config_home_t dirs (~/.config) - label ~/.cache/telepathy/logger telepathy_logger_cache_home_t - allow thumb to read generic data home files (mime.type)- Allow nmbd to manage sock file in /var/run/nmbd - ricci_modservice send syslog msgs - Stop transitioning from unconfined_t to ldconfig_t, but make sure /etc/ld.so.cache is labeled correctly - Allow systemd_logind_t to manage /run/USER/dconf/user- Fix missing patch from F16- Allow logrotate setuid and setgid since logrotate is supposed to do it - Fixes for thumb policy by grift - Add new nfsd ports - Added fix to allow confined apps to execmod on chrome - Add labeling for additional vdsm directories - Allow Exim and Dovecot SASL - Add label for /var/run/nmbd - Add fixes to make virsh and xen working together - Colord executes ls - /var/spool/cron is now labeled as user_cron_spool_t- Stop complaining about leaked file descriptors during install- Remove java and mono module and merge into execmem- Fixes for thumb policy and passwd_file_t- Fixes caused by the labeling of /etc/passwd - Add thumb.patch to transition unconfined_t to thumb_t for Rawhide- Add support for Clustered Samba commands - Allow ricci_modrpm_t to send log msgs - move permissive virt_qmf_t from virt.te to permissivedomains.te - Allow ssh_t to use kernel keyrings - Add policy for libvirt-qmf and more fixes for linux containers - Initial Polipo - Sanlock needs to run ranged in order to kill svirt processes - Allow smbcontrol to stream connect to ctdbd- Add label for /etc/passwd- Change unconfined_domains to permissive for Rawhide - Add definition for the ephemeral_ports- Make mta_role() active - Allow asterisk to connect to jabber client port - Allow procmail to read utmp - Add NIS support for systemd_logind_t - Allow systemd_logind_t to manage /run/user/$USER/dconf dir which is labeled as config_home_t - Fix systemd_manage_unit_dirs() interface - Allow ssh_t to manage directories passed into it - init needs to be able to create and delete unit file directories - Fix typo in apache_exec_sys_script - Add ability for logrotate to transition to awstat domain- Change screen to use screen_domain attribute and allow screen_domains to read all process domain state - Add SELinux support for ssh pre-auth net process in F17 - Add logging_syslogd_can_sendmail boolean- Add definition for ephemeral ports - Define user_tty_device_t as a customizable_type- Needs to require a new version of checkpolicy - Interface fixes- Allow sanlock to manage virt lib files - Add virt_use_sanlock booelan - ksmtuned is trying to resolve uids - Make sure .gvfs is labeled user_home_t in the users home directory - Sanlock sends kill signals and needs the kill capability - Allow mockbuild to work on nfs homedirs - Fix kerberos_manage_host_rcache() interface - Allow exim to read system state- Allow systemd-tmpfiles to set the correct labels on /var/run, /tmp and other files - We want any file type that is created in /tmp by a process running as initrc_t to be labeled initrc_tmp_t- Allow collectd to read hardware state information - Add loop_control_device_t - Allow mdadm to request kernel to load module - Allow domains that start other domains via systemctl to search unit dir - systemd_tmpfilses, needs to list any file systems mounted on /tmp - No one can explain why radius is listing the contents of /tmp, so we will dontaudit - If I can manage etc_runtime files, I should be able to read the links - Dontaudit hostname writing to mock library chr_files - Have gdm_t setup labeling correctly in users home dir - Label content unde /var/run/user/NAME/dconf as config_home_t - Allow sa-update to execute shell - Make ssh-keygen working with fips_enabled - Make mock work for staff_t user - Tighten security on mock_t- removing unconfined_notrans_t no longer necessary - Clean up handling of secure_mode_insmod and secure_mode_policyload - Remove unconfined_mount_t- Add exim_exec_t label for /usr/sbin/exim_tidydb - Call init_dontaudit_rw_stream_socket() interface in mta policy - sssd need to search /var/cache/krb5rcache directory - Allow corosync to relabel own tmp files - Allow zarafa domains to send system log messages - Allow ssh to do tunneling - Allow initrc scripts to sendto init_t unix_stream_socket - Changes to make sure dmsmasq and virt directories are labeled correctly - Changes needed to allow sysadm_t to manage systemd unit files - init is passing file descriptors to dbus and on to system daemons - Allow sulogin additional access Reported by dgrift and Jeremy Miller - Steve Grubb believes that wireshark does not need this access - Fix /var/run/initramfs to stop restorecon from looking at - pki needs another port - Add more labels for cluster scripts - Allow apps that manage cgroup_files to manage cgroup link files - Fix label on nfs-utils scripts directories - Allow gatherd to read /dev/rand and /dev/urand- pki needs another port - Add more labels for cluster scripts - Fix label on nfs-utils scripts directories - Fixes for cluster - Allow gatherd to read /dev/rand and /dev/urand - abrt leaks fifo files- Add glance policy - Allow mdadm setsched - /var/run/initramfs should not be relabeled with a restorecon run - memcache can be setup to override sys_resource - Allow httpd_t to read tetex data - Allow systemd_tmpfiles to delete kernel modules left in /tmp directory.- Allow Postfix to deliver to Dovecot LMTP socket - Ignore bogus sys_module for lldpad - Allow chrony and gpsd to send dgrams, gpsd needs to write to the real time clock - systemd_logind_t sets the attributes on usb devices - Allow hddtemp_t to read etc_t files - Add permissivedomains module - Move all permissive domains calls to permissivedomain.te - Allow pegasis to send kill signals to other UIDs- Allow insmod_t to use fds leaked from devicekit - dontaudit getattr between insmod_t and init_t unix_stream_sockets - Change sysctl unit file interfaces to use systemctl - Add support for chronyd unit file - Allow mozilla_plugin to read gnome_usr_config - Add policy for new gpsd - Allow cups to create kerberos rhost cache files - Add authlogin_filetrans_named_content, to unconfined_t to make sure shadow and other log files get labeled correctly- Make users_extra and seusers.final into config(noreplace) so semanage users and login does not get overwritten- Add policy for sa-update being run out of cron jobs - Add create perms to postgresql_manage_db - ntpd using a gps has to be able to read/write generic tty_device_t - If you disable unconfined and unconfineduser, rpm needs more privs to manage /dev - fix spec file - Remove qemu_domtrans_unconfined() interface - Make passenger working together with puppet - Add init_dontaudit_rw_stream_socket interface - Fixes for wordpress- Turn on allow_domain_fd_use boolean on F16 - Allow syslog to manage all log files - Add use_fusefs_home_dirs boolean for chrome - Make vdagent working with confined users - Add abrt_handle_event_t domain for ABRT event scripts - Labeled /usr/sbin/rhnreg_ks as rpm_exec_t and added changes related to this change - Allow httpd_git_script_t to read passwd data - Allow openvpn to set its process priority when the nice parameter is used- livecd fixes - spec file fixes- fetchmail can use kerberos - ksmtuned reads in shell programs - gnome_systemctl_t reads the process state of ntp - dnsmasq_t asks the kernel to load multiple kernel modules - Add rules for domains executing systemctl - Bogus text within fc file- Add cfengine policy- Add abrt_domain attribute - Allow corosync to manage cluster lib files - Allow corosync to connect to the system DBUS- Add sblim, uuidd policies - Allow kernel_t dyntrasition to init_t- init_t need setexec - More fixes of rules which cause an explosion in rules by Dan Walsh- Allow rcsmcertd to perform DNS name resolution - Add dirsrvadmin_unconfined_script_t domain type for 389-ds admin scripts - Allow tmux to run as screen - New policy for collectd - Allow gkeyring_t to interact with all user apps - Add rules to allow firstboot to run on machines with the unconfined.pp module removed- Allow systemd_logind to send dbus messages with users - allow accountsd to read wtmp file - Allow dhcpd to get and set capabilities- Fix oracledb_port definition - Allow mount to mounton the selinux file system - Allow users to list /var directories- systemd fixes- Add initial policy for abrt_dump_oops_t - xtables-multi wants to getattr of the proc fs - Smoltclient is connecting to abrt - Dontaudit leaked file descriptors to postdrop - Allow abrt_dump_oops to look at kernel sysctls - Abrt_dump_oops_t reads kernel ring buffer - Allow mysqld to request the kernel to load modules - systemd-login needs fowner - Allow postfix_cleanup_t to searh maildrop- Initial systemd_logind policy - Add policy for systemd_logger and additional proivs for systemd_logind - More fixes for systemd policies- Allow setsched for virsh - Systemd needs to impersonate cups, which means it needs to create tcp_sockets in cups_t domain, as well as manage spool directories - iptables: the various /sbin/ip6?tables.* are now symlinks for /sbin/xtables-multi- A lot of users are running yum -y update while in /root which is causing ldconfig to list the contents, adding dontaudit - Allow colord to interact with the users through the tmpfs file system - Since we changed the label on deferred, we need to allow postfix_qmgr_t to be able to create maildrop_t files - Add label for /var/log/mcelog - Allow asterisk to read /dev/random if it uses TLS - Allow colord to read ini files which are labeled as bin_t - Allow dirsrvadmin sys_resource and setrlimit to use ulimit - Systemd needs to be able to create sock_files for every label in /var/run directory, cupsd being the first. - Also lists /var and /var/spool directories - Add openl2tpd to l2tpd policy - qpidd is reading the sysfs file- Change usbmuxd_t to dontaudit attempts to read chr_file - Add mysld_safe_exec_t for libra domains to be able to start private mysql domains - Allow pppd to search /var/lock dir - Add rhsmcertd policy- Update to upstream- More fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git- Fix spec file to not report Verify errors- Add dspam policy - Add lldpad policy - dovecot auth wants to search statfs #713555 - Allow systemd passwd apps to read init fifo_file - Allow prelink to use inherited terminals - Run cherokee in the httpd_t domain - Allow mcs constraints on node connections - Implement pyicqt policy - Fixes for zarafa policy - Allow cobblerd to send syslog messages- Add policy.26 to the payload - Remove olpc stuff - Remove policygentool- Fixes for zabbix - init script needs to be able to manage sanlock_var_run_... - Allow sandlock and wdmd to create /var/run directories... - mixclip.so has been compiled correctly - Fix passenger policy module name- Add mailscanner policy from dgrift - Allow chrome to optionally be transitioned to - Zabbix needs these rules when starting the zabbix_server_mysql - Implement a type for freedesktop openicc standard (~/.local/share/icc) - Allow system_dbusd_t to read inherited icc_data_home_t files. - Allow colord_t to read icc_data_home_t content. #706975 - Label stuff under /usr/lib/debug as if it was labeled under /- Fixes for sanlock policy - Fixes for colord policy - Other fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log- Add rhev policy module to modules-targeted.conf- Lot of fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log- Allow logrotate to execute systemctl - Allow nsplugin_t to getattr on gpmctl - Fix dev_getattr_all_chr_files() interface - Allow shorewall to use inherited terms - Allow userhelper to getattr all chr_file devices - sandbox domains should be able to getattr and dontaudit search of sysctl_kernel_t - Fix labeling for ABRT Retrace Server- Dontaudit sys_module for ifconfig - Make telepathy and gkeyringd daemon working with confined users - colord wants to read files in users homedir - Remote login should be creating user_tmp_t not its own tmp files- Fix label for /usr/share/munin/plugins/munin_* plugins - Add support for zarafa-indexer - Fix boolean description - Allow colord to getattr on /proc/scsi/scsi - Add label for /lib/upstart/init - Colord needs to list /mnt- Forard port changes from F15 for telepathy - NetworkManager should be allowed to use /dev/rfkill - Fix dontaudit messages to say Domain to not audit - Allow telepathy domains to read/write gnome_cache files - Allow telepathy domains to call getpw - Fixes for colord and vnstatd policy- Allow init_t getcap and setcap - Allow namespace_init_t to use nsswitch - aisexec will execute corosync - colord tries to read files off noxattr file systems - Allow init_t getcap and setcap- Add support for ABRT retrace server - Allow user_t and staff_t access to generic scsi to handle locally plugged in scanners - Allow telepath_msn_t to read /proc/PARENT/cmdline - ftpd needs kill capability - Allow telepath_msn_t to connect to sip port - keyring daemon does not work on nfs homedirs - Allow $1_sudo_t to read default SELinux context - Add label for tgtd sock file in /var/run/ - Add apache_exec_rotatelogs interface - allow all zaraha domains to signal themselves, server writes to /tmp - Allow syslog to read the process state - Add label for /usr/lib/chromium-browser/chrome - Remove the telepathy transition from unconfined_t - Dontaudit sandbox domains trying to mounton sandbox_file_t, this is caused by fuse mounts - Allow initrc_t domain to manage abrt pid files - Add support for AEOLUS project - Virt_admin should be allowed to manage images and processes - Allow plymountd to send signals to init - Change labeling of fping6- Add filename transitions- Fixes for zarafa policy - Add support for AEOLUS project - Change labeling of fping6 - Allow plymountd to send signals to init - Allow initrc_t domain to manage abrt pid files - Virt_admin should be allowed to manage images and processes- xdm_t needs getsession for switch user - Every app that used to exec init is now execing systemdctl - Allow squid to manage krb5_host_rcache_t files - Allow foghorn to connect to agentx port - Fixes for colord policy- Add Dan's patch to remove 64 bit variants - Allow colord to use unix_dgram_socket - Allow apps that search pids to read /var/run if it is a lnk_file - iscsid_t creates its own directory - Allow init to list var_lock_t dir - apm needs to verify user accounts auth_use_nsswitch - Add labeling for systemd unit files - Allow gnomeclok to enable ntpd service using systemctl - systemd_systemctl_t domain was added - Add label for matahari-broker.pid file - We want to remove untrustedmcsprocess from ability to read /proc/pid - Fixes for matahari policy - Allow system_tmpfiles_t to delete user_home_t files in the /tmp dir - Allow sshd to transition to sysadm_t if ssh_sysadm_login is turned on- Fix typo- Add /var/run/lock /var/lock definition to file_contexts.subs - nslcd_t is looking for kerberos cc files - SSH_USE_STRONG_RNG is 1 which requires /dev/random - Fix auth_rw_faillog definition - Allow sysadm_t to set attributes on fixed disks - allow user domains to execute lsof and look at application sockets - prelink_cron job calls telinit -u if init is rewritten - Fixes to run qemu_t from staff_t- Fix label for /var/run/udev to udev_var_run_t - Mock needs to be able to read network state- Add file_contexts.subs to handle /run and /run/lock - Add other fixes relating to /run changes from F15 policy- Allow $1_sudo_t and $1_su_t open access to user terminals - Allow initrc_t to use generic terminals - Make Makefile/Rules.modular run sepolgen-ifgen during build to check if files for bugs -systemd is going to be useing /run and /run/lock for early bootup files. - Fix some comments in rlogin.if - Add policy for KDE backlighthelper - sssd needs to read ~/.k5login in nfs, cifs or fusefs file systems - sssd wants to read .k5login file in users homedir - setroubleshoot reads executables to see if they have TEXTREL - Add /var/spool/audit support for new version of audit - Remove kerberos_connect_524() interface calling - Combine kerberos_master_port_t and kerberos_port_t - systemd has setup /dev/kmsg as stderr for apps it executes - Need these access so that init can impersonate sockets on unix_dgram_socket- Remove some unconfined domains - Remove permissive domains - Add policy-term.patch from Dan- Fix multiple specification for boot.log - devicekit leaks file descriptors to setfiles_t - Change all all_nodes to generic_node and all_if to generic_if - Should not use deprecated interface - Switch from using all_nodes to generic_node and from all_if to generic_if - Add support for xfce4-notifyd - Fix file context to show several labels as SystemHigh - seunshare needs to be able to mounton nfs/cifs/fusefs homedirs - Add etc_runtime_t label for /etc/securetty - Fixes to allow xdm_t to start gkeyringd_USERTYPE_t directly - login.krb needs to be able to write user_tmp_t - dirsrv needs to bind to port 7390 for dogtag - Fix a bug in gpg policy - gpg sends audit messages - Allow qpid to manage matahari files- Initial policy for matahari - Add dev_read_watchdog - Allow clamd to connect clamd port - Add support for kcmdatetimehelper - Allow shutdown to setrlimit and sys_nice - Allow systemd_passwd to talk to /dev/log before udev or syslog is running - Purge chr_file and blk files on /tmp - Fixes for pads - Fixes for piranha-pulse - gpg_t needs to be able to encyprt anything owned by the user- mozilla_plugin_tmp_t needs to be treated as user tmp files - More dontaudits of writes from readahead - Dontaudit readahead_t file_type:dir write, to cover up kernel bug - systemd_tmpfiles needs to relabel faillog directory as well as the file - Allow hostname and consoletype to r/w inherited initrc_tmp_t files handline hostname >> /tmp/myhost- Add policykit fixes from Tim Waugh - dontaudit sandbox domains sandbox_file_t:dir mounton - Add new dontaudit rules for sysadm_dbusd_t - Change label for /var/run/faillock * other fixes which relate with this change- Update to upstream - Fixes for telepathy - Add port defition for ssdp port - add policy for /bin/systemd-notify from Dan - Mount command requires users read mount_var_run_t - colord needs to read konject_uevent_socket - User domains connect to the gkeyring socket - Add colord policy and allow user_t and staff_t to dbus chat with it - Add lvm_exec_t label for kpartx - Dontaudit reading the mail_spool_t link from sandbox -X - systemd is creating sockets in avahi_var_run and system_dbusd_var_run- gpg_t needs to talk to gnome-keyring - nscd wants to read /usr/tmp->/var/tmp to generate randomziation in unixchkpwd - enforce MCS labeling on nodes - Allow arpwatch to read meminfo - Allow gnomeclock to send itself signals - init relabels /dev/.udev files on boot - gkeyringd has to transition back to staff_t when it runs commands in bin_t or shell_exec_t - nautilus checks access on /media directory before mounting usb sticks, dontaudit access_check on mnt_t - dnsmasq can run as a dbus service, needs acquire service - mysql_admin should be allowed to connect to mysql service - virt creates monitor sockets in the users home dir- Allow usbhid-ups to read hardware state information - systemd-tmpfiles has moved - Allo cgroup to sys_tty_config - For some reason prelink is attempting to read gconf settings - Add allow_daemons_use_tcp_wrapper boolean - Add label for ~/.cache/wocky to make telepathy work in enforcing mode - Add label for char devices /dev/dasd* - Fix for apache_role - Allow amavis to talk to nslcd - allow all sandbox to read selinux poilcy config files - Allow cluster domains to use the system bus and send each other dbus messages- Update to upstream- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Update to ref policy - cgred needs chown capability - Add /dev/crash crash_dev_t - systemd-readahead wants to use fanotify which means readahead_t needs sys_admin capability- New labeling for postfmulti #675654 - dontaudit xdm_t listing noxattr file systems - dovecot-auth needs to be able to connect to mysqld via the network as well as locally - shutdown is passed stdout to a xdm_log_t file - smartd creates a fixed disk device - dovecot_etc_t contains a lnk_file that domains need to read - mount needs to be able to read etc_runtim_t:lnk_file since in rawhide this is a link created at boot- syslog_t needs syslog capability - dirsrv needs to be able to create /var/lib/snmp - Fix labeling for dirsrv - Fix for dirsrv policy missing manage_dirs_pattern - corosync needs to delete clvm_tmpfs_t files - qdiskd needs to list hugetlbfs - Move setsched to sandbox_x_domain, so firefox can run without network access - Allow hddtemp to read removable devices - Adding syslog and read_policy permissions to policy * syslog Allow unconfined, sysadm_t, secadm_t, logadm_t * read_policy allow unconfined, sysadm_t, secadm_t, staff_t on Targeted allow sysadm_t (optionally), secadm_t on MLS - mdadm application will write into /sys/.../uevent whenever arrays are assembled or disassembled.- Add tcsd policy- ricci_modclusterd_t needs to bind to rpc ports 500-1023 - Allow dbus to use setrlimit to increase resoueces - Mozilla_plugin is leaking to sandbox - Allow confined users to connect to lircd over unix domain stream socket which allow to use remote control - Allow awstats to read squid logs - seunshare needs to manage tmp_t - apcupsd cgi scripts have a new directory- Fix xserver_dontaudit_read_xdm_pid - Change oracle_port_t to oracledb_port_t to prevent conflict with satellite - Allow dovecot_deliver_t to read/write postfix_master_t:fifo_file. * These fifo_file is passed from postfix_master_t to postfix_local_t to dovecot_deliver_t - Allow readahead to manage readahead pid dirs - Allow readahead to read all mcs levels - Allow mozilla_plugin_t to use nfs or samba homedirs- Allow nagios plugin to read /proc/meminfo - Fix for mozilla_plugin - Allow samba_net_t to create /etc/keytab - pppd_t setting up vpns needs to run unix_chkpwd, setsched its process and write wtmp_t - nslcd can read user credentials - Allow nsplugin to delete mozilla_plugin_tmpfs_t - abrt tries to create dir in rpm_var_lib_t - virt relabels fifo_files - sshd needs to manage content in fusefs homedir - mock manages link files in cache dir- nslcd needs setsched and to read /usr/tmp - Invalid call in likewise policy ends up creating a bogus role - Cannon puts content into /var/lib/bjlib that cups needs to be able to write - Allow screen to create screen_home_t in /root - dirsrv sends syslog messages - pinentry reads stuff in .kde directory - Add labels for .kde directory in homedir - Treat irpinit, iprupdate, iprdump services with raid policy- NetworkManager wants to read consolekit_var_run_t - Allow readahead to create /dev/.systemd/readahead - Remove permissive domains - Allow newrole to run namespace_init- Add sepgsql_contexts file- Update to upstream- Add oracle ports and allow apache to connect to them if the connect_db boolean is turned on - Add puppetmaster_use_db boolean - Fixes for zarafa policy - Fixes for gnomeclock poliy - Fix systemd-tmpfiles to use auth_use_nsswitch- gnomeclock executes a shell - Update for screen policy to handle pipe in homedir - Fixes for polyinstatiated homedir - Fixes for namespace policy and other fixes related to polyinstantiation - Add namespace policy - Allow dovecot-deliver transition to sendmail which is needed by sieve scripts - Fixes for init, psad policy which relate with confined users - Do not audit bootloader attempts to read devicekit pid files - Allow nagios service plugins to read /proc- Add firewalld policy - Allow vmware_host to read samba config - Kernel wants to read /proc Fix duplicate grub def in cobbler - Chrony sends mail, executes shell, uses fifo_file and reads /proc - devicekitdisk getattr all file systems - sambd daemon writes wtmp file - libvirt transitions to dmidecode- Add initial policy for system-setup-keyboard which is now daemon - Label /var/lock/subsys/shorewall as shorewall_lock_t - Allow users to communicate with the gpg_agent_t - Dontaudit mozilla_plugin_t using the inherited terminal - Allow sambagui to read files in /usr - webalizer manages squid log files - Allow unconfined domains to bind ports to raw_ip_sockets - Allow abrt to manage rpm logs when running yum - Need labels for /var/run/bittlebee - Label .ssh under amanda - Remove unused genrequires for virt_domain_template - Allow virt_domain to use fd inherited from virtd_t - Allow iptables to read shorewall config- Gnome apps list config_home_t - mpd creates lnk files in homedir - apache leaks write to mail apps on tmp files - /var/stockmaniac/templates_cache contains log files - Abrt list the connects of mount_tmp_t dirs - passwd agent reads files under /dev and reads utmp file - squid apache script connects to the squid port - fix name of plymouth log file - teamviewer is a wine app - allow dmesg to read system state - Stop labeling files under /var/lib/mock so restorecon will not go into this - nsplugin needs to read network state for google talk- Allow xdm and syslog to use /var/log/boot.log - Allow users to communicate with mozilla_plugin and kill it - Add labeling for ipv6 and dhcp- New labels for ghc http content - nsplugin_config needs to read urand, lvm now calls setfscreate to create dev - pm-suspend now creates log file for append access so we remove devicekit_wri - Change authlogin_use_sssd to authlogin_nsswitch_use_ldap - Fixes for greylist_milter policy- Update to upstream - Fixes for systemd policy - Fixes for passenger policy - Allow staff users to run mysqld in the staff_t domain, akonadi needs this - Add bin_t label for /usr/share/kde4/apps/kajongg/kajongg.py - auth_use_nsswitch does not need avahi to read passwords,needed for resolving data - Dontaudit (xdm_t) gok attempting to list contents of /var/account - Telepathy domains need to read urand - Need interface to getattr all file classes in a mock library for setroubleshoot- Update selinux policy to handle new /usr/share/sandbox/start script- Update to upstream - Fix version of policy in spec file- Allow sandbox to run on nfs partitions, fixes for systemd_tmpfs - remove per sandbox domains devpts types - Allow dkim-milter sending signal to itself- Allow domains that transition to ping or traceroute, kill them - Allow user_t to conditionally transition to ping_t and traceroute_t - Add fixes to systemd- tools, including new labeling for systemd-fsck, systemd-cryptsetup- Turn on systemd policy - mozilla_plugin needs to read certs in the homedir. - Dontaudit leaked file descriptors from devicekit - Fix ircssi to use auth_use_nsswitch - Change to use interface without param in corenet to disable unlabelednet packets - Allow init to relabel sockets and fifo files in /dev - certmonger needs dac* capabilities to manage cert files not owned by root - dovecot needs fsetid to change group membership on mail - plymouthd removes /var/log/boot.log - systemd is creating symlinks in /dev - Change label on /etc/httpd/alias to be all cert_t- Fixes for clamscan and boinc policy - Add boinc_project_t setpgid - Allow alsa to create tmp files in /tmp- Push fixes to allow disabling of unlabeled_t packet access - Enable unlabelednet policy- Fixes for lvm to work with systemd- Fix the label for wicd log - plymouthd creates force-display-on-active-vt file - Allow avahi to request the kernel to load a module - Dontaudit hal leaks - Fix gnome_manage_data interface - Add new interface corenet_packet to define a type as being an packet_type. - Removed general access to packet_type from icecast and squid. - Allow mpd to read alsa config - Fix the label for wicd log - Add systemd policy- Fix gnome_manage_data interface - Dontaudit sys_ptrace capability for iscsid - Fixes for nagios plugin policy- Fix cron to run ranged when started by init - Fix devicekit to use log files - Dontaudit use of devicekit_var_run_t for fstools - Allow init to setattr on logfile directories - Allow hald to manage files in /var/run/pm-utils/ dir which is now labeled as devicekit_var_run_t- Fix up handling of dnsmasq_t creating /var/run/libvirt/network - Turn on sshd_forward_ports boolean by default - Allow sysadmin to dbus chat with rpm - Add interface for rw_tpm_dev - Allow cron to execute bin - fsadm needs to write sysfs - Dontaudit consoletype reading /var/run/pm-utils - Lots of new privs fro mozilla_plugin_t running java app, make mozilla_plugin - certmonger needs to manage dirsrv data - /var/run/pm-utils should be labeled as devicekit_var_run_t- fixes to allow /var/run and /var/lock as tmpfs - Allow chrome sandbox to connect to web ports - Allow dovecot to listem on lmtp and sieve ports - Allov ddclient to search sysctl_net_t - Transition back to original domain if you execute the shell- Remove duplicate declaration- Update to upstream - Cleanup for sandbox - Add attribute to be able to select sandbox types- Allow ddclient to fix file mode bits of ddclient conf file - init leaks file descriptors to daemons - Add labels for /etc/lirc/ and - Allow amavis_t to exec shell - Add label for gssd_tmp_t for /var/tmp/nfs_0- Put back in lircd_etc_t so policy will install- Turn on allow_postfix_local_write_mail_spool - Allow initrc_t to transition to shutdown_t - Allow logwatch and cron to mls_read_to_clearance for MLS boxes - Allow wm to send signull to all applications and receive them from users - lircd patch from field - Login programs have to read /etc/samba - New programs under /lib/systemd - Abrt needs to read config files- Update to upstream - Dontaudit leaked sockets from userdomains to user domains - Fixes for mcelog to handle scripts - Apply patch from Ruben Kerkhof - Allow syslog to search spool dirs- Allow nagios plugins to read usr files - Allow mysqld-safe to send system log messages - Fixes fpr ddclient policy - Fix sasl_admin interface - Allow apache to search zarafa config - Allow munin plugins to search /var/lib directory - Allow gpsd to read sysfs_t - Fix labels on /etc/mcelog/triggers to bin_t- Remove saslauthd_tmp_t and transition tmp files to krb5_host_rcache_t - Allow saslauthd_t to create krb5_host_rcache_t files in /tmp - Fix xserver interface - Fix definition of /var/run/lxdm- Turn on mediawiki policy - kdump leaks kdump_etc_t to ifconfig, add dontaudit - uux needs to transition to uucpd_t - More init fixes relabels man,faillog - Remove maxima defs in libraries.fc - insmod needs to be able to create tmpfs_t files - ping needs setcap- Allow groupd transition to fenced domain when executes fence_node - Fixes for rchs policy - Allow mpd to be able to read samba/nfs files- Fix up corecommands.fc to match upstream - Make sure /lib/systemd/* is labeled init_exec_t - mount wants to setattr on all mountpoints - dovecot auth wants to read dovecot etc files - nscd daemon looks at the exe file of the comunicating daemon - openvpn wants to read utmp file - postfix apps now set sys_nice and lower limits - remote_login (telnetd/login) wants to use telnetd_devpts_t and user_devpts_t to work correctly - Also resolves nsswitch - Fix labels on /etc/hosts.* - Cleanup to make upsteam patch work - allow abrt to read etc_runtime_t- Add conflicts for dirsrv package- Update to upstream - Add vlock policy- Fix sandbox to work on nfs homedirs - Allow cdrecord to setrlimit - Allow mozilla_plugin to read xauth - Change label on systemd-logger to syslogd_exec_t - Install dirsrv policy from dirsrv package- Add virt_home_t, allow init to setattr on xserver_tmp_t and relabel it - Udev needs to stream connect to init and kernel - Add xdm_exec_bootloader boolean, which allows xdm to execute /sbin/grub and read files in /boot directory- Allow NetworkManager to read openvpn_etc_t - Dontaudit hplip to write of /usr dirs - Allow system_mail_t to create /root/dead.letter as mail_home_t - Add vdagent policy for spice agent daemon- Dontaudit sandbox sending sigkill to all user domains - Add policy for rssh_chroot_helper - Add missing flask definitions - Allow udev to relabelto removable_t - Fix label on /var/log/wicd.log - Transition to initrc_t from init when executing bin_t - Add audit_access permissions to file - Make removable_t a device_node - Fix label on /lib/systemd/*- Fixes for systemd to manage /var/run - Dontaudit leaks by firstboot- Allow chome to create netlink_route_socket - Add additional MATHLAB file context - Define nsplugin as an application_domain - Dontaudit sending signals from sandboxed domains to other domains - systemd requires init to build /tmp /var/auth and /var/lock dirs - mount wants to read devicekit_power /proc/ entries - mpd wants to connect to soundd port - Openoffice causes a setattr on a lib_t file for normal users, add dontaudit - Treat lib_t and textrel_shlib_t directories the same - Allow mount read access on virtual images- Allow sandbox_x_domains to work with nfs/cifs/fusefs home dirs. - Allow devicekit_power to domtrans to mount - Allow dhcp to bind to udp ports > 1024 to do named stuff - Allow ssh_t to exec ssh_exec_t - Remove telepathy_butterfly_rw_tmp_files(), dev_read_printk() interfaces which are nolonger used - Fix clamav_append_log() intefaces - Fix 'psad_rw_fifo_file' interface- Allow cobblerd to list cobler appache content- Fixup for the latest version of upowed - Dontaudit sandbox sending SIGNULL to desktop apps- Update to upstream-Mount command from a confined user generates setattr on /etc/mtab file, need to dontaudit this access - dovecot-auth_t needs ipc_lock - gpm needs to use the user terminal - Allow system_mail_t to append ~/dead.letter - Allow NetworkManager to edit /etc/NetworkManager/NetworkManager.conf - Add pid file to vnstatd - Allow mount to communicate with gfs_controld - Dontaudit hal leaks in setfiles- Lots of fixes for systemd - systemd now executes readahead and tmpwatch type scripts - Needs to manage random seed- Allow smbd to use sys_admin - Remove duplicate file context for tcfmgr - Update to upstream- Fix fusefs handling - Do not allow sandbox to manage nsplugin_rw_t - Allow mozilla_plugin_t to connecto its parent - Allow init_t to connect to plymouthd running as kernel_t - Add mediawiki policy - dontaudit sandbox sending signals to itself. This can happen when they are running at different mcs. - Disable transition from dbus_session_domain to telepathy for F14 - Allow boinc_project to use shm - Allow certmonger to search through directories that contain certs - Allow fail2ban the DAC Override so it can read log files owned by non root users- Start adding support for use_fusefs_home_dirs - Add /var/lib/syslog directory file context - Add /etc/localtime as locale file context- Turn off default transition to mozilla_plugin and telepathy domains from unconfined user - Turn off iptables from unconfined user - Allow sudo to send signals to any domains the user could have transitioned to. - Passwd in single user mode needs to talk to console_device_t - Mozilla_plugin_t needs to connect to web ports, needs to write to video device, and read alsa_home_t alsa setsup pulseaudio - locate tried to read a symbolic link, will dontaudit - New labels for telepathy-sunshine content in homedir - Google is storing other binaries under /opt/google/talkplugin - bluetooth/kernel is creating unlabeled_t socket that I will allow it to use until kernel fixes bug - Add boolean for unconfined_t transition to mozilla_plugin_t and telepathy domains, turned off in F14 on in F15 - modemmanger and bluetooth send dbus messages to devicekit_power - Samba needs to getquota on filesystems labeld samba_share_t- Dontaudit attempts by xdm_t to write to bin_t for kdm - Allow initrc_t to manage system_conf_t- Fixes to allow mozilla_plugin_t to create nsplugin_home_t directory. - Allow mozilla_plugin_t to create tcp/udp/netlink_route sockets - Allow confined users to read xdm_etc_t files - Allow xdm_t to transition to xauth_t for lxdm program- Rearrange firewallgui policy to be more easily updated to upstream, dontaudit search of /home - Allow clamd to send signals to itself - Allow mozilla_plugin_t to read user home content. And unlink pulseaudio shm. - Allow haze to connect to yahoo chat and messenger port tcp:5050. Bz #637339 - Allow guest to run ps command on its processes by allowing it to read /proc - Allow firewallgui to sys_rawio which seems to be required to setup masqerading - Allow all domains to search through default_t directories, in order to find differnet labels. For example people serring up /foo/bar to be share via samba. - Add label for /var/log/slim.log- Pull in cleanups from dgrift - Allow mozilla_plugin_t to execute mozilla_home_t - Allow rpc.quota to do quotamod- Cleanup policy via dgrift - Allow dovecot_deliver to append to inherited log files - Lots of fixes for consolehelper- Fix up Xguest policy- Add vnstat policy - allow libvirt to send audit messages - Allow chrome-sandbox to search nfs_t- Update to upstream- Add the ability to send audit messages to confined admin policies - Remove permissive domain from cmirrord and dontaudit sys_tty_config - Split out unconfined_domain() calls from other unconfined_ calls so we can d - virt needs to be able to read processes to clearance for MLS- Allow all domains that can use cgroups to search tmpfs_t directory - Allow init to send audit messages- Update to upstream- Allow mdadm_t to create files and sock files in /dev/md/- Add policy for ajaxterm- Handle /var/db/sudo - Allow pulseaudio to read alsa config - Allow init to send initrc_t dbus messagesAllow iptables to read shorewall tmp files Change chfn and passwd to use auth_use_pam so they can send dbus messages to fpr intd label vlc as an execmem_exec_t Lots of fixes for mozilla_plugin to run google vidio chat Allow telepath_msn to execute ldconfig and its own tmp files Fix labels on hugepages Allow mdadm to read files on /dev Remove permissive domains and change back to unconfined Allow freshclam to execute shell and bin_t Allow devicekit_power to transition to dhcpc Add boolean to allow icecast to connect to any port- Merge upstream fix of mmap_zero - Allow mount to write files in debugfs_t - Allow corosync to communicate with clvmd via tmpfs - Allow certmaster to read usr_t files - Allow dbus system services to search cgroup_t - Define rlogind_t as a login pgm- Allow mdadm_t to read/write hugetlbfs- Dominic Grift Cleanup - Miroslav Grepl policy for jabberd - Various fixes for mount/livecd and prelink- Merge with upstream- More access needed for devicekit - Add dbadm policy- Merge with upstream- Allow seunshare to fowner- Allow cron to look at user_cron_spool links - Lots of fixes for mozilla_plugin_t - Add sysv file system - Turn unconfined domains to permissive to find additional avcs- Update policy for mozilla_plugin_t- Allow clamscan to read proc_t - Allow mount_t to write to debufs_t dir - Dontaudit mount_t trying to write to security_t dir- Allow clamscan_t execmem if clamd_use_jit set - Add policy for firefox plugin-container- Fix /root/.forward definition- label dead.letter as mail_home_t- Allow login programs to search /cgroups- Fix cert handling- Fix devicekit_power bug - Allow policykit_auth_t more access.- Fix nis calls to allow bind to ports 512-1024 - Fix smartmon- Allow pcscd to read sysfs - systemd fixes - Fix wine_mmap_zero_ignore boolean- Apply Miroslav munin patch - Turn back on allow_execmem and allow_execmod booleans- Merge in fixes from dgrift repository- Update boinc policy - Fix sysstat policy to allow sys_admin - Change failsafe_context to unconfined_r:unconfined_t:s0- New paths for upstart- New permissions for syslog - New labels for /lib/upstart- Add mojomojo policy- Allow systemd to setsockcon on sockets to immitate other services- Remove debugfs label- Update to latest policy- Fix eclipse labeling from IBMSupportAssasstant packageing- Make boot with systemd in enforcing mode- Update to upstream- Add boolean to turn off port forwarding in sshd.- Add support for ebtables - Fixes for rhcs and corosync policy-Update to upstream-Update to upstream-Update to upstream- Add Zarafa policy- Cleanup of aiccu policy - initial mock policy- Lots of random fixes- Update to upstream- Update to upstream - Allow prelink script to signal itself - Cobbler fixes- Add xdm_var_run_t to xserver_stream_connect_xdm - Add cmorrord and mpd policy from Miroslav Grepl- Fix sshd creation of krb cc files for users to be user_tmp_t- Fixes for accountsdialog - Fixes for boinc- Fix label on /var/lib/dokwiki - Change permissive domains to enforcing - Fix libvirt policy to allow it to run on mls- Update to upstream- Allow procmail to execute scripts in the users home dir that are labeled home_bin_t - Fix /var/run/abrtd.lock label- Allow login programs to read krb5_home_t Resolves: 594833 - Add obsoletes for cachefilesfd-selinux package Resolves: #575084- Allow mount to r/w abrt fifo file - Allow svirt_t to getattr on hugetlbfs - Allow abrt to create a directory under /var/spool- Add labels for /sys - Allow sshd to getattr on shutdown - Fixes for munin - Allow sssd to use the kernel key ring - Allow tor to send syslog messages - Allow iptabels to read usr files - allow policykit to read all domains state- Fix path for /var/spool/abrt - Allow nfs_t as an entrypoint for http_sys_script_t - Add policy for piranha - Lots of fixes for sosreport- Allow xm_t to read network state and get and set capabilities - Allow policykit to getattr all processes - Allow denyhosts to connect to tcp port 9911 - Allow pyranha to use raw ip sockets and ptrace itself - Allow unconfined_execmem_t and gconfsd mechanism to dbus - Allow staff to kill ping process - Add additional MLS rules- Allow gdm to edit ~/.gconf dir Resolves: #590677 - Allow dovecot to create directories in /var/lib/dovecot Partially resolves 590224 - Allow avahi to dbus chat with NetworkManager - Fix cobbler labels - Dontaudit iceauth_t leaks - fix /var/lib/lxdm file context - Allow aiccu to use tun tap devices - Dontaudit shutdown using xserver.log- Fixes for sandbox_x_net_t to match access for sandbox_web_t ++ - Add xdm_etc_t for /etc/gdm directory, allow accountsd to manage this directory - Add dontaudit interface for bluetooth dbus - Add chronyd_read_keys, append_keys for initrc_t - Add log support for ksmtuned Resolves: #586663- Allow boinc to send mail- Allow initrc_t to remove dhcpc_state_t - Fix label on sa-update.cron - Allow dhcpc to restart chrony initrc - Don't allow sandbox to send signals to its parent processes - Fix transition from unconfined_t -> unconfined_mount_t -> rpcd_t Resolves: #589136- Fix location of oddjob_mkhomedir Resolves: #587385 - fix labeling on /root/.shosts and ~/.shosts - Allow ipsec_mgmt_t to manage net_conf_t Resolves: #586760- Dontaudit sandbox trying to connect to netlink sockets Resolves: #587609 - Add policy for piranha- Fixups for xguest policy - Fixes for running sandbox firefox- Allow ksmtuned to use terminals Resolves: #586663 - Allow lircd to write to generic usb devices- Allow sandbox_xserver to connectto unconfined stream Resolves: #585171- Allow initrc_t to read slapd_db_t Resolves: #585476 - Allow ipsec_mgmt to use unallocated devpts and to create /etc/resolv.conf Resolves: #585963- Allow rlogind_t to search /root for .rhosts Resolves: #582760 - Fix path for cached_var_t - Fix prelink paths /var/lib/prelink - Allow confined users to direct_dri - Allow mls lvm/cryptosetup to work- Allow virtd_t to manage firewall/iptables config Resolves: #573585- Fix label on /root/.rhosts Resolves: #582760 - Add labels for Picasa - Allow openvpn to read home certs - Allow plymouthd_t to use tty_device_t - Run ncftool as iptables_t - Allow mount to unmount unlabeled_t - Dontaudit hal leaks- Allow livecd to transition to mount- Update to upstream - Allow abrt to delete sosreport Resolves: #579998 - Allow snmp to setuid and gid Resolves: #582155 - Allow smartd to use generic scsi devices Resolves: #582145- Allow ipsec_t to create /etc/resolv.conf with the correct label - Fix reserved port destination - Allow autofs to transition to showmount - Stop crashing tuned- Add telepathysofiasip policy- Update to upstream - Fix label for /opt/google/chrome/chrome-sandbox - Allow modemmanager to dbus with policykit- Fix allow_httpd_mod_auth_pam to use auth_use_pam(httpd_t) - Allow accountsd to read shadow file - Allow apache to send audit messages when using pam - Allow asterisk to bind and connect to sip tcp ports - Fixes for dovecot 2.0 - Allow initrc_t to setattr on milter directories - Add procmail_home_t for .procmailrc file- Fixes for labels during install from livecd- Fix /cgroup file context - Fix broken afs use of unlabled_t - Allow getty to use the console for s390- Fix cgroup handling adding policy for /cgroup - Allow confined users to write to generic usb devices, if user_rw_noexattrfile boolean set- Merge patches from dgrift- Update upstream - Allow abrt to write to the /proc under any process- Fix ~/.fontconfig label - Add /root/.cert label - Allow reading of the fixed_file_disk_t:lnk_file if you can read file - Allow qemu_exec_t as an entrypoint to svirt_t- Update to upstream - Allow tmpreaper to delete sandbox sock files - Allow chrome-sandbox_t to use /dev/zero, and dontaudit getattr file systems - Fixes for gitosis - No transition on livecd to passwd or chfn - Fixes for denyhosts- Add label for /var/lib/upower - Allow logrotate to run sssd - dontaudit readahead on tmpfs blk files - Allow tmpreaper to setattr on sandbox files - Allow confined users to execute dos files - Allow sysadm_t to kill processes running within its clearance - Add accountsd policy - Fixes for corosync policy - Fixes from crontab policy - Allow svirt to manage svirt_image_t chr files - Fixes for qdisk policy - Fixes for sssd policy - Fixes for newrole policy- make libvirt work on an MLS platform- Add qpidd policy- Update to upstream- Allow boinc to read kernel sysctl - Fix snmp port definitions - Allow apache to read anon_inodefs- Allow shutdown dac_override- Add device_t as a file system - Fix sysfs association- Dontaudit ipsec_mgmt sys_ptrace - Allow at to mail its spool files - Allow nsplugin to search in .pulse directory- Update to upstream- Allow users to dbus chat with xdm - Allow users to r/w wireless_device_t - Dontaudit reading of process states by ipsec_mgmt- Fix openoffice from unconfined_t- Add shutdown policy so consolekit can shutdown system- Update to upstream- Update to upstream- Update to upstream - These are merges of my patches - Remove 389 labeling conflicts - Add MLS fixes found in RHEL6 testing - Allow pulseaudio to run as a service - Add label for mssql and allow apache to connect to this database port if boolean set - Dontaudit searches of debugfs mount point - Allow policykit_auth to send signals to itself - Allow modcluster to call getpwnam - Allow swat to signal winbind - Allow usbmux to run as a system role - Allow svirt to create and use devpts- Add MLS fixes found in RHEL6 testing - Allow domains to append to rpm_tmp_t - Add cachefilesfd policy - Dontaudit leaks when transitioning- Change allow_execstack and allow_execmem booleans to on - dontaudit acct using console - Add label for fping - Allow tmpreaper to delete sandbox_file_t - Fix wine dontaudit mmap_zero - Allow abrt to read var_t symlinks- Additional policy for rgmanager- Allow sshd to setattr on pseudo terms- Update to upstream- Allow policykit to send itself signals- Fix duplicate cobbler definition- Fix file context of /var/lib/avahi-autoipd- Merge with upstream- Allow sandbox to work with MLS- Make Chrome work with staff user- Add icecast policy - Cleanup spec file- Add mcelog policy- Lots of fixes found in F12- Fix rpm_dontaudit_leaks- Add getsched to hald_t - Add file context for Fedora/Redhat Directory Server- Allow abrt_helper to getattr on all filesystems - Add label for /opt/real/RealPlayer/plugins/oggfformat\.so- Add gstreamer_home_t for ~/.gstreamer- Update to upstream- Fix git- Turn on puppet policy - Update to dgrift git policy- Move users file to selection by spec file. - Allow vncserver to run as unconfined_u:unconfined_r:unconfined_t- Update to upstream- Remove most of the permissive domains from F12.- Add cobbler policy from dgrift- add usbmon device - Add allow rulse for devicekit_disk- Lots of fixes found in F12, fixes from Tom London- Cleanups from dgrift- Add back xserver_manage_home_fonts- Dontaudit sandbox trying to read nscd and sssd- Update to upstream- Rename udisks-daemon back to devicekit_disk_t policy- Fixes for abrt calls- Add tgtd policy- Update to upstream release- Add asterisk policy back in - Update to upstream release 2.20091117- Update to upstream release 2.20091117- Fixup nut policy- Update to upstream- Allow vpnc request the kernel to load modules- Fix minimum policy installs - Allow udev and rpcbind to request the kernel to load modules- Add plymouth policy - Allow local_login to sys_admin- Allow cupsd_config to read user tmp - Allow snmpd_t to signal itself - Allow sysstat_t to makedir in sysstat_log_t- Update rhcs policy- Allow users to exec restorecond- Allow sendmail to request kernel modules load- Fix all kernel_request_load_module domains- Fix all kernel_request_load_module domains- Remove allow_exec* booleans for confined users. Only available for unconfined_t- More fixes for sandbox_web_t- Allow sshd to create .ssh directory and content- Fix request_module line to module_request- Fix sandbox policy to allow it to run under firefox. - Dont audit leaks.- Fixes for sandbox- Update to upstream - Dontaudit nsplugin search /root - Dontaudit nsplugin sys_nice- Fix label on /usr/bin/notepad, /usr/sbin/vboxadd-service - Remove policycoreutils-python requirement except for minimum- Fix devicekit_disk_t to getattr on all domains sockets and fifo_files - Conflicts seedit (You can not use selinux-policy-targeted and seedit at the same time.)- Add wordpress/wp-content/uploads label - Fixes for sandbox when run from staff_t- Update to upstream - Fixes for devicekit_disk- More fixes- Lots of fixes for initrc and other unconfined domains- Allow xserver to use netlink_kobject_uevent_socket- Fixes for sandbox- Dontaudit setroubleshootfix looking at /root directory- Update to upsteam- Allow gssd to send signals to users - Fix duplicate label for apache content- Update to upstream- Remove polkit_auth on upgrades- Add back in unconfined.pp and unconfineduser.pp - Add Sandbox unshare- Fixes for cdrecord, mdadm, and others- Add capability setting to dhcpc and gpm- Allow cronjobs to read exim_spool_t- Add ABRT policy- Fix system-config-services policy- Allow libvirt to change user componant of virt_domain- Allow cupsd_config_t to be started by dbus - Add smoltclient policy- Add policycoreutils-python to pre install- Make all unconfined_domains permissive so we can see what AVC's happen- Add pt_chown policy- Add kdump policy for Miroslav Grepl - Turn off execstack boolean- Turn on execstack on a temporary basis (#512845)- Allow nsplugin to connecto the session bus - Allow samba_net to write to coolkey data- Allow devicekit_disk to list inotify- Allow svirt images to create sock_file in svirt_var_run_t- Allow exim to getattr on mountpoints - Fixes for pulseaudio- Allow svirt_t to stream_connect to virtd_t- Allod hald_dccm_t to create sock_files in /tmp- More fixes from upstream- Fix polkit label - Remove hidebrokensymptoms for nss_ldap fix - Add modemmanager policy - Lots of merges from upstream - Begin removing textrel_shlib_t labels, from fixed libraries- Update to upstream- Allow certmaster to override dac permissions- Update to upstream- Fix context for VirtualBox- Update to upstream- Allow clamscan read amavis spool files- Fixes for xguest- fix multiple directory ownership of mandirs- Update to upstream- Add rules for rtkit-daemon- Update to upstream - Fix nlscd_stream_connect- Add rtkit policy- Allow rpcd_t to stream connect to rpcbind- Allow kpropd to create tmp files- Fix last duplicate /var/log/rpmpkgs- Update to upstream * add sssd- Update to upstream * cleanup- Update to upstream - Additional mail ports - Add virt_use_usb boolean for svirt- Fix mcs rules to include chr_file and blk_file- Add label for udev-acl- Additional rules for consolekit/udev, privoxy and various other fixes- New version for upstream- Allow NetworkManager to read inotifyfs- Allow setroubleshoot to run mlocate- Update to upstream- Add fish as a shell - Allow fprintd to list usbfs_t - Allow consolekit to search mountpoints - Add proper labeling for shorewall- New log file for vmware - Allow xdm to setattr on user_tmp_t- Upgrade to upstream- Allow fprintd to access sys_ptrace - Add sandbox policy- Add varnishd policy- Fixes for kpropd- Allow brctl to r/w tun_tap_device_t- Add /usr/share/selinux/packages- Allow rpcd_t to send signals to kernel threads- Fix upgrade for F10 to F11- Add policy for /var/lib/fprint-Remove duplicate line- Allow svirt to manage pci and other sysfs device data- Fix package selection handling- Fix /sbin/ip6tables-save context - Allod udev to transition to mount - Fix loading of mls policy file- Add shorewall policy- Additional rules for fprintd and sssd- Allow nsplugin to unix_read unix_write sem for unconfined_java- Fix uml files to be owned by users- Fix Upgrade path to install unconfineduser.pp when unocnfined package is 3.0.0 or less- Allow confined users to manage virt_content_t, since this is home dir content - Allow all domains to read rpm_script_tmp_t which is what shell creates on redirection- Fix labeling on /var/lib/misc/prelink* - Allow xserver to rw_shm_perms with all x_clients - Allow prelink to execute files in the users home directory- Allow initrc_t to delete dev_null - Allow readahead to configure auditing - Fix milter policy - Add /var/lib/readahead- Update to latest milter code from Paul Howarth- Additional perms for readahead- Allow pulseaudio to acquire_svc on session bus - Fix readahead labeling- Allow sysadm_t to run rpm directly - libvirt needs fowner- Allow sshd to read var_lib symlinks for freenx- Allow nsplugin unix_read and write on users shm and sem - Allow sysadm_t to execute su- Dontaudit attempts to getattr user_tmpfs_t by lvm - Allow nfs to share removable media- Add ability to run postdrop from confined users- Fixes for podsleuth- Turn off nsplugin transition - Remove Konsole leaked file descriptors for release- Allow cupsd_t to create link files in print_spool_t - Fix iscsi_stream_connect typo - Fix labeling on /etc/acpi/actions - Don't reinstall unconfine and unconfineuser on upgrade if they are not installed- Allow audioentroy to read etc files- Add fail2ban_var_lib_t - Fixes for devicekit_power_t- Separate out the ucnonfined user from the unconfined.pp package- Make sure unconfined_java_t and unconfined_mono_t create user_tmpfs_t.- Upgrade to latest upstream - Allow devicekit_disk sys_rawio- Dontaudit binds to ports < 1024 for named - Upgrade to latest upstream- Allow podsleuth to use tmpfs files- Add customizable_types for svirt- Allow setroubelshoot exec* privs to prevent crash from bad libraries - add cpufreqselector- Dontaudit listing of /root directory for cron system jobs- Fix missing ld.so.cache label- Add label for ~/.forward and /root/.forward- Fixes for svirt- Fixes to allow svirt read iso files in homedir- Add xenner and wine fixes from mgrepl- Allow mdadm to read/write mls override- Change to svirt to only access svirt_image_t- Fix libvirt policy- Upgrade to latest upstream- Fixes for iscsid and sssd - More cleanups for upgrade from F10 to Rawhide.- Add pulseaudio, sssd policy - Allow networkmanager to exec udevadm- Add pulseaudio context- Upgrade to latest patches- Fixes for libvirt- Update to Latest upstream- Fix setrans.conf to show SystemLow for s0- Further confinement of qemu images via svirt- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- Allow NetworkManager to manage /etc/NetworkManager/system-connections- add virtual_image_context and virtual_domain_context files- Allow rpcd_t to send signal to mount_t - Allow libvirtd to run ranged- Fix sysnet/net_conf_t- Fix squidGuard labeling- Re-add corenet_in_generic_if(unlabeled_t)* Tue Feb 10 2009 Dan Walsh 3.6.5-2 - Add git web policy- Add setrans contains from upstream- Do transitions outside of the booleans- Allow xdm to create user_tmp_t sockets for switch user to work- Fix staff_t domain- Grab remainder of network_peer_controls patch- More fixes for devicekit- Upgrade to latest upstream- Add boolean to disallow unconfined_t login- Add back transition from xguest to mozilla- Add virt_content_ro_t and labeling for isos directory- Fixes for wicd daemon- More mls/rpm fixes- Add policy to make dbus/nm-applet work- Remove polgen-ifgen from post and add trigger to policycoreutils-python- Add wm policy - Make mls work in graphics mode- Fixed for DeviceKit- Add devicekit policy- Update to upstream- Define openoffice as an x_domain- Fixes for reading xserver_tmp_t- Allow cups_pdf_t write to nfs_t- Remove audio_entropy policy- Update to upstream- Allow hal_acl_t to getattr/setattr fixed_disk- Change userdom_read_all_users_state to include reading symbolic links in /proc- Fix dbus reading /proc information- Add missing alias for home directory content- Fixes for IBM java location- Allow unconfined_r unconfined_java_t- Add cron_role back to user domains- Fix sudo setting of user keys- Allow iptables to talk to terminals - Fixes for policy kit - lots of fixes for booting.- Cleanup policy- Rebuild for Python 2.6- Fix labeling on /var/spool/rsyslog- Allow postgresl to bind to udp nodes- Allow lvm to dbus chat with hal - Allow rlogind to read nfs_t- Fix cyphesis file context- Allow hal/pm-utils to look at /var/run/video.rom - Add ulogd policy- Additional fixes for cyphesis - Fix certmaster file context - Add policy for system-config-samba - Allow hal to read /var/run/video.rom- Allow dhcpc to restart ypbind - Fixup labeling in /var/run- Add certmaster policy- Fix confined users - Allow xguest to read/write xguest_dbusd_t- Allow openoffice execstack/execmem privs- Allow mozilla to run with unconfined_execmem_t- Dontaudit domains trying to write to .xsession-errors- Allow nsplugin to look at autofs_t directory- Allow kerneloops to create tmp files- More alias for fastcgi- Remove mod_fcgid-selinux package- Fix dovecot access- Policy cleanup- Remove Multiple spec - Add include - Fix makefile to not call per_role_expansion- Fix labeling of libGL- Update to upstream- Update to upstream policy- Fixes for confined xwindows and xdm_t- Allow confined users and xdm to exec wm - Allow nsplugin to talk to fifo files on nfs- Allow NetworkManager to transition to avahi and iptables - Allow domains to search other domains keys, coverup kernel bug- Fix labeling for oracle- Allow nsplugin to comminicate with xdm_tmp_t sock_file- Change all user tmpfs_t files to be labeled user_tmpfs_t - Allow radiusd to create sock_files- Upgrade to upstream- Allow confined users to login with dbus- Fix transition to nsplugin- Add file context for /dev/mspblk.*- Fix transition to nsplugin '- Fix labeling on new pm*log - Allow ssh to bind to all nodes- Merge upstream changes - Add Xavier Toth patches- Add qemu_cache_t for /var/cache/libvirt- Remove gamin policy- Add tinyxs-max file system support- Update to upstream - New handling of init scripts- Allow pcsd to dbus - Add memcache policy- Allow audit dispatcher to kill his children- Update to upstream - Fix crontab use by unconfined user- Allow ifconfig_t to read dhcpc_state_t- Update to upstream- Update to upstream- Allow system-config-selinux to work with policykit- Fix novel labeling- Consolodate pyzor,spamassassin, razor into one security domain - Fix xdm requiring additional perms.- Fixes for logrotate, alsa- Eliminate vbetool duplicate entry- Fix xguest -> xguest_mozilla_t -> xguest_openiffice_t - Change dhclient to be able to red networkmanager_var_run- Update to latest refpolicy - Fix libsemanage initial install bug- Add inotify support to nscd- Allow unconfined_t to setfcap- Allow amanda to read tape - Allow prewikka cgi to use syslog, allow audisp_t to signal cgi - Add support for netware file systems- Allow ypbind apps to net_bind_service- Allow all system domains and application domains to append to any log file- Allow gdm to read rpm database - Allow nsplugin to read mplayer config files- Allow vpnc to run ifconfig- Allow confined users to use postgres - Allow system_mail_t to exec other mail clients - Label mogrel_rails as an apache server- Apply unconfined_execmem_exec_t to haskell programs- Fix prelude file context- allow hplip to talk dbus - Fix context on ~/.local dir- Prevent applications from reading x_device- Add /var/lib/selinux context- Update to upstream- Add livecd policy- Dontaudit search of admin_home for init_system_domain - Rewrite of xace interfaces - Lots of new fs_list_inotify - Allow livecd to transition to setfiles_mac- Begin XAce integration- Merge Upstream- Allow amanada to create data files- Fix initial install, semanage setup- Allow system_r for httpd_unconfined_script_t- Remove dmesg boolean - Allow user domains to read/write game data- Change unconfined_t to transition to unconfined_mono_t when running mono - Change XXX_mono_t to transition to XXX_t when executing bin_t files, so gnome-do will work- Remove old booleans from targeted-booleans.conf file- Add boolean to mmap_zero - allow tor setgid - Allow gnomeclock to set clock- Don't run crontab from unconfined_t- Change etc files to config files to allow users to read them- Lots of fixes for confined domains on NFS_t homedir- dontaudit mrtg reading /proc - Allow iscsi to signal itself - Allow gnomeclock sys_ptrace- Allow dhcpd to read kernel network state- Label /var/run/gdm correctly - Fix unconfined_u user creation- Allow transition from initrc_t to getty_t- Allow passwd to communicate with user sockets to change gnome-keyring- Fix initial install- Allow radvd to use fifo_file - dontaudit setfiles reading links - allow semanage sys_resource - add allow_httpd_mod_auth_ntlm_winbind boolean - Allow privhome apps including dovecot read on nfs and cifs home dirs if the boolean is set- Allow nsplugin to read /etc/mozpluggerrc, user_fonts - Allow syslog to manage innd logs. - Allow procmail to ioctl spamd_exec_t- Allow initrc_t to dbus chat with consolekit.- Additional access for nsplugin - Allow xdm setcap/getcap until pulseaudio is fixed- Allow mount to mkdir on tmpfs - Allow ifconfig to search debugfs- Fix file context for MATLAB - Fixes for xace- Allow stunnel to transition to inetd children domains - Make unconfined_dbusd_t an unconfined domain- Fixes for qemu/virtd- Fix bug in mozilla policy to allow xguest transition - This will fix the libsemanage.dbase_llist_query: could not find record value libsemanage.dbase_llist_query: could not query record value (No such file or directory) bug in xguest- Allow nsplugin to run acroread- Add cups_pdf policy - Add openoffice policy to run in xguest- prewika needs to contact mysql - Allow syslog to read system_map files- Change init_t to an unconfined_domain- Allow init to transition to initrc_t on shell exec. - Fix init to be able to sendto init_t. - Allow syslog to connect to mysql - Allow lvm to manage its own fifo_files - Allow bugzilla to use ldap - More mls fixes- fixes for init policy (#436988) - fix build- Additional changes for MLS policy- Fix initrc_context generation for MLS- Fixes for libvirt- Allow bitlebee to read locale_t- More xselinux rules- Change httpd_$1_script_r*_t to httpd_$1_content_r*_t- Prepare policy for beta release - Change some of the system domains back to unconfined - Turn on some of the booleans- Allow nsplugin_config execstack/execmem - Allow nsplugin_t to read alsa config - Change apache to use user content- Add cyphesis policy- Fix Makefile.devel to build mls modules - Fix qemu to be more specific on labeling- Update to upstream fixes- Allow staff to mounton user_home_t- Add xace support- Add fusectl file system- Fixes from yum-cron - Update to latest upstream- Fix userdom_list_user_files- Merge with upstream- Allow udev to send audit messages- Add additional login users interfaces - userdom_admin_login_user_template(staff)- More fixes for polkit- Eliminate transition from unconfined_t to qemu by default - Fixes for gpg- Update to upstream- Fixes for staff_t- Add policy for kerneloops - Add policy for gnomeclock- Fixes for libvirt- Fixes for nsplugin- More fixes for qemu- Additional ports for vnc and allow qemu and libvirt to search all directories- Update to upstream - Add libvirt policy - add qemu policy- Allow fail2ban to create a socket in /var/run- Allow allow_httpd_mod_auth_pam to work- Add audisp policy and prelude- Allow all user roles to executae samba net command- Allow usertypes to read/write noxattr file systems- Fix nsplugin to allow flashplugin to work in enforcing mode- Allow pam_selinux_permit to kill all processes- Allow ptrace or user processes by users of same type - Add boolean for transition to nsplugin- Allow nsplugin sys_nice, getsched, setsched- Allow login programs to talk dbus to oddjob- Add procmail_log support - Lots of fixes for munin- Allow setroubleshoot to read policy config and send audit messages- Allow users to execute all files in homedir, if boolean set - Allow mount to read samba config- Fixes for xguest to run java plugin- dontaudit pam_t and dbusd writing to user_home_t- Update gpg to allow reading of inotify- Change user and staff roles to work correctly with varied perms- Fix munin log, - Eliminate duplicate mozilla file context - fix wpa_supplicant spec- Fix role transition from unconfined_r to system_r when running rpm - Allow unconfined_domains to communicate with user dbus instances- Fixes for xguest- Let all uncofined domains communicate with dbus unconfined- Run rpm in system_r- Zero out customizable types- Fix definiton of admin_home_t- Fix munin file context- Allow cron to run unconfined apps- Modify default login to unconfined_u- Dontaudit dbus user client search of /root- Update to upstream- Fixes for polkit - Allow xserver to ptrace- Add polkit policy - Symplify userdom context, remove automatic per_role changes- Update to upstream - Allow httpd_sys_script_t to search users homedirs- Allow rpm_script to transition to unconfined_execmem_t- Remove user based home directory separation- Remove user specific crond_t- Merge with upstream - Allow xsever to read hwdata_t - Allow login programs to setkeycreate- Update to upstream- Update to upstream- Allow XServer to read /proc/self/cmdline - Fix unconfined cron jobs - Allow fetchmail to transition to procmail - Fixes for hald_mac - Allow system_mail to transition to exim - Allow tftpd to upload files - Allow xdm to manage unconfined_tmp - Allow udef to read alsa config - Fix xguest to be able to connect to sound port- Fixes for hald_mac - Treat unconfined_home_dir_t as a home dir - dontaudit rhgb writes to fonts and root- Fix dnsmasq - Allow rshd full login privs- Allow rshd to connect to ports > 1023- Fix vpn to bind to port 4500 - Allow ssh to create shm - Add Kismet policy- Allow rpm to chat with networkmanager- Fixes for ipsec and exim mail - Change default to unconfined user- Pass the UNK_PERMS param to makefile - Fix gdm location- Make alsa work- Fixes for consolekit and startx sessions- Dontaudit consoletype talking to unconfined_t- Remove homedir_template- Check asound.state- Fix exim policy- Allow tmpreadper to read man_t - Allow racoon to bind to all nodes - Fixes for finger print reader- Allow xdm to talk to input device (fingerprint reader) - Allow octave to run as java- Allow login programs to set ioctl on /proc- Allow nsswitch apps to read samba_var_t- Fix maxima- Eliminate rpm_t:fifo_file avcs - Fix dbus path for helper app- Fix service start stop terminal avc's- Allow also to search var_lib - New context for dbus launcher- Allow cupsd_config_t to read/write usb_device_t - Support for finger print reader, - Many fixes for clvmd - dbus starting networkmanager- Fix java and mono to run in xguest account- Fix to add xguest account when inititial install - Allow mono, java, wine to run in userdomains- Allow xserver to search devpts_t - Dontaudit ldconfig output to homedir- Remove hplip_etc_t change back to etc_t.- Allow cron to search nfs and samba homedirs- Allow NetworkManager to dbus chat with yum-updated- Allow xfs to bind to port 7100- Allow newalias/sendmail dac_override - Allow bind to bind to all udp ports- Turn off direct transition- Allow wine to run in system role- Fix java labeling- Define user_home_type as home_type- Allow sendmail to create etc_aliases_t- Allow login programs to read symlinks on homedirs- Update an readd modules- Cleanup spec file- Allow xserver to be started by unconfined process and talk to tty- Upgrade to upstream to grab postgressql changes- Add setransd for mls policy- Add ldconfig_cache_t- Allow sshd to write to proc_t for afs login- Allow xserver access to urand- allow dovecot to search mountpoints- Fix Makefile for building policy modules- Fix dhcpc startup of service- Fix dbus chat to not happen for xguest and guest users- Fix nagios cgi - allow squid to communicate with winbind- Fixes for ldconfig- Update from upstream- Add nasd support- Fix new usb devices and dmfm- Eliminate mount_ntfs_t policy, merge into mount_t- Allow xserver to write to ramfs mounted by rhgb- Add context for dbus machine id- Update with latest changes from upstream- Fix prelink to handle execmod- Add ntpd_key_t to handle secret data- Add anon_inodefs - Allow unpriv user exec pam_exec_t - Fix trigger- Allow cups to use generic usb - fix inetd to be able to run random apps (git)- Add proper contexts for rsyslogd- Fixes for xguest policy- Allow execution of gconf- Fix moilscanner update problem- Begin adding policy to separate setsebool from semanage - Fix xserver.if definition to not break sepolgen.if- Add new devices- Add brctl policy- Fix root login to include system_r- Allow prelink to read kernel sysctls- Default to user_u:system_r:unconfined_t- fix squid - Fix rpm running as uid- Fix syslog declaration- Allow avahi to access inotify - Remove a lot of bogus security_t:filesystem avcs- Remove ifdef strict policy from upstream- Remove ifdef strict to allow user_u to login- Fix for amands - Allow semanage to read pp files - Allow rhgb to read xdm_xserver_tmp- Allow kerberos servers to use ldap for backing store- allow alsactl to read kernel state- More fixes for alsactl - Transition from hal and modutils - Fixes for suspend resume. - insmod domtrans to alsactl - insmod writes to hal log- Allow unconfined_t to transition to NetworkManager_t - Fix netlabel policy- Update to latest from upstream- Update to latest from upstream- Update to latest from upstream- Allow pcscd_t to send itself signals- Fixes for unix_update - Fix logwatch to be able to search all dirs- Upstream bumped the version- Allow consolekit to syslog - Allow ntfs to work with hal- Allow iptables to read etc_runtime_t- MLS Fixes- Fix path of /etc/lvm/cache directory - Fixes for alsactl and pppd_t - Fixes for consolekit- Allow insmod_t to mount kvmfs_t filesystems- Rwho policy - Fixes for consolekit- fixes for fusefs- Fix samba_net to allow it to view samba_var_t- Update to upstream- Fix Sonypic backlight - Allow snmp to look at squid_conf_t- Fixes for pyzor, cyrus, consoletype on everything installs- Fix hald_acl_t to be able to getattr/setattr on usb devices - Dontaudit write to unconfined_pipes for load_policy- Allow bluetooth to read inotifyfs- Fixes for samba domain controller. - Allow ConsoleKit to look at ttys- Fix interface call- Allow syslog-ng to read /var - Allow locate to getattr on all filesystems - nscd needs setcap- Update to upstream- Allow samba to run groupadd- Update to upstream- Allow mdadm to access generic scsi devices- Fix labeling on udev.tbl dirs- Fixes for logwatch- Add fusermount and mount_ntfs policy- Update to upstream - Allow saslauthd to use kerberos keytabs- Fixes for samba_var_t- Allow networkmanager to setpgid - Fixes for hal_acl_t- Remove disable_trans booleans - hald_acl_t needs to talk to nscd- Fix prelink to be able to manage usr dirs.- Allow insmod to launch init scripts- Remove setsebool policy- Fix handling of unlabled_t packets- More of my patches from upstream- Update to latest from upstream - Add fail2ban policy- Update to remove security_t:filesystem getattr problems- Policy for consolekit- Update to latest from upstream- Revert Nemiver change - Set sudo as a corecmd so prelink will work, remove sudoedit mapping, since this will not work, it does not transition. - Allow samba to execute useradd- Upgrade to the latest from upstream- Add sepolgen support - Add bugzilla policy- Fix file context for nemiver- Remove include sym link- Allow mozilla, evolution and thunderbird to read dev_random. Resolves: #227002 - Allow spamd to connect to smtp port Resolves: #227184 - Fixes to make ypxfr work Resolves: #227237- Fix ssh_agent to be marked as an executable - Allow Hal to rw sound device- Fix spamassisin so crond can update spam files - Fixes to allow kpasswd to work - Fixes for bluetooth- Remove some targeted diffs in file context file- Fix squid cachemgr labeling- Add ability to generate webadm_t policy - Lots of new interfaces for httpd - Allow sshd to login as unconfined_t- Continue fixing, additional user domains- Begin adding user confinement to targeted policy- Fixes for prelink, ktalkd, netlabel- Allow prelink when run from rpm to create tmp files Resolves: #221865 - Remove file_context for exportfs Resolves: #221181 - Allow spamassassin to create ~/.spamassissin Resolves: #203290 - Allow ssh access to the krb tickets - Allow sshd to change passwd - Stop newrole -l from working on non securetty Resolves: #200110 - Fixes to run prelink in MLS machine Resolves: #221233 - Allow spamassassin to read var_lib_t dir Resolves: #219234- fix mplayer to work under strict policy - Allow iptables to use nscd Resolves: #220794- Add gconf policy and make it work with strict- Many fixes for strict policy and by extension mls.- Fix to allow ftp to bind to ports > 1024 Resolves: #219349- Allow semanage to exec it self. Label genhomedircon as semanage_exec_t Resolves: #219421 - Allow sysadm_lpr_t to manage other print spool jobs Resolves: #220080- allow automount to setgid Resolves: #219999- Allow cron to polyinstatiate - Fix creation of boot flags Resolves: #207433- Fixes for irqbalance Resolves: #219606- Fix vixie-cron to work on mls Resolves: #207433Resolves: #218978- Allow initrc to create files in /var directories Resolves: #219227- More fixes for MLS Resolves: #181566- More Fixes polyinstatiation Resolves: #216184- More Fixes polyinstatiation - Fix handling of keyrings Resolves: #216184- Fix polyinstatiation - Fix pcscd handling of terminal Resolves: #218149 Resolves: #218350- More fixes for quota Resolves: #212957- ncsd needs to use avahi sockets Resolves: #217640 Resolves: #218014- Allow login programs to polyinstatiate homedirs Resolves: #216184 - Allow quotacheck to create database files Resolves: #212957- Dontaudit appending hal_var_lib files Resolves: #217452 Resolves: #217571 Resolves: #217611 Resolves: #217640 Resolves: #217725- Fix context for helix players file_context #216942- Fix load_policy to be able to mls_write_down so it can talk to the terminal- Fixes for hwclock, clamav, ftp- Move to upstream version which accepted my patches- Fixes for nvidia driver- Allow semanage to signal mcstrans- Update to upstream- Allow modstorage to edit /etc/fstab file- Fix for qemu, /dev/- Fix path to realplayer.bin- Allow xen to connect to xen port- Allow cups to search samba_etc_t directory - Allow xend_t to list auto_mountpoints- Allow xen to search automount- Fix spec of jre files- Fix unconfined access to shadow file- Allow xend to create files in xen_image_t directories- Fixes for /var/lib/hal- Remove ability for sysadm_t to look at audit.log- Fix rpc_port_types - Add aide policy for mls- Merge with upstream- Lots of fixes for ricci- Allow xen to read/write fixed devices with a boolean - Allow apache to search /var/log- Fix policygentool specfile problem. - Allow apache to send signals to it's logging helpers. - Resolves: rhbz#212731- Add perms for swat- Add perms for swat- Allow daemons to dump core files to /- Fixes for ricci- Allow mount.nfs to work- Allow ricci-modstorage to look at lvm_etc_t- Fixes for ricci using saslauthd- Allow mountpoint on home_dir_t and home_t- Update xen to read nfs files- Allow noxattrfs to associate with other noxattrfs- Allow hal to use power_device_t- Allow procemail to look at autofs_t - Allow xen_image_t to work as a fixed device- Refupdate from upstream- Add lots of fixes for mls cups- Lots of fixes for ricci- Fix number of cats- Update to upstream- More iSCSI changes for #209854- Test ISCSI fixes for #209854- allow semodule to rmdir selinux_config_t dir- Fix boot_runtime_t problem on ppc. Should not be creating these files.- Fix context mounts on reboot - Fix ccs creation of directory in /var/log- Update for tallylog- Allow xend to rewrite dhcp conf files - Allow mgetty sys_admin capability- Make xentapctrl work- Don't transition unconfined_t to bootloader_t - Fix label in /dev/xen/blktap- Patch for labeled networking- Fix crond handling for mls- Update to upstream- Remove bluetooth-helper transition - Add selinux_validate for semanage - Require new version of libsemanage- Fix prelink- Fix rhgb- Fix setrans handling on MLS and useradd- Support for fuse - fix vigr- Fix dovecot, amanda - Fix mls- Allow java execheap for itanium- Update with upstream- mls fixes- Update from upstream- More fixes for mls - Revert change on automount transition to mount- Fix cron jobs to run under the correct context- Fixes to make pppd work- Multiple policy fixes - Change max categories to 1023- Fix transition on mcstransd- Add /dev/em8300 defs- Upgrade to upstream- Fix ppp connections from network manager- Add tty access to all domains boolean - Fix gnome-pty-helper context for ia64- Fixed typealias of firstboot_rw_t- Fix location of xel log files - Fix handling of sysadm_r -> rpm_exec_t- Fixes for autofs, lp- Update from upstream- Fixup for test6- Update to upstream- Update to upstream- Fix suspend to disk problems- Lots of fixes for restarting daemons at the console.- Fix audit line - Fix requires line- Upgrade to upstream- Fix install problems- Allow setroubleshoot to getattr on all dirs to gather RPM data- Set /usr/lib/ia32el/ia32x_loader to unconfined_execmem_exec_t for ia32 platform - Fix spec for /dev/adsp- Fix xen tty devices- Fixes for setroubleshoot- Update to upstream- Fixes for stunnel and postgresql - Update from upstream- Update from upstream - More java fixes- Change allow_execstack to default to on, for RHEL5 Beta. This is required because of a Java compiler problem. Hope to turn off for next beta- Misc fixes- More fixes for strict policy- Quiet down anaconda audit messages- Fix setroubleshootd- Update to the latest from upstream- More fixes for xen- Fix anaconda transitions- yet more xen rules- more xen rules- Fixes for Samba- Fixes for xen- Allow setroubleshootd to send mail- Add nagios policy- fixes for setroubleshoot- Added Paul Howarth patch to only load policy packages shipped with this package - Allow pidof from initrc to ptrace higher level domains - Allow firstboot to communicate with hal via dbus- Add policy for /var/run/ldapi- Fix setroubleshoot policy- Fixes for mls use of ssh - named has a new conf file- Fixes to make setroubleshoot work- Cups needs to be able to read domain state off of printer client- add boolean to allow zebra to write config files- setroubleshootd fixes- Allow prelink to read bin_t symlink - allow xfs to read random devices - Change gfs to support xattr- Remove spamassassin_can_network boolean- Update to upstream - Fix lpr domain for mls- Add setroubleshoot policy- Turn off auditallow on setting booleans- Multiple fixes- Update to upstream- Update to upstream - Add new class for kernel key ring- Update to upstream- Update to upstream- Break out selinux-devel package- Add ibmasmfs- Fix policygentool gen_requires- Update from Upstream- Fix spec of realplay- Update to upstream- Fix semanage- Allow useradd to create_home_dir in MLS environment- Update from upstream- Update from upstream- Add oprofilefs- Fix for hplip and Picasus- Update to upstream- Update to upstream- fixes for spamd- fixes for java, openldap and webalizer- Xen fixes- Upgrade to upstream- allow hal to read boot_t files - Upgrade to upstream- allow hal to read boot_t files- Update from upstream- Fixes for amavis- Update from upstream- Allow auditctl to search all directories- Add acquire service for mono.- Turn off allow_execmem boolean - Allow ftp dac_override when allowed to access users homedirs- Clean up spec file - Transition from unconfined_t to prelink_t- Allow execution of cvs command- Update to upstream- Update to upstream- Fix libjvm spec- Update to upstream- Add xm policy - Fix policygentool- Update to upstream - Fix postun to only disable selinux on full removal of the packages- Allow mono to chat with unconfined- Allow procmail to sendmail - Allow nfs to share dosfs- Update to latest from upstream - Allow selinux-policy to be removed and kernel not to crash- Update to latest from upstream - Add James Antill patch for xen - Many fixes for pegasus- Add unconfined_mount_t - Allow privoxy to connect to httpd_cache - fix cups labeleing on /var/cache/cups- Update to latest from upstream- Update to latest from upstream - Allow mono and unconfined to talk to initrc_t dbus objects- Change libraries.fc to stop shlib_t form overriding texrel_shlib_t- Fix samba creating dirs in homedir - Fix NFS so its booleans would work- Allow secadm_t ability to relabel all files - Allow ftp to search xferlog_t directories - Allow mysql to communicate with ldap - Allow rsync to bind to rsync_port_t- Fixed mailman with Postfix #183928 - Allowed semanage to create file_context files. - Allowed amanda_t to access inetd_t TCP sockets and allowed amanda_recover_t to bind to reserved ports. #149030 - Don't allow devpts_t to be associated with tmp_t. - Allow hald_t to stat all mountpoints. - Added boolean samba_share_nfs to allow smbd_t full access to NFS mounts. - Make mount run in mount_t domain from unconfined_t to prevent mislabeling of /etc/mtab. - Changed the file_contexts to not have a regex before the first ^/[a-z]/ whenever possible, makes restorecon slightly faster. - Correct the label of /etc/named.caching-nameserver.conf - Now label /usr/src/kernels/.+/lib(/.*)? as usr_t instead of /usr/src(/.*)?/lib(/.*)? - I don't think we need anything else under /usr/src hit by this. - Granted xen access to /boot, allowed mounting on xend_var_lib_t, and allowed xenstored_t rw access to the xen device node.- More textrel_shlib_t file path fixes - Add ada support- Get auditctl working in MLS policy- Add mono dbus support - Lots of file_context fixes for textrel_shlib_t in FC5 - Turn off execmem auditallow since they are filling log files- Update to upstream- Allow automount and dbus to read cert files- Fix ftp policy - Fix secadm running of auditctl- Update to upstream- Update to upstream- Fix policyhelp- Fix pam_console handling of usb_device - dontaudit logwatch reading /mnt dir- Update to upstream- Get transition rules to create policy.20 at SystemHigh- Allow secadmin to shutdown system - Allow sendmail to exec newalias- MLS Fixes dmidecode needs mls_file_read_up - add ypxfr_t - run init needs access to nscd - udev needs setuid - another xen log file - Dontaudit mount getattr proc_kcore_t- fix buildroot usage (#185391)- Get rid of mount/fsdisk scan of /dev messages - Additional fixes for suspend/resume- Fake make to rebuild enableaudit.pp- Get xen networking running.- Fixes for Xen - enableaudit should not be the same as base.pp - Allow ps to work for all process- more xen policy fixups- more xen fixage (#184393)- Fix blkid specification - Allow postfix to execute mailman_que- Blkid changes - Allow udev access to usb_device_t - Fix post script to create targeted policy config file- Allow lvm tools to create drevice dir- Add Xen support- Fixes for cups - Make cryptosetup work with hal- Load Policy needs translock- Fix cups html interface- Add hal changes suggested by Jeremy - add policyhelp to point at policy html pages- Additional fixes for nvidia and cups- Update to upstream - Merged my latest fixes - Fix cups policy to handle unix domain sockets- NSCD socket is in nscd_var_run_t needs to be able to search dir- Fixes Apache interface file- Fixes for new version of cups- Turn off polyinstatiate util after FC5- Fix problem with privoxy talking to Tor- Turn on polyinstatiation- Don't transition from unconfined_t to fsadm_t- Fix policy update model.- Update to upstream- Fix load_policy to work on MLS - Fix cron_rw_system_pipes for postfix_postdrop_t - Allow audotmount to run showmount- Fix swapon - allow httpd_sys_script_t to be entered via a shell - Allow httpd_sys_script_t to read eventpolfs- Update from upstream- allow cron to read apache files- Fix vpnc policy to work from NetworkManager- Update to upstream - Fix semoudle polcy- Update to upstream - fix sysconfig/selinux link- Add router port for zebra - Add imaze port for spamd - Fixes for amanda and java- Fix bluetooth handling of usb devices - Fix spamd reading of ~/ - fix nvidia spec- Update to upsteam- Add users_extra files- Update to upstream- Add semodule policy- Update from upstream- Fix for spamd to use razor port- Fixes for mcs - Turn on mount and fsadm for unconfined_t- Fixes for the -devel package- Fix for spamd to use ldap- Update to upstream- Update to upstream - Fix rhgb, and other Xorg startups- Update to upstream- Separate out role of secadm for mls- Add inotifyfs handling- Update to upstream - Put back in changes for pup/zen- Many changes for MLS - Turn on strict policy- Update to upstream- Update to upstream - Fixes for booting and logging in on MLS machine- Update to upstream - Turn off execheap execstack for unconfined users - Add mono/wine policy to allow execheap and execstack for them - Add execheap for Xdm policy- Update to upstream - Fixes to fetchmail,- Update to upstream- Fix for procmail/spamassasin - Update to upstream - Add rules to allow rpcd to work with unlabeled_networks.- Update to upstream - Fix ftp Man page- Update to upstream- fix pup transitions (#177262) - fix xen disks (#177599)- Update to upstream- More Fixes for hal and readahead- Fixes for hal and readahead- Update to upstream - Apply- Add wine and fix hal problems- Handle new location of hal scripts- Allow su to read /etc/mtab- Update to upstream- Fix "libsemanage.parse_module_headers: Data did not represent a module." problem- Allow load_policy to read /etc/mtab- Fix dovecot to allow dovecot_auth to look at /tmp- Allow restorecon to read unlabeled_t directories in order to fix labeling.- Add Logwatch policy- Fix /dev/ub[a-z] file context- Fix library specification - Give kudzu execmem privs- Fix hostname in targeted policy- Fix passwd command on mls- Lots of fixes to make mls policy work- Add dri libs to textrel_shlib_t - Add system_r role for java - Add unconfined_exec_t for vncserver - Allow slapd to use kerberos- Add man pages- Add enableaudit.pp- Fix mls policy- Update mls file from old version- Add sids back in - Rebuild with update checkpolicy- Fixes to allow automount to use portmap - Fixes to start kernel in s0-s15:c0.c255- Add java unconfined/execmem policy- Add file context for /var/cvs - Dontaudit webalizer search of homedir- Update from upstream- Clean up spec - range_transition crond to SystemHigh- Fixes for hal - Update to upstream- Turn back on execmem since we need it for java, firefox, ooffice - Allow gpm to stream socket to itself- fix requirements to be on the actual packages so that policy can get created properly at install time- Allow unconfined_t to execmod texrel_shlib_t- Update to upstream - Turn off allow_execmem and allow_execmod booleans - Add tcpd and automount policies- Add two new httpd booleans, turned off by default * httpd_can_network_relay * httpd_can_network_connect_db- Add ghost for policy.20- Update to upstream - Turn off boolean allow_execstack- Change setrans-mls to use new libsetrans - Add default_context rule for xdm- Change Requires to PreReg for requiring of policycoreutils on install- New upstream releaseAdd xdm policyUpdate from upstreamUpdate from upstreamUpdate from upstream- Also trigger to rebuild policy for versions up to 2.0.7.- No longer installing policy.20 file, anaconda handles the building of the app.- Fixes for dovecot and saslauthd- Cleanup pegasus and named - Fix spec file - Fix up passwd changing applications-Update to latest from upstream- Add rules for pegasus and avahi- Start building MLS Policy- Update to upstream- Turn on bash- Initial version/bin/sh  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'())+,-./0123456789:;<=>?@ABCDEFGHI3.13.1-192.el7_5.4    develMakefileexample.fcexample.ifexample.tehtmlNetworkManager.htmlabrt.htmlabrt_dump_oops.htmlabrt_handle_event.htmlabrt_helper.htmlabrt_retrace_coredump.htmlabrt_retrace_worker.htmlabrt_upload_watch.htmlabrt_watch_log.htmlaccountsd.htmlacct.htmladmin_crontab.htmlafs.htmlafs_bosserver.htmlafs_fsserver.htmlafs_kaserver.htmlafs_ptserver.htmlafs_vlserver.htmlaiccu.htmlaide.htmlajaxterm.htmlajaxterm_ssh.htmlalsa.htmlamanda.htmlamanda_recover.htmlamtu.htmlanaconda.htmlanon_sftpd.htmlantivirus.htmlapcupsd.htmlapcupsd_cgi_script.htmlapm.htmlapmd.htmlarpwatch.htmlasterisk.htmlaudisp.htmlaudisp_remote.htmlauditadm.htmlauditadm_screen.htmlauditadm_su.htmlauditadm_sudo.htmlauditctl.htmlauditd.htmlauthconfig.htmlautomount.htmlavahi.htmlawstats.htmlawstats_script.htmlbacula.htmlbacula_admin.htmlbacula_unconfined_script.htmlbcfg2.htmlbitlbee.htmlblkmapd.htmlblktap.htmlblueman.htmlbluetooth.htmlbluetooth_helper.htmlboinc.htmlboinc_project.htmlbootloader.htmlbrctl.htmlbrltty.htmlbugzilla_script.htmlbumblebee.htmlcachefiles_kernel.htmlcachefilesd.htmlcalamaris.htmlcallweaver.htmlcanna.htmlcardmgr.htmlccs.htmlcdcc.htmlcdrecord.htmlcertmaster.htmlcertmonger.htmlcertmonger_unconfined.htmlcertwatch.htmlcfengine_execd.htmlcfengine_monitord.htmlcfengine_serverd.htmlcgclear.htmlcgconfig.htmlcgdcbxd.htmlcgred.htmlcheckpc.htmlcheckpolicy.htmlchfn.htmlchkpwd.htmlchrome_sandbox.htmlchrome_sandbox_nacl.htmlchronyc.htmlchronyd.htmlchroot_user.htmlcinder_api.htmlcinder_backup.htmlcinder_scheduler.htmlcinder_volume.htmlciped.htmlclogd.htmlcloud_init.htmlcluster.htmlclvmd.htmlcmirrord.htmlcobblerd.htmlcockpit_session.htmlcockpit_ws.htmlcollectd.htmlcollectd_script.htmlcolord.htmlcomsat.htmlcondor_collector.htmlcondor_master.htmlcondor_negotiator.htmlcondor_procd.htmlcondor_schedd.htmlcondor_startd.htmlcondor_startd_ssh.htmlconman.htmlconman_unconfined_script.htmlconsolekit.htmlcontainer.htmlcontainer_auth.htmlcontainer_runtime.htmlcouchdb.htmlcourier_authdaemon.htmlcourier_pcp.htmlcourier_pop.htmlcourier_sqwebmail.htmlcourier_tcpd.htmlcpucontrol.htmlcpufreqselector.htmlcpuplug.htmlcpuspeed.htmlcrack.htmlcrond.htmlcronjob.htmlcrontab.htmlctdbd.htmlcups_pdf.htmlcupsd.htmlcupsd_config.htmlcupsd_lpd.htmlcvs.htmlcvs_script.htmlcyphesis.htmlcyrus.htmldbadm.htmldbadm_sudo.htmldbskkd.htmldcc_client.htmldcc_dbclean.htmldccd.htmldccifd.htmldccm.htmldcerpcd.htmlddclient.htmldeltacloudd.htmldenyhosts.htmldepmod.htmldevicekit.htmldevicekit_disk.htmldevicekit_power.htmldhcpc.htmldhcpd.htmldictd.htmldirsrv.htmldirsrv_snmp.htmldirsrvadmin.htmldirsrvadmin_script.htmldirsrvadmin_unconfined_script.htmldisk_munin_plugin.htmldkim_milter.htmldlm_controld.htmldmesg.htmldmidecode.htmldnsmasq.htmldnssec_trigger.htmldovecot.htmldovecot_auth.htmldovecot_deliver.htmldrbd.htmldspam.htmldspam_script.htmlentropyd.htmleventlogd.htmlevtchnd.htmlexim.htmlfail2ban.htmlfail2ban_client.htmlfcoemon.htmlfenced.htmlfetchmail.htmlfingerd.htmlfirewalld.htmlfirewallgui.htmlfirstboot.htmlfoghorn.htmlfprintd.htmlfreeipmi_bmc_watchdog.htmlfreeipmi_ipmidetectd.htmlfreeipmi_ipmiseld.htmlfreqset.htmlfsadm.htmlfsdaemon.htmlftpd.htmlftpdctl.htmlgames.htmlgames_srv.htmlganesha.htmlgconfd.htmlgconfdefaultsm.htmlgdomap.htmlgeoclue.htmlgetty.htmlgfs_controld.htmlgit_script.htmlgit_session.htmlgit_system.htmlgitosis.htmlglance_api.htmlglance_registry.htmlglance_scrubber.htmlglusterd.htmlgnomesystemmm.htmlgpg.htmlgpg_agent.htmlgpg_helper.htmlgpg_pinentry.htmlgpg_web.htmlgpm.htmlgpsd.htmlgreylist_milter.htmlgroupadd.htmlgroupd.htmlgssd.htmlgssproxy.htmlguest.htmlhaproxy.htmlhddtemp.htmlhostname.htmlhsqldb.htmlhttpd.htmlhttpd_helper.htmlhttpd_passwd.htmlhttpd_php.htmlhttpd_rotatelogs.htmlhttpd_suexec.htmlhttpd_sys_script.htmlhttpd_unconfined_script.htmlhttpd_user_script.htmlhwclock.htmlhwloc_dhwd.htmlhypervkvp.htmlhypervvssd.htmliceauth.htmlicecast.htmlifconfig.htmlindex.htmlinetd.htmlinetd_child.htmlinit.htmlinitrc.htmlinnd.htmlinsmod.htmlinstall.htmliodined.htmliotop.htmlipa_dnskey.htmlipa_helper.htmlipa_otpd.htmlipmievd.htmlipsec.htmlipsec_mgmt.htmliptables.htmlirc.htmlirqbalance.htmlirssi.htmliscsid.htmlisnsd.htmliwhd.htmljabberd.htmljabberd_router.htmljockey.htmljournalctl.htmlkadmind.htmlkdump.htmlkdumpctl.htmlkdumpgui.htmlkeepalived.htmlkeepalived_unconfined_script.htmlkernel.htmlkeyboardd.htmlkeystone.htmlkeystone_cgi_script.htmlkismet.htmlklogd.htmlkmscon.htmlkpropd.htmlkrb5kdc.htmlksmtuned.htmlktalkd.htmll2tpd.htmlldconfig.htmllircd.htmllivecd.htmllldpad.htmlload_policy.htmlloadkeys.htmllocal_login.htmllocate.htmllockdev.htmllogadm.htmllogrotate.htmllogrotate_mail.htmllogwatch.htmllogwatch_mail.htmllpd.htmllpr.htmllsassd.htmllsmd.htmllsmd_plugin.htmllttng_sessiond.htmllvm.htmllwiod.htmllwregd.htmllwsmd.htmlmail_munin_plugin.htmlmailman_cgi.htmlmailman_mail.htmlmailman_queue.htmlman2html_script.htmlmandb.htmlmcelog.htmlmdadm.htmlmediawiki_script.htmlmemcached.htmlmencoder.htmlminidlna.htmlminissdpd.htmlmip6d.htmlmirrormanager.htmlmock.htmlmock_build.htmlmodemmanager.htmlmojomojo_script.htmlmon_procd.htmlmon_statd.htmlmongod.htmlmotion.htmlmount.htmlmount_ecryptfs.htmlmozilla.htmlmozilla_plugin.htmlmozilla_plugin_config.htmlmpd.htmlmplayer.htmlmrtg.htmlmscan.htmlmunin.htmlmunin_script.htmlmysqld.htmlmysqld_safe.htmlmysqlmanagerd.htmlmythtv_script.htmlnagios.htmlnagios_admin_plugin.htmlnagios_checkdisk_plugin.htmlnagios_eventhandler_plugin.htmlnagios_mail_plugin.htmlnagios_openshift_plugin.htmlnagios_script.htmlnagios_services_plugin.htmlnagios_system_plugin.htmlnagios_unconfined_plugin.htmlnamed.htmlnamespace_init.htmlncftool.htmlndc.htmlnetlabel_mgmt.htmlnetlogond.htmlnetutils.htmlneutron.htmlnewrole.htmlnfsd.htmlninfod.htmlnmbd.htmlnova.htmlnrpe.htmlnscd.htmlnsd.htmlnsd_crond.htmlnslcd.htmlntop.htmlntpd.htmlnumad.htmlnut_upsd.htmlnut_upsdrvctl.htmlnut_upsmon.htmlnutups_cgi_script.htmlnx_server.htmlnx_server_ssh.htmlobex.htmloddjob.htmloddjob_mkhomedir.htmlopenct.htmlopendnssec.htmlopenhpid.htmlopenshift.htmlopenshift_app.htmlopenshift_cgroup_read.htmlopenshift_cron.htmlopenshift_initrc.htmlopenshift_net_read.htmlopenshift_script.htmlopensm.htmlopenvpn.htmlopenvpn_unconfined_script.htmlopenvswitch.htmlopenwsman.htmloracleasm.htmlosad.htmlpads.htmlpam_console.htmlpam_timestamp.htmlpassenger.htmlpasswd.htmlpcp_pmcd.htmlpcp_pmie.htmlpcp_pmlogger.htmlpcp_pmmgr.htmlpcp_pmproxy.htmlpcp_pmwebd.htmlpcscd.htmlpegasus.htmlpegasus_openlmi_account.htmlpegasus_openlmi_admin.htmlpegasus_openlmi_logicalfile.htmlpegasus_openlmi_services.htmlpegasus_openlmi_storage.htmlpegasus_openlmi_system.htmlpegasus_openlmi_unconfined.htmlpesign.htmlphc2sys.htmlping.htmlpingd.htmlpiranha_fos.htmlpiranha_lvs.htmlpiranha_pulse.htmlpiranha_web.htmlpkcs_slotd.htmlpki_ra.htmlpki_tomcat.htmlpki_tomcat_script.htmlpki_tps.htmlplymouth.htmlplymouthd.htmlpodsleuth.htmlpolicykit.htmlpolicykit_auth.htmlpolicykit_grant.htmlpolicykit_resolve.htmlpolipo.htmlpolipo_session.htmlportmap.htmlportmap_helper.htmlportreserve.htmlpostfix_bounce.htmlpostfix_cleanup.htmlpostfix_local.htmlpostfix_map.htmlpostfix_master.htmlpostfix_pickup.htmlpostfix_pipe.htmlpostfix_postdrop.htmlpostfix_postqueue.htmlpostfix_qmgr.htmlpostfix_showq.htmlpostfix_smtp.htmlpostfix_smtpd.htmlpostfix_virtual.htmlpostgresql.htmlpostgrey.htmlpppd.htmlpptp.htmlprelink.htmlprelink_cron_system.htmlprelude.htmlprelude_audisp.htmlprelude_correlator.htmlprelude_lml.htmlpreupgrade.htmlprewikka_script.htmlprivoxy.htmlprocmail.htmlprosody.htmlpsad.htmlptal.htmlptchown.htmlptp4l.htmlpublicfile.htmlpulseaudio.htmlpuppetagent.htmlpuppetca.htmlpuppetmaster.htmlpwauth.htmlpyicqt.htmlqdiskd.htmlqemu_dm.htmlqmail_clean.htmlqmail_inject.htmlqmail_local.htmlqmail_lspawn.htmlqmail_queue.htmlqmail_remote.htmlqmail_rspawn.htmlqmail_send.htmlqmail_smtpd.htmlqmail_splogger.htmlqmail_start.htmlqmail_tcp_env.htmlqpidd.htmlquota.htmlquota_nld.htmlrabbitmq.htmlracoon.htmlradiusd.htmlradvd.htmlrasdaemon.htmlrdisc.htmlreadahead.htmlrealmd.htmlrealmd_consolehelper.htmlredis.htmlregex_milter.htmlremote_login.htmlrestorecond.htmlrhev_agentd.htmlrhev_agentd_consolehelper.htmlrhgb.htmlrhnsd.htmlrhsmcertd.htmlricci.htmlricci_modcluster.htmlricci_modclusterd.htmlricci_modlog.htmlricci_modrpm.htmlricci_modservice.htmlricci_modstorage.htmlrlogind.htmlrngd.htmlroundup.htmlrpcbind.htmlrpcd.htmlrpm.htmlrpm_script.htmlrshd.htmlrssh.htmlrssh_chroot_helper.htmlrsync.htmlrtas_errd.htmlrtkit_daemon.htmlrun_init.htmlrwho.htmlsamba_net.htmlsamba_unconfined_net.htmlsamba_unconfined_script.htmlsambagui.htmlsandbox.htmlsandbox_min.htmlsandbox_min_client.htmlsandbox_net.htmlsandbox_net_client.htmlsandbox_web.htmlsandbox_web_client.htmlsandbox_x.htmlsandbox_x_client.htmlsandbox_xserver.htmlsanlk_resetd.htmlsanlock.htmlsaslauthd.htmlsbd.htmlsblim_gatherd.htmlsblim_reposd.htmlsblim_sfcbd.htmlsecadm.htmlsecadm_screen.htmlsecadm_su.htmlsecadm_sudo.htmlsectoolm.htmlselinux_munin_plugin.htmlsemanage.htmlsendmail.htmlsensord.htmlsepgsql_ranged_proc.htmlsepgsql_trusted_proc.htmlservices_munin_plugin.htmlsetfiles.htmlsetfiles_mac.htmlsetkey.htmlsetrans.htmlsetroubleshoot_fixit.htmlsetroubleshootd.htmlsetsebool.htmlsftpd.htmlsge_execd.htmlsge_job.htmlsge_job_ssh.htmlsge_shepherd.htmlshorewall.htmlshowmount.htmlslapd.htmlslpd.htmlsmbcontrol.htmlsmbd.htmlsmbmount.htmlsmokeping.htmlsmokeping_cgi_script.htmlsmoltclient.htmlsmsd.htmlsnapperd.htmlsnmpd.htmlsnort.htmlsosreport.htmlsoundd.htmlspamass_milter.htmlspamc.htmlspamd.htmlspamd_update.htmlspc.htmlspeech-dispatcher.htmlsquid.htmlsquid_cron.htmlsquid_script.htmlsrvsvcd.htmlssh.htmlssh_keygen.htmlssh_keysign.htmlsshd.htmlsshd_keygen.htmlsshd_net.htmlsshd_sandbox.htmlsssd.htmlsssd_selinux_manager.htmlstaff.htmlstaff_consolehelper.htmlstaff_dbusd.htmlstaff_gkeyringd.htmlstaff_screen.htmlstaff_seunshare.htmlstaff_ssh_agent.htmlstaff_sudo.htmlstaff_wine.htmlstapserver.htmlstunnel.htmlstyle.csssulogin.htmlsvc_multilog.htmlsvc_run.htmlsvc_start.htmlsvirt.htmlsvirt_kvm_net.htmlsvirt_qemu_net.htmlsvirt_socket.htmlsvirt_tcg.htmlsvnserve.htmlswat.htmlswift.htmlsysadm.htmlsysadm_dbusd.htmlsysadm_passwd.htmlsysadm_screen.htmlsysadm_seunshare.htmlsysadm_ssh_agent.htmlsysadm_su.htmlsysadm_sudo.htmlsyslogd.htmlsysstat.htmlsystem_cronjob.htmlsystem_dbusd.htmlsystem_mail.htmlsystem_munin_plugin.htmlsystemd_bootchart.htmlsystemd_hostnamed.htmlsystemd_hwdb.htmlsystemd_initctl.htmlsystemd_localed.htmlsystemd_logger.htmlsystemd_logind.htmlsystemd_machined.htmlsystemd_networkd.htmlsystemd_notify.htmlsystemd_passwd_agent.htmlsystemd_resolved.htmlsystemd_sysctl.htmlsystemd_timedated.htmlsystemd_tmpfiles.htmltargetd.htmltcpd.htmltcsd.htmltelepathy_gabble.htmltelepathy_idle.htmltelepathy_logger.htmltelepathy_mission_control.htmltelepathy_msn.htmltelepathy_salut.htmltelepathy_sofiasip.htmltelepathy_stream_engine.htmltelepathy_sunshine.htmltelnetd.htmltftpd.htmltgtd.htmlthin.htmlthin_aeolus_configserver.htmlthumb.htmltimemaster.htmltmpreaper.htmltomcat.htmltor.htmltraceroute.htmltuned.htmltvtime.htmludev.htmlulogd.htmluml.htmluml_switch.htmlunconfined.htmlunconfined_cronjob.htmlunconfined_dbusd.htmlunconfined_mount.htmlunconfined_munin_plugin.htmlunconfined_sendmail.htmlunconfined_service.htmlupdate_modules.htmlupdfstab.htmlupdpwd.htmlusbmodules.htmlusbmuxd.htmluser.htmluser_dbusd.htmluser_gkeyringd.htmluser_mail.htmluser_screen.htmluser_seunshare.htmluser_ssh_agent.htmluser_wine.htmluseradd.htmlusernetctl.htmlutempter.htmluucpd.htmluuidd.htmluux.htmlvarnishd.htmlvarnishlog.htmlvdagent.htmlvhostmd.htmlvirsh.htmlvirsh_ssh.htmlvirt_bridgehelper.htmlvirt_qemu_ga.htmlvirt_qemu_ga_unconfined.htmlvirt_qmf.htmlvirtd.htmlvirtd_lxc.htmlvirtlogd.htmlvlock.htmlvmtools.htmlvmtools_helper.htmlvmware.htmlvmware_host.htmlvnstat.htmlvnstatd.htmlvpnc.htmlw3c_validator_script.htmlwatchdog.htmlwatchdog_unconfined.htmlwdmd.htmlwebadm.htmlwebalizer.htmlwebalizer_script.htmlwinbind.htmlwinbind_helper.htmlwine.htmlwireshark.htmlwpa_cli.htmlxauth.htmlxdm.htmlxdm_unconfined.htmlxenconsoled.htmlxend.htmlxenstored.htmlxguest.htmlxguest_dbusd.htmlxguest_gkeyringd.htmlxserver.htmlypbind.htmlyppasswdd.htmlypserv.htmlypxfr.htmlzabbix.htmlzabbix_agent.htmlzabbix_script.htmlzarafa_deliver.htmlzarafa_gateway.htmlzarafa_ical.htmlzarafa_indexer.htmlzarafa_monitor.htmlzarafa_server.htmlzarafa_spooler.htmlzebra.htmlzoneminder.htmlzoneminder_script.htmlzos_remote.htmlincludeMakefileadminadmin.xmlbootloader.ifconsoletype.ifdmesg.ifnetutils.ifsu.ifsudo.ifusermanage.ifappsapps.xmlseunshare.ifbuild.confcontribcontrib.xmlabrt.ifaccountsd.ifacct.ifada.ifafs.ifaiccu.ifaide.ifaisexec.ifajaxterm.ifalsa.ifamanda.ifamavis.ifamtu.ifanaconda.ifantivirus.ifapache.ifapcupsd.ifapm.ifapt.ifarpwatch.ifasterisk.ifauthbind.ifauthconfig.ifautomount.ifavahi.ifawstats.ifbackup.ifbacula.ifbcfg2.ifbind.ifbird.ifbitlbee.ifblkmapd.ifblueman.ifbluetooth.ifboinc.ifbrctl.ifbrltty.ifbugzilla.ifbumblebee.ifcachefilesd.ifcalamaris.ifcallweaver.ifcanna.ifccs.ifcdrecord.ifcertmaster.ifcertmonger.ifcertwatch.ifcfengine.ifcgdcbxd.ifcgroup.ifchrome.ifchronyd.ifcinder.ifcipe.ifclamav.ifclockspeed.ifclogd.ifcloudform.ifcmirrord.ifcobbler.ifcockpit.ifcollectd.ifcolord.ifcomsat.ifcondor.ifconman.ifconsolekit.ifcontainer.ifcorosync.ifcouchdb.ifcourier.ifcpucontrol.ifcpufreqselector.ifcpuplug.ifcron.ifctdb.ifcups.ifcvs.ifcyphesis.ifcyrus.ifdaemontools.ifdante.ifdbadm.ifdbskk.ifdbus.ifdcc.ifddclient.ifddcprobe.ifdenyhosts.ifdevicekit.ifdhcp.ifdictd.ifdirmngr.ifdirsrv-admin.ifdirsrv.ifdistcc.ifdjbdns.ifdkim.ifdmidecode.ifdnsmasq.ifdnssec.ifdnssectrigger.ifdovecot.ifdpkg.ifdrbd.ifdspam.ifentropyd.ifetcd.ifevolution.ifexim.iffail2ban.iffcoe.iffetchmail.iffinger.iffirewalld.iffirewallgui.iffirstboot.iffprintd.iffreeipmi.iffreqset.ifftp.ifgames.ifganesha.ifgatekeeper.ifgdomap.ifgear.ifgeoclue.ifgift.ifgit.ifgitosis.ifglance.ifglusterd.ifgnome.ifgnomeclock.ifgpg.ifgpm.ifgpsd.ifgssproxy.ifguest.ifhadoop.ifhal.ifhddtemp.ifhostapd.ifhowl.ifhsqldb.ifhwloc.ifhypervkvp.ifi18n_input.ificecast.ififplugd.ifimaze.ifinetd.ifinn.ifiodine.ifiotop.ifipa.ifipmievd.ifirc.ifircd.ifirqbalance.ifiscsi.ifisns.ifjabber.ifjava.ifjetty.ifjockey.ifjournalctl.ifkde.ifkdump.ifkdumpgui.ifkeepalived.ifkerberos.ifkerneloops.ifkeyboardd.ifkeystone.ifkismet.ifkmscon.ifksmtuned.ifktalk.ifkudzu.ifl2tp.ifldap.iflightsquid.iflikewise.iflinuxptp.iflircd.iflivecd.iflldpad.ifloadkeys.iflockdev.iflogrotate.iflogwatch.iflpd.iflsm.iflttng-tools.ifmailman.ifmailscanner.ifman2html.ifmandb.ifmcelog.ifmcollective.ifmediawiki.ifmemcached.ifmilter.ifminidlna.ifminissdpd.ifmip6d.ifmirrormanager.ifmock.ifmodemmanager.ifmojomojo.ifmon_statd.ifmongodb.ifmono.ifmonop.ifmotion.ifmozilla.ifmpd.ifmplayer.ifmrtg.ifmta.ifmunin.ifmysql.ifmythtv.ifnaemon.ifnagios.ifnamespace.ifncftool.ifnessus.ifnetworkmanager.ifninfod.ifnis.ifnova.ifnscd.ifnsd.ifnslcd.ifnsplugin.ifntop.ifntp.ifnumad.ifnut.ifnx.ifoav.ifobex.ifoddjob.ifoident.ifopenca.ifopenct.ifopendnssec.ifopenhpi.ifopenhpid.ifopenshift-origin.ifopenshift.ifopensm.ifopenvpn.ifopenvswitch.ifopenwsman.iforacleasm.ifosad.ifpacemaker.ifpads.ifpassenger.ifpcmcia.ifpcp.ifpcscd.ifpegasus.ifperdition.ifpesign.ifpingd.ifpiranha.ifpkcs.ifpki.ifplymouthd.ifpodsleuth.ifpolicykit.ifpolipo.ifportage.ifportmap.ifportreserve.ifportslave.ifpostfix.ifpostfixpolicyd.ifpostgrey.ifppp.ifprelink.ifprelude.ifprivoxy.ifprocmail.ifprosody.ifpsad.ifptchown.ifpublicfile.ifpulseaudio.ifpuppet.ifpwauth.ifpxe.ifpyzor.ifqemu.ifqmail.ifqpid.ifquantum.ifquota.ifrabbitmq.ifradius.ifradvd.ifraid.ifrasdaemon.ifrazor.ifrdisc.ifreadahead.ifrealmd.ifredis.ifremotelogin.ifresmgr.ifrgmanager.ifrhcs.ifrhev.ifrhgb.ifrhnsd.ifrhsmcertd.ifricci.ifrkhunter.ifrlogin.ifrngd.ifrolekit.ifroundup.ifrpc.ifrpcbind.ifrpm.ifrshd.ifrssh.ifrsync.ifrtas.ifrtkit.ifrwho.ifsamba.ifsambagui.ifsamhain.ifsandbox.ifsandboxX.ifsanlock.ifsasl.ifsbd.ifsblim.ifscreen.ifsectoolm.ifsendmail.ifsensord.ifsetroubleshoot.ifsge.ifshorewall.ifshutdown.ifslocate.ifslpd.ifslrnpull.ifsmartmon.ifsmokeping.ifsmoltclient.ifsmsd.ifsmstools.ifsnapper.ifsnmp.ifsnort.ifsosreport.ifsoundserver.ifspamassassin.ifspeech-dispatcher.ifspeedtouch.ifsquid.ifsssd.ifstapserver.ifstunnel.ifsvnserve.ifswift.ifswift_alias.ifsxid.ifsysstat.iftargetd.iftcpd.iftcsd.iftelepathy.iftelnet.iftftp.iftgtd.ifthin.ifthumb.ifthunderbird.iftimidity.iftmpreaper.iftomcat.iftor.iftransproxy.iftripwire.iftuned.iftvtime.iftzdata.ifucspitcp.ifulogd.ifuml.ifupdfstab.ifuptime.ifusbmodules.ifusbmuxd.ifuserhelper.ifusernetctl.ifuucp.ifuuidd.ifuwimap.ifvarnishd.ifvbetool.ifvdagent.ifvhostmd.ifvirt.ifvlock.ifvmtools.ifvmware.ifvnstatd.ifvpn.ifw3c.ifwatchdog.ifwdmd.ifwebadm.ifwebalizer.ifwine.ifwireshark.ifwm.ifxen.ifxfs.ifxguest.ifxprint.ifxscreensaver.ifyam.ifzabbix.ifzarafa.ifzebra.ifzoneminder.ifzosremote.ifglobal_booleans.xmlglobal_tunables.xmlkernelkernel.xmlcorecommands.ifcorenetwork.ifdevices.ifdomain.iffiles.iffilesystem.ifkernel.ifmcs.ifmls.ifselinux.ifstorage.ifterminal.ifubac.ifunlabelednet.ifrolesroles.xmlauditadm.iflogadm.ifsecadm.ifstaff.ifsysadm.ifsysadm_secadm.ifunconfineduser.ifunprivuser.ifservicesservices.xmlpostgresql.ifssh.ifxserver.ifsupportall_perms.sptdivert.m4file_patterns.sptipc_patterns.sptloadable_module.sptmisc_macros.sptmisc_patterns.sptmls_mcs_macros.sptobj_perm_sets.sptpolicy.dtdsegenxml.pysegenxml.pycsegenxml.pyoundivert.m4systemsystem.xmlapplication.ifauthlogin.ifclock.iffstools.ifgetty.ifhostname.ifhotplug.ifinit.ifipsec.ifiptables.iflibraries.iflocallogin.iflogging.iflvm.ifmiscfiles.ifmodutils.ifmount.ifnetlabel.ifselinuxutil.ifsetrans.ifsysnetwork.ifsystemd.ifudev.ifunconfined.ifuserdomain.ifpolicy.dtdpolicy.xmlinterface_info/usr/share/selinux//usr/share/selinux/devel//usr/share/selinux/devel/html//usr/share/selinux/devel/include//usr/share/selinux/devel/include/admin//usr/share/selinux/devel/include/apps//usr/share/selinux/devel/include/contrib//usr/share/selinux/devel/include/kernel//usr/share/selinux/devel/include/roles//usr/share/selinux/devel/include/services//usr/share/selinux/devel/include/support//usr/share/selinux/devel/include/system//var/lib/sepolgen/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -m32 -march=x86-64 -mtune=generic -mfpmath=sse -fasynchronous-unwind-tablescpioxz2noarch-redhat-linux-gnu  directoryASCII textSE Linux policy interface sourceSE Linux policy module sourceHTML document, ASCII textmakefile script, ASCII textC++ source, ASCII textASCII text, with very long linesASCII text, with no line terminatorsPython script, ASCII text executablepython 2.7 byte-compiledXML 1.0 document, ASCII textcannot open (No such file or directory)?p7zXZ !#,] b2u jӫ`({Lbs1g!^6$Le1HjŻpb+dbU=w,mx_E&&3L BP\',H,<'!zZ]j|V]bK\><DF̕ⳝX0vAnuU)W_?0iUTULV_іdmKaٰ҃VZpjחY1t ͪVAN>9xUq VQ1zI 8h}Wٵ9M֟l,AJqZΒ4&'ol1,q i ȸ&X^F.,VYTw|R tj1B1Ȼ@>’KEM;yz,@p$]w.60 ~(`K9mEaA>{.gq] Ȁs$*29S#`e&ԧ;+LI]$r1c\iAfe*x)nL]$9h Ye]}w27:5dh4,QV=nv3 $<"k*2f~lKIZXv<脡9HoUvk{b}d~MENYw[ 0^)?ÒXtL;Ԣ#<B'x``|q.qV,n`$btv:K1vXod ۚ|8uTZ>{4ti9?A)jtJ>#pn΍UFlDWECmN䷰y^VC5\bD"ȃB,TlFFnxī&mPRTM;+3X( WI'` =.K^ fN JS7B5)."YuG$igjņ b~,2,У!!f>SdƨBC'ں߸f HqOsdz}INu\L;Ϙ%E-2J:Izv4Ś6OU)8+_mlIU/HgV]˷WIM"^lZuyتw ?-P=^5\ *o\~֊kBS"D8UwiMBj0yy9Q3%C/ObvW{ZLV=(RC>e罿H+M5eR-]T-TS 8;M&CrdޓrЪTvKQ!Rbg!e.՘{У7IL\rd1~K|l9Umۗ㎭Jd'=x\>òD"fjh,³ş6"@^Ŭ|VLT3OUՓd:۬J6qigҵNF.|^EHb0o:9VU']̇ ezȏMZ" PiLী# (#Ey{rNs[,7KHI =*IB'*4 "V:pU W@UŞ#ݜgr5hSX[)54HkX"Y0xf(G,c:&LӗuPO&TsʨkZTƒrmG߳T9&O& p"^ y(Y2ӭ;W}eʵ4 OP վ|U؎ZI=t\!Wh:Sqxuj^ u6f ^MER򀯶co:%QSxnZf>SdJ2.t:O[qFs|G[0`e|a50wnrc:QgB)!Qjjh"8>rCTRlF)ݱm)%jǡZ!R] #OՄC|aVTYNDfae$qKitBY9̾PZZ- ݄1A@\q& s _;1{.,@٫ryw:,Z OKQ%1 Mz y~,A`e0}N?e8<nCR9 !,MUMX;oU?aILH!үOVi("{TƲ0#5gY΂~-ڜnݍ~?j4FƟ| ]7*ߕC#J%Ji' STW̗Y>mRA||x~ #)21>&3`$83b<+͗B{N6z_ 2!RFRy0% '6ys %x3n?)Gv'b{j̓˄EhVsiOo;ä5/.bk)NpmMlǧSzsyS}iV̉lݚf1 `= {i\۠Jۡ89Eȡ76EmMR&y"^aer[ L#Xq(~ͧ*TʣD&}jNlv%7g̀p:C|Me/#I~ޮ b~!>eT[v%ǼwPA;ĵ8)LDmg@m}`@a@C: dΧ].Skxm?%Trok):0"͉!.Ee&jє*8G~)2p:,8j ,; ztkh#C&P[p^OjVPAdUV܂`KX}{cI+^--U}'ZvP2ZG%ma"sUD{x+$ S`hx/uQYe9 Nj-Ar*T?`WY5KcZvOA6D;=q| V 7 E9IZ/)v17_,fGHU@ 81dϠd_ LӖˤPf?K\;Bp<SO?sLeۀ$劇һYiܔ l+κp'ޢ|lMkdJpIh .{̓#g!iapJ*NGs樝T`bLg-_K˜TMJFwӽM~H^ͺpU)J}o3E=vfq :迟 iFVv6_6$G4'Ȓ8Ed@!1^08z`X؊.an-u84}Tw.t@gB_ȏ]b˷?"ƶ4 Kkk^ģ%n## Yجjm\C+W\'ސm9o+ȪCFwV#_ . ލ֯= ɦm8XVmji&)f>?T-ۈ4&ųO*cT˺jwm^(3V#//^""h rwFv TOPVoi+#{AUXYૂHxƗ9e~p;H/:(σyG-XYB=ώA̿J#T.4܎x o 5JL RD܋5 6Mb5YnKETI!g} ;ww}ٺڈMvS6%,xT;-/:T:j K"cqƒо@96#ߒ1S$dP׽)*@^lZb=.kgbw6mAƝ` 6̩hzYrOѷyM8jrCĹHv)ycil.|`)vZ;j'[%A^RTWe6WٶcVS18k/D*\qnmt汇&փg:NygZ'Y +o۩G:jj-) by>i/G ف_K8< F\U i}n?ИJm 46o?)>{ܸ2JH *X،YL{e\^$+:ƨۮⰗ{I^Ƿ@hΌm+̶<["K Y7\FS>g|we,ïS?^|᪌+m{O-c$3˧N~hcawow1ƣF",y٤fv=6NK|`pHuSG 1 m3[JlJSp| &k; w1=KE#BIl3+ qȨjF(DV<6 Qy|"%uy&҄d)sxڧ.UO-`$?f8޷ XKX2p!f/@hqҼ@B8 >'J{qg+`m*K~Z8;Ed~_}ڀ3% :n]VIc8Dyrm <~EE&xKhӑFОVj!G"|V%SrJ(}X0S.{#켅]I 99K_˹]Ha<3=,US̱>2<8qǁļd| K+H %^۱I3Sg5?p<wo_2]SXt|Zca{Qv(R}+`={"$FV1dc73E[篟 'H jvllg xT"zL:P dAY)CzD'sG%材؉+:L VtiUw ՉpF k#~pM}c×jόl|zn"oOy?}y148)K" 1/ӺM E?$?!xUb?<*kK _TYsp\%Y~\Ξz;Wk.lWjBPj+ *޵NQ <6=_PgCN8(}i0 2!T*jPPg󶐨 _!|#XO{>ߓ&:P~mj2\QI@'qELf¯@d`8B Z~a&~;h,jQSVesP8KrX)v6| A:o.wʼn@y/oerI1W"'C2eh}ڐwUɤ.sPC5S ŵg9#xBwUƻWnZi-(Cl`wB[&Y PjvKM|_r4~N#r[1 "[-bDkRȷq:}\Cp +,R1 ߵ #].m%(QTQ_w[Ts00ۥkU$INƃd) "B#^R:?[$L:Ls2[38;,_(3B.IjT: Md(XTlbu%ScO|RMum"zKϊqݠߧݗ> K[B'>< ?IbΏ뛑A{)HEf>*-,?] V%˯#{x2 ~/)> :iH8 'fo q2my4 g&HeIv,Oȑ %~[?u~vpA 4*Od=ufqDnp@6ƞ?hTi4t1Kcz-K*9(5[^&l[8'ݎ)l1"\YIny'W. h.tՔUPw95}m\O Ft;Lxma=ή.y%kTPY"2;N y[OLz e~yJpv"s*Y F4W`H…=18!S3`}i`*R玭:s官iﲈ~q&eVem 3ڌfK(Ǔiͦkk]Hߛ-W8gEr@rް_J1$jo"!zLMLobAJ)RԻ(KZL3ygI-obO^5j q[4wtց ~%*u րUV|0C2eKy 5I>jt֕7<`J~8P!sVfM;˙2tM?$@ pyQ\u!0=BgKRn_l7@H_{K0$y.LkCN83%,J*>CM!jߨPwJ``3גzm0*r69#R[ۘ0_h\q1Ӻu4&ڡւ~k /Jn~O^3>OJ@ mlQ:^mȅUWtjy 2KGe.W|?X-. Xr'B:5"*ڦoW%}[Ld÷KJr\b2b^ JG;wy)}V bp?KeJdp$+VU<t$;yg8gT T`[)mb}? sk[GdAZk$O,Tr8 t^utOT"3˪ַFhk>F("gYRwTH]+O ;q`OՎy0A^O2CmSb>hZ Wd drca,TG\h4D2::vWAd' B11?f\LPn{G7[vBoF5e"G.e締4*Nv>Gg0Mel"Z;djo~)H|Fbޜ#W gl kbJ79bhoVHq<5,VKZa[Q + s ?1*R*?:jlnmypg< |;fI$N0<%B(]7u SbUfJ,2s=uJpdvt!4A=z9ȝrdAmj҄'\8A?t?nx!Cw^ek7.'W\ O?^oF 9z-[ai@*zѡ  ѵgj]%(n0ęΫ5;;]s {q] 6yWJtcեo}')=]ikmIyvK&^vw gZԘ ,}wQ9u]n'&A± ( / Y?qt ԆD2p3>k&__ K3.gJiJ`*|uf .d3yAofx[JFB1XM)}!Er W_ߦ ]֔ scs-/-߂D.9mpG)#0Vįɛfk^}zP@pӞ|80~d^{Zf\*bcx`%2'֝/?lCē@B Q'>I0>5*YEF*f֍#( MsO T:3N-]Y}%ӯxï NO#a\UZ37[HYNVfsA\f܋_Avm H JoyJACo=cA 㬝u({hM 8ZmKqEv7]Im!|@~AӮNe//3jZ,1$SP碄MB$[ИJYȀ/T^u49[j/#|Įʍs^tgfԡ`& m9_AxYv]7K *ǒ{ bذ#h3 [րAVmYHM(;.xMb}[?ܸ3$9=%-D !'TYG . 2"32e[raf FL % 1eKi @$D`ͣGmB4kKj~M][:,, ŶIq"9r~3)ĽHa{FE_dJ%)<+$;*6f£ʚ]DЧ ]q艎F9B  Krqq~%chP@!I6WRѪÇw=uS0Ƨ/|nk~;AHl'JZEǞk}zkSwL _Ӭak66AKq Cۍ4em< rQZ%w$Q- "ulnh70&pV9'_jC}*>sO9=a5f8Dݰӯ!jKJh$=˾W)L КKfE9.N["keVM:N#`?D8nQΨaG9R(EYVho|,֨7*=kD((o +@ۓabn <]m*>83\55sj!|/('7U J溏vm2%V*w6 3/P-yr2:_Ag VzgO׊,V?3ޱ:Z~庁A)%II8LjELaYi",GG6O^a`I/HMxLe$ǫ~)p75-]\-IQWNCk@vF2ҔyNwR{Bf]"m'tľCƠݲ{rhvqI4Gmo(vb EoKyopUd%ZH>to2ak gX\9dw^C[ x55ju)?4~??ڞC7WFk_Kk]h¡ 0}0#gx(qnV3q9IƼ&L(AN4W;xw/g2+:MCp^^V_N. _h1kyG"/Oz!aCx**iY|%ot=OW)0b#>I!=<G]gwWQ0gdž}@7nd7T͢6uH8,Z@"h;חsX烍}Թ )p@2Er'wdZ\D qn`LDc/kHyE0IAipSqMh9qj 8e˫T̘9ːrQ ~| --PxtIp3f/(-dH̝IBb`a Y|z ;*`ԗ0( jĶ=5gdu ,1B#˂yQ P<*\[ ZZXT"Hsi&eZ5N vZW+ZxL\.~75^kcWiy/ǙVpD;avvC X6wZ !ؐv#_e`\W9v2 1%S?-f"8B"nૺor$i0 j&J4Cm=Wڼ0&Ki7&- G9]^NHf~6I}E<ݽEPẐ*S*FȌNY;'ρ׎T`O k˓y "KדݬjHZV^iMB9fnJ1Q36I \e9XA7^sWy?<tc^Ay Y&MsP[tv- j݆O3.T6GMչP5Yx}y_&dٝS`!Z3F=9Hbb(51n2~_(i-Xa!QIG!kٛ }m/-!OUy8k/;oK`g[#EqAvfG,opǯ=ְxM ``*h'm#tb% `zo 8@P|ri2RZezRk]l*MN}0a\6jon>h2j wy|e VK),E4d<7T|ԃQ^]gnjL-ͽ¸5gA !.G}=hv ɐM.;d 1ME?b\6L,2N[(7;BR-!eK}Π&?2}!Jp!dZW))WH>'j`eť"W? `~Us6jڱy12mlJUV)ߓKRS5~ՒaXm['@rw5u|^vAbaDž΢90O`g^dg qZBA|"R-݈U}1s$ ]ok;_dރ+GÃ##*L?9R()3[<+%|nG4PyֽA>#Ҹ<;d?iChP$!ҕ~3' upa T i-2c74ѭ$ FztB!qKES(Jw*9޳U[0&R"a./n62_k>L̊㓸RVPT_0ޫʡA3ARaJF} O? 栶/fY>BY{U%a/<y-XZҼt0" bT8$A)/^wUv7cKRG!^# |!^\\E%YFjA$%bR Ja+%5mLIݢpf֕NvEuh*Aᘇ+&RPŴtWAs_рjwfT "gXtaj^y]l-?0K0g[ݗgev=khK<¥sw k9k66Z):0ͮVMKXX xKbGO[RZͷ%]^؈դB?|,3asz7#tĊ&iB[GU}iG08EUA @L)Q[_/'p7Ir$ sb_[k41+PݙZ )&jTC*8JM63O 2ewruP*In8YW:Vn*9L꿃O[[zE5jā;ۭ)Djdݻ*iS*Ċ#ќGa}Z]i6¾?&WǞtH#m[F*r[DT:1}lWGH>B/(]EbTQ6\ *'}LF*cPydL8#lcRP/l_Mò) nfOV 6<cW6މ!_[ !z ŻytX]$ttM?σ7XZ2|zouEXuKxya0VЗ^_d?K/A XTs'DBR Aɽ"fhxz bdYq_UɉhLc^N9V˧݉q)Pm\m6OD8F? QYQk܁8ZfR /~x;=, A 5s@ BkIZC6?t0Se.`d.6\ɶa9#0WVV 1䍸i]H0rYmEM1"z!9];dtZjY ѕd[Rx)IgR H`p4\v]"$)<}H|h1%Q`g0+  .:jHgxT]P Xwy˄g~>%;6 q!ڮ:p+3¹Hd94{% >U߅̧2GsNұǚJuEHWdjߋbwM%#8n㬠𬈐䠏FEA[SExRٛ "c5͎[ZGi@q]e܏鷽*>6 3ht@Er(VDDKTOq e䏃kom:KDTr?tuEᲡ׽,J%v>Z+2 RFM^%-X'EEx=3hP\RfEc=Z[3w!ERti/- Q̪ж-,G3"e ԋ O;x;2MPڏL&;Zo{2?lp?$S#(+qC\ޟ@R*YJ#ң \rV'9ugNYrGhu( qXH]ρNI7Yb26!F9z7)HiMc"*fJF& ܒѥC}Ȍfx~()ISM'Ug 2q&px}p3_ck&\ƞv-%pYBJwR9آ WlAqdF QhGiFÛؖmDˇ e7wϬtiHit M*"vHt`ZZZ ID kW#:!6t靁* 51 7u)՞VaNy}mKK^BzgC yMR ?g%ʓJmː_2P幕 KxY KU,zR"g?bL9 `R>UC_Lh+o-qf`]eI̿" tgG݊(BQFjP#($r N֗ڹj*(6^]/&~$Ti֡.VΎsB\4[dvV |$LچaA޷em,n9M15널|T#9%05P';YM' Fs$ Bg _V8I/n *CP68}N1ӓeYsӧG6ڗ R4V1\ۻpBC9B?90c7ilζ|\G,@;pPw2|cZ At*.\LNKkEBw6_@cQڒ.ta&% ?))w_L;APk;7-n14x?0s<쎓S,&}u=)_+:Afh7Gt*=x8T&o7hz _ylGLW32_a!sVI? G H Zhi R !Fޘ^oL}6u൉ 4?}~F;7v,5̬i]ZA 'k+{;pU4erHŃ.iآN/7"wpHj%y%7dzuG1jtNXkmyƵO:-8YmÅ2bh>H]o4Hݓ]a|C3ʷZyՅ+Ov{{X1>m.b9GE WzA^bU^ !*2[zHt4Y \L=v/a旁 6.?Zֱ\HD 3=Z)cT蟊E S/T ;IE0+fn4=J;!b.c:i˼ߠ𞍇_o4&^NdAW7[S8Bd$r)OXXeh^, ۾oL*IS!LJN483x!t~p<5li ^4?2H˻Ts?{-YEϸ@66XĀG]ɔBSW3hcwie)!Di}'9׆Pz\bӍ.ml[9d f{MR,2yġ;&[Ed:hPG J=QnzOoLv #Z``-B??6%*u哵 %@$Ғ+MQ#TʴGjx5R%ؽ3R$v&}x#zfZ G>-bm3p> ݷk`6O,iϿ)`zEQbZYs?c $BȲ_J,t IuTYry>b*K>sȻ ;a(J 8+gٍT{{5FcYPu2P)͌j,Mu{(R喹l;BJvU9 T@1PT)ՉzLo5 ލ3 tC\}dXA1kIO>lHٲ&+?AHÞJ%,(d%^.$1 :R.L_8s AR]ERc4qKKDp xyRҼ7(|nIÛi>ttoK{ZL>k0)4_E<-P; (@Z\!\1^C>D^C+ZN1W+B%NnOB_- .WH5"GOSc7ixYX]"\-M&CH;M㮢7dCue9PzOj0ȡ`(# (>dZ]$W-jkޔ/\XlnÅּ0~av.+,CmeR+8Kl܊dw%ڬTsneu{_-'8 NkP9 %J h^?da\pQXJkS,Wk!}#zH$C"AM@6ߚR33dsN&ug(÷+54p. BEJ{B4=KJ'D+(_"Z=\nndv t!_ mFtm ;ĥzE}sw5fp~DmHn;Yg%QXFsy+!OS\ptq>s>ZVs0W*Ȇu)'/ܒ4}B3/D#)vQ' ChY267ƹEȕKO,fQܿ2K[%. 8-| xaG~>^ZWֱtSePV99WTO(DU oo21%95 sϕ0B Up/ Z/ 7G%&~ӻr'Zey U˰rmFA;Zt S u&CSt3 ʽ*6q08΂^ A |}9 $7ڈ|`g6Mg*µU$쳡:BP6~#6V;Y=b3ij@"OzZ9kJe__|V)n|&P`OTHpGaۑ]9$P<>!˰1Gߗv8 "Eš*_CN[:uUޠ)-L+xYgD 5A;*\IV4P)>*lٰ9.$I ԥL Ey_ lQaDǯ 7Cmw逽"BI)Pf8k!F1 et|Q.PVe w3/~6",TRY)5M$|˴,;L+>OD7.Cc}r?V#s[sI|{qm{cT4/C:I CđÑ YM&>D e R,]nNYpsL0UG?iĢm1YMtoGO/mvdlg}U.!߀;7~ŅU)0dÜc0CmaS]q$EȨ2VP4Eo}"j9 ӳ($R0n3L;;Xa)ЭѿjOd jϵFS#͖䵁t^Xd=+Β1 {U4D=s+h?yИ*7Yx3gk^iXU{,z'LZ[  0k=zaۮӖw/օF5j^R^[k9{?7j;~pO vtSv/U.2X MƼ쭕<k0g,Oh^όg}J)uPU^1e e(c# ^[٣Jǜ[QHBaN?tTɢl Gpk(zᑴ]1..ZG#؈w #5,qQ[qw < LCԿ;*4ee"EᄟT褝pE-YޘCkW{D+Kf8DP.d>hdb-W%S\ϥp4չ`Q)XhܛDZTIn H?c:S`:þMf|A+FDpҊP:&VY&{@D7:EaD10UPJY0ao1wY{jJT54 yPG&4Mta&;r x ܻBDͰ}.?esgT,GL}PE-3`Q!Lɽmɗ1 UF61"ݎsȠq?h0o@fq Qt;Ll= AO(Ft`bS$W O ub2O6![tT@@j$lEOϹll"`zrzѴ۵$Or/2[Ä.n?"Y96XM\b;O)m;vgc.Hyi2J*JsNJq!P8Ka~u_n1q`ۓH-H lFw|K7-{]iYC@xJRAsWBE wY…ю鰅ܺ$t`/`Q-F:%S<)^#"UL(;r ɟ~߻_FJ*~ Һqٻׯ}#=?O2Op&ݐ '$NH [~ʫh"ߘE3SoigRa-t*,Ex羛p Bc$Ch&-k=i+ ߡ8M?ӤOL /.ephcyևws;`KafBh,%Anӫi'6K^oȖ/rDb*&틿F!XtjpuS/ @(ݵ꟪Rr_Rmط!h{D'Og<{DvpvRIvjS490>w}Aa+ GJ:Q@ ,(Jbx=,nH1FqA!бg'n7-%Jp^TgƓMVҬh$Dho?px$d8ɜ~!x, %{[(F{U] anR]1-𪇵ǷL'{>s2y4)-&jIT{SOn_6?}?N"0$d>Ky>#/'b tvZNS P+`ƇJ ,*4IHHG`w%XHQi.Ys$l&Ԃ% 'Џ+u Pmߺs@vĐ0U7걺S9A^TPmmTBD"o[v6sg,WʋQv!| 8UB'T}v)y#mraE񜶹i;f}KbjlygY:1㎥xDNF(R(dڒ`_0 d&RX& ogɒEvq0sJInV3<{2 lvN JK$#: Nf+cbW+-pD??W4۬΀̡1D`86=69*IwLyl "NBX[xÒ`c +,㢧aV$p&c-"Ki Qz7]q 0ۑXx˅@0@ E_Sj?ͳAQܖy' #h$Uv*|3M|Xaq 7"-s Ȟn5QUR]L(|Ol7"u6ܻejԋɳ@Y(ٟ(3JQ浞y'!09>RCAf9N,y};^MPv/x#HW<Us!opG%~zC ƣ[uxu.}QXKJP̭"ښkʾ6S ZIYyyya'=CJ8q@HJ dј2k%/KqdT>l> qg{a禉rX4={'3,|w2 Sh24 r5yyL4i3܌Z'y0Z饒t Z9QIyI XOyk"0,A0؟'$8)h) Gv]gQQxٻ"}t7cI4L>,@JyaJ1 J#V ? jSA> 1]h_M7/d8:sƺ#J}0.T4wI=QoAGOZ<[?`lXmv܁]VQ`5$!# Qg@ a"c6sTGf;O^Xv6EVGB>AFbԂ)<nzG6 &m_2xsK 7cXP:\&1jȍh(ous{<.0ʷMm08x5bOa4iLX6]em_w;7VjS |)hBf7^--eyAc_.ey0.h!%,UT"2 b|5Ɯ{&^5=RaYDZ:o*͛ |Gɘ[@f=e%7iűb8~\,$i(xz v5)e6q r(hJOy uW".A =yR6+hu^` kC^֗]7Q^KX]Q雼ޒ 7^5g+wuQ@_^^[`ʘ%W.[`6$irs<*Ń2 QH.^j#.K1kmS65;=;_=.azq?tٹ^Jwh7b,IIRfOQ.kCn8 CV|lw㚷m9C=Se;r[(I_Sd7krw>Ed6Vq\/bq4Ξd{k2:갚:M!RS>EYH/~̣`3mzخޝ @oM?ǷkbA?O.}|6dA[1Ȍ{pf_ko"rPFuuUEwp/њ/GEt9\qW'0aLdm[הݙ"ܖ8ў{m&Iؤ.Gzz-c;MP#wہۘ *X~\1Al$;. "*^W~u[ ] TD?gY%㯓xՇW2& O*`YTlҘAis.5lIecT xӺ&+b~^C)[<5u75摜ttҪ<븠]\$CϠV5[EPGy:plv.@ :2e/.֕c+fLpEM7OEM6+F?[>Es!@.|5ITE2z pPqOގb 5ډ8PqfGiO]Bs%|5,kԝV=;Y<5+9s [C'ri|A6AyVv-qU!Mh8;K JTm=-.F؄5~UբMĎy;a̟mC@;CeW25 !YnQh"XrXlXiE0u ^{.뺟O U:#J wtvsX$UiA'NPqkے;l^$O'&k Sm]RdkEVm޹9w(}+;ԉ;JxF4<+R>ب$Qb^<[تt7^iC  G\ &cj[Kg󏐢5gjο.^`lZI:zFZ݇8GIޖ.~*֤,R*'31,I`8YZ#e,XiN 6Ul[nlD%>^[>W,cMbP|~XU>qTxN]h(,uyܒuOM=߶Mn nF7Sgō̮OoZv*N3I-F'؇!?vNv_<=aOB1Zui =BZnfIH绊J=;/uNXPHruwraU[,&=/4u] p#,/FдC1xőe[~)fYcWJ}n5*mQ w $)=!< lw6!R=FOL_ }4+ֹ}ֶ;(lSse!*-2Ԙnn~*e>V u`$T+8!4BywQWU ,emP|W͑LvٮqxV}ޢ~=0)2N2?e9g\E.B֖iQ'q_G-IW |Dzzhϱ 4+7av23wRT \9pw+.t@6*Ε%EPE]`ʼnO>!L6r l(BF߰˱|R©;#F ! r)Ӆ(UHYVDm׼QIs9%u5"\c>*{iErdǴRf P]^ D0Dثê E#HjovNTL;Q#NC*'_e#F\Ϫo 15C||*km P?^(hĕPDauOKc5N4FU ]Ehne]wWU udW6-\:ܶ},ٮ+}W0jyU =eq Kw"F'Z+2Btvr_w[Vf& '8TC]4wB+Pn3slF{pcm` ׹q9MH!֝B@XGcF씁&m4w[$qe4Oz랁FΛضf-#l vtD+IнQhS8 E9"+eVU%6J[׫DePv鑵Luy¿p~&V!>}t=o eαM2>M8V|IT7DsKR~6&%d3D2f2]8O ?[I*0< ZԌ5(m @&恵;ۅ<b|Ǽ<RBF'm"UF# NYc$giKBj"#4q*<2-w5Ϗ3=2:j߭LP;0?x^kXb4)C敃 gր{?|0 s0$&[As[GBx!' (#u3rk3Ux+[Lwz/JSt"^]\;Ԅv]ACb"εѺϭbdMup>WC^Y{瑎WOEJ-K {sS`?'g $p_zv*3Le94mS>DAmKп+m_BKTlx8n3x;%}e´7 ˇ8a=bt[R$Q10op=/&R`*H3`~ߟ"RZ n:ŚU?J#P؇VoG$E>WZ)C#:NtqӁU#ōGl\2yiPz܎f GB.lDk"@&W }/;$S%6l)Q^Yڷh$(q/]ק[o毦2Iژb("QEf&D9J9i2'&bJp#:5|Y(Bȯ;#Y  HPj LPw p|@ݺJm N8= +ο1RqT?Z\ 0rPFJշB~=$$zN߆8Rć_`s&uBh$?V.BD/W rn pY_nWs" jW'΁tyKp 8PzϻᠬDY+B&҃s2Lbs:(>$Կ)rJcn˿'KNOcq8 b}oK!{mC Rٱzr%"ruޜ1LJy^$E=u(EÔQVcnYJMGv|~Y>g !4nCLҁvryFU>)i3K~\_nV"Λďn> eYPlW_nCPJC*4cչWDƈnjLjoý)kXDuaq !*yOR įgv1!wa|4.{ʭۯ2MA/g߳8Xʴ%S|LR)P6kǮt@XyC2Vϴ ̩VQ%PP1p7C^AlA7DTu{ dPb&FhCu7MPHlXUoI"U!`P֎6+~i+Pe\%6n;aSĪo!Lmx'aMcp5-Ks 0NJmEzK ?;Ǝ=שvTe3^SN}gKXu|E $VAkXM#DXWx\A:-j]Ugg"jwd0a0bErp! U֎8h\-P}^=mu>;O?[`BYy<(d- muXvH7xzM W߲$HJ _ɖ_$Rvp|CdXuQIޓIEBI(~ RU )5 tlNP:607;e|_t0 ^iiJ=7:Q1ѽm\q+HקJѯcɋE*a;5 b*\V M8shÞ`}RS_C팟q}=z+>k.Yk?D&S*,YoW6 7GG؈`]@hbȑ4@mZD,D)go%xq;&I.-.WyWN6XcDۇtVhףJuw`7.Qբ˜X=qjy{>+"F <|Rk=GdT,O/M rG#Y*H}%VN3't*8T0(>U p)& ߧV\ON\o0YN5ƽ*Υ]~L|EKU'zDĬEblΒvMa3/ t ?Aa?<k=fYŐL:o\> 29ѥ5×DlIǔMW<CGl-7yG;kR$jJO3yC`BߢBsDJr p?z|xym_7[djF@8|I>fW Bū0 +'P0]2䧦B7NQ  V?k{ VHK  *%( (rAid!?&m:]GF;\5!؉k1*މ:uL1@{XP-:I1ƇS[Ahcq{m.gԇw1v?h)ʏC KxăқVs6յkiNdwV')ϝVi9=%3zxkNnȤx)& DmwT'ϊJ"^0ND^7KS+A-z{ߧc=TD_y\!pۍ.Rt2fU{.ܻ޻RF@u n-=A;꒦ˮ*Hس-ZC};! im}g͌6":Lj/}qg~7S鿲dʗkŊ )mJQc"DXK[]N̕,`EHNtɶ6VGŖxL5AUjUg6 ~D.IɏvNOr_1D%bRyո,8%PiuI~80&3:R\;H+phtJ_T|Q4FOӋݦXwdOk'[]15+@}tnkr8bT_>s6F J'v1\Ӣ &?FʰV翗M]g(|9QiSHx_HdwLYN< b9*7Hy-5}4M^86bo߂ {LSմQ4q #țe OwxKG&GUhОS@i1 aeFgh沥58V}I7w psAS܌̩z6T!;K0΢0G:-]TR1uHcOS\3 ]"㐤zo x7n>DÎU۫Uпkkcư?E;3bsעbfrp1Ta+y^p/ܛc <0 B RFğeTCC w3^@ Si]> !j$\tPy^]VhKL%?LuO›J *C@;3kx~7t^cS Y$2:a?6٠O(lxOKlAG^.-Gfd1nꨈ9[x\`pvwYf9SSr w@5*P׷t12ZZ*QMW'$*yM 1sq ^j.0YcUXc%V: Q5k'| Òy8^w_9|/te QPݒk )I:&]$tFx3BE9X#]xQ5S=],ȳQ7y}ZDH<7㋗V5wzy@Čx19##>""B~. zKe? Y:wB^.hyDc&*5:P]QrAgRsZ]M?$mGCM^'(mYn ï'44UcAiZ'؛U:iM'ZpPܤXczخy-7[;6GDv*iuB]ulF4UA -f^i=, ޡnWS aYP!9TfSԗxˈ9ç5ew0~h}s]e+Y (/!DM)֭9▇^}dt-7;xj2wD[+FZBT/jUNMB8iej^q#gCE4PM!4w1a}݈D#(U^"8JNFÕ8pbw|c(DS}<)96s$ Fp* e[޹P g L=as2SkaNk }eEơXuWoz?) z9ߤ(WN*FtzeH!+y56δhnԓ1dI,?Y}2]b6wD6򻋮s&_:{/j&,#u: 5s4T!m$ 4 ,2 *zq̛\@1qX7a9.'݁Gɷd)"A~_TbzR.FjMϣϜ =6LlT?[۸3-%Vm'pJΣZ͖C<^/ä _ wv w=켙Kކo-XWgcU \bp *6{I=/sF6GD1h 7bJ@rxC!fWT4;8ݸM>"N6@nATΰDݟw@NCN_G[Eڜ>hEL#\n8j`lJZ8YT(ԻKf~е^q~}ɷeb*u9 |-3ЌkWi>D_]`HrrؕKm{B\8^"|@aӗ zRavī ( g쓄5YFWޠGFթ֓~\%Qj p[eWN- {?w/V9/?:uiGe!ҫ$OHu~8)Sd+fJNOҺ0Ÿ*w Վb8P~0e2 %#W(' qHhuEЌV{x( QVjEy39{,%v,̦v ˢӉkƒ5zq}  B՛٦U؉8pɆl Ý*vRI9вIu](5\?K{*R]e^ ^7:mqQXai21Zf^>eSk$p?,ް_xnB(# HnjHjAR1i@ƹe5A:bxpU\/6l,M`RpŘL/u8WHjuZ.{"޴BP s rNex>` s^0k-"6:8B6Mficku0;F:gj_gԡm"On|~Ƈ*,"%>!r VkZ#7`߉jO+!*{Dͫκ&9s W ')f'éIu-"~ܝc1le"l X,se੣-i2CRʔ<=A[ƣGy8FYzBZRzT\}%oT:@'#˦"W̏5Dïd {L0TsoɩF6 !2ACs5=@ƔsT3`\|J>9gD!%K>Z%*@@~P+ Ivr yEg 6JXGySO -;͜_l쌱6Dv-RlZ3&/~ĈTtY_q:GPu(eNLKJ7|^/>[ xjڗzsW =5[@}K=R8JůȠnʎutYc|*l`A;"`+'xfxx   >VtT+-׽.1CNy: |mE'zN4On<6h/:+L=Ò6,$RiwnuOb-f}8 :pK1+l~Wb eEE\I̔cԂybQ!N8IaZ 5/CK}n/ aK+@iK!P8oE1Ѻ%QύFdզ](J9ndlu6 ƙӞm8!Nn)f0&+>\-лRxWBF||+r74"=\nniL, Q"p5IpxpΡӘ3x%bLߜ-pmoPu];Cf֛6"݈BrmM,ࡈJ#-[&:c*i ^GK{xxSҦSqm.¥hi+M۸/a?I|rOsȳ6]c$K;(C0%>9IPB]IRoC&rFu4HK_Oy.3൲Ƹ?[OI.%PBfoK>O\UV4,\ =礝ǮvT n)!Z``y3߭ su'o P\5˛yS\+#۰A"%U1nk*oBﳴy2Vvu%/V~va`PʲSő,a5A '\7(B8cCOI8IЊ̗PP ^0- v R.gNY;E3^f 4RWSH}&wqAUF4 'h?8 tz$ZkI1;RCC^c )ƫCGi#&R%hmWdYaGa 2,Ҥ)^4PgJh䨬4[a8ru=T39 Y-霿=[;yNJKap->72y)&_ȶ}ýJJ=lZz/@VX 0s/B]i*;Աu%_ kbpW)%P[2Gta?@/!E#6_   Idۙqv8)ZEXS!Ӥ:1ˈ{Y8j9Aoɺ`Dd\]~8@b4.![0& 7 d\iq~܆b^.Y OIJ7:kx 6z<*u :( P Pŧ#0 tfT 4z!/ +5Ԙ+3iKeq.LjGĔ+{5Vc5(lC,]@L8(| O! w7ϵ[F|ZB EYz?̼a6L#y1FGɱd;뇲=cmpR[WZ=Wӯ@0Ok8{0C}\ARӐ6~ QlRvxMibm d;Q&ƖuZ wKIռϠZ5dyKg~cbՒy EgVz)5Ld _$"jYs'7Ƌ3ö<% Y٣|> YC bdӫ:U"r?֢/x*EnB0Cas%/cFHNpruU:m*8 }-bjQٱcڅˑ5Ho%RL%'vjDOX^Jjmbr7i˜0^S燲vDPE kezWXlx2m |;ozZa_AYrxj~Ry/̘lx{$U:4dH{&ts;B0GIK,k"c"Ϩ9(O:{~ 0`Y,3?*J.F.Ů) *}4nϛ#XH֓'7P2ysUU5p#q39dA]|ldҸi%(Xq+4CF74lk1jҖV+\Mq$kb5zlTd*2sjYiD٪Uk9^vN3, _r圩FTl Ii*|Xz9#aLOPs뽃d_Mt !f"ϥ{83EkYݶcP.ѓ;nMkէ =D75ɨ[T[!-1ƕSO0*3f)u`Dђv& JJj>&4ӆƊT0&2.ȵ#]e;F  `LX (4QkK47\q>u6lE(§s_P|{x=3捊$`ۑ$m3Wp վ(uR1, oG,HRgNޣll'2#S4 []~_L)M0x'agl뤦L.h2].]/vm*&%i/ㅮRm_F+C33y7>5V!yJo[[*ըFpk),rW746?ms7'u%- >ҵ W@iZٝ"9],ceIYP6Ɔe'(tpÏJoVGUc!D(з[-`}() 51ϘSgCa'W},A֗5 y)GeEݩɰ4Ԃ@BmCpE5\::1YGʄJnkhGkvK-cpJ3q26_79oA0a /sFe<* 8V( VP PiZx}M .?Γ#y`JF6j\xm+1n Taw8yYQ܋.3;MIr@s `zŏvXnI'a:IW1{ui0+L6L漓ɖqGETjb4J)E[)$WKD/n}T:c=zר|ހtn$lCM v'dX5J =< cy/3W{XlG~1Dͤklܐ5 Ԥ̖^: ĝ$w+7#+ WH&`d4 7I9mN Eit!6+{?ps=A  7$+&gT DWD{OfZhGQ%#|{v72XQ?~?t [V%t!#D/5>8Q)$LhZ`e>̱͜ mD?? [ՏNak"P {>ͽ;ʖ6*w]Kм?š2"{V~d$tS͸`!bKh޲6IGߔ"">`ֺNѳta%fD~fF{r78E(ʌz22+t^gzHXfzܸ'qiS]Cyf(&-\ Jg QM:u27Փp<0@Y(XhYrwv! ^'o<.-~y_ ca%\>KIAv9^ +=;1Ω{lp4VEHqUZb_=)GSNղ^;KG"Zʜ?dKM+WX . #^"o;&נ; A JEz7cC-UxLk0Q#S,eyPgkDR_}aQ)^/<@"\#C|1qZuqWĩs_d0f(~5W c,qaw"qG;WλCϨE rБ1A9N<0$5~ 3%]~~>a"bC1Ͱ#JbODNsVVwDĪ){"} L&to 1YdW;?jP4Ėګz,AXg3}yK+"SLw a,Ƴq'eMv^٩%w^ ?7{&E^;=.OW#8v]LZg+o ,f?5:kk> j0=T綆l!/(K겔4d&))9Sv#ݸE+OpoȎlA[#պ^ߪ/1VfJ. `d39$7/ uߡvQ^A2K1yUZZNM^Kqb;RQƛr' {I!uXLr}y}eJ!IFi 3eA#^rZY JL s%j3UTƉڗuvt;gVg!8s^{wjAJ],- uG?F>TS=M;[I[-r6C#ikϺUu?ɂ `x{%gP&/hOcQ8OjXۻsݙbyFq!M 8٠ѱGrt+̎:d4Q|Q+ [ o$H B͖nG6Wd#MYhv-0|DvadzQZi'qāpK!:ˆw8"ɰ <>=0WN&p 5-I٥-9+j;.`k9L4簣@Q XZt8Z@5 ؽ OLEe:q|Aw>0OG5,cDI3L%o?,: "{tST3?̄j&1%e9G;?w " !րuqb6*j6# uC0oK5^$jGd,p (!AGL bVf0M2^GrI'Ty%+ ޸1WA>!8!ߊO~P~(MD> &ؐ:6I 3p&_VPE0dñ*W?ʢEȮHZ`yVL:hk)H6cNCRZW$?-HG-8V@gC ,a 0b 3byAP?ÀW:jB >EI/*݈]n*Ղ# >2OwUpٓ| %m)eh$,&VNX[a!c WDAWv%FDץXF@.mHF+B Q!B7DC#($L^uZbnL9 :1ZQ$Z<6)2]S#󝩾sưF裂k1@$ rZpJ.(ܩp* S+u dKж/ݼ>|z;43i.ZnzZQ9pxm㟁~8톉ĞJC#%# ڟ:z vfG Nѡ*tLBWvo\/Cb<aNHgSX[\ܮ|ZF#ΐ;\QXiK÷wNRQ009j6tEՙ!l+: :o+c Ol~&gd>IxRŕz% ,T;J_x!ƚX8#Sk'Tӫ tXbo=7(2M^BSԩE|dQ(,᷏\w{\S"9W W:U ae+bB0>' IbMsG[ {@RLXw})Rzme*P:.F%Ϙ;̽Sb]K( PnMQ.Kzڇi}:Fٔ<WyNyJ({tj f*&~y֝XotBK@ !%rJ(Iu7} Yzوɓ\F ϝ'[}hGL˱ۅ*zQD+9s8tڷ4A9Cϕt(/*) 1ٓ^{5TDuMpޑ e1V!-"1T" }\Y@Qs2J龍|'.qDa\[6汕Ň;ipiž5)^2Of1 D[ma  :KZILюAPPwV7 ,4]25Wf2OO8m:"P틚OiX; 6{U6dϵ?F8-W]Kڤ"Y&~Z 5 ] 8ǵZI znՐ#u̝WZ%H ҳhaF]DfIG߿*eF7PvqGB u]&F5Diۡ,fQeoĽt;儁Ls,.;|氡#{31N J>X0a]U_K&W;z 8rw~0l8qqC-EiT1EPUQFK xwmX791sblRA,C._v pݶ7Y&#J'iuj*M@=q.%@HDשQTCźj)n Þz#i}Nhs"zN~z`O@FvJ|,bwAeq6KZsA|ͥij-GNL [$Ah -\́KŠD)9Ć*]P)DdgsdQkPږz;Z"x>utH(Lۖ| Sr@Ds˿!؆km,ڀQ+Qg|dC7785t^)=A&Nj!ogc.|`ы}4f_q1I,KvVn7hF?!"v/ y^bܴ VXR 4-8&hi!wb/wEЫ QA'a&Ҟ_}Jz͙GTWǩ1|OXG =?;]k+LhYcቁcJb`عh6m%shbxM}Cdh_r͛`F|5چ }$kwbڻXN' =JWoʰPm?P9nnA$n0k[G~Ih/sS}PyKGՓ.X{ G"6jw`>2g]J6XlVlUDޘ0kH $?XNfGnDGJΙmQ9N]O)/ti-Kb-F,ʱTTWr! W2q myd_fM"`f2}L3,DXqO/HF*6; #!СH'Z0oo &֧YOB(063_\ϱ:Κ&]UQγ!9rc41]AT9ԯȳ" ePsj?' (*zK!Cn*CAݝ>!7ΉT Y0?x~fN_v:͎ӡ'Y #u;{i=J xJ ߒn0@㢠HO!GJ[b}ڻz"JMF| (}Pvyy֦+"}\Ϣ;qW(n;d(2L{Nwʩc %yEkO|į/3lfQ1i< t`Nl{C :<]଼Ĵg\4G_OJQ,3UkR+dN1hݙ+T-ʔ]xu͔n(’֍h#`*r{<͝㗣Ev@s|s;aC#j$x/Q9-Ujy|fՠM>yI`EM Ob KjIs FBY~W wEWY[]BBfpf7yNy+*wOg-yOyK3fui?i7!er|{Mnv]X?׋$F<6oP+jqobKSfXw1 @埐;:ښʥ. qQ8~6;{ SE19uX~/S6dl!hOu0Pz鸴om*+椠aHuK\*1Tr6L Y?W'rLO =1 6dbn#[$7q=Sװm6nG{ԽM۬W 5δrn?nD&#R`X~: /0S\eh+4ݪ\/Et}2ƌ*Pgi;D OpT(qlS7Ի̠Kч] wa%`>C8fD@ Z<%gaE__/]M3z90,IbX?"2+ᗄIhR`5e IK_ Z,Dhl1|_ )eŏG;r`ygR3|+שXNv_phJD`)80oA8@X\D0MK/N4tꩠ֗i0A^J*w#.qz+@4XuR-jL!C0<MD[1.Jhdߝ!+V }M%h5(B>O8Ɉ` ek@D'rIyZZ$wyȿ +FRdsj Jr&$dMW51,رj?p:`m~ҞTpekp$cCL,[ cu':Qu, lW_Emy{?Oa=;6S^7_ * QHq^#xyy}8Z:1S!Tu`cJ^xG{La S _GZp޼B3k"(>!/UNEljG˫7=BI بϨQdj\OQɀӟ%_H|12BؙyiQ[T8nzh `Jr $Iu[MKgQRʗ.߂K?TM~a{R4AZ(mCHVa:m?Q.B_jUUc]UJSlk2DqԝpMSz]ZkƁR hX}PS wR_ p(R}( P{~3V+bUc+ovW(SX1qK,krױFyN/ 3'lJVɿà=T*$Gvtzed a0p[ƨ]"N!',CKuD@]PLXQ)0ٗln[^:yq9#mDYBd:mbBIgC{Be`Ef/?Wb1{h`2p" ZŽ"l+Y_EI+JvEAUWm$P§_ _Uc؎ߌU?&X9࿘ۗZ6F&Nz_(g͏Vce+3|.G1jAkǻX-`7qS? xBJA l̢s]8$|e$i,1VAZ'[Ϛe#L`qcj2 zk NwWonm wmw$15 T'K~P}^Csy;Ұ/Ē(^aዩ]o+{,& 6b&- ]"~IEX \,>% #c\hD7L&pogˤ4K;iU5$lwfŗNfB,=kw.%~R82-̝iDV⫸UY& 4Szbף(zcUՆWXcs{iw[&J[gz?_@u~ ~x=d6 oԖ?(i>)`Xs O/vyD.9CR$ӥp͈ߨUj=-xdbb`G>"_) Zr=UH=g5B}VDTTîr\[U} n!Xg V2b91Nꘈ IT=Z: ŒK.u: gKJyH3lugwzԿUʥp I\YSXo=]/@e GY ~{T9[ )- y!njIN}O>Z}u.T ePe,kAc6jWb [;GPm ψ`G-Cv}#ܚrπ[ @gs]fnd4'g"D&t,tu; ƯikvXY-`L%eOM8نVFLpY7u` P(^4m,c˄ߝbgsF0Jz`/<{vON6DT ]q,>Љ;Fg7c^ ӋHnO&|Z @shv wf vJ".d خmP] Pn\pmW: (b1dx e rr>ԡO,;f=<1<)I3@H݇:wJ!"5IUwei3+ajLT-kEϱ2O;w=%rPLL LH* Q#$;UsNO}w523חŰZufCl7S8~aU`|Y#klZq -H\~{ M~#x_.Z=--z*zElOl8y%Ș٬9' ,&m-`͖VtlxBLuBnwV`AdFVs" r9(U4jWSũ%]F&_g<o>OW|ȑTJ$nbϱ;ɉfaB*P`Ɉ _ 2Tergqńd)؇ݬ[ 喝$?)sN=^ Oo օVv}4e/:Uv)^ez.8']vv*b2XW ߘD3eYpʛVR֥#y;Lʮ!Fbz+ =@Q(OWѱ)z)-iCA=1ḢӘiu?($83$\vM6 kT)V6ruZ_keeP>3(Nj=tlSi faS_!ybz.1 {vyW ]}ݔ p7͉G4. ƭ:\[VtߧeG`68AGUĭa_ on~^5&R'WYOy.TB~aWHCT.YnNԟwvgOn4@rfPfiG1+us0E94a$: '{c"7Xtl^)%n#3lh`&:ȡk&Ď'~Qo^TDfLl9P?4t~ o%2"uL`v,ze:/IWY[G LtRC"1f}:PIT=s_ZOrՌ%H19_->O@AFb(ZdHi(~ &{X/| |q>so$AEy{%N<3V1Y{]r;~4^R.n&+4eHqԑO^ލNcٙݜUcܛtŬ_ OPRSvZ+΋Xy]*^m7:IyM=@O&մ6貽8C)-0}˅=ve3>WAz?_i@V׼vG]64oؘb5+aX\X7!\{G'GMN͒F'>ܷ-ЃALz m˖,BCԿ;L_[Cw3Bw9uIQY[CT>G?6k|%enR?kxn\XrDdBzoۗ5>Cǣv9McLTQңPjtUÈQP @p < &>ݵVua=DәcM$d*N3z`ɔ 6PC ~%H*~Dr&a撅Ttqz"+< nh[]Wg0F;ngvov$d6&$@$B,L&+*>H=ӉHk}tG hYvW# r ~`=?Иxq5)Ӯ́HY/o5}m&̹rGtmm,<{r꠸=B~+y0r}-TNp_ |ZRAx_TD[4;KUn Xڍ1 8.qvnq~Hj0frf*)|3y̿|]6MyqG=auhk߻V$9^@T1P 30!Kg&-aa I6z=ES!Q;qHd͒~[jm}n62 _1,jp$;!Fk)OL57uG%FrEط&U:̱K ĩwGBF݄^G[G6(]q100J_|S+ |N. D;yIh&y%mc9"PKTPzOirT aֳNj4yg,ښC6#gK?haLvձL9T*yUXFp;6%lr1FdֈaY\aťSQ]8F{os?>_E:,ws]1 )3V+d뭝*e]3jTK9EXX#@׹\Dy;p͜oƛZ=q7_#˄34Iq? I2:M`G|2?-$P\kT$Om:TLw @#'cEy# JfFzľg Uٯ?>?qSݢD,/0Cne :mh\A6$v8,-BJw(o4.WcgIO/Q1Q' Ҵ$L8]g7=G:J=d2Aw՜K4ܒRNep|:+I Nӈ/ZN=g#;RX娗U 0Ŭm9lsYu&Ν,ƌћ^y oY Ob mV-2gQxF/7Z&a4]Vіi-}?J$ h`:җE\"\|:WPxuBj[c*? +zGXR_TkNg!.2Ю;J+ ;1&C O<oO{A%-]e@NlR=(aߔ+xo ȶ\ b?L<:@pѾ{MEw:F/ʌEt\~(uW㢈('pfI9DaEJS:kc`̄P5p cQ'dܲ͑ֈTc| *I{ZgL3/ ſ.f(LHKO8 Qqu ?SH'<7%>v\ߎkZQjEwwH~񸁅3&C1R=QvH*KN5Ȑll3SKߤmM Z=UD1ZGtzWPd?Uwԍ)[] \\14죏[be瘈6=3hj_muJm=ui"=%c{v+f 0B"I Qy>?ڰp =tLYeCHppВDA9~͆j,V ^%?r/xhؗʲKEP"Ga 59EMd4E<뿐O7G]rj$[JE컆6=fzC"9ێ]Oľ't-zĈ%e֦}P&dl8=G`6\L4LJV7(Fλnm*o`| <|3i۪ 'O-j: @5RJeP-Z28 0KmX SO$׻E:(K'yD{ -|%'^N#*Y`}g\&W5g!\bf+4v 9y3ǕU@$`4|CMJ^fN>.P}3Vfuާ&߸82^T]޶oGZwB4"^W,Axjk$ MAe?ֈRZ#:&( ZV8$ig@Xmڴƚ2wt' F.B(da&klv*X}Λwq$Us" *&[o Mߨ_B27qm!EәH;~4>Ȏfr)?k)m!t@stf$h Z Wc|ɵkl鎲9Q&V;hT%?պf7r>O664I B ӌSdm{]2$B3beC*O>;IģSݥPw V"sT;^5S3hxRV_Owݶ=/:خn+5?hYUթ{31g%oF(zy f xЅ Ό/BoB-pKwi}0onYVFdߦV8}ǝ*9 ^nsdaOpdz73>=#4x-mkS>t$:QC2v\DAjh $iFtFV͹nv<Frs>R`J_0_+3 F`ԨaO@C׿3bzshc>B+գҠv;gg^r(! ߹ޭ)B=یL~z@\d>31z&kת[JG_.^MysQ({BV5*M+Ǭ2̀fAfKFJ3HYFi>ITNyRaoxOéGS"9Z*DӠ$>bftչf! X#T(Vdlw7, H_| M ao.kݗMxQѻŦGۊJ’yPޅ*;jJ\]# ehNIȋw;Eb];N>&.XG#k-߫Zҗ(c]ăӟ?51?AE N[:d cA2fFVy%17=xo{v.'gi$"*g.L4leFu]y?}wCYGF\Ř?ocXfo5S!Lt7JX +A ? b }q3t%JrG7gL7@댷GV` %tJ^1˱܂ kٱ#%Zd{zEibpRS|D0Lϯ WmG/a)H|\stoM3Kh'8/_͍ދj;={bL>%_]#z'#ݙ8u+r22"q*y.89x2Ml6)U?/AN)!T),rBVp/5Hs[ '} z.&eGS2\h71ThŖ^R)/Ԝn-9aLNQ0r{Jw"ְ3cgҒ}?! ŗc>t7T 1K/nF'k`.t~IMM7ۃڇ#"d+E(Xh`JYh?~Ey3JSCqu3ߚ !OMܨno I\m{Ā_kV-皕1.bc4<|b$9m(i1RU;{GL`}Nnq20wZ[mlCUkHXPw;-Nq=B.H6&GGd7`cA<\ٗȗӅF:(2ACQV>Qce9>ƈ% Stjòq$շy"`%>ޕ+p!r2ęl!=Pw"T--{:MM:]56L(<:p\XV0ZP'Cn[mYѤVz3@SIAe-jabL,vU1s[N؈3\_W0c0Kfێ^KxԼF–4tKVΓ"-<.roE=3ǛfH?WWs"(;wUc+.NģB* {Ϟxy[=g< 1@Fi[|D޹'~ș%{7-Llad) 2srtb%I3h+1=V~G{,_Uk+X1B 'Ů^O/Pf βy6YpG5CfBE \l\ܘh?R3}HVqVe3Ҋ:tPdm"1h:swViM&rv]pU@(…~HdE,w;.#115(۴j/9FJNqe A/0֍hJo9'-;$򂭔X1й"_-!q\ɜJe}-JJㅠC0 䖒`=HB+X8aj-@"`+DyN|CR_jnzrƸ7 ~J]oi ~Fv ^P|G[jx(ؤ[`{PZr?n"]} %E KjF̮Tv;σ)MkOŻA]WvSdKHsvC$A\׌G#. a"v{=b~)0VO+(zGE8N2:L)~Y Qln":5j P{ ˝F )~) mL_5+_dጴ}wwĩ)*.v &P()fc4l'ߢ[ YhwxH]A6ERLrc}OB0*<]l7ne>5ڽf^ XY>.7 y-)d7xNEG "bɢomD^h7߄cz R ֹ92by2<_KǹuNiw)RKhUeЙo=f" Q~=/DTJ+!rt&љ;&iWjEivOE!"kt{' yt-|ɝɑ#0s*sG yylC`^3ؗ[zXAQ1?Gb~ⲳEjnpzc`(F/M;L5 h$ R c,撒`\󌩳 XF:΅(LLG m} "7;n2wvjp`t EϧROwD>X(„*$(L4Uggp~_ R'6;dwxd>5<\= "{w%z3V*@N//%HD8ԃj~MuÓ:/dz,9D) "ߡnU$48K-eN,.YZGgjMTKӷ9S ƣD0f)X)bMA`Ѭ@6Ha橗 >kZh ʧP lphTbm|Pbc͚0A)jc;[AW>`!fm)x*bPrPF~f=H?aF^n %OnTͧ/-2x&Bo4fn'aC<2s)GRͣ׹rW )w;R Sݕ24,6kl)^&*o{N6Sړs&V G^H#kr ?yh'e^V%뛔^.֕_T-R$2m-";B~ yT%W!{PoR$G|p/[L:e-}91pD# yWF l JU9K>2T:ydIWjЂT Ԗ0`SB 8s kAYiOwO|{M1)N8~ jëț[ZNzI,R!:sSd0^RA{G[>;dc s;tr4|}ДbC:w ,|| Rrd6HY^[cE[V閩+1qwNi#čbi J84I*e%SnO 7Z0Q`vi(^Yʣ]y}xW]^W<,wvY!QH_vfLPʬhh0fcO~~ȡDftwkF7 qe0@̤a7ݢ>8G~1RXS?xy U^޺ 2KfCD.Y=21Mgd^K!~V gJ_ca5f/E > @{HB9ӮEif9ȺGJdq9{*k 3(?,iېoR%#slL0Êo"-DnU ?heLW_9aƐ70xY`E;7òiq⟭f2SC|XbbOÑʥ/,`bLDuA׻xK^ uS96S* @LhJy[xm",whZYBl4XG4tGsFo5#&Di]7(֖@5:c-+K/=3h<z(W z0 c'(sFɉ$yh׿ _oتC$ 8i.cu`Iw>K!euSbSzXL> 宼 &q=eM21nӤOK@%=oKW4[B?قɶ_dSJOLSRX1}Ȫd[Ez W3ҕ3k]!XA k lf.j. h"C /\3($2PT ,)bo?Af6#P*sUY<.jK/S)ypvWSF\J*\7V'j= γ57uUOa{^XCBdA#p*,ACg%@F])՞)vPKM(M.>cl"8҂VHq/^zz2!7`qc¦޸Ğ^egc{ To ~ʨ9(Nۂw ڼ=w纙^;D(Smsa5~6\|(e3)孋3dZax.$ȄMUqC1_. WKRf^bQ+{UI:ْ( [G'i܀a>M ޫ ڃqd=cԈR̢`7z4ʐ/ ĺtؼ?Q>ȟ|sGNᔨuX;\h9$S{z;*sv dƆ[ޮ*kmdy}ggЗ@bYjV ]r2GZ{drA,HXsIYVng fO)f 3'#ixU&IP; ,9vj6`@ӿTk5d-1/|צl':X ]dx'#F k[^tdhnT3Yi1AzwwN#AYǐ_č#ڰ_ zOo-rMzZ Q>E`!JZFJ"Ȝ$ R`~CRuq]?pgc9ym!K'KeP_y*5< Ŧ$4UBƇ=plx?,BQc._'%Dl巑T\%1Mw;}DJ}j94@xJ3 ̄T*` -kJd\7xrm:(OF(|Cı!6g(Ay{1TˈqJvC:G$d@PQk9埐vjY7(Zέ3T4!5._X-ld !ˊI{^ăN}ޟr*=hd!nx}O9D'~Z6[ED&KIHP"G56Qxͺ^нUj(0,W![6meCPؚql c^nأAc)Ioo ^(|Z^VH UV2if\h^o'PY}O~ $|$a d@wf󈭘I87A Kf/̠#>&Y8`<: J55dNt-d}$|@Dn_y 9Қ8~k3!⫵}/ae 'yfe*h=G[Q"~ Ը$bEZվ{VS4٦0ʀ۪uG=ۘ!G.D@mTTuB?'O-g2K=QE.ϠԺh^NC1(Ը:f; PM #nKD"xjLĀ Ai!?{0r;W[^gx,9ٟn-!g"71\ +k]BE 脮rb:o5mZĕ},:[Ce09DBm).j_B:a sH#Po$V- ;VBISHgƅl>E/4 ښgIF]U,RuASy;XDXPn8glQ) 3ܻjv0cp[U*KZEn^JdV`).ӟ1鐛XM#k+H, @S.,Հ`wKB|gPz_ZNtITJ}ZtوoaY|΁C5[-u橉>ZN”}Oʶ`L.D9"뱠`,/׷)cMȚn!pgB=ZJ(C&!!}O~RY0AnC*rW;5Ei$RU2֒ {wɮ YNEpe :XH `A"N]H\db;>דdtܻkuXΠ57PO ~yW\hR# s?w<3;_+zn\;Pd8!X#ᓝ5&t@"*{5*/4FȥdIFf /HpgE3d쟝>0,~ԭ';?tVB YԼ%ArJeI4F!}uCiFIq D9|0l- q q$-dNϠ9L< ~LU0JN !({XL 0HE43[%^DDɨQ;,FfB_-,#g7("@rqFL7o؏J~ТD1OŶ6kjP hD RN;bM ^:gMg8 G~wο5?=G-ԾvK.n} 5˓mV_Qi=b9$>28ZbpgԞhc1:yE-)E'fQRW4o1ecNˢ5Rt9:U(g@dmê;MϨjl5ψQѣ0ϵ^(n`b`fǤQIBL^݊6i=ZP0L^S`ǦkҖtC4򊳞d . C>BdnLUgddh>|F:Onjs}v$7z'>H=BNN%SKPä[Dʨ`dpydDw&U|-FP]  Uw=wDP-YI&gguؾI˖B.#O[hPs&܌5AīQfkG56Xc0Q~%S%)8 t s|#z/n%4zيGwt:Gӭ I2ѭl=x]T{\0tr&>T= %f#ҹ tЖ>2QBt3b)4wa^9+[B 7>tގW`l!ŷ~M&𦯾axF_HSD'OaDnK=gb:D8a$DWr#=| ToXtEQlr1a9 }wՂH? \ MW,r~WfʎUAOeH$uW yΊ DwqHVTS羽3őy% x3ADq=b&OF4`P<[$<$T"A8.X֡'C/uTOPA"nk=&' e(YX7~[a7pfՍe ) Ďwa^ܬ4G.q[ @)wU"}KDl-f Wɀ7,\ǽ7}xi5ӷOR:YgZ#)DX@ y,5Z<O)OenMGwu>JjVn6g #Gg?G]9WA@xK7WПW r*5"<>d,٥.4kh; [7KcʶwltG9NLn:)² ĸ骽!!KaeKjgN PiHGvO(r*~$}^[$zM,""͏ fEPK(wꧾw,Os YS[[f+`!TCmٕlvgLxc}H˼B2 ~mſsp":m?wB'(:VVW')9i(kmiSj]`nu+`eȽy; dl>0kT\W~>=p3ݼRh>X3쨥m݋BGKR{2ZʬB"~^ WWrr͋6ލtz[Y[Qdȅ/CRYO6s@&$LDEvJ JL~خa"Sw| cQx I"(U$L*Vkn<]t 8(5kdtˬa©WkaO !k.ܘ9dhR˚(ӁzS]6dcM)0X][iI`$az[g!JB3svX-z`Ttpt'AD(ÁEMt1F- |@#&pc'_LjC m/N::# <&##dF6~ P^-^7Bn9-FzKk5y\ ڔH)@_vae#9j2󟁷a#< At (JPƣ巣l#9'9[tȽmۨB3pDΑoFBL`u^zF24[*\±Tʥ4TiNy!M< 7JəԒ1`c.G퀾,ǀJa0@HԐKKfS_] -ف.?')]|-/NUtY!%u[LB/jE3|;ZW~!hk,O?wB{'|ջߤF:%TX砷Xv@H󽊺\Iu I7h4ʙTCɰ,YpKH̬$Ļ-&3 mb*_u$r Rb` wʟUd 9~ܔG#׋jCAzYZJ{--W BC>VvٿR^nkFqYgd7(^}X&cu.zMɓT]u.4x#k∑gC|0bk XRg ƣdк#&\/m֫X`I|0hXrߞŲP:F謌4o)9|S6\#9L{,E,pvk㵳 & pү(qP(ř|%!(ڜsHAy/R?g c%q(yJm7ow=rzs~o:S y,{J.jW8oÂ#%~"Ws9x$ɽj~,4U_>z0 "W u|QK8Ҏ ˢ.Ks~R:@!Єma\˟}Q#.Zr(Q$ "da|aJ T ;^َAMzx 9[zkd`k]J;#Cұܘ }Ur'Jfc"Bak1>(>`auv=A{>c\^: ]]ŠŰP 2y/8{aIVN[l~ d;u*tՐFx+%쵲Yy H'EuR*)c%}s<^dMp]}u3(Кu2]Cn%,Ӗ!aeDa5(h/IJX}DWoQ` kQp0>L )QL,~9M1lbl:\6I! c=Ure*]G8GYG`s ɘ`fUhZxgM_UB'= ]2]Iђ Ft웕or"\ŚrH|CJ # 6p1[FIn hW`zxQ9D@ ưf pe8>*TM*b"6<&#sL;`RάuG#Ejtք&C+lo=V6lk.QWXR7ppr= 6% P+  8yySPN$YQr+wdM4STrc0#ONQGyc\C>aݔ=s/9Ujriy'Mg\`Ocy%][}]D*٢C?Tԫ*2 EotFq6 !uL`eqB<3Y.dV^}H%9۸)e bۃz ņ߻!8Er46髪ͶN)/CP`%7י2d{<Mk[zVg#rdFD!>>}wR?tۇ*mp Vi\m[Sm.魺&MtVx}cV+3B+O #EBK?*P嘻4ΘiĊB7f1(4i lId4mk|R۶\1c.~B87^.nYcCUѨ-\#BXr\4cȪ˹Gʼz^olxF hfa`Lg3uy?PO `lp؇pxJsW?IW;1j0 lAD_W"0m,Lj0lz$NF<4lO:خqj^O@̛Vz-d}s(KQza+WU̟rcFE:, )XE?[--L2qx|V.&80zA,xטZ>H'oG]!F;}<;-kwМ76oE3ó5\y$L3j(AJӐSylöA>H)HyNXBps%%!(WE~4ʰTl1 S6E|Lg:#fx$ <)z'@KOl}/dS =ғUd&gm r1ҏyf{ `^UК-b[ICJp1n7dde  .Vn_pK T}X!`Dk> қ,Nffb{`TQƤ^٤#F|tec/%HҫʡSl[QO/+0ikφ qjE湣g2w,kȕS#9n3))uwh2Tx];&E e-1-Nf|(dרв KLڏh, Og` 4kymU#X]l_bn,W'8xSk3>G K37J$5.4A)|/߇b\.L#mQX0l^Ċ8m皀L+8B~;yu~[-7ekvr%a#dWS#ke:J7ه",1'3 ֗Y<zS ł_pmJ`-SՃ!R lAZ $AK0y "u;Sٿw~Y2ϥL|xء $@K.ʸIL3)~W Kq}tr1B|r3I;%'cnW}q(ǵfd:زOYb~kV&9 n'N3{@ ˗ ? 8E8,/1)0=khT=/BR!}eb~lFl}l, >%0he. 1Pok(-v] ۉeB}e:f%|.M+?ӁF\GITxeN4̟;#VtӧXe $oŌA@e+m`]煪THaȖy"lbPp ~r3%8SedaG+Ew#p"t`^D JCޓU[o|\oYѵ*JӑXt215P.spQ783K7`,sOfL2P*PF?D"d(؏'t03~? oK290c=kB6 5?cF/)2sO:Xs .kҔ|mEa}'[V¬\t_RtR ;(KOt{U;ihwω@T5$}A324$hT˅6išPKoף F}4n~CZmĘYv?MgO:c:=aG*I8vיz %=;)xvSMD602=0q<# ur.V_efj J1#Bow0Я7uDW&K :~}AoCZ\Z4=֢͆ 8v C"^Y=.&*a2'3]_v2::)A1vXK./Թp?aFg{[5հ(57$Fͦ$%ݭM H1rh''<nCE_%ʱVa`LrC)fPP7 1lv[T0y+=ʨA/hWY.R ΀#؛RlICuʑ#. ћLR(0gm"*z*7Ec7Uh F2DX_F_)(RvF}@Oy࣊ҋ rW?j@2oL~'^w\9qlGd6=R%t cZ$Y)+4pHOusG&D xCJzMc6$5zǩ]x|}Hz ̎!PJXtuN 5C]Hp bI_ib_mت0WZ_\HHQT$9RJ9X+u)2ұgA Y/!$S/Ƙn2u[ûǞ ɤܳ9.n}~ ̯ ӷsPUeWR:oj6_ 6!J8*"[ޢk.ؼf;kJ6/-a:/DOk6|_x`dNTN(ù1a7^.ސ̑kk4ØZHZrj > H_;^׀4̴ABywWd.Έ=WC 'GR7f|m1JR~T_ ^{45T+`#W`]2 Q4]6m hC4"pmrM#Ӛ!B[r}7"N5E$8U E6Txxfx1fw>0 1r²DL &kZ׺K#jH3Qhݱ@#rnxx|Փ>(fiE Mo$ );z\a.T[v"akG%>ECD%`n84:cz&6[W\#gNBl#TMfA!/tLT`oE<7[mQdF&=IvŁ@W2_}6}~(&/le VWyz6T&kv<p岵T1kc)c-GJ΄ "LE{ቊH!楓 =e R_\@| ]x'D[O 2  x*bM=5pE0A:?Jh VS;v /foKFs3ޓq3'=*پZy\$%Mپ/)Kd"h;;l0!`IlWf[u =|ܦc]T5$vĪG?%k@>-HF^'!*v_Ӵ3RnԜ_"`9S,(:ɀ|@"o7.?K@[KV(7!-`bKHTy^( nbL !16YJХ$=I U@t8R^ I2V2QZU|{佞j @H,W1)ZeR2Ċ2R{wQDISn_@ΤۿV{x+@k_L'z<7Bܣjύdyf{"wjUItrtEȱѡF :."r'op%d`!?"@ ˍG Ӑj#PHX"o=CYlOˏzu҄ l;gՍsW+y%s)h.rs/!;1 G_6itMx6)4h?uY/|o|1zA!DZ}Na_ ?sQTj^_0-9x*p΢5߷ҤJNK|o]o>H'حVd p\iG'$,wXU[] #¡G<4i'&IS3-9elm;8dc8LK8aU5/6D9] PauLɔH)z~O= D͹@1Áyc:Q T?7Y!wOhjg9FKɗKVޣHV&>눹 jՒ|ԂEq mXS `#ߒ-kwdiw:<ɟ̗d65./>`!-*I_X^ő/Ԗع8ylGka:L֧(8^kt;Xyʴ(kּͰ4_)קhۺ~:!: ìVUOK1kQ&:CtNmh`|mN~ **sY_,L^G-#hyTDal+f;wz U #=lSx:~ys8H;= ͨ3tMS&13=HY jSUtVB<&R*FpK] - o8Z)Vg?i[v3x&sw?}@O&\%f<3koP]dpͱ4ϋkc60e.0ǖ|hF},^!- '{SV!a-7nf%y oNNOw?q2&W&^CaDE涽V0a a(0`&ӎSTiFrCv=v19S/+\F3FHUDŽs,Nw1+ `n$By7ainf~ N:GrdDW 68Wwj }@B[$wfM>[t#: őkKR1fۣ͗oװ8o- '@X㜞}:n3>w@H̜ !qpL9ɠmd?hVS@59p]HBUxE.@s2ͩEyk=~r}ÄCwNR0--׍ӧ3Up# uŸ_&S'4ﴥʘm!֔e prm K;%9 =(zuKU(ۑDlVJF+5K m`i|śl (d`mPGB`}s2 GxvxN+KLrbZ0sFȄ8O~xt5F4?Kgݶ49cU Vڇ[40Jǁ +HDӿKidYYx^8ׄ0jÓ {b!prec;Rf`|41Ќ>kp/9_GI)8t=!LrZy.3WoFOG5{b _cWk®>"AN7w5솔+av_~]-6AyQ5 Qw=NQWF5[$op"@z-)풏ա\ 1cǍKB+qg]Z#2jJn4*Ȩ?N`ď: (V`[NmG߅q7O"QL;‘KDa- z

]W` ɡ@(^x#Z@踩 am`۬ ,aPR2\ O@L)CLxeX\wѨI<'3w1'qɓG˰=ƻ>XFN2V9[QD -/wՃx3:eŶc`?k*CN0Q ]? 6bxslIx'_P>JFǦ=VlxRaH.qji S0X@ L,PXNo05o;+t+/A|kNvNZtPXw5(c߅+H [ͮo.`}nE{Y/O;P@?)Gy@piSx n^eގ_UxQ Fs-ZnRUI!R떶oBʻNᔥ,1fٞH*r̝rBڮaOmDP_u=ϕGȲ;JײL4-3Ri mEit̝/!@ȜO$g⯈32R8v}գ-]sD[965z=)I)jJ_Z{k~Q7{ ^\S4fV~R+Ϙ8Oc󡹝kp&Mcz[hbj8O8:|qy"?*'#m7\6&)xv{/ BSsn2?n"8| ׺뽰ZWq|%H–8k0{$'lQ El c*`Xr=.UVpb?ynP\@|'a&FրW'`jI6D k~4ijr^MUKzаvs</!zDŽ`mΫT2n6|X x~x>zqרO:7iFQe Qz<. o@*4W5]@Ao.mYg!Oc.Ú-oo yYdP >gJxEyGv'=p~v[sk[ғq ]mNN wS$mT%14 ‹j1tM$4Tu!^XO~橙 }#ʿڔ,}1`;v೯Z0 1Q)be}-x )=$+ś'i*F&,@N:/4r0| [vLi.w/Ԏ˓ - dUMNmrC5\zPޅEn(=0/A1fgv#B|ʮQx֧[0-RYl"+8j,'H}M/(-pJ2xD{~PFCM`(~>wڏPmx&wFq>K]Xљ s쫮="ھ"F%Ƴ(gU_C[m"P q#&X<ߨ 'tT,\*9L29-誒i}"bZ>:3[al E<)W! 7%yFnn +ȉح̕v}mv́wgoX{ɕK{g*5ڤ4A1KFxՊ}Rui^XB/.WUv8Nys*!øpogxe)C =Ӿr¬ٔrҕsޣ^BfX5=ѿLm!'P WOW+ӡZ9nz7HeL\@&YR,[VUMhMn҉RMhwkd6θl@7Y<^T1R62K6a6{>MXԲ8 q)BZ`N1:kG"]X+aDQeP3p{A"%-DPnIhfU@BVvkYs0sp4~NֵB YlBy4j3#psLC}9F,F~5A)XkZh0- :j)1]#D7~z-]0w4NJƢ$h8Gnno u *67r. @AOe:VkbO:7M؋knma  !Š3 ||ed ެ^ը~;>\*晦ܾ>Gִ}Y\4ɏ.hD C*oWGs{O ‚!ZYN@x_絺ޭR&sγ)LFi ldvC2Ypd׬Nl?ME}ݨ+<NjYQ铐3a)qT,o„qi9l3ꑈ29 0/I`&\oMUb>p0ll>#uJGs]Ttz0ptWKɸ:PF]ֻ3"CYʤUL5 'C%VxY /*uʂ/BK &Hgm #Xs=ӓ8!kԋ )Sce|-IBn8#)pzbGu'H xurriVWmN&~dsEtE)) !0 +p+ԧ:p#n\)>?ǵF$ MPtsXJ3LXMwO%OqW+._I+IH0cp8LudG)i: @Q'58s^b B M-H۷+Y 0(hv8ɲ}E‰{|p{iAR&ΰrT ]C`e8>D9jqr@ DצHAoKHY+#9@*iά 햲m5I7#66i"$ 7;s 2OzPYj/cW&SbD|Y^hYӑ^%I%!c-RXRo?Tʍz_V`n|fe=C`ͱ~&:l{s~z &AT%߶?L^,0 %8?X}:ߌ1Xz2ybjU{,`>{BLsbS6 2힜8ڡW'6Pģd/yϟqSBm[ <-5i]6Bt[a1n~,J'co^,q p>5aL$g#3bˑ0"yG>6.U lP p=s:kCm+ d"#Vb疖.P4u5ǝSI/ ^ J /J Bɇr-e[BE4Jez2)pz Zzw@seKZXm\2Ρty5^GM!鞟\SY6>s9ˆZ$ߏeLԜ#y#2֣nxb"NO}߉FhŨA9b_UH XEDD=͆1vLXoĻ?RjʒiMh2bS+_eyk;'i$ib?!?nhrZQ]w'|g9؃Ei"W )=BF {sϑ{i8|KLHK s\Aׂ-̟vZ7"~(ٜLF{ql<;XH+ MF+ ~fh)85Z NIKJڔkA#gfOiwvxc5X<=;DʶPZY5 ~͘e,9hPHLAqN99FJs]" Nm2Pf2)ͨvP  ݱU[NMKNd츑{Dla4[\QpM笹c#@#4ֲzݞu { ۔atxBzv?=r99qjKq?B;ڳ~ NEj:]C1c3zb+9vwHxDdm1ֳPD~"ҙp^Qi: (gk$K!o{]?a|d`qFm+d=4|#dl D )*X \}~V|"ۖZvpPxyBm{\{3,{RpnM-v-dBd3AY)Kz Q7*E1%l.tf&[wمw Hl385.&n7~}JHhD;j)/(҈$ *F#>YsCO*ByvxA/礬R#$&-ׁxՃ^ H9L;cPҶNZ8ocۗy^rޒ T7rդD, _0K=c(k-T51~z. *ecI+,Tz >Tgm|t*1ABtnY$Wz_jpte0*Kc Ր #Prp_z3j|32aƭ_l( a`)Wn+|EQ"@\:  r{`D\':[TǸ"ॄ76NEFqG|Mf5j2ނeisCD`<դ+ 44ԝm #>>+]J΢$ji~H8R\7V$}*ES|M2 o$`оS&t9.W836{>uz?Im 48KԲ`!MX.y|DA:^]#VV8~,xp gf*yԷ@Ob˱NhlU7 Nyw5L2"v+C*rGrKu~B()gAw;=35^\F'7flG$ HG`EX_$5DVDUEH'љz t+ 1qNuo Pv wGĵGX腉G&v2\fx ,x|Q4Ih;SzuffA},Cvޅ3hiX)4gY[tr}؅:9otjwTJYf-<a 8!8Znc#l[ ܒ/hrNoHKݱmVȫGt{_R|*zj lglDM+Z3%@\ҫ^u;?#Ips}>YLۤ}.f_Dp7ڄJW`hb=$z@0 !laMZIF:Ǯef @ǂOz{m%1:= a*19R\9a`VUmto,<[`clnAg0V7_~6ެflG@- VZL'z|t")F\?j qm}GCkiv튚TJ jg vv*o$R}E13?*"ΐ~ BSie6I.2YF% Jˏ+X匦~I-У#Ms|w_s=_ɽ>R6{wP"`qf&:DÚVk!޾td^͏(XnN_x&+_ڦ8l0 HLKu&:yin(#iJ u 5(S$֫fHd} yIXIJ8~ &"C-2 F-r9hJ0Hx_2z؎Q{UD"nC7&ԡ-ӌhal|bae8w!VVerfH^>5>i+ pڈz |KE$8ύZXX2ZpTJsu z׮ Ԕ#NDzQ}c|#rOIo&oB7߈욺N^:(Ȼ|_A D9ss0r`n6P$I> ˚A?~j}*^:NyUr%7/L44X+9}P.3I.>ㅾgn{ybÍ|ǧ=؊ :Z#5%wNS%G7uuhio0q2$|$os9.?&ߚ(?'#VJ*2wXN k%\[~>Viy.uïj|ۥht˰qjYK_vC.DV&3KGE놓нB~_?eJ&%Oٷ*ڤ~hGFv'd]K62.KI8=bJ4i`p\B18x& mAǼN- 'JTI*d]&'aI Z|Tе/_LEe!j7 FKI ؼej4$vzJf O5D:m?JAoQӞ}"K'#4cELDHx,*)fpaarNnR~Dچ?FI Y)<{ۘO^:r߁),vke{(-hޛ7Y1DR;YvPF |vG9ե,sL.OD)=1bJ5g-OBXD#'GY8mx@$J2daj;ePTnBWrVv@P+eQWhCT6yQ lI6B5DQx-ԩIW:e^i@ aB6( 4iv= i<'h< Q@lfmk 5_ZՊf φ!J`Y}B*an:T(Zٔd|9G$Il6:ڇN;Jj3|,^d]Vz;<OW:e*q 8YGn"u6!ۉ؟~FTۧjyZ^'=$ux7yCA+2y?H$-C@vBvۙlן1nDlLOMV V kւ ˜Vrqw"!kYʋh<4hڔE@=D3@a|4#LwΈ[ER86amzxd6h,Rռ(Ds~?7'Jr?g~P+sXϨkHDDN A,d%p2 oŖ͎d~h,/Jt>KIZiV4uS5ITgկ(0wH5zlS-= ma(`-/io"򔨺価{sP ڒJm]猫\[^5{ qM&mPFZUe{B+#{e{csHT;KBHN ?o9k>BJrKxYpaYCoSY]i-5( L(=n}(8bf3jg[~8摿`: t2uVRaβ\ďr#fK: }P8Org~U辠~  M>oΛFL̒zZ1\/W}H|s / m_''ӽў_E|ӜkԮqg~"|UGihS!Vm@d4/Dn1R ֈd6., -*`A#:4Gp [@:0)Ӌw8GNQs~V:[kº:4_h "&D/+֘]'ב'jD.H*7n>jߛ80fu*^FRXOXQ+YPh]r)V0|K kCLg3SG(j+ωg[jܹ^6"zV*sl`=퐶֝)'2sma&$FI'11:Esr]Ѕ4~$S[Л0`v(Ór3PǕay Z<=$:?Mo!ݳV-om POv 㐷7aOS.CUacw{{O6| };n<,odhje'-q6 u2[:f%8چVi;dD4SeStdEk*x> (ck11~ZNء[?d@{O򭚉^^~nsK+NHQDyHA:m\O6:8nb6$6]A 0.8aoȶT(5͎쉼۴}yIb]hM/{BL#ZS#f.l(S1W߯udΣ0a+šAղ&4Z8vNII#QzVcNN2P#fIޘFNeZ>V j۝X;Д&3 pFk S(lRV5%:I=:͛ޏV˸Ht8jR!}*K$^p: d (P=lӍX+U9WwO*hwa7?4cye_0< %Mo#hYi[x<`M͜w%MD! &CdĦ{>r_L/Q2 $/N^axxa7gQ4Po*jτ&UJ\BnGS}ݛH@u@Hρ _++4kVBAF0XaGs(d6*3!y"y 'Xj+dD㷿}WDV!F'aN>BT1=Q lL4V E:?jV-8kQ$ ~xjX1jxۅ|*Į٤l Zm z'SĜ"UOnax@,3 ʷ/usF$zWSrTf%8'  rr"H}[ΚM~&Wr4@&&n/z~j]s-Mt!`Q*ؽNzm{Ҫe\kv -$խ ع1i.YD_j"[BwHeWrf*gĭZ+Oˮ; @#rgAm&X¹WaHeҕQ&==J ؽHF_(^݅g*P03[C \季$ŒږF路v"/*!P7pl+$12- AzU,㍅wo]'9RztF:DvJ8}hCqLNJ۝Y m.h_tb? 0Z\2g@Ym,TL^V|[2ŔKt1  n7 Zg˹u~ Da2To|+tI6d \-+ޅ͟"f+⏆aZpA%2O"ftF 5[$7(mCUzf*nOKBET5rTdS< ؐФ0Cn+/Z!(sr7 , f:>uF7Xx9=C+zlS MfT02+&._kofױpZ*ŝns7 p뎓V>B񁤂-/ĩigՎaqW.!cQ?D ʸϲGMM{@}ŒU}%fadN*BŤ58YАyVS4lAC{)x'DbcQ3QwVds"w~l* i )h bR%两>ǤbdPPjj#xSXB0G3nvSaIq-Dm\ADʉȂɜ% x`#5 i b;5M|'3ݎ2΅ma/0]fN+HEn4y+_ie:4Lbۋ8N W@*зQu#u099 ΩQ!-W ưJPnz@Wj h] tC+U+0¬‹PSoCB.629z01I>U3sA[r8L`u%bdsRvo4kxEq>bY3{7>U&ۺ[.\ϔh}xe1:jLA|oy'Qm& <>_^yXyq"bapOHPI_fIob>c!H Pm0zlOp)%\h˯,>hDd{ * 1GE;uga9*@kJl^ Fܨ̃&p60&dp C^<[O`tNTru@zp[uD}?'W3_u]nd5PH&iJ-(ޓr?v=i3`y5mU|Z\ϔ.P{\sQ ~*>bB?!mu~YWE0)4jU'- yD$j-8qDh9 Ch9pK?cepȆL}i/Z/;);j>?pƍ -`1*="}a>dUcpQnUme;Gh(d"b l]aȽB~/Bwϒ"Є*mX<a8*xVOv24i ORFw;)@x%d݆qcΐJaiT`E_߈M#sч +Sq|bޚ%YꐃDUUu,fcj1kMW8C]eAUI5]~ͪPiΉ`9াP%,iM}I7I)Za6`Kk<㲕LTg(:u7$}ת \dkӎjV^Cq)itIa2@5n&>" sOO#4:k I2B}a>}w]w4K'krzdd{}=>ZPJ L,s/\F@4hPy=p_t +) Z՝.զ6JW|llPGȨMksXz{bRRauW=4^6lCS} # *%]1ʫ쌒(XaE`]@F&Gd:"lrowqFs-OYȿsPh.a MԾ?|Q w̐P$F'.MZN4QP _n[η,^^9TH.co nrRƾ_KҔV`mmu2CPUKQ҅"^]:鶰Yk= |.Ihg/e,d8ڼTq&LH2qfQp/b˱Э\8 Blw6Z W4Cp(x=V1N Ɨ,<0IÉ$))o㱼o3%ԙE#nFhZFˌD)ע@=ߗnƥ\o!~e4nl_-[y&eiI,".LLVQoR2OJW?t#rm0Rɵ;}JNAl- ԙʄ3v~7*a t `w@H"簱HA܈QถeQh^ɸ7Ks?:bԗ.ϝf&Aro\ߡn67\`$0! Pd |h!7kC4g 5u(mO* 9*TvxK[f4SAf†0wI|x?mp<+z QS c#40 j-9hjP9aWK dAㇲJ!sCǝ|BfHC4UV`bu)|R^NhǮ$͊)C &¯+.Z#̷g.!&t]@)~m$!CfdOFW\=Unj'1 qx #XPE|ez4Q`_1~bS6!5%ܚj> ;J*0èAP͔@ʻL21 }9\pv*W1^݇Q7l,mp6m<{ɚ2̿] @(U"' rt N3<҇;w:Eix|Q3fv׍Xf|{Nl 0CNj  C#tIbs7)%&]<kw$5g ]?5$^wb rɦ:DZ! l=emY^yW/jK ŷ"*7xW|bvs|%F \b|ѕxNC [i<\[.2okc^|c )1X|Yy-$y\*)"g⻨šTw~[d9ar9.`ꚪvK*ӟi3 *i-%qrbf*9mƐ8&<0QN̈́΁s1YL1Du?! 2'myCI^KVT @ CsDd)e~8m{ḧ́^R> Xwe(LzxsG `]>W~ ̱ 󵊩Z[wA0RަU8vO]~uvpչ[(R-Q#xd$' N~p!4MQ7{:yzR֥̊rX2ƁؚOzФ~_7@tZzjāqUj6Vv\bgyhS{@]ë|-hjߋ$n"Đld" ]ovʽ;+ S"^׼)N+CAͳ_/8+N`h.Jo.͟Icǫ ;6@uǂ0 PEq!6H2zl~';X{d?Ȥ+G! ΢0lF#ghOho# n6B ;IG&a%| 6켗JI+@)h*A1S=ik0Y]L;#(V5sFXkDy\ˣv*tFw R*c{ܻ[9ZQM*7Pp ?r+9mCyV!k'щFIK8{u"K俢2jwT.b\)f$c~fHLĕ*t`r]| Ga#RRW[73xY(7<ĀYDG}X[erՎ:m_S'g#tHSރu53!R&-ՙim9V\X* yj.aaˏ ˇ$ԭOg4d!—;̦Ga Z#_1qV/X8~#RSKG(]8 `nys!`e2`zMTPٟwpqi9^dZSa`JbUs\I KwPaQJOOy$n% ?H0(1j7?MG"CiveY ZE`W 8*L%>B^00QD o&rwt#}Z$˱1[m-SbMHt<Ɣe9^򞳴Mo`'ۙ*ZN-g'TC#%#G:ɭHmzWGWRmX@ݦf;&Bom_\juu _/ɭҐ_'ѝZ= m ynSn7MTU$pj FJyg߆5 SX"3rv#ʟE\ReUe2k4_$ 9EEߧy/xzUoچ]]Z9*l =3^d,Oms֌>HԻ";Ӝ*=r¸X !(q1=tNvgt .EܶA!I Fulw[MfN zQ˳-jS^^E.'2žG\N$1P!6[! ,$vkɈ0yp5 _5 rs&hU4wK?E1DL7BwԀq2@GUf[5[jl/C9^…ؗ\ cGu5VPHˀ) aDGPrG/"t|I :E(CnCu}Dl\ JjRE3x1Úij-AI(rpUl?&>+#b] $Ndޏ 9(N"ʢ+tYzH:^ 3(@gR>g?TR, qNp #uzNJ3 ;Kn*@)~6D / MFcjkOD[4wSs*SuQ$A#xha$Yvr&M߯Yb]UzZ@1;j{?-|΄@͟D8 (,fM} oqQ~2C-@cQ g1D]y(dʫU/~؜‰8;K ;۳Ry˞I{c$ 0xˡl̷+7WfuIM:4e^ 2A„ǣ0EEӣ.L2|*g[6Vgadi蝼08k@KbMx U8!۬Jjk3QnN~ER~ȇ Ua*xNXrs^ecXts)^ԑCLpC 3?T̋4"&610ɱ-{ewY Hq@!*ڌj$D)Sk7," ]0"P` .o>IB<%X-k*:zҵ,Xs7=.MDD®h{X4 V9eN4(z~kΠAN7tR>A+bePbC&(B."ޭFAn|Z9@)H<,h4m9ûOLA$2`a+=dΦ( 5 &d+*J }ve NʠĎTk6mgό[1u W%ov5D{dY8'R7'i\bwe9jW\o@ԁxJ]W%AS8r؃"= MBZ橓O)\Ch#zo'aQcT쬍yuu1ѐ>݌lqƑ,yY/-Ժ{7` mۘZla!0?)5=P0BB-1 fo:/Sh؍tQi?Iֲ%A/ya*t>P6HBἉ\s3q bGnX,޴Z22#^p2Se9nDGj ?Y%jL9[Wf O1e[m6AZ@Ž,9yxku\irEIdG6tS @P??/%ya Ip94]b}dB.]Cxh`9ɒ8m ,srejY ?}%`g?]LEo홣9"+W|р'/Rb/wEwm"ܙ{=\,þ&/ɐ:kڭk6Yɻ 1Q-e! ǿ3q8 kᵋ;:0T㒺3F AKH:/Mu?Ulpn)^#724HH ~UU)VnŤvWOL7j86s%p_gH.a8yM.~M}z8m`p&۪$o7ͅfmJ6{?!#7*i~GQjR<RH-f,-@V[1E:ʴR(+ϝ! nN!`M%cX ~p|V&ٕr!+}趄Feg՛zUIP˾T[1bs`]j€E7? }5E͈cՔ^ġec nDͰE N|q&_-(g(k56wQ`(<AqInT"W8Z-; .AQ@I]|z$9~b$r.kLsFS4 ^0)UoA~0+<Ph~GbBw2VCɄ#ԝy2[Z] hK5_w9Rak%"*63r|\?Y#_Ͽ} TRyƪ=W *kؕ/t$ٵ"w:K5=(BV43Qw˼S&W>Kf 2ES⭚d%]sQ 1^Wi,)2h9 ořݏ p Y93{Ɲn P O%5׊LAϫ@[ϙ][8T Qݹ. Z%Q͙ƺllp>AB{nOT`u0Rj>{2O rEi _gMO ;pXpmy 2gX/sS%MAvV2Ue"F\Vu97km'{co뽊oꇣ1;RVi!`R}+sWp6Xf~Zz-ƫVZEժ--fI+b>Q<(|J]4&*D%D8!TDAh<N󺾠7bԑ 5׽),.KZ9\rvԞZ1`:-bcL,#Z!)a mM$W0{szn\.g oJ%N6*x_&\8"d/|I4(.Bx2)" ڂyۢ~։$}fystO( NNSZ[4Pm6 4RARTekRKJ a9HFd[ߐn:spX@8V, dn Hf'6q>w?xȘ- {L^ rMR^w<+hrRZ0jV}P ojJLqf =hF~ 8ĻlF{/;6֙;wZes4:0֌u>+Vz+ɓ2jDZPG-[$rvgw}(%q\okHv)3:C< ,'[L5֎!pF}^".=R5L#2H\@A N\1V:gRCpc5fV.q(W%3hb2]n,4};Thr T~I3cB=MZ*Ojb'*6aD_Xc~OzOA~@(2éUR!XTjz%;Z/J+kfX( 6؃OfvK/ ϊ= M `[Y%Д0$w֋? )0^$P$wqI858~\vI>+.n srBoXKp!Yu.cv9$~UB~=0"Fa鿩D@O2wr4 Uk03K&qS@A3I 7v%Jz5;"cK!K["q?_73AL ^d 3_V֚rH(ǸaUIЂ(-ܥ -AwVKh{ؾ.2r,CS ;%?WKYG6~ϧn:|Ͻ XA䅺f&YڑA3w% hY5׭jo/D:<cg,7 ;ƽ@jjg=?_ ]r8˱%jvaK }LLRkI8Eo$q1 9O,$5-kމU+ʦN9F-5%Q"yA:=iFg\\xSu'2jAڷCLs`~W[A!6RE&&B:2W+xR0qvBQ 2F}O,v3Jf\땳Y.kh#0MS/(LkyEQuY(t,y^O}BAC0k?R01 #å9=;TwRE0E+nw ImMBGo}H]p9LWv."jv#s2[b x29Asϸֆ.΄7O<6vLWF_D (A}:DpvId ZI_'NZ#U=1Ϻ4g۫`^̵=šMH/؟἟"gnf yߙnI׭:'=цA|ЙW̱[ zN]cz4K P}nW:Km,2>|dS`&H}1Y㻙B'VP8d: fΒ͠9&JSxxK uB|6(t3hhQq|w9@$o6@b&-+}[2nH? fXXHnne Cr%W1*t`5!r>EԙH@.WFP2!t}N/SJupVi~ z@b? uӫfNyÙ/H͋Arr[>W%N~Dem>SE.(.|Y)Vg^<LV#vMM& &ûVc162W{(?EWQ[ѷC[z'k|?pLbr'z|fk6)BoŗOS;9)Z!nI B 'juw{o$Nݧ$J- m\YHx"(Mp=4 kd*I_SJ N'#Ds5Fk%G jS/;HIpH~uQ[05Lƈr[gXe`4*z H:-9(RjiȲR<+%> +%j?b¦U?u^XlOa`m-s.IY3z;k*faQ4V 'J#X3Asl:Nnk8tIzyWoG`cX>)ҠF `z>Оj^}M]H51+!(%.x `NX 0de*՜1/~=o64vc,6?iNb .s:VAe~nt(jܸ aFP&J?2p]f\d73-HhS"˝' 9 =VrX(Fލܻ(؈7BQd [#lJCLc~)*RHGKAh6h|8iXFdrى2ߨ?OC0~HB`?ZӦKaj\S Q#S>`G`K}pQ[-g_V0L6ilξߑJņZ*0gW;PLgN`͐CnrE}o{e Kg\e[<_}#65RAMԧ\Azs o>mC M^$@;kN;ܩJYb'1-n.V|кT9ےk@hhSg8;{{M]+JP0&mD?}*㡋Huq9"AHɷ 2tb>8M|᪚ы1]_s[Wҥ8CTD5*W@6mciR\ų bwĠ\ :$@zb8E6>/]bSTP3=X!S])Vsz(TI@Q^h{{6>Zox41> sҤ%|&Y4aӭ Uʠmtdiؾ2=Zҹ)#NM $́~pLTz =&֨Gʋ!V s6n 9 S*ݬ0]/ j6^^B>?K+쯠T#1f/ihԧ27Xwh2Ȱ"Ht^uj;J6㞢֗b$U[$!Oi%yGY+.5W̍k,N d2nG䜂e"7!"YT'>[6 6qoЅXM@ ۫Uq> -")AǬ(속L9ʻ׹E*dԧKg?Fbэ:3|lyÿ(ЧȖ'op8y#s6,>R2WRW^mfD+], x z~ b5TSKKU{x9{)?kkIR lp)Z!a@µNZыHJrڸt=7#QJ mgo{5w0" ]bhuz)`9:^`a2u''a/Cљ́|x*9tlh4v }{@.RZC^qUD'긓i+p7' 3IY#GpkAs\h[7>^ w>aJoP2=$mF}G(mPCV8e.BsG[r4CTwI1†ўH#%F!k kϨұQ'0+grJۤ Pe)HF ŵK3RZ҈p5lY&,*Aui1xKz|F hxّL]bbS$~/u͵y`"Kݒ'/٪䒲4ySF*U[YorDG:Tq!B#>pFUE*R{| 82;@ l* " 7!Ap>+x7$c,qJX5f+XMcTH ċT[D X;Ar1M>d0nwwa@]B+ʍv>jR>(Q0։V}նk֕)y 0"({x ~6ͨȺEKm.erJnkpeZV5 Oq1xram&J|izUj;~F8[n6H~KgD  9]2D)ADНo`!߃3ҷnil cӗ䊽I 2sDD[#%i 8B ɖ(|D;JRSh^u n.yF%Î2o"YÅnTI_~QfH튋9rј76yA#xm!sft&IG Y*欌<,@JY0 ęBy9 PxB4-`U2WXp[;-,ZU2@lQþ"b \q_L"~ˠyj-o{0YPuwpl!5b)j)C }q\RL+NcQd\0O8S'IS7 `<ʏB#o / KIfs+GYϧM$ ÷~f0}ydQ{yrON%[nMQ |P Du&r"~%e]S g!?OϔFph]iw8mC͌=7ckiUs"A }*z*:~*[xkbK2hACo/o2WMxȆ 6Fo[8$ ֏ :)")~֟:* n|K#p-a^MBypD)HQWhIĦ&s$@Z{7##@aw0(Zcr+I Vvjo3à+*oٶV9KY,{uFѠL]!TMR bN P O>W6Xا !$ɍւ|4Y̢[Ee,ڥT{+THk`N0+-#2F>:((b(6.(4'鳡HOn2|U2ፘr;D?,s=[yWXSHܗ5U:1W_(AUV,q% G}o]+3~Q12Z HGFq"ҝ„YG=N΄kyH R4%m62%l[JpLYY WQEo wAㆮ'#rKڬ w_"^cCj̼Rp (? Ȳ<䦡`%Ll:!}.沞0B`/峪ʡNKp7<eYĶɉH5aw&njΥ=sURwJ<6^"^q#z+. QX=Jtʶ''9e{X#@jCu[,-C&i$ LBHݝ?٩bUĖ) x wv_p">)iR$7\KtdF L]~!+]<#DD>:TqE!*E@"z^.7+1 8AB8Ї:cM?I+ bqnw07.Dxf{'yA.*.5xB[<'g7>㑏Ro6H5#Kr'-'SF翸ZT4;+NG^~_H37>,qټmQz.i?PŒ&~0Uڣ0͉P)zMO2H`1;Vjɜ≶xX#=K~ Ͳݥ:l5=~m+[.Nv ._3S4ud-> Q |Wˍ\XZS[]Ԋo*uGCcP]$|(-8lQexi ǛFTDf;ԔDf>Vv`8z+Փ@`D=x!֜k]KgOV%Q)|I2pj&vFF*ZTK T"V6BN'% "+/Oe}XgTd _xsܧ¨=ߩ& 殍,5^<7G9]xͭpDQbsBWK ,,+tۧS+ XXεMi%W4vГCd4T%+WںH2~mV56&8ΩFpѝl ;& ~ 5KkO7 {er =ɋ)݃yYb_ ?>yrE܃ڡ$WkEL^[YJVFhca]Zo*pEJD|9#3Xojr&EDgOroGӟu{#WHUA Bed- uM?iVLk-gM$P*"c l_ѩ"fWJ!h)bʮ%+F;dJq~9x&jyh| ͧ<%i^AyyΤ]!bk"k1Z#p@c(rO6J86NʝӤم;9.V!s쟫Nǀd).aNC;dz??]πu%&9.tu`, ͤ*5 3Q ypk~ZF2c"TL%=% S=t^oKC}DS'K %g<4s JGOz[+S֬^H@gX~f͝.R5JȍXc"[NHTs(z+ _/R?&;5}GzPzF&$H9Lmm!1֞S Ao +g&95m~z#jE#BH0=:bD'3U1qyL9Mvl2=./uqB⏬_uT>Fd(x` S JiJ~%aoLdGt\`ZݤlN+R*HbTh`iF\Ws9풇ܲp&?j/~\c^owPIejڟҺ|I÷찂'ٹS1uHQ4$Qړ8U&[d#roO*:GY2S~2yK'~"Ox͒T{u\w[ dYuJ-R(g&BEn\ cn8d͜F» ]㌱_§q(EwEM FXtȃdF4 DnX:9E < 1 e\25S<)5xVj]d̕>;BAϞ%=UIEω5G{>B/%EW!Sl!WRc"D3 ;; 2nFAؾ&@~z,RRK'_KD!][?t:Mm4o*pE&]4m*j\T Ae狫v%.WlA& rKHы]Rn)fcS)A [Nc5STR]XB܄:\!W~H5gJf#wV>T[ZgF}eȓ&w<Fb9c}MPOF.bm3øQ;HYW<Ɍ*HZY3a%C_SF Oxٷ̀o 74&SiXߐoVdC37؈ G+B` -abo1Byz\ϓiŒp$]J`8u[gMo86; iѐZeLo-&Y95}Q㭹*hV4"n(V@Ksgpi|qy"1Y ݒʉKc51i!ѽn[:OnhܴC ?WLφ|bd` JCz_g"FW̏!F c+{`x.z[qd\ ɺeS֢woВZݛQk眙 /j]C# 88XH6v]Qr_Y!*K7|3ߪm_R]V1ko{zQ)T'fbʱl k#,E(r4'5ĸwa|X~;!)1+ٟE> "C&h$h@'PuGί 1wI\qd h0֛F;L&Ǧ<P'Oꛬ `ΐ/җUGt8Cj{$v龟SԸS$cJQ .7 Xdn@&2>|I2 M"SDSrϔs"U.Z]XRf}3+ٶ3&" ݛ^DHbP}r{}ǷY |e}'שfZsA}h L=]L fICr@15:jRn\]p40rJvEVd^0o J*Lu_h>T.:hg}( -4i{5Â2ų "Σ z| <׺h ķXNiO/sBbӃJBtk&8x=EE.U<]։vt*WHݒ >M6ޅ}Sm3%x|CZ]‘i-}#w/Fj>3'{pl,džBT/.SXإKπ{y+h;^ŀºj-`lp"sfmWRHR$15D]x2TJka)|ipfM2]Z #xD7kK˒HE xr30kjJwf +Q=V;}1r/`t}c l6{xMlw/4Uw%ydAxX<[{䕓\8N fkʣwoԜ_wn-7vYRQa1J1%'줣V( bV @h|'xVt(Z$]P6gQL&frWBw"*ωӻ EդhmĎ? @5Tm悤ۖ'?PĜyVۛAHFBV+2d0(oFGtAr*< ?˞ڤbseXd>Nv)*'knҦ@N";okƕ@j*~IW Vn.'vAj/ͽ/WkŐ;޻YAQms D%&1iz-TGJˉX[uaɊe-==<&o?D>O(ͼ7fmrj*d6qcM=e%aVWpG%*\p YX5Jg!9׼R_ ,dWJ`KP}@dRs7?t~N})F>!IB3-?=:oi*?tVQRy]+–Q%(| dZK9Edzy9QgeB|G.JJdE\Q#|y\2{AJHb~1E)g _ :!WS9tǁUnZN 7Ab# BQ-a 9z1[Rh@p)gBqLF|5Q 3ƅ?*~Lkg~E̪jGH!/khA^E8&ˏrKL,c}ɸ(7rs|H9/7R GNyoⴻ#0y!:8׼^"e:6,Hn!CSok1Ab!=aC8͐7mI6SO~(I_/V<6A+&ư rLJ\oo'~EziRQty,YP2<.MieQOMh*_a2 fKG(v|}ZƼkBoz!G>=nq*IA,wB6n;\u+fմ&J6>skiu;@9V8J'8q]1ᶝ:_jZ[4%ekwؠ e/L)=$&4W͑՝iz*6\Ԉ$Oe8|9b<†#Z+8576BI6ђttt+BWgMYp u'S˚?B@#Tݲ 5;:r=/I2GؖW7׳?<ҟw\eEk9ImIY&BOw4̚"Jxm:h=u6o E?&"#P$ 9`}ˠj3_ 3h@Ѧf>jiŖ-sY80C*; 9scBt+ S4'tX[>|q$~xB],YGQճ30Y߷KL]dڡPv`O;zdƻ 3B%+aD({d0c yd|/\ ѫ1x R(8ʋ?m_ifQcˊk8"*U *A~Z`iJ亴z#$Wf8b2+je0pX( N6V\{j@ hnہ|(H+l'tƓ~o>i؀㴨[2KZFB/NJ DEcry~,o2nUq+ʓ4&J@>|he;V_WKR|K.Z {WTY4IKXU>@8dF[ˈ,eY'%as mJA2.kN|Iwf@~'쎆Vb/47[oxhPH-4j ąu>9`覐`9KgmjvEΕG o|@Up'9^&it`bn’3ȑ'q]M0rȇ(v'QNOS̼S!Mn5g*,!qګAv@/(:Wh%-~~* V{}A`<bta8DYOM٪>9`^t%S{ Y當b~WmJ' Zq@=?mM6%s,$25 czsc4jA_ظ9}ЦooTFtOAYq* k% Ŝuh٠yubD%H+`xiLRS"O-O1ehyHÇ՚k<ɽD|(uF Ƹ /#x׺Id[UםV.@M})¶nK. "pecPre- %[ [xKOfA{|WӻlY 6LelW1fsކhr [aam# ]PB~LY'ZGwxo-aciq@Z0ws%nOC˷_38V&A(:rլ ׮7SmʛmLN"Xm[ 6x i2{ǎ3MGYDmn$Zb* ۚ0Ѭ~Xh#„f 8vZ n:ͮO8{r xIPqZPB>ſlA0uIS<< ʦ:0"W asQšx$S:NXʮd0(9;dEJ_]~~}1Oڭ%Y1S3=QcNrWZ?Ӛ>Aq-5ʙ5yOse1˟T)P2d4ejɹt:*]1΅qH'd"|FEqcS^cL/K*t,'4$ƂdgK87`!*R&}^>Hߎ^@Q3# :0'aK`dSC$48U,0gK@"Z=mǺ 1 `m-+hF^>ISRvtCBSSJ>"&}G$+N~ @`?.* D ]D*l̠ZST^Xz'LwٴN:+q7ՈT!p-SqT8T]+z4M{2h;.iunh}2N̑baMs ˂m9/p=x ׬"*0s;r4L)d٧}pO^BNʹՇ8i\m8íMaq(Ghl5V!>~NJ-0`)A'dHH(F։St*ܠrlNmEtM⸕<2ta6QY"齞1fHnA`4YAż!w,GWJK~xnQ N*=8P~#2Lz dZ~1Z(%+uQtoc1VҊz"YO 1IDI}aPyV -u?ZѕRs--TM y۵b/4uKӵ J>ia,Yml8DP䵾 yvE+Ho e_ 8V[:03^ _.|[oOk O2ʂsà F"&ӯf3y"YhJui{ ?le&AvI~cnGK:?c?* /Llo 1kW{jGUIOQS:?~O4fPԉ^Kj5!EJhxsDRckzk<Sɶ", rQ-촍 ]М**wo&&s|40R,L"FI v$AUb4. e̔]Xxw7e&GШ!<7ׯKZx| l 8p%H]/ (L %Y|.YYyd:޳ԁeq=ʊ@NP1Yu_^i.pjcý o/Y$l~hRGe"dَ<94`uRU;\jaN5ەqTg9)ȺWm_q󄧜9+VM ~\k0P;-E/R!`λpPL;4vJIݚ6߆sI3cW<휺K)T{/Yjj8Pw揗 O謐9җN pVzM{Og]+l0+Q E.|ȴ_m ,`aaPYrJ ٟIu;1]_d u 8SSi"Wo S;*C{Dc(ޗS#BxYsc^9vZO@@oK@- pX sbAtʇw:9G&VȔ[ijUϤp'QKЛbhffՑu+Ll6',~7\6B+qHz1zdї<N 'µKq}8E?-^Wr7TICGv/"צּo?R% /CZ+w$Tׄ;F-QxO1{I)tG@V TItq-f9ktl5HzhO!m~Yx(B]a}$c%o9ٵexx)1}h2OAa>}Gv3Wj@rs"Ӧ qv:Sp]%CjFiGE)xݚѕ$cV]waWwٯ* +g?,U~nj?QFmI.!Z"HؼkʐDkw'IЀ>\E ^ QWI xI8@fS*6`aex_\:Q;i3}*]_نGgH:y}ft!b\~j/C ʃiGDd+DD8Ǚ_vy/c=Ixnx@;"i$ ʜSOO E·/ $H4uˣlpB뀿}wCA{:y:i?RHoӱC3FAc8WQ:cQiaj3(LkB8f;]5H%5VLVLGH=R5_ĩFhؠzڐ+N.C(e2Otcw$᜚KM{Xrw[G%WlE|Gw̦ڷ71֑۪vBs<#ٴHP/<\˜o%}W(6BjF8pjfoN Gu.- H{'?ӔOWZWwޑً8`cdvI6o Yz;l!~t9sԻ:y=$2d))~&(X/SEDN*o/_Ҽ)c(' f=T[p۷5X1ת8WA+g1.V @jw>iqSnO/*7 ~8 `Me1zcSH`IeZ%wm1Ж>y׮D?P,6|91Fbrq\r1d W󗴩@q! 5|s1`3 {}"5Up'{lc b2섒Ld٤tc=R}b1 PNWoK>l~5@$?,c'.( ([d2LU*d*g'EOJ#^?|%(*Mbz jb諤V [!N8w{\Q۰,bNBbj]*\vRph$M6̼Gu4CF /Q{+FG@9B/ٷy&>@^U웽_V9(Jrݪ4입]V5F]<^duz푾"qe4WPsE87aTGTJ3Wh)oMqԪ1oA)W3$ЙW@qZZϴ [z&\ =?~Uo <=.B, )S Y-fx;n.ZnfsO.xb u]cWݽSOOϤN#ԃj!zEnK4Niq3pL/%u$Q{h!\{?ޝrkһs|g 5}w̖O橢T8m"33{*<\P{w` O??~6f}e6xS1IӠ =Ύ3 k \Ͳ$^GmrcSϲsNI_ qBEF.{ O1L~F1*m)!;k9vVes{8FagԠjhbQ_cRd"b3Ƹr;&=)Y쇜_ްݗ\}N_`ߒl:O3xضUG%p6GucsVם4خ%#AR;Ee2Dji%¼2!|Eig5Q26jNl B_kzICa.h̕9eo~/O\H. &қW{Yj]x,so$wUk4+ŇdPʞ^N#mpGʺ1n*KGY:q ä]Rbol46#!S*zj̠Kh(VfG3Aw8Yk;Ε^ =j^BՈz5`$[ ^{żC=&2Vónڡd4Ք Za=qQ}7DXtEg`&XdĄu9h3Z`jVtͲ)K^ uX'K+( CYB$=GwSL@_H5$Bptwgڊ1!30#\#+wB}.mXq_/r: grhR/8'}-sِQJLD<@5e9Nqٚ@Op(BFsW`=Cpd!#! lIi A"럱ii1dk_dbӪwo ~ޱ6h} tռF`i~Huk c1`eë|' p? 1IDk!r0<`wd-xV4NJLnP-iLYH]{zTfyH"J6"6*! Ңbpe]jn5!:Y1qvuvVbz4GO;Jh j2j.%Nq&+tL׶B0n>{2h=|`:y=<.dg,ɏ|p둷5+ƣ;[SCPбSBR|ʋ(qh_+߫'AZcO*j_.k( aHM[r&\^M,{͑A;5TD2WdO0FtTK,>4|UQQ2$>fBN"6y>YNJ! 3΃v > { 4<) BVFmh &4j^]fr՜΃ҽPf3؞? o=yñ%Jo~b]c"DJy <gE"{!)F {&4#YcDjt4u.`("i@:zy+sȰ'Sؔ+She&҂^K2U&Q>tx_IAY&%123Rlש |y1ekpʊd<  3B!嘆 OWO)]Zy sEf:ʹ]aN.=QB[D7aӘ$;qDUۤޥlV 40X1~٤JxdÊقoToT$#* 7g׮C $;1L԰b Gc-I($pK;ǶQYȖ{Ȕ}'Ȏ))je!_ķ]BBHas$t1:yX#fKX4U0 ͽ*];#6%K-ʲ5-a VdVT&ؒ!eZ!qf=uNם;8`5cֿ\V%Sq7MdaTh`v[$x@n%o?sbH^T DgH =Ӆ+h4El+@yk t0;?"w: C M!Ц;U쨔FTl iR܈fu/\.b-pæB@ZpQ`pvD=w,#jWbx*bهF'k ;m> .ƚֳ UJVNPc%KWVIDIsx5iR+gݶPƥ MjlTy>'"@& dYfɞm Ki�k\Jt*-KaaQ0g*ǏZwA"Lo]c[)TiPvGPli 33}W[6MԜQ5`JFNtʤuԿn *}8/².݆)ҏl%Ӻ=ͫO9Rԩm^0$kj1?\,ts $K"ǵeX|A+GqKbY);dfScP$,H)yp<MxL[,ڸX[H_̹R+Nh#B΂ xזbhL.Snꦒڴx~|Fо1?"+[L0MO*pFGHQ11bZG?Sb WAsN_"2r/y)S4I]Vr ?ty_σ^ºv]c9c-軈).B Zcߊ/dnR%DG^OʚE`Y* Lw3ZWՕ]˖X)QK4@VU!tL#NQlN#$gb0H1x \ }YBMy,8%QVĿVu'sj!cm L !rj[(RH<zc2#' F1DV,+oJ+`6ς #b)deG2t8Nۇ۪bǿj1A<ѥT` Nec6:d/0NP1̎rk3݈DIRff LVz}=-lwLʹ(=r$IdraBFE~.k&h° A _>UQ)w1Oo~$T߆Z0G )G1zA>}mǣ0 Ϗk2Io@6$?lZrD;t)Qշ##9~ނ9\lyDUR;qO0jk<>v4xWxp)H"ƺ%|Vn-|x{VLj%wErCBlY͵)J@/tK3b`:YϵCSĞl19yޒH?h訮knmRbvKOve 5B o9Lxpu})fQNrK{%_q#|GiHlk wg Ux->:gIwm+ %@j9|yYEtޒ} .K!p4lnVX鲀D&#7N砘NIԋg$ITΉOu!iu{r/#-!SGE_^ȗ<;1t7]ڲl?0suLQ~/e +2*X +Tc= 2X*΢P %/G^bʪYIP8!ep}'weiIj+,~mAWI˙cGgS ?epVJ̽!ٙ60#MVkDrI0tbQ_TtTnKJNgh(b} 9gV٣D M5aj Bko`֞(ǿA罆ՌC٨RU &a|W- :޶rpӫV7SAsXs vӸ_ѧ~+toUQ.Et6"1XINj]&ϊtiB`)[p$|:c$z]B O1a.01a<"ޞSBlH/qP^}Xvhw>7a!5$iK̍Byj;Ȩ\Q0:6ܶM&m})UxpkʐMk̎RQXaw ,&VLtyű0fJml`;AܐΤ9:sS,6 6fD 8h?J[ʟw#3˟r'kqOC'mR^CnlJO"r:[ky?8̹KP`601"7[Fv{Mv]&B`c X˴@+aPHj|"MO҇Լ\` mc+ ewkHu4㎒ƪ*mM\}i|JVr-lxR{T뜡:$&o`-*ܚ!؅8WP˗5A8֠|a1 :iy]X)QHVScFlV[G2TmmA;n |KܬhC:s(eo3A.E 3DaVҽSV$!abPl_BKQWw02R8d@-l Ͱ> +0cdW#;YmTf.HiMwz45I8"6 TB;9רtݵh_BT"ڡ"?G~ȑuon LR,"]N86®iPkv$K=W=vq{B䷽E[6(e/cBn].7_lD$'LNIHI$_A84]ihJ z7JS~!ni#Ɂ)I8Hcr ;K\2g`wy@ʝ~yn= rHwT ˖'yH2_A[<,Ä:0(Ҿr,KR[^[%;_;n%x츑f#L_T%A{y( &ۄ%854:µ\\VmdMx'rww+7 JrA#zTB)h v(9TKNf,rRȂ!8A~?W+Ɯզ*BAǸe6whM {w}L Z)Y3<8QpLұ|+3 9/} Ng[4FoJ@bh 7%܁%H 7/Ƽ#bHMNF&b$I5ĸ @J29f5;YQ;e6S`S% <tѨ{"e_/1LR[K}.5 kg3w^o[m(ܗW֐9+W:<)ւ*Fa:[oȤ-c>C{_=MaRkSIanoUasCQ4Vv \,lo\Mڂ1|=r:uv*ҋfc}Aǚd8'\bd'ݢo /Da_ srW|d "Yr6}tzj:&ԣ@mlm0-%: pNsuQ5cp$pQ6tl |EMaFxm"Kj` +]Q)&a¡-O; I⊙mL(4L,OFD=ɺxu$ϫ=Bh6ŽQ%hY^1ч7 dEnVU,<kgk">%pmZNsO*WR*)7 ]Å-ia'q.rD r0&u<<:!f̤B1(T7V=_(Dq⟵³I͌0%zиDdEJok}0GeAr:1K'Mg;w7 |Z,[9 Y5$z;I52X6&ΧGn^ $Wߓ f?utCYvHa!W`\luW4=@.!@oZw$ƽŰmc|4 e~p8 c|T  :f~z{фk{w|>z2!o |Y)fFD/=7i韺6;Jh|ڨ_BCuzvuq2 (d.tYD f plL"/XJqZ{- Z9WR_xNRƇY&8rLJ/O}f?DɃ$d^@Ttzf~HGpef2YBE1.G0 l:bS4^Z,z:v=Uv$?8ooupyp`qU{ygA^-p̼^JrǾEk3z U⩫?6LMh51`Tf֝& E[m͢!NݸɎ3G顽_%POŤ5>unF^h%3N u,e*N>Ur%FS-!,djw~U\WK躧IlYoY&~V]N噳s%ݘOn\U!2넫чF&{ ʠ8-& hDYG$߃ډ7Rq|k[AZ ֍D v*kaоbGLhF3r1 r^4;e䗤26]吓GUd(c|RexW.&)HBp?&pEX<]L} @G"FYװo(i@lJ;-h q4'6mfK45 rXl;\`3!i[3&ݩX DZ{ZW{S { 8DQFfVwcϧ@a/h#\՟ij'AhVhKP ,71P-Y܄N*f{|uS bPs0a?y.;69mR7CYTNt]rQ&x{x;88wSO"!'1 z+!T-RU#_$LugK]HPFT-uG(k9 u?at.BpOm"X২p,J_UToPOѝQ?'j P _'9w晤ՏKǤHjkU wa liփcHS֔~Nցj> i|E~U4ǫQ36tKV鞰HOD^IZѯPW2'Wx hQM5T %o2-_fȅbӚ#~]"Lg-EOr'+d%z݄cÁv@!D`u@+Һi9M~0e0jݝiPRkXYH)1e}d{֮0htıb$·NVӺKppЗ='bEF4,No!K&rx3͗fA%ר^* `*6bS0 @7k#5JXtO|X׬UjbW")5y\=s|ϴ)&GN߇uv/v'SCJ돍n ^]FW/ 2.aiM qҹJ5}G_ ҟY=D=I>@!,fq2c@2m|F$++ Qo*]T̰jpm1 㾷A('5} {sY6;$i"&& XPq\Mb 魳 _s6㕣y=;"Һވn~fZv87ƒ$sUQ}u;U04xf.Tb-ܒ)͞<$@Ǵq ]0023Mq#Jzkܼو%Lz:[7Û{f[[Kb=b8q؉DQܪũ/zθr>(4†:da,@iH& Ӯ1̊đɺץOG;W ZҺ0=Ó =Pνޔ@Bt9qHVmd gF0t@%YR'έ?C hL@88Hy݈+{=GU)R 9ڔi!?5^AwQ8Ӱj1_9ܝ9za^ިrn۰][<L!LN>cuo[X4?}Vc)ViOp̶;ˋuߛA,k Lk0*OԔC1zcʞu\ M“JKA *f&(堄us!ISJC?('n%J 3axa}U"G-;2c PabgY N/vD#a+ b@/Mo`=sǾXOF O.rfJtcz`jaJpD`X%IaS_$o=Lɪ=^xVD]3bor*Hʹh҄Ga?="}P~\-b{YUO'dlz5dKf3Zяr^g;h AwUHt1nηQ@+Cr֋X.1=I5ۋuwk wiτCF XdGYGhꁋ ZK<!"K(߿Xs h9yZX]Nk3$ c߃*c8g03@D!e85'hh\o}\t"~:Mm:|ɡCL ugTfܳ᦯F(#ƽLxSWH$vИV[ЏNt۫gaj>1QhI5;;Q-uBx.ֶ^ۀT4O[|tbs߬|&[NItA6t־A=@^sYv1~kk)qβV.n~tWO^\J^ELPo{ *], V0#N)y:$KDҋ%d -K|LJ=1L5zN:afy.RfZ?d%EQ} 9 awjX yILW4%n@w%.Ut'a1a G;ʷmF(:0C={N9D;? vp2xU0q5$cTFzwp.KK Ӗoݼr`Ԕ]tILh EKA?/6.tΒt;*4ؓQ01fD⍏]j)g믅+ek`<#'r*5bϠXHsкW'ޘU+wJ)POzg4W"{X> |<ہ`0f'(-*pVS4ޗوoU6ꦞm >ͶRd.޾S fCK&M,NGY q~%FsQfyt7.Z4cWEF-~ᴗ tyXH@d[0hncU?V=ՙ92"K>k3f}\ƔE!!K*SqqgQ;)p\jG$oEYnKI5eu[fo)},ͮB0BleMxwZ^b<KTLC+<3QyNa@개k9;7)x݊/UG g"R7}Ib3Z<'4Cj!`^x5Ca?jot̩Z%z_ ubaN5;׶tc|$gN꣚QoQgUHkl̺=dN"񟤼vSq}]~ !d%A?-ܤ][s3]Ci|l1m,,&2:kUťڲc'=tr1Y3ZUmO8#F0"JO3:ݍ"؂~̀'YNNFy20GO#(n8 1$g݈kgq3+}#A&ZGca/5Ym48Bچ֑p:O%xDqqD bիȶSt-%J!X?ĵuטSIiK<]CGQ.fqW."ނVuм[|kg <+̀[RCVܥIWQ2#GyQwb*(BH֛X3UkZX<fw+\y3v/( #tso52ڍVŪpXH7 9S&q|G$/رXw4]p~M̀7hUqЧL>lXdbpYkc/k8ufSuSVteCf]*.N ֖p`1o+ei.M!:-|sX/:C^dUe gݮ"%;&Aܵh]2to70O uiZ r Ujpuҏ&(ʚYeW]>(SmWd1 m1*eZKrd&,CXajNLEٛ%aNΤ<]h/oPlUt{O^{ӺE 3Cuk`2$G/|7Lo<3(ޚr M \v Cη,b Kv=aԼkDz܎"ϭ(T67· 5y{Er*=,zƌH B !9NB!v!GM)yiL>4xZ{`!Gh/E&rϿbJu9!+h|q2V`6c +w`r'(>DbjXNImȗ$kAAۨC'=ɫD^Q]FJ86ؕȂC%E^Jy}%"6uU YT% æHޅ:ӈ A&??yR5ة'Q)(xCȖ ɀ>aHBc̤-\EbNUdgwKG 3^*,p)b)09[x#" [+~JL ݚh~A_꡾G=&XYp[хAvW^7,:6̲1 ]w 160J?!I41̓XiftI++7 6 h5e+c3R}Fn?dP d4l"@ k]Hv:Lր=28|Ό'n_&l#5~mW&)jcgRעcP`͝xO&]ЫO$0 !NUl5`̈́u⸓%K͸6._'^1(]x(VKK氅o2^N?":887B(LzUL%7VhÃ('ar#L?ps~?u)] %%@Oّc|/.54 8S=wJt^0){);) v>i~h#Z1$T c/Dk>|imX֮vK{$]f󿛼2JqGƎl[X c1p剁4j G%rxh%@GgPz>eJ N %d)rmSʱP zwњ63ԸPfo AT]nb c'!<~3w)hIg25THYsc&稜o82@.dGok8(tx,uě2lI /Z.2֜[UYh58mdmش?5KǸXVJ,s =e/`:D J ?vF(*$(H;={ϥA&CTfL"%!"UW-PKL(%d"::jwA] 21祴v)!ywW${tԟkZL6zR=,cFj N4g-<`K%B]z<}#r⎇) R=_YI h + i֢TAϡjBqe;pR? hG]E-fzJΤ:gLfT!Shʅ ᵯ,đk6ʺYGײqe]{JVntgK_٠zڄdf1_:Z~t\=\Jt4Uӏ蛆އ MMa'aUnB&irBM%d=xcJCDCUc+!\Yj[,u@s8Bν'ߢwVm'ݯw*vF6z;zO1)^K#%"m0IW4\rnf%[Ib.tޡ!p pO*D{ *"`|Men\B䈍WL! Zk /[~o;TyU2cC?"r؁)ˆJ5RhB MGh,$C`fq7D76l6r';\<. qID7*-Gʻ`pEv('JncOIu6P}=B]f3Pg}TiD_So$ҽ~cN  {yճ,ƾb='a>tyA<:5yfjzrFXdC:s'TD|Cih"Ui'=.6iCw)^rTh<l.D(q/2؜l5H9Lj28?욬SD dyFZazfhWDTFM!v[PkT;!w澥D9Jo"Nf&~UmQ }f\ $n #M5*S%ܶhBtxM}]"KMR~}OvۯZ #8 3$ s\5/T^IYݤb5Txpwlfٍ/ ^Zv} Q{,N7 ]h1s..lWU[wB'0 N9 "79rͯ ' Lr$G'1,j""Wϰ|Ÿcx+*K>]نW=;u6Hh +ˮ]jO(jLh`TD5Gu*a#eaX~PYl<$QmӾ3 3LKpƾͥ$Kh&WP-Q9`G[hNM0hc`2phkSgZqϼsio4S57- '1N@a3#$[ xc`v) ޔl>k痺Cs HKӍ:sݲK-&k&JZ:{98Pz69Bt T* +M V-Ռ'R[-yac;g=EP`R"m 7)@ۺKC4 wgd'X?o3HUx8<\PpKLe7_61RMyj&sE6&妡貮!-kr]ys .|x`쥉|yRM Vu~RFhϜq,kdD42( ulةhG'[[/ 3G8a-F@q[,bRuΗvDNc''H|Pe ,2Lhrb YƏ'R"[1Ԯ)$D?rnc&a@zk^_dp_ F=v6pxHSsnH/";sӻ`l$A- zT[+vaӐm[BמBG1|B] lH&qLk/@}AX%sٳ7Lm1~|P^"^fV C.(wMM *pt(d/L\X2 Qt6mM% ?6Ҹ1tӼ8zH 6博_q$VOnStnذ*Js.ƷCkz,cN^"V JuT;6P`I Qe) Kj=n#е]Ɇ^jw,Ԩɪ`;‡Dìj| jh2Ǻ>NonNRT.moy2CMQ " `!)=d|/&fǜh)6yS<j-ŭKA^ӧ^4h+`,<:՗J;/O#w3ZXt`;>mINJLKP;b}Y]j- ȕs&6 wUV⥃B5lb?^ypof:X5~)h#ݛ7gxq(j~:$X~ÎAѬT~W@bV#x:DЇ*pWn&[eWyN25,"zӥ#J&CKALf//s?D@S17a/z]Mt&dЙҷ?Egİ뗧 %ytipYbߟяLeGlc?{݊B-ģ9jW/a0[ޙ; F̸4!0I3ʚP2TQ %  fE+\FD\m8I9pڟhC"&u7KnAwz#«p~4sRFMNlZʺMY{RRy:';K6K 5 Sb\{h4FPCeMk[T`=69zT ΅}J~n e=ꖳŠt bZߒǁV`1}*0ɖh,?*Uׇ>8r~ ΀wB&'7+kTṄg;/wY˜C5/O}x{~kt [oמ36ԘYRkUna."+<2DevdzCSZҥ ͟0g3y[?Q a=T[­2<2"0{ ,91S|;J8y{Z^ps \K\t_y+b1P'_Zys(,w *䏁Gxƥ1FQ^>BV/b89IXĈ g(dZ F6F`8I4:`- $E$]l]ȍOީ}oNR-DyUaVF1bBe -l[Bg)enY9B:F.w&PjZ")BaV ᝂlS?9gr\lߜ1lcLqZ5P-4bV^!RZ5n4leBdluCCCQ_N-?^^HYT[ N WAӁV'ET,U Dͯߪ#H/-b9ڣ ROs%>mZs0OsEI8Dg"xxXSJ ʥi5܈%6)H[]]G&%C2/?֫o0Α#&rU>ӂ.a%+L6S`bZ7A'0)His3|#s-uϜШ])'BdW Vn/q$DM;f5AJW^mAf EttZf; F+ #膢׾>Y*A>f2P[TQy "`l$خUUvW;!{ Z%hm@/cBG 0Fa ^&/H嗈UqНZ/ u2 ~2pіtS^F M5=cXGs'3Asr雩%\"/'GamAg/P|\6xvڮO62h!ikĮ"( 0 {@-v@HTRCW;_0@VsmwjFHex藋`zi}X0Ex=5M\e\0n玺@VHA)*z,ޮM Ӟ+ n*Ads?AᯑnL>` к͹TԻƱFRyےp6bO4"73~%l開#?зi)0xэxbS8KhsV#Օ?0b\qI7s?5qO_lfKFj?U%u;%|0`{z*!"(.':"Ȭ\vU4kTuڜ2d g6 4m+g}LUQP\r.ɞIeUOOYkh&goy joJ~E#j'/i'V3JwAnn ׷ra% ۆy ιi?pk@'9g?rM[`fCH㣟WPfQOI3*ED[w5h=3)(ؓ)K]3H;jkKYXNV8VtTўbr2oZN;:RVZ? xu4.cՆ\ teHsy!X$/8o0:{m䑚QuNr=ad#@IMv vmBHߝCH)Rѻ h~a}*U_¸ɆOW&MgՃrR)Π&ݛmă v|BKgPdz}G|%2f pY5] G+ĕNO`^휒Y^-90mᯀQ#_<ޗ #g36XE0wO. x]ЩVE`ȋ=‡my$Rvk5`ΦY%/}JխNjCby:e640uyyvD =e.Ca@ HuNه%zbgCkݧ5wv7Z}^.-qlݲӸy3fXqVa[/#l*g| 9qþM7 gpց7mXaDtI@H҉&תJcDӾ243k.ϐpة?(dW۬i=5@23UV٤& 0 g<1޼ BDGj|bP(;9嶋[W*ȵL٠xF|W'2:fj߄ LЋRv9zMMڄt̚]RiI1Y SVi5t8b{2z䱶# WYǧfd7O<zeAd"4 aI$foz€.:xwbШ}mMr#y'XKYJ-ss~Χȶеu+[^Ш`~b%>'4ȯf/۲,@o~!&<ܴ0I9_*@k9z{#=6Y/+{b1Sh<O{yO[}wc hExVqlCד$s!vLg`GCȱ$,[{ֆiKy,Hl=+S1tíOV[(-j/# +-Ś(x^hU"x(9z\>BC*uXs@oJ1iDz&'Ty>FػQ/(W4OSiB7<8`[

Zqk^.urܥG0gCbT%X{Š{,SAɞu\ nwƨe=CtO-X%̨QZ3|Qr@AI,r*ōU҄ {n.ˮZQL}wGʾoBk8C3qԭt=dJ5]x8D(Q"Vxtg4hi-x01ci"@_دp"-1h vo,[׆ ٨V@YK7CreoFձ9tf7NTQ,H>~ހNt@#q[W꾍bIBR 3+H)u#hqbL_;])Oh*d0z 3cqZ߅OEmX( cf/ߔEDBn<ډϜ…#"*rRu@}\=U%A]Au73 Oƽkw' ضn4AZj|{qY11Oj[mfΎr7w Q\9.5aTZJ7^,rw jP2)iN! g.6>rB3^Ə7' eQě Gҵ%aADB>El\_Y 7_ih02ؓL +NVUjZ6M#Fcy?n"0j6 :oE;=\@$YӇ7S3bR_"'m"eT#i֬(X+q:J+ȴ@v;BAu䮔 }C$Z13nB! >0>țxN8xht {~T^Iލ"w͑_l8=4ÙE^ً%@kn)*rg^=0MəVemG˵ړsWحoFŔEM8\Wb pM"qe{MȸUYb,\Bu ]([Чm/+#wP J}kb閠#FX83B^M^hYaiwPP Ncl,%~ֽCj2~F\LEVgSГGD_s U7qR+[+ $'OE~[Ȍ{xgT|󼸒W,R"г]:BǮ s8O6JG~]z!к>[QDGKoRhqH D:%rRjJm5Ipfwr7O2s?5_q F20 JX'qq #0<(KSrI4X4qA/y Sx^q}2 _7:.x+(R] ո]|T %#%TkeGL.z꧙yVGڛtYcmQU^7%H֑U17`lPL˂qGX3+b5$ޜt}Aw.EA$xeɦbyoLqrR`GܓR5"/ӜZͻGN=ߧ+* gv0Pф^wQ4~׬*![Xl }8ziAŽzcHi}89oϫ-cߤun=&ȺӞ!U"]^Q\eBo.+%jȢSs֏9, Znw"ݜp.B JûnֵӦW6_(% 1sQ[ek4u%blGQo=G~%(^ [)}FܷZZ2Ki!x89k1T3Kx1P3wYXǑA/WH2!r b"Aʛdޔ=ݷELK _x:rZi>0в1(*Rz!4Eo Ob=/}SG3jPA!.Գ{K/ `/er[_ԸwlvpWyS1kk4?nkIεRD/,Kg%E?q%dtLfNJ^v!IN[]dͪHVUjQ\z%Ev,Q%≊-Z?ϟ3'UӁ'adfxD<+kgD$r3=?AA#յbئ4J=nIn,A/[T>tZ)nab IFJYahNjG@f1{UAlvR.u*W#jlfujY~ h|mQ(^Gx# geݺs)z~K\BN)G"bK;?%HI⾜J~56Fy}@򆡋bM|3X fk o l7yZI%H}28|I\eNy"1uV$ Xq;~Stku2'ۦ TS4T_w㢇P5QqQ0kbνf(þ+78 2~ɏAԇՅŜHc51Dw$qvӷ*%v 65f,O]MZ;dž\U%-8&m+AF}ˍe8x\9%GQS晍1F*(vR#WP!q{Y=&FML ǏHRUPEiRiٶLL:Ϫ'mE4>hcXfbu?$977wwF$:T!cעH=Kv2)nHRXZ/^sn}O-w3adUY4[eB4roWߘe0^]R%Zf`TT,&oe/躞t*MSOքbZCKp?~W()cƙ2Ddr\V|έ2 eSm z#, ZUm1/9vKRk-iKrf_=nﮐg6mo'{Q+xͣwנC ЫI`Y$ C&Mxl*ILͬ0]Ť ordh\d|PN۫|'Y˧R?B 6a4'(oB/ vOz>͖JxaB{(I~Ti__uc[]$/ ﭣ N"gvX=φ-}}{H^|1y;T*5ERLצ:@AgH(PC>G!nJ@p`گ  %p.䕵%1"tj⯲ :kr;9IhZfY,=9]G_]5''y\uYXpY:7w}n5Tce>NZ<ƐT R؟{@.zǜݓ4kfA/6@2IY'BW0dQq|ez8t$eeܒx;TjtR1-}[ .@p`E+AvWK ^'tDb8Mj=h(/@)FUѦ}vѩ*c0ZeIZ<,GU31R(jjjf3?LVOFFF T :Yz?<ftEg;&m$.<[azRƌa:|=dP1KA>([6d}6,ݜm )[N,B5gvs;.O9rz_Wsc UfDE<J=tTt,& kDjѶM"FA%n5 CaF [$މ顈qO;ѹ7=0=0$OsC[ nʑ比2Ƚ (ϮQEuaYtH{lEŪe0-DK X[(HhR7\;]d1Q cЯOr;[s-/!"ET6kq MLugJoJ)_VH~%Q=.N&(M3o,EH40o/;923JEKpBSG_8|C {㟄W(OԨZ/#:a> Qg3plk C)8_pdIx&PɅ<}ߥw?/j{ɊVH7Y.UYDdkA4>=S40;eEDgcMJI}zڐ@,)JQ<]%@lYǦ{C ah%5y `%|/zF3.>BwGjqʉ \΢R~~;לclDud:d wɡD~3E\0ԸzF`6F\Lh>={co ,du[_5KdP9Rr1XWtw>{aF^)W\ST[.wQ4Z%77Vpxz̄nJ{j-큆ѵ0Ј~0Ӟ(5~#4uH,8!HqTHwgνO^bggI%Spr7t7cϑl؁_u^2 : nx]7!M]c_CY*6hK,(EMEf_׈)M֋hjJc/?d``#*S["$5(NGRU PD!Fp&YEH2$J 佞 έ}3Vk-$j7$Բ/q8$kZ< x:TGa,iXM4*k0UpQFV755\WT[dO gs3 o^1 ]YOxsXAE,!cbQ3ٙOKP $T={;U?EBh >o}S9C>~'u?{h1JH'߈=Mp6vV06FE =vB^U{"nfBl{ۮZ?RRIQnoh8p6\|Fv48+ح̷bu9BkCN#)Q/<ُZ oT &َŝ`u=^2pHb@68h᧬*q\Υ aG#ppW!BKJ Ooix˨Rp䙀O565h ?ϭvauTϩ ^$ei@saHiǾAVi ?E2lIN+e?ሓMYZݍC,}>pa[=M @t8H/-(zA?2IayW'قbg`oȏFUf78JcrsH'£ W1ASIK̀E\JA~I- +[ZwpAVxA!w k3 Ehg``K!"1QNUr,?uؒAONNY`qnf@2d衭;%0+SpW|~z9 4O쒸 Vux4^# jɻ 0<Q2I7YdT)~a*ExLs+{^=Ns^+wԓ.\0YQ\;Ϥ=ñryI/U]^v,5]5p@+r yqIkGT!Б{s 'i #2툟q 0mpu0$嬱N8g!g e=(fI9 W !-DqW(›)P2IV/V-(a+֒12ټg]LT11z d|B|+el~&q-_!O7+ݱh):(˧D$KKӛEckc]S۷a&]90>7 Tٹ}(DiD]|CaP'04/A:Me`~4p쿰~Ԋ!V;8v,F3OH0%ibBcʸiVl2REo8JהkeMIӉ4obOEIWYN󓆯\D/ U5/пY\cXtH:~AD6e.4 +[$S@ ! zX&+Cӊ`VniKGw;GYX\_sa})Nڎ*5c%dRQ=d<Ѝ.=;k:J@r mQ챝sSFƚAu*qa/6:7CQi; .uW_Oq~:3ξ%I^ ԠE#8ھn(>K8੯Xi~.g? iS 6n>M,6,f?\%;c7Q]7-j 9v0>v[n?vI2>' ׎;GPܴ 3_)~'j%`4|BI=5 T)ƿ;C kM"{̈́ Y'/1-6hI $'bҷ&+gx@U椨c] +]J-z*(ɳnl`ݗ!bHx)MdR6$d?(AkwƥhVSuFAМKyɟGdc#51n 60Srt 0&|6{z YC:x.A,^3ݱ+ߨ(Z]tIFB,Vg-UKݲ\l v2L\۲pmVĜN[ j H x|h%یh{ I5vyùQ=Ũ3DI UZT!\ .ǰjPќ6D쉰.g.ljQlK/ΡHSP%<!'{dfKcn|V_aoeK0yշj=5oܸ=r+0I\rLAHB S0@Ճ(l,jtZٻՄ"I: /mZZj3DBJ#n#+a;- b Hֱ%_( lo77A4?w݅9ЌuK #keώ8Ӽ:aSaRÝ^tw]##_YXZ36b6@G[VgC `($@oRKbwc6kgOhF9kOհZArv#GS~+$cC/_3kTr>!ZLfPK{e?Ztv]S`c@w$^Ow>Qٶa )CGu.鸏iӫR$]*x(L%oE]/_#ȹuOhėutp5T=R&w=1J-츳\*UmBy) J;J.{| Eޝq*8 ҔT x(XMqj%vÂgpUabi:&{ve gD9PMl=QƟ6H[q{f=,75J =`hoM; !|ʊh/bY(Ő!ӑl̦Ld4Uo7HַPs9i?(Ti0wƮ~Xȡڛvwf6+A qDžy9 k 6r tLL`T銦ʊ c(ێIVOTa)&NMӣEkm/ʂnvxrwhؠd ABQS~m`Ey'O48W޽$ wzL962 *ptsۿǸ{] 4-u:Nd?/ݗr-'28$m[6j ;VH#:e#shH<5LXf 6. p໊홫I<Ã/v!Yjj+.%췂 m|_g (<)vM }GgӲ-g̲꼀 UjIޡ~eHr|2' PK:ML8xZ/t 3L]a"y#ޮUFmr H܄D,Nb|';zg|Z|UöoI{Z ި$BcHxو=NE:zq7̭0h-,헁:$~lξT/O!=ܶ4qiUh plk29t!o5JعaJ7#6H6zx[7-搽;CYAߞ57~o;}nL;X0JbjMGAiݺ@ĸvĴ%XYYnFsj"Uk5K$p yKyaN%m ڗnhf:6RUV0 |-+LyOO*9vϚd̋NY&G_%4gsBVw9.`Ғ.) CM"EGWˏOC N/A.u!;T16?]:19!5gz,K([,KQZE2K{Ur"yE6_܄8=Ftߋϓ23%rc, (48QmoС`9Nq#ߖ @O^@C'%H%eĝ |4>e-L%#Fn˷Go_q(٣Z6zq^,a/b_"4.Œq\[.e1T>ELٚ e@ZK9+2ơp"=QaPѪ,'qH`0%cB }yDH.=? 5Ju_ݍԧ:-t9,0D0bvCٞUo:?%툄Z92 tKP7FVTGuJiTl-UfpE4{Hc6K‶Z0CW3R&;gYi)ESHIn{py(s(ϝ %TgjnCN}T8y /9>]ݓxsOWl%y(_"1ɧp+\Q ڧ&LMf6`TTFӛ[6ApJE_k`s0ƵZ_v BCFȡV8*rh=_40^]j]\F.$m*oq%@(MI6 &S{#Zv̯=)bgeZE`Hsˇg0ƑmJ_▥Ov|cE5sٟt}Xa-#<ܗ7D(2 FG)(*5DGefՍ&:{#Q,c2_=tn 밟gȐ85tYWJ!J?VH$fq\2]ؾaNGZKK>YւLjyb\ b4]R?H!myʹ6,`ĬF'%Ҧ@66dEX.cP#u"9GʵS5!sNGc8^{1Yv*H-G]M[ [rU}㌴aܑBw&A݉׼0qF49Sp8㏆}xm_1s^Db,67"F\N =r5=gȀc~<uX=.܏5i[EUd_}.uaK ؞ 噹oA^z:)^t)[?ӻ!^tSv3A@hZcQ `v1Vؤm7ے;qn P ˗ihWӗ wWh$-g,@b sZԢbQ4)VS0ƪ'5~5σCFFc٭rӖ bww Ȣ,i-~?@Zuz()pic]]RJK{h*u_Q!e) ΣO/M~v|?/O tԬNjK[r8KI/r/%A*rmS!= a/F6R\5{mVu:![S׈hL#]ȦL/i!L^O/iٵ[\`+E3υIdțFnE1Vnڮsq!.+B<{ ;)n'fCAGtv4wuzd@5o=Fww-kt>bOT3 r>!p\G7f{.ǷRsw#B TN1MYBhK/nOO\+θ^yc½`cHS,e&>bWZc8.]t^[d-L)ڐؑ6F3=]aF;*;y"\69\w"ymׂ =ҴqC 7RikNl3d`yPo_5us`>%s9?ɦL~쮼5f:U8e>#dr {sB"j_|nUKCe&@v@6Z/;D% t31R0T&u Cۮ$9h-9!9 mF!ӝ:e؎keʮ%h 3>о9$-p,\[W'C3W4hCw.w-,K,mghǠu\ }ΪtfSL~ݼ 򖈟t_t^܎=-)BJ  N3֙1uϕo595z.Y\&=MKZ]pRkthE]V SL[cTƶ% ]+[g e*Up|K:HpH}d]N{jun?WھBqc_aNŬZ!<(~{0QC.yt~ LV͇t\z"V+VTZӄ=m&_DP0>\-A /GfY\$$*JoӳK1Fv/"=SW nnMv/2]yJz8(6iC||9-/mYI8(2- ʎgQ/{ngv9I m6u,#JMK8h]e7קgY&;IuTM+ $|ލW& 2y»t>̎_VH S{=dXMИ^=6m)fRI;?MX1638||v][yzL7ؕ GJd={Vj5myNW:{2U QE- 0[ qmcdyh|8p1,$<㨏t'"xTI#0kC$lF*^cMD5\PJYRҐ/AT .pe: 1t;m 6E- Ԩ1Mk@l,ڲRZD残hx[#ӑ=hLn{1ZphRpY>|d=2H"$ܿe߬%'o"9Hq-*2SŒ;l V8ɉL4Ecm1% D ˓iBq%'ON͜)yϤ=%FxYFgH RfX0~TcPDZJ.Lq'᱂Ri5Y`F,Əj>O -9=؋Oe\>wVR! Cbh0ȍ/\ygx Dݷ8g :ئ=XT^bD`ДuYkŰgxԇo(oK |wLi` sR w͈tRi$ ~Euo*f%%v)q5_?J)^4!zY8vLvhڝ*EIp1uFYC>r'e>x%K!z+lt}T_iHo&>"5 ;=6SȵG˓7Fȷy&M.p0eUU `Z~dɆT(f$O Y;7U-4$Ԋ350_SrFXvDzLcF.$8٩GY)3@i4@^LTjoUNH*g%Pp寝'h ꍒqLiS0osB^ ;5G(OMD={' ㆡxU Ot"3.(.kv"7>89}sΡ ڔ ko+]#F}M[BOG-TB.8?{ndC όG-u{$DmXG?NᠻڃP~!F*8/X&Sԡ5/vh,w1YgA'pʖB.Ҁu-eIb;eVPX!}~6ڋDFa\__ya>]VI1_ R{6{ޑT i H[F^dff0p<%o*%vO㩻TJ/}WGKw؎#/?Z=k۲ 1,I\ul,@BϧM#%AH]iQ*Y32r᭡Rk !)9 Dı/m(v>% oc^.r[sGP> ⎾/~E"=;p.486n}{J%|N9`d#pɜ~f1$c6̥A)ULO f`l Dox5V,51Cj6 y,{#y1PEV'kڿNYa8`9HLq8|Pp5|qw/A}EB#KGVohnzG1!;tx{l?v^`yA^sl%$TOL3V {6_ XϧP!r,k7gxw^3idkAZu?@怯2)]-!u=_04a5t,Ͳܡf8C.B';:4,|$+!<EIDG66ivW_Ă)9^)YrB_&fk\* .3r:9$)z;3: X;~W1q 8M~omRNIfw?Y:6f 4 -,WA}6Mۛa[+X0~Ɔ&# dZkvCZ-lZ^T.5E\_ y9evn! %|e/MϪ28t{bťNÐenϤFܖ&Ts K1Tڈ*钭]TF2LB-~cUUyQ)΍P~ЊU6d+g_FH\S^@Lc䞉Kipm`F"l]!ѠE7k$dF_zT,Gcbn)6n{"͒%E0gǠY)ޤP'.9LCG4v!_$.BxخH[qE *qKRV\ ob}y$K^ҩ|۾˝P39nR.!UWNИ%#½B9ПTLp!E} EDĔ)6 ƌҰ gnگ. XT?JPwNjG_K 8> W:vXA3kMA^mM!$N|m~hrz> 53%ŘO[/Q~ YK"@"(>ocP\4mU 0ǛN>{/?r-sGi~Eq[=ۃ~43W̋LiLھ$ũ֮*vKhۏ|ڎEFA\E'<_ӽq2tPhTb^~qv,='(/-T~<ԓdֵ-_rFM4ddbђ)=q/"\m%9zKkO$M0eR']m׻Gt|mS'f1~/ M%z6"<렯zyS. @w+lv !ޚ}oF@4*Wp󌈚䊮^&:çYVsgc~(`پJJt$ʿ2׶͕ cxxSK9&U-^fS%`:xqy$L>Q 5EWFP[MU{o-kϦCƽ~6,ڹ;B.VM}fµ,G!þ!C;JJT#L G~CdM|NǷH j ̜^dvHf[咤B"E/hV9б-NEUeϑ.3߸<6n2^Wj9f pJ3#"b336i\rRV'Wl/rNڞ2}U|lj"'FD[i+= _}7%)z$~LP1-EGGDzSS'qgI 9$qS5ɸNUɺ;׹2ViT D8]"p)T_CՏ ҋP$yN 9fͦǼ*T[4R<&Pc'\Z4Glo TZܽXs) n՝RmMneXnwEK+vOb ּ>.фIt%( ;M|2Tzw)BkuV2t$ۈ.I ClAĎ+Rnm,=vj;#l@0|NCN}BnЍ&Źn*mp7W ry˩űM`z+q|K/UsjL.p^: ¿1wt<רe@[l8hbffe|jTWx8qUdHo hbt&H25!Kd6了&߫S4",u:,[Zs -TDȹ$|4ƉP|C 2XHǻ2W11p^̯ogוGGZqaEzxJ{՛eq^qj g塵Ҽ/AM3Oqy=0Q; Њ PAyMmW* NErZ1*1(/z6WdbdnRU' d#p&Hi8s{Ŕ)(R+(]7P[߲;4pRK#x{tJ+Ils??wvJFxnc3%pUمJ29@!=13܁O$;SlBԅ#_qZAy뿲?|u82&hvS%&@;칪Ȥ,׌T߳J]4\]/p⠆^{ q=C3ndmȱFP `߹).Ig/z'b@Nwtf[IEA64wH<3E!$)(!] 9g$|"%¸oD?\Ycw J va̫oq<!O]਌/Zr):'Hh>Rk-bH)g+ v"5;#NJsձɲ?aY<c"A.h#0ㆰL ~2H>L>x‡}Ft%h.z˗Lo+f)2ǽo[MU x0 E0`}2)GzOt IS]ҫ5:Ҥ+c#@lrurJfTj\eW#o*Sf@3=uL_P+iu@jb- 9" B*{eo|KZcZoW|XI~"_iEO, >(/xĕU: ǞAP*Tͩv/V-ף 2>Z5(?_'Xby!Hx %#Yޚ9k|vI طӓ|)~&裡7ElQ!\4 ;|.3n= r-b14#W`0"Ҕf+A7O٬_ Wi%t0H}kp̍PL=5גR0{HZk\p{r,hlpWUǵ݋xh&'Ϧ7RO18\.$c>bNصj0{mQi\:tkAwٸCdsF%BuЈ h~0 V:YwOW9?%#{j[kd_<\\,BP.id=a `OQse+VVb|(}L< PNn`={gE[@Vҟx²]V0}|_P*C:P֘j÷OP-i;w4%Gm'4KlvB%{ȡ&ER2]R^ KaU* (ȏ !S}Rѭ'ѶClg e>bU4@}:nM"ReaE V`KSb.zv6ɠ-Z^-tߺ]X T-=1M*q@jI]U_N #x|Ʌl^_2?:IjݔwH$SPB!jfc%Ds-Z[ +z鑅d^Aq椎-g[Ifnr6b뗯}B6O5" ̻Δ$7\l,{=1ǎ؈iF}!ޜ'g'~^!`/@CKtK*BHnfyIˀEMV=v䋖|Г@`8-|r0=9@]vyUril6n}2jUyTD^?"&rbMorr̡+b~X":YMZ]ToՐRi#abO5bCːvѺCA/f19Xv?d4*G=Tnl[>Z l*}R3Ͽ׌ %FEltPd s->9bSeblty3(+R~"O5Ơ_@[F1V> ->S_ٚ24e(c}9xmuWp ׷ zEnl)Z&30| ,ҡDE=/@giaKD,Q ͋badBTق2-x2Px*,1.xڥ X lW,=C5(cw]^_I!N~bUG9&pW|SCj..*3(<gh 34r4*zK8i+OzJoH?ls ]!K,` S@W(TM഍|3r8=`|MWEh╙ 0%K Ȁ:&F11 g}#Z\Έ]-.CqCڶ$G`gFQN}5jeD.$NnťEsX,r5R}#(;'>fQ3Y:gՂ:Asz>ĕH5!ڧ1Π|;E{(Oz Acb+nvfsSzIvPd;;]@.|#SHO}|]BLLqCnʣE]tؒƊKx)2_.*gcث-. N_)eX:a"vԯ?N+#wh\yan}&։P0KhQ 9yQ}yzuM4Eǐii0o aFXƪGǩG!M<*b[i M0y1Tfш U_<@(N Ŕ<-My#qu{_mY-E v.#6CC[4F XAke(=8!ʵ%"51j LJysIv9he=ᢆ4Kvvl |̧!~;m,Y`nNbr&䄻c2% 7R#eTI=F ԜiyJiIGޑД}]l6VO6HrVmwޙJ|:r p)+34STDg/)pʬ'O8@=QZj7L 1aŒ|?B93цS%+FXFʹ59ɕUlщH$Cd98kYKb,bjRR[:P ^[Rv\?t2K<}"55PmL.YZnu;z򫨝Ze|N` B3 EoȬm0 Ƿük6֢-`Z(ʹb7u3L7p0WA{7n52lx^~YE{˔jC;eQ`4sE.[hcgGn'8NPo֊Z{be;9&pr#kɔq$q  eZ bUJAiY?@ o &\2ʰ"mA&yH[I%Gl)ќIocu9W79k-e:/@򺌠FhQَG`۷Ƙ8?nLՒo=HS߇JGbBNϱ%5]A\mi<Ȭ}m=m@Cwjp?|EdKLHZF,> gw(zp@=Kz욳<4n:9֦/ҍ|a8;O6]+E&R.i8ՂM>l c0+EoaaDTHիXI,ɣɌ{%4ПI^$c/rH&T*=U gꭋON['MEE%wR3,SC0XAgsS 3!#3O(-~ߊc < !v,OVUAPV3"O 4tGEcJͲ\ĭ5L R'ȇвRdQT7&Dazy9X T\ؔ3גZ[žǵ*ޚ|RnTp J[;B ӠRZ Ylh::Y=|sS)R *8ƨ9ތJ\;$JzZw_[ ~nE=/YDO-A6BؗpPѷr@fSKtcOlAGTN/_;qM 7W of ۅ*owZE` yu[7 Ԥ}7mnC8FEMUB!%>uoRLvSf`\8Y *}rkdԻIFWvry8'@ Set[}3.K 1K3nĔl]F*6Q]e+YŰg[K`~eJ]|rF98Q9 /Q;GJ ^O׸.Rk̞|֔bEBU aSLNQԟh0ߴO V<(Iޥ#{`ҙV8MH7 '7&Mi$YΘ- yC{)j9 zc~!:Pusf5+tա~T+k/`l7ʟ,ؾ'h\TjVAHPÐQ'>QkC]Q~ A&"R:q/ͻ/۳6 Ω){g>sW?͉VK9 ]{f:wmLqMKRЙ?- ;huvfHU}e绣]57J?8|\ u-54f?}nLly\uZЗD,EՌh,RyK܊~0op@Z,[!IĮ#96>Nj@g Cc˷ϋel^n!B'r)C| +@4ø'9κj֙HtF0rHBz+\[$g^ltojק|lKŒzuJvi]$7?4;;?vGt(QWƏ9:CcY+r@lF0: xBge\)TnUa>soLb7\Jz-MmEǠbDR_Ƀ~`2,v~`<{zDR@zy8E,0B0?]sVU _oE@S(րdZW=JTUZ:áONSƋ$Rʝxkݮmckj ' Ļݭxay)i^O鲘ʷjZ# TQJ:9{d_4Kb0&l*O 7q | .Lhf_+ašR/bu^DnyR8#efL|5w[r`ypJqcpQa w["3{SFI&MW ⠻X_>/h"-6t8.ܘ;(k>Ur6/qC%Ǩx~&5:bkdP>c7z"<`EkI>|.[9"ꯕK5\~!2mp{ϗB]` S,!F$-˼Pս#0S.bڵ@uTX WA+ XymLSVu"^F̺fF#UwlA ({l,|=O7S:#,Wa|.҅:xKהVyr! {F3S17럙@=¦7|O ^N֭@Q)_0P$IT 3H3A W5Cl_L,;'jJe^MJJvPQm7%撂/|}y+@&e::=(?iE(YʑN=AFj }ɟ>:-a2Xx:q01DxX̘b-!ܻ SbYR6;K$J]&;7ISs*RWΫ71#hpY.BWvm44Mo#NpJ]#ko/)q*rJ^qҸ.W%D:"]foIVKU`2Ui?X]ȵ$qϤ=VBr~i!TBlSs$Fig52JU@~Urb魗pnK>flWJķ?Ǥ)h^Ծ()> z{v˝'[Dl[4G[jFTj->,E):w<޼C|ҍ`Q9wܒe !@ $g@NV:FUՔɽ+t3 @;)]2$.5LY,s& 5_5W̬@VxqsEUEBU8[i<TcZT]ؕE\p((Ne2CCe킕@ X9\q;K1Oq\E%³$n0L&|o[{F9};{Ħ!(8u9rͮ']l0IoKgoΊ=kaxtLJAچtt]^tfq}̍[w 7jWvyw mKl?&8:su]=9 JœJZIvp\ I|)bO(VfyO0dS(65VCX8n1 AbK:-ǒ񊻺 eܩmOȴx"^Y8ȠDWn=|u*TBmQqBHpS,΋f*Vfqju=`ƞa\0_ԅM#ΛjP3tjFe3@m &I V 9b{{H_E-n >d9l5FȩFK^3A6^O0KƜdݦ!Oh >82<1wR1#Uxy+/b)چm]yAP>ɜ%7InS9WFe9΍",wQ¨hSj`[<=_ ,OVy!|#a ߴN`$$DfR*q>&GBpm̡7HcMӉ0{^ ]3C Jg1h|5֕kJa"x3*%M&:r?!0E+(G&;3FP?ЀAΜKgBJkRBMM h?k2 9EUlB a1p}睺Lp:vv'`T-ϸpZ4. ԾAriۗ p:s&JFqin`=[ɦDE};S[ew09k4[T/KYa(eGjJ},_mQQbbYB_]c` x KJ }y]H T":(x-!gZ^P1>qt\cΫ{AO7E@-`R >SwpZ-3.c(}d/Sl8Dɛ)<̺KY1k{=p.{e/\-PaF<6}#_,`娌8昰9*>i?xXt؇Bh&X= cqӹd)S<|b@n|$xVczƷKȮGWSY{d I:#`u?6މ|_fctľh[?#YdCDa$ Կ/RGH$D;B0pϡ]Ԯ8W"AϛBwuMw* R`ۡˣ6_܊~Vq_oD'fuL͍P]q }C ,-mi%|UrHڱ`Zdjm2oNt~588난 9k$9ֲsՌoj^|0k0]G4d<Ȇ;RB7c;cgU] !XCwYeQTցcIr3`V֓x7,8nyzv:ۿHJe=,Rk_lU5f}Rh*U< )~q4ꡨoI7< Fr'A1ݓWYJ2JiM%56& Wģ@H71=3~u$h5")\V&_mg@[v8m{ s82-D-gK'.Ӟy,r/m <,w_7#/SP,F DŒCb>{?T<L )afջi{[ʼG F*Ds:LRAassL_VP>F9~&B E.d1 O?U@Φ]ͫ=SN$*|99h˻i1Oqm.mx^&:o먗ú;4#Yzٸ;D3NA5&fI'Qxԍ(sCűDg*A_fb:Nѽre)jx"XI+22,]w#NΤlxyP.=#L7mY uC6X|gBK|#0:~ <ew7(/,ӝ}w}[c"HJfmkLTЉgeٓYd˞A邤%_nk fa:r|+%D>ܰ:f>mz.fm"nE7̘2fOLnm!^iI.V'MBh aw&:f f,1_he̵DS+j#P]\v.w:JMJnU'h3Țэa]YXqr~3)6] 4Jܿ@о5MW8S.$vyώ1%RS3H-='XB'ӻWwĵ/#3?7nl-~ӞZDgOhۖi eo}j=UU Q*%SnU'p5vʭ)E{WUjaLQ8!_3h}(i 3G۷mv>5R͜[yZBqH2#*&: Jwz0zt#$-|%EAjĈ DOJH"h1$Ԗ)&1# xC ]V]@,~\.t\VݵawO( C͇hl_)sVuBI&Yv#A01W;]玎z_ ݜ+6L xTpyv&CZ 4g.*h]jǗs;?U-DžH1?1CMTxQQ Qac~Rw |4e3afϰqĎ$PEcqN\͡u?p "j,ƬO~Nr6œ {Ŗb$i23Z PX(ruEfŠI8u+"mz,Fx\Ȝa!UB>뢟6ޖ%k9dzE4}fNm炰~YEp+km-MAy$*\ ֯=8s?'~ @6ӊA ._~Hy})aъMsw;DGV[f 'vX_vG!a`Rńb>+'m;cCa\koC6yqezPؠEBDoJrD%=H:ZL;O tav pchaZ;-D.~=!9C{$/I6Տ ]J3l[4 i'LInݛ6a4UYzz(VW: mk*2<O f!`rѨAK0Y"V9Z{}ذ&XܿH!\R])nHY4L}@WTn9PCyV X"|ƳMDoG\0WŠOӏݻowx {.s쒮'"yĪB~ʊR~Dݪi_yb3b*ή_YG7][x7Clcb2=F!L;D#(EL9˧'zNpR%p q#, 7֕L+@XCv}rᇃX]B u$Ga$xA0^CvK#G9KMEK}(e|F. θi=nދ.f9lp-!+R/\"0 [WzbFн;mBҥY #Tmh%F >8g/#/"-m+'Lw-W_DA.2QK]4PJ+qV_/8Zȅh h%ZhG6i0 RꑬD-y)guM]ힱɔJ>>aZ,ؔo_67 *5ИrJ5Z͞iir}E%6?\]+M"lM=O¶H! 촳>d mLq\7-~E bAXhq"l>xe3A.ywG:{r_@N&b+8g.Q6USvHu%Bu8$Gpյvz/'U޲ҏuxib\]tT:r*׌C,Y](ڐUte/VYbV(^f{] JЇ|T˨Sd1\/YXsNnU8QasG"6 )h, 3OТ#n tU)8>Fk¦-O}!l/ڛf#GHMX2d :&KRzUwrooyk.ȓ AE~|jgF>eurXL6@XUmsGO_:pI 8Ԓ?QmףD#| #.;aSu<22W <ԑ5Q.hzQ^>{ ]51 )mHA#W|1x d![Tu^aToiyumG^!8깪g:qCeZ,q38V33T.z^V 0r EʬJT)zeiy|1Y)$>m!4썑up.j .[+7ًp~ߑ]Y*볓ϱGҐB_Lis0 *}H|FM3Gy ~`nKhҌ#f:8Kx*0OVe0+Gzi7^ P6IQɽW +&Is!$5?$jS{@)]Vi=tS:`C]bӢ\ _F] zQ?ۚ )ƣ}4yT'sn| /;[(՘@ȒDfhg.ś^G rQ1ưC1oJII5㷠vrr=F#~p exg.FpMEw>;GيJe{*&lV^YT.iBv?{CZ0uɛDA.A{n>nʕZх3c(QkAf|9S!Dwl1t~F S-]6W\؅!V;n-іaUQqROD5HŽ=ukzh#_c knax",5\:rl$桦15Vc_߶q eH~.Gy n ەtߦߤP7+ycI<祪?YWN */SS{7MOғ~L-8@ͶWX-Df#7}[K S69[|ݯ~x=Ll1;8ȳfd/cp2L l(F0-KR {ՑDI 4?nG牷0 Df3W57 Dr$Y`n{,ȨOԂCǁRMhW#6O$ ;?OaY@H Jۃf/bZuh6cݷU .5yANCM\ȯw`2Xf2X7(Rk0aKu F"/+˧;-tZtmr j`:LiSzFv8HSL&Y,ڢLpUe]Pk '~LdI~Ug܅4`ɛݵ#+^vޭG9{`G ,# v ~IuK9CZR@R/hQN#_iz ۫o.k٦jAts ЃH7&а Y48X0~3:m@!`n@48I_ 79aBٯ=Y08 ]8| ( b1C~}YTa +Q>~6">_tE;[?ehBm;˻7`mw"'0'vZ?'ߑ-M0q"V1!kp̩(G٫N.퓺J_D7cKc>pe;dcR1#C{%d*@a GkD9BÍd:; Zx3o#Z!~b?`XP06W)9zX%XPaX.Ga{+y_0doQA$w.wٞ ͢NQJ?VUf3o לfF`hХ{Лb<s!X|K׫A^J vBhEvҝPy;x1H҄ nV%ɔ !NavWٶW4=l"'9ÄG_ >YZU@( %"\TlvГ OrmAnT|Աۖ"v3\&7$DZ <&L;c[ޱ\7!5Fs 呐؍K> `}ٵ.~wó0Qy3X<~o ?Ǻ9Wᗦ iegtdI;?q>$Y6HN4 O,CqvG%snZCmJ E5뉵N82)(t(q t|7\y3By'zH p7zw, @;tgMA|$.K IPsA #D%Ib|\sM]2¹[jʥOUQ4$Z]YE4g&EG28_U.MzוR2GӐH׆pgF.D' [,s./5\80dPxƝh+rX6&d%{r4!o(|w6nBHď'!_(+/aNkԉ|:OCq9Fjuޏ.00t٦n-wk+o4}BP ( 4 ^Nr@j'Aӹ2_9nl3NP]EL o|bFs2zp'c!@X&^\zKilhw9I ${`us?;Bw;/n82h;%4fv h DUluD>kHcyH5Zaj3ȝjWsTloL/fTG0+:DZu6O3٦'+,MgZ0S֭nZ(DgVE$.xǢ K&c2fӑٍݗe=x*}5=-[( 0G  UUs1;As% )qdPDUOT_Un(Ɨ6L8,$FJ_O2-jpr+&Tnҁk23Wt4;_͚czxn8 &dZQR>9xwhJNf9\6n;)l`zϗ%$Y3&36DSṋoQ0L t_0f>ag?M MPb] s9̒/Hkoj3([A٦M4<طcŤT/@7;Ž8D@$F xirwyU {t@PB_~P~zh?v@2D_ɍAz"tm;tԢ!FV : YE#A҄m'y-U45/dUewA0gCD)߳lBsSN[`uO0uۮβf6Mrq"椽~2*_x;]c ۟z6 dNU7 U\9 Gb bQiM-פOR Sr N[{ӑU.m@fOSSmjFӤhE&ڭfyF5kQOC;iob6'ْ}/R9#*MT<ވˏ$.5Qȣxs. Hed*6ąn*z*"(fi #4lZޤepEΫ\tfԹ9~CRxu?? *ǕKJ.ș^ onyEucQzBO*[n[aanP{2C5v: D%C~Xn0R cgPt?b(r_IvJpk~Y;V5'E_  ^@ZCö ;_9,/Grk MiƩ!#EO>f2]pں& .~?JF˸2 kNc:w^ &QFK {Κ kfr@*pr X~C\+M+ڠX7y7@|D Ryr/I%>&l;YJz '2)D suqvԀ=&>ߜ)ԗ0{}{܁cZL&nZeMOŇnt |F_z`ڳNWۻۘOUH"-r^uTDd"HLDgu:|zCyha,xvIp>W_EW0SiMr[bF'ȶ{ɹHY[x\O 1i-6tAi(hElikU,{ܱm{βɬjQXEV;(XHvK$iMZRK_ ,!<zS2 g՗?áj8TpB!= |\rWX%m# H̺5cҮrq+D+nE_&/o.߅FoC_IPڌ)uЏ\p)lqsؤ0 ᫑鉿]=mQfK.@va_Ł{v U}Dj/bRMAqjg5:(yzCF|>EvxpO<| PoYgI ;z{M'l pkp&ֳQJUw< |Dhz"gQԭ\Zx)fV40Jyܒ۠Qc* v>{kښ.-0[9`2r3*5Ԃ7gLk. 7|Ѱ8Ut6Evx*VWſDƖ31:d߂.b&Lt)E. y5gfsp VvfY~kcyVɴ(@gYIX9A"~@'zQ?YW^5ƚai5qkd6n6ys|0qTuL>0pQx}m0vrZW :a;jhE(cX&rAVfP\'딋yu_o4 ըI>n%hv$~ERhhOtv,CeoDZ8+O\R2깦l &3B'kf4HoKy'_^L*KG&|Q: ԮfY ^Ӵۘ5s2 dۡ{5jVj٪?:+,E ]:B{%Ίx*$Kȑm&Xme"$ϕ+1_TJa[̌ITQ:PVS~.9t{wJ(>5 6Vm1v₟7dQZEzԮtd噤Tcouf,lѬviRD ~Q¬*ΦnJ]e;WNsGLxUNֶ$[9Cz"t"J%,wf[+㾲gyj0k)SU ínBˊI2FCK>WƦ4nB<;.Qi2b ? P ޶j]M(&ur;{4.ڔ-I06t&z4U}{?i0xx'i C_p2˙./Ev^3>K8轗y.r7BV`y\Mع1NK b5"N%V ^R ^wX~n{]M8|b]y2=U^㖄5|<>-(U*5]~"N# t2*[[ (,)[=˥uW 1TA1_},8h*N{"3k901k 8;kf=R 9kkfq~(]iPI3k:lHfEr/ju 'X6fE@*V,YQ͊M%חr8vZ W5l iјzw&q}FV P%BI) '=vo( Ыl[r@̊j"n|  (eC]p#΃-@$wjent{^q>hxq—bGT :H'=ܜj7-3QҸ={.-eEڧP5vf }`~jCj|CtNmcJ50`%û8<,~%IO=>s'7.c =6Θ0 aJ!d{kq4s=CvwJxܒcSjH6>AOkj_'7s wՓhcq\Ky^?hW`ECFC K@J!tV>Ujh)M%N*KUj+\2N'RpFa nzUPJJizq\;#*Ȯ6˗Gڍd)J7\Ltm ʖvuvxnoLt6-^,7Ӝon.Rg6%vi¤.ΚfmJqAWAbPCe1jyf1.Gz:Goa'%#zփ%U5`ZYRE?E.e0RXxJAHTq}orvbZzUG3@qHV#FwK0 V#0hG'ݮ'-Úӆ1A#gr^X6)P}m6ar=%kreQ|IYJiT% h*0![CkX~M{ЦE" PasG' ^|zW/KobbjbyZsfQIBkΌ!J]Jw#34c˞;0R#@\F/3&BPwZ1NCT~2@4fi=U8b6\xk- . _m!Ix%lLC?v{^>c$9h7zu @n3jKT pmz\fo dQWRZYh,kY ϐ"8/Ow 1v*i0F.#~H%zTy¨*P+vGMgjeϾ<\,K Trn6>)ZT~^o@1>.J!zuy"_P"m@MJ2b ܐi/H紜h"ioݤXP txLgoQHNӢ7M墌60[`l&hXIKcIH?$>j2<[Tț;& ЂKYZb{(]8%CK? j%W}22vHmSFk0 Zhnh4TD;O5*w-jmVEr>  5:srðnfʴ @# CKB? N) qtQeW|k|Mn j+S;O(Ip =f" MURDq[گJcDw+ ![ bt"/\w45ЬW#b>HpvgB>^3^g'PSSVk'm(⾨D}/W%m4_h^&}aQ_3/ Љuy:][aZJ8 \@\!%klEE Krh)W%:!m7P2\3&I]IQʪї i+(.{m)H퍅(GQbo_Ф]w#BՑ.2C$nmel9&R(%@/PMGk ]5'y`M Vee a4}* `1~[O07+쌐JUO NZ.tERQ&N'~VvձEfRSTg$h(kAz;r!6 bBK8:ر_NzDIJ궣"yB,.jL+֬"vᆴfCQOxκb< -ϒ{q A[ 2-_CN4JzǦ-[yezX{K]JY@:9Y -FPO5b,X)wo҄IySGY鰆8kO tH[Puk-MƹZm  0L>x+;ǮGm1~J\< Q#/7op&/9@s Òs'kpRxb,SPLk9YVDV&Yv=\/i׶!h|#fSΞq(>oޘ }6/ތ)"*SƇX9wc=$ .mTAZ"ֳ0޼%% .T 8&Nt˒PUlq{f\01+@R Vσp"noaMHOvbrZ6jۿN$ZvŬJNJwV7fv,Eɫ."- eyV4{'X$!SݞEE}!@y|x*'.a_`P\iFs!<-$8 !oyuW? rN×W9('hF4$zwH1gv"V2M uWVq׀u7p#a㤷u hu"IWVۙ3 [k'˸ix9ЪOb q6¿mr;&M  ?8 ZpnƗDӰL4!TX 8:(T·:/kQyk8CbKH 5&5'K 0av'm=(\ Dx!.G < VRa"oUa=0pr펫57T*UFe+HR O'W(W *r6p:OA59$X #{*.(%&>XۓS ,G ;{gQwfB>@Z!pf(#ix&t"/&Ϲ-i ]s(L|T+xJ8\(簁 }gsʹ+ ?L/Ƭ3ɬΣjklqHQ=QTϷ/'5Gxφ,fPZbXq!%lm~! *X-U~lA o%ұ$$j?6yy͠(Ct?S>G.W\W'J_q72[Knֽ-eʍ#hAB{dzDJ\P/8X'aٖopm{Ŋtӈt !);} B:'H[@@vA ;-Eobgfy-IO>N ]%ղ6ES\{gb^!9L'm*j3_A)gjm ~U؅8k.{It3*=hH:TgmLH As,pFmۿ;/< wqI([ފzP5 `\sYAB:V] K &w|x$u݃C朘6ԑ{GY8H&| fڅܡ^uP(՚&]ֳ?QfJ&!~g2vggBS=G2/Y3bV}5 WWj8P,Q5}O 2NSdр֏4#^a?hZ8<ZZVRXcH20iOYwL+WA:D^SYt}OliъߐhC*;+k:}Yb}m{D{pڏ«rP_*~1+[bK_כswmb`Sx=Vdo}j:8 ?˿^W(?@Wî~TKS!5{?sfy+|955Imذ<CGDo801 C vlMM[@z*{C"qzLPYӬnړ4 pz7r35==b@6;ZS*w]♘Suc|k6\٨(:-q{giJ秮G_m,'!I( bM!^B=DtKWBHcpfk,*,D kHn !4=l0f\Dc H0˅=mr͵]Ovϫzg$=^bN ɂydͶiѠc`|kGil47詄̦Ї]l'4tڶH}E4H"?KA>C_i1++k *mUC:sET}S/Vt6nGcgeL#Aiu |}Û8p^a;M,~[([_LՄԟqa#m9Tq=yzNkWA)KDS=AWfkӛy!927ɊqL߱r<27~XsZ`:6;?m.l=i%[RΟ T> 3xFZ]DS;Y(4S[Q]ښv_,1w=prBk<7;4pKlҙH]L574 @%+E,=IG `_@)ldZ7k2?ٸ:AVx}!;2gP;ca6d)0FOl:CƬC½x*^@K^8D.idxY$,E^T2 [ܰ[C cN//qVJآ*:)ͧz u+>\?"':^"5pp@&w0mZp (o)ӓW$}/Ϟyİƾ7|(y3iKRSQ+Y< &z8^f"Y: |&tc)Ü}KdeF3ϴSί( AAy ^7ǀ+e|:Y\02QGxMfեt;WK+<&ߎ`;% OBiHpY騃f >tV (6*b?DRl,~K 7!@ʊNx:WG,^K uX ]< Hƥ i(qngC3m]fVncF=A:c; Hbtd-eb@0;RYG<<1}ҭ}Lŷ?"%]Bz]J>e EG;88l;y\q+W}+Nte8!5aLu|~<\{79 ld͇xdL c_ B"jD{eH~`{^{ΖQ6rijeŽ=<Ϋꮿ07;V]~B0dOԶ꦳1cM Q?  :O'3zunOZWkD8˜k=~>j*v7/zG" &p0];QL+D:a3pM0;@Az% D) "G_TI/Fn9W{4%@ZZbj%qݰpM# t\߷e&}e@=*@gGߔc2PL}qh3HY`{Es!J٬LXsU֡Ob%?*\1x=XG.WcdW$PE7~Q\CQǡ/n:Hd%PT3bA{izHQJbbZ}6}7#xHsnժ fm >SD﹢|xʮ N1h {07ը$rEsrBӞ6j-CrR*tLXŝ]Дܷڌ=C4 L o v4#meNJfOo_0I}T TAm9P 芎IK]έ<P3ܠRcF]>m O8iv*yIi.X"F"̚j٦VZ w ̞PWzKz>|r \Zj+@FK5Xb16&w5ߧ` ؊zHyAs\z$ȈTpTeT۝THY$|"~#b&iHfw ͻw [Qʨv)2Um( D#QPڻrWm$ s#[%zdaqlPYZ14\;U0󪓯3Uda~}@r_[ ^{ה) h5/\ 7 ) "ZD?+ PCr Kz< ts=rd}{I{~ :ߌUd]pc]Գ}DJ* mHiIL"7es+ҙ!(W8L=#_VBeimQ~r*<}qVSW)<2oS}#7ķھXj bN"fO/0sj&㮏V*b.[QƊ  ݴܒp׿ }Y fnPQ0E2!vqXg3boeA#{}F}uY<'xRrdCP&6͏o45eՋmz Xݤt#cX\ &?{:S+ ZX,ۍߗ OS5pKNOH/dfUW#G%!ƛUUV3?,7hc"3gXB (:Sۯr؉lIe FІpC*T3]DG؉Eg05zID S{aqDecd`8AIԞ@fBH6yˋtG\-@xYt7 j P3Mm*udj PɶA>!GPQ~Y;n$>g4ǦB0PWչaq)i)?wBbI( ma?#ިz0A:oG)#8idr re9҉1' En73#'tU5@ujp/SAp(i)]:cfѰ.O9\$C!v/ovMߐ`./E23#A4HB6Bat0Is5c@F|Qq=T]<LgtHሷ(!YZ ;J/siMK߁G`F݊"ص;gW 3NU qQYR ٹ*1&}M* ,SjU\ȄgS:4l͞G&FQכuEja*M]'%?uO1Hk~@/y#ǧBΜC }kmQ^" H`o]=@a |.SƄ^bB˄I `l{z b ̾QӨ0ƼˬfOl`g|@m 7O%{OWokgҹV;hjt4l ?\" }ݐRA軮x(zԬ@,5{K-^"73oN *8(j+gAG VRmuYu_S&'Ee39Hw!qrT?qC\:w-ax~&;CʠBzoDjYw 2.dY??~[+]D;l T!C_O:_TvȗYؕ @Ϧ!gFd˒] 4p}×!4 G<ҊNxzEE.PO\D1k=E;p᳼E|o^jmy# ^Q*X-'=0kh)HbtqAKoԺkA}6 FȁmV݃R20CcQ%=hK\bB{&2 -? OkI&1dGbV QМž<jkV4ζ_&3-XWOw&^nW0eq8^v7\a_- k9e?vKOɋLuf;-6ߖşVI xfm`)|hX i)"N_ ںTh5-LT!r>GJmRSxtOME'24iioJ +$|Y9 >3lRt";%I OOY1 ;9+>m/~҃<,mlzz^s^g[{u& .nr#跊WNiB8npcf;@Bۨ704xy: %ŴC"պ`ߣv ٭]h1eXyQ3Ig;4;Ѱuw woPa@} AKe`G/]cU,%K~Bwފ5ʀCcyD$9wvd< L.Pek k=@榎ѾYZ{+UUb("[FUY`ߧPv\'z@En,ҒW Rͽkx-5ǟ(|>l8!&@X/S[E!@@GA!|* ,w -yr@\t|~xd<%G q6=l 0c8*TJOoNypOl tRp,Y(iM^dTNez36ݷ[蟡 #[Z,솁W[Ob's˞IK\=su]]@coEGї4U%թC8;pG$si(EzӍ@Be=!oZj*8&;Ԥ4b2| N\{$Vs JˊrT\v4u) U'8q*uj-n5U]q}>OQ+:YAusRɢ0qor;{, \ceez[CbkIZ)`=c|8xxύ4SVZJ$`}I1J2@Ld?nD(PF4` 7A!(FY10wck*BQSZ|D4ʻz{Ͼ j۫S`ꬠ[-bCؑJx$f-Jsl }dDq*+eJ* Eg`][M^qZ\Pf^L."f3 RXw:B0daodNq?rtq;: %`}P# -LX4:ڏGA|BPӨO̾`M<]U-`ЖW[o*K S`MJ%6`gniz`p>HDSJ8Yo=.תO;avkoEק4 "g3T:1vzKcu(?Nw}ۓx%0ƀ'Q ;N࡫}4P\gS)!ے} rX 1F Kp׺42p3cˡ)oL£~"7C,T85ҩ~hd2ҟw薠Ue@jp1t}EqI!uYT !E ֌7F#Ive?ݫi'HYÉ1DmxE.-+T:@,;F$@E[16&7+FA*?WX6 )2ٖz@ݨ6h s˞Dj' e_&*nJЍJW`,wQZ|ӳ$N` r$ϡ -_BfZY\ }@2B ԷLL6 n|gVl%QNA%HV6<`H8Kh=.Z`q{D%{sspBSoOjM-Y< \?F oRVrsSXiyCD~]eOk? Ug;R~Y䩏O&|w9˓g@S#6CƿHJ;q+aH*ųWeŐ&YOUC2TRwe`֓fsXgI y.3NIF{.޽k.7T} Z q۔}Bo9EUtLpr'[?_)+=g9b3U6,&Qu@È:`[fyލ_MN1|i,>a?\͝X_w6|0 WJ=5B,k8;!|*Nߦ[J®\jr@^i[:Ql#e ac2S%srS-d"w TbooV~tY:2ٌEO\D;=rr|v>ii eh$~ïE"9F4-.fHɣ֥ur^8C+ T743eY=wGOF?#iGV ԢTeV;N8 3ɅccemmVC\6/xJ)|ea;pgjӡ#ZxSXvB Y߮p]=[Y6fOPqOsB'\ ZU]oZN .8[ m\WY@ Y^EM҅jU6'h7 FĝiH0IJ tpb안m;*gD`F/ QS/ 5\noGz[F3z.Cے_*BO+}ևmlhq RHjPӐ(<o}zP~c?at/g <Gxas*U0D4+RFs5G߷ rMDvY4~pz:V5(7I. UgS@L&܁a:>S=T͑X4G3rF|n(dSNl!?QUɲȪ-u2Hyrϴ$RQlخ:sAn71]LxeJhk2闣xH_q7LPĤC;]_N<"O7q!h%Lp^g&/egDEex u:,zdpۑw ENU]ZQ,粜H4Xzc L0&+Kj9t~sٷn-XOmɊHSaᚄq\?l[q#B*&9WL4#WEA ?FSLY_:^>f 3jU{59B{73!R2~e ' FA@ {~dE,ΤذrX:(@ZjdZ؜*5Іoס#jQ5B85E Z,vB æ.֙mq`ۥLq:fE$9F]5SM5dsxgme&*i?JlC6DOI^o;ajVqr,g,0eǐ%r Cޙm# u{)eA1zt4`s,2'D+MAZ /fR^ғuo(_lD#| (`oN[%SEZ..L 'mn(]T(sMV8!j27Q-'W%?I˷R(x:D;Δ܀B5BDrEڽ Z͕}۠lFtlPn%=%qs{m)_qqH.Bl&)̴êy^&K:LިCeC>lz ښW> yl lFZL/[8" :ڧR҇P0( 9*[!^ SYTZzZ:L2>(4-IqY HFJ*>2T"}JB'rkПWjr4Ƕ\0Yt@S "p%Ƿhy ]װ,y&(Yͨy}!F$G[܎dR'`}]Ts@zކ''ݟLXzvXQM'M P4KZD' ^) U",7jKĶLg9l 7W6 u0ٳܽ,xDe#Y@gzRAY5Ir%˧諒 :$dvzcwPJ@>Ju@*?*x(IǨ_jY-Z+);ހsKeFӻu?  yд}84W!&E5Wꢣ ړ{ȗz66)RPt|bNr1d !EN:!CVCUlCgпzXYFP\>jh j3z?REZ{<g*k0V*IYoIx" /PsR]R2,e>{1ofps`kIU1%蔌/a)_/&yƙ{δ)[ىϗT^p`+0ռ?8]ҖyωCF>de!t98]d$ Sk3V vmEarNqjWz^In"qQNC}$ꣻT ݀IiwPxL1;$2q$eXL1hqn7k~+I &:e* Ldv"m6쥃ǤoJR[X=wnGk{ ;ώK"O˚,K^w]R`^aѪO*D)ݵ|'IhBiGw͖ʴQʜb_]X5?Bp;;|vGJH]aگP;zv}NZ諃nA_|rNc 3El<f^Ka\!xUGE {[}Vd FRl~"zƥym7`a>[]2䝄`:ޛ=Δ0G~0=䈄}F"嘃/[I2 Ju|M=/9 R ]P~nS(yd0ǁܠTr]mWFyQqg"+pmPsqO:"S# QZ!C^]L\gPP<GL7?L#B\;2^@G@0! lUKU3ޤ0YxubDNz7͘z%J29PK4-? F+ *wMƵ Gp@ǗCC%jV`|&', *~Pd,Z;Yat?pەqy╏J4v४Q'T皖"ܡTXįgMᔅgX,`0.uVO+:rxl΃]Z~I1IDܹ9WY-:WAPs2ٷ?jҘNF٥p $ HJWcD84}9vuB٢"B`el1S [R>0A#δh|u~UH)]3'3}dfEҘ:)dz jC0Ō2OsP:gGcHa9\_(EJfw䐑>ƪBD8Y1qc bqԗ/Ys5u£/-7X}V݂5KvI|L"s$?D e^7}βs!K.0wlI:r"uj[u xg77nP3jk5KKapn ckC "tM(YJ9׆ (%M-~%W[zQuwm? z >X+N fI*IsDɡHy/aõӞ&:|5}]QQ‡uAw*Mսol[ IxBkʽ:T~q"߱P^>pQ3RY(-˄z7Qx !NSEjcQft gmXq}\{oP(~{ol$r=hοP|'!w:l+ mj'7:gb~YgiT_' j_Re+~@]c:f>o*F- EE~2\i9=o@o\~*iNZEEzfja{du{$}y\Oem5gK;)CkQ1fmX2p"*{*0 rbuA+cF/WَDN &7Xv̰0C-avrY?);JEF1)2KD> w* i'Wл\mэ",2CݖkBQY?y&\Vi(ad1pFysu~6Th@=,8nc@voЋ{R]U Gk6^;o ťFs v퐆7Ьy' ]cb1ܸƨv SH?Zћ>dch|1K gT",Y!.X̹qJ&> k-8܂EVhX)1}@tVr"C`Ќ_,;B^ 9525=~Wޯ4^2\3D?x |mҙJw #YYbHuolega9:ʑ6IfX5[|.MB@tI 0o&u5&-ۥ&!#دAua4LC<4ZuTp1iM:eH$VQ?؎N?(1Pi,dfaEF`G'tffHv! LOϹO)CACR6$EU !8-}ӼrFJGY^=^ -ֹ##CdW |;B^T0/FBwzf BODi6U1sC0V!>_Q+Vv:|;3>=2\:B-o&珽vV4f0'&5I+_̯%Jr7"/WkJ_u+ -%z&nIv/\])@,jwªB]@aKU~xWkkqk'B̭*/!S69! ^UY;]nc5>7RS哷$qU[$M%n"Gr;hǿ1Ȭb`PXi{] s^1r&` m 'قVLl ,`eչ@xV֒ωmq4+]15 )y_}B3,R7F}i+jE;rjdڳ;T"0,!\^⥒Z=K[Ƅc-m"}U%+Z{'ǧvbA 6$+|j& y΀,2]kBI{p{t#Ś^ygbvm$-˱U j7+kj9NjY?qɣ嗦t\("J${~\jNr2d !H":PxFpίUWq\2ϛ<gR 9-0Cb[S\2y΄[f !,\Ӥ(ate 3nFe`qcl6Je sMAsL!ԤʀQs螠8iG6$Dp Ԩ;kgk:/z{WF)N6.OnM(7,dZ*UpW8v%~x. pƢ'p'DX= h|n͹ T{}$qDg1'8,P-f"%ZZ7^pcq1r޺`vj.ij|Z ET Kj@~W:M.4L>j"\#Abзld34%w$=AZS/%mL{I#RExi=tKgէw8M)k셆dFE;2LcUIt_kڀ_|gmV`Uz!CEUt2ݦgrT] 6Vxg-gYS)i+, X-,k֗ҮnJ fZJLV߂ ]\@Bգ}̅jJWVR|SwZpڌ;شvϟ+% 栚VH K>W +|J^:y:ACַX<>}j)=F134b*m?9Hƥh8ٮhxz2A\|]" 91Zλђ4sWnd\&Nڇnr Em1 ۽ c⇼HɬR͗`$ ]fpy9@m?fR6)sM̴F .I{$C61Z|P94hX|Wj O԰>6F$3UdvDl;5!A׋{,@"6? n ~=&XܖKV,W &zD5!p7ZQE,Br;;nUjAutCR]=Y}lr^ #z>hy;׈8 w-S Ec? AD"9jP Q4S{Jpcq pM 96c@%пgU+}8 0Rd(BvN X_E*p]POZsKU?vW?T'a>wZ*Gvn,릸XQVIZd }Og.`iuU=˵TL<}Q"{L|ڙWDᢼSwp.Rʾ?E1*@볠'5Gq365}-4NW]˲7A]؁$+sy<гd$:E#^k޷lXR-D! oz@ay;@xz^*b:dDwfBsŽ$zDu𮱙Z9כy\xj0 ^ݙ?U䌍> fKa\LU:jR3оR{e%=u)CD7%P_$oT arٙP{]vj=p#W A%֢ǘحaؽeޏCt\~Òk JvlDYڬ'~tż~89HHHNq%VF0Wm^} P(Iݞ.1*]x>YUgrt&âCϓ(jsV0'KaG#ndZR0z&iPzPxH=`g4|;who0ZT'%fnЛG\QcM Cmn3oӾQg;gk6G7xX=BONMQo[qRG: pX@܃>h"ȯ)p 4KQ%d:u>0u. g(:A޷FӠwUld(v"bp+YQܡODGB2l=<ǵ7+OIVxj ~.F9ЇvM;P!ЖbC&en_T+'Tya.-,W!ڧl i늝5N̺a΂e@ 8!f=Ѣ>he|E8paMܘ3^SS2yx% H߆-Q@_׾ļut{f3S>-?,L9rf> 4(O &tFõK& !\l$k@;DŽ2qpdnDK@ Xbܱj_(cOG?SMa[} ep(1jF:5ϥ=> +F#ֆݳ<9'y˔>}D7nf[ryc$I:۾;C@U;;RkyH}|.f6b.X*Gc-1lDƶ[^ z>e:tdO @ٱIv7;-{kJc˚T0#r\"ܞ>M|y6q ytb+!=9c~{3&@EdX5P6i&V==(.u'\ǟZ'&ĹARI7)pG"/) Z[_sW+p}•!  :T~gw02;V!*x).Vz0-V H$ h%pws.ӭbƐY1)ɻdN$Vczܒ2Hn' ٬t/"/d5ܪӺAPwqǘ gb8p/*E2WO:./N8Q^A&1t:$''e\πz( He9ĝYqfgpA]`׉tr`8ЎJebTYL>IO91Ȣ-yv:F#NFaڵ&URb3 8؜z46#m/|XK][p09X0L;ޞ#RQ7ʯ )H"im;Дh=@}>Pve֟t$Fl zk@+MXr Z>l}NǶ8 *xxB"6FEC f9f̿򡶎h Rlsr,<DZ*?BP ,WIW|Q-fNV9gUOm.1F1jQL_-}d`.gTJ(`P4k߿ ؾ?JoctCP+$/zw(P;/b o /Y!*c癬:MKo+ }$qqQrj7ũF䬔,@F̃/PGiuêōTz6B#={3XB$bNCBC6'(!'B,u;\_ZAixAdݪA-R rjYeN<7m!f=x?HBU68o#stZlv'OpN_M ;" &3(tz FeC9eMr#H#B!jQn2/Y4d[/&J 3WЮDzl2 X4sgŤ4j=9x"&6a],G~cBߋR*̾| Ze@}^F,>}v,t}ﯴHrRJ(^P6'LT}le߲b*ǴAqH͠`gL/4B!pEAP$s4B,j{@g&r_{fkt3kn/x,{FVt\9vtK僊D`;@QX`|W=cbُYCU,-0H@x^0 OVGAt< y9(nw=GF|3j=˂enf(<ݿ(n,,LjUftv6y6Yڲ6Xssl]D VIJAUټT@:ewE nw3__hsJ=ڃ]Ϯ/-8K6ZegwkwpvZʂm d=>2*}M}19Z1jR*-"0-fz0KSRk3ݖ= »E{Yzp  5p5rCLk,qhf* ѧNlT"i@+{df8^܂ģ2+YxOGY@X^I |ub;`:('û2^2,W"l Tndk{+bwDұĈ:at4-!qߘM 1- ,r9 $,^8&PF\q9I*PmL0`۳]VYn7ȝE"_u4/ M3|/٫{P=́-"{]K-tpMȱiD&lM$zgكr+nr:c~}{|1b=-71w㳎2E[h65{YZ݀6.qM['( #_]Zk<0lC VYlۖ&0D]}C b;4/g], LK2 /h̻1jk&F}:L ,p0a~ AO 'tƮŤHb7@Mټ0a[h8W班g-EßFwDPF*Yeʦ \6^]^]L_n|5Lg gqdB܁B02WcΑNs%@/#Ih^:?A-N"x@ӆJ@bAX3^mM<aqܰ3k0Zy3NB_@:FC└<ćK#IɌV̚b=NO#> %WnTW"#c2"F (:-u/rLi*0yff ifgGXQ(P0z6J>-ӷ@ @M^9mC_qw 2ؕiFRkh6v쿌UĔzl z̆g9%h/ 5Tjט4d>`҂t4ĖNĐOZuz6kM~!Kv;  WlC(χ{&n| h\P%".vr`  ʫD#)y/-[8×Yȧv@y]NgžgxCw=`QJ%J.H{y0#`{kʏ+ axd|Tj jVW=Za7pVLm,X (-U6 ԛ#mO2tP{d~;`{7!23nXGQѝQj' D2Юx"FaBݯWr3i~+}?%MU$BrLd:nz_{î&"xݔ>˽4"u`iݡă|"2 R(3lP+Ӈ٤b V-* :ӍM)>FU$_esJKB! N>#?|ttl[SNQ4L" :P{VGW*ܫ.伺v \M AhAxi,f3X.?#`K]VuT"9f@OY7أ@mK|rd9~rr*W>q'-m"ſE{Qjd\rJWe&//Pqn\`Bx`L}On7zf\Lpzb>5><_Q2,MCq̹MyaUfBUJ*['5۷ 0-&jhܤ{6;@0p}MCes2rukm)NqddhR-΍, gTYq8_\]ۊ=`JQAI۶vRpMξWJˑ,P}G7%GZK\71 !vVQ4JX Y u-#] J) v?l\b:1gK2>M'Cgs36"n qʩvtH#9.ܣ=x D?qFB2ZB.}"E(33tw\"JYWtp&yfcOl9m3y_e˭q%p[hcY7[ļbQ\q4'19}YZn„hO9 G#/O¤wt1V f0.J :O0S#]JM_a%#U7*ɝ4A. &[zN:02pAZ.M0Tk0Lh\S9#ǽ "`buJq+-H)uVCYSѬGC\ 2/{pB7$t%pdT:+_jͦ=l8'3*%2'g*9o8`zrtm>c㇆Ǩ̨,zXw<$.+r⌹Ie]F&:-6gJdğmJ}UUM+EӽHIPEh5QHxYnХV=%@] 坒5b֧VUg<,z[P n#0;=mC8d]2†I.D}z|u L1o=F|O6E !qnwo1p/x2esv]w鵵/'YRght])(с\sݤ66CS#ClNU0R2o,oҙEV7¡ϼә3%nUgU*;FKVRd$&u"Q?o1t2=&ڿyL&b"U;eM}}ON 6Ec8&忱LϢ6 'SW)]:jKĜ]qjpᤨ,ps IRhJx(Np'GO0y`O X,3DV~M0-5UƗzi!hjh?*6? X]F;Lŷ6y;dD 3kRQ+R[|f|1Ͳ^r~8ʨi(o1;X|t,\sƪ' Z>V_ [hnDfh!P$xνD5mD0 ֢!|=3Wc6\Y0[B}zNa'uO !J)[" 趑= XǴiOZ]VcưF`q(W]lir; Ӎ]|`LX.{Yg @@v 5<܅, kUbȑ卫 5&51KYGFd(=cW4\f4:P gII5&FSĀ qĥ-ze_@t @P/h[\H8:yGUeA/!yv4Qs NuZMaE^EǖpuaNn-[8Z*KF];IW8KW &_ZXɠo'`Q'RC99 > svj+ȼt}wQ@w%8l%#{*|;^AѤ ):08;H"8}wNnV:E⌆3%ikk[^qa̙fʇZMmSחx<2 437{`/EsKLz 0S)sU\[kM1"mÖr I+4&lSW_k߶["z5=)kU%k0jyܿe-(@+Tְ˴FGEDmI5$MwܲBt\Ufwu#p,Tz|#=KD@/>)&_ P9$ Gp\/)_ɹj3}O8H։Kf h:3O%U>C{&_*2R 'aD^ P ^1U /rbBJFǫa1AM`c8>}.zG?@B0nv$s$~*ͮǣ>,Ѫ}HŁvQD O$Q4jf XSd/8gEX4.PYZS8#vVW_ :U4/ ajj91'΁h=[yٌq MD҇h!^oe><h0oEi(8-m$m@!՜P#?4ICJ- 0Dl ""B;sz%A 8H❪ Al&isVFtLL<[vmo֥op!iD'J>XyM \lN&٘qn!8cWaqM+K8p4&c,lKd7_(Y۽g5 u/1:$fhňNRu.+Z0?vyE 5b Rsf: j6ZhYQJTOtO3JAؗԑ(m2Jgm ?EPx )JRjp>{)<[0:8л(oFh$bC܇38T<2kGe, 'I^كr\AoUkad:a̷+c#0b1_,֎ƛM'1,5[ @.5LC/;9[ "!$C_72c5Kgb_r )T$r\`'$$zĬq9G9y+,S}'rO^j~cRI[5<7zn5J{j =,6pJ$deHp'þgRϑIҵm%uDчD$.7myfɽvxF ic+v4xDʯx\i<[[ĹMYw%9&AUL];y!MCLn*]f6&O䗣F*|IUdEٍ6I t4Hm zDwώX= h,M[M PjXb=:u c"R;=XDHK,t/Ծ;2&"]J$>Z(CȝAEE ƺ0C`e?-ghP^g(c=ªb#Ĕ9*}L2}6u'neEg 7Rb7c3ýF|ǹJ7SVdE*.Sy8l@v7 )z ke*Ⱆط g|{I60B6=Qp2/2CUV+ӚS4)W&-xM7t$הӫGG ģ:>|֔#e9]aRi ^%BSq *I`{1uRmk'0;![g2O ¤ ʊ~řM`1.Z]5%jkB TV!o C’DJ7lIs8P;$V.zmC8;+?e0P"^'xq-?ZhXwuIɣp*_A- ]{™owvLsK"W8#0̷Yd~ Ie8^OPm5)}R4eFo.jj:C}$o#]i yNX}c d?r\"dn+֋h90or3uвSr;Ұ1n(+ ْtڽ$4DžLu~4ӏ V+/o|R.rǏ?fy >!Hr q̦BeBҞ|řFBx5l֨/HW̮uið#`$:QhI-1%p6撻!r5L?`u l [$4dGזEX>`,kI ܹ]SܹQ5ǍߑUkݕ {gCDMUg'Bf-lx3 X12w._PQ{|*n\=FAgg''a2ȧ\mrngūW`;Aݘ<'¤e,͛WBLJlv7nc~K%gQ 7-#A7.V'SnGV@ÍKGb V?,"uLzP+YD^Bv9zhLjTTK|gD`瑟"9ЦZC9Qv~pdBtP4N-. NunEWZ #,#iŠ@,O$D-ŵ}߽H'<4_Bh0 I> *V;bzs k ]嗳/ E0UlЁ6$ fD̤[Mhz;`ՁGE*CdS'8"L0P~B.tt'Gѥ#sâPZa/-ʃpʼ d* be2A!ykv۲1Ϣ艳Ve-cJnP% ʹ$vG&u G ;ŻX`C/=O-~QrE X˫!kJS8Ȯ"+=d 5鮀G"{\z{֜#=} }"<s'KeqSZtNH vOG,J)iRFJ|u!Q*|U1(R7H;./%lo,O< R2塜q_MoC`G3UzgkƊzV`C$FБJcH;Pt:Բ89Ìzjha F %-2SD?zIH^J C\*qV]iAm-3Q0ir,Sa (zHsN%‚SC( Hf@іBz{{mokv`|}9=K(Y4?GJ݊1wX_v.=s'5UV{3(k tP(<}.w눩x '"%V<*&[h:/ DzȗѻqjYr?d6zɛE VOIvJ/B( >S_էXFY1[a92`GZkWBYsOqbA+:dE5^N ]YTPAw ʹ<B{"7=}>{W(kn"bv6$R]VL>wAD/rwOv,j&2(LJ nl9]ZgqY~by}IҪ[0>KQ ?'BI46k|P  ^.{u'({9xt.⃡7X 1N7=,1a#%>M2>fP5+d2&&i\޷7I TkA ;{#` -[FX]0ϷuXI*ٱx)˓7@ʼn ؄\2jV+]!+g@H#92m m.2FH/Y^ݛ@Β|ju}Dz̬ 7Sr|P̛a{g8aYFRw 5* V_xI# GMM#V!+Aw0*rT[/*[z%H5Nf-BBfN+\r97SQ{Y>P%|Plj5`J͂ZX8xVh`.ʯ|?879oܝmlJA+;sy }.nhҞd@EuTXi'F( nt̀aU `U|~ 3HK] h"ib߀IS-'=cuI(|ƘXMH#Yr$sw!95/|E;P)kO(/M gJ /]۾75Z9<E&m:W#a;͸+IŪu>pKHMnPnZ-, vgݐ'K^S:šG C"٨RbMu[">,Դ=NH4z<ՋIh"۹ۏ!S/IHVN%('4!Sf1l9QKsP22 ڬ[AWD:a$DXe3M1 X\sbىGQN:=gڢ&gZ&3??Ģ%垑i&{TM♵؀/ e|tlxD.i[ܥ)ȑ p|cFPKga so=t!ƤagU5}])*)⮟޳&tV/{7nj^fk[jU hV>zWW(8P^*\jNL˜+ĮDoi2Ij榻,Lzrm44gX%wTqL  :x–:{B /`4lXd oPXS1?{DxeHyxEǫcQG"/V羪WT.:d2tQ>N"L2Ok Z?2L;v#T`[bβ˃V:m6_fZ0֣^(?5F!Rw` 57G9k(9ûS[b!~:5 A02MӖ3ݷWYŮ?8EwN//taI쎫6$b2}]Pcʶ'ףe^۳p#Do5z$n93Xr/UJ#2@ߺb+E膲q q}1Jo3V cu+ms~)B-rh8g'&eo&ݳ;ar$8UA 40-$ ]#NG!a t(Mdϐ!EYvSRt):eJ{$%h<(IrLa=kK髝PD %bNɓ0HM5<KinMy"% x 7C% ՝_~|ixGN֖݌!;!8 a&+x7ȹь!FQJs-)뎘Mwe"doiK^bZ'R_/ &&OR{V3gD'xL KMf-'!jw$a@ ٿu?=Օy{CVAzw5qMq ?=C,S?l57a #Pe`8d.#ʱXc8Ș5I W#.pgr+_>]yux9$j]JC ֊cPLKX0dˤDGHtD#*5xmfj<+ :1cNH =ql%VN{\Rvo UW,_v6Lk`cqt8곱RH*vU*mz D}iX3etnV+?F X}eb\E:ua(f3l>hEgw,ޭ>׏35M  QX˺y"IzfT9%g޲N*\8?=ՉTI;:Clg?4\ZC7Oɱr2۽"{ru8/f[)2%Dx}O 6}ag߁ 7|ܞ g!]$]$Ǒ#ukdM 2ǙF Rq1S-+.FNx\3tx|oZs=8Ѐ 7GyQjHKF;m;SCٻ:JmRDŽ9rV.[e He]RDX2&ٰ͍Zb_8~;6dxFY.BLmh滊vͼ.حD36KZh!:% >1Q+uN>ڈcJ0ʕa눣lѼᇮMn : ?ʪڙn_ʼ`ӹj=vIdTQZLr!$YF% m>,sFa ^p##ǡemG51 sK|Ez>K@e*kp04kBy]g.CzžJDEC-9H7^i{̚;2Zlo\68bi5pӑ_ BGy,%,G`o@sI#TfZOüH~FzW=;۠eЪvH(zZA<]Ә1ܬZA)[GuE1Ced]{̭\~<\DqXؼ9J†ƵY`:)W Jdց#rĴ'°eesܶ* 8T'U|vg;zFhǞnː4qH>U]KvE睝 :3XɀČھklmX@»:s6)+6Zb]RHm},~vހw ^/2)tWU91ȴu ෯GWێtK8 P)ዯmGqW3SC*k7zm^o8]<#.4~L,ȼCac3؀abr([N?y?ҮԄ%wjقtŠEhNN)QX^Zl%2PNBC.ٯn/P @ Tl _ S_ S3Dmԟ&P,u}9B/0bơ|8IBI{Y׀aYV 3 AJ)B+\ wܑ4_Ș?͠-T=i=H؝b~N9s,vO30@T}~[e_gJj91kwV$͑SƮLm56$=M"iapu"47%r[OJU;"w)9kr?rT1j/O8K\eHo85E }PI$@R櫆hV$GzqʲjIC5~7y'czznCam"Gysw]@-󐃗Z:Eܡa v'"&Hoߠq)µzZz6<".Qٙc.ţ̑u܁ NL&pPE9a߃sglU:Phlt;K|͒h{ޓL3͟aAFl{>$zP|61_hZj>v. LgCWt*`^sTYꂷVkrWEQ SZ>r<#hyҝT TXAX dLãlkY?E]6 elOҤ'6tI/_3,g>k -Q!m& f/* Hnt0!3` A $jq[&]"%@Ҥl{p68K/;:IFFpjd|c!K;<8?B]:_{O$,6_+X#1R O8N},L\}auԼoly '\FoB 8?Gd$ѐ01K|+euf(Uyݯ| j d#h'd0G6 &>z1Ǻ(/~飉#81xVS SD9`iV^OM.R{ʥOQsv1FjE?WbVCi`rg4Ӏ@)EK(Rrr? s{*bj[|a:.)QA;^֜1ۉs_ hA6|I>}jD3D)VGN-50eaL|`Jh5:"4\38ClsKӹni#8aoH~P K!dLQ!2j %:x{ bźo&@tAL*[=EKeg:6V ;dѳ]!鈗U)qyУmIE"/\gNcV}m$@ H |/뒽]#[ ~%o mxTU kM^Dc~#)SXxx?Fw95+栱PE 2@.vBqvJxcBF&Zes], ޻w٤a!Fzm'Zsyq.a.ѫN^NzGͪeRV)!~S!|t 0^ 59$f,|\k#[JX~!j}fUx {%kWtbeh|zP +8E[*3މ?t,[fwAMipmQ&Я'D'HW< jeKn+3d 8W2R[UVGJ""Dʻ-n<-R;Ѻ+_Vkb,K[\ޤc~Ta]x:h>8:jwS+Ѕ9QwbOhx)Wy"o?$% 4O),\KTGڨ1$j-cBU]?, &@vVɧdpPl89YBp{K:%ݚ[䆑mz ]bP _QJLC>8)@9_>KR&k\sVI#`C z`62wZ'BѺ)/wMEFoROk Hvh6 cU;'^ 4$i 71 w?B';P|Q?h=؈Mt#|CUkLx= (mFu ?9/ơLuRW l7'ܹ:y8X mFS$TqVB+oIei7FvS[궠M~0ik}^> v3 -kn.t C7sb3/6ӝ@?|蚮Iгd'iDcu7vЂg q|'cv[.,mjlA__% 6Jtpt`ӴuzDk{'H lNGЫ@<ګ+t+;$A<~|Lch45y͢z!8uȌ΢-=xt]f j%dkF=f}V]4I8!ܕg[Rbu70Y.1 /bt/L%C"ɊT@&h])z67rw*ߨ~Dq":cqUD: CX9?LfT %Èl:wÞG,_3)]Ym6jۀ\5 j_jUPp Şd sn:lڥ<Ľ>2>8ãN~'Jǽ_7[d< ss 5BCf)v<&({#fWT)%>X!w2yPDH.xf=gs'U3|#i\pi-rx}FW"^+{".G07(;w˅v'ZgGo JH 1n\ ? 8YQe[e9D(i)+ez͔AǠKtDZ`.EHv7wЪ{aJ_`hr{0?]ˌ\J!J]{QڍQpAU $hz0,pmq!]M"hez#:1Y A=!&TNR^ƝEEk/q".d 8﮷tDd§ѪpZQJWE<2dgfLdXc9N?D]! 陎0'S W=&TnbFi H[Jm}r3(RJ]G81/ AØ˙.^$s ֏]@yMp,ծ>8[`KϬO)^'+f&1֒\|rod]jښ B0G:v *<,.v;pP_*K3na+лKYKEvVf;}=$%9wu(Ƨ$]Mfu;F>zEاd:gp4 zD3XŻ(Nkh,g`nmw'H\GRQ wKb lHh>iZ%L6] uB8ȋ(m8+idnzSڏFӢZ9n/]VHQwpo{UPu (>sx~ض/k-f69hP^+Z{vTO\[Z]zLx ( _P—AqLpz#/SJ&u(y%a1s-BdŒ9Vj]-[F]%|d&9umBVM\epj؂&}kfW,ioSTI0 ȪrD/gmO|(SXw{qޒ4:EЋ-]v劯'el˶=w_+܏6zϘ(Axzߣ{uKLQ@iXQY:Xϲ"T222%~7J87 A.<Y>EwivYǣ/ ]lCgPבzv%%0{tŲ4hE:OGS U_#v ~ߡó `>4Bo]x `ʻ|~"I{:Q_rujjIDx Z>k5qfq"ŃŞ0WˮKUQ7w*u2yM65J ަ*3Fw2p'*@T'L/xzN@_kخ*z_1ڰoS2x*=$TF~Kty9coIW|pu.!g1ix̟:p4ysߔ,h'̶ ] huⓘdլw:|?/7|Ǫr3 "eOlatBA:'!=4w@;bn( %"BI||MI}e YlhZp8I\@y$rॳN!hC3tIeNI8)FH3YS4-,{_\0oQ^ Tf,Cg& a]|Vl$.<]>I1'EL1Jr3:8gH%/W  4+F?di"xHK1.Gi?'N28M4c&l(љљ}fZ}~#pA㬝C+ @8KQmb*R/Q3btEc2D@~cr/fΞi[2%rp@cY![Z#.@-LY^G 3@Y`h뉯ŁH1Ƀ竗b%z4HaH雗,@E(6iVl)ÁB/,8_ 槌ur J]HZI2'HpU7T` Ŀ̛OKŀrN' 8I_)ۋ*I9q0R J' O -:zVULiח2pS'f=Yrn]z'Ǎ=TSjӅLR>fpUC_=F3k gοYh`A o%!tBn&.KDZq_m kEg2|.9Vњ]F4sw *^sxJ )GQKm7Ij+)tKET]6]WZN6`X}Z&[#!gc(Zu w); l 751\"x 0&:N҇!u9c{t$[h,?fޱ$'% Qw#eWHAT^;jQ)FVo\b,Vl?4Vڥ#0p=)^s> ԐK.u;FGBnx;$e<̛*E΄Tw5LTDY;Ob&k̦+q^:+{]G2}kDb;"%rdqƶ<+ai3WA_%dMa8njPp L2T3嚆wIs>GSjf0܀>0h\3?CYНn R 7X3a\5DA4t^dKr<0 w3!U$kTquES"˜D%5zѢKU}AWϗeWIzEow",6Nl,1˼{IISYnvN8t=MW-^ S.&!'DNݜtk%l/eȱ'~HqQ<a/C@C"e AD|!.e iآ 7raN\ |TǬwHwq>}6 cYL'imnj X> /E28G|Ʃ t[;h]&d\Mv#4FiXn*W[KBg[j9=$1#HUvtiw 5="oţ*X,ӻI[I۶xJEMVD K*[EMB<]W#EAh+{on!S:Zd׳:@dT T#@#&?4݉$='|A|2莧"tq )dt,u>-$3i6sfG"v`P{4XO 8$c:εvŨf(k~ Nq'2D>.yr󹑞6PI}k;2F}tqT5Y֬*SKDGP vnz!-|GDm@=\P)9 B01_M13Q/'c6ǵVI<4C 'RY3eI'=O7D[ҏ-K(Prc!p~@"jk/#3{u OӤ.FnZrkS )h+;e%Tl.X}C%_gTY1ݓ(%a4,W<Ŋ/'rw׶'2PDu3V@z`Kl9s K qRI.8ЏA˄}S8w]6I+;?iuw/Ǘ3SkQd LM] cgQ :|.kx%PIA5C rp>^M]xE(ڻ]/vȹgB"|7mxzl0h<$G /NW.'UA9|x"bؕ%q&w5DLAfV'qc175gD7ĚR9js( Nd GoboR+b-=?ZM(?αmד^!d-®j#y~͈7:)n_lJ([ne65TN *WrNp䌸u}P(6L8e2zu4,2=-Gl)AvF "+| 02doVK {+TDog~'q\-1·&3v|Cxq64„N3RXMV W1Ұ1= .ؙ!UEHøޒ͟d 38IKY$MW܁k>ps Zi&ɉDi|&AԖL\ɈV-Wm|L0 cQ+ Iy:}2v xA3F5~ x>J*X6 kGӚ1OjrO{;|| x&1C h. ٟvYL70O`ȝ_-Vg^'J[EX ǤjuH|i7}23SUeq-;VY).rm!:s>k/:UQ^dDnNtv3<Db\&B FT{XJ)"S;SI uCyCoP]\+U(]T"!̥xi gCwLJvI0xz$=A}գvzOUG `1W0x֖Xj_>HX e8lI o_vw SZ#ԋK6ƛAr@&g'lYT*$¦s9. < "RrA ˋU/Ւ |)n ZOs / f5j#cdb\ZSJCma_m^E3vl@pna++̪ė~Nr4hamzGÚ샙ZH6k~*,'D0z1i?`ҦUo';Ց)Q08wRB3c+[k؀JncFŴ;RX$wfWKx,o;J7р&\#&}o4͖t (pB'*Q>h$ڤ;@/}}Gr9LJ%5}*Gm=m -`ò?Tب s*rzKǯNggtMbzA~(hX3g;iwAw@-sˀ)bS=-lUU`NJcw?OMy=Wx0^39Tc#zh aS YUl< z@a2EcUBXA=5Ro½ ~~Ní,c%,JAE W#X gS(ų fb=9m"ھP@ ސGJь&TJ_J~j;U\x,zn۬U>HNۂݡ>owš[@FdF&M4'|`m1E Ū,Cz:!Fcfza%@VVJ>,rչoxCaRk#? ]-0m.;iC6-C G([dD ƈHdbSkdD>/F_jqAj~Z@ǥ" - T_״P27&1@I?4CvГ ~&)5:]b `}#ӡU}uE}޳"mXN1lYqĻBR:FKfzҏt"=ގ&q3! ̟J !;2p||Jն(sfM KVKV}Ahl{D&:-%Q/ )~_,ڌGuFDZbpl9 xEnYv -'_87Rla,ZwLA/I j]|4Gѫ>vw6"cE_1 y͙({} q}/ ]? 胲p)qd;0J2ƭd-N.Ji@Hba`vix2A,wXЌ<C2-# ]ٰL=My*£TqGYRΟ>!zpÓW;ꮡs7MȗXQȵ˽SC! 8d_2u?4%+T ^# X%y2ܨ9;5k=߹1>A]k{QkMXB2IRxᘔ،7 H6%.`oJZ΁ku12SA6ޭ7YC&\C9Y}HA'E"T iϜ4-"Fym#%Z;;KUC)ݏ-4=fO'-K''8a."(W%! C'ȵIH=lv=>rsvP&$O*'t]icN!.60TB MDw+&̔kUT s.޺ k/ :x^T2GAw+Jf ̜?[zPZHgw۳Jͳ-q;[Á&p\yZAmgsċM[ӝwJo}Ǩ|5U ,HFA܇wE+\?Mt*&g8NM P#)pwN$ZU+E BIM.䁟T+ЧSRym{1"I9GU{& K[/e B3 $N}lgVD:Ki#>n|̈́U:T'$fY1ډdwsigAc3ٲ||~N'J9 Dʺ¢3(iSBin F~Vgpk4$nIXz_lN`XklW90ߵWG2&fZ6%7RD ڭLC w:-Z،=fd|Yg#qE'le!m8N" O2=- ?UδTB%r2z:q5:tzg4aǔ}'];!dl(x.cI?ЂcTfxp&uG7lgkk@{+e9뀭6 m`Rq um  ;W=4hݫTjW1k\mV;!rġ8PӍ4O$4ںDZjV I X囃XbO']e瓤 ,H%ܗ`| `n d_[YpmDwF訚'ޢZS?W2J?1noT{KR95 nyڣERzeZÌ\`3JG/7y[2Imil1X&TŽ#+ y;J'H3Jy ԺGN Vh3{sX|am$԰򲲜[|CW7 ✝KNީgY I_ZJwd'KfU:uw4{\[6bR+\+ccZ"Z3**!˃Б45m7:r~}14li caU__ o1".+NjpIEҶ?3ڃo'h+g7[pJIe峏~HiTUmaѦqC"O5Vv_>&c;oKBjrN%̙՘Fߨql I1b\.M mN{M#!j҇XH,zp$:wvQ0Zx8>H<@zRx;a٤HvJQkޅ+@:]s}홿[ڗF'~/O0.7AЈ^ӢPJdΛxwn/9æ 4+q |͐WXX3. N4L(+j7XEG>G=Mks1$ѪY, H3ْܟ`Bh7>q^wíwP>0}!pQzxQ*H~N˱U* G$lo]v۲\;#~N^fY#r>89Ýר*QW<rϋkE9 |`^) 뤱Q*i:+XcmC*l 1ȣn^ҍPuN%K7Msw띯 RI:L|@'m:6$G)a *˲{G4/\ښPvJ_ٖ4gB`1mJJ BSTk'OKGZsylwS.;M[;OIXkѼT i%Tpd&HڟģK}fy`k8Ig"{mB4T0Q:&4ߠE)HlkOfܹV UX21<pLDk *Q?4؊&z? ŀ=\kF΄=>O(wM.QP-,,)oReԅ O@nIr;]9M!5{&Ťᐕ` Qр[ Gf\A-- ;6QËV{C'@Űϓ^P0$R 먎 &;!hLeEr; 琠\ʇ\k~D0x%ȖD3L{Ss p@@wrQ-o/>* *COF6 F{qa{30([L#ȵ\ǭpkj|z*Jk,3Xeo ("8b=%Р%"¸.@[U}Z ,"V2V?甍, ̝TQIVM>f[Q*ڧQ(ihygO*&V ÎUTxs?':kW{OWwJXr..RF27QhMN,8Sm ̜cIMbVݠkfqGSݺԁ*jŅL1ZɎ 3]SqZC0ZRa]:+'V#iG~Ł'EÃ5Ǻ:Y?bދof;߱P`xkF{T Ⓙ}rxzId1]7gR;>\+M1#mt#w/ c U2_Ĭ7A#^4bZ2Y֯Oe㕊 6&~:tޛG9Śc-$ [inf*/|sXPQ*B@#[[޻aQr1 rl:E/n H+/5aJ,#~,. ~Hr~ǝ2B ՚n޳WNU!7\-X+2}3iw-}hN~AM "OpZPǙ~Yyf2T:]%V!*Td.#]OJD^8bYdcn uHn{t0ȢG'!A^ZXRC0c.&͝m-B( 0׃. P7wLL ݃mUJ1E(v44gDңXof9亻q[we;raٙk~%xItLvc99C6 aqbdy]AF֯7}5{Sh04Sڳ)ԐȶP;a>ݛ^1E!ܘ dC+>rjD}al% F_6-203 |q3XROc)Đ @fI}`;7/ PιN&j5U1&椱P'=@=sWjIRQ{.KԳvCƑ%Vz;pfr@T+_I2 v}Pε$NL9?6^|3/"3 !n3S36hsLS۵(jÌ[]`%X W ]%]JSL[ݱ O< XH=UQUC&l,gvbQ#'q72eZTޏ3'q\4] sܢUgAH[-\g#]-Fŝl--E\$ 0ޮs>%߰oXUz!xdl/яKf,궾+#C̈́~J \0۟[a. ,HU#S3Ky+JG[Vz O׽ʄb=- x 0$,;`I#'Zˈi[SGgGH(z_c<>Y7qi-Oxk=QOWZfDq2Y3c "0?tV (JG@zB ՚COIaf9pR]ЇmF% 3Nܽ>V$2?Uf)`")B .6)BwmVtλSTn)]fծNBЊv&HAu %Tr[ղ!z;{e}Au9B bPw1ȉE3+&{aS)hgԞ,3Ue[ ,+)#hAVi)WJg1Wa:={Dd@dBs^Wh2%HAzI[ލ`!..dЫɈŠfMnYLJ?`]UW W4 IZQ&9S` ϗ!D*L9+7C8!nHޟx?P}m[-7 }bf,qmt]n<0OT<e/QXS|Hr77^n6!MK~@ߪ=GvڻR+papmF#. ޢ0hk"< g:7RUT?v4萹!B`\{!uJRjwV:W*7@*ks \-@0H|cD)k#P.pLy~T 9.,YaL*{E с-M*HF0fvzۢ'sws1KB; r2OA9n}g3a\ASR/'~K< ;JPzaE%CB قj xq"NajZvSY3jc;Lαxvf%H+b1 cHʀHYe 6yg({M~,y:+XN {ԉk@CUR@xq%[ @ύD;\Juu &x c}e3MuBTY;NM3ro+ӗ[Vν++"ɢq?!aM?'' t,hϺ{|Fe,$n5J5|&ޣEo';8K-ОHBaP7>cxwlTZ -#=vc-ni›մ\[RvכP,z+Usgݿ@X=l)E],ʉh!,"7 7{)G[]rּ3x V:f"iZӬDYg1FԌP|I9_sXMϩeQ ><| 25 HTzIc&bؑƆ-y{Tw%aMO58O9q]sxN#UO!((?@Q?WjkQC 7WO"|8ð<ج$:f[VEE `sFnce.4=R%I.j' b@Uq s#BΎ#dxZY.\񶣦Yt8 -<^'vbO{}e(qN";Y&DIw0[,ѻ6E !"{ԕfA,a&SARp^ߙD_8!JxڔJ]䫆0ۇV?ˍU ̭1)<K$^Eoic;܎zI$;~r*~!?l=f0˲jnsaDw9Y) 6AQgngwo);V9ٰ4^^p7|CqDٿJ;DŇΒr2ȆgnnKHܦ&B JWY,`]5" (Dإ}qa7/51#/zQ A+ rW8Ѥq_~F@n4^S-3Ly.Qu`Z40(m͊ho!A,}R~C)7Ps~`74)\J+>.\{Ҙ2cM2CPe-u r/XCyװc!,1 4"50C3dƝ f {SUEJ8_8S)*/qztd *hWC k55܌[â3 > 0ų4NwZq{0>gρ|]T4oKI&? l]XTڶ.Gv>? gpN y-g?X;cs&f ּ+p ۦUZ%5VRZ]5jLXǵck]G;^g5"6@'4\@rq긋wKKq[{5Ĝs<(kEHE  T"L#7 +s+?1zT[pXIJe,3|zz,8@uR<o̵[g2w6OBliOQ۔t,?>ծ$6YyjHjEkAgJō\RgR=H.r3?(F{gƉSPa;ÙLӅQG4e<Otb0h*rcSGt_%nHg_kf$I7u SGiz~vd:n|#*7gKqq< BNP.4s;,ib,K2F }kfЬpui]Lu] )e.`06eDl8kjr= IaPr/*k89l^oo ٥`-Y>'Q򄞓z-5? $P,qz9tA:rsE;gbꝃéAUse5AE>ZY8.<֑R.uNre.\t>Kɶf2 [0%ٹ/wy2TR_!*9|*AE.ZNa4$U7`JFej0? -Qoh~ݍ,|1?FVBveGƍi N u|ŭ sS4p9ԕ5o&V&R*D GImsV:GuI?rT&dZoTjY]6_]#7z"gvm80 :FZWҧgꐸannƖTͷR㎋_d|0m?X+b̛ $fM1U:pg#qUTAĦ&~ Pͼs@>#Izw3x+8Lq})N<$^291wYɵ@Lf /~~`]qpZ-rvI0!nW>.5 ⵺Ŕ@QxWe,xzC2!&37w̆.GA!ZeFqNjPE%yR 5N"3'wubl ~$Md\:&׃~8Hu DO^67cuKX͢{رǎV|/)2W8K u]'flYS /K`䛈*u]_l5Dm2)VEoqK']S]nEvYl(6.D\>JD(ׁF\'z01Y񀿖:\^q'M;kAn۱Zz(o$8Z>`6S0`X(/vK'DO88/Z#ok2/5c) 1B8t/{:&P%lEE舆z+:Uhq5z 6 t،qY^}B%H+т_ >rK&zV(yr =ź^[2I<'g* duYOnn G`?tm>d_M5" Q`3YDڤFYS18ˋSt9SS5s_M"{ Mgz@,*2]57Uڇn}w,.]\N|ՐmYz/k!f:8,:֍mPƵVC ~#Sp&(RUcP԰J4>bǒ:cY]޸] }Q@k<55tFU`9tStH~7'{9HƸg߽^$T&?w6Mw/G/ jY7p3 !az+-t:`dګUzHA)`NHA>Y&r8Tv{bnbcyv1Q w=6'3ƍmտ.bc"2p_ " Tz|z؏zX?D(#ҙ&͡KukgW("oM,Ddk.=4Tۢ| g}c%"PZ@vڍm9+4ǴQ;b$Qw ):ixE-۹'X'ҀC0$qIt3Y(Dm̗PIRJ/DQA[<Q!{K W4yy[@-ꛌ5F!:+2Ǜ7*,m^ ,ڞ)"ao:8_5 dR`GκГOwC [1"f>Oc/ps 6L g8JX>/ %V;(RLڵ_k+vbb_t>uuV]T`ZY ib7ɴ\(ҙ)VᑴLe-xFcmlW{Jڠ @VmL_ :#Ed)Ƣټ0ml<;-cܐUU]\eFW ] V&.1Vñ3˸W*`m fƁ]bJ0)a*?D`&I/Uifm0uSP(pv~L 卋8ù6eΈ)PY175Z)kObF yL÷(W;;15>$c8$xDvkH׉k*5u"5Y7@_ E*f=኎8t$-/nlĈ Yu>Yq"VR1Ɉ+mvڴhn:x}Y1ǖ'9rWˆ7dm ;ZE2&P-;NV0bOuʬkHɒ[I-ug+pl72-VG, O#ƍؐD0B>/nsC^yցԶF/8"L E ` N'0eNƲ&D~d( $ ^2l$pO-*|^t2Cڨ~ MYcp"`q\;Sᣭo@Uz("&ݬ'ߟ+ڳK:|&ڿ{$2@9*2?l8o_Q7 D%vfљ9+%6"ؑ^[_NE-ǦB#-?4AYkpw~X4 ",!$:!Spx^nR(kM>+B"0{V5=gGSZ^ޱJQ:>XCTѵOp}OG;(w#͐[w&<31P'4fi$c8\18!CS=E6;{ =FI o{N˜S9^OIM塝_&$qDԑ[>[Q)QsddQ.2( 4~@7鞿o;MwSќɷcWyTʡ~gAS>.qfGR 9%38GGf2D+9qaȾQxmx3{来Cuef -Uca>j(7ɰǁ2AA])]Y֙ gNNB^T8{b;ֶ zJxc{akįUp =G*.99}+4%LLji?x6S Oj@cgGW7>?X1 Z0 75va_&iZ1%wd{oaA Mώ~fՑ,rDt!G%ʂӔn+ƍ{.-b>6uS~UUbjulp ;ë3Q.VMM)˺ZPu˘<[`{>|4=lsugӂȢq}~};;k߀?5ʈQ.K?Nx+Cn/mj5DɸuvD`02Ei:uZa%E'EX)vQuɆر^RCS}t-4<-*@/FS!C/wLB_)EB;4G^|=xGgyFiHo1uRpozCq?X_3jy-f((|Pb?M_̵u]lWJ2U\٥7zP:Pia{uUb(Tgˏ3@~Ӣϵ%S_d&EiTzMdzA!+}]Gɂ]Y4iW,zp>w /{^%^ϘտS!Qf83Zr+0 ۸:\k{zyO@=Qw~Pau[\&- FQ"["= t\a}rZw)DN)zbЮCZU qBn~]OsV1|W*殆yTx`co|ǧ3 \V@LDG 0Y4ۖ*48: {(!fh+ B=3c.Yֱ¼`1b<ImpegmD~s~ |7nhr+?N)oY)R[_&\^:>9Ċ>SdǷ۔hD2|m] t*2c ܿ.8A<V bk_ r(eO]}Lѿg GKQ TdE@E)\_Uq0-kY,V 90%t6-,8{\Z.`2 ei-(CªӜ‡4rz*EknAsHM| z`n5Vd0[f8KȌi h շU/uz{'{GTV%&A\JnI&,խ-zeC`!>Wh皔}[z׺λl^kIz8*(quR7{*(H [ʜ5p>d+CՈPйOȦDT-6pŊMs /r:zuU5V)\ikJtsGę<,0@;y9U DPU Kǖ_$}]R!_q[1aj ~Ruzd̤u/ݜ{SȺI+yg3*]jkvDky%c}d[QE'XGĝFvUs&,Ics_ۭ8: <MC)fjWa"O?J!i\.H<벫9ՙJKF|D葵܏ Gzi*B^pH_WF5;&0ி Mʥ.El"mU&1#j,`r!ih}Fr*? ֻ[S=El_!B](9cA#.'[krGeL-=uAF`?IԂà1Cj7#daŏ2"Ox=l&&8>~ʞ""#cHruň+cf][!P4eҹ TpO6sΙWZ{o |Y A}=.Qhd5<] ͥc.[}KT"\PL{n?42CGR *HmwPdY1Ƴ(}g~oLLm!x}hWi6j:ɮ,P fnlDP @I%r/RS* F\Ta["ԇxssYmpJ*Y82 C9uiiYٟq;rPc÷-F5,uU F)]inwERFVnj]<⍫@wU }e@Zg#aNj]x{b5U:T_aY#-5 -{yk]vT;n;mF{=+qLp[[z5B90c"pE#1-A%1~&EʻyVvgG&r2oJWRaӧTʇ<zHA]rE5Z n7UUGԊz:$peFc+rZbZ< H9s!ވ !KQ +.'h=~ _s[1NW²cI&/8U>cҹ n[*Ġ)x0@hHݢ`ްteBo`,bK d+({M?RLJ~=??b z2ZPpɼ#,63oq0o䭇*=ˏwdY!,_o߸vƗ]86B!R]8E ~qHh9:ЯXAѬv̄Cmq*%6 xc?狯?|kmu.O[uq"fX}UYs'7fPi>0L1=*gO(:`_6Eq%xm'=. kgM-,LqfnH^ڀ]#ۋ۰()qZ\~AGaze1oc{1_p9.sĦɎj>|^YFqwG;^J>皓nVWp m n/tt*]^?'#<xP=}UG+c-Oȹ3M #W\09V`P=}jɳahߑSCw8_qЪ'?UE끖=w<&}|ILQlԧ QGu;fj BѼ} DonS  ?á'KH/f_dNNe 7V=BTh?}1נ.܃H<ɦx;,SpXί0+Z!ML-O6܍ D-4 9nOV9D]y͔</PDyf2޷9=T7_NeЫ2wC$޿I'1O/D~3ԍ̅vIg\.5=xd+U  ^XԖV}BAVdeZ_Xq xޖ='YԖqIkTbF8(u"Uo@HلA=q7wquI $a~ꕫφCȞb6A*d|w]?vsI}SIС f2leK Lf֔,kdjr}7 d;Jg!^2P%D+(52@Q᫮}*VQO=!玤I12V w]?xָTg zEl]8|CZ$ M2sN^ S`c1Eb* ft%ä1Z~.5r޾W9ٳ|XZ% *:M{};[:;ja|"p]_ C͍U$7<_7 <͟412D;le:Dl;]}EU/YjUWRl^;pYRqVd@5=1 2hr@f g('V+4"mh|^<૑EcbƆh1e« 6lZux{"Ŋ6Tϲy^nfmO vDd'I<FpoOYkC^$WpA ޻mB )p-D,Ż|=CnM͗Z>4,he}Fg)x.׭'VCdj:a;"@-ZbߠjlީTf%p=W.HD,=\Jp XR /UXjϊ4?:v)ұe WK ~6"}͉ջZIG7#o U@Uuus[N 8 I-BKq71xgr ѫB&k;-\I򬲏{[퇣[N;.ړsB֓R=|B* E8bTΠkכ尀Q:o%Κ' ->yu̼XB wꄻܠY9z?œlzIb̐G+33cލBix$b-B]0!{%-6OF+nMRy?p g:BIiR_ВyF[hҀץ5DzϦuf 9nG>.S%6]Il~f5<呪{LG\M| ƇpT]T "N,+FAdOEMƚi=[(hƤS:Sl1) ߋ{`{Ft~c| g__-a0跻5r6} Ağ@pqNh1<6i¢SF>>))sWt΄!seb_E0g SoZ>kټP21}Ɇ=>@%$Akk[ۄ;\}/+`ME\:b/LtUԼ~={嫚\ ~ L B7_ة߈{UՖNP$:FJSh<#eIVE榛Ȭ́"{p!IB p!@oX~rY󮓎C$986LyG,6?}O{r A@64Og@`SeR\L`VotM|lm$/5x((m&p,̓q0Ḁ̂1W L_ `3:D{YR=͋,"Q<ȰUKƬp;(/T.u1]C'wO5]X U"B-&Yffh* a0NGWmy-N‹mYiMEc:FLJH^fq0tź ('} i XƭlӭƆKQl,IzQ|c \aq:Ge)/<.s{weqJ7 'Rqb15-oLtF VE+tٰ֮Ϳo( ղ[m:r,$3d/lc*% A1;qƜ+Q*Wbqla%<~2x_{=Y\_nptHG;/=1VeNXwvVG2¬q ʘZj_M^"L@=|!xOL\`۞)1)Y=뿲Lif܀̭ `<XNJ8]'Õ<'װ)|/Jq.6ox>qXY⣪("}eT(2ME؈δ{*x/>6[կI;DdZuwS 89Yզ%CXhܐ9\E|կ xⵧsmP&h,vD)Fs%SxՎH0PIhG'6Nh^ʜ/+]vV!w?]e_b_5`Ȝ d|Eet.dFL~P ˳&`l3so 9~*6~zmO{ Fh[c5/.'n>k:+8cb12չ+sH1,%N\ѻ2Ԗ  ]JTr6T^E_*ɾ'׉^3bBr<~UЀaOÉHbV ,G@z [0ATvf hD_Y*ϫS= F4ڬ,lϽ$^Q ?0펝n[5{> cZOhd?<+bTXqڿ1;ٖ40kk?޶fӻ;`+gF,~\ /bKT#>//p1>)@}It;ޯ?>IIRkC}}M&0Xr}cN%%ؔcs: _ITLY8 k^^$a@$x>7*m}4Ԣ|dE'm^qx9J}| Y{2Y(=N\U{+~%9*0'XAn0tLU9C]G`q198mu[ fDU/LB勹oB"%Pj-h71kpU7;#]Ұ: Aq\s)3R='T:hͣ g2ɏkC4 CȊ>_=`  ewvi>R2z w MRMI_aE;p ÃF^43$!z~`A.fĪOYC<Ն%&ftQ!vzăܮTN3|.j ʳ5[ZQyxI sB'hVK+y-Z⠴XfV "HES ɠ:+( ջ3@:jB L7V_;|4;zhuKsQuULOyDL?(ޫDwƏGe^]ЁSZʿH[B-nn5\O κ"[R_VDfZ MhFB YP!stpKw7ԮXjoCK=@0̍ԺpdiDL(hṳpJ~ļ?%- MMAģnN!pALoVJ ][4h sG4W𭶊<umʝwAd[ vrR=37 8EvNxgQMC:`7*BsugyA\RG̻_ |bȡfzΗQD>.UzMuzEMrpɐfu kE#?l3ܛ9t<:!"8n!6q@y^$>Ho^}37Hu@"e}O6 : [WI8B fNHdEpxhdQws7?7׳bȦ q@>]>rl +3[jx1=M ä.20Y 'LzW]B; .&v)$Jn(zjISov$UoY.t%q,leD$`tIDd O{е(Q_|: }M*WnrlZ AZ/鿴@KR}d|z wߣm^t YݏGa=B- ޯǡyz1-ӲR7( !z鰕0^^k7%Dv!R- ^js2K"rTeԸճ _XeDoXۧ#*eޮя-K[%qde5*̝̾r3|nXJx oQ_ +nN‹Zr{M/ҦvWDԧ%'q!%֬@<_nh6]8 ;q%^XyugoY͕LmK (;']1<% f9g+^TR4ݑG'(\*d̷aׇﷰJe{~йmb2^s*Dk;45ƻцΨh0NrpW\)Vd$#69eJʕSfK&ѝgN Dbf0((L7 WnІs+ˋM |pܓy1c<e0&x.;5 oD:ⱸ!ꄯ KKHh"s,YV^fE1 Ćp@J%C\*2?%h6L&X:8$TE~[a3mR,GŠ5)EPAr +p@YT' `Q&:M+~A[|{'_7^ph_p2-;-13uG"G6αXi D ,ݯ= >IE6T5TB3o2( CyL)>bHG\GA$gh™O7}c=&R ~( w>e9dp…jo[ hC6v<Qͭ$wćy1Rk:PM#`%`6TjCA2Xp#vTV~ؤnCq: —ձ'EpEs%NýR-#,`'r,oWjP|5 @;rhpH+gKګw DHuHfeWo=u?&;$18̒˅m/ɉKӈy^XNgN K+Y/thS@E#$ o aH kN,"` IB6RuHݧbɜ%*J#.{\hEUh1 ɵ֐fntX DB_C##Z0|Q$xILkK* jZ^VpRYp(&+4%ͧ&'};[.ɵesAZMp=(Juhl zJb|'Hd:fSQDXD1'`i,aQ64,ϥe}Hof)k-Lijg&v@vĆs8PAR/H>x?tu=c,jj󋉾X?/jlBs4R)[#CB\nYe|.WS5`[u gzܴ>+^܀~I~ՁaLʘQCއr܊R-a[U L. %j8hߋm5CT#Ggʜp CR U? cҩ數D%`RO%}kSR91Z aNenޅ Nb)d CPh$iI3 KҮ{ȁ8F#/2Qc8$g!a-b' y8Oů!VH 20&EwTR}P qEEQdto? /- ZAO[;rA3 HݗݤSRĩ*.C 9Ps=aeCpm8sCy4AMW No*e:̎H/7qKٴ5OLo@ @*&Zsd ~uy.D笼_ ʣ,|%H}]7n`I*7 fywy&s(S\$e̤55XA/lnm(yuu<lAwh#Py E=`] #y<A%"a;[!Eþ^y]"H\>^e2Uuqيg2mv 1`YrU]z ur`E`&6mB rAl3)>|aRI`eaܙٳyFR2̜GO>rf7ȇF<(8{aopuIR^oDO&ɔc:s:>XJʱPppW\0[j !XOh2j{dӑXQ@M+K)zIJ`r7l;s2t]]yaҾNZMҢfVY5cߥ;|gm?=`YCG^:ACi)Qґ^؜ cokE^!0﵄B/qcY?sְ rPB s_%~譱+M-x1 ONb?suo 涆vo;ouƍL#xo)d#Pu qb~)Y!rŚOd~5`5y}b(/!SQ7{ވQ] %&魕a&BěVHSՃgYE/c,w֞ VyOX t^}fv+7*ĀcJ >aE4DPwU~% GTgL2^\@%kޗ Y0c= k?$bMœ6M?^oV=_̡ܒT&3FDSz(tIUq dMoOjKu ޵Gj CpB  eORz<kS !:M!9i_M#<:[ ?l9ңZ]*"ss[ %o:GE&L,3;nkfmV OjóAU, +uSd†XR#H7'lj`2EJ΄qD$l:B"G@zGϚ3SSv§y.*>B2y(b~슭 M!ܨu4Os gUSPֶ `x!~IjDnO(҃ꅦmNvyQGG &SD}8NN.Hʽj)启'Bz]04xeͳh@fwc~ڥcxpU''Lÿ帟ʹVGF>&%*_I$Op2##/CjDkmcC[*;[u7i|Iu wEaz<6Bnf~A֦-'tRHp [+MgM{Ao\0+SNo4^HxҮfe3`AmZHq-'-܏k۟71m|,4N,GVMoWrKWɫ>;bDì ^ So87JaHKy7'"Hj&S,j`q؋|j״\fUߓD!ba 'xNxa9VxdV":;aA^ eFbKJnB @kMO F ?p*Yh`?Щ *jn`Ǡ՝&%ЌOt^\ $.nch2| MZИ!1 8cE *~k$x .~hlg*esV#iD#Tǣoj;*DT¸YjѺqY| s*_g[v].5XDr$9]оdG2gr{Tf3ĭnB^6\|쳵 AQ+&;͎މ'o<xv_w9|XUp˻{RC~biKܐ|c\ʀ7yC if@T=U]XaL-O mʇ]} 1B-xKI@ uT`2`#7~8nIޚ(5&ާX0- -JdlspADN7`kxt sxI " 8 '_B+qӗ^H_$,uú$Z nD7p2TXTiđvɌ+HgB 1@tlfMe6$/}Pd*]H2K,5dMn6{`a 4>e8ObbA^Ų`Й!%ۜ&(dTwb)Gq{iIdTUp~Y: Tp }P|_Rk:^ JֈbeO^LPS=d\Fb!ō:DmkL𗗵>Ug?e=TNw "~jA ^luG0֜{@4N/F~V֩Р4{ d?8p3Stw ڗN3O gLծpVl8*]X=QP944ebntx <`rJp{H'KUc$n:7 w*⬺AZ04y <'A:iCM0W{qan-) <486'"[;G@zh4.o|'|myp%Gݬd Mgɪ%,@; lf?JG:?ތ`W5gѺu+r_p9%m!E]wўp~ұZLb|IeBq~"r`,RR+z{)6.Љl+h1ye_Y@' TvF+,-H2, L}K;`0L$ /bb~ƌ7=-5! ('+Z5"\hGn9C؂./O(Agpʌ{DsB(k=2$,i=,yugCH'&\C#t^%Ԕ^74*tN_ۡϩV \XII:75%Q ]j[ bq趖Pg(?b yY_^WR'Lz ⢀ Z Y{xн"g <?ř e5ޘ*'BMt(Jx-[2]MlD2 āص$S;n 4s%ΌBݜ' ΍.0q<1L!UI7q)ɍ|F[m}pq%>B%t -\V]K[iO*6Dk^[Ֆ`*ge3FFc#<]D˷_&4`z^Vm+*޼tȧ1w,җ\mյփd C ˠe z#sN_U١0 \wxz-;G%{%k?i 3P9אJ>,r7+H+739<^/KU5òZF}C d|OB/QfH (E&dZL hNk?r]#0rRtP2@d8N?O?n OQn)\EJ[tkٯ_\KC)Ȩ ˓4HZhurer? Oof2B StB0F@V ,Tvqz s_j]5xwA3rhgsŐ1upA@b(Atϻ#F8_,Jܴ~.A^- .@1.wL B/˖&.;=h:Vvj'~"JUy`@7sϒX2g%ZR8.m\+v4[j*Y+TxӃ[34o;sRs"?;_C(E# >{B橪t~'-w]p%UN=ݫzӼzB}4ogLfqXPIIӐj3E[gs:4*0sW7-Cp&_`&x)y!1lȪ [r#`ϲKs~uwO70fրQpmWS4X+rxwQ}yuI@fz:^$ʤ a팰XLX$d@K{Q1k$uf3fǞ glƘ~Iie)@$\USSaq/!)c[GQJ}\.+eJz.Ri[\3U{ҼO#x_NL&Hl,l.kk[pM-ZfمE:ՏqaRk'DM$<R,黳jL!(`ÀCO=8YYA~ ^d GҠ>ۦhxY/εnSVA0K{/+)#O"7 ,vv.3$L'ݯvJeA׵`d8[ӫ}6#Ԗ%PZ@גn!RI8hwRLCdCBtX!PPu'Hv*W^tK(^N"M nX;90{߲M~ևML oRHb^1f.! !5T6?waq RthU^Xޟו?-b oq8%W'h˫6Ջ >䘟- VUzDD'SIxe"3go/{STBjvvRU] PZOp5T{FFL&ak܃qQ\΍JqIwT{p%Gu0f WHj'f)Q.\2~;'N><$d8O 筷F6w!W!FpuhyF|m!2A#@QDN(5XLdtN&gޤ6\@NTxy#L9/YH Zqd"0.iqZ*̻_2i_5}op^n11_`+Tv&j 3#ky!^>>es)nagחI^ܝThImYRxi$QvHh00rOt Vv,QY$ A yci hi0ojNJ6mbJ/cdWPErߓ+5 5#eNK(.p#nTv8BB*7j)q`DH*O*/} tTWNP .pB1KPӥ|KcK ƚ;5 3z#0ݱsā8LGn}("|Lx{$oS9ĄVH5·vRV[S6ƈJUbۻUD/>h+h$:]7GWK׼Ҹ04wPTT20 ߀{ބDX@g-#: xEA)ckRۻ? ;ؘ|ʾ20Mowq 7ZUb_%Z?K`R@av-WRžoIN Y3얳'jLձE_'3-{& ZO2xt`W Fp*])K b^^HYiIކɞX,\o5GyHV#1 p<\Amw%Op< akMoѷ)hA95Qn IdV t#:q툼 7*`{ݟRq0]33ț4=)L!CPWy: FwM3(Cz::ڏ\\B@hq`* "ui!=n89 !ZBe {oYB+%]JxC2U2gdiNۻ+TB<8DWV88_~_hPkiAFIg0=*ϏaeOPԧ8#YDpø1[#O?Яt!C̓Jxy[vi͕Yu!/g;,tgyb4aK8C  ז$&08>)V+ #r](ޟd8(Rak\j-&ըn1b3)~s}PI uSf/Ns73L(ov?0ry^?i]\ooKxtZB֥X/Bi04s,v9v=o(P1l8(s_waU(;DG)]Q_ɴ|@ٖ9:j$8;*ie^R7 @ov;ۢLiᔙgztv89Cɒ0UK҉q0ݯPBTeȞk8^k8܍~Д\az `]uӌ*?e8x#R.>_HnZ_!z/:#:LWb; >&G}7iұe|a?)ʔ^pcv?cUzq%qaK UOuwb=ԏ~ 躥'@\zEpfFo-KT/,:öǛM'i2Q6B)"m 勺 \bdolEggNMP/Rh"x< ge00B픣YV#b'˶2.yνPQsIMz9Ruv\ȿIih'bMwJI鮆O>)s$zKi쫃4cb5`6 !QmŶ}hL= hegMF!B41n-_Ta FFt }Gu}xۚLzxxWaEH$"'\u`[C8j}n~5s8tvlF]4tMRXYH0_`T`.SG-@1 4+<Nm|R؆9 Xb1[1vΡ],q86~7%W 7Ge:@3;KϮ:t# pJ1LJX$ԀG-?6 G4EV\Ȫg5BDu(" C=)y?5X4%&dPL#OMX hf>g[aEEm H-ZJֈgmHF jtG) -^$|'UlB?.sM%b"KQrGmFӇfE'bPGFFj3.6J7¦߄.Ξs?kd'<ĚI*esEVp❍.`y7B ˌ٬WN#]Zv9GT&lȘ!R.sgŝMeJOoGG}G5ssu#[ρs g{ ݀W#~v-ɒȋd50 =:81Cp vBުܵ +3w9 y"ϏY6/<Ŧ3t^Q$m w2TJ͠oHْ2TlqtE'uscxXWppoxC[0X:x& "+X/@O2J#1L^Xu4{^8Q'. tki,"p 7$F  @yjSW1dU5&S v +|O4omuV!5[% NVyʀJobsEG@dGa(o3^tB~0|Zo R} El$o༘QHe* B-řP+܅rq> %:M@_4Ht]t^nk \8!k o 8+2a }T FȸZ80T*LS914iMPA*s#I1cG=nDM36Qu3cBj'Pbfg8c3!O̕= |k]0rnis -QKSjJ&fp-vS i&VBV=$ᷞa괥=2;*)+`$9QFvvQtg9qhTqZ|,`nםC>.jAߠPҿ[4,:؅ #XfgLxY?!C@D kTHK56^ch#(='~ߛM/^608..8kDJyjVq`cy%w.h =[L>XĠ蒳{9"w.H7O%Da_+#4ϙ pdd;m:KFSQd{آDxQ꣭;ݬCuTxtl#HfD봚(l ɵȔ=?pCv{*fZa9>2lSFZqg95> A&}8^kL|0= ";}Hg%qY(dH`xh@A}P/ bNͅÕG^Y1C}g/#u0zi"ac:]olUD26=C.a^yengѕ*A*`a+5-jv۪h2> A wj~/PZh^hYĿ)0`fP{ ,AHFP;G>}'cw);>cT[}\Qpw/S6BS s}0ajE}Cw*ۤȶ7< >?)#[CQ"TȤweʕ'vm1Ǹ{^+,C^G~Zx!.-bziNX"Ǥ( h,3e"`1ԎcJxWރJs)G{"G u؆(;IW˴k1K?iP$i]@'OBX Q7_'ߘVR tf&xH6G$n@km9>I}_ݍ'E4 ׅYZ3Մa9}.'ʎYk@Ԁ%/mqci8GZΓ-BځcF4Vt)"jg"/DQ(yukA?e\D m &4'3ҫP`1I|ӂ0o #<ݹ. {!Cҕ!U B 7*ͷ#woD`ݏP8Jpp2XY:1lG!;]%V &9H: l;]Fer7G&_|S/Lk\UG}MoM` mçF߻S rVKN5ݙ|e]AƩrNI#Ld8=$~;ii *6 ĚEiKhTkH+3@?p((9w+\倾NF9 Gj# hh)R^{ ܷĹE[ Ozs+EO‰!6`I+&O҂8n㓓Ϙ%u؃&Rpk֋'`¶oM.i>D=n8=ϻ[LS3" VWd7)g9|zw֢ b5>%*,g@5x5S̓!gџZ +} {;,OW]p1~<7EkԭH7 m{݂A7C~q+mIn j"qi(."&|yM~ԒW;06D A^G`ϊfzdT3(e9zEar#@X_~_75YU-sU9P1 A,pn bBOC+;rrVVۀC}o&V^&%_&K@aaY"@?0Sy9`1: rv̕e/tnW`RE+~5ٵ)u|lV>k|U꽌Etǖ|P t !-JѺ[KWRI$Ӊ(X2SeiDwa@ʳֺ@|^ITsM NnRЈm'u8-I 4|%7ʒ+[WP!De ³!CSmW `S4kM͜+&z6 >bv6 Fѐ; %dDžZMT3ǃw@Hf{=1.8+JW@9Ta謾uW& )IkP+Ç.$MVI%@K!6,QhB7'JPA 죗#!MA? 5 ni-V/WVZot+.V3 9-DndƩFt>nU5fmGK_Ә]ߚI4MQ @ iv dQ+CPzfN'|/Iy}UxFg?KX^uXkN'f8܋PlMUQѪhA^ܞ]wۨ9NT"w"7Gv8\*6 i 5ď1 hd, !abR묹E0 R 4Ѯiz; vpך<|[Qv σۃin+tU?3{+NOӺR{#F+Z{<LH֢Ga;c&G&'ET!K|wvg:pw ڂH㍕͜O(=t3}k3.JzTZOH9%f˘DoP)di\9twZrW1s|LQI=5,G/+ne*f\WA}>q[vZv$ m2`mG2ĮpSKv;?B6S/?d0mIF܎SJ7G= ƿG 3Q^&5/J>w\^$eМU_ɷǩN%p.VN/Brȝ{AjS_#.R]?9s۩!b|{bRՇZf UNt%18PA(0cMP$4 ;墀jf9Jr 'u|ZZy]7H kP5\pI  i]aK=fV-uTRCM\q"Y=03+=- V¸@qfs1O&8={v "M JE|+ތ_h 0:#ܳhnDMb8ق煀)1kImh00m,v&*`]d必X`eCE/X2(nq^ZI'uSi[TErKn8{/'.[4Q1!6 iknPǡm_LjrSWg}mmG*nv{^% J]e>{: ׭6߄a ~ؓF@ AEI:5ek(@)4HɋV4GLT4F!pοuЌ:sze7q(qyC˅]3A)>yX4 B NMl^Y8fA9v]\] ^vsc?K?Mz EZaܘ " )l#U{xX<{,vmsrQυZ ۡcF Zxœ5i:nOX+;P'ܐfKvg(p eTBΕbS<ߣ;#0 X^pttdoƬo 'hrC--6qt|JS8_8Ui@"Ȅŀ'ԴN5(\ONqǿ>[HaluDvspսM&*Q"h J0m+kޢN-%-~?p9-5~ +a]UI,ۥwdqv$mJbZ؅*qvDڰ ";>K'?c`NbasZ8Vw D*lx~KbM\Az(W4d޹$vBP*n`:)F\rNSVgE\4Ұ_qTXfRAi̔p @&q`Zo`@327o oΰS_aogK4^<]Ө*Ž- JԽq}}FI= 1%"r$Ppӓv[ ߳.>mE" 7ruV)Ujq.E( Ĩt6^ # I`nTfN5аѼX՞DJvJn (]EziE,$<<TkB[V7P!zA+`+*-Q^] "2!VW;J.=Q1 ! D[^rS1ht%0ZJN7tM>e@`yDgWy..~))%p{lI4^y0ef< U6ί1BwM~Wf ōBp粋'.L)h6hs`-  )p8j`Zf!}FXaQ{g& +0v]/':P@+p8%cpnÐVҋVfwǓ^LL7 앥h@hM씃#eT Ցo[3❏?baY@,y N`io΅>Ƈ_*M 8{1~YafE$̆)%yL]+ڂHxn&:>Zi2PyMs,?2o9r8HL>T,$B_ymUsըm_- }dTca˔zgV_ΓkK3Vq}< A,b -<4>p\2)RꯆWnAoqމޫy3o8c&)Zغ!^țK:8Mǚ4#lQq̙Afca a^,6I#Rmo/;i6 o.O0Ї/ElۭGt6#]ă `dIF~KdL H- X>!kGy!YۿoEp ''& & סHZʷd*c'rz*k|c˻;g8wT{,M=-gw39g+n׶)6DuYnظ E菢_ :cl3!hNv0?-Vb0|[*Ѱ_NiICSTOP:NaDZBVt1hO|:(WN+#CKm6TgS}Y0o CD GG:ydF$XhrgUNwoxiR~І/䫞# 7 Eċ3TP7%*\dRg4.{5.G AU>LKPo1jhےI!Ew|)NUA*4Q qS頰Px|ul=K لE6%e]Њ㳩["e14!irv&Ԗeso(nLeV`}qLT,dfW`A =Ç%ҁc[Ngs|E3J쩡*c= $չr!7[fU2fXHO9^T{c'#Sa0ۃ%Kgh%qgFqv*u-&)7R`%fl`ͯdrÀWl瀶mAzL + p,&I՘r?dr ~/W SWxPR mlezKҟ⚦NGS?%q2jhGf;;Lc F6с#Yr?&zbLZGPAw ԁÈ Bt:69Bh.'hAb2[@TՊJ[p|Es`J3тZv]I_QWE;tQk%8OJuL>a۾sRUbċGJXsmSpj <5.#żI λ3-0uN-]v@hyaNKdMqx)1MVKKu +0}tnIi`Ǥ^~36JK6p_2o( #qcB!/%]RlƢB6e{<9+Y=*jxˑqway󦵱PVFB *5xvKдdW_M\S_.C2ҿmbҳ^1q-\ev:OnX1F)#f^߉ڡJہD1/dts_T&AKUAK+F`8I$|/.Їc1l38T[w3]5e:]uCMX\97g8 #yqp ~}\v>GT W0C .KbL:1Bfz{4֊u$#\$feB~@֫lPwjP.K픔2%iZ--e =_jS%I!ca rZKhTx?d-d|-sLxg\ = Tw]A8 |.,٠*'D)C&=^X_NKT!$28YK# #mMOxKqƓcME(v.GqU!ٷv{.^G'tŏrߣ *T~xTal;iTOG. 69&6aX,OxߪM+ lA|EV~ 3Dŕv1n ۆ2znu\γiq)+yXQ4-І'LlLv3Q۰$i4!/ޔנ1 *&rڧ5@|Z(~io8LDrdlFP V:Oǎ0]7n@һqgGzҮinfIռ s2~, [c*D`'=w~+(m"2VDuL&!VxZ~aN+@jj7-R홲s VXUL 4D,B XYH7c$ֻK4wF&Ʃ򋿳9[YbҔzb* ?QG{bIC8 V*0EQ ^밎kŧ9@|H$01K۰Mėr6T8wZ" UVy Z#C 樨t(\>hlѱLGA҃Y]3heoJi+8>3 6yR (&+7Ea,tk+/IQ՚B [Oد)'~14j[~H&~3&2[RycH!;-=D$߸!_p*ޏۻw SRHФ^i%1UCj Yv,bRLx~ShdN7 nE,XT2p c_غ|KV:}JM!;sl 1ﭥ-Tk+A)_ l;~.XH~.2 $>橒Bc 饞n$1k5lNJ'Gx\.iww?O<-}t^BaYCD"jIJb,Y㵶=K領DžP &kow5FVϫdv5Szg]fVyʪU@!lDhibZi,e MݽXHѻºXw{pJ9B5B4Ki):iFU'_#jde xr"tʝr(YfvV!=b:?cah Bo0^F[9Pq+3fuyΝ;!QWTj% 4?^ D? B.7B<{sAT>==iP 8.W2d3۫b w;5pXFRNJר偝)ut3+LO~u&!I0a7![8@,WYAFi,2!Cﱒ'b0t 1{ݯDׅ":MRDK@28 kBvz4= tΧU{aX!oKUn(s[6_-,Q ұp/ ~p9pB"ZSK]V&Ռ^=2ZTpa ~.PR[$Ot+K|692u S?QH!ݍf6ܜݸtVlnPNk^eK7#u7.!Vs&TAK"&r*-$GC}fb ?1"tC b^v*˞LMqT;:L߮5mA֙ 쿸h SŇF(D8ܩ,7!"ULu@8n:̼֨p#؃WU6^gSX` boӷ;14”w"W^d_A >j87*OZ&hqQ.#kpQHԁ *5sZ~0RI#,>)ww遼ſ#$ vw;tim`&S<>]m_/z):~%xWe 1XWXpL~ҸA#><䞙o0Пuh_v Rec eS7iiZDZ{OHsʔ vNg&P(r ݤP-$UrIG/uM(dCP6z$#ADU/ 8h{w#u8#ui Q|RLn!}8EL}$FҶvنfY.˥:b]gKF)%34 \ -ÕFц I'% T{t]Iuf5İhj?|gv.fҁwTcØ#g|tG.0j/+HV8ydvo"=%V+lGHآ[+z5yWTGjNbo`"gWfR89mlTQ :C5{[aq/sΣ`Erp3*;.'#5&ڗIe,#;R1[G u'!@k.\U4s8xYl@:wygjN% =J9;|u[dCMDBg1~هѦ'?7iwkmN4Úmyb\{STA0*(7lJy TaA"?jKɖu?BQ]{[3 @gBs1Z|ʼ 5VbKW~ K_#IkݎAHޓJ6ؤmDgnQl~bmߝZ ocOx\_ܰ(֡ZгfkTF̂j"7Ma'5Mb;`GcHLRTH>,ps?We<ŷ8'wUDu֑3;c|H3{|ZfATGϪ an  =kll5-ViKsS҈A[Dt0#ۖ!O)W%96I*@d6=x0턛Z ItVq͵ĂĀ+қhFnxru8n8f%#bۦKݐ%if3K/2Ke!:u?Fgw}M/~Xe8>Pl٬lP\5~gzso5@@5MjKn Cx+'k~ QC`{?n_Ei6$ "ǂt( A "ά g_?H!d6-o'lqITzt:5 1nBDK[p̴Åe}v$wVeҭm G 3NŘX#Q^1РnTqXtOuLy+ANˏ ɼH*;4)R+Uzb* ɵ^nNDѣLTx8k/6.:g^BP8k[=,V/̚Ӂ8Qd FJ6ŔDSBmf)3!4~3eI5}ngGz֗`"(%M kc6}ӡjzV==tTkpsv*وStG/;VD]g|u_"Wo5|' 2OS#B%,X.+!V߃ ,4=U!/ד .HT 棝aZ#е3 6 I2Հ Ьsΰ̞['e#2:j*(4I'}v?{fp4A+&'DM#Z|2y&|hv̠^J(*``v|s.Z6Zp zHs4nsTmO&' oH>2W o4uZeJo(dt= ~Qw1 l_-m.Ys%R毅'% X~7c c]BJ6gxP6I.D:qMX_ 빆H#nÅ#I8r:+ $̡hd^_=q-07zWu':]JU;&gkD {t)8!K ?9AqސC2`*~i|7:0"5_T@ .n6h%T1p!Aȳ~$%}AOILE]AZߴNOȯkx7y`\i-OQx |’fx8a4Nqe-3Оi @Lj,gY7H |3mgY'E( F8RlmW_8Y?i/USGq`&ظuRथL.u +xGLU2T:9澨߁ TՍS\"eaOH^&ʰJځLj];;?)e͉86. -`SF<SwZ_>nZk3O&9}J)M4)GSc}R.ߦ$nA͞w[huY֦ל  +MJ֍2$VjKr2CG5MGe'R=-kU)0`쮅zFҗorP k%ފѪlS-kZA >⥁ cٷwiRdSn;e¼ueLf:7]:x2öcuyǬbB^(g)qxF .;3amGH@XRЛbD t1u&NRbi/Wz`M6k| *Nr1 31W3W(Dv1D/h/ƻ d&2lmquo}x]hnD ?,txB5_cB*/:mkB,L `G,䬞m"8RHܤ!+CVmbt܂pS\_y-` _V|*1$@e>+WaaaqK!A0k(oXH٪7_E@G4ۨӾ@n"3qݲBU*J]:`H錜&a~Y}W7L  3i<`pꕺq iX0U%|ﮠXt*XoD.} RU8 3R%u-9,F@ UMռ-i$?JwXZ=c%8t>{Ts㎼m (>HF_*"\$\ Lxf撯Yi^23]#` 88ܡ-FWlM]#ǫT'lUЄqZI2?԰9eKeH6;~ы,s+~2wлho)Kno%e|@A~" ! Y xk^cw )m)-EaV6? J9PxBlOcy[>>w-J 3o6usNiSWwSJS~1h,8WҢ|4כ~` |w~XI6æa}jd.Wwl3t8}`eomx]͑3GƭX4Un($V~e[~TNc#}H$Ҕ`]Xv" /1Ȓe# J݉/idjr}!i5@@vqas-ZYyqrBKb}3 @" dB^&-a_,%n<"DscNW *@"-6F/ԟ-s´K(MǙ<FVy'ڐsqhnIc,w6jk) G&T>m;$K*A3G^0Kao)RϙI` q 4ג˸On*u`P;EœhF[j՛Y=` Uɯ@q_N ĖpIQ:VY5@ EB˔L(qVy0gܥc?r*0X4ͱpwPd&}ЪW{́hjZ4)oS:W˺9I&J6ՏK ޝI0dbU3oogs 3mj5D݃ 0,%XWS3Qi6EjtȒ1@j[m*9_²#8#6S$1`xGKc6ϳT?qbLpeCF g&6>K9HPb5BY:k =^-@- k ; DoP8s'ܨv9r΄D q6+/L\Vt'BsE:)v]417dxXO#i+ `zm~^قa7d,FT> /Pt3w+TXH?]NWfwfY2ktG]mSڻ6˞l󖐿9J mIbĔ_.d0pY/S <ŪqllAT8.-|mt(Vsx=0lU㿈S~uEF@`,^_vYFd ee$d04hiӃRu& +f`WR[]퀖IWbNt&~3Jwx64wurrbY}KnkGKymtv#!CE@N0/H_,{_,Sr˽AtcH~A lK]6ܮj?$+(:;DZmac%\_h}d,0![~Ηw [Ok< %IA}Pv8 hG݀r6`M D+R7{BCaT9l3u6A[A4sipP CsśG.)|n}bm3 zDz@gD8dKId,@b@-`f4\RnOTf|ANDVj, c W5QBH8yO9E`V 8R-e2(-2aNXWVr"P 8$|=i?W1[i{NI|_ڽ 'ꓚ`=<$e5izgs˒r}]d 7[bLn Zrs5WvS]2GmtC~d1,Ng,ȍUXu~_=6ñTI K~t+8gS^h!Fؕ?ɮC%_X $,gZ@\kWqb''M.FcoxoH7a|\pk sgVUgQ{'|zEԒȫǃQpNXUhm^I==xBW@?\/$g;MYw]|=%础H +fB^Vd{lux{C 0dan ;dl8oU 6152W}VHĸU5PGm8X]dHZ.:=N}pUء}L="M(" ތ/H US܅ ;ﺿx]wk{'k.o*2o*cro/ɹ!ϋ= K)?hayIcnK88A`=lX'cH _IxKm>*jL@R'Qn@BaZܠɩ~$M't/"6wjDEfk탯}`C(#OIz<#x<6%S렟!5~9u^o\CWĠ >cL Ghe h#m_;礋)y6_Fٵ{`|+9D@ uZNޜF z;Žn[*/ ڢ' D1gl 8`2[g氦s`NQjȿt+/F<Y}Oz8RUkLjA1>&Oww)lgߣ'ۉU,UD~vtޕ{{JPwb^VKDs6~ʚTZ*n#nG9NjvRRɝ,t&w{s&2]uX7ϔ{4;y8Fh3֤bI:KTZi)QʏM /{hAuvLލ2gP ǀтֿ?@"kEݳ䍕]1,]=R#<$&+DN!OQ2dl.{#NOj罋'j# ۬ qc6 -a'SGe]AɞBqזEJiO‹ծ{FFnB 禲 mNWcҐ4! pñIЏ`0Ml'El/bIKQN[S|*P#uÜ 9nS$@[;unF_DO ^G^[R4as{N(7ҡXr2!/NdW?w|+ :U8OmU䯟D L_\=N$K-m9q鰉z| orf͂I&f: V;6AY v;*'wS {KE@Pv2=gr؆d%淟cG@CMk|_FјQJ B7DJ5f6gX4PN܈76T2 A|L3~Vf'yـp,Fk9 SdF/ 8ľ <ر]jgo/OT$:BqY_?)]ҫXĞruJ bǃl#5_6/$ n:wZAD@k0DP2}*@?5Zw;歓h;|qd]\rJ7A " ze؇]b8lP==p(T|= ^ŠTY8MAplkzU3M݁x]uI|3C6Sk"7dF24qB &f1YcCݟhcۑ!\T" .ӯ}CV'8AՓ) 8"< y SYs{i&*eDm]NL[Lō;` Daӏe2t/˾e@+M闒%*I4S#4Y;76{e {`E37I27RRsљy *v\]tӞHl[ng3э1.Z'R قWd&QfpSbh̦p`}6MEKZɭ8I h_oz.sLodbw6p` +ĄsA:W]Z0U,5g$hѕ1e%u?fMo N #D,#c$"3"n(4 IiV'E3%R.o`cDAAJڶӋ̔.Vk0tcn`I^;nunC풓-K'W1\"GbNIl*o5V#IOv+W4ȵ9G*v(0ADG#i&u^,B5q qc1~lB>眞vsf?cba'᜻M';,䉻^0<N$ 5ofV_}ʇa;pǩY`bPM%L1 pBI%d(l hN9qg.ʍ"O{FrѮT7*8ۭhFQ8#ݔ[O_"4U=N3<bts<:m Pg juRD(115Pu/ǵo-Ÿ*ɲq}ZHUa ) Gkx+s:yJܾ=bGr i8Qm"]5 ]3YJ_ 9 5Ckd4ǁ@ VH>bx>#Ύ=w*xnO=!{ZAa{..2g9JzkeQ&ӅpaoqsV)W#T(l&:}'&^gZHJ$ZȿW49~3M:s*:{1[G^+M] oXn~'u +me5Δ?dzYpFM5Y5tsxr/ĹP0Vv{KU mKiCGuDî hc9B[FN;Ta*Kxy43Пfyn4~.z ۀݑ _cT֑ML'u'PF/1Do؂)P蟾/4,,/aѾꀬ$KI߿q`L7h{Dzjt/-E+5X{NyL6ӁhBZ:ƨ9~C47Nf:CZ,<B(v&%FWi"(d|OX0 "PCSZu"s-c0ۨqs۞ZQ-WI E.,uEb';#z.w@y< A4*j8W7Sydf=!_%s Z'Ϸ鞓C2c8@qwii h/VDF-* BY;j)Vn%us<\&Ian!ŀ S("?^% zaS۽.G2P';ߍyP|iv,$by!9!\9T[Y~}4$֥d\0-CTm-),:K'k BA+ݣ!2p4uug"XZ<v&Hڍ!f[i^Mi[n?oՌ -l_0DFSo: SMBSD6lIAdEkexR3L#RUgR I7vj9;ںK׳سcb ב0+B/5}rQ(9m,)M͂^5 OQl9S06qz]ojH,8cqU5v>14.u4L%0SȽj,seNyoq㤲LO b> OXB!hףبuQHӚ篿O+Zdd%;'XފVZWAf4k4$Bc_CiM 'x>7pVӾݙ@3Õ w'2ڐzAyhL#~'^4u-\kDGHM(% ?{T'_]ah)6/ jQhuQ;2w Y"E| 6GT?&G qA喛Gf~4.j ZUm9NjCRDTWko KGq6'1rZaBP'~JW/c Uj{*PDS)\$^]*"|yL"~ϧI^Ľì-*g)bgm Ert<@ QZŮ%UΣUҕ$7ɫ쉙كX]@!/h%osK<]}iqWn_Qi8nh%N81(I ~n<3=( s:T猲yAVfǭ|뤴Q4#n%9zv]tؚ<,"_U׮̘6R܀&$)kx_^-#_DŞJyz+Hv`c4;$/>DBD̚7 {bR)J} "q*r>;e?Rc SxFDT:4dπAzچ`Ktʊsh m3TزzHRecܯ_Dݐu #,[zZ&rC_קG*om> ܹ-9ܾ$&Wpg,Y-J뎠h2vnF@Nrbm;Ǻ@6mgʓsF9a鉮c7o(|4ܨ(]YSݛ&̌U6+fM\j| m9 |bo)Bga]QLx7|)&TӋ;׷>GSSe8]LX'J#a_Sc_;t$Z\ǚͨvgC v~%ã$Х<.kTcA!DOM{vnP":F{j*OڰGc?G.qfr$ :Vme ɉ[nX?V 6=4QWsv$r#j'}W78}n h3pIu)nYJumAjFV'nʋ2u_'7 g@^mmiE#O,sY4Fg#S/[0J5hd>ۧl#"9Z騒̉(A`8$6|❖.xGL`Cţ|R*KOVue|F\ =̗i5N@^MM$M-X+%_R&eEoM@)腁_K^5 q~샅PTB2z -pqXn|5H(o6)K|]u ғOMf))0P^ R8v fӔu˓O6J뮬-vT\l%eT1Ŧ_Rux$&BtDɍi:PK[:ED~u"\mFrZ᪫s+whR 2*,J)~˶~'WS6dRL!N$n;y `2dAeݱs>N~`80y̝h~˘ ؕ$a?! UԁW+P#}幟[MBaǘ>Y֔"}O29y7PdnZ "?_-"y~z6xɮ{kbRzLI6ݾMs ʢYD̄Bҳf>g|bvIrE$)`elSOZjZkùKQWZ@Sɵ -nb7uN\_y_6;V0ͭ:{iLZZƱ|y55ss`H-)"fF:rPԥHYB3k4 rW?4,,˰!5ʲ2̢k`M_*:Xi+É'WlW<<3uQ66.%Gfj?MUnť=vEY"˓6E6s:+H᲼ IZ|SIBmZLڇ37 yKݾ8(0:GqwVp7Kdza; MXEi+yx7پn^h d.N f|KI 故7,ɌM~_0d V@aCmӸϪ9>= Ddj9ihK˂Kc_ k\?~.6|ն!gawzY4_V, 0 '9kl̬VryEK ۢۈHh4 1E&!O/Ԕ׼V[}f.'dӮGFAohdܡ /4.z\5TRYlʽ=F!mrԗsSX5s oe02H AҧԤ}fF2-C n-K_N6q, Z3|*,%Ihd @1M+GPA~ Qh0atrWZ)2%$Æi::NPWŤ_ѵ +-zMBC5a~MAfK GȈL]tt[ii"Y59޴qcitd7^U^pemgM^C6yS Td J׬ˁ OXF ƵPs?)4%|'0CN2p7]>2I"jLH 71Hy||('f7c*(Fޓ#.bTU%_:!~0|*1*˵h~<[X# -FM$vRܠ -HS^<<`}-j6$ѽMSWknx5h.F`t~_ϟEYkÿpVMʧ|*;l8\$GD_dU5 DE*4T&Ǟ˶(zZ'XM#9JHO%@ƻ ގ5";>Qz;SuNT̾gR!Pyq6<6?`usݧY,t9QSIcQ\3(`ͫj8((~j`ऱ_`[-7 iJV{qGҪKxb.kNcbTj3A@gt\*wû9u2餉2{#_GO \`Là(2:x3]@UMT뇀țA[uV4?|Y!?9,зp㮋%4$E !qVŽfJASI𞬆 0d1czӣJw ` G]\PgA_DAɱ bwq9b?K?]ql>9~*)IdY*%Erʼnce]zȻ-G jBPjkO9pgv1f<)hDвb mG"!9F 0q~ĩ,)(%D!TM0ɠI m7g"#̾*9v[V@^,U+8kedK oc㪚!~V*kp_3uٳ/ ,fN:pIyyxpw25މ9DMNiӓ[גfdq43pOc֖'.6 4۳ԁzQsv:_y| ,(S~xV1³=`$ O!#:^j{ !QJ}{k[nXm)i|;|xt`lXy~ZypfO?z3kg6P0C[ZufZˈz {;uX9Nkd!TP*e}9%P>X9s )dVw 9 16T(<0v %_X`)^Ll&o%w>QBÙ6Wdje㕲:"=YJ+ݼ3;R!D1zu^Bt>T XIIJR 0\蕔wAy,LIٲUC %ە Ljn 1r7^~u58VT|C88d{g_!pX YKqC:mRu?+ ĮTeၖ-*.bP-@'(f5[L)'L׏ӆpYD/8ݦ@ƽNAh j@ero߰rD*M}b(RLZhȾQٓZ\!(O=2q7j~AaVoa>71~ǻHh+>5{AR-|z=̒g{Fڵpؚ.=Z<4;s[[Bм|C } Wi"VmT:iMtKlinO#)P9b:?D }%w!8CGUmMof3.Fmo{T22- 6RVNdFѵxD>(֜@TOx+]5pYdGGatdUOZߛG|r6W[,^<7< Krj/v(z*3|!ى ڟ6lE>0q|#kSB65|{Lܝ縵fLl ho4KK*|+Pd˭+\řgEvH]FVi 6M}Rmn/|uO!W QtbBzKO{ƊGkZO q?XRg83GX48}[&>y-Pfiui֫2vp~KJ;B)UɵG S\bPD?sdds`e1.$/׃MQ5Lu( BHig9|OGim0Մt[  9苎{0ae%"Ӡm2*7]v4[͇KիvD%\CY4 ;I qa;uCF/nd\DYؐS~}6OoAlOgCA(ޡ M{ɿk$IH!+kLb\3;h;qdQʰl@t4^~YB<$\B<Zc}>1+ɰUMt"6BgSi_RAr. YAXr/?b`4Vl}`v+^pW~0[e5\V!5 F`ͣ⡻)z-eDŽ69?5_9Ř}G Ź, $ :\ZRN[gO>7 x_.B*/wKVJB&CU:N 7B1Dۖ`+=I#oK E|_A3u wF'v()bveٜ;оDF^I?2;i%Ɉl[ >P~ZOL5|N9Bp>E W(Y 2(- 3v\YN׶%\!^1?x/K]؄d0R$jԆ6-ľ0'?YRXW(Lvy׷i\ #IBi}e):܀6br-ZVȫv#ǀi!0Y]Ζ L1h3& \2iEi=cOMuX! ♻S R8n(W]>c Y]T&YP I5]K)CQ٩1uҞ "0_x]8."9]Ic>ye={cuT)O+l+ vZլDKد4B FǏC kU8`)G\$#3K<že0g_>g$S&V0.D_SQY?ŷ{fN~-8Q|[ LQ?4h£CcڟŇ6!@@PAyO/A_w!~VxVU,w6si6 lK zⶒ46ѥ# tֶ: ?Sq+vU3%oaǥ Ng-41@mk}?4 y]btUTv~FOpV1/<}ZpV,* &oGLscŨ-)t+ė'f{7#WYƀ嶄h?eY'7oV%oJgwq hW>@jPo?sfKSOa-3ZBwc] NmiY CfŪUd.0]jž{lp{6)"c۫q$LI'Fx:H|'漡Mfw( r5a,q TQ/(3 HmP x*I(oK pC]Ô);`*M@sȿxPᕳAڭ1^zam?0rrK}QV .[-싍@mDl nlG%\Wjq/wf0r>~ AqU^HmA̿ν&5x{&g&B)h!.hp"#po?uZ7%u%[ń̴Ĩq #{_O ,Ay[ԴrJ!q 4۞qɜf$Lj'[I).+@!?S~L4,m*b;ic#-j:Ǣ$g%3+8k׷m¢(FTPztg+U R3:j^?-MHS'0Vғ\Ǚn#N&H#x1ޓFn/T'{c>JϮlo;)aJz\AnSoo]2%#ؐ\K֘+U[uVTZDoYZAs8z1dugֈ^)`FpˈI %y*(<.Ay*tYT`(\8|bݧH;TFLf1Mޗjxh@ ^U]S=mxwDT_ͫ J&Js5i g^nI EXLj,4H[ Xv|l-*Li_|\k񰖖qo_gqBn{ǞBāEBAk1b#>e")6o^_cѺaUnyG"Ud\nTmGJެ$qe؋gef6&<G5u}}նS[QLYvrR@WlB9φorulU(4lgಯ}%,׌8Fbf.=U9ԈX.?ȳl+[ 6rvRiu\>sIh?bK+~"V I#e[YU2g{O O\+M 0BQ6Z!=f'ga_$?u7iVٛxuvܲسDpG}mT67 skrDTٜhXB*HhmkG\'!<&B y1L%o*K/HCyd vgi5t"TuCN~ePJu4!SI%C= +6 S2ifOqjfuM|xF"\t]*n {RNw4nHR*7ywӔ Bd,%`՞b8H;zeמƳr{QL3Vt NT,S'Yy zžn!g*~+e GW]ۤvGq '<챾]~|g`׆!S$St#H5 j6[o@Fq#Q***k8mW_hy*n(hΕq]x{;4\ =ah>8FKy/GDz.6(zJQb+v2St^ǮFO\B)3S]=ݶX>8I(CQO}~V8mf-f']$Œ#2+*ՉŬGsA( (9%GV=H"1qӂp/>ad ]+厯zŦxUwjy5~eXɶnTȡǪS ,FV#AU8r!䢅 1OV۴a! Cy M'c\x񌗫3,}=v9zx]2=s }"p"޾Ӽ ΄XL!-%a͉|ot Hrd2\bh^{z{dଋ'ε7wcʰl[>lj1XK@1,34B\[ek{F!FILM+>2{GΚ@&`aGI># -Knc~i.Sw ff U3W\!2H{8>&U-6%eX~t]9;pcnUUYƓUƛTnռĿV{j%ln-n#VG#gU벀?g&.~Y*4לx f|+khN̶S?ܦ! M*:pU̶}⠱| [\yȒloiJ6N$Ш%|hnҭծȦz:5I}cMU%SN%W^ ~"{'0>';wHR,>?FBܢJ76%Vx|7|.>12JJܮ%L8;YT\; qolLۼi[>Uvi0n'B}rW]Q FFoFfw ܱ5L31͹·̂W-l)Wے `'bO`gT\yX%{!?p[n"X4Iv҃K >j׾]ɮx2h$hY8[Ń0W?aK}W 徰v>O=P=0q-COtZ7nm$!P矋K`icȀGujr/e +$ goBc:F]N8?W5eG\*ȅP'ʅJz6md>!"FkOCUq:SлX TG{HjX0QuHn^tq>Ub#ZL Z P׏mIWu|%!{X$,I:V.x3g)18UӀue A?tB{k[o+k7lE4ɗN n@ץSrłN~{׀/36IC0/^Hc <ˉKpRăFe%h\`Z\{( k[z0-,BfA5aru\Ǒ8`g>ɽz#RDWQDrgmq2myi3rӴi66XRPCѷX%=8݁EYgɩtYCv1ҳ~O,L%$-b%^Cɞp=!cmX%k LS; ?nWw쬡0qљ؏|ヽQ`#ؽr+@?R((Z [o;-vlw[h x٬Ά6ޖ%Ρhn?tIÝfk_WXa ~NܣFiO6$<|Ϛ %'6l1ܘ.-5A!>o2(nGՔ A ]lz| 6O* xMU>=Do U<06m+-ؘ%3m[5+˱" *:@8IkT4 hOu/(]) bgv^&{|Kd.GQSb5r#kݧjMEˠlAxɰ2vOC"&WݑQDJ8 D7EںId}5{5 _Yds[$v%hz>X7D) p z]?L/7#(:]oHY`ޗv Y"~ K19{b2*'&֩kɴ>ѧ&3?7U2Ѧ_zVAVP^ FV\3,rM(wkJzA1^uO4]E%~Uzh&zح⏚J](G7eG;Ѥ5 Ջ!΂7Mڷv'4P8:lؽ!@k@9d0 آ2(lsI^>3 Fz>#7O4+K#;Pߌ b[u8+)&S_jɁ5Kʾ}%OCEYcyLrH| 'k2gy[qBּi`̭Zkm<=>+y*Pn:Yy1ԊLg2.zl [ 55BL'R3AH/;{X4Bl=}Ԃ1Vq/i7ouTQ!=ԒС|7&cs3=cGCjޅ(? xPn,{E÷wqp0]1Dz-4.m)a>8 ON1w`'|SV$ *i 1ʫj@ tQhX5(VϿ:2WBGq:ol9fY`޹ URi8ߒzy9#2"ՠkHjf5d2l lᔫq_Mk B Yfǀ!Du쟟ۊ!(xxR1Y7'S8bveF׽A8ٔۺ2P _nDbswqγg22@c&7zܨwߚcʸ 4N/Yw}hAn) L+ ]>M"IA9+O!7=XĿi՞8QQX?Di7+&%2L:l+0@YewyȟOablB杪g8ѝ*t=O<4<0#q)*t'=89RsJ_yIK 3v穯4H@.3AP^Mdfs5YY ;ގͨ?gc! 3Z*@6t,FpDA\!˻0MrEt/t._Ol߃/Hݫ#cޗx|56M|iMc3TKCF p'>{wZ~tllUP  &}gQ/N'ѯ & L4DD,>j~K(M%V 3!;-Ay La˺glqiV(^ "K^ËUAH=u[OWQNhfDOZf_ ZU}[bt/GGN1P>0ɟ9ea,'wjpt5`H%5j|EȘHDAwLP;%G ǝV7#^ BYx(EN hAV Q$ dTApBt,C~Z.nqVh}NYԪ~#ݖ(#[? ¥Xas~{)y:wjJaI$e:=* 5<]*;S$ʇMyڿlTbk.,؈Hc| ȣm\@Ϗف)070Ɲ}' o+@R-YO.b?]('|_CrEQ/N?T4/I[nR](dKwAh"#u+P?UC .B.uLBZ{ xh* V%10q|=oc;~E8~Oj4`XD>ijR'^Q $R}2Ά~:h&7ړ&~Kww&Iq@SsD0gl74nϬ3 zĭ^N#9R6ukZ c; x&3IaӱCL:qVS#%u3&jZw/9[ k Z$)ڂ |,vዞ/@e#-Ûobt<29A=u`qcİdϯ hqUf! (ɻC,O&h*Lщ }&)Uh<RxMR5bD'n 'LlAQZ l3|$CInX>[A1&Tܻ/`'lQ~\Vu1>8M[\2l G^@o9J.%p"|IqWqYoINİ}N"z^ә`e֡꘥NeԘ /~QD[@9rꅀP dX&BiZzU=v$HqWlYzh'r4s?U(q(Ya & 0F$1t>#!BG9sCcU^n)oC37r>j#:EÐ/^\E^ӫ7-`O7ڬHBW&jJaoƇdiumIq}a<̗*98$8q5W]e -x(uiy$LDMcBRN^*dBT$FqͲ5{,o^c|T4P@wEz<3{_|. ,7tۖY䯁8lv  <~S N(X@(׻qwsCsVdXy̗h!GeEn78ƫhx5 &f[c "iBo[Z:@} :o>mU'Yd*a5ds%bv)4O-%fwq:o {0wRO2 L|tQWN2Mנq#9xE($ϦB.v7$nl z|=v#,b=D\@sPep`,Pp9e9(+w 'jY;XXh#􎲡L~w'ױ•Ƣ~"]&$yOK }~CG49c8EfRgߨ)Y~ ^goFb?0"<]fA OSTS{MAg5hF,A*^:: 'd)U[ݴQ"qe>=A1s6J.+/3TT )a&)xHڋvZKLրH7x6Uȍ8$+#㜮c|#< 6+<(>0tz$JPB/6HbMu1at` \^g=S$ҕz擭 >}EǟP{m9b:gK +Ҹ|9{`^tZVqΥ/lQ$@:B:HI{kV P\^o /{`<|OEg}d\ Ubl!67nl_Ԛ.)(GD7L({rZ?o_=!N>vŋu Do$ck)zט&Σ#](߶s"Y֕U=q=p_HhӅL$h;#aQp.>.)F'f.`t6f}cmgϮix#imҘV>ܻLpMJQ԰ԅ u OO{4gɒt(Rt p"m;. ؅QM6[4W?<7Y*TS 6h>Lb{ֺ'_z`(%XDw8TZ^rSAwXHB'pQf.?"W QfKZ@>v #1rADPۚEVVΑ1B/vå\cN8^.a*828>ӊ A$t= &k)8p0vz.PCN4Hp<&j ^#s_n\e 2T[KsT^7dGɆ݆w'CYZFZmUL%xnGFWH.)wтD\M847ʆk`fzڄaտvU%X&7Bbro8b潚e>_sol漛0` gǩ)8Q%~ 7ϧ )|p*c: DxEc+:vuP evQ+bznRF=oВڜK8[)qp`:Ր XEvʑe2͝YF#5^E 8KS%ȃʫ1{tTus9UP KƙFE@L9њ|r2W6ouT+6[n29wEs)Çu6-3#7׈gmgVht~id#RW:m/nA C"0nb1+H[{TF]3eGpP["ofYz{ƛZDnėr˘ ÏH~ D;ñێ̉HE`uflAt7ۼqX &SyBJk_n`ާ,nk8A>W*Uͨڼgg|H("tp>24*ef #{;N~\ (UfMOC-K@ $ Hyo8,vWʐiHy8/R ׇͲm=[rDdL.8]PָHq_0t{/sݺf)Y6wÙlvo<\!+ ~A';dtݍ 3*0ˆr/$Sl.X8Q&^Dz-3SQhjb[y;[~agj{ ( l:,8M C)!lk!ԏ6y>oۜvyo_f&CCWPsb>`cmJOтxAmCH~OYn Gh G|,h]~E+ch%8Q#GYW ~[̫ȢiT# vX0F㦀!w3:[8PvF%n|gL9W6g{p{`Fsdϯ UyԨ(ɠ!ɲ74X:v2[X̧Ls!(>ScF&RO#5ԛ&'ܾY(/o#^?G#̕WC4G|u +e 4)ɚ;Zk>$mm2쮈R9GX!r0n н:w@恩 cώZձ ,}m~,by3AKD^6$e™Zwf-eu6<~Q`̀_^ח?V,`AaR}cݝgֳsjNüɄT hiSc]%6qHf0T̊nquIR(E 51/D=ZC4U5SWF}h76PC,wf\K7)Z Rڪ%=ZQP?ڹLat b?:+f,V ]Jd f¹-'qk5\&KlaˠK&<;~O#rPgtA2t/S»T_D|rfyK|)fL+-mnP]SKXqW˫[ T Li`,+"iBz|!d J[ pӕ4خ]y=Yũ姱AfE ƻgTY)"u /+pyt!uMT^2&G)!=wlu$zOλBGy= Nn\V3,9glffb6'#OH\I&`hd 2i)S5@D{j`Lכ{\ڝ+N#g6$e/_osb4yyp:=wP<~g9myv@^zȁ8rZdɨ_0^` 7ޝ$J_"k|'}+֚=`BIH'Fcw HZlVUͮF}Tޞ yo r ZdkG)C Ǽ=Ip`e} O(:8ŚxRޝ.#,37*[6BV/fopu|wú{Lno`‰3͵ހ :˽oKRؑ]a`=Gg(, bGb~ȉ%XWΕ&|_o9=dlNMw/!x*kQ(ʅ5}8qWYŗfFԁged҈+r[(oe?gRO4h-,tAS#_g&w4+f^ nE-="y3\Zhq -^=~kWD4w6SUgiH<$x6Q'ÇXVG„|_gug[mҺ+GN7g9W(hֺ|.Քo 7Gg==A Uހ0ͳSO. aϰȒc<ݤa8zB1S˾{8$crlZwMY:oj r&9t&BVu(Ъ~EWRoEb&W8:KƟy!frLR{%Eh⎐y?&pʴL&wI0gm|X p AB;a {,mф_ΌL?*8sbYm40f-Lcav 13?<h0dpE<ǃ Hx𓵶#r܎>0aeNJ*$Ô$~}B=#Gӫō%xQ hы9sTTx0z^c1QK*0iUmZcuGE[?OaR8e~qQ=jXs! 7;D[tؠ`'N 0y04Vx?JZ>l' Ly;/TaWnz!7#Įa1nr ߺ1˥Qx不Zc%ӛ+TlO~$v=4 !SZM+6fЛuM#JfnlPcic gt9}˖!ہgx=Й`-P r2Ehx3®Ο>p6RgaH~N~Hy}Ysz׌^µ$~ 0i+uD_̻=V?'V NX5+Kx:yjo۱8msƓo( qf# 8w /\73[AX8 a!,A"gB݀.9ap ~(Av56&zKn}Z.t|B6ȣ߮# GJӅ6[ I{a_Žӏ!\kݧ(њ ӡqT9:-H/箦9FYf䉁)̖Qx[=brj2]iQN[.ۂ9P,aJWE{Pp qeH _bŧ+,7\v>,sz\>3I˻ou# |а o2Ň׋aƉ#Z-/7|bLbܴl!d&5y^ޭ4_ʣy-EubTEmT-m`ooɔ{ɚjJ3 .Bw J]=(Fp'w@s7oźE55^. :6)J'eC)u!.xJ0geBǥr=Okޒ RDuK8JW2[ o{k{]' ~OV* ,,yVs-۴(- =LI}4A)H>ğGAWC?3B>A|*{c‹*o=i 1ֶuf:hZ C#N اaGf /utqp$%Tl@# =T^ŤIFCpz7# ?1j-vkj䆑̎Į^+J3¸;7{ Rl49IN[v6lj.?y1k)[b5o=m7RV5}>zPK$[t:s?%'1PNiZxlRFiHe&Q`!@Nzw fމEO 6;Ur!"<71VpK84p{G,ۻ # ۊ|"L6@i]Wd,@G.&/C1[gr~q߹ RmCO|,r1N>s7qʎN§Ds1J}s_-̛d=/3@nvg*Ծ$wwˁjY<9,E9A>B(:%,Wf4di8>8J7+27SgD\DIOTBnFuk/8nC\G3:Y̧cę8I )ڐ =jd6s؇ܸ^'_S" %s U;ª #\Sb"oh-d=X$SDŸhnF}@ؐ("4Ix}TMa2wv^ l3k~KC4I] :R1P}pmiZ*aU22}o%5 9ՇJbpdS3ǩz'gSh\MtHoa8gH`[p&ɶՐzH/œ~X=ܽ۲l/6Sۻ!̘)ֵ|UdߎZarğ9(>;JWW۟| Fbޓ}:P7O_o΍#O/j } oXkxKpiCC~^LD8k̐6یڽ&]FY:n[_vVf=h {eD{A&˔kzm#|@'GHWγiL^vTB_0&v(j8MeIֈJߟdMMԎ ;l3N`;O^dWٚf[n&ƷJԵ6ARt ;~GD8ϏM3G斐 c0DbAh^:"}0+R<R9-5=E>0?4h8j?bt1oPr{3sҀ~Yu88rEg3mDF+sqߐ^Cr?DD$} cX=E&}0h\"n̺^WI1!Yd eMFMh:tK{ebiɗjsM#(Z7*)ܳq ?~~ 1Tn㍖:7>"D %^n'Jo͢85:®~w|g53drܗQ4W>[CL|) 뉁wjC4ÿ'8CwxwzXYqϼ ֕5pmGo}"[ap2.xtlO݅ZS5 aI:C@]Or?PZ٪[/Y?v.|9QW3 Dg;"I)<#T !N43hz?~*GLgDw݀ƷhJ;.;$n^ݜ]ؔDV1Sy=4cbI$t;3)XPL)OО P/U? IojzXc}'d܍: | V+]} 4s뻛ar*d4E 'QyNs)"I8c&י,b]6[ջKUrڔ`6Xe^}dФ)eodГұN)%IH$oyO`93Ph3b AZ.KkTqu+7`gLEyА(1B+KC_@&E&5Tk.3ֳ~MS6f_J=M'aN"k@(d_ "7 64/ݕj1N'Wӊm)Y%mHfW!LW_g>mHWAĕ("&ˇSCQh&۟vu*!a d!!QpK[T5S،zlma2{ɊݝsņhoA_B8'aOk-X@Q$4{hɪilhg`@7FE Cw/oOՏ$(m4v릱-T;"MRhЊ Key@CYv%'_VymVay?Վu:'9P'N6 ܯ5ělMޘ3;6օliGE 0X.6y^HP#8|3GUJ ZVZâq* (IO'=%5_#Y+l cx߬= r$E\Mkl?Uu 3W@1(e5أo("!]JDCqʦ/hcQO)Pʏ80OS}.;dej˶{,chʹ_TP`͖G‰A)1dʼnČdg/7nr7n;az{}mgMH6x}h 4 2X\O4p\a]kP O˃ACtar}ZA㧯i:o8ܸY6@);>, F Df .uH~'B<֢* B; -.m gn]jB H1@h*C_hO ՐE^Q +]ZHoj_4y/M,h!ҕ#Ʈi8&94NKi/#B>̶ TL3 e$XnWA|yOmJwԪӕ='y+dgn\"gtv( N{eP)O]+U< ?;6p!,I {F=$s6cwdfB."!m4mXf֐# QǥW;E Z ف6 ߧdxhܺ"D _ikZo!O:p*֙Dv߮*:YDNq40>83‰7zH>IΉ+Mdj{9~lLAb 3np=Nuk}]x"'9G4"5'Wi~:`2R5QXt%Sv;zÓ<JZ*ylծ>d!WAY;&^"pbi-yTBwZ9A'ѣUKowcwr{ ҔڵMU{.ש`~7?-lTt0 xA Oʜɾ 8ՊwSHR JEȆhV&ވDN4L?bn$OLWkSv%T_@:dfa*30(٤vOG#v W\msXm5\)O+HWlzlƕy(_sq"XH_j4OӾ= ˴P}%X=wKSK_F)7ՍP@DȒM|;Kcl_ShiTq-ΥɎDX8q{3^-{X9+Oyq41%wOmAq3MaP*fT%V%rc/1֪0G(T2W|#k%ccLie+%D걤Ȃx :~V43b]aS~pu~2 /b;mt{!`mO6k5'YF w>x8v5Cx_ o.m~jh*n]hPW/3zwp2׻1*T&'L^gŽƌJ}6tn4t w?Sc2c Kxy-m|?z^j\$=~x{0bX.?3nH$qK}Jў.MׄԣjX"9!϶jjX3B05hbD,(j [N2Ř,ihcP55B~9;S.[ǡ'}-ǟ7;$6?#eN2*`¢alTs lq%^LȲI8*OGݗ _2z} A"m ]C1mJn_kUEJ\wUhF;NR[=ANߡ6#D86 .V/0idt߂qE(jA[}ӵ(6"lxi2=SR#MIuSѕ"h~,QAYKNAz]imþ-6UPcs/]}@^h)yNjA8%g,VKdM !Nm4dCаy>ψ3LT9 s7]uTlza*Յ~O \ igO{P~jcKZ H>Rbfpi128Q[&Q5UR~mw_Va,6ib𧀠9Q,Oc J)etNE}'Y[I&u8boo7ݙ5nFP/)ձxaΣK>GԑМ wNRƙ#4]]2R{Z{{O6$0|9Wv9^h9i<Βϣ-x,(/c)W#j%n6*?d8xqrlZ!E*連hoFĆt!uYA DoSO\cy5+KN!^ap؎>ZH9$AȤ:a:>x< 5(I9w><8v֌WO@=Xxں9ja2[1 ҖHav0'͎/X(H\[oW0ޑB/ƿyGux:{7YKrJvyjhpYT-Jl5 ) o(A'D#x|>Pwʐ+~qY`]ޱK9JJI"_ U?s󢃚0OBȓ8]Y ՘t"d4jJڋiF^ .+Ύ^j0;_;/7WoВ7lHuڤ[#¢}!&_y 4BFI]~u\N"ǖil"0s3@ ~6])sGO- <_q!#/IţeI ?Tڴ7)Rr "q" 2y,ԟ娉J(ur>p-òCGX1J9 gC*>(_|qsS)Bᚗ) ;\Gۊ!1"[l[&ؕk؀#OǓzDXH"dR*oʉbHD#12jQƫҫF p*=۩+fh~;L`:먱77רTjγes:߻6X9T;ͮh*1+מpy)O(,H2]`:Ba뵖[ [ԷB\bSXp^gk6 nTn[h2_ٱ=ԅeIgIDV~O>Fvs7;;̄8T-sB TK;f#Y'S9fZ>j, +?V$|2>MY[O򭥻Iž#_\ֿ߅ӕ'\vN{Ņ+9Q1MwꨳCY-‰]FUX$.ytirs_z[ pn4Qm)Rp<*ȓRTE vƗT'>'.`)LYk "yCFxreρ2~-h2%(@ 0pzbe?L*!;gW6.a,&~D~U8w"Υ)٬wM> 3#L~ogSq,zh~.^׺kWIFϦBixq݆Lѕ/b"ޥoĨ$nXJ?! MFe ajZޯJ@݉53; w49~HU"Ʌ&7b9{ow_=Z`\J}; 4n'XF8OPӴi t>1i LD]wp/|܌VUo!o[[uȲ]ӹԩ]VBDnʘ=V\)^ܗakEY3.{_v&b-1͜QW{L ~Qvc^81Ys>E#}92Gk,y2@vM1i<aJ=G. ]^좺 MuPGWЂㆈ`يc"Ȏ?o;Y$&݈x,]}<"F5ӸX^k=41PͲ ](+-IX⏱̀+er]fQEkeD9N_uBŅ \Bѿek\[@[5G &\ _ {a{ae}# XHJZB\_q)bIu f1 |q}kx2v=L5C/Y[Vq|XH V]^-M8弛\,=p';ENa}W4:ϥK{w71f#ofƮA E:QGOfX)4+ԗEQr\Kg +&V3WԈ-CV/ j-֥x, hbIpp+#p l~4KP5VKVG)wjZ%f P^'mJ YnZtY ⪪X~3^<"%`} j]d>!\lEcH &a^<^.Aw3]<{p7!bߚnR .S5:+uhz&/o6Zy\|8S!5Yi'W\P;0v"Ӈz{3hpz &EV 8+2y.xxcƝغLtuUo,:``F)_atek2#)Ke 9Na:D+s2UE)7tÊerYPIYiqN@ӰSj/\Ey^Y L7㲾JfQ`K\#39l~ }8RU 9W1r}ᏃbϜv&㉪K:}9pUDOx xrR @ݢ4yߨX;}`'{=׆FRjI6 J#pT@Ud91^8ŭ6(.W.//e9=oeԅ^`B t|LyMA?;IC3:v$' ObOs p,Qvu\`hVjOO#멽il!khԯ ݓ Ϻk7B6PjYR1KewdGsӔ `HH8!w# d+ICJ3Zc@-`TsCSjuBwDO)_jIc ԈZA*7@g9M?6rE`Os1_}_u35J3k;HUݯd9 5z%~|rCw6bgnstpʤD۹YCw4i[--/wDŽ:(p'> lF3(- }vm.+5{m=8ohϦ D\3U:N&>4N6! "V csڕ9#vw<&H=is6sMcdC }۩۝ Zj VXF,0>tj#nd/fl3CC :j3+b£&A1߿Gџ]ND!o _U"- SCN Bla\?t:lt%)G+Y4(V94FY$C- j{̿xDr<Lmw}'K!E)]fDӲ[mp|ӫ HW!qnT>@fGy,u(IN(IB?Hn! ?H%π?3?P>)HkgŅ༌aSw2xw4JR[hw" ֖]7˳3EW+GR EWR3̜R6WD\P\YNWc D)qnVKbhz ;F: S)fB حk3s5L^5]$OC8JCiqԝD\z%hEa34%d1'AZIPj(Ia, "F%ϝ3Dq%p}2?`ZMno]ClX72v[pM N&B"ۚ1w]H__6e&zqjA F"$.Frpv&g9Ϫxglgc\k?0`(Z#+ݓ!zv3{8K6o&}(EtrCwp-`__xT[.Q5YoӈuiL/S/=9] gO&WRb:8%a@Tz5M1ʁв R_z>SJܹ "Ӕ"$4<fqHr(R4 )5#|ci\QV[QkL:*I8TMx4XAR5d:%uŠo-FWSTotkjGZpυ)bv"ΦRI;.xdNռ+)B[i߳5s6pqk*GK:KlQ_tFW^VG eRVNM զr$|9qGn/oV9t4sS 4+1F!Vūr!IklLzbc5+*WM MFo>v B*O}T= Dj ڋUp;6@ Ԭ @HESXJ\<>C*ˁ3emq0a \`)?  E??=?h&DZ *y*l-X#2q5gkqgč*B-p1-+q`< ЁSwvKiT / }$Oա}ɍEmyK lP)F)k38SP]Evp YYu+ҬD^oΈ- F(K٧?^h̨yVz鯦-$,j*$+̺EawzŃ#)}b6jǔ. AW P$ 4$j"(F7^&r[QtQa =K~[M>txM̢W2RtH3. d*#$tBO#mDHB30Ƃ:>}|4?Q mx6Dpepe\ac^F_maq7y!}-l+ >c&ɋC!gPL桿lYd?c+;Z{~ʝYoY3ҡ#4n 5o&jFg1 6XO1#7jP^^m-&TvL^!XuXsZh4~Q+ko7G2K<ӹc[:bk y-W'"J{@u;5bbzոHÓ(vKZuk".%:8EC3"9x-(x}OgZX?QN8Erc#3-qed(ʎ֏]@V@}x&Tg1DV6kSEz~)Gm}̚>%n q8.b_p3ogw/WQAK2Qj$+ot⥇gm$BӐʹmlk6r _kPFkC˅~\jrԂR'ް3*\ P`dHթj M?Ru%^9#Č уjț0Bc;Qؿƒ\, F(fܟ=BeFY\Aq\Z`/e)nLPMRmVL!M0 e6l2?1K3?`4cCAhNقKf겼{!4S3$J]o}=w~]_K$OM`g(J?Ϳg-Kᚽ[=0غh+Yׇdi^X"p{RGc"ޠ3Hev=G?sܢ Yf>܉5w-N{M'ڵ o4ÖI0.jB^CTS]\فy ~Be=ѭ}O0$]3{IǕjyęo'8Yq,su)Yhdwu.%,*cRu1 =G,?gX>+gY6 W LBavyݡOMωEװ˶uUy}"=z604B; '+Yg;4Б.Gn5k/%<"tj>L5|k/9 -TdΜgm_jHH; #K,[r"TX13iL)x릃1X="f?irA5s jz^hM2n|i ;x"@6`~Aj`<  p]H%/U1 ӕ6'd'- ͜ŭ<,Ko+IFL(3?v$; +okϏk6:֭*iؐ (t儔q4͝˜bV>w:-ApL2}K/hKr_9iaEFgx 9~ϦB|0sR겜?'bg,L+qQVs{Ys[jU`- ~&)]b!NEݒ\C{TPH~-u5-P8h=/^E&UOz[E%{qn,% m|c< 323-'xAzg Vp7?=}̎m4l !U)b[MI|E,3.+9 [Y4d8 Suw.a->'^)w˘VHT&^k@X+͍,.)]W_2%CGy3TŜdzTEDb:@f>I}Iӂ9^E03x|X*7 BX0rP8I]H>ȔF)D-@BA /OoL'Wp"|#ꮖFOr:O,0D~$M1 륬0vyb'N)M:SpF_L}?6BZ5Ȭ+t۶2O*+' ݇Cy`+d&C&g1eغMj΄*t`|t6]N+-FK~9E@2i[O+H VG,1ODgn*\U꣗. KdW);ҙbPSsDVX'532rVՂpHK yBT[Kh* op=@NbKWݤ8yևkߘ7_RGinJL˾.^7z"h(1xG=<~luZ:ZED-1cov'KX\G8ntyo׉g=[VHN-竇E.b?9g.t@ v!@&'-e C]HB Aȫ=++?] ~ 9S/,7Eza"(mٳIe(yzeS~0S fSlfAtYp$df$NP>3VpŲ.4lI3=lTtt^$8DH扨$PܥA.H0+Q:[p*OimŤz:m 7(d$!F] &TؓKK O؉Ffn񁺰UkG|tޠh6V_88e"},c8  a~Bz+HcW'\Ϫ|;J /\J *YbAsFZ(hPHm|[8ʆn UEDveir-_Mm౨(CUn# NS2j]˲D^Jٓb%.YR|>sCUKQ|L1rq}]\\fV\hc4F*mbG5!fw}5l R S$jV[0gɘPz׉ 8+a=:fN:򝱯Ű[ϐԘ]}^.xcLG9P/Fǩjt|F?4,3͖ 1 j"ؗy+Ȫwy7Y8]Vܜ fQ˖b s/}*\Cx/)ڌ1Bw(+E /TYmւ4tꗠ콊\ɾpmT:$șiА a 71J`+Ua 0WǸ%%E h kh%rS.;kh(ͯyktK5N]F_J1lVj^Ћ&{ NF(]/Ÿ5I|k_M ۷3e pWL2` *6 Mԓ9Mh6ZmH*P %݇4P ;Մꅸ`?3>RH*',hr*P6)Fz;;^e~9ܛĶD}r߻PyՆT hpMth12{~oBd&7ÐSYrljTZ\zb |+'쾬l{btn0vRkΒi A03ZBaE~(q6o/\Pq:ˇ\] 's}?<'Eب6Ic42I劈ғ#̺:C 5{/УK2{)Z뽟Husu~|cTǤ9 SpS]4-`8QrvJ2\L( yV ~00 m{v݀,w Z`*RCIp{Ql;;w؊iH` j(i X2FIBX-i0%R);Bvº(SU7n3 nBa[OjEs+Wr2]e/D+CRɿ#" 35aK]dXI]hQ jrj>4!*N=!!%\!{Eyu[:G bsy`qDOn3{C~qm[Ӏ8rtQ+H_e[QX:WJ8nGk׬mo+nVcWkèn8@s;ph':o|5+64vњ_N}ӱli1}}a(-{Gq+:q<#mYZnjM A PRafiotSSW][ [`n4oIibZYECDb-t\W}P,sDV՜2@[=K[3G}uY?CR;U@G^TZ'UAJC9EkAarUIϥCw'c-K6'ĶIU"\vWEcO(:L&H1H7{W5%N(X6# aשPR8ϱ?M$-O⏄Y@q8$;QbqͲ-0pДй@$ȯwM %q^Xx%8zFkQ̸ssbA:MlmcPǍ˜!F AUk#Pw7 sNe=340AC I7Ă*3N}h`@2Wh*A=f,Æ)iHNDs% 7aEvE2 6P,ͲVy%[Qv9M wմ(XvK ֊AoTy%id^K?:6'$ڒʆ 6B\lD`PKu_3"j\wZ53^yiHXyijMmK|eU_1I|oʤh͐-I/dо( g9tzX|㞐5ӓ4adй#`;x+y>Jo\$+xSp>1$(984통/w')(pJBcibqfdǕ mumꏷM G*^S؛>?V+uN"#Ob~66==Նyu}!bh0RQ0I&g{RD\b1nir6X>zg~|z(Aċ(\̈sXծlVU޵̓ON}nf͹KU恶 R,/a% #yR/`"&r9 ?s%׸kW+7(]T .b?N]q̰'hѽсZu<Ɣ}k)2Hx'CwK4}аĽ9(eXl?H;UlK]fN6th#v)Obۑ?X>eZҨX,gW甖Qcez\6k'ulԦ8 KG V~iLx(HDN5K2YG֦|v`|5:GIBhho#2:}ǝ"b}cRo*"XFgr:C幠2H`f u:Yv,J {g_) ̷sP-1F9wB-)rޕ Qje;&0>R}JO':k-JJ\=X8gwx<;r^ˉ\-¢QSvY& ni̗%s镋m=ȽgR:5?h7jqIpOۆ#>'\~vJo$#JVZ>3P\<m`2 CV5HtMqOԻZ/=Kd>˟`(̗G:0f_ڕT6zp{7|ة~HM mY**xq`Gv,'Gh#6ɕ OJʂ/;v;HVfq سk~L /h"0`fN= ,̈́lP% κm_8LJǮEvI:ʵZ%b,?C䯈"84baQ~Y,fabxIul aێ2sR#.dsbW\bp__$zvQDiMzsl! LukRR~<#U{˯3J(3ʡQsι(p&L-RQ5!Wm5A)Cc"Z 7?ϝ^N΋ŀt` =/IQ\5R;>~Jɐ3 7)2y^]RxBOXC䮌LwܺrCP¬y|/yx3% Lj4v\rP-j􃐴BגzNg8p#.g&P'P8Lo#].7씸\ L/0DWg՟H?4N2r\pjb`|UgiznXBQ|7%o쥓\ &7)֏AS 23SPGqc T}G/n_FfwU~?*gƞzý{Q|,uCe]do]w/N]+Tҏu3Mٻ汤` 0ΉW47\C\*qfuفp2LBc %y7q Z64Zr2B%."DhnOi–1+?I=iFwWatH Jq90% ޺y*8UzmH|JϨF5g} 6@5N3@S Ii"$C5oFc|)*.Vq+-|^;u{wHtnyAp}96N32N^ [~%R<栾Xopϝլ*`90+4[=. &R̺Yn/+ G+%PH+YTTm˨a܁X_}7-oG:1^`s dAYAnޘ.gB#y "jSz .-Q` aM V=V{#- ZSm BrphoRNX|9˝TǼ)X#& jy77sdP0bu @?Q"6L Jd"J7J7r`Q\bE t JPv޽-?{>'`ԎHV XkB]W^I ꪯɃ(em:8*)53XKkn-o< 8MO>Eo] RK[Q b"+)ށ+LIo=!wV{L841?!9)i{VM{ѢgCЫw d9_LBj;lO6Gy?v"qsN-V7^9C۬CPz9ă+ u÷'Td hoFdl[z`]R"O{|3wHEI۩gN }Y:M}h H'!ф\ԁl#gw024\lF |&Ut$s8բTIbZɞ+xߥ3!GKBBSiOGeKUk>Y)]  )T1;ɓ]ltCUz;n®]Gh f7sCu5+T +7ax%O/NztRw;f]#Rىj ˒b=l:N nGnq- C#ޙ}ń+$b7յuʅ%S}"jXCx3B$RzTi.WKAy;8ܣ%# &"feb\p͂ZUa藚#kM%#Pu9q*a[~ ٹ=}=6Ʀa϶ YC\Ž6 `^QL2*w^nthJ`/bk D>jHw6?~FDN0$x<_٨nu %phWDJz~D^_js_dRqDaPt^Cr93pid';I„1+x6Gyޏ ^/I0gA s2R@:4! Z!a.͟5 B3:ŀ@sF)"<2(Rͯ/TЉZEcTˡ1ԟC\]ÀW :lMO [y?d[[kwNw e0hT6'}h|\XueX-3Dg^@!O׋qr f' \\X @2F{ζv!yzꚜd~pVIP5KasnuK1 K9a)MvLR |njMFzf#0?8x!B# & qd1ea_g୏0^P!pL;|*+,<:u[+ٮ7:E+j,vXЯ#i}&&`'BcA& 4{LC72 jqA&~Wou-kNXá Csn}G#fV3$t݃.;-E ˉX c 싩U+1PE5*?BD橣t ágTP;x?43פ[ak Ǘvaǯ ȇ6 Vd! L>-m⢱Rn4ZN~_'*d1\؁o36RE-KOYTAJhMMA Я+vZ*q q]oV$,! 0S ؇(y]$Ys8s:w0B&afBe`>E<"(?ɓ&TlDzCŀma#XHheCɏYJ7wءBܐK7QrYZK|y1md9Z6~+ %q\Y]='gaӛJ0*WzG]\G]cLkI.F%W#+Df QY yewXDxIBwyU]/W'#ׄY",spO#\: B[ϨmݹGϠ68̌v )Z`hb[lWRuuv p@Epۆe_@$@γ&߯ue*դltgZ)Oy$v!\u!)d q׵ w9^M 왌(κN[[Upwf CuAi?!+{ vp0Q,F}(ٰ,=V Jfc:Ps43ι+Wtw)&U}r/HEAlc{e{Ju5 <;) * c'D[YQY*|t!x߮ME7 0L3ܣCL"D3`2-4[dEMP؈Y2P@%T=&"@b*"׽I.ͪ.Ȕ%\}ef-?F8*z, X&HBZVv_nSb(\ۿyWGLI {V;oF28x7 AU9B]K5iM|b0&4U$hN ~ԁ-(acZ˲7L+Ug1L`R-ݪڕkGe"e]Mų>2Ze2ll@fD:%u49°!j *a\D1fչG-3>[C̣1^Ԑvou)}'uLJ?7c.S>0 ( 42H]FaϒR E5oa:q( m7 us3JM*y=tD(v0tƑ<`zZnZp>Ft]0!(T9Х|7J VnT;ca in$YͲ{?j*βܰ1"7-S@1 UЪ(pB  _*/ )3>0з%?.&f˂ tH].KfyW:~^NG83HObZ Cx^zZe"ZcT髗{zi.RF4^! A`v;!ɼ %`nOm~An]VĄ2[.6i{>blEY<ݿ{x{$%XN=&g cuz"7jn̗I? fajĄΝ:qe2]WtZ}/* >SKs$_Ku :,yqD[ | ģ.ޫ6XVyufismG;kŽﶫE(EqfŸ"TjU+ [R&|[ 鬠f95* ":$JW'ڷ/=?/9n6pr3\댒]zd~,g'CkhWOO{}+8mv':rkQ eW؍`1֔e 3dFԙl._գN=>QXjbP ߼FuJ@v8pr g }z0w%޸ snRoe{#r㝾"Rρs֚+yYְFK?#>Id"Tgr%|vD=B 'ЮK HvIڔ,7\l:nˏ*LOgJ\47v}a,X-2]lԅLWz]WEY hSeU Y 黍krj;>#{;gb@@Qqt':0fB䗋Jb6VCy+wXL~oZ{VYx uD 10>p՚~sUSy0Lv4g-ɸCDNwZ~`uJ0:A۰C1' &V1e0(LN/FD^&[g(%s=((RɁR{ċ9tvw~y]кm%킖(}Qk R0O e|LS#`lVvHo!Ec(rl}ęIvw!uFPf#>xG(^AV"DP}d2Rg3Â?wfZ4mSK1˜\^0Az'aU#uLGYKđDå"Bx_+:1Txha*lX?c|zob+&'I_=ͱ_h>?S*DΖG`OJsNFvJ19N4iۢv Wnf_W^.Rl)2"> 2B`{a^Y9f,b-JHyk+äaoI5Q N@g6M_)5C85{eu=aM Pweo |%,~\Po|atsZ=P_nJWn 6 ;)}C[ |,1<'z v G":)GFp;+IMb{8Sfjcf$3l/Lڜ ǧ;ĩMLUh(< Jj\J꿕t_Dc՚ǯ1oݓ"As$%{FuO>@VZ Za.*lcU:B{tk~tK%pHs6@|5v[Cz?6_,-1:lZ>ZUFAҬ ,P\Tb GZCyh !:Ko@JBl-5Cy?bt"@w(;b9+8]?B^YߒÖĵϿ|R@(A8^o~/ɯG;/͗5J6Ulxƹa,damsݲ7pJAo o 0O7:Vp0sD/p70!W}Н|ݸ Vfi"KxjZf7ĉ`1`qlcu>ĜoO"~B/ QpG:1掠Ӛ8΋ɒnw9ZsTl&Q|>֧ލM%hai۲C>cKh-O$g_$J ]]su$.8$P͍>4f. ̊Y4TR$,wsni;0Za7X;g8z9<ؤxMy*o= 9'^/:bo5F@qeq;w2KI].̖);}pɢ4G8)v,=zU5Ы-ҡa^+$RxE_)]}g ʱm <K_ǿ1Õ# nɌn ;,\lJڶPRIZj!/5jJyUpa\}=$R2Ґ"QM,.1t3 cKc'1Vܮi"H3$>M_(t '%g_HEn"8dyoBsXEE:!pˆ*#G,[ UVo^!o3DЍ;~r E]a@vl D9nd!:0{> T"' uG+U~c{eP8sS@3hi=?Aʊ(;^`^N ܧ0}˾E~FW%J .p4u ҢX6nY$x~iU5<e\*~ %@v-dЍN&z3i'>xl1]}zV$!|ydL ׺˽C`gWoS" Q%cL 2[?l?Y(Rf3bA<O狑@rw"ԠoȊoOdKH=tR%O$q_ BZ-~Ɩ7(Ls\%\6ylgnz{%7]7ٖD`iXag !!*+R2/dZbzwoI f%/W(a"nll_N:bQ!L>X$7&ƁxǵU}zU󋴠$@mtծ:lDL~{f4,:ڑP̵."q{Mg|ЛlTC >~}D{z0C.3UnQ:D;i:[Ơ"Vʞg9/ Bc|PB=J͕TES"d1B5;΢!K$6)Zr٩%FL,XǕF4=6z%8XͶ,fN;$3ks2ՠ˧Zo9>J-N=T,H 1;&a Ε{Iy RzbvÎ(kr4y8k_63sALwCQ :Ԩk2qI.s&(YKzx*3;t@7ԈO^ѯ, LۢtJVwX(6Q@ 6Y|NG&v]B3<.yp+ 9U;|fڞK]7En0̯|]\ߓ/c YH#\X<k̻hk'wt TnVR$@F׭ViߓJ48p1O5Yq@q.Sfyֵ%D_)={ŔWv%^~fNoY萂*ӡ*H"6̚fBhr}<&xXODNo0 sC+QVT>YUHnuw80kj>Jѓ[6)~dK8E-WVKaN q#f*RuFp+i&xtNԋ0g|Ǹ۠r^iyTQErBX+-|M: OϪ~en{ʮ0xsx1Oh-1I$3o *j?gUi9Wƛ;ыV*c2@OZ WeGUcZWp!"6b W=nu/E0CB$@m];bEʰh#Ğ˳|jQ'XLjbS@\px׋s~ՁlԪx>r _Db`|ˬQ_Dm>h7(i˺ZDJSpZ0O138@+qhўkS6IZq1/gH^/kNbɇV0FO+3꙯/k TB+.&wX_^tt](qIJ-8R`LS 䱭b07& p/h|H k (5 #L~sӚ g:%p(Q%t*\]=q,H:ʫ^t9-aIwf[xJ9{K!w2F:1:[0ɚC@p6_RJR6Rr}ǀY/amxTpHXq~\Q6tfJ<}`گ~M úvϢczp{9Q|bbPO!5Dvf"y-XZ=`ǽfCcAUX|Z Нc,V۳T0` &56+JRnds$6V@GUDރ(oJRn.%ȩ uK.h`oYZL򻞈wXP@x<6M*r@S#"]-ʮ"'K@<0"ށRΓ œoE{ç]\B 8O9c\g0Ulf $ǝs<ׯ@t bbdrܘB,35yBBPhV7VX1{, mND.y;O 95dkXvO$`1;>iuwXd437*D06im2C1~|'8Ms(Ґ fe!.bi11 DSjNρ N9ΈR#ŒFݷ^, &SSj8Khv~pB7JU'65ы=r;B_mH_K 0QүulޏzX' K4|? 1vAVwϿ@I;DzB&T]B Gv3zhUg3ʪV>;hCg?sn:$dD.}*3"$81棛24OەQmդ79S6  "ey??XfD_&d NJݛcʪmIJ'%Nx~^\#_֭ ovI&=?-l-0oS Ri"<,Bkw$xBL 5)_>My.ڬ̼Lң(;KJd"&h=š9M@)cBGQdB[}=k`gˁ4vC s_Q:$_%1^cJP}٭r=̏o(#JK1IpBR=xj^нyO.r zS;/1"hjG1;"6~Ovq ,˾h>LyhTmGqĬ@q 'nCO &jlnDP}0bu8AHT;[-`, GƞlA?: j3hhگo+-' '@oy->$1rA< H<4T7We&ʹ^dۆv꿵C`fyV?@|LFGU( V.3^ΐ &2mRX$_nfƠmd֣ .\U`$GUal KY0Ij&Rq WyG!g1I#L'_/ZOBznLFߘ;+eL ZYdG.kb@@8/\#PY#<:g.BΛ ^C5 ^x`5 P$ ٹG Ds]rۉϯb<('N󹍻.JO~_~Z3_#VSN2Νx1c@[T,}w^ #rj(EHbCӅtbfc|joK8 7g PtcVEHx?{b8"܆wצAW®:>\sxT[\ /yM~\T+QjCdARf^o`1`# SQ0I5|nhCwJ%YYmTh0K!׽Ax 00` `|^ކo~r&U+(=[lk=q1գSE|/`B-oL`FW9Man0ⷭocz'عӕW: q=z@Ro**7Ҿ|'mSβ.֩9ɠFV*n؊Cav'·u,=v›>!I +ҪZ}R KxR(K'h!W?L 9QY֦xZQBϼ"u3o.h\Ӹvpx,P? P`<*d+VbЬ%hhZvlݪLeʨg%7& ߖQD}g[c[M^Yn OG^/k:$&.U(%]%WQ@Uwك`|S΄i=mPGlURŭ(VRY\֟)j_yI`4U:A|!^'tY Q 51W$Fԥ]NEb)IwnN|mHv4*S zhh@!Lv_Dej)~'5Q1mD.j JXlQ1MS_a4=g_\h]oB/ƅ*h7b%;;bںɏ/dR*Z8Ze E 8ԯV[~\.$mwW"U]ྩ]U iN';z2, lB6$R8D4ykٳiWix>f.e 2ހ )1p@XwS'&ݚH@|e :_1wt*QCHO Y79mJ"-`ʋ4esl(V0Q_ "iNp)؂$x;2u/'U` 5`Ż\LRMo8 ^f76깩43LŽtP\%L{(+ i(`s#p[dp|qu z.(co`+J=1r^\ \HрL){ϴV/@Xa3@m  (}JWe,j'Eػ\w1]~@9uAvju=2%"Cv@PȈp..EpPBs69Gx/$]MD\sCP;Uj 8VB! `CdnP~d#`v꤬|wtUok>OyF\1,+Y^UnX]~{R?C:}ebv~a]d.!]ZYyZP7\lik `-L{To 2)P܊ 4slNA!Pr̓H+cfjpktfNΐ*'AɠX=RJ%;jƔH_a?<^cc6U= zzaXorMt|84kT*MF_"ojFم>/;ID}[\IubsZAJٶMZF[@\! b<`XJ):8x-XӢͭPr>x,D:d2j"CU;WJ i 1?uܜDڝ@2)Wg)&hhF |tsƟm,F`Ƈ!ݦl{]bKWI"nɶ);\Q(|Mf6V5;G$mъ$C68SuX@a;ZgyYJx^^ &QifA4WH#- -~8R a~!~ $t'wӒZ')%z6P "2K.k,AD'mGp&kTO˧x8'E 4`wY͟Lw-z$ki?խx: y[ǕL+ Yj(6PK6bH:{2."r-cV.ȋt.:3V7aC-E0y>S!ݷ?֧ugk Րb eG,06)ZecU>cR@w=mhQeAr+5~pJy-_RU)}h˻Kf1_Y%b}0}Q:uqiSwʋ*LI@Skf^=v[)r7 EZ6]jCJ76r.tv<+~~6F[d,481ڮqkSZ&y ?اvr6*o! /c>)̥ z* ցGeL.Id{ϭ1Tg }}|'h G+ mf¡8ֈqr Jgჲc530)EQQG7 >V;V1g1XE_HFK7:QA]ւ3a4"Yz',H I%20+|kKWZG5\˟A8ϧ'">@{o NR Q1M61-ب$reߒ?m棔U&`S/$fDW m#+ywBu+&SI9lmЂ,Lh־%]va&:d[KL;1l?!y;L!Z6woL P8It@]yN,ƖR#q,cd}YA,HGSAB] I5ɂO2 Kd]le:r^+ &V0>lňȌZ熘*;+%W}:)ldH4SV[B酵 6ؖ4+{DBÃZkX'ᇹa<1ŷf)Nnc!u:fr]jQ˔&afm'N۶>_^ά@ºICcz4H_Rc9ðA'VCź'DwB]Pt|̆ kUmuCo*AJ})LgŦSs)⃻re5x0 {gZ9#^M8kO*0."r5 G5WR@<: +H^}L> f[_hoČ85:_) ޅ Ç2jXS.m'Je(!>塦%.}FTz(kR""ag Ya_9%!HEJ6aw+`H4d0=ȟz(a12Nţv CtрKS H:`AMoG\8,`גOϩB7Et SiXLDSU e?aD^jE%w3x )I=]NSUNȫ:F[~|Wtq1jjC$ ̲ħȏZT, *MDg|+vmwɦ)nE M9 e?gmi @x]ԃаEF(h|.'ن[' Y6W0{F0{=jZN11nhRtOu3d桄=Bs0ǯcWtl*R/t`_bX& B;yMΰ\Xy"ݚup9!_6|[׏`ER.zYNj[ݮۜ Gqs^,nZNRMFR;w-b+8a7#:rMmLmMOwky;a..^:x֮k#|I#c5u#ŵX(%Tv.mKx t CYt p0 9c6B׿/J0YVХxN!"E8{hݑXF3r3^ 5U| >`QH++RuAj _U2BMfFÁ>VAvp&۵OS3F^iק3PD}aPÐqH`=,^%u*#&"WPYH8ꐹ7DI`iTe6c*xK{W,af~N-ؚ1@iAخ@Z6=w֐SƇeESǝ[G$%:ˬY%8}rO$iXʷjpKJuIu2"ONM]tʏB;x3֎ժz@V5ĝ?bKMș4̽JxG>hs%3fn&J_<[}7ikX )>i)Ÿ a'g#ͨ@0t<<4T*C`;H|^1f΍7zM T\\RuzBRX<qtJ3A@BgD|icaj>EWا5DoyI1:;" H {b%m7|\N#8ڿ5|=q o!}ڑ:8/U2AKqϣk#'QE ƶ 2N-csɐD߀Z`&8p*ҳ.Q 4~,\QFiNuK>E$=+4us`s0<5~cM=JfP0.7(9X"NL]^ zX+(1P ]̀z ?EqhbQ9˱o>]ӻ eׯ2F>7?@Վ2!69n!5/# R ϱoҗ:V_LSbKa]E"r|JCBN45b 4U2Z-Dy4ts㻙^:YoTZu3g&hFi }U,_#'vc"hg?8{GWzjg^gaJk}!S`LW0 2h Gڭ ;7",?YXgr#*$Ѯ jFS9.-@F.aĆdp*&q÷\K+U dIOS s@mIyiT $V8K}ئ+G]78EcϪ♯݆,tѴ}DZ"fhV.a.|d*D&bѥxLYnOE1#A:.mAa9!"r:k6aEUڏ`j_KF}5b/*%cj&_*"i`(]x*NÁ tvA]'LE"l0:b,MN5:,z;Ұ`l@rug@>^]ֳȥn*/]ӳkY+f qܛܱxպr?V A{QeZ!g]>Tgb呕gQX|݊,Lvy/pKuwp[<2+%(%J/:r_LId.;D.[)kV>գӜJ!ڛkH^dÄm0eBcvdfU"yVOXc nfY}C{t Kxgdyqvz]fC&yDlWiIWr6mWF3<#_:] ium`.u8_r8\/Q6mgBd whſYrѸvihtmJ[NLe Fo4 2{1kApaw@7=9_ǝ]G՘h螵&iAE}s-L go oȠz}`S94'O$ r9OJsN- Z>ih5+ưmQ?2+o뇟e9^_ǔ&@ T[Wl$9RI{?~ƀM`"FHbjgp{T9sW ]C%v{@M x|-V˔C//ӿGM )rqCW~Lp a6mRt^L؇ne֨N[D?t(*?E/ǼZȜk>|lU_6OH/ȗ9Ij5\ʬ)q}5~R scewKay0&<J9UYv'??iQSC9W? FT(sb A 'y-.BO8\D R,5pj|p>#{R^Hy:R uyi;7GR1J _gwgxωVh!K8煮ĭ)'7j3_ÃJO0Cjs*7P+y>BEۇq3擮^m[1 J!E@b(*2 DZޘgzjS]uLhm̊F%Lnr+؞EO`$ggTt!q|Ⱦ6u$v7 gfz6a֕Oڇ1sÓ",.p_3 Y_n6`ڰ0wvʀvWg([>})gܥ0:R6X)BGI>F-f oy ZK;ut\. lҏ ?LߺT݃DBz Lg:шa95ѐ_4yoBUC%EiNƁkrS8+osFL,ᩩkI⹵HC9Mg`r剦ƧRRLC/mO_ț,՗yt/ ] q|tܴjYKu[1i:k_yLŽ9'׍{=aj>LVj`]_DÕF7+"$WZh8c E0 @thL!PP"_[8vA.jyD>W~dÄ_ 󊌘I9 M-d#/dUރ7e4uf-557x?,ʜ6GTm9^"t.8oDimտ6Ũ2TIl.Ȟ#nI/, 2{a2CS>#stVnu4\*Hۆ>ݣGTD;iK7@MSgPUg SV7ߔl4|nk]dM#+TQ $BÙK>N[kh-F/xFn~$[ĔV$Uy*='j'{ 񃢴РwWw*o#P_^埇叔𮙦K4⇐$@ nr |:E'0` 'l=׉H)ŚwgF?]C.$p0*WT/Ҳ1Ύ`8Wx Y4F<65g?XTCT mZzϵ ٯUƺ}dZzP7D&W?ǝ\0eaӒ94s1] q!Y>["Ͱ|GN+!~c dEJ1񂣀$1ѥXgBCl\~m[Z (dwU:ȗe-O2rNߓݦ|_iw..Q8ܬrg/Ħaw} =ܯP(!Aۗ>#D8f5'SX(;elj?C1@JPT ln.+|gkR}e5/ "b6 0#(+u ^Hq yxf;FZ&Sn`>*H|P^[HҗzP4p0B(]we-UC"jzhO,v026/NL:=u<Ҭ: +Oep"OL"9m }9Ƌ>++Ӧ7ΜQ FYW_Q+ѪP/U!ۃ>x?E#z @sþ;vI0"&#sqN -)Yp^334FpLя~v9i|ӈ_G_jȯAN&,e$ޏD kcP  #@cFcR[H# f{QV}Ѹc]MUgЗȞn4V_vYy6wz62-CTXcE)Xp<6P >7穙nXb  4Fb]VSr" A{Q!kN[S[ Z& V_ǟh)+UX0x g5x13'~R1{.OZf`mtvk ov%;c9NX s<6ra8G_ "hb$&o IQſyJz{^܀"U!PŢ۴54n(Uj=&_]fMO_(zJӕ_T8Z#")ngP~ϒmJ:SW~ .Nu}Zq ՗Ս>Dypq#~ f6&_Y.F+"90Z,p Z:pGwfeeD N)(9 rw<`|^_omvkU&`XY]YqY@i^ߕχi̊ǚfO^hU48>_1^B(O ,ٷ%S*X&f24d9! Ɨ 6r'k,?kH&֡ ;( ,ԾGW!!0>,B˹ȏRQ 6,LN]d2@m x [Uwn9\t{h45-oVlm$x(PT{Q'Bi\Aes|\ ?(, SgL5?NnK\'pT6w޿9n`Tdc3`Ȧ>P qzG 9Wk Nl4+w8Af"w< +76 OŘ5̝Z:c#B-jCjHs)_A_a:ߞvPxQ^QIci]]N,9AuIYl>̾* ceqػ 9^Yÿ\V*aD%+p6] = H?{Z0M>mxp _^m%s/L͟.wTHhDbO"w3AT)bN`jl2{Ƞ3Lw:g|w[bny;\:%EkStJZz{O0C3/Q}fRr2'{vlo쎵%~@NH7b3jc ZF/[$[u) 0o+|<VY9<4FI)T2ySR];bFǠڿtkm_/y =pPQUi'ViyN豑p jCi5BHXۀ4&h B/<}[Q3G@ R-;gnýTsaT-\Td ~gWc3oǃjE,(%X ҄^CC%l9ڿb5=a'Pl\`&Uv:hQ0̴K"((5qn0 ̫Ch u>5mhĮ3T~&42fUTu{mR){[=.^PXrCnOpdC9vEDS&g5XwA]ny5Z(w '> 4jHcn?͇_2ܐ `n4{/eE0m>9g6 .1{|F/`.@#|fQSvvPY@zQwMa'ȑgWR(,S G8 N uv<k12Y]^s:FK3MM8Y6p A6pЊ܊#,zFq a#2g{.R]ݷ!0~QBSLƾ<*I]{;Td>G` 4Tl SX0jA(/:$z+u)ފ ibtuv %9`L-r2@5Yz"<_ZLHu7tH;-juǹ.P7$<񫟲_Xp>=cu?Fs]cPL#JJw D1Qq:³>Q ށ]M= +8NȻ@CL0b9#/o{@ga[GJf/6L]XA8̺7y0rC7|O+)oџ>Vp6τzxG%ab!8 @#`-n;"=Oȕd h A<[fw<"BmxEb59{ch+O{u=a1[ED ,Mf87_!(aWvUnyvnl XAFum9_iWhLΣҖb@ˮك5t˜n x`dxv#pQ>uâ!^!͘!%ط-4]Yc`(A@gG|^Jy~r^J3sB!қ@)}=7zJFP+=1y& nehw7A@(ZM\!Z8 _p*͏cن \VyX?cUehCt 8wf<]aT/gx~܂2ra%VEOdL3 dYh`'atΝ1: ַhy1w4vۭk]bC%m1FrW]Ji(@0-A::M| ӕ&+8w.CpUPvK v 9˫٥9өy>9A+Boߚo{ßAs3pGܳo N7GyZ vJjD=SBF䦾mp` J뚻3^lˏ(ŀ^׾F.oeF4Wum*d$3Z힌9c@iRΐu jBҏ!_? SJs^L¾湪Shbף0',ꦍ)U?-| +U#H7=[0livP Hjt|A$mjvLvcouTaw9T7G.M,OlsWͭ|g?GQ KA6rVȤkwj̣R ]|d:CUNtǟQg´Au=h]@dR$t6M_@MJ.EH 'PJ_ G֐R(J >LWPl-v3c8 cme [m2LV= Kl2`&ceٷ,Mz|SG-RC6)eCtq6t ~#jnJ$ŵ;(eyeҗ$Ã@_>(`Hf>NT{r"c;äzqFlVJF '~oڿܗ3?AhdJLvFO$f<<%ϓU|yu!ŭ|Bp?Xi.YdKEO&KXȟNǓsQ!əg8V^BE$S3T@އ ޺k {lk!K.B.$SS=U)OY ו1WIo@Ppń1f~sa; @*Thކ4oPnWщ6!qAWvo0v|`.zԻ el(#K;LXgyNa|n>B((?јb> =QG"2 j؃b0+]nϐ>0 ȶWA4cfoiM.SD'*>޶ 5Ezxb]]#*HZ{(*~1rLPYrʡL(>)'%]WgI15 `.Nޱ~|;ka1 ^\ɕ/HՋs"Q_vn4yVk8.BW.oHFB1 ѧK\0{'}nXc`+։í 1 DRJY[h+^00 N5K?2*b{MD,!ޓZ %̃dZI\ +oD*Kp, 1:H"2)HM"{|q0>QE!i`10|Q\C)/cp_ypm5>.S+CJ$(i{l07%Eg荾Z|A+ۀ)^dyݯhyw{ ,뱾y /\4# h|i@ N5 _*-ŷ ;ym=VxфbΐV bPN65 & eoK&q#0=@EF8ɾBf>Mh(7J=k4u h(t6n`v< =ҩ"vJ\ ﹧Aز1eH8+r`ި HL1zD{Oo:_m[G6%NMhyes6ʈ'jGO G! # $*0Si( C2G.KF:2!yE ZzAdf)IQe_dpO_B#/+wF&ovjGm~]IZ!4cKX.3Bw;D&ﴪ +Ǥ4ÎZb8 wP^c U@5/{"Z7F҂SZ(N܂Vlz4VR˯mVRSNS&~̗#eҔ*5Pe,Q]Q,cW}$Uo r d쳂.-.xq#<ƴDNY'feD1Õ7sK]epOIS0d<J=) YT#zZ(n>i*㒇7f"Y^kR7Fi(Vs(02{45ZLρ]H"ewRG߀#uyU"c-ᜡ>pT9Jl@?Kr;َں5ܞpeH a4pQD"kVBcZhgTUq?¹x_/Άa$fyODJ餹=^+C0x+ 55p 0}5c8LǗ͸+ҍȔ֋-l[<H]*T"P s w2~HYmVhud ¯߮[%Rۅ/0{nCTƈ]"_rScZFeq̻!= !}&WS/0H.9 )p%nL(LO+'P^C>G&­idwv<._fF!nJ҄<C#NW: gTT$:ȧbwJ1#&\y_8#+2Tc ,cnt1\mwv$|B7[ͿBsi^5AN?-`MQz%\(OŰ~jKY#L[҈n54Vt'Xt5@{5%*q,ٶ)EOC @FhZߵκKvy;@ @OJS`;t{s8eӞ}thJF;H"(.ʱa/IR.x$`rJLHm'0=U)+nELcV"aN`Ew[> Ń#zX%+Bۿn^9dרT n֝|)^O:į&Q31?/θ<_,e:8:}fۂ;{+NͫBCz]Qd6.Aĺ vQ}te+/iӆ VoX,}&%;g-e_/D%a$ ]30 >r 1$Fl ):s[<[uw*?҄< ' 2<ՌS1x{ru5Qo0#`I"69`V7][Vivc#7occXh) #u|ҍ(mNWGra}rGvgd)@0*(}+ "(X/ LjIYֵ>ZkKGq&KrUKY1g)l2֊WSv 21 _\$\jKw8/ <'Gn'{m^kid86Ӳxܱ)s8ـLYSr 6P1||`{ ;DҖtC8>Wi  @B8Kz$/) M#JWAr  gםO;J?mQ|C&pɞ@u>g-f'^Ɖf &y{;(jkyfַ>'X#fU)IiGPհ]k谢'jGUᚚx{ëfBM@FFK;9/I즔f=9in"TR_J(m*KvwI|y-`+;q"@Id:keag*M"gNDr`{1VTwh-{?1t~ n|ːw>vZ#54X֬jt1oKsp oJHq~;!oyToݓ8h?HPGOw;q)9XcucHkh9Y ,}mr,]/Snrw^0dʮ1+6ah#A 3 `1h޹ay,ϼbY4O eA9Nx3ش덳δul/U>+Lϝud{-«|bJHT5Qu̟ z¯M ' ~UQPQBWu Ud`1ٳGe|g=Z Vj4Œ1yyPܢZƳl+ӖN! bym/[랤pmƻSh1K.'zW Ú }1h8`T4~)_;jVCS+ˆg8/ q]뿀EM4|^9n(gpKH@ׄB^'%Z ؕ,uM򇷃rd)wfG\T@C 7zs[aDΔܹwb̗ٜPrV + &aeSYbb5kEE&}&%9g>LGupGmjAݤ:Sc@e2)ʩfT+I!ծ*P6>:!Aɇd} Jy_fSh"w(`iGh3+i%`(t2uY `p%%U^ƵBXP(r R(:Am9@~œDL񤩂9}:I}҂3nR{l,ˌxb̋t̓tJйubCɺX$c*/X߽D,* 7țÁkAP-\i<(By:QA"*pa:o^Z{3xSFL9z|,0Ff :3s\g:vݎ1 Oj΃@GVnX1cƻrR6 xfh4aKc4׆`jԿgʽ/ax.]VrP$K[Oa[Wb~c9`{2*}jLa(tD[rW~9X N<|ocY3 U\(m{Y( [Fb{>mQ+]& W'jeXuh( ((s[7%M] "[91<ҽh/)D2 l&E5)blXqy4B\Cb=̺X!̥)c*`0Tty1'C&?F?9V:AMNeޏ6=rpQfU?ѫo =4$'9(A't~+7(72,W)oP4P9tj VXc@/-*Bk wr4ⶳ%]ך(nQW o~E" r[d2@˔,am$sD>\%Р9`GqG- `*p!=Im 2:S$C?&ObN.H+/8) N&Ëσ2 jNm4u q @N\D;"IfdآjwdUux '©vbdn>I*4Hҵ J1K6Ŷ=d Vb-5YR@j7H|8Q5񌟒 rz!6?B:yL otAQq6 Wnsl $]3MqJWm(gq^=6&i'!mH 0F%vz&@A&qM9?)|*x!Z7%{~ځm8]8[iE2x.I;=%҃Fu3ĖT  ou &Ga]W /#zdN%Dc2ؚO6AŤ .tz2M``O=dZ:U==nR9G|G65 '؜c|@rw4$Jchd}A^"|YdUNeH+d3"`[KP&lhE φ%*Hњ {ܡRRA^重7qv|Gr;P+N/ɭkV95E0.osDEDw)>N&Qhܓy"rێ4: bxStF#"=nkȁ H(,E?;]K \*?MpWwwX}Ӌr7a|c>|qyF]O^[D?ű mou EYr*zk3{]_=RPU,P 4o+f]0iMIDuerGͭ\Xe3bC/vB'bJP%ҋMpFG /s5/=v)GNnꖜ4VӁnoAblXnCUS6CSګ:݊dV{(vyRT0 É(*#˷-K9(#($wbMxHsX$\l5~=3(2.7qbw?,yL&? 5!@Ao!_cWKDJm!;/) x*/F\>dz)`2W֫uJ$<_0b:8WY" lR7f*MO/Ht 2K_,\,DiG [6pTejjtO?ø#|S#];T4~uU6'Il%XVv3P s7bqpuwqAژejUlEbacG;6;"k(# .ѵi(\5R#8^{]VB}x"5YMYy %57}7)Mp+sCǞr6{>TҾN*U>7Lv}:{kQ 3L})$M+_Xa,t[AQ}I N>RgqK\?zKǙ;nwp1}T{ q<Exl 7 ,Vm{&/9Sd:sB#.z0 qNH*lyPe}2bkp-rQ;0T>qͬ1/`x8a w:΄B.^D3Ⓝn7&7y3;pL@]X߿ &ߪWMA;0A`MWc"AK^t/,Z|9fRJӐ&EgݪzJ!MaNI2Ȗ|ycNMH o!vAX> _?;1ܹv .(RG7t&臥҃g^c4w6jbK ;bm8>5MLIV=,xxG:ra뿘NXMn'#?Sϻf b?oXrdSͅe=<KsХ*펯g֤El,|x)OYPдx,9-FWוX/#3D91MaHN8c1ץ.gH0ZRnL 5TGgW +%ãvAZnjr$Ak:`J&J;>u}la8 GJ9a4ۓ܍w5Ak#HeQj5ކ"~(ö8_~3` 0-"T7*TU=vUs 8IR"~E'bˈMÎZRny!SoM3BvΎw&bPȉe.h7J { u"SU-Rk_[ř[e1z LWe854xhDs*o$x-ρեFB&ҭ'GDk?8+ꍿ^ZЪM Vq [*Aw{\a`rE:VkWYO0-D=n`Rz̆#1N \]Pt6i"P:Aax3\."ځD$*nk9]@7yZćx{0`^H`ox3ɹ Nߌ4yP:J]N6&;^  `>UFcUF(7yY@R8"Lu eNq /`}5N<ۂU&'CƻB?-/aة#yQ0? avƪV * ]V5Ӌ ¦o:9. 3Df| 氕^]yP葃 UmP\i˻϶y= 8tH9d+E^i3O*L!q6O8D4s)@f<5r-tcy 2(jL5ԼFS6Gtp dO\4u_P xEܬ ^GhmŨi;Qdy5趸BUy?2+BH7]d6T_c"9AJ|V,ED~ 7U_)$k5V4DqGBζGvB7\8=Rnu8m$BWÉL y&0Jػ?dSt=kKk~/1' lW (r(qEoK8dO-e:2d(|Ӌ\+=ءniB9M,nĜiDrP m_t2_fiu#ġlIk沖W3 u"i%gTSQxH~fǏd+HyoӁeHm3+!#ZN\?#]vH(eK!B:%LY-]_L#jxWl9RH/^y+^oL%[_mLRv5ϗCiUQro_>Ɯ;fAẌQgH}n>iJ",->?% 9f [rwݧSG&©"6T679=,ᵟ۴zˎWFBĒF],]?vPT7Z24xpu&zWM-= ZG &c{r ?ןNmU`imdYO\ WyOg벳mz>4k_nb=9m#2!. LFj!70_,1e"e*ܓ!uOS%O v[(X`,dUu} x.`Cn9N_c=^:#zؔmOQ$DЈ¸*V>&#? LKkh`N_,h)EN +5eD@xO6u2k{F#a!|15FWV5LmX\c>*`aٿWOS3щBO-w&vSr%,bt*1A@k܏\Ş;~RCDT OVaJQfY 2ZP/*-j-ӑON: qh!j.SjX6.jHw=G:]8X:' M2p0>V3<=IG&H%]#+ :ZOpc`>BwMFHv`zkGD#CEcek 0{o1kDP d|λW$0y>dhjWƈ0ִ?n"! 6GVNA=2*tI!v$Q={$vꕨ7ّZWnjY,pFRL `L8yY RKL@Ǥ)r# gf%zصrҡL62 S`7VE^IFq_M~!>U*ډֵ 2  |x'ΌoyʧtcW[ OA4ѥ֍'?mfK@G@ ֍Rv߲2+{t ~ȮK&BBOʺ.zd!z2á (_k5͐;HKdo"ChH_9~jGGoE v89xa&'J'Kr|"(d`];뫿/ %՚f1lSu'ĽJWn,0mqd)6ii" uTtutuQ^ɾ` ~<%6( 8#rxI17pBdwS#Q0.Q3%<G\I64r*y?EJ1 vk‚'=_6< |}W]T0ˇັrNk\oWq /Jzկdx2V.Jyp#q/4@&JK!r# 8Ow>݉ςy`i^zo]Z)9΃7T6leF}9K̠8vhWߌscM%<ԯW.ʢ`&*aOGq6cAhtPF##jt/8>E_ֹajHaHUwWzlRWmfkN<5L-/mD3_EJwB5!개n-7tcEFs4Ɯ^2I*"uEtr%WaQUiHnL(P'! ^85=%5_BAp5'-wˑ>M>5zFO [1*msD[w]NKj 8rsӥ p0&ͲS)2Uؔ8ECorU.UFJfpo6OF/9Cp{/PAfp.2mVR9Q-F I\w8F%\vrw^+_"].TM(6p`ic@j AB:=. y0lȉ"Ṅ0Nj(']mZ5`PxR/Zl,J!RI)wJbT*֙քEtaJh, hZ@genZߑ8;56٭9.hlYt>OJK$k"M^1M=Z逜!gڭ▥2u  If@*XK@Vm)I&qGz$P>(;#*y%$7dEp2ec'zȐHtӁ&'c. q9S S[⽐ߔQiJd$(3_qVꁂ_>[7*L>·29"EE'ߦ;|bͿk9EpKWؿ d&S(k@ q%'>v̂|<>g2֚xf"GlƬ6.ĵu\31#:yuGjմvLLx*;!f AiuROY>>ӫx@nd:J%)g#-G7A@3W鬮#_$lKMI>%#x:F%ֱ㝭n0vsnu7^A4~ ΚFG#A2//2CR!U*R^F׉>1J3 lfe\>}S#P>!'*X^kO/"]_-">9 ~Ylv"KE!tt?{Td<6Ʀ 3|Ho5a:zT UuiG݄q,4>RSn h\tVXfn8[&:[Z:^9 'k?$ӝ-!}|XO]XakcMMI_Eup Lyg74ΗĕQWr(RPN q1{hz5]n_ KVSCٙu;d&ti$i H%L`'H5pLqqt{;@ڶkcE6aTb1jV}~= -K=@s<, aR"y:4[ju;IΜFE|Lpoxi{i@Bz0G긦]*cK&|f8\i4g~O|Angf˛`"qveJf,`P'֮ ?u@et}ԩHl9Y1%z<캩[*$_!.3~h`QuI{ڰO"KxKzG6[‡kK^i)aIJJcx;E&]ʔl%kqOGN@P8 ~yvf١:s7nH'oV?E! 6ZD -e nSj$IFƙ:Y( a Oy~Kg㚳ղ:}Y|!fvRJ ]1d `|-SNKoyK|4H\&rO"쉌 }rW1C\1!¡l[.iֶq>Pl}bB XJP#A͈@iX b@RFJaяqLLGb'$Ⱥ)Umo[˜ėӊmVZm7ƩP]RhY@ O7ڍ#vd u,uL]9%^̮8'tf[GQFT D5C?VfpQ(M2j^6(n"H-V ŧy`;O#_HQ,wOxV>嘃hI8@_bʱkW;)q..뛟MT;@%["rT,nwe8h;]wC17=|ƼlY*e4m1d&n@ \ xJS>O&sʎnXaX1NJy;^{"*%W( T&l8_h>oSkz˂ ԯ˽δGQo >bUSB CVUS{.q[ ibV)0V 8[,FIzO`w-cYLIUm%I J:u9|<xAɩ{K2ƯC#]#\fyNO\c"⿍}Lxso근b)mCS=7Q#li1/恭QTD$LrD/DAKMI.c%d| I6o>{(Lu#&-ҭ"l%G>isl2@~ꭒkgj?A_[bda7),SMvnnJ4I,Oj D\8;3釄! rjZ,U'Q\ʼn,OTe'X=óRo[tSE|@ϦA`䒆'Ƨ  ʎ_?:} v|H=:NYRx 9`jc뷑>;NY<D@Q 5Rm"g9Ip:v\`*D`i>#^ ׮0;9Of(>ԵXΆ EuFgOGCư#ჟ98Px{ַkdP5"Kkqaa v#1*%6ĖY+Gjcjl[xuKp%h"TЁ\nҧ$)y 0Qת<;]]QT4dg86ܥra gx$*ʴ ce *eLMo,&*vwߞDLD3uBBuV$]|7ga[HW0^֬Τ2,m)۲ vtfmF+huNnDw&BbW cgf ;%MA٭goN=8aW*O⿪E35Mmj[#;3;Ⱒl"uI1tɰl9qJb؂ܲaRq)#='*Q˹R!^˪%+/o*[Sq |6dtۈ:#-˅M*eC]`G#AXH@y(+]l鎸:aPƥD%Zςx;q -u/W_!VZp?#gW\\km7Չ>ON obLK_dIkxG-}'x8c3X큁~.ۘ`zhV1|OM8Ɯr֎݋DBW;V[uy-na-1B:"h DcNFQ}y3_B~ÎHo9G$o_1ʰ+P%U^e@ HF6,<-NpEQZR4&,OOf {ߨgiѕtÈ!C/K+D|'$- Z**t1)AXmlM uCZ7W,~Ȯݎ{%cTn= quJ϶M2:51Ni 8yG )!s@| (-<"ԡLmB.[K!D-o􅥊1T F 4T47L CֻRH%xD!ȳɇCtK$G*dn@U"fL1<`y6W7Yиmm*>N%\F"M`g@=+-3$X' 9=N xczs2Ʌ>ĐSu"G|b /ײ=˚RN'v@@BÜ "L ͹f_PpI-96O#p=t+sPV);;ǃR9o@){")޿΄ nuL̖v< gZNG fA!lvaeJUh5? NΟ4tvlTnxWR q'|2\JgdHKXGLJ<؈#ް $,j$9Ay hc 5`jb^JL5{ȶ:kQX _9s/ʮKɹ1=qXR?Kªk`=ȅFp~c<6UcW`XUa6raLޭҭs"=Z:*4ꯙ zfA.oHC& rn"5M}"P$0覭b9Ow;_0Uyג NT9Ղ̀W~čW[8a3;J'-؃-ƥ!Wۏw$`;7bO69g1bl;XhH1BR4F0Z5FH[FUG$!nN4#n#YN|J@l!uE `iSڊ8g4GbSOW~0^"8gnR%t2\SLC\N|dMMxGt]ƌ[_0֐Xqm?4!^D ٠GIp}hK3e2y(X=jBYO\r&J\@0([%*:@yQpӐ_Jpv%LZ:n_ ՓUh/ȖdiK6boQa$ 睔Q_p '( T1A螝JSb WHԳőxG>BF o 33:v1,*;1^v3I5ZXv?9+5UhR=L;w/mL%/VfeR+ xS(TkSYU@ }ӭleC=dfxz:u5Qw=j4*.͏Mɗ?ER=SEMGV{\RoNZ`۟c,fin]/1xL~ 1OgxLҥVinէV9˸AֻD$|0-OwtR)yZ( "NQMLHoj0tUAzwd͈|N>8͡"Zuu*@ȕIo'<ϠnTa+rCSnD|gY4'Oe$[Ym%5$ˎ#e%'=n SYv'4Nup>G?b2Mx/ ú$wQ{s2O0]XGl'ZfwnCiR-KS[-ήiZ-ƒ\~>$ZoEqT*=hJ$ i./-ٺmFC=Fy"0)_3/ gv؂f\3S#ଜ)Yƾ̶ώҥ~I(e7.cj/D|wF$2rH;/)5+$텿E%Cjl<[“jZ-N fV :8R g~T%~ - .Ј˔5#nՒd:D%,wPooSԃJdR'!zUI +Ӭl 03='o+ILi!ee6jq$9wZ]w!dO" mqڰ_¼ ;i۵b%tʼn!ғz'.0{ E71OVe~<#़VF3A9gY\h+IH]G\-D`{O@u ?mGSuX~W,{AE[[I]"cë.^8?'V,,\;W_W̏±^D@ec[E9ޖh Rj`QW&^R`[5zmRNZY dii zqr hڀIF CVi7K'@IAbkxq0$-wε6ŝ9OP:dlI劽>dw3WVؐ|8"APTaྫzlYM%z?f\o*R)s_Z2F 4ɳ(]f-q̾%nyo<.`f㙤H<~JxŚmK1|18D@]< -J>u`sru(MXP|=M9f*^ċ yкz>LN"4s哴0̄*,J)^ "Xq}k]8-ay-b4ƢgwV.?v6mz|7"kT8̸JnL2rAt{ nN m4 ۍeD3 5ʶ+~kjWю{0>RuŖ>m}@%J aqǮ2 Pҥ!?3kv)ߒ jD N%hj}LjEjĨd?@pH Gf<.>J*> Or>}SE YѺ9} AB#=da&yҰ;?U1>.dt-́XfDY{?t/w^=[0}]xb9TZ4h/ G}QNG$8 d#{ ՗0 *)Mf 3"0̡4uEOd`ĉ=#nq[ >M,mϜ=4)-*nrr<]uScuhۀ)3f p挵.L!Mqb8}A17T x}(uV\ZZ%R5|.VhL0ɑxP#Duꇭ0:3 ӳeam1zcORy<=c;-h\D pU9Y&LB*HrT)q߯3"ţ3m~܇Uhw=ѥwDe/| h|m]|5t˶= b]ѽuplSݿRu7\tZ;1ruI&ˠ:f7m|NX`m{s"͵wA^ % 16~A_D0_]ž[RAf_s&,|aUS+ޡ c8P#%^u?:@<3]$0~n#YP|m$Ϫ9Up@ot+[6#w=8P^=s֣GMy$WcͱVIJ:B¶~|QΕw}(6H4=Q$e؉@diOlCGBȴ Il+^hאDS{Z Z(&.U u?xnj[qB%^q[\%|Td=!XZ>{(t LoA5 Xu^t ެ}б/2L_-gUOXDLnbkmmVY?3 l5@::'ך! (| ω1r %}-cm \2W5[GYI݄WvXG-;5pHHDyrc߸8Usqw]3t1q)SĘjCåYH г΂]EdpUƧQƸ/ %awvG d7gн)@:{ܷ8VjPn_g`2CҏZhIWPV4Pt2ʇ ׎V BXvԹ,}]Tx-,ְCV)ΐQIIY.P|weɋoTjmX[|Jw+o}(JDi:B&;d8&ACsg%2%;`~T!Eߢ: 57*XyBIS:L4 gft"HKЮ 6*"xMn "ܭMy n WᪿKk{9qpIˆnb˞vt4btBa.&RFMa-JHvN<+f#rvl^5"GG I4(X+HkRmCC VfxD#MHO7ON},zyNl DvE'gIz<3ЯRMY%/ Y-9b/$ %M᧹t\-x@Q\+\u08ʚv&.cM،Wٌ̝|ץM>yV3:O7^)hXqcgpTZƨk;jז74p]Z(I: 5JUq8gҭh$~ Da1NUaQ5MVVr9 ʎ2͉܏rEbʷ|W4G 'tyQ!QC.u#5W;Qe7qmRJB]u]N1&PHxӹjnm {{QG|KZn@'0e:mmc&5=eDv~͢u7BMb?sbƲ@+x{+NIla­!{)Y5lcv˶`؃uJnZG\<ͩ?Q2O>ѭ(0~rhJ3.ʽ\rbuwRe>VPMK>$&^p 'F w0s#R-m`-ڔ;R t]Ge"\ΰ^G0jUm9#Av|qy ACZ+ܭ tfP"ͳJ&\'&z2U>-XZ1 }3Pϒ*t ZhmdKPTfU/wɗ%tBk=9)Wuj,ĶG/n`dx jhvo!T4bP  oEpk@/!0]ˀ&Nȵ6L8I9ӭ Ɂ(U:Nm;BM!i&\$n|InH/k`Yxa`~ g։ Ԋ4yRޡAazHLC>DNB[e95&TS]c@bmJH^=ؕxJV `K}ÝE>0&}z+J ij;;i,N ZԛR= Ƞ6 LF-PeLkҊ4,JgLdLQWЬ񌵦 }ִٶ\kNRZ u~%\b! _ףEĈm'GI, Ỵɇ!B g:zy.I؜kMgw:5ku R0Fnۺ?3M#-":5)E/HL+dϑįkpCnM8'|@B4S-GûEVZYMI]I Pm@F!#5Eghrwہ+B43&V*ue/YqQ!S&R!KWV3}򞚱}"ϥxY! u4VU^ʛw I2ERDh(Z248U(0L>C6iͮ:$%Af'DiZ>v2"L^^60,>Y=lK$V~ju[34%#D1 d9YkdU;nآ)d%(BմΞOMx:'?u1sfXBv$)@lEuv><ȁxM0$/\ɷ'f&+P?]2(:c0擝Y%̩aí?Fqa2ɿh[TKGeQ)i@b5KZ79j;{3PE-C[߮!*>.ݍr6F"+V_ ~$$n&_wu5dǭN'ys[=2-*݃hne-0H=:!"vֱ̜bg^T-'9$s}Q{@2z[)Fp;C~H}ef\ZD EUbg/Snip}%6d)ݰRMiVEPl?MU\A HX~8'H=)^Z[hƭur"  nlpsgҍԸ)SZ ؚL8 A HRܒ[ H.tn8@`8ڂzdYjg;owQ{ň:a^Y 1tumY`,nR8cK&:@'h4&G8XG$׆v :D4>!I6OږP{8CQX]b NdPOvns'*P t DZ&a\Ж9o-"cbۃk|%j ?M =DF #;"je=lQMxNhɸ ЂLC2·+\ihj J}𿰂!:dcTc&+֒\=3ѼK8D͘oqzBYPbT!,%^|~QH/Sk2[٧4Zoq$3:D(cq-AjvB?5+\xstiZ]PԻINu\C0P'U^+=b,cK3.,~ByΏtb_G*ڢipCS&hDX;:].04 Pق ByOuD #$h%T4icW XW8`/[G?=J+1^>b WvEVf-ҫƇ_ ^ʿI|6e l+׻]p㝟aH7Ԩti[jMB|s &U>+JZQ^SX]uY1Rc^S֍Ɉ˟#yizxO]w" fMa'= @˚kҀ׸J$']AmXW vD}'}ÂjR*.Śh^[qR7A - z܊`hԶCM\g? ^/^[}BXbYwN^ 1(*)S<-ɤ ўd?3]9y#cTYܩ4 rG1?]XT$q.n~|]o( -zҷZf= l>np5RUΆ#6⨛q߉{*`_*q2]ߥ%r O;iv?ټ:4$Ti†;Exp&$HbIFͬV' 5]>UY0!.WcW?co`u}4fIϊ/;Y:&]FSg9r{\A[j0ͲW.߻utį?$HbW|g#tPKK4bnPݘc9T5Ze~`947#hQ /J8, C(sBu~+b? 嗿 H :͑Rp9zc:@c 3^(d嵵 l-,^Ňyer|(("4p_&D;e}_tbJWȧ@XKêX^z2GF ڦ;#0~5e Yҡv/d<7[BX%S6|ZsK /WM0ڹE %RbKcJ*`Bty.Am`rAwY4ɋv=DBGPOE剐͆c癙Q==W50WWwj  2,ijpVq̎oʓsd@¡fg\lȏzHSijh3@Oՙ@A 0zVKuIㅅt.GP׽KnwN`,VCU06IY=+$,e4$ep"_T7z$F%6w6'WD8ǜڅb=ЧdDr2Sp#gg>8):`|:&~wڭ$Z$49XO_t8k2k֟v|bڞPnZMAfNV( ROz},s+ZՆšhfDܱKK1ɭL6!湪l3i3_sδ<$W fXG Ǹ>ҡgOiS*Jx&6Tޤz\}!!d0(ge]aB';*w%5oS9:whH;ǹ7|c]F%+GXЗE5,DlA5;ArJJ)<L͜Mx݃jVC*2ZǗ`ZIB!.y[-C l b$\BDx) Wɾd F쿢hpro71Ê} U Kփ6q3ޡm' u.bV봞_I _75kV-!(wk74ꓤ"&H]ذ,$]TAO6tX&Iosi u2n8٬^2tP<~-!EL&V?XS j/ߘ RA5Tjo`28*iݿr4J55*w}Nz۟H@WvD n6eܧ}n 7M c?eбU t5 !Wvg5XmǗz`hFPwNW|h g]Us;ʯMyN/VW=jz[8 5IUtObrƨsD\{/MlYH}ԑHTr)=grsbB." bԊgQr!qX ^mb&gLM>EL<-%, :^?@vIV{kQ@]6ɜe{iK^x\auC6j2NYT@-!Ci~B,'=k\*\L<-6mP&2>R~۝z[n8҃\e@*iF#O!QEiw#\Su R4P8\z^x<5Rimy$V -cA`zHYWn_TfN wjY-!C@SA";Nn\ E8N"^p{x踿x;MybS{֊$-c^\̻d3?LEU=RW䶶;EAbPUHp7ͳaڷ  LĊ>Wrn^'Ki T21Cz d*q*UY)R+hG۫g/ ^LiYt\ pZ{:r}xM3cdj;]t/,F\,\ӊA@~($XQ͔^¤8C>,G4L9KX2D/qdԼ½uvWg2 0B)QYͭ纶/)]0֢_h"ޒ<޽Ie+QAO{G?{jѝ ܞtؗ!,90tN~mFO5~f=55`;7iQN|6&jpM98qcRZ6 3#)SPbC9z+tl0 DM b "HCfUtcfQ!*D6_/]mɻ`PN>Kn6W+ 9QS)0XAy#޾6U+YSK1Ϳn0N;y2Q$|.Zテ_-r3:Fd\ 2m صC H--"+%jp 3%>tF D_7ABO[ BDA3Osd J4qQ$gU%oҀl,l@td4aOCH BRQ8 .N`?7P9N MS$Rۢ[8Z=*j'BCϵ17juWaQmJ_PԺ`à$E,PYT9(gP^qVmsߧ yM~x<:n gr|? ty`2X "C Gl:ĩ?N 6 Lg6>: TZ =Nhډ+/D+qge4>鞴+a&5Vbd}joŽI3u(DS5VM1s,o&d-̞8GonDR+zh1((:oNT'1b)˒q 0_A]X7Z*1GQ/ θӬ] Gzߪ2HHJyW fp lʔs:^Xà3֒BܖYijw9wNgpW_Z(C[0p0?eQ %+{iAp&th"F[FfqHQ0Β*zyKq-.I=C^le{\R^JgL ?'+](/΢3KgP+$胧8fe'%Y.:/^)PFJ,M'1z~.ibv1\]Ú8qٮihd5ENO.)zӅo=kz::$l5)X'+E6hzjנ9Ϻ_̟.y9rߤ|I ɂJS3ViX|Zkva`l Tr3Vc0:P 7tO 5F&&]r;=u -DOBIG3z蒕l"o쬃+'ꑡ] u1LEW12jV&r=.G"R kxSߚ_Zb[b^!撟P{&.hDG6~c@-w^EmY ]yŸ1 DDu#CM𪞠}7eاp0QdrIvӓѪUB gfiR`^t1;fl 9%D>h*@l,W\%FA)#_/#W$lrcm1\viO2>\dFO\:~6vHUN/F__,\W;K[%X 6L2ǚ]b!C,&F< LOi-P563?|)\2i,6Ī#Ar}hB`_0 Q] ʭSYHZX1ݛcӆZF&=`kWMtB!M?RxiwD Д R&7W\VQiWo8Ƌ}EmfV~S W(Ygp3ӾxR(:FKI snsdFaN5,{NLQa$m}zQfܵ zXmǘF{=h%&A(lo}YqŽa#fV!|;w"X]O,TЧ'$! 1L6iizM}P\l/K~M`[޾pʁn!Έ'xr $o2>#n@߇|jAsfL>(hضlJ 2W7MZe<;gXxsϿ+?Pi}oMuRNSjӻcHU4_uwl=)pr#b\r;uT=}/~Kډ2ȬHCs]#P./MN8`[.ǘ%c*̼?@a01@ځWDZE+.,u z)2~J4V*vą.u?F#5NQ9U:eI$J[ -i^u{8LCYLV&5XDᣵM3a6z~dhe#UN&;QAAy z[@w&&5LFO+];Y^:6V XO&4Tʆ p[>p l;4x3ReH1PVIl2xw@C?fTu;sC3ў/WN Dt"e{sݱK.-4#i՘F%RlGb 46s% ^iN5Ke'/[`[T,'&-.7-ٛ5 c:o7<|m~kan`C<.NgU:MI$i"d^eG,IXzO*1)z",#/~d:Z4_9Yt)Dts qe>y@6A#hfD/E.#O)%dMLKYbGx7bJUZxձ6?v {$85^^E(r6!/δdhSfd$Z7dd8 )R0 *VAlU)QH5b2^wo̥/$ϓ% ӽFgw6=`Uc#3[%j{_}6שW;"IաV/U͙"`( B[BMI!Ѽć~u ސ5,c'EN|Ҁ^1yh΍{Wq4E=# ю:}:bʣщmjAؙ0"3 SI>ntNR)SaY@:3KvrPނg(iDuF~s8?QO˳\U_ogyM֌zi >\]#E5b*encA $yD<q7m)dۄcWa򽸲pY'dNrlzW+v,Pb> ui>0L\oJZ@IvGDv΂:ZҶه\}_7y@LHkV5z^AfUwX5: ElB-9;~f\L)D} Podzӑiw.`k? K[\L=[U5h&*sG~v= VhĔ絵yJ4_~W-V# jofď`y Nf&p'Srd}B8og{M2V}ޛTDoh})Čt$ g9i m1%Kgt)^wXk,Bsh3DԺF 2a-zvט%C$'zRxj9(]keZHmو5]q2bXʉpן!VWL8z˥78z^**_|76"mz[t3@3\ol\LU`wFSpg*Ħ|W:߾Y%68ehhTnIʒ}nK5_ AN@7 DnH1Gbb ABctvʬ_MgK{Litn &I%gw GBO<"›1\jy{}H53{?W>ѕ`*fOzл:+ba4h(}m 2 1g\E+;*> !l}vvl;Uumkuջ+#|zY2dS:$G!a0.E*Fq[ 3XAzeЈQP*7i\`}&,5"6Vi7MKR8|duY'RFAsgpk)U Jyf;KIDe?E(#;߇<#HR:k@˅YdYG wDJ})HBĻ@<|ι\Nݡ=16cy҄#@j,oEq'`ovW:= U:stBYoXU wHIBV7r$i[jyx'-D{W}Y9}Vs_sJ.Y{js >9g#GK,^x@UI[!n7 KY'϶9Q rVt5*[(8~|>kvEV3ߺ.Q?ᵫ[r/3I㓞Š{@r.A䮮J<t&0'k:dBJZ]*w-bw{n]BnUNJJ3L Vё GM|pZ+:5yx;%]*a \˃(̊KcR)-O' 4OXS-F@8av o3-9,w%[[Y A uɛ7!jIMȰ6UyPUժ6{3 ]bb5z(cjbKJP#Hx#Xmco/4I?&tAel&PpY=W훯G>S T3 Fd6n58?$m"B=b}mDs ٠bީ9cTIvV̈b-uVoHb EX6<.KH0b,DaN:W|wޱ5Qz0CdRfNHtX%mc̯ 8"rf`*KOp*$ּ/P ˱TZn>';mB@>d,L]GMI駺ܔK}AsZw*svb4"3s@}ss[1o5(jeuڌQD6r aq dfX8 Wt 0֊XQ5{pԘ8jm`8OK%mǼd x4W8@&5եBy8Z-c7hPJj[&@!st^-u{ܒ gmH"}^q *>vD̃ލ0g8v 83vO1츸NTŷ9y^c)%@_̘^[/:/2[ LWӓ_BxXOLJrE d[!/^#}lz }އ Zo?lHP4?VIHjydA}ZV2[4ާ>_JV.9' Iz#-&r޸˒Eւ?-Rjdr.Pȇe)EYw]7ׄ]/I&bCBp]dFP1 C|$-a2 a@ɹu05>$H]nĬ G™lCr^4\Ny%2 &4CO]ELAF掗91T@Ok/э"vm)EOMm4Y7eN-ީ abb蠩DK\-awwgkŞ#Ȫz3yB0IM&GD]q]@ El0.+r>(v-pReX䊚غ/ %j)ZڵG7r+]S~qBRPJ,k(֋*V;yj/QOEEXp D~CVg&Ue1 u뛂 iՍ)z`Ďi|J~I|߁߷U@O+U}4}$F]Ij#$aB[{ྫZ^'Zո 3S`] nM>.Z{qvl_K bZBm~Ocz@fL#̂M$4@u? {= <hlfǎӝ6ɒ+ pšF1W9/1!0EU_(RڠY!M>!l?= UdDAf`7j+Z)d &ʳöȜVix×KM}wu{> & u8a] 0ZHwQ VͩEWZc u@V}([jL6]Ҙa+A3Rl{sޭG|P }QS.e I^{:RvgTŕK4X@x,q//I#muKse|[<}Ny)3ZLZ! Rv q |\cwdH~1Wvvwr 8x{诈L94uv٠N31DQT(j8/t\D BLH,Y2 (knUn0d* ֱ]Ѡj" 6t3zZ/|(E!m%J72{l? PܡGrYx*-ϙI?ZZp1D~MqC8C雳>Lq>hO0ˠ; ~@4P^1~z8OAr=D x^{}g/)'c@ߕ Z x_ݨ"<0~\eݞwhwEfTp#"d󥞏5Pmm%@=Oo>'c%pHB$θK=\TBᒧcqxOq dM"y@)Eɔ+ 1(ߪGo!NѬCz?#ҷn m̓JmRow3; )QX1Gt]{LW|wRx争Rw?r_~ rpTgc [DS}vLҒ u,a2o2`$PZ$('1.& hdRsbrɝ|H4{o_ O/;'xxkI[; 5Xh۟C:b7GDN4bQ{)#d*fwa`CqR0+&.E<`oDץp#,[tAAV 7CwHաgS2iR i_xB4j^6teςxS2lžg"ж<)>;و] /h@;"֭2Zj5r?TJo3%lS_R^*Қd{9h":̼g>H}{}4ܴP0z[|.;&:+4װlHL~sk#-b6s DEvUlw6g_ӕEC {wkbκI-Fdru'H6?;{@ӞXAt.v@Y>*oV\*IĪcIW6AV>Ԏ9hYc1uB_ye_SQG@oUaPvtc>)./ڤ tFjȂ'@ 7B{CBk+_2i3~t2" ߐ㲝Qa6;pR/޴(WӋȮ Dk%k`.|EG.)Hx\ՠbu(\'eǗp~Q 6pdd$#jo_ 蜍3J FgFudz9I$`2:Px͂fG)k{1PEi0Hoɮit\^Ϣ+_SEL8M"kvmDrbc+OF,dDځ߮r-ǃ/N ƠSK*TY#g@5 ªMAN^",)(  Xς}_'.0u4iɧOk `/Pq6BU*v2tiԩ"Xrc\I086<v ahc+m*nר[2 `uIaAWϘ Z$bb~Y wQ{c^kϮ8,JkC,~[՘Y1mXr\VwVڬbZayN`L@7w} N9jkކ# ,$3G`F z%TQ1n:yvT,:'P_@dz?V:}>ɮa;`G`&yz2|BE^ XCV ˎ8_rip9ɹq6jAG̈́G9?xHy00&D OS^W>YlZIi|rM~?GLmܘ> d VQ(^UrAt_MF^@Zx37wLL3!I@Ie%fkx5L6?gTwǗٙ͑ j`Xnw9JJJ.`?&! )bJj+/Yfm7::¸ԙ C`49.KA) >.(ZaV<ћU?)зEzN׎,_v?קYGOٛWPx,9ͮ/*nQT$lBr!ĴpVvb&oðǨr :a@wJ~i$s0d ©HÑ:sXd]t[ !q.cdo˨lL}*hCW޼M 8^:鰠q4C`gMK!>QV]Սgi?AmE?iHOqy. Or3/,[Uq ;+ns(U+/Fk6;Zk,VѕC0f@BV̏bⰈ/H=}=jPMpǕٲxo>'|3e犏ĕ Vq8J#R@ J:D>&eXmbB`ƻj EW1G]ahF&䨲[՚(<ڤlMVLMB4?pJMZ@uJ}^{ԶςH\.jz,$ :z 3N<ϧV8M&ICF |ǼhNAEe|~A S7ZIزf 8wQࡆ%+y(}~k$` 0kN].h= F'ly.^f..UGpЕ@ p CM;W(gj8DW?&D%*tdӣR3E} ޛkH]<̋ޙ**jF{O:ׯg֖1FʇƯl^]s!lZEzRM ܃0F1EjXh Π7]58`װ$'(?&F,.-7c6Ի׵5f(3㽫z61gvgVJ,^FL-".IF``)y`Pya˜ g.i&klt}}}F-{RJ<;Ej_]WپޭdElSV>;]FMxLX ѫ@0-Hlϓ$<{t&ʇNizhB9ٔPAlbVwcϳ2mC{wqܭQkӛ41=XCtm38͢Ao6b ïH(^Dh`P R(by9@F!331]9`/26;b\uoI1K]ҭF%$cdCGm`~|<ЅkF:7Ĉ;^+q Za T<|Q;`+5*E5]:_?H+`v t+}ԩqZ2-Tad-$?Q U {W( IS XpE,V+Z5B[B b¨Y-4,9 ,*$a9C4^!ٰqYu[Ƨ+OTNБz'Y&˶=hۄ|#V4— @X.Э ֝rAk.Hnۼ}G<Am"]*.vx5uc-NcEs[4oQ< sߘ}~ WvB/1;~KR_* ZVT4>V<(qo}2T^Vܠ>ɽhEْ/IQ t7 L-G"l!Md/8 []('qqfw: pWZv=PE6髄۟S 8- \hFm'v+s!)1k$>VyIuveÍ(j 55i4 Qӑh-O?;6wFr4zYc| BظF)6MYD-W'!yRcH6!mCwM[Y7b޼:D~ۧnmU m)@2-mW4`^+)`mG1xVobzޜ{{!@c8%m*oJ]YL+2W!!:F;R!A9ud%Y"9fo<į;"9,|MwM @ċQmWM$Y/ ,9)Ŋ-tTΏWrYf7Ӛe\n9̠R-yؑvpm25c_W{gΆמŲKOz5dz 3\}` *[N'4\:C0.x8mD;U^oj R+g:X 361~hUc9yuSۀ| ӍREA?ԕ$i G筄a }`Lnؠ5*m# \/=#Q\h@D:<C1K+-77*2z渔GͲD s"'ԾJ(Cu47DV#yy؝ 54GqX83Iű&pZZU2j_&]7`2vT&ZCh8ȵ)۳s[9x$ʻ(-*oDA$s=jst=/:If%񛃛76" Aujaot争=qs1`%B-X:ыPa/{btڒnVkW`exӥkxo%8h2_Yk2Xˬ !6f`:>>0 Yț/U?'zeRI~ nBπ&/%x=u?d%3 .6fad$[]nJdݴL2z{ז!,CфxM̥7:}](Q4XK[ldK!9 "]% U+F%|KDvY7o-mC2!eh9FNСF*!{aHNC \(qVU,E6\L*Ԇ | W{nO)Ԩ9uFR$|J4a'ޞL3Ua{Oִ % ӭY,}f~dd$$aQ#B0%ˌMV_Myf,TrBAC❱0%Oe:B˜z60zߘD2 S?w`wS},蓷/vS=87ZjX>d6#BCHħFoEV Vjk\G}{.}ߤ(tO^<+)ŋJP7|ڝӺor9ѺS7"3tVw)9Oqs;OJOvPVGfi&I5u%b1W_Ԡ:HIhXj"3Vn |6T:75 %Qa҆.~GhJưK,c-oelw{a4IoRk~!ǂIfWx #aʡ6() _ʐ! ;GY: Ů2cvѺӟ)*Wsq86]IWj|g+Z |͕>Q^8ŜYK.9t%SSΚ[(u[fc4⫬((]#d ıkdrM Ccmgf8 ~~{o< nB7MyM=-NRt{~SVbe/5O v1דFw-.RX O&@\+.Oڐ9o wRXʲ@ݮvUױePC֖0 ^wrrbˤdI&#|} CG"2uE1h֔Gl ڕiY/ITaT4լsWʹ Dd#ШkR&[qڴۿ ?Ma [ގ"VԜ gMǨZ=*^a k3tCןdǡ{r=g@AR@VcPXo&A@}LQ- s6+Vu׳5@",7|Ɵ߈jhAP0f ʒڒ/FAoߨXX4lYB&bM;_DBa#Z,#J~J`=NWPOC#s+ovSJYp;NtPy[tj&Yo cd2oku{Է=.Vn:gѫ䔮HiŁJ)s{p|3 Jq7QI= GINJ;8~!D\AM{"t!UN~HQ($ x0 hs 6j \}EڭCE%T^CD1@]$7{# xi80(g? LX3}%j,DA' G/(3uDÔ<,eS[],#HҕCjm .?UwSX :;Ur8QV+quj:$" ǤfQ'bAE /̒1tӫL"~~e d) /mFƈ # EZ>k1KN1 2]/8P[tk# Hj. Im:I Kh/D` ( 覘~$IGAn0v 6R`Fc0|~T .GRqpqATE!}_dԐtP cO\ +y԰Ys7KOR]-,n>X rPaW>ZdO76NJFurD#ALȐzxU37^8!%[56@nVKj;Ǖ$(,-(l K*{U/NZGX[q[V,zV"k 5;y1ZسK(%ٺ A>ە49 UZKPAUVfVzA^w&Gn@sa?C_G' ө8oT3F vH%=p .7Ra#t]2ּ-o }C@kDve&NĦ +2GI]?KD^0:QDOlݡʄ"r 2km !3J`(HJ%E@-|#|i;#k綠Fby\KˈUfIB{;uTQSy}l a;ÞD{j phQ3] %W):q\ Bjat`^|gb%ጁ+=Xh#􉭵)CqYUe3Un[ s - yp[_9+:)$8o(471ߑX RMJ#}F]Jf/ NC 38[o6q)0/N/~O#WG>+#HK"Qx#[FrCm\, jѬ2>{)#p 4*MƢ`W/~#NYW9<$X.ǗЮ9KW[VKWa=3@7j(YߚnxDvۿՕEǫ~.gQ]rghrK ܸ#'di$QŚl"QM?$r6$t/(jګVG]2ƙJծQ&1i[tjt!oTsQ k;^<=v )N2;b".X:O1" O`+Q>lY82 X l)j".\);k܄+lt>hn͂*"cPyos+=DNJh-&c:xg=TXχ;-Jn/)#sPJ nr?]r"LhM-3mHUC0b`0Ⱦ:I= w B2DirR ws_{ٍ4Fy(` qIΛ2i;Z攺{h')li=&[kՅGG[E{J]xj ]X^]>D3 gs+U^: נL:A-%loF ږtTeCcMwnyCYw/=Y+Ej_Wt ?@w{Jou326 w ^ YB" r ƻvm4vxJ}TfԄUKC`lwgވY E s:ekbnzkaNȯ@s].z9ˍH{yUvvudQ3=W?Ė([MŒOR,x×YZ{lxϒ\+@`E8) m!/KuΖT?(A|WP Qa {@D,Tx꘦YT%Gw- }o|Eύq^3CSBkr?l5} 6{5<)\ks3MmZdkAc)?R@f#p̬\FQ,z4yi7Wdaڰ,Fε(efkRTJv0+Z.k8'KpM1U8m.,~+@;3 s%SQzhV m~JkZ=GJge-O\^+ XF Lbgi5׀ 㼟(q"mh#ܹ';ARsXyqm> z"s XSL8m,MRAjF \m ‹Ơbf[˷\ֈ#IP\JRtOA:C ȧVH*P5XR oLƋ0^Yᖓ_}T2U{TceQ+)֟O~jȿvyjQԅsojd6ilN;Ww|"o)"V%OB>!LK/KlJ3U柃 $:4:4m5N\v4[}'^} _4 B-lz\{ m"Ŕ~ ʹ|7UqEYw$M>IQ5U^S΅~..kSZ [bwD q0bG޻+7}g6ZJ́ZoWr{5[(f^u93跥Ztaet??a2iK%RʵE3qòA$ C#@x$s˱xgS&vթۂF”U5IfEgk . B*S/$ [K@B@pB}qX+3j5!R)ncgX4x1Wi!-bȅPv sDp+(jmVg: v$<`Q*قr~(~T"TVq9|] ΗPV8: ,{ ,`]_QplXUVNZ>f6jSf0Pon.mEyx g1<~(a\^/(|SY6 o!Y±W{G-,7Tr8*k٣*eQL]IUBQ)ܼn;wW7&{Sg{XRt9MHa 7˂{{BmE_?&5gR!. j7Fif몃fdi᮪d)Pj1ķ##&-O(ɲ6 ٨79P 110̍VZ-崘Mg7`&e==к' R P%"<ƤۋiHT1G/QYK5eM##[M.I?-?;$BY?2RT߱?^! |'2i fG D)5.p xxv~3$&o{p1'yP@_;aڼ^.t4)'TfU9 b WNm*CG(7|mJ;8Qf~c_*c>ꈥSa}' #LN.@ieH axOLۦtCh\]O zS`i#GqgPw(4]I(\r_h<bg3ʦt ^6y(|`HG6N_Uw>AT=6{"VSQ8"lա -1>t݆ 0%MO;`uq6<DJa'eMpSiIl6l />O*:X'G> Lyق }hL}=> }?jN㈍wn|JrtXҁw*4Cp![ҔR[0z3a[,Y`S9G@ [ ͣ@FTb([ɹ x;q <׋"c (:ew t?gFĽR׾2 ~6 -Q^֙vOxVhzb"!Ylm ֨rPxN}0Li*1pO#k,qlNQgQU_5&0,K[Q+Coj`mݶ%b07H3h4JR߈:7VA`/(? 2m=>Ca1䄞H^>Q8SkD+zP%&5'Gy +VGhЂJE@G:I`IρNEi>ԙdjɞ-kD:/Fī<+@s0Td{RnD˟OHs0*{S߉iUȐ˾51VRk8.<;9ނnPtEX gLy ;/$f=qv2}b|V2oyԪlwnۦ}Q-%~3YJho#q9(( u/NhB*H$H*Z.Ldv(ĠUk l'&M[AlGzb+ۻDlu֧AhxYVO8 $1~{Fw>E#Z,BZ id {O޶fܼ+Ut<~1e$@˂T>S3zOC . H^a**/T ]AU_z]2JZvu滏/5o`Av ֊aaesGGy)1Ҕ$41δQ,_:ƺSPuWƚsj?@-`5k߫g V˯5n#[ e"%#MJK}lߛ~G' Md zpW`*rua =oRQAE3鈴l MI/ )_PM!YF}RmB\q阘CKU50Ȇ|nVY@,X]{-sl#K7L7x/:L߆qō+iëV-@su#0zc 2{@âw}^[a5SbښBpzO)9皋%? !&P7Mwv"M$1![B^($#c{K ;2BhI\*ؚ I M&QnS,=icFmBOc&-Jyy`4&*+c)WEokzR)##^L.Gp1|!4G(S=kVv-P;Kh!̢UZ< @ sd5sĖ.꟪'=2|tD<6!׾R~5*:O) 5bK܊`Lk;%O/ha&0XC#2}ewGp͵;aIo5kP3>Q2W([&NJv42ov䨣;80EBݙC9-TRk35튃5jVMTt?v3Cv,KЄs*hT Ѯ4H F#*S&hFM:нz!܋sp- /AO22Xj=O 94 >)49h#%`(࿍mpůBO{@O.]oo $0¦L*Hd|lk`FylAGArf7ܪ~=(8L_~inΧkzs FGގk { |Fxr̀ YXƯoq:OjV,!Rr}q;kxrhvoI?B?*UBV?kf e(B3)vL$r$lCT)gISb/9sʺ/.#Փ~#6NBgUuщA=S? 퍻tl 'AJwQz6D9`I:dq6/9*h"hוc=_*= {ܚu1s/){w}`JJDMe0 tIcȩ*$JуtjPi-ޛTqV6 5ӣPvA; ;ZLN۪3 d9Dzg@bk CsV(uZsւu0wt[ Hu)g Tq?oXVh}Z_s]wfqǩ~t_bD/vP_Gs"h&x5$+݃6*E}0e%EZѰ/fUbzکbO!( &TʊBW3}Dc4z.N!*\R3>7$N| ii65{G>L!ٴ #ń3Dv1]5J(\ W' }2჻GIgń"4"F`G\yH`~CX%6Ǡh|2깰nnșߙ.`G@U. !U2DT1NK$)/@Zdo9fJI_D"*K %+ZuWa-`<" vTudW¥!_t >@hS`t[jgR+ 3э얭hi$ &sۀѱB9A)yh{ˁgUxu &9. T.L| [Zo?jӑ4sV{;mY4_Uz[b׷ =50`^$)fwQ1bW&3j).*+҅1-oh8{ԉ4]JT]F݉zeppM8,@PvJ٩bxw6mQ栚@%L_Wjخޱ]j,0SX:*1}_;:L[N)e,>b2=kg<=}ӧmU ]CP3,zQ)/Y-辰RřJ9/owSag=+|H9Ȭ!ueepk`"UZh[g9Rc^桻B/P;rvLǻʚb;/T?";Bˑ+HDbgݜ&Y|5Vg:n$)jS}+/JH7Uu2 $:AL2]uTf'sd/on6ty%wjUH8Mik3cP ܟUYl\ՏE*XJO"p !ČO->o:>,39blamc --h9ֱHpn+LNsq&ֵH{w4=BAm(A';[ݦI=MTLGRC }2_&^w91~l'»mAH/D"`mCv6qLMu[Yoh镗[f[g.LH,FMh ԫW.f[>Sk$:$2!*fބȕǮ&K n?]b2f_Rv.L\HxE`L }ffָs =N>W_|6<)R4]9͗aI˶,kN,]c@AZ!9~A4*uG b/?)/,)(z߭0ӏ司t|Чr`z/X4Fqu2ƱT9Ǿ/vXb E#fƠ}h9wܽ[3p#NPx C{^ Iɰ-A3~(_!y=wqWa4fpgrG)V`[FZj|CE Yú-0/Zo |lvFjl&@6\/ׁboڢ2wn2BO-կmZ=z5ƞ(%iZ:J ׈ #MҟW ۄ7:Y YOϏDy`K #vʔd*0ü\z=A~vc Ѽ| B5~"u5K)גUǕj@-Y/{bI H?A$6jЪ |ฎ4ONjSzWgiOlj"*[zZݞ #&B4l 5ggHZ**`X XeW4~}=MgN}Y qҰpuJʯ{ 6{gˎ64LsmjmU'%.:Nb ܆x︸X 02'K~dQ|(\ґr9515dFFM2F >c P[RlΫj(o1Hc5_|A%rt/{Xi''W_.^9΀kɦ&%X$Fva+z6ދ00(qLYVRFv~G\\9;;?řwq6`ϼO+RrCd3K= )wvOFSIJIdLf^[v[ JPэAL1UHZ|gbDp"YzOfcb`մFY7;1{^3pb_16k,{xձ0W<3'gKz5l\-,W e L6O2|@4"u Jy̡xq=~<< WJ1H#i /F9&t?Usv5؅+]:3ִAaW$0u5Als]N_b-'.t)>StTd(9PXA7F^iQP=gs%EW_gXW)8҈v)xKN vs_@GYe @, [J5$BuO&t6U%x0>DyE@~JCݐL<<[p qpx)-J eTXbF E2 (wmehڱI2nO,iq;#&-Em ǘ3}Ώ[Ub D&J3fĕʀЈ qOPa u{x<qٕ^hr~5JT}G-]rD؋zO撜ZN}o+P 'l6guj52A;&K ȖXEDes/\<.֠Lnrbd%1DMb$$6uAus\dqH-gx z:9G& :]FGj:_žܡm%@&(H-N! lǨͿ7Orw^̻zXХ_ҔbDfz*%$o>`S(|7QȎE%'>k7Q'8W?k ":ͦ_sH~#eF t2[p@ӕϓ3>E3J5 sÕui]iglALzDOKvRV\$s x8)lm^7DF9\n\Tb#so?.,Jhԟ͙ g<0>gY)scH 4N±=i:jl['؂ǨG Xbz4uWlb>ϲK=?( M?*\;L`%"wDp l8XEG4G+::G*^?ƜgOSs#(cXtI-Kk-!Z U?:p6 Ցq V7X1iYѰ QƠ%]a"ZAP_>8 b+Ux~0wpbVlAUdf dz2v8d.<ĥ-JGy O.Xլy1!I ߱@bq(x>?\bǔuGXa)"qih+ꭍS%ʉzGe_}d#L;MAVj_E0ha Rw'lߠ7G5 vI!"Ry~Uȕ∊ KD ԂFDǣq0"toKb|G"!i)lk3SA\30&g0ۨK(.} 09T !IE>ϭsoGO_jPYp0}WN {Ҍ@zB + ]jݿX$-:ۻ!7m6(4-ly+)6%I>.hjƽAN&O,kΙAB>|T3x67}UF*G0e5@dE3l\X/qg}:ntk{^*htIӅNG]aNZ.u*lUpt#PS>;5A&(JLNp5PCe}\؈}_ͤ=x.4$j’콏XF*/K 55 I9Vi{ZWQu[cϺ-k'iGAz}'j@.[b0ZjWoS Xck\ژvAxR8+u/E}PU}*MՐhf&4*{] WXTpytޅes֍g"N 16_vL8qD!fq^k_zQ㎚^T32fBn!ܢ lDEFomFϿ3ntaBrE=؁uq=”Tsb-)ls?TQ)Ppճ>NF2yVH,%=n:-oxר D\IK2X&1/ vݠ tDz39f9~K.oyz/0ߔ8Wfឬ8"`2S2YPنL̾Fy5Efjnd=̣ʍ&$x#$+F+Ty]sL[8{O ܰY:ut7$} 6Ltd1dHTEZLN(=" CZ!׎̕2Z]Ӊ\HUhmDDhP/]w({7`^v+92m/ kM?dV۶`Q۸4BQ8xl?{+Xz 5+D(CG=n{{{*/"*>&ш_ɼ(됵0-[رa=- Ŷcgf\/rBsr+Cf.##76֓qr鳎{*vO6q~ͫb{[o֌Y 2`ɜzJYXFKi= A,+P+1FkRPTB[򽐥Z2~GuJ4IONko9=\pL_vW!k6B0ʀ-$~LX6ڿ Ӷ30k%V{ƫKӜ;DDNIM)=qH*pggDxU&7Ј\;3d$(~9/e!1)@ 7>t,u֓ySl9H`VXh>d6T E*1@]O谙[HpQ.#&z'ej4PRd&oEQ~oQ̓x*qG3OE $;!Q/M-eS~mr!^wNeL:J.&`LQF:Mm\{3T2V; {dZ \M}ZƵ#Y|q>u%;jpc +atE _Q! Py&*@2${ ф bj"IEgwCV}W8/OtU):ԣ.}3Ոpϛoe@22qӞP;fV<\{i!v1PN`e!}FDN}ҿWe*Mpֵݨ`4ie_Ol yё޷? !( 9Ck4m'umBpN7SJZ7EѓPR: GyT+-znLdꭧКMc&-Z IH롳MQsjKi_os 3i?n_|{8D_PؖHH{׊R%ŴsE_ɷxVh1uF"}WRwꛤO%Ky;Kw2ySSw* =^" hOb}0_O0J W *dYzhrC\0"!v<(nH$$'b<ɷy6E.e@mX3Q唒\~CMO .Ψ4Rt<7S>=F\:ii#v@H.;3i?=ԋ7"$g&=BwlZ7e0R"J\VP;YC! Y[J?T(|e{)]*O6$? }k$"xQ>A /0-hJ*YJk -ɯ,fIS_| { N9jĀMٯe%yBh}~!\U"2:6wD3=xM nnʈE;&ƀ a+ }ΪմW78+f*nLE# 9: fLxB{eTR ]p.! :H镂rꋥr$(m3[tv[ϪݻrŸOoUk1#9sY?l)S-FcZH1е\ FF(o%v]+b;5Q,-/£FLrq(GT\yҵ˃ 8AjB[@댧f(Ս!k/mx^7gKxW=Lc~Q%v8*$ѠI 4>zee*] ȡ#DVڌaL 6>iD^ؓɨ29 J^^X—>MM~Nj1?$Foi26TD Q r޷Hmw![vOi˥b o-%MMyeJ]^_'66A,M?Z0M _q+X[O!H~SC"wteUy#M_ %֭μ1+sj^Z[n걪Mj` MJ$t4f/S:|6 A󣡡G)UB\l]꘴dBVLhu7q2T*:?Wl\3sR:ӻP Xq1Wv}C `vǥ;\ӻ"E jo%,L*4@6x8Fh|ڇ,ʛKM4PHpQ.3ց{ӐW(OȔLuHo$ L%@8;iU=l]qF)Q,Kh /Y-h|>]uYJ\-4:C-rKvo:pɧ˄Ј%?3%Fz1A2 Fyf̢d\z-j}Y4#z/.c h-pJх팣[1.o ,3zPs# k ƥĵ3g7i[w#9DŤqۉD1“n:0a򶸴f]%r4Wj'`Evw[fZ^9lkz5v?,+v>;݄قBۘ~ zj3)e):nԽH@@ xҧ dpx-3)L2}m@ڈ NDeɉUU)-d_39QsƦQgSzR\-' @ڽQ~eG)C0Ի{mTUf%90[˛o"%\rB8\{,c5΁fԤ#BZiW<1Yq#TAO},"^{ e$i1617V,}A95!TLgzkM๏'v3DDb`Wekr&pm2& xQs ?KXN(a39_Q&>'%m˛"c1=a-Mh~l%XLJ.3G*\j\* h9Fmɩ`@AՑ|)=q [,!x&o@h8|6y˓yӮ^_9(Jy0|4 ZOyo &~}~$jypo?Iq R! lF'M9:= ^o]`壙7WM lEȍO'90{ 7Q,}*=48i|pc3( g|Gu|@./JXppنDŽQzMQYڝ+.i4\y'1Z:DTm)B J^A NS!uQ7e S`C]c=oJ"M HBgnnn^VJ"ߠ.5[#lѪŬN%ʗ9߁\zAH4Mߧ`8@U5QJBt(LZb/54&D ’:IpK]X1dGe^ 31lOwgpy˔ň30&AzD1D4:ցlN̐چ[~)uesw1٩ e8_K&?!aʽ8%L)9(Դ;w~C#6d` P6zF֮ *4bwٙLO!#wx|;밮9H?놵J% ۳ L]V 3qmXa}y oqxA/w t:ϵ:5O{ݨSYW *0AQ:S5M20i=qWÈ|C̉eVfJ`-8njLAE2QߺC^I1/mݏ^C 3+{@S5Ћm%M<%r'_)=*u# v+s6?z,6'& F 3ֹȾJw_T=jh8 s#P{T> }Ҹ%Hȿw6^Ϫ^k鉲&i]J(FP-\TxԸ&^jM "Rc{gGXumj hFUbE; -~ Y2%PKR}0xy]&YRVR%]#W|~V}?GigO_&+w *p-kBW48/#ڧƉtP@\Ř~<R5ZnyyudwqHuC7"\s$>v6*Y`Ev /99$Hq8Ӭ;miSyo% `1V}e Rj*Ư-~n!R*Gb`#NіAEVʵLUHPJVw(أ8bl)[ITHG<`"LBo%+BHUb۠E^,ۤB* EsCC fC2s63(ez&|H:\5~؞RW }EUoh!ܳ3̉/#/ 6;|&ry'T/zt|@0P9dbH \8O?{O8S )i⠪d<-eC8e-Z`o/J(!2&;-_'RTL:qVm[D@%Izt吷VY7sPK_Mcզ4h#5dNX6!!UO?;2ĵhCn^ł{༒# ZbowogύeӬTQ D?DEsmk,g[KGwY3SV5YEtU-e`"@կd!g]?wO*SR*|?;E?(ȩ32^}@q?W"U??X?lؐ`[ok5inTF MXE&WII,1M;Krc_"8=G]IXo d' +• yv*BI>ZC%nui>ǕgB_R Mȸ9SMN@&pB5Eiv@́9Cd~8 I | -O$N)n/1FYZY%clG5*BRl~I&-t0ϊi֟rX!HM"fmBHЯX$̛72։ʶS"것_"A㛙ӫڳBh ki0:ḮNX7+fXЊcMCvn ]E zsBR7[5:rA;B:X{.Ѭ>߮ģ0:Y'8lXX#is@0+>eaݵ ^h}-2ZڶU=/iqUL;kOvl'(.48ON*\gsQW%kYI7wMuCс/$d7Ab[7鑐g4'ai*ג9 ӬnP,rl>D@ӞΧ~gTjf%&fO.'} =AH2yߏѻQ0D'"ֿ~6 X4a,kt9VqsD)w$^q~"GT9HHe>?}Xw}fzEnҺh;pqS˨0np6;NDS'9"Luo(!BٰCyXs^2D\މvK)%⯵M74$HHмtDYo߁OEsSdRwD$F*9Үx ߎ"CjUvNP6p8(BH !V#&a}( !(3:7̾mNdk7Z{CCƨE;Djt.@S֭ШS"O 8JO8jO.EUQPR{qøQn;hR\KUDtpxSVwVdoX~$JFb6Xy5ߜ8]$;B䃶FRv;"'h1?K:̻p J#bm\4e(*KFZ>sg\@+c{(yv6erS!c qNt=.r(U&j4-sDFqFSF%wf+O4^ԠǟD Щ2O ^lyt qnzPלdD!]9YոXK ЂS1dx< ɢ-rAawng!Ʋ#^ڤceBk=ï}>RCO-oTF},#T _҄:Ya}` lCfr&;bAgUQkc3ps"5ϊޒ𙟆Ywo1?jųmxҧsc|"<1#-$S g_iUX'uI\YCBN҂x}>e JL>haDjpo7n`-TnvƸvcf 2I%Hc?H: P/{LD@?B=nx[8hCIWh @!ㆿĈ(TjHⲵJWd,84sa"Vt=x> b#|W Oy%g)k*Y2|T{G *Jx?Vsy/e&aڪӌZY,wn1"`!m¶iИ$.ltExa[M{R~;{2cV@SPwj1D ŧ:M/y:!?-[5S4 >*[X~pP<,r(*KE8*[O ̠g(%ES|[G=J1NjP@IhX ȶ}ɱx{W*H0pjۇqn`"@? ب1g:fܹrS,Ƴ'{9PD%Sa``㣖+ ȑh/!0:>g:eXfbpuۉT|BnO]%bFgg򖎹,Xʕkƕ`kK)ս nnIcF'xsڝt7NM˿ﯞmއڨ/A{Õzy%V}djĠ& z fJN։u u3du) à"~?H[@dry7OH蜈뾓ľ*7%0&\Up2@٬C^ThtY 6CHG( ̆x,KZBmґ눶M#KZ zqtӳgce9F@n|}7@@Bkt( 0"": vH'y 2'nbW N P`#^vj˪|- ,-gt4g0?H mG[|Ge J0l.ƬJ \[2͞fLk (^^e+{ۦ>rL׻҉@IB'z?Qs;@;.bPO/_5Ȁ;c,j+,h6KӺBvdoޕ “!/_Ӕr8LO=\<~M(tї^i6ya >9Qmȴ̭9ZNp7F IR%:/k咖Kpɧk)F5n2z@}98±R 9us/ڸy)0n4T=Cd]6-N=:QJ]<6z䬎 -8UφRט s.&I {%Q yOlVhIj2}.E]M<<] as<37T& w ׷NSI/bC: n3vz.$=(.3- y$6b{PibQ[7QڦL5 m?jL}Q!;;P rK\fYlUzT1YL "1<~ar(th7Z {SBl?}6<LpC |T%/$LInf4lJpCHww4:}@4yu{ֱ*iU Uw!mZR/P r@][u2.߂Ou2 ?cS STF?M"~QSU-K+X?ӃvHvv;pQ5`.4b 5p?(4},&|gtGVj~ׯ!7$?k͌ g8/DӫLNhfQQ+)u{wYݛfVѮWGRt=?-I8[&1n̆~| /פPVߏ%yi9^f 9N&5USy/$y~7Y#d nꇝ"pl^ی=P myJhDA_$otK<cbad9#ĸyR6m#~@Nbo*jhMx_Qq?;x}wiΕ9b~d Z a )OrA iA"\V;c}r8K^q>ҮZO1NgBtS s1iWS숙gE֊ҟgh^2Ә65ToN (ܐi uϏr| b9TH O4GjHVH}n#Ƈێ.$aKNToa쨝~i/~]w~e$ T?3H!2B4nz.X=vFCu M(Rx4y af쓆90ȣ>{b8GJ _Uźy-' !h5B*ߢB Ui4_ǂl[|D㝡~18jހ[~ [7Դa>^BT.xY2 |EH@E0 d;/sj!xJD4Ms4?f! lg:FifXr`I1_UcRDqb>35 *6aul 6Jtދ6>&m7\ME#y1)>g1/[ *'ʒp@gmWNWk `ՒxGl.LE{C R?Cە!]~P I2'\\1~P/4=ߋ㱯(K՝l)SDm HO4D0ol2v>ùj*}umk q@gtv:Ԑ8L{ywTl.Q|BKJ[U}0۔*VlcQ; j=NLB{mO2WEb7=~B &LAH]Ny-\q8{6 >dYD Wo3]ViK-ޞP-IDK /#*oo8sGV: ybHNcesegXk8Ip)5r~g(E=t6P%PBV }z): F՗ôt{OJ&M]Tf,y){i 1^eGĖq5d]Й.b akrL Sx=TZ'tgŊݎD_/(&c^./IKm@@}k Mc[7< EF '1X!ےE%e7Ǡ)ب#ƍԫEm1 &/˵+2۶_Lﱈ?"Pvu*zt? .T;sge&$CGM=zvVdV}P#ѺVK.}]*Pc#3Inej,`jѮo N~K.C{Qrex%*Fɻz&\B@" Ĺȼ Zi\o-ZH*cކX٧Aҙ1B(}yمVk&d%Sr"m -Ъ,9Ue3}(+sD*ܐ"'Fb 6M_D"%w^ѐ&?p;pI@jo!7nŴ(Ck9*ʵgHY {h#oj[TlkN8 ql=vGuRr^C%I۪[^ `7b1udfQk7QH0hlAjg9e~u#W,!q'eX؁?ǬNsh0Yا"4O腑u1*}zqjh"|wf\: hN"|'Տƕtb4 3 ^t5tf)@x˩D1ɳǻ*}t Uз3sy@0L"r,t$5E -3#&vO_4v '机BY,]hGp!>뽠Еh89㗲L]|}dpj'? $8_`p 2Gά)N/dN4Z@^&r"l JT}I zCHAǧnSfܧQfX9KV#AL8Bf-sIV6J=K[_^C/խYlS_8.<ư9}8?!JܱHBckt ~9^i!]7N PfXi͍>Dܣ'7<9DN6x>Wi ǿIS=~ii2 SLEZT&4bJ6*Fc9EȄʍ 1G\ LVD8PO#x;zg$$H8o]Bupݔ&my DA' x1c~#)aZd*Y/w6 u~R6Xa"xON/{eS*ejӏf7s','Nt^ţt {e(ou߁- ;MLW YP)2n|e;vcD9%ZĻiInUj9z& iq"Z GJtܮIDm`DM-3T +BNv$M&muJjF{T\*\;}Fcn(;M<^y終V:hdfY۳ɎQWۃrNmv|y#@;*/i䞡~^1w`JQ˙M]X$EYcUڙp=dZ݄ 0+̷wKrX Kނ B7ϰ{d')|RUOǦqd |#a%o<#x950cm((J~{mڄFto,%@Pf@H|\L'9epdyDrt*oെ 楫G +g611SḾtQ]븊G{K[.i&0(snjDi(lvwv?PS LKN"0`Y$\νYD~820K2W`}B82pJa'_]̽P?e i;oedL37o-^2<^һrnj.iNERW4i%ob0@#Ź碶am2$W@QƐ29forNA9՗,p-> g/fK%llӵ}o)9E_4{j!+7G=ccÖPϦppS$4mygrS5fH@#)S>>{f,%?OI[z2n/:-טP.ܸ ;^R:s8Ln+-,4>7~+dMyiEgY&c qP0u䘆g'BC,|ʠh-)W/ "]:۰o.'0_ i 0<=H*^MTsvĥdY'n2nyځ" wZPqY#XcFdSN06J +>!w$JVSV:\x\hXƙ!ÚU.~~Opbw8V4< mU'8}4X VQJg 5JSMDźM]o\]9SE  lMk@B]X2H8KEf">JS->g*ɳcLS[s+]KgEܘ <\? smq]+:-iœhC2AM iOӋ#r$:25n7(J3j9I;Y} aRl^6̃JdmΜ&ʱB; ގF|ĉ6QzŇA3vWeeImm D"B^=ϕr+Ő̆%ǿte^ҢEI#9gGB̅64gF 51N"=}G:7 bzkehb6CڄªGӓՃ[n3}AKcFTv!1rQ17 c#]4?>y[ޱ:yz>tsČq1 Z~&uP^a(/gzT.ھZg l07R>)W (" Y2>,i)һڒp_Q3.s_ƵCI&r]w6ʕ [V퍐#N8g|/ E]0 gZ!Kxt]qD;j.3x睋nn | *㉽<=*I$o0UCtePبiVt-kܩ'`8>[g)_q@X/mS>, .cO/P$'lѡ}3FXj4rvh `m}?=G\i_ MT-#}Lt 9r0`EP!/q)7$TO$Re/c\jtWr_Ay-C*JWnk< mϤ0wnFSN|$n$Y 4"lKc#E#5l?ۿ-a3#mvXN(l8t c?~Dy \Ir=b60zv4.I!#(v(Ǘ~$2^?x{+M1MǣZk+ r}lj"M|_8!^ֻ y:]ni4'hm_{}`뾖Jɧx0ː.L-*n7 C VHY4qƕ+1F2hfFV{@F4 -Mj]=!drUREqP/nϝFԹS՗\Pbc_[M[!bB)_i}g{#K2j_|æGȓ~;߮fxq; ܿT::{Z-p̤f'l8ڹ'E)7cdV>Gʭi1IKۣʆpСGZʙ]piY+J2fWE VP0 yX~`aS; EmtAACinl@,i1?n`x/`8mTzS %Xм2FHNGd RL pvО3 3&H›fFZPHK?UDm@#Ir⽺ +LK<ײלW  @zN6RCpV2m>Zc,0 B}xۼw[@ShbudY0u H3jvS'39Vk~HhH&4omCeDdָiY;6Gxm!|8]F[&nf > <u!-H>tNK ۼ]r^5_ 'u.USw&8j3q^x:6)` ӄd[jjI<6 y[oF&!_I #9Z , $2 ]Q Dإ]=&A4 A“k>)ͼl xJPXͺ ]%9K ۣ FpY즃dZ'Q$Y=_H2fHI5ɗR6um*l"YUI"01*+s?w|nJi7\7[\qs#O'e}>.tFiCc~ǀ̐l:G隿c!wK^~j:Ń!»#Lgb.A5@#uv-g]f8FX eۡN|8JSʬP1xEr-zŅFW򠭆ɰXGf_gOPQ-k쳟f1}Qb@0aCӄ$&<ωArXij+:Z߷@6^~̌A_M=<`r=mCUX4릭h^N`v)֑̯?oe hC.d0HhBz߁ * H\!ogW,Y~[Ft2+ߜ4M02zKNEs6H>QɢZY ioqsCn.v>WZ9U"_&ZP[(uʪ3"362 ׽'t0? ZEE<序 }h v8BhH+U-սc /L;q!W`ff?0mA4 fdxNw#q(Ov+Ͳ 7$ZS$Nl"q( mbzfo?΀->~Q}3Ẑ[- !Y F3( wJ|[j5RET*BK.c?>%:OΌ?hMέ3`[aX෽qgoZii$3j! ycA2{cz.NJnO{aEulhn3s Y><IۗۺY-{&} ;_q?ԮF if,?ĵX0 ~ <)oa4siA؅arYsd` 4q5]h<(HtbqI6Յ"_YT,5,$ ⬇ьl*:ifڔHPf)/uj2Ik_W eF\m|>ɜFF m*'Qjҫ,o s@?t=h>Ks?Y^fף&?(J¦ x|3Æ}:p%:>؏% wwm(DȾ)wRxWkυF?J)xoEmւC}HJŋwWDobFa) WFw*T8Q.['5}4c._\W֫Y P6j6#FVQ5-ضkvzs"MVShWM*{mo5/}B-#jr32w" lNz3}PM}ɡ=++9wTN\„A} q{ѯq 2qX VՂI+ -Qvg0,Ydf:# !phvҲHZ~ V=Q=L֊ڋ|58"vU3[qZ>g\:YS{]}i?]72Jfvg[j4iؗ䆴ur%CБz ?îKPnh_Rܴ;܇ I0e)1g"qM_x/ζLWP- 2r;T9jEfM7a|4Y8hܮ+syZ (3D1w~]k w/1%>7shN7,q(U!uT''mI)ins Q6-ȲA( Jڍ xCZ1o\;,3Z=xn08N} x$Yѵew{T}%r *ۈ̰;Ҫ(I(B;MV;]B^Ų3jn/1S˜D-~1`\Nv={"W LK&m (`)<|;8l:4!8 ixtzԎiD2,cj{\ف'E۸)-e!īY.w玛9@aqu #MΤOjם퇢GzΈةͼ,Ьh{k7/e0ÈSzU\^'g?oDUdqTq!<3<灑ל|h%D7ߒ9#I7&@{g~nOZ W3e*LY [ʥ\CI1ߘyrW`q0cH3f e4۽!^ v@ [` $'w2.Iě(|O)8qW+yx\>*zфG qh_@Y!h$;>YRqܢA&Wj}EIڪ7ǐEDȌ&{]A/ᄇgwCAԭ9ƺĬ$_ |<1CAqZc1oty./ X~!¥3ܺXgxl>MM6|o'CNjDmP({5ͩc+# !>_=K!9%5ޮ|%X<)Hzܛ"i% ^{[(UBamSƞ5,vN?.BFRorpBw7dd EħdKֵur/ .U0Qk˂&TH3gS>GkVc g80AvIꨮNKV~h(uh֋]_st[OKy F*2v3̎ ]e/'GQy$2)L*$##圊$}1NvG'jfFy'SPو: ?.ewR#d!aB(FPu"_^=T 6J㈇͛93KR11e=4t^}|t%Ǧ1.+Tg̯eWڣ$Smi&Db˹6h]1jV'PR U_tO8,D{>5,r+|cƨRjĻ6%#-ɪ's: ED0~ÔHyxF^Ű´yWjZ¯$bh;Fso۟y݅ͅltK?_G9mMcל?r-:Z^?8sRL +fT aD 7]2=#hcT'b_oàIU!a :DĒ,'VE(q-': A*=ԉ$ٿ6ZtEoe$ %fC;<-q9Qњ6p5OzMߡm &,)/x74 Jr턄 ٥ϧ q=ۣu0W W6F-9.ց\`p/ 0'V,%T$8l0XvBC ?ݝ{'χeG)3礨ӖZ?I$ufMs6UZL;lum{""6i6@1CTx],$~d  . ,e:F19vTV3E"^ +艑h|d|([ò_O/!f݈;{KW>ғ:i+ueNXGUt!WveQnɶï FQ>& >cd;,RxD5؎8 5 ~إ,%V=kNwۀi4T/LT-r0wAbA ]k lBAɮZԓdtYC˘I͍wE pv<<lӘ)șbUJ#sYI3_&RQ>e9i^1XJu)zW+YJv_7,}yP6sG‘־5ܲ?, &]X^a_"x=C%mjYAd7SGXoA!LN@sVS!:QMίܫE=a2LqRx%Ԓ2x涫a&pqD#G҂ex(V=ogU Yr@/^L.eG| _n=7Ґ;+n+yjD!o D-@ HL lUi [B& )[>Px@s2qeӚiǕd&] :θ^1#NJ> ɑCh9㽹!F'^|Z30jv7E̋q[˶B*bdU7pIq ))K5_nZ}G~x(Ŷ;IetMkG baHOmr<9,Uk9>:[(Z As{g wA)8xoBd?_S*+LүjXx  q*,߾窳6tfRZzbn=G[1~,e8)Txբ _*=$ !ɹ٪BWǖTu__Qݟœ:U$w5-TR%~PO9>& Rmgm?]o1 3akSSO͇/8 x^&%U`VxᷗsP) կ;RK-fYAḟ\]qt/ua +.#Z#v鮎#i0MIyC\B:~W[͌ē SB=Rj;r:#MNJO4K-G`0YOV]Io TU1`遁ͤH`@:-50~^@W]RwjK1j^Y򗍛|Xd> e]۴dSmmO0%tY1y1-266jCSYP|:bjUa8pJKz"GÉ+ #ƢXI_btYUU,hAFn ΉvU4 Sj* 9{%+PjI@eMY5G%Gڔ(;ΤM.] ͷO<"sᒀ·n@^|>>`tV*AD{K:"ZJ*9NC֍ʞbiCS YxvaX(*\ˀT7vbz̫I>#ўBQT@. $]^NRbcSm*x<<Zi&CZ}9 9\FU 30Y$wQ{QP2gz 깎nȯ\RN9RzOrW:z PBx!;녩 SmU&;*ܗ~H멈;s_6nAȈ LP?Tj@>{&nhg%e5t%B-I"*õ/Mj$R,a,6$&%Я/q$2] ].+ kGNP{wZx.g z@l䪮z,*ifAl#կXQ xu- 79SO) v5+N0',b3yWk7]$VeH )kf냄jl Xő`mj߬i6ٔ>3Ya>![ ?E/Vߣp{:D =j탘y:ė40h3;֨`&biT+NP,.3( 5PI҂d7թfQ…kL G-v!R^`FZ J ^@p'= @7Wn[’ hR1U.A69Z./ذ$'?\T(|^w@xoKbCH|! 6>. ~S 3dF!V- k}I`M>[4z≦.g{#PK,ESITQ߫c4, . OP˱pAh{w׵xx[!96<I7'U}WH=!Gވ&)ClKQ%mۍͰ(ULIƣ!ɪ +H伜,e9>`O]}BٽeG3zL(^D%=1v=Wiw݀"y,L~jOeDa<%M%q`Ke\srdGO4=C83yaMacvY4hE_祐b Mv$=g|yA]b#4>zas i:C+?n)pRSNn1YyTϞ: d^̉%IH~pc *j2Qy6 RLaY iC{ 3&}A|YG`vgQ8yuyzhStwc7@lW( ׽l%Y;F:c.vVFO!~gQepDb}g.,;"(J=pYO 4ȯLF Rt7:C fV( {Ĉŵ6Ndi':`vM1,gtkmj_ ·; 1 v5<ҫ&!%( EW3ӣ~!^4 /[̗I9PH@}džFNimV,wuu}~ =*==QͮdjI?^_Pfcp:=w:Fk18 } ^3\[GѰ6(g\a>R74ZG_-iiFuɱY^4基XfX仝Q=9+v҂RLz$:u6m؂y$f󄟰5D]oZBNToDu"7r5"#={N:B9tCXƸ4TG 44ydi;~|B]ȭ< 8LNV)dE44 iaܐG1S ؀lԔ3\ m$Q8Txu#kQC{b|.0J}9>5&kay,\/Y=|%Ғ]:6qQ+s|^!2؞^O=ƬFu?3ig'0r]-as7x` 1jQɃ\!cڶ#hN{BʂN*\8 !K.J˨HJ2MT q(KLm+d˜Fͭ_RE)TD*iKנ%Vtnw~L+ a_ceКY/"-I F׼%bPj:eeGL>MJ]9d:YN=mxC}5מmdp~ g8pPrKtQ}a+  7z{&L_1ۨ$ʹ-bB2`*Af.h//ĝ&)g7igm)M(u~iԄ.1CQ_3eݑz96"5Fߚ>)2Vq*HUSkƵD@~Wը#T籣DD>d;`Ps7;Hm=љ|6`BCuEmer;ƍ/ nh?V+ zd9EQ?[OFkz8(7.ϚqEKf dvjLsOL]}!ʊkmY0haorHtk?G/vOq ^)}4@Ah@Od5Y 7 vRЇyYڇ p%-,!6VKj2{AEwtI}|h9P7֛L6m3*+m UI$%;& X;s *m(۶/I NHp(وV* gxZ|xa"b6I"#Gƛ'(v-N}1AxC@) Q+|$'8½n1R-"D}}=:i "A#`m.l#c_ xjNɾZs?Rc!gQ+H~](!us98}J2v"Ʃ1[KK\XUP,O:53Q\hW19Ut: TCvdiurdRgvԉOtMAYrv(oC8k᫡"lLԧY9DgEdDM'>N[&|^L_Wg;?g_1 }6~4E@DPrm~UcN)oRƱ-|VQWEʹ`x.ʛe[-{>/]c(eyok7o0m¡ 38G,'Tl, i(>]hg9R{ܤy̮!30wC)%0µ0IHhjWU6o QW/B{LOH.%F@?ͯSX3X~JoY0[,zw$Rbu ғ-o mZӃ7)B)yd[ЁߩN3FX;sh3s 8-*,c9!7m"hH-v!\ ć~9]GB G089҉Xno!eoUQ:V4qBb' ׂQ~RY+ :&Z6,eOo8[(YbM1R ˽J%UoWE?q*Un OpROQH7WhHdVi rc 5Fm3d6ڵyKK ;]zQ ?q7iڝgЖ3WVR_+N.g~2Kt릤቏*Ҹʋ;@]u5uNRX`=Y5PK~㔵u/I̜;+jf6+Ce9ͯ[^=jsUOyKa׉A s/P8W8>V2ITp+Ƌs][ :rjMثrZF[L'n䁎"-GgdpTinmOsƓ;OQmu˦;[)E%)1[3\, ]aCYx%%x{[F: ׃ZL\JG fni[OX}!SPHD% AeUPwavӈE(РV3i`_̅"̈Vʷ `YzGbh]To9ys]e;JNĞx۟גw`S}(u{I{uo.l&kWG;jNFɜ9!HcQ_%n/N dI^p#궋MRŽ#90\bJ"%nb%$腪=C7ɰ(s3 # Dj wxug'Zk-)̣-8JvӱXeF\:U# }KڽSJ~c0?#-AՄXNF;lvbS%T]4zEK%yrh7HU3toxgV=nxЙۋMp?z1TGՂqVV>ixjƼMO$G7]zχ{4c]>E*\>~t'-*Rd{8*w,| v`դrvn s8ϻ$0T}FZcwlmB݈Ha'J+@`S^I3`;a4 >vGr Vx]ZNbՂϑT: QfAZ D_gG14X7=H2Hߒtk_%D$ }z;Λ& C+vKVMi =esà AZ(~Biʔ lCR0h Y"xx K`ՖE9}F]#15  R5Al*6b򄘝tLY` O@0gDT ѡs٫R#ϜA[P+|.vJRyr+*`"~ttdZ6)ڨ<[GUxJJRLepyȫ :>ljի`Ex^? yRnFjKvR<{[!q"c V=g#];X2<̊VR=zBL "G>˒Q=8A?w#t<OBK;\61>z\NG_''X@NJZšOyJ“eta_J(5HI7C-egH"|Z(7{XXXBor-HDJuSSmE3? L9ziJ{Խ쁸T @@Il]%.5݂/W=|9!G&Yd`t}iג gsǸcw J ٴp4tR=mnJQK [8cS篗oȫ> uB. *t!~^tl*Dn>ÎY0y}ce~F&3 Ӌh6Mӿt̢r9_&h@op j O$k rȱU>vz B7,"Ι;z5H,FY$qݸ{KU~[5^=+P'jj܈8oǦY8H"TH&3s%n{PVQ+LYs !w-1neh cuR4m I! KkteU"D]&d*RC&)W)n|DK"|nRd Hf_[ZTk3l 6ͬ})<e5/ZRr`1=1M Dƌq+@Vm`ɋ;*o[Sr"]Ge;eg=bJ|Ql7\D#.̽ڔLsXn~h䪖Ac uc;9EK&ꞪQB,g UP %1ܨqrJ#ax\SHYy @jW{-6X̦f2GĢZrK;e%-Yjqp6 PhyhГ|@v/T Z-nS1Ym4ҿ_jvήz`wBBtv#Zwp`_!Kx^=JVv|)ݢNt @ CM[]J#z! :(?EZۺ&@#-*%1y2lu5>+@M8_(d{$,e*О{šR, I؂-&/g H{OP <:ܕ'2r*H6t/XwE^nrDO2=0UȜEJwvAHUڅ^"opI?i 9C#/Gֵ ]L5S~ӧ%ahr^\n!➆0a >wطHA; !I ]1) `$N"80k?^ q"$iMkgr%$!|͡;D ;p|pFp}#\W8Wzɤ`CDh(WOW^NSuQ~) g1wuj,ut`ISM,ڀHRm*%ceF.L9JcuJBi#mM1VAQNXxwB 2:f;t]! 홪&rüh@yhFOWbdϴ1 a->aal=Vֹ_fyr&ȩ2%M "q@j,(a97XFKj1c^n 󄥨sh Tk+ĎY`uI"oMIY(*.xV9'-0R[GχbR٪;9f Uʕ[rY_A'1h+g=)izsK}ޠ[C_dl7p ke,yJ_8`=tQ~=_S]C611Hx78QL;RKȬdOP5\{%OR{0./^kV=tI}aMp"0E5,7,{:N^AyCJҥnLu!l-{)]VG;;ېH* iK)ȵ2,`\N:ŠO@ȼT g׎O@Dhd7&`$nI+PylcjNܭEB!xޤk`/|!9"ʦʠ^n@"0Q_|o%Qlhp S ,ŕ%w+m%TYQmcrqؑ}cgŃ*s^ =B ܕvD˿inc Go%D9m W` 3טO8m[iQNAXyXX+ca)Fnq8X6ug(yi#(#/6*b72LE^E\HdcoŘ.*e8SRH[SdMȤ+7yqck ^>7 *QrkJAvPms/ L] c?b"E:2]Iɜ҅pծS9^ɾq3{W^sXZW*ƎyyJuq Rʂu#OtZfP6g=jC+͊b"8껀&mC %n*-甔MhYaqкaV/v%8{"r` jG ~`BsHYnZcw`*Nes:a2OI"íJvsX.9úĨ[|v DDcŤ(Lfb2fmɓi*ZGK܌ ߄Y^f qgKbuZQ=-o@l#)HgR|EfAS \mG B$erR~[U*o=sv ߘ&!\q玤NfŕZ+%vˍ~|BoV)0ŶUs"<6 7K;.ǰ2-K԰ `_)݁Ao%1]RY"KE?vYJus1mAay%cek ]riijǵ4Pҵ;Hۛh oQJ|OhfnϫP=<FV.,2Wiel,se(ZEQ ^FV`\nj qZ[#DHuU_kFCD/r[z]ƚao jTW|>DȐ`Clu1꣐Xte2NIz=ogIjK 0ILe{J~䴇mOCF,0u3ᕍcPgRw`›M*H1."V.\#{LJ$P䷤uvgIY9]KnHzkwse.tdNShPP"8{O+W_k> ƒS9mga{8 >\,Ԫ\"YKy3+ZGKPQtLW467\H1O!qZmun!BKFZ JAjW06|b9CXڊɼv(>)|(Uu£j؛ga̲Oo}L}K{@L_DޗXɱ3z3Zs\cy`&q*H~R3:; ~ɺ)YZҟD>әqkƌ6j]Lju}nwsYrEn`SY9Tk0?#nirUSO0wW0)OQ:=ArW)Qg5֟9qLg T$WzK2 d2Jw,2]~8r7DGKM Thi16:d$XVYHؕVA/SƜd=ymxn̿$T_ a9'V{ 2R {U=У!Bjfd^iN'=5|nlp tL]ծDO]$oc*nk,v6,+{X7Pz)G]Ǖ|~Y;TJm/2UG |wxAi}ۊtפ{he˭)[s"~t;H-gkU߂^x˘Kc^)*aSgQUaJmѤ' Cܝjg }9-Ĉ-X:2-/;c H'yiݖhfGI "=E2K% ?Ɨzka$ REE/Cym=nLUA%WI' Ljb >yFL<垦k/@t ާx6ᥕR.$\r ]55y;0ց^aي3 I4J2*Ԁ/PB!*,6 ⵭ W-.`וXi5 /G.Pif"dݠgN;^<=bS6kX(EVbY=ZAE>Jucg,)P Gm9:/qpv_"WoAWvM i:35G0:vܻ#@p\/9Vf`–4mX=5¯_o皧t*ESy䳉]AW:F &3$|Wt]!:(\pa2@ED//@6\p P؃Ae(VB$MŇ'?w(D7n೏doehMbU]SFzEj@7>^LFPL$o(a~T(k%~2+Aeпw|:-)C=jXhƿ5X $e>qi[{#'RaX2Wsifdlv$x=Kx*6:'Bl95[ o hԏC2][v,xSaQ$ Ĭ!?˱KG%>ۄ-Oj|r 0kw}T۬/ElnwkVFO"OxKSGKs*a=Nc({'=pU6DRZH;0!>@̃FpI{ Xu\9^wI`hh +]W'|CP]C,Woh+Qstve\ "lGp7uKNT<[ ̡̭iǩ ш:-S:9eA%Z}WɮP/ZQJe+a[5)9i'-8􀝊haDG\י3$<[=ܠEJة0._г+h-3 yd}ֺՔݶg64UV0"5tCʟC?hf#HA]hҌT8^8dw:''Lww(" IoVr g;Rn1g&& |NV;81Hpg`Ѱ_BrvkX.ïb$yUvy;nЄ#V1!6L?[{8yͧOנ)HmsRa~8M7(Ok(lb%N%%8)ͮhԗ(gY߄=qQn}Q?j"D {)-z6h ~%WXqR^{@E6!DWҟ>;Ń+@@A#;H6(񄆺{AQRyhwɭ~Ι x߭CIZRv\:kGTe,];G93l?̄A;VCH,H%a/¿ 4A멍})AJil5OI`~1ô"7cÛr3A*t%_#*Ux'5G#N#6(p+gÂu7΅G/Wд|\1-STX>_, \o"l6LJ~FWcЩ GHB(%e?/ILE =ҼրW kC|~KU13+#;G()|@G/Iå=nvrEх.MaH1-x7"Η|\2@zS,|k=M2E`jhAM`ihM ̉68iG7 %0S?YKu-=q,6@Ӕ[X9n@3.ǖ\4nyh>B=%|#T9,[&Kl~"{oOY5&^/g%jנ7ךY ¸;2o f,#t*$-̻4$t9#n7Y%M@ B6r`hU"u!>" Qʀ>x* p0̪gB1cŧ1rV11SL[)b>oC^т؜hULmcBb^|1. wm}}Y6 JMހ͈NЖ/"Oŷ?;ǶN%dZ"I-Q] R[iFHsa*d;?Ar[lZ`Xњ, mvc Tr*~xk܅J(;\J\Rz`0R,(`eנgn^ p+@kƸ7K w%/r%@dW\$"ir gu.t4[6O1=8Kd4 umD'J5#tnLE}$I4n̬jz$' =RX=Bn=ǢgiRq)VP!h!3BbM ]WtU3*enmEQHW4lgl z3'-[=0]?w`I-އ0r7A(%#`YMmX/p:˓slbc5}B:gѧ#:\s3<)Г}!f|[S6Ml<DA# oV1P<Ш _w`Rfw/e;,,ZƎEPT)^Sj _\6$G%GEǾjPoc$Bzޗ#@LNG@Č?C!4 .kvҿGiFԢ!9E@KY_QdwMIy36c /$~75Vy`>bnD]yrd^ɒ :/pv2ij]%O2zFn10Hm(H++z!5S߾#>$ 2++:a|b"IjW4~٘.2]%gfS/{eŻR'TCvDo,DtːMj E,jĿ_Vd ҂ppdIGya0^cʏ}Ңey[?i#⸦8_A|UvΣ'GLmCPuN#V>/pTgEY!אF9].H·WM4Y4wNWEIf/~uSxBl֨G; QɊ(jkc)3A񁵵;9GbhgOne{Ѽ >ybvJ(*xvN]X:?9alv)l}D83 Iu6ud+&lL8ԋciޙnLo Xk8Fڸ]}|]9Mua Bn a`n|JW*]D3uZPn:! wU^A9+OK[Sd_%fEDj9ZZ lk}V?MfZCyV P;(zwl6{[0:k\4@t.7D gODUs׉hH~n 1lraa}ycsZ2-YϤVqȳS. ,Ɉ8ꚠTRJxc7XKO)_dw|* Bm @syY[ۗ)[ GAߍoܬEh"&2 1 /z34 Q 9Y 14f [C:w\EvYcO2)StLn΅f'gVٶ-}N;L;HKL{ ]`JYƏp[}-ǐg\SB6٤n(ܭ̘ ᕤZ+POV '$?@i@'\T_i%yKh{)R!dTues%)S( JHIW. ţ  q1VZ|]jvFF]V  y)udघ ϔ J4c81h^|}rψ4Pf 4G&SܖlAXw6ͬ K-qgk~[9M3~Zo"F$p^-JU4SN$l&,>u٪L=[ bn?D([R%R.*%Kqj`X1ܺhgCl"Ce!~N),AE?I^hʜm5\?7tVikX.3h%FU- m1W܇sM[,~aqJi\H)Q%k5<$e@}Ddnj^&Z GO7TŕZnS";[pxﶛswZD ҂;LId4ӌ}lxZ}'~Fo;Q61U%DPL7f:@ EQ!K٥3`yiA!϶$ɘEMֱV=PSSY?4g]A;T׫|㺥a2f43ocvt2vo6=['f~ĩqrWlU:Jᦟ*5W5NL8X(8g[s>jXiQѱC Ҽy֊x#f.^:&+Ul1n5?_{:g%3Nɑ‰& iöQsB V+K&lk`*հ|Et7-陎ҹ_'ױ2v+4 ; ڠgHǿnmVhmrjE{+ ; DWz> yab`4 3p,J۫Q@; J$?'`>=#ʁ[RT'e][<#JG>.y}\MƤ$BD?_M{ǗOY-Ώ౤!Rht La1L XCN,\[R!m;2f $#8ƶ~*8N腒*Ĵ.ѕ |A(j`jÃR $>WLVV-0ǘ|  ԋ 9IvT>T&>97R!TᶩN|ԱztBa?|7>_`a`|9`c+a0w pNscVqӂdbiG#q-֭(Me{[څ%GkFL XlkŠ!X읞sP?56;Uz|ڻ1W%n3g44x'c]UyXd{(\I6Eȯ*gޯ)ϿER mcdl_ u7Xo%iɭ4x߈SheM=H2F0hJ)f55h:^ZyЮ$s}R1l Ƶ${ux{5-~ .UpP\iOSY'e^D0i6QL:B(pCZ?hqΰ)1ӻ/[-D+/{DI 7q ژuà;1vyNgdJᙅ-Y~Tak"}L)A(HRYSJZf9GM@+xe !l ވ/z6:#Ndp庌gVgJpyȮ6n@s比x '(9ʧ@"7@kUp'|2_G}벁 4d.-L3Rƒf^M݅С۠\W9y1 !VAX)KICn8[V7`pyC;l{[k@V5ƽi\dSߞ+?zq$ƎwzTGj'YeoN CyZŷ:,,Sg5>g Ezb4O7 ]3a!qn/E:1q~2bW'J NssugQh01t @шoJq`+|tWPJt'ei;B/z?J {H)Jc6\1:$i7%ܷP¬5}| #g6UHuX7>b1PMpUD]—ls,#o*'`JK#W≈-F5OOPԿZGa_~LtplYE]R1~&R%deq<'!xes!EH\M֟% ٕFZl&Ȫ݆7 ]XPiV% F oZ8[$(mrYUQs깥h>/]a&HljuDIovAD%|[zCHrlSaY\lWwэ-x̙ jmn- l0M39pQ I6ŧK&ZnԡN3É٣ZZ{?qYi0*i dD?d<%׫dCEiHR[a655Et oR-poIy"-uyꚖ=tm;CcA]VtE(a; ͵eHdE —*\ 0eM(.#tZLl^EN%W8y,1X-<:A*Weaw+djS买s)+6qr ̓RM`-0DZb./&]ihcc@WQIդd,HGJ~&+{? JOg߹2cYz[ˋo? ldEFYqkuh,jw仦g u5O X38cW!ȵQiOlq uNQ@hڜeEƨjJ|lDD7g^>W"bج(ēZB h/SJIBu+3膺*KE kҝRa$I6ԴB #CJNn2Ip 5;ʨ*ߟ)->#8ܷLK!dT [[ua hVw/C4c)N"Fnې6UIbq)*,"S8<^!aY˾\wl/oލЧA_IP[{mǦn-KNTF: hss ';{#t6\ aPBH?8:I#s i>bw_4?%9S 7+63].aZB3 Z:o醌Հ?FJG@M6ĉ h-% ]t׌Ym>UhphB*E"U<òH4FҴ3^9ܾqFkxK")em3I^pFߍtiOIqj(<,8I|}FO:IG'ez(ρuQ@U 1 ``Bjݺwk "hNZ!n++^<īq }]f ݽ("@9`Qٍk7pI2M6J|}Q)oP) |S4@|3ECfh߾cKIpOn|'sIU/CF>.gkQG7d;%}o&%m)W[I۹\EqW87 ҉T,"|-"Ã?Ѡ8x{8o3/+:u@F@ ?|-RR#Qǃhc]_H⫦b*?p1 0Chh⅙kr M :UکO{TQ/jT7ayrC~M7u13Kqq7ԥJ0Bk::ZAsP]+шYk6_"@H~wĀ&dyl^9ɇk|.dL"MwNnm3!l Z&7vCϠbWE'>zGրLk(Vթ kcD!7 XTi ƀueA%;y*3:8 e8^8*,v# P5^+ T 9R$,70O -7|0C}?vaiO'2$lB^mMnt ՀJ.s6zCh^co7B0F Z|UzmX6I}9HK5F1wjyБ>SРv3)ЁMz!5ŬeFn^Lޱ .$و7Hw_hR']]JѐH.,KITRorkk,ޑĶg6Г~#ګEޗ4׬ _m+md,{i03OD`۳G8ZPf@VJ}v5:7W:DHt#ehhcׂ!}^jˇ5aw'˯v5P0݂ڞȭB@ q #fd5g3S2?ȯG}rpcrE8۞ȥwԗ ,5ޤF MiWkXYFuk947xb~ J5ƷUIdQ $BY>3P\uV#݌+ΓvyWȿF4ާ:R$:x=P:D)I$jSԧ#I&Ey$q* zTK4B^g*1M+1.jeῙx}ys, 92\XROBsAFÅ4)+<4tH/[bHshW-E0 * ?vwul˽C Tٴ5jPw@ v^zT QXa;"_>]kօN# !c7UE':T(N_X-Óax %B1~oC0Y%]/`Ie/uc]xiv,}_8Ң] w hr䟇:YD?:a}]Y{no?&R)ꭾfK OAB2Ǿ"6I9gfGygngEcaGsbnJ^:^vm jJj}G@݌S H7')d4eE4h4s8B3CVVGn1ѩ3 gpNG#sO&?ᰟޙ{6\PV48=,SгeZf8Bp.x2Q#?,%Ba9Sej~@hwΜf~i P\XIza&@`GRb4r 9|5UݏG!Q|ހe R)]5:US@gWq7Ԉ{/gYET. VWY<-5n8ʫgR&y(\9cRrqbPp=j?.Z{sܦ3-ˏS[Ť'U] b2>2˹6dȈd-f,y+Pq~$(X x4H{Ь՝c mYn[]b@D%7ȇ)W&nzK?`P왠^䭥uxR75Bo b-O)CG40]U3~u2ip (tMNE./hEWoyOJ4ͺ )$(谂=`];N[3s+zG<>mqͤ*LO+DiXt;:W KP'~_am4&GY@M"h&AEZM˫Zct#mQIz8?Щ|fѪevM'(^͓`PFYLNL~ d}Q+Xp%QR2EG[ah<- X<bFi8[~jt!Kae,30! jͰ%.g_QWM4/fAX*-`"<LGx9%V7'Y쫘°9 Y'cq0(uN%2MMsT{&`h>H89BtzS @L#*Y[U0rP&8K8I|#6|^$@JD/Vʰ4Ax?Zd/zi0jakl/“gNHN恟؃eX>D `K[҂A6?QUs$s1#-*T<Ia<b ׷>:Io~j330Qu4eGٕ>>)АYD3NW)+چ;&^ᐪbJ- s{Al3 |đ o2߷~rWtֵ7n<ys=);|6 Ve}V wԂ=sfz bwi/|<"sS n 7Ax$b$hMʢ1!bb7Zuc&M,$GˬpT2O`` ;@madR H 殃SLnxmlJxk@/.:&E=ÈqGoR$q0z_ơiZ%{Mf@iiN S3?5_­:q^pkQhVV1lkמYj) R%jOޔyQ}0H)  ?7~NT+yH[/:zS!0Q"5 EfD g VQbRYhD8G(`VDZ\malUmХO8 Ad 'C}w/s.,"4/%m>WMa;^~AJ{x~i?r|49cCNcKG3(%h@R-* )"YWtx wvQv{J'%oӠU'6hͮZO-q0ѻ n *j6s#Ц\KLP^aA ; ל-<ٶoNt@+^'`Ÿ\k7:-.LH-ڋgp,PEX mnu'C̭ΪE t>kMpàC(PN<81u14uHUG{Ju#Cptu῿oy{x::ьDfvsNI>8w Aءc2`E,ƼV<)Ώ(*w| U}n-~oNv}~tJu_J IòɋIsSe,y]1 br\&#mIϹSe,iJz4Ɖ轓L"6 +u'bHr:]N@=03UlHEb)<*L}9GGr)!9"0)%+лErt.c?0jِѾk0)P 9 ,k /bR휟HJ2O*7Hяi ϧ^ui|ߕHAjίY 4 ::qu=93)U|aGꏰ]Ibfl!xqjQ7lg[')z,2`GZr HOv1NLT CKELx<+xSz ;Mh0pt.3^Ouq)XƋnxlKf+J0oeGVµrC^*͐Z> jJLwʼ&ҰY(ͧ>5cD\ۧUŧj,:*sB;L?n6)˧I4 2G B+\yjwe?xNwBLmWΎVu`s0@'*ynN=`YBW,4sEӓϹG t~]|^7f^1;R[z]pH{rǵ c,qU2#FSDB#& Qf+3}? 0|0gň<&4? b;s%&Gpt 5%HXces=P㜫,&V0fY9S&˾ILb]eW8ܪƁeagJ_5=bF^iљ|i&{\7hULΖ, QJȠ+jnj!6,ʔp>u/aIIǻⷀ X˸>wj$\ٜJ&i`—q/9wd!r%+ơA[HOϛ6Y(tS.TWۤ 6y|-mC*[DHKiJ *$|lmvuGNo&Fp. F+w>I&ƤڨWg9$l >JXru2$Ԋ5k tE]b_ q6\.O/gj_b\+#e?]d]0]DI*$?hG<*A8~B:xBa/_=GMz#ڀ|yԧ}4̙o.[+#`SWPL5FtU/MC19إgH^:VcnirwYqÉװ$<}"q(py䕰"tNQV d5d[I/ք?nGAzCG"gQa뽔>'JWuќ+Ϥ?D6ɜ0Qj;ىJFe[ >ݪLθLPZu'"i3wo ^j Btib/tPФ* n Hӹt0aK`ꞈ}%$2窌p")O{6y^V HF Lq" |fC0t tS v&>Y׶fY0FibX{ (=J{Dߔjˉ|%dA"]. ήה)xn htz\\}BdNV":'nɸhBh`0]c@MHG4̋6W'Ǥ HS _L._#D$ RV-}sF l%p~[`6{N)d ^p*9j~&<qHsꏕ3+S3YJxy?''.̋O"Y~2?űA~Q4F #yC/oNXtRtkv&%6ZyU_+W!E$#Ղp:87ZokQۨeʾj-5bZH% ;+4W*j6J%y^Gc'C˱bj1˺'VaC\Nu|o UHs3*>Et \kL{c)CcN{?_> Pakuܲ{tOh[=7ph)wflXPE0t{.W P ݄l e\V~]RwxZ52/><~Dܢdl@X8bM ߇і=dS.H+(?hYPu8_Eï8'MlwN캓2爭Ϳ7*M=n|P}ͥ!l~}W2шWHMk^nz7:GKa &>Bi΋o>@YVI8+p}`E[þEm*zJD+c~{.IU)!}޴8{fwsD9S2 e#q$ntK2/mou.kŒ`.)Ab˹7X9PdžM3B%{-]0/64@>Og+b6Kѝ(c2^̟{$~Ke \F{ȒF@Xάӫk*tsԐ%lL+z~ozjgCԩ$[+Mq}=/%m-wGˡ¹_\7>_یCXuqk Bk~c+]5LwcwY㰊ynjj)foQ7(aˇzi,ln`W_3}#*l V;_D92)XC$ظ\~( IDhF @CjEOd6sQg)?]][gm% ABjø1; ײl`H~:20=I nRQT*ts2ݥ) Q/MR6;yn^)0";fH1q7XtaOЌ4$![ZK- M=pӹ<E_|\5 6lp(,scjnX,3=xktT&:2w/Sll՞1sZP#0㑖W6_8wBX :,q䋼s* >چ3M[bȔ%!G =y? #cJ!sN9 ![`n ȟTOwZP-I[)!\)z۳_LĎ Do1㔬AoI 0*ۼl>Y 43awD`r؝~Dx|bbl3U7M;}r6]T(8oQnU2h:i$+KAeECehxtL`pr ,d*Rie`(S[8~s$y$kϲ>ˁϝ|oO] 4LBU2w IAwtfSAH,-*7x؀vIS<_zd&$%^'ZwXǗ/r:M1}Z'VOpc܁×ol#_L^ 8]ctg^(Jd2+AhjkEP Jq?T瓫_mݿdy_{8 ]ǪN~]gؙ.jvrǵɿZ(nEAS@RZ?phzD֬&!8[TE. 1鐙~'DUJ .d( ;PIa%sko-B1B/fթ,&`|`s׮*L%6HDa[KO$:oRPp2߁\^Gw#]_v/L)bh X%bzKR7;B%GADI\&:ž[c׌#˲u謝7V&8S'_@{,^Q%PXW/V&? \,b8ȃ~TWp n\" `[Ñ5d~xCWs>@)(_d~`u+,Svt3g{YT-poe,5t=Ӭ AV(2"3lxv+ 'őoH% ^MD=c>u;ZGvGp'"`]%[zUXLX"BWbh\UG 9Y}ԟFeյs'/,ej ԁ,2̜.4nG2WTjY-V3YY(n=!m\!i:F<7[!J+ K/guf&X:z,gMs\2ŏ]XImvE@˾8(0Dاmy(SY3WyXRɴ$*];{OL:wX1+~cJv1 ]Ey1H OFr euIbpn3)C&h](.+?=F'Y%ZZC~Y9>boM4Y#Vhm7F %T$L7_VJ Z_B`inʊtt GF$2|I/53 .-&(Ej-'%'<:<͒#r__ dpoSL_Vm>N-wdY=֥:h SI if:đmq(-zTv:y  ֐P!,7Q'ͅZ C=IP:@Qw}=;5mvs;c4MqT=NB?P0]+RM-|Ծ8ʆ9Z.pGH&Kp;b֍eU fJ@I5>RK |OsQΛxC*aZneݐަ@Es7l IntD oQDVuIS`Aky *p-}xF#Ά0sweK^U$o*=w*d>< G'( \[a$% S Fk/WAIXAaOYZOf^H'rR6 oݒ S~v);~Iޠo/h]m pV2 8tfj\£2fPt8Јqy f[' ':>h={݌@}# P ̍ o#yUGsFW@[d ̌݋1a?~OgRM 1 *5Ɨvq :E߳P-NF{o,\In=Oa'yx* tfzbُZkت٫$d,z2] ޘ܃H_Tqɱx%w>];fglN< w4ZPFԓ?#$pg9dd.e;~or}EwEw3j4뼹hM(ɋlx)- ]aBTaR OV K|.ծj4 E,YC@ 1/qc}>nϝHSj!t3B˔< k@¡ShGxle 5V(F,5/Gə;ڧ%j2zڽ=.*]31bg}Œg]{zBPP]0'%M ^s`s ccnϞll;b5֔$HȰΎF{fĀW$ Qu0=*O8sۋ<(ƻGU\`4X|8b/ÇDl搭 I?whm4K*"ݳEZ0Mۂ<4ë33ǶM"U8ΏJqvR(f(pq\-"21υ$;lVKn,åʙ3;m㛦`LB7UVUЗO5Ib1kk;.Izwh 3/Dd\{K^V(cphC iCR H 7{ZV`H3,X%I>K[dx鰭MWU@M,vI\?0FǸ4sBX{'*yY;p ixvcӊAkַJYM*볰@IBZ]$ܪAW5,Q )gGW}FwabF6@8>{a-,Βv).F g(.窤#kbSAm+O<.$*v yGMC阣>$^^XA0'=rB,5Xt˸-_P >@Y\zA5' xKqZJXvf7CĽlh'%&6.P!='wDevDfh"ER {3Mo]i(n M#W~>LT̈́Y=[e]"{@M} А_Upq  .Y,PyschI{WvL 3YFOk\@5=:A%eOҋM\HsLT~hth\ǧo&tH;Wʅn#Yw/᫐+AWnJdQ*z_X#7ܩǤrp JV`W5}oK,+_yv30(t+% pUb D>aW&J/q6Z*W}ϣFOA2%o-AàK@z?E=Yp+( =zk1L3!$5ދuHh_iBp s˥׸8dk{vrjEk tYԖ%W{*Ӎ, ʙKPr fR;&,&K/A5(Q+{(W!sլ;}2M$p: :Q}UH{i{rlzim=ܮ9I2xkM98z pɳ[{2!|KZ%ګ_鳊G^XLd/C@x67z_]w54Y9|r,|~o8]rI0 '2ՐN@2k4A<WtA2WbssT 6#\~lt^7'b<= c>8]Q&f;TO_]ȖۇF'GΣ\CEXVOewˈƟ;p,U&8pI;D3ooz$[o`K'ٴxz0@r4և(x Av)dnWvq>lW%E!h%V,{)KGcIJ:s$Wլ JXG&@Vr5mԝft8a*972#lOznoe{?rWL6d~7Xz(:䋸 boQw%Fڤ sz$CfzIt-BWX 䕥v!MՏy41c0t3dO*+b-rvdkqj=y? .`K3":cO2 Y8&XL5t \M9%fwhma{ tA'r@su۲ FYTp2ͥ(K\qP^i0߀hn̺U{@,sCް,/x_'%8wSCџP5d{CQ"XWLk1OS@*=9^[dz.]S1hY(StPKH͸;-WUtMp^%uʞPX bF̅jRr{÷+)۾֚! 3Rya4\z_&9n rɌ|&Q{Rwʕk*[aOa2w ,F1I-{)5}AԹz]+(o8b]=[7"[W,6L`tΘϕd`mF1 4Uf5{\^PF o]G:yis4kwA!~=,qzd ɡ)e8@]( ΁OSfO|x_,S~ZBƀڳ ʿH!p`:R{׎z< ~gGkm 2UE}g{$%<;1Y y\XL-@Af 'Ҹ-ƳSdZ+tUWzRwM"}yhjj=- G*oTfgA5 R6JLwcd?7a͞|ŰB3 Yru=&*Z\!4ôc#L WEʧ޽mʎE̞`dJjwJEw\Ne2Kht˽X 5E-Ch}A%^Bg^BB03k_BוO5uՔ~^iq3+h°%F |=6HG k.V _]]kB^ki?1:}Zu~w jS@@jWL|Ƀ!sʳ2ʼy^S+'KW;r5ntz_D쩮L`-\-T>[D÷ %es=I՞]r6 A.* @-PPOpHLfvigsNHBY&*djf  mоWzk\WG P_VeqA7It-jlrzw,%/GSle zG vR{o4Kղ=v;oRY%vt(NHqu1t<مvjՌ pוEBJ7:NW҂&FM>%{Gpv/L>z>}fKbepd[Hx)VG&;=3w|R)Λ L/un_gљ\h–P@eƐk˶.qM9Ր*u $a rg׎<^*pdĹ?秓h ;'l@8ShHN;5 5{ ( C96p ~C) WLY"M#{0m~o:ݯo|[XM_1;OV^@cJ?Sҿb5Ii ֕[EшZE6.VY3:xEQi%곫Bkmjww!XeiC$ *P$S2hNԼ[ t~ z~oP'!=s.f&ѕI'PN*qx?!ce"/ST%a ;x;{BɧžWWPߏ2 81w+h_G kHeG^HȄ B%y;ZHfwӒ^mm]2z=U(φNJr0f;:-F*:2I+LGl|hÎ),QJT֋DSē@9s_ȨMpg)qC(G70$tx$aot EA[@>(ʶy*- Ƭ5X2zٛ@pBg zq?f)2aJueE=:+u(T֏U䯇"4:l0|Rݕw^WPMBNwÞUyvO{La$Z/5]},%Dp Q[-k<6B,Q?PVDB`9qmqy۬4u:9aꧽк^q(HL+L{Sq8`/ĉZb@/O ` ZջA辽W4%tv&TԹjrv(W9ST7!qz%*;G`$Xn'ޏH^|Api _8޵Z>~r51^=3v{ H&n1֏VY'BZU坓5tHoF$ikb NF|>8?"tnj& \Y1_<*RN׀YתL(EidPnL_'58/4g`jǶ|S *rq{!EhgǨ28U vwDa%F kvjӨ d8ߨI`] 08QYνxmڀ~Xg|/z6͔¡Kq!5&1&a+N?[?hɮŊ_J*!jWA Gn1(F,3Tb؅:U>,:[11M,G)&m);R I=qAJ){ a3kdB=ݖ=!GѡVNƦe2u<]ˆH38RO+5;2 )OQ,lSK{O:m_g |ȃ^̼!y4ܹj %9C~@<Ibfֶ\WָSu֋tK NN_Iɢe ׾IT?U}^=WAz$Ja1C^~(4qYqhO}ȭ!4>by+NzBjrr˧JJx?z^іLPț+Q##U֖ \5o2\YC){UJy#ی`Ռ?#_(G,_Am};'UeGlixmؕ,Mx[Ms _},JF4{z2vZT'%̶%[l :/JDu]պT8q4i_©yagAMvb@#C~: W!^d:.>gOSV cPXޙvPr}ɜ.{pnֲ5wK,Ԇ1laDQN>: Pf&`m4o>J|}afZ˷9p4e KR{ʹuJI=þ0}ėBO!Ãnfe>t 9N+'pY@y2Ρ~ى;zUq:c5),% a?:*)R~vؘHǶ5GZQRJ&T>MB>1Dn4FL`LqZ£3 = s"Zf* _Fݖ+s18 ZzgPxx/EIU8zm@ƓC69fI\Ez1-bˉ0KW6|o8igʋ,Bu$UOma٘H#{R4nG3[~jT~KhbuIrlTDz4Re'+l-C@%\..XXڏ vH.;xj ?P#fmT"w 7'--`d2 *#&>y:Jv9QdfTF-`%WukW;Ԧ9&7 )\WQD)Ub=zf8v,d>Y4 $dj:6~lek@72Iګ>W,g))w*³R. ;C$k\/Sfj] l|FEU<Z"o`رbiRǜnM\Z/d[h xZxZۛ)fud2;S"`x]C.e&HjZ@GupS;SҧXiN9hJziJZq%_O e6\ Sc,!BuK_6yU603+Rȝc'f,5g+?BLw4xW~, XRэ0KgE␠ߏFhh[`8ܧa@ܤԞۏ (ިI*o _W=08 Ka|ZT*t5%4FؐF?"T-\YqB!lw9{dmnRH>FC5WRd\-!IB}Q\H;Pou7D+,ۤǩS_S2H LVDt-/BPx#psrj~Ǧ5j:cպ*ͫ.hEXEnUxrOϲ3Gzw/9$F[W=묨lUt9}z#KipuRdz优 Xyt&m:9S@m( qz.)g?s|ef,h>XC@>Usͅ93uo[W>uz#™VAG܆v{G8k[]`r01Vj6!0VKZ|gaƷc6QbT{%Ni525:.LZ*7UiRUHFBX.BL&ulk/1ľJEk+;-W>_CP󟌅W8[s{y4`[FU0,[ k+IHI6sTC$T.)@+A/=8ﹴ÷G`qLQ,WR޻R(7Ė·*牣mx~r;x\yh?ߑE6QtG gWLebP}ytфu+qu (a$]KoݡjF/Sok;mGL"N1/RB +M S` mWβKEE7<MvWK9nNຏڽ+$\_ct#O 8G+`k>f7ė~ .#\[넰5;BŸ[3+2 JT7'8Nn:}1hS,бXv>d;eA=v?A7;ӳyR8u-?Da^5yhD<>nV>usE {U:D!PkXmf*>5._C"giA%GC[Ʊrx-p5 vuk4ڣeqCj,&liyiv~(ZE0YJ~Zp$cSf C(.b#S:$/wJvJ}/-o6fcpwe%I1|R&_ -7Q.v[Nm θ}0Ꙡ3hF"Se"ORć]0qJz ->|9C=3 t(AkPdbf̠Ohވ Rg28񍘌ήIjz9/M\]F/^F'\ hJ[`Lz'xa[Qe0  /A'CPʿjWeh|eC\wsN`D_4y_qͻtwt[_ҖV:iYSL?[Ox9}j=(6΋MT+3<).JK}_AVaK3]ŷce&qMq㾥#>gYzY`?b-hɪN?U/W <ʫFB |aHvz=QhYk 54 F"Msk2wV[[ϣj}h!H\GGR6WFU$Xrs&5~I,49nӗ;AǎQ]BkA%4 }A3)q:\Qљtϭnj.Dҳ#AYP=u4+A_4n[j 1j`ZHkSzf+QCDht\;H}04x^izNس6PFDIdA,j4_/3-%`NH/`S>L*PW ^ӊ~Ri|E`)̗O\g=O N5HAG%2 K2Pb;W/%Bc.2l2;À§4Sp{B]?q0ah|g4z#_fUyިmq/js>3Y|- 1s^glJ>zvMǔ|:J'q,R[ >ү- :3$k?161,cDF^bnSG/\ _J=pp*mFiv= !'(_5Ys:-[:ãf`XoSIVuxRkM<%-o)3 M䭩JqĊ3ˠ2)tJ`-'[Fٯ{#45Q4R4O]ܳ[.I0f]a xg$X^Y|XU!LWWn"<VU:#};O7Ͷ+d~1M_n,M0qvw(ui~̷R!#<[ϴs[pE͝OCG;6X˖eXQ?';~G.'a,VpqC6O›]9΀& &P5UŬ"5](r‘5v?a)ҍu};9C#byRY4Ug+->Jra-kGD6/s(g_MܴeYcJjW :x=M pcBMÊTWJHk7Stn癀2{5Kw%,NBơ-Е'K1n3@JOmUcYZ] ;%J;bKkDL ACR`LEvR%Ql㋽i<*S*x-h{MD+)ȝ=a$c:K>w h#f3fOn&ǟЫ˜6^ѡ6b)N~̩:uMYGlrP9=Ktÿ_Myq֘J8[q؞Is[|3+Udf{s𥔯kS6QdFQ-NHġkڵCơyB2o4|RGP6A߰[7 DDɮHNl5;8-ݏgݗ|+/nh5| +?rh;ZK\"9xZ.`F63ހ>{֡`N. "LJXw e8Ӈ Q[4ޞ*O-Y&$Ε#/㽶e0q ULE9ªD4Ҍur3 qRo(0^mZc6w4g#1ҬQ*xE;ť1FAjh[SZ,er>7 ܚ*_ʐh$H* xM}H.ǜz$V~؀[22,};ծ%rQEXEEROBi!?sP6%t|dFNX.$Yn.XXV2*kE`~5aV黽iW]SSI7o<dIg$w*##!|p.aW5gڼ2|/!g,V>ď6v]hg* 5(iԨVfDs3Mwm`M\{h :xs*jVXL4mm ': H<[q}kE{5J#sZ ݟ(`%_vd#1P|x$So$yoR )D=]N@Lط"㶉ڇDEHdNCB&$bMϓf}x:oF \O{{ۑSoWyFر[ǁB0Kߜt2K|ep%{<"~6 d#\Ń6np%8I)iv ԼL(Z,,xDTRG%e6zp2Қ?9Edje.bY9FY IuA80mz{@va K%X=RlBO%#Žc (<;Gsx$Bhc܋?]}=&3 _VtEEz5x׷Uz0_SՁ KnZ9M֋fA5 6ޘ܆}X嗬b =>{f[OY}hM9 !YJC!/>xfCP$ɆfV!є%.SJ:$!ܓ0ZUsbjcq5f5ʿY+a(6@?,/*A[u D ynIԃy>9iIԚߨ /Ә +`Kb߸bҬ݇p/ү f ' *U ;p?i^F=\S5;pKծ"ČRމ'mCa!3딅&g77IY\( DXг+jb?Q &wE?[L8@wZc dӒ@)( {id}RXf3c -]M~-۷cY8pIԄn^ żxɇvHޤm+zsɌ9bf]/#Y)ڪy^KG^N}wYeB\&[>Ms>Ql@۱w "|WOۺ¹c*D+R[>Kb&j l{i;O ۂpcJKz{ۑvJ} ='Z҂b1sҾ5N峦`8ϔ@)%qj<šnyjNև T]xEŊ"}X~t yvZdD2QN";\ȹKޛWAF܂WJbLa w p5gT@ G3k킯 \o^y$U+H|IΘCc 4߄u9ۧ&%/߇d˲Y~c{fZn^P/FLC& ЩA#ʙ|ؑ Wɳb,"-pSixT֪YK >*#mp72 GFA9_>}eIɺH}[aӓ}$' 3a ]]0>FMCNs?xc ކ%^"찴wQ^ԧ{*0 ,-)f?J;l910HӒ.l(ol&fs0>D➪ެlw42N!MZ m< (TЇ(.'RSB6;¹oк! _]pdZ ,#ՎēF*^m.!e>=Z`[o-X6l855-jW!DG4HO@MICz[H\l6mF]59Scy8ct/m|2Q^_Od*x;F L6 {bL^bdc{˱Jz/!rg^s M?oMhҍjef8&u~nnxs{b:|LSR)Xv{ 7FXRF@ τC1"n0M)/:eul c 9ᤃcawOd#."?WYU\h[N9hyzUNdt0HZUbrŎg EO;I̥8Gq 8.vd|[U䉧h;A(cPB: ɠacjfMdd c6gtؕ%;A)$عˆ ե3ȋ'>AYMYc_&I%KL4xYL'm 5AerĻW =cpdVf}Rto}K'K]_/[)W6Ol#)=Zaډر~*k([ sL, @>P#  &֎Ηxc{ .4FmTw3Cbd] 1ƴxS_m$EeLj"1dKBƔ|b%6mz #|-+r]ͥ2[Sb>8}ڻE&\QE\{*OM.[U%,@UL̀io CPP$yJ~*LiY` Z `iZ#"]\-,#1.4(;&n_JT5y-#n``챘1Ýh7]0ĉz{1eTF>sku cW`L wLUIxjrG! u+r߱fws%F(f1A^n!*Y A;sRm^">^=DU`Zbh TG~ U_Hx?5tE 5llt(5P5kou 8e9.eC,}VهUIm6fP#$?}k Q!V˦Y,VzCJm_&THDr:gko9CYGi.Cb I|,}K<JPf~#JY]#RpYLVɟ#VMׯ#ǵ)3?ep9/ndKZѡA8E?jui6 d{uZ^@+I1%]>{wa]>]>)?B}wFۍ6-&"yfShpΣP6b($V1vBioCWrkITbؙ˘:fà^(CЙ~$mJש"a?y^Z(*ͭ77꯿vw`&Yt[T9mR&dv:M EEÁqW=!'a,.NbE4ѠX>`BrL GIB9˵IQ Դ0˝}*4dQަҹu st g;0(^̤(+g[=MpH[1iy;י6"hӰ|iuQNQcƃ/q=9Wm#;CUu6#/6a.EN5{ˠۈ  ];+4s@H^q^xʙ}Wr@oc(K j@W{dQ7MV:ֲƻ5f]Mg/ehZQTG7!g'Gp@Ӧc5QG.]Ƨ74CrۤSK8g(A*7p ,?ehBVܱXfJv5wf7 vyG5h X]|X3`ϛ.X&"{rbN*#)gs^͖]z8u8,[MTYO(Ms9I'a3wLsyk4y6~C<%Wp99 1 &#u3,8{YWch߻ga3<%X t0*d!|񻽺HB{!(P KFL'V޷%?ݡI9Z9(> t.݉8⌬>gGAA}}ȭD%q7j?o~&͞"M1\zI[܃*Yy X JզpEL;BrKV܎߳%^N=gׁv4,Ax:fLKl(s!"77/fbZ8G P,4U ekJS{Co\Nbnfnc0>luJIŘxcLaHT33U`pb.~=瞦7AzzMF_H(3B0/&foiC b߆$!o`,z9 z Erͨ^$$!P/ ڼ6U3V b |Q%K rbԴUF੧_4xV7V^۹ty2c^c (3X7 eŘN3nY BӦVV a}Avײ L VS̯-#;6S2#UoOV @ :"V~.V rO(lObg\_c g=)6g4ewN\]cbP gt8JEjնEp}-zq+,!̸}Uq[ܥĶMQ@ 4[4}yIź)(n"y>R!ʟ$/Qs^kds'$R̉Z{b?'ɘFPde"&e!ٰA&3PRM8!D_5I^_BGy >6uHmh>8XPbj͗'X&px /U٪ޮ.o ='y:xmRvUG^Zŋ͆»2/7+[CnF=Գ.ޜdڀ+;0 (\-TƁr])_h4̡55 y-}5_U$ugUπfӱ.4,ʊ(ch/i֨ZjD00!| Wd5Pov>P2#;?CSޡD|5 uV[i;<.MRoemEn,r;ç3./j6[@Z"]H:@t~KW+hͮT+ޓL 1|Z6ixUߢAѣ%)ҠLmJo| ]p7ZACFGzl*7h#u+עLe1g W`,C8UAHaogmI-ORT"V RA;tn? #BlX~%%iم>M 8'-u.*q,f%i1`JSx -MO~$+u*qV R}/k޼A0׳,aKȆ@M R X\K{\(ߡ/ydՄ!gZ0g չL3v^̯dd1ǫeP!Mgt,lk&,Re/Y8ʞ}_C]ˆXM}P@8Ub9\QHVs I1bp.mw}ֹ4[ד/P {G_1LSG5Nt&<7F[$D;ۚv/$Ys5j$uu 'Dƿ>ToKs3Ԍo >kM@^\kh_Qi]6D`'دA( 4xn !Nt 4RkM$4tonLu pHk[m/m[z5[#}AJc'cOh>@X?GΘgv":ve-=cQګrkpM< ݤHWc"*jr^{~opsYJ8Gʗz*X)S~-슃&kk{yVLAx <}C;[@b N iQüN+'lth60M[a-]f㨀@J f.ot`~1uqE(n L "+&ORu-90t\JP瘨)"志xB H93oCݴ:'<[;kcՅĒFGv @:D~yr;O>0ͱ<N*)\=RO^.OC0"<mBqmT gP-ڤ͒XZB}\%xc9#ďR4#pueb4EӶr(TK(3K|d%^|-Vh^5*'mI/GDrb#-'-;S*k좼a;Vb{ ֍Io9]׊ܠUg=:߻FVw?%7 (Wݧ'i3h޵Y[BNu Qv"<6%lOTnAH`J;$D "5ZFJ oVLP\@=ŚmYUo=AI|zfJl0wSr-D1zџ}o~>˼㪵;ksM4z{ Jy&] w_ʠ4,W1]nJXxF%EBfBۑj?WtEh{sP0S_3ᑧZF<;Uvo:2+{Z bДɠ!v0s1M6 7&F 6Q"tŐ?сiT,7w4)M҂&@%}*/ @ &U37HD@1Aqqg 0}%e| ?6^q͂DDt+(JpN]_TZoOzԀY1đ!߉.վ\<,pgdbxCwM{(k Ͳ-Uk 2;,ydй%3G =xB2$S'w;Oی,5[YQE(wzDUI`mgg.< PZsdk}vLէ꾁+Z,Rk% rhTecy0) _"<͖.aLTL F'|V D ·>~gr_، ?#3.p_wpc>&<r1h>` t ͆im1a<^x6)!'2Z?c;N Ɨ~xK\Ϗ;WyaZ(Ix '7Crӥͽd_.b!@aG.t|v 4ΑA^^٦o+э 9 tO6gek~% $Nc?31]fV06Qolw# Q:CCO j=;s.b@֐~)pе;qZC"I}\ڟgȗj* |8 !rP'N>ʯXq*}^a=$!V@PG}SPb` vI%5zыy8KҼK2BG?~ј Gg:VY?>`u:"a JL&DڄXR:#vr)K\sUZrYa`#㵾4^njG߭l^)aT|[m '3h[ClѣɽKɣ?;nEj]z\񄨘A4f>I|Z2%k =$,JZ\L8yC yW[ qbblj~zOO@pȲ6%1lhrO4~ 1`-0np-F&H?A Rofhdj=Li2FMrƺ{(Jyv>H[/y$~s.r/k\纶$bUV{\6`L~KNե- /T(C agP~]B oZ.VB,EdgM]F'gID~ة:3w%Q0mKS%_=%m1ЕBg᥈ , -!l|R$SI_xD*ψ^xX0Z*ի((*O&$aR|]$eGh1ݕ+ШK7f|:R"qS3 5DၼNe)c\.[jh5ڛ"%P"ʇ&eXdXw}E dx Ud?|DZK^&CGMyˀp٧ySjwa)Neft z'uj 'PA\eg5ѹH!'{e]ףA׹dXh/V5 /8xb?ƌ87~sG8[FX=qn&E GE!Vx*N%Ě*Q&)*N'CR֨PRl=,Z#}kxX+>]ЕvQ8v_d<#Bl^ī߾IPVLp%8yq*0scsUd2&:Wg1!S%ew5pˉf|sg?OAt^u5}PKJ.C'- pu"tOa P7.paF08Bj8 Y|( lg9Kfet6#ɜ{Wɮ ~p { }%u=8:AB_PFKi?fO& Kkqݑ*}qg[&2iPU2-<: ^HY%V.KCf;(*^nnqhS9BUju*t9ڇ*^W&W]LiAY;\H ɧ1ɦ`<-f s@YQ4Hi΋WwHq2yY@T)) m?dRl}.Ux"oO%*s@d-Ҡ3 m;tldFdvYKAюrdm4bf+_kx&ǽsQQ@bW*uuܜ K/ hTuw-ZOb\Ũ@,w[zt?~|w07 ܱ{"^nc-^bz>11oc[u:"0H*j”NCňAлi\aꐎjHCb\X{_,slL `fBh\ϕ^#]>$v-Za =}n҃+?|8r:Y^xX@cb_;N?TyhI!zQE,5ŮqRtGMQVY6晨@Beu0+$5·Zrqp^M7sy98,p}]vѕp \ntNPtT$<@Mҍ(HUEB't=)yt fyF0uJ^ӿMs4}WX"wZa?+iDq[bo/`ަ~|c4d6nkXUp Ul38 s4mx @.A&qn<eKX˧N$`aXu!/$Ty1d$*pU{.7R(.,8S³%洩4]6NH-%"1LYFڇfa. L=8g{j]|jP.j3<:>Ff>YLy*ʘNG7L])I^k>-IMTTU՜IKVu0Z;|c~oB lMBV ΤؓQe$5JA>t~7RAHp~ 츩 Ak&0ihi>7ϖ偃8Z;U_Ic Gm_zF=#|8 wF;ag+~6Y:' Byax֛cb:C poXQ֧&2R)Q#bί]4j\X zԣV|2 8u cmAC[7܇o7 7uw<3o< (z c'pPB"ii':B.W%(}"vRyJ>UWzCeRXğvo`D=F^sZf RTzɍLcf5ui+Kn1TQ"2-aaoTrӨ,&>MNȶ.yUz^ap.vq_ Y6}n)֬BI ȱ Vu 8pT AzDUY~ӈ~ie>slM/+@8l2X3: K n ~6%^nTSu2W~U "=G&7ckc\(S!óJS//!@AÇqdb} $R¿ߞC7>فYve;G;ϟ )`ڭkQ]+hSBđhp`|m8~'z΋izUMcޅZvQз`Si";4* Jƿef#š>=&=̝KO?b!ɣG/bud|))ќc)l"qy9V`p9; A/9ߖK? 8gb/ЙiK e?ExD{Ǹ7{jlk׭3UyaS7 * SѠ}è(}/HD_9g|ف'aJ_zIPf(ž-!CG"s#o=3K5{ |-ь rΨu;Q=Ջ]@G,|HdIҗ=II1S_nDC( v K@W>њ%v-_{IO]n1}C>Iv@i OA\F ϟB{Ps]K9x&>cqӐWYd9_3N'9wq)|9vPƷJ &OBU`qS;݉!5T K6c;)4-̠a2C!)7|z?16i~+]0Ӄo˰5us )LTO@kYJдcR3X]?(* >!BTXLȍwEF]:ȐN˰޿qNJ}jk[ 9F ;4F 'ꮹ6GN en,U,GG KӼEڬ痬ɂ%}aC 1]ti*8|J^ĺ LԦV(p C3| ÎjMc~{k&Pd("yi {lE#I`'Y9g  +ȝ A ʓWʬ)dT#>?ǩA@{+6i~?!# rOE[6޲HV>hgMoE1%Rli̮d&?WP~4CC>He댬va85p8ëO0y;6m4*wwW*Z!Bї;L%P LXgD_*_҃ QԇB_o8>hm;(߰V\?/h $?H~Ml>!9AXlR}}t;"g~OXaWT$DIpY2?dl?ƟX_fx̷wpSxBÅM%-؂R- ț{ 6/f |9Cl7Op z Ց!1帔Ih2b$k_k#*ni-x6}3 2|C ^O`Eꂩ*ZeDvܧZ~~/֓XFSQ\ @3b(2ss ENZ"q V?wGHXτ0-'B(" ` ݇(N S 9B,hl.}St 9慍>ÀnyrsVck&2KY-^P:rrը!<).X˰ֺ:4H } +T1VN-\3Er?ꜳ,_QVVVGkB{&K8Ph7X!-KT<\I`t8SF dBrq{v=s _[scǭ7 Z!6= zM u 2yOڑrײmY\W 0ױ'3:2E ,ɥ]AYj@ .LLfÆ\՘zw+?!XmpUbc<|T"4+hZ {e8,ݢ?^2IŌbv X=ᓒR_oΊ=!ONT=fgKT=p,ELc]HVN#M>2:CH#?)?9ȯi?.k6^-l5/7Y}yvc>eudf@-͔*=]K~$PN3.| uf)37oq x8NK28F#8_Pq?q芋?*BOpwKs[}&P$QCOF#T#.PvEF2uĹm-h~ h 6 CqYi 6%3RBmJ۰^Mw!xwEwzF't 1Xnk(8Z)_AݜJ T*^<9gMCN,)3HSEx v*h4', ؝M^fXΞ4mK fEX7^!OA+k:^T Uש.Xq (hZUGWq}VRSuP Y,_So]^up7GhCsFggLi};R!P J)~*+s_0<0(t;R^NX>RZ䂃)=yS.F46&LYțY7C3,( R" Kёmq8_:h~?6hliBXE*&bS/B/p+[voH$✰gB*oI8&BaR]CkOCԥ b1FHDx}yCSWv}7[E}*G|a#diQ7D#5/?u;-&Ɩg6 CcMz U k?|+DG1.&T5~ -6 >e*Ji0AWdrdY&FTU]qShS8o= $ϴxv޲hqDLۮ|2渊&+_%ip+}aP{2d{@lJ7(T("LPY2)r}@Ut&# ]W@9Gg/"ʶ8_%;Wh)Y.ag)J"QJZusZUro (c+I^(o^FHQ4Wd4Z_+&fsa6XRLf< κ |8hUMK 8jI0\F2PSA!y'&3RPv:#ltEY_1]~7m"gr)r]6ĥ9cW77Z/F)}"lb\j!m >RA''h8Unxu ܃a\4[kJmsIk#ώi~'4|e'dK~ˑ{ dJ[ J ~R;0"fq>RAH٥w9D 6|n_gFjGfupNJ>r_@.{8c#%̝ԟPR=VjAF +4m{q yk/dt!4~МS݊}ʹY:1z##ef73j2t;>u2ᷩ x_.qSyfώJ"ʡZd #HKk^'(#K.˓ $#$e?{6kM ¬);ދ:bbrp^ r^7ւE5n(~ĈeЏ<<Wұ`3w\:g,xGՒ$n2mzvCNB4ed@tmd8d(N^ʐbG1[NׇGKZOC/'0 7%NÎWeѿy7VXkj؝덞C ,djbP΄*?_w܌6m:M#a?珐_^X)v>mIPtlͅwS3fT"6(8#bwlLW.W(1pi @j,'쑽XcOo' ȞwA~pf岾80AL07ےPgtn(c(^$*P UyIac `}1LD#\T#;8r_gABzbݿ@@M qӀA/9_= J uSڔ_l$}9+mVQЕyʲ4Bs7`+ABt-b%`Jv}ι1ɭp> ;>B;adsr+M`~ڬj u"Aqb5/Kb!g/@ txݼ'N}skb^~76!4=zzs_h\Lly rklBE. 4* Nf Q*/vӮ$y!"y1MchWS! Yzʻ7uvjsl_u,| @Z |5VQ}E3@Ԧ&Mq%E #o1 1ղsbW$8Uy)2eǛ9Z6b)XI3tbN<܏. L#d`Xi>x&gda} !)9,% ͚Q%1֒+t(é\4`Ȏi FX>x rgα"=scUZ/=_qjz"Pc(PobUJRȒ xd ೮Xg6p ?\~AR]kpW>~ a['9د(G([@iFBI{N)] / Dr':םks{P8E&;L;R=a$ppa@oуpQvaTT~Xx9Ѵ#[͐;H<G@˟x6iĠ Y:ÒLr臋5MF0ҫC*+*zWnM˳ɒ@ y$B3ƍ?˙`>tO&G{ rp)J㉌o"otZGiY "Fe9"h?Q'۪ h Ǻ~7c{捊flbHZqH:OO46ic a^O{\p+VÉ6= GoH[Q" gv>sG:OeM0e q/=&x]hl7Ԃ{=75iU<Ϳ 9b{{ 䝟(eG/Oxmaz*=)4'; 8Ua8$U<6wk{l^~MdK k&%Gu+/0}!4U!e'A3I\~ѕX-2HX,hBri\Ɋ2FFe<ބ."G\,zXvZSӲP_ΏGkL؉ʦ ٛЁ*a@pD[ОXz5SJ'ʧI@0`/D4V'Z9?PO9]0w] 2lA/LlHnuDlͰu`)ytN.bHcUSfmJz7*qF'O<+xKmX\UXYqK]z#cSu4ࢁbm[U8v%gCJ}Q;}H%YX? \8K7oXE#3U9epGբ/|!I)c;,(A+DuM;ݽ:H>WɅkGߋ>'%3?rYf!v(IdXh! ƥdEHɒ?#~.SV0:IB@04/AuQy ;tYmuB6->Kc P NI]X%URVvr4=XC(0O@F'T/=,D Y ] ) \-##l斍ÝEhGvYc[IZi}rļxS8F148\%{+ʃ<: !vUrڒix**~@L匸=Nx e:N' ϨB$gArKhilW42ZM3n?*%zNmHUhd>Cx-Th'0NxGZkdv6{fcv?0oF-s6$ 4B@\~ <菓b3cg33 (~.]b1<\s·=r̥Bbz䉅6v#3X 0u BX6s =+?01\w;buW^_<_)[l2 5pUS\A)┤fx,0za m4 +mb8P1΀Wcͩ @oqۊ7}yY>8ѥ:>|J@C0A /t `tDچ_29lamF5W,}pcP@9v}}nvO񊹁(ޤ@66)ᡳKZ0oSI2A?#"3zS)ߜ*5~(ߜ.<zv"=2CZ\ITC)+*g(5S"(ZQYGXQ&ZvU!\oMGSX\ a'拺M?39 r*̙(M+?M AuqzLoZ q9$/rNAц4Ylֿ"A<1cU .NwJY ,wU.*@*+|]Pf~a>v{w %<ե"< U``$+>esg@Qk[CtEެ5E蘨K,ຉe!,7d dRWyЮWVfkRAM3гv&{ؖ j>KgZ7$n2Xv-.I{loE; \}CdPϏY?xb9c;/9(M,SjU؋NHou+fs 764_ 7YF+}fǮܐ^`;-)BرAr&Y*@ӀYxJ_+$x 5/WÛĴ51)-ĉ Se80e#L@opuDnfAU+ȎfyE1y2e+@[ "AvO;*SM:cpf`d%vwu tʎ0*)zOu+cr‹>YX>km4H]eUD%N!w%vbR`K=V<  J_X x%FTc h%g xX;4d94j>qwSsy5/L?ξP^CvPTAHKKa;ӮYc ͒-يA$NX 17yAN5Rߡv =PK>$ݸʑprűT+?0:SulŇ_!26 X##D= y랅vv۸' ݝb}+D+ ><wY.]Xu!XED9he^%Q9B9:`ӈs]F/߀ɗ?Jx~tN:}@:q/W̓8mV4Y}Tce!A[呍~56[Uʅd*ɒACVmI^S%@ܷC%ZSڍAڛU!f"rY܃J5Ȃ|y̻*ݏ Hn-E@#d+8 lf9 ^ͻ g>-rO#>C됡eJuo,/:<=DXT Nk0I JH2$$ӈ1̬j8oA.Vn gtUW.{KBN刍86jl$5b(;|MO|*]`d79i$9Y^Cs& [|Y, rHX'нJFvD5'Q" 0(SŇfrԉo~uI>tIYl8*$ΒG&Iz#} W3zޗ! N-₎3{!F]{ntY3F-3.6BV]O3U*I203 ̉D=y']V2Y'0zGzfW f@kM9a=ݘ>(l9z# 0Aր#M| 0;\\!O17QN -jIPTUW0DG[rmqL/-rMxi !O;-aj\ M /%A5ĞOw. sTk*]羺sූ. '&uA< NoAAq(? 1]WmtU?&ƱMo #?@"U<\7W'Kۣ6I)N.W@ؚMP3gzxpJXV(*"$)dPg޶xpx=?HӰ=>v^TAAvZ Q!;6hܱ8p%1pۦTR:ː9D=s&g>!]9= vEON6lg,맛QpsmæjYT = sdrS|2ttC76ɯ]d :D>lШ6vlk 244>bbgmxafT9/8D&pzvkz0d=~kR- xpy` ]+j E+ bq@ _mҤJLdi Ѻ+!dnm }\ug:,8Q,B*[a03Bxjk<wzœ>i3Nx#S{PmdxQÙ3/ߐeHJK+;CPo"-eT"Wڹ6m21Hm@2] lMN,i mC8X7/ "p7]b"Yuj&MՈk#t'jmY? SqǨ^ \N *ÙJ̙*Q#>n@$1sbI^~Qm(S%ܝ0uOIW}6pϟR!SIiBWl-"Q {;ArA6(uُO2azT"h:kWTmILO5 &ϲQSiqW=0JŐ5eћ^y衁:4&"'l2ryQi 69YЄ~:4 9K.+P\V_g b<mQ8:ߌ׾,)xMx Լ,O~FU5_o@|.!5]p/v l>A>| lǪ+Z}^x '~Ifk5KS ډ\Q8xO]r,ܝ顙8^WG8i |ףdEs˷Y>yZ8c64 6l1Sx6^1fQ.4L `ןjX{~>'F+@y E@O&xQcЊ6m98`DžFAZn;i7snRbT@p%4V+җY. # zh׋qj$T6}nu]HQJLJ!|Szy iۄ0Gr#>xD~ (*ՉmDh+0}s2V6S(eahܭ<7u0qZEȦQ_b"A>;G(Ӕ=5<3f@-!n@zvI΢ajtr*+--Fҡh3vy b! -䬿[ݗQ[G#l[X iÜ"{#dUZad՟q\g=Gg5_ʔw#s?] ʽy(Ίb8Q!>~k4Pׯ顒S  ~u7؈6mBn?ͅIfB@*#h?pHʇۤ(aN#yɴ瑽 f j׃^?SX۟](γGҡmk 4y?d\yF^"֧‡ 9G9SWK PуK uCr [!)1GL/92%?}6C`]T,U5a?.3G坦Xk+AtFqA]mbKP?*JkcJjUYIH?++Ķl:hEwN6Ihf(9Y*uj1^ )[́p>(XWq歑8* E5m.ېh^XK:/ kSIfo*W\5n|= _=er1+:<0憶Y_W]gZ'n/. JAȓ<3;\|`,-z~VvwTA%~scꊲ *'_PASOT[iy(TSr:!ŵS_iUӎ Q[I6;WaB~ۡq,Ϙv=^!&b z~ҠL}FjKиvڸ$w*gd0q*<2c5c`d0}kw:t7&@A>=h>ltX㞈 pT5+3 CDf^s#aP$. tN $pbgɲ.z-SˀHdbI-Z[7g~DevjTɢNx5CE[fc=yhFvB8]c\!VQ!LqVvrX؎,@]dlҍ,zAwƈ嬪Xb}T2 4 U6WU"tYVKzs͓.B(h\@"ܲĤ~*d7M׺;Paz+ %),>g:xkb 6n8 ;Xr;pU ],'bVEF?9O~;&huA=^rV? yY%ˤN8#G`C(#d Z?PWG)vzYҺ=t2߈_ $Eˑ hm*##Pޯ2Y/d MEYg.6ďDfoABR⒞%MkSDžXCdeY ~;"#"F+DMXpƌupY}Ni8NC{к2m&!jʐbqi{ m@E8N϶_#i9;(l9"ox1_$-\M.x<ZͰjzB@BZ=2aHtK\QqX_RAH 3Y6@}=cc1\6*W~%Ta[.GL s-*94[$ _CHE&1C7kGee]}U5hkRj@йvxS`3jLPۅ) Ҩ2\FV.#4x<jN?mM}ECwyU.3(+(2o+6κ.Emh8 7鐏A(Hhx+%]Pހ|g.j=Y95qrFY[֭7:vLV$LbBiNF PRfc18?Jnڇ#=D)Sap]Nv;-`j ߰ͱzߺ7iE3K,:O.<)@?pu\."&׈45 B95mt8^}7Ovh~ c b7/6?{9ꜙd^ו4#CKؿ(?p AаHiguC!/Q,jq/-D!M "c(oKB&Au2yoWE PVw"J)4i4JXJmU !n^쪁Hx3E1 Nuf!6{Ŕ1%_D=t-1UKbE#O*C:DKF!VlĘK@WIp]]}-14ۍZ!3ģ Yxaen k˨H;~N8,ք[p! wn{ ՓPy,_*NN.D?v (Me*GWÒJ^}]0U0zCNJ:NkИ1Ƙ[шFEC' %a~z9:D<}]xY!赚 ;d4Z\C}>CVvfx2}uCķIPAGKyZ !ډ]L8>|"x@rlLۗkn/'=W <4'n W|KKg;pswߋ &AT#,wE}ٵ#uwf!Jk(d"lmI} % QU.^JCͪRCҍ+NyzZ 8@)]h;]U;|'i) OJ>MOHA<̄r;#86HeQ?8^v`g/`eۅ,O#+{y#ן¶OvPPUʩ3a9 mQEo PJD" Nl}yxg,brjH%ǧ=E Mb Fz΂aw5|#ޓ7r'V~dz`Z$۝VT[ PmWYlz ;&Oc]#pRduT^̻8κޝFӶtZ(TktǩMjv%MH] # ~iDLn ֋&g춰]ھ,ROoQR䶽ЖMd㚂v&$f8yxz`Ȟ_*A88o]1p|] }[ l/q$P8_EՒW[DAAXQqXPo~byʵkR_QԎD PsRe-qB -Ƒ>B輑AR"-Dɝ][YMnsAjcN*!`1LĭH*Ax~%,F ]l@5u.wC}L`AކA8!]'O m٤uJ< Pq-~ `:\a{Q$D+휛,P"+m占~9$j؛$qJ!e^"deK@2_ ,yǃy[!'SsprfE 1#wH3KQ=vTlj&};Kq&6-q 9T,;X v*0򯕱 jc'zY7̠` ͖qXRnB7b1ruQȘY\H@!4U폱7أ,E +(:FM@gtY 5EΊe!Ӝw l\!sR[p]1_mqZ>Jԗwb6'%ɼ0 '۶Ǜ1J*H ŏ } R\D2SvчHy_};kB&.Py%cg!*̎ $ 8/DwPR+ޥKZRsNooyZ=j3 -.+I]pEWR8<0Y GvtƠu [ġdGD+O Q@͊<|`0q3äOy RUFkoWacb/&X420(4z4ZNJXU^A BOx`=P\!~œŃ4Ł(NO<^ީԐI ExDݏ 6 g rcO%hv$FH\4Q T|x뿐May.AL2Z w4@K\25*]H\#9j8w_%hB+30- p =l#~\]* *#Ztk^{ 1y|n:z 3ʒKwwt7=тe>1ŤטT dj)ʚ|"G;Ov"DhE+?sCqaKJE9poɅa9kQh L2`w\ƢZN)+'y R re~(xTZ 6Xi,Ӳ* tK(؎BVV*:{%!LAQ}"7Dߘj?8j\9QHݥ7w^|>(IV<@.4=y&o_٠0HD1Y ,(I[yW>\T/)^5u0Z?bAa[Bb[ҋ?O!/cL{ߝ@/49On-Mf%VV~ȩ6%b6gGwca"T7>iNK-r$wQ4,t9 E?3mL-=VZP\L7D;.0> K tAeKA3{gNDh>QR qdBbo >(fF5&^fyKԩ1@_s^a&õT$3p xL~3;;RaUB@b5ڣ?sK"ӜiÏrVWQEhl9IR瑈\|,6~ߴUfԳ@?ڠW9:K5eS %w{n60z `-@`QiF0{aMϬ4Җ%Y"Y!u^ 0<>=0DD1VW^cbc&*Jm* -lPT Ҟ { >h7h57Ʌ1S@.G~zm,:#I5S]:ozOW6T<G)hmj`MWw >ԜFlE>|/&K7dEP1j31b4CEG]Ÿr `ӳf5ED6_@Ft{b$BrbjKVwxY 4ڜ=kpؼFD@~H*_"O#܈$=h%~\ Ji9+12Y}l('m5YR^D|\=XFurEǠX%A> K~",RJ&LӒJ4)_`O @..,7!Ϭb*H+OIrFP 6- l@Ec顶V6ߓ(ݝlT h7쿇cd .xwijEVRWSX1/;~DzV8hP6Fv*$~t<U *\[Dg&$7<@"QcJ"̎81KK_e2Zl$Ɋ^!nVH"?F*++<O-aEAL4„;@\k֕T"єF̽,~/FbR:]Qݹ.g2?hJW-fTHMz+9@t3o5WO! I[-bm70s~ ͝;cVRsmpmMFkXp"hZnpAi/z0-tI~}чΦֲGF,*n;&\yix3UgWW9mg5gرvPͩ*]%R Ft ׿)q>&5[5^p ȶjo͋RxЋ|;-x,37ibyWC T? ,vgELu kX ,fp.Op({YeWe\;s4ILU޿~'+gWR_%)rt;zjKqF9E;șG(ӊ,pX}PsЃ-D7ޟ@CqD1$^:+0@QRp5n2[n/i'+lm= x(aE5 V..i##)I tbŒ ,$ss1u"; S)yNx[Ĝg\H)GP $2HVhJ||`9lvdE_dS"׈MdAl%by>r,k ?oTDY̤'v<=4f8=pml^+x\呎,ftݳEyM##n}1bNi ?\8Y;0JQ7Y^[2M o:ٛWnVMRMeAJuoDՆ2ly܅ 1QX1n ?O8_h&~H%`P 4R܈B_J0Xh&nsRZ< ey# %S 6O=Cҋ&*ʬjFuZ)Ig3Le[|CRFuB5_']E(:;y}D:RL pJpzK6F'IGSysXknId;h\m)UHqU,CEBC 4i9g^y tJ;ΝbV_\CP**6Aj;+gZ>@di)EgzJl ?qI)Q$h2_ұf,wl?+ F@e񏈸^ sϬ*Tq#Y3;{>#Hhhs҉ީfPgO'^Je*H_O(?dΧ\ I8..̫m,yt3; Ԇ^H0g tAdtdThl2lF2,65" 6tɤLp32;10Za0i]= ᢏa Ou%'7F2N/Y=Exp oŃI͎^e[P1ׁLN* ^^'qX <1z6/С9]!8w4 bfNQep}Jvyw/b%T.)(«v0䣜lMjxy:dLHl|:\o? qmvGk :t'-5=Nl~HRճ|#2`ꪫV]#HrY*W^UJ-fg~W8^F$uhzZ+~Cp\-;.W,’]cR({^g3)R{0:"բEi_Tʐufyi}5.Fy]0:I,=OUT RַϬy+]#O$ӗ`@"ϒ$=?z8hi'UB@?4`D~"s47-(:`%О*GuT1KFaީD#Mf!@n@K0n>b⋛H޲5.bͮo)PSp(R]:@Pn?+ډMXpH yN38C2 ~'s 6x}2ՓI[֟[Y7\ЋPփ뼇3 ~M6{), "Wy UN7GȘ̌0x9F (ˣېay7cDA)lNAB͚lHE]nQ+-\ܜG]}"vf4](\6ł xHxcf|0R1{(Fκ;qe _omV Yv93%_r IX8Uԗ͋G BE$ԩIWfhd)_ٚ\/I'bhi_je[&Z^O3ʷz Xt'v%#2Y0o3dsߵ8|Ay6 ObU.I%KZt0lJ~2.^ܫ sG`Xͷ5 봵=q%P[R ^ =R3.xz eW$gm>V$7_~A4)Jn$pײίzsCS/uz'Uk}ڤgY(}2 ~0}DǾ,l6yJW;.qӞE"1[/e8E\y2OiXӣY&'Iq^cR=MG]0}\ls 7}:%2՜LْN1cf* Yd#KM^' >qcsGK+œByB_icjQ\L- QgLD5Zd?WB]c;sF΀E;A~ʰvVhP'~ (t7_|/吝k߄!βS+,r8QhÇC`<*Ip4Q)gcK]J|hiRѬ #vW-ᐋVcg}T 4 D'J] " q$ Z\+i ~d6G6Ō+W2e)c4yzaq%B%BzNj h`_F 5x㲅^jnaKu3W$ %p"*sMz'MEhyC~#xٷ!Wk-+3 0wf L- khQz{N<՗^gL%Ic\%!#oy4B!/0ZkX6R-;nO f=?&sV͝(O$ŽU=1A ڣ4PezJ並%~C>al N//kCf֞ksW#,=ne!ٳF*C\T#IN+ޣXil5Vg]k fUh+.?^xfˠ`}0]XfM,[9@Bhˍ2tU쨹 ֭yG p{B&eI]@B TRUF ]($|1@MU$V#.rg|^&[\-G{@q{I0f9Y8ȫ-$r7$a,L׊]eN'f-Sj &yÏPuNA*]ﺑU?s OҧDP4 ;^ nWmpq\B` 4+X{܈ {c8k.&Nhd|[/1F[h5FۋQW:·=Ry$wav{)ǩKZ@T]&kR&~a,^#ꞐugD/1Orٺ;Mzܔ^j;m=n Kxe 0yR%x5-bhm1*&2'׈L5ad.g7kq6|I @*^8q%ysr|a`kFg|Pϊ6AT.B-L Vb+iP%d$LIIkqt>Hz#I{7NpV^u.W'.^Aʸr5R}8G;gɠaI[ȵ:0$Q5E(^=3}Fi#։/ a0Jq8]-]V2 z*"FNWT/gIlU9҇ \) X5:9itXYtN2'zl;vFBȶUUޠpn]I2~/Kg?m5A(5 a ,A9mZb5RL eQ@MwйeVv\Ř-FTvVsM=l XeKíR0AE, )NQ8Sdc}7p KiųRhpǮIe+QwoIU@g{ţE0<|DO B( 6em<3.+(s< 1jדpJϹ3"'B2x9ޖ O(:'` mՉeÛ9mD/ׯxʛӮ̆=Y&O^e.zn}bY3%i0^,ژ]gdF H٤UN>yę@iҤᘘ4N6Ї]ySDTc4S*z1 u^RPK[տJCew7|h>ÛE]F)b)_x2q!#O!=t=7^0?Z+7俩X:aUw-ax`OntO4w)Ugj3;i7 4LkSIGWeW[n ԣ.Rcѳ͘50N}wz~SR+ $G'_"OZ̲'QE(.1E9b1lB1A~#CԎcn|;=SxE ]භrgph 8A@dEPO@Q<9߸I8JYp M(^ ǐ`vݑ *E"LF6]IBcmGjbc u-B & 1}հUl j$yi%jߢJ\vuwe͔3D&OULsW@rDX^6re3T&( "2ik[~MИ[D}Rݓ UxzRxYHSג\UA˧$Vv8QUo ziWKV"IXRVz']\*dzԩR>\4AtuS4%4=;`1{]̋znH ޖ@URW36:N ;n* ez T+v^tf^ 4\Ά@{n]5Wef/ H'UFL9zmѵٳ3= D) 17Fzy{!҃d8FX eP%0oд{@r}jF^+6+~i>; 3Kw lܻjPޖשw}yi3fV*[DK!I!< IH oCINp7SMoLuAioǽaLD䬳㐴f o/qol#g&49?L;ɇ Z# itA2'fQnrd\N$艈N,Ļf^&_`&qV5zޮSTUQ %z_ mAɶa(;T KU@VaM?N ģTΗ 2hi 'J_Eh|};3CgX'XLç~ S'FTUeiyA>OGLnOl.#Tiz⟻;$qc0tL/u Z3 'zTad+'A-4LZVܵh{Z_Up'E^Q>zQ$`GX'?4B|'q! تyR\ٵܳݞ)|k}Heg-ezvCsu1-s J}36gOEQD ~v)_ =U~KIJ=kQ+i'8zΠ~DƁ0EnQ'n8꿫^z o?i-崶{?'>Pw}áE UzpȆm^93ܟ`2u'XV\n%2%Ukʥ>ܷe8v V}*LgH$?2v"g `od%6v(ە* 3ʅ"6Ɓ/Dٽ8Hu'cT -oҼM7K6 ctZtiA*Ԧhn1ry#1dn4mGpɯD]³YAh|maWM, >; (F_::=6*GgSj]bM!8& Ph9@(A{P_t&+L5 Q?8V%/0V_"3%^X?QFԩx@`6ciS/tjCB܈E$<RNAa uBG;h^`?L[dJa~=/W83P`eG[;6$k5 |#%/(ci(xk8l:bx1{ k&[TO v(*o1-,_4CW.lƆH`GxX"՘‹$U ޹tl{Q&"sk1<%V"nڱ8:CS;\IT>q"ŨK\Xօэ7~\6"гƐI: ͷɕ&aζ!{i(Wc\3!q@WA^ZHw ߨdlptH$R9j c`>_ũnnƉw-7}2t笹@V?SQC:fĺLTV Wl:|Ӝ=5y)izb XRͻRJ%=xOS'6~jfhㅹC C"oMO=TQܸW7 o>|$\ ͈ؓ EjsMx},D$l;IGhF,I:nAhxDM1X44+_Pa$)3Q(MSK&M~ {r 1;*rİ>5B3i,O;A`0N==T|tm7qғ*iSWg0cDzi45NN.8C&zc*" 9{?ʤ768rz\ T\$QɮK AmȲlaV{]0Ys(U,d[Axd(ڝϟ-ll'j !6 ҀS(Ek-O8`{NHuMN$QMJܜH 0 mLSg)Of'O2Nu0!4ƑHcg7 S!&n΀B`ڙ=Qc6޾(O)e +Շ8"=j3J(گl5ջ8}q=A|l6eG(&@$YCQW)݈.),9fpel]3D7.*Έ2|Ѱi>9DU4 u `TڋR(FJ3 L6)U56f:@wg.{^]FK~$3L4(xscSVVlz_")ZHYm3T7,%~.Z ed EB>3 6Wyx̷Kk,6N`)atB憍/R>DNM2P!9x@,S~ȌXNTe|@5>@lb5^YWB5;UH[YGޘMDZq'PҞlGъ]? uF@Ҽ_jLY-L$ez 7>L ;4~7+ԆP*.2zoHg>AFMP$RF;$at:̖&$q@eFET/Uz2iunw+ֆFrX6dP6'?mKn9BN!4PZR4x"<y[Mlg+笇4 *HUiYX+`]-x pbw%,|Eƃ7 +{Sk*Aʶ,H8%a#/Sƻ2e x N( 9Z(p\3\s_X8Ul@qziNP7QMZz8|l{{6 S"kffGK}C ;>irԫĩYԁY8Wr \ݾsU=~o9~(jwM5h] @(_2.xnǏskv381Kw=kw]CC!1 MGOY6b+d@Q6"%^?]/g ʫMg!{m2G?[?ԧ[^f2.͓s FQ7'zMKq[k[Sp%?rџ\{ +vv|앁 :!#)Rt$ KQmQˠc;Xs6Daf_cf`mSݮ0VJ[EyZLp\yJ.Hcl=3Khkۗdc'"ic|4f!WW,bR[ZmI+}$cX__čR}zj$P$#|Qd'iv3fί^aXGG#nl(V(5@yqیz屰:ȏۍZH^`eqAiه5^l >^ގIQ3h~yag(15b}R/Sp^`ͨQ*m`:"A?m150.C!5ӪX񘊸 :$kHImdHzEX(:9E%^(43ko.l HeQV:&`*K(lvQ INc2=Ӊ5ε,[U>#:Z7ґ0IUdp n?AM]g,f29v"B^V&BXNhK2F.)9s0h-2=q4}@nIX~I"{8R!q'R= m80yUkH֍n!AV\ h*qSh %YnpY@@uhFը \y:`Y'r\΢B ~Y|9ʛ1n g%>@6n/Z 8pE>wIgm_U60f%ʂ4)2gFX=UF e̕i\8rY6L|ʸ*,#lA) 8Q?D?CCsku`ە\Q9)=5g:[4(YyO>C7˧!8B ϰIZ/U7^@uZYO.!3/X/;^Ւ%8J؎b&q/N!L+"C 03Z+(%\-Rr?! 6A?F9ѻsn \vXdm٫JZ`{ao9^׏"o(\QB |l-ы)L ?~G2yI>D|Zգ{ϭJ~&&,FHx93rBHn4 LQ]ʷC]q:jLU5ix@i iq2-KIՄY0 Ɇkrgl2{vI)knw,l\O0DP=/k2/*G5֋<nϘүڰx @#g2юmHԲC#uEfNRQ뷞]CJveca'_2@G՚~jN l,Вdm>fc!өGygq2 WuH?yM6.%~ų~LPm2,!ΓERVٔ0^06Z cv7By}8( &4- II/^_D(_,Ƃ"h (bHTÄ {F,G:N*}8V]A,oJ3k1Yb"VH_O1&YJG)l(^Oa.<Ǹl#a֨w]^ Q0M i-C"f 'F.hB/ 94L)|l^6kZMg异`PImu)& ~Pv ;-ꪠ4_yiN&2?yH sLh"=.Wa:b{`T2ZEP5L{ g䘤hsP#,#>O}1+q5YU=#XT:M sALiYqso:d\ 1׃Tf26,e-=$TJ"cп:N⓰}4Wt ܬї}u_50kzیPD:($admzCV=dpnuƿR:/~U2P~>5W9Y-)6Ol=|f@h d8He"t# i:3+ 8YGFȳw 9f3owfD6[XS[%蝦ιTp ncGh_(qX̠Y;O*2LMGu- g m9 f=[AQdz<8&Ngt{{L1ggތ<A>%ݹv!\OH$V᳔ّ#G]'ݟn+H8 x@  p z T\s[Ih́fBí^닎~16(><:o[쳢 W97}vQ.ǂ#[X#Uwr2^Adq~U&2zTH$|byԫ^5fI"m"yl9x*pT,$roZ}oվQ$´ zwE<fixBnFǼjH I/8Y!swbO%ml#wYxl D  Y=iYlE-g_N?Tıǩ:SG tjæA%'d4h}5h2l[zV%47%lbB[)Dڮ>4FDxMUI4 P<U0<%1V#s&/<OB:_'ͲusL8 K6 6g*tCږ1h@W ].qogi:A(1Q!Vl'L&7npĕ"8M'CísY93z)i`K'@>aɇV=˕98wyJv(g2r%jW:?r|05+qJ@Uo:fH{H@·d57IW6i * Y㚯1ԄZڇ^;03GGJ+D'CW/A'*̾(ND *`^×Iaǃĭ r˿z%Pǟp6yNh8;{36p*a %/p" ZgrG('h,MHSkW1 TU|㸫z*5oN#c3]Gz D˧F=_A^ Ҿ~bBJv'J!mr?zd)VGLb7Kؽ#NXNCu)ZO0S9De&uQK/˺gLXS@aXhTl<BƢA{F@ l%)fA1'$܁%}8`ݛ^15˛\ , 9C!ѵĖ+]C>]}\rxE_q؈ J8L UO[w˾9@L^l۫p_HZV`x7:PW^TPR~t$@F`U"'Ϥ4|OImͷ뛿{.O=%U f)Q&pn|Ieђv8WM2C9S@ `UwlЦΔp<-[ɚ޼ܐKJp^DCNw*"l򊶷 ?hd1\ xM=70L=[]"6LnHMAaMQq`eI<>'@?.>>ZH"Tlq!4QK2ުiD/?[(Ah/b~-YAhWXg5'-|нvk$$kf<m*˯Nc,Pa~n0[ k)5e6r8꽨4MZh K 5L9ׇA[|a7Kc̥4?ѣ:<ة-iiPڃ`}<`˲^4)n}6ȣ_ A[ JH(p.?r,#?"pvF JNv,.8BKg7KΙy9\~=^+`˻U;#`Dl"Y!̓qGSyf/x0oN%g39A}0y8Opo}+y꛸] ry޹,:`r> 4s#^ gz?F5n@@ "=^V+FW]jȃ$DCDCN9hpB&+s WM3 _'KK (h{dr{Ebsd!5qR?}|:_ra!do4`߀rd!Q] ٭z?U1~f=(~g*c*xL4棖;+MR!M^Nё/o7W e#2g=ʧQl_ d뤓wKRޱE歍JL̐hx2 QSwo6L$dҌ~yP4h}I$1L.*͖l e*,u j9?pF^1dh:qgmL9(`M:v& `\i6t[AI]$-ɇ Dk+NXp K܂Cyx5$4rl#u\jIڶzkNWUܖPh:`(2wD,MKھ[3,uf@ȨgpV@%@;Oi/E c q[ f.Nw”Bdj5@SDo 9&K/+c%0f (sv$HlW:'ârcWN > ƒ OmG!nƼS+?Oʝ1b\>`C{ 3p$u"xoABJR-d֦AxhP `_! mƷ? wXVX +=cxmwĠ>шP3;D5rmm@.<49Fazu4DqJ.2fz7Olq.=鐂|q()_F;\¬>"*djcQ#[=%8la9]<Â0 4(9|p%C%w:̽Kp# ijʹHjj&(?앧3=}{kƒ e$ ;9P6a&B m\3I8e-C Nd}rxjo#,46?0H,Ҋ29S"] #Z sm% Tߓʵ?il{DpǠ- G((Uptυ\kTB X5vARmw#;WnS ºi|~\goZt cVKX{Ӟ#/Zs2G)05^j#zm*AA#_{NJye O}]QaIٯG2 S>ُZV sɑzl]z.6fM|>5`\_K\- ebi2?[uLi4`r;sQopFvi_{ud6G!SCIUv >IhvT^}UXtuKvf*yF=o8+=wD>gY\2/Z^ U9z)` BeCF$&35]ݷơ;|>gQr RG=C).!m&i>'Y)|RtD1֌(nhOŀ;s*-]ɓꎢ;,@\3G<)oP"h2y>D_z]"k-7=5wNҹFg~$[E[⃤aGJ8o#=R[b_VJ Fdl7^.*juFN#63OS)俁ecxks'<~e4}pB($"1Gx%FhTU6Gדz`s_M+MOro~y}E9L6ѼeI^.ba\IA|Tk4RjFK0lo"#y%~|x$~!VF"&QȢ`|Kcgر,vf[=:zՕ t0S& q B w!Nҧql곪;&&zT>sECLөO qx3G5B5C=El̥N,{*}Bo7iHش,5ipiWSƤ -v@SsmJSqPs!Yf?:7|h.]E77(9|xCq;׹3fx|n Gq ?k<"Q'M7#A٤~[P>N->̲F0`&B rĕ~64>;LBpRL|WRCN4`'#(/6zTGتq$"t4pf$XF%qr9)|44ɕ9i5~8b$Ud,{nב~Kk[kjMJw4o*k`gK#m,>9;BEłd ZS|Ce1|HLF|]U[pNlЊ7"8 Uxu)`|[N^GS@@_raUx|$Q 6ϣB^S48(7U.oZk6L%&sh*rY "HkCHmbcH Vii.cl Hk>-"3BfLOxD|(N ;C6[B5#Vdr!`iHLNH_w9NHHށ%{\#O.; aHqe^-D+iȟ2_+=U*j#o!{ ;)f <Kմд}݊G.:lPT!'ãKe&xbX7L҆++1Mp40 ߰ +5w9{4?#:Tݰ7*$(Z@#y*ԺC1>u L)^НP E *KYmϦC< ҁ!\ܚ}d:؊ $?k.;\>Bw7`@ϒlo.BfRd<3R\)e Pҧ$CMEGuhĿq@ުWG;[M_]&FYT<n/ʛz:sfubЉ᏿㸶G qV7u^Ш2G)Wt?\k`7_N Ԧ>j|#@ L̅4F"n _1ܾ7'F{_Ggxgqb&٭Fٟ']EE/|CJӡSAG&#i8LKcÊu>h`,"jPL٣;c^~Ļ:<ƣ^v0+,Ÿƣ}}Ra\P; Pt{$G#.߉P :YG H'yqpὲ':+wxq=9v hRs8oƼG+`P8_pU2q݌޴ k0`ӂ{-Ds6W>p.]n$jK0uS7 'GE}N;n# nh4:RVUCDCIAњϛ(r(<&XgM}qg <]H3w+<Ȱ+VڭE>pf[{>!Q4tN ((rTiV>!ח0@w@~9`zQ\.,W2}cICPtu{^+Fw1[0أ^1hK-'W j)OE C;TnSBLA Wq^z, axW<$.6߭HPrxPjL2X 5 aO)Qi??XRSY .7U:D1.L+92!r;) )a3Uҝ7l}+!'[0 - >ʧEy (kL.t7V׋;Q_\O[UkD#vfqubeX']͆5ڬ FGl DAnw'HԮrOEX(AS/=AxBA*c!nA4s_yY7kQjMwGɡ7p{Xl?]uw!q~.j$ [ V. ; Њi`SJ310+KUl;Xb{>2+^"3kX h[8kU|Q& D 5EBRu\+WQfT^?)8?~,a6XRrw1>X9z($ RjkpPOZk6f>KUӘeE "s ʯT\]K {QEvCjUy\O{`ɥ)߶"ф8"l~&'1XYv@Ca)|U*wc '^xwA31?4ŗm קfaB I?m_>kvA1~^ fu,wʒ"3. ʫϧnUQdCC} Țg@RKnV+5b 2 4ےiSMV #Ⱥ  7>˲5YyYގ#gCQ!h 6yS5c\b++sWxl!@`,D)~9Xm|fD? 0đ  k+w]li)7KCS;y @Gl{c܆=>[ԗ V9n>waȃC~84yR]"/qX 4-ғڼiyR¨I]C8YO&+pG k?TC<$KH؟<&(bɜE ?~~ЈX"3xtĘ^qo\RZo?AI8$sLӚ΍fX\:~FY;PL%AWJOZtEƌq!pG_%HѣxTFtErY6(ceY2*^cři۷=zNJעjCI.BFi8<͏^NLIÁ_(,8K/nG]yLJ3$F9j)WCq{h*Wz卲~ױ q1QK3LlF|| Y!wO_;rd!3}ȵ3u@9fAgMgXUF/ZCY3ͅ\~tG[}PE0Y6?'gk0h[%+pfv 9=T Hg+F }ac_9T/xRUi'[axĨ1H1- t޵r'+"6S@n~q%S[51'NlBF5dH(WsVqTp  ̂ S[Qz3dn.5*-@x%@r#Q6ʼnha+0 cwO%uxٿYr+q0m޷w9B:&I+A snA: ldOEd\?/y ?AANy< $j}HNC _36a09PGu*|ŎA)'#US2:kxŤĂ)'J810u02wV50&u,]h/ Ϭ+ `ZT}f(aJ_=Jxqs5S]ҐPI%@ʢ._1H :-f,60bs]Eq&lJMk5U5c3sF_U_}ekDɒ4Ӈ[Iߓ,}mZZ9~`r%/rEٟ\K\MG(VbKV%t%4#H~ K)^N^4IL44zu*ۥ"K*K3=gS`z /v)V!1,MܡL&a:ټpūoturș@񰩧TAo$G%\i/ [1 .5?g!)t3wc;'Ql,uplQ!{)-G-PaѪNjkJ갣#JD(!p$; /{SN ^~>8C3f_;s6ujbPθaq4»X:s$PyŞ$;,0pً鰘JYT T%I!b54+"3uH vA/P$k " ZxOTEԮFL"h Vf$eZ->A6Ly諃Ef)oYpgQZYB-~5+đ,0A7Ȟ@9K'lT:Ѯ61cRmO+-V-&37G?߃hy"E2o\Z2jcz=Lg'=ht v[(vcBJlј}!,8u8[ֱ@JG~ػ/BS%PVBw9>Vm&ehAdZj},j^eJMBlT7w.eZ&Zf1/E8:kd8‘I7j~)KI(}!Ħ/VS G>]pc6KC'52R'm7X,B<ͨKM\)vkzDag;,D\qی %LO/ZiPU{=:?Ez؎;X03.' /4{Fqzӥ*^ }.ȍvdmzS'^t5T!~t0v"h? A9Iæ+]TvfcR$_l8jTİ~YJg=C Qm16eUwx]v:eiqePl򜓳;ZK~ n}>uW!mvNV4HD?$NFP ]OZ( H<3Im+,==O`g9єz`/yN*.4mԊ4N X$0O= fN0 ;2/m`"mBW՝I'RVpWa>V_GG)t]aL=;|}Om!r@zb92<bpĥ ĺȿN.wG'O찟уF>G|w@ JdD!y{v+?eij}PcTV/h%l0iJ-{#FZq&F&ST$Gj~2P˱-95x4Q/uH5-xsfпCsEEI`>&"Ws92@I~lV]n*uD( qlFjҕ4VRͲn7cG{}s۸/,V1~OAd>tI%ҩ"'!_ǕB滉0V]E!s Ϡ0w~kzQFHa9>pYTe%TPH]ZBwg`'ǁͺlļNA;4MoInoKŸMID (zSyƭRvT[ǎ~[r[]/+-$!$cXm%m{w"uja2sp0۞R@1\}xGҏE`,VQzhԌg<4֭L D.-pЂ9# {e {w͂ݾ,qgAe{Z$ (|}!nzJ1*m}iCDq}30Hkcn~>rS6ɽ(" ۤF1,nmavgʘܨj2{J;r#L#d_Ě{׶de*y8CZ>4 gyX6a+m JkO9Nțt1:?)4ċ 6,OXϳJauOO(` %Q$iƮ4Ƚr CC*YݙTKeD)D*hkR#|Yia^$AQ\3&|"$2Rk1١S3F:J>*^BkTg V ^l.!Vr/W9vSP 6ᯗ;g'lx(m>Kk[3S LK$(XݢJitׄpfGI~'XVl'E,宼z.a+8'F{a=d_ ,Ll !'M3CWlDo^$z[g!࿳Yil&[[AdzzՄc"ՐK? ELv4"[T> 9d[7LlM-~𪛹"06xN1=_ԳLD =?̙ vW$ FZ%%@m+OG@mS0{˅B!GB@gknvpMVtCݼ[Rxܳ/uՒ K dp~{aKx–t2*Lxx< _\)3'D'2rgU"UOTܔA綱<쑡L/EE2u&P0B"yB3Zp`C7KQ" 1&8cU)7i;NQsfy^p)"VjfTm'syXpǖ`y9#sD|k3C2̢C3'0.Z {hN!15ęc8!"F)?,|.u v2q|{CI{`Zv֘O9a  E\W u#r(9fm=L[:MJci#FipXJw; ;sAcw*rF X"iG^&@rbj;BrguWxk nHϪ>:LU157\~bMMFƾ A$mqgAV׺`I.XNj/傠p'Gi][lv]x`tr\!@ ^5J5䘱?. ztY\;1'p Wzu)7]HQEkSc=O~7&l;IyaC|y Q+b?}T-΍XZ#-eid6MnΔgc)T22tbdAuN(E;RՔ!E-q,PEFV2/bNK15H)X7Cb5|xa-_P5(kč X\\A#ze ho8b'wtEFh=]==ʝ1~Ku}Az |u -krN{9.%IU]#\kDJ+ߥ]Fe:/85G %O(t\˜ ?$Z̀pZ4rON ?կkJ-灟 co5屼s@rY`,Yd}q6VMA G:hkl>rLPx[ao|χä .^&sBq"U:> TBnZ0 swy>EBT|UiJ1,d ?PWQ)'?ީ)zF?%@R8RbeOM렶 L:7k:s >GhKiWv-3虠T4 vO?h:0NZa@j:CƳi˿tTnnsG0u:"߶Ox;P9B5'm.JHb.;I_[gs!S4B ȹV_{F慩_ P/E< w&QCnKdV43x9^ 6;뱫Y5Y0lt56\ҹ\y;l҄, 3,Z~S["޾߼C.##Eu0Q^;GVViC. 8 yLX&k,J2Fxޒ\>D; 6'ho_j۔*'sEj +CKE{u^+"vG7R&rL֐"dYiG8X"`g)W {r`~&^=H(m[Oh{̟g"kvqXW>>Of`Af=)1[-D9#ab Ƣy{ ɳ=0!8"pNYΔc@ӊ-/hY^"#:"i1l?f$]ޫÊo\-.ry95;~WIP&]Y%2mo*k.IG;򽐟6 `q G;`q _coe ִZ h:j@r4;y7gޚQ3d71^S&t7)yA!J zU#N+L|DZZ*#E&{2q#~IA dVx:kdT46;, lt_dv'W 8 I>yW3l¼>*(QT|aI A{<\2=O>;$8aSbd>3P"<@l\(}&9$/ULD}vYO߁WUDuFH?yׁjW)pUA3S^Mمw} UW~qkcKX]%/Z ՕDjO*GPOL/x$oGaPNgF:._#@ iiqUUcl@ދm_`Pa8, ˣVݿ C GuTQ$փo\h[cI.D/Cw5x^VxQhBERr 5\Zzg i[~HF Uq/uN^(K_)Ӛ l(kU*aZFi ClI?cC/3F2C0zk$ [}c;$^G!W q{9Չ]#.s7 l;Kd~nlvqM-. _dd8kN#w?ؕ}e T2NsX#D0G]a./ZC~EKʫap.Q[O :MBQ,y@=NƄг t ~&&@;}|1V~%7ICرr܈Ǣ01Z-> r,m 1*^ ֩DjYkic_ /H^sPaiߵ߂̽2R4)R\tDh_Ee`N٤U(>\%^ rO = D )lO[elk^ w\U,s Z95;KIJ3 g/3Z)5+dLn7 EI[kX(Mmgph3mʧ!4|PPꢹyڀIC|i*ZɡX%c=LHq'Yemr\Z?ku?#f\݊QZ(R{FCCm% D[JZXnY@\~|Yuޗ?=7Ig~f,0!5hJ|kR<iXYRw2kQُalcOm/ݿFy}tI FU4,=ejwf/.%DHSG-gGD~ e HA64[,ֽ'>.SRU[m[djn_}pXc:0qS9=e1U,-%?˜ێww BI.**{mwWd'J~U2Μn0Tݽb#HJVf׊kynuC}K,3~CsZ-tٕOWkO4%lLBǣT.^Lک눷vZ.EǙ,D1NmHfN[a,Wܠ!ڋGEqseѵoV5_ǟ^ Y;t{'L;ʮ"CӋMSchj4tx-I$h8 h|^_͐7(q:n %Ub}!=(E^|,Auݙ KoPK r|_Hd` C^ѱbl6^eWhs~0qڡ? nGADߝJR:-^P wQ uTgG%Qq\NyB  P^ܑnqd6z* {l⚯ 붝:|d,? 7͂yKY,!bgߚ yU=+f7Cު`sbfFksi BdG^OBեNژ&a$ #b}@ Q-gm$b9C74}'Pfv~hapR*ZZ-wa(4Bl}}p˜%Zs0\BG3k" 8A_ga(MB||QiP#DϜǶV7PC`Ƞ,G+`>.8G7"bǕ$ϗBq7u)6R Bk[V0gCȷ\ĝv.;"KGA*Du1+Ce!dM5 cI`^Kµ BpB5# e)Kmy^ 17Z v:RJXH^G`of t]u5hwb|a-*게gJ6(@"?d$j*$ƪ͵|J]>sB4D)d<"6r6u5flw5iyƚ0~*c!? vYMdbܝgM+'\=[nPK$EG[ghdT* *ё`LvӬ'si/+p(W^;n%L@ba ɅZf"#p< rԛnɉeOW`| mx7-Y(<GV^X z)YG!r2NLs9,E,h1ņ Lv5֭1jO'/"zPҙ֕kH=~h Ǜ|?n}AՁ&p3<&:PjwN{fŰBQmwW5Obe(<~_)ŋ]p =JˮV.2ƑkLCbC2z"\=ddEpֈH7Κj_{63TeM 5j줠O)ͼߌWԩdlĆ:>ھ5a v;s0Q[1ޟ $όRziUdMmEp;ЫR(NpDYͭj}yi:%V&,d̓K0)*8g@L[B'̸'h`)3~C/嚴͞CR±ll' of 3fF6طZK5zKs)Xj7hCï~]E/ph( :ARϓ5yR{6ix$݆ٓ[ lZ=ӈMVc@t$*!6y_D軨WQ8rnDe R#R{`@N`BlS12Y*]ord l]׀s+ G{x@,04jA ( j0=X!-C,8B!z{n .,&NyWG _:qkӃ=އ=Hbcm`FFz~(xӽjWtM|[ÛELRiB3B0n~a/ ĺH]Ҍׂ_kg[J#c9މoQe5Մ^F-kOvAPVÎ[t.C@eSlq]on)`mR'כҲvr>Y]k6\gd/-6{/TZ.}SIa1dwI!X2<>0k oev`YdMwӎCjSEfB9-8e7yuw 6g{܋U0R]>Z{QۡVQ&󍋵Ҍ|;ye-oI) t ߟ*γE ^˰PPǞ #L~s ИW˂?!ԍ!C s8o|\ܒ#)%x2 ڛkcTfObY7kyA+tp+vՌQ/ӁggSX!b%֐CD2V^W@&4esʍ%ce2Y ]e5'D2֡NѺP>fT@T]pK PUkHhgSW 0ozDn;42?B@c'p9x0_5J~x@C´`Y؜ !ܞm.5J~?M:`e+hƇ>oqҖ3K @D_߲LHoFWL98~t#8E4Z=ޥ,r|fylœIFOl0dƣ%;JOŶ'Q=JZM9n_'-J_ w~SyBMDtjpOCʊ: F6lbƗL\,/zN U+c)OcaTpF*J8=80fۧRp:h6 O /=56(ҖUmtܖ=#]A!aܒӵ(j #_#++:h/sCU^FNJLbA3(QYE ?ZXʧ9|nW_EA6ky`0 *Zڇ+Pq G&Z[/Q<0lt˛jC7T`*Ӳ3ck ]_ď@[(0cBy;%)<7CRs}gdmMv0`Eːgϕj"0;l$=A|iCJޏΟ2ZQ|Yo$M;'hҝnY)8'LtfgaNY@FelGʶ`\މŸV5T(j_1[H ڄmӪG鑯YY 3RtrI#{ eJl4G.&]doO>ERJ%9hA\mM|4"!:S9F+4 up1 ?`)!\]ƀz9}1r.CIA` #-KZU ؤe6bYnlU J&A2yMExIJ uGbƐTNC=JqqkE`4ۃ$ 0O!0&d/#9;iUAȚs oj$p "Ԑ <;:ZqG4fi8Z ~c BE(5"3Of ++Br+؜HPBhM[u )/!wkr<>QB㔥,'UJV S:}D$"T?@彩C"I'l.XTvmx[܅$ӂ̒sCHPVzgKbTRpqr*)|zV©rob= ¨V{ Ϯ't21 m/B" {Iy^#{Cb:gd{M)ۤ)).j$A:kEj:-30qhOmWW)bsbR ]EsC˖HfŽ:O7Ae ^PrR3Ne 0 Ay d"\8y{n$Z;9sU:d]nryy0MDzǓ' 8MeEv\LüetxIn2_9焔?!\W4)|U'Ra|ÞWeNeWW).w [LT t+k'`\zUKBE^g^ZNuwC+΍m 755;K| cmL`$8e+sAVK+W&.?g:b9'UWP蜢G}Ua(>QȇyÜ][w@1 _2-˦s^ !qMgO {9q;zP^Oz #=ȡ>N6'i_uqU;d:DiT!*ET? gҿ 2*]6d7f[ 8迉{}OIeSc3VV97gv-V'q" מ׶Ƿ$ny;>J9q}?Phq:nŴUe< D045(qxmvw[lb¨!PCo oϩA35]V_AA3 ϲ&?SA?ϕ!ֻ 0v0_*1 l5?Ot,VDO4{93j3~#dzvL}F~(1VW,(Nzkp|VЏ*gSͯ]W.P[Z+mj$ԄCN>CL͎Z|qߛo ha[rg߶1MNdWu3~E/>lM/ (6¨3|C_G8J Ϭ{m2I矼71ܞ Qh;I1b$% q\ E}z :" "2&Hxz-Wz5CF7'{q*_"WF 7zA~ !;D'hGKGpT [;BD'?j8a ]F&,Kl M:6YFN_O/X/daVv==ʚmS0_gU)sIosߑ`G^ue}!̙YJ^Nkn]0'euxSb۸L:|sOZ6w2.,b'7GE̓2o, bNh'LhZp|3xqߡIވ* @'eEL]]"Nx %\OG*Y)θdYv_W[8PXEqA[,ʪ?S,hy-mw&1sָlۓʛxY Tϳ\.2@J]nFTR~*ܢg>˅:B@|)r& ,#ia֛a(QnMw h7W@ AځliNH{9-1[|"̰VV*A"3x0&MoNҀK)3`7A5u7G(vaJ,m,إ/Cg`.3On (,D5K6#\Bs n5,uo+* AmڒK٧$~peIv`v4Cbb|FPBpVwI1*:R 21RwȆQ[Xk|9ĩE$zח޽rK^4CŤ_{e:FsLrIم犥wJ7?KNUhlm>p)Wg/c&Ԁz</bՑtH3cP*:MiY AwL5Y{hk)LGGJbwv;';~dBnIUǐzxFp &Z}dkTr l<' /WUW(잛6{""#¨!d;59m`8LOMn{HfFtnSq[ܦ ;K> ٚJ}X4v0\xm^Y 6 *)t"p.9?2 lu0 Xq;e爵 fo nx$W[: =t+>d̿S%1Z7ivzm` j yXE1[РC  Mj5Ndg@5*^K@R&g6f,H&4ImG3]w, &h~;^,ČZia~ 8Yydi  0R˻H{1F3t j ]`#nڼ1blu{ ,31q*q[}ڗM)7td2#-1 9EEYIN0 &P0G^b$v, _ݲmb]"$l(ڞ2yK͕]*:Ut Ʃ'O*>;8l*\q:hFae{G-0銾~ :G:F!$ϸS bCeOj$fOl *` x"ZO e0 Q8ψsj:s2Y>*ۛvb{?.%=OMGB0[(Y3c4M$ǠbǨ׼@ݾj'.ą`E֙ OKSKaa a_$5B ߨkhaG^*:zm'f(6o/*MԐ/u|r lVQ =,a5dI-%Yc.IBrT0?PIU=m}(茽 /N^_ɂs(}rmAm$2bz?0 }'0wơ|^SBeR Nfz:Dy69ߎ^,C{aπgn%bq0ӌ[a>-E a(ASmCn6!H= HrT>}\Cx ]B?mK`1 R;|jm{zzXSFPSHل=퟇ Y'PW1S~s<> go'jՃGʪá| @ӳ" Xz=\MƎޛR_Xbb-RT٬{O;x>. eSܽtnm. [wxdw3jBSkgw{ID[oϚUP .K^BWf7 X u$q0-QՙȳXAb~c!M-CIY.dTӨS_v! {VA˩EȫTv VDN.ieHEX$ Z*,Q[<{,C3٧'GYh4@'}a3gCP 8km>/LݮGΉ rֈigMnnYm+@WsZ"9_݈NHi&jQ5/abJ=ԝ&R+ׅ,lrZMA2?XFŽǩe@3Zw g~kHjkkY}ԋ IaK/B`jp'8Nsp_tfqGBa3&>N3n~')kk(|=e{+ *'PB:ҼWؿH̽vs#WXmqnJ._.bM2.6`ѹhcG;B81!B~v o=r $R.F à1|; pAk- Ƞ>ᏋE( hk@5Diňem L40#o 1ЕJб嘉p{8 dS_i<1Y=/ *] ަLq)u+H ߽<*rI:j uLi=.^]?R#εo,G::a &uV6fv}m%n6Mq$Vf E(>-)5u,^b2QR}En=aujn}]Fpf aa5|v| 2z^M!`E[Y[²:i1h vk)ցjz%:5m[I)_UakQu\*∭g๒;5qaǒwz>Q(8PL;W~"O8Fx/l߂#cH݄-UHe\ t|E>UfXs-41eڠ KsSUˏѥtNrYI(6cvDxD'鈆%-V.47qe)rbb y{\~ڵ`Te_ -|݀_,ps7bF='Boq ^t@%!}+ҐHL3TbH(]ͣuܺ]& i"wHtdٮ]&2}>JAÈTIc2 /(nK/\Ie&;̕Gϕ!e<?,A.VpԞcyKB:% *B0U.E_kԪ -U+ṩ FovL}c^m(&s_L`0")0N{$_I08Ĺ* >^i$]'No@P$ܚUc[Դ' USf!ۮeחlR lu;﮽RQ`ݓ >!ݓ| A(ȈID\ΦljާQ8$Q3{RH^)2"sפ8.[oP`(}{~G#sJ3dn rIqÂf%'zqZ,6-@=i=;9&z3AM-]+tE |sʣθR4@RYqgּhYFO<_uAct ᷭ_1<#2 %Kڄ҉#`)|XS Z.a—ḱZ3o3kM+mN -08#=hjc#Gpz_wQصpU\XHNJkWW()OBޭϪ#w=R|z$r,:g8ne9"[;v‹T#ΟZ A.8~O˚T <֏I)p38fL-NBJPzQQd*!JKjtCLKhy>EfVoBvۨJKU]",wyh}j\МMrΔQu~%&goMVU&>.dg! .K J̛m>Nsb/E8/ec Uzw9_'R[躥\ FSJbUL:Rs  V, 3:o?g|B#Ha%#tX2T4nQE)ɗe,UgᄢOoW؎ọss rɸ>̙ƈJ~ EefXv=͗P|X0- RǯAqTA&FMTo { 6)5($BHNi!~ҾB&Tٱqfŋ{*]8?>LjbFl2S;=rO^E;#_el5l2oWד("u^moAΎ4|; )6$;;ԎO7 ߡ4IN{Tr[EتfC>{ruD/c" CfXxMTR!E Iӝ:A_##")T 8uC2 #kY?TsFˊ=TxA'QJ$☺m6"Lu2VTGHvkhL5ŷgЏ,9 t@7z&p܀L}LQ" 4kO l{,8O+P݀?@r 3^w咲=lC>zκaFC>@KRؤ*iq"%J5Wav]Pਏ2K/)Y='{byQY"U "UkBD}0{rqC>vv4?w[\wȥ &j Pt/Mnq61aS׮Q[Y~ @^ kq/0i7Sa=gq#V׽P uSֈX+_>#SvV H 7:m݌(rC&6`tvc\$ jٝ9t)Y|)/،K8>{q m> to?Cygl敋160nπqj]rmq1^N '%BQIt (@=?t xf9hȡ x˸bۭT!iHC]zOGKSp^AwX')Zt]}7vkMݎ%UZ`cC#D,hJ?e6 )齸8s#vńuZ%EN~l  TFzɝf$~%0Adv6c2zi5*+dq6D}XhƐ|$O_n91ʛ"th^$WdS,M. JG b2㠛SS͘?hOQ&帰t2a|R}VN*D̚P l"&B3["z$[d Q>f !5$y0b>Qw@Vio \سq~lݾl>W!N,=(ʧҮZ&i7&V Xh7sDYg&xii1^d<`d+?Ɣ#x^MKA mT9pPzohMApi!b j]5{K8Zcr L 1G.21'cMi?;sܞ޷Zei:GJn6UlHɗVWi]#'~-Qs{hKȴX8;hC+?Uh-擝#wF%'n@R|㜳pz6޴khE*EfFڌGEk.L R0+UOxjLkZA\G@i.cXo)* }f(PZA ;}JިT#&HfUlgvB1'Fz[[|vOJ2YYPdNk[&RwkSSWDh< ,+)}Vzjn9Wu~+Z !EbsF<~|:<4H[OlL1DB69F]ρLLMʳύ [$SB=IM8Eicg.!=Y'9*vNfGF\!L9r\;NW#kfϠI' *e՛~vC^OC)RÏBLcpK#O`vЅCպ#1F'Z[Q=q WYm eT[5 j0Kb]2D9W?/]! =rਅ!ˡIb{v>V²-]%z9I2CZj~t#rVbi=yѐeXl-V AhSX-\窾 ؇ eaFwП: '4hrҸH(mRwY\څޏ3H%Ί*18gqT l[!@REZϩ(5cs|ԸPHD'_tva+9PZc4/uiB;jI29BVs@ۍĜ&zNGu\;,#y T0i֊̑]tF+M& /i-s"p rs45 /yY"ܞx S,3P EX YY m˖-V m.btg MY廄v}o[(FJ+& ̩S$\x:E$HfdXMj!%[y?u04!UAHx.>!AGoziXO@snyi`cMϱZо.հ?,Uf\XG:o}d0i˭՞c艀8P<$MDU' +0\9v)3a }Nbtl\E`_clp!u@eNJ R5^H~嘵#oBJbe%$%]kkPW@^ /R(/VA}O~E]$!fNWlƿ.HՎI e i6#0,iSAёhpN Iߺl`}g Y( sA0jSiR' RoKFɘvnMEs9g&gOz (,MyA zگ)쏅E4UzKyNgA 0waI> 櫗Z!ъs4{-@KSOA/L5!@ E~iig<6[1-nUIƫ&qTHױxsW֥|撫0M{jSlFי̬Hŋ,!Vs\,7;6{ K|p xY٣XBi;Nlo xZ/T9V{dz:('qcEb[wGkTKISԢ N/? qej#~Ġţ6g0^ B1Z"W,xxch{ed KWAY AhZhU0Ī6*2Y!g`W%'ɓp%=;*sUbUHk@iHWBdNcGA;%* m ijj)CR;#)54!(:5vg4ydLT")fZMFm3Qf DXxqs"3I\2q&@JK쒛h`ۃZ6S=B&s<2~.t:UDY^$Qn0EDR3:q tPQ[K4;)avIg* A9ePS5Se 7He:r+L-;56.aLg5,}|,hI*==b4jxM,fo%CW?#q=ve#iTGuMI(#((ھhS4SɆzK370SJh=FZԐ(&v&%?mji!á` +[$4+F~uf6[MB]M,j_"&*'iiO ZZenU>UdABPel6tSm4L XV#Aïӟ4jr}П ލ! blVzc`7`_?#ˍ\pbT l SѲN`MfgpÞAv)yY 7٧F?0/b[bĴɉ3֜Ü3rp=SW3Np$]"<"UP]8sMcXw<5k@H`;w 4/RvE>x8DaM(N67Z'z3LWK+Qشf`5tfq\y<K4⑕,CsZU<8'Rjo~td:N螠GKB?=$y*++ݠnTBw7}OtIP4nBҙe\VMa.vqgyu.rƸe.F;&K?Te:8]1jD!˴TJ*^%D$1~FTFi:rs?>n>A<f/;b$cs07c K%/@ؓ~߁Q:6͆Uq+ja_n,K94gqjNL V)}|,~ܾU`v\0|cW2]%"]^wP/{g ?oK)Qyw 19dՠoL;%y! uPw`}kTRS }KHIvڶbأ8H,\@xi%؊맫}ud ߹^#wj[E0#ܩd6Gm{q`bSc ĸ/a6NۃE2|ha\KWrsvnf Oiõ%qx 8i3gl]총:eQR z $0hX}GQG'e #4>w݀+?9d7] Hȶy+834CAq;dT3"V_͞H OSepB ha0YUXM*G:) _)ض"ثPRdߢx t; JQ𝀶3+ȴG$\C$m*h e2AkdXs NAdvtUS5+\< F)S Xz7wU`wJ %<;J;# ֢ t:~L瓦^ae\g33uGn'pkw .[\4d+MHZ1}يπmo,D/[g۝NM(n_U xֱ 0RURv}?ŃeǃO sa~T1A9Ȉjt GV7zDFe:FĿ3j;+="CGHSJO@E6&\& 6߶[0ĽK{@T BDloY$zDZkSQg0{f]?9XO{^BOKJ=/X=B_[E) HhͧJGn忶M.yu 7hš/v̽9)y` D>W3ŃrߒBgWQ(IT* l8|uxdtu5ucw 3ѧ<&FG Ql ##a[3x_s!AX&Ξ¿e 1DTNBϣAsq0^r97D0I#X3CBWC}yd xBǔuottpvB=Tn~bVpD}~:(7ӛ?3S-."_f`ur"uXfTѓn _LJPp"`#,<*oF@~aktCjmN^U@`EC}Y0!Wgj54;c\uJ$kQ?qzRqj|~XӓMls: 5vi^kRv"9bg?nILjǃ5fU&}׎ѧC}{X%_ߞlvEL ?>ʻEq80ԪGN%q|Lll}L `W:]a+xMyhl1dž%iXe@ ,SBxc Y!`͖S%V s&۾١+5XH `"ߖLKV}})EQ qyW{ ޏ@<h7  6>9|i2zrXgNrZ"\#7SB9+tjIKpms~u_R@Y,xm5N-78 CzGUrg>8%vԂyx%s' %f!q8G>7?GpOg̰+5fM:<)u:o<0TuWX@N;dE^Lg YaVm؉j5“W%vp[ecC^介АV܌tb"iQ=Sf=$H\+:U c4M肉SQao{ r5˗ݘ䕫 h馲[1Q=J?y^o'ÝDŽקvi7ɲp|v{ g0y-k>(#mQM?&4﹭B>劍S4?s?WpR6 1rpdKgіQ_R0Z?u}6X4$# 5?OhzI8` ;QׯN= t +K^fm PIPiZ_5ۭw 5|p5Nxc1fE,ӻ2UZ)#H dJzlvd>崡j3ejx1!k *#uc;= HPnflN0yS+Ʉ4Gc;fsiQL\8m<8C'Anilۦ+λ1醧rާIzpB?~0C_"R\ |qVz5Ł Di 1w`rNciZOT]$v`d]=6CorOa}qL(_hvf2]VꇞڋsCԎo^)W~)8Pod(|Wymϰ_D _ "A}'goR_? ]8ٮAVE2SӐ 0s#"ɍEYWa"VJO(zm8jG({eͥ:cֲ":F$ NXOٙ7dv&,qUk $2ꊳkt5`Bқ@ZmC:"H aK"F4tY_b袚MMaY1 &\U>ސBY {-rĝI"sP XDdқ0{t 'qcoQX})2-ef5˜K<[!%ˋ krc(ؤzѢQa|N c/w)*W+z}#<8;F"I"*N]OmaK{$9>űRu<[T԰ H2N|7zotzOk#XY7Au4:Jm]I Y|^$vS`NFr<HU).9J$[DDUN#J9lmr .=w%KbW ^=X=?/T~VE#Q3,q"a=;0PIHZ"?\G3$LQM> szi>skpl|`X2TySjS"k74?9v'[@SdQ\;ZXgZ/aR$~xc呼fRT  [NӚ4q,h% 2u4V2N ǂl_3pz戹:!QY`guDٸܴ/&oꗟq#Zȳj+^vEhdXϏv{?W5(kEE[nXS&P1է6aDR81N;r|@rڨQ_YmK`XcpM>{g9(&Ωk/0y{"KU(7?yZov5Fٛ7cr8_gG.'A5# Zb?K+ 2~ ~$Wwd a>,la)78Zw>&G7 H. -xqvhB3H<1Uabk]\h|l^M,Ֆ 0^DSOoAm~LLL`n}+o;ZBv:=D\& ]`yu2p-V%u igx3)-[GWqDއ PԲd|l 4GM(ǚP6a$k,_\OH"J&E+5qyHIRnhq(4t wN] !+Ҋl>/4ɵ?'$P| ;S ГR8NOU)+5cl^ƝˆF-pp=,BtcDt8$dAaU1Č L?ǚ04< 碂sq%ᨁv !-橙9T~pѰB)\_Bذp1F9eR"F)ޟL1GcUR`{v1r9{m^tT,E}ԕ8 A[:5/NNn1Y}}Qmnуq$ WG :RC'̐OUg$G-oPtF+r@>$V4ÅcsupƘ*~ e+/  [0Jߠ_`f!WO`.ΚqO"}f|^|fT)F fsmIytBGz֔um1:&@f[8&ܵsbfqRDBZvv,,FeLβX6SD]nZ|M $^W^V3* zwBE.g#ΎvBNJaTEY$<7)HfE[&;gCGAlq -uUx8+QAmJb=N֦G{$ܳyT8!ceM:{j!M& tr^R3iEiLMTp5JG=wM$]iV RYy!~U%uO?OPkqb"Ci~%;,7MR2hN!r֞#ؘ$A_TkX=4ဓ&.\`p]s1/VQYF6A!$@֟nZWfAa aĪi AC@kGTY[*D/񂣤aNv@V1KE T&9 ڜKq8fޔ3@)'XnLCAV7ORX6Un&m5[ gNb+]l?؂\ʼ3woģYcK:)PSZ?C`{Ξh[GaHRૠ; xJgUe!-}5 V7MWΆ drH5.Y yߞ'Œm4p=x- LjqpFԛف\[. DHpjZHd`?G#W"ѕɡ|$1mD~s9ZmrF86(sìDFq0/FkEY"h5nI0.܇t|=8$`a瀵6 %uaJ) Y1RK+X"Z 5}a@8‰v:W:Kk!0=_RRKIL^eho(o/TtnZWb (ų>-PΕoڞ2 ~Zu {V Gw\zK9n\qkA} -Ȩۢ, \>;4bʒ/|AYPXZ vlWhORz.5d'R~}O8E`F.( /mKVR5ˢn?v3F&`w6iTFQZ} g/J^L#/rٙK8Cܼ>_tA Tcb,yc 3#QHw{9^=g_dIURFhAP~eP N Tu峮,WHWvܥʛHGì'j6/h C*+P\kwoyÎtr 3`o<_B{qNp5wp-~}m h1 "PݖsY]^Le> B(eJ5W6x"·L#xOk,^)Q7ݎG:[sl.p}Y^ YZ$;!1cʉb8%J q,rLf1 J+%# ./ӵ`Mg :UiH51Nfn{`jnBByXb+XN>K )0Hszpf~K`e- OHLXJ/ty0 Ų3-#!gH;u,-NGYIvu}$)ox4Z8sM:qˡ?7?\9(1F[(q=FwM;%(tP삶&NHEDZk>FyK 7}Z1":v~'}Ky@E%j >:k~j MOTtЄ <Ԅnbe_oJPuDp?-Xtw EzX5 wafpw%ɑeFA3QoܿSLHHop5׮5mh2 ;Kk}s7I}a?^iBK;~ Ƽ.ڭ#LȓU/ch]&˽S1, ÷]ʭ W`I̶4?q ;gԈAYDLkw?'аH 3ִk*2J_11*,)K%wX5B knT[1`bo܉5Xꠒ7SwP r >ܜxv0wHs@7zʚCRjtY5): 3vByRY64R *Kwew j{дzȲ"RYٳ6rDzˎ^·#%ZdU`2~`8LK]k~{µ+Uc4S>Ŏi$ܬ޴Ϧ>dތGf({];ԗ˨h5ێ*cqKɛxʻ^"928J>rN7ZCkT41u l0 EqL0&_`b:2'U}1FvdǬB׼rETcմ2a4Ỡ>}3@%A@u$ꊽcV`TjXmiS(-,8!A,#l^U ? 4S^[ ?e: )J:kcePŤ4 T1D[f͂k=qWzB *"3<'O?p%e5'4?Xjmwo}<k86E| B.]|@ ؿTG4OYIӅhnOY>W\$e-F\' j(rt*ͧh8Shڛ;Zf'+`A0]{ٮޙ//} ^{&Ð\=nq2T%3>`N*}7rQ/~Ir)brkQ(]sa b[h  Lb'B_)ӱ_qf{z-x EU+>P `W[M=XP& EcB²%vG,J(P6y:HyֺHH_Cbn>D{3'HɋǨW+jkc^Ws u7H&" *8ϗ3j l'Bmy QQZ$N*$W(w[u∠mϝiQ1>)V&NCCEAFy°[?#Vw78]D%TAtǙ7 ڝ. !8g!m:o*Dre_x]2hR)٧wH $u ٣OQnc kF1A RXtW(rF*`W6()s+{]B b ҬD8aeD*&@$Xf2/g9>i8Xﲋ"B cZGİ$ Yy]w~ '1Io AZū*#UyJ]1LTMGhc_4E}.dz?m$a qNEYΈ-ޚ1UC;[vQ[S^Χ:d8=SE#ʥo'uM~^XvD}&ͤJWYV;b~ X+{X~Z@Q֢>5KHY)Dx_&^P\.S~N$416|!e|US7Ftg0w[{{v(VF)x(ocѫ[m$tQIj P>clh^!Җ Z3*+ t˽ma=9fi wvf":*7M˸/ UY6NVC3w1 05m[7WYܸ6< s. ؿjqte6I?#?]֨ Y-&iX{Z\xGjꣾR) :DD'Z%SA943=o7K' ғ 6_QI7"/%T$ e%Pb5琇NҊ4v_Ӫ"yЯ:aN0;јwMa,EMѕy8N-bmM`+9"G$\{3BH(2QC+A}LazW#`TJ!š-45'O!U Z)O%&C 058b<~Z)1=*m%'OqcA6dtLY@5eH^V壏HP;L_dK4L+w?nJCPpOx{  έa] kZRrR/"9_$ޒ Q."5Oq@C[=p8G@Ig:Y",cۓVAVpEsx$2O4' f*.z`aUc>xhafh=Eu =ew+6.&@p4<VoC{!5{dܢ2{te06d)UY MNṋ'~yZ8Y:";}I|EA<mb 2{ЁBluU Hg*K@9iXɖxp1Ty07 L?-O!MH-ԫ8̤G[5޹&RMx-Edf3<ۋ 4fw-Ε4୿E}snNGm4]Wbr!{&Fl\yL-d.Gk ߧDy. 3mXX~͉-Ct1}ah>K"C"  }*rR0nIzXZO!S`\%E!bxStɹ;^!_U"~1C|-W3oMDh.#Xk|"x4 "~Tvld ojB-'oVوMTJM,st~&x"6k.ȒZam3ʜ‘@6pQ9A{8[WH;.k$Vǂ<#K UUiN!W5bl0N/;X/Hٖ;e@bLk(&>31P'w KXuxW$~dV&7`"豨,gg!J9-3짟E8n&ʫƣ*FgQ+::A^oގwoN9 '̳ETƉe3*TU' 9B-%x(ZzB}GHTkcrg+v~d]HnWxkr\qMJ[2zA{bUȓHm[]3fT,0&v=SBXkk$|:Ԁ1_~²ҕEW(^6tw#-fsxEӅkhptzo W .O}?b;]JEv1ED?z"?^>~@O jxv!H| xP|bmI>a:Lo=Tp5KH숊W%rORAVUH\pbTށs,C?|MjVa$ pz}0ߩlj 0 2& yLD;choΔP,"^aF ܈`"Ti!.4lA6%,8 EQմ}+ޠrE)ݛXC6Uɢs \qRpmB,ק\{6B nz1ެ^@ K,DL_D oN 81JP~BFɰM:bpV3h;.x/y檛×.3'UDE3|X6(0Ѕ2-'3UNχ% ;S0^*{}YL[Q775 %-&/CbkKK* ^||UeN"U>k9PR*(C/9a Q٦a!ټqCӑ7,vKL=?Г-y\VTקK}N1Y fqS-\y&&Nk3]:)J<lw9dP!-/ Ci LttGJ6 *xx,i81m920LSGVq&-O/`Q=I"<5TsQxU/KU Gs;ɔ҇jl{KȽCQ D|y%RӖwN_4 2Jfnrɔ9+vò[fk*C87؊W)O1T<}ܮ ݤ ӄOr3r"<'nwK1 Cb9{֊1@1n;nDtུFhtb<:V,㸳53zN6_Ń$?}4OqƒMFo_ ҭ 1 _}DG㟠o 9/v/I ZZ.vou>w zidIHG[D[_={y= ]OߗA!Px 7wCHˠ9nҲJ5f(Xa|Tf{ZɪWjrmu*¢KaCQ\x׳AMrA,U_Ѐc Ev3>au8 ;+(:z#mjNw0"z K6.V{&AD-eZtX8;LbrXҹNiE}[^@>zCwö= 9T{:c*jHgywK3dm+Xu*Axk9ny̝tЂ̒ɹPgзlV`V8lKs8Ͼ6Hc,펮üły"` G$gVznz)Qd8W@crぜ;HZ32v%D[v0^o cP;TW:1CEMz(∮I>`E-$ݔ7@ m ;P)9ʰw4e1i?e谿=u zOB[i)= ZJlj &Y1[#]`EP1p8bfsNKaaZϹ0P81iXU!vy1y=lumhlسr[$&-m\bARW`ݡZG㶐JD@]NZmjG_ [R!@?qg N&i0ſf-ZH Į{n"Vq`56HJGmQڂ$F\7X=FJ{ЯߊУ_& RW\_;4x_ Y$da>#0?} 8N98@<.u.%y~[?={glA;͚HŅ"iXAY 1:N ?O-`C3uٯ _ QE`>ڱY&AW #Iݸa~]PIrEΩQJ'*rNgKe*]jcH'B!vh7$<ض`.gma0P4˒TD&%c.9FGn)$9?q̮WZUWe2' J$:ry18/qfF|@0 VAzE2`$J!u߭|6# "[O\WHe;P9>',[[GBN{#)-D2 bylTk`քb]ȋZI 1pk{s-Dd46 812xJ 70GWT_G n?.(ηi6Κ,8mx:'W*r3o:%~I>31S%JA\3 5kheꁺQ7k?Q8Xr` uZ, $DxHj\3LAz$Q%.vsj!轅xr/lZ r0YЧkɡ0=lS!Q "RvKyOb2Ya cKCTF5Э Rɧ.IZkmua@tKe& ͯ\iOSi aH%P֏$! W=҇Mkk.ڗYKDE-*C؈C`Y8DTݒ>U%'uSG͔цL_\Rjh4sVS ;I%̎ViIF݅v#`)qXa[H~ex UiaU%\5L-,nMV0UJ5ɧ?\9[ X(dBɎaųPHD]F,NUK'׭̝4]@?qiRR/U8){L_lηgtB|$!nr\3,~[Mxӷ'_'.{Sv]x2^]aҿY&U]͋A  a oy)6ioA%;1T ]ͳ 9<1<5RFn>ؼNʕcIPԎ,fD繹#u!Z"yw)b8x!u}-߿Nmuv.]]zc1͊N_˜dvm5WfgxA͎{nG 0nmA=}jI3FD?y!y1}eedI}#L׾m 6tT9!m]h3>f˼78}x庰 j!#'MAQFRp(L l=%}|P,x_(Scoˎ: p)U{甭JHZ KEp|8Ox(GQS():Y?{$U ^P&KzLjmO\U:K@qĽ9 >9O-F>i_c跐zD#s@/vI%4'^ \;Gid%{*NNV֮c}a~EH%XtQCU z酹(T"L0EhnZT/"ڀ~T*؁9:Uٿ!rADRQ* UR]Ǎ||3b<IQwkL5j@~s)VW_Ne*Cj՜&\F惝w8[bnœ=\ڂQs#PLfZgPm!L ֱl[xzf.#WT7#h6"UpDޘ龼O5Zc y5XQ_1ӡ{.? ?@սwB,qUאSDTg($15" m@rhGwY on lE#yq8}U!lj/Q*YLݺw4G)bQ;K L\<7lE)$szfu;B{3{ϔwX;V2{^ NloQB-9ZC? [2^24R hH+?MV[^_*n4(JdkPtBAc?=,?^NJ-/l8ƿTܾ !Oioi`"XGF*E췔d`}\ 3njrXh,N@<jaaqmQoٮ2`:bU՜8J[ I*nT<{Rs]8:pmrLvZC$ |ZfU -Ҷ9EӲ6eaN?RKqtuKE~њF_KBHGXR-xG(({#{J<6!07<<9;# &tΪ8SC E?>lm 8cw2Is(+6,h69JEtCh'#T2\ç2Aܦ)IHPb%W^tSjQ)!>R&:"GE~=9eqgs]B1$0} `z%S2n^ ]=.!Y1XBm,}x},3+RngE^-!B+j&BЋ?6]:l?XΔ/ ODr+c_PxxNq)ƒ^LڡeR$NL0n 3t/1;F}sb Rkw6CX3NoYMQkZ=oIsC"% ߡcaSW Xo?.hV %`LؙM Z2!'A$GP ڸ=۬T7/sV!#f?|5]FᲯFJϧr Otd]z#NblħIzM,Ihأ.nPJ֤2d6 nODAp`ۄ;(Qcb18:#2KH/!ݎϨIzr~h`h]jLe_=Fc/ޏ85:YCAҿW+?W0nHU~૫+0Ko*X `XhǮ VpViŦ=}tWl,47F;Q)r)Q³hB- ڮ`^ڇ?-ӄ Xt ׻ߠz S&ɉ/V9̙P sN^t8^Q4{x/&ʲT|xASE&1MuY_QI "𽤑H=8eToLH7N/;*Quq6W"4Ss)aMCXߺo]ۇkFzrНU]QdFabvg:~}VXmUۑk8hè*cˁ^,]6I ιr jE+mEOhn29uyX-/JJ54- u0삭[$JV1q*&CkbS]ӴoST(}1XS86.EE/RavG :Sy aqe4KOi.,8 _zg5j/lkrv= D"*UZ=ޱ@c~b)-#Պ_)aHn&}W"C;f5[դF/YUH·k_* [0*,~&`ft4lX?~9)VMk%>XaOKcQqYUs,I#gkH( ]S\ p[pDUYC(63$;UD"k Qy@6`Rr!̛M{j"}jQ2%2y_+isSߜ׵ż !I@Nlko =: *pUH6SkS 9Xܽ㾧zkHd O`D4UH(m9&oMc[jK՜(zb.^i xHsM~Q-M4=}P 1dT v"+<~?Ȱʝ-$vCəf5Eݍ=n4j5dȟ}($0Jrbf>g m )#`>Q ߀FpfiC887Cp::iS&*1cpP4'cG3EC%pȰP yV0vhrD#3Qéi«_62q5lLG*Yc~-oE OWv@tc0ik<Y..c5ol0p׻8XsM$˅m9 sZ˚HǏua$Q|UPFjgNT>f3&xƹάdQ@aD8R)M6 .-Mi q֕?)O;,4imyf6D<aMLF45p1ew w;Ŭv yr~6}聩!g_stٹ^ľN ~.PLĮIh3=nZd`M,uM}ǐ᠔g$R/ٔձ +8`?ܹ6j~ %J8"CphAţ0JSi"ƾAr[F eH{%z*!)Ǒ:IC] :EXwW~a>L%gOS{".^v_kv7] Ar%^AdHj)GJJ#*L,)A{b$_c:L04BI2 Z$f K?Kl*H$!+=QR74`Ⱦ.[ҴP0{se77q0ܬdnh1@>P1s֙W0p15?B/_8`t?b 0:h|"cH8[iƊu4i%1 l+d#e15ySf[X]Z?&$^mˤl_=`xމxߜjjƷi4B|(q$joṮҬ:˃vu3,7:3r-coÉ#DXɀڛdϱ9F:Ծ2t3+J`{)\rdm{9hJ}AYvXtLKxR>01yb" a&郢bs Lkc`Wzq-cfZmiDF9>VZyWmzf.WjQJbEL *R7)$y=}_BU ɤYI2D|tG+DBhJJ%y:8 i*5djbw|^ʫM^5 0mu&#3 k~vfGL_dzrؼ=)1a\D6V6Ӟ̇DZWw%mф]Whґ0;$W3LS Br=S͘E+7 \Eq!|: _ѳRt 7'>$.C`VoZ&z[93c?Ŀ)E4_+QUHAxF JLkVT?7h2`.X?PpB;4u'E#;Z1<3s11~'=O6Y3p5FWSeaVm־'u@S,88 #P%|m2;?Sy8 [=`ݫ1p25SW\&h#8؎LgjjtW}#mWS^z-g;qFMGUnlD _#HNI<搬` J1New|QJVB%q#IkVBx:Z|#^#9㳏$.ΏYO(i'=x" NPE"_0e[!u"\tj߂vD~d9 9%Ȁ<`},D d z.da (HfN 4*gBW-dV)8xZZq:E?tz VS~`ؖQqmkmh=q4OUkggU^y'yE+C1i:% {dv7RTê]F4tFOd¤x |C+Բ~o'C]"jch7%_Y$zH2R19:=y~T!=v?βW{4eɺpS*>Uh®+5-Eiu4y(9^1wa5w9]FhiJBˡ}Y}JY$Xʲ滐AL]8(TPl)j(ffꋸWLmkX,fZB(0hk_ ذ( %יV+CYn?򠶕ֈ3fO؉_!ϴ}/9G3!}?'§@Ppo>x p xuʕ S~M9°TXSߦa2ḽ H}^3F~y_Uv.U5%.,Q-kzCTc@O#I׽U6?3x#{0 rC}d_ RMKIDV&Oi#蔷{vM2oo@:c5X@k ¸x2R Uh]PetiQ?B +ncq.hJDި.~C ]4ycr1PQbq.09`m-A-r10Jԭgݷ)n IUC|&ggJkh U#Ԭx-4K`dD[MZAw)˴4S3!u@fA˦4y5̓/W M阺HZ=r}zbΘyHk HPTv크%i2C]qґ?/67JqL3`h"VKP24 Y-s#`,t~]!W o aaG?MJ $_Q!ϧƸ $k472Ca t"fCu5Ri*U*MJ.t }߆yF'ߝ 8E[ `ޖbSE1c>32xj_)>`m,TBպ}Q/OI 8eUqybjT4%bH@ڨ-Q!IY"j8yN25o-[^O$US>6/#$7s[rW冴d} %zҽ!;I'2@ y ݒ.v?{?M ܩHeXVsGL8e,O)^◼_5<[hEc!|aD;;]U@jW$dsꂕQoEYFҭNK-y$z7?_4m}^LQT&)Pph6Æ ,HSDTb+:dT3j)~]U::}(Dw#yA5jƀ-8h0h՝lCW?8RN[OPEnP[uTe̳bkc̡׀6@hdg3 lMćiigU{xNЍdfspq'LIFOTCoN:ڢM-cTo )>^'祇eP tm^A%nŒiFC|<3Q³/#@um0|c` &( 2RNL#jbhOBMqYn hFS&c&$-Ԟd;I~20E\ZrhvDZ(u)sO&YYrMkSq[P`l KW<{=+)Gj :tTd`_ar|ēG{F.aU^|S4 0/ y]y|X!-tGh{dSdY[>?jGj?=< -0tɔo5UdJ{;@S*/w&|v'j RM Z{Of]}ZD>?`J3cűNx[rOc`/ㅤesHMkow7fةLC]ۤ8aiQu!-9U[<9Es̩/jiY×:Ӭ˧i-h"@1 Vx񒮦F=:Bnrg%,foғEdR±xЁ}0x l'!n̩#@ +RKa,ՋbA1/)? &z^;RCjMg]\>f4nzp~$f^93luZ(SWX|8.JHF̥ݵܡBh&{_(kW1`=5qK+SCO^.q.v.tsܟ%2efd\]wNxfq,RXeg3躎t#y hVp_H'.X P~rP8̙(IPQnߊ{g*d yBlIa3RJg\#(sUn$^a%E3lsm'C*ZE@-k! ޹QkR; qHpJz.eX:~pPnj O7 z*M"ծGeJڑJ!62 ?oH+7bD8g-te(t<ĸ1H_n9:bfo7.yj%Ip8f EEC]z [%wM1K^Vm[(DpaIgQl#K]i_.x]4[vY3f * iWgdnk$>tC}jbybV'@&};fۨ% -V7)h U2Ե¿/?4"DX~Grԣ.Uko' `*^u!ҁ4΄xI퐬%!ucw27]qF`k]ضq!1|[':nުa]L0T'?4Us6Me?n@B)GL&Ók*afX N ZrXRD9_#G2cms%7@@kEX[􀎮^lb:Z}.Z{Y5soq# r10n/=åU30tD'_wnyWBYNR9emAc"4wi6Tgx7ž}k+UFK#C_6^VhHcȰ،<+bvT$WN,Ypo Ju+ŷ4Y^5k/ um}WmvgSrD%_[ʩ(a[X&H [&HA~ AX1RYufmd#,#H׆ߛq\=ez>l6'z,%~(ly5ZBZSC'PaL0^?4p]c Ԫ/s H ueb h5(9q8_ vqm7O,6$;2Wn^v*4Aiċ 8[_[49Kmv&ۭ;ݚTat#c96R=iyv(НX.tj`eL% hg$eE"a#(d 4V ?ae%g8b}U) A.:ކ^~ߗ͞!yN^@q Z;őЃY2O8!>6e:['Y42SR,wP eƂpyLfBt?4LיANGdo~EAEΆ;5~NxeiEߘՙ%qU*Wąݛy4G 6 P)ΕGM(!/ z@͝os/hH:qQ-YruY8 e8 :׏4%FCx$=JHm =<MSЁʔ_laⶋ;O -L%DlHVh),z%Pk Ejb뜞#C21ۻh& P1B>k gl?R35n(ze?7潠2p+voLIp8fd,CN8!*xw[&raX̊sZ'Yd]ɤ5QGiE15`,(#)+YЋNQD:lªCn]o ](l8nŕ}\- yt@S-CڛABf[A,JI>OguER)hw?8שTgG"R !l ā0K0"]}agذ]ϸQ-л<ѬpV$#2i9D@ŋ=~2'-?`a`%<6nDTe[Н턢gM~ f KZ4Mp`K0痬,'93Wl+.n8X>H$TyV{aR*_hd^Qyv($V:@򺚠zM]aʾ~edzek'o9-%m!CbZ+T}c/޶.#>8줽,3N="^^(~Y2cM53y+.Kʇtvڊh!j{51jθ{Zc/ui S[`*XF Y={ίiI\Nv&D[Ǐ}|^鴳gP AϱyN+7{$mo@C`glK;)q|]ecbGQz)=x>=KXᦒ-G5АWA3g3%E[pY-8rJ%/OTQSg35~Qa|kF? F?pD8yEPz6]DMe&Pݰ8 [/PA(]o$U&|˱9v-G M ƭ ߽HXI_#`"@-ѳ&ek_'-AYőw!ϼNDe&%;uIBBS43g)ҭ{tIaW7xEhäP \R|ua~ ;Ky3oYz a#\:'4Z2 /OC![P.BZo8a(l;/]NpvI5Ty^NMLa~*veF{(b wRh/Ԓ ϧJ&7t(( a;ss&Kʛ73?Kܛ̚L1,D ^Yȓ'N-EYZòmbnePU^s";)X0<wI% Zb2  lHJ۶`ENﻋe9W.yޫS5|YFvϴ\7zw a^ #_Z%"*' l#XW3t^ DpM7Io/Tk% ,ɕ,=C Tl Ӱ #d`yZloI"GൕDQe|PpLhS4q9e&mTAhTBͶZ` eIsw/oG7Zw Q* RP!avO6\n%gu'n=o*A[YsʽwN=>sw~i` ,6Y0&  vB~}qw8Oq?+-yxhUS>c |cjF[N]lRWW.=p|>@"휨S!zj{"͔T3Dhv'dЭ5}|K-Vi5$; $|NoN/FAgMXDE"jf% inM[mEt?.&̝J7Wۛ!K`#z7o[\dȪ嫦jK-z=kQM/[H.Ͷz IXhnrAL:ӢZ A ٠Xm6`YP2xugxJ Se\T3@nH4+U,7zx"0Wةɔ2AX:пL]+S*H@Ne^l8IlIb6n'q#&I[)Yipc<́L>'BIy@[8q{j-S>q˦C#Qs*Krkس~\ Rg:#tP²X%KQY/L4͋Ӿh@B[:ӰէEdDouR,d=nE^3NsκxYV|PiWd7[/]y# vqb[3\x*D[(? 8`/N~\AHG=0E?uX]ePQPj yՌƺo$Ȩ_ pLfѤ+)>4`kRLrPebFb:q-|r%Z{'69:5hѡ&ugZ Ȧ\\e+tn;t%eGWLD̀cw;~nyvy Bf#`7sh$ Q$* >@p/'-e6aAp 9VxQx+7o1y`W])m=Oyn%HoU{;z鵯`|ftD Ը҆Ry\ە~co g(r66rQ=uc*ŭŀ1ۧܟ-f ҼU>jJUrLLg%%? ݺc:AZDfYrqd&ֶ$`AɁo9d}#j+TVzQb#>J2#rs2q1RA<?_ B~`IbE7z[Lc\ ~WEp>z޳i6+y:ﲐ)h{`'Y+7gs6=d۾Z5dx8?TҔ5gސp5v"ʷ':;=f84}>va.P`:a@sC6~T ah,K&SZI1d{rNg3'Zju} bR1Q-U=AnbK 鞓F: %`]*EM cpC XFQDlDpN߫fcѐﱘ#o̰N\jR +Ⱀ% 5|J 5MſN/q*M=cI}%+?$ƎwBbcO'b[ !o`1"[SGr%z| !PJ>-6% ssI%53g:8윷Yԙz7˥@Htͺ5o"$|18mD7 4% %ެIaN@TNBB~/H h56Õ{bTfNۚEgkb,*ڟ|b!cdeRm_]sV*iɆz1 |+03&)ڨƲ` 8f"P`ĨHE ׁz}ypڊ8e`hːLv%ä9J} J-l3"GV=n;''fSe9ˆ k$( e¹S&9 薹 2H WZA 6a\bъ g"$wzfONr'XA>5W(ȵ{6\qE)( W؍/臘et`ݭɰoWpX03t*gsc u} H{psѥ#K WwO`8^A3%vELIڔ`DfZjGrd(glC Wkq }Bf:#nII!j#t@|)Eemu1Pr]5Wi*JZ͋qoTmгՄMv@TE98.VMP!5:PٔϝE_Pŗ()ÑtGQ+ȗ=u2tIڽ}R 07lѯ Bt4oxP%dgm!Vlnb/Hl@sYV}n>k!8wBgX۸@2rၺCM}8 9Ay^D6߹yQ1 >7D=;mNHMd75mK& |(}2-nb|E#t T]٭:@FͥK8p'ZFhhy׹ht84(%Q ϜHS4 wX!aL@pgzZNkqrOw(vT92;/9pC1!+ Q.؃ ZCS_0dDQOltLj@5[bґ)7m2Xᥟj o8kEA (g P OtgBB%H?q i_sofx6р69nﷀ' ('k %i lBhoECӖZCG~ K/W8ZGڽ`KCuKޭTJ%n!zBE .9FE-tMگЬ" nñH<9@I'|6Ia( eΔ1܉0"ɹvAG_06JWf?.42bW[&WePc(N~^X˯Bmbt|רyH`"{Ac΀F(!N_ɨ_+$ ?~4KGo|(yH҂:@l!8PiKDe"Pk" W%K#jM3Yg,$ITbfcpn\>j,nE)LrO'r?y[MW89>u[8ihj+7sdLל t@ )(64~g>a>g oc@2ݙG-);O5FQ]۷斑HW_RGw#=KSt& 'Eո`aNbr&z9^`,j 5Hf8(6n !8wifu9]df񠷅jUˈsL/1>iJ0^F$oڜPN'.ҢFx3~{ AAxDᯙp`jA?`wGrG $`c[/%37l? wrd!eť敏BWOh<aq}Msm4^J`ˈq;o C(M0|*Ϻt^Sՠe}o҃6"9p(xfp}DO.in~Z.*h%H$O e2]{)DWRn8b-D yrPTƆ֢Elko 2(>uD\s᣿ܝ(!ﻌ-f_CO/@ު.al' 1 M,!q_Ȉ_!sGJ+b;A#3C|-we޺Ԍb7=֦qlDKDeGGw*_``QM]SmEc((a5@tP@*N "l/OB?QOo+Hsw승 QO4;c\X)2;Ci%\v@)HK ડZxW_: y~ /mrC;eTֶDy1DA*}!(:U42*My-{oBfm"Yeׯ3?%+Q`78GY6|݉12B2Jɱ ﾿H !l93K;+^vRWU Z:FO| N ZMoJjz[mٗz bF?=!6ov5Q3=eNgVTVCDf iQ(I$L7Pâ -_<7t9Z 뱅y.&ćT0ӛ"{&3zR9KЃ%'Zupe..9LNpie`ƖM}RNq;nt. 5@OGNur 2ڂϘj`0@TEUըp59^ZSB Hͯ6`v8qdKoEj.qp⏠WE~#[NEqnCn^si)s08ݥЇg=>Lq3@jD6J̦'l?¹tu\T;IJb!*QnJqI͋^*yt:`E ʍV=/^!<`X#MP*|yn OZ%D:;^SueZ ),b]tJ?H <`?c8=9γowm?ܥD\byf^̚7.IJT;y|FU)WLSvt,A٧mDкM_ƺ5gxZ ܝanWzR!ńu蹸|\1rr1a˝K00ԗ4ƸL-1n71Ql3H%sn\q/}wVlE=yh:6b4Ȝ!~0b_l%}K-RVmuy-cl()1dç/t4RG.pڔK?ٰHB&(,NdoBlD7+@{ZMsXbk$v8OIc\9E@RMUQ'GXM^I4*i ! ^Z^ uD⼿[*;\7on{KRԹ:a?(.*>ܸ͛ЙkP7YYW1:(-ۤr?zB1ОT]z6yf]nثM@vp@ٴ,v3]| ɦdm1s.r,w'] ݽS!syc"_b xOIOēn[+69˃,}\<q$Z h<ϱGfQ;Ŵeڢ XX{Be*LɈZ]Vx&)滊Qq > Qd] \%kߟwo;3jfhucF t:An<GC@Ixt6Ui>Y&/d큨y;F6MH Tg'=QB63ӞZj(CoN/ +귃Ngm=8ӱt,`RFLգ  $ $seV@!7cMn.YnaUf힑]Gv)h=9Tn_fw-+`GeY uZm-ʻռ[!CY"J*H\~#I7v]ZJbz/$r@8E\7iT^xV`>҉Jү΁d3QwNRcs,4XޜkAK;QK.i5|cX|r!עu];nÓGxXkr]iڨNgoime 9ضCLo݉!i֒ɚNw^YǴ5ǰt .,v^1 _<7aAn+{"Lhj)MGxxmg2%Qg~DM"!5ex !^\J9)kOƯ bnkA;5fاӣbt巍 %"S7􄺴Ϙ{;@ԋ!' ]v4+z'1+zKP=>k}y6GM+`9rVLn%;b7جVK0;*.:}2'4TEj3azH٧oeAwS^f񈬗6mF8"&V(^\~Paugm%vFzxâ'M:fCbXQ7;h.֮:|ن{r9GTHTT*>e? uُ0\%-)Ge1\'SYy`ʀ'M' @IZ=ÖO٦:Ԋn*ݚ*m5ϸKcݹ,dp]rAn(TTq3 .!4ޡt쿿̔ztȍF p}@zv)LL?b2esbQ[QB7Ntfvw( W+r6̑UipdGPfJLX=t}]+_]s֬ggٍ62x>/qƽ}"kgdU$ϩAåMmVq;%%KRʚOTKU&zY1$#Ar"ƨCx`DcqZ=0EVYOs\:=/jn(DK'Nx! 䓷&󐜾%Ys9}\jQ{bm G$вjBpz x!sA Tx(By/B^w/pFv|"_ <YV`߻wؽ@#x'*x1K}7ʪ^~AĆI*XTBbDO& n>БvId̗i4l-Y8ѿݏLKG.wns\^q =m)?|*Bqr0:5)77*}:=qEQQ)gUO޼!B`UNӀmz&?Cf`pg~PJe$n=CaHY׸jS A8j$I0 3r\_4F lGbgG[7:5ɳPĹ3 |Rfy{z^A-"N 1T||dep$1u*CVHM"NUϚ]l'*ܲ w,m"*l+jv;o|Fu"9|j{A{/,ܣ>i:vqwDZP W(Z; d:\+rhg%(k5oP{[K'y:thF@7_Gq_5y}Z"ϫU`yJ:;T6d?wtel3ϐ2} |G4;`2;Y$7r`rNΠy3 7aV#/f0ngy ; сE8cf,Ҩr 3 B,LkH#5-pлU>'`^:PR/17û[9[RHB ^ z32ɠvdI=V!oáN*4^ '+a؀kU++_ÛWip)(e+,%VxQLE oW= [PjL%9C`~Y}L jGjd:E;o']As j*e5N~ҭ8nCxm"F$=bMP$G!7.ԥ& lKTNy9͓7ADsk˪"_Nz]}B&k󏡂%2?'e:.FUx&QN 9ruyz?ۣP+3z) oG$AOI?fce/P@6#,1t]EȮA*P,8[Mf [qc6rFOXUyl тj7> v3;͵sߢ eAiG?@\lDM C+k&tJΩ${!"|B^ g ޔzay`नb]4e1Uև/LWW+eiS0q%J#e #`o[xH<\N X ;Q͡ )ݻP:# Eh_믍]7|ZFJDtuc@,c2NLMةٚ1\Nut haO;,m`UZ$ߣHWRH 'K=2TX!{I3 5l+{ڨ3}GLȌƲR Vk &8ŏ{X g)eQ+b~7`^R!~լL6w\l'jBۿЏ#;}DԾ\5bNcqILgH:/FP#CDbE6 tb5Wyq.XҦW] .&&ĸiA/X,gio_+4w=)Bx2 i~au L*Dhŭǵ5!dZs 5[I{uGTIC.yARd@l&|裢.jm.9Eq9a-1d줊r9^`O_'{؄SNlæۅM`8 Œ49D(S>K6Q6VD4ֽ"&H#:-q͇UZT_!:%oEO:pEF8/i/ 7΢B`r@p.]J_p= ;ECsk*øz@& Ds` 8&06+5~ݥ";:FCNB׊ѓhC,UնϷp`ޠP7h!-,ǣWՏ/Oj~A*cd) #fGv%"RwDDODz^deFp:?b.f BOdA#YΐF[4v}ܓ:r<"og˚߰ ij4hJuDB%>5.0q8ΖɛQTu 8(J- g=:NxImG{$:UD!1_zVZ|'OaIMq/ j8 $j̖}"=cK5%\gJdE-/2p c sj'` mk%uVHVla:5[1 cS"˞P52:M0.[k F*e> >a`,Κz*`@ARO-ZX(#훋g.jGf[x0 {%p%`YRbJ?0M74(c|S `y\8ohg;Ch:mT%R-EwUi0z‬n 5cOh^Abw'd! BQ#4dLJjAQJH h'޵~[# .Lq*B,i緙 X\W(B='! MBN)^Ȅk!Wyj3BiAKYGڬwһI3*fðƨ+}m 3 57cཬ_:'!{zC4 sZ7BZݿWTA#xӽj s9p[MOL={f"MY 'Mϸ)eΪe*б̫W.z2̨nRLfqR犺*!`\l_!]< '>{ִ87t*9 $.!F6x ,@zSF a'5hVF(J+DtpBF(*Q-<8vX^> 4ߋJ-Kϩs+De ?*ulƠ@=l,/s8"VzgXo8;LJ^4zo}Pdͯo71xp&Rx$ olhaYt6 %(adHWx^ƌ"y3`X=ʡI mH0 өxIdW %|xƶ`gj_I&4dV1HRDdDFy#~2-Eg%/hہϠ.1B=?0nGrUĆlo撩 z!)gʮi.ӥ5Kh_j&5($CɒR?X˩Bgkn 9x VTӔ=Wfs\]gwzQUPMr!1Z+כIFnEIAC/0Ms>ZkI),/_ٛ2~ 4Ⱥ539[K<=f*/rhz\x{s΢&-֩{a׸Mz$?]=R蓽\%%ZjQ#˿JW.Lݴ弮 őe\s0\Ky[WᑿwߩBO5 }xlc|Kn FSj^x2wƉd]k[Dfڂ(3C2,[N[|Y?}r=Cx9K.%:F(i)4]ZX)smOML2ec݉)N *{H7'*E}9<#VG>vLdIkD3#f@&zzdڀS%4<&+͹@|wz(T|͈;OZG:jԱJ8͝O}ݰB 2XnSLɤFMi庺Pn>Xpu֦j33>’J/zuqlcU뺰 &?BS]Hu4u`R鐀d;|؀(bVX4d9lA*mhpꕰcc1QM9FNx.M{#Y鯍ezUkhmwʡ?ѕ1D*4j <= LԭW:!%] B4Єuϝ#H sf5Ϩqk2e;瞇5a3zU[稑qE{cn07/:zmgE1̖,(tN3J*hp엝El^FB* )1"gh)%mT1뇧dn3cQB' 6(7K👉d,.j?{#yr)*t:* $ћWy4D4@ݳRiy쇒t:ϡX`BgdEt5$MUk|^uE'<-[OtK QE-'ӧjg0SLų?42ATcȕ R'vП[7aQFךrU؜ sAY -c.*Nnй젘r+76ߥV c45'FJ`+3 t@+V?7  ѻD:MG݃]8P҅mR2Jh89 2Mr_Tq&F7$\A1H4. ɳ3Ce/gGAp\HB.{[U_̅rAp8Ę-D(Xg*w~Hm.c8i8sܥ-h@^s'ik{RRZt6~E;!XsjvOKיtZa[DbkQ9/O[ M伝aKЖTYAie@ FZe-f`\vI8ȖR\{/h05UW}@pOn,s]l͎XO>2@Pl0[e Q/\*2F{e28CO X^}o?k?t%Ia*xy!VKeC<{l*ؙ)~{7 0qH 2%H\=ZqNyJ[j!Z23'IFnfLw솁&@Q[iJCk";<(c1>bܒp`,5N '"BsPԔ:tY)(U|nٹMfHZ/.7֝|_ׇG,Z8*)GlQEz; (%RFNyRo&2;0$nqb38sE<58a$WO#fX;xKx3. pΆ7>w^%%fJh1|c3'|.~ÄԫH5TXO$G:;=nX6ku˚e bhl)\NKƥђ񘷄_=`my"ҁ Xub-\>y`45鿷{WUD_y/5eI[}lxv[\T!đhxѤ>)˄C,,nYiShys4f)8R}.8 _xrYEH:u.WmMRX6~ 7 mAPwQ-ٍ)j#P6`/,M}WM ^NzP7xR(hMEZ*c/O}rh?2lp\e>lUwRJ[[U궺,icAT[9W}ZqD2»)(lN_T C˷ `kl9>0pŹNТ =S:l)cvX۷.nFa&0*EhK׍isDS~8*Mzd.KB5>GD_ζB9$j-X?,zvP+ZDW8~3 y|+<&MqSp$`|+IX7_>Ω @GL̀ڈa5%#]NĪY|ɏdEHW8k T<76425bo<=m :v);VhXniLٷ3 )߱Y17dM[GG%O$!V` pI}bSJ¯2 NȃFrf?,ؼDi6qI}a'\IYB6W;AscٛVrV~ubȇUť>Λt)'V:PzlN.)#:9!">A~O ׌QDFwHUfmU쭻HB01+栆H4y)49 z@Vx'&0n0C~lrg>^3 Ǖ%ݏ9 DnzJ-S0иˢ.= j2^s1(;WhN͑͌RH)o6ԧJ&"P&le(7d2oS955 y#tP`RrjL8ik'>緓^g%{~[) y\M=pu@[8kd>j@󂆢t?{=ۣY.lJ'?Irt~Q䡲SIґ_wa.=uqL-^U{c]I/n7{7N%\< k/&eA%KZBDZ5)fŠ,Kpg,7 ~чqy pni{axyZbVmV:Gn:;br ϴsE#k8ʟiBE,,?.13{O(W=4uP:K6n]Pz cJ~ Tň: ;YN~bBe+. [}ªQvs8q+))$jMMf? _]10%. ̈|*jtL!۴M& 0(\9W$# ,ˆΊh3:jx l2ѓ} a7(/5H )Ɏv@WK$ $SܯSN|Nj]D&zi@oW獌ʋI=(| 9!냅D 1 ct%b|$Dw%R4ۏFDlgvKgD cÖBS \Ux)=}upֲ:'›i5ZHf(UbѹmYe&\sV˝;Mϻ-Z\uvڄȠ=T'gC{/Y\? \[K&I`¥gO6S)#RX@t/W+:g?ymW 1(:f`FɚV1I]1NlvALpw4(@5٬m'"L`J`Al QgxaRCo-| ?y0%vl}` $u\Ƹ : U>X"C }eIhOg`T.DV-/#>]PG\29O{dٴa[:pGFDQ i[!s un6 s''~Z5_& D]*ELh U,DV"sK|RN⛿ipsx1W@26N"Dӷ̓+Q3D3~(.[U(\>F'BB0@D:x$z zQ0> 4Jc˾[|IFQA1remY/!ACXԞvxrא-A9;?MP]1,VP'Kp4E'pE5,lS䃼H냽lurp%¼s2FY|ӛ0ůo,J8xщNr%N带$>+G aB%Бl31t鸣ui6<A1 5;c>yF>D(`\Bzڇ`utw鱚kփusObhJc-gTup6EQ"=~̓_UgLaOo U %֘YkR|E]íB5bFb|$W )o3nA$Q2j7%ۀ!q\vFi*aîU%m2(1"ƭzia۩pH/jGO`Eޢݝb.^ sg/[ħ.Enel^b9%(m" W,0ig퓚g] aZv|R*ts4)hdĖSZ^ l5L|WoNL# 7o/7 ZѫXYU*]İS˅rX`u6dx(/Lj2 T&i[o%u#7 DJ,V,>r a%F'q݇'i&q0ZM='mmG57E0oŴ%,Ps.vn/v-e?Ɖs$F! X څ{ݐ9[㒽y$$K/ ]s2<4#Z)9gF{z^gdaKw+M8f-u!?[xFPX_L=#uHO/{Ga .gAZjӻWE CHxP'6kf`[]+ J| }3LppؗY$)*#VWΗ?Izt_8u~/8 ű,mUlADo4U(F7%ufT[ _,kKiT_DubO%"q̈4-4 $b E8[,n^HنaGu(ڿA=ujcbo@In>9|pZǓ6E;*G?ȦPҰI/̮gD3^LmQٶL9bE A XWUO@]9nӦ*0Sи*i Ӿ%n,b|rb{ $*̘eHiJG.\H%<"p$oprp=ߐc8U,i}3D _A`JKzI, <}>a@eB%0NpR VagW=4h'q_ޘc6Q?R8hG5m1~3X7*aY+XH!^cFr~{[PrWNμ VI/X^b1ř Lh{v<WS̰1Dtmń-Spk,3RS/MKsG@C/d؈eDr$ 5zJ,q^"jt}{@)tę ]$'p!aD\>/պB7p#Gph';i׍>n xGD)1} *ǘ0h'Qxg@Kч^3QeS=q;J4ݏڠ0>(կ,Mqj* Z;qK$W{fa51Nbd.韗."uC㋕wQt&9$)￈Nk-#o1Q ?ρ/c7(̱ ⭋ػE|YtP%~2bqᅗdU2eCQ>x"W;њӖ1#/Ux.! :^ F}t^/(@̎k/@ 8#h?o`" <-#yWբEaj9ݿ5 =Xb'>GVC1o60PFtdb狼t؉Bu<P%f ,ӲQm|aZY<:/r5F x5F yGgܮ#\ ; sI WIUsYʹG"]èkO)SHv9񏖭[[C }o8,zWWڃ!)[O\^ KT".5ݚ /Bz.ɝ(1+!9~hUC*ݘ!В< }]]p,o=ycb+bh~SO<[枡b`NrI- v@]7 wRǃ,,F] -v\lB##P+vݐ]_4.SË87~v LB@XObiubyh=[`]0F'#ٸ0ULC(@S BྜS~֍!$rGt@LƑCsw:G,6/m8/!9<:; {vK&~I `L^?bclH|o-p؃xwaNeǦ[^aհv# B:W>+~IKJ.Vµ,ޡu~0$IF!%Iqo\8)JKЅߕsrYAvg;|$"}gPZ-^;iM3ʍ=L̄ǎC/OvtnN"օA{h7 Or},)]1$Uz6ub42(}dK}(>/1lgR$R25i9 0(3N'sWpľ}d`@ㇸpR*N Fֲ .2S-y>GAd|I R?}ikU==pe{ǬG^ ޓ g+Fʶ ԯ4 CҪ8!Y('sˉ+DI j" T;(.Ȫ}!8E%]kaÎ(mGƂ2>W`kaf|`wMtaH%ɤoGh+ˍ;|(Y-QUe1k>R/ U:oh#GʼB{{<|6Q;WThfFJC#%ټ }| =O^@bRŌtC-]ۉhH$rkN`e%V WH4@Pl n6hDAwjVp}-hIpiSG̮gR1!6<9YeoR=<^[wY]nkjÀp.9I@ծML0u:~䣧9Ul̢ѺC [0 Xצd Ml*OY^+{f ~d9KVwRs,̡Z5{g|6DH"ފ*qIpJ.n?A@}Nd[z$zV6>`@$@ҬEiw[)@%DT>Y݀rr SH埨A!z4|{_N"'@\*ռp5dazچ_#$&fK<2\1T 'Oz*Y;[-9Q{=siE؄V riZo!Nf#7_N5 =Y4Π,.\Rxm=&]OjurClXζi5𨆇eD_SnXl >9.|tI# sZ9X]'X=[-] wj)&µ`t)Ozyf1S>aflAK)ZFL3Ƌm?yg<`e D("(_Nuj#R`wVP tBDxŴf[,h7K='8Mȫ-؟nZ(nc":*aވzr!;t?Gc ,8FӔC@í|@I=-Cd-r> ,$+ ztba#6vAAx6^A[onc5$vtf?ιp0{Y@ZUneNŌ?=Cj `bb5uz$|}>ToKU-ol[tkTfcyL!RZݓ@krKcSuT%qz%eYEJ7t-jFr} 1(%, mᮺ; pʿăwP0QE'1@UMWTÏƽZY(sSN"ҐH2.Nr BA*FkF :Q KBdzWT%HV|~%كEg W׌x0"|ܫ2 U|cPV8< Dn nj DIn)t `Rfsm>Ҭյ0a:9-5wA7};6k箱n7f)o4{!:aR\uٻ4VO:Cբ"0Qb{ 34ș҈bY|$E$iQ:^ΧPOm"|;aN`G (1=%55-HF9Oݏd?._g×VBUi􀿿gKi묈<m#Ϲqxf߂zwZH6 e4! >KõpR:IxE[KeDSMcb&DNTgZ9{pi9?H~i QgeanS֓DO*>99A  BwI_Ϧ:pi@ٚ<?t"DN@o2_M)p:=#G[Mmoxj+;cə]GVS$N1;|߆/;wdD滻 ʻңbqc8FVDчeϤf B~4==$ĮhĹ(!7yױ*wZ݆C9lݪ0Xo772eUDw9qu ^m;u4@GeB^}hj<$n})ik;*4Tg%psW!Y\i Ra(]^+@1799kQq66F M0]%EC\Gºs4]$ʘ{!%ƿvf![0(:B]@1fW:^-j/k3w#`=#yvpM@9YĮ##S=*K hYFs pg5w'*H x`/ 1egpZn͖I:l}KLɋ.~N?#<] ƙNr¤mњLA*ߣ  uRF$Ke/̰uJ;V7{[T2\IhQP$0e1bt0pk(hNlA5R,qH LUD>z]ORDBO8/T1Msruӑ=&!rp[){TMm5BL6c1#Ea,:;}d=L8m, Tm. ~i#}E+V2wh]W>w~xKUe@ iEB$n|aZqMCdT"QP .啝pUXS, v:؅Kt剡3ЁN k4x> 4 qwk|,&Əq:)fl3,%zveV>"+i6=;`  Q5gn^csB .dHWxR46"lȡ_iM4fzT3+Ab|CLW3ޚh $ƹ(6l܂L kOzyey߷H\D @HgE625x(¨-]EoC3};dh/7]hABi>0eO^9bJf Vj#XWn=o󿋯:b`M7ǯ{kmQOC$Ӿόn+#襫9џ"QqY3C^#]IRp0<S>Ƅ̵qo $•trҼQ5`$;R#|T<ŻO+j`L6rw`o"/#b7a]]U$FJ50%1cҬ&ǔ=հ"nDQ K/X2cԔU@؉zyEv`ڕ5lb GeK]s,'sq*Lr۫@?N^ҐG~GG+iZd.巒,XbyU! }|iU1qMF]ҭ6> TAM^}kkUfd\:\a%w$ W!QR -_hOUP׹ns *4uvyW0<>zT,7J/gXɒXНW?vV^l*ٖ&KFPf»fxvP F쩺)bmmDdoRs<h0.h.LKI#CáM*[`B)|ȣؗ6$:s`| Iy)/f,8nf&at\NzAWB Z~)؞С~GؚXx[=.v_=҄R+*h.ү'jtQ藂p!s7i#n`K u1A@FDtjA݇Q$@~pPbaNi_øqPԾ6p& A4L*@T;?8g(CTm}a62ް.pX\s!_ @zP?:ЈKD_HWkR;cqVp3Dq/>ie?M.O'a,Jܪ?s]Z-ŮQ$l7WFN]P=qΦ `H p6E@U7]k*4@M\MCUL1Z1[Atbf%!$1ԻyRQG10CiJ%jQ)ŋUv2gA7 a8QRo&MlT̥o<'AKmV/gUAhOcLM&Hw? *SUgn&|[ ЫOo =4b\YawEj]*9oorBndnE: J߅ vDWH~fY&tdkkj^Ʌm b'孠Muҽ9VBg/GnEqz#'؄{#$z9犙ܓ>>ynmo0L)-hPĊ/8cu"z|ǫ))y_Uz6 KO{qmiez؛$&f;ApK;/,~UwwPp9-: Sb]Ғ@{Kv-rxAϗ$\vf-n*75´LZq5<^^FMH)c.$2 t/]H " vu* -[;#K;/Bpebsa)שxf3.j/kvŎ+LqsG&%@9^_W׷}&T_pr"O 92KUv}OZ}h` Dẍ#xо Uq JK"RjbF} TFjV%eD"Y9|5 YT'2,ySfu0%ƝNVS^.P|D"P]/WشUWD_8qf;WΕRGn?_=f̸ =U.Ii/0|"ݻũ>%%`2hE{fH tFSE)؛k0#IO~G~i%rڳs-D^d3SOۺx6Z%nMI]#" CyT8+6+|ZC\6h9턯m#%n {RNx9^3GP)Y1K@V_J’4ZGWZ;q/xɸ`ͬNs^^dl{JU\u{E1|^JR+R;z=42kXTm*tc9yћHRI?<sr,~%Z[=ovHO4fA!!}JBpf7#Jtm;,nйHF$m@S1$P~H/4-TQ TU_0l& TP<JfGl/|nۖ"(k R'='4N{vh._B>N&)%'Kg_Ԅ?2Vk3VJ#0}0ˎ瀩u ?XXYF㱰[4lF[fg.ɫr#~`iSW [ xgPɄ]q]&lWon5 4%X{g^7H"ˋL HM4壮ڰlg>K|apf7_-M1`}5B~"|mo3ȀinY󧵱<D.)͒&46rw-RO@'Xr>y#P#O'OODȂm|9%Tɪ?[uqU mBDs|7c%8Qe`1L,1_bD&g. Eѐ})?>TE59*-(+u^r3ڝ[`\~*u,l]Li:x! %zշ_X曋zZ;Q05#("##zbno]q]Nb9+zW @epo\ЪU TE4`4AZ<V 0%GJG-M ;qYtOӤ>&hM ڱVuh"kb/?>{08} r2mTh\lُwraq YKP&,WVV+L3 > } ~ľQogjF<~\Hk>Fe+wۺZhp@S%{=s91xmyU;c֏ {T|C&N/_VvHk&ۢ5@THƂ ²D&iQS<*j$'D}XRj.]S헣Q!U  ݺJdʅ~{R;D @,+i `\NBV ;s xp;dsa(Dws-@2@C`As@cG7Yvjk= JIDzFQ6*JxsUo PyBOѺYjr2T옶bJu ̔dlKO$TJDϸ?M /p ǁL/3ĘK.LLc oJ]:95.l*c'n!;iFKRqY|AeG #6[cVʸNӷXZps,9X_ʂ]d}귬^lHy1_MvM9d 7(#}%-aLj#>$˶u3?J]c_6xCq/q +yX.RP+գBɭbEƎh2 ᪶:o/x#$/SsH|%l>"O_MaNf|% 7 +\Aؠh\i[Z9rWKw+iX2!*;8jͺDSduK#8_-jQڭex=n ,QD:EPg:(l/ZkB_fS'aӔA25/%Wɼ=_#8oU'!Σ= '7bKB5W!2-:ıR8u ";f@On]Q]Z+>i55^D5,ȿa** P}ݭ n[0H wuD$co oxcwYsEC6/`?퇏_ha6R^BjOI$ݡƦL[ Y=;&<}oQ% 2kq\+\f54Й_LG7ݻWlSȨOْL,FHd:9EI)3$d 󋵘B@r8Hۼw(qV5x]rS);oA}={O(\t(f)%{0׈+Y)Ǧg u90]yae8=d'B#_<]3'/ղ{}]h)y"A {Uu Ţ',`HRNF|>ݩgJ{LnOB޻iRN  df|3q8!=RDy}7|>c~;|[>GphP ]#YO+>>9sM'ue0Žwپ{WIC+r BIoJ?ĥxjݯr\-'KSX}BQ-hZ$ju\4B!j۴p>Bc0m}/iHH>feZ٦f7lR'n`x@+ֶ:ЀǢP%a7Nlwar "ހy⛝GoŐcoQf':G<"؍^v8 W7gyPU:`u\ƲvSkvf< Ud[C V\jč#XpKa:q23QO?IOuIEa>wUy 89KTɉ_s)k@YQ+"`8cR,S BX9ZvH{LXfnd=czeOAiV^e]lN}/ۃcl]Q-P u__CD>(w KJz'wWX!:6td?d\B4`kzn[hI=G/KEH@cwE)əhܾN_4VF?NR8QSV5AW ԺOGԻyy3K:@ A10;^< j \uşkUǨzu'\Lrwlh֐1Wo]$4@銜tpM5IY0a&#\7PpVxph N*8n9qQSsGSaA=L'Le,O2"`}+! ]B'˙ol[r^ ʤLɉa'Цz֤ḧ́*0Nrnԥ;E'%d˨2Kǟwr$>ڊUOWTWrך{{"ͺPZugRZ˻e߁6ZiPbO}AFX YP`*7Pׂ$v7N @ . (zdnIv‚TC3G1ܞ`xМ)g8#͊Q麭rMf:u8}~y%>hQ(@US#-8Nm`gOm6=Fm9߱y@kX{!Y"}{ ָHَmAA R)!GDDNRJ6[.Lqݾ%6  yCԄбNqGY$.K{5"A.V0 |"tSMٯ$JZ'GŻbS;3OP!8;.wC0 zퟕ7իv&?gDg%@sMvFG)aS/ nb_7eMLz$͗`GڅO«Ej6 RIe׵;)o(^^tkӦko&ki70k^֙>]#ldžvQR_E wZdTY8&j*T4AӬ/* ^Lmk]owr1▙ )$#c7ÖxguXe#c;8dKaE0QxhDi\Qk1+ݹC41́0][fs/2[ɧ&J5=Tr 2*Y gvH}ywB͕dILZibE! LpA剛⴪ `þN b>D^xh~rehB5,}[w&.coX'Q[Aw!:߅  ?ɡ9އpxuhO{Ž akw4z]jr#̭yVf*Bu@-a9[/#ݠ.~5|MN9 L$F.e7y n;éE:J)pfjvJ̬Y' [ۂUa5)F3!,~4ttڥcHV,ocHm:%n.@|AFiw:"q7,\[óLTt)nL/,\Wg׏)rrM^zu7yU[\YWdgCV۶:>u ʶS0fgpacA28cs\r.:)"1>B A4"9^8NWӽ3˒%bq؛VbO >'SOGIXs[1,Vnڡ 76_Q)VICsTқCtxiNO{roTUT܂qn,6*m_I5xLZp?S"Fq%dgƺ.A-9(3!״ lh*EҒ8`wTsyw۸9Exw*>;Ȇ[?f~,̜֨K;*Wck 0N @'dٙu镆o1&Dp I) ފJߔ(-[KMذ"X$HwT*[h%L\uZpJbj?5)*2 bi@cʡ1Fc%HЮ1~a{wk6M'@AE=E(P`P8a( `aa˲y_}|"z׌USG&/ܣDeᲧ'^6eK0x^!zzCn3uIx$*\2$xH?0$PQ2"|}[<㺇_Ύپd@O"s`"BQCI6U`ZS mو-ЧS!yI/\T6ذw큱J nvҧ S5CgBK~3Ak#ז)|(+,f"u,2t8ݣhF}Q>{Q0* Hh*EvHbV.vW V~"-%tm& sRTRmLqwi*U@siR"9{M֌% F/v|ywʚ0JD?}+˾@_t'e$;o3Y_ȹ\h7gwSqo Ñ *dF~0`<,~ g8X؂故y[pʯԨDI i)"q֓ŠT*XUΝ vڽ+1gn6lD7u[*pHq UC- LdKO~ѓ<`~ehI*JQK:qVV?$}d"/h&Bs*᜿:4# !u f|d+a!9H=ΰ>J ^7Sa{>JϪ $$%46_R9%koMii_R}]Z2&x"Ϥ<(,N+tJy>X~xb.Bg7;X M)ZuYN,2* Bw G"ENLȉʫU4tmY(RVPG3 }s74(`}ѫ[f#J7;~=iFcʄsda٪mT[0eKW! DCcQ'J>tUWx*R2VlՅa6C'z>0zbr-YsÕPY[iAHH^7_$JFKppx{'ݻjYcSXRx+¹'ѬH;?](Y/@B d3D'H|h&*q̾q!Y}=#2qx6}eC+ށ6y|vP?FM[P4TWȫL QE.e,a hXJqwD IHGpxhh9А%_hIJ +GA%˷yI.=vtDZr}9ߝ9}`y[rt"d _ZͰ<b'Ħ9,A04|5\Fw 0;qZIHgˊXxN34d٤9*³\ߝ#{K(R+lwᏵ]oI߈E:/OݏX1iQQo3Xv f3jϬ(Ag":op@LuklO42R?C!{ϥjE%{Z\ Vم!7%FePηnQՎQ+XTNFtacL7$ʜ"E7PO/jF~*jT nrib"Vs.O IJ`*;5y\V_l|O[1K+D8٨U{LMld=nַ(T _~\HB1U!85Yv*# NXc%K/U٬^湜ۦ@Y*PoPhVj.gM,Iʱt%_zO~DQ3T߽ @Jsʝx~5&vxy)dQ^B$I7B\Y|ߥٌ^takJzy84|0TE٦'h . k ao@[PAN@׬ c^T~`PWO}Vu+DLWUP8Vf|ЯB5+Y=VO:磑JA/ڞ: ~D4Bbʌ8+5Lf@=)}'іido_|"+(b\N?;rc&lTq7vǍ>W3E:'c 2QrP0wG^K ]ˌ6~,RBP.4C?6JmƦ1ͥr#Gx/\qv}'z$!lL맨eO )Uve,d)OP5ŢCBmZK,i }ƋDuvE5baJ-`96k 9> `T>b^{fmô#{CT@fE&91^- -L G?ψ.EbI(Cs}H`h'?׆jZ s=> .O\ރP]`gVk31oՓm}~ L%FR>̄~<\5/E|JY@0V!J幧N%lgSQLQө5%%mhu;߂z3 sH0KL bx&;NTH#<.D5dZ^Odc*;Dzy:YpqQVQ},JlNАzAn;K'786SLC~ι8霋7dMg#SqwcoDP_yB}ajE"E9|ӴWY:~᪍ޏ]ݝ.c*ǧɹ  PC23`D c1w EI_UsoN3 fJG9oI*mmk%מt̓}F} ]R˺"5̰|7:g4P9~ԨB'"Y6n*m%.[!J夼&_S"JX}pH꓎Ե&{Le!&Ns{t1b*o8AUа U)r8 Zߎ"X0ni?/{!a[|+՟ 4N-j^.>^8@qk +{6qCր*~ |'N<(N'1a#oŵ9׶"\{H; AT< zs"W`9q ,r' 7` ?Qڬj7oG:zilpRL%+,. ǎ$p]~NI8Sv KV6)?o;r!c|jEiCKJy RZr:3\:/R-dcZ@B"3!@#Yh J E/mE VZ9eqw&0_4!>gKs& ADZdQ6Zo`E>hzS")Jh[E9j2צq!h|ZLijL"6$5ԎQs@\1-p.ȐOY"e:F)}rϽ1(FM_! ZF`t'(b扤6yoJFp/Li:S#60OB7!Okn@AY(~;A/jQ @\eL|xu۔㛦,# Uk}XP}  ?D#w꿝u9XkVze$l=I m맿巑Z/-KQTVJQ/?.3~n=ؐ zËa`lhGi7X<O&O $[Mg80V#m[z\%6G}B iP#]{6;&g0VvN4摣O\(z'+qAlZ@a>j(z'8@.XůfAm)ԠCGݘЌ??,orKAFtJpfdɳ9eZQ}^MߛW*0X dQ$؊AyDz%@ue|ӎBx(Em &`NmU󁎖 ax#ޟ*qz9{)p77ҁ#+=H+~0Mc> 2nt\RWG{߮ nKVA#_ݱ\7k? &[Sjnqʔ3]YNJFy%xt+,&y:}u}cKsMڌ֎%yHG]i[T=IzPujdj`@~Vj&xoee_xyK~ "jd?xD)Rᠱ?r3 ǁtUj_boT:Wj@$_  dߕGڴmà)K j" ֙#{@̚Fx6SV\,A$t{4#p11jRȦ%ۮ7lWԁ&c䨷dá)Ld}?!nyR93Ղȝ*>48Ur`KϽflW;MF08ZxDQb5Tu<1\-ʐ wJ͇ȻBwyw^$(ML{JY:$-_ܝCxGp q p&A{^`=+F}V}E%vf//la%6Xi_:JEȤ?b59ۥ^)]j=H6u~΃5+SJk Yt4M4捄0rY(n6Kr%ɿhA1mӻ^j (Re ɣе$p9`KbKU6U!i@V7&,r-U(V=pT\I0 6hm|"6m_>0\^n ~3ӢpN?T(hDӐZ!=D}[JP&D6E*x&jR᠐fv_ߠK4&Q@/nwÝy#d*?A+hLBj?ulu3i6i0>RcɓID`.!?r+?(\ǝtap"[v 93M5Դk4A "IㆴW2I!bIYW@dGA]i2.x@Mc=-;#o%)ѝ+Y9lNEuhGIEuUP+!"lTť4C%vŲ"WsEXTD}XQc)JfiehĦȼfc,B)zɯqy]@g7ƗǞq0;ğ`]h<}~:Nujgp@R*ͺk]x-Ï:Np;ue]*nͭ 1+He>FUMˍ$1,W$w8o6~Hv{Vje˿1抅bz9 -W'?uV<0Sŕq\nsGR"}m p X'^Gr#P鷫2QQ fVחtՔ0-z"ȣ 2>l+t#,yf2/f."oB#+T!ݎ7cï)GhMɜ˜'1֤$+^Ӳe]+Xt0^SQr_s4jRUQ -y9–z* MEbmL>b9λoWF tS Jy*>9Z0@]HҊtܸAb{#ؿpQE! ikkd%Ӯ%0ԼizR/˭@ wI8S J+8)JOn QAю|H<;;k^ T0 6HcVa9@^ױ♋{׃Y r]ITk4.x4@Q+Ȳ˩m̄'ǘ1I?A).F Ϡn4샬fHHU'm_` ,h.b;b 9c A>IYCE>r– Eg'5(ǟ32h9yg_atǷk4ET{LBٿ,6PaXDm&aϋ?M.%lE;g2r>ZO[b7梌*w &|j2B]["%Mn-]ɩ 8F"IXp+9Ypb?Ȕ 63 pl;-4mbe|Teg9!` GʷBj V (I_虙͚@W0lw%7X1M# W44)_4?3eZ=@Rg$gUǞ׻=x oIRUX8Ti |\" F@lv?}^&{%A2hi= =.cKС#mz8IZhYȖ[(*:q\ĝƾ50KZQ;k6#ưiO[y?.s|C/;[%WL6Cee*Kbک8^m[W^yc3g?,C)+CeGA]هpD|Oidn 0D;}6Ί༝h#{/ǃ3UboKCvưXDӹqb=.כKM/½ѥ6 w\jjA iEwI%Gٝ?BSZu[ ǓmNR[sv\ |`G?d6?=1W:BJy@X% &,?QøB4 PK_d6;B0[(EyΊ n=O{hpu Qŧ39|f+![Կ7Fn4 aL0mm<xu;Um +ĀCR ֗Z]'kSj)̀;b9qmL78MXiS2QE84j 2,fJcZǍ n^ѥ0Wu;`ȰZeϣ泳÷LQ9hq ^?t o2תCsBoj 3bf#c-pkgUA7~=%9Jhred,?2Gopf_@XgT/\۱&EVX~J<1SE2,(:d RtYo֧xJO죻Gz=ܟ}u'QH2R*O s/GPZ v;䓏h̲T7qtE1߹{]"D{2 [U?^`pꄤb(X̵ t?`WWe`EK*!,{$y~SMM `Ͻ0J{Ҥx8$|p A?Hʊ ? .1ZBC$2*z&6 rM9EN鿾cu8תk~d \hKf5jnQELXK%>*duLw`j%΢@yD| pK셃%%@ @?<19W~\X?%&pceG 9n;MN,9"w/4RҫtI5 6l׻=ȐHB4M}W 3q6_K֮G/&QqAcӕHGv$H~i rmeui^0,)9GʗmO0R\9(z2b c| ÞrߣiEKZ\h]936U8;@j]rOu1tZ&hSϓ>m5Z#zMR|Jte'I5$pngb1Zt: r^(4r\N\)S_'v8!E*%iC_,RJ~\4꒹zq\M7u#f4?f"-ȧBzn/G&ˑ[AJd H*ҏ4*v|B iVNޅZf]CV6׻b^Qs#\ jI*)~hcEef'qĝ=Vhf(Uë?m~GpV(BT_\Y\͡q`̜ڭnB-mϧ1< d!f ~6@h"߭M]IIkVݩꇋSJ4N'_p Bo+\30R܆CbY I2+0t^;wMo= D'`A1ȴmJxƈnG p]1x|\9,jVj 8=J| >80wbHWīI'1f)2 7D!}]ІWG}XmX#ox`ݠP7 v3!VY ҝrK f AdCMY $Bu !N>)ymEǐ^x6ţܓ1in3] H^Ԏ[c.! Zjr5c] A;ۜ@ LoL `;ptR^ψ4~nlA ]30b[RWs zPk<%<\E FSa"OuKB?;1t|-b x*v@=J'xN_}) NR~[|Qk=\q}@\^WܚewTqB$ɠÂ'PBckD%Ve* yXTϴpּ9Vz1wz'tK#teڔwTG.5>@.@tLl<4ݒD^2ejAչ۩:k+1n Ӏ7Cn9),둶Z"nI&DrKo'D0|\EK4\fSyDlܥL ]$' aXO9 .!3gCf} 8IQbH$;yQ}@RLAͣCgTB8p1xxnP'OEbփq| yRv2n1͂(@8>4+Ohƈc]/G3BJB Ì!jv$6,Vh ܱȝj(<ɯͻvMjh&Sx?OU5}N B)u`6u/ dKzPغbMg:Zj$>k F6^q4h磣XȉBݑq] \!&mC 1|q=*RC cw 52U#&*1x@T@,Bٗ#m̴B TV}/*\?;w0L%^pƴ^**sVWk8n$H%1XPg57ǛP .-qc 7<&{ag1;8bO_RMy?gO+8 3 .>V{RiI^BX'KnvA`CkOWWfZOC█5J$`澩evz(xOnҷ+'~E9 7V"hip  !&]Njp_`5u4ᔈ\TU Z˨̯{h-x)8E5wQx UeA髀ۢNDJܑ6lo.╽U9je=܄eũyYZv5?|bIbϵ$ŋ>9!ggVXd-@iT1u*_Zvܿ`&(6xEFznC;RaR !I軴dXKqrko(XThw #9SkH>r3",C[˓HypQ4#wY:hTE)ZËo6"(}cj2ËDŽԾx4\ŃGutIIY4dO -{$~ v,|5#s.W\2TfE7JP4/(G{녖qّ9 - az;gAǢPyHGRʄ7b[D%AkeMh~^*n0OBV@C/QX%[Ŋem.itFU$] :Hs=a#!栲AoׇcTf^Y1 "I>(Zӽު) *!~UYj8 F|j%M!S!OV~rٖ9?XK٣e¢?!<GԤ7׾ $\w#,v#tj'E,ES^9˦^3Yu+m+sٮb#JyW8z@+m_ק Qt#\w&gx:IJ!.f#?g}&$vWi) K}^5vQdaAdga`gd| U֒ygT\(#;u?w2 ^qܡ!k2 &2~LA7%l '?cߘt'B}O%"ӎ]Rg%WUdo˧`Ⱦ:mt Qv|nJ ?VVM"(,/cv Z/Q$HTT_:_u{H`il]t!޷hm<Hw];䴢+B=jAE{*)@$Yh/Nvjb$0 F3yY",yعf=s^qDFhѳY-ֲ>aA)ڴ'{Ja$.Z),qxޓ4s)SS ?vGVhAM_Ande+|b =Ʋ_Z6߁P.q%2P{I SW_dxFJgD)&|P85H8?k*{ӰhGBܛ]I-vƔxqSZ ִ,? O <_>R{v!sQ趆hbe2lbc9mMh?3yl9{Ge+\D'a]+f\j'}u's:׹^WE62M61ι3Y~mH`;^SIf>8l3{|e"sMC(^?k6\ېRv[ֿf&vMY_ q_Vl\8H'sVћe$0lhpoF|MR$0Jr鵆/}M6"0 @7Z6R E&vXƽļ@0qIؤFjB$ tLi|Ћо>[r+kuNl6?B;a.SwT,+ZvS훒+uWX7.naI7XFv0 W# k*vhjB4 -\"O.vBGRaTY'wЮi""/9DwKd5 y$(UMCįW/?,K۝qj&"ՃpgLR#LnZNub ma9 BR ]ڱ.>Zp-}֍K6t^~೘mA;^ 1E|Try췎TLr^ct<t3ygUJ~`fs#1G8hX!j9N5,N<< KI=ԇ[H.` Mq; Nvi=GC1ܫ'/>څ/Y`2ɓc;'rA+-$[;֡j-Ng>[fOv_h~-R5. V$>##$~P$}zQTb]K:U^ەU7$DGe$z1\0w׊4S6٫pUU S@Axư7y y2粼6T$9f2I YRv7oNp^Vzl.f}VF-2.;()cDۗ?p]k4?&z"Zq%"Ṷ̈̌v!'EArZm"6~9h]Hzs9f;vLqKفX J)4 UkΒ~{rG,9k`HkQj Bpc|؅M3 1AQ\gRˢ"JxB (Y맊0)FZm_i 66q1%=.WVw,)72nmW'ծ$_,oe_N ,%$1+S(vfz~G£v\{i8+䢯!:p|O֬DE~'2o|?b}Biy&k&)>e_Lb5J,&C/N~P+F/J#2}] >Ǚ1b o3eiz~qw!p-xNZgyD@} a/U잚3 ~2#:u;eȪW[iY*$W NZ'Iqiz8(FQkKOmҕ.yxsD5 *)='q0IP*M# k/RUSLܪl%|_J=Lܨ-$/.+Ypv4tD ̤ASRvBfuZTpt੷8[q̝j*#eݬ9 "J^yau"`<0T,ocqizśg;&j%ȒXw3}nd|yE+"P9[EH[I)8j}]UyqZ0=ϩ.* 8WL!uKhIxK6eC+$!h R\X]vI]57O-f'XzZV˥$1u Pԝ۠JßuE!;+ڇN7{ݽBDM(UGJ$ӒNBk@ q; ^$DlDJںIٱg e.qx Y%U38Xu&\w' Rإ"=Ƀ sbK q/f.4c]2i3_ecun=jli~pìKWdbDk"CAd`eVpŢ$8feK+0~m ~| 2Н/Sh+lc`}5EM cHn_.Kdy.11U2◩W\;~@,$FF(b˨n6&U™qkP+@ j\%Z;z-c$bmFj (Wb w_R~ǧ,|[ @aLo1P%63 "ZS myrTn-N'dS[޻z߮˓ ] qeɀ‡ #C|uCB¤6kx3`C>L1IyĀ[6/uXI<[a8 ]@ƼϤgZhYZ4 #A 0aڜS+DwiHrםBg ^$=@j m8b#TRAWcZ)~іڈlSkr+s*^WF` ;>):mEi)ĝ,2?0ShŬB nG.y`RV#c1{ @= C@J.FTws0j-Z g&unA}f%ȎTy[e DRr}7_cr\B{&͝x@tV o ?MCYʮDN"F 9T6ƞSn96{\MjHV!ݗ )"2lU lQB?F3eN9~qۃomZg0co+C IWU&d%iSi\\ Ŷ(wO]ffHL0ab)\ HJ({_"NR+|g{%fVmNF$œJVś(Tc "'(65!<0gD?ʥlugH/(dpE!xl7ƞNyi1q΂SV[jMg5e)DcI.wFV¡)"qyڥIeC]X[&:Vה\2*(`L xg8bLW[nىz ю %J MfW~Z,-x ҳ,|/J̖;aN+s4#" ̂ݹsO>^=vd~g^*ueA,0`ETg"rKSi*jjcDk b(mRq$`ìnx~ \>_?v{5RL~ӧ o0{hy,^i51PcѕRU}ktKhۅ284*S$Ȭ-JkiNWȽlr E%PI h/ĸ8KU\ +_>LPt !h0YC\RI{\tuw3!K"P%[QH uP#J L-4V2wĵ`XZ|PVX)\僟ՃEkWD2jg+=ˠ75b7'k&Ǝ TB\aE/Đ8NuXkeNKC̫7~Fx&i`[ B/t]QaU\0@4{[))1ӯ#,lh l7pDO= !F,|DŽ`A|䳬mx0i9yP$=N֫tWTdxXB5u(_n€a%IJE8=wjk!"@9i#a&ƞ ?ZQG:!lqlS8N#\+H%/#ZTtyl`NU'0mLv$.N\qB !Q;8 /`1m_>NFO󍽪Լ'.5]o-< 'v "?KsP-'N ƍ;9_^69>Q[ \!<閚 a7rpkz$5d) <(VSmn7}Z>hjLppJ|kQ&A )o_ mN- eo -]^ jb̂ o&ASAg3hm~׈xl$xQbb!} NU HSnpxq?__F5][3mED~gXU0ymvmrEa n G dzё'ѣ螓RLkP$q)4: -ZyUu17i1"Zk*UEm6)IR.6nWϤXzg/>\:ż57şuDG3zRAuaD X@u1-5N4Ǧ]Tv^@qɖoaEGK<-zVk:|"ϵJ}f'D#B`j$ܬVp>L9%3pd=8z9 Xe0;@v4 Bk OjBM~Y l-uǼ;kS[oyᳩફܮc Zpxm ]Er <-CIgg܀bWػx9m)B+,#6B7y*a\fx}2-n)+U̻NhyutJАy$ Yz2Ot&V*ԾStrO '>S\^n`ӷ@_BKcN>[@ʢ VCeMkIi?1ˏ!6^=^ wdu0ZhK~KHq [ڒ9ȇà le넓w:L\OLvZg(qt3<o&>8ȓG8qBݶܑ9v$X@O+;?7gגi1di,N9]_4JSkȏXO:a?ɜC|,( QT7TBKtaBåⵜw+=kR߿ؓz(S>GXQ ^Γ#YgzܨZzƙ3}lg'BDעf7_/XF,OrNP##Qv#l-$ϝ9Mr|#7VmJjVçїS!eb/T6#!nHE-_tVO4AS/_à.L?D@|׈:'ʓon9"-ޑ&I&GShgt}&SB (qO.Gma(Vgj,DhT١ZɐF9kD--/{VҕsV/./% Ry]f9a}oS.| #A16tĂ<KYŢ{aR1YGq,FA;/~D0}1eڪ vrsMU+`kV~+ {(,ED?o/d4*5jO&A4.tlD$: l6'N w7' < v~@dx5.u%v1a|buNBBtk=;ˮ%NˈK R}ڠ~.|7kH6A{㲷M{w?{o#Ldz4ɸ%Q7K{]4=w.)K8tA!j#1s](P @ӣ~DUO[mMzh=w0BX=i&.os^nQhx;詻 @.K̲gd"ZẠY^~Rˬ ;/ѭ&Ӊl^ԧW^eGWFo}僖hL_WGᅝOa?3KaecbŚd+4xו@=J/kNc Ti~j^/PEN)@n=b=Tl$><睆Vս+!IzҋIs a۽jMX=]!lȧw:= {z a#n؟ܡn7FJi) .+)Ƶu!I|gj1MlЮd9-d;yvKp!Ѭ,+BjG$y& ѫ$ X}$ӷ)7/cEpuD ;\ kJA&[q'06RU]FrYueb@G #2X8q !DcJ㒡Qp<7oj5t & g2x׵X&+"8lYPv윴 ܪNR6س셚\H*`K1ո,zO9/]/#d^x4?c=Es.NF+ԂEVoo Q,^V.Up$]+{ lqO}*&'4ēyZ +:ͦz3Lq@ 0#=J!,QT ytZ+@ٳ M/*H-Tݮ V|qE/i.u'wrܨXcU0SGj?zĜ};ZkMz.Wq{ȫ:x_бGj I7 :Dk۲QMUZR4ab/N6 nٚ@ 2X~kO36Qdt]WdVtMk sbBz*b ek7U&/#9S:Uүb8d'nb?_գjՕQ;0LSD;uR?-ekXM[N&o͂vr!W)¼Msn7Z?Ũ f2?JŦn nJiQ.`fF:+Շ˼`tK5TS7/Gf}(wW 羕s7P 0$1wYry =eJںiVNB}Q`&[IR<XE,H#jÆ#C>o  Vc:*guw=J% 3gΊvs)B rJVE>Kۄ-RTYֶY }gl.@ɌI:>J$_sz wq-d/|ך_qp*ްD92*1 Oo8n%aƘK)5w[^y88IxL3=#ʓ-Q"Z)b%*`hX}n-e21;||Pi&}rhZR6N3P@CK*{<7}>rU˽lir7`+VNo+ m2'u yVjs!^mbL9!XK.m x<& ^jU CBǦƀF==-<]T]_K_!x9ueβ#D:"}Nas{ a&9 MְC6q9>Kp~fqbuVמ tOkt}&SE5Քe[2G hKKVy-)+:4%z|@Vn W?]TYsN$+­O#bb8a10۶M%atW| cK{ z9#Z8gL)u1īC  B 4A.Dy^ׯ[Ę;r ї( _ hN$O?/M դmCIghe}sl1 J:B:c- [|+:#+qK6QUxP}KKu6,m;^]dH&5.Q‹Q+߳HOj|2IU9kNiS$(> eWϡG/Hlak= 'Wrf"@=eol֟P 7PR$3VtLݕ=/+xUļ7y jÃ@TI߯-=)J^PҤSx" +"\v>J6)'\:n|d2wJɕ5M-?M e%NUx[wÿDWn%c4e&xD2@\yn87_t%|HYS[{c.jӞf9J* j/'ސ$R'f{!8v> '8<hsd&ar,4d ^}u_Jn|*Eo(75cNMk};tpA&9Ž1oDA";:?ъ82Eýt(E;5ܵl42EX3\vbsm-ql@È`չx=FF/ձK %LaN;Oqg!qq.fPCz2A&'=>;nSЈCap;ڜJz6WVgRF7iF"Arfiن~^mbN.ҵ"yH~ਃ0GG"ݻ?6gi, We1F8$&Ikvi<H9?F@$!VЃ\)uF×bP|0z \űx\kBӈI%COg+ ЙO *ir*"q;cJz: @FtBj[9eEN8b? L-0!Pɥಧ86q  UV|^3UZNEtӽ}NUa QFvj藊\r¢j>6d!HN[j X~UvK !ھ Ws)ìnOBt}.~ ;+e ]s&눸޼G|:uaQ\Hj, 5@@qQ6kk,#j*w qF pvo_zdrY4+ҨOE#u]Dzŋ+ po&Z۩?N)+O'͝+=!_%݂Zp˽l?hM)`-p :׬H2!m_-Z;\*!rHY{'V9eoѾ`J4ʮ=e8zA|P@[ AJe`M܀\JHN: QA]wUC ̄.&h..J"E6}Uj._H6usȳ_ʻVܒpRcm*8F4|V )3x9}:7]ڇAN;n*R0PjHg#|T@0.I *\6c7YbQu~:X5IRs[>m*wJng|hl,8{.#{ĩz6s&S#E; pKwJ ;`Z$/  Geͬ4 !$71f{ϤV*G'|W|6< H4FɼDN>H5~? t)8  j{M=3ٍ|jƃ2KeD}.𮡰PP9>ww[4D5gdΤ)!& :8e9\w$z62zC[E{ /qGjLkDh86VљH6 J) gMm {xwƀKm0^Q3* sM NH;;Qg $󳫨YBݠ@P48`ۼz `-_kxE +L'#ʢ,Ys*B#MW%mD)bB$2teeg7< ~7:%pIJm@QEi^Z%:Pf8 xNFjÒ82p(ϔ+{re{w؇?x?Jݪej6"]Jda"/] . p'A2¼d*4 k[tP{LК]= _-I YRdcN|9z_d`u`'W+8: X<5~ a=Vk>SOF̣a Ѕ"ݮXO}Oab◆E$gSOd%kpKV3Y!>=F,PY9wgASY/B\'> խ..bKys>"73u1ZTx 3>fy.F9O#f8յ1*Mx{C6c޹bZ| 1s2iGupa4*UNlŁwWGHR{KYB=iUfGGI (H7nmq4BN8b5COH V4 +xH!١H39{eݕSTړDF&׿ A{>|Aè)$+W,+\W99tXH'`b.$ŷ|w c_2lL݊b2J{QjT*OXx@گmC[_TwKaS>j25%3aBTi:ʊI GV?%*|MfT?KԷƅӔ~tOeiq& &@E$~=`7 `F2(fV Hx!ѡͽ{t5=,vz!{+2dA\}LxOs{9"W3mj+JA~Њ`9]ošxCaB!n6t% I mTJnFwh]F[w)@\=GC8oNZ>vө,M ȓWE, f)KVZh"tðn:t,~Hh(AoO,~WiS)ta5IJ$s81҄+ K =i1vR@G6ۻ!f}vsFimmk{~鉩v{2 iܑoH&U=HpD=A G il:J);p-G4"'|>J羒_=¶^,o\*y4EJ Bu>r,= &^.$_i^Yl,éN7-qhB[S1GkjSCN9U*#J('DVQMyvp"ctSȼ $Z~C>ۉS&uP6>?!a}:n9*(,0Ow>= )ɥ,^%nxhv|r^fX:雸6?ORݏ-<:4‰G71Go  P `Xpe!TPWjНݽiTM N( F!`Cc2aƃsmKT/Uq`?n/l*(,}1tnn5+mzXc Pxnzͫ"h*PB>@]0 O6vuC|kzz>!GI?NwH'ܱ+ jz*Y!n;#_NqΠq-Tl! l)-.XS-~JZ2p)VE d,O$RlQs :$!h߹xv1"hHW7-c*SbYc^). \ ]g '$O g &||jbHYUDTΆ`oum,ۇP6q*50ԑ&y#xw"}_udȕ~2Ak][Fn5HdԻm =3h(ֺYE-wI2,AXܯ:h,qw7BgE~OJR}U۹f-л(B<@.I!yhG>7r&uFdGϣ.EFgS 4&ȳ~w\rUz"o 18^=2BᯡM1u@72y?,bFc5cP52o$y qגƴg-A=w0G;7 x*5 ``pP"ze5a`N.vPTLFZoͫw͜?fLSLl-;""|n䵜U{ Kyũͧ)tRFѯ%OfR :CVbT٩ =Uq3.y(d$/M陴㊒2T}*ԓ#ϕ&~ eʊ_Q==]ʖ(',@۰tNY?5Vc9e) H)`ÉC40-821 ۨ굷t|WsΕbnOۅ;7f툟dE#XHJ-D'/{ye{|>FAa#_K^(`HU LG |c5!v6cCB="."2T@8( CWQߵ% Cc K!'(я>Ef ɘg,CRf$"YG/~oYu:&D䍧}~mcC)|18`Hs{WtYlYCy8ejo5OyFAT6!]aպiȾHu>S޻oXy';Xwh_&ԛ >6iƚKmoW(L,8Fe5Nb27AS,9) 4pq]ABCtYw&^“:Ru][\. #@a)ej~f~cqHz XoQ$՜a܅:*2*-hPóE},k{{ aVy'1R{Qk)he "*[2k=*U[0y`ֆ-|Ъ$J=C\sܝ`Uk[VLf\ŒiF~'d{NL%"t8/ỨPn}?~LPqLkNC |T 6->?O\jU!۪u%.FfXb\;l`"qֻ)[}IHj7W,@r5Zᇮ<+".Dh AO yŪĪ.,Ӭ6ys j6'q߱xEIߌrΪӪ8N9J!+O$m|RX[A.ld& ]f4:HPRQ򹎐\CsiqqtlCkl'XqX^ |%:Wx5*ÿ<.䟉@Iܖٸ D/4Lx2P\'YՈx"ut6fxBB9Cۢdt"1d£* 6Ͼ۳ʄ|[Pa`/xd;j>9ˠ Lc>=Wb'`Hlw93'ӚWG9fzx<rԤ; 1Q*E?ȿp]$nSDsўC8ycK2mrw[9S%3j pV/P8#u4Ȅ}H@Ё W/^|+qZ4fOhغ|S> $ר^ N,WW$mdh(t䊍]Mkà%Q&Q}bd`^@z 0˱#ρ^c('0͢ʃW췫B 83vN5rAˤ=A:Or$:0;OlJN?Tv[Zy¼HrT04?0S)ůO`ii*, z>t`_7Ro*D(12[IY0:>Y%x"&Pʛ+l4Y ZޱЦU_k:?V5<Ќ;*WO % D:[v=!\O.{݊iW{2@ >u WBOV? 8w;h-% bACe6;.Q&FJ9l_Srbpºɾ*4=$ EpHK(C~3[MN~ "q$Exo+.RNs '?s _*zMLPt4d@]J}K&Y!,E)+n3ф#zi3묢-u)Ĝu*-`0k>E\ Ixgz/*+;j5yed _pҖFvوWiPKD4KƠ/T꟣5^`Dp9JHT8S'o+v#y9Pwi+b[C*_9<_POۑDGհrٕ'W qL25X[9X1yGnq~#w-YWCX3WgD$ =yՒ<׻\ORv>7q* @OỦ?oBdM$ܱi, }v/IKu#T<ZBէ{DaBDtG =9|-`Af:T dw[ʕ0-;H-GJW``gG(t,P8Blxǧ9OiAOE=<ކc>uWMnR-ӳĝuj%UN{2$>U3ՇCR{scACg%Ru@dyrB~ j_aU4oN6Qmhwevޘ Cg &҅gi#?&FH\|ЧݰC(=/W\3֒|럊Ѻʬ"#Vxm0: LJzo )Dnr8GeNicx5a*<$G ?Ɓ6N$;n'd2&0fU~lwv!0 hT sOSٽ>\S_N/C$+ߣ-:GkReG4HP)_*QDP~zt?)OϚPudvjK# nJ(S[Lyה_Fw,9# ½NwHdJy@: cY $G+Wb1&~r7ᵧLbU?WlGomêaIhS$ݑ{RxRbۿɈ;N}3'bTR~4-<=ô\-G5ȊTDoGOgޚ/JpMmVe+G"] sڜ]A=+ 1Q{0JR- Vy3P: FdrwQN8|ߙdSDB̑t ; Ur9- A8e }$C~BҐU|G$Aa~xbMgr%ånE2_O,y{8ז-*_zdVֺ$U60Xn[`ց8mJno`A|I߱\Xx.!qȴKQ/-nJ\"]L n/ʭ2O-;:'>a4>\HEf>UƜ_ se]iz'OFtQ@'G,1qmTP:4RDP#1k%5Z^[f`e;HrS8]iX#2O K70g%:'L~olD߆φqbB}Cypp"";Qqh{QR7W=y|A_#<'jWSE4mqon݌|8! MX{}7Q24fabi[Mdv}Gy|NH -h}1 4'2j!/ο(~Hlۚ%^<:/X;.0 #M"3GwR:Œɰ KhM ~]~1ҬSv?hkmOͭxY,{#79`f;3sS[#!F ׊(u~Ȍn̽zQfP9/*Zg";D$HOtBҋؽ#P$9MyyJxxuݴ14M L޵2{&H/H8G> g!گu*sσyE*GCxRI$0+XYo[flؠy6"qL˳{̗BD"{k*gWCM &Y >u&&|0t_G#FK--c"z~τFy!\' {qbJHbiׁϣ+N} l)2i)l3t&A(߬2073U+ !wCe$"e,!TtcJmwF6E\cIfA6M4YG(ph !=b圀y C%pdI4+7nchvCͯud:Wl#AVO)&!܎Npk" K|0fǚ(c39Ո}X͒!f!@`܅g 6`WT7ƙN nJ<3|Wl C7F`r6&Io;D`KN@=&hMK]t=?v5(:ʹ^6\+ $~1meo)Y<&7)zsle[NyuVK 4|vWj\ ,xME'O%ׂ )^1>S2͆LU8ݏ Db/6k7 |G͠X.R/n<;J'ȡE>&8+4(bxsއvS' XÉʙ`񭵤q`}$c.V  R糉xΜ.Vs.s½Kj*)$Ʈw r'=(*_PEkD#?hVcI^*sQ<6_oW6|NM #DP#4& >H{6s,o17FN֊\?54_h]vЬ=[f Qp}"KdKy^jS4y>šoGk˂ A Eedv7$Y̶'/Ʃi9UJ]r>o)# o\ޛisؽeS1uN"0 HqC+'ק?$ŗX.28r^cR8o' ܎ Meͽ;D]TB?yt(+\'9-3?ZI-?w#7 e?)Oj:+~Ѕy?AtL֧fˉP;B $rZJrg[7`%B?fh=`LE>kåa6y*Zḥ3"K+jb3>^/cR磞>} ,/Sz_$Mab/ PtV  ÿUV de>HDQi}-:|щ^XѥF5@ro !y`ҩR[/#Y8Lblq@%T}n~W3!rvz  &vYZLUm{c qI1mY-N`7cTN7cRDKs]./$_=/U`=NY`Erq7H0G`Ƞ㏆J Slf٘/h-~u7kߗBw<.&d%xcBN*5m(W6'0۟LJ%S0Q+m1wK%Btv9|qOj ױ~)?7jpVq^&לjezB'<澄U@tzlAށePj~.Ψ)_9B%wq_uvl‚[p-@-v#x_uBkZ27Lx_Yͳq5^ f j3H@;gw!Iƺc[<748`)EwQ.7ϲz$$^qez(ӭ]sC>.h?%76ˤ[?2ru{G*#S\}pnrs=@ؑh<n/:^ UUr6 Y=ğv;y\/@$̲Qz$oLaa+hM#dGImY)>_Vs}k]> V}N^c_41Ȱ} LJ?`ϑW%*c#<,s.wyDP*yv4ć٤%iuzZT4QfєpU 2 >Ct38X|ze㲪TRt!X#Qd6:7e[dZ yf*W.> X'j(wK2}8OJD՜GBwCo] oҧe9 H| 9 L=8oTj'?V^v~zȥ憅&w cE_]LEAHy܆sTL8ꢓ|ɂ#e郿38j/?&xѭg*̋H; Ug{4H>0:>X($F!:{5\N '%/vVaȡcxN 2C5oh\!kϨ~Pk]S+'MuʏydWùԢ lp[oB*l,l€vJ DJmKxl>5 GKl1n?g&Fx4B(a $)m"VE0RM˶v5ۮn27[II9 ^"2M#&4km! Jc1YȳMQS\ADɎ5f7UB v@ :Y=pu V[Z έgl{>XtVsf ZjD@VݗE^&oius&Ip(KWOiNVPX;@-])Zj,Ϣ\NUwDGW1ps 3'[F{hT)bp048[`W|_Sp PZmS?wv,ߟ*$=lf>!|~?$Xbáه(;8$$0ǦN?lݘg#''W^}$តpOWevܯ*I]jI)XUs>F+u2(8hJg.^Vc~5C9KRGisCM q g!ݴwEwNk^ zn<(,UV_nz#i\֌JH [To} 7C:p}w%op!_k>181;8phCs*eBw8NM<.NW'߲sg=des.2oVC?m0%y`*t`cWblE{ǷxKihR@N'g"'i[W{0?VaJzs)- OA8?npߚ's>_3O8t?M>\kZq6R *Ӯ܍+@a:ib'K%㽅5m3ًPʑ~\ 3ťM[y0-jWUq&z&rhbH{P)S$ܽԠNdOmG[Ys4K>u0$8  )ϗ E_da0f_w%׼g[]9t"J<ѳMkZ x:Q HGh$F )9u Y>Te0q{W ()}H*auC1@s0ʪ聠{[jJlJ#g(d9A0i#Mp6a3;Oxb'^W}AyoϺ[.!ñ>Xˏ};:ͼE+nvfawop :ܪDCz+F ٗb El$ȱMвNr:!{)AL It2!(dRQl(T< I}^ABu唙 / (]Aw.?7q9biΜߤI{8#5tP > TކKD 1 (tWD=mf#k_"<(Drm{C"NPF7ƙ֨* MO{ߜ8 { 0g|};d8y_}rTȂHrvzb85[]~qEotV 7 t^ opѧ,[dyDO]}/$-ToBgR<-KzC(DD@(JWIPʙ'OxʓN",w17}q/dsNO=%4KaJGD5T p0BZCh#%<ݙVHUns2hͯ`yY.Ai'|Dp$>4HODB ɚ[9p>s!dO\3h PpjIكr@ uX-T? |-V&p=66"-/v݆|o͵TD/P(JN|ߝr|W%aS)=tk^,Vmlj+<0"RΚ =H@aGI" oR o;k(}sz6ump܃wWAE &ZGWRzD_v_YTurk+ɒ:%#-^ʝN[zK Ϸ#x+KP,c;4 {>ER`8O㊹$dmu)Ƚ>C#Ԑp[>.!a5RP6sa~ hcŸb.K6+:EqGT1aVC֏Egqy_ ?8r2xQх3I[yطr!~fȿEpn _ jo{, M;vr^0VbKElNK hї6S@zp8>Q8m" *ZM Ex9%C߲ȧps\\vneÀNGdhϪg>9OᛕK9Ē7O8Cy?0KFzѼͳKA&ro4 5'UЛEN),c0#ZE>o_ 9cv n[Ba;Ic&nx3=eT;xVEHU&;Mk_2= [o*L'?嬁$CA&r5Bp@li* 1P++-: CΔ_ϔ.VJ 1 fpt+_qyKa~NL)8m"g0j*epzҨ6؈Tʘe<^u BE&wT\|Q^߯-(, AM2mllCLBt*r++m94uXSFhG6 bE;!qF^  >鉧l8œz8 ^bVMd_;:~o ӥz6 )6ZchňDFyQq&+4 o,5O^H) SaGEctK4,j(_EHRReiRq۞/~p-s;TC5{C_yy.tVp`e OW"̓o?P܋#+; .d.*f*MyХtg>(_6a1RQ.b+wՄ/Cu3ѣVl0>Q`_w*^NH~+cAgLotL: wǯKF(~޻X41sB: j.Zw/DCu TlLVW19u騖&7yي4兝y~ϤuNڴUJDq|6x#ưxmi| v74a!L/_޶tNX:FM6Sζ !d꠨l+"`ENKXP~Γ:+sSfK3<}n2_ݍ/fT/Ղl]Y 9ˆ{Mk$gg4}0=x}}!G —w,vLF 6@znL.Hp 6òW&azk o`6>*ϕ9Ƈe H09*ld҂Ebt9m(*ZPw^$0e􍼞PFDwuqX=m8sBNT0a1&.!}]X щ,sIcqN-8?6"M&̥ C9x'7I:_>լ!$6ntT51ێ3{<vs$P4qs {1zHh[%Φvrhͦ1K^W5|咪E4`ۓN-2MgTD7K.t:nP>mV9\+XjōD/i5bduSy[QM:ng((v] aSF'P$׈Rz T k, 6UrϮiIsR:|x!m1;H-ry , O*ŴEFWfɈJq@<\\xb~$}d"'H޻0X#imiR|:pLPri|99Vu@Qvm ^z۳3X A/S8l‹[sMVPPf.;wš)TWc5 AV5g]=j1"ksj 3K9l\tow" EnO㉫޵&dy|͞E.oA4U5s;񽟠% J\8_W9RX26, ~&e@!GAYWl'c <>8+rxReP{UYRӪ7.+'gрWe{|q~wmld~?YW.EkBbg%$@wk.*{2m4nƳ`~1W %?Q:>O9 @CLRHFWE-HݘUmFK;=lJ Yi_CsO; LJnFQBCe=G0$% Npj5a4.әZL_c t(￀wV([,R9CEKʖ!f'Ш>PmA.{׊ w1;f`7BOQZ9"oG)+"uA}Wi^/n N2;iq~3I٘I3DT x\+j'A'+=D^SO_E?xhx9.g$6if}$aB햃sjqH)܅8@1)8'50$=xڥE˶W[ccY`োO\ /pYɷɈC.Xy==Y}(R5aa=oLr) ӈ6n݈–<^]! 1Tg7]Z dŨ'~+jacjb0 :"'j6T}e⹅O;p"~Ȧ1@+;ܩ`GvF~M0U,~+>p#;!++N[ <2N λs#{E펶xyƠ5# K`ɞyɣ a*P80~FOSLghqtB&q8TBubW[}ߖs0P[f飋nxTde\(;>zv>}&8gkD0Aּ#2*L8G)STQ<2?Wb07"(4= 4K9[D-/ 87ڕw!^ ?,qIKxt{6zscKpv/ 'cJR:l l)FߜԴk͚>UւV!O`_22~B*z%^tɛiGB]CQGىtFy4|Pj Dd WQԢ:U!xV0ShDA|cJZщ^Q\(O+w;vEKeU:pƸ $vOE-@W|Cݼ `< +5jhE_ Я42[&mgNPUmq1*,ƢA.!!@w4}M,Z5t-Ll%yqZ,xے# 6ձMa_jYe;o #dqm|گu#6IX}z9>P ^^*G&;KyM2(P9GO,"~aqyͦ;#2G] 2qthdj<&YBSw}:Z%>pSSR4ʵZȶ2G> %ƋjLK׺h`$1̴5><$Z@-Pn Œ ,tz?8kFJb?^9گ R2YkUho=U.?y]$L^=M>k^]Tp)VЁLs>QcŹ.թ{/&P1@L~Bΐ+E tUx]藀<.Ft'K z{ CvTImWdҫ2Sh"YFpټB,I5MCーm,e.~?˙,_#l.U0Z(~(2=͢~Cxi6~#+Rw:vHeѺR)3uVJL\Ci yEL[ N[Db[cN?|q\;gI@CYIvjʵ#9R+{ awK%V x0/0Χ3UC'~Ud&z1\lpi@|o)IFhm5݈%ɩܜ1|R :܇wlVsn1MP't`WHooQE9fT;l3'z~6$Ԙwufm[V{WdBggԍox-^@:W{1n[OwveZ_,lZ㫜h4$!(Jm}i⶜'wc5k6!.[$35q%*DR23|YSXР9ɾ7[C6+UְĽV#@¯y@d{7 |ObmCFR=~#KK,SH-NU:Oa8q&M)Ph2/Vlcv?V^W^}m}>,>2{E8wj+$φu*0|TsϩEwzSj[vBTjRDuFݗgJˁp#z)oWWU<y(D7JʖBrdKIe@e^ @M?xb/Bίk2oZi܉iAH/ j6N d Եr[dK K?s@gq \.x +JG,ӺwiK:<]7ʁi{$i %j>\t(ᚌVkˉD) F*$Z[~U;=$:d>7Yי홙'[4A_2W8 F."w 9qg±t]=L\,Й''p mP:vlY܌}84A*JRޯߐUPM6KrO Ռ!"@, W)M߶zgOxrǤgx>8ɉ/N9i>huym n峝:l11&r553Ӭʷ8!xCCg a%ebK(&+s&}I>Œ ۸Dž?3i,_ Ŗ 9"ҳr\ɍ/R;ğP\VIϚr}E&: t9b'W6SR7j.Z9Kh85OGv~l\pWJ%WԮ [3zj Zߒvjœ'lyc rktkmtLgeS>"oǪ{գ3]%-ykHJZJS*ӗ]TBvH!<>Q??F5H&A&\SwLk$jZ$.ؚ8"'X-b\:"RGIoc9闍bClUk`EJR`xȚ9m&, %Mdn*]׎k+Vz*HP)cuC[ UJR~s+* zg'BL: ߟף9x%ߞ)F'z-O9EW[>KuA냙)^0?tq!wP0' @q+4uu~o sn=ξcy Ǚ`n&Hx3p^v.Yӌ!$#11kr-I:?bC%tARCZùtqց)'vIj_KyRy$I دvȶQ QܔbMMW `̰J {PTlR }ISo'L]W:]_TVKevpD?fɫp--"Y)4[6>~2f2B$8w(at%tF s k9V1wjm$iCLPa+F)I4u㜅-n+Ew -hG)ڝQ.YlYEۚ5(o+Xp IV}4ͿZ@LmJtSSBC/IHWD9+l(? +DUE 1滍T &JY yzT޻Pgbr|ppoL&D͔B OcqQ=LDtH= :smom!Y^iOj=cSfXu( B[r]%K/`Vc 8_)ೲ*vqk)0:C/WY`kX+7ȅ>b{]&a(ܙEuoh!w£E`X|[nA${ePBFBVBݭn`T?y.A`}vk'/nii;vn>@A{CT亝$˗2kռ^sKִ_O Q(@VtVB;,'{_2j>=͌9>-UTƥK[V߲7C^;ɍ*Nx_pNA jbJ6u NBsBh&c•Jᑽf(u^E,4(;S%fNڹDFT.h:{GĻ_zPPEkP𤱓u+ْ*]イfyǨI??d}9dmAJ|RN.6IࡼEI7^΃4,!xiٸ hG&}-ށߗI#*Տlܦq+U"ɛ!ʀ_NޛvC?5e{}mr,.,U!HFtG|Whfo -׬1>tJ5+^ Y`ƹ>94{v'4ltKKر n@ÿ~c+)ƢY\*14[yXwhTq9{FNvn POR=8/:݅xL mtSv[0-X]HBVfۗX1.#XatV&xbEF95f(Oߦls {xf/R!bcܶ О5Te{ӵGQGKHfś$O|jUe8>] %ạ%q4U戧 xal<3 ªQ H.nӺ[L $en]$?=!F @Wv#4|X-^w{Y$@))j%m*=* @Zve%n0ς8.ě2#WrB7[ o%h:sP7gܿ҄CBiCwTrWeu|;1WuL|XZ{j5B(zfoaÖ;XQOD$mƮ9A^B߳EK&$hM²oedN-ŝv0ؼx؜n(;鷃X+ItopR׸Ypk-үS͙SFG>a$ ";3Gwl@ޅgiD 4<OL\/o&[ ,ElP?x"&\I k9V3ȴ)rr&;k5M ԟ ?yV`` n#ndqu9'nyxm@If䳺pYV?o&wʳ"]9S'/c4X(U /p-a H`JD?sYݫruaPu$2_  Yd.@{O=$H+WɓD."`2; Z<5K]<'ie0 JNZ2>G27e`' 8+eoR9MĖk)/mtn}w5|:?Shc߻Oˏ|;;^ Ch̨fo^㧇d =[g`R; sxՅSV+73&ʀ&lOi'/N1p: ޮ !.HrD^qfAzmg= V-k3kql6BWh&nsjصօLrɵ͆@)1ǒo}{.pHf1X n0lيۖe_xd̰ {XQ5_jZSX'D#–(Ju.[ƴְO2q1i?o"[hcȱ䙾.|F`Cvkx.)1Fp r@`[´wLYtTb<(C4lpE(ZxP+'3mvf~elQ(zE>'E |]#J0li_RmRa~hn !de,Y&m9&M껣u`>t?L(< i>\3H>n61)C xRvgԼlمcDQ1)]D`ۜл}PRɝ0-4TR$YTXHM|Xzj")9.5ovA=pI*1YԠҐ;^IXXًcLX؆Ifx2l]eL.9u 6IAގTM{.781Hɍ~J G@QU@\ii>)uY*\I~lABjE" aYN53ŕ{LSq;|"#4IɗUǷ>GQi и oWzHP~[#czf)\fw&tcM"ט8 ?M\ _7nWs@pvۛ(om`mǢXn fndar-Ps=qUR*vK]7*P8%q߸G{z?#{3rUI}B};,+s W1a(*G ylWYԥ8F''ϔ/SG;Y$j e >z;c'7YL8K_RD dM0FGQnk`% k{KG3@Y68~9-N!,;DSp.C1͘S=4#B=mw3m$1S.T|Jhے! 0Úq.32ڬB"zuEPxh+USyHS-%?)/fLF9 g'P3}!\^7lȧblR7ߞ=P"L2qװ¡I480'ηѽ M`3]|S΄ڮ1z{$҂ ,!xZMCDDӴTQy掙RF7K@25k/7m %2o9+=Bpo4†" 06Xz$rXb*$N, N1Z X^J&G !˾ 9JXLztflH йɳ)r{Bu,Ӝ+]e,jEQ'}krK91J*h:z0X"azJjtݜ!BFJ+^r+JIՙuу<%C҈I=应@3&euSC+7! V SFgq-؜{/040ߏR_"g[ o̢dZU*XԕEs9]n(9GN{QmKYi㱣 HcL ៎=%4ԉr~f2~X;%T:y`oè݋WT GY^ ZG0^ςϳ[bOfu8ԅ"vh_7iڶp1h܍F)z*o7NY6n:,LŒ5 *ME`EdUS{D{pI+ABaTwe5H1"=s>?oi_)k ECۮ: R&MxJ ErP~gdЉy^qnjM2E0DnġIQG(??ն>ij0kncPT{2'R1ENu~ g=(a0@TU@}Ԓ0⬐LNQK7G@j>,dZFYc pY?< -wk5F͌)- 0?8uGm_!$?)~i^UZA<S%b4Z'hͲ8>^OƄZح,L U?~zT+<;n<=H\찓7jJ6:t^ޥl%g@'`2čmр ,KOX( t7+NbPShKu,VXE269bM~ SȐ:ݱDa e䖌gn&#֨Ĝ!y%/hL5 yo9oTʜh-pTxE +Âŋ:-_nybfwXKp96.X)&T\mj0$o>X3s貭]")l5Sxh={b߱{76f-^4D0LZ͛}dSHNIL)SD{n`zJj|8#sjz}rOY4Hf1o.?PXTda|.iD%D4d/BA5*v| E#$JlP/ex6XTil9"sfZeIaIcW-8 vcD ], ,h֖^<`73ąɬPWU:|[-/PZ`Sc ٞQ7V+ˣ ÙԄXF=ŷ\ NZY#өfB=cGC-Mmkt<d\PO|Sd#nUҰINco# d`=hk/GLr3)V' 6Ҁoo†Pl(~I/<&hLHsw|S͋R __YOfB%S$NjB5(H ,N٧Ai<tmzhxwSL&Io >b(R_ vAlA6]6Q >C G+} quQnhg6KmgjXf!"}6BGlOz… b!Yƛ4@ R{>}qEm~!1;/т"!дz^ +6")l>l絿"̌/Lz3S@!loXӄɃw4B~ꦑ Z_7ɲH}tX80m@a$ETm{R/j$07xP%̅?M\X#)D }KK6m`۴1Q/&ucb(i}l+-mӚ>뫾|>u*BqTI`'ްN/=4ubZ+?OHg {Q_;99de0р *2[ /r@56GcwNX!5lJ tWFc$aX}̇eK,ƒa`}R~NeR=nC.k=ݚ( $&ݧQ5%f9 nO[ЕQbf?Ó_+FڦhdWwI1$brqDiS8רaw0vX(3 XnPi{P~1@=b.6҈wԯ\RȔŲӍIdRWHD(\ʖEq0Ma (EXt9h+|ī ֆ&tΡt> [>&PHSq I?Lm`MVr_ :5lMy֫, <'p!?g!/r/C?ȾyTct*6XKk ` ǜw }[s檛"]Ttk_ OJ>poXoNP Z2#\9oќhIf{4q4wgƁl4ـL67|u5 1/M@JؾsB9݌b h]堄y> ,0" oX sP[ gr*mu0r~S_Q 7Y)}/!=\jFVxuz3SDI,d'siD VDDtoW 3Cs=86Wѥ;y{1mex*!,yUeO:7yǝy䏒Jһ#p0^^fw  ~{~~~nؽVn9}r5,;-0 BtO;ǷU`1Ns>Ago`C6)dϦAޜ1kYD t"Ev?M)M"GU`fFc>B㗊+k|GPƯ (cvVʋ_pʄqw å2W'E;W<1M17&~8'1S7r+ǵl󢵆`&E8tk(VX%~lzҊq_CNB0 渉ÂZ" zy{ۤ.7,_U%S((@x919}T)X]fbDĐko5U،BKTO5RPMVQM}6H@TL un I|cQ4Ј { 3Ӂ*+ٕ+f׳O>U虗{H}Z4UС4 WZʮ{;M?eS: E%H꤬N%T `IUfVaBNFdV(%[5JzEcɦmC dxL2ܱp݀c#bnpRPhn/x:[, ;<bxmcyrha#B.u]YyA ĔVDӌd9v'sF,\׬! jǕcNcӪk֌yŠx\Ie=ka(dЄA,q]v~.bZDdЦ ͺsvOAJ:v/]hi@vHIԑt^\<~UnA *WZ:( pٍVD`Y}y7>K_q3X[opwѡ$\g}[M-(u.ynIrgz2`2QJj ;1*A 9B6ޣu3B# ]]2CI6R 3-܁F6λx^AwWG2\UُPzɜ="{U?)byuUD I@.B\ t)iOMQfN"ӻ ]%)rӢ "uTv Χ2)ޜ_V.&5#g )aM_U)%sOLlRQ$LQRPW8=[mDŷMpSoH)o0J'O0ϑ!pU'.Qա Gz{_⾾^V~4Zʇ]?،'<k8wIz=RHȠ>g0JӃr *mq:H_Vr X[DWזְk&nUؒ1Kh- F4d 7۽ˊ'wI[59uӝxsyHYSIR_UFУa܌ַCRikbu7̿6׷YHn-R!ʱVVvB 7և$h^SP~Ӊ> kiV=qz;?J\ )wguM\YDL}9 GjUu?[Mo(rvaEw~{= w+:qGA2wKFW^` D'0>Gi4cñ.14 XɟB?}Tq 1#n'zW"6Jqi\/ԩIx)Gn \o٪21&3hY#Hx $*\нڔ("w65턁6Ƕ>=&IZ~H#Ҿ9_7iֽb̝mGNpM׺-_oAd>/xTj}>nWDbCmaL*F%]®*gՍ0qsW[Lb3OboD%t)4ؔY6[R &WOAQ6D =;=8^9l Jy1aiۤ咅3=3m\Džu+HuSlc/_И!gLP<-"k֞/*~MȰn?c4HY:ɧ;𱛧UNJsE1zFʛlZm~7xœWr@O1oa_xˋ*G~^`D`9Z^u|Kݥ1ܑ.nT u, !)eD4Q(y0o+mljlWϋ"B@"OՕ2 &"Wm~9<"*e32[#.zQ$;.Z@b֢/ 8Gln#)`R8D4%_NPzㄩ<{5HrPϾ[Бwg?sD7J{n.gz}^X[yskmđ*a3\YtRkYc~?'=t /[%Vgԛ{vy;TYv%U1h4ծd5T޹@qNE0޼* }@"`9%vsNVXNHX`paϷw6I_ 0&٣)93+HXkWXJ-p҇J7C(D(3-20Ñ_W1V6S4 WiؓA?Yb_p5PyBf~)L.~Xa|<7tJf?c]10߳:(>&~ N`]Y\>^J%VʐK<‘nz*S-뉫Y?ď\A9b+}М04bf{ѼR#-~hy2N-?0+E[Pu7!ܸ_~<_Jw[y.E&{9mTw`~iaOƅh<\VCVnfa e2YTqhl*LE# piF4R/ "p͝{ 9GeLeS'ӡA @MQΔku~qɭMwԺ zz|heO i}׺tX#S +mG^[g#E~6S;pDyqDn4z,M{wUn,s1pKX2oh/uc0qusk_k^=>LU.ZnxVQ.U+7>d*OR^^o"\MfuT7+3R$zW4b4&ޅ/:5`%{c/vDJDy%uZx}颟)l" ^L&1nd6g(#g ב`l/:lӅ `p 3c,HP4ymeq4T 'fPtXN4q-],I \m7+?20* 9?h-Bl,NL%dSk^TgǙ[\ϐSOxcy_KEk.c#wt$NAT!k iPG "VOcy SGJD h^ܱCI6;Z rUw uʿL(nN'Uru'@/DC~8Mr$Q?E[^ҦĵC<ڴFjݐ0Dd̝Xjrl%FrÄ'*eDG-)$2'V+9.ʬ~&%O cV9a QT>R,/*W>˰ bQyZ)Ldt*Fvmeb@|+u7Ĩ"9M 80B e}{Զ#`~9+KS~"pHPfYЅx'f'5@ KWh?@NQ`}қfUg7u(1&~-@.nw~P\{."$H"mvXq;V!ܲS]h^,mZ`4F ӆݺ Pn0{N4/rWT0}*J㪏 %`-fu"kz épjk*B=z_ [5c6;5<~&_;pb+ꌒ^aQ&E$\:Ʀ5.$Ozޗ~uA|qx@fmAPi5k$ceb\8^}ddqc8LA٦o&0I33F#ot3S=Eec>mF#~@yZ3]y򡬧g~Bu"Er#/UY1HW;? D/I+p.:3! Wl]sv\;̕o_pE7U-@kCݹE'aD| x?¤9KѬ!LˬI@©|[x 4{v(\#LkxP/zZJP qP5%76sű(j5Lr^{2{N2`q7sz$lDܺr}9?[@Hyw֡#9_9C.5?2#GFj:ZQN?"˹Rltb]&~~9|ȽWe*(z&TG1\ $,'ӥ}pېD2 M=q[_knY51)Eֽ_>ט_q ~BWMN En$Fqzjcg&ٖa,5'NR}\( Cc#z"̲́Z`֘zBMFH;1P2<_v6FM (ߑP|WYluqIUb+&G7ta>9?-PT@e*6ףY>F@6B@"?hܾKt : &!̺: Sl_RеH׵uof5. ͱO)+zrFlysźT4?`eH&4rc*Rj-xm$ixne$*$*WmNлxCRO qsf#yaa>:Ė+Gf25jk15K_޵4^ Fړkocp#!r&(s“~Cįp8+R'!pDN#08["> ;_VF9CG+oC#f mخU ,+"#ƃ끬w'AWʻ3< OGDDg9~в'0o ` PvOM˃N4:l-Nms}| $ l\XQjYűiͅ<:b?(B8^Zt!l5n7A`Yamv֬(N"JsYN0:J09aAaj !_BS`x!aXPcK-ܙFY ]M* J?-fTSy\7ϤA܁PR=tb\@sU_Јjעw'֎dϏ2% ἁM)$-z7|k5{-0m ৎSw'5=AiRk"Cƴ禢5mNU.V_Eb`s⮅|bxj6B i1J ÷nE20gFZyvl >ٖ[+.O&9k;m^%݉4!|юj}M .%qM>V[x=7!(`J|pT O}$3^,8q4RH(3>&艐|Jj,uZ sAb?^bN~\ 8 nUILC;DҴZ1;U.*H_ r^ Vs/vW1esom\_c|:CoK0HV"H?wNFΤHC+/,(?+BۯOJ%E#H eF;TIF2%rɻuI[mbec~(ۋ懽Bvڶ  氕*waȯV)J E2øE i Rw@=FsEa'NXCH~gƝc@Oh TIV ,j). pH%^?DZ+t~ pDrMdE _A;1٠ԔHyWV?D7lIwDߟT;@Q=kOQZMOp>[WyLꤪJJ3Q9!vr0\N=9"jKEzXiqOg w\4&bᨶh68<7_3_R>gt3ZozJ)HaE~,[ ̸ZME> ީWeD >K!gO~ݟ0kO V׳! i7/'ɀ4n{O_I7nu}Qd^"xR [DĮ)Qغ @Yoӳ Bo`|̡2YSN#O&o0:dm krBC^`"Q+꺦l1xޝX[6n-rv4"0^9`z7,]ebLZO(ߟ@fV0?l+N ]'܁bwz/Cf?X@} xbqm6)1K+AL?䠅#e@mj3$kSDi a0;j>Yjl0#/nDQ%9U4[|< i[j\tC@ 1P>IwI=j,vܸCý$-{megG}`yFQ^ÿxr63zwlM*8CJ4.daLo0G<}.'9`!lPOw׬;V4٘~AgGt5xT7M0FTpy~ yQoRbIpO4%!r_$׽y(%6WH"]i~h+D 7bžVn.&膲P^< ?E4^INmR-Haͳg<_7iy_: U9(cd>*""pN蟀*w## Ɣx])az$wxDhK>Kl}ΡEmIoy)_~F KŎc~Dxz, 3Fb=F5Dx hOGmARiPrr~z;wg1hly M3jz?1|Il6&)qO#-3Jރ#׵= kg0<6}ƋgǴѐ7 2RDI%m܎)B2Uc+iR C@'+e{ e<[FjF?Z9:",fIv .LaPWRL>pLH!!v7S1(K^M£"ٴѳit#pkL/hZc]h?I tT-t3/x&G$6[x$Iźر{i UƜ~AHb# RV37rEƉ~4`SmtZzOA5:rhniZE 6ViAormǛ_1f2lBKMMjݫ'y?B 1띒xn_ vZoކ}A^Aw\ߐAHZ)X=Ig˳zdtDhca̪g \DSe8~&\V@95NH;\ ֪c^5JJcH{?'j􌤵GA_qRwc=X= rW(Gs?$3BYTPZ/uf8EZlxgn$%^HS@gȲe!aoL?) hb8v7ٻQ Z؃;5+|-zCPzT%vS䕠#bXl*>D3s~˪KtG vW(ܖGȴȓVZ2??Q1FdVeVRږr#!0K0@RFYŸ{K`S& GvoKh_0 oc_vh\!Z|^4ؿ cI[Įآ= _“ b^%T Wu4 Q`BfWEY5 ׯ1d/Adr1$rL 9nF]rMo@`l\A-f|uw5%W2?VoJ n1Gfhm'=Qm=S5uElPQ53z2t?c3z\%Rȿu_OS-P"C$u춊{'|kɚ v]\>6HBmLL /<+jgZYHPHOBi*L5\2X8=U/c [R1%~~̸oR d_H9C.{ZnMM=PP̭(/c~ƹe/V:51@Ss| ^Ӝ,mTJ(ij_v0Vɪ624_fȤY E!oVщ3I1Up(C̳7ɘ؍[]mưo\8h>I*%4+`LNȾ ɪޗ )ZY~\4Ŭ1:D]<Dwgu)\={:OA4_CvpT/kH!}9s T6,572yj9" KvIʝsHN#{J UnϡE,[0=@h~" BTx ^:+)w}dEFhĜHe%iv]2ih1oFkqI9|ʥ7+$к R>ZF u6qҐ 6'x*aKW1V3rѲϊ=胞 mRm⋴W/Qz]&3erz術!EeX;MA/Ńgr|?G<6#D#,ޓ&SMU)8kB.!$׭{{bAhl{ksI8rW&(vz؄`5xM>1!SE= 3滑\Vs۽ 6PI}ls hJ8Vuv8G]4 )z'岾`X}o "'Ncx'S[wE`+Ey nfG0% 3vv3HV A]]ưYmpT'GU1lWf՚L=Pz*Ee^019 `V$ Z}<("n˃t"b)ޢ(^ dcR'Qaai4ۧv0[e _фỷ´f ,?ÏPɝ y Ԯy._omvAvieHjLTב[gEh˝s5*V~+x_eA(#Yr ]Z  Y(lU5nBEO0FtגDw/Kh{(" Lk2h6" XA+co;6*BS)缅, ZvS= $[i)aF5TcJNgav:ݔ_ w_LVzG"qU5vsG0FGHbnk{d:yA=#>-(] I|)۪dXAeɆ59y?2%)$,R" Mύgx^#w\߯Zx0މjd'^.̄۰(R d>B:EOSw:6x'/1=S}X.U=.gDy;␤:ߔY}Tx^ *#,0lvH~ir a.~] 8KBm#xr*7С`o˳ܳMd,k~m)]M&3xj\|/ޓۺrA眴oɧaCAvsc"%2µ׏mu>e<БeTXup^Wj}?{5of}$~p7ÅɤrnM`nCNlhQu.8RLd+5ؚrp }Vܑh38l`*ġ;*dJfZGq3 pB_̥%le g< B bYk 3N= M;Uӳnl_S.V~sɼb[9<׎bJT_r-Nΰճ0Z[FS2o8hMN<4uITwo.h:-\5%T^Ho׿? ͇w9GcsNL'Pp)^aͪ/KG0lNh{z"Q8K-B+?[a=)Nq u}]~oP V6UrfJxDDgܳ˒ R䖕\2٪W? ⵹>*j tiЎyB e#.( #Q0t&i-Ŭe : kMB`(`c(90Mo/\< r^j(N&RKtUx_T̩&y !g]y3TRcx?,U)m=fA7)O.C9⽬!>qnlտjA6?gu\%}Ue۠>ݱl`6(x%oG͇8-L7V-!*ًݙxuL&, -/2C}'D^A{e8Syvղn\ b|ګ(Hj$pV`8 `L'S25~M,Cn* Ƙa]Vѿ/t_s"Q/nid pK`Y݊YyEz07'*0raeic-eu Y>2 =JV1i2I"vF5bo~Fw-+mCy˧Z.rsCS|ѷ> !#"B:t7Np-NF5vh@q AM䣃pY]_,Ba:9l's^eLF=Sx1Ĥz73J&0'd>* hJ*Y"*Faou3I# Ntx៳9\P{355UzPX#QvAwav٫8 D<ڷQpxړ-T~'J M8r:OEƇ#(kc3A&Iqi}[e1?l Ԙ4ՈIR1E.Y:fڇ|J'YjERBV: m;d6}oEl!Th y\@k5+ΏAxAwpW XFDO7FtB^̥Ӕ=w>xN'RP`Ƨfrtux"訰r2-u-My J7G7_6NOO'tUhC|l%o] I;Küw`'Bw8 b/GixBRQjywwTIB2eRgay ~:CaԫT摉vTNH-X⭕;G-y=zki'deX > 7  H,t:LA,8Kre& (+^dJX 'is~2`ZvnBx-D_E.o26|R Ի+VgD >E"lނxKUo< F䁮 S3<-jS>*qso֓ OUQ^-l%A&MFG-ߤ&dwB~h+A!9&aO"k5{.Q˿)jf_goTv-.GbGJ}.2;/&Zɋ @oWDΣ.zLxq ѹRI.Ig9$-jج w/| #LB5,r'J{1/'^Bˋ"#Ʉnoz=*0cp{T nC,!.}S] R'q-7ate [ c#I!剾$]q605GWx%NU dTHY(Z7'YI.ТtGF@@+K͜q4R< dm̀ftQ*0z;9de]2Bj#T`K4wrq6吐Χܒy-MHuNpo+5 0) ssx)z;lG|bCVml_+|\6aE"SW10]#cq>i0sps¦qX|] OMH8B.7g[\E)d٬X'sCzfkHpIQ!Qd%d :2zLF*ƚ#aQ{x|-miЌW>e{Di>%J狾 1e(\7 h>|UaeHsdǯ ߜ,tLh֝)fW,Փkݍ&KG51)6i5Jv/b%!e5 z2uhw̙9 g8寗O CR6nEsV\ t||ݪwkm0AgbApDݦfs =fzw5/ꢓםF* hpXQQ#'ʐ!|-VfN<O5f+2ҫW*ci+F؛+RMXe>`~rQy_0c%~"1Mt&nSeæT~`͘ GEv=z[cEXNXY ͣSn]QYU,0R8fx!zL>6a*AĠ 9UOOAnM,F1ڏq/A: Hw(m>LY ?io?"jօ#0-Ie/tй/0nL@L l,٪p P7&śѠvHU#5wlZV{E:*hY&yLUX t&ne4.bJ{n&v} %}>R̞l\ӗ-_{ϕP*5;el)3 [ !6;mPPE;8}JC'J97>ʵ'm5k nrD[VZ2lP سӉqgBnP;QE;dL@gf h[ZGL8ΛF%}V Y&UhIҜc<#A 'lE?˞w1 B>ud蟋iAJŪ߳K7~lYgL%ȰW2҂TwLv"/-x~Ydo)ɑoǴ~,G=11\4CO eV?tB`15W L?#QQ)qt]yX(L^z2c<|DܐaYkjld'9Z|p9<Բk0n#z[S *P*Yc:[Fxz`&|pi7 2vwqͲ "H!x&O<]^qk 4B0:̿U}CCismB]3vTұ%v;3m~yez2(erJ?#P7p`U^ڣ4Bv7{9)6Ek]'4MhRTA>|?M 1q[^oXM=ֳ46p4,hA[k ȖO_Yܟm Pf.Fe!J)f$ɠЉE r_h8J\}^BpUĉTs0rWZVѐ~{N:{bka*@sS1Wo…VefL`gbmϚ'{WbM4mR [¬:kۥ 'B5_шjz>LH`kUw=PM` Tz[ sX}2I!mOƒak-ercX$l.;^65Q*ԍeL]<̦FdTY-p-1cN| Uy)XzD&XVZrX#˖nf빀J8[b,g':Y2͕T̉mЭ5Xr/&(Fi:JEÌ:bnI.ROyB ^7 :Q=lp0r"b@-q+ yFO`}DI ?D(['Hcݠ1W0W M\d{ ]:щsqUA3mt: KeY'Ә"Myo~d=چ4KZ iR s=N`1j#ƺ@idI/#"K]x ӭSQ|P{ d\e9JVQh5+ k]ky@L=CyĢ]i{KWӮ~K=JlT"mW:=Vz?"EЀM"Ny {gKdQeiu C;NSŃqtUemMr /^Ś Mڃl0l>{y013q|/\0!>xg .[كzoе)sxU^,=vU$?,A 'lAޖNȿY %7`X%!Y!lwc둨t7xUh4*2դXU&=Sِ1C|sн n"✘h*dSՈ(]yuA^VjxyBJQ X)\s# F#d$v4,xOC\cZ˄ʧYzv]Tr8,y\ ّ1zc CDw]83܀x_QKNC8*%A>Ot:P6qkډś=l$:9CcI1Cc-tڬ}Zu*B w}s("/(=t ҝSD.4rBRt=KZY,OI( 2hӭc@uƠ['UWG2s`ЩP0[,Nh056I*I1-6;ܺgVtpbT \>DfL%&i|l4f:4$^!ܹ6b!7#hWM,@JY9tz+?QBԢdA;b(1aGPҴ ǗbB"'Csޕiv>쀢:|+-'~N菱GG-,=8Ƃ$\,8q鵷ܠg+*/}%c+ǕAjCٚa {[)xyl/d"){cvSڏo6S\ɻBt@5If~c5XOyŸ ͊^ϟ?NX\Z3/2'ɓC^{zXQI%1cF/T+7RwnTU8XTq 7vleW<dL|ڜWj,MĐN.N׶"SC`;Qe / :ڡxya/U+egV 惽m'},xbMAHewZ|skWѻom ]|bɘT IJ:pyˆ%q`B$iE/U6q|^ɣ^:J&C8K D9Y~)S~h*bf~.eP##릆+3胩d9|8yO9v= f>ZT@F&or^z@#YMEdeMb+Dqgqɛ[FwX'EBL W{48G)>)S:*ߟ1OD^6 pa>Ҭ79Dhe$E"iy{w};FCeevՏN/)nA7k$emu='+oG Å.d|䳻KD~xURC@6~$$H=#\'0^W1|B DƟۜd̘>`qƌ((j2UXK^CSe =5ȽkWgfZNd"}+ИmjD^FDGyO̓fLo\X,h0A^|򪭇ie-[ 3 {<.hd^ء5|V*kmꐊm!vᎭGC ,5v\fl(~}.?f#<܁P$WfYć5:ݱ?aI$a v L\PֹV=X4^U =9Oɒ|D Ͱ<9Dx)l=o~ǧKZmFM{HMn:g2tM\[6<2`9)mm ,~2v0I.~Ǎ>$mQnSTicΎ` :v"ȼ#ipr9'ȫ~V*ѩͯqχobfVawj*< Ek]|vv$B4_ T*HٿLc-"uc M; ~zS!(U8.̏Jf4$vW]/t?jH&ݠ##=E ŻZ2۸2bDw(NyF4Gw\4Of%=cc196\0U- L oezĈtrHptlYc.9L?u<%HΨ |v!8t ᦉ\E2$(ONe5-H3PČJ=ksǘ@ .IGfVu -5 j({D[1LjZ\*}dSe*Y?PJ"l0!ag[_2.>XE$eӘgtH.s: *-W: vM,ūœ#UFos0t"Jj5o_gj(ݥ' ]qeND\ Z@$3 Ȉ$4O 4gs7DDzƆlfQ,ֺs4K[ u!Vx#O5,:#WWQg`ĥhmsLxZKC=:exzPi&OT`4H~B/UXZS{'vav} f9P^EDJzh1O)BU\nҾX2%ěyq"V|nGAYE`)QJO+^0 /kԷg*JI(fֵ9{q ;;&GKq}wBg:.{܀sko<J@yS7K\u V?v?Mij=eziXOZ;Lyvz^ ;c3d(5@ބo֒[*\KD[& 1 [EM@Yߍ0"JUNE\Fk$H^iwAK*yfD/`%r'Fi*ObG@XAr>^T gVQXX{tuףܨ_^tvǿԁ >[%h']#aRсN1mWa̱a:~28m$Dˀъ=!B}>C<<g'a2+9禒;4L3qSF́/:Tέ Xb,su0>ׯJ,ޓ#[y4ObTj$ qMww'ylrfHzz0 %:8ۦ(Gg_Μh=z.5dsզ]Ȣ)ƜH(7W-e!6Zϻ*Knpi%t;1dHS p*wtaWhϮFt|>n1vz0u^:)us}=nq1v- 9ݥ0yթ3pٚL *߃ b̚LFN9x΅jלa.PRRFUЊ2$BChSC!%_^嚓YM94¦0 N̡ja+< xI;@pv<kBA":jmWyFz'a+F.)|pǮCI}TYLLrl #H;8*Ƕ@5< QW/1nw Ti,)&% ݲ뱣uv{abhhAbcwPb@2 {.*]HRHڼ 9Mr$$[vD^]o)3-!$'A1k4l:2J| HHB7֯@rVmֵrkUlP <ܕWI/(w,*F,b7ċ){F (!By?#I}أ])Ճ'5)v(8y]W;{ Ij攂_@^-1T7,󘒰;sFPjatfQ^AG4c L[c9Z$ ~|^'3TouN9::k}B@5iI:o%xfG +`I'պ}!;IkA_R0 H) s'}"y;͜0ט3dNU-** ,eS8R >nMs7,Ò^[hvбԗ * 9$#uDE׻yyk̋t+: qhҰ< a]UW9x+T_#Cjr2T%+Oh sHY*g):-ڵ=7l۽ZR*qqߣ5NoASK*ydO@P* "Ը8@B!zLfI9}!̪5v 0R(XuI%skӑJp&]VbL J. sﭔ>9Cy酟ŊQ޴MivR|5@U;S(u޶C a'2Żol_=`E5*Rd%%a9nr"Ua 5`Rᖢl٪XP_t8:@nBȼt xw+֫Δkm?P8NV}.ȳD8AQq<##4{Ez7m .惿+[8n$تQg"yƩw6V$T/U4l\\IfB NkV]҅φUI ì'bn󆃨AkڟO; fզm@kZ:Mmpm|&@|m)];`8$')5OTq5%4tQˡ9'cS:A =JQldȂWFPW~fd׬@fM(I%,CNOL_rLg$5 ^9Qe]aϬCUS5=#`=%_$be986&!Qv7:Os%TafLTVߒrȸAQ~C+)ycYMysQrM.=;q'mwp2b,Rlô.&O 1!j#sT`B\{Wu`RbnLQ06Y-gG`73 VVcܯCp/<#ca BswY Ĵ]Il@*7'W-dʑJpށO@qOLr֞53_J"J0?ܺAzVyZvTSHWϐER^ߧt7q:bHf@P9 ۬+,91]6tt̎oWY2X?8؟lZED@Է Y/+;\|еNMе{{>|)ϼ!H^wj/qL3o.t1Ϛ`'PWs o{3;e]|Em',)Ibclכ-\:ڎL`;rABϪ V.kZKjt'; ׇw fN(P>uR&g,Fgg坊="2+"?4׍n<\irj/bའ]&H쮿" UbeڅOWv6FĴ/LMκɘ\ޓJY*.-G8lޑW}g@\^?/>vBWg*T9 _ZHV m#W%2> ,Ԛ.pVBOq\l%S3-6hj b{ֈ+0WO4eM<8&'g0qS*`6k:u3D$!CNK͍tOJ+%}39qS~;7m&Wfުfm^2 vDAVn֚ZZK+6!DJȊсxikɆ_ ySH XꂍkZ Eŏ/b "Gm_'U_p6h"jfl;lfB썎Utw쮪X3Ě6c^p1:&|M)~=\?B˘_>uآ9EYVprHX>tkA}aC$%{Mc˛E!*^eBD!ߎsHlE%";Ml`e Z Âw)Vh.r9ZdAQr\ ;}gGAo>}A #Joo4.6+k+3m|pk:F/"P,Z6;uւjKV{(Vyظ | 6>%C:v!cؤ-(t73AbBMxw!.D7u)L"8qo5)YWae-tAD{!~zYF]@8f#?V&"e|! "4\Io:#ŃOB#sj˂R+ fríS`&b0".ߎ |N2Zeq1ʁۓsY7O7L0#JZ\cmOޣ.pozSxĝ@׃<3yͰ.K1ۡICg/P 9Io؉ǔL6_cXh7]q}4(TlB2/`rCSWm5}x,8Uid>_ n:I6+7^2eUMN:A5wec;Jd QC:[1wD|<.S2OC$K`ht-{pf~U \ V}#~91Y9jP5koR*@%z;NBۮy33L[&"Pr$@"lHJ #O$?>7pbEW.g݌I pBOy;H6hj-ͦjЩnw*k먚<.+6s}G} J_N@}وyQfuTa\S΃%_:O`8{ nag[k.`'4Z`֬M1%KD&}2S([pI'(B4GxEJL46-+ү$|27L,Imy;#htF-@YIj3=<{U2T \~k`t*)FϳCdoD͘k  ' א{F ;C&82T+rw3iH*r`lC߰$jۣӷN\?*й'aբQ?{1*V )%dU\)F 0۾0FTnҎܡ~MQŔ E@v׸䵶+rߔ_6tI[)gLb_Phvsu[ZKKBFsL&H2AJ,cE+)}\9@~O\=EI8 AyişٔUJUϥ┎,n5=]׮2MiʿwS >(ߎpW1[V ]$xJ~$잊y_x-J1ut_ #縞zşR8PNx< >v$a1,N=(m< 7(ܼXZ^*yI-efטS5 Ao\ ChEL{c9ߒPRཫE࿶e0Q[љF|ͷݹΌRj ޶Y4 PÖxO -O|&REZ\ O+TƟWP_oL@CDA3k*X#XwWDy>n:iϬ ci< uN  ϻ_-bDQG ]gĎh`.Z}ζ|sfJ *}(3ÁpLWo{4< 7)-8m!s&@Y + KZcbe5TavOřeV^'!/mg/҄5xe#aX[e֩p uE~ JG#t#Y!J:>:+ΡBi 0.ٙ]&# a{Y.S0)i8-٘B;8ȥAjt8f;i,pƿ(#/,N!5ؼk}zg䝛OR40Ҧ0>F\dRs}' 9T'0ѫ['rw@(|x M<͕y@l- bp='4i`ᅭ.>o펑aEU-\:Ptm 10CS038myF?l j' | z0pn1;"{\k AcXJX;>th/ߴ c 3ŁvsAkGceoka!됗y} =h3ka=ܠXLd,t\^ | dW2!:2pZͣ/$ɧ݈/! VB ph=e7hhW>^Pʜ3E:oXɻ*xDxs$p{9l=jC7|BXIcS=[,e(Yv G1o3~є1j€!7'yxa|H|c=4܍u*k֖w-bZx Ի8yDM.C^enlc[a~!&PLjA&)V'fZm9 Y!w$=1saG0 ʢ ^n䆆Ggq.D> y4?"bIGՅYABG~,n?Yj=0^ww 1 D3\E{ritwrT$[f,ٚźR (E N_Ոc]yZa.A:V3k%hm6柋s^ŽlPut7M>,I9+cS χ&G06 #ioYDk`Zam$ijCzpm ~W(xΐz F8z'mtViǂ'v` J;iop8t_ b]#Sֿ;ü,֚0L5O #S ܰ/':a&] uK"*KbYRE6ѩCeDm,|,~H)8΂ `FY …V72QIw+Lu(Qn0cp~X.ޣ>D~W)"a8lLzznӢP ğ lhIA9<n)gmʂuE،X- c~ހ7i(4XaweDe'k(C-6"4,Y_ F&Wԥ~2LD27%nբw[bb4(B4%uG<:_^` BFKQ7[ump–EǙ@v]m ]!|f{Kw&1.8`mنOb1ְqs[->A<׼9o*=%P_e*ˆGcHsݞ()_/Tc rPjIx:Tmn=ه:ģ] ,)1&2c|CsvHFH象:6@1WR5t:4,J}[,Dsm-!N Uo ϛ00q`1{ܣ@uWF-*ܽbR7m%s4UFZw8r$bT ;%9kh_Bkjս@J~\-qb~,7YN"` Ju)qWbK@Ϙ5* E.Ro ==W*nb*BbjŠ&+*d#Ѫd$7]؂.̧ BRa fzT&vCfjWꜩˢ(myYC6 uSv]h8e+i)k\,oJ1;U&yaTvVa"U 11"(!> 3om˂tgEnd3 yv$(8/W'n ǹJ j'%.2Ɲ 8Tm 'M "i}k? X-3jge= 7kbN.hlon.F~WqwNRCz䅒.׌U@=IOL׹7] &qJI^ۙ7:=1:Pd .}qSmDP+QbR1kӣi;526%EJ+S6s%⸈8JLc >]kw9D4eiuKd?Β#Ak*)]Jjd&1oJ j94G>dziKP{jEvI-ꉨ<\VGK^5oXw7Tl#dRð3&`pckD[l@?`i0[ owVoeKh~;S c}2pę\ͩtS4%dVldʬlkY[HJaX`:`=VxesW:0[6#B&tFZ?_@`*ċ%ӌGNR*ib; .aH5ӍPEeo_Tɝ=>_q uG/Ͼ._G9=t ^Ot#P,vxq&!8Qx-]ڷ.z4V:~If1a9`8Qh%6դZȆ]Bv/yD⯰JUR1kʖ+3JD\3sj~槺t;Tn U IG;دyC?1+&YlG7? BzG~zZ?Hx>㔈Fh}-&3N}%k}qIK mҳa=ަ+ =iUy4JtWO3Jb?Lݴ>:+3ۋSU**mNKEYOJHUdv!A/Sw;ovQ9 Hӝl"&-VRuhuzO۔(ϴH,IMxr3 NrIz?@B[昔M>D׼i}kj<yp Y^* ;Gӂ7l\IBlu&9|iIO4ԢCw∆c.JniH&9.o*YH] u&'ymXWmw/rm.f ha*l^(h -XRVgkG , $K\ t' GlaY򓩿}{N\Pw'2_TRw6%oULR^YRͣ#X/&NWz:[Bbq< E"yba''8e͋x,.x[+N8PvUۥ%$c%㓑haPz{GH9*p(IHNW;Nsw(.sqjbϹHl[X}%e(?[pNULmƫpGq7h{WC"!^pܽVX}?^kfٝ2) fdENQ,>!ޝ ug,966W ֨RǑͷHM""W-}І~Zclan#(}̰ݛ*INej.@nWZx/flW\#4gE]7(T.84M>@<1 6ǟ | 43+S 9 kJ†mECݪ ݤ\zv$M (qOȫP;*w& XQƲ?@c51>b¶HNNbt& #01*σ_:'_ᡜq+Ǒg1; >Z[-ٰ(B_jCTS!U#u jxi8 i%/s kN/Pťx[3(ӆ 8`DzCx^ú <ʑlf?3ɀ!^a F]h?j5程2L`HJh( Z6KFsL,,lƶ On4 p\ҖH?Otadͷ:ۚq P¹9|Hla$ϋ)kYRjC/k_QPNw;C;ԁ"=!l`B &!|%Dk7@F{ӣ^~~}U붤]OqahZÐ>q%j;-wwf^hV1u14u)5ß{XHX,31>pG= 05u0E}ClP^<PEuLop \_j)9m: z>꽢Q$qMˋ'}<_ І2an\ɺo+HI1\Q } Lp-BPܩ7}9 .Ձ%V3\̓Iʾ#yd&^*o{OH:DU WrFY^舱TfGLrMsI ݑ,c~Z\V+, Ac)46LAz@Ғ#enŤxPG>5ڦ s^>?z㚎6fp[s&<6SsOӎ3W@50WSY0 ir,D(V'ϯnX?rD@ _5d37f_doxU)DZKR yI(ǮϰUyj,fn(u<5kN" S_qLo|2;ۗ=PDHàcgmk܇[}!GG>rgg<EI0oäAYRdٶX`XK#A*@gQ45%Ox}.n=FtZ)§y5R8# @׎Yg% GgF]Msn\P+R2y ;)'ܓ=B>O=I= 's;My}xDVA*,k>9ұp;q hȊ2؛ Շ/^QpngF>t $FU7Gq $*k]e3Ww`Sas;Z+ RL^̀P{`z9v޽By>.Qo@2`֊R(Hr;+TZ>C9=*4/ot/It}w!V &UuaZT-(CE 8#apO`PdRn< s*9_޸MFpS #/W̳F9ao0П:@Ѱ\>0l" U{,XbU+D1FH8"kSh.ԋnf;rLeƭt(BEOT~fXqHq<~e/ MЙ"zJx<s0AS v;,a5Zѷnkɤ'Qix!ɯxx 1ҲȳTWNc;@?큓 |dU!(= RՅKlC'4IJg p9΃k@##E܁ TUЬ!A?XdPk͖+ Xo+A7%z)+%pZ٨riF{>u.Kp]5gdɣEX`#+Uyq$ܫr doW]c]8}2^JjL^3cֽy$!8KR"̔H'd;΁ףx/1[nTY6ɶ{ISU˸m:3Ϙ S3Z H~vNq|Wd,hX * |dYFaԐ|9?F'Ā5ö&l9OȡoaSV]jqšarIîvs.9t˙f!]#7ɂ@T0c0)Kv|=B1&87e'5=Un>{5=V`xBՉ(ܥ*FxYjTsvdg!5I&CO+Θ8h1]+GGHYrCϺrT/A=#*8: |pޓxRuYSթcE}hQrDX0Ge({4Y/Q7=_W>d+E>@2 \]+%)v.wnˈځka7#p VyDm.Ky=*naZ!k.ASE~Uoeo<2P&!dzd[`2\ѺO*-r1ܣmPP @Oڙhx6r`,U/kmA\ZK GpRj G .W!I[rHBV_9k`L\\߄a$@@yaFg1 4A@*fC>OY<ܯXEXqOgW+!Vgu}Fs CG2\%1>b+Es0Z,Bo`ŃY. LzJߐ$:O[J{V%Po+2J*`ݱ0n`٫Ƭ[JEo>]<.)9&ʹ;ˍGf Z[Ρr>h&TWhy4{p#|l@VkYOJᚚ 6z9NڣqW~Mn *;dIfyv>mZpsyέWL sy.A-nĖξ(`c:<_-(KL%;oZ%uAYx!ŀLx| ]_\jI ՙWJ*"2_WibD=\;" { u(fa']4v;eU%ΨG| cc=s& 51;?a"KOFYG!a\x3-+fݑ4a`;ji՞<%6HVb-dɀUP]mx[SI1WL=Y0EQxRO9wA ʱ. ]Fnڷ"M2EP1D`m>\jYHĈHrT+=x VhUf؜[|d$X]xIAKkflњz/vp"6fxm| 3q=ElwnJdޖ%~AbMğ4Qn1@A_4WkKtĆw z-+?DJ=yچ{XƢvL<6-l^:5VoL.Hcr Fv?!< S;x\hBtrv U@ p]j><_~_}>\C?m/ -|5g;jg#uoC=$lt$ tT01 n1Kj0{1Hy~VMtE) 'GA6?IC&1PPX_pI1t Gh @򀀖 ${^w ˆH/u&v0r tͩX[5LLs,,ꯆLnNh^&Շizsk`T—HYpʄ'b厘ҵؽS:v+WW\'VJyy@[?/>Mtme/Ў#*HbEG舨{IےZ/7To@UT"- .xDkx^?TG`\mAL_h Xۅ&eໜDml 2)5Ȋ @R '~2?s]]Qz/qWXA 9Z@`g.JTx` B"0mdvк^gC-LzLJ}SpVwWH`cpH*uQ5 !W@\W_ v@C8jB"ޓgW)'s p~/iP0D@mܕeAbA{bcc4I ;wm&Uzo"+Lf5IU¹Sr/./eK&2-:8Z9W#,$fzdRhbsFFފi%`QWdF(֖hc3Ϯɑg!y?Ztl)J+2ICn<++ AܒI%=@vڠ)YL` pp,[F)}Zeqk37#֏4~_ku*,sr'~rϺo4#'ޘ<(FannNgLzU/˲c'O'%鿕aiG[JTfEvKCNIz؄b ̵%%[WqR2;a-e? m|Jar#YbnKt`:%O4qJ_+ۂ`ıssGF@ ^_yLxMDyPi! l\~էA!K:͕͇(sz!0XD~[l\+rIWϒQj-㒀^ߤP䇦p@eʽZLѴŖ"O2Kq3gM_8HQ/F1ZFYVC:FFP&T܀JEE+X :IJ!tLQS ycfg`Ը_֜R@-җ"uLĽV11w-]v w βO $Xpsr{CZnQb`]t2֞n&!OWwMSFY1m;£}ݱ 籾=ѷL2VQl{1i,!HInwU !oU*uRζj;4%rar(k+<3wO exHLJW"QT=݉hy"RN*H!)54q+V$v/0_?넹.4E9d:n'QA~*<԰% ro*e} H,#JHd% i|uYn`})>EdG?x*O^5&>y;sǿVS*B=MfOY4ץ Oa WUܭ&؞FCxSGXOaubn]L<ssQۓo—s$D $;Z$ve+o\Uj ]1y"Old\S݂,4:J ȡ0r]ȉ3?*ĶAq ^c, dOŜje8eO3 \Cʗt`d9BɀU5lDV$k&~дi]m(=28z1 h{YIe3@fO ʼnU~sݎJ{^4,Ѹv%݇B<=zl ŀjc?. bBLY ?5m"A*;e~X+)1[#qWy!зsaIw>9%ӊM:|"iF3-C&z6C.4oySJ: z uʼna(h÷B>83"-j62{:mOԀr\ oO]잨̥zhGF6fN?c$El~au/ D7慌SĵtHw7dP=tH3Yq'ڧ#}9'sJĪA \ `"L2߄n#Dy0/}EUqm`z-dF龶)>nٳmB:n$vq)n iŽd0}Hh >l'b5.qfLfvj셏t5+#ePۂaFCGS<&G|EʺR2HLTE1`&qw>&yj3Z|^1:e*,u2&Ƴ@׆E2ݝhT`rKWУQIfm|8-2rW6hшFi@x[be x% }I_#_h[v9^Xy(u%Bˆr|'bg?Vͪ#U>2G_8+r=品6;\#r"]аz-ܻ+rƝC.qaKʳӲNI4zBb'q0s>_"Th"nٜn2?z):ժ;(J~t{$gАCV=R l?KCRe၊SLR~&USrv*7 ]"Q:XK7^_pu+kt☟4|15-erRܓ%5GI< ǽꩢٷ.-Y^,b{ GrộEa<dF:A BYoM<8ˑ̘w@. }1?d}Qa;9(ܒ C-Z <>3s6 d [R6 kzSCH O u'4D;1]6Tcq[WwvOqE;0.J>G9UPB6UHQZP߿0I]] +(zwǺq9C _t=8L?V8k&~k"dQ`3#R'M*)G D?je=K>9%M>&h  2&&DWsG! y:g$s]-TYN˴ɺAlyj/z"|NP qfyy|2dvg3.6S/OI 'wx瓞G/UJ䐈ۖA"-F-5A NK_Ba@B6;ʦX]\ nx?1߸O/ o:-$怡4&h4½#P. 5߳OpUoA\6P=eFt0%s)0G>e5jI $|`fěCRפy힤=QGj4Xr!akQhđzJ3FwzȵRʁ' Eϒ ,fD N* =ǦчʇB9RɡR0³{NN٥b-O6p=g2 V— ID2ZksdžbC* 郋2Td(ɞCOG&aZ1 I+^ͭ9{TƓ*ymdږב!v3OC7ʀҴ9.[X6,zXw!)/#Bq@^f]cjB~MWYxi }W:ЍvޔvOi8s&"#o"6;2[ذ=LeCvrvǂ&&ڿa>Ys@"vw3:\is.h4R-yS8`3o_VFQrmG? @缽 vD{'_ לZ29^TU,qۉ-Z- C]R(˺R#*fpo%r_<[QZ6&dowYh٢k*xj`ΓH@`ODq2$<BByx?7I@3vSȢ"S?d 6G}PgcOwE*fn yK5 s) <| 鲿 ވG;D񜬝jh[ չ>NjY2|:\ =-v%ˌ)>q >9,8!SN'\ذE*;}KHqba'KB|0X;p.|Tr<֦EKI r]R{D C+I^_<6^NYs+1fy}DY(ῘmCeb6j9*ݲ[f}JPVMY9WL㭯s3iq|tڶwr=C{kTNW v:dH1"q q8YĿn̚9Dzl%bjxOxhnLh4PEF#ǖP#NV֧Y+b{yE zɂ{zVIp QK8[=qSŘMc^ 4cZ-}1E+&Bv[sχHa\YYA:o-A|~zTɩȤ8B Pj!]^P;hS<1_Ǯ-[VJPzA>tisةqpG`TU2BĹ5FSr*8W?koڅ<|P;Nzp1hIB$yΆK& mz;D#h t GvZazhiV. p Wgl{L! )5i<$D=|lQTR)Zhd{VZ-?gV>yhyrMvnD4MR/=Z<20Sh*(x?]d`D@_7-I"aUl\`TКxM7xi0mTB.^4xEӣ:PRDB?Ю'-~z䴋z0c(,^_-FF庍zG8GV_Zwv1 ٔ.M! ;Rل2>$mTPBem7B FyR g7RJYëzhGmV}_+hϫ ]ݤ MbXZ/Ϯ tIBzRZܚKBuJ@ Ejd)t &l0SFbMaR*̈́ `b~'܉rJȗcR&oՠzР],JHȫQ;0Q3]h'SuƈOKC`T]PTk鈮Ȏ'6؜qec7`>uK[BggVz32g?+k[+g 'TvE ,Yh!Kt c.>N(M[q$3'%L G4"kZ&Hr#[8&O6I&4 3=m{E*̶#*2U JxLGS=ibb}/+5$>3, ;6 Yv55LH"moUnB?k2|^Y\G{F™ra82/_v'g9#P8#8\Anz~}EI|Zi#bӹR$J.ӫgƑ%!Μ$,jTY^™]<:UK-z5&|\r2_t&G= E N k唘OTn6mV(IZjLp3 ߠ>|:6i@+5dp>-9DV|a'Ii@);_vϖgi3jyV̚xA$]3B-wY ТmϯGMX{d+vRy~E5gPؤfnnT,@SV ˻O^yd9) tBj6FVknQF`r\7.')2 a+`x0@~і] J!hh` A :Dw& &@P݊u̷H+Yy_˿@+CﰊCg{[_u)*`P-IA- NFEґG BɩZp X- ^tY<[?kz'BrD{zˆxMp-q~{i` 6!_4qHn8P/'_.HS̳9-T/w{=p>EpM Me"U5Ƨbה0odCO?ᮌ9k")fJ`ʤNkXPAC@?RD4Igg}H==x~rAy,q"9y5qb>m ]tCcn3raaDG΅4BۗW.el \Xژ80`OD4t*r5`JnǓ*TǑᇺF{ԁgd crȶ٢ABh;ܖ b3i!p3`#+%:x`j"[P'aEtD`'EVuQ:ﱢm9eLǶ(͈`bGG1XYhQtW4R?vCƓe2z@JT 30EO#.``Fzy'2ڞ9O/"6mX͹EūzQ%է;!+ F_4 vBUmxy:˃Atlnw[&鮛yM|E-8軖5Rz u9i }猰H(hq0Sò|YBr]Ux{Q?ʞ`#8QSR%3K)z⽀gE-NS,,:ccT2U%SMқ~tUռ`nw _lb))?ɤ M׹j5& u)Z4Qj2+`/hS",(޵o.(S{d}EЧ|ѤI>LKVDB犓rLm1H,͛BR3niC"O]R-ObInyB#?.Y0-J,lJgy7%k3~Q$ɦ+u r. W# ct2[fӯIaƝD[}9K@u_fЈ^!>ɁV]fDJ{򄮰qAA&chnYpb3@KZͭ:^ҳP<)(!mޠ}Kmv B4@I*͂h%qyg=յ~:>([/p?E Sdu<0,ڥAkN߂hL0d)|;Kb Sy4@eC 4)8EqAtvL55qICUZr6Vm{%N $:R݆$==&3*OM] 1E{"c83meh8Vf WCߵO%((/Uf#Jp̼νQCSX쉎G S0Z﫦RD(شNKuKR4Vr%z NhϘwP_7 i*wT!{,}S GlP6ts 1Ɣcl3)4`;%9y8v:͢"o(!9,)+*=iֳз.]պR [3]Y?ް у8 vɾ8aL"/N#\zA ؓ+3D*K3ZۡA{6QpŲMƸߥu $>V2VO, ,ɵ0}K)_mB87:YiWF*Xcjo( L[:iҮneq5`W*5i}MwAY T:6fJ&r̻2gE(lsG4wؾ*G߉K#_h'&U=Fq&33I2kw.L.Oɢ2+mR# ivڰ=jCV3.8?Qg(3h JH U1e3so2?[L<$۱${AblgqHt0fTBe/ǵfr֓<:Vcl0ڣtL{b&>ir|+#Kyڈ¨^2&[*LIg&̝kx'I<ڱ(uJىnTѷg)u0Bc:Qϊ]I?LE竍p cHO[leK{(t=MTz$-(N+谢῔JQl0--ȏz#>;s@4K5*&1KyOQR< L%1B#+ݭghY_X8sII;{†uh'tzB?]J@_q =?'3]jN#Sp!*Űlm`bU0OR`_T!%9AKyst췿cv+ԯيMv(wPK#!5~]{hp_VS)WfDrR xk1P][ eʖ`ZlY%:[CV/(< c-')[}}|&U`lD+Aä_+;ݪB)5 g$BU7pÚ*N-`P ra.#m-4hk s$> n 5)V'VLpA;7\\ihg/wBf#\bK9X}wHI0j(` .eNM&-`j vW?0.#tmʨ寃ddHIДj~>:͡emM¬ sS=U "L7c8?ynhS; S;.@wTg8=Lv*Vya [ [IT-k:_QmZr}YQ^loȨ:;a[Ȃ!/2PSƁ{$xl+%WL[}N{]$\P]pTO_~+u׿r/x*pIE2a73[ƻ)ȗUAHOUϏӼ?DAZm$ ;%d0z?N޴X\pRN ;aZ mv3 WM9/M$7΂DO~u},V``J(tmiO/mi!e0z5vB =H #J'V>, L5qoܥ.@w"&a'D7# МM[l8y<Kvm(j,h5noZMяAx.k|O hn> Ԩ?TZ+!1}R[h%(Ѯqiqxk5_V^piiۂXu.%iGxTW&&yD59F3޸\;I^|7Llht&3 w+B0iv_[5 }|x(z}TW>jRAfi wecZDwS#. !VygZTYrƏ)c@'nȟ:c֭fB=몷|ɳv4c\T7i2GoMޔ7b!mIf[03jĉafN#miDa+ݬ9£l?&<6 -' d {'c)NqaԙLN`仲l{@dH܄B{ YOf˭ƠI$F̣ߙ!ԝIo휝mP'y6CHC"LkCCu6o!Zq +ϵ+o*ZbF%6u`ҷGE89\zZ9D~ah<:I"C-ԗhWRݛKh}m03V8&32o~?'^Ў'*L 7)?Pb8 a{KaB]tjĴO}x; 1-8˔u^T1jy+ܷ^ek͵C?3RrHN /p 4Xx6ƹ5Z=tB' L0V a;Al݇X=Lq}BuT:өse@Jk q*u ׎QK+7rc jh̀ŰN(JT^(( ׇíbNKHAO7Kt+lYR!P,39i3Rd.JӠu@@%@dhBep;_XE2Q[ßUZmWSK̇QZސO܄ӫG=0+ǖ KA>7ì ?f\-5b}lrf7~SQg OwDW [j]Pܲ_y8fQ,8 t6k7a Wo)Lid5Q.I s?M.I&nT<_Y<*^ OgHFA'My˟y'j|#tt3= Qcd2*<.?u uIK =_ۻ0[>Etܯ%/M$-]:38N^-o VKltdY5ˆr#'έK@L3C;c6{ <[:Pë]:TejI:HSw*F;i/b㽴u99ɬFtQPd8~q <$()S+3zBdZϺi P(2m5HBSVcc\ٖyp8ITk1<>+wqJ7j6 Xkϥ:4E/}\FȮH#WZ Ǔ[jFceX77f}/բ<XlMwD}`1q){ xgvfvfI 1gQ#s F2~:qaX~36l=r7MYIc:1קU!!1hw8YT4H)1Y+v >A.7?M^RRRO5j^?[ ~VN=;V$U7A_7bKOxY:iW3U;]$WU~{ģU gx)"4$!XeW,~vQ`WAIY#-g(|Y'm]KBd>"wMM-U%MvTBs$fU>2&Ygol0}.\CV}sܱ8v^|KARcSϩ3j+^nunJ91˯F*%+nUBgg`9B&r)oYY h;RrK1go?]bⴸG{Q.YUf̝qp!'OоGG4X|l-kNLQ^58yhlCuz)H,rv|#~;CP 9U+IVq/YiP0bU33DdPT*F*}jGȠ_K'pkzIȷr{O :9o_43Qrc< )SL4Ti=;V@z׵Z[D<ԍ,Oֺ9Z߂ OqPW,,}kAD֒-y b= 8yȿw\IyrƛM!J/^6VE d(jf0kxZI`D_ꀽ'1)Ü9l_H d;ek6%@v1ףզQ W׵t$*-QPc鸉abgTRw;&{  So˗W_\,7GK*^ _J -yhK=X ۣD!U~?4.iC.f#Uu S+LdB%s/[2םɐ gP gK23f8+L[8IelvfڮlkyAahjPW&'En%cSq 4 q1l==zqphRUدì)G`yLۖ3{D}I ts4AN{~i1}u$Lٻ!1=CՆjhԸ iVBo~|byLrɁ>0)"{._SWj|tQ6s(P{U:ڏb>:pw} ^pE8JΒজT^Ox@4X%?=Ki5WW)fՒ1c"8INͻµy[e?M(`*)#+ZP,lкS#q"Ġά|OSAOFWΘeT4^*-ռh] il֩v3a(Z\?80 =[;;Ō(ДNj {n2D5aOue=hYѯ@7T|*ضQ1Ɋ-xXX8`@'J;{8AoY_8-zLC38AYeLf|.<<AH1Vq|M|sB D2w d_5]B?w:1Ȗwԩ2"SfVK2nrq~ j\;J/Ɲ{ jo݂%<6$j Z+`+$-7c]Nȣ.62X%'8^L=Ke\mP"K>cZne罡QSP8fw)DKhlI׎s7n0!tQ:d=_9Q-F i׆S#alGΊ4Z [nx0\"@ ]`Vf&3]UGjg˄D*l'D k @Zo:!W=V8x-ć7baǢCA]Xs2%llRo`@Dk|/\W;q[dK`3iNu 9R eQՀDK f X܅Lj\Ͳlg#[;7je%d̞apBfs Pf1/qeμ*Rh5B)B 2gUpUH԰ู#Aqwؤbׂ81/:ܤXEt#C|VKv"!M>Hh81>J}x7`swr! 3 wz%j0%C148+BDՄC]YyS<`;Z{b)Ѐ}]z}WWPo ٟ@`2@"~/nqe]Nѫ0=V;BUjh]t3I*K Ϭ˭V^L9?XIP$%r#H ۖt7'SSw{(+;crzSB& z] mEG~'Oi\X?nlqGwYLi?i ?|~@w5UV(w}oD1o-HTil++40n##yQ9Lmޤ_"IA'WfT&U 9Eh9,iUE5i"hP# G@mՊh@>[ PވxkSƹYoC_DW_*8$waܷlr0+{TNƒVg&p子å\4!o[ 1D{I)A"FEeHTcf7CIuF\˯ʫW4 +y&#3,zǎ8d1Ukj*Eڴz( bGRl5 [5/P( Lr*ƀtyY(-N&; \AFܕwU}6*4O*%Ͷ)<觗\Z2-ƫ|."0`Ljhh!z$T2+2GvޡNg"ҒeqEn`@,WUJ_+lnR#А @12BO|ȓF*/%M8կ:twE !E3 = rW 'X"j貥+Ūkh!V윴q n#O@J⋉p:|pu"Zt CKE#AP5:8?9"1Ҫe"HWBy.q1I0 !0N QדH`^$&*/Yrf ETq}N!C8& g63q'v*l̺[?hr >xrZJpѕtƽcD _3Yk@΀TO䀚\K1 ġ֠1݊|UidU#pj`$'ٴTY\x!ݓI6 ,2@^G4˕ޠI-W&ËrUG&rijYje՗qo1@HX^"|ҠڭS1tK5 eg)8t?Ⱥ(L$#|ZIjBss+V _RыOfANUܖ56Rt T'?HYOa;jN3 I cj~*R|: 6lnQdZiO-p |*EoS/ W 3:ˈ(&1x [LQԅÍwq9.fo+.v)N;qտ[.PأQ <$m4 50l_ł ^r>K1OǸ_|||G3wZ*6:WLFh҈8O3.j*h=<,˜V J?:$=H!lS;ԊE/9#!CeL*ZW1F{rE`6%7E|v9o1{p0Xue-2JNx] L0p1Z^ƒI2xnn:~AYhC~zpϙLsK=s݊Kkn~a< PS-6_OQ.ⷥC^-Iy/Cb^̷mDYn(=Kh7M(CO/A22 Bwĕ=[a׷űM6],Tq $ s̸U]c/ Zi`mԐeC \rJOJ'0sdK(LiUN;!pW`O*c7r{a0+QTCޛQgy+Ӹt~AmE;&W:_{M EФ%M >8.p$N˚̨?ޔE">wsV3/fVUV# df!p6-ɍ,˝MS υG@77Y&eͨi#4;>wxYl/HTpZdU 99N*Y\JUGr%Ö~rg=N%W-Wp2rh-Ѻ_t..KYI,ᅷ٦Vz_v6slꐈj4 Z!sPW Z&E bonBN`$,k j@7@)e(!ՉY*K)t~kC4֪ β^iiLq^%[; [,p5 c; #*\‚tI:UO?Λv8@V+eLBGgHinG%^Uϲgޕ`Ф#,ˤO0ڍ4RͯvJOa,i]y4Ow䣜A$1PmNj;mWojKB 3p.T;b&L/tv;Ai2QMUW}.(Xyޫ]|)۱G~1S,M$, EM S]Sڮ0*E7%! *!f.}UW@(b(5hd"ܧ*d׮<. Vz=U28nn+gM*byd`Y7L.mS՗CIBtkg$0 _ F ߩ,˴PO0CM`gxCYU&ruV·!Y埆y5r+Bޔ\n2$rs*(Uj DT\j1&}e7wCwhaH+L*(Lu v,D<;D.q+ޘ8qBaO_W& d]Kgzzj̦G6= [..,Xń ON-JӸ>|Ys:L&=?4fi@tf}^0iÎ;>^R@j7QTemt:5rR*\= .^9Wj\Ny_/M`e8cT /[0QL_gpD94hS~J9"bapwZFSԱ!Kn]*]|bQM]c7ߝ;{Ye*$Բ KKmxq=T\bL IեK,Sw2 7.b@KVϝ/. |ػ; kn W5UBR| x/ jD YBnt# Wdз.m$) }_ZSQ-mle)W.>W SX=E⣬*VG :MiAgs W:zҫ_ s.K!L=CnD#duQȽz*r2ΗXJN^J0qv{ )NgFa>n~[G&G,3FJ41jg c9LJp:ʧĞFn[BkseIQ{)ʒ]ggޟd+H|pΣJ;^χBR䶒(&!K v XhpM8 m"e ;hSsX)@8w \ywEJ}n+0ƝY#d+4b$*;߂)8OrraT֍PLU\ W|pќ^Y+M[\E{I-BN\2HUzW_1Q=eVL P4]p@V7`ǎipGawM\;BAsm@OG҉D=ُ&”t0M)]=S9D#;l|]ͺ "!xT@ߊЋk l IK޹Im*:Τ 7"V)Ţ+|tLͪ(SSVCNCokπaYpWv{K>FcpGdcopsxG˜EB-΃2,UL jwu gVʈ1zxM6!.u|AB9aܥb]N%~!k;zExϦbBP(B2PAf%#%~2@ <~>@5mȍIʒ}`,j)Hyots_{673Vs51IVZB[w%HF˽ZS i&xfMwsT4py `?e_[~Wjh7U>%\+VTWִ{FD)!=w} 2'@ƛO"P&OVW?&wƟ=3p!΋K?G) qfK(D 5ݙ ʄjG",ϐgb+7+yU[",'9 Cڙ#lyW^׎]Ĺ/_n_gys]ŋvA] 32hb w|'OK-fq'mc$,87Mwx&#Zk ?i*YRL֗+w*6 ~$묄q-/P9@[T踦)*an .UTZ>iɋ=\$j|j)⺱be0i\޲12߈t-@,G4˫~#\੅ |гswzCm1}$ۻأk'&! @x[7 w-C/O/v[Rd$:~yks=4 k:ռ r x;_h bBUi{[ӎ4?RsS=4Ѧ߯صؕWzxYc^!k LX C~>0hE A8n~h` պA{2>q8O!Nu*Pf׋(\HݚQ ߙ ݝ3h:l>Fl2N4v 'L,?>K L  } ~0E- ꮓ2q u,+UH['Y"ܲʔ_ 0N%M99l'"Drk?L"NHRaOZ;YiiNyOJa*k?%GC+i LTr$4YZr`^a4j orX v75Jwd0CUsO9 2`f([ ]J%w hX%[ڙtrC((+&5kRꇅ5 w ז77 Swa'"2_B/EXﺳ1NwT=FRGF5 ݘfR xkEΔAQLsdD%ohQ"nB߼]$t[99܎蜬pPrh/~?!*_PsVmrNlUn 1~2) Sq+?<~ J)B,C7[Y2GV] k7&L@5m|ީ@fm0Đf*2]qz*ǠXtwƩV#ܥFt܄XW[@"^8ʦȐmJ^HEk^"r71tZlVQWaV.ܥ\L1ӏĻss;yWGJT bMIJ[ ʰB\ğ܋Bqly ḗj1)3n7HNd>ѽ =I{ ?B5 u0M=1I4&0~ aSx~ %c~o8Te*qcj,+}e`!.|7%-MZ[?ahH~ eWA6hFuOV<Qf~`ϐGƒU\ wx-KvE"r,WH.`=F.*FBͻ! )M9hv킢 n%b1NͫpCD 2`*|P{|lf_/J.v{L'Q)ݴBn" |l6R;VDox2BdI_ĥf"Lk<1h @tONlz/'\''lhm O- azLZht$yl ~!py1#)lLi[Pfr:P 蛬37՝L&C͌  PV mĵqayjxl$;n3"#$fX\?ɤّ6U^MĒFބUڶ4T$,.Pi([/UCﵿ2`Ge3\3"wFc҂nRpY &+KپAf|!_ +ׇ`[,_*C> {(?o0Ťޅ@UIeKO)6i.a] U(1x,y S.q.+o?c-J=CXH -9pR)qg% 2Y0㢆[h8w!'%lM<~Va ^$j .1*t{֢w(+&MQdĜ;U.pfFjb{\X!'O 6Zр:k% B* s4^'+Kք/jpy{G4<;/^]mmfLX&Tubɛ*lĴ$1X:ET7Qk C'9灎:DpԹRZ?Ys3#=9\A|l$x;qٔ{d . :Hߨ8#Iv ;u \QE RPpT SrXcEmz",rYi>) :9Ņ(̔b4yRۜOVJמcThXзkyT'.Wf~O {*w_: št,מA"tx0 ̘I6F  f̿eyQ1!F}E`hዒ.i/& _=Z+O4{L-1zQS+vHO<Ǩ6ON >O8e)I߄7S+ ?<#[<O\xdp|Y_LJ!tĖRcXPX3h^ixީp+*g`9aWyG~LT߷]18@/zP߬ĴG-!UG0s]ܮoɛ{o}C'!i|0bʼ]{ʆScΒAފF '@hvoNBܦR B1( VkD%) wK熅QT3|I lG.Dk;sIi#PsaǸ!6İ| ?*x&&aGJ8k8+b=Ŝkǯ^Y|dlP;jݎ,I#x<ڻFMh`wC&i]pT᮴Zxo-iҴu`7' r/ȳ <]r{-` })- FʟĦq}*xwْ r;KǹCB-lաċ]N6)gSJt MW׬ XYHR1j`^ZM\M=Jd]eJ@&e>>7$իDrAiIp(:&D[G?UVfIx3+F+Іc46i9?~=$ZS*C^4p!anv:'Puw/=Ew.ɏ#hpibWK'SԱ)5sv;c"`6>4VDZ!ipjRlvnB; giފHV+xur0)^$Q.qoEyԛGri˸]0l?4ջ}2x=Fgхsr=t |b Yˤ/<|sno*hI ԃdnUkSjEgvv`@;r'4k|749/g#ɳ$Ζ!9tQmOõ6)L2Qj3H?p]$i\|zGUD$׬dJ/qqq$6DZ"ʜI'PLKi5UysMJ9pR O q >DVHoBs<o3;&OM7c{~#Bnc/v8a$Dv Z>-W¸#t"jRkN$YhҺrod9~qևSi>f<@։7.tzL{Yŀ>՝|b(q2 }Z 39k*Sl&m} Z>Ρ(s ڦtW~et:d[o=+vKV7lEעOf' ݗB//fI^U.>*Ds>oO  i$|z2‹Zmh~LAnPaj=v7X9I2ɞ *P:,uyڙfwa>iwסVMU`X 띍[ JCzcj,f(QVG[UqE{j4W{3b{**P)q)mXNe+U͏<6%%5]hJd*)R)&=cNOџ#9zyGV*ot7?ZIbB?"ͧiC/hB=gty A誌ϵ4_7#Y* #i&z *Hm я畾ꞅZIpcyBdlϨj4w*|އ YΩΛC):ܻ%϶S1rfY9JuÁgQ=@anlGK@Zm3TT˽qPҪCuD KfB2ԧyiʃXaEF#7"0ӂf`[('0R^jz[]wX?Hlݖj|j.NMY{f Sm(YVXzLOnq䩂e~'([F6L<^ G8ĪŹd!ɺAHmK+%%M≱ݤqYL)ߠy[y+/ M56˕ISVyV&Ȏ_ƪ %\@R]`zp6Rm$Ҙc4YvW<tf:&ݬɮ}i끧egW{ј*_I.;cƘtgQ; eӬ4&+$SiC7摱4rZXt`X&gċfgVSS9Ppz8?0F{@?GWچJt)tl+ɍ;Mµg"6G =#ac%+DĊ5 Ѡ<0^q~#; 0Uq-[݉.D')p5ߊ#?0bmNe6erwqor^7Ι?Z~A(ݯ#|T&6뙺_Ԣݲ~qh(X(hZ٥pJa6k8kh9w P]=YV¡z37ܲ'=Œse֝"Ħ8&k TYH[ o{Q-3KRfqG^,? ᥦ.^MdAѭ˓>7k2C7l±b$nKHyjOsX1kz#kGYAӺB Ky"{ʐ1fF/ݫT7ͷVߎ;<Ǝ:J1Z(<\x뜎ht:7 +Md}ZQfG{^SQsbpb'\IN(4Zm}Tar&L¬D `}1? );ݟ@|ѓ1$č>@v [s \(Ԁ̆iGg¤3ZKk 31K啀! yҳ7 DfwU f'`KF^1jo56 ˳/ZZ,ӆs^:Z۞MV_38Cǃbud3睭Jlk,Fp=Pϑ֯m tl-" I0qV΁!fp\:F@X4fLY* /%0zwۄ+%0_>%#d>Cy@?#Ύ)|vc"xcoKqnvN{F$z2;Ж}/zF_ eC+ I@P=;f.SzV?oA)uV`#t¿ 4lHX?*C[*h6),zcGkR-g36&;fw.oFagaYlB\I=2^_AqK7pDg}J^q? ps֝2ݠTJ9nGx_:˽ NpmlvoN!#!<{qУ _rCD0Fr"u PчP`4E6謧 _29Fze uZ@+I@tuyZq_ Iz3=yNhIioSzt~U<\ǃ &\fY*@Q5M FiQxgTk4WdxoQ^!\ ‡(5Zqڪ=7Sa,\ίT१Sօg,ҽ&vU,yX^^@MXN`y j'2~ˍzƒL*/jQR}k?ȿƐ**X Z@|S݇!+Jv.vet~p&6_Q6߰$4f oRCv ߸o9fꐃMI:c<FGTR }h‚U<$^>`?,6)^dxv@M=fzљaSlIޖI\ o0GptŠcɷM!)%)0>Ǯ_#ͩ wG 2d.C$gg%(PZ'!M)=mK-5.3_!Sx\]? wE4 QHUoW]@efl^٭`%r։歱3KkX=5AXe!!Gg"Vlj1?GzO|EOG_lf\p^:}Z1;!d$D@v%g!/n3kv~7_ YuL!XObn Ruܒ;Vk`ǟ6-Ѡ|+k{׊ФcyZ?嶵ė0%8,<]%}ڦ䗕\{ #ip`4!g3! ׅRd9Q:7.$)&@ΊqGT*qu5e-U27"e3Tq3 QCT\&6^c?oJ;~Lara@*Hq\Cg fv~qjV) r?A=SM^u3Ÿ=謹s%pf>f"HȘ,\6#vZg8>oH qTOŃp$AIB"eO?PW+R Aę-dM}ŧ#xs ]p_PZۡPb\KK|,&f&KA\$oF | Vhv)W:$1Tdp@Y&5)ǭ9Q'@g'79_Ќ 쒠ɷ?׿YBH9Q0Seojʤ޽-Gڪl,42EeKc+T"U7?)Ɩ S X`4ܼ񰒨IVTBHF Q  >o+pؠXmVh E޸5K)FhUŬ%B1&AcDpq)XRMڋ)ZHQ+k4nL<f{Z({wQ'b=qDv?A5~#]6>Q#O*k #G.{O[~eןlFnC n45&y{f~2b9RY'#ʝ#KA{ƨj 11=[%rfLH\%NdBs&(a0\,MyÊhPmnrށ^>WUb8)iXI~w,9XDi. +֖:p Yv\V1 vu6)yG9)]'JX{1@ns̱/:r4o# Cg+KMr8 6%y( Gh%ө*x7To5NQ,Z} oCk5 hk2v[, 7 YF7 '|Ş"vgA0`%?)XvaіgEٿg@I9ЧsE  u3̑>/Te]^i9X*̀cRpnW OmN-Ode;R 3ލ42wЧ6+Su!Hޣ7HLMɤ1Iܣ/dpú*CaЧ=\?QsLb٫(`)9ZcEz.[ nu,&uYݫ]W׹gKSNZ`$O}|&Yݼc!E@t0~4PDapZЂOw$}xPpMYxhfoʚe 售WK/mWL3d6<j2?*hWnYK j6RKa`oA5h} VįQb2ld^FlSuSv^޾r 34Cp)}Zl:cuzsCZ)M|2V9iYx7:aq܏#kqeĒa|Kv3c.kzO7 Y~]_aC:d>r W6g2 *==jx8<,%ۆxYTCfA2wkd~1\<=@Ga(TgIjD!1alְʠJ뗎v7S"f}-ʉe 9 Xت({;nJ2ՔEjLM;FxObT@mؒ`qU-L} ŧс$tZ}e FC#a$LP8O+(4N^ݨcXh"ϑ95E&.;"\\"IpD/I=kF^lֺ_% ˝HwÆL9}* 62kӞ.a} {A{bNqQX5"gaGi&j8pi J߫ZL͇.CL^qa X3!?Wο^)F 2Z(UldQ{o`|%:ᖜwqfܚ0{OĹ[bNw#Qc90*3sXXHwzI`n (GS4aq,셌hys /삿Ҡs0ܵZ\3vL٫!QeKw6GoXNk]ܝyËr˯Ph۫lP|$3;$cR;Vd}5DcJ.otBWNLh$I7cd#bjggT ګ$?Fت`h訅֜Ne*ؕ^wHiJw.GEܥ]se(Jwa3-\ln0X$\sy]b 6d]u%Yi1}u`\Gwd /Hxh`)A9~LQ^ܗ KDA7~ophI븾' htu)׾䶈 a[CQMvyxdW-gzM>'/( .PeCuׂ[bq Wv  Ϙ5fc IB\הi{= :R_񧨟PUbvEd$]{1WZ))ڱKj%pmGХ*tqVˇǠ=` A"ټq ۼ梗 7_zWTGMwaUqjHf",)H՛ZCYL4.MG2V0{ )+BOQGz"ךQ]ND~i?тtTh o*8NfT,օ^L~lP2qܘ3G>! AdeoqZ !\ozԣӖϠZ!]d !KRƐ} tl?%ÔEze RBbS} a$h8k'/$8qS m&ˠ\ohOd/K&P|vB3Z {\Bo[dfNov-#y{ н[tbYf$HM뭘H:E0tBD%}5@9e^_o4eE*C+(rcӺZ2S]1r{0&*E⌄W5Ͳ)ˇ*}˝10͡W`=9OV"u >zB UHP1fy(FiI@-5RhJqF ܋|)&} }:1gPOem-4fݳu)]i! n9>aV>t^'m !M'VY'Kyz~*ܨw2G`o<͙0”ޭTgݜFD!$6гԬM"8(WgHz.æ6 u'_yE 4~m"ʿB€a{l+ 5wqՈQ "ܢ<ߴ}q ԝlk#HAwf[bSlq!.8 ;AC 0d؎K=,$br,a f!=5zM.]$ZCܨ)WCẗ́uמ!Y_(jNܧefAyBvg^o`•eR^3I"Yje"$~KAX Yݘ,*>K6gMw?sc}x5Pcˮ> Hw8љHyqξ@(Mns+OMqAh!RH[by;?nI&oCB s ӿjMw1+M?5И@F[V)!?SvcR F]ހ?F%z0:A ,vP'bp1`")~ܦS=/sNZd0Vz5gs17cɶ-4J! HX;e6*7e׺LI<+xbqv[3B-v 5S"1;(+?:^t;GݵjԻa^Ժ_[="=8-}u5q-"~!&qKOMa&]뵥,p΀%@c7k|Ãoܥ1Ya~VPa&ssӗx}Xdb)?|MoIJGO_GW;_&+S s pw$6;N[s (BXn/"gX(Fb} K(q`MN!(7SsOMwPL!{_n/fxmؕ^2-ৗ.m? \@qVS'|(AA@>F*":J~ltcO} }9Whk}_ @XצJקaaD&~6XEgQqݷBbj%`'3`g2skPtJUT A*u 4~5j'*l>]hVz,V_h+mXHqԬޚ5k*M.,|~|y7q\ dcAwIAҥL؍rE..ɓ/됙*KH2ߝ7{?*}Ƈ C'/bi˵ul'.y'v8UhmyppE:$>11 !2Ğ=Ȥ1c@c;[F;t= L;Q\g/ύx8!=o]߃E 3ഛ6-a-OQTl$,X"K}--37ڞG@rS w0 RDmNnRL >Vrwsʧ,҉aSW6[$hL&QW8UY&Wǎ6>ӵ F>i4ssp% X[>?<JAQVH q01!wc-{~kiڹ,7# 9зtL>~ y|A1.!^ƾTKihr,F}ylϳE/izAQj9d냇Nl!o=9|w 0G̞V_`nxVCV'!EwpS5L 6WCwqĢݍ"zqٶe7t-j{қ&)bʔ6 *@{f IL>y~\P@_ݫOU@LtTR QMِO{&,St)VF\ˋ|qe5v jܱ®SjMMQSrE*~dfJc1벩,O>q"PCkuWp_:V*@Rc}&x-/ k&ׯ~ fvn1Sɜ+ 5MOu_AEOzX>hn_gi3lP*\H>\>Lr;)tV$Fw5 #GZb@*2ֹS c&qC!9c@ ȹ4%ihOH9c1f@,a.S26S*b4݅Z_~Zj٭-G6ΘzCQV-N&rɕD8\˅ɆM__=06:ABqJIrsL$+v?<36'SPoKO-"u6vJ@x…:BdE!AyAk?"}l҂i\J\Q:G2  Z(9؎XF]ewY"LAMkL~y_͏ ,Swp2(R_)Hi%ܠ0u^ϯ6RJ׽Whw7l`ތ-{gUFwP"(?e z>YVR&isP<${ar+=TCk\@ãSڑY+*LNVli)}m^/RGv5R4͡-gpbueM]_Y3:$hScWfI^-36y1%|mz|wx0h A8 aw&V|>Lf.f4ׇc8]_ސ{" ~3A3ax~cxZė6SjCɹVc4id™}=TǦfl2:mz.>:qy ieA.n7"!//~&wJێ ext_Pgc{qQ3s^x,lz[+b#_:wDMu/pI$/ ~U;Jj[6@EB0B.fJ؟ooN^p`67(k/Vz]jZIurM)O(tAޫm؀X 8RJ9sd7Mv ԉ8˚Q@. TӘ@pzP~U8^Hpxz;'hÎRv q^d r!P/oWEnc8*`R׀B_;6!5M%9",^\Nntm3NU H#??߁8N!`IØ1|ɛm;msJG]+*޷AJ(>_L0#ٸP+ zTd< Nײ'|wդ 95RMx]׽Q:^"CU.9b7*eǭ4C*/_=E1O;T?Z҄ GF섪~.۽oB=#-M)is쿩mD`M#-?'GNYiFT0t4# h`UAԣEYlg;<*Zscz]݅d e*-[Uɾ*0URṪX |Pdp\jK`D U u}u`֮~ A`sb<]U9Hr#2 F2<ĵ7=q/ bjAU4g^xhd“bbl f {P+32;]}N6 szZaD ECSɑγX> 5.KÖ|fgwsݩhp7&c~wJ~ZI̭k~Z.ꨚH6"$ɓ0T7)֣|jyy}[cPp~_+hZ Phj2N1S-dGeV2 S9QA`'*q^?E[c{Չ*.+'lEF(mn )q8`~9Mkȳ(QFBf, &6yL-"{=:xɏƢ {;Q`-ӆŏ@JQ U$ %-gH0UZt^tOwYbwnf3 Gv&SX%ܓڈ򓭒A^|qv0B:n}_hń.Ok ]zRI..Cˉ&+˭Ao`7S;)wH.wYw8(lE^O2JG#-FlRr{F.7`Hmɕ}h{TQWl ~91DRC*->e/ÁΩR<$E$z;2boXُymS`F9cadAdA 8[:Pb6愡deoN!c {T42X `ܞm;^?zO2[/c/TБzY&a eaD'7~vPXXpM;U7ej "4 흫(X9λm;'/_z8 C+*5ZZ^Aslj7^F',T籾Kl$fJY& lP7_ iejc1$t#$YcGFfQ2]yM1sz;r ^b,=bS]7.bk&rfӵ_|jR䎨)j/t%CKL֑§c Il>HέбE𬂗=l M5\TZNo#fȽgy@qwʑjP9sUzďRYUɄ_vsx P(Ӆ)p4á] uuFw^85x"C.\S*iR]D;CɜIA/g)~>Zs-E2&G>JAқSMր1hW~YYKc=cŒ9Ai|5'li躲8|/BW+ hhUTk-cNk^L"3/^&QR`B +IV XȐr`r6Dd׏bFSSXы=AB2#8~T{_hnTx*_p3h/}qIJJYJaVʳvwۮe/$?]̄/d0r!&?B:L&h]dQ>2Wf j\L>6_]iAG;%Ix9"A@f|׎VEYZhU f`yP+y`yj\Q'_ 7J6Ւz 07"1'0GB ˭-Y,}m =)CͰP =^ц$|ܱr\*ǥ07״. XݜT1N%=\\J;iYZq)&L+R*o43!ܠXm[Uv|ɱH¬Ԯe' VFTUy}( ~hhAϨQx>~by`goq&x _<9 ƷOzqϼ-'yY.dBaU*/@-$&/m+seA)PYe`", 쩖y&ܑ&@Cѭd%̴œw#e0Pg ǗOo˕M* %ZKٟUaDi`-p% Iwc>EroԝL wqKףioE*,81DtXK̲;:aF}WW"?qQ:7xnMJ=Ae_"CW| peRϰMӋtkkd`|5RyѴ6Lܱa L.عDW-Nǚ{̓RN.vrY%ٵPt*v$|G#*FNC;VޣQs `ٌ_CZZ=U`p3/Ҥħ*U1" DYKD}IPډ0k"CE/[pl{gX+@i=WQ{)7pKp)ʻ9pik({Q,q_6{aÔ2)UF9AhkfjX XVpIK6K-Yfbm8T!A~BnS -L߹I2\ ~sWXPSAcHL5nU LGIux hPw [bAsR|mt.#A,a]!JT83DdI(8\!7VI/gϹvXQu9u/"Ih8l]iEdi4,Ve %bPbVp~~1? ~D/؅ʕBXb Hgt;Q.D!/*1TkmM&I-ߠX87m8I>pߵ-4|s: xq5BeI< $@ƣ$_~$?l!'/Þ6vl]In?VjS|a-tz3SL'В;^1h`1?,ABd>SN]~<Ƶ@Dz/:Sjj>*B޲&tkbh+vG2,<Ǡ%SЩ\Z+ %`TP; $`ꉈE I֢Q!PuZbO@?+>Nض3]6&xL' lD\NzBm gc{ _޵YL_L}3-E@P zPg**^VtGq.wMSzCdba온3 D7 E_Fa>谜"mc zZxR`mn,`ϽL\[.Ĭ SiD!cl, F-ky[p,GL%Vv,v1PSxO3aئn6~6H+(b(]jb'T λn.~hyVH LI&bDIňEl69 t]gC1wC nshݫM&.+gf,h?>&km|,@0 /E=mg9p2![k_rD[R$^$FbRlɟ 9 RrINW݄OH;$^ c&JeT mFl?V:&A˓c2TX<OaXlR!s6O]TM sw6d|5ݺJ2WFhz;vLU4fTT@\\ sm/l sRfhW3 팙/km]egkmgޅt 8࿆4QVm.},gef:аŗ{Mr]! K,Cj"ۼc5H =e^xFj{b-T:̩Dۖ#$uGjFqV,笮?J&WfȈr fXʅB5uzN窑`JpF)(|f ݰAo򍐛0{O˦TQv v,f!U*#q2S'Y!nE{n7}K?\Wg4y`$MMM} B=6 2)R3$M?&Ȩ+Npc*i[<CIT^!C}s-4Vx0ホ *5"14#WG^WA^KPNM niJ+LV 2] ^~-H1']An:wF_K A d!QXM;J#[ܥ ̩QC}5@đS2R(2ӥT:f4M/iq$@j= /PlOR /: C:ȴGzo"L|jU[Y \Zܻ|HU2T>L~1ƴ]`&=%TB]Oka җNpyN+Nᗣq6<|jQ`oibr1Mn8Y0/W>`,ӮyB1s.vKԼa8ߗ%$ ̣jnl%_@ f:c2T'^6SX$A@}g^ ( kF_dIĶM4 Sl|v٬uHWpg'Wh#*ƒ2.Kk;fD~%;>OpxzSB@s,z=E" ~aknv6 pOS⬳yh{ 5⻊2;.,~iF6~wj4=\za,48]4φO}íb0#Zi%#UZ4XSuR6lifz$?K,#tB)n4a/.Kܪ^#ga`@m-&-!CwJk,KSq M:E|l$/O0+ePI&GӮduW۔y@D+Sד79/9eHG7*VJ1 )gϠcPo]o-sY\~W|$XeSRܦ6 aY K_,sdnh9QK\Y%]/%Èa$LMr}v䤍nKmVr)k/8~ 0aN͘K[Yrc Y ;^OgQZU9avWV%0KLDo~i!dRH{kػQ<<>XZ2=b b>f'Q]D7Ym$ #[jܝcqN3Oؓ ӿATSbt Qrq$dT4g RF GuRš,HՐ8#y_gi¯@G}UC&c~!_ӠJf/2䃁!פ%eLV%[ǎF^C Q<ar*Uz.^ERqV|$w}ċ+ً/^,voX!i Ln<'d[v. YWy(AA6dڏ(,$'H Ez7 B8/JM )Ixc'ܫ ϠҘ :h*plc0f"w1i8oQԟ-'C/8Ya{Rlm[+2Z;%3 `j,~FW,<__LAf5#U KɨϯG0a˛PH3haI*y1=&j<}SjyLVBd-˗) U. ]p#ͽ:=!T\@qO@u+dMk"96K &Y(E[REe"]XH>(FU2Ck)YX4%ܛTQ'ư$޵q:S҅!Te^SJI֨q /$dB.:@@) Z{>/Gmu%~+__=b6{n$a)i]-(rWtN{T,lu;|]y~P1'wD^\d0Xt6+~T "P 臨do?ڬz,`j̈0c^S3҃Ad`)ϯu'S_5V6Ս3 \f~zq<&!G/8VXB*|T7j ʀc"2׬ݫaD$EŹ|[bݸ.ׯrl֑PbǁI]_%D34u3HQ5ןl䟠lo5^vy[Oe 6ޣ]R>PM/`PGȧm4C"l#F({$E$n"}]i vLVf\An\FJEkǫhJBN{1tGA_F'aAg1(8Ŷy H UЙCzJm#Y$u,$pi>RC=$:lՑ$62LK%d?t<$J8Ӎp39dٓ+_"|6 D-PK˺ԏ0]coeX[J0Ŕ T?^PBPxT9ao}sh\ yw`Q;Kش>ڦVZƾ13QY4ܣSc+hd&3*ͮr/f0 ~oy0@l 6Is܉&[݂Y\ٛ(3nP%IDE؞4ٳ6|F:0ɫatу1Z!]W=y8٘fJKم=Սs&ΕjE_um;pݜKq}E~\dE F!ځùqy:riwi"5ceiWjEel8=m)5 p[Cn,Ă j+y7RxXw|7}k.gx*u2꓋4:HĊ߂*AMYWl^A?, ?҉9Y1]lYa,8;Ao+{~sp&h]xh'mWγ@1s-rewz՝,H>S\7],7wQ|9rҁdpZ8NfI}wڼul*)]5PG:uANvLi8-4cC u]T!a4JPS1*sz~H[;%0rۂ0k߱;WmG 9 ?#26Ʃ#(\O_1z<׋5 = Rd$6bǜI~?:EEWti΢_!_/K@s" ]]fM\n⿎l!>H`vp]X!^.5-P=AJ듛>NEq$[2ѱ,APb_gQzDJs_n?@2F3MEk̨I?{-JW=NcbfojanYK^I>L`bxRV^OVQ鞺qŸ7pKV%Y % nB6("]Y|EL6[`#bAY=xnbOgC%](T^bhEZ/{0)J*/;L!% TL":bmݻ$F2hT[ Ԟ ]ft^0[Y? hZq+Y޼}\в}-Gm}H*(zfľd4 Ol)dֈ,HFI>(|R"?"VxO :.K/Z*0V;;9I{,T5Yל$v=);‘Rñ,S4*NICQ^)qe5Z$Q=yvLmyLv`^T0% P40퀲7/Qv?l+E}D4U|>"޴gBK]y5W &Y9zNbX%q6ĺ*'Ԛw2>3 ~jŘn7 ؗkG;dxLۗAJWr|tnܗޒ m8Dk!`iކx٦mbbRt Jkxy7=%q.Ҡv/n}9XA!x]+y湽(粉N#{{;Qe}*nj!HJ ]P>Vѝ@r3#> *˲fz ǛC)I(q9镳|{daa*KAKa{lcoͿORo8ț4GAj,h͒\3 Ioj"I}r"%^z }| ?^5H`/A3 !`pp0ɛYa{TB+F@$嗝?)D< p\Q .قαHăy }$uXX,"P62䨰C1$0A[9j9_M›Y^~v~fWUPA%zpǑ]|pu/ozd~ BѺ:=ͫA}(S8@>XV}(kSWThUDw#Lgꑥr'A6&}̳7 8'St=zg!6oj͢ sS.qqZ4QXgX; QtQ5t!%_7`V0e6_bެ8@KLE&pa)#M;rBςVO4)N]9kbkc|O(H ռˢ7AGpcjy{FH۽@I/Q1fūLkͬ jw/lB~@37h-n!&ѷns sIM#i\58IP*<]:yvDZ@mёlf'S亭 sr^ഋ d4F p9%:W[v429@RuIװ}(諣m ~,]oPŽ^?dh&!O+PȊ1xFUX}xyHq=xϖ!%ZpRk%&+9[Cd 1$ZѧyY5K/FGaVUFܣ1r4 [Snh@F:Ɖ[}A*j(f#ne#j`iiv W|B[k!DJF\l]v%RRLP$c8恫lo1.Q3ws5~'z#n;0kFP3ѭ+[oKa!]tp9{Jc0NwG{! *# 91+* tuʙ2?ջ~zcMg,P2VYQP,38Y1|1hBIж?A YŔaC9lɪtN^Ȣ`Kw¦Ϙn‹ }15O92z q[yY{h3xY3M%c7&wzٙiZU^L7#vK'Qj-R:"w^f76@êr=Qdw#2Wĵ.g}0H&pۧ/K~ŤxI6k?W|MR~9p*VqsavX9.[~ItR=YGQC c% LՍ ;%<(;9}^b2P++Ajo{3H0!ݳN"8NyG8_2F VE)lgj[dE-,YGLHH6UuFFYڢM UQKL昴{DN}ipJ!ԻU(=0=gXm@J)fPեS%bV`{*Xwt >dE'Yt#x66Ru간'K^EtL:4<`.F/82?՘P=dX-NW{AA% /dRGV`s,o 6($^K^/P{J׷Z_5g!Z)&U55,F ^ BS*$}g?cn5$p#Ӂ|XO).D 5!~h?nLt^'~QZ9?cciyMT\hh$l>6(~xRY"I.TcfDy$ԋQJnҥսMZh<+xdvm-s "{oxDiFG]W/P$kM-OjsHrJPįsK]?]¢AjcaؐʒD®ELGrtaKt@F&4,* 5N!L8`"e" )<&T `.~nav*;:^Wp45e^V(c*":ڣ#yF94i^ZǎEi\yg_xkg?yl#[k3Jc&{ـn7o |8/~Ur%8X-iBZ.i콪k;>Ry8>ϓTz$j2aaZPEg'gB&K"e|epu jk(@\.ѕC,[Rw[o:iߙ`1hgSLJ]!Cp0L3QĩSfB0a֯o81bS$(Xãl6*<@%Q^PZ4"lx|fEN2ͬr vѕ:-suv,!/|*<ȡC3$K[m`XPOo&x]\>/=]gmn8BUϪyc-msBٵ(2 wIgr ӫ!2լoPU2cUK/7*ӏ.W,t휁=n{]-6 G[(mzUn sf0q.{^Յ͔rT1FPlj NeGResMjaD+0;d6+4ɼ_< dg)RjXAgjPQym1X-j{1h6r9, J-sz9V:8s*Вc7Zi+fDz̤ =MyEs`7ƅmq&a^X]B27)-6auUW-_(ަA/=}%V L<_M?]qd 3}KB ނE9v,0Pt<gJe@y)$އϝpQs{P,bC PЋ!w37*jX\,'d*{Q#TZ_TmVVg+(')㞅Qp7ljso$xkHF֍uVw3ÔԻׅz1Z9&=8Ҹ#vա=+[ rBKĴA,&G+jijA'\g A`gLt-{YV٫pՌܱv,KT]wg&N>Lq-{S}}$-N;mX+yx5"O9أ I @^[ <ͨsy/dd=쎮,!"_{J(#`qݶ1![c|PKjH陸5cX 2JB옗v5| N0>ηb 2$֛+$<#A?<$A1PgGDweHFS>lk B9/;9_#XQ6㳼zSJ/%eHB-X΀* +Ye;HQ4A\ .e՗8MH%im&n'XJgؔK녎S~nSB>7GG RS\}5cNI$ABOt#ZZYH, "+==6;*Sላz(DP4VܯlF&b;ۀ UtXѹ?!2$]q/39MA?1řolc`qHs HYY"@)[a?!._5A8a }XHI} ϕXjpnpDQa1Xxy?f`=/s?YH}2MVf@7?e;'4@Me?Lb=v2K~t#Q ƳATK}=Ǣ$}umd¾ml;*_⠷[| q5~<Қㄠ'ʟU JŶ;*D_Y~'a SBZXjs,yĐGd_b09?ewqbJry'|$wtB٣FzCPc)TEEDN$حLgozҽ0 I$Kkn.<^PdLH]6oF7lVha:NUk J%MF7|Sq0 pFhS*n7gTƚBՀd>kZ>rJe͙sK,[ ϼ*;@t[UK1FDqVM^繸Q9oȣT@}(X!eiˢEʜnD:vga2\~SR?W)׆f LW&كkfQmŚ㳵hzA]cOGhoԨ;ZGL`vW=ۀNyvJThݦr3\@GOME=9 򬌂|!TT~uE<`U Qa.ʩx+໸Kr!@?>p0߿9ffq|w@xl2  ӹ[P[ +(n?Z_} ѮXy7"SvCf|7p0IfYRgp v\64xzC\6/5ǷeWHrW ,Yկbg5`2<0~v:8 igj<3DY$;ebҐ!U>IMG$Vn^Du $`(& "Ê5^4|/_AT=lv৞) v!VAD9 /1mÂ1`3Ttn: .I.nMKƂ%92+*7({7t(NBMY+pspĎϐ.sJSw1Rp)ŏ=NOr/뻾ˆZ?ܻمA1'v`:Bky̛Ͱe mnv&ʹ\TjB-6eqJ\lNv%\DYJ$dS5 vC-W\!!{&; #_ n<{+PK*ţ_HyF8ey?N;~a̮E c[~d2VZ[Nyq'7j0l+Kce&-|<*(K&گEg)<C[W%6ɫVNywj~Ip^S=OfEYɭNժJkm怞e N;E+wa_!;W4N]tG_lxSVap@f>aaG$ϵaS H@C4dV =Cmb 9zNC)Pw2س䴍fulηYK#7PmADiʴVhQ>IqM8 ʼ*o)=57[o(|*d=0V)_f(*"emPD]s-~}l۫.晤`#8fpan(6?*j*<e#qiDxr >#(yL[uG@ps'iaJ ߟxZľܓZ;ꧩS)2V&,XmN6t`5z't5E0qbmF~9%ò>B mJ5ascb{OϜ>~="cRy}0O:jWЫIJ'M"k]mG5w-GM4ٴe,ͽ 0ҷMMپ^>Zg)!-Q/COH̚9=hjm| vKlbgLҩj{Am@dQϫԚ.2hF#KG ^y47,lDIXgΧʜ"eU]tHkA qzOS:֖6"Ʊj׵) by)НIx$_CJ;iSI w{C6<3IoF%w_$ҡQY$YG:Omg[4ޘw6X}" t5jl+)S-߻iR yd,ƂW.2bgw尬t)EL%y W7̾ [=q.1xfL*G3uG Z=odWLQa f}9Z*R'ra]/VL:zBI[ Cp+YmZUS0Nٖ qQ& *bڼ%³xMB4ʦQ7%>/*c*]\/ŇT:5?g`_eDK:pKH*oUml@n7wxW@\)SSW[9K~AwktGf[HQ҃ wv \\}VS ڎ qϙg:Eq1 8y0 != O{hkcc2]om?q("zoQ{;A-ʰHRTan\6Ҵ[*]Ʈ_ 86R!w4B}5=wk Y!7ҩjå'3Or'`sVfR*(,~1]C$󪼫ʼ~v"͟u']7U-Jk Չ@=|1=QvuA앜eM@:ϳQe ,@bۊvAdK{dc'=^v=Z=[`eGv\dn#T+-)箂C31XELx2<% {Pqzi 8.j(f ^=h1GCop[e^73Ґ'I]92uv mx@;$4۷:иŗpPK{x\j\l4,<;܌lzE;P g2'5q6wҿoN~qkS tR¥sV~ 5We3gPdΎH=h4 g4BCO0'zptQ$C\RI PBAPW-0^eY{WSd­o}CEaݍU@q;?i8|8%B(MwC{F_gBBT u?M&cb[WA=@| -2` zoRӆXNфlYY6V]B ='s:~޸$-ܿAaL;ݎ܌+rX; Y[9#8<>s}&_n14mS<8\\rgo+cednLH}62>L&m%ƥ`ʒY;ꀳ"^kK-Sϧ}3ދrFL?z9gCށK[~!oil3 9yc-Ի K9"/a1frsV?( ΑcS4uӥk2%C?3|ƪSwY.SiG3d5LjkizsoT<:BdxP^!˝Y> 6<~lB浓cҿ >xʍԸt•Ag/ůfΜR:n<õsB6["d 9M]:1`4`Ӄy/< 8"K$3:X2GaݾT^>oO\K}^ VәT\=nAb7nB xB7Jx dC@}CFF;YtaRQPARz@M}mb %=- afT"R$LFJ&fDž*BCD4:Mx>!LD׌y}bN'}o>x&Ӛ%5RncK߂bǖVK6 E j%t"_uCs"ǰ>}lFw<߷,?Ess|9Aq|JV4g)5MRl]N.uդ QN3?̝JwBZw1ʳ[~(0p&CƏC ňzBGFÔ0I%>K`k+w(`Vs!żK {H_)=`GgZ|r}"XAso>76wum AqgmvV^۬ b?ځ~Od/uLHゲ9W" Ǵ>fiZLemi9g/%3 /3r#R4A>-^;9n˟V^IU900`[(Kո c˖ROAύDVY9\t&jJ*K][o% Gld3ZR ai j.٤q@ ub zY׍%@1Ht˵˒{fAl6vGNp2G|ٽ. 5[,gv\2" r忯V^DJc3 Q䧾(e wpW,yI߮e^@4:#Wg8)a1^16Z(ܐou1NӥHj7ZV^3& ٤?] FI}PO6߇7pe+?W.eoEl5/kڗYq |SY!m(NPZJ cjG0⹵W8- $ZV 0sl4=TMdN\^$휧@:iIOJBl48ovD3"|I9'##|-eoJ 8]_P.&rbnj= ~N]:_n#u".ʗ&$\66ˤ{\Ԫ]=P8]xe7`H|Y=?~IG=ABTSlgqEh-6 7~T?W"9"P)"splE, dQ2' o?+qdmp)-V?(#1YPes2$9&uCJ\VZ "Ԏ_ ŧ+:K>7]Fy[4Kv7 qr~ !v(v=^&h9(-5Ai+lb0o2K7]X>$9H Cq2R`m_.<3>k@QTzA\6p~N܎[v'Yrɣj=t첿ۢ|{ub6"%%=Rh8Bo,פQ[F zf}gRNV8ȵ uwkE@|Q1Z)f6(G_9N9Չ4)}yQ,IqdY8+ 8FPJ(pε~c޵/ZO7-BDZ6$i)s($&oeIXk7 J3j5A܁s`!m=`szŽTht^MD-~8v^0TsuIze4c\T Yl͞ҍI٤k5U0e{r\'_q%:pJ$o[goR))&5‰Gꦣ`1З!Kxᔕ#Dخv 'z>.h~[.T3x4Œon']7 }ܘ\7kx('өrkԟh)`qہ{KCgV RjD G{~}6GxV<nVb*fפZF)Ew<DvYu_J!v p8H`/e+ b kc>1Fs,q=IԗA7lzhSR%=hxso!b=Zek"?ȁF“(m'$`:8 t0}/Hmkf4@ëd#S1TxOl#kMw8 +;~{ڇ׶0#u˰c4 /^S>nVVS&=1xwΐ̑N?<'a'겫SlhC{[ ` ؞^On*@'|z})i51,*d#KO4 E{`q܁~!A48~˹;$mV饴<.}gc2 SWZz2ڈTr?ڋjb.5oYUt31.ǜ#]~݅,7D3 4JRDӉplA5x(vf4ES۸;DWw Xz#R-l"nJ5}P֜ 9 ªU`f D~s)W~_ܹaÞX>$'Nع`j"(Klrُg[|I1Q'&n1תDh 5ix{DOkבtM Ok3y[sʅ{]a? LZ2%e?qO ֘_ۉJP!VCD.i|D0sS"[wMHyn7;/Tۂ-#ku8wV>Zes|H`>aAbN&, @-CC i*W BZ 0"Vg?|j퉯z8J{[iKe:*E~}[@NIk$^ԗBU'4V0%VH6̳6™OUK}ke<]tv4(L :zX+fh|N囲.ij1n>Gϑ!lBkЅL3M6cx]&jc8R7bBY\wkc` yص%}ŕvMPmH#iw?#31F2oƸ,c_jz)V"3WnbYz]8>c-V 9MhD8F>[+.}Yлk^]CJ^ mlA gGwEq.13rƘ8 \]`)2@ g J㭁HKq{7NO-񔎯cYT2x*j; Foԧ֢I1s'beQVF]kWVҟ{WN BŬ\Oow=U>.΅*DQ_Z:[Fߞ[4%_-ӌ.BPtC{/:+q/社Rs/XBb*WʦZKJ3ku/^@r-Z3S( zXW6oS#`(M4{t[S얖H|c+3 u+qv)^4 b\\ғ .g]@BmJf HSfC,lΎZ۟:GV~_(& \}TJHCHdf06)L)h-Z`ˎӤ%#aC "r g ULnu~HL1.T628JVAYh{}aD`M'A\-p*&lEtqÏ?kW7_&+ IM Xӻ,X {a?xx xHsee$EH^`&j%TMvޢI+*4GUWWlHi/DUIM~j"X2+=K  Oq<+:84P1œnGAj5}10wK`"(DV($\=ki}Y V &VM@#N(aٕ=dh<ŞjzT[}i޴Zf+CyY 8dҝ2qIX(w 8HlCXG{sC'լ#:(A\`t 5Seq<_<蠅LϮ;ҥAgZ~VW]7d4nm4k?R.N=ze<MK=M澹F % ͨ|A<8^mf~79B% ݅#?e]R^ u_gh ا ,uɄ|'؃P@ :c~>/c45ѹYU]!%̮4ujHpts cM&pNsI;ASMW$=zw$k5EدwZ)%lInOO<| n$>Ŗe7~,IBk3V ܠ_ 9ܾ+F6pL<+g_]V:0N{똀!q Ny@vgH<ߕGz/={{n8G-å0maq-ӻ%@u-^A[+!R>Hr<c%ES^—ƎAPBނgE!ʓ PNatxbxئm0GIUЅ2F+b*'gӟI,0Ժ~M1lB[.YTiR2tN? .kfL3=Q0Z2]ox{7m?<>6RRer KX2fZ#֙_׀b+2l{?2(] a\W4ߵ`u,Hu;"̛/|F/fM+=H ^}_)* Ve4zrJ~^&as,^$[nLo`l_dFx#/XI3pWZ_AJuGsEnr›u8S ulmrWpQg F ky@|ҵwᲷ N[ȗb (HHaKSgN}@ /M)8##a:WL &@ŽdW@Vßg̈ZC e@nL#X*ZĻ2}Pc̓L*Xǚl|e"xr =ׯ^Z,ܟ}ˬQd]fO h+Tve~Ǭ &7«9,?12e3jM ` /26HeC]NetЪ wxSa; 3_ܒᮀqa"NH.yAhs n_Bm-Ӊ$Zڃ@AF m:Mk3*ʫ(Nl$ >/xF!+V)@ryyʲV-\9iÀq]%Ǫ_4ʘƶ3ۚ) $6T^hu6m1!h _-W}pr!:Ɍ"Yϑ,OVYw4h8Ӫ:`| EjW6Hp[ݶLw@ &E[zħ1iTMSs%`Ɇۆ z`j?Z[(-+6Ɵ2:l trm]:ӄtɵ؍B`v U]c}>56QaQ&\t{T2۽l܇g)E6u]Ӌ]G~GkkoZ: vq-[嘆TIGЬKa i[HBQweA"Rq\#4T?6[V ?;P4ju68% hDBE0npKsO>#>WmLt9L'bGt6Y [j)WXX̤>s(%JFaT|"!B r!ځ4;Kna;8prȮ()B};bs\8v!5!)8Ȩj]&rX@֌5d!-b  Nsa?O']@ѼB)r-OoraC$$zXp*q hça`"UiM+vwҺQo{Ύ1y6:UC۟`I#Ǿa؞Rt}N6{ ƶɬ*X^}С1Lrqq{-L_-QJ# Grs'[6cV6xV:(@vgCeFOΤ_:3ޘ0sBogR-U%xsV4Q?ZkNv5\uV}b%SWlr聶FvH뼮· j ~h1OÄ2eq!;q`WtK9/7ums'>ȽP*c;avLBU^-X7Tm;Dv-V:&W,( 0Pd|.Vt(~G̮Q֛A@IA{Q1e#_"DikjB^RѐGEr6Q 5g7pͯZ]U#'ZIJy] >3X6e ~-QI!FsD5Gƞ_Ծ),]䮳eh&Eq=bByLAһ[ڿ5ȦƱ2xP9 :>q jT, T1d(pYVO  -yH6Lx΃So\xNjY4.Dk;@S(x+"`&|3G:@Bt.g#\f@ߨY,%m* s!2G LkzP|uRK; t'^R傥pŒe.]1:X8]ua>I\R^SMi1(;+jy/W$c}uo6<$ť)&> Y6uk8n kfߖ覘zj5gYb[r"/Qd]?b ڼbObpytZ˛nu9ЋR̘@@k|5Cx4a~œ/.(~)[wqB'Tx@n !flT{(mny1!/*mU==}y zdO*;0=,4M"·s:+w1Adc]BB!{NPE!rPIVV;F%G aY:g:h}}*ƈ9P6Da.JLTt[χ.D:w"YNK:Tv.i'0)%:H iA;8IcWXڷ:j(rH1(^S|21_9zc'hwdzER >4nKd!K |߳YS%Qd젓 15jxL+ )]1h5#[$hu* O1~E\s߯w/22;[ϵ\|a1E@2F8HIeA|­BE[ѣ20r{Tlp"֥MP\xӮ925Wbn* l[qٳE1:LdSϏHۆ@_;rmfj a92z>}dolԑx؋-F "(c$r x+a=|"W4>MĶ gRA/J NLImhT\ѱ y)Sյv39HDJyJpzbJ{&~^oC3$dܜx8FsqT46)׸KPC*@ɺmRU6 v-jFVgkS.g5%%Ğ|Qw*V֢@!ZN66`̢C4jLL>kݎ+ɥ;1dbXrW D,i8A8a,sْMρP)pv)U44 ӈ~NLXQ$!S>*?):O2O~UNh=_XqӞיhevjBP`HGWnWKĵb>!R؍c+-wEgNIlF+u12{;Vp^,8jvx `y8rAۚ//v ЬyَamE"cC(?2x:ӯ gt6*jE^" L,! -4L)_WK@Fw ]./mͣUz#XE̛by~F/"9<&PV`3",gNYzztT +*⟲P2KÉj_v5kM#΢f] mq _p'(I8U:w,Iıpf"k `hVs XegYc &L}Q3JflD` v9}2yB3CȭQ៮nҊ*Uީ8 bD2jA妲|śeΨL)#cn؛Nz4 ,⬘fk# /R!e Nw M#x ̅s2ZZ΁C97[ud^4؏%0RnTŦ`6s5Wi& F@ޙ ?͌'GY:'HR<`ދE'(ȚD&`Q3\jdۮ;] z4 JKÏ;OY` Y(ޝ""M3!ym1z.T$!_Kl@à>`~R_̬.v Ҫ'2Q[SB>XNt "*!ƞwꓥyJR[LQ9Xk7{dI,w6`m[pV*E>X$Ǒ>)pW'/WrM =/&6!ZbC=1$f[SEl}#c% ߕk@PEe控c8J#ېIR3NkC7;}"2^q\~4/5rƮ!nA  >C޾X>Pg@[)(Vti͉ 0\;v",Yv뺴lAUqOGG ?UuՊWb+N'J~D_0xm(e`ٮ時>%qW_z=j`xղe>LSs-2U〈9]Gh jGhWT/: y7T + :UVq_[~MG!\=#gDu4$ e,6cܻt2f.u nlG.Bq fv& , fC*-%m>Ij^j+l=~o>*& qCnA&2@]&\dmC6T]uVW|}uG+8ƚ=rBZݴ/=. hoe>楄? ~4e8C8ȕlz@)d4wǬFht_\s<<ž}}-_׹u2B? %b]llhVs%N{jغEbws &W VRIэXVi. u&쯕eic[MH^c%ᔲRٶ{Ū>;hx n!QzUl45^YgI}hn bn~W%P|y$K#/{,'̃M+oxe6 |#h&*UXBL6MBA -fo32Xzp/t_2TPx#=WO\ ģ}.j0ǰ@P{!zFF=tKU;~,R,u0aj]%^oq*t5S&=AW.K{DVx̓IVgI.Igr4ǶzaA8`ͺxM<}v*Ͻ[3 432~Թ;Õ"%m$L:< _ fh]:|b6XT|1nf$5?FƐ` ocAbByIoו7xuy͙NiӒ~}qioySJTśNE[BIN}FC); 0N 7ZjA$O̙VCfϳ>R?(/!xA̠J$83??` 79ۈw?)l(HZޡij_㯞+qB9/<;|z:@D^.mA[vIe4O{[A@;#<k5W.H¼bjW *)ƃE#ɕ\^8hz2fMZ B {A+I^%N}zzڱ̍tIgf(|u)qƦyXT j-oyV)̫V!֤d-š{U`_WxsS.DOWSq͑@-Yq5Mʡ3'mMZ34s@pn.Mft l!Z3&DA~9"X4 u`Dgۍ~I^ <>iE]+c Ѷ txo͌k@Yar,`vN_>KK *&>-Pn*(n)'v؃Jm@=${n?K(\*cq2jW(,"tz uӝ>_cz5hǫp)增 :She.e21!˴p%Q2{^|ӡY, i< (5.#Ӻ&5 ?eOӠ+Q)qZ-fZPg{ Yȥ+P@gbLv>}Bxh*@2G>F0fv_P~_~R=!X+0[ ŀczd8]pՁ;$*QI򧺒 i%٢Psx96cUS<ܖC Tꓘ\$)uʠ˦xCE3Iz o8+#QX6.Rf3jC ĞxG t^Y4/7{5/-_VD<#S@lI S㢈 o7?؋r ٘l?׷L`*M|IL-L]>̚`0,&ͫW9gSؑfWWsmזacA)q,GSR1OUdȬvܶDͰ& 93Our8\_қӴ2FqYhWSm,)u?WpԝD*x\y(Su¿ZQhxzf|@pXφLdž3򆎾T $KBC xs s ow" UIcĐ L@'6!Axɶr_6cx ϯ5*ҳ& 07%2Ub^#_2z)tB?ql_Sg%lL!ۡSat;_a<"?Nݣ8?Y-m~@ͻvs~jd16X?ԔVI@06^XaBʲqO~gBt[Tty,AEeR*/-)xpj Đ!"bqTBӎזH;<)⟙Dk8 b]ʿ8>Jxk`;Gq4a[蚄Pr$EbHOFN@;/[铦\Tl"h=xvBj6g&/V=i$5.[ʭ@$`/Xyp­tLw.佖!;yù -? .PdiWlIGCujg͎[[*3\ަTvV+`أkv&4p('Vo^U>U&o蕝Q1V9'_(h?e%!"s~EW`_O0d<^#tql ŸOBѤqe ya #X}`-k.GbMU` Q& ȝ%2 Ce!+<+^x6 D׎tуoi^q]rbQӢ鞲=_n)j(rDʸxԳy^.h XpI5;M*f*8:i7(?a/Hilp9OJpP[ؐAk"J)vǘ؜:LѾOfx'ub?ڌ,Youy`i$uWrTe8 Xֆ%X-H9UTie$Af Y W)4NI2@~u#U)'Q<"ǁ9J+{unyN6F!afޖvV3%ws~VTڮh @/8z -ۥB\T)pdެr\@4;^]WM ƅF@sCRgƇy^# r* ׵OZ|}RNc\q^ԴOGK8eԺCN8O2LEB Ǻ=G0Z@fru0= ^AY[$ezDQ1,j5\f|d6}:3C~Bua:WfsNqPp,B0r\"É_lAF4n=65l=l\duߠvIY|lj\yO__]\Zbi7]^i] 6WtK<+Tm}3~VwPv57M-[e sgڞ3M\WBn+$yvYϏs''<+9z <،"+Q:hV09y?W \'Ć5EH-_㞠vO:k9&$v|PcH.x^Kq{!W̴=Z̥q;S=; !vb7"~ߦK]Z9:J3Y+H#/7.0'Ҽ/~_xGla\nD4J&ƲqYNhsU!K֚x' _.zyjn8F;qz^x5$ZQkNƳdt 'pޛ& X,_߶o& ;[ Ae~[+֢Kbq3D65w. sr: 9oګ"vxt}s~A>xw>e7x#nLP6LFPUɌ/)'j!o#᮱L~ouƃWl`»ulی R8!93%jgg,C=Yj )T;NM>F*G-Ū+REΒi N$\!)3Gst.ׇ8'Sͧ'd`u c$4[ča]kǘΙΉAR Zf4)NlK\u%Z^J#j$+Ccv@wY:G>xoݶmro{z,wnvNVUE$ZboVpT<&azMޗe6 ?ĻZnn0c(qXZvfCVKϩUsuh~hP/,s/ ù=>W>D6W B{erB Gx\U2I^|TI[(٣%L/setJ.%ǂjd!ȽaS'Vr5X8?MA_/dqOLgYg O-N,1KF5IjI[n2:] Yl 63aXN,ZвсT9ASL+'S-q3H,|S2E`q̎[T#Xhv`+N2'ӳK~& fܦCԙAψ*;n7#, -lR 2dLkV VAp3m?s 't,y =i&"\G[XOLógT23MnHsr@p*#zaxW&@ DD>ya h"UڨVܢS9yⓁٟT͎?FVrj:))HOkw*ICǵ2JqU4c(PE#N Xa;;uzzYd:68ٗ[8&:dnYT52߿KlGhxI.6 ydT}uUîg~{˒~xzZN*cZ/wQsΑ"=G`LJv{{f]^1B9h4ytC9N/ :E~"b;֔^z|>ON|PIϧ kv?^3j,Y꩞D[}$p, l d:DOl)rWKe>ɟ4_*Q$Rt`\p24w>e\`o]'$ Cz" bDp=:J?՟b%cm΁ѷ 7?fhsGFbL{>`hȯ).+,V{#|wWyǯaW+:M-t%&7IyY,;={9\ܥ$<{QO@W'N鷰. n)7[+E rpڿ܆g1n)o"{ _UFO>莏5@GY(Wұq=F E}K灪{VQHɫVG*gD5 v`WDݿ2bWl*eoܮ^8W`E5wBT9V7 )'Q]G nlKaS;=㮤'( RuF2%7ʗG=,,'w6c"^};ʟ̒Kȳƽ^]>؝e!ݗ1@';bWNX=ƍ@-D8F21|B_G6[b*L~śib1󄨟& Z-{ՓdFd^nGwy6.Bl?L( oXIm{ #!E,:g97$$='ǨxT m-Pېuib)"'uL3#2٫6ҕqQ$I:EScӍcQR7h]'Zf6Ff 1#`SپFSO&Pdbם*iLTs06+4xw۬BKp9TfB׀~~;*Ưޭz%sV*.ȷܢ&<8L` _Z6+N2J P=efxrVHR-xԤ(nr=)hsZC O̍+\ XZ3LL1!zeprxژjXj6D&@ƵΎ?#hyi 1LzZ?c)d$yyp1[ԍnR0ԁNgͱ Ѽ4sF8Z:Ѓn}tf7ĬeMnm Ax , $ÿՄp%G>ܱL2@s-RJaՉ{b 9swH6Xt ~|}ђWyw3?|1 T\KشaVfEfUW }jh 9;m6cEtSU8_1%dlgv| iM 8 h"%ې3~;bFNbn|܅ dK<,ODK"ZOg'ܣ5xPn)ĬMpam߈JEmA&XGX?z[w߱^{>M=I:]v.C:-sT>].dmȒr滺 Kx/d;r ?_rme)DL,~ ڄtSHnr| + Nju-9JTv4Yg_w =B)\%˼I.TrF"g+j P3]E/{N9 xU(=NH}0t2B_L_2Rqe yEٯۖJ2Bt<=2w=p&_V;];Z~Dݬγ@x 6])ie}~o}YdZV9'ᨁ!ZWgqẀ7vځ R I]W*RkЯ\}gVQ1YP%@cf+p,rg>3횭Xn!wubX檖[nD1|'Þ?H-yݘE,>Q0=}@}. p$`<| r;͙'~xL>vFUoDI)7V%~_RgJnE &ͬlisUgImR4_0woLH\|~Ɍ do}L' Đy"Au}H'\ gtݓ\R.zfGWkrYzߓ3vA%tN6 ]#i9}CmZ-g&sH?'H@7-5Է|܄? WXC'z?(v9Mɓ|8iZt_WHl&/o?Jz.ߜ@0}doh~z\Z ='Eh A8@dsށ};ϦSzO2hO,r Y6ehuŎƗ;֪ld7'Z̯u#>^$VWMTyMp_T֍WUR: 3рLsө"uO[vr 㳵ٌMD!Bή1Rjq)ˢ*ؠMmaVo hz1&cnImMB&3\⻆9'"D 3҄ hQs>>7*^E\S$vDt4" Jk9q/DSXc6#[ hHY{ L>L]N|}ӦCQ]צ wLt0μdk_^nLaG!aHr.ְ ڐ{ÿGBsRZ!˹VO\wĦ͊MS"D+x0\[RMOrwe1' x YG;D{ˬci槬3'w,C۶ٯ+]+,"/¢[iKf{Fv=EnB*OXz-k=/v3Kf{WYkf{Y7^9u1NtU4C l9Ɏ+MMQ |$_A0ԓݺ5ݎudZV5q+nY+ ܝPo%8,gw #s_%J2uژQ䮎lJ^, +XRX#wrI Ȧ=l9 iΗUA"C9oBY_صk'McFYÉ:Pi]^XvN4/>Pf[3 DZ?_ ?{B8Qũ|FZbI;k]rhC3ݶ5D#yQYzPsdxWyZ$UuB4bӢB%Ǎr_viчb/ʁ D$(BGާw礛̾.?dFGAyxl(?.a^-]܆0W\bsD~uA ]azPr:1TȚj݋xpsM5ˍT8tkݛVCI@|*@gǧG#=!f`=A;9pC k=Ic>.m叒aCnෛH@`3~%S.c"D2I:As[xJFv}N@]dÌCco|'|^ݸTu_Tջèzw ўĽ@3I_mLG_fʩ1RAt䅖Y#]j-hwGqT|84K)&D$np.rrL+5M$Ӈp1hɦf~lU@a5_sP:/cHWd _OZuw&ľOd`0^ mQaIsRtSG{eV媫"Q4 c5v-pNM̎dٶt{2َyR`q$g=&Ӧ:vh|Ieܦg_>uc:ҞYɷܲz̐u$%پ̯ fϸ{e'`Y7|j\CCY@HVF ELOw^L_):8]zӗ̢9ʌ"ទ`@?`!gʳBz)2YeP?gBY1Ä%y -IZJvbMhǧ <#g O ëeSoAq̞/בg渗97VRW"{~av)=7RƤ YBNgrq0ԂלF {y u1.dN>BsEӲXu!SsQ_*N7)MEAX1fZwgnQyaePlTjT^>K)`f]W+(,hmb9h۟Jx{c{&zD5jN|zB% K3#{म,c6.G%##\p-ƙGN.Bhjϔ'T9"BC'7mQؽ k1i9Na[<@mK 82߲M)Z42 4m(YZ{+dTيQYV"QSS$u[Xyt\.ʜH!92(WG4Yd9EK YPUn2+0x$d[#; #@Y`Q2vZ>쮫 R.~Oȣ1ֻLtF\2Q8q&Nc˝"\:v^QiM<R__~nvl )e3fJ^57Y kTr=;jюu726΂2_JH5s1C@I[R&u^HRvPG_~KQyrG5,O2հr>Y< V Af;7izݪo/^Yl;A b뇀R%XMDǹAvU 34Ꚋrz/ axJ&nsOl1)V<)0jJ(Q٭n) }pLgl9`jλE!u|sNvt?3@J2Quv~J؋7y'r6}I&Y><̅N\̸҂\֝ 3^#Hޔj1aӝ7X޶\h{{6ӓbidTS;2^~ړ(\De8CUdE'P{HS8r~ BQOg+1[Ѿ A9$Vsr90͘9d/UfQe"?6[D|uD]@_6SWpJqd^fx5d 4ˬ_J;Vh6X{.=Rz?U}cXܝz)]nJa"dF";܎{m=_܌SLaAC kB]8l 4M/0fHh#,b Y\P.ӂgƪx6tESl(Ń?JN/+h;yU[\C2_?xaB w| ?S"l$9* B8N3mwf=A^)hIt C jvt*C/[hWMP=kȬÕ)LlE5F)8\@W|,"4KWޓvYw^+#ph],P 4B*x(qQ26;02<`9,U!YW6R7uwkJbk'5󤝩@4e|{*MC71K# ;t7z>Όx6%xv[خZ"?[ߢ&@ql"K;QAW%ṦzԬ>?pV%_K}8ǪFm5P,[yvֺegXh_t.-Z%JhoP!7AeÛ4`iB'/;В#E}5Fc#3laY1Y);~yf`d>?H}w:[t'd'j#?06=5\ܿ-XܽD>*}|]A8s-Ԑɺ@,t( ,,mޤmz+e)#%{ƏȼB㋼X ՔEA =Z:Ǒ" Eֆ*ss RKK.XFuS"=~fx\A _/$h{VMqc a֐!ДaU5%YQH@!X{2G*\SpZR Dz<.bBno8ٲs\ppDsHGdE#fN>WS ETG4~r:+MXB$M'ɛNP[:K I2?zOKB՛ƹOZqyՅOt SD|F ;̦G4!t1k=ieeefD&y~9irD38:`h&6d߿Ķ*u&KXj}EM M{F+H"vP`Z gVߛ;i6lq-8!$^v 2qDBR;_|g ,lЃ$T ٵ$ȗ.sR% ͫC{4Xb!dD)lȒx^BFꧯ.uxqLĒTv6;x`r, !*ʷC#e/{ nHkn;x&BdQ6QQbdOݰ2⁾御چSj__`>nKCbtuS-E")wa=Xٺ/3;sahbK J?-c|?? Q|F\E! N`kM81GQnw#LLuvl@.1W?q_w2uV:7 &}V34`g%teѡa ƬG>ߺXޫ'iz=SUhQzAǯ! +N|O0Th o&=. X9W\݆IRZ[lwC-0xtI.>P*,Q_·>Iv[|[YA8i^ܨ,sσ 7sg+VŹ]q{VU V6sd{9UdjF֪,Hu0? m%5V|p/D ~ؐR 첦Z%1-=Cu ndQ3H?4 ?+™ .;&o.f{Y>9YkvJKQ]B?mo` 02G&+ab`sH\ʜZp fP^$:Cm# F$r肮$BTY7vy@#YUt3Кx:_IWeIկҼX'M8+C&mCД;5och#4Q3 c 'NNoHyC& ưtF?lEQOeK.NSWˁy^9]gmj '2V2Zl,S"o\!iuԵ.xvrܫ><$H>%{eSp_l7f M qI^;6LX)?a!h5TjL'9-=6C<1F#B}$KAy <4Tre| Hh@@}s D<^z+k/팩XM6N諈um,cƾfl#D‡9LDq&N^Fe6y7/H"B}b:#A po43y74ʀcG|SݬL}M΅^ gKqe@O_VQTʌg?׷ˣ֫70k֕BWGku6ishxi,>⊼sҫD`.<(V|P+Nd812c|+L_d!͙k=VFķ"mhIAjb^] 0\c*f&6cJ'H;4vthМ2 0[$ىaPqC{ Cqz܅8?4Bч]-{ZFUd-h?`~Vy[8K*p4UԽgP}7$&n`PbpI)ijYUSOp$ +~@qq,RdaᠹL&Cϡ&dju :7ϸoB/ n)_)7|;[˺H-$OV$6{oy,I~~}L U!tùd[1? ^*ƕ˱350o<^ ?d?uu[we3rx$!m0":$=Ohzq*lvVNQ 6M,nުb^x=ukka5cWiR7mi#3uI!ҥ~ )fSSdQci(C{ʰsF[WNJ`] LliJ.lq:.Mm9:%i`Jŷĉ@ ŲI=ZXO_SF,#oE4K[P7d7F+R@ %15O!׳0}ο%z63 ˃M-|A?ukEq~i؄U'o`h"S<+d?{AB/'Lp&R_ġ Fyt4r3(QlrE98EVu"C{8tvpqؕ;Ռ(T4d[hvC@J$%;b-pkUA@ID^'vgjժ|BZ `ˀx,Bx6zmtWűYdkc9ʊ= ֯e1{_P *ӯ]-c}uGѿ9~ۊAA'Bmit[ge,;)Pi"F-a~y!]E* 牴h?z湵4I،N`A^ciVeG|OA^څooydS{vt4x8|zLD B9gCH8k$'G,>>^>sQhX׼3,WiX'jgOg S̪DNd"teL=|ʟ?ͩڣVeq[>7h腪΁ pU#xi~P^7~zBހ{zE֌q_ qJ#~.rlPt]qBl/$=.˻ߗg$ ]$mɳ:G셃o{ѣ]42vL"3TiO}:к:DJURLTDUYɖÏ@(jհ|NcBEHPղDL__#siOfh}FFP5T:7i흲&qGHЄ&S&QNf_Ih]/J[_py&R$ "~Oj߇<-s4&=v)9؊\_X8$Jmäuš:sSYs J(}6't6܌vcI5 cQ\筿89"(]gS{g5۬Y#T…HIפKڍpT-ݚd;qZ:tL|[t?bOR%'p845p~|d|b5V6G4Pȩ ΣS`ɠ@˨>z5їZ%j IM 3~Ŭs"q&-5ITUּ3^AZAH.`͇?-֞k~ڳEFuul>vU{?PkJ?hY8jq9CH j2lRxa]KӞĩAIx~E99av`>\2G=|" K7oV'ԝ'VP :"7j|p[}-j+&Gd`JCбO~R?U!+ݻ,U *: {,[1mVs/.3`3ӥ;B{I9Rۺlɘ?3壳wU^'|czeG$t#ФiӯH+O1n\xjNf Ty:CUcv0Ϊ6Z~.0 P θ/-a;-]3h}wAH[NbωԗT#Q="?HZ5@0n2\.\{VߍdBFu000O!.;= U-LZ3eb= ,t[a?穢zyj*ɠ0+7K_Ao~"9 4L؍4=CጴͺXO$/- 'l*rkF7GyUwL׆8k `*a ^s[m]ʗU*e[ڽVf [ ;nH / u@G(D!.4Z.C5/b >1^Y-C%G2Lc}m _j)MJ1EoaP>V+T% vG f7~Գ7J0@mB bs34+!FDD@P]ϿiDzny%@-Ho`~ '6]@{MJlID%z/S(/P`Q \+$Ǻ[ s$aBQs6 0XȻ|=x9JF"VNE'>H$Uzc0xCRl-:Y} n86{y764xeM2k0biR#o-}%o4bt$RP2@z `R) ãkPQ- ݄U }4:P'g'߀XBnv%N(Pװtj^|V)Ii_WPۥ!ZgX4a}\O),,gdUSLDaDUq% 1:OF ʂ⤟XՉvf0$9[Ux}N3rŅ ׌zc>0{I$m 1lnJ;,qkIa_Uҳ~+!]~yta% x3]Qfprex]ܴ*c8(%>JʨtۈI2z hDGJ>hd޺)%}h|1j*fO4k&tPrcisҪ,r~k UK'Y6~Fx|0g=p-9 xz%3lwp gSyox]<`BO|¢t KԼt:s,\(["_M C.`INe$auj3ʚ\e%K$!ǘ#hIqU3Hz\wC5B=@׌qn0%EL5]ZKzøn|jvw@*@:𮫪ĔT&){91g`un6:M@31OHw\bOuq)<+H 'N&fCކB/fPP쀤B;^ծ漅'q`@%st<cx&]) !~f fG%I mqC7*#M؉K3f?׎YY`-BH iHYr䛡i)}e:>,‚?^b5UopiO?_x/,)^@"  ǧuzic#؆5wI;Ov~{}zoM! kr?d ?44Ӓ ,_sS\zcAG`N=Axξ|cVZ̿="cs}U>]ijCi~-#~1pPQH<}3F& -cӼQL?܆U|2/@oJ^SB\iy~3q#ȷm ΊqQ,rTc8[p ,̎m\ 4vGpц 9qn 7T^=Cp ^R&cyVw8Tq%$bRn,TDAb3^VLb+@Z!VpSӒx% )*ՃNOǠB'Eփ[Gm%Se"9pCI/e$pCKnxE$B1v:% :>Q`TG]"N"!Z)G(/EC;W2:}I;C}S*]m^о1]tmL<;${Zp< +@5CNiSsTSWW$c3?+BoT[m<1a[kgbue/Ԏ(~Oj.s:$@1gAve<#:G4ͱU~$T,Li8g8֥/!"70TAj^Liuꏌ0BXe{/.m [&rB[}LJOڟX&|nUX{#&;Do5;V ȻT{LԒݬTl﫰/FyG<2rןl5ʏNhDWNhϡ¿M peHʺ0X"F7sc)|$R/8T|a9 P䦉 š7Ǚ4uT?;mnx֨|GֽD洳8@RFsณ}@&2 Ui6SfaTV9ٯ;t sOg{d+mI`&Z&tJ Oȉ0e:c9EOU᩿MO'0ke,d]1!S,˥p~PVzp}m4ng@K.MȒa@ oK)!52H3J:-Vߺb{˿1! kTǰZh^)y#qQ0up]AhJDps {ɻ.oF7/x &q=:~5| J]KP6^`W)صBam%$z}V+iچ|b@]Ef˂,D3ҕϳRBR)$) 7Lۼ>^Z9X[ɍSBcJfQ9&u4bYqb ;7 UHt4OF9l`-xĵPG؄9]Gt4~6g5C(rg#kB#>5Ɏt ?҃VX.o2(4A|E6OfRn7; вжa=bɞ q7΄2~Om8 Ό+vɧ6?׶j@$׆eYZ;z̄\ څ.XmsSu:kz4Ʋ.mKa-^<0k %mGBHEIRbT&)*ҡ)olNKTjqub=sXJs)"z4 v/d;Օ'"CӪh o/eB89Y&3 {NM05F+GI3BOAZ! B >?g$K2d_EH9ʞ~@i2}-p9W4B'>]]6:TTPNykD!†M{ɯ4h"rlU]$,BRrgZftvmH~ 5մhZ? 6mãaœ$a嶕ϸE'V/k_ sȬ8Fo ' 6#C2>ߦ(7I&}~9Ab9^zw*5C ghETa̵0h mo?T֗hqYR5@A 5opwɫ nYi*xqrҟQmEB%OuӋya1/MJ,VgD03;.vNd0F=iU%/0A7-#08~ue5loN^a ކg6$ЉVJAy)%.L @l@ =_J:; 75.p^B9-2/\Ҹ8yPe`E[6Or2M_Fu[P t5Ox/6u6 rCwmNbJ~s ׫h ~P5sB-N,ux_&ˎm+̎JE/%sHs3x|Q"/ቕ#h&N J1.fPp*1E.qA8zi+G8"RS)}p˜cK@|?UaW&w: )_&zn~/h =~>8мKcZM[A ܰ[%qAge}y.+. nS}tʿJR vWR'(2J3q? OX4c RvmBjla;GpDi4>䯵]~}-qaҜF@v$ꔥ-Tj-5k!kLdp0 x2J%L83PL_V` =?pft\[͏~:e'RFJ֝F6kx?B1+['FFܮ k ~udi'~~kG +E_n).5yGd¯~f1:a~f0_mՀ/ D 1ȋn k|br0I읆Z\1ʼn+>+ݶy^}3D75-tajy\+_a b&Bs'Zաx8{MoD L.٨Og~4, lE'5'-<*Vd8!7%N&!;QiLuX_@мjnkt.VӤ {7>U.^5Ue1;wK2fՆp]"rHk8CP:#jfJ*jQ. ^g\l,|5ĚڛWVct=H+)8GZqv@G G[i%=Ջ7k ҝFɅ;I[4^,/yr%-I} e>܇AfNl,T\EgQ7_ [V3%F_A:#h9]%>BKQO|U8,ӠPi &DMX%֐(%2 n1W_> [BnA#p3dpK0cMsGHuo$2ҨdNi?¦;_rL$RgTp&(qH+~͖ Yn=6|k,rүA㷜 r ny*΅,9gcf]F^{fc%-l8jXo&FB{1 |O?+%Ix1(iMqzrdQ&u.u5Э6¢T4D$ʵ8?N"x-qs=DS#iHx{˗b rU,ƞ]r-ˡ;E {դbZmFBƭ+p -αe\6C8Év\;!R@.}k ٯ̅aKzqh09j = 3PTβySp{.0m?.hIJKd 6OXz߇r$PAtmp@pȫٞw69شĹf'3Z糸z< nFP-Zdto6ft,&^qCh`›5>x|gj`Ű@UL Ma|oU+[W%Ҹ@6Uڛ> de~vgZ:>bJc+wiAqCwC\ֹc?eUm8 ﱲVxO IOdiD#hYwp5dcj~0b^˄0\W `;AX9)~P-1l$VGQPW5"νdEw\f|*^ >#oA݁Ӂk˦By/So3VdҢg>V3G]uke_#=v`- pBJ xlZ2|; /ICG/$hZ] )T"<>)SKQ'y}KXL@r^+l7qM|+ܴ;% tLPY@_j!t)B~9y]o~JŚf$Lв$qOY$H悦۟ HҴ|8˿+ڶ,*7˖];M(0C%]+ξtGl΅f4] IfL=\%DRq.8Ɔp qSkpMNj^`wvw$D/;䪝5 j/@$Npl fyl _: J?TsYծtH)lB87}~)<ʐعS,rl@NP d/AG$bپJ*dV2:C àzЈ{Stz$ܦNޗ}]Dje`ō* Qvrn7XL-S!ٲ˧[T 4$}KȘCnn9z#5WRkA״֎C1K}q`Q(4`fy܏ > -DTc:+™IzRoļuS (6rRnXƣ첛PWF@+[ 70}LJ[<]MVU"?f%̎R V[R); ޑږ}v7mDnab}3Ϗox?5k_wTG=^, B9`W-x:ݳPgioG?h/Std^ڮ#m`*Cz*a]U;/sA2 u Ŗ%LQH펱މ<3>ތ۞fG rZm\7)Ex]P&*v%@iM93[@lyLu%5՝A/"W~Rv]lo֘ݶwI6Z{KpsԂ`,ϼ7@a쏑E|5i!`?]̞n,/eI1džF@οˎT!nj3kXƆ &?L;5Q`Z .--޴(r/>dƊlGA=LDg/~ 0oA&!n޴r 2-m*諨 gQ+gVz P8=H)L[Nj5E*./Z|{tpb3_/&6a0j;MˢaCQ|4S2 85dLK"y鷌~4EQ\$&{2Li ߈+wI,\f#4Fhl, ĴHl:JrR?hGL04_@ 0EɼmU ˜56TȰ,c%ɝx qiG4̛W[ՠČL/3q/#+yb4M);bVU=xX#߈Ia2&7 6H;q>/܏t0NJe/O ׀xW9UI!0z\Q>< ڞt}bxIk% @&LsW Bέaeȫ)Im2J9Qz~5ҥ$hYa'x' &^`UьNz…tU[5r"B[@'(dSBH;[zɇyH  :bow3ҭAj^Q:¸`&3d 7/KC4I~,H__KB'%_!}p{#MSi6`TA%wmo&Դ bhu)>i^|4]g'yQ5$vq\L#wv)'bzh7ڞ; $wi 9ݬ|/O-|Yz}#y3V*\tw5Ns(ʗd2UnVc+Ѥ`lfpOw0flApR9[ç1iqۥ=}@Sr7Ge jQ,4 WMȘ/ySzz\rj4"]]{A,peq  59aOEۂA*;53y)΂8w@h¼ӑxe"G2Jކ)30(ώ»4z8fzig_VI2okseF zG9>K9Xl|"VN۩$^tsA(|y%k! õʽ.Qwx+) B @14d&u\f9@ TX#wb;!#g-޼rRkXڄ6L:-"\kF615FWGNqM;j еt?ɒ}{$E!׈UNr4૖u0H7ܴ+Sߌm\&GE҅R 1X,pd8?Ew<8 Ƥ;uWP˕NӵZ=AMfѱL8K,x)DX UAlc0tۦmA *b0Lv݂n5<'yve$u@+?|`:r1LGf:y#82P]oq4{e(#}yz D"sB84 uYFr#oq.HҞpGpR~M}+5v~Կ! VX~u`] ͕͑RጛМj S]vx*_)d~%bLA =K]EHr&4=QN(\C{ a@Dc8DQ:I5$H|]hf"s575QU&ףO>oSc54tOL ~~$Ia\h^sI䞠SM|^U¬T~n[G5!%(1|gU_ $j>& WXHٷڞc)uVɬ+¥O9% r);jt+O@ Lt(W?]f2^f\|NP}pR҉ޔhf`5]oW#嵀y cROpv=ޓ^H|ОS?oOS<4 Vgm5Jߤ&f ȕ%zWWOў] gR]h 5g(w$A$C4Usi?8$]- >=~fVb iN֖iY*6q/^lMx83)"RPu}#QJɃ2RYL aK[!Z0rB4/+^F>A A C C;l8gZ2gDBUK|`KuKXkӱcQ߸،cÅvwu>2U$c $ S/M"߲Jي* B!;,l]>HT7רʹmTw$B,9 ?ҁ'=uI_uSk@2ә?T_qG坯-ʜmFCK WacZV*x j&?NqXx UQh7g c(es"{X\Ж/TI业RO6M@G-NFqː|x ĸ~ cYD#7k]>콺w_DϑXG /azd{w7|q6 t=(E7A/ 寳AHi߯W@*c._T.͆qMVϘVY[EMǭ#dڌ{Vou"AIfm-iM a1c=OPeu9T'ZqJl"tv,p֐Ɗ᭴VS{ BTkNa ugNzli٧ТႲ nlCjpY]@QEP1:ڛ+bhg*ћGL:=]ϴ Alz\ $x!g.a}7ld xI^-/=}of'}Ay_[3ERe9 ^'Ł2-da r&昄g չw+0هaNW0l)2O6IfI=X/ )mDSćUKFsՆwCʐ+(*O.CL~DfKK[$oPxsheF)A` sT&u@Y&[(P٠X{4BUE'䩱io'€-%Ւn=q*MQ-KԬRGόItV%'^-WȜgQ?"E00(fʧTLC7KWZl ^Sx'bߣ6}^%=2v! L\ &3aY;u CVK`L$w sBH(%s:D`/Ċa1s^7Z;&R 88 ii3'QuAIȒr~+!**7Saut ɑ xKٳt:lYf^P{A7(4VC!F\Sa&*Q&{6sNyQV $'| ypg>,q> Piś(d?e3UV6cIi7g5ѤhVͷU q"AjыSh!ݿ(u3nW (-K RN`qKk~28;{!\Q@ Vd^ȟjHSۚkJǝyud]|Rbsûő9:Qy"r{˵?Wq]_!!;[1A[l,If ZHůu2jc08/J"T5y[-VmT;LBO1c!ZQD?sR*ރOa<_ݝ;XA)stAdv2wf"dkC a,-N-FCH1rNpABt :bhzxr Xya0p1Snб$D53Uǘ7%~ˠLGs>\V\ǞҎB}mÁcѾzXC3W%hT+NbvAwz=qK|`#E;\!bS;6Y҇aud>19>'̽[6Dz*0+_/h6-066;_]ؕ"AK Fr0&|34+UhYjbPl Hפ uE*UuXZ6$}! ǺqؠjѷM;y-;8;~Ah<+YFIձr% 4Qz|=ԉ(Fe &YG#|-B/sj_tX0$XQBx;KQI %i¡zrSMsQs!V{sV?ۂ>P?Uihx@or:<`;oT:"j'˪om~Vw$&,ׁ/ oӷ?(c_[{lL7[P37.~}ZΝb dċ|AK H=BA_O%q8ݜ~<ޭƟq݁rxo`w46ݜa@a 0ׄnx9^K9}>:&fXIo""-K8n@'!hREyg$;|zuy q( M%t GS }ѯ)oU'"fWU* c ;Oh,{_iLY0)0K̇{c0w7I@>N>Rf@4rHuL` FLw`% )[NaoFL1,,@tF9tsi|Od~H&r{=>-1:wdVNDS t|y") UM7 ^|e!lwb`߽gqyIEdW\km7t8w7 (" mP(]-BPQ0EhPEw&|ZHګp/@~@}DŐ}\FEs8$kVv9 g 皜o!"4!F+t]EID^Iš\˳}̅vV-Eϸ(pc[?&; Ga8d9{%e{_$Vgmt1-xX;G/<4FH T$*)4%9+7=S #I.9{3mtQm@5;o(aWژȞ*MdnYu.5N}@` ̈W/%-7# a5Q2#$9U@fF5 ;%t,ӿ%HsP?~Q>"HU՝rz|mvPPi`͋ PtrXy@@h_tLi醏I 6i+g:]Qnd)yA*ƶqR탨>֌+b!AG9 Yt*}=y\C!QSp{C&ʨ=urøjiZqFNXv3nJ$9bGss]lUi*BtMNAa`+?㜀>6F(6ߟ(\Cx5>BAVSj+y`n%4/a4B=5u:vè^lTcq̈́3fRm!ÎzKz_p[ItjեX X=c/?7ϖפTɑ/ B|=7ڴ=럥B\ΰ4t7"`F%- ~HEZbA; ! npK +6Dz֙tlaۡw F8~]hI㹃6!u܁_>%uο.V=em!e@*JA R\^MJIA!s/~{@~10B[#{YSThEUn7`m85:8 g@6"'fj K#oZ{uORP*cI'I6 = &X`7~E(Yz^wghW⇲GKIᝯZO> 8rbUkwS#K tw\Ŋ&2{eR[Ӎd{0" [GĐIe9:3s+´U>!8@Ҁ;(yF|d zֆάc$+6F@~ml#dq'U٢{-O]Hf|00#,X? jWWEIdC $=6Ch퇯%L~$CiøNȒJ^(՞ }'ɂdyD 0魐&RG8 q#]T7ЙGqO֧P]T"CD&#R#QPH_Ag֢6HITa{,t@a`Ĩ.#.4-?PgKy0;~{q1%-C0" Iϫ>qt*9u }?O΂*އ/-oy -29ajIF>*ʛ7I;FNvnUӏe' 8+{R8rbU+}:#*f-0֏!|[@4JVR6-C81̤oMH`hVV/o"~IycpI }V5}dd]tρOs-`u;Q@6C检 q&2aCbw"%Qg Ĺ_BF=? q0>ZfYg#-0[(%TMh1~z9(쐞B~(Jvƍ]~tÞp )zZjgn禔Y4 7x فK{ |1UK_:L"{bL;%`ڥjk_ѝXw&5U?`EY!ȩnuުَv%iͺqj]t޾ >qE7sZGCHh1vmԗ?6Lbw848z]ЌVWOoP؅-wj"Ih~v_ߖV?PQ:Ah^FIL Zn* V 8Uz7#s]f| U*ϋtR,vj ʙj;Z#<٪5;73LVCPz3東]~-EN11z/@@78ֽw+0r{Th7ϺQ~:2@}$g_#^]b?`1kq}d'^k}K%n]CfkQC7-yv)#C r`y,Е/kKxpՆݤkg;?lCW7 ;{ȊPao5E(c#+ ȯu*YWm!x,aǤDy-p'U;/w (=7d|̤>냺ZDhC7Sg4J{>o]Sz[Mw͒1hׇJ" f g=ȁ~KXbT{)K/]34 $:9"R* (SذPw8p~ɿ'03<}m(L[u gm7]"DQpڥ %v!@& <ଗV^v@`feSzi \S!|-1yWRGEjbtÇE;'}uiR&@=LITQX-_CWV pd$Вq&LzFcf[ntcV] {䡳u-Ɍ`B 1\>{K_lp:&V>.J{\S|\ae/@ǘlfڄ!(&Mtwa7aJIc*Ɛ8ܜ 4@ӌ`NoWN)D@FZ4 E}{c. 18`Uɣ#Ex-GBS|W[n9]-Qb:w(| @1DJǴiZ }L#m?>"W8aJv?]&_%c.d$ʚQM[VXd[rp0j.࢘#*s*l+cֆrzޅ#/S2f*hϰvc%8̑@@]cѽBL ^ԉ:V|dj4c:)LKckƛ9/#SцV".,8vUN"7rdSׯ509)ר*b2(b9ծ9[Zx`? &NrؼNaw|x<g<$]ʷ 5z?( O֍nr|؟\n&O3 +\1 2 PA xIՇA#_s IcMzSN*]wO7ݹȈn4#aA-4f3m*br*lK`~o0wYRVٴḿP|FU29P7i7ȼy-5adrEd&صGFD!GЗP= pDꆖ;۠# = u#cc7[;!|{XV #^JCkT 9ȋqk {g-%6JyB>ɨ0ѻpFӘ&̤/J]C= 척o}fyts^$ ;Zߕ6)RifQQg2?)j"m|YI5vV0o;VKʢtפ6Hq,zcCya2%XZX\]k$Iյ.x|QMOxŸ@ubO1;.9ƾ1oj΁{[&gzj$xf3 LPq4\?mI&漖$p lJT:ʉd$ΰz4wY/VX *1(jWQ1Œqp=!F\#R}jm˺95X <35@G ǚbkrlZc꬏Ŷz(P ~raarX9c%]>U+?9cl^u,;#LEtVΧeK{sPo}d -6h{yAR.$-+yA.q#eėb~[+,IMLwO,Nǻ}8w7F}C VWRP"\z[F$!y$7-k>\ 6I8 hJWm#!n2TOuΙc0P`+旛Ujw>G@pG;+GT+r@zK4I~m az-"X70\d#}N79N,SdBkaPyZW).xРͶVah`= l4: ~nf,2$bv;W`r:˫|JN?Y N>MJyPvBo9^ t ? Qh0 4ꈆUU 9Tr =BLM/\S&f՗i!*IW9` 6͗yG9r(Q< " ՘$R׾#zߗq4,Xe@%^ R}ӽ S|\gpzoAv}ݻzuH4 :}&cZɛ>e{FL J[>l%'U.#ɧ^(W*-wT;s[Ӽ%&uӒN>~I$bf26V RF_ӘZ}ac5d~+zlwxf=5r tw^lvD R''h,: Ё(ϭrh-[5}td+U1*QruIģW=?d 2:IV*BN45 *80_s8:@=5)>dݼf ˊbU, 7NmT6NG}Em炚 7I_T[XcG27gR%pO^s3 1Zؓf 4?gR_Bkaŀ\QJ&yDa_'n2jޞX3o0X{?K/|{ʟsQ/x+I%EqcI gnx}C@f.oZ דaǪd%U4%ǰE׻(F oj FH~^.zqYxPs8CPkzmSЊI|pJxay۝Q8΀b)R;NV#.xS9bs^ L;!<ȧ:&]K v@bv߸";!!,> Rǜd%}j.Df,}^AbtWW- .%j~ 'FUU$$(q{J3D>2 4jSđ8ֲ 2pTa#W='QO*#֞>yCٺ77o.GhcɎQu &io w}ܬ U8w5r e$ 6JyOPh<kvh˪u qHY%@-A!I< ۋLUz]Ƌb[/.91֝548Hn?eXt/9"s-r")pv77ߘ <@Q,ÀWYeKqSodU$Mj WE<6'0iJ\'j2:rr<ē +,) %>W"_qzVu6bw =T΍Am{" & O"3DlKJ*?"C];inTC=发U:;A)0|Nr]ЬJh }S2b?\_@}H+ w9FOa4/dOm%&zD;&%Z'UOg}}IB\cM2O JO YCM;mnPBbŤϗ/7Q|$pUO$ku[$k)}7Cc ?_w[(s{wO 6pHhm§s 3:J\dP&V;o&kS>:Z;xaQӛf[]I'QIKI$QLȧ=86o>'/<)"a;DB5rXv鳬7dB<28)շsX R @f#2px}? p ^ȏYzs~6 _|+^y+7I[Va0:-[3*Slvux ޼q/&̂+AewEO,)e^"$@_hWޓym}ˀlwQswQIbs4OQڶi 9 ˡ3.k_XE:Oo\#ݭS&3oA["ɏvbSUh+ըp\K܏&XLlvȂ@@TYٕ]D޴_E6]mA B>lQgġnՓ([ .a)IІpJI3;nV;Z86fr8yoKR %%P#3~LjHY'GV/a/YkXB)_P&a+YOiyU;Afn44BLgeuTFӓhp %8z(IoN<ڙ|+9јs|ou(}nbV8UCOӻɝ·Eԃ$ef98RhټnJPPw]JbU3J˷X>675Ihi)Ѥ/ ;BpUjwzW;ْde>JФ@ s+ٌH 9ra [ȈFfP(k| y~q03KHu[D3ET uqlQ(>0s3/ Nv bL]-+xD\->HoGjzJ*oǀ\:iGt砷e_ˁsckm$ޣN"QFLJ0o; d# :e)_RG)fRk[qD /ñ%F"v_EQ4Zʗ0J s鳔kMNU7T\`$VZ߆j?o Jթ=>X ߽E^ @`<+xe|q '5xVsnXO|~Ç٩AfA>.XǢBfڢU9ZI-] 11z-9~HJE*3WRzРC=8,ρ~!DUcMUJw8{LWH4 L"7%V]z@]yF5Ō~qߥLW_hBFb㘹i„.̫% c .42" DQ|2Feh/ܖ\ |S_(=zw4O!_+˽_$:|^X$ՁK5o11vrOuʬ/͞-D 둛܄5GNr4vMH@ O鰩$, FJů<6yH[s[~|LdK⠃m_%B: {ó޵d.5)R;N HhැUML m=f\ ^7\vv}C(5ebQ٫oX)Ys'!-ۼ(v~ӗ*ݘpvZ J HslC3'#omt&2Uw"t꽪o{?;*6a8:xgZzzw39ʥD/"صiU F6KX&ВTV]a?6Y lb;Р4{KPuѾ>]&IYe^ݶPy1+yPOb0ܻEqh^.`p2}n͵chl"8}Y[%-x(xID?"wER'jpDrB >u'n\yLae&T-Wtp >~=RނS'>ŖȆs- ßp`^dNwYPE} 0kGnMAOZCbZiY3fi" BL[i Q$MbR?j:yӑqEJzƝhN^1B۴ 5/rDNJ0y? _IÏ't 6}e7'u+s|CƝ;cInܾ+824-tf3`=OH?d#%*i_8Fy_#Bɭh?yWa}^[ʜ9o H#V<kRcE;GM!5fF;'ȓG@|ԬEЕhiBCfMA_7uNi;͐vDS贶 gRSoۥ+hF:I:vC*' 0Am29\[;#ot)b: ܫIc$b=_USm;RcT! 49@.:t4Pt,v&uPQ-G!/`25Ož W3|ѽr&TmW:;eXRRB ?{cX&tnħ64.A̕v]h1 IgEdx,T Iٍ]EeL[J̄z`slU㤤6J!ߟW:?KGgYX{s;̎歙e#K: CϘ!],8 ' ^=K?>zpwgJ;}}dP%)iu wcuH-P As t"B?[Du@cUSvl)n崉̶\o` Jw0r%"y\ڐW)[klScJzj- U0v0k>S)`Oڴ4[p.+}5{W;1,X^Y(t`1g]lZ`vmwy>ҜHP G&EݜbTe%h=4RQ鮍4qdbkOt@{ѽȘ`G%J)Nכ/$1ݖȂo0~EONpE)z[dh'Χek1"yy7xFhB <1XOLJL-3b$4Cm|g(«֤Y*WO w\`JtArS=q#*?h 1PB(R(wf[2ZvdΆ&k*z?=5OSJdlKJ*) D2ppaA M/+Ui#QOsdծF#9xFAɸ 4+#w[z:DU kڧI+(;+ 4({8ɘD@JetZdVwP1# t,rqγ~=`#vD?oFIxG`FFN<䇜1‚kyH۸RCet(فip.1\pRŬ[Ӻ+np^D l5R]PQuM$6Yt,^4}}nkA.Z,W#o@i /li@cklqWȜb!cUP/alMs$\#Dd/ck:sPۍh{ymEZHei#g=$gFd.e-hRpճ>.}}O쎝؞U0oL4BqA])o3r@>{ ~5{dm-iWS,:ѪҾ :S!4TQ=VF~99V@ly)d}nǸ,`]#&ȯ4ڞ⨣}VR--|%-GV_h􃤗dp>+0gYAtH[ Fg). SpҦfN~[k#CV >!2=ԟB8-rdH'ڶDumeT3`tfm&=u"IЩwV{шK 8 0Wƿj!@ϝhQ\X! QMNV*~ Mޙxtt1YN[Ld`EeTc5OU )NUPn'T08}ttͤ q?}4>9*s85dkYKo.n<\ׄVNQ䳳.>>Jyڥ>џ\4n<\EM+E[R`tw<3>zĚ#9t7?Nn;9d(zGdrx <+F =~ r&Fc&~%,I{DըS/0(qGM~6>z>14,Z0oiA$h`BmپW(6P3 0*FnڒJC퇓c`pXhe _d6xf=]UYLd >dHc6 #]Wh#EYn+H-utGDlή$OMvSO?^n#egF@><ތ\!3:(~q_i*, ^4(,Jиo{DHzvtV2VCI&m+@q"[< Ryhh O=\QZ1 .vwQ$qI ݭcw&{XYR\s\{&&(o}?Q-}F0ei0Y_OJ-؏z^-e;;R^z/tGpa7Iy3+Z/g0`wgH`- QA'#=gMbo|IOty n$ۅEGSyrNW1_nt=Y-zU'~ En2 J@6Lк M2YC Iw*h9G͓Ej[qa5SRX?K"(2$ TudԤrJη$W_wX)rYfgWFD8͐r_B#gbX ڮGgw.'#2Xr8\g 53Oc͛p( zorcsN ~ v:|?>)VvH9?Bln)P||~k WX\B( g>z͓)"_~T.Kz o"+(6Ɵ+rK[rOcd9>^og$3{Έ Oǡ¸>ā] vj_5ɀ'ZC]J @ۣV 7ϝp)R{խqɼtyP-K-79`RSˆhnP59?(jGޝ/ě`= ~Cҿ坵5*ׅ:Cp7רwB*1n RoxˆQ' Iʏ @ض$wkkMz5 T09Z*LM`,9p|~׎Lt*7r$1a;ւ \d޲ Tg QLC8p#Glpϑ HZa\KKZ[}gGlhFcSʒE\&=ٳ=-^i1&1 2H- R_ +y-Sg眄KeYHy_EBkn 8 lr¸9EA/!׌=WمF04A`dtqdcpXsck$LΔO(b8ݱ#h.>&F$_%)&uWu_HD {K3\@= zM uͷzŹ;Tf.dA!nN2+T}^9x>YBdv EI+C4V]WXg,ܮ&:q^/XVɯZ<}h}pr6ۅ} >[5[ÄWv x{>AKߏdzMڏd.QDQORբPdtD8ΘAT+).cQNc>%;o:K,rqzOaCn*OC)Ctx υ=^-c| 7ᮟ4Sf?o%α1Sx ej-e^ߺw!T7[qѽo5奷t¿z:@}}(  pHɤy2Q"} 8v Wui*38TdNfD㛹Y7%pwJ x!n,.4 ̱d8{BFy P6J{MJ1Hz%0Y\ {aVc*Lʆ&W;-f6~LCBo]F/Λ&♀SpA,T;o=2pbM"PWq칁s>;n$g kD[@gc8_[D:Px_s-~ IZO]Ըͯ0Mt@7DryK~NɸUYJ.{dW]/[(@2Jn6fKt: X| mgR'2YL@aA&w7"v.M3npu1J77)፲SH"ܝ ËC2&39ksw-+K4dYuĿv1(z کAFlVÙeM@8хn>ņڸG"5Km83RuQVOx@sz$Dk3դqK5 |ҫNT W:4)ZNm@y?&V//]@xM'v3.O?Bτ?"j+R5ƞDY?ܸ5Fp?76oGȾfnÔCvrf3|͉vbKBĪSGB֫$y?ޚ-: QT)6QlᬡL1~fꢩJ e&#fTb]u;EtsW~g)ײV1!yn=WHφ pf RmXA%E`h5Qڲʬgݨ@Mc ٺf=d ft[=0 ig( Zo'u lוT~zZVCKN6ijaZʵVHq7 OaQ(vgj̈́Nad$V#eٟ1h{ m{T- ۵@gCs9E aK',"T;#\N5rvc2bseq`=<EwCNQvK:hYV#mZ0oRP'׸bt]h^PE(u4ﰎFt #s) mImtcA*qTrj$q~&, CMrQ+TEGYk.{H1 J*nL+S?q+o5%kq?Ƣ 4)7X-S:n%ڱ(mt϶u1іɯ4*n%sTwsA3mP;>|yp/ )O֙Q%-+4-a[poz# yEC 3z8MH23F ޷APj1 wbd`x uR` DaJytBUA bim 7RO>8sg"]ZZy%LO4#HMώf!'2&0:YP"Ȱǥ*4!E%dN!أYqT*ŬYi.W51b5)C}LsƺΎ wA㬊2OUˇxޜH;)T ^F 81wK4n=thI##D}\-@:^|p*yaL-yjpX𛗮/[lGg;%.>Y,mn:i34@[t~;79{|ӞT2a#[sn'tb2NG( e(q*m+Z ff"NpkAÚ]=_iH&6/)3Zn{A̺;I/qn,{/DWY:ZRQAVfXI Yfp ֓3 `sM,[SKP( , O1%t"klG#Zӓ %Vt-XXa%'ʤ>cj^myBq_ZCi}mFsqn;Yw֞t˚6?|6Ht f9YVy&ICq YCLӶ{wl@$De|u>q1X^ts>^M 8IR|l??y64}n)`5ht#y=)ntXRTnnI ᱸcOc ^|!Ta7{Bۇe[&ϢzIƤ_2 ]Wn2;t#Ld;vۥ.0 x2~veA?f'o~ @n-pvJF5޲}L"uKU-u˸X#տ X.h i,םh'OE5=w[ƿ!/zGr%9t<`6hX\:0M4qrKfw@e}%K'ф <Jg]E]Bǎdq[Rk[C_OWjy')_9P-F28ĀUq펔P"ˉ Kx2N`׃)9xAـ枿/RT'w}ƹ&h3Y+C_7$ە%TOmBq;;VP\r|,q@k6\3 eiaA TeACQt?lW_^{@7h:Nߙ~oZAns8S;0$"@qybao㕅-ߊTm+NK$Ic 7),[,,iD7m/^Q==> ?4Ů>(z~1c%4 .M̶7|i<OP5N k6hCtE} D)h9Fgx,gNA{lG \\"Csmp6|DȲބQ=NZw%;(T ϣ?2S(~"8f,Ǹ )ܚupfSVFdL%[q>IG N?xB)[{sC24S Q0EC} AG,v/C c7jsAKEEs+ÃQs&is,eR^a;{); TV$"/WLSϰ#kXZ j&U-̮pnlK2LQ9,?_85jl̶\ljL~P=m#8}g-8u:)hE<+t?AZ=c#SoPO `{ Y?F7wRJ+i҅mFӚQ7&[:0e ipƬGx_XR 8m nyW#S-N>N\؛!€0PJ&*n}5//w!}j9AsbYQ`9`49Iw}N>\e kAгHS~(gI FMw%<#s> ZFJ(u3*uh<}(}/.uz '0}Tai"0ο8ݧ#vs?~Þ[HGC/X yˆF 3J,خ~|'܂&L~:[!I9~UJ&n4T5B\X<K7P3^TR8yVCg{M祦wߢr$`+37d܀w5FS-ZooN.Nwa5DFꆙ-3]B>(s;m2Wϻ @#'?ؖofvV``iyiJl=XӤ=""sU/GxQJN9Xl_ہTYZH?ce|UQ1cjhk9 'j$W[9]vȋzӞ7뻗P]>ap4|င>kˢd?לY+YΒ¤仅9)'";5RO6=&+O{CEEϑn,dv3ͅHP^{&5Q[o#yDp]kptDwqV4P]";L b@S/8wL8IՑS]﹐"-?)#̭Uw-/<S!\"a񥱺„wF*@DmM"a@G)mhÛyx@§XZZGVRqBGV$׮"stvM9w9Ȇv_mW%^7 ! %Snr`I~vA%1 v= Rc[rW%Wҧit,K*a3(Zǰ)T.%/o1?=BяJXCW:h%K@|d4ޙ"ܓ4~F$Pu?0s"@)`Vl,qݴ/>V.t!!M[7ID h oUh}=YFՌd=; o Ba!=.$d`g?qo+GwgW{VCgĸK^BV \R3] ,Z뎘̥#LO)[JHzAxUXr|-3ģlNd~?9bUǁ|6+T$8 ;{.kq6d%up:Lt o{N -g٫؋S8Q\8DMxHCz+P@Ҁ6/ؒ)Q8D 3TWjwN{%{L w"Z6M6!;W(g(;`,kQʡ ,Ҟf nAhr5uCґ)Oo b^2O江9=].G23u| d@?)8 =5VYI v]MP4pM/m Ȗk¯Ӄk;[`I/LJ2 Jogc~D_Os=v"2 5}*Hv)nƏ ҽ>xwwQK)Srx590Eծre c8Wj愵_|C:*TvpC9[}Z)<~KC T(lc8J?Z ^"\y0F)vJpF=[(Aa߇ ՍIH0l̘߭յ^mN'v!tf!O֦eqmMa؄OxsʨZwƆD>'xzƁ>ЕGTm;I*B^Bi17Cfe]Qg%F#%غ+ULHYD dORHCd!;+a<5e[ F9φ JФ8D1rՆ, Y7ٟ{_ NR3~IJcbN)vA/KZhDu*E(1>EmDm^Ђhv Dd.@REkSb&n,5Tcx!c`lؒoH"5q貁Ыo[22B6u:# $N5RN6Ɂu>gxI7/$XFA%ZPt9Z/+ sȈ ,r>#0͸( d.AB-]n΋4]2.-]] lw1[9аnhX^"&Lgw̫?P:i{'8Ͱ0{\1xxʳ[0| @PXb> ׶m;4~0 Nߊ601$%y[!$7xLU,{.=״NDT׌mg7uIR\?qN/o# o3ɪso"fv> vD C;yS PZi̔d[Z bLESV^AWDvkoIVfKW|lr5u3q&$@ל kT;T[׮=4+陻Y8PQ~1iTޘ[UpIڝͮߙh]y,f} L閐~kI mQu|&%XҹS q>?5< µd!d1^>Mw[~Zz|Mʋj$Тg7RyIJ$p;K#F6{ۭqư(> E 3{wZ on0`/ր^0N1cƨŌ#,WVm ֖3MV]"J.,!)Ôjvq3իl`=_ۇ]-+Az֎ɠi e/ӄrV.Ha^˟h%i_%:^{/CjvwP39K֏ȁy{԰8 wk1w̶u2#Ii9"PF.5᫊65ަ8 odUN_K(E jCV<#Q[> Aڦ)œ9|TT*E+>cX-JR/4NSVh¤x?Dx@t EA{ZjK2!#q0Dc&{ )3/+l!Uxz?"?AfX@md#^l ]u>qRBMJ̹G+1%#v!̓Cbz(N/|9Oa^2Dp5Ib>+˥>ҳ]ރ&J<1v;WG'̇{Zژ\w#@h cpFYf_ u#a ҟ uuko]~렬W lp@#H%mbTwyfAW'-7ryiFϾQg|\ E%/DjᥗJtjj4FL˝Gj/f-#ƺg&gWa<ژ };]LM 1k^Čwei/%xė ;X'G_2և :?'CvzxE iR]_Tj~N߱IDܓ:~NɓMe=[|>k|v0=8><_=)+OG:Ѕ?:; G MDBBsqIqOYUl$gѻ{<<&^|Iأ5WIJP؉z6GaV])Y/7V-l 4t9`"!^!VD|_A!'a%F@,!@MT[@8߀[#q40A\t7.`ԟfծ,/mVv2ڛ{yZ-돹kiM) Q6&Lg: .4"=F}S Ob`6!~}{6"wzpfH=Q\~T7\JeWINb|F!4\`ā`~?ֈVVYDdase& j"!3ʍXտB;ؕxtajLW(h*c()jX\<?xwXL5*w}Q(viƸl}7Jg6j7.av X"m3^KXip}\VU]h-z~033[]Dqw6F[mI*BmM&L5~X$#l欉Itm}vLȋ}b n \ĪpK曋陻Ate H^mAD74:y&lsL˻y.zX,e{_([- rݸƫs[7XmOQ,IUw"#{~#]?!->L+/CJo g؝ 藫[qoVK<&]1}N?%3'şhzY4LƵy}uIQGUl(a;YJH@ $M̫9B.1i9y@3Dz@WjFŪl~Lضq1ޗ[,_uKPbz]٫75}4-6I0&tyFۧ H= {[2 2Zw,o"3ъOh_5Ȟ?({xjtMlT;S  6;.y P,%~q[1ǻÎ'q|aq<5.s"[Y&~겿9PV i[a*{!ﮮu5ZJ[Q3m< )ŪR #<]نmf!aKKyw^]BD`WElaY;fiqh]-qӂMcW4O[TKmr U  {-ٓFyN% #o6egƝJCR ͢ήRC;\waD3i%䛬ZvU/rcF x$xӪL׻E#ޚ`+E?&{PVԈ8eTި(6|Do3+L*JK㔾]S.!Pn><Bȥd/,qޫn1+{!*|s϶lذ|ϖଛȵx*/ժɻ3)U#+9]N?y 'J{J=RJeHN^JO<}Ȭ/=Et谾ђ5>h^A {$cܻe:*NGvM Q1)6w؍bmc%V϶d@nĤaS+}KB ۴#pcbB3:HR4g3S: F0= DWmh$.E_6 ##+oqǙŽ_1׶܀Mc(\W uFb˅&a6XHz{h_ru\:>ʏFx9/(+l|tt"gfLYl9Y^ մ`)bI+$[4vRx!R}⃝og i$?g]e{?Jmk C8[J~uNp%E2Amߏquׇ'8)vM_i5mVѡPv]#Иةh? rioJF*H 'QWD7 p;%~5 p>Al*x Ds 6WLtK >nM(}eTE_uGaQlL+yS#$؃j׮/ (Troڦ(BEc.S!\(ӑϨqEa eUr@:"_hf"Мi i%j_,1pPT2t=%.i9ŠsiB#tRFr Qv&]_AuGk4BUB8bc#^D'7?5_Mksb:8t:\ Ge(n91`(q.WKOq.id@;1U÷2kkdkZ e'qD - 7Lp4t5jIr{gU[3O& -; Րw ƾ/\49{7Jo";e{IЗœg%-wVfY-`Wn$,V?%P¥&fIVfBOQG/_u~/y,\.Vl׎EbΆ5|@[ P&I˜`A?i;Bz7P2;ø^rmmz$Ǘ-L]z*/ǑG8z;=f(%d{TnRnq-VCE/GE< ع g<$:Pe,53H".+.yd_ȩ*Bqpp]24 _G K Y҉VZSYrUD- Y1$@-Y ~&A g׎f),+ufSI1=;Jny ª m?kmrwVd7U,MMKrH|Yt5-AqHɝ<USR@@`(GL7&b.<*SlyiHX8InЉ)W^^]ɷpJ8"5pA/iOjv>qFCg=ʖH F7zp^Na#PϚ ӯ@pZY8(aM{1 9%Zk?o=`XRǴT V컠`u:~g2=>hou b8-"q0KWlt"GGUZ D AZyva<%l/(g o?_F_LgsZ(0DԉHUJ;q0o] h~-jOn|UzGbtӖG8=ZmxDdZN:aR5<34nrjP(dP(Ck{w#OaG)A V)$5'7ڻ:S$m x}[͂2Vҋ;Qzt.qhLd΁4d#r֍)?VyWW|3먀1buj8N229 !Q;9,-&%1¶t ./DgY^1@qT0e_X0ڕUr]O-Ҋ3' P{5h@uζ\kJ1^ ?mn1@S2y>T^D3YG> rh]3涪7v[5+.06{}a(RwDW ˦:Iڬ|A˜gحDo&&^t>}jwZ\mn띵!krR kwHѡ #U c0GKX0/֣kTi0gfO?!khiQGєȿ^diK_'pW 9>E(Nw^ޤsORI0TWM| q~%4ҾfƉ,4oZ~/+v*0yeb:l  J0չSq<$d $0PuhFMx]I_!L_E&aW6(Liz9a~,="KvK/ySKʼH7~rߙoGR^OmS=i׭ѽ"bEVz:b38S5Z(M,Ved3k]M *|̦נ[ӎgV] CMZ:5a5(;/(o>l `›)yDC;SH(۠SvDt[C_?wŠg J&CWY o?_Z Ѭ zD qL >p/@2R hޏE՚FyJxkq؀Qa aPn<#mhiN[өK|5L~ t2N|Mw`5 +03HdV- ~[ߐBTSyP( W` $8j@8yAGx%|zBfI?GyJXY^~J =Ci\U˜؎`2ƅ͆Uj$@msZ{8`Oyp i E'e@T" 1UtKB wŖU*╪4? ;lhH{Dqd 7iY Dc~nΨ)Le,˄;k-uf2>ZԳernsx0<-B EK? <.nI~2}ŃF d9WbV;V9P1)&829Iz:@_Q$S=~h/mf JZF=MxwA|;"5Ҝfdl&,X؉N%'#հP~ϊʳ^w\?Ii;͕pFj&u-d'8$%gIgZa? ( I"pooF$IXLUڃ{,!3C`ΣwXG"RwS,PtiÕ7E0bŻ+'LWuxFSXPq}h@9{VÖ\Wh~XZ9;9 'A_iTp#sV#Θ7)gzc#Vj=F7zۼ 2W_ N-g5(&< 3ZGQTIRl dJV X, *#b:`Y^di t:iW_m=ަ_| A dwf0ЋlTȕs$&[1Z>+^s|}좲l7/XzsI2.8+皜^#vޖptPV,P[FeW#ncCF]$lůj;)OQ3@+i,x`2E= 'I>ا7^5KgTxWg4 9em$m@V7K-cIt7[n$\A"E^hoHI]5vPm^)Q$ZqV"JJn;I@GL9vOT6Gx3(";бIF[>;؏J,$k%߬r:ċH隨ցx*'2ެčsi7 6ځ$1rKJ_o6 ɏ)fj"@H )wَ ) vOJC@;߇eg|€VV\+A))EN]V|]T(0AZ以ݶ\i͉z&ޏ[J}X4#/F&TaŷChF7Eӡ;y5:`؋Ae-8U!Qyͤ<\RolÇڋDY"ԼحD5\\ 2$?h!w]8xgq݃ +A`(v+G4aEʜdꤚB b2Eٖjy7ˊgY&^TDDI)=aG2''if܏6ן!\ggBVV\Y=ޞC%2cZS\pl+] NB j{ (%4m׽ 6fOw,R;8C;ȷf+IpH-+.rG?yPz m}J&K<JՀ_[[ wxēׄaǬ~+i&1x%Qą ZbD i3q4fj@|y"i5 #~rYrzȠïpmr ߉L;`cNLEBvĞI0O hzPbvų~ɏ:dڻm=wc[im%iDA?j 76̌pvaBAo~z85Yer|hVj2u3ȩ yJk;1ml*ξ$p*|}F۞v6sAO3d !ҍ-+A:@" lk$d h-"9ߧ} k i{k<5+>9"si7`1&ZKH_JNQCWJg*\ , eD1yD#iiii{4 AjBf5@JK$׶?DS0v`y)g"zJm@ߓ;w  aS sq"22ow6> r5Ǣ.xw^ŤT#<9[JDIs4hcÍSq^ Dž>g_5̿#&O =X{큫5JpX1QO#8]:r2Q4(teతUskY=CeKF@.a&[MeV(A 4>r f;W?E>3W&ƋDф=B"&V{s,Il"}hgm*Kb#޺#*SY>-B{Wx[(:sq&j y9C~4ֽ:9%+pQ?N_Y=q)oPm.m<%(Krcߘ3EQ|_!(&͜3RT6DZS1҂(06rVd-JN5oȱ{d2pe 'HB$證Si(M,XS dw]~wEU\w5 U탒]DI &[`*n3uGpwSS`صרGg=}L%F-{^3xLٙ:i,,JgJ%cyҏw&HCܡOwKoӃ(*\Flǽjd5ܢyV$&3q>ldxwpwnR\_=+!'~JBߛ| ͦـt1禊l~pJHƍ"@}l-ʻ+zJs\STP6ٲ+7j#8,WI~2IpN#^4XaVmg"`I: Ū1y~)/7ކ'wct)ƺuTAŽAeh@&ABެͦTkSuJ#PB~f2=JH{m7 ׶Cf{~ۇ> ƀvSl=.@ܕ4UlެL%r(6 Fl˄Ҕ{4 qV^!x3i0꣡h5UD@4c dNt{uNhQ'֐{Ȕi_]#n[?BaYE աwN;m_>Jwol@Z:0I6hs^[4T>Z*fe˫2Y*z(:17ƨnJ&1|9FL봘ۢ9cs)ǎ r1zWUrn-j6eMKoމםOhPL?Rё;M!?lW7 %9͉W~S㶱&eC{j UrM 3>_! jCҦea)- PʈCX=aSgף FZWr->m.2Ɯz qo:'!N̼&(F_vɅ{LgI1iPtpC(^<9+]YI҄dY8 'Dcaf=c_TCg!p fu={ Ish:( '9:<ִ3\xthoSxoU]*#n"dZ6*::y%xs>_vOur+cQ?;zE囘g(M@?HwgE}ۦ?.xs3ݔu3'tW|Z!w;G?xڳ+C m@e94B1tF{I](fm[7WԒA;[Lz,6ᐟ @ (QiAɶI⍍u6 UX~mse5HoҼmtB*5vc=SݴU=FP-ճ+{[BH2^8vxΘ`̻?PD&E  Hf؀] ϧYZHk-16x':Ngl]aȥ(z:+3[xNѾS43_5?Jؖ~Hw2@xJDRk.mh59 %E#f*ᡳE<>Hrqb:.Ӡ Zq9x@XVu".,]|y@d,bfؘML'_bmu7>y~rY#[\|OЈW9(s8ldZ|c1QbIZR# hQ-!lYK$3IƑ6hɈI5ѕeKUG==b|}|/SH7C3Z&dtPI@4R H\|Mo PM6(kM~1-s.EgJS16i裩!Rrt5c%]]@TFJQNt,7!ӯeKKNX6ZOq~QM}e /bݑ"p<^'xZE?9QVy6'[IRʳHĴoުR~\|Ϛ'"  !QS'*T??ˉuK(Z62>h@_+e mdN7fhE^G])KEWd6.lL &/H]I>32PH %T1$s;,Id$e!O䮎 7d ;V@8FAP,;ͲcM.D-ծWX$a0jkS-E+Maj .KWn6N2r:{f{ɪަ%,]ߓ$^xgH0QO*qGDb]/Au=߄(aYF7rj!Sd^~M(!iY]mR‹1W"eVKT0!B)G!E9ln<(ˀ2ե8cF?e̦`aw~s9~p9Qt!Ǎ41D?Ef]D2Ba-'7 ҷ%Ρ'G7Ad 6QX$ި~Qtw7IA *q<+5fm]lХڱ!b9l'!? meHe =G1d$>qѷΙ1:N ֢` fQ&+?~$PhL)>\!Nŗe -2_륙8re(vFi@ʇtT?5n',X5!-7EwV:sͨ3*qZv@86"SGx4tM_XGIh~˰ zFR~SqAS2R3lj- jQ١}<=06QgׁN_*Dɷ/FRUCQ_\d B +oQ N<"R˒=H_ RVj)| zpcPT*yH i; Swؠ%`ΫZ~@8bi1 7qxn¾23(Ġ{_0q銤Kjvrviܾ- @i]mVͻlm"ge yCu+1zTAV3&d \.a$vhb<}`Ls s"n!A)+Htq!+QĽ6j1hA굵X\fAQ :v1XJp3xڶҷ;G{۝2K-+PhWf ᰀנڨ"SOu&d[+)e֓v2򗸭i A'5$#'.E8m1N$;o |tU* iWѨRm>t@ 0&9[iMn҅np~DM%Zsy~r}vY.݊uwgP t[dAoiCs 9(S@}{1̹'Sy6 "a Gu;rYyuL\b0شHfb3kV52aBSlT&%!٣PtF6]` ҕfLܕY[L(4H&/s>Mxu:eڦ`ഩ6N{|9j#tLOLR_CJ!L;)!ƛ&"I|[}Ӵd)ǫ"7H' El'~#TzFS1e:mkO 7PC߳R`s-<TDzZޛKFYN8n,w m'PCyt9QY;/cnX6^DLBMA"a䑃Ǡ`'N4#\ Uf)tw ɍk:MSOb܎.{,3{@ETwa;Ps)I`+{I*C:(|?quz-YX= l|WTaV]NUZBt053BJVKWaplҰ*\YAUIH5u Z\M*a[|$0H6ߕf ꮕͳm.< /&hIOEܠvj [a5ejs%8-q%{:9-t}8bz24A+m|ַ))pb-m2;w=zM}EmfPʈ>l[q$O9BG}e}؀#s2rLͬ%|[5;ZMm=GVp:އK?Fw-,@!V ~"b$O#= [&M>)8TF %,}=k#ۣ^rJ tS6n{3T)!S]Ɓ8j!^C=> cN!#EڸdIT3+ %,\aQ˻wmP8 Ϙk*pG(jfZ ˉyl'j\; *3Oҧ]TwůqB!\za}Jx=y.Q롑~z"e6Yg~~=,kѠC'd+<$-d'׶V_ql'$MLo*I:3ZIFi9*0@1^^!ӆ`TpjIئ}um)je[$f*_y|~'2/ 8$ X:&3Ӂ7/ǣi5*[Tר \cӄr0NL!p8UJ~Pʏ O# Qhcyvjm5x0YuLd%1hYy ϔAek|PT~8%YHL\e1G1%ĕ_ö Njo?^t9P0p߻(i"@ݐ?/yO O20E̿yytץ Ͱ> !RzQ'ľ^(1*{%8 (7&3aޓcM4v)s!:@'V9f~3Rk}n/-tMf0anfǕ6Q-S\{Rڐzɜ@1v2s7:`ZM SG`$EdP<xNte^8ZpNl )\ 1^_-\A #2;ƴ&/L2bJe> Bmc!HOS7g#%A{)B@6 3Bpm|E|2oi0`wٽzS%>.@̥< `5ɘL;fqG(5?dcOYm=X̀XDbF]䗳 q|\Ϯ \FS&-RDH >{Q˭`eR2FN[7[5:1R^րՖjN( 0 >K&% M1М7܏@-j Z&0F_4KI᠀5 -b) d=$m_3k\^KXX٣_$vL*F-r>j+ stJȟYNXZ.׎<|pDY7[,CqRo{0D>Xv 8nچ iP` UǨxV}\fMɿFPZE9Yְ?| ]7\'窹8;d<{qR tQZPEԊp)h,S=v'i<8x=LŮH ym< zp˔NP~(x+.%o7wٯ 'cJyrI,#jࢶ0=2Z‡ d ~/1E{{p}-.d\_  c Z/y)"zmw59!_2KMrU.g1Kt|Baӧ>▚@Y_Nd{*(*52>PX5ِa5Bv_ppS|r v x9^ &O0 xœUއ%31k+IЕiw^YYw Nj׋@h9#ڎXG`22rR [TQ9)[o龨vg:LnPoq٧iJnZ] #%`CX44f-IqřT qM2NFKV0b >ڣވƐSy^ lWe=7ܜ#Ks"/ ddefY; ]n^*b>eSN7Y3~*lb;%h~r Vd= &q3mdzIuqL:T6ۆZ>zچ [Lӌխ~E( y>h\W faˌۿS"]ROn 7Dsk"C̦drԄGglfO @3lh I҉5C_ף$7aZ$,iiPYrRYNo,ܟ:C#Sׂ`jNhH[?CMCD#,5{z2"PP}CYmd,{UeZ&wAfk< n.xɳ$Rp^sӆ"'?OJ*\jtD=%}937K*aK4a]r|:g-iC`Sg5z])qT$ȯ7sCI"0K3- 61|TD~yRr d`DGm )~rXB /]֎P * ^b)qIրbpM^%X?pn>l, {VX?ԃDz~L9 %m): >DyߓJ*R i`LXU[վ^P+T'Rt32: XYDwR-Fl"g4|;C~! u TTEC}l7+/X^6*EU8F`!Mif\X\~Hd2)Xt}G G,U1RWk(%?؉η9<[NG1{)3';D[7N 4MoXʮ& /4y- }S[fG_qo^?kolCWȖ׸خ /z'`K tj#i5ϡDLAF~VN2܀0Ga O;.3~wZ"%1bC\(vhE z6"l+4f& bp 0ܚ%StWP{Rw`bC"dc}c3 qX}憗{Iϋ; j!S9㳇e['xU]aƉMz=rgN^{5P3\^Aqt^!I.,U9=)I{Q*XrMvjSjVg3qRuIj wc\ Ͷ :}Ŋuso)ZӳC$E 4,]`qOŀk?Ttd89I!Ʊ0^DćN []zRpv[V$+tދpc47j, O-dT@ܥO]xDzBki 7P\ܱS%~͛FK;ܤUg[mdxaҍҽC+#yVmf]@=dعe۾%+u uѫfZjVʰȟ_ =V}:g3r?o@P4n*6{>q}g ǤKmz-F@B]F(^ y屷b2r)4dd©yMcl@v u .o详|aRi4CK/4<@bHkWl1k ظ#OdY`<ma%+_SvK{ʟr?:YPY$\>1I`bG@ughjP.aǗsNOb_v2hIlqX;Ǩy B@$rdܬSg_]PvŇi6;Lҗ8)+-NI~ْX2_s`>1o8oxQ#nCTk4:Lm.8,:Cv&49$;tuQ2vѴ ;*]FxB[މAV[ ˓]!p#U[sf஫\u9D+LUÎn/; j9"1G-j}DbJ~wB_f\0z`|-0'rH:Cίؖa#PƒxRk^ҵDZ8F)3`.AfwkQ+u8Us}e =HcbI#)SU7Ţf5CVaĞ&֍^ hTϑm7U31'*8r{ l"D>_bi  (* Z8{Ceu@jٯ O}IMM3];~^?x^Yq}3 :z*L9U i Py1qACVsnzsrD&6ҦLd¯9vzq^=h]rl }YS|;l&ɲJ3CRhGi0c| n׫cن bmT/Ye*3 2 ,Hl#D$;_|(>.,F hvT,rT׋zF!3YC!a8Va7UĮC ۛ(Ҩ$muB <''A6KWJ[k!+ִQ^<(½jLw?>hϵJIC_`LP:4#@ܧ5m0%A,*]Erw74~}%U|Ai<5$?FjDJ~:Re䬇!iΖG+DPlgGllډ_ XYTO4(1kVvJlV a-Y}9R ˎd˒Bęt k 0mk_ ¨~,չi7dk& Iq0z8 gr*4y D E@ &TusGhS`$h12P|a̪/!-u:DLWPNGVLRLo?|0mMIoRqkcO峐Dr0KdsZg>u Nsғ'q1k,d1_wCM9<)+f6!_=gSʮ^Y{OU:eCy/,ҰẄ|U&N/wIA34>t@HN劺z8S&n(O7(ј2~fDa1C#PږYxQ0%dh7YԛytxDJE -$&$M؀n5 5JEѵ$mZt[Uy\;$h$1,Ba,;_]I%3gݾ bpK*.MM#?Ug`?T ڸKvrS٭a@ZGB?v /X~xkI-i~dK3ۊfţ2hr5#>zUbJ Kǹ`1HL$ݧeMlŸ I *]'9޶XX!i{LĤyg0?{,Ҋtp-[YHx~e[Rh:ܯ a-}cUҢ|CgB>׮@a}_Te{3-3Bifqf(s+dAb$(?Zxujcj0&J[T2f%9'`8w^959^?:`$ByL ngHC9Q}Q~FGP,6SuuD1zgZh ~c'E^0x#"V]XJ0ۺ)ӒD*<Hx*ۖ҈txR|ݍX{Qʆ= (|bY͙|̈gy-MAd{4l 6%xBYM5R"~{EOZP/U_[ѻψ-W]cvaQ 7'a^헫gA)\F)N$`ك 3 ѷۡ!yqI1R^i5z<YRj .!(';0:&tgj9j,+v~R=on v該<%~jS~GjuPYU}*4OFA eɻu>a⩕G}m]*$Ā0Hڳ9w8$/n^*Þ8nk}yV_f Jg5R]-e ſ>)mut=nKX2,Mu@Uz*GcNd iie$>9#e3h'U= /,,zbfMB..ߩA"~'-m"CS;ȌYzm -ao$ I581CX509:QO MxH.*b$lljlx!Vq!H6}Ӯ?r+ڧ>A ϶_\)h!# IL$$n]SXfX>á. 7aߞP#Ez{E m%^,-&XəmWϹ!oU.(ı J–r9qhȑd"_C/_$ԛ+'XXVsݱ v5,jl \U 3Ɯ.OzeO{m䄈WUɐw պ N.0WTOZ*+EDd[oZۼ{Ɵ=Z ] N} dj2VyɵhHv U7,/(徻z󑋷45 gOR}S[T:0-ϳvuF0($P:*=KU}@}t,{">:8!6W|B&NIx.tZt[5c0}j3~N :ml#ݨm&D7[a'8u=!ie>9PMBN/~*5Ԣ Kv J+z?UxQ|t q4(O\g/+hڷƿFL38"xc&F>c{7>aeT\_$+\`^p77gW^lk޹=d~aB j}+߭І?zWAL|mkHp酏UHt1`^4c*سyΚOEF bkH~/E)oޏGƷ*a:m\xp΄f̼CqgB8΂y[.+{ƅa>yթIY)HzcO3 )Io6DșWl$o}/fދ=}>EKm+[ܐv] ۔IK kTޤ: q'st¯{yb<'1CG%2YMJ }$[(i.s2cgK4E5nrP >PqaŅiwg- gVs 93]L8xx~( ׃4w- K/Z W)m `_Pg4/پJ(2: -5Hn[q}Iy\ˮX䵎4r S{f kڃTN9&,~*m:usw<=\S**"8zepzÆ|<_Y3)oY8SME=` G43tZqʍI:5ts.}An?zgєab(9Jmyy g7'G]kՒ")x:4w! i=D8 Rɩ ܤ"&O" C{n"!Qn֢yW-D`7 t)ἠ>VS{/ 6vַN2yget?F|$=>J5JKɦ]V), jVukH%Yp)Π lrbKk>v}u}PjLtMʼ暱l6ŗRL| $._NU9 kgn<?~WyK@@TMJ3=Lc-_Uޏ, l`%=aw',RikЉ&5eY1y Vk &4MjPCFsх M\Q@8ͱ@!pշ2,0S\-BԖ+$ @#K!pDulK \ҢBd d%k"U-o8mUt#OECvODڑ.cw9"ֹ`*[NrK{D ,_&ʉt{:Y:~Jp[: L eBU\ƟsCnfbL ` UF?U]T-8ݖl+b3:k<\#9NsqsP`>] t8 I=? :RExytE4>;rcYVNP:Unmiz9'BbpY|sfK(~B 56S1 GwkZЯ 0 [YnWi5%թO|@Qh\.@RDikr ߭9^H;d/"Se)A'xz_giG/򨊹rh&'䩟Wj>JЬB'x.h| pl*-=Z҉Y/ #Q )ȥc ̗^ǫrf:Yk[R%.Cc/"|0(]_*H.lW_1 ^nYy>l=RHⷵWhsSjPvQ¼,U#?d/tpJ'1D|A2Ӳw\PINnSy@6DTvR,'f WQx6N Lhͭ2|reke@@0R)571QHH|{l-Ű? R ^ZxWK} 牝 )5kҎBbeD`9 w#4#W~kC67vOj55d=uMi)ӷo8ۀ=bl>}ur$bb[u\=| &MrƠ$7w(H~o;vD'oND0`}~_Yh#nKXʬ罪?RU3+p 1¨5pJs9 nM%,dx{aY݇=lLM*Rk`$LRanD zP E!"X%9J2QY)XCI14IG`Q>=tL4^1(p>${,*"+x1T!M/3aQNMMg7Edx! p>__4NZ+i`v2M$XC+zsR+_=G*9dozо?/!5ܫ;O冈]%56K_ҿe}ebn`޲S/9jiI+¹S&X=C0|x7V%Up<oF&JJ.T)E$ jHl;uXZPF,ف`>-2v3H^ giʚuq[7/1Hz|kPͪZ*!hqL^@;蒡_i5oXiQxL>EaR` Ry"rXf́:*V~K` Gq*j4khIB8\h_ZԧH~T%\7;.UL 6H  gQ@gX/w %1>UQrkZPZm:K mK9lXK[TwaOR A:;*؊ 1+lRT?5J֧ƔZXpp]nbM `wzKW橋hTH潞Sof`F8ԑ Z ٟy#tH@p&;ؼDbY9Cmٌpo;9\oRtq{VD~oCAEn' Q%O'4K [)q>y$J{p{7Iܮn?a aoy]sQn{Rhm$]IfƩgF39To4a;nwU "G!n<ӻ9LPKcٸ1DZV] KyYWjb0(GvG)UkR5>NO)$o.vN@s@@y:sf@B*!5S_ L)h9(Zcg8BC| 99!KMY@OKCoPf~)gVcdDȩ)iyD<]l) P64bMzy9ALJ"]1k=&$w}c7m2;d‘Z12qdWcRExLxQNy݇&:X!w)=ҸJ(QҭQ~[" FkC|>K"#^Q/o̡:F l^s|ƛl/ Y,,90>EӻpF` [j˲-͆|Bro1Į`YTE~7U-BAgX!d"%fU/p+nnB@?#ؕ4أ-#xgc%09u'ܒ9j%];;W%10J8X7 ܭfb1(h0<5xe@wVmݖ61EVk2ClxeגFpC/pB–@A#)~H'SW,Pl.Rwb/[FА0n5]`:e9|˒%@_CT4/Vּ-=i񥹛#f[&`Cal*ӈH~asH9Ξg WՅF#|T"xW{AÐL G+Jrsh}~wTRQcJLƇbxRGMm,v%56(^4TSO%uzPܓz<E%N#L5rv@AQǙnu=v3QՕ3W6quG;Vh$s59P#\A#O(sFE0,d 5x#9j-y\{=Pp~H{$-8{ET6Gd(R) 6 ֯_کGXF%I,oԚðD+~]q.~5ivU6d%apSZ'6|JYq:7P;=JD]36+x3# WY$CzjrrD%f'n\@VΊv20F_ Narym/b}L12)fF L2[:i 6u|y~(( Xo_hAW2z3ZmO NRIJ3~Eی0NoecbfeVpbV(P{ܧ+ƨGDK~Z4|f|6qҞvd鰽C63S5DYOr`ODՍeޭO؅_rZkkL:O>ZǞGn9 "PP,|6cC[=}2=mT # O s2V s<8DnƓB &KZPa2梨JOdpr3֔[]ekL ~9VYfǚc~DRrQ}zG{% bMr,vLiR{Yn]5=^/ K_E|?D0qX[emqY"~Γ4§#j-;1@>M4xxrRl<=2ԕ}? d-AE[-/̡r%t&@ŶUP2:3+~i]Z:}o/B K5d#.Cx<; [R8* kF*," fӆ;e2*pÈG:0tnrn6v; ڐ)p/K=˨*&1r>aE@zUPc8oZāL+T 3^3 m.͞lKުLP9/,K[r/lyc{9<6P[d@^].:O +F+bsDYIm0N _ 4v{@'H)g8RuUרݸ,?=f0{q GbF.7ЗΔJ \~* ^ys6lMbS/ǗLOj6'u_#^A1.*K!I<+W3Q(D'>/o) = B\똹f ?]/IW5s˼!j/a1C5 P<@Q)3 e]h aRk1!KPR +s遌zs@k;-/+F*yBl#FOY 'AC3mw\b洎[ݚ"+ևhV--+wdՄْFЧ3qvC?m+v v%?RvSڔ0+dwБZV+# ,YN0|k:}}%'}^R=35 #;[\VFM̑'?m:IjzsT>fRNɆ{S$6ZVp֔`,Ҭٴs۴0O,8ԽU@B\z;Kq7@/WUO3v7;)2׈-#p 7 \#fSyE$RYl7 nɌiw\cԈs ttvWO$; sml?+zV0K}¬z:9TGĩ]ǝ'vMQ3ZPO3h95}A9 \[(bZq]b\ܙ0*Y$8GM8K4 '}:R:8!=[RȒO))ɜezJ/i@MK 7ՍqPaStW; M "O{H9E\g7(o<^`]C AenCS/VR@)%`m$Z|-, b^1$XS=,RRo"L*r{JO9H'c:iqt޺RG+ 0/tJ]k?s?LZC{WB`[,_dl. Aj\M22:J ݻ#4 76dP( k9=cM%ܪ:T.ݗBC^\9 i~߼*]ZM\rePiH_c0K(/js@ϴK=b]W 0_U]v+8+An]'6W;:|Єl]v$Kp6 v_#T_k7Y[ DE~9BVW} Kܺ T_DJS]{?Ψ `o7r3HX1\M,mJe.71)V!tk7Nn8^)5Z57ƒ]%Ⱥ3aۗp6 N<)$\s  fBɶ&ɫYRɃQK>uC >"f2:<ΡNv<-^1IsN 0I0^L`]Af>\/<>ʴK7ogJѐXykיpõ5pHOD.5))<]DžW~(Nן!qD[wxd2Tz׹z)\"hm'b'ۀhel]Yd.kHЧ2b>UGuLixo:<'fM+cȚu{YV3ߎ/u=;#j6>jEC:_XcQaf,ԛN7g; "R5 6^ϳ\wƗj~ʔ'E>(=,A-|AHYKho5=k)x-leuOoa\yvJ;V>$?uBj jbͽpKn'X%$G`;}Ed>=9}RZxK?>kiTȼ4zaIm4eйS<:XN0%@qD2\@Z&^X U.Ve9wHڸfC*;8"QT~^;z Ɂ<툋w;}!d,鈯"rW<s!WÚ6|^dF"1=? hNd{ZߒP:%xG9˱T)rX+"re[ V/ f.Yh|~eYQ &韮M8y:P vm@[?-:DeA"|]6"ZxS>BWûP%lΓ*8S(Kɾ ̱~L=q}]A×wfiZp<;n #`+[ rvh"碧 Ɨ4cT 'W2GyC u6In !D!$=^;)&n5 h+*ـl#2Q/M _v M 6?Sq;qfoؙ~V%;БȢ9Tg}~xn7ЗI9vjLWoҗoDUq$-MEaBv:ƤD%3vH_N6j^Kՙ +˅ň}լ+"K!)m@Xq:*r@a*NhhqB~ qDW[0Y1~jJ39AjTx\&݉C Zj!qS2劻ŔJ1݂E1#k1LN C,U1Lcnͪa' 3`|XaX֏Y/D".|J}.`BF55α26lWßqQWq .fTenF`qo"Q"\) ]5wec0;سĤN7|0ȽOy,<2mܲ HGXz% _Rv*rMig[}X(~NNYXӗME4o$ :#VY pnPeOzB`{E-.=V̳?5FOR1Lor'o B6hˮ'Vf})V7kqC2D)Ҷ Tf[v'Y:uĹi_R5c_/\s² m^1-z0C_'rk6uAXK*ٖJT+/O|d:F_ԟp}л{%K6tg'3N2VrnE!ѫlp}ˁ6nX.}+U]տ?ٹټ </`9[?LO }_^3jb(+^4lG#۶K(J|?~pEOvˮɔI.a깏{q)ymw;}+y=q7 t-vmˆ Ta)0L Tӫ YW&EPGC!چi٢+A~o$ډ8ĘUSh6̐d8>/;'K+Tzܸ]ČodjZ۫j,~_ >=N1,Jk(;Вg (mlBaZ &JWFV՚] +{4 lj59WT$$ؖPR60#3E̢'AW7~<<5cO۲'hM%r1=[ite!v;=jh ړTmSLr$$7}~½1SAXmAn8[r!\ԙʀQ`#AiHpmxȗ[=h1eULhֲƪUxF 4 ؖK# (!MFr?Gܥδ _s')*H:z:Fn%a*$klkJ8H(FX9us,񽡩]ݱTaIS ~!fV6"麻4SMp.ºIaV3NŸ!6{TYUSQ.נt~?Խs?oYW<޼sY]~ c۟F"s=j'ة?`%e; p@B(nǒ4ATqMk),ZmGkef7h;;XCaO]`ki&D*kyu^kyqyTT_ZƏɍ Rݢ#ʖu,_Be9(.Bj}Ş/ u1+@ (+Vj )ו+suue(~LW)vSeR4Z? jQSsTS۵o(+c&1`8 #~D|'+֥0O6$$w՞B J%7ÌuU)0e%k d=R&9D-\y/2`?ǖfĬIjwe?LLpKjdpD<2ͅ ~YڣPִʌxPO]fe|FB?c)V _vaV|N /f bKL m bi{;+ * zXG<6]J5؏ etȟl7:]LY:^8ߤ\Tv;h+.\lCDA| yLB`ͣMJ:ʊ\m{4CErGVn)֥6:TMwIoy`{<h;_4DcZ?aihI H!(M3&khnN.)? oUqVI]*yd'/ tJ5xs7Q92P*V Ƅ{5x[m*!d48"]ʖZUb)H{"!!9F\-j4'Ik^ NFOm;U`[@VhOG/BPz21IJ;BJBES.ҮD`$=5K%;J&x G(ٔ`Jv&\knavqpXD\eySʯDdbvAX#Rv y_kg,B6#ޫG!"оw\}ZFT'[BAH|7WD)1^p~*tQԳ|]Dڑ* 2k2]ʌP̫QF"EHs.(UnILg=?}X: <-b#adqFrZvG(F}_Cs /l7u 礈cQX;ia_y\nP5o;7beGpКN7Fp֗2aͅ,ę \s7ph[3M-Ύvab$n& ~6?t4+?sƆC-.wmR_sOi뒑`b^Y7rA)k4^5+ЎAKVQs**vLjU<)\h$eyɑB/*w> B>rIT~tH"c@xɠ3f! KȘ1\3aq.AQCSrZjK/ Nc» IY^nuMMp 8q Tp{TrsNvc64o :t9AGʄԶ2y'A`v*rX~*<ŠW0 CB2%un+uGۑKoz F[\ .Ew#o޶ CYkQwdͮGtixۭ昙H-x++T³һ2+ƺgb)KBR2nY^B>c̰Ƴ)2G~gt *"?څ "]}=\/|BM"p|"8Zx{S.Ю)W_CktR՗x JG}3_MmMH[xi+Dqqq1T9 pvKk)iS8c>A<.p>_-20cz畳]ˆ<N)[Dn/]IB8ތchsw 3}D۰hg CG&x}qVy $Q_9Q=~l+epTe"H97 qQ_0yȚb+k=39Fk1iد$0N` }m0tڴwQ9/?grץvMP۟ƙ ;J$&Ƴ `4FU6 GlРﵸ\V!! {U趒Svtt=o7pew9+~Ϡ(q7a[^aa×% " kd p֨\Ey‡ 7(<}EL{ K/폘w Mf:1Nw&M$nivE< $^(מFu4-#\ŎL]H)%S*G,eS8߳_(7d%·/Nv|"#|&؋C[XBNVko(W0IBoglf9o9Ys-C8[[FJD}5.23͵ʝiZ!Zi\~!p&8[q:cӀ-C?R_s6Qn;RP@At9@[0c+jDusj#oYs'~|ucd,iomqH */($\eDш{v*H!7d^>oRLD4&e|h~B"@@X/JC0-X4ER;yޥޫsQZ:f{FRw<`fR_ 2+~4"jf )ۘBNVNl@wkdsOɗ~ q;.j LiY,+wr5wu|Qݔ촐;SJ~XƐ"62=灄! ,\9`ښ BSGٟ8j0i*W&b B +H(H2<-BCĒ)FGHvS=0T(e?\;vbEmlnEn"nr 8 ̉y˹CӐ6b TH?usa=bڼ`mșU\724oՁG $M=dE ^Xe}ުLfbC8+5~|촘}5+r;Ck_ە9QrlZ˛@>u? "IW&ş)ncUޢre]Gʱ^s0f&Jn&q #3:H'wzI~ig򚯮Mjb~F?ŖG&wLਫUΟSV˲h0Wjuwb`I~Y˶T!r.+D+.7&x<$)r%.R20jg{om}22v9p^H˒ya/SG*.Y̥,G:ry S1*d2F&Ӣ;kEݯYgGw{J÷SLW7r&GxrNqL;t9/o4'LDHWo%oG$FScKY¯aW>AIG Tkm~Ruө[tdKS0[k1 ct:K&(蔤C`QN0 +Q1ǟUg'o` @@8ҏ㻐ebAD2$exScޅIu#*9%l'p+tp eDm+817!sZN@<v9 haaXN{BDV]JcΣ)eKEFv73SM.VRfP!Q+ʸ#7L8چo~<6}YWT\a/ T!Y ;U2.AԀ麃ӷi53%Xw!*rPDZ/zx>rUrpn ӟ"WxK@W[QV>Q/N^gn|J+\ԓΜ_۸mM+HQ?eG 'JB7ꦕ' Cjޢ ^woP 6cjǕi<,UP}>4dԷCx<ӲxǍ@ (ݾ4ʪ`)-L+”RǪ6~'K  B9K:f,JWYstXj^+^MpQC!?:E j0sDT^d Jģ^UlD#iҬy̨dިFO\ۏ>7V0ʾdQP/֙ѕ6p [,ӵ/aQYFtx4SS4d;bچq7Ep@}B6RU^() ~OiH&nPϙ5VvV8A˶5|~NLߜ5E!*bI?!j?"˻dkx roag#T`?f Q&ʺ%(7nw]f(>P,e5ԐYи)yZBC ,dn踅G̒n߯Ţ.tUR>}gM/YT( AjGmWȒ Ґ 1zovй [;xރ TyY}`i##bm;1`g"CںV^pG4gQwH3[u,  Pٲr\%X捞&710V"GdX:\a1`=tѴP.{ ȷWI_ ݸY֏۵-"]h[UTl(b%1k/Ty5Eo, 9p517Ln{Dѳ+h'>z$>m 0b w;wsS5eFh/r_5^, O2=-ɯ;=Qtɔ.r㷅158Q4Zf{M7TOqf*cЭ-mNh s `M^q XexW`|fXVSi|NhM.^Ng ᭒sJA`x\4MJL6m XGJND͛t.$z :T"ԃ5IO/]5}zm]UeRcQޅ/di]&y S-痸l^L~_Ï jtl#⁙)&3v1Bֱ3WnNpAbYzߒ/EV4Je :HD25JҠI`Jk/{ǡb!!4̞cA9GCGLqSjb[s&)$aDɚҿVT7NhגFj I@Up.AFoVNp_ּJg`ϟNF2Y0;+z~ĠF ,}?'nrFJhig/Vۄ?/>)׫ ]1."s̎^;9B<^xʶQLWrw /oŖɾq DIW8ɇo%KM+ 1] X?|Cn I`YE!-`{E$\i3g}#l←h ^d@\jq gH1%%N~Da`) @?m:ĺ ZР](!ڲoP\3yɱ@`4۸qCfMf:qsB`{ayO5Z KO^xX1XX̺ >eI8=90fS_y3lѪVF,v ;&j _9B40^HCî)yܮRt^[ӠMۦ`6ݯ&FUōne_鏘0&(~-scSǾGsW([f)4|#Ekͥlvl3`;~ ~LUR0ĜUuO˸!w{J ۯwzֲ%t. !jd$u:Nx|6鈐PYD'ߒC;{Wh%s݈φ͗#҉EB@ (w>nri!x}hnS ',Z^3e*c,zk3έ-[pӗ~7ɮ9!juJ4 QlÁ[#obۮk2|7{D M.}sL ng+'&5cH]/'\2I%J8]1seg[3R qċ8ctc)CN{knEvgS$FIQffSt;.>$0^7qz1~(SJk8Wt3-x3$)h\l~(XryM 9v<0e>!HL"@b g"wcG+\ڿbJ M>W+}.7Ty  :8ejG0=ӮVJK&v&}N|C.R;g3Yh?+>'lMӭآ$ #҂C?CX_xS$e-K}c_jw#T q/?#q)aTupћt0 EKtpں"eP~.BY gvqg)k\\%W;듂VPy;ā=v;mkzOο'oq,NA!{3G>%g:} 7" !oѧq|S-o2&TZ+ʗy~aSv벯15 b6Sq|&SҰ.:8<@$_ + G zkU`WĹ}wؓ 2 /˱T.{+⢜ʐ0z"1Rs8`l=52:u )Qajb`*7XkN"Z[NB6ZaO){1訄2A4HIڋ:)%ڹ:gqDVP|4`䙸݃$3"!,cp!(Mޜ ϻ-a4v8ߠg}A<Af7Om_s Ku\H=YV\#ǡ"n魰+(#r -pӂڦ+oK#?2'(^DaQ'_,{zY-.n-EY36áp?AQBKA4dF@n:--1RICPF5x&3);@}Z\Tvb̰7P, 3H }F崙eR3JՆ:fOէd0{H2sRuU AZL0{̹6d2l"gAv"n4^ Jv ]ETbƧ%OE|fu`6q)sĂ(emZ1E J>pMƑnO屗!lG[4G C.4*XprW /H;:<*\ӏ_ c,[dsprJ_RuF72 tr+c?yK3Q/ا@㭶>6uv8#9A]ۘ1B^H5^mơ7g KmڸlŞiZUj9ySV )1x@>Gd+ni}w8Jg'G;.~0xoMpv@&l}z'Y9mk4*Ť%)Aa~% "V7ˊJȴ]):oqRDt V$[51Pt75ᓘ!wžw0S`}Ɓ{%\ 7]#mO 2UG_`GU@1VkMWp3)<%#qS >; %|YUdZ+.֞X3TnJS{'>9ej[`׿s0PWM.gӠσT 7_y|S<˧VRnM@CV!UcdXӎc+O>b6̖U@i'%RXugO +&~- 6W^4twqf5q]t+J&4I](R )̬A] usߞJC9^}a)"% ѳf~^_%B5 ,^2c`EJƛ9?WKNs$L&'d?Gα,`~SpP'B=w$Fν EV,&Sp;:ԩM Rls(>V$1KP+.fk1YͰB,ESbTCՌg2xW&GЕgU(rC^,"@qDܨǓBts6qbL~#~Kp:8wED[Ÿ C(0O)8eڻa PGܴi=@))P:S^++'< 'HSH^*3:;Ylp,ᘣ2^pbF1*9Cw(sh/zzu2d&}m#wEǔӻ%ۗսg;S-e<ģ$rcʸu%y7 Qn3szoǗ{t0K!vJp2< |vo. 3q&j*QMc nf9umYJ1:^(G$g4Au7LݞY(9LBk <9*N9]DxkLA@P"Hݴ; 2 $lPQ\EVdH/қ_6[6%(YA ! joe>}((z3qN}fw<@Tlp(}=9PfikOY|q2A^Ol3I-:.4 {TYƅʖ.-%x!֯FpsIo d/Z%aP0P>θHʵ5|#^9Wii+ &{+z>hwBqX4d9skE ןz|-k {!fB<qy”JGK}hps ˢ3\)o-WK +?;qe/N:2KwXR-:&B6~G ^oA7p5C4j?ƄxtoK)]x'D)Iف vgx[l]h%. וr' WRv͚4HIIo,6qj"+4|ܜ$a0!@~UsH%uw#a($C[0կi&S|ٚV-e=+,ѩzieE;J*9=ܞ Jd*>!zC6QP):-=kwC~ 99A/7=U%]3Í8YnRY|Q isϛHY<{QO*h3L2^EO49JSNeIUn|VK<á(?r~{Pk HS8|q1HUW'G&ȗ"cLrsdXfm6?=`Mgh/M.e 7c=c#os5]8R,q(%eHr*r['\5 ,P: ah)cZ6?X2A4ݨ)>*a"1ek' :5]*.-t<8}8-Df#Io8 v7i}9W eSL9+m,~Ǹv1v:^R .?6S:/3AGy= :γ5hR=rTi@|Jw6G z8NT=lqTAi!{!;/Ғ|ƴ<^}48Or15tIbviU&!y4Gt{|Ňc-e7~hR(sh_ŬPQ哴@;`ɤ]ːOKhi,0K |V,ѥjng1l:JS5i|lK5/NlRH|zvA7B5dl;zΜ݁᫐CCMэ; ZEҁӀ4G~6z,ϔ i+i49FOdUVBF^&zثNdaQ p7b֖0<l% V^ pNu9õXGR }fs/1gߒÀ@9^^c(͈sjwՒ$Na3o3ɐV:KܹeJ') eX='`p Ar"dI!=ٓ(B[KC2[gӜ5Wib&NZK~ 8n ry7D2f !߽)̷Dυ``]aZ98ilP,b 56\d%yƭBPv8b 'ZW8$\8Dp]o;ӫL (㵐(8`KL;iu6cePj<)9,re$S10+I*op9llO!I6ѾDf,Ӵ*%qLkBЍMY,܁ݵi{)o&%ώVy\}d22)\@Vִߚ*NXd-t|0L9DB{E>^ "o arxn*awJvIwJ^Rr$6 Dž>8A"}~_>o9hkϽ8=KR-&H q cgzPF >iWPIiI,M2m ExJoVcVԜZcŴS8w]]JlFoŌ`SدZ|+4a긎1wQc 1ngߢP7ⴍ'4&GRNW 6FՅ\5 &AXe~  0jŻ`<3=g7zi /@f>nl oX ̍_`(;r)3+#X_2zWO\H소YXHӻtvc[._M e lX/5Ahqj=KxiUqutUVƾz TKᣙ5>P`(- m6s*̭,&D;pɹ?„5*Bm@TQk(V#I(`iZ`?(n$QRX.󡘒Za].ۼ*e\t0Jv@BF,"H\GLc\ԷDwgʁם|5nvszs~ b6:N"63j+ fnľQZi=]1M. uvq+e),@ kˀhZwfl涽4j[)$R}`[T_3׾.yr9_&0xQXs}vuJ6N2#vdeR,B:|J_7&7: Z8TôԆOt㱞2,1 ӵM 0&B$D}a6ކlZ޹_6I\h#C)[nNp0Q\j_VBokLW d>-\^B$9碪de;O5gYJ[ t/-Čmo] ;8 3l@;8;LDヒ'(q7.DQ,e0^0DU٨{DllAZ)<3 #UOM瞶zw 1RBH6Z3W Q OwAZl]\zDK]r6+{Z#]*}NS2z<ʯ8’Ćə1RE~y?6M/XŀyݟzJG?&|ѫaÓˎ_Nbkb V%۬,99e"ZvcۇN}Z^2X.~Ȋ8e)'"<$"Ma@gʻ&eh5Ƀ0NHIçNr0"VT aI6%}EZX|,t:NÐ!$/PƉm*.rz SK^8ekCt+tp;?VbʦoN L54*B\R[s3(O*d|dx„j ,gSw!˟:7ifİ$i醙3tO/`I}8kN}r4/TUHMC}?ld>SKB j/)i뵰d&'}D,Ŀ[C؄G;b|%}`(E#ꍘa 3D [QA' !^${>twCUjB/I:3ydٳwͩs8z1xtzKP%ǿ15hMwkkJ孳:@IFØR-"Sδ Stq'%S;E׊޸(-L5s 90*;ֱ5%MdfSg"gO=]x. Zp(>zjnb-%Vb,(4A=8S@CQ. # [2qHŧU[`H}h@Gz!loZ_y'j<.$5~Jn):c)O}`҇d8?Zy(w HՇ_Լ]FvXB^f?\زk/2=[! R"ޱwRPZY |0?TǢ&7(q^sS׍ӫv;܎\WhitfuJrJFs,#=Hˋ}BFXa< LbvAe:9>V*=Ŋ=i#QJaP?1O(1us|\M5WoLCGea9_J% JSFnLz6žaO-"ʶi s!)73L5GK:oK4dɗ{5IGjĔd@-E`Y=,^ӘP`ʬo*VQh#m#ljJnw^Ar,ls3%[h!aߜ[ioT@'R %7A7}HthٻY/sR_MxyJT[`: pg2YkdTA+hs腹?#0 ` 51izw5~ J}k<\wDZEz*`Ů rx?F \F1=sn,1,pYwxۗ.9PC"]%hfq@lyy+HpEtм'#v9I iQ1]TWs3dL(K{v4Sjis/(c`䥘mˏA C6A?9V6oS%ӽE_I CH]GxWZ;L7)t^=RA&8lSwV&igy@5VT]d]V>١M -H9*X]9o cz}Znp 2Yt%r~kࡏ~ABZ.Rh|5RKL?\Ofjn(ǎ76AP6Dd5h}Bꮡ"̬LTL res:z'u9y#pn\ܞqqeXulrU/Hƌ/ `qӿ$k"NbeQ)vThKRܳUZT;^D:e%ԨE 5O*Ž9Î)H~\;Mw;[݉Kw%]Cue,(d,pT"15THxCЯ_g/Ќ&۶ ~ y 7NSf%G=)sbS@t#bUZKu[dIhctٍ8 dʴ"/}10kWsE?*A-n, ^ު垾0W>ܗ_:atohB%nU}Ljpy7dxpC C gdʇܻFiKF=\L{*Fw􆤩{O+< fVg=0=UxaeFRCKЍ\&8՗<<00nڔZ vn$|X@k[qyNvD|0ڻZMpsA/ԾBkK-/8WUW z̠qe0eDZ#VzIQ  UˣahOkXZ܅]-=h8rKR3~ToI m&b}J0{_l٘ EzHiW&nk5[272znwjGz\YfIqv( N[ >:݋uґi괟ܱaJa/_UQu Y(wS) &'c BϵSFqjSzB%e17)@_T ;ȎiWMb-z9D$-4M婵Wa'tǯ;UU ˜O lVjc^2# FQ?JBJ5v'3wCg7btKe;̓ĂE ./ T JY&R]$h!V|w-ExGK!|},&9+(]ٚ\Qxф]!(A94Zh|LL7 {t@G-Ly̿];GE>LPĚm=٣'H5D0w2z;JhУ[8 =N`Z\e]KM1&d60mAJle45ɻuyOyM[3ާAZM7,/U^*ʹ}ZeUii@#i$3ّw,Ӂ;<(;̷|aA>V[IONƵ kqLE9E#"⊞lb"1+W*وFE ޵5pٶŚ&n;gx@ Fqxr]ՕFSjgL;"_14@H4*ߵE$udd1~z/A̠ Ak ;',Mog+w ­uBKBXRlgE7чz}nQOxrOymCh6Јx^vғwgV?%\PE9pʀ +JeDk u g-:JL]*MU6Xw.TY7C,8U0g:qijF=Vl83t"G q}D>320Lԍ rbl4d8~jJ4C7ysBn`m[f@ 0ux|xbe1)'>Kd9N/?^+ hXᲂ|%6XB_uP-?ѕhŻNvk=-ՂdlEqmv,mdoH5oi1ZH53)NwP -;8M [GDt77YOu'M#Qݜ*+~"awjuK,"Ħ]GPM]ԟW ҃?D֫/<; [8?pn3:(Aii+AUq}2ģ5-$NGkԗ+k5f4]}VS#KNPL'Js t>,ߪr`+X:;LĴb8*zzf_rl~,inL&A&cr()x^vfY+wuvo;bC?)Pvg&K>j+6uOoA3c3gu,$9=2'>ZZ"f  yDa"hS>q!ۘⲥ7V!1܎;MP!N swWR}ldZ[I P8Y^>\,G5G>Z,Mn;dQIn̓ms6d4a >#H 3t#;vl08UXDE&%뭻XY|KFeź튥AI,9&Maz۬ޅx5P۔&6{ 1#הm ҫ޻3Q57GPvP8; ZY%VR"_ u=]*e;?OSRDHG+7 Y#jg:CF&ɥ)1|v }&Y1Zڰr'rսW3bÅJXx,뻪TA)1\6f#3߿S i+c(sK' bv]FG3=ۮQ~ 4V&+Zgp?&LXqH59r8k\{ +45`;g7/{ޣQd1}oB,A쌪KXnù c)d߱sdO*z,'qRm5).Eꛥt{w|YK5Ԉ}M݅1OLkyzҹks1u_S/d214 [ȞJ}>q4AĎ]J2y?]Ktb*~>׳'gzuЮPԬ)BAj֛G 1LɝB f@IÆ! + * LtiCoG}\/Iy޶h׳TެVP[ϻgpz,(K΅Q篘(b15˓G(Ҳ=w}R)Pz}} 3}Ne%V9Cп!A›L;֩/ aXz9Fi#VQ[ME-&!u@Hz`İ9o^#)2`J 5YC:AeotEMK?3۟qV<+B=H/Xj;bm2QBW f$iOo7GT[a\ߥW;Rt;*c*e3N떾}\ʫ.MŧDCsܣ,5/!'˭Uql[W&.aar?'NlNIV|>Zgf6Y rIQ,мrÌXB wO +/2->K.x"-"2dpa@N ҆y]tÑ =-xhG~G_U䈼峾bƹY%#Y)㦴Of^:@RcbոM~̼)15kۍe)ޑ)0ZB-$Sg)qM8_ I|ۿU:TM2 Bq.<{*U_ې@`EБ>M5c8CHɅ.J_H,*zod9;DIaZn;ޛA?YU40a˽]`D> T@q 6?pl4SpO>Rk EB]N  OOQtaveS.b\Gp|/qk5QVVl8'}p$kx V$p^MRޝDs^ZLbK[*F'1[W,8{9뼔Hf)(#`0"-DY"]58fd"L_20|-`5]W3v( Z ,H|24ڡ0S2 NH 9albMi ޜ:%!G Y1:F%7=Jw.ꀾ bIoC$ %(d҉* }K!sO81~R@EYr6ɱKCY˔PBViu,2Zu1hb)_? ə*+\"āa2&Gu:F*\h_ᗺ q`Sy"K4a*y?AЂ?NHӺ6 oZ%|_ECrT=s*WU[6Q{ǢwMefF_bW=ڋMeU=3-\rGQ(בy{C_PlvwޫscһwbpŔIy :\0zբȌ5bƨszΕÔQaMqF!eLwP3mRg^Pi@N+t[ײ?`p$682^):Ŵc?͉uf<;0nmJرٹN`O=މ3[pZgKD?\XY[z>;FaF|Uη-i I=WMTTą$ءtISVrl:¯D MHOnUK&.O?t(;l6 `3e'6!6YԸ:y!/j738J(Z^y@!48(Ҍj Hvj[Jb|zϊZF#YdyoR+.Hޜ\č['fk+WeQt#'rpҬEjK47-V>f̙h( ΅\Y`V(g Ȁ9M- KY-鹻v-6K3 ?QkBݙo>pꎮ;[Y w4(5ןBU7<yS4JX쁏`~9"M:@k_\*7]9z+N]o `o}roߒvD"~"!iIerFT=O&XwɁXbAmŀ@k|@x}kfi^uцXg1ic>[h*ʝw$~9wA#\ߤξ[@̳Z]E79_x*Z`M02+7F&NaD@ 'RlYUmH]%r&NZe)CgILY^|xͥ GO:W~<ߢٍG)Zo/igdְ;)X}JIo4ie)R[rhY{+AuC'kS@/ xtN.{אm*{YQ%zjX)Ʒ4>+vNK9;UͫwbفkgÆ'm~0!YwuZIG#粍 ٠]!Pxv2i%.Y lazgb8V}M|of杁`P ]Aɽ9IlT(T1<%2Zƀ- {sPF@ ~PbisX^#ۅa.[w]hUu|6xe9J} ܳ 'Ob?ވ ?JtV3#n+}z.M^,IiF|}Ȁ u8M3]Bg3\ l-.K77n {k$.jKn(0xȞ kۛ6s t[ZvI?K,/~TH/s \,ԸJ֖ iPܔBF S & Nh3lOJЂ{&Se8t<:i6@`J@gOoZ~=e,<ڞtbO_ YTa:=IɁkA.K&害ۨk X=$ 7(쳉V5ZTDؼ$#RhU`IұKw)ޙ"4xG3{<+{H9'2.Q*@$RzOg 4IŢ Fb2 ON5Qju>&g_iGI&)d,܈-} d5/%~0V/]5i1,!ad$0E] Z3G0]8_`.R&63lˋ| hFF3\ݯQ{kƫ83T{>gRw-xԸaqcʷ{([oP73(XGJ n_WLWnG:Pm_}5-<<6Q߯azSg@m75Ћ1cDIb>8_B)Y 03ȚYK~ZE =!Z|\ Dj? ӻ\ⒶWOJYǦbjn cQKQg {^~A#mg^3&]BKk%3cgV;V5Uݶz}o-e .''u/Yt+ rZ̖/S.f :Tc +ōT_-(M:['YYoԮm8ϷVkT;{5%f cp+n0C佱 !: YZ