selinux-policy-devel-3.13.1-192.el7_5.6>t  DH`p[z $ƨZdf0Ѓu>l-ٜo_q1㥶A0Rl_# ,۫.1*^40?\0 /Z6f+ֽSyh&hpJL4zh@h2C#yqѺB~ciM)\[;[?LmZx=Z}0('^SGe zrsf9rox倀Y(%3rL!SGo{}Oܲ;c$Hͱ16t0=e?̟(?*hI+O2 AAӸhޖnrIl-8AȖ $'0#R f龣yDagܘ)\Fv!j-#xpJj|P1^1)򯎶iԶx}0(.WKo<xw vYڰpf9҅ZxT{FAK%k6 wߣyk/5rCc3\>IFoaԊ7o^"cR=Uw35S_5" ibMM1GWU{'}>s E^°f|ѦPb4i3I.{.NUÓ4[ J7;6i<+t$f֐0>:Ke;Hצ^xPJ,{6橗Q nÆ`oVVhpXtvxwPevw[Ć1Qh? CS(E Re_ԡXP_oh@ -}|+eCx'L7$Wހ҉=AN \A@0J\iC`)rc/?n:5) UjB,7,.l5R@&l^>9 ר? טd * ?pt  TIxI ! I +I @I II II%II $  (28<Y9Y:Y>tG|IH II IX Y \ (I] 5LI^ ~ b d te yf |l ~t Iu Iv w LIx pI הCselinux-policy-devel3.13.1192.el7_5.6SELinux policy develSELinux policy development and man page package[ux86-01.bsys.centos.orgiCentOSGPLv2+CentOS BuildSystem System Environment/Basehttp://oss.tresys.com/repos/refpolicy/linuxnoarchselinuxenabled && /usr/bin/sepolgen-ifgen 2>/dev/null exit 0p Q1m!,$#}"3,l2M*Y)H/*6#~! .' >"m2G)!n%ZJG'd([N5<(=%/;%-.2<.86+$E+B&26,"2=LJ/b=J/8V 3$27{)55@23'T&;bP+,-M-1,1,2}%@ ($P#!d?!38w44(,h9CO8B.)F4->(}=+0410z4:#=-_?vB-:;/o(]*c) )%$ (.&R$A 0Hn.p]9d)c?$4:G-+*#)p6`3x6/N436!/;5m4A;16-cc0BE*/'n4:>" Q:5dk*26E?$3105-LGr#-v<}46f<5+G05/4J4"3k>4&P"?R7Q#E/T5'U3!5=2!,v%<5;5MK4*G+;",{'/\6Z5*Q357Bf8R4$2҆%$ ,':O&,%$`7v+Z)5,@w:AiG&5q+0B!x3(.43O8=5-% 46a43*0Q%3-X2s6?y,&*fB$/-,h3=u558+5-/F!t<*J#9DN)LE3)6.W/I=6?(3$O//.(i,L7-%/-78=:&5'9 /c*'MA!-%(0-?<5>+ ^,_-HG8R3v6gFA)gHP.1{%o O1d%%-Y)-K!'#o"U,`2)(E1)l@X0775)7; 17A.;1{5&'\"?2,-934R*-t%w*8S 2+O/?:02w08#([/w/202O///0Qr;G+3*:x0+3s,.413/59X8Bcu$Al%Bi'!O#5($E'8'2**$4(3(*,'])$0-2qQ<H48&E .,.\3U3'4|7i:4K0v,+>06_ 5Q'24!-'G"'4-R04@ 4Fz4/2**9C,602r0AR(,.>K25M+Jb,.4:F-e>u%E#<0=)&%`51-|&/o&1V1!1(91(:0%*,U<6--)</KG$-.-&/D<.,%j&+--(9//+#.6< DM1bJ(A&u'55<[5Y6605&5QX&&;2 J(%/<M1 ZW0].''($#C$-A$47Zf&R" F!A.,),@/7/'A Q'"$#W$-.H3*51E-W+2`-f1t,/,t>234r-04|,6-06=#'4<5p+38D+++,)*<D/~;163 ->Q=)@4>.{.,7"$/<&1I')x'Q() *w''*$#/$AA*"& > -#9/[33"8"r!gL-2'pEL1b5v&9+EA<&]7.v&I,M2OV<~AY#2G5(g5r,2-F1m]'(D/G/.,5E3+433.7363?LW$#9?t d| @ 0U oV 2 H:3 v* ']  O<&K fD M1  x h  Kk  6h|-! Y.N~Pr& -U*pR5a }# @ C!6q ; V*c[ . sGN  l /e*1.; p )  B*p6k N+F4 "jaco d  bN ;+ (t  + ;Q$jY)M N19(f x'" c   ;Y  Y =/+.B#  P' g[= T"\+Z f^\gj  *P  8 !(D+ n Q8&xF ` 3 auV;F C[ $ 8-  1 Q "r PQ: %K EX$& `  *L1 # 8 , EcIn8W " a #e-'<Zĭy;V NMDeYWBbY$5u-\ ҦI 1] Vi-q)II =s + h*/|FjUD'"3^S+ Fq5vA큤A큤A큤A큤A큤A큤A큤A큤A큤A큤A큤[u[uE[uE[uE[uE[u[up[up[up[up[up[up[up[up[uq[uq[uq[uq[uq[uq[uq[uq[uq[uq[ur[ur[ur[ur[ur[ur[ur[ur[ur[ur[us[us[us[us[us[us[us[us[us[u[ut[ut[ut[ut[ut[ut[ut[ut[ut[ut[u}[u}[u}[u~[u~[u~[u~[u~[u~[u~[u~[u~[u~[u[u[u[u[ut[uu[uu[uu[uu[uu[uu[uu[uu[uu[uv[uv[uv[uv[uv[uv[uv[uv[uv[uv[uw[uw[uw[uw[uw[uw[uw[uw[uw[uw[ux[ux[ux[ux[ux[ux[ux[ux[ux[uy[uy[uy[uy[uy[uy[uy[uy[uy[uz[uz[uz[uz[uz[uz[uz[uz[uz[u{[u{[u{[u{[u{[u{[u{[u{[u{[u{[u|[u|[u|[u|[u|[u|[u|[u|[u|[u}[u}[u}[u}[u}[u}[u[u[u€[u€[u€[u€[u€[u€[u€[u€[u€[u€[u[u[u[u[u[u[u[u[u‚[u‚[u‚[u‚[u‚[u‚[u‚[u‚[u‚[u‚[uƒ[uƒ[uƒ[uƒ[uƒ[uƒ[uƒ[u[u[u[u[u†[u‡[u‡[u‡[u‡[u‡[u‡[u‡[u‡[u‡[uˆ[uˆ[uˆ[uˆ[uˆ[uˆ[uˆ[uˆ[uˆ[uƒ[uƒ[u„[u„[u„[u„[u„[u„[u„[u„[u„[u„[u„[u…[u…[u…[u…[u…[u…[u…[u…[u…[u†[u†[u†[u†[u†[u†[u†[u†[u[u‹[uŒ[uŒ[uŒ[uŒ[uŒ[uŒ[uŒ[uŒ[u[u[u[u[u[u[u[u[u‰[u‰[u‰[u[u‰[u‰[u‰[u‰[u‰[uŠ[uŠ[uŠ[uŠ[uŠ[uŠ[uŠ[uŠ[uŠ[u‹[u‹[u‹[u‹[u‹[u‹[u‹[u‹[u[u[u[u[u[uŽ[uŽ[uŽ[uŽ[uŽ[uŽ[uŽ[uŽ[uŽ[u[u[u[u[u[u[u[u”[u”[u”[u”[u”[u”[u”[u•[u•[u•[u[u•[u•[u•[u•[u•[u•[u–[u–[u–[u–[u–[u–[u–[u–[u[u[u[u[u[u[u[u‘[u‘[u‘[u‘[u‘[u‘[u‘[u‘[u‘[u‘[u’[u’[u’[u’[u’[u’[u’[u’[u’[u“[u“[u“[u“[u“[u“[u“[u“[u“[u”[u”[u”[u™[u™[u™[u™[u™[u™[u™[u™[uš[uš[uš[uš[uš[uš[uš[uš[uš[u›[u›[u›[u›[u›[u›[u›[u›[u›[uœ[uœ[uœ[uœ[uœ[uœ[uœ[uœ[uœ[u[u[u–[u—[u—[u—[u—[u—[u—[u—[u—[u—[u˜[u˜[u˜[u˜[u˜[u˜[u˜[u˜[u˜[u™[už[už[už[uŸ[uŸ[uŸ[uŸ[uŸ[uŸ[uŸ[uŸ[uŸ[u [u [u [u [u [u [u [u [u [u¡[u¡[u¡[u¡[u¡[u¡[u¡[u¡[u¡[u¢[u¢[u¢[u¢[u¢[u¢[u¢[u¢[u¢[u£[u£[u£[u£[u£[u£[u£[u£[u£[u¤[u¤[u¤[u¤[u¤[u¤[u¤[u¤[u¤[u¤[u¥[u¥[u¥[u¥[u¥[u¥[u¥[u¥[u¦[u¦[u¦[u¦[u¦[u¦[u¦[u¦[u¦[u§[u§[u§[u§[u§[u§[u§[u§[u§[u§[u[u[u[u[u[u[u[u[u[u[už[už[už[už[už[už[už[uµ[uµ[u¶[u¶[u¶[u¶[u¶[u¶[u¶[u¶[u¶[u¶[u·[u·[u·[u·[u·[u·[u·[u·[u¸[u¸[u¸[u¸[u¸[u¸[u¸[u¸[u¸[u¸[u¹[u¹[u¹[u¹[u¹[u¹[u¹[u¹[u¹[uº[u¨[u¨[u¨[u¨[u¨[u¨[u¨[u¨[u¨[u¨[u©[u©[u©[u©[u©[u©[u©[u©[u©[uª[uª[u[uª[uª[uª[uª[uª[uª[uª[uª[u«[u«[u«[u«[u«[u«[u«[u«[u«[u«[u¬[u¬[u¬[u¬[u¬[u¬[u¬[u¬[u¬[u­[u­[u­[u­[u­[u­[u­[u­[u­[u®[u®[u®[u®[u®[u®[u®[u®[u®[u¯[u¯[u¯[u¯[u¯[u¯[u¯[u¯[u¯[u°[u°[u°[u°[u[u°[u°[u°[u°[u°[u°[u±[u±[u±[u±[u[u±[u±[u±[u±[u±[u²[u²[u²[u²[u²[u²[u²[u[u²[u²[u²[u³[u³[u³[u³[u³[u³[u³[u³[u³[u´[u´[u´[u´[u´[u´[u´[u´[u´[u´[uµ[uµ[uµ[uµ[uµ[uµ[u½[u½[u½[u½[u½[u½[u½[u½[u½[u¾[u¾[u¾[u¾[u¾[u¾[u¾[u¾[u¾[u¿[u¿[u¿[u¿[u¿[u¿[u¿[uº[uº[uº[uº[u[uº[uº[uº[uº[u»[u»[u»[u»[u»[u»[u»[u[u»[u»[u»[u»[u¼[u¼[u¼[u¼[u¼[u¼[u¼[u¼[u¼[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u¿[u¿[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[u[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[u[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[u[u[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[uE[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@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootselinux-policy-3.13.1-192.el7_5.6.src.rpmselinux-policy-devel       /bin/sh/usr/bin/makecheckpolicym4policycoreutils-develrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PartialHardlinkSets)rpmlib(PayloadFilesHavePrefix)selinux-policyrpmlib(PayloadIsXz)2.52.5-183.0.4-14.6.0-14.0.4-14.0-13.13.1-192.el7_5.65.2-14.11.3[`O@[6@[@ZZZI@ZH@Z@ZZz@Zz@ZyZ_:ZWQZV@Z.s@Z)-@Z%8ZZ @ZZNZNYYA@YYW@YW@YYY@Y@Ycl@YP@YJ_YI@YBvY9<@Y6@Y5GY1S@Y0Y.@Y-^Y, @Y, @Y%uYYY@Y@Y@Y.YXQ@XXX@X@X@XXX@XۡXP@XXg@Xg@X~@X@XƉXCXCXX @XXXBXXXs{@XY@XWXRXRXOXJXAb@X@X)@X#X!@XWWSW_@W_@Wv@W;W@WίWW:WQW@WW@W@WW~W@WW~D@W{@Ws@WrfWj}WbW^@WYZ@WYZ@WUeWM|WBW9@W9@W1@W(W V@V@V@V޾V2V@V_VVCV@VZV @VqV }@V }@VBUUU@U@UpUUUUoUoU5@UUȒ@UĝUUWUU@UUK@UUU'Ua@U~@UzUv@UT@U@Tr@T@T@T7TTTC@T@TTT}Tto@TsTk4T`T[bTWn@T?@T>aT6xT6xT@S@SSDSg}@SB@S>S;S:@S9XS5d@S4S2@S0@S,)S*@S)S)S&S&S"@S!S L@SSS@SSc@SSnS @S SK@RRR@RRJ@Ra@RRR&R&RRR=RʚRR@R@R@Rv@Rv@R@RR@R R@R@R|@Rz/@Rz/@RsRpRnQRi RfhR_@R_@R[R[RSRNRNRL RIgRB@RB@R:@R1R-@R-@R(r@R' R%@R7RRNRR@Q@QQdQQ@QQޞ@Q@QکQکQ@QzQQ4Q@@Q@QKQQ@Q@Q@Q@QQ@QQQQ@Q@QQQ@Qzl@Qw@QvwQo@Qo@QnQm=@QkQfQb@Q`@Q^QZ@QQQIQGQ@j@Q9Q8@Q4Q0@Q-@Q& @Q$QQ@QQ@Q @Qh@QsPP@P@PP@P[PP!@P8@PO@P @Pf@PPqP @PP7@P@PPPYP@P@PPPM@PPd@P@PoP{@P{@P@PP5@P@P~P}L@Px@PvPvPuc@Puc@Pr@Pmz@Pmz@Pmz@Pj@Pd?Pd?Pb@PaPaP[@PXb@PWPS@PQPO'PM@PIP@@P>@P8@P7lP2&P2&P,P,P*=P(@P#@P#@P!@P!@P@PkPw@Pw@PP

@NNU@NNl@N@N@NåN@NNNN@NNN@N@NGNGNGN@N@NNS@NS@N^N^N @N @NNj@Nj@NN$@NN@N/N@N@NFNFN@NNN@N@N@N]Ni@Ni@Ni@N|tNyNx@Ns:@NoENoENiNf @N^"@N\N[@NTNS@NS@NC@NBrN:N98@N7N6@N2N.@N*N)f@N(N%qN$ @N@N7@N e@NpNpM@M@Md@Md@MM{@M@M۝M@M@M‘@M@M@M@My@My@M3@M@M@MMM@MMMMTMx@Mx@Mv@MlMbSM[@MRMQ0@MQ0@MJMGMGMA^@M>@M9u@M6@M5M4/@M4/@M0:M,F@M$]@M@M9MMMMM\@M M M@L!L!L@LL@L@L@LOLOL[@L@L@Lr@L L,@L,@Lډ@L7LLLNL@LΫLeL|L@LB@LB@LB@L@LMLL@LdLL{L*@L@L5LLA@LLLL@LcL@L@L@LzL)@L|L|L|L{@LvW@LvW@Ls@Ls@LrbLrbLmLk@LjyLe3Lc@La?@LZLYV@LXLN@LN@LMxLMxLI@LH2LF@LEL=L=L=L;L7@L LT@L@LL@L@L0LLGL@K^K^KKKj@K$@KKK@K@KK@K]K޺K@KtK#@KKՀ@K:@KK͗@KŮ@K\K\K @KKKKK9@KK@KK@K@KKKKrKK~@K,K,K,K@KK8@KKK@KK@KqKqK}+K{@K{@KuBKs@KqN@KjKie@Kf@Ka|@K`*K]KXAKTM@KPXKEKEKEKD{@KC)KA@K;@K2@K0K/c@K+nK*@K(K"4@KK>K>K>JJęJH@JH@JJJ_@J@JjJjJ@Jv@Jv@Jv@Jv@J$J@JJ0@J@J@JG@JG@J@JJ@J@J@JJJ#J@JJJ@J:J@JJQJ@J J J|@JzJyt@Jyt@Jx"JrJrJq@Jn@Jn@JmJhPJeJ\s@JW-@JT@JS8JKOJI@JCfJCfJB@J@J@J?r@J<@J;}J:,@J7@J67J2C@J0J/@J,@J%@JJB@JJMJ J dJ@J@JJ@J*@J*@II@IIA@IIII@I@IIIX@IX@IX@II@I@IcIIo@Io@IzI)@I@IܑI@@II@I@I@IԨIд@I̿In@I3I3I@II@I@IV@IIaIIm@I@I'@II2III@IIIIIIII@III@I1I@III~@I}Iy@Ix_Iw@IuItk@Itk@Io%@Ik0IeIcGIa@I`IVIO@IJ;@IHIAI>]I= @I7@I6tI3I-I@III9@I9@II IP@I@IIg@Ig@HHH@HrH~@H,H@HCHHH @H @Hf@Hf@H@H+H@H׈H׈H7@HBH@HǶH@HH|@HHH@H{@H)HHL@H@H@H@HnH}H|@Ht@HsVHr@Hl@HkmHgy@HcH`H_@H^>HRa@HQHQHO@HFHFH$@DX@DU@DN@DN@DLDH@DGwDGwDDD@@D?D?D;@D;@D:HD:HD2_D1@D1@D-D+@D+@D'D!<@D!<@D!<@DDD@D@D@DDDDDD@D@D@D@D uD $@D D @D @DDDFC@C@C@C@CCCCCR@CCCCC@Ci@CC@C@CtC@C@CC:@CECCC @C @CعCعCعCعCC@C-C-C-C@C@CCǖ@C@CáCáCP@CP@C[C @C @CCg@Cg@CCC!@C~@C,C@CCCCC@CC@C@C@CZCZC @C @CCCf@Cf@Cf@CC@CqCqC @C @C @CCC}@C7@C7@C7@CBCBCYC@C@CC}@CqCqLukas Vrabec - 3.13.1-192.6Lukas Vrabec - 3.13.1-192.5Lukas Vrabec - 3.13.1-192.4Lukas Vrabec - 3.13.1-192.3Lukas Vrabec - 3.13.1-192.2Lukas Vrabec - 3.13.1-192.1Lukas Vrabec - 3.13.1-192Lukas Vrabec - 3.13.1-191Lukas Vrabec - 3.13.1-190Lukas Vrabec - 3.13.1-189Lukas Vrabec - 3.13.1-188Lukas Vrabec - 3.13.1-187Lukas Vrabec - 3.13.1-186Lukas Vrabec - 3.13.1-185Lukas Vrabec - 3.13.1-184Lukas Vrabec - 3.13.1-183Lukas Vrabec - 3.13.1-182Lukas Vrabec - 3.13.1-181Lukas Vrabec - 3.13.1-180Lukas Vrabec - 3.13.1-179Lukas Vrabec - 3.13.1-178Lukas Vrabec - 3.13.1-177Lukas Vrabec - 3.13.1-176Lukas Vrabec - 3.13.1-175Lukas Vrabec - 3.13.1-174Lukas Vrabec - 3.13.1-173Lukas Vrabec - 3.13.1-172Lukas Vrabec - 3.13.1-171Lukas Vrabec - 3.13.1-170Lukas Vrabec - 3.13.1-169Lukas Vrabec - 3.13.1-168Lukas Vrabec - 3.13.1-167Lukas Vrabec - 3.13.1-166Lukas Vrabec - 3.13.1-165Lukas Vrabec - 3.13.1-164Lukas Vrabec - 3.13.1-163Lukas Vrabec - 3.13.1-162Lukas Vrabec - 3.13.1-161Lukas Vrabec - 3.13.1-160Lukas Vrabec - 3.13.1-159Lukas Vrabec - 3.13.1-158Lukas Vrabec - 3.13.1-157Lukas Vrabec - 3.13.1-156Lukas Vrabec - 3.13.1-155Lukas Vrabec - 3.13.1-154Lukas Vrabec - 3.13.1-153Lukas Vrabec - 3.13.1-152Lukas Vrabec - 3.13.1-151Lukas Vrabec - 3.13.1-150Lukas Vrabec - 3.13.1-149Lukas Vrabec - 3.13.1-148Lukas Vrabec - 3.13.1-147Lukas Vrabec - 3.13.1-146Lukas Vrabec - 3.13.1-145Lukas Vrabec - 3.13.1-144Lukas Vrabec - 3.13.1-143Lukas Vrabec - 3.13.1-142Lukas Vrabec - 3.13.1-141Lukas Vrabec - 3.13.1-140Lukas Vrabec - 3.13.1-139Lukas Vrabec - 3.13.1-138Lukas Vrabec - 3.13.1-137Lukas Vrabec - 3.13.1-136Lukas Vrabec - 3.13.1-135Lukas Vrabec - 3.13.1-134Lukas Vrabec - 3.13.1-133Lukas Vrabec - 3.13.1-132Lukas Vrabec - 3.13.1-131Lukas Vrabec - 3.13.1-130Lukas Vrabec - 3.13.1-129Lukas Vrabec - 3.13.1-128Lukas Vrabec - 3.13.1-127Lukas Vrabec - 3.13.1-126Lukas Vrabec - 3.13.1-125Lukas Vrabec - 3.13.1-124Lukas Vrabec - 3.13.1-123Lukas Vrabec - 3.13.1-122Lukas Vrabec - 3.13.1-120Lukas Vrabec - 3.13.1-119Lukas Vrabec - 3.13.1-118Lukas Vrabec - 3.13.1-117Lukas Vrabec - 3.13.1-116Lukas Vrabec - 3.13.1-115Lukas Vrabec - 3.13.1-114Lukas Vrabec - 3.13.1-113Lukas Vrabec - 3.13.1-112Lukas Vrabec - 3.13.1-111Lukas Vrabec - 3.13.1-110Lukas Vrabec - 3.13.1-109Lukas Vrabec - 3.13.1-108Lukas Vrabec - 3.13.1-107Lukas Vrabec - 3.13.1-106Miroslav Grepl - 3.13.1-105Lukas Vrabec - 3.13.1-104Lukas Vrabec - 3.13.1-103Dan Walsh - 3.13.1-102Lukas Vrabec - 3.13.1-101Lukas Vrabec - 3.13.1-100Lukas Vrabec - 3.13.1-99Lukas Vrabec - 3.13.1-98Lukas Vrabec - 3.13.1-97Lukas Vrabec - 3.13.1-96Lukas Vrabec - 3.13.1-95Lukas Vrabec - 3.13.1-94Lukas Vrabec - 3.13.1-93Lukas Vrabec - 3.13.1-92Lukas Vrabec - 3.13.1-91Lukas Vrabec - 3.13.1-90Lukas Vrabec - 3.13.1-89Lukas Vrabec - 3.13.1-88Lukas Vrabec - 3.13.1-87Lukas Vrabec - 3.13.1-86Lukas Vrabec - 3.13.1-85Lukas Vrabec - 3.13.1-84Lukas Vrabec - 3.13.1-83Lukas Vrabec - 3.13.1-82Lukas Vrabec - 3.13.1-81Lukas Vrabec - 3.13.1-80Petr Lautrbach - 3.13.1-79Lukas Vrabec - 3.13.1-78Lukas Vrabec - 3.13.1-77Lukas Vrabec - 3.13.1-76Lukas Vrabec - 3.13.1-75Lukas Vrabec - 3.13.1-74Lukas Vrabec - 3.13.1-73Lukas Vrabec - 3.13.1-72Lukas Vrabec - 3.13.1-71Lukas Vrabec - 3.13.1-70Lukas Vrabec - 3.13.1-69Lukas Vrabec - 3.13.1-68Lukas Vrabec - 3.13.1-67Petr Lautrbach - 3.13.1-66Lukas Vrabec 3.13.1-65Lukas Vrabec 3.13.1-64Lukas Vrabec 3.13.1-63Lukas Vrabec 3.13.1-62Lukas Vrabec 3.13.1-61Miroslav Grepl 3.13.1-60Miroslav Grepl 3.13.1-59Lukas Vrabec 3.13.1-58Lukas Vrabec 3.13.1-57Miroslav Grepl 3.13.1-56Lukas Vrabec 3.13.1-55Lukas Vrabec 3.13.1-54Lukas Vrabec 3.13.1-53Lukas Vrabec 3.13.1-52Miroslav Grepl 3.13.1-51Lukas Vrabec 3.13.1-50Lukas Vrabec 3.13.1-49Lukas Vrabec 3.13.1-48Lukas Vrabec 3.13.1-47Lukas Vrabec 3.13.1-46Lukas Vrabec 3.13.1-45Lukas Vrabec 3.13.1-44Lukas Vrabec 3.13.1-43Lukas Vrabec 3.13.1-42Lukas Vrabec 3.13.1-41Lukas Vrabec 3.13.1-40Miroslav Grepl 3.13.1-39Lukas Vrabec 3.13.1-38Lukas Vrabec 3.13.1-37Lukas Vrabec 3.13.1-36Lukas Vrabec 3.13.1-35Lukas Vrabec 3.13.1-34Lukas Vrabec 3.13.1-33Lukas Vrabec 3.13.1-32Miroslav Grepl 3.13.1-31Miroslav Grepl 3.13.1-30Miroslav Grepl 3.13.1-29Miroslav Grepl 3.13.1-28Miroslav Grepl 3.13.1-27Miroslav Grepl 3.13.1-26Miroslav Grepl 3.13.1-25Miroslav Grepl 3.13.1-24Miroslav Grepl 3.13.1-23Miroslav Grepl 3.13.1-22Miroslav Grepl 3.13.1-21Miroslav Grepl 3.13.1-20Miroslav Grepl 3.13.1-19Miroslav Grepl 3.13.1-18Miroslav Grepl 3.13.1-17Miroslav Grepl 3.13.1-16Miroslav Grepl 3.13.1-15Miroslav Grepl 3.13.1-14Miroslav Grepl 3.13.1-13Miroslav Grepl 3.13.1-12Miroslav Grepl 3.13.1-11Miroslav Grepl 3.13.1-10Miroslav Grepl 3.13.1-9Miroslav Grepl 3.13.1-8Miroslav Grepl 3.13.1-7Miroslav Grepl 3.13.1-6Miroslav Grepl 3.13.1-5Miroslav Grepl 3.13.1-4Miroslav Grepl 3.13.1-3Miroslav Grepl 3.13.1-2Miroslav Grepl 3.13.1-1Miroslav Grepl 3.12.1-156Miroslav Grepl 3.12.1-155Miroslav Grepl 3.12.1-154Miroslav Grepl 3.12.1-153Miroslav Grepl 3.12.1-152Miroslav Grepl 3.12.1-151Miroslav Grepl 3.12.1-149Miroslav Grepl 3.12.1-149Miroslav Grepl 3.12.1-148Miroslav Grepl 3.12.1-147Miroslav Grepl 3.12.1-146Miroslav Grepl 3.12.1-145Miroslav Grepl 3.12.1-144Lukas Vrabec 3.12.1-143Miroslav Grepl 3.12.1-142Miroslav Grepl 3.12.1-141Miroslav Grepl 3.12.1-140Miroslav Grepl 3.12.1-139Lukas Vrabec 3.12.1-138Miroslav Grepl 3.12.1-137Miroslav Grepl 3.12.1-136Miroslav Grepl 3.12.1-135Miroslav Grepl 3.12.1-134Miroslav Grepl 3.12.1-133Miroslav Grepl 3.12.1-132Miroslav Grepl 3.12.1-131Miroslav Grepl 3.12.1-130Miroslav Grepl 3.12.1-129Miroslav Grepl 3.12.1-128Miroslav Grepl 3.12.1-127Miroslav Grepl 3.12.1-126Miroslav Grepl 3.12.1-125Miroslav Grepl 3.12.1-124Miroslav Grepl 3.12.1-123Miroslav Grepl 3.12.1-122Miroslav Grepl 3.12.1-121Miroslav Grepl 3.12.1-120Miroslav Grepl 3.12.1-119Miroslav Grepl 3.12.1-118Miroslav Grepl 3.12.1-117Miroslav Grepl 3.12.1-116Miroslav Grepl 3.12.1-115Miroslav Grepl 3.12.1-114Miroslav Grepl 3.12.1-113Miroslav Grepl 3.12.1-112Miroslav Grepl 3.12.1-111Miroslav Grepl 3.12.1-110Miroslav Grepl 3.12.1-109Miroslav Grepl 3.12.1-108Miroslav Grepl 3.12.1-107Dan Walsh 3.12.1-106Miroslav Grepl 3.12.1-105Miroslav Grepl 3.12.1-104Miroslav Grepl 3.12.1-103Miroslav Grepl 3.12.1-102Miroslav Grepl 3.12.1-101Miroslav Grepl 3.12.1-100Miroslav Grepl 3.12.1-99Miroslav Grepl 3.12.1-98Miroslav Grepl 3.12.1-97Miroslav Grepl 3.12.1-96Miroslav Grepl 3.12.1-95Miroslav Grepl 3.12.1-94Miroslav Grepl 3.12.1-94Miroslav Grepl 3.12.1-93Miroslav Grepl 3.12.1-92Miroslav Grepl 3.12.1-91Miroslav Grepl 3.12.1-90Miroslav Grepl 3.12.1-89Miroslav Grepl 3.12.1-88Miroslav Grepl 3.12.1-87Miroslav Grepl 3.12.1-86Miroslav Grepl 3.12.1-85Miroslav Grepl 3.12.1-84Miroslav Grepl 3.12.1-83Miroslav Grepl 3.12.1-82Miroslav Grepl 3.12.1-81Miroslav Grepl 3.12.1-80Miroslav Grepl 3.12.1-79Miroslav Grepl 3.12.1-78Miroslav Grepl 3.12.1-77Miroslav Grepl 3.12.1-76Miroslav Grepl 3.12.1-75Miroslav Grepl 3.12.1-74Miroslav Grepl 3.12.1-73Miroslav Grepl 3.12.1-72Miroslav Grepl 3.12.1-71Miroslav Grepl 3.12.1-70Miroslav Grepl 3.12.1-69Miroslav Grepl 3.12.1-68Miroslav Grepl 3.12.1-67Miroslav Grepl 3.12.1-66Miroslav Grepl 3.12.1-65Miroslav Grepl 3.12.1-64Miroslav Grepl 3.12.1-63Miroslav Grepl 3.12.1-62Miroslav Grepl 3.12.1-61Miroslav Grepl 3.12.1-60Miroslav Grepl 3.12.1-59Miroslav Grepl 3.12.1-58Miroslav Grepl 3.12.1-57Miroslav Grepl 3.12.1-56Miroslav Grepl 3.12.1-55Miroslav Grepl 3.12.1-54Miroslav Grepl 3.12.1-53Miroslav Grepl 3.12.1-52Miroslav Grepl 3.12.1-51Miroslav Grepl 3.12.1-50Miroslav Grepl 3.12.1-49Miroslav Grepl 3.12.1-48Miroslav Grepl 3.12.1-47Miroslav Grepl 3.12.1-46Miroslav Grepl 3.12.1-45Miroslav Grepl 3.12.1-44Miroslav Grepl 3.12.1-43Miroslav Grepl 3.12.1-42Miroslav Grepl 3.12.1-41Miroslav Grepl 3.12.1-40Miroslav Grepl 3.12.1-39Miroslav Grepl 3.12.1-38Miroslav Grepl 3.12.1-37Miroslav Grepl 3.12.1-36Miroslav Grepl 3.12.1-35Miroslav Grepl 3.12.1-34Miroslav Grepl 3.12.1-33Miroslav Grepl 3.12.1-32Miroslav Grepl 3.12.1-31Miroslav Grepl 3.12.1-30Miroslav Grepl 3.12.1-29Dan Walsh 3.12.1-28Dan Walsh 3.12.1-27Miroslav Grepl 3.12.1-26Miroslav Grepl 3.12.1-25Miroslav Grepl 3.12.1-24Miroslav Grepl 3.12.1-23Miroslav Grepl 3.12.1-22Miroslav Grepl 3.12.1-21Miroslav Grepl 3.12.1-20Miroslav Grepl 3.12.1-19Miroslav Grepl 3.12.1-18Miroslav Grepl 3.12.1-17Miroslav Grepl 3.12.1-16Miroslav Grepl 3.12.1-15Miroslav Grepl 3.12.1-14Miroslav Grepl 3.12.1-13Miroslav Grepl 3.12.1-12Miroslav Grepl 3.12.1-11Miroslav Grepl 3.12.1-10Miroslav Grepl 3.12.1-9Miroslav Grepl 3.12.1-8Miroslav Grepl 3.12.1-7Miroslav Grepl 3.12.1-6Miroslav Grepl 3.12.1-5Miroslav Grepl 3.12.1-4Miroslav Grepl 3.12.1-3Miroslav Grepl 3.12.1-2Miroslav Grepl 3.12.1-1Dan Walsh 3.11.1-69.1Miroslav Grepl 3.11.1-69Miroslav Grepl 3.11.1-68Miroslav Grepl 3.11.1-67Miroslav Grepl 3.11.1-66Miroslav Grepl 3.11.1-65Miroslav Grepl 3.11.1-64Miroslav Grepl 3.11.1-63Miroslav Grepl 3.11.1-62Miroslav Grepl 3.11.1-61Miroslav Grepl 3.11.1-60Miroslav Grepl 3.11.1-59Miroslav Grepl 3.11.1-58Miroslav Grepl 3.11.1-57Miroslav Grepl 3.11.1-56Miroslav Grepl 3.11.1-55Miroslav Grepl 3.11.1-54Miroslav Grepl 3.11.1-53Miroslav Grepl 3.11.1-52Miroslav Grepl 3.11.1-51Miroslav Grepl 3.11.1-50Miroslav Grepl 3.11.1-49Miroslav Grepl 3.11.1-48Miroslav Grepl 3.11.1-47Miroslav Grepl 3.11.1-46Miroslav Grepl 3.11.1-45Miroslav Grepl 3.11.1-44Miroslav Grepl 3.11.1-43Miroslav Grepl 3.11.1-42Miroslav Grepl 3.11.1-41Miroslav Grepl 3.11.1-40Miroslav Grepl 3.11.1-39Miroslav Grepl 3.11.1-38Miroslav Grepl 3.11.1-37Miroslav Grepl 3.11.1-36Miroslav Grepl 3.11.1-35Miroslav Grepl 3.11.1-34Miroslav Grepl 3.11.1-33Miroslav Grepl 3.11.1-32Miroslav Grepl 3.11.1-31Miroslav Grepl 3.11.1-30Miroslav Grepl 3.11.1-29Miroslav Grepl 3.11.1-28Miroslav Grepl 3.11.1-27Miroslav Grepl 3.11.1-26Miroslav Grepl 3.11.1-25Miroslav Grepl 3.11.1-24Miroslav Grepl 3.11.1-23Miroslav Grepl 3.11.1-22Miroslav Grepl 3.11.1-21Miroslav Grepl 3.11.1-20Miroslav Grepl 3.11.1-19Miroslav Grepl 3.11.1-18Miroslav Grepl 3.11.1-17Miroslav Grepl 3.11.1-16Dan Walsh 3.11.1-15Miroslav Grepl 3.11.1-14Dan Walsh 3.11.1-13Miroslav Grepl 3.11.1-12Miroslav Grepl 3.11.1-11Miroslav Grepl 3.11.1-10Dan Walsh 3.11.1-9Dan Walsh 3.11.1-8Dan Walsh 3.11.1-7Dan Walsh 3.11.1-6Miroslav Grepl 3.11.1-5Miroslav Grepl 3.11.1-4Miroslav Grepl 3.11.1-3Miroslav Grepl 3.11.1-2Miroslav Grepl 3.11.1-1Miroslav Grepl 3.11.1-0Miroslav Grepl 3.11.0-15Miroslav Grepl 3.11.0-14Miroslav Grepl 3.11.0-13Miroslav Grepl 3.11.0-12Fedora Release Engineering - 3.11.0-11Miroslav Grepl 3.11.0-10Miroslav Grepl 3.11.0-9Miroslav Grepl 3.11.0-8Miroslav Grepl 3.11.0-7Miroslav Grepl 3.11.0-6Miroslav Grepl 3.11.0-5Miroslav Grepl 3.11.0-4Miroslav Grepl 3.11.0-3Miroslav Grepl 3.11.0-2Miroslav Grepl 3.11.0-1Miroslav Grepl 3.10.0-128Miroslav Grepl 3.10.0-127Miroslav Grepl 3.10.0-126Miroslav Grepl 3.10.0-125Miroslav Grepl 3.10.0-124Miroslav Grepl 3.10.0-123Miroslav Grepl 3.10.0-122Miroslav Grepl 3.10.0-121Miroslav Grepl 3.10.0-120Miroslav Grepl 3.10.0-119Miroslav Grepl 3.10.0-118Miroslav Grepl 3.10.0-117Miroslav Grepl 3.10.0-116Miroslav Grepl 3.10.0-115Miroslav Grepl 3.10.0-114Miroslav Grepl 3.10.0-113Miroslav Grepl 3.10.0-112Miroslav Grepl 3.10.0-111Miroslav Grepl 3.10.0-110Miroslav Grepl 3.10.0-109Miroslav Grepl 3.10.0-108Miroslav Grepl 3.10.0-107Miroslav Grepl 3.10.0-106Miroslav Grepl 3.10.0-105Miroslav Grepl 3.10.0-104Miroslav Grepl 3.10.0-103Miroslav Grepl 3.10.0-102Miroslav Grepl 3.10.0-101Miroslav Grepl 3.10.0-100Miroslav Grepl 3.10.0-99Miroslav Grepl 3.10.0-98Miroslav Grepl 3.10.0-97Miroslav Grepl 3.10.0-96Miroslav Grepl 3.10.0-95Miroslav Grepl 3.10.0-94Miroslav Grepl 3.10.0-93Miroslav Grepl 3.10.0-92Miroslav Grepl 3.10.0-91Miroslav Grepl 3.10.0-90Miroslav Grepl 3.10.0-89Miroslav Grepl 3.10.0-88Miroslav Grepl 3.10.0-87Miroslav Grepl 3.10.0-86Miroslav Grepl 3.10.0-85Miroslav Grepl 3.10.0-84Miroslav Grepl 3.10.0-83Miroslav Grepl 3.10.0-82Dan Walsh 3.10.0-81.2Miroslav Grepl 3.10.0-81Miroslav Grepl 3.10.0-80Miroslav Grepl 3.10.0-79Miroslav Grepl 3.10.0-78Miroslav Grepl 3.10.0-77Miroslav Grepl 3.10.0-76Miroslav Grepl 3.10.0-75Dan Walsh 3.10.0-74.2Miroslav Grepl 3.10.0-74Miroslav Grepl 3.10.0-73Miroslav Grepl 3.10.0-72Miroslav Grepl 3.10.0-71Miroslav Grepl 3.10.0-70Miroslav Grepl 3.10.0-69Miroslav Grepl 3.10.0-68Miroslav Grepl 3.10.0-67Miroslav Grepl 3.10.0-66Miroslav Grepl 3.10.0-65Miroslav Grepl 3.10.0-64Miroslav Grepl 3.10.0-63Miroslav Grepl 3.10.0-59Miroslav Grepl 3.10.0-58Dan Walsh 3.10.0-57Dan Walsh 3.10.0-56Dan Walsh 3.10.0-55.2Dan Walsh 3.10.0-55.1Miroslav Grepl 3.10.0-55Dan Walsh 3.10.0-54.1Miroslav Grepl 3.10.0-54Dan Walsh 3.10.0-53.1Miroslav Grepl 3.10.0-53Miroslav Grepl 3.10.0-52Miroslav Grepl 3.10.0-51Dan Walsh 3.10.0-50.2Dan Walsh 3.10.0-50.1Miroslav Grepl 3.10.0-50Miroslav Grepl 3.10.0-49Miroslav Grepl 3.10.0-48Miroslav Grepl 3.10.0-47Dan Walsh 3.10.0-46.1Miroslav Grepl 3.10.0-46Dan Walsh 3.10.0-45.1Miroslav Grepl 3.10.0-45Miroslav Grepl 3.10.0-43Miroslav Grepl 3.10.0-42Miroslav Grepl 3.10.0-41Dan Walsh 3.10.0-40.2Miroslav Grepl 3.10.0-40Dan Walsh 3.10.0-39.3Dan Walsh 3.10.0-39.2Dan Walsh 3.10.0-39.1Miroslav Grepl 3.10.0-39Dan Walsh 3.10.0-38.1Miroslav Grepl 3.10.0-38Miroslav Grepl 3.10.0-37Dan Walsh 3.10.0-36.1Miroslav Grepl 3.10.0-36Dan Walsh 3.10.0-35Dan Walsh 3.10.0-34.7Dan Walsh 3.10.0-34.6Dan Walsh 3.10.0-34.4Miroslav Grepl 3.10.0-34.3Dan Walsh 3.10.0-34.2Dan Walsh 3.10.0-34.1Miroslav Grepl 3.10.0-34Miroslav Grepl 3.10.0-33Dan Walsh 3.10.0-31.1Miroslav Grepl 3.10.0-31Miroslav Grepl 3.10.0-29Miroslav Grepl 3.10.0-28Miroslav Grepl 3.10.0-27Miroslav Grepl 3.10.0-26Miroslav Grepl 3.10.0-25Miroslav Grepl 3.10.0-24Miroslav Grepl 3.10.0-23Miroslav Grepl 3.10.0-22Miroslav Grepl 3.10.0-21Dan Walsh 3.10.0-20Miroslav Grepl 3.10.0-19Miroslav Grepl 3.10.0-18Miroslav Grepl 3.10.0-17Miroslav Grepl 3.10.0-16Miroslav Grepl 3.10.0-14Miroslav Grepl 3.10.0-13Miroslav Grepl 3.10.0-12Miroslav Grepl 3.10.0-11Miroslav Grepl 3.10.0-10Miroslav Grepl 3.10.0-9Miroslav Grepl 3.10.0-8Miroslav Grepl 3.10.0-7Miroslav Grepl 3.10.0-6Miroslav Grepl 3.10.0-5Miroslav Grepl 3.10.0-4Miroslav Grepl 3.10.0-3Miroslav Grepl 3.10.0-2Miroslav Grepl 3.10.0-1Miroslav Grepl 3.9.16-30Dan Walsh 3.9.16-29.1Miroslav Grepl 3.9.16-29Dan Walsh 3.9.16-28.1Miroslav Grepl 3.9.16-27Miroslav Grepl 3.9.16-26Miroslav Grepl 3.9.16-25Miroslav Grepl 3.9.16-24Miroslav Grepl 3.9.16-23Miroslav Grepl 3.9.16-22Miroslav Grepl 3.9.16-21Miroslav Grepl 3.9.16-20Miroslav Grepl 3.9.16-19Miroslav Grepl 3.9.16-18Miroslav Grepl 3.9.16-17Dan Walsh 3.9.16-16.1Miroslav Grepl 3.9.16-16Miroslav Grepl 3.9.16-15Miroslav Grepl 3.9.16-14Miroslav Grepl 3.9.16-13Miroslav Grepl 3.9.16-12Miroslav Grepl 3.9.16-11Miroslav Grepl 3.9.16-10Miroslav Grepl 3.9.16-7Miroslav Grepl 3.9.16-6Miroslav Grepl 3.9.16-5Miroslav Grepl 3.9.16-4Miroslav Grepl 3.9.16-3Miroslav Grepl 3.9.16-2Miroslav Grepl 3.9.16-1Miroslav Grepl 3.9.15-5Miroslav Grepl 3.9.15-2Miroslav Grepl 3.9.15-1Fedora Release Engineering - 3.9.14-2Dan Walsh 3.9.14-1Miroslav Grepl 3.9.13-10Miroslav Grepl 3.9.13-9Dan Walsh 3.9.13-8Miroslav Grepl 3.9.13-7Miroslav Grepl 3.9.13-6Miroslav Grepl 3.9.13-5Miroslav Grepl 3.9.13-4Miroslav Grepl 3.9.13-3Miroslav Grepl 3.9.13-2Miroslav Grepl 3.9.13-1Miroslav Grepl 3.9.12-8Miroslav Grepl 3.9.12-7Miroslav Grepl 3.9.12-6Miroslav Grepl 3.9.12-5Dan Walsh 3.9.12-4Dan Walsh 3.9.12-3Dan Walsh 3.9.12-2Miroslav Grepl 3.9.12-1Dan Walsh 3.9.11-2Miroslav Grepl 3.9.11-1Miroslav Grepl 3.9.10-13Dan Walsh 3.9.10-12Miroslav Grepl 3.9.10-11Miroslav Grepl 3.9.10-10Miroslav Grepl 3.9.10-9Miroslav Grepl 3.9.10-8Miroslav Grepl 3.9.10-7Miroslav Grepl 3.9.10-6Miroslav Grepl 3.9.10-5Dan Walsh 3.9.10-4Miroslav Grepl 3.9.10-3Miroslav Grepl 3.9.10-2Miroslav Grepl 3.9.10-1Miroslav Grepl 3.9.9-4Dan Walsh 3.9.9-3Miroslav Grepl 3.9.9-2Miroslav Grepl 3.9.9-1Miroslav Grepl 3.9.8-7Dan Walsh 3.9.8-6Miroslav Grepl 3.9.8-5Miroslav Grepl 3.9.8-4Dan Walsh 3.9.8-3Dan Walsh 3.9.8-2Dan Walsh 3.9.8-1Dan Walsh 3.9.7-10Dan Walsh 3.9.7-9Dan Walsh 3.9.7-8Dan Walsh 3.9.7-7Dan Walsh 3.9.7-6Dan Walsh 3.9.7-5Dan Walsh 3.9.7-4Dan Walsh 3.9.7-3Dan Walsh 3.9.7-2Dan Walsh 3.9.7-1Dan Walsh 3.9.6-3Dan Walsh 3.9.6-2Dan Walsh 3.9.6-1Dan Walsh 3.9.5-11Dan Walsh 3.9.5-10Dan Walsh 3.9.5-9Dan Walsh 3.9.5-8Dan Walsh 3.9.5-7Dan Walsh 3.9.5-6Dan Walsh 3.9.5-5Dan Walsh 3.9.5-4Dan Walsh 3.9.5-3Dan Walsh 3.9.5-2Dan Walsh 3.9.5-1Dan Walsh 3.9.4-3Dan Walsh 3.9.4-2Dan Walsh 3.9.4-1Dan Walsh 3.9.3-4Dan Walsh 3.9.3-3Dan Walsh 3.9.3-2Dan Walsh 3.9.3-1Dan Walsh 3.9.2-1Dan Walsh 3.9.1-3Dan Walsh 3.9.1-2Dan Walsh 3.9.1-1Dan Walsh 3.9.0-2Dan Walsh 3.9.0-1Dan Walsh 3.8.8-21Dan Walsh 3.8.8-20Dan Walsh 3.8.8-19Dan Walsh 3.8.8-18Dan Walsh 3.8.8-17Dan Walsh 3.8.8-16Dan Walsh 3.8.8-15Dan Walsh 3.8.8-14Dan Walsh 3.8.8-13Dan Walsh 3.8.8-12Dan Walsh 3.8.8-11Dan Walsh 3.8.8-10Dan Walsh 3.8.8-9Dan Walsh 3.8.8-8Dan Walsh 3.8.8-7Dan Walsh 3.8.8-6Dan Walsh 3.8.8-5Dan Walsh 3.8.8-4Dan Walsh 3.8.8-3Dan Walsh 3.8.8-2Dan Walsh 3.8.8-1Dan Walsh 3.8.7-3Dan Walsh 3.8.7-2Dan Walsh 3.8.7-1Dan Walsh 3.8.6-3Miroslav Grepl 3.8.6-2Dan Walsh 3.8.6-1Dan Walsh 3.8.5-1Dan Walsh 3.8.4-1Dan Walsh 3.8.3-4Dan Walsh 3.8.3-3Dan Walsh 3.8.3-2Dan Walsh 3.8.3-1Dan Walsh 3.8.2-1Dan Walsh 3.8.1-5Dan Walsh 3.8.1-4Dan Walsh 3.8.1-3Dan Walsh 3.8.1-2Dan Walsh 3.8.1-1Dan Walsh 3.7.19-22Dan Walsh 3.7.19-21Dan Walsh 3.7.19-20Dan Walsh 3.7.19-19Dan Walsh 3.7.19-17Dan Walsh 3.7.19-16Dan Walsh 3.7.19-15Dan Walsh 3.7.19-14Dan Walsh 3.7.19-13Dan Walsh 3.7.19-12Dan Walsh 3.7.19-11Dan Walsh 3.7.19-10Dan Walsh 3.7.19-9Dan Walsh 3.7.19-8Dan Walsh 3.7.19-7Dan Walsh 3.7.19-6Dan Walsh 3.7.19-5Dan Walsh 3.7.19-4Dan Walsh 3.7.19-3Dan Walsh 3.7.19-2Dan Walsh 3.7.19-1Dan Walsh 3.7.18-3Dan Walsh 3.7.18-2Dan Walsh 3.7.18-1Dan Walsh 3.7.17-6Dan Walsh 3.7.17-5Dan Walsh 3.7.17-4Dan Walsh 3.7.17-3Dan Walsh 3.7.17-2Dan Walsh 3.7.17-1Dan Walsh 3.7.16-2Dan Walsh 3.7.16-1Dan Walsh 3.7.15-4Dan Walsh 3.7.15-3Dan Walsh 3.7.15-2Dan Walsh 3.7.15-1Dan Walsh 3.7.14-5Dan Walsh 3.7.14-4Dan Walsh 3.7.14-3Dan Walsh 3.7.14-2Dan Walsh 3.7.14-1Dan Walsh 3.7.13-4Dan Walsh 3.7.13-3Dan Walsh 3.7.13-2Dan Walsh 3.7.13-1Dan Walsh 3.7.12-1Dan Walsh 3.7.11-1Dan Walsh 3.7.10-5Dan Walsh 3.7.10-4Dan Walsh 3.7.10-3Dan Walsh 3.7.10-2Dan Walsh 3.7.10-1Dan Walsh 3.7.9-4Dan Walsh 3.7.9-3Dan Walsh 3.7.9-2Dan Walsh 3.7.9-1Dan Walsh 3.7.8-11Dan Walsh 3.7.8-9Dan Walsh 3.7.8-8Dan Walsh 3.7.8-7Dan Walsh 3.7.8-6Dan Walsh 3.7.8-5Dan Walsh 3.7.8-4Dan Walsh 3.7.8-3Dan Walsh 3.7.8-2Dan Walsh 3.7.8-1Dan Walsh 3.7.7-3Dan Walsh 3.7.7-2Dan Walsh 3.7.7-1Dan Walsh 3.7.6-1Dan Walsh 3.7.5-8Dan Walsh 3.7.5-7Dan Walsh 3.7.5-6Dan Walsh 3.7.5-5Dan Walsh 3.7.5-4Dan Walsh 3.7.5-3Dan Walsh 3.7.5-2Dan Walsh 3.7.5-1Dan Walsh 3.7.4-4Dan Walsh 3.7.4-3Dan Walsh 3.7.4-2Dan Walsh 3.7.4-1Dan Walsh 3.7.3-1Dan Walsh 3.7.1-1Dan Walsh 3.6.33-2Dan Walsh 3.6.33-1Dan Walsh 3.6.32-17Dan Walsh 3.6.32-16Dan Walsh 3.6.32-15Dan Walsh 3.6.32-13Dan Walsh 3.6.32-12Dan Walsh 3.6.32-11Dan Walsh 3.6.32-10Dan Walsh 3.6.32-9Dan Walsh 3.6.32-8Dan Walsh 3.6.32-7Dan Walsh 3.6.32-6Dan Walsh 3.6.32-5Dan Walsh 3.6.32-4Dan Walsh 3.6.32-3Dan Walsh 3.6.32-2Dan Walsh 3.6.32-1Dan Walsh 3.6.31-5Dan Walsh 3.6.31-4Dan Walsh 3.6.31-3Dan Walsh 3.6.31-2Dan Walsh 3.6.30-6Dan Walsh 3.6.30-5Dan Walsh 3.6.30-4Dan Walsh 3.6.30-3Dan Walsh 3.6.30-2Dan Walsh 3.6.30-1Dan Walsh 3.6.29-2Dan Walsh 3.6.29-1Dan Walsh 3.6.28-9Dan Walsh 3.6.28-8Dan Walsh 3.6.28-7Dan Walsh 3.6.28-6Dan Walsh 3.6.28-5Dan Walsh 3.6.28-4Dan Walsh 3.6.28-3Dan Walsh 3.6.28-2Dan Walsh 3.6.28-1Dan Walsh 3.6.27-1Dan Walsh 3.6.26-11Dan Walsh 3.6.26-10Dan Walsh 3.6.26-9Bill Nottingham 3.6.26-8Dan Walsh 3.6.26-7Dan Walsh 3.6.26-6Dan Walsh 3.6.26-5Dan Walsh 3.6.26-4Dan Walsh 3.6.26-3Dan Walsh 3.6.26-2Dan Walsh 3.6.26-1Dan Walsh 3.6.25-1Dan Walsh 3.6.24-1Dan Walsh 3.6.23-2Dan Walsh 3.6.23-1Dan Walsh 3.6.22-3Dan Walsh 3.6.22-1Dan Walsh 3.6.21-4Dan Walsh 3.6.21-3Tom "spot" Callaway 3.6.21-2Dan Walsh 3.6.21-1Dan Walsh 3.6.20-2Dan Walsh 3.6.20-1Dan Walsh 3.6.19-5Dan Walsh 3.6.19-4Dan Walsh 3.6.19-3Dan Walsh 3.6.19-2Dan Walsh 3.6.19-1Dan Walsh 3.6.18-1Dan Walsh 3.6.17-1Dan Walsh 3.6.16-4Dan Walsh 3.6.16-3Dan Walsh 3.6.16-2Dan Walsh 3.6.16-1Dan Walsh 3.6.14-3Dan Walsh 3.6.14-2Dan Walsh 3.6.14-1Dan Walsh 3.6.13-3Dan Walsh 3.6.13-2Dan Walsh 3.6.13-1Dan Walsh 3.6.12-39Dan Walsh 3.6.12-38Dan Walsh 3.6.12-37Dan Walsh 3.6.12-36Dan Walsh 3.6.12-35Dan Walsh 3.6.12-34Dan Walsh 3.6.12-33Dan Walsh 3.6.12-31Dan Walsh 3.6.12-30Dan Walsh 3.6.12-29Dan Walsh 3.6.12-28Dan Walsh 3.6.12-27Dan Walsh 3.6.12-26Dan Walsh 3.6.12-25Dan Walsh 3.6.12-24Dan Walsh 3.6.12-23Dan Walsh 3.6.12-22Dan Walsh 3.6.12-21Dan Walsh 3.6.12-20Dan Walsh 3.6.12-19Dan Walsh 3.6.12-16Dan Walsh 3.6.12-15Dan Walsh 3.6.12-14Dan Walsh 3.6.12-13Dan Walsh 3.6.12-12Dan Walsh 3.6.12-11Dan Walsh 3.6.12-10Dan Walsh 3.6.12-9Dan Walsh 3.6.12-8Dan Walsh 3.6.12-7Dan Walsh 3.6.12-6Dan Walsh 3.6.12-5Dan Walsh 3.6.12-4Dan Walsh 3.6.12-3Dan Walsh 3.6.12-2Dan Walsh 3.6.12-1Dan Walsh 3.6.11-1Dan Walsh 3.6.10-9Dan Walsh 3.6.10-8Dan Walsh 3.6.10-7Dan Walsh 3.6.10-6Dan Walsh 3.6.10-5Dan Walsh 3.6.10-4Dan Walsh 3.6.10-3Dan Walsh 3.6.10-2Dan Walsh 3.6.10-1Dan Walsh 3.6.9-4Dan Walsh 3.6.9-3Dan Walsh 3.6.9-2Dan Walsh 3.6.9-1Dan Walsh 3.6.8-4Dan Walsh 3.6.8-3Dan Walsh 3.6.8-2Dan Walsh 3.6.8-1Dan Walsh 3.6.7-2Dan Walsh 3.6.7-1Dan Walsh 3.6.6-9Dan Walsh 3.6.6-8Fedora Release Engineering - 3.6.6-7Dan Walsh 3.6.6-6Dan Walsh 3.6.6-5Dan Walsh 3.6.6-4Dan Walsh 3.6.6-3Dan Walsh 3.6.6-2Dan Walsh 3.6.6-1Dan Walsh 3.6.5-3Dan Walsh 3.6.5-1Dan Walsh 3.6.4-6Dan Walsh 3.6.4-5Dan Walsh 3.6.4-4Dan Walsh 3.6.4-3Dan Walsh 3.6.4-2Dan Walsh 3.6.4-1Dan Walsh 3.6.3-13Dan Walsh 3.6.3-12Dan Walsh 3.6.3-11Dan Walsh 3.6.3-10Dan Walsh 3.6.3-9Dan Walsh 3.6.3-8Dan Walsh 3.6.3-7Dan Walsh 3.6.3-6Dan Walsh 3.6.3-3Dan Walsh 3.6.3-2Dan Walsh 3.6.3-1Dan Walsh 3.6.2-5Dan Walsh 3.6.2-4Dan Walsh 3.6.2-3Dan Walsh 3.6.2-2Dan Walsh 3.6.2-1Dan Walsh 3.6.1-15Dan Walsh 3.6.1-14Dan Walsh 3.6.1-13Dan Walsh 3.6.1-12Dan Walsh 3.6.1-11Dan Walsh 3.6.1-10Dan Walsh 3.6.1-9Dan Walsh 3.6.1-8Dan Walsh 3.6.1-7Dan Walsh 3.6.1-4Ignacio Vazquez-Abrams - 3.6.1-2Dan Walsh 3.5.13-19Dan Walsh 3.5.13-18Dan Walsh 3.5.13-17Dan Walsh 3.5.13-16Dan Walsh 3.5.13-15Dan Walsh 3.5.13-14Dan Walsh 3.5.13-13Dan Walsh 3.5.13-12Dan Walsh 3.5.13-11Dan Walsh 3.5.13-9Dan Walsh 3.5.13-8Dan Walsh 3.5.13-7Dan Walsh 3.5.13-6Dan Walsh 3.5.13-5Dan Walsh 3.5.13-4Dan Walsh 3.5.13-3Dan Walsh 3.5.13-2Dan Walsh 3.5.13-1Dan Walsh 3.5.12-3Dan Walsh 3.5.12-2Dan Walsh 3.5.12-1Dan Walsh 3.5.11-1Dan Walsh 3.5.10-3Dan Walsh 3.5.10-2Dan Walsh 3.5.10-1Dan Walsh 3.5.9-4Dan Walsh 3.5.9-3Dan Walsh 3.5.9-2Dan Walsh 3.5.9-1Dan Walsh 3.5.8-7Dan Walsh 3.5.8-6Dan Walsh 3.5.8-5Dan Walsh 3.5.8-4Dan Walsh 3.5.8-3Dan Walsh 3.5.8-1Dan Walsh 3.5.7-2Dan Walsh 3.5.7-1Dan Walsh 3.5.6-2Dan Walsh 3.5.6-1Dan Walsh 3.5.5-4Dan Walsh 3.5.5-3Dan Walsh 3.5.5-2Dan Walsh 3.5.4-2Dan Walsh 3.5.4-1Dan Walsh 3.5.3-1Dan Walsh 3.5.2-2Dan Walsh 3.5.1-5Dan Walsh 3.5.1-4Dan Walsh 3.5.1-3Dan Walsh 3.5.1-2Dan Walsh 3.5.1-1Dan Walsh 3.5.0-1Dan Walsh 3.4.2-14Dan Walsh 3.4.2-13Dan Walsh 3.4.2-12Dan Walsh 3.4.2-11Dan Walsh 3.4.2-10Dan Walsh 3.4.2-9Dan Walsh 3.4.2-8Dan Walsh 3.4.2-7Dan Walsh 3.4.2-6Dan Walsh 3.4.2-5Dan Walsh 3.4.2-4Dan Walsh 3.4.2-3Dan Walsh 3.4.2-2Dan Walsh 3.4.2-1Dan Walsh 3.4.1-5Dan Walsh 3.4.1-3Dan Walsh 3.4.1-2Dan Walsh 3.4.1-1Dan Walsh 3.3.1-48Dan Walsh 3.3.1-47Dan Walsh 3.3.1-46Dan Walsh 3.3.1-45Dan Walsh 3.3.1-44Dan Walsh 3.3.1-43Dan Walsh 3.3.1-42Dan Walsh 3.3.1-41Dan Walsh 3.3.1-39Dan Walsh 3.3.1-37Dan Walsh 3.3.1-36Dan Walsh 3.3.1-33Dan Walsh 3.3.1-32Dan Walsh 3.3.1-31Dan Walsh 3.3.1-30Dan Walsh 3.3.1-29Dan Walsh 3.3.1-28Dan Walsh 3.3.1-27Dan Walsh 3.3.1-26Dan Walsh 3.3.1-25Dan Walsh 3.3.1-24Dan Walsh 3.3.1-23Dan Walsh 3.3.1-22Dan Walsh 3.3.1-21Dan Walsh 3.3.1-20Dan Walsh 3.3.1-19Dan Walsh 3.3.1-18Dan Walsh 3.3.1-17Dan Walsh 3.3.1-16Dan Walsh 3.3.1-15Bill Nottingham 3.3.1-14Dan Walsh 3.3.1-13Dan Walsh 3.3.1-12Dan Walsh 3.3.1-11Dan Walsh 3.3.1-10Dan Walsh 3.3.1-9Dan Walsh 3.3.1-8Dan Walsh 3.3.1-6Dan Walsh 3.3.1-5Dan Walsh 3.3.1-4Dan Walsh 3.3.1-2Dan Walsh 3.3.1-1Dan Walsh 3.3.0-2Dan Walsh 3.3.0-1Dan Walsh 3.2.9-2Dan Walsh 3.2.9-1Dan Walsh 3.2.8-2Dan Walsh 3.2.8-1Dan Walsh 3.2.7-6Dan Walsh 3.2.7-5Dan Walsh 3.2.7-3Dan Walsh 3.2.7-2Dan Walsh 3.2.7-1Dan Walsh 3.2.6-7Dan Walsh 3.2.6-6Dan Walsh 3.2.6-5Dan Walsh 3.2.6-4Dan Walsh 3.2.6-3Dan Walsh 3.2.6-2Dan Walsh 3.2.6-1Dan Walsh 3.2.5-25Dan Walsh 3.2.5-24Dan Walsh 3.2.5-22Dan Walsh 3.2.5-21Dan Walsh 3.2.5-20Dan Walsh 3.2.5-19Dan Walsh 3.2.5-18Dan Walsh 3.2.5-17Dan Walsh 3.2.5-16Dan Walsh 3.2.5-15Dan Walsh 3.2.5-14Dan Walsh 3.2.5-13Dan Walsh 3.2.5-12Dan Walsh 3.2.5-11Dan Walsh 3.2.5-10Dan Walsh 3.2.5-9Dan Walsh 3.2.5-8Dan Walsh 3.2.5-7Dan Walsh 3.2.5-6Dan Walsh 3.2.5-5Dan Walsh 3.2.5-4Dan Walsh 3.2.5-3Dan Walsh 3.2.5-2Dan Walsh 3.2.5-1Dan Walsh 3.2.4-5Dan Walsh 3.2.4-4Dan Walsh 3.2.4-3Dan Walsh 3.2.4-1Dan Walsh 3.2.4-1Dan Walsh 3.2.3-2Dan Walsh 3.2.3-1Dan Walsh 3.2.2-1Dan Walsh 3.2.1-3Dan Walsh 3.2.1-1Dan Walsh 3.1.2-2Dan Walsh 3.1.2-1Dan Walsh 3.1.1-1Dan Walsh 3.1.0-1Dan Walsh 3.0.8-30Dan Walsh 3.0.8-28Dan Walsh 3.0.8-27Dan Walsh 3.0.8-26Dan Walsh 3.0.8-25Dan Walsh 3.0.8-24Dan Walsh 3.0.8-23Dan Walsh 3.0.8-22Dan Walsh 3.0.8-21Dan Walsh 3.0.8-20Dan Walsh 3.0.8-19Dan Walsh 3.0.8-18Dan Walsh 3.0.8-17Dan Walsh 3.0.8-16Dan Walsh 3.0.8-15Dan Walsh 3.0.8-14Dan Walsh 3.0.8-13Dan Walsh 3.0.8-12Dan Walsh 3.0.8-11Dan Walsh 3.0.8-10Dan Walsh 3.0.8-9Dan Walsh 3.0.8-8Dan Walsh 3.0.8-7Dan Walsh 3.0.8-5Dan Walsh 3.0.8-4Dan Walsh 3.0.8-3Dan Walsh 3.0.8-2Dan Walsh 3.0.8-1Dan Walsh 3.0.7-10Dan Walsh 3.0.7-9Dan Walsh 3.0.7-8Dan Walsh 3.0.7-7Dan Walsh 3.0.7-6Dan Walsh 3.0.7-5Dan Walsh 3.0.7-4Dan Walsh 3.0.7-3Dan Walsh 3.0.7-2Dan Walsh 3.0.7-1Dan Walsh 3.0.6-3Dan Walsh 3.0.6-2Dan Walsh 3.0.6-1Dan Walsh 3.0.5-11Dan Walsh 3.0.5-10Dan Walsh 3.0.5-9Dan Walsh 3.0.5-8Dan Walsh 3.0.5-7Dan Walsh 3.0.5-6Dan Walsh 3.0.5-5Dan Walsh 3.0.5-4Dan Walsh 3.0.5-3Dan Walsh 3.0.5-2Dan Walsh 3.0.5-1Dan Walsh 3.0.4-6Dan Walsh 3.0.4-5Dan Walsh 3.0.4-4Dan Walsh 3.0.4-3Dan Walsh 3.0.4-2Dan Walsh 3.0.4-1Dan Walsh 3.0.3-6Dan Walsh 3.0.3-5Dan Walsh 3.0.3-4Dan Walsh 3.0.3-3Dan Walsh 3.0.3-2Dan Walsh 3.0.3-1Dan Walsh 3.0.2-9Dan Walsh 3.0.2-8Dan Walsh 3.0.2-7Dan Walsh 3.0.2-5Dan Walsh 3.0.2-4Dan Walsh 3.0.2-3Dan Walsh 3.0.2-2Dan Walsh 3.0.1-5Dan Walsh 3.0.1-4Dan Walsh 3.0.1-3Dan Walsh 3.0.1-2Dan Walsh 3.0.1-1Dan Walsh 2.6.5-3Dan Walsh 2.6.5-2Dan Walsh 2.6.4-7Dan Walsh 2.6.4-6Dan Walsh 2.6.4-5Dan Walsh 2.6.4-2Dan Walsh 2.6.4-1Dan Walsh 2.6.3-1Dan Walsh 2.6.2-1Dan Walsh 2.6.1-4Dan Walsh 2.6.1-2Dan Walsh 2.6.1-1Dan Walsh 2.5.12-12Dan Walsh 2.5.12-11Dan Walsh 2.5.12-10Dan Walsh 2.5.12-8Dan Walsh 2.5.12-5Dan Walsh 2.5.12-4Dan Walsh 2.5.12-3Dan Walsh 2.5.12-2Dan Walsh 2.5.12-1Dan Walsh 2.5.11-8Dan Walsh 2.5.11-7Dan Walsh 2.5.11-6Dan Walsh 2.5.11-5Dan Walsh 2.5.11-4Dan Walsh 2.5.11-3Dan Walsh 2.5.11-2Dan Walsh 2.5.11-1Dan Walsh 2.5.10-2Dan Walsh 2.5.10-1Dan Walsh 2.5.9-6Dan Walsh 2.5.9-5Dan Walsh 2.5.9-4Dan Walsh 2.5.9-3Dan Walsh 2.5.9-2Dan Walsh 2.5.8-8Dan Walsh 2.5.8-7Dan Walsh 2.5.8-6Dan Walsh 2.5.8-5Dan Walsh 2.5.8-4Dan Walsh 2.5.8-3Dan Walsh 2.5.8-2Dan Walsh 2.5.8-1Dan Walsh 2.5.7-1Dan Walsh 2.5.6-1Dan Walsh 2.5.5-2Dan Walsh 2.5.5-1Dan Walsh 2.5.4-2Dan Walsh 2.5.4-1Dan Walsh 2.5.3-3Dan Walsh 2.5.3-2Dan Walsh 2.5.3-1Dan Walsh 2.5.2-6Dan Walsh 2.5.2-5Dan Walsh 2.5.2-4Dan Walsh 2.5.2-3Dan Walsh 2.5.2-2Dan Walsh 2.5.2-1Dan Walsh 2.5.1-5Dan Walsh 2.5.1-4Dan Walsh 2.5.1-2Dan Walsh 2.5.1-1Dan Walsh 2.4.6-20Dan Walsh 2.4.6-19Dan Walsh 2.4.6-18Dan Walsh 2.4.6-17Dan Walsh 2.4.6-16Dan Walsh 2.4.6-15Dan Walsh 2.4.6-14Dan Walsh 2.4.6-13Dan Walsh 2.4.6-12Dan Walsh 2.4.6-11Dan Walsh 2.4.6-10Dan Walsh 2.4.6-9Dan Walsh 2.4.6-8Dan Walsh 2.4.6-7Dan Walsh 2.4.6-6Dan Walsh 2.4.6-5Dan Walsh 2.4.6-4Dan Walsh 2.4.6-3Dan Walsh 2.4.6-1Dan Walsh 2.4.5-4Dan Walsh 2.4.5-3Dan Walsh 2.4.5-2Dan Walsh 2.4.5-1Dan Walsh 2.4.4-2Dan Walsh 2.4.4-2Dan Walsh 2.4.4-1Dan Walsh 2.4.3-13Dan Walsh 2.4.3-12Dan Walsh 2.4.3-11Dan Walsh 2.4.3-10Dan Walsh 2.4.3-9Dan Walsh 2.4.3-8Dan Walsh 2.4.3-7Dan Walsh 2.4.3-6Dan Walsh 2.4.3-5Dan Walsh 2.4.3-4Dan Walsh 2.4.3-3Dan Walsh 2.4.3-2Dan Walsh 2.4.3-1Dan Walsh 2.4.2-8Dan Walsh 2.4.2-7James Antill 2.4.2-6Dan Walsh 2.4.2-5Dan Walsh 2.4.2-4Dan Walsh 2.4.2-3Dan Walsh 2.4.2-2Dan Walsh 2.4.2-1Dan Walsh 2.4.1-5Dan Walsh 2.4.1-4Dan Walsh 2.4.1-3Dan Walsh 2.4.1-2Dan Walsh 2.4-4Dan Walsh 2.4-3Dan Walsh 2.4-2Dan Walsh 2.4-1Dan Walsh 2.3.19-4Dan Walsh 2.3.19-3Dan Walsh 2.3.19-2Dan Walsh 2.3.19-1James Antill 2.3.18-10James Antill 2.3.18-9Dan Walsh 2.3.18-8Dan Walsh 2.3.18-7Dan Walsh 2.3.18-6Dan Walsh 2.3.18-5Dan Walsh 2.3.18-4Dan Walsh 2.3.18-3Dan Walsh 2.3.18-2Dan Walsh 2.3.18-1Dan Walsh 2.3.17-2Dan Walsh 2.3.17-1Dan Walsh 2.3.16-9Dan Walsh 2.3.16-8Dan Walsh 2.3.16-7Dan Walsh 2.3.16-6Dan Walsh 2.3.16-5Dan Walsh 2.3.16-4Dan Walsh 2.3.16-2Dan Walsh 2.3.16-1Dan Walsh 2.3.15-2Dan Walsh 2.3.15-1Dan Walsh 2.3.14-8Dan Walsh 2.3.14-7Dan Walsh 2.3.14-6Dan Walsh 2.3.14-4Dan Walsh 2.3.14-3Dan Walsh 2.3.14-2Dan Walsh 2.3.14-1Dan Walsh 2.3.13-6Dan Walsh 2.3.13-5Dan Walsh 2.3.13-4Dan Walsh 2.3.13-3Dan Walsh 2.3.13-2Dan Walsh 2.3.13-1Dan Walsh 2.3.12-2Dan Walsh 2.3.12-1Dan Walsh 2.3.11-1Dan Walsh 2.3.10-7Dan Walsh 2.3.10-6Dan Walsh 2.3.10-3Dan Walsh 2.3.10-1Dan Walsh 2.3.9-6Dan Walsh 2.3.9-5Dan Walsh 2.3.9-4Dan Walsh 2.3.9-3Dan Walsh 2.3.9-2Dan Walsh 2.3.9-1Dan Walsh 2.3.8-2Dan Walsh 2.3.7-1Dan Walsh 2.3.6-4Dan Walsh 2.3.6-3Dan Walsh 2.3.6-2Dan Walsh 2.3.6-1Dan Walsh 2.3.5-1Dan Walsh 2.3.4-1Dan Walsh 2.3.3-20Dan Walsh 2.3.3-19Dan Walsh 2.3.3-18Dan Walsh 2.3.3-17Dan Walsh 2.3.3-16Dan Walsh 2.3.3-15Dan Walsh 2.3.3-14Dan Walsh 2.3.3-13Dan Walsh 2.3.3-12Dan Walsh 2.3.3-11Dan Walsh 2.3.3-10Dan Walsh 2.3.3-9Dan Walsh 2.3.3-8Dan Walsh 2.3.3-7Dan Walsh 2.3.3-6Dan Walsh 2.3.3-5Dan Walsh 2.3.3-4Dan Walsh 2.3.3-3Dan Walsh 2.3.3-2Dan Walsh 2.3.3-1Dan Walsh 2.3.2-4Dan Walsh 2.3.2-3Dan Walsh 2.3.2-2Dan Walsh 2.3.2-1Dan Walsh 2.3.1-1Dan Walsh 2.2.49-1Dan Walsh 2.2.48-1Dan Walsh 2.2.47-5Dan Walsh 2.2.47-4Dan Walsh 2.2.47-3Dan Walsh 2.2.47-1Dan Walsh 2.2.46-2Dan Walsh 2.2.46-1Dan Walsh 2.2.45-3Dan Walsh 2.2.45-2Dan Walsh 2.2.45-1Dan Walsh 2.2.44-1Dan Walsh 2.2.43-4Dan Walsh 2.2.43-3Dan Walsh 2.2.43-2Dan Walsh 2.2.43-1Dan Walsh 2.2.42-4Dan Walsh 2.2.42-3Dan Walsh 2.2.42-2Dan Walsh 2.2.42-1Dan Walsh 2.2.41-1Dan Walsh 2.2.40-2Dan Walsh 2.2.40-1Dan Walsh 2.2.39-2Dan Walsh 2.2.39-1Dan Walsh 2.2.38-6Dan Walsh 2.2.38-5Dan Walsh 2.2.38-4Dan Walsh 2.2.38-3Dan Walsh 2.2.38-2Dan Walsh 2.2.38-1Dan Walsh 2.2.37-1Dan Walsh 2.2.36-2Dan Walsh 2.2.36-1James Antill 2.2.35-2Dan Walsh 2.2.35-1Dan Walsh 2.2.34-3Dan Walsh 2.2.34-2Dan Walsh 2.2.34-1Dan Walsh 2.2.33-1Dan Walsh 2.2.32-2Dan Walsh 2.2.32-1Dan Walsh 2.2.31-1Dan Walsh 2.2.30-2Dan Walsh 2.2.30-1Dan Walsh 2.2.29-6Russell Coker 2.2.29-5Dan Walsh 2.2.29-4Dan Walsh 2.2.29-3Dan Walsh 2.2.29-2Dan Walsh 2.2.29-1Dan Walsh 2.2.28-3Dan Walsh 2.2.28-2Dan Walsh 2.2.28-1Dan Walsh 2.2.27-1Dan Walsh 2.2.25-3Dan Walsh 2.2.25-2Dan Walsh 2.2.24-1Dan Walsh 2.2.23-19Dan Walsh 2.2.23-18Dan Walsh 2.2.23-17Karsten Hopp 2.2.23-16Dan Walsh 2.2.23-15Dan Walsh 2.2.23-14Dan Walsh 2.2.23-13Dan Walsh 2.2.23-12Jeremy Katz - 2.2.23-11Jeremy Katz - 2.2.23-10Dan Walsh 2.2.23-9Dan Walsh 2.2.23-8Dan Walsh 2.2.23-7Dan Walsh 2.2.23-5Dan Walsh 2.2.23-4Dan Walsh 2.2.23-3Dan Walsh 2.2.23-2Dan Walsh 2.2.23-1Dan Walsh 2.2.22-2Dan Walsh 2.2.22-1Dan Walsh 2.2.21-9Dan Walsh 2.2.21-8Dan Walsh 2.2.21-7Dan Walsh 2.2.21-6Dan Walsh 2.2.21-5Dan Walsh 2.2.21-4Dan Walsh 2.2.21-3Dan Walsh 2.2.21-2Dan Walsh 2.2.21-1Dan Walsh 2.2.20-1Dan Walsh 2.2.19-2Dan Walsh 2.2.19-1Dan Walsh 2.2.18-2Dan Walsh 2.2.18-1Dan Walsh 2.2.17-2Dan Walsh 2.2.16-1Dan Walsh 2.2.15-4Dan Walsh 2.2.15-3Dan Walsh 2.2.15-1Dan Walsh 2.2.14-2Dan Walsh 2.2.14-1Dan Walsh 2.2.13-1Dan Walsh 2.2.12-1Dan Walsh 2.2.11-2Dan Walsh 2.2.11-1Dan Walsh 2.2.10-1Dan Walsh 2.2.9-2Dan Walsh 2.2.9-1Dan Walsh 2.2.8-2Dan Walsh 2.2.7-1Dan Walsh 2.2.6-3Dan Walsh 2.2.6-2Dan Walsh 2.2.6-1Dan Walsh 2.2.5-1Dan Walsh 2.2.4-1Dan Walsh 2.2.3-1Dan Walsh 2.2.2-1Dan Walsh 2.2.1-1Dan Walsh 2.1.13-1Dan Walsh 2.1.12-3Dan Walsh 2.1.11-1Dan Walsh 2.1.10-1Jeremy Katz - 2.1.9-2Dan Walsh 2.1.9-1Dan Walsh 2.1.8-3Dan Walsh 2.1.8-2Dan Walsh 2.1.8-1Dan Walsh 2.1.7-4Dan Walsh 2.1.7-3Dan Walsh 2.1.7-2Dan Walsh 2.1.7-1Dan Walsh 2.1.6-24Dan Walsh 2.1.6-23Dan Walsh 2.1.6-22Dan Walsh 2.1.6-21Dan Walsh 2.1.6-20Dan Walsh 2.1.6-18Dan Walsh 2.1.6-17Dan Walsh 2.1.6-16Dan Walsh 2.1.6-15Dan Walsh 2.1.6-14Dan Walsh 2.1.6-13Dan Walsh 2.1.6-11Dan Walsh 2.1.6-10Dan Walsh 2.1.6-9Dan Walsh 2.1.6-8Dan Walsh 2.1.6-5Dan Walsh 2.1.6-4Dan Walsh 2.1.6-3Dan Walsh 2.1.6-2Dan Walsh 2.1.6-1Dan Walsh 2.1.4-2Dan Walsh 2.1.4-1Dan Walsh 2.1.3-1Jeremy Katz - 2.1.2-3Dan Walsh 2.1.2-2Dan Walsh 2.1.2-1Dan Walsh 2.1.1-3Dan Walsh 2.1.1-2Dan Walsh 2.1.1-1Dan Walsh 2.1.0-3Dan Walsh 2.1.0-2.Dan Walsh 2.1.0-1.Dan Walsh 2.0.11-2.Dan Walsh 2.0.11-1.Dan Walsh 2.0.9-1.Dan Walsh 2.0.8-1.Dan Walsh 2.0.7-3Dan Walsh 2.0.7-2Dan Walsh 2.0.6-2Dan Walsh 2.0.5-4Dan Walsh 2.0.5-1Dan Walsh 2.0.4-1Dan Walsh 2.0.2-2Dan Walsh 2.0.2-1Dan Walsh 2.0.1-2Dan Walsh 2.0.1-1- Allow virtlogd_t domain to chat via dbus with systemd_logind Resolves: rhbz#1593740- Allow virtlogd_t domain to write inhibit systemd pipes. Resolves: rhbz#1596730- Allow certmonger to sends emails Resolves: rhbz#1588363- Allow snapperd_t domain to unmount fs_t filesystems Resolves: rhbz#1561424- Allow snapperd_t to set priority for kernel processes Resolves: rhbz#1558656- Backport several changes for snapperdfrom Fedora Rawhide Resolves: rhbz#1558656- Label /usr/libexec/dbus-1/dbus-daemon-launch-helper as dbusd_exec_t to have systemd dbus services running in the correct domain instead of unconfined_service_t if unconfined.pp module is enabled. Resolves: rhbz#1546721- Allow openvswitch_t stream connect svirt_t Resolves: rhbz#1540702- Allow openvswitch domain to manage svirt_tmp_t sock files Resolves: rhbz#1540702 - Fix broken systemd_tmpfiles_run() interface- Allow dirsrv_t domain to create tmp link files Resolves: rhbz#1536011 - Label /usr/sbin/ldap-agent as dirsrv_snmp_exec_t Resolves: rhbz#1428568 - Allow ipsec_mgmt_t execute ifconfig_exec_t binaries - Allow ipsec_mgmt_t nnp domain transition to ifconfig_t Resolves: rhbz#1539416- Allow svirt_domain to create socket files in /tmp with label svirt_tmp_t Resolves: rhbz#1540702 - Allow keepalived_t domain getattr proc filesystem Resolves: rhbz#1477542 - Rename svirt_sandbox_file_t to container_file_t and svirt_lxc_net_t to container_t Resolves: rhbz#1538544 - Allow ipsec_t nnp transistions to domains ipsec_mgmt_t and ifconfig_t Resolves: rhbz:#1539416 - Allow systemd_logind_t domain to bind on dhcpd_port_t,pki_ca_port_t,flash_port_t Resolves: rhbz#1479350- Allow openvswitch_t domain to read cpuid, write to sysfs files and creating openvswitch_tmp_t sockets Resolves: rhbz#1535196 - Add new interface ppp_filetrans_named_content() Resolves: rhbz#1530601 - Allow keepalived_t read sysctl_net_t files Resolves: rhbz#1477542 - Allow puppetmaster_t domtran to puppetagent_t Resolves: rhbz#1376893 - Allow kdump_t domain to read kernel ring buffer Resolves: rhbz#1540004 - Allow ipsec_t domain to exec ifconfig_exec_t binaries. Resolves: rhbz#1539416 - Allow unconfined_domain_typ to create pppd_lock_t directory in /var/lock Resolves: rhbz#1530601 - Allow updpwd_t domain to create files in /etc with shadow_t label Resolves: rhbz#1412838 - Allow iptables sysctl load list support with SELinux enforced Resolves: rhbz#1535572- Allow virt_domains to acces infiniband pkeys. Resolves: rhbz#1533183 - Label /usr/libexec/ipsec/addconn as ipsec_exec_t to run this script as ipsec_t instead of init_t Resolves: rhbz#1535133 - Allow audisp_remote_t domain write to files on all levels Resolves: rhbz#1534924- Allow vmtools_t domain creating vmware_log_t files Resolves: rhbz#1507048 - Allow openvswitch_t domain to acces infiniband devices Resolves: rhbz#1532705- Allow chronyc_t domain to manage chronyd_keys_t files. Resolves: rhbz#1530525 - Make virtlog_t domain system dbus client Resolves: rhbz#1481109 - Update openvswitch SELinux module Resolves: rhbz#1482682 - Allow virtd_t to create also sock_files with label virt_var_run_t Resolves: rhbz#1484075- Allow domains that manage logfiles to man logdirs Resolves: rhbz#1523811- Label /dev/drm_dp_aux* as xserver_misc_device_t Resolves: rhbz#1520897 - Allow sysadm_t to run puppet_exec_t binaries as puppet_t Resolves: rhbz#1255745- Allow tomcat_t to manage pki_tomcat pid files Resolves: rhbz#1478371 - networkmanager: allow talking to openvswitch Resolves: rhbz#1517247 - Allow networkmanager_t and opensm_t to manage subned endports for IPoIB VLANs Resolves: rhbz#1517895 - Allow domains networkmanager_t and opensm_t to control IPoIB VLANs Resolves: rhbz#1517744 - Fix typo in guest interface file Resolves: rhbz#1468254 - Allow isnsd_t domain to accept tcp connections. Resolves: rhbz#1390208- Allow getty to use usbttys Resolves: rhbz#1514235- Allow ldap_t domain to manage also slapd_tmp_t lnk files Resolves: rhbz#1510883 - Allow cluster_t domain creating bundles directory with label var_log_t instead of cluster_var_log_t Resolves: rhbz:#1508360 - Add dac_read_search and dac_override capabilities to ganesha Resolves: rhbz#1483451- Add dependency for policycoreutils-2.5.18 becuase of new cgroup_seclabel policy capability Resolves: rhbz#1510145- Allow jabber domains to connect to postgresql ports Resolves: rhbz#1438489 - Dontaudit accountsd domain creating dirs in /root Resolves: rhbz#1456760 - Dontaudit slapd_t to block suspend system Resolves: rhbz: #1479759 - Allow spamc_t to stream connect to cyrus. Resolves: rhbz#1382955 - allow imapd to read /proc/net/unix file Resolves: rhbz#1393030 - Allow passenger to connect to mysqld_port_t Resolves: rhbz#1433464- Allow chronyc_t domain to use user_ptys Resolves: rhbz#1470150 - allow ptp4l to read /proc/net/unix file - Allow conmand to use usb ttys. Resolves: rhbz#1505121 - Label all files /var/log/opensm.* as opensm_log_t because opensm creating new log files with name opensm-subnet.lst Resolves: rhbz#1505845 - Allow chronyd daemon to execute chronyc. Resolves: rhbz#1508486 - Allow firewalld exec ldconfig. Resolves: rhbz#1375576 - Allow mozilla_plugin_t domain to dbus chat with devicekit Resolves: rhbz#1460477 - Dontaudit leaked logwatch pipes Resolves: rhbz#1450119 - Label /usr/bin/VGAuthService as vmtools_exec_t to confine this daemon. Resolves: rhbz#1507048 - Allow httpd_t domain to execute hugetlbfs_t files Resolves: rhbz#1507682 - Allow nfsd_t domain to read configfs_t files/dirs Resolves: rhbz#1439442 - Hide all allow rules with ptrace inside deny_ptrace boolean Resolves: rhbz#1421075 - Allow tgtd_t domain to read generic certs Resolves: rhbz#1438532 - Allow ptp4l to send msgs via dgram socket to unprivileged user domains Resolves: rhbz#1429853 - Allow dirsrv_snmp_t to use inherited user ptys and read system state Resolves: rhbz#1428568 - Allow glusterd_t domain to create own tmpfs dirs/files Resolves: rhbz#1411310 - Allow keepalived stream connect to snmp Resolves: rhbz#1401556 - After fix in kernel where LSM hooks for dac_override and dac_search_read capability was swaped we need to fix it also in policy Resolves: rhbz#1507089- Allow pegasus_openlmi_services_t to read generic certs Resolves: rhbz#1462292 - Allow ganesha_t domain to read random device Resolves: rhbz#1494382 - Allow zabbix_t domain to change its resource limits Resolves: rhbz:#1504074 - Add new boolean nagios_use_nfs Resolves: rhbz#1504826 - Allow system_mail_t to search network sysctls Resolves: rhbz#1505779 - Add samba_manage_var_dirs() interface - Fix typo bug in virt filecontext file - Allow nagios_script_t to read nagios_spool_t files Resolves: rhbz#1426824 - Allow samba to manage var dirs/files Resolves: rhbz#1415088 - Allow sbd_t to create own sbd_tmpfs_t dirs/files Resolves: rhbz#1380795 - Allow firewalld and networkmanager to chat with hypervkvp via dbus Resolves: rhbz#1377276 - Allow dmidecode to read rhsmcert_log_t files Resolves: rhbz#1300799 - Allow mail system to connect mariadb sockets. Resolves: rhbz#1368642 - Allow logrotate_t to change passwd and reloead services Resolves: rhbz#1450789 - Allow mail system to connect mariadb sockets. Resolves: rhbz#1368642 - Allow logrotate_t to change passwd and reloead services Resolves: rhbz#1450789 - Allow pegasus_openlmi_services_t to read generic certs Resolves: rhbz#1462292 - Allow ganesha_t domain to read random device Resolves: rhbz#1494382 - Allow zabbix_t domain to change its resource limits Resolves: rhbz:#1504074 - Add new boolean nagios_use_nfs Resolves: rhbz#1504826 - Allow system_mail_t to search network sysctls Resolves: rhbz#1505779 - Add samba_manage_var_dirs() interface - Fix typo bug in virt filecontext file - Allow nagios_script_t to read nagios_spool_t files Resolves: rhbz#1426824 - Allow samba to manage var dirs/files Resolves: rhbz#1415088 - Allow sbd_t to create own sbd_tmpfs_t dirs/files Resolves: rhbz#1380795 - Allow firewalld and networkmanager to chat with hypervkvp via dbus Resolves: rhbz#1377276 - Allow dmidecode to read rhsmcert_log_t files Resolves: rhbz#1300799 - Allow mail system to connect mariadb sockets. Resolves: rhbz#1368642 - Allow logrotate_t to change passwd and reloead services Resolves: rhbz#1450789 - Allow chronyd_t do request kernel module and block_suspend capability Resolves: rhbz#1350765 - Allow system_cronjob_t to create /var/lib/letsencrypt dir with right label Resolves: rhbz#1447278 - Allow httpd_t also read httpd_user_content_type dirs when httpd_enable_homedirs is enables Resolves: rhbz#1491994 - Allow svnserve to use kerberos Resolves: rhbz#1475271 - Allow conman to use ptmx. Add conman_use_nfs boolean Resolves: rhbz#1377915 - Add nnp transition for services using: NoNewPrivileges systemd security feature Resolves: rhbz#1311430 - Add SELinux support for chronyc Resolves: rhbz#1470150 - Add dac_read_search capability to openvswitch_t domain Resolves: rhbz#1501336 - Allow svnserve to manage own svnserve_log_t files/dirs Resolves: rhbz#1480741 - Allow keepalived_t to search network sysctls Resolves: rhbz#1477542 - Allow puppetagent_t domain dbus chat with rhsmcertd_t domain Resolves: rhbz#1446777 - Add dccp_socket into socker_class_set subset Resolves: rhbz#1459941 - Allow iptables_t to run setfiles to restore context on system Resolves: rhbz#1489118 - Label 20514 tcp/udp ports as syslogd_port_t Label 10514 tcp/udp portas as syslog_tls_port_t Resolves: rhbz:#1411400 - Make nnp transition Active Resolves: rhbz#1480518 - Label tcp 51954 as isns_port_t Resolves: rhbz#1390208 - Add dac_read_search capability chkpwd_t Resolves: rhbz#1376991 - Add support for running certbot(letsencrypt) in crontab Resolves: rhbz#1447278 - Add init_nnp_daemon_domain interface - Allow xdm_t to gettattr /dev/loop-control device Resolves: rhbz#1462925 - Allow nnp trasintion for unconfined_service_t Resolves: rhbz#1311430 - Allow unpriv user domains and unconfined_service_t to use chronyc Resolves: rhbz#1470150 - Allow iptables to exec plymouth. Resolves: rhbz#1480374 - Fix typo in fs_unmount_tracefs interface. Resolves: rhbz#1371057 - Label postgresql-check-db-dir as postgresql_exec_t Resolves: rhbz#1490956- We should not ship selinux-policy with permissivedomains enabled. Resolves: rhbz#1494172 - Fix order of installing selinux-policy-sandbox, because of depedencied in sandbox module, selinux-policy-targeted needs to be installed before selinux-policy-sandbox Resolves: rhbz#1492606- Allow tomcat to setsched Resolves: rhbz#1492730 - Fix rules blocking ipa-server upgrade process Resolves: rhbz#1478371 - Add new boolean tomcat_read_rpm_db() Resolves: rhbz#1477887 - Allow tomcat to connect on mysqld tcp ports - Add ctdbd_t domain sys_source capability and allow setrlimit Resolves: rhbz#1491235 - Fix keepalived SELinux module - Allow automount domain to manage mount pid files Resolves: rhbz#1482381 - Allow stunnel_t domain setsched Resolves: rhbz#1479383 - Add keepalived domain setpgid capability Resolves: rhbz#1486638 - Allow tomcat domain to connect to mssql port Resolves: rhbz#1484572 - Remove snapperd_t from unconfined domaines Resolves: rhbz#1365555 - Fix typo bug in apache module Resolves: rhbz#1397311 - Dontaudit that system_mail_t is trying to read /root/ files Resolves: rhbz#1147945 - Make working webadm_t userdomain Resolves: rhbz#1323792 - Allow redis domain to execute shell scripts. Resolves: rhbz#1421326 - Allow system_cronjob_t to create redhat-access-insights.log with var_log_t Resolves: rhbz#1473303 - Add couple capabilities to keepalived domain and allow get attributes of all domains Resolves: rhbz#1429327 - Allow dmidecode read rhsmcertd lock files Resolves: rhbz#1300799 - Add new interface rhsmcertd_rw_lock_files() Resolves: rhbz#1300799 - Label all plymouthd archives as plymouthd_var_log_t Resolves: rhbz#1478323 - Allow cloud_init_t to dbus chat with systemd_timedated_t Resolves: rhbz#1440730 - Allow logrotate_t to write to kmsg Resolves: rhbz#1397744 - Add capability kill to rhsmcertd_t Resolves: rhbz#1398338 - Disable mysqld_safe_t secure mode environment cleansing. Resolves: rhbz#1464063 - Allow winbind to manage smbd_tmp_t files Resolves: rhbz#1475566 - Dontaudit that system_mail_t is trying to read /root/ files Resolves: rhbz#1147945 - Make working webadm_t userdomain Resolves: rhbz#1323792 - Allow redis domain to execute shell scripts. Resolves: rhbz#1421326 - Allow system_cronjob_t to create redhat-access-insights.log with var_log_t Resolves: rhbz#1473303 - Add couple capabilities to keepalived domain and allow get attributes of all domains Resolves: rhbz#1429327 - Allow dmidecode read rhsmcertd lock files Resolves: rhbz#1300799 - Add new interface rhsmcertd_rw_lock_files() Resolves: rhbz#1300799 - Label all plymouthd archives as plymouthd_var_log_t Resolves: rhbz#1478323 - Allow cloud_init_t to dbus chat with systemd_timedated_t Resolves: rhbz#1440730 - Allow logrotate_t to write to kmsg Resolves: rhbz#1397744 - Add capability kill to rhsmcertd_t Resolves: rhbz#1398338 - Disable mysqld_safe_t secure mode environment cleansing. Resolves: rhbz#1464063 - Allow winbind to manage smbd_tmp_t files Resolves: rhbz#1475566 - Add interface systemd_tmpfiles_run - End of file cannot be in comment - Allow systemd-logind to use ypbind Resolves: rhbz#1479350 - Add creating opasswd file with shadow_t SELinux label in auth_manage_shadow() interface Resolves: rhbz#1412838 - Allow sysctl_irq_t assciate with proc_t Resolves: rhbz#1485909 - Enable cgourp sec labeling Resolves: rhbz#1485947 - Add cgroup_seclabel policycap. Resolves: rhbz#1485947 - Allow sshd_t domain to send signull to xdm_t processes Resolves: rhbz#1448959 - Allow updpwd_t domain auth file name trans Resolves: rhbz#1412838 - Allow sysadm user to run systemd-tmpfiles Resolves: rbhz#1325364 - Add support labeling for vmci and vsock device Resolves: rhbz#1451358 - Add userdom_dontaudit_manage_admin_files() interface Resolves: rhbz#1323792 - Allow iptables_t domain to read files with modules_conf_t label Resolves: rhbz#1373220 - init: Add NoNewPerms support for systemd. Resolves: rhbz#1480518 - Add nnp_nosuid_transition policycap and related class/perm definitions. Resolves: rhbz#1480518 - refpolicy: Infiniband pkeys and endports Resolves: rhbz#1464484- Allow certmonger using systemctl on pki_tomcat unit files Resolves: rhbz#1481388- Allow targetd_t to create own tmp files. - Dontaudit targetd_t to exec rpm binary file. Resolves: rhbz#1373860 Resolves: rhbz#1424621- Add few rules to make working targetd daemon with SELinux Resolves: rhbz#1373860 - Allow ipmievd_t domain to load kernel modules Resolves: rhbz#1441081 - Allow logrotate to reload transient systemd unit Resolves: rhbz#1440515 - Add certwatch_t domain dac_override and dac_read_search capabilities Resolves: rhbz#1422000 - Allow postgrey to execute bin_t files and add postgrey into nsswitch_domain Resolves: rhbz#1412072 - Allow nscd_t domain to search network sysctls Resolves: rhbz#1432361 - Allow iscsid_t domain to read mount pid files Resolves: rhbz#1482097 - Allow ksmtuned_t domain manage sysfs_t files/dirs Resolves: rhbz#1413865 - Allow keepalived_t domain domtrans into iptables_t Resolves: rhbz#1477719 - Allow rshd_t domain reads net sysctls Resolves: rhbz#1477908 - Add interface seutil_dontaudit_read_module_store() - Update interface lvm_rw_pipes() by adding also open permission - Label /dev/clp device as vfio_device_t Resolves: rhbz#1477624 - Allow ifconfig_t domain unmount fs_t Resolves: rhbz#1477445 - Label /dev/gpiochip* devices as gpio_device_t Resolves: rhbz#1477618 - Add interface dev_manage_sysfs() Resolves: rhbz#1474989- Label /usr/libexec/sudo/sesh as shell_exec_t Resolves: rhbz#1480791- Allow tomcat_t domain couple capabilities to make working tomcat-jsvc Resolves: rhbz#1470735- Allow llpdad send dgram to libvirt Resolves: rhbz#1472722- Add new boolean gluster_use_execmem Resolves: rhbz#1469027 - Allow cluster_t and glusterd_t domains to dbus chat with ganesha service Resolves: rhbz#1468581- Dontaudit staff_t user read admin_home_t files. Resolves: rhbz#1290633- Allow couple rules needed to start targetd daemon with SELinux in enforcing mode Resolves: rhbz#1424621 - Add interface lvm_manage_metadata Resolves: rhbz#1424621- Allow sssd_t to read realmd lib files. Resolves: rhbz#1436689 - Add permission open to files_read_inherited_tmp_files() interface Resolves: rhbz#1290633 Resolves: rhbz#1457106- Allow unconfined_t user all user namespace capabilties. Resolves: rhbz#1461488- Allow httpd_t to read realmd_var_lib_t files Resolves: rhbz#1436689- Allow named_t to bind on udp 4321 port Resolves: rhbz#1312972 - Allow systemd-sysctl cap. sys_ptrace Resolves: rhbz#1458999- Allow pki_tomcat_t execute ldconfig. Resolves: rhbz#1436689- Allow iscsi domain load kernel module. Resolves: rhbz#1457874 - Allow keepalived domain connect to squid tcp port Resolves: rhbz#1457455 - Allow krb5kdc_t domain read realmd lib files. Resolves: rhbz#1436689 - xdm_t should view kernel keys Resolves: rhbz#1432645- Allow tomcat to connect on all unreserved ports - Allow ganesha to connect to all rpc ports Resolves: rhbz#1448090 - Update ganesha with another fixes. Resolves: rhbz#1448090 - Update rpc_read_nfs_state_data() interface to allow read also lnk_files. Resolves: rhbz#1448090 - virt_use_glusterd boolean should be in optional block Update ganesha module to allow create tmp files Resolves: rhbz#1448090 - Hide broken symptoms when machine is configured with network bounding.- Add new boolean virt_use_glusterd Resolves: rhbz#1455994 - Add capability sys_boot for sbd_t domain - Allow sbd_t domain to create rpc sysctls. Resolves: rhbz#1455631 - Allow ganesha_t domain to manage glusterd_var_run_t pid files. Resolves: rhbz#1448090- Create new interface: glusterd_read_lib_files() - Allow ganesha read glusterd lib files. - Allow ganesha read network sysctls Resolves: rhbz#1448090- Add few allow rules to ganesha module Resolves: rhbz#1448090 - Allow condor_master_t to read sysctls. Resolves: rhbz#1277506 - Add dac_override cap to ctdbd_t domain Resolves: rhbz#1435708 - Label 8750 tcp/udp port as dey_keyneg_port_t Resolves: rhbz#1448090- Add ganesha_use_fusefs boolean. Resolves: rhbz#1448090- Allow httpd_t reading kerberos kdc config files Resolves: rhbz#1452215 - Allow tomcat_t domain connect to ibm_dt_2 tcp port. Resolves: rhbz#1447436 - Allow stream connect to initrc_t domains Resolves: rhbz#1447436 - Allow dnsmasq_t domain to read systemd-resolved pid files. Resolves: rhbz#1453114 - Allow tomcat domain name_bind on tcp bctp_port_t Resolves: rhbz#1451757 - Allow smbd_t domain generate debugging files under /var/run/gluster. These files are created through the libgfapi.so library that provides integration of a GlusterFS client in the Samba (vfs_glusterfs) process. Resolves: rhbz#1447669 - Allow condor_master_t write to sysctl_net_t Resolves: rhbz#1277506 - Allow nagios check disk plugin read /sys/kernel/config/ Resolves: rhbz#1277718 - Allow pcp_pmie_t domain execute systemctl binary Resolves: rhbz#1271998 - Allow nagios to connect to stream sockets. Allow nagios start httpd via systemctl Resolves: rhbz#1247635 - Label tcp/udp port 1792 as ibm_dt_2_port_t Resolves: rhbz#1447436 - Add interface fs_read_configfs_dirs() - Add interface fs_read_configfs_files() - Fix systemd_resolved_read_pid interface - Add interface systemd_resolved_read_pid() Resolves: rhbz#1453114 - Allow sshd_net_t domain read/write into crypto devices Resolves: rhbz#1452759 - Label 8999 tcp/udp as bctp_port_t Resolves: rhbz#1451757- nmbd_t needs net_admin capability like smbd Resolves: rhbz#1431859 - Dontaudit net_admin capability for domains postfix_master_t and postfix_qmgr_t Resolves: rhbz#1431859 - Allow rngd domain read sysfs_t Resolves: rhbz#1451735 - Add interface pki_manage_common_files() Resolves: rhbz#1447436 - Allow tomcat_t domain to manage pki_common_t files and dirs Resolves: rhbz#1447436 - Use stricter fc rules for sssd sockets in /var/run Resolves: rhbz#1448060 - Allow certmonger reads httpd_config_t files Resolves: rhbz#1436689 - Allow keepalived_t domain creating netlink_netfilter_socket. Resolves: rhbz#1451684 - Allow tomcat domain read rpm_var_lib_t files Allow tomcat domain exec rpm_exec_t files Allow tomcat domain name connect on oracle_port_t Allow tomcat domain read cobbler_var_lib_t files. Resolves: rhbz#1451318 - Make able deply overcloud via neutron_t to label nsfs as fs_t Resolves: rhbz#1373321- Allow tomcat domain read rpm_var_lib_t files Allow tomcat domain exec rpm_exec_t files Allow tomcat domain name connect on oracle_port_t Allow tomcat domain read cobbler_var_lib_t files. Resolves: rhbz#1451318 - Allow sssd_t domain creating sock files labeled as sssd_var_run_t in /var/run/ Resolves: rhbz#1448056 Resolves: rhbz#1448060 - Allow tomcat_domain connect to * postgresql_port_t * amqp_port_t Allow tomcat_domain read network sysctls Resolves: rhbz#1450819 - Make able deply overcloud via neutron_t to label nsfs as fs_t Resolves: rhbz#1373321 - Allow netutils setpcap capability Resolves:1444438- Update targetd policy to accommodate changes in the service Resolves: rhbz#1424621 - Allow tomcat_domain connect to * postgresql_port_t * amqp_port_t Allow tomcat_domain read network sysctls Resolves: rhbz#1450819 - Update virt_rw_stream_sockets_svirt() interface to allow confined users set socket options. Resolves: rhbz#1415841 - Allow radius domain stream connec to postgresql Resolves: rhbz#1446145 - Allow virt_domain to read raw fixed_disk_device_t to make working blockcommit Resolves: rhbz#1449977 - Allow glusterd_t domain start ganesha service Resolves: rhbz#1448090 - Made few cosmetic changes in sssd SELinux module Resolves: rhbz#1448060 - sssd-kcm should not run as unconfined_service_t BZ(1447411) Resolves: rhbz#1448060 - Add sssd_secrets labeling Also add named_filetrans interface to make sure all labels are correct Resolves: rhbz#1448056 - Allow keepalived_t domain read usermodehelper_t Resolves: rhbz#1449769 - Allow tomcat_t domain read pki_common_t files Resolves: rhbz#1447436 - Add interface pki_read_common_files() Resolves: rhbz#1447436- Allow hypervkvp_t domain execute hostname Resolves: rhbz#1449064 - Dontaudit sssd_selinux_manager_t use of net_admin capability Resolves: rhbz#1444955 - Allow tomcat_t stream connect to pki_common_t Resolves: rhbz#1447436 - Dontaudit xguest_t's attempts to listen to its tcp_socket - Allow sssd_selinux_manager_t to ioctl init_t sockets Resolves: rhbz#1436689 - Allow _su_t to create netlink_selinux_socket Resolves rhbz#1146987 - Allow unconfined_t to module_load any file Resolves rhbz#1442994- Improve ipa_cert_filetrans_named_content() interface to also allow caller domain manage ipa_cert_t type. Resolves: rhbz#1436689- Allow pki_tomcat_t domain read /etc/passwd. Resolves: rhbz#1436689 - Allow tomcat_t domain read ipa_tmp_t files Resolves: rhbz#1436689 - Label new path for ipa-otpd Resolves: rhbz#1446353 - Allow radiusd_t domain stream connect to postgresql_t Resolves: rhbz#1446145 - Allow rhsmcertd_t to execute hostname_exec_t binaries. Resolves: rhbz#1445494 - Allow virtlogd to append nfs_t files when virt_use_nfs=1 Resolves: rhbz#1402561- Update tomcat policy to adjust for removing unconfined_domain attr. Resolves: rhbz#1432083 - Allow httpd_t domain read also httpd_user_content_type lnk_files. Resolves: rhbz#1383621 - Allow httpd_t domain create /etc/httpd/alias/ipaseesion.key with label ipa_cert_t Resolves: rhbz#1436689 - Dontaudit _gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Label /var/www/html/nextcloud/data as httpd_sys_rw_content_t Resolves: rhbz#1425530 - Add interface ipa_filetrans_named_content() Resolves: rhbz#1432115 - Allow tomcat use nsswitch Resolves: rhbz#1436689 - Allow certmonger_t start/status generic services Resolves: rhbz#1436689 - Allow dirsrv read cgroup files. Resolves: rhbz#1436689 - Allow ganesha_t domain read/write infiniband devices. Resolves: rhbz#1383784 - Allow sendmail_t domain sysctl_net_t files Resolves: rhbz#1369376 - Allow targetd_t domain read network state and getattr on loop_control_device_t Resolves: rhbz#1373860 - Allow condor_schedd_t domain send mails. Resolves: rhbz#1277506 - Alow certmonger to create own systemd unit files. Resolves: rhbz#1436689 - Allow staff to systemctl virt server when staff_use_svirt=1 Resolves: rhbz#1415841 - Allow unconfined_t create /tmp/ca.p12 file with ipa_tmp_t context Resolves: rhbz#1432115 - Label /sysroot/ostree/deploy/rhel-atomic-host/* as root_t Resolves: rhbz#1428112- Alow certmonger to create own systemd unit files. Resolves: rhbz#1436689- Hide broken symptoms when using kernel 3.10.0-514+ with network bonding. Postfix_picup_t domain requires NET_ADMIN capability which is not really needed. Resolves: rhbz#1431859 - Fix policy to reflect all changes in new IPA release Resolves: rhbz#1432115 Resolves: rhbz#1436689- Allow sbd_t to read/write fixed disk devices Resolves: rhbz#1440165 - Add sys_ptrace capability to radiusd_t domain Resolves: rhbz#1426641 - Allow cockpit_session_t domain connects to ssh tcp ports. Resolves: rhbz#1413509- Update tomcat policy to make working ipa install process Resolves: rhbz#1436689- Allow pcp_pmcd_t net_admin capability. - Allow pcp_pmcd_t read net sysctls - Allow system_cronjob_t create /var/run/pcp with pcp_var_run_t Resolves: rhbz#1336211- Fix all AVC denials during pkispawn of CA Resolves: rhbz#1436383 - Update pki interfaces and tomcat module Resolves: rhbz#1436689- Update pki interfaces and tomcat module Resolves: rhbz#1436689- Dontaudit firewalld wants write to /root Resolves: rhbz#1438708 - Dontaudit firewalld to create dirs in /root/ Resolves: rhbz#1438708 - Allow sendmail to search network sysctls Resolves: rhbz#1369376 - Add interface gssd_noatsecure() Resolves: rhbz#1438036 - Add interface gssproxy_noatsecure() Resolves: rhbz#1438036 - Dontaudit pcp_pmlogger_t search for xserver logs. Allow pcp_pmlogger_t to send signals to unconfined doamins Allow pcp_pmlogger_t to send logs to journals Resolves: rhbz#1379371 - Allow chronyd_t net_admin capability to allow support HW timestamping. Resolves: rhbz#1416015 - Update tomcat policy Resolves: rhbz#1436689 Resolves: rhbz#1436383 - Allow certmonger to start haproxy service Resolves: rhbz#1349394 - Allow init noatsecure for gssd and gssproxy Resolves: rhbz#1438036- geoclue wants to dbus chat with avahi Resolves: rhbz#1434286 - Allow iptables get list of kernel modules Resolves: rhbz#1367520 - Allow unconfined_domain_type to enable/disable transient unit Resolves: rhbz#1337041 - Add interfaces init_enable_transient_unit() and init_disable_transient_unit - Revert "Allow sshd setcap capability. This is needed due to latest changes in sshd" Resolves: rhbz#1435264 - Label sysroot dir under ostree as root_t Resolves: rhbz#1428112- Remove ganesha_t domain from permissive domains. Resolves: rhbz#1436988- Allow named_t domain bind on several udp ports Resolves: rhbz#1312972 - Update nscd_use() interface Resolves: rhbz#1281716 - Allow radius_t domain ptrace Resolves: rhbz#1426641 - Update nagios to allos exec systemctl Resolves: rhbz#1247635 - Update pcp SELinux module to reflect all pcp changes Resolves: rhbz#1271998 - Label /var/lib/ssl_db as squid_cache_t Label /etc/squid/ssl_db as squid_cache_t Resolves: rhbz#1325527 - Allow pcp_pmcd_t domain search for network sysctl Allow pcp_pmcd_t domain sys_ptrace capability Resolves: rhbz#1336211- Allow drbd load modules Resolves: rhbz#1134883 - Revert "Add sys_module capability for drbd Resolves: rhbz#1134883" - Allow stapserver list kernel modules Resolves: rhbz#1325976 - Update targetd policy Resolves: rhbz#1373860 - Add sys_admin capability to amanda Resolves: rhbz#1371561 - Allow hypervvssd_t to read all dirs. Resolves: rhbz#1331309 - Label /run/haproxy.sock socket as haproxy_var_run_t Resolves: rhbz#1386233 - Allow oddjob_mkhomedir_t to mamange autofs_t dirs. Resolves: rhbz#1408819 - Allow tomcat to connect on http_cache_port_t Resolves: rhbz#1432083 - Allow geoclue to send msgs to syslog. Resolves: rhbz#1434286 - Allow condor_master_t domain capability chown. Resolves: rhbz#1277506 - Update mta_filetrans_named_content() interface to allow calling domain create files labeled as etc_aliases_t in dir labeled as etc_mail_t. Resolves: rhbz#1167468 - Allow nova domain search for httpd configuration. Resolves: rhbz#1190761 - Add sys_module capability for drbd Resolves: rhbz#1134883 - Allow user_u users stream connect to dirsrv, Allow sysadm_u and staff_u users to manage dirsrv files Resolves: rhbz#1286474 - Allow systemd_networkd_t communicate with systemd_networkd_t via dbus Resolves: rhbz#1278010- Add haproxy_t domain fowner capability Resolves: rhbz#1386233 - Allow domain transition from ntpd_t to hwclock_t domains Resolves: rhbz#1375624 - Allow cockpit_session_t setrlimit and sys_resource Resolves: rhbz#1402316 - Dontaudit svirt_t read state of libvirtd domain Resolves: rhbz#1426106 - Update httpd and gssproxy modules to reflects latest changes in freeipa Resolves: rhbz#1432115 - Allow iptables read modules_conf_t Resolves: rhbz#1367520- Remove tomcat_t domain from unconfined domains Resolves: rhbz#1432083 - Create new boolean: sanlock_enable_home_dirs() Resolves: rhbz#1432783 - Allow mdadm_t domain to read/write nvme_device_t Resolves: rhbz#1431617 - Remove httpd_user_*_content_t domains from user_home_type attribute. This tighten httpd policy and acces to user data will be more strinct, and also fix mutual influente between httpd_enable_homedirs and httpd_read_user_content Resolves: rhbz#1383621 - Dontaudit domain to create any file in /proc. This is kernel bug. Resolves: rhbz#1412679 - Add interface dev_rw_nvme Resolves: rhbz#1431617- Allow gssproxy to get attributes on all filesystem object types. Resolves: rhbz#1430295 - Allow ganesha to chat with unconfined domains via dbus Resolves: rhbz#1426554 - add the policy required for nextcloud Resolves: rhbz#1425530 - Add nmbd_t capability2 block_suspend Resolves: rhbz#1425357 - Label /var/run/chrony as chronyd_var_run_t Resolves: rhbz#1416015 - Add domain transition from sosreport_t to iptables_t Resolves: rhbz#1359789 - Fix path to /usr/lib64/erlang/erts-5.10.4/bin/epmd Resolves: rhbz:#1332803- Update rpm macros Resolves: rhbz#1380854- Add handling booleans via selinux-policy macros in custom policy spec files. Resolves: rhbz#1380854- Allow openvswitch to load kernel modules Resolves: rhbz#1405479- Allow openvswitch read script state. Resolves: rhbz#1405479- Update ganesha policy Resolves: rhbz#1426554 Resolves: rhbz#1383784 - Allow chronyd to read adjtime Resolves: rhbz#1416015 - Fixes for chrony version 2.2 Resolves: rhbz#1416015 - Add interface virt_rw_stream_sockets_svirt() Resolves: rhbz#1415841 - Label /dev/ss0 as gpfs_device_t Resolves: rhbz#1383784 - Allow staff to rw svirt unix stream sockets. Resolves: rhbz#1415841 - Label /rhev/data-center/mnt as mnt_t Resolves: rhbz#1408275 - Associate sysctl_rpc_t with proc filesystems Resolves: rhbz#1350927 - Add new boolean: domain_can_write_kmsg Resolves: rhbz#1415715- Allow rhsmcertd_t dbus chat with system_cronjob_t Resolves: rhbz#1405341 - Allow openvswitch exec hostname and readinitrc_t files Resolves: rhbz#1405479 - Improve SELinux context for mysql_db_t objects. Resolves: rhbz#1391521 - Allow postfix_postdrop to communicate with postfix_master via pipe. Resolves: rhbz#1379736 - Add radius_use_jit boolean Resolves: rhbz#1426205 - Label /var/lock/subsys/iptables as iptables_lock_t Resolves: rhbz#1405441 - Label /usr/lib64/erlang/erts-5.10.4/bin/epmd as lib_t Resolves: rhbz#1332803 - Allow can_load_kernmodule to load kernel modules. Resolves: rhbz#1423427 Resolves: rhbz#1424621- Allow nfsd_t domain to create sysctls_rpc_t files Resolves: rhbz#1405304 - Allow openvswitch to create netlink generic sockets. Resolves: rhbz#1397974 - Create kernel_create_rpc_sysctls() interface Resolves: rhbz#1405304- Allow nfsd_t domain rw sysctl_rpc_t dirs Resolves: rhbz#1405304 - Allow cgdcbxd_t to manage cgroup files. Resolves: rhbz#1358493 - Allow cmirrord_t domain to create netlink_connector sockets Resolves: rhbz#1412670 - Allow fcoemon to create netlink scsitransport sockets Resolves: rhbz#1362496 - Allow quota_nld_t create netlink_generic sockets Resolves: rhbz#1358679 - Allow cgred_t create netlink_connector sockets Resolves: rhbz#1376357 - Add dhcpd_t domain fowner capability Resolves: rhbz#1358485 - Allow acpid to attempt to connect to the Linux kernel via generic netlink socket. Resolves: rhbz#1358478 - Rename docker module to container module Resolves: rhbz#1386916 - Allow setflies to mount tracefs Resolves: rhbz#1376357 - Allow iptables to read nsfs files. Resolves: rhbz#1411316 - Allow systemd_bootchart_t domain create dgram sockets. Resolves: rhbz#1365953 - Rename docker interfaces to container Resolves: rhbz#1386916- Allow initrc_t domain to run rhel-autorelabel script properly during boot process Resolves: rhbz#1379722 - Allow systemd_initctl_t to create and connect unix_dgram sockets Resolves: rhbz#1365947 - Allow ifconfig_t to mount/unmount nsfs_t filesystem Resolves: rhbz#1349814 - Add interfaces allowing mount/unmount nsfs_t filesystem Resolves: rhbz#1349814- Add interface init_stream_connectto() Resolves:rhbz#1365947 - Allow rhsmcertd domain signull kernel. Resolves: rhbz#1379781 - Allow kdumpgui domain to read nvme device - Allow insmod_t to load kernel modules Resolves: rhbz#1421598 - Add interface files_load_kernel_modules() Resolves: rhbz#1421598 - Add SELinux support for systemd-initctl daemon Resolves:rhbz#1365947 - Add SELinux support for systemd-bootchart Resolves: rhbz#1365953- Allow firewalld to getattr open search read modules_object_t:dir Resolves: rhbz#1418391 - Fix label for nagios plugins in nagios file conxtext file Resolves: rhbz#1277718 - Add sys_ptrace capability to pegasus domain Resolves: rhbz#1381238 - Allow sssd_t domain setpgid Resolves:rhbz#1416780 - After the latest changes in nfsd. We should allow nfsd_t to read raw fixed disk. Resolves: rhbz#1350927 - Allow kdumpgui domain to read nvme device Resolves: rhbz#1415084 - su using libselinux and creating netlink_selinux socket is needed to allow libselinux initialization. Resolves: rhbz#1146987 - Add user namespace capability object classes. Resolves: rhbz#1368057 - Add module_load permission to class system Resolves:rhbz#1368057 - Add the validate_trans access vector to the security class Resolves: rhbz#1368057 - Add "binder" security class and access vectors Resolves: rhbz#1368057 - Allow ifconfig_t domain read nsfs_t Resolves: rhbz#1349814 - Allow ping_t domain to load kernel modules. Resolves: rhbz#1388363- Allow systemd container to read/write usermodehelperstate Resolves: rhbz#1403254 - Label udp ports in range 24007-24027 as gluster_port_t Resolves: rhbz#1404152- Allow glusterd_t to bind on glusterd_port_t udp ports. Resolves: rhbz#1404152 - Revert: Allow glusterd_t to bind on med_tlp port.- Allow glusterd_t to bind on med_tlp port. Resolves: rhbz#1404152 - Update ctdbd_t policy to reflect all changes. Resolves: rhbz#1402451 - Label tcp port 24009 as med_tlp_port_t Resolves: rhbz#1404152 - Issue appears during update directly from RHEL-7.0 to RHEL-7.3 or above. Modules pkcsslotd and vbetools missing in selinux-policy package for RHEL-7.3 which causing warnings during SELinux policy store migration process. Following patch fixes issue by skipping pkcsslotd and vbetools modules migration.- Allow ctdbd_t domain transition to rpcd_t Resolves:rhbz#1402451- Fixes for containers Allow containers to attempt to write to unix_sysctls. Allow cotainers to use the FD's leaked to them from parent processes. Resolves: rhbz#1403254- Allow glusterd_t send signals to userdomain. Label new glusterd binaries as glusterd_exec_t Resolves: rhbz#1404152 - Allow systemd to stop glusterd_t domains. Resolves: rhbz#1400493- Make working CTDB:NFS: CTDB failover from selinux-policy POV Resolves: rhbz#1402451- Add kdump_t domain sys_admin capability Resolves: rhbz#1375963- Allow puppetagent_t to access timedated dbus. Use the systemd_dbus_chat_timedated interface to allow puppetagent_t the access. Resolves: rhbz#1399250- Update systemd on RHEL-7.2 box to version from RHEL-7.3 and then as a separate yum command update the selinux policy systemd will start generating USER_AVC denials and will start returning "Access Denied" errors to DBus clients Resolves: rhbz#1393505- Allow cluster_t communicate to fprintd_t via dbus Resolves: rhbz#1349798- Fix error message during update from RHEL-7.2 to RHEL-7.3, when /usr/sbin/semanage command is not installed and selinux-policy-migrate-local-changes.sh script is executed in %post install phase of selinux-policy package Resolves: rhbz#1392010- Allow GlusterFS with RDMA transport to be started correctly. It requires ipc_lock capability together with rw permission on rdma_cm device. Resolves: rhbz#1384488 - Allow glusterd to get attributes on /sys/kernel/config directory. Resolves: rhbz#1384483- Use selinux-policy-migrate-local-changes.sh instead of migrateStore* macros - Add selinux-policy-migrate-local-changes service Resolves: rhbz#1381588- Allow sssd_selinux_manager_t to manage also dir class. Resolves: rhbz#1368097 - Add interface seutil_manage_default_contexts_dirs() Resolves: rhbz#1368097- Add virt_sandbox_use_nfs -> virt_use_nfs boolean substitution. Resolves: rhbz#1355783- Allow pcp_pmcd_t domain transition to lvm_t Add capability kill and sys_ptrace to pcp_pmlogger_t Resolves: rhbz#1309883- Allow ftp daemon to manage apache_user_content Resolves: rhbz#1097775 - Label /etc/sysconfig/oracleasm as oracleasm_conf_t Resolves: rhbz#1331383 - Allow oracleasm to rw inherited fixed disk device Resolves: rhbz#1331383 - Allow collectd to connect on unix_stream_socket Resolves: rhbz#1377259- Allow iscsid create netlink iscsid sockets. Resolves: rhbz#1358266 - Improve regexp for power_unit_file_t files. To catch just systemd power unit files. Resolves: rhbz#1375462- Update oracleasm SELinux module that can manage oracleasmfs_t blk files. Add dac_override cap to oracleasm_t domain. Resolves: rhbz#1331383 - Add few rules to pcp SELinux module to make ti able to start pcp_pmlogger service Resolves: rhbz#1206525- Add oracleasm_conf_t type and allow oracleasm_t to create /dev/oracleasm Resolves: rhbz#1331383 - Label /usr/share/pcp/lib/pmie as pmie_exec_t and /usr/share/pcp/lib/pmlogger as pmlogger_exec_t Resolves: rhbz#1206525 - Allow mdadm_t to getattr all device nodes Resolves: rhbz#1365171 - Add interface dbus_dontaudit_stream_connect_system_dbusd() Resolves:rhbz#1052880 - Add virt_stub_* interfaces for docker policy which is no longer a part of our base policy. Resolves: rhbz#1372705 - Allow guest-set-user-passwd to set users password. Resolves: rhbz#1369693 - Allow samdbox domains to use msg class Resolves: rhbz#1372677 - Allow domains using kerberos to read also kerberos config dirs Resolves: rhbz#1368492 - Allow svirt_sandbox_domains to r/w onload sockets Resolves: rhbz#1342930 - Add interface fs_manage_oracleasm() Resolves: rhbz#1331383 - Label /dev/kfd as hsa_device_t Resolves: rhbz#1373488 - Update seutil_manage_file_contexts() interface that caller domain can also manage file_context_t dirs Resolves: rhbz#1368097 - Add interface to write to nsfs inodes Resolves: rhbz#1372705 - Allow systemd services to use PrivateNetwork feature Resolves: rhbz#1372705 - Add a type and genfscon for nsfs. Resolves: rhbz#1372705 - Allow run sulogin_t in range mls_systemlow-mls_systemhigh. Resolves: rhbz#1290400- Allow arpwatch to create netlink netfilter sockets. Resolves: rhbz#1358261 - Fix file context for /etc/pki/pki-tomcat/ca/ - new interface oddjob_mkhomedir_entrypoint() - Move label for /var/lib/docker/vfs/ to proper SELinux module - Allow mdadm to get attributes from all devices. - Label /etc/puppetlabs as puppet_etc_t. - Allow systemd-machined to communicate to lxc container using dbus - Allow systemd_resolved to send dbus msgs to userdomains Resolves: rhbz#1236579 - Allow systemd-resolved to read network sysctls Resolves: rhbz#1236579 - Allow systemd_resolved to connect on system bus. Resolves: rhbz#1236579 - Make entrypoint oddjob_mkhomedir_exec_t for unconfined_t - Label all files in /dev/oracleasmfs/ as oracleasmfs_t Resolves: rhbz#1331383- Label /etc/pki/pki-tomcat/ca/ as pki_tomcat_cert_t Resolves:rhbz#1366915 - Allow certmonger to manage all systemd unit files Resolves:rhbz#1366915 - Grant certmonger "chown" capability Resolves:rhbz#1366915 - Allow ipa_helper_t stream connect to dirsrv_t domain Resolves: rhbz#1368418 - Update oracleasm SELinux module Resolves: rhbz#1331383 - label /var/lib/kubelet as svirt_sandbox_file_t Resolves: rhbz#1369159 - Add few interfaces to cloudform.if file Resolves: rhbz#1367834 - Label /var/run/corosync-qnetd and /var/run/corosync-qdevice as cluster_var_run_t. Note: corosync policy is now par of rhcs module Resolves: rhbz#1347514 - Allow krb5kdc_t to read krb4kdc_conf_t dirs. Resolves: rhbz#1368492 - Update networkmanager_filetrans_named_content() interface to allow source domain to create also temad dir in /var/run. Resolves: rhbz#1365653 - Allow teamd running as NetworkManager_t to access netlink_generic_socket to allow multiple network interfaces to be teamed together. Resolves: rhbz#1365653 - Label /dev/oracleasmfs as oracleasmfs_t. Add few interfaces related to oracleasmfs_t type Resolves: rhbz#1331383 - A new version of cloud-init that supports the effort to provision RHEL Atomic on Microsoft Azure requires some a new rules that allows dhclient/dhclient hooks to call cloud-init. Resolves: rhbz#1367834 - Allow iptables to creating netlink generic sockets. Resolves: rhbz#1364359- Allow ipmievd domain to create lock files in /var/lock/subsys/ Resolves:rhbz#1349058 - Update policy for ipmievd daemon. Resolves:rhbz#1349058 - Dontaudit hyperkvp to getattr on non security files. Resolves: rhbz#1349356 - Label /run/corosync-qdevice and /run/corosync-qnetd as corosync_var_run_t Resolves: rhbz#1347514 - Fixed lsm SELinux module - Add sys_admin capability to sbd domain Resolves: rhbz#1322725 - Allow vdagent to comunnicate with systemd-logind via dbus Resolves: rhbz#1366731 - Allow lsmd_plugin_t domain to create fixed_disk device. Resolves: rhbz#1238066 - Allow opendnssec domain to create and manage own tmp dirs/files Resolves: rhbz#1366649 - Allow opendnssec domain to read system state Resolves: rhbz#1366649 - Update opendnssec_manage_config() interface to allow caller domain also manage opendnssec_conf_t dirs Resolves: rhbz#1366649 - Allow rasdaemon to mount/unmount tracefs filesystem. Resolves: rhbz#1364380 - Label /usr/libexec/iptables/iptables.init as iptables_exec_t Allow iptables creating lock file in /var/lock/subsys/ Resolves: rhbz#1367520 - Modify interface den_read_nvme() to allow also read nvme_device_t block files. Resolves: rhbz#1362564 - Label /var/run/storaged as lvm_var_run_t. Resolves: rhbz#1264390 - Allow unconfineduser to run ipa_helper_t. Resolves: rhbz#1361636- Dontaudit mock to write to generic certs. Resolves: rhbz#1271209 - Add labeling for corosync-qdevice and corosync-qnetd daemons, to run as cluster_t Resolves: rhbz#1347514 - Revert "Label corosync-qnetd and corosync-qdevice as corosync_t domain" - Allow modemmanager to write to systemd inhibit pipes Resolves: rhbz#1365214 - Label corosync-qnetd and corosync-qdevice as corosync_t domain Resolves: rhbz#1347514 - Allow ipa_helper to read network state Resolves: rhbz#1361636 - Label oddjob_reqiest as oddjob_exec_t Resolves: rhbz#1361636 - Add interface oddjob_run() Resolves: rhbz#1361636 - Allow modemmanager chat with systemd_logind via dbus Resolves: rhbz#1362273 - Allow NetworkManager chat with puppetagent via dbus Resolves: rhbz#1363989 - Allow NetworkManager chat with kdumpctl via dbus Resolves: rhbz#1363977 - Allow sbd send msgs to syslog Allow sbd create dgram sockets. Allow sbd to communicate with kernel via dgram socket Allow sbd r/w kernel sysctls. Resolves: rhbz#1322725 - Allow ipmievd_t domain to re-create ipmi devices Label /usr/libexec/openipmi-helper as ipmievd_exec_t Resolves: rhbz#1349058 - Allow rasdaemon to use tracefs filesystem. Resolves: rhbz#1364380 - Fix typo bug in dirsrv policy - Some logrotate scripts run su and then su runs unix_chkpwd. Allow logrotate_t domain to check passwd. Resolves: rhbz#1283134 - Add ipc_lock capability to sssd domain. Allow sssd connect to http_cache_t Resolves: rhbz#1362688 - Allow dirsrv to read dirsrv_share_t content Resolves: rhbz#1363662 - Allow virtlogd_t to append svirt_image_t files. Resolves: rhbz#1358140 - Allow hypervkvp domain to read hugetlbfs dir/files. Resolves: rhbz#1349356 - Allow mdadm daemon to read nvme_device_t blk files Resolves: rhbz#1362564 - Allow selinuxusers and unconfineduser to run oddjob_request Resolves: rhbz#1361636 - Allow sshd server to acces to Crypto Express 4 (CEX4) devices. Resolves: rhbz#1362539 - Fix labeling issue in init.fc file. Path /usr/lib/systemd/fedora-* changed to /usr/lib/systemd/rhel-*. Resolves: rhbz#1363769 - Fix typo in device interfaces Resolves: rhbz#1349058 - Add interfaces for managing ipmi devices Resolves: rhbz#1349058 - Add interfaces to allow mounting/umounting tracefs filesystem Resolves: rhbz#1364380 - Add interfaces to allow rw tracefs filesystem Resolves: rhbz#1364380 - Add interface dev_read_nvme() to allow reading Non-Volatile Memory Host Controller devices. Resolves: rhbz#1362564 - Label /sys/kernel/debug/tracing filesystem Resolves: rhbz#1364380 - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1357857- Dontaudit mock_build_t can list all ptys. Resolves: rhbz#1271209 - Allow ftpd_t to mamange userhome data without any boolean. Resolves: rhbz#1097775 - Add logrotate permissions for creating netlink selinux sockets. Resolves: rhbz#1283134 - Allow lsmd_plugin_t to exec ldconfig. Resolves: rhbz#1238066 - Allow vnstatd domain to read /sys/class/net/ files Resolves: rhbz#1358243 - Remove duplicate allow rules in spamassassin SELinux module Resolves:rhbz#1358175 - Allow spamc_t and spamd_t domains create .spamassassin file in user homedirs Resolves:rhbz#1358175 - Allow sshd setcap capability. This is needed due to latest changes in sshd Resolves: rhbz#1357857 - Add new MLS attribute to allow relabeling objects higher than system low. This exception is needed for package managers when processing sensitive data. Resolves: rhbz#1330464 - Allow gnome-keyring also manage user_tmp_t sockets. Resolves: rhbz#1257057 - corecmd: Remove fcontext for /etc/sysconfig/libvirtd Resolves:rhbz#1351382- Allow ipa_dnskey domain to search cache dirs Resolves: rhbz#1350957- Allow ipa-dnskey read system state. Reasolves: rhbz#1350957 - Allow dogtag-ipa-ca-renew-agent-submit labeled as certmonger_t to create /var/log/ipa/renew.log file Resolves: rhbz#1350957- Allow firewalld to manage net_conf_t files. Resolves:rhbz#1304723 - Allow logrotate read logs inside containers. Resolves: rhbz#1303514 - Allow sssd to getattr on fs_t Resolves: rhbz#1356082 - Allow opendnssec domain to manage bind chace files Resolves: rhbz#1350957 - Fix typo in rhsmcertd policy module Resolves: rhbz#1329475 - Allow systemd to get status of systemd-logind daemon Resolves: rhbz#1356141 - Label more ndctl devices not just ndctl0 Resolves: rhbz#1355809- Allow rhsmcertd to copy certs into /etc/docker/cert.d - Add interface docker_rw_config() Resolves: rhbz#1344500 - Fix logrotate fc file to label also /var/lib/logrotate/ dir as logrotate_var_lib_t Resolves: rhbz#1355632 - Allow rhsmcertd to read network sysctls Resolves: rhbz#1329475 - Label /var/log/graphite-web dir as httpd_log_t Resolves: rhbz#1310898 - Allow mock to use generic ptys Resolves: rhbz#1271209 - Allow adcli running as sssd_t to write krb5.keytab file. Resolves: rhbz#1356082 - Allow openvswitch connect to openvswitch_port_t type. Resolves: rhbz#1335024 - Add SELinux policy for opendnssec service. Resolves: rhbz#1350957 - Create new SELinux type for /usr/libexec/ipa/ipa-dnskeysyncd Resolves: rhbz#1350957 - label /dev/ndctl0 device as nvram_device_t Resolves: rhbz#1355809- Allow lttng tools to block suspending Resolves: rhbz#1256374 - Allow creation of vpnaas in openstack Resolves: rhbz#1352710 - virt: add strict policy for virtlogd daemon Resolves:rhbz#1311606 - Update makefile to support snapperd_contexts file Resolves: rhbz#1352681- Allow udev to manage systemd-hwdb files - Add interface systemd_hwdb_manage_config() Resolves: rhbz#1350756 - Fix paths to infiniband devices. This allows use more then two infiniband interfaces. Resolves: rhbz#1210263- Allow virtual machines to rw infiniband devices. Resolves: rhbz#1210263 - Allow opensm daemon to rw infiniband_mgmt_device_t Resolves: rhbz#1210263 - Allow systemd_hwdb_t to relabel /etc/udev/hwdb.bin file. Resolves: rhbz#1350756 - Make label for new infiniband_mgmt deivices Resolves: rhbz#1210263- Fix typo in brltty SELinux module - Add new SELinux module sbd Resolves: rhbz#1322725 - Allow pcp dmcache metrics collection Resolves: rhbz#1309883 - Allow pkcs_slotd_t to create dir in /var/lock Add label pkcs_slotd_log_t Resolves: rhbz#1350782 - Allow openvpn to create sock files labeled as openvpn_var_run_t Resolves: rhbz#1328246 - Allow hypervkvp daemon to getattr on all filesystem types. Resolves: rhbz#1349356 - Allow firewalld to create net_conf_t files Resolves: rhbz#1304723 - Allow mock to use lvm Resolves: rhbz#1271209 - Allow keepalived to create netlink generic sockets. Resolves: rhbz#1349809 - Allow mirromanager creating log files in /tmp Resolves:rhbz#1328818 - Rename few modules to make it consistent with source files Resolves: rhbz#1351445 - Allow vmtools_t to transition to rpm_script domain Resolves: rhbz#1342119 - Allow nsd daemon to manage nsd_conf_t dirs and files Resolves: rhbz#1349791 - Allow cluster to create dirs in /var/run labeled as cluster_var_run_t Resolves: rhbz#1346900 - Allow sssd read also sssd_conf_t dirs Resolves: rhbz#1350535 - Dontaudit su_role_template interface to getattr /proc/kcore Dontaudit su_role_template interface to getattr /dev/initctl Resolves: rhbz#1086240 - Add interface lvm_getattr_exec_files() Resolves: rhbz#1271209 - Fix typo Compliling vs. Compiling Resolves: rhbz#1351445- Allow krb5kdc_t to communicate with sssd Resolves: rhbz#1319933 - Allow prosody to bind on prosody ports Resolves: rhbz#1304664 - Add dac_override caps for fail2ban-client Resolves: rhbz#1316678 - dontaudit read access for svirt_t on the file /var/db/nscd/group Resolves: rhbz#1301637 - Allow inetd child process to communicate via dbus with systemd-logind Resolves: rhbz#1333726 - Add label for brltty log file Resolves: rhbz#1328818 - Allow dspam to read the passwd file Resolves: rhbz#1286020 - Allow snort_t to communicate with sssd Resolves: rhbz#1284908 - svirt_sandbox_domains need to be able to execmod for badly built libraries. Resolves: rhbz#1206339 - Add policy for lttng-tools package. Resolves: rhbz#1256374 - Make mirrormanager as application domain. Resolves: rhbz#1328234 - Add support for the default lttng-sessiond port - tcp/5345. This port is used by LTTng 2.x central tracing registry session daemon. - Add prosody ports Resolves: rhbz#1304664 - Allow sssd read also sssd_conf_t dirs Resolves: rhbz#1350535- Label /var/lib/softhsm as named_cache_t. Allow named_t to manage named_cache_t dirs. Resolves:rhbz#1331315 - Label named-pkcs11 binary as named_exec_t. Resolves: rhbz#1331315 - Allow glusterd daemon to get systemd status Resolves: rhbz#1321785 - Allow logrotate dbus-chat with system_logind daemon Resolves: rhbz#1283134 - Allow pcp_pmlogger to read kernel network state Allow pcp_pmcd to read cron pid files Resolves: rhbz#1336211 - Add interface cron_read_pid_files() Resolves: rhbz#1336211 - Allow pcp_pmlogger to create unix dgram sockets Resolves: rhbz#1336211 - Add hwloc-dump-hwdata SELinux policy Resolves: rhbz#1344054 - Remove non-existing jabberd_spool_t() interface and add new jabbertd_var_spool_t. Resolves: rhbz#1121171 - Remove non-existing interface salk_resetd_systemctl() and replace it with sanlock_systemctl_sanlk_resetd() Resolves: rhbz#1259764 - Create label for openhpid log files. esolves: rhbz#1259764 - Label /var/lib/ganglia as httpd_var_lib_t Resolves: rhbz#1260536 - Allow firewalld_t to create entries in net_conf_t dirs. Resolves: rhbz#1304723 - Allow journalctl to read syslogd_var_run_t files. This allows to staff_t and sysadm_t to read journals Resolves: rhbz#1288255 - Include patch from distgit repo: policy-RHEL-7.1-flask.patch. Resolves: rhbz#1329560 - Update refpolicy to handle hwloc Resolves: rhbz#1344054 - Label /etc/dhcp/scripts dir as bin_t - Allow sysadm_role to run journalctl_t domain. This allows sysadm user to read journals. Resolves: rhbz#1288255- Allow firewalld_t to create entries in net_conf_t dirs. Resolves: rhbz#1304723 - Allow journalctl to read syslogd_var_run_t files. This allows to staff_t and sysadm_t to read journals Resolves: rhbz#1288255 - Allow mongod log to syslog. Resolves: rhbz#1306995 - Allow rhsmcertd connect to port tcp 9090 Resolves: rhbz#1337319 - Label for /bin/mail(x) was removed but /usr/bin/mail(x) not. This path is also needed to remove. Resolves: rhbz#1262483 Resolves: rhbz#1277506 - Label /usr/libexec/mimedefang-wrapper as spamd_exec_t. Resolves: rhbz#1301516 - Add new boolean spamd_update_can_network. Resolves: rhbz#1305469 - Allow rhsmcertd connect to tcp netport_port_t Resolves: rhbz#1329475 - Fix SELinux context for /usr/share/mirrormanager/server/mirrormanager to Label all binaries under dir as mirrormanager_exec_t. Resolves: rhbz#1328234 - Allow prosody to bind to fac_restore tcp port. Resolves: rhbz#1321787 - Allow ninfod to read raw packets Resolves: rhbz#1317964 - Allow pegasus get attributes from qemu binary files. Resolves: rhbz#1260835 - Allow pegasus get attributes from qemu binary files. Resolves: rhbz#1271159 - Allow tuned to use policykit. This change is required by cockpit. Resolves: rhbz#1346464 - Allow conman_t to read dir with conman_unconfined_script_t binary files. Resolves: rhbz#1297323 - Allow pegasus to read /proc/sysinfo. Resolves: rhbz#1265883 - Allow sysadm_role to run journalctl_t domain. This allows sysadm user to read journals. Resolves: rhbz#1288255 - Label tcp ports:16379, 26379 as redis_port_t Resolves: rhbz#1348471 - Allow systemd to relabel /var and /var/lib directories during boot. - Add files_relabel_var_dirs() and files_relabel_var_dirs() interfaces. - Add files_relabelto_var_lib_dirs() interface. - Label tcp port 2004 as mailbox_port_t. Resolves: rhbz#1332843 - Label tcp and udp port 5582 as fac_restore_port_t Resolves: rhbz#1321787 - Allow sysadm_t user to run postgresql-setup. Resolves: rhbz#1282543 - Allow sysadm_t user to dbus chat with oddjob_t. This allows confined admin run oddjob mkhomedirfor script. Resolves: rhbz#1297480 - Update netlink socket classes.- Allow conman to kill conman_unconfined_script. Resolves: rhbz#1297323 - Make conman_unconfined_script_t as init_system_domain. Resolves:rhbz#1297323 - Allow init dbus chat with apmd. Resolves:rhbz#995898 - Patch /var/lib/rpm is symlink to /usr/share/rpm on Atomic, due to this change we need to label also /usr/share/rpm as rpm_var_lib_t. Resolves: rhbz#1233252 - Dontaudit xguest_gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Add mediawiki rules to proper scope Resolves: rhbz#1301186 - Dontaudit xguest_gkeyringd_t stream connect to system_dbusd_t Resolves: rhbz#1052880 - Allow mysqld_safe to inherit rlimit information from mysqld Resolves: rhbz#1323673 - Allow collectd_t to stream connect to postgresql. Resolves: rhbz#1344056 - Allow mediawiki-script to read /etc/passwd file. Resolves: rhbz#1301186 - Add filetrans rule that NetworkManager_t can create net_conf_t files in /etc. Resolves: rhbz#1344505 - Add labels for mediawiki123 Resolves: rhbz#1293872 - Fix label for all fence_scsi_check scripts - Allow ip netns to mounton root fs and unmount proc_t fs. Resolves: rhbz#1343776 Resolves: rhbz#1286851 - Allow sysadm_t to run newaliases command. Resolves: rhbz#1344828 - Add interface sysnet_filetrans_named_net_conf() Resolves: rhbz#1344505- Fix several issues related to the SELinux Userspace changes- Allow glusterd domain read krb5_keytab_t files. Resolves: rhbz#1343929 - Fix typo in files_setattr_non_security_dirs. Resolves: rhbz#1115987- Allow tmpreaper_t to read/setattr all non_security_file_type dirs Resolves: rhbz#1115987 - Allow firewalld to create firewalld_var_run_t directory. Resolves: rhbz#1304723 - Add interface firewalld_read_pid_files() Resolves: rhbz#1304723 - Label /usr/libexec/rpm-ostreed as rpm_exec_t. Resolves: rhbz#1340542 - Allow sanlock service to read/write cephfs_t files. Resolves: rhbz#1315332 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added missing docker interfaces: - docker_typebounds - docker_entrypoint Resolves: rhbz#1236580 - Add interface files_setattr_non_security_dirs() Resolves: rhbz#1115987 - Add support for onloadfs - Allow iptables to read firewalld pid files. Resolves: rhbz#1304723 - Add SELinux support for ceph filesystem. Resolves: rhbz#1315332 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) Resolves: rhbz#1236580- Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added missing docker interfaces: - docker_typebounds - docker_entrypoint Resolves: rhbz#1236580 - New interfaces needed for systemd-machinectl Resolves: rhbz#1236580 - New interfaces needed by systemd-machine Resolves: rhbz#1236580 - Add interface allowing sending and receiving messages from virt over dbus. Resolves: rhbz#1236580 - Backport docker policy from Fedora. Related: #1303123 Resolves: #1341257 - Allow NetworkManager_t and policykit_t read access to systemd-machined pid files. Resolves: rhbz#1236580 - Fixed to make SELinux work with docker and prctl(NO_NEW_PRIVS) - Added interfaces needed by new docker policy. Related: rhbz#1303123 - Add support for systemd-machined daemon Resolves: rhbz#1236580 - Allow rpm-ostree domain transition to install_t domain from init_t. Resolves: rhbz#1340542- dnsmasq: allow NetworkManager to control dnsmasq via D-Bus Resolves: rhbz#1336722 - Directory Server (389-ds-base) has been updated to use systemd-ask-password. In order to function correctly we need the following added to dirsrv.te Resolves: rhbz#1333198 - sftpd_* booleans are functionless these days. Resolves: rhbz#1335656 - Label /var/log/ganesha.log as gluster_log_t Allow glusterd_t domain to create glusterd_log_t files. Label /var/run/ganesha.pid as gluster_var_run_t. Resolves: rhbz#1335828 - Allow ganesha-ha.sh script running under unconfined_t domain communicate with glusterd_t domains via dbus. Resolves: rhbz#1336760 - Allow ganesha daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled as var_lib_nfs_t. Resolves: rhbz#1336737 - Label /usr/libexec/storaged/storaged as lvm_exec_t to run storaged daemon in lvm_t SELinux domain. Resolves: rhbz#1264390 - Allow systemd_hostanmed_t to read /proc/sysinfo labeled as sysctl_t. Resolves: rhbz#1337061 - Revert "Allow all domains some process flags." Resolves: rhbz#1303644 - Revert "Remove setrlimit to all domains." Resolves: rhbz#1303644 - Label /usr/sbin/xrdp* files as bin_t Resolves: rhbz#1276777 - Add mls support for some db classes Resolves: rhbz#1303651 - Allow systemd_resolved_t to check if ipv6 is disabled. Resolves: rhbz#1236579 - Allow systemd_resolved to read systemd_networkd run files. Resolves: rhbz#1236579- Allow ganesha-ha.sh script running under unconfined_t domain communicate with glusterd_t domains via dbus. Resolves: rhbz#1336760 - Allow ganesha daemon labeled as glusterd_t create /var/lib/nfs/ganesha dir labeled as var_lib_nfs_t. Resolves: rhbz#1336737- Allow logwatch to domtrans to postqueue Resolves: rhbz#1331542 - Label /var/log/ganesha.log as gluster_log_t - Allow glusterd_t domain to create glusterd_log_t files. - Label /var/run/ganesha.pid as gluster_var_run_t. Resolves: rhbz#1335828 - Allow zabbix to connect to postgresql port Resolves: rhbz#1330479 - Add userdom_destroy_unpriv_user_shared_mem() interface. Related: rhbz#1306403 - systemd-logind remove all IPC objects owned by a user on a logout. This covers also SysV memory. This change allows to destroy unpriviledged user SysV shared memory segments. Resolves: rhbz#1306403- We need to restore contexts on /etc/passwd*,/etc/group*,/etc/*shadow* during install phase to get proper labeling for these files until selinux-policy pkgs are installed. Resolves: rhbz#1333952- Add interface glusterd_dontaudit_read_lib_dirs() Resolves: rhbz#1295680 - Dontaudit Occasionally observing AVC's while running geo-rep automation Resolves: rhbz#1295680 - Allow glusterd to manage socket files labeled as glusterd_brick_t. Resolves: rhbz#1331561 - Create new apache content template for files stored in user homedir. This change is needed to make working booleans: - httpd_enable_homedirs - httpd_read_user_content Resolves: rhbz#1246522 - Allow stunnel create log files. Resolves: rhbz#1296851 - Label tcp port 8181 as intermapper_port_t. Resolves: rhbz#1334783 - Label tcp/udp port 2024 as xinuexpansion4_port_t Resolves: rhbz#1334783 - Label tcp port 7002 as afs_pt_port_t Label tcp/udp port 2023 as xinuexpansion3_port_t Resolves: rhbz#1334783 - Dontaudit ldconfig read gluster lib files. Resolves: rhbz#1295680 - Add interface auth_use_nsswitch() to systemd_domain_template. Resolves: rhbz#1236579- Label /usr/bin/ganesha.nfsd as glusterd_exec_t to run ganesha as glusterd_t. Allow glusterd_t stream connect to rpbind_t. Allow cluster_t to create symlink /var/lib/nfs labeled as var_lib_nfs_t. Add interface rpc_filetrans_var_lib_nfs_content() Add new boolean: rpcd_use_fusefs to allow rpcd daemon use fusefs. Resolves: rhbz#1312809 Resolves: rhbz#1323947 - Allow dbus chat between httpd_t and oddjob_t. Resolves: rhbz#1324144 - Label /usr/libexec/ipa/oddjob/org.freeipa.server.conncheck as ipa_helper_exec_t. Resolves: rhbz#1324144 - Label /var/log/ipareplica-conncheck.log file as ipa_log_t Allow ipa_helper_t domain to manage logs labeledas ipa_log_t Allow ipa_helper_t to connect on http and kerberos_passwd ports. Resolves: rhbz#1324144 - Allow prosody to listen on port 5000 for mod_proxy65. Resolves: rhbz#1316918 - Allow pcp_pmcd_t domain to manage docker lib files. This rule is needed to allow pcp to collect container information when SELinux is enabled. Resolves: rhbz#1309454- Allow runnig php7 in fpm mode. From selinux-policy side, we need to allow httpd to read/write hugetlbfs. Resolves: rhbz#1319442 - Allow openvswitch daemons to run under openvswitch Linux user instead of root. This change needs allow set capabilities: chwon, setgid, setuid, setpcap. Resolves: rhbz#1296640 - Remove ftpd_home_dir() boolean from distro policy. Reason is that we cannot make this working due to m4 macro language limits. Resolves: rhbz#1097775 - /bin/mailx is labeled sendmail_exec_t, and enters the sendmail_t domain on execution. If /usr/sbin/sendmail does not have its own domain to transition to, and is not one of several products whose behavior is allowed by the sendmail_t policy, execution will fail. In this case we need to label /bin/mailx as bin_t. Resolves: rhbz#1262483 - Allow nsd daemon to create log file in /var/log as nsd_log_t Resolves: rhbz#1293140 - Sanlock policy update. - New sub-domain for sanlk-reset daemon Resolves: rhbz#1212324 - Label all run tgtd files, not just socket files Resolves: rhbz#1280280 - Label all run tgtd files, not just socket files. Resolves: rhbz#1280280 - Allow prosody to stream connect to sasl. This will allow using cyrus authentication in prosody. Resolves: rhbz#1321049 - unbound wants to use ephemeral ports as a default configuration. Allow to use also udp sockets. Resolves: rhbz#1318224 - Allow prosody to listen on port 5000 for mod_proxy65. Resolves: rhbz#1316918 - Allow targetd to read/write to /dev/mapper/control device. Resolves: rhbz#1063714 - Allow KDM to get status about power services. This change allow kdm to be able do shutdown. Resolves: rhbz#1316724 - Allow systemd-resolved daemon creating netlink_route sockets. Resolves:rhbz#1236579 - Allow systemd_resolved_t to read /etc/passwd file. Allow systemd_resolved_t to write to kmsg_device_t when 'systemd.log_target=kmsg' option is used Resolves: rhbz#1065362 - Label /etc/selinux/(minimum|mls|targeted)/active/ as semanage_store_t Resolves: rhbz#1321943 - Label all nvidia binaries as xserver_exec_t Resolves: rhbz#1322283- Create new permissivedomains CIL module and make it active. Resolves: rhbz#1320451 - Add support for new mock location - /usr/libexec/mock/mock. Resolves: rhbz#1271209 - Allow bitlee to create bitlee_var_t dirs. Resolves: rhbz#1268651 - Allow CIM provider to read sssd public files. Resolves: rhbz#1263339 - Fix some broken interfaces in distro policy. Resolves: rhbz#1121171 - Allow power button to shutdown the laptop. Resolves: rhbz#995898 - Allow lsm plugins to create named fixed disks. Resolves: rhbz#1238066 - Add default labeling for /etc/Pegasus/cimserver_current.conf. It is a correct patch instead of the current /etc/Pegasus/pegasus_current.confResolves: rhbz#1278777 - Allow hyperv domains to rw hyperv devices. Resolves: rhbz#1309361 - Label /var/www/html(/.*)?/wp_backups(/.*)? as httpd_sys_rw_content_t.Resolves: rhbz#1246780 - Create conman_unconfined_script_t type for conman script stored in /use/share/conman/exec/ Resolves: rhbz#1297323 - Fix rule definitions for httpd_can_sendmail boolean. We need to distinguish between base and contrib. - Add support for /dev/mptctl device used to check RAID status. Resolves: rhbz#1258029 - Create hyperv* devices and create rw interfaces for this devices. Resolves: rhbz#1309361 - Add fixes for selinux userspace moving the policy store to /var/lib/selinux. - Remove optional else block for dhcp ping- Allow rsync_export_all_ro boolean to read also non_auth_dirs/files/symlinks. Resolves: rhbz#1263770 - Fix context of "/usr/share/nginx/html". Resolves: rhbz#1261857 - Allow pmdaapache labeled as pcp_pmcd_t access to port 80 for apache diagnostics Resolves: rhbz#1270344 - Allow pmlogger to create pmlogger.primary.socket link file. Resolves: rhbz#1270344 - Label nagios scripts as httpd_sys_script_exec_t. Resolves: rhbz#1260306 - Add dontaudit interface for kdumpctl_tmp_t Resolves: rhbz#1156442 - Allow mdadm read files in EFI partition. Resolves: rhbz#1291801 - Allow nsd_t to bind on nsf_control tcp port. Allow nsd_crond_t to read nsd pid. Resolves: rhbz#1293140 - Label some new nsd binaries as nsd_exec_t Allow nsd domain net_admin cap. Create label nsd_tmp_t for nsd tmp files/dirs Resolves: rhbz#1293140 - Add filename transition that /etc/princap will be created with cupsd_rw_etc_t label in cups_filetrans_named_content() interface. Resolves: rhbz#1265102 - Add missing labeling for /usr/libexec/abrt-hook-ccpp. Resolves: rhbz#1213409 - Allow pcp_pmie and pcp_pmlogger to read all domains state. Resolves: rhbz#1206525 - Label /etc/redis-sentinel.conf as redis_conf_t. Allow redis_t write to redis_conf_t. Allow redis_t to connect on redis tcp port. Resolves: rhbz#1275246 - cockpit has grown content in /var/run directory Resolves: rhbz#1279429 - Allow collectd setgid capability Resolves:#1310898 - Remove declaration of empty booleans in virt policy. Resolves: rhbz#1103153 - Fix typo in drbd policy - Add new drbd file type: drbd_var_run_t. Allow drbd_t to manage drbd_var_run_t files/dirs. Allow drbd_t create drbd_tmp_t files in /tmp. Resolves: rhbz#1134883 - Label /etc/ctdb/events.d/* as ctdb_exec_t. Allow ctdbd_t to setattr on ctdbd_exec_t files. Resolves: rhbz#1293788 - Allow abrt-hook-ccpp to get attributes of all processes because of core_pattern. Resolves: rhbz#1254188 - Allow abrt_t to read sysctl_net_t files. Resolves: rhbz#1254188 - The ABRT coredump handler has code to emulate default core file creation The handler runs in a separate process with abrt_dump_oops_t SELinux process type. abrt-hook-ccpp also saves the core dump file in the very same way as kernel does and a user can specify CWD location for a coredump. abrt-hook-ccpp has been made as a SELinux aware apps to create this coredumps with correct labeling and with this commit the policy rules have been updated to allow access all non security files on a system. - Allow abrt-hook-ccpp to getattr on all executables. - Allow setuid/setgid capabilities for abrt-hook-ccpp. Resolves: rhbz#1254188 - abrt-hook-ccpp needs to have setfscreate access because it is SELinux aware and compute a target labeling. Resolves: rhbz#1254188 - Allow abrt-hook-ccpp to change SELinux user identity for created objects. Resolves: rhbz#1254188 - Dontaudit write access to inherited kdumpctl tmp files. Resolves: rbhz#1156442 - Add interface to allow reading files in efivarfs - contains Linux Kernel configuration options for UEFI systems (UEFI Runtime Variables) Resolves: rhbz#1291801 - Label 8952 tcp port as nsd_control. Resolves: rhbz#1293140 - Allow ipsec to use pam. Resolves: rhbz#1315700 - Allow to log out to gdm after screen was resized in session via vdagent. Resolves: rhbz#1249020 - Allow setrans daemon to read /proc/meminfo. Resolves: rhbz#1316804 - Allow systemd_networkd_t to write kmsg, when kernel was started with following params: systemd.debug systemd.log_level=debug systemd.log_target=kmsg Resolves: rhbz#1298151 - Label tcp port 5355 as llmnr-> Link-Local Multicast Name Resolution Resolves: rhbz#1236579 - Add new selinux policy for systemd-resolved dawmon. Resolves: rhbz#1236579 - Add interface ssh_getattr_server_keys() interface. Resolves: rhbz#1306197 - Allow run sshd-keygen on second boot if first boot fails after some reason and content is not syncedon the disk. These changes are reflecting this commit in sshd. http://pkgs.fedoraproject.org/cgit/rpms/openssh.git/commit/?id=af94f46861844cbd6ba4162115039bebcc8f78ba rhbz#1299106 Resolves: rhbz#1306197 - Allow systemd_notify_t to write to kmsg_device_t when 'systemd.log_target=kmsg' option is used. Resolves: rhbz#1309417 - Remove bin_t label for /etc/ctdb/events.d/. We need to label this scripts as ctdb_exec_t. Resolves: rhbz#1293788- Prepare selinux-policy package for userspace release 2016-02-23. Resolves: rhbz#1305982- Allow sending dbus msgs between firewalld and system_cronjob domains. Resolves: rhbz#1284902 - Allow zabbix-agentd to connect to following tcp sockets. One of zabbix-agentd functions is get service status of ftp,http,innd,pop,smtp protocols. Resolves: rhbz#1242506 - Add new boolean tmpreaper_use_cifs() to allow tmpreaper to run on local directories being shared with Samba. Resolves: rhbz#1284972 - Add support for systemd-hwdb daemon. Resolves: rhbz#1257940 - Add interface fs_setattr_cifs_dirs(). Resolves: rhbz#1284972- Add new SELinux policy fo targetd daemon. Resolves: rhbz#1063714 - Add new SELinux policy fo ipmievd daemon. Resolves: rhbz#1083031 - Add new SELinux policy fo hsqldb daemon. Resolves: rhbz#1083171 - Add new SELinux policy for blkmapd daemon. Resolves: rhbz#1072997 - Allow p11-child to connect to apache ports. - Label /usr/sbin/lvmlockd binary file as lvm_exec_t. Resolves: rhbz#1278028 - Add interface "lvm_manage_lock" to lvm policy. Resolves: rhbz#1063714- Allow openvswitch domain capability sys_rawio. Resolves: rhbz#1278495- Allow openvswitch to manage hugetlfs files and dirs. Resolves: rhbz#1278495 - Add fs_manage_hugetlbfs_files() interface. Resolves: rhbz#1278495- Allow smbcontrol domain to send sigchld to ctdbd domain. Resolves: #1293784 - Allow openvswitch read/write hugetlb filesystem. Resolves: #1278495Allow hypervvssd to list all mountpoints to have VSS live backup working correctly. Resolves:#1247880- Revert Add missing labeling for /usr/libexec/abrt-hook-ccpp patch Resolves: #1254188- Allow search dirs in sysfs types in kernel_read_security_state. Resolves: #1254188 - Fix kernel_read_security_state interface that source domain of this interface can search sysctl_fs_t dirs. Resolves: #1254188- Add missing labeling for /usr/libexec/abrt-hook-ccpp as a part of #1245477 and #1242467 bugs Resolves: #1254188 - We need allow connect to xserver for all sandbox_x domain because we have one type for all sandbox processes. Resolves:#1261938- Remove labeling for modules_dep_t file contexts to have labeled them as modules_object_t. - Update files_read_kernel_modules() to contain modutils_read_module_deps_files() calling because module deps labeling could remain and it allows to avoid regressions. Resolves:#1266928- We need to require sandbox_web_type attribute in sandbox_x_domain_template(). Resolves: #1261938 - ipsec: The NM helper needs to read the SAs Resolves: #1259786 - ipsec: Allow ipsec management to create ptys Resolves: #1259786- Add temporary fixes for sandbox related to #1103622. It allows to run everything under one sandbox type. Resolves:#1261938 - Allow abrt_t domain to write to kernel msg device. Resolves: #1257828 - Allow rpcbind_t domain to change file owner and group Resolves: #1265266- Allow smbcontrol to create a socket in /var/samba which uses for a communication with smbd, nmbd and winbind. Resolves: #1256459- Allow dirsrv-admin script to read passwd file. Allow dirsrv-admin script to read httpd pid files. Label dirsrv-admin unit file and allow dirsrv-admin domains to use it. Resolves: #1230300 - Allow qpid daemon to connect on amqp tcp port. Resolves: #1261805- Label /etc/ipa/nssdb dir as cert_t Resolves:#1262718 - Do not provide docker policy files which is shipped by docker-selinux.rpm Resolves:#1262812- Add labels for afs binaries: dafileserver, davolserver, salvageserver, dasalvager Resolves: #1192338 - Add lsmd_plugin_t sys_admin capability, Allow lsmd_plugin_t getattr from sysfs filesystem. Resolves: #1238079 - Allow rhsmcertd_t send signull to unconfined_service_t domains. Resolves: #1176078 - Remove file transition from snmp_manage_var_lib_dirs() interface which created snmp_var_lib_t dirs in var_lib_t. - Allow openhpid_t daemon to manage snmp files and dirs. Resolves: #1243902 - Allow mdadm_t domain read/write to general ptys and unallocated ttys. Resolves: #1073314 - Add interface unconfined_server_signull() to allow domains send signull to unconfined_service_t Resolves: #1176078- Allow systemd-udevd to access netlink_route_socket to change names for network interfaces without unconfined.pp module. It affects also MLS. Resolves:#1250456- Fix labeling for fence_scsi_check script Resolves: #1255020 - Allow openhpid to read system state Allow openhpid to connect to tcp http port. Resolves: #1244248 - Allow openhpid to read snmp var lib files. Resolves: #1243902 - Allow openvswitch_t domains read kernel dependencies due to openvswitch run modprobe - Allow unconfined_t domains to create /var/run/xtables.lock with iptables_var_run_t Resolves: #1243403 - Remove bin_t label for /usr/share/cluster/fence_scsi_check\.pl Resolves: #1255020- Fix regexp in chronyd.fc file Resolves: #1243764 - Allow passenger to getattr filesystem xattr Resolves: #1196555 - Label mdadm.conf.anackbak as mdadm_conf_t file. Resolves: #1088904 - Revert "Allow pegasus_openlmi_storage_t create mdadm.conf.anacbak file in /etc." - Allow watchdog execute fenced python script. Resolves: #1255020 - Added inferface watchdog_unconfined_exec_read_lnk_files() - Remove labeling for /var/db/.*\.db as etc_t to label db files as system_db_t. Resolves: #1230877- Allow watchdog execute fenced python script. Resolves: #1255020 - Added inferface watchdog_unconfined_exec_read_lnk_files() - Label /var/run/chrony-helper dir as chronyd_var_run_t. Resolves: #1243764 - Allow dhcpc_t domain transition to chronyd_t Resolves: #1243764- Fix postfix_spool_maildrop_t,postfix_spool_flush_t contexts in postfix.fc file. Resolves: #1252442- Allow exec pidof under hypervkvp domain. Resolves: #1254870 - Allow hypervkvp daemon create connection to the system DBUS Resolves: #1254870- Allow openhpid_t to read system state. Resolves: #1244248 - Added labels for files provided by rh-nginx18 collection Resolves: #1249945 - Dontaudit block_suspend capability for ipa_helper_t, this is kernel bug. Allow ipa_helper_t capability net_admin. Allow ipa_helper_t to list /tmp. Allow ipa_helper_t to read rpm db. Resolves: #1252968 - Allow rhsmcertd exec rhsmcertd_var_run_t files and rhsmcerd_tmp_t files. This rules are in hide_broken_sympthons until we find better solution. Resolves: #1243431 - Allow abrt_dump_oops_t to read proc_security_t files. - Allow abrt_dump_oops to signull all domains Allow abrt_dump_oops to read all domains state Allow abrt_dump_oops to ptrace all domains - Add interface abrt_dump_oops_domtrans() - Add mountpoint dontaudit access check in rhsmcertd policy. Resolves: #1243431 - Allow samba_net_t to manage samba_var_t sock files. Resolves: #1252937 - Allow chrome setcap to itself. Resolves: #1251996 - Allow httpd daemon to manage httpd_var_lib_t lnk_files. Resolves: #1253706 - Allow chronyd exec systemctl Resolves: #1243764 - Add inteface chronyd_signal Allow timemaster_t send generic signals to chronyd_t. Resolves: #1243764 - Added interface fs_dontaudit_write_configfs_dirs - Add label for kernel module dep files in /usr/lib/modules Resolves:#916635 - Allow kernel_t domtrans to abrt_dump_oops_t - Added to files_dontaudit_write_all_mountpoints intefface new dontaudit rule, that domain included this interface dontaudit capability dac_override. - Allow systemd-networkd to send logs to systemd-journald. Resolves: #1236616- Fix label on /var/tmp/kiprop_0 Resolves:#1220763 - Allow lldpad_t to getattr tmpfs_t. Resolves: #1246220 - Label /dev/shm/lldpad.* as lldapd_tmpfs_t Resolves: #1246220 - Allow audisp client to read system state.- Allow pcp_domain to manage pcp_var_lib_t lnk_files. Resolves: #1252341 - Label /var/run/xtables.* as iptables_var_run_t Resolves: #1243403- Add interface to read/write watchdog device - Add labels for /dev/memory_bandwith and /dev/vhci. Thanks ssekidde Resolves:#1210237 - Allow apcupsd_t to read /sys/devices Resolves:#1189185 - Allow logrotate to reload services. Resolves: #1242453 - Allow openhpid use libwatchdog plugin. (Allow openhpid_t rw watchdog device) Resolves: #1244260 - Allow openhpid liboa_soap plugin to read generic certs. Resolves: #1244248 - Allow openhpid liboa_soap plugin to read resolv.conf file. Resolves: #1244248 - Label /usr/libexec/chrony-helper as chronyd_exec_t - Allow chronyd_t to read dhcpc state. - Allow chronyd to execute mkdir command.- Allow mdadm to access /dev/random and add support to create own files/dirs as mdadm_tmpfs_t. Resolves:#1073314 - Allow udev, lvm and fsadm to access systemd-cat in /var/tmp/dracut if 'dracut -fv' is executed in MLS. - Allow admin SELinu users to communicate with kernel_t. It is needed to access /run/systemd/journal/stdout if 'dracut -vf' is executed. We allow it for other SELinux users. - Allow sysadm to execute systemd-sysctl in the sysadm_t domain. It is needed for ifup command in MLS mode. - Add fstools_filetrans_named_content_fsadm() and call it for named_filetrans_domain domains. We need to be sure that /run/blkid is created with correct labeling. Resolves:#1183503 - Add support for /etc/sanlock which is writable by sanlock daemon. Resolves:#1231377 - Allow useradd add homedir located in /var/lib/kdcproxy in ipa-server RPM scriplet. Resolves:#1243775 - Allow snapperd to pass data (one way only) via pipe negotiated over dbus Resolves:#1250550 - Allow lsmd also setuid capability. Some commands need to executed under root privs. Other commands are executed under unprivileged user.- Allow openhpid to use libsnmp_bc plugin (allow read snmp lib files). Resolves: #1243902 - Allow lsm_plugin_t to read sysfs, read hwdata, rw to scsi_generic_device Resolves: #1238079 - Allow lsm_plugin_t to rw raw_fixed_disk. Resolves:#1238079 - Allow rhsmcertd to send signull to unconfined_service.- Allow httpd_suexec_t to read and write Apache stream sockets Resolves: #1243569 - Allow qpid to create lnk_files in qpid_var_lib_t Resolves: #1247279- Allow drbd to get attributes from filesystems. - Allow redis to read kernel parameters. Resolves: #1209518 - Allow virt_qemu_ga_t domtrans to passwd_t - Allow audisp_remote_t to start power unit files domain to allow halt system. Resolves: #1186780 - Allow audisp_remote_t to read/write user domain pty. Resolves: #1186780 - Label /usr/sbin/chpasswd as passwd_exec_t. - Allow sysadm to administrate ldap environment and allow to bind ldap port to allow to setup an LDAP server (389ds). Resolves:#1221121- gnome_dontaudit_search_config() needs to be a part of optinal_policy in pegasus.te - Allow pcp_pmcd daemon to read postfix config files. - Allow pcp_pmcd daemon to search postfix spool dirs. Resolves: #1213740 - Added Booleans: pcp_read_generic_logs. Resolves: #1213740 - Allow drbd to read configuration options used when loading modules. Resolves: #1134883 - Allow glusterd to manage nfsd and rpcd services. - Allow glusterd to communicate with cluster domains over stream socket. - glusterd call pcs utility which calls find for cib.* files and runs pstree under glusterd. Dontaudit access to security files and update gluster boolean to reflect these changes.- Allow glusterd to manage nfsd and rpcd services. - Allow networkmanager to communicate via dbus with systemd_hostanmed. Resolves: #1234954 - Allow stream connect logrotate to prosody. - Add prosody_stream_connect() interface. - httpd should be able to send signal/signull to httpd_suexec_t, instead of httpd_suexec_exec_t. - Allow prosody to create own tmp files/dirs. Resolves:#1212498- Allow networkmanager read rfcomm port. Resolves:#1212498 - Remove non exists label. - Fix *_admin intefaces where body is not consistent with header. - Label /usr/afs/ as afs_files_t, Allow afs_bosserver_t create afs_config_t and afs_dbdir_t dirs under afs_files_t, Allow afs_bosserver_t read kerberos config - Remove non exits nfsd_ro_t label. - Make all interfaces related to openshift_cache_t as deprecated. - Add rpm_var_run_t label to rpm_admin header - Add jabberd_lock_t label to jabberd_admin header. - Add samba_unconfined_script_exec_t to samba_admin header. - inn daemon should create innd_log_t objects in var_log_t instead of innd_var_run_t - Fix ctdb policy - Add samba_signull_winbind() - Add samba_signull_unconfined_net() - Allow ctdbd_t send signull to samba_unconfined_net_t. - Allow openshift_initrc_t to communicate with firewalld over dbus Resolves:#1221326- Allow gluster to connect to all ports. It is required by random services executed by gluster. - Add interfaces winbind_signull(), samba_unconfined_net_signull(). - Dontaudit smbd_t block_suspend capability. This is kernel bug. - Allow ctdbd sending signull to process winbind, samba_unconfined_net, to checking if processes exists. - Add tmpreaper booleans to use nfs_t and samba_share_t. - Fix path from /usr/sbin/redis-server to /usr/bin/redis-server - Allow connect ypserv to portmap_port_t - Fix paths in inn policy, Allow innd read innd_log_t dirs, Allow innd execute innd_etc_t files - Add support for openstack-nova-* packages - Allow NetworkManager_t send signull to dnssec_trigger_t. - Allow glusterd to execute showmount in the showmount domain. - Label swift-container-reconciler binary as swift_t. - Allow dnssec_trigger_t relabelfrom dnssec_trigger_var_run_t files. - Add cobbler_var_lib_t to "/var/lib/tftpboot/boot(/.*)?" Resolves:#1213540 - Merge all nova_* labels under one nova_t.- Add logging_syslogd_run_nagios_plugins boolean for rsyslog to allow transition to nagios unconfined plugins Resolves:#1233550 - Allow dnssec_trigger_t create dnssec_trigger_tmp_t files in /var/tmp/ - Add support for oddjob based helper in FreeIPA. - Add new boolean - httpd_run_ipa to allow httpd process to run IPA helper and dbus chat with oddjob. - Add nagios_domtrans_unconfined_plugins() interface. - Update mta_filetrans_named_content() interface to cover more db files. Resolves:#1167468 - Add back ftpd_use_passive_mode boolean with fixed description. - Allow pmcd daemon stream connect to mysqld. - Allow pcp domains to connect to own process using unix_stream_socket. Resolves:#1213709 - Allow abrt-upload-watch service to dbus chat with ABRT daemon and fsetid capability to allow run reporter-upload correctly. - Add new boolean - httpd_run_ipa to allow httpd process to run IPA helper and dbus chat with oddjob. - Add support for oddjob based helper in FreeIPA. - Allow dnssec_trigger_t create dnssec_trigger_tmp_t files in /var/tmp/- Allow iptables to read ctdbd lib files. Resolves:#1224879 - Add systemd_networkd_t to nsswitch domains. - Allow drbd_t write to fixed_disk_device. Reason: drbdmeta needs write to fixed_disk_device during initialization. Resolves:#1130675 - Allow NetworkManager write to sysfs. - Fix cron_system_cronjob_use_shares boolean to call fs interfaces which contain only entrypoint permission. - Add cron_system_cronjob_use_shares boolean to allow system cronjob to be executed from shares - NFS, CIFS, FUSE. It requires "entrypoint" permissios on nfs_t, cifs_t and fusefs_t SELinux types. - Allow NetworkManager write to sysfs. - Allow ctdb_t sending signull to smbd_t, for checking if smbd process exists. - Dontaudit apache to manage snmpd_var_lib_t files/dirs. - Add interface snmp_dontaudit_manage_snmp_var_lib_files(). - Dontaudit mozilla_plugin_t cap. sys_ptrace. - Rename xodbc-connect port to xodbc_connect - Allow ovsdb-server to connect on xodbc-connect and ovsdb tcp ports. - Allow iscsid write to fifo file kdumpctl_tmp_t. Appears when kdump generates the initramfs during the kernel boot. - Dontaudit chrome to read passwd file. - nrpe needs kill capability to make gluster moniterd nodes working. Resolves:#1235587- We allow can_exec() on ssh_keygen on gluster. But there is a transition defined by init_initrc_domain() because we need to allow execute unconfined services by glusterd. So ssh-keygen ends up with ssh_keygen_t and we need to allow to manage /var/lib/glusterd/geo-replication/secret.pem. - Allow sshd to execute gnome-keyring if there is configured pam_gnome_keyring.so. - Allow gnome-keyring executed by passwd to access /run/user/UID/keyring to change a password. - Label gluster python hooks also as bin_t. - Allow glusterd to interact with gluster tools running in a user domain - Add glusterd_manage_lib_files() interface. - ntop reads /var/lib/ntop/macPrefix.db and it needs dac_override. It has setuid/setgid. - Allow samba_t net_admin capability to make CIFS mount working. - S30samba-start gluster hooks wants to search audit logs. Dontaudit it. Resolves:#1224879- Allow glusterd to send generic signals to systemd_passwd_agent processes. - Allow glusterd to access init scripts/units without defined policy - Allow glusterd to run init scripts. - Allow glusterd to execute /usr/sbin/xfs_dbin glusterd_t domain. Resolves:#1224879- Calling cron_system_entry() in pcp_domain_template needs to be a part of optional_policy block. - Allow samba-net to access /var/lib/ctdbd dirs/files. - Allow glusterd to send a signal to smbd. - Make ctdbd as home manager to access also FUSE. - Allow glusterd to use geo-replication gluster tool. - Allow glusterd to execute ssh-keygen. - Allow glusterd to interact with cluster services. - Allow glusterd to connect to the system DBUS for service (acquire_svc). - Label /dev/log correctly. Resolves:#1230932- Back port the latest F22 changes to RHEL7. It should fix most of RHEL7.2 bugs - Add cgdcbxd policy Resolves:#1072493 - Fix ftp_homedir boolean Resolve:#1097775 - Dontaudit ifconfig writing inhertited /var/log/pluto.log. - Allow cluster domain to dbus chat with systemd-logind. Resolves:#1145215 - Dontaudit write access to inherited kdumpctl tmp files Resolves:#1156442 - Allow isnsd_t to communicate with sssd Resolves:#1167702 - Allow rwho_t to communicate with sssd Resolves:#1167718 - Allow sblim_gatherd_t to communicate with sssd Resolves:#1167732 - Allow pkcs_slotd_t to communicate with sssd Resolves:#1167737 - Allow openvswitch_t to communicate with sssd Resolves:#1167816 - Allow mysqld_safe_t to communicate with sssd Resolves:#1167832 - Allow sshd_keygen_t to communicate with sssd Resolves:#1167840 - Add support for iprdbg logging files in /var/log. Resolves:#1174363 - Allow tmpreaper_t to manage ntp log content Resolves:#1176965 - Allow gssd_t to manage ssh keyring Resolves:#1184791 - Allow httpd_sys_script_t to send system log messages Resolves:#1185231 - Allow apcupsd_t to read /sys/devices Resolves:#1189185 - Allow dovecot_t sys_resource capability Resolves:#1191143 - Add support for mongod/mongos systemd unit files. Resolves:#1197038 - Add bacula fixes - Added label mysqld_etc_t for /etc/my.cnf.d/ dir. Resolves:#1203991- Label /usr/libexec/postgresql-ctl as postgresql_exec_t. - Add more restriction on entrypoint for unconfined domains. - Only allow semanage_t to be able to setenforce 0, no all domains that use selinux_semanage interface - Allow all domains to read /dev/urandom. It is needed by all apps/services linked to libgcrypt. There is no harm to allow it by default. - Update policy/mls for sockets related to access perm. Rules were contradictory. - Add nagios_run_pnp4nagios and nagios_run_sudo booleans to allow r un sudo from NRPE utils scripts and allow run nagios in conjunction w ith PNP4Nagios. Resolves:#1201054 - Don't use deprecated userdom_manage_tmpfs_role() interface calliing and use userdom_manage_tmp_role() instead. - Update virt_read_pid_files() interface to allow read also symlinks with virt_var_run_t type - Label /var/lib/tftpboot/aarch64(/.*)? and /var/lib/tftpboot/images2(/.*)? - Add support for iprdbg logging files in /var/log. - Add fixes to rhsmcertd_t - Allow puppetagent_t to transfer firewalld messages over dbus - Add support for /usr/libexec/mongodb-scl-helper RHSCL helper script. - Added label mysqld_etc_t for /etc/my.cnf.d/ dir. - Add support for mongod/mongos systemd unit files. - cloudinit and rhsmcertd need to communicate with dbus - Allow dovecot_t sys_resource capability- ALlow mongod execmem by default. - Update policy/mls for sockets. Rules were contradictory. Resolves:#1207133 - Allow a user to login with different security level via ssh.- Update seutil_manage_config() interface. Resolves:#1185962 - Allow pki-tomcat relabel pki_tomcat_etc_rw_t. - Turn on docker_transition_unconfined by default- Allow virtd to list all mountpoints. Resolves:#1180713- pkcsslotd_lock_t should be an alias for pkcs_slotd_lock_t. - Allow fowner capability for sssd because of selinux_child handling. - ALlow bind to read/write inherited ipsec pipes - Allow hypervkvp to read /dev/urandom and read addition states/config files. - Allow gluster rpm scripletto create glusterd socket with correct labeling. This is a workaround until we get fix in glusterd. - Add glusterd_filetrans_named_pid() interface - Allow radiusd to connect to radsec ports. - Allow setuid/setgid for selinux_child - Allow lsmd plugin to connect to tcp/5988 by default. - Allow lsmd plugin to connect to tcp/5989 by default. - Update ipsec_manage_pid() interface. Resolves:#1184978- Update ipsec_manage_pid() interface. Resolves:#1184978- Allow ntlm_auth running in winbind_helper_t to access /dev/urandom.- Add auditing support for ipsec. Resolves:#1182524 - Label /ostree/deploy/rhel-atomic-host/deploy directory as system_conf_t - Allow netutils chown capability to make tcpdump working with -w- Allow ipsec to execute _updown.netkey script to run unbound-control. - Allow neutron to read rpm DB. - Add additional fixes for hyperkvp * creates new ifcfg-{name} file * Runs hv_set_ifconfig.sh, which does the following * Copies ifcfg-{name} to /etc/sysconfig/network-scripts - Allow svirt to read symbolic links in /sys/fs/cgroups labeled as tmpfs_t - Add labeling for pacemaker.log. - Allow radius to connect/bind radsec ports. - Allow pm-suspend running as virt_qemu_ga to read /var/log/pm-suspend.log - Allow virt_qemu_ga to dbus chat with rpm. - Update virt_read_content() interface to allow read also char devices. - Allow glance-registry to connect to keystone port. Resolves:#1181818- Allow sssd to send dbus all user domains. Resolves:#1172291 - Allow lsm plugin to read certificates. - Fix labeling for keystone CGI scripts. - Make snapperd back as unconfined domain.- Fix bugs in interfaces discovered by sepolicy. - Allow slapd to read /usr/share/cracklib/pw_dict.hwm. - Allow lsm plugins to connect to tcp/18700 by default. - Allow brltty mknod capability to allow create /var/run/brltty/vcsa. - Fix pcp_domain_template() interface. - Fix conman.te. - Allow mon_fsstatd to read /proc/sys/fs/binfmt_misc - Allow glance-scrubber to connect tcp/9191. - Add missing setuid capability for sblim-sfcbd. - Allow pegasus ioctl() on providers. - Add conman_can_network. - Allow chronyd to read chrony conf files located in /run/timemaster/. - Allow radius to bind on tcp/1813 port. - dontaudit block suspend access for openvpn_t - Allow conman to create files/dirs in /tmp. - Update xserver_rw_xdm_keys() interface to have 'setattr'. Resolves:#1172291 - Allow sulogin to read /dev/urandom and /dev/random. - Update radius port definition to have also tcp/18121 - Label prandom as random_device_t. - Allow charon to manage files in /etc/strongimcv labeled as ipsec_conf_t.- Allow virt_qemu_ga_t to execute kmod. - Add missing files_dontaudit_list_security_dirs() for smbd_t in samba_export_all_ro boolean. - Add additionnal MLS attribute for oddjob_mkhomedir to create homedirs. Resolves:#1113725 - Enable OpenStack cinder policy - Add support for /usr/share/vdsm/daemonAdapter - Add support for /var/run/gluster- Remove old pkcsslotd.pp from minimum package - Allow rlogind to use also rlogin ports. - Add support for /usr/libexec/ntpdate-wrapper. Label it as ntpdate_exec_t. - Allow bacula to connect also to postgresql. - Label /usr/libexec/tomcat/server as tomcat_exec_t - Add support for /usr/sbin/ctdbd_wrapper - Add support for /usr/libexec/ppc64-diag/rtas_errd - Allow rpm_script_roles to access system_mail_t - Allow brltty to create /var/run/brltty - Allow lsmd plugin to access netlink_route_socket - Allow smbcontrol to read passwd - Add support for /usr/libexec/sssd/selinux_child and create sssd_selinux_manager_t domain for it Resolves:#1140106 - Allow osad to execute rhn_check - Allow load_policy to rw inherited sssd pipes because of selinux_child - Allow admin SELinux users mounting / as private within a new mount namespace as root in MLS - Add additional fixes for su_restricted_domain_template to make moving to sysadm_r and trying to su working correctly - Add additional booleans substitions- Add seutil_dontaudit_access_check_semanage_module_store() interface Resolves:#1140106 - Update to have all _systemctl() interface also init_reload_services(). - Dontaudit access check on SELinux module store for sssd. - Add labeling for /sbin/iw. - Allow named_filetrans_domain to create ibus directory with correct labeling.- Allow radius to bind tcp/1812 radius port. - Dontaudit list user_tmp files for system_mail_t. - Label virt-who as virtd_exec_t. - Allow rhsmcertd to send a null signal to virt-who running as virtd_t. - Add missing alias for _content_rw_t. Resolves:#1089177 - Allow spamd to access razor-agent.log. - Add fixes for sfcb from libvirt-cim TestOnly bug. - Allow NetworkManager stream connect on openvpn. - Make /usr/bin/vncserver running as unconfined_service_t. - getty_t should be ranged in MLS. Then also local_login_t runs as ranged domain. - Label /etc/docker/certs.d as cert_t.- Label /etc/strongimcv as ipsec_conf_file_t. - Add support for /usr/bin/start-puppet-ca helper script Resolves:#1160727 - Allow rpm scripts to enable/disable transient systemd units. Resolves:#1154613 - Make kpropdas nsswitch domain Resolves:#1153561 - Make all glance domain as nsswitch domains Resolves:#1113281 - Allow selinux_child running as sssd access check on /etc/selinux/targeted/modules/active - Allow access checks on setfiles/load_policy/semanage_lock for selinux_child running as sssd_t Resolves:#1140106- Dontaudit access check on setfiles/load_policy for sssd_t. Resolves:#1140106 - Add kdump_rw_inherited_kdumpctl_tmp_pipes() Resolves:#1156442 - Make linuxptp services as unconfined. - Added new policy linuxptp. Resolves:#1149693 - Label keystone cgi files as keystone_cgi_script_exec_t. Resolves:#1138424 - Make tuned as unconfined domain- Allow guest to connect to libvirt using unix_stream_socket. - Allow all bus client domains to dbus chat with unconfined_service_t. - Allow inetd service without own policy to run in inetd_child_t which is unconfined domain. - Make opensm as nsswitch domain to make it working with sssd. - Allow brctl to read meminfo. - Allow winbind-helper to execute ntlm_auth in the caller domain. Resolves:#1160339 - Make plymouthd as nsswitch domain to make it working with sssd. Resolves:#1160196 - Make drbd as nsswitch domain to make it working with sssd. - Make conman as nsswitch domain to make ipmitool.exp runing as conman_t working. - Add support for /var/lib/sntp directory. - Add fixes to allow docker to create more content in tmpfs ,and donaudit reading /proc - Allow winbind to read usermodehelper - Allow telepathy domains to execute shells and bin_t - Allow gpgdomains to create netlink_kobject_uevent_sockets - Allow mongodb to bind to the mongo port and mongos to run as mongod_t - Allow abrt to read software raid state. - Allow nslcd to execute netstat. - Allow dovecot to create user's home directory when they log into IMAP. - Allow login domains to create kernel keyring with different level.- Allow modemmanger to connectto itself Resolves:#1120152 - Allow pki_tomcat to create link files in /var/lib/pki-ca. Resolves:#1121744 - varnishd needs to have fsetid capability Resolves:#1125165 - Allow snapperd to dbus chat with system cron jobs. Resolves:#1152447 - Allow dovecot to create user's home directory when they log into IMAP Resolves:#1152773 - Add labeling for /usr/sbin/haproxy-systemd-wrapper wrapper to make haproxy running haproxy_t. - ALlow listen and accept on tcp socket for init_t in MLS. Previously it was for xinetd_t. - Allow nslcd to execute netstat. - Add suppor for keepalived unconfined scripts and allow keepalived to read all domain state and kill capability. - Allow nslcd to read /dev/urandom.- Add back kill permisiion for system class Resolves:#1150011- Add back kill permisiion for service class Resolves:#1150011 - Make rhsmcertd_t also as dbus domain. - Allow named to create DNS_25 with correct labeling. - Add cloudform_dontaudit_write_cloud_log() - Call auth_use_nsswitch to apache to read/write cloud-init keys. - Allow cloud-init to dbus chat with certmonger. - Fix path to mon_statd_initrc_t script. - Allow all RHCS services to read system state. - Allow dnssec_trigger_t to execute unbound-control in own domain. - kernel_read_system_state needs to be called with type. Moved it to antivirus.if. - Added policy for mon_statd and mon_procd services. BZ (1077821) - Allow opensm_t to read/write /dev/infiniband/umad1. - Allow mongodb to manage own log files. - Allow neutron connections to system dbus. - Add support for /var/lib/swiftdirectory. - Allow nova-scheduler to read certs. - Allow openvpn to access /sys/fs/cgroup dir. - Allow openvpn to execute systemd-passwd-agent in systemd_passwd_agent_t to make openvpn working with systemd. - Fix samba_export_all_ro/samba_export_all_rw booleans to dontaudit search/read security files. - Add auth_use_nsswitch for portreserve to make it working with sssd. - automount policy is non-base module so it needs to be called in optional block. - ALlow sensord to getattr on sysfs. - Label /usr/share/corosync/corosync as cluster_exec_t. - Allow lmsd_plugin to read passwd file. BZ(1093733) - Allow read antivirus domain all kernel sysctls. - Allow mandb to getattr on file systems - Allow nova-console to connect to mem_cache port. - Make sosreport as unconfined domain. - Allow mondogdb to 'accept' accesses on the tcp_socket port. - ALlow sanlock to send a signal to virtd_t.- Build also MLS policy Resolves:#1138424- Add back kill permisiion for system class - Allow iptables read fail2ban logs. - Fix radius labeled ports - Add userdom_manage_user_tmpfs_files interface - Allow libreswan to connect to VPN via NM-libreswan. - Label 4101 tcp port as brlp port - fix dev_getattr_generic_usb_dev interface - Allow all domains to read fonts - Make sure /run/systemd/generator and system is labeled correctly on creation. - Dontaudit aicuu to search home config dir. - Make keystone_cgi_script_t domain. Resolves:#1138424 - Fix bug in drbd policy, - Added support for cpuplug. - ALlow sanlock_t to read sysfs_t. - Added sendmail_domtrans_unconfined interface - Fix broken interfaces - radiusd wants to write own log files. - Label /usr/libexec/rhsmd as rhsmcertd_exec_t - Allow rhsmcertd send signull to setroubleshoot. - Allow rhsmcertd manage rpm db. - Added policy for blrtty. - Fix keepalived policy - Allow rhev-agentd dbus chat with systemd-logind. - Allow keepalived manage snmp var lib sock files. - Add support for /var/lib/graphite-web - Allow NetworkManager to create Bluetooth SDP sockets - It's going to do the the discovery for DUN service for modems with Bluez 5. - Allow swift to connect to all ephemeral ports by default. - Allow sssd to read selinux config to add SELinux user mapping. - Allow lsmd to search own plguins. - Allow abrt to read /dev/memto generate an unique machine_id and uses sosuploader's algorithm based off dmidecode[1] fields. - ALlow zebra for user/group look-ups. - Allow nova domains to getattr on all filesystems. - Allow collectd sys_ptrace and dac_override caps because of reading of /proc/%i/io for several processes. - Allow pppd to connect to /run/sstpc/sstpc-nm-sstp-service-28025 over unix stream socket. - Allow rhnsd_t to manage also rhnsd config symlinks. - ALlow user mail domains to create dead.letter. - Allow rabbitmq_t read rabbitmq_var_lib_t lnk files. - Allow pki-tomcat to change SELinux object identity. - Allow radious to connect to apache ports to do OCSP check - Allow git cgi scripts to create content in /tmp - Allow cockpit-session to do GSSAPI logins. - Allow sensord read in /proc - Additional access required by usbmuxd- Allow locate to look at files/directories without labels, and chr_file and blk_file on non dev file systems - Label /usr/lib/erlang/erts.*/bin files as bin_t - Add files_dontaudit_access_check_home_dir() inteface. - Allow udev_t mounton udev_var_run_t dirs #(1128618) - Add systemd_networkd_var_run_t labeling for /var/run/systemd/netif and allow systemd-networkd to manage it. - Add init_dontaudit_read_state() interface. - Add label for ~/.local/share/fonts - Allow unconfined_r to access unconfined_service_t. - Allow init to read all config files - Add new interface to allow creation of file with lib_t type - Assign rabbitmq port. - Allow unconfined_service_t to dbus chat with all dbus domains - Add new interfaces to access users keys. - Allow domains to are allowed to mounton proc to mount on files as well as dirs - Fix labeling for HOME_DIR/tmp and HOME_DIR/.tmp directories. - Add a port definition for shellinaboxd - Label ~/tmp and ~/.tmp directories in user tmp dirs as user_tmp_t - Allow userdomains to stream connect to pcscd for smart cards - Allow programs to use pam to search through user_tmp_t dires (/tmp/.X11-unix) - Update to rawhide-contrib changes Resolves:#1123844- Rebase to 3.13.1 which we have in Fedora21 Resolves:#1128284- Back port fixes from Fedora. Mainly OpenStack and Docker fixes- Add policy-rhel-7.1-{base,contrib} patches- Add support for us_cli ports - Fix labeling for /var/run/user//gvfs - add support for tcp/9697 - Additional rules required by openstack, needs backport to F20 and RHEL7 - Additional access required by docker - ALlow motion to use tcp/8082 port - Allow init_t to setattr/relabelfrom dhcp state files - Dontaudit antivirus domains read access on all security files by default - Add missing alias for old amavis_etc_t type - Allow block_suspend cap for haproxy - Additional fixes for instack overcloud - Allow OpenStack to read mysqld_db links and connect to MySQL - Remove dup filename rules in gnome.te - Allow sys_chroot cap for httpd_t and setattr on httpd_log_t - Allow iscsid to handle own unit files - Add iscsi_systemctl() - Allow mongod to create also sock_files in /run with correct labeling - Allow httpd to send signull to apache script domains and don't audit leaks - Allow rabbitmq_beam to connect to httpd port - Allow aiccu stream connect to pcscd - Allow dmesg to read hwdata and memory dev - Allow all freeipmi domains to read/write ipmi devices - Allow sblim_sfcbd to use also pegasus-https port - Allow rabbitmq_epmd to manage rabbit_var_log_t files - Allow chronyd to read /sys/class/hwmon/hwmon1/device/temp2_input - Allow docker to status any unit file and allow it to start generic unit files- Change hsperfdata_root to have as user_tmp_t Resolves:#1076523- Fix Multiple same specifications for /var/named/chroot/dev/zero - Add labels for /var/named/chroot_sdb/dev devices - Add support for strongimcv - Use kerberos_keytab_domains in auth_use_nsswitch - Update auth_use_nsswitch to make all these types as kerberos_keytab_domain to - Allow net_raw cap for neutron_t and send sigkill to dnsmasq - Fix ntp_filetrans_named_content for sntp-kod file - Add httpd_dbus_sssd boolean - Dontaudit exec insmod in boinc policy - Rename kerberos_keytab_domain to kerberos_keytab_domains - Add kerberos_keytab_domain() - Fix kerberos_keytab_template() - Make all domains which use kerberos as kerberos_keytab_domain Resolves:#1083670 - Allow kill capability to winbind_t- varnishd wants chown capability - update ntp_filetrans_named_content() interface - Add additional fixes for neutron_t. #1083335 - Dontaudit getattr on proc_kcore_t - Allow pki_tomcat_t to read ipa lib files - Allow named_filetrans_domain to create /var/cache/ibus with correct labelign - Allow init_t run /sbin/augenrules - Add dev_unmount_sysfs_fs and sysnet_manage_ifconfig_run interfaces - Allow unpriv SELinux user to use sandbox - Add default label for /tmp/hsperfdata_root- Add file subs also for /var/home- Allow xauth_t to read user_home_dir_t lnk_file - Add labeling for lightdm-data - Allow certmonger to manage ipa lib files - Add support for /var/lib/ipa - Allow pegasus to getattr virt_content - Added some new rules to pcp policy - Allow chrome_sandbox to execute config_home_t - Add support for ABRT FAF- Allow kdm to send signull to remote_login_t process - Add gear policy - Turn on gear_port_t - Allow cgit to read gitosis lib files by default - Allow vdagent to read xdm state - Allow NM and fcoeadm to talk together over unix_dgram_socket- Back port fixes for pegasus_openlmi_admin_t from rawhide Resolves:#1080973 - Add labels for ostree - Add SELinux awareness for NM - Label /usr/sbin/pwhistory_helper as updpwd_exec_t- add gnome_append_home_config() - Allow thumb to append GNOME config home files - Allow rasdaemon to rw /dev/cpu//msr - fix /var/log/pki file spec - make bacula_t as auth_nsswitch domain - Identify pki_tomcat_cert_t as a cert_type - Define speech-dispater_exec_t as an application executable - Add a new file context for /var/named/chroot/run directory - update storage_filetrans_all_named_dev for sg* devices - Allow auditctl_t to getattr on all removeable devices - Allow nsswitch_domains to stream connect to nmbd - Allow unprivusers to connect to memcached - label /var/lib/dirsrv/scripts-INSTANCE as bin_t- Allow also unpriv user to run vmtools - Allow secadm to read /dev/urandom and meminfo Resolves:#1079250 - Add booleans to allow docker processes to use nfs and samba - Add mdadm_tmpfs support - Dontaudit net_amdin for /usr/lib/jvm/java-1.7.0-openjdk-1.7.0.51-2.4.5.1.el7.x86_64/jre-abrt/bin/java running as pki_tomcat_t - Allow vmware-user-sui to use user ttys - Allow talk 2 users logged via console too - Allow ftp services to manage xferlog_t - Make all pcp domanis as unconfined for RHEL7.0 beucause of new policies - allow anaconda to dbus chat with systemd-localed- allow anaconda to dbus chat with systemd-localed - Add fixes for haproxy based on bperkins@redhat.com - Allow cmirrord to make dmsetup working - Allow NM to execute arping - Allow users to send messages through talk - Add userdom_tmp_role for secadm_t- Add additional fixes for rtas_errd - Fix transitions for tmp/tmpfs in rtas.te - Allow rtas_errd to readl all sysctls- Add support for /var/spool/rhsm/debug - Make virt_sandbox_use_audit as True by default - Allow svirt_sandbox_domains to ptrace themselves- Allow docker containers to manage /var/lib/docker content- Allow docker to read tmpfs_t symlinks - Allow sandbox svirt_lxc_net_t to talk to syslog and to sssd over stream sockets- Allow collectd to talk to libvirt - Allow chrome_sandbox to use leaked unix_stream_sockets - Dontaudit leaks of sockets into chrome_sandbox_t - If you create a cups directory in /var/cache then it should be labeled cups_rw_etc_t - Run vmtools as unconfined domains - Allow snort to manage its log files - Allow systemd_cronjob_t to be entered via bin_t - Allow procman to list doveconf_etc_t - allow keyring daemon to create content in tmpfs directories - Add proper labelling for icedtea-web - vpnc is creating content in networkmanager var run directory - Label sddm as xdm_exec_t to make KDE working again - Allow postgresql to read network state - Allow java running as pki_tomcat to read network sysctls - Fix cgroup.te to allow cgred to read cgconfig_etc_t - Allow beam.smp to use ephemeral ports - Allow winbind to use the nis to authenticate passwords- Make rtas_errd_t as unconfined domain for F20.It needs additional fixes. It runs rpm at least. - Allow net_admin cap for fence_virtd running as fenced_t - Make abrt-java-connector working - Make cimtest script 03_defineVS.py of ComputerSystem group working - Fix git_system_enable_homedirs boolean - Allow munin mail plugins to read network systcl- Allow vmtools_helper_t to execute bin_t - Add support for /usr/share/joomla - /var/lib/containers should be labeled as openshift content for now - Allow docker domains to talk to the login programs, to allow a process to login into the container - Allow install_t do dbus chat with NM - Fix interface names in anaconda.if - Add install_t for anaconda. A new type is a part of anaconda policy - sshd to read network sysctls- Allow zabbix to send system log msgs - Allow init_t to stream connect to ipsec Resolves:#1060775- Add docker_connect_any boolean- Allow unpriv SELinux users to dbus chat with firewalld - Add lvm_write_metadata() - Label /etc/yum.reposd dir as system_conf_t. Should be safe because system_conf_t is base_ro_file_type - Allow pegasus_openlmi_storage_t to write lvm metadata - Add hide_broken_symptoms for kdumpgui because of systemd bug - Make kdumpgui_t as unconfined domain Resolves:#1044299 - Allow docker to connect to tcp/5000- Allow numad to write scan_sleep_millisecs - Turn on entropyd_use_audio boolean by default - Allow cgred to read /etc/cgconfig.conf because it contains templates used together with rules from /etc/cgrules.conf. - Allow lscpu running as rhsmcertd_t to read /proc/sysinfo - Fix label on irclogs in the homedir - Allow kerberos_keytab_domain domains to manage keys until we get sssd fix - Allow postgresql to use ldap - Add missing syslog-conn port - Add support for /dev/vmcp and /dev/sclp Resolves:#1069310- Modify xdm_write_home to allow create files/links in /root with xdm_home_ - Allow virt domains to read network state Resolves:#1072019- Added pcp rules - dontaudit openshift_cron_t searching random directories, should be back ported to RHEL6 - clean up ctdb.te - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow certmonger to list home dirs- Change userdom_use_user_inherited_ttys to userdom_use_user_ttys for systemd-tty-ask - Add sysnet_filetrans_named_content_ifconfig() interface - Allow ctdbd to connect own ports - Fix samba_export_all_rw booleanto cover also non security dirs - Allow swift to exec rpm in swift_t and allow to create tmp files/dirs - Allow neutron to create /run/netns with correct labeling - Allow kerberos keytab domains to manage sssd/userdomain keys" - Allow to run ip cmd in neutron_t domain- Allow block_suspend cap2 for systemd-logind and rw dri device - Add labeling for /usr/libexec/nm-libreswan-service - Allow locallogin to rw xdm key to make Virtual Terminal login providing smartcard pin working - Add xserver_rw_xdm_keys() - Allow rpm_script_t to dbus chat also with systemd-located - Fix ipa_stream_connect_otpd() - update lpd_manage_spool() interface - Allow krb5kdc to stream connect to ipa-otpd - Add ipa_stream_connect_otpd() interface - Allow vpnc to unlink NM pids - Add networkmanager_delete_pid_files() - Allow munin plugins to access unconfined plugins - update abrt_filetrans_named_content to cover /var/spool/debug - Label /var/spool/debug as abrt_var_cache_t - Allow rhsmcertd to connect to squid port - Make docker_transition_unconfined as optional boolean - Allow certmonger to list home dirs- Make snapperd as unconfined domain and add additional fixes for it - Remove nsplugin.pp module on upgrade- Add snapperd_home_t for HOME_DIR/.snapshots directory - Make sosreport as unconfined domain - Allow sosreport to execute grub2-probe - Allow NM to manage hostname config file - Allow systemd_timedated_t to dbus chat with rpm_script_t - Allow lsmd plugins to connect to http/ssh/http_cache ports by default - Add lsmd_plugin_connect_any boolean - Allow mozilla_plugin to attempt to set capabilities - Allow lsdm_plugins to use tcp_socket - Dontaudit mozilla plugin from getattr on /proc or /sys - Dontaudit use of the keyring by the services in a sandbox - Dontaudit attempts to sys_ptrace caused by running ps for mysqld_safe_t - Allow rabbitmq_beam to connect to jabber_interserver_port - Allow logwatch_mail_t to transition to qmail_inject and queueu - Added new rules to pcp policy - Allow vmtools_helper_t to change role to system_r - Allow NM to dbus chat with vmtools - Fix couchdb_manage_files() to allow manage couchdb conf files - Add support for /var/run/redis.sock - dontaudit gpg trying to use audit - Allow consolekit to create log directories and files - Fix vmtools policy to allow user roles to access vmtools_helper_t - Allow block_suspend cap2 for ipa-otpd - Allow pkcsslotd to read users state - Add ioctl to init_dontaudit_rw_stream_socket - Add systemd_hostnamed_manage_config() interface - Remove transition for temp dirs created by init_t - gdm-simple-slave uses use setsockopt - sddm-greater is a xdm type program- Add lvm_read_metadata() - Allow auditadm to search /var/log/audit dir - Add lvm_read_metadata() interface - Allow confined users to run vmtools helpers - Fix userdom_common_user_template() - Generic systemd unit scripts do write check on / - Allow init_t to create init_tmp_t in /tmp.This is for temporary content created by generic unit files - Add additional fixes needed for init_t and setup script running in generic unit files - Allow general users to create packet_sockets - added connlcli port - Add init_manage_transient_unit() interface - Allow init_t (generic unit files) to manage rpc state date as we had it for initrc_t - Fix userdomain.te to require passwd class - devicekit_power sends out a signal to all processes on the message bus when power is going down - Dontaudit rendom domains listing /proc and hittping system_map_t - Dontauit leaks of var_t into ifconfig_t - Allow domains that transition to ssh_t to manipulate its keyring - Define oracleasm_t as a device node - Change to handle /root as a symbolic link for os-tree - Allow sysadm_t to create packet_socket, also move some rules to attributes - Add label for openvswitch port - Remove general transition for files/dirs created in /etc/mail which got etc_aliases_t label. - Allow postfix_local to read .forward in pcp lib files - Allow pegasus_openlmi_storage_t to read lvm metadata - Add additional fixes for pegasus_openlmi_storage_t - Allow bumblebee to manage debugfs - Make bumblebee as unconfined domain - Allow snmp to read etc_aliases_t - Allow lscpu running in pegasus_openlmi_storage_t to read /dev/mem - Allow pegasus_openlmi_storage_t to read /proc/1/environ - Dontaudit read gconf files for cupsd_config_t - make vmtools as unconfined domain - Add vmtools_helper_t for helper scripts. Allow vmtools shutdonw a host and run ifconfig. - Allow collectd_t to use a mysql database - Allow ipa-otpd to perform DNS name resolution - Added new policy for keepalived - Allow openlmi-service provider to manage transitient units and allow stream connect to sssd - Add additional fixes new pscs-lite+polkit support - Add labeling for /run/krb5kdc - Change w3c_validator_tmp_t to httpd_w3c_validator_tmp_t in F20 - Allow pcscd to read users proc info - Dontaudit smbd_t sending out random signuls - Add boolean to allow openshift domains to use nfs - Allow w3c_validator to create content in /tmp - zabbix_agent uses nsswitch - Allow procmail and dovecot to work together to deliver mail - Allow spamd to execute files in homedir if boolean turned on - Allow openvswitch to listen on port 6634 - Add net_admin capability in collectd policy - Fixed snapperd policy - Fixed bugsfor pcp policy - Allow dbus_system_domains to be started by init - Fixed some interfaces - Add kerberos_keytab_domain attribute - Fix snapperd_conf_t def- Addopt corenet rules for unbound-anchor to rpm_script_t - Allow runuser to send send audit messages. - Allow postfix-local to search .forward in munin lib dirs - Allow udisks to connect to D-Bus - Allow spamd to connect to spamd port - Fix syntax error in snapper.te - Dontaudit osad to search gconf home files - Allow rhsmcertd to manage /etc/sysconf/rhn director - Fix pcp labeling to accept /usr/bin for all daemon binaries - Fix mcelog_read_log() interface - Allow iscsid to manage iscsi lib files - Allow snapper domtrans to lvm_t. Add support for /etc/snapper and allow snapperd to manage it. - Make tuned_t as unconfined domain for RHEL7.0 - Allow ABRT to read puppet certs - Add sys_time capability for virt-ga - Allow gemu-ga to domtrans to hwclock_t - Allow additional access for virt_qemu_ga_t processes to read system clock and send audit messages - Fix some AVCs in pcp policy - Add to bacula capability setgid and setuid and allow to bind to bacula ports - Changed label from rhnsd_rw_conf_t to rhnsd_conf_t - Add access rhnsd and osad to /etc/sysconfig/rhn - drbdadm executes drbdmeta - Fixes needed for docker - Allow epmd to manage /var/log/rabbitmq/startup_err file - Allow beam.smp connect to amqp port - Modify xdm_write_home to allow create also links as xdm_home_t if the boolean is on true - Allow init_t to manage pluto.ctl because of init_t instead of initrc_t - Allow systemd_tmpfiles_t to manage all non security files on the system - Added labels for bacula ports - Fix label on /dev/vfio/vfio - Add kernel_mounton_messages() interface - init wants to manage lock files for iscsi- Added osad policy - Allow postfix to deliver to procmail - Allow bumblebee to seng kill signal to xserver - Allow vmtools to execute /usr/bin/lsb_release - Allow docker to write system net ctrls - Add support for rhnsd unit file - Add dbus_chat_session_bus() interface - Add dbus_stream_connect_session_bus() interface - Fix pcp.te - Fix logrotate_use_nfs boolean - Add lot of pcp fixes found in RHEL7 - fix labeling for pmie for pcp pkg - Change thumb_t to be allowed to chat/connect with session bus type - Allow call renice in mlocate - Add logrotate_use_nfs boolean - Allow setroubleshootd to read rpc sysctl- Turn on bacula, rhnsd policy - Add support for rhnsd unit file - Add dbus_chat_session_bus() interface - Add dbus_stream_connect_session_bus() interface - Fix logrotate_use_nfs boolean - Add lot of pcp fixes found in RHEL7 - fix labeling for pmie for pcp pkg - Change thumb_t to be allowed to chat/connect with session bus type - Allow call renice in mlocate - Add logrotate_use_nfs boolean - Allow setroubleshootd to read rpc sysctl - Fixes for *_admin interfaces - Add pegasus_openlmi_storage_var_run_t type def - Add support for /var/run/openlmi-storage - Allow tuned to create syslog.conf with correct labeling - Add httpd_dontaudit_search_dirs boolean - Add support for winbind.service - ALlow also fail2ban-client to read apache logs - Allow vmtools to getattr on all fs - Add support for dey_sapi port - Add logging_filetrans_named_conf() - Allow passwd_t to use ipc_lock, so that it can change the password in gnome-keyring- Update snapper policy - Allow domains to append rkhunter lib files - Allow snapperd to getattr on all fs - Allow xdm to create /var/gdm with correct labeling - Add label for snapper.log - Allow fail2ban-client to read apache log files - Allow thumb_t to execute dbus-daemon in thumb_t- Allow gdm to create /var/gdm with correct labeling - Allow domains to append rkhunterl lib files. #1057982 - Allow systemd_tmpfiles_t net_admin to communicate with journald - Add interface to getattr on an isid_type for any type of file - Update libs_filetrans_named_content() to have support for /usr/lib/debug directory - Allow initrc_t domtrans to authconfig if unconfined is enabled - Allow docker and mount on devpts chr_file - Allow docker to transition to unconfined_t if boolean set - init calling needs to be optional in domain.te - Allow uncofined domain types to handle transient unit files - Fix labeling for vfio devices - Allow net_admin capability and send system log msgs - Allow lldpad send dgram to NM - Add networkmanager_dgram_send() - rkhunter_var_lib_t is correct type - Back port pcp policy from rawhide - Allow openlmi-storage to read removable devices - Allow system cron jobs to manage rkhunter lib files - Add rkhunter_manage_lib_files() - Fix ftpd_use_fusefs boolean to allow manage also symlinks - Allow smbcontrob block_suspend cap2 - Allow slpd to read network and system state info - Allow NM domtrans to iscsid_t if iscsiadm is executed - Allow slapd to send a signal itself - Allow sslget running as pki_ra_t to contact port 8443, the secure port of the CA. - Fix plymouthd_create_log() interface - Add rkhunter policy with files type definition for /var/lib/rkhunter until it is fixed in rkhunter package - Add mozilla_plugin_exec_t for /usr/lib/firefox/plugin-container - Allow postfix and cyrus-imapd to work out of box - Allow fcoemon to talk with unpriv user domain using unix_stream_socket - Dontaudit domains that are calling into journald to net_admin - Add rules to allow vmtools to do what it does - snapperd is D-Bus service - Allow OpenLMI PowerManagement to call 'systemctl --force reboot' - Add haproxy_connect_any boolean - Allow haproxy also to use http cache port by default Resolves:#1058248- Allow apache to write to the owncloud data directory in /var/www/html... - Allow consolekit to create log dir - Add support for icinga CGI scripts - Add support for icinga - Allow kdumpctl_t to create kdump lock file Resolves:#1055634 - Allow kdump to create lnk lock file - Allow nscd_t block_suspen capability - Allow unconfined domain types to manage own transient unit file - Allow systemd domains to handle transient init unit files - Add interfaces to handle transient- Add cron unconfined role support for uncofined SELinux user - Call corenet_udp_bind_all_ports() in milter.te - Allow fence_virtd to connect to zented port - Fix header for mirrormanager_admin() - Allow dkim-milter to bind udp ports - Allow milter domains to send signull itself - Allow block_suspend for yum running as mock_t - Allow beam.smp to manage couchdb files - Add couchdb_manage_files() - Add labeling for /var/log/php_errors.log - Allow bumblebee to stream connect to xserver - Allow bumblebee to send a signal to xserver - gnome-thumbnail to stream connect to bumblebee - Allow xkbcomp running as bumblebee_t to execute bin_t - Allow logrotate to read squid.conf - Additional rules to get docker and lxc to play well with SELinux - Allow bumbleed to connect to xserver port - Allow pegasus_openlmi_storage_t to read hwdata- Allow init_t to work on transitient and snapshot unit files - Add logging_manage_syslog_config() - Update sysnet_dns_name_resolve() to allow connect to dnssec por - Allow pegasus_openlmi_storage_t to read hwdata Resolves:#1031721 - Fix rhcs_rw_cluster_tmpfs() - Allow fenced_t to bind on zented udp port - Added policy for vmtools - Fix mirrormanager_read_lib_files() - Allow mirromanager scripts running as httpd_t to manage mirrormanager pid files - Allow ctdb to create sock files in /var/run/ctdb - Add sblim_filetrans_named_content() interface - Allow rpm scritplets to create /run/gather with correct labeling - Allow gnome keyring domains to create gnome config dirs - Dontaudit read/write to init stream socket for lsmd_plugin_t - Allow automount to read nfs link files - Allow lsm plugins to read/write lsmd stream socket - Allow certmonger to connect ldap port to make IPA CA certificate renewal working. - Add also labeling for /var/run/ctdb - Add missing labeling for /var/lib/ctdb - ALlow tuned to manage syslog.conf. Should be fixed in tuned. #1030446 - Dontaudit hypervkvp to search homedirs - Dontaudit hypervkvp to search admin homedirs - Allow hypervkvp to execute bin_t and ifconfig in the caller domain - Dontaudit xguest_t to read ABRT conf files - Add abrt_dontaudit_read_config() - Allow namespace-init to getattr on fs - Add thumb_role() also for xguest - Add filename transitions to create .spamassassin with correct labeling - Allow apache domain to read mirrormanager pid files - Allow domains to read/write shm and sem owned by mozilla_plugin_t - Allow alsactl to send a generic signal to kernel_t- Add back rpm_run() for unconfined user- Add missing files_create_var_lib_dirs() - Fix typo in ipsec.te - Allow passwd to create directory in /var/lib - Add filename trans also for event21 - Allow iptables command to read /dev/rand - Add sigkill capabilityfor ipsec_t - Add filename transitions for bcache devices - Add additional rules to create /var/log/cron by syslogd_t with correct labeling - Add give everyone full access to all key rings - Add default lvm_var_run_t label for /var/run/multipathd - Fix log labeling to have correct default label for them after logrotate - Labeled ~/.nv/GLCache as being gstreamer output - Allow nagios_system_plugin to read mrtg lib files - Add mrtg_read_lib_files() - Call rhcs_rw_cluster_tmpfs for dlm_controld - Make authconfing as named_filetrans domain - Allow virsh to connect to user process using stream socket - Allow rtas_errd to read rand/urand devices and add chown capability - Fix labeling from /var/run/net-snmpd to correct /var/run/net-snmp Resolves:#1051497 - Add also chown cap for abrt_upload_watch_t. It already has dac_override - Allow sosreport to manage rhsmcertd pid files - Add rhsmcertd_manage_pid_files() - Allow also setgid cap for rpc.gssd - Dontaudit access check for abrt on cert_t - Allow pegasus_openlmi_system providers to dbus chat with systemd-logind- Fix semanage import handling in spec file- Add default lvm_var_run_t label for /var/run/multipathd Resolves:#1051430 - Fix log labeling to have correct default label for them after logrotate - Add files_write_root_dirs - Add new openflow port label for 6653/tcp and 6633/tcp - Add xserver_manage_xkb_libs() - Label tcp/8891 as milter por - Allow gnome_manage_generic_cache_files also create cache_home_t files - Fix aide.log labeling - Fix log labeling to have correct default label for them after logrotate - Allow mysqld-safe write access on /root to make mysqld working - Allow sosreport domtrans to prelikn - Allow OpenvSwitch to connec to openflow ports - Allow NM send dgram to lldpad - Allow hyperv domains to execute shell - Allow lsmd plugins stream connect to lsmd/init - Allow sblim domains to create /run/gather with correct labeling - Allow httpd to read ldap certs - Allow cupsd to send dbus msgs to process with different MLS level - Allow bumblebee to stream connect to apmd - Allow bumblebee to run xkbcomp - Additional allow rules to get libvirt-lxc containers working with docker - Additional allow rules to get libvirt-lxc containers working with docker - Allow docker to getattr on itself - Additional rules needed for sandbox apps - Allow mozilla_plugin to set attributes on usb device if use_spice boolean enabled - httpd should be able to send signal/signull to httpd_suexec_t - Add more fixes for neturon. Domtrans to dnsmasq, iptables. Make neutron as filenamtrans domain.- Add neutron fixes- Allow sshd to write to all process levels in order to change passwd when running at a level - Allow updpwd_t to downgrade /etc/passwd file to s0, if it is not running with this range - Allow apcuspd_t to status and start the power unit file - Allow udev to manage kdump unit file - Added new interface modutils_dontaudit_exec_insmod - Allow cobbler to search dhcp_etc_t directory - systemd_systemctl needs sys_admin capability - Allow sytemd_tmpfiles_t to delete all directories - passwd to create gnome-keyring passwd socket - Add missing zabbix_var_lib_t type - Fix filename trans for zabbixsrv in zabbix.te - Allow fprintd_t to send syslog messages - Add zabbix_var_lib_t for /var/lib/zabbixsrv, also allow zabix to connect to smtp port - Allow mozilla plugin to chat with policykit, needed for spice - Allow gssprozy to change user and gid, as well as read user keyrings - Label upgrades directory under /var/www as httpd_sys_rw_content_t, add other filetrans rules to label content correctly - Allow polipo to connect to http_cache_ports - Allow cron jobs to manage apache var lib content - Allow yppassword to manage the passwd_file_t - Allow showall_t to send itself signals - Allow cobbler to restart dhcpc, dnsmasq and bind services - Allow certmonger to manage home cert files - Add userdom filename trans for user mail domains - Allow apcuspd_t to status and start the power unit file - Allow cgroupdrulesengd to create content in cgoups directories - Allow smbd_t to signull cluster - Allow gluster daemon to create fifo files in glusterd_brick_t and sock_file in glusterd_var_lib_t - Add label for /var/spool/cron.aquota.user - Allow sandbox_x domains to use work with the mozilla plugin semaphore - Added new policy for speech-dispatcher - Added dontaudit rule for insmod_exec_t in rasdaemon policy - Updated rasdaemon policy - Allow system_mail_t to transition to postfix_postdrop_t - Clean up mirrormanager policy - Allow virt_domains to read cert files, needs backport to RHEL7 - Allow sssd to read systemd_login_var_run_t - Allow irc_t to execute shell and bin-t files: - Add new access for mythtv - Allow rsync_t to manage all non auth files - allow modemmanger to read /dev/urand - Allow sandbox apps to attempt to set and get capabilties- Add labeling for /var/lib/servicelog/servicelog.db-journal - Add support for freeipmi port - Add sysadm_u_default_contexts - Make new type to texlive files in homedir - Allow subscription-manager running as sosreport_t to manage rhsmcertd - Additional fixes for docker.te - Remove ability to do mount/sys_admin by default in virt_sandbox domains - New rules required to run docker images within libivrt - Add label for ~/.cvsignore - Change mirrormanager to be run by cron - Add mirrormanager policy - Fixed bumblebee_admin() and mip6d_admin() - Add log support for sensord - Fix typo in docker.te - Allow amanda to do backups over UDP - Allow bumblebee to read /etc/group and clean up bumblebee.te - type transitions with a filename not allowed inside conditionals - Don't allow virt-sandbox tools to use netlink out of the box, needs back port to RHEL7 - Make new type to texlive files in homedir- Allow freeipmi_ipmidetectd_t to use freeipmi port - Update freeipmi_domain_template() - Allow journalctl running as ABRT to read /run/log/journal - Allow NM to read dispatcher.d directory - Update freeipmi policy - Type transitions with a filename not allowed inside conditionals - Allow tor to bind to hplip port - Make new type to texlive files in homedir - Allow zabbix_agent to transition to dmidecode - Add rules for docker - Allow sosreport to send signull to unconfined_t - Add virt_noatsecure and virt_rlimitinh interfaces - Fix labeling in thumb.fc to add support for /usr/lib64/tumbler-1/tumblerddd support for freeipmi port - Add sysadm_u_default_contexts - Add logging_read_syslog_pid() - Fix userdom_manage_home_texlive() interface - Make new type to texlive files in homedir - Add filename transitions for /run and /lock links - Allow virtd to inherit rlimit information Resolves:#975358- Change labeling for /usr/libexec/nm-dispatcher.action to NetworkManager_exec_t Resolves:#1039879 - Add labeling for /usr/lib/systemd/system/mariadb.service - Allow hyperv_domain to read sysfs - Fix ldap_read_certs() interface to allow acess also link files - Add support for /usr/libexec/pegasus/cmpiLMI_Journald-cimprovagt - Allow tuned to run modprobe - Allow portreserve to search /var/lib/sss dir - Add SELinux support for the teamd package contains team network device control daemon. - Dontaudit access check on /proc for bumblebee - Bumblebee wants to load nvidia modules - Fix rpm_named_filetrans_log_files and wine.te - Add conman policy for rawhide - DRM master and input event devices are used by the TakeDevice API - Clean up bumblebee policy - Update pegasus_openlmi_storage_t policy - Add freeipmi_stream_connect() interface - Allow logwatch read madm.conf to support RAID setup - Add raid_read_conf_files() interface - Allow up2date running as rpm_t create up2date log file with rpm_log_t labeling - add rpm_named_filetrans_log_files() interface - Allow dkim-milter to create files/dirs in /tmp - update freeipmi policy - Add policy for freeipmi services - Added rdisc_admin and rdisc_systemctl interfaces - opensm policy clean up - openwsman policy clean up - ninfod policy clean up - Added new policy for ninfod - Added new policy for openwsman - Added rdisc_admin and rdisc_systemctl interfaces - Fix kernel_dontaudit_access_check_proc() - Add support for /dev/uhid - Allow sulogin to get the attributes of initctl and sys_admin cap - Add kernel_dontaudit_access_check_proc() - Fix dev_rw_ipmi_dev() - Fix new interface in devices.if - DRM master and input event devices are used by the TakeDevice API - add dev_rw_inherited_dri() and dev_rw_inherited_input_dev() - Added support for default conman port - Add interfaces for ipmi devices- Allow sosreport to send a signal to ABRT - Add proper aliases for pegasus_openlmi_service_exec_t and pegasus_openlmi_service_t - Label /usr/sbin/htcacheclean as httpd_exec_t Resolves:#1037529 - Added support for rdisc unit file - Add antivirus_db_t labeling for /var/lib/clamav-unofficial-sigs - Allow runuser running as logrotate connections to system DBUS - Label bcache devices as fixed_disk_device_t - Allow systemctl running in ipsec_mgmt_t to access /usr/lib/systemd/system/ipsec.service - Label /usr/lib/systemd/system/ipsec.service as ipsec_mgmt_unit_file_t- Add back setpgid/setsched for sosreport_t- Added fix for clout_init to transition to rpm_script_t (dwalsh@redhat.com)- Dontaudit openshift domains trying to use rawip_sockets, this is caused by a bad check in the kernel. - Allow git_system_t to read git_user_content if the git_system_enable_homedirs boolean is turned on - Add lsmd_plugin_t for lsm plugins - Allow dovecot-deliver to search mountpoints - Add labeling for /etc/mdadm.conf - Allow opelmi admin providers to dbus chat with init_t - Allow sblim domain to read /dev/urandom and /dev/random - Allow apmd to request the kernel load modules - Add glusterd_brick_t type - label mate-keyring-daemon with gkeyringd_exec_t - Add plymouthd_create_log() - Dontaudit leaks from openshift domains into mail domains, needs back port to RHEL6 - Allow sssd to request the kernel loads modules - Allow gpg_agent to use ssh-add - Allow gpg_agent to use ssh-add - Dontaudit access check on /root for myslqd_safe_t - Allow ctdb to getattr on al filesystems - Allow abrt to stream connect to syslog - Allow dnsmasq to list dnsmasq.d directory - Watchdog opens the raw socket - Allow watchdog to read network state info - Dontaudit access check on lvm lock dir - Allow sosreport to send signull to setroubleshootd - Add setroubleshoot_signull() interface - Fix ldap_read_certs() interface - Allow sosreport all signal perms - Allow sosreport to run systemctl - Allow sosreport to dbus chat with rpm - Add glusterd_brick_t files type - Allow zabbix_agentd to read all domain state - Clean up rtas.if - Allow smoltclient to execute ldconfig - Allow sosreport to request the kernel to load a module - Fix userdom_confined_admin_template() - Add back exec_content boolean for secadm, logadm, auditadm - Fix files_filetrans_system_db_named_files() interface - Allow sulogin to getattr on /proc/kcore - Add filename transition also for servicelog.db-journal - Add files_dontaudit_access_check_root() - Add lvm_dontaudit_access_check_lock() interface- Allow watchdog to read /etc/passwd - Allow browser plugins to connect to bumblebee - New policy for bumblebee and freqset - Add new policy for mip6d daemon - Add new policy for opensm daemon - Allow condor domains to read/write condor_master udp_socket - Allow openshift_cron_t to append to openshift log files, label /var/log/openshift - Add back file_pid_filetrans for /var/run/dlm_controld - Allow smbd_t to use inherited tmpfs content - Allow mcelog to use the /dev/cpu device - sosreport runs rpcinfo - sosreport runs subscription-manager - Allow staff_t to run frequency command - Allow systemd_tmpfiles to relabel log directories - Allow staff_t to read xserver_log file - Label hsperfdata_root as tmp_t- More sosreport fixes to make ABRT working- Fix files_dontaudit_unmount_all_mountpoints() - Add support for 2608-2609 tcp/udp ports - Should allow domains to lock the terminal device - More fixes for user config files to make crond_t running in userdomain - Add back disable/reload/enable permissions for system class - Fix manage_service_perms macro - We need to require passwd rootok - Fix zebra.fc - Fix dnsmasq_filetrans_named_content() interface - Allow all sandbox domains create content in svirt_home_t - Allow zebra domains also create zebra_tmp_t files in /tmp - Add support for new zebra services:isisd,babeld. Add systemd support for zebra services. - Fix labeling on neutron and remove transition to iconfig_t - abrt needs to read mcelog log file - Fix labeling on dnsmasq content - Fix labeling on /etc/dnsmasq.d - Allow glusterd to relabel own lib files - Allow sandbox domains to use pam_rootok, and dontaudit attempts to unmount file systems, this is caused by a bug in systemd - Allow ipc_lock for abrt to run journalctl- Fix config.tgz- Fix passenger_stream_connect interface - setroubleshoot_fixit wants to read network state - Allow procmail_t to connect to dovecot stream sockets - Allow cimprovagt service providers to read network states - Add labeling for /var/run/mariadb - pwauth uses lastlog() to update system's lastlog - Allow account provider to read login records - Add support for texlive2013 - More fixes for user config files to make crond_t running in userdomain - Add back disable/reload/enable permissions for system class - Fix manage_service_perms macro - Allow passwd_t to connect to gnome keyring to change password - Update mls config files to have cronjobs in the user domains - Remove access checks that systemd does not actually do- Add support for yubikey in homedir - Add support for upd/3052 port - Allow apcupsd to use PowerChute Network Shutdown - Allow lsmd to execute various lsmplugins - Add labeling also for /etc/watchdog\.d where are watchdog scripts located too - Update gluster_export_all_rw boolean to allow relabel all base file types - Allow x86_energy_perf tool to modify the MSR - Fix /var/lib/dspam/data labeling- Add files_relabel_base_file_types() interface - Allow netlabel-config to read passwd - update gluster_export_all_rw boolean to allow relabel all base file types caused by lsetxattr() - Allow x86_energy_perf tool to modify the MSR - Fix /var/lib/dspam/data labeling - Allow pegasus to domtrans to mount_t - Add labeling for unconfined scripts in /usr/libexec/watchdog/scripts - Add support for unconfined watchdog scripts - Allow watchdog to manage own log files- Add label only for redhat.repo instead of /etc/yum.repos.d. But probably we will need to switch for the directory. - Label /etc/yum.repos.d as system_conf_t - Use sysnet_filetrans_named_content in udev.te instead of generic transition for net_conf_t - Allow dac_override for sysadm_screen_t - Allow init_t to read ipsec_conf_t as we had it for initrc_t. Needed by ipsec unit file. - Allow netlabel-config to read meminfo - Add interface to allow docker to mounton file_t - Add new interface to exec unlabeled files - Allow lvm to use docker semaphores - Setup transitons for .xsessions-errors.old - Change labels of files in /var/lib/*/.ssh to transition properly - Allow staff_t and user_t to look at logs using journalctl - pluto wants to manage own log file - Allow pluto running as ipsec_t to create pluto.log - Fix alias decl in corenetwork.te.in - Add support for fuse.glusterfs - Allow dmidecode to read/write /run/lock/subsys/rhsmcertd - Allow rhsmcertd to manage redhat.repo which is now labeled as system.conf. Allow rhsmcertd to manage all log files. - Additional access for docker - Added more rules to sblim policy - Fix kdumpgui_run_bootloader boolean - Allow dspam to connect to lmtp port - Included sfcbd service into sblim policy - rhsmcertd wants to manaage /etc/pki/consumer dir - Add kdumpgui_run_bootloader boolean - Add support for /var/cache/watchdog - Remove virt_domain attribute for virt_qemu_ga_unconfined_t - Fixes for handling libvirt containes - Dontaudit attempts by mysql_safe to write content into / - Dontaudit attempts by system_mail to modify network config - Allow dspam to bind to lmtp ports - Add new policy to allow staff_t and user_t to look at logs using journalctl - Allow apache cgi scripts to list sysfs - Dontaudit attempts to write/delete user_tmp_t files - Allow all antivirus domains to manage also own log dirs - Allow pegasus_openlmi_services_t to stream connect to sssd_t- Add missing permission checks for nscd- Fix alias decl in corenetwork.te.in - Add support for fuse.glusterfs - Add file transition rules for content created by f5link - Rename quantum_port information to neutron - Allow all antivirus domains to manage also own log dirs - Rename quantum_port information to neutron - Allow pegasus_openlmi_services_t to stream connect to sssd_t- Allow sysadm_t to read login information - Allow systemd_tmpfiles to setattr on var_log_t directories - Udpdate Makefile to include systemd_contexts - Add systemd_contexts - Add fs_exec_hugetlbfs_files() interface - Add daemons_enable_cluster_mode boolean - Fix rsync_filetrans_named_content() - Add rhcs_read_cluster_pid_files() interface - Update rhcs.if with additional interfaces from RHEL6 - Fix rhcs_domain_template() to not create run dirs with cluster_var_run_t - Allow glusterd_t to mounton glusterd_tmp_t - Allow glusterd to unmout al filesystems - Allow xenstored to read virt config - Add label for swift_server.lock and make add filetrans_named_content to make sure content gets created with the correct label - Allow mozilla_plugin_t to mmap hugepages as an executable- Add back userdom_security_admin_template() interface and use it for sysadm_t if sysadm_secadm.pp- Allow sshd_t to read openshift content, needs backport to RHEL6.5 - Label /usr/lib64/sasl2/libsasldb.so.3.0.0 as textrel_shlib_t - Make sur kdump lock is created with correct label if kdumpctl is executed - gnome interface calls should always be made within an optional_block - Allow syslogd_t to connect to the syslog_tls port - Add labeling for /var/run/charon.ctl socket - Add kdump_filetrans_named_content() - Allo setpgid for fenced_t - Allow setpgid and r/w cluster tmpfs for fenced_t - gnome calls should always be within optional blocks - wicd.pid should be labeled as networkmanager_var_run_t - Allow sys_resource for lldpad- Add rtas policy- Allow mailserver_domains to manage and transition to mailman data - Dontaudit attempts by mozilla plugin to relabel content, caused by using mv and cp commands - Allow mailserver_domains to manage and transition to mailman data - Allow svirt_domains to read sysctl_net_t - Allow thumb_t to use tmpfs inherited from the user - Allow mozilla_plugin to bind to the vnc port if running with spice - Add new attribute to discover confined_admins and assign confined admin to it - Fix zabbix to handle attributes in interfaces - Fix zabbix to read system states for all zabbix domains - Fix piranha_domain_template() - Allow ctdbd to create udp_socket. Allow ndmbd to access ctdbd var files. - Allow lldpad sys_rouserce cap due to #986870 - Allow dovecot-auth to read nologin - Allow openlmi-networking to read /proc/net/dev - Allow smsd_t to execute scripts created on the fly labeled as smsd_spool_t - Add zabbix_domain attribute for zabbix domains to treat them together - Add labels for zabbix-poxy-* (#1018221) - Update openlmi-storage policy to reflect #1015067 - Back port piranha tmpfs fixes from RHEL6 - Update httpd_can_sendmail boolean to allow read/write postfix spool maildrop - Add postfix_rw_spool_maildrop_files interface - Call new userdom_admin_user_templat() also for sysadm_secadm.pp - Fix typo in userdom_admin_user_template() - Allow SELinux users to create coolkeypk11sE-Gate in /var/cache/coolkey - Add new attribute to discover confined_admins - Fix labeling for /etc/strongswan/ipsec.d - systemd_logind seems to pass fd to anyone who dbus communicates with it - Dontaudit leaked write descriptor to dmesg- Activate motion policy- Fix gnome_read_generic_data_home_files() - allow openshift_cgroup_t to read/write inherited openshift file types - Remove httpd_cobbler_content * from cobbler_admin interface - Allow svirt sandbox domains to setattr on chr_file and blk_file svirt_sandbox_file_t, so sshd will work within a container - Allow httpd_t to read also git sys content symlinks - Allow init_t to read gnome home data - Dontaudit setroubleshoot_fixit_t execmem, since it does not seem to really need it. - Allow virsh to execute systemctl - Fix for nagios_services plugins - add type defintion for ctdbd_var_t - Add support for /var/ctdb. Allow ctdb block_suspend and read /etc/passwd file - Allow net_admin/netlink_socket all hyperv_domain domains - Add labeling for zarafa-search.log and zarafa-search.pid - Fix hypervkvp.te - Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type - Fix logging policy - Allow syslog to bind to tls ports - Update labeling for /dev/cdc-wdm - Allow to su_domain to read init states - Allow init_t to read gnome home data - Make sure if systemd_logind creates nologin file with the correct label - Clean up ipsec.te- Add auth_exec_chkpwd interface - Fix port definition for ctdb ports - Allow systemd domains to read /dev/urand - Dontaudit attempts for mozilla_plugin to append to /dev/random - Add label for /var/run/charon.* - Add labeling for /usr/lib/systemd/system/lvm2.*dd policy for motion service - Fix for nagios_services plugins - Fix some bugs in zoneminder policy - add type defintion for ctdbd_var_t - Add support for /var/ctdb. Allow ctdb block_suspend and read /etc/passwd file - Allow net_admin/netlink_socket all hyperv_domain domains - Add labeling for zarafa-search.log and zarafa-search.pid - glusterd binds to random unreserved ports - Additional allow rules found by testing glusterfs - apcupsd needs to send a message to all users on the system so needs to look them up - Fix the label on ~/.juniper_networks - Dontaudit attempts for mozilla_plugin to append to /dev/random - Allow polipo_daemon to connect to flash ports - Allow gssproxy_t to create replay caches - Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type- init reload from systemd_localed_t - Allow domains that communicate with systemd_logind_sessions to use systemd_logind_t fd - Allow systemd_localed_t to ask systemd to reload the locale. - Add systemd_runtime_unit_file_t type for unit files that systemd creates in memory - Allow readahead to read /dev/urand - Fix lots of avcs about tuned - Any file names xenstored in /var/log should be treated as xenstored_var_log_t - Allow tuned to inderact with hugepages - Allow condor domains to list etc rw dirs- Fix nscd_shm_use() - Add initial policy for /usr/sbin/hypervvssd in hypervkvp policy which should be renamed to hyperv. Also add hyperv_domain attribute to treat these HyperV services. - Add hypervkvp_unit_file_t type - Add additional fixes forpegasus_openlmi_account_t - Allow mdadm to read /dev/urand - Allow pegasus_openlmi_storage_t to create mdadm.conf and write it - Add label/rules for /etc/mdadm.conf - Allow pegasus_openlmi_storage_t to transition to fsadm_t - Fixes for interface definition problems - Dontaudit dovecot-deliver to gettatr on all fs dirs - Allow domains to search data_home_t directories - Allow cobblerd to connect to mysql - Allow mdadm to r/w kdump lock files - Add support for kdump lock files - Label zarafa-search as zarafa-indexer - Openshift cgroup wants to read /etc/passwd - Add new sandbox domains for kvm - Allow mpd to interact with pulseaudio if mpd_enable_homedirs is turned on - Fix labeling for /usr/lib/systemd/system/lvm2.* - Add labeling for /usr/lib/systemd/system/lvm2.* - Fix typos to get a new build. We should not cover filename trans rules to prevent duplicate rules - Add sshd_keygen_t policy for sshd-keygen - Fix alsa_home_filetrans interface name and definition - Allow chown for ssh_keygen_t - Add fs_dontaudit_getattr_all_dirs() - Allow init_t to manage etc_aliases_t and read xserver_var_lib_t and chrony keys - Fix up patch to allow systemd to manage home content - Allow domains to send/recv unlabeled traffic if unlabelednet.pp is enabled - Allow getty to exec hostname to get info - Add systemd_home_t for ~/.local/share/systemd directory- Fix lxc labels in config.tgz- Fix labeling for /usr/libexec/kde4/kcmdatetimehelper - Allow tuned to search all file system directories - Allow alsa_t to sys_nice, to get top performance for sound management - Add support for MySQL/PostgreSQL for amavis - Allow openvpn_t to manage openvpn_var_log_t files. - Allow dirsrv_t to create tmpfs_t directories - Allow dirsrv to create dirs in /dev/shm with dirsrv_tmpfs label - Dontaudit leaked unix_stream_sockets into gnome keyring - Allow telepathy domains to inhibit pipes on telepathy domains - Allow cloud-init to domtrans to rpm - Allow abrt daemon to manage abrt-watch tmp files - Allow abrt-upload-watcher to search /var/spool directory - Allow nsswitch domains to manage own process key - Fix labeling for mgetty.* logs - Allow systemd to dbus chat with upower - Allow ipsec to send signull to itself - Allow setgid cap for ipsec_t - Match upstream labeling- Do not build sanbox pkg on MLS- wine_tmp is no longer needed - Allow setroubleshoot to look at /proc - Allow telepathy domains to dbus with systemd logind - Fix handling of fifo files of rpm - Allow mozilla_plugin to transition to itself - Allow certwatch to write to cert_t directories - New abrt application - Allow NetworkManager to set the kernel scheduler - Make wine_domain shared by all wine domains - Allow mdadm_t to read images labeled svirt_image_t - Allow amanda to read /dev/urand - ALlow my_print_default to read /dev/urand - Allow mdadm to write to kdumpctl fifo files - Allow nslcd to send signull to itself - Allow yppasswd to read /dev/urandom - Fix zarafa_setrlimit - Add support for /var/lib/php/wsdlcache - Add zarafa_setrlimit boolean - Allow fetchmail to send mails - Add additional alias for user_tmp_t because wine_tmp_t is no longer used - More handling of ther kernel keyring required by kerberos - New privs needed for init_t when running without transition to initrc_t over bin_t, and without unconfined domain installed- Dontaudit attempts by sosreport to read shadow_t - Allow browser sandbox plugins to connect to cups to print - Add new label mpd_home_t - Label /srv/www/logs as httpd_log_t - Add support for /var/lib/php/wsdlcache - Add zarafa_setrlimit boolean - Allow fetchmail to send mails - Add labels for apache logs under miq package - Allow irc_t to use tcp sockets - fix labels in puppet.if - Allow tcsd to read utmp file - Allow openshift_cron_t to run ssh-keygen in ssh_keygen_t to access host keys - Define svirt_socket_t as a domain_type - Take away transition from init_t to initrc_t when executing bin_t, allow init_t to run chk_passwd_t - Fix label on pam_krb5 helper apps- Allow ldconfig to write to kdumpctl fifo files - allow neutron to connect to amqp ports - Allow kdump_manage_crash to list the kdump_crash_t directory - Allow glance-api to connect to amqp port - Allow virt_qemu_ga_t to read meminfo - Add antivirus_home_t type for antivirus date in HOMEDIRS - Allow mpd setcap which is needed by pulseaudio - Allow smbcontrol to create content in /var/lib/samba - Allow mozilla_exec_t to be used as a entrypoint to mozilla_domtrans_spec - Add additional labeling for qemu-ga/fsfreeze-hook.d scripts - amanda_exec_t needs to be executable file - Allow block_suspend cap for samba-net - Allow apps that read ipsec_mgmt_var_run_t to search ipsec_var_run_t - Allow init_t to run crash utility - Treat usr_t just like bin_t for transitions and executions - Add port definition of pka_ca to port 829 for openshift - Allow selinux_store to use symlinks- Allow block_suspend cap for samba-net - Allow t-mission-control to manage gabble cache files - Allow nslcd to read /sys/devices/system/cpu - Allow selinux_store to use symlinks- Allow xdm_t to transition to itself - Call neutron interfaces instead of quantum - Allow init to change targed role to make uncofined services (xrdp which now has own systemd unit file) working. We want them to have in unconfined_t - Make sure directories in /run get created with the correct label - Make sure /root/.pki gets created with the right label - try to remove labeling for motion from zoneminder_exec_t to bin_t - Allow inetd_t to execute shell scripts - Allow cloud-init to read all domainstate - Fix to use quantum port - Add interface netowrkmanager_initrc_domtrans - Fix boinc_execmem - Allow t-mission-control to read gabble cache home - Add labeling for ~/.cache/telepathy/avatars/gabble - Allow memcache to read sysfs data - Cleanup antivirus policy and add additional fixes - Add boolean boinc_enable_execstack - Add support for couchdb in rabbitmq policy - Add interface couchdb_search_pid_dirs - Allow firewalld to read NM state - Allow systemd running as git_systemd to bind git port - Fix mozilla_plugin_rw_tmpfs_files()- Split out rlogin ports from inetd - Treat files labeld as usr_t like bin_t when it comes to transitions - Allow staff_t to read login config - Allow ipsec_t to read .google authenticator data - Allow systemd running as git_systemd to bind git port - Fix mozilla_plugin_rw_tmpfs_files() - Call the correct interface - corenet_udp_bind_ktalkd_port() - Allow all domains that can read gnome_config to read kde config - Allow sandbox domain to read/write mozilla_plugin_tmpfs_t so pulseaudio will work - Allow mdadm to getattr any file system - Allow a confined domain to executes mozilla_exec_t via dbus - Allow cupsd_lpd_t to bind to the printer port - Dontaudit attempts to bind to ports < 1024 when nis is turned on - Allow apache domain to connect to gssproxy socket - Allow rlogind to bind to the rlogin_port - Allow telnetd to bind to the telnetd_port - Allow ktalkd to bind to the ktalkd_port - Allow cvs to bind to the cvs_port- Cleanup related to init_domain()+inetd_domain fixes - Use just init_domain instead of init_daemon_domain in inetd_core_service_domain - svirt domains neeed to create kobject_uevint_sockets - Lots of new access required for sosreport - Allow tgtd_t to connect to isns ports - Allow init_t to transition to all inetd domains: - openct needs to be able to create netlink_object_uevent_sockets - Dontaudit leaks into ldconfig_t - Dontaudit su domains getattr on /dev devices, move su domains to attribute based calls - Move kernel_stream_connect into all Xwindow using users - Dontaudit inherited lock files in ifconfig o dhcpc_t- Also sock_file trans rule is needed in lsm - Fix labeling for fetchmail pid files/dirs - Add additional fixes for abrt-upload-watch - Fix polipo.te - Fix transition rules in asterisk policy - Add fowner capability to networkmanager policy - Allow polipo to connect to tor ports - Cleanup lsmd.if - Cleanup openhpid policy - Fix kdump_read_crash() interface - Make more domains as init domain - Fix cupsd.te - Fix requires in rpm_rw_script_inherited_pipes - Fix interfaces in lsm.if - Allow munin service plugins to manage own tmpfs files/dirs - Allow virtd_t also relabel unix stream sockets for virt_image_type - Make ktalk as init domain - Fix to define ktalkd_unit_file_t correctly - Fix ktalk.fc - Add systemd support for talk-server - Allow glusterd to create sock_file in /run - Allow xdm_t to delete gkeyringd_tmp_t files on logout - Add fixes for hypervkvp policy - Add logwatch_can_sendmail boolean - Allow mysqld_safe_t to handle also symlinks in /var/log/mariadb - Allow xdm_t to delete gkeyringd_tmp_t files on logout- Add selinux-policy-sandbox pkg0 - Allow rhsmcertd to read init state - Allow fsetid for pkcsslotd - Fix labeling for /usr/lib/systemd/system/pkcsslotd.service - Allow fetchmail to create own pid with correct labeling - Fix rhcs_domain_template() - Allow roles which can run mock to read mock lib files to view results - Allow rpcbind to use nsswitch - Fix lsm.if summary - Fix collectd_t can read /etc/passwd file - Label systemd unit files under dracut correctly - Add support for pam_mount to mount user's encrypted home When a user logs in and logs out using ssh - Add support for .Xauthority-n - Label umount.crypt as lvm_exec_t - Allow syslogd to search psad lib files - Allow ssh_t to use /dev/ptmx - Make sure /run/pluto dir is created with correct labeling - Allow syslog to run shell and bin_t commands - Allow ip to relabel tun_sockets - Allow mount to create directories in files under /run - Allow processes to use inherited fifo files- Add policy for lsmd - Add support for /var/log/mariadb dir and allow mysqld_safe to list this directory - Update condor_master rules to allow read system state info and allow logging - Add labeling for /etc/condor and allow condor domain to write it (bug) - Allow condor domains to manage own logs - Allow glusterd to read domains state - Fix initial hypervkvp policy - Add policy for hypervkvpd - Fix redis.if summary- Allow boinc to connect to @/tmp/.X11-unix/X0 - Allow beam.smp to connect to tcp/5984 - Allow named to manage own log files - Add label for /usr/libexec/dcc/start-dccifd and domtrans to dccifd_t - Add virt_transition_userdomain boolean decl - Allow httpd_t to sendto unix_dgram sockets on its children - Allow nova domains to execute ifconfig - bluetooth wants to create fifo_files in /tmp - exim needs to be able to manage mailman data - Allow sysstat to getattr on all file systems - Looks like bluetoothd has moved - Allow collectd to send ping packets - Allow svirt_lxc domains to getpgid - Remove virt-sandbox-service labeling as virsh_exec_t, since it no longer does virsh_t stuff - Allow frpintd_t to read /dev/urandom - Allow asterisk_t to create sock_file in /var/run - Allow usbmuxd to use netlink_kobject - sosreport needs to getattr on lots of devices, and needs access to netlink_kobject_uevent_socket - More cleanup of svirt_lxc policy - virtd_lxc_t now talks to dbus - Dontaudit leaked ptmx_t - Allow processes to use inherited fifo files - Allow openvpn_t to connect to squid ports - Allow prelink_cron_system_t to ask systemd to reloaddd miscfiles_dontaudit_access_check_cert() - Allow ssh_t to use /dev/ptmx - Make sure /run/pluto dir is created with correct labeling - Allow syslog to run shell and bin_t commands - Allow ip to relabel tun_sockets - Allow mount to create directories in files under /run - Allow processes to use inherited fifo files - Allow user roles to connect to the journal socket- selinux_set_enforce_mode needs to be used with type - Add append to the dontaudit for unix_stream_socket of xdm_t leak - Allow xdm_t to create symlinks in log direcotries - Allow login programs to read afs config - Label 10933 as a pop port, for dovecot - New policy to allow selinux_server.py to run as semanage_t as a dbus service - Add fixes to make netlabelctl working on MLS - AVCs required for running sepolicy gui as staff_t - Dontaudit attempts to read symlinks, sepolicy gui is likely to cause this type of AVC - New dbus server to be used with new gui - After modifying some files in /etc/mail, I saw this needed on the next boot - Loading a vm from /usr/tmp with virt-manager - Clean up oracleasm policy for Fedora - Add oracleasm policy written by rlopez@redhat.com - Make postfix_postdrop_t as mta_agent to allow domtrans to system mail if it is executed by apache - Add label for /var/crash - Allow fenced to domtrans to sanclok_t - Allow nagios to manage nagios spool files - Make tfptd as home_manager - Allow kdump to read kcore on MLS system - Allow mysqld-safe sys_nice/sys_resource caps - Allow apache to search automount tmp dirs if http_use_nfs is enabled - Allow crond to transition to named_t, for use with unbound - Allow crond to look at named_conf_t, for unbound - Allow mozilla_plugin_t to transition its home content - Allow dovecot_domain to read all system and network state - Allow httpd_user_script_t to call getpw - Allow semanage to read pid files - Dontaudit leaked file descriptors from user domain into thumb - Make PAM authentication working if it is enabled in ejabberd - Add fixes for rabbit to fix ##992920,#992931 - Allow glusterd to mount filesystems - Loading a vm from /usr/tmp with virt-manager - Trying to load a VM I got an AVC from devicekit_disk for loopcontrol device - Add fix for pand service - shorewall touches own log - Allow nrpe to list /var - Mozilla_plugin_roles can not be passed into lpd_run_lpr - Allow afs domains to read afs_config files - Allow login programs to read afs config - Allow virt_domain to read virt_var_run_t symlinks - Allow smokeping to send its process signals - Allow fetchmail to setuid - Add kdump_manage_crash() interface - Allow abrt domain to write abrt.socket- Add more aliases in pegasus.te - Add more fixes for *_admin interfaces - Add interface fixes - Allow nscd to stream connect to nmbd - Allow gnupg apps to write to pcscd socket - Add more fixes for openlmi provides. Fix naming and support for additionals - Allow fetchmail to resolve host names - Allow firewalld to interact also with lnk files labeled as firewalld_etc_rw_t - Add labeling for cmpiLMI_Fan-cimprovagt - Allow net_admin for glusterd - Allow telepathy domain to create dconf with correct labeling in /home/userX/.cache/ - Add pegasus_openlmi_system_t - Fix puppet_domtrans_master() to make all puppet calling working in passenger.te - Fix corecmd_exec_chroot() - Fix logging_relabel_syslog_pid_socket interface - Fix typo in unconfineduser.te - Allow system_r to access unconfined_dbusd_t to run hp_chec- Allow xdm_t to act as a dbus client to itsel - Allow fetchmail to resolve host names - Allow gnupg apps to write to pcscd socket - Add labeling for cmpiLMI_Fan-cimprovagt - Allow net_admin for glusterd - Allow telepathy domain to create dconf with correct labeling in /home/userX/.cache/ - Add pegasus_openlmi_system_t - Fix puppet_domtrans_master() to make all puppet calling working in passenger.te -httpd_t does access_check on certs- Add support for cmpiLMI_Service-cimprovagt - Allow pegasus domtrans to rpm_t to make pycmpiLMI_Software-cimprovagt running as rpm_t - Label pycmpiLMI_Software-cimprovagt as rpm_exec_t - Add support for pycmpiLMI_Storage-cimprovagt - Add support for cmpiLMI_Networking-cimprovagt - Allow system_cronjob_t to create user_tmpfs_t to make pulseaudio working - Allow virtual machines and containers to run as user doains, needed for virt-sandbox - Allow buglist.cgi to read cpu info- Allow systemd-tmpfile to handle tmp content in print spool dir - Allow systemd-sysctl to send system log messages - Add support for RTP media ports and fmpro-internal - Make auditd working if audit is configured to perform SINGLE action on disk error - Add interfaces to handle systemd units - Make systemd-notify working if pcsd is used - Add support for netlabel and label /usr/sbin/netlabelctl as iptables_exec_t - Instead of having all unconfined domains get all of the named transition rules, - Only allow unconfined_t, init_t, initrc_t and rpm_script_t by default. - Add definition for the salt ports - Allow xdm_t to create link files in xdm_var_run_t - Dontaudit reads of blk files or chr files leaked into ldconfig_t - Allow sys_chroot for useradd_t - Allow net_raw cap for ipsec_t - Allow sysadm_t to reload services - Add additional fixes to make strongswan working with a simple conf - Allow sysadm_t to enable/disable init_t services - Add additional glusterd perms - Allow apache to read lnk files in the /mnt directory - Allow glusterd to ask the kernel to load a module - Fix description of ftpd_use_fusefs boolean - Allow svirt_lxc_net_t to sys_chroot, modify policy to tighten up svirt_lxc_domain capabilties and process controls, but add them to svirt_lxc_net_t - Allow glusterds to request load a kernel module - Allow boinc to stream connect to xserver_t - Allow sblim domains to read /etc/passwd - Allow mdadm to read usb devices - Allow collectd to use ping plugin - Make foghorn working with SNMP - Allow sssd to read ldap certs - Allow haproxy to connect to RTP media ports - Add additional trans rules for aide_db - Add labeling for /usr/lib/pcsd/pcsd - Add labeling for /var/log/pcsd - Add support for pcs which is a corosync and pacemaker configuration tool- Label /var/lib/ipa/pki-ca/publish as pki_tomcat_cert_t - Add labeling for /usr/libexec/kde4/polkit-kde-authentication-agent-1 - Allow all domains that can domtrans to shutdown, to start the power services script to shutdown - consolekit needs to be able to shut down system - Move around interfaces - Remove nfsd_rw_t and nfsd_ro_t, they don't do anything - Add additional fixes for rabbitmq_beam to allow getattr on mountpoints - Allow gconf-defaults-m to read /etc/passwd - Fix pki_rw_tomcat_cert() interface to support lnk_files- Add support for gluster ports - Make sure that all keys located in /etc/ssh/ are labeled correctly - Make sure apcuspd lock files get created with the correct label - Use getcap in gluster.te - Fix gluster policy - add additional fixes to allow beam.smp to interact with couchdb files - Additional fix for #974149 - Allow gluster to user gluster ports - Allow glusterd to transition to rpcd_t and add additional fixes for #980683 - Allow tgtd working when accessing to the passthrough device - Fix labeling for mdadm unit files- Add mdadm fixes- Fix definition of sandbox.disabled to sandbox.pp.disabled- Allow mdamd to execute systemctl - Allow mdadm to read /dev/kvm - Allow ipsec_mgmt_t to read l2tpd pid content- Allow nsd_t to read /dev/urand - Allow mdadm_t to read framebuffer - Allow rabbitmq_beam_t to read process info on rabbitmq_epmd_t - Allow mozilla_plugin_config_t to create tmp files - Cleanup openvswitch policy - Allow mozilla plugin to getattr on all executables - Allow l2tpd_t to create fifo_files in /var/run - Allow samba to touch/manage fifo_files or sock_files in a samba_share_t directory - Allow mdadm to connecto its own unix_stream_socket - FIXME: nagios changed locations to /log/nagios which is wrong. But we need to have this workaround for now. - Allow apache to access smokeping pid files - Allow rabbitmq_beam_t to getattr on all filesystems - Add systemd support for iodined - Allow nup_upsdrvctl_t to execute its entrypoint - Allow fail2ban_client to write to fail2ban_var_run_t, Also allow it to use nsswitch - add labeling for ~/.cache/libvirt-sandbox - Add interface to allow domains transitioned to by confined users to send sigchld to screen program - Allow sysadm_t to check the system status of files labeled etc_t, /etc/fstab - Allow systemd_localed to start /usr/lib/systemd/system/systemd-vconsole-setup.service - Allow an domain that has an entrypoint from a type to be allowed to execute the entrypoint without a transition, I can see no case where this is a bad thing, and elminiates a whole class of AVCs. - Allow staff to getsched all domains, required to run htop - Add port definition for redis port - fix selinuxuser_use_ssh_chroot boolean- Add prosody policy written by Michael Scherer - Allow nagios plugins to read /sys info - ntpd needs to manage own log files - Add support for HOME_DIR/.IBMERS - Allow iptables commands to read firewalld config - Allow consolekit_t to read utmp - Fix filename transitions on .razor directory - Add additional fixes to make DSPAM with LDA working - Allow snort to read /etc/passwd - Allow fail2ban to communicate with firewalld over dbus - Dontaudit openshift_cgreoup_file_t read/write leaked dev - Allow nfsd to use mountd port - Call th proper interface - Allow openvswitch to read sys and execute plymouth - Allow tmpwatch to read /var/spool/cups/tmp - Add support for /usr/libexec/telepathy-rakia - Add systemd support for zoneminder - Allow mysql to create files/directories under /var/log/mysql - Allow zoneminder apache scripts to rw zoneminder tmpfs - Allow httpd to manage zoneminder lib files - Add zoneminder_run_sudo boolean to allow to start zoneminder - Allow zoneminder to send mails - gssproxy_t sock_file can be under /var/lib - Allow web domains to connect to whois port. - Allow sandbox_web_type to connect to the same ports as mozilla_plugin_t. - We really need to add an interface to corenet to define what a web_client_domain is and - then define chrome_sandbox_t, mozilla_plugin_t and sandbox_web_type to that domain. - Add labeling for cmpiLMI_LogicalFile-cimprovagt - Also make pegasus_openlmi_logicalfile_t as unconfined to have unconfined_domain attribute for filename trans rules - Update policy rules for pegasus_openlmi_logicalfile_t - Add initial types for logicalfile/unconfined OpenLMI providers - mailmanctl needs to read own log - Allow logwatch manage own lock files - Allow nrpe to read meminfo - Allow httpd to read certs located in pki-ca - Add pki_read_tomcat_cert() interface - Add support for nagios openshift plugins - Add port definition for redis port - fix selinuxuser_use_ssh_chroot boolean- Shrink the size of policy by moving to attributes, also add dridomain so that mozilla_plugin can follow selinuxuse_dri boolean. - Allow bootloader to manage generic log files - Allow ftp to bind to port 989 - Fix label of new gear directory - Add support for new directory /var/lib/openshift/gears/ - Add openshift_manage_lib_dirs() - allow virtd domains to manage setrans_var_run_t - Allow useradd to manage all openshift content - Add support so that mozilla_plugin_t can use dri devices - Allow chronyd to change the scheduler - Allow apmd to shut downthe system - Devicekit_disk_t needs to manage /etc/fstab- Make DSPAM to act as a LDA working - Allow ntop to create netlink socket - Allow policykit to send a signal to policykit-auth - Allow stapserver to dbus chat with avahi/systemd-logind - Fix labeling on haproxy unit file - Clean up haproxy policy - A new policy for haproxy and placed it to rhcs.te - Add support for ldirectord and treat it with cluster_t - Make sure anaconda log dir is created with var_log_t- Allow lvm_t to create default targets for filesystem handling - Fix labeling for razor-lightdm binaries - Allow insmod_t to read any file labeled var_lib_t - Add policy for pesign - Activate policy for cmpiLMI_Account-cimprovagt - Allow isnsd syscall=listen - /usr/libexec/pegasus/cimprovagt needs setsched caused by sched_setscheduler - Allow ctdbd to use udp/4379 - gatherd wants sys_nice and setsched - Add support for texlive2012 - Allow NM to read file_t (usb stick with no labels used to transfer keys for example) - Allow cobbler to execute apache with domain transition- condor_collector uses tcp/9000 - Label /usr/sbin/virtlockd as virtd_exec_t for now - Allow cobbler to execute ldconfig - Allow NM to execute ssh - Allow mdadm to read /dev/crash - Allow antivirus domains to connect to snmp port - Make amavisd-snmp working correctly - Allow nfsd_t to mounton nfsd_fs_t - Add initial snapper policy - We still need to have consolekit policy - Dontaudit firefox attempting to connect to the xserver_port_t if run within sandbox_web_t - Dontaudit sandbox apps attempting to open user_devpts_t - Allow dirsrv to read network state - Fix pki_read_tomcat_lib_files - Add labeling for /usr/libexec/nm-ssh-service - Add label cert_t for /var/lib/ipa/pki-ca/publish - Lets label /sys/fs/cgroup as cgroup_t for now, to keep labels consistant - Allow nfsd_t to mounton nfsd_fs_t - Dontaudit sandbox apps attempting to open user_devpts_t - Allow passwd_t to change role to system_r from unconfined_r- Don't audit access checks by sandbox xserver on xdb var_lib - Allow ntop to read usbmon devices - Add labeling for new polcykit authorizor - Dontaudit access checks from fail2ban_client - Don't audit access checks by sandbox xserver on xdb var_lib - Allow apps that connect to xdm stream to conenct to xdm_dbusd_t stream - Fix labeling for all /usr/bim/razor-lightdm-* binaries - Add filename trans for /dev/md126p1- Make vdagent able to request loading kernel module - Add support for cloud-init make it as unconfined domain - Allow snmpd to run smartctl in fsadm_t domain - remove duplicate openshift_search_lib() interface - Allow mysqld to search openshift lib files - Allow openshift cgroup to interact with passedin file descriptors - Allow colord to list directories inthe users homedir - aide executes prelink to check files - Make sure cupsd_t creates content in /etc/cups with the correct label - Lest dontaudit apache read all domains, so passenger will not cause this avc - Allow gssd to connect to gssproxy - systemd-tmpfiles needs to be able to raise the level to fix labeling on /run/setrans in MLS - Allow systemd-tmpfiles to relabel also lock files - Allow useradd to add homdir in /var/lib/openshift - Allow setfiles and semanage to write output to /run/files- Add labeling for /dev/tgt - Dontaudit leak fd from firewalld for modprobe - Allow runuser running as rpm_script_t to create netlink_audit socket - Allow mdadm to read BIOS non-volatile RAM- accountservice watches when accounts come and go in wtmp - /usr/java/jre1.7.0_21/bin/java needs to create netlink socket - Add httpd_use_sasl boolean - Allow net_admin for tuned_t - iscsid needs sys_module to auto-load kernel modules - Allow blueman to read bluetooth conf - Add nova_manage_lib_files() interface - Fix mplayer_filetrans_home_content() - Add mplayer_filetrans_home_content() - mozilla_plugin_config_roles need to be able to access mozilla_plugin_config_t - Revert "Allow thumb_t to append inherited xdm stream socket" - Add iscsi_filetrans_named_content() interface - Allow to create .mplayer with the correct labeling for unconfined - Allow iscsiadmin to create lock file with the correct labeling- Allow wine to manage wine home content - Make amanda working with socket actiovation - Add labeling for /usr/sbin/iscsiadm - Add support for /var/run/gssproxy.sock - dnsmasq_t needs to read sysctl_net_t- Fix courier_domain_template() interface - Allow blueman to write ip_forward - Allow mongodb to connect to mongodb port - Allow mongodb to connect to mongodb port - Allow java to bind jobss_debug port - Fixes for *_admin interfaces - Allow iscsid auto-load kernel modules needed for proper iSCSI functionality - Need to assign attribute for courier_domain to all courier_domains - Fail2ban reads /etc/passwd - postfix_virtual will create new files in postfix_spool_t - abrt triggers sys_ptrace by running pidof - Label ~/abc as mozilla_home_t, since java apps as plugin want to create it - Add passenger fixes needed by foreman - Remove dup interfaces - Add additional interfaces for quantum - Add new interfaces for dnsmasq - Allow passenger to read localization and send signull to itself - Allow dnsmasq to stream connect to quantum - Add quantum_stream_connect() - Make sure that mcollective starts the service with the correct labeling - Add labels for ~/.manpath - Dontaudit attempts by svirt_t to getpw* calls - sandbox domains are trying to look at parent process data - Allow courior auth to create its pid file in /var/spool/courier subdir - Add fixes for beam to have it working with couchdb - Add labeling for /run/nm-xl2tpd.con - Allow apache to stream connect to thin - Add systemd support for amand - Make public types usable for fs mount points - Call correct mandb interface in domain.te - Allow iptables to r/w quantum inherited pipes and send sigchld - Allow ifconfig domtrans to iptables and execute ldconfig - Add labels for ~/.manpath - Allow systemd to read iscsi lib files - seunshare is trying to look at parent process data- Fix openshift_search_lib - Add support for abrt-uefioops-oops - Allow colord to getattr any file system - Allow chrome processes to look at each other - Allow sys_ptrace for abrt_t - Add new policy for gssproxy - Dontaudit leaked file descriptor writes from firewalld - openshift_net_type is interface not template - Dontaudit pppd to search gnome config - Update openshift_search_lib() interface - Add fs_list_pstorefs() - Fix label on libbcm_host.so since it is built incorrectly on raspberry pi, needs back port to F18 - Better labels for raspberry pi devices - Allow init to create devpts_t directory - Temporarily label rasbery pi devices as memory_device_t, needs back port to f18 - Allow sysadm_t to build kernels - Make sure mount creates /var/run/blkid with the correct label, needs back port to F18 - Allow userdomains to stream connect to gssproxy - Dontaudit leaked file descriptor writes from firewalld - Allow xserver to read /dev/urandom - Add additional fixes for ipsec-mgmt - Make SSHing into an Openshift Enterprise Node working- Add transition rules to unconfined domains and to sysadm_t to create /etc/adjtime - with the proper label. - Update files_filetrans_named_content() interface to get right labeling for pam.d conf files - Allow systemd-timedated to create adjtime - Add clock_create_adjtime() - Additional fix ifconfing for #966106 - Allow kernel_t to create boot.log with correct labeling - Remove unconfined_mplayer for which we don't have rules - Rename interfaces - Add userdom_manage_user_home_files/dirs interfaces - Fix files_dontaudit_read_all_non_security_files - Fix ipsec_manage_key_file() - Fix ipsec_filetrans_key_file() - Label /usr/bin/razor-lightdm-greeter as xdm_exec_t instead of spamc_exec_t - Fix labeling for ipse.secrets - Add interfaces for ipsec and labeling for ipsec.info and ipsec_setup.pid - Add files_dontaudit_read_all_non_security_files() interface - /var/log/syslog-ng should be labeled var_log_t - Make ifconfig_var_run_t a mountpoint - Add transition from ifconfig to dnsmasq - Allow ifconfig to execute bin_t/shell_exec_t - We want to have hwdb.bin labeled as etc_t - update logging_filetrans_named_content() interface - Allow systemd_timedate_t to manage /etc/adjtime - Allow NM to send signals to l2tpd - Update antivirus_can_scan_system boolean - Allow devicekit_disk_t to sys_config_tty - Run abrt-harvest programs as abrt_t, and allow abrt_t to list all filesystem directories - Make printing from vmware working - Allow php-cgi from php54 collection to access /var/lib/net-snmp/mib_indexes - Add virt_qemu_ga_data_t for qemu-ga - Make chrome and mozilla able to connect to same ports, add jboss_management_port_t to both - Fix typo in virt.te - Add virt_qemu_ga_unconfined_t for hook scripts - Make sure NetworkManager files get created with the correct label - Add mozilla_plugin_use_gps boolean - Fix cyrus to have support for net-snmp - Additional fixes for dnsmasq and quantum for #966106 - Add plymouthd_create_log() - remove httpd_use_oddjob for which we don't have rules - Add missing rules for httpd_can_network_connect_cobbler - Add missing cluster_use_execmem boolean - Call userdom_manage_all_user_home_type_files/dirs - Additional fix for ftp_home_dir - Fix ftp_home_dir boolean - Allow squit to recv/send client squid packet - Fix nut.te to have nut_domain attribute - Add support for ejabberd; TODO: revisit jabberd and rabbit policy - Fix amanda policy - Add more fixes for domains which use libusb - Make domains which use libusb working correctly - Allow l2tpd to create ipsec key files with correct labeling and manage them - Fix cobbler_manage_lib_files/cobbler_read_lib_files to cover also lnk files - Allow rabbitmq-beam to bind generic node - Allow l2tpd to read ipse-mgmt pid files - more fixes for l2tpd, NM and pppd from #967072- Dontaudit to getattr on dirs for dovecot-deliver - Allow raiudusd server connect to postgresql socket - Add kerberos support for radiusd - Allow saslauthd to connect to ldap port - Allow postfix to manage postfix_private_t files - Add chronyd support for #965457 - Fix labeling for HOME_DIR/\.icedtea - CHange squid and snmpd to be allowed also write own logs - Fix labeling for /usr/libexec/qemu-ga - Allow virtd_t to use virt_lock_t - Allow also sealert to read the policy from the kernel - qemu-ga needs to execute scripts in /usr/libexec/qemu-ga and to use /tmp content - Dontaudit listing of users homedir by sendmail Seems like a leak - Allow passenger to transition to puppet master - Allow apache to connect to mythtv - Add definition for mythtv ports- Add additional fixes for #948073 bug - Allow sge_execd_t to also connect to sge ports - Allow openshift_cron_t to manage openshift_var_lib_t sym links - Allow openshift_cron_t to manage openshift_var_lib_t sym links - Allow sge_execd to bind sge ports. Allow kill capability and reads cgroup files - Remove pulseaudio filetrans pulseaudio_manage_home_dirs which is a part of pulseaudio_manage_home_files - Add networkmanager_stream_connect() - Make gnome-abrt wokring with staff_t - Fix openshift_manage_lib_files() interface - mdadm runs ps command which seems to getattr on random log files - Allow mozilla_plugin_t to create pulseaudit_home_t directories - Allow qemu-ga to shutdown virtual hosts - Add labelling for cupsd-browsed - Add web browser plugins to connect to aol ports - Allow nm-dhcp-helper to stream connect to NM - Add port definition for sge ports- Make sure users and unconfined domains create .hushlogin with the correct label - Allow pegaus to chat with realmd over DBus - Allow cobblerd to read network state - Allow boicn-client to stat on /dev/input/mice - Allow certwatch to read net_config_t when it executes apache - Allow readahead to create /run/systemd and then create its own directory with the correct label- Transition directories and files when in a user_tmp_t directory - Change certwatch to domtrans to apache instead of just execute - Allow virsh_t to read xen lib files - update policy rules for pegasus_openlmi_account_t - Add support for svnserve_tmp_t - Activate account openlmi policy - pegasus_openlmi_domain_template needs also require pegasus_t - One more fix for policykit.te - Call fs_list_cgroups_dirs() in policykit.te - Allow nagios service plugin to read mysql config files - Add labeling for /var/svn - Fix chrome.te - Fix pegasus_openlmi_domain_template() interfaces - Fix dev_rw_vfio_dev definiton, allow virtd_t to read tmpfs_t symlinks - Fix location of google-chrome data - Add support for chome_sandbox to store content in the homedir - Allow policykit to watch for changes in cgroups file system - Add boolean to allow mozilla_plugin_t to use spice - Allow collectd to bind to udp port - Allow collected_t to read all of /proc - Should use netlink socket_perms - Should use netlink socket_perms - Allow glance domains to connect to apache ports - Allow apcupsd_t to manage its log files - Allow chrome objects to rw_inherited unix_stream_socket from callers - Allow staff_t to execute virtd_exec_t for running vms - nfsd_t needs to bind mountd port to make nfs-mountd.service working - Allow unbound net_admin capability because of setsockopt syscall - Fix fs_list_cgroup_dirs() - Label /usr/lib/nagios/plugins/utils.pm as bin_t - Remove uplicate definition of fs_read_cgroup_files() - Remove duplicate definition of fs_read_cgroup_files() - Add files_mountpoint_filetrans interface to be used by quotadb_t and snapperd - Additional interfaces needed to list and read cgroups config - Add port definition for collectd port - Add labels for /dev/ptp* - Allow staff_t to execute virtd_exec_t for running vms- Allow samba-net to also read realmd tmp files - Allow NUT to use serial ports - realmd can be started by systemctl now- Remove userdom_home_manager for xdm_t and move all rules to xserver.te directly - Add new xdm_write_home boolean to allow xdm_t to create files in HOME dirs with xdm_home_t - Allow postfix-showq to read/write unix.showq in /var/spool/postfix/pid - Allow virsh to read xen lock file - Allow qemu-ga to create files in /run with proper labeling - Allow glusterd to connect to own socket in /tmp - Allow glance-api to connect to http port to make glance image-create working - Allow keystonte_t to execute rpm- Fix realmd cache interfaces- Allow tcpd to execute leafnode - Allow samba-net to read realmd cache files - Dontaudit sys_tty_config for alsactl - Fix allow rules for postfix_var_run - Allow cobblerd to read /etc/passwd - Allow pegasus to read exports - Allow systemd-timedate to read xdm state - Allow mout to stream connect to rpcbind - Add labeling just for /usr/share/pki/ca-trust-source instead of /usr/share/pki- Allow thumbnails to share memory with apps which run thumbnails - Allow postfix-postqueue block_suspend - Add lib interfaces for smsd - Add support for nginx - Allow s2s running as jabberd_t to connect to jabber_interserver_port_t - Allow pki apache domain to create own tmp files and execute httpd_suexec - Allow procmail to manger user tmp files/dirs/lnk_files - Add virt_stream_connect_svirt() interface - Allow dovecot-auth to execute bin_t - Allow iscsid to request that kernel load a kernel module - Add labeling support for /var/lib/mod_security - Allow iw running as tuned_t to create netlink socket - Dontaudit sys_tty_config for thumb_t - Add labeling for nm-l2tp-service - Allow httpd running as certwatch_t to open tcp socket - Allow useradd to manager smsd lib files - Allow useradd_t to add homedirs in /var/lib - Fix typo in userdomain.te - Cleanup userdom_read_home_certs - Implement userdom_home_reader_certs_type to allow read certs also on encrypt /home with ecryptfs_t - Allow staff to stream connect to svirt_t to make gnome-boxes working- Allow lvm to create its own unit files - Label /var/lib/sepolgen as selinux_config_t - Add filetrans rules for tw devices - Add transition from cupsd_config_t to cupsd_t- Add filetrans rules for tw devices - Cleanup bad transition lines- Fix lockdev_manage_files() - Allow setroubleshootd to read var_lib_t to make email_alert working - Add lockdev_manage_files() - Call proper interface in virt.te - Allow gkeyring_domain to create /var/run/UID/config/dbus file - system dbus seems to be blocking suspend - Dontaudit attemps to sys_ptrace, which I believe gpsd does not need - When you enter a container from root, you generate avcs with a leaked file descriptor - Allow mpd getattr on file system directories - Make sure realmd creates content with the correct label - Allow systemd-tty-ask to write kmsg - Allow mgetty to use lockdev library for device locking - Fix selinuxuser_user_share_music boolean name to selinuxuser_share_music - When you enter a container from root, you generate avcs with a leaked file descriptor - Make sure init.fc files are labeled correctly at creation - File name trans vconsole.conf - Fix labeling for nagios plugins - label shared libraries in /opt/google/chrome as testrel_shlib_t- Allow certmonger to dbus communicate with realmd - Make realmd working- Fix mozilla specification of homedir content - Allow certmonger to read network state - Allow tmpwatch to read tmp in /var/spool/{cups,lpd} - Label all nagios plugin as unconfined by default - Add httpd_serve_cobbler_files() - Allow mdadm to read /dev/sr0 and create tmp files - Allow certwatch to send mails - Fix labeling for nagios plugins - label shared libraries in /opt/google/chrome as testrel_shlib_t- Allow realmd to run ipa, really needs to be an unconfined_domain - Allow sandbox domains to use inherted terminals - Allow pscd to use devices labeled svirt_image_t in order to use cat cards. - Add label for new alsa pid - Alsa now uses a pid file and needs to setsched - Fix oracleasmfs_t definition - Add support for sshd_unit_file_t - Add oracleasmfs_t - Allow unlabeled_t files to be stored on unlabeled_t filesystems- Fix description of deny_ptrace boolean - Remove allow for execmod lib_t for now - Allow quantum to connect to keystone port - Allow nova-console to talk with mysql over unix stream socket - Allow dirsrv to stream connect to uuidd - thumb_t needs to be able to create ~/.cache if it does not exist - virtd needs to be able to sys_ptrace when starting and stoping containers- Allow alsa_t signal_perms, we probaly should search for any app that can execute something without transition and give it signal_perms... - Add dontaudit for mozilla_plugin_t looking at the xdm_t sockets - Fix deny_ptrace boolean, certain ptrace leaked into the system - Allow winbind to manage kerberos_rcache_host - Allow spamd to create spamd_var_lib_t directories - Remove transition to mozilla_tmp_t by mozilla_t, to allow it to manage the users tmp dirs - Add mising nslcd_dontaudit_write_sock_file() interface - one more fix - Fix pki_read_tomcat_lib_files() interface - Allow certmonger to read pki-tomcat lib files - Allow certwatch to execute bin_t - Allow snmp to manage /var/lib/net-snmp files - Call snmp_manage_var_lib_files(fogorn_t) instead of snmp_manage_var_dirs - Fix vmware_role() interface - Fix cobbler_manage_lib_files() interface - Allow nagios check disk plugins to execute bin_t - Allow quantum to transition to openvswitch_t - Allow postdrop to stream connect to postfix-master - Allow quantum to stream connect to openvswitch - Add xserver_dontaudit_xdm_rw_stream_sockets() interface - Allow daemon to send dgrams to initrc_t - Allow kdm to start the power service to initiate a reboot or poweroff- Add mising nslcd_dontaudit_write_sock_file() interface - one more fix - Fix pki_read_tomcat_lib_files() interface - Allow certmonger to read pki-tomcat lib files - Allow certwatch to execute bin_t - Allow snmp to manage /var/lib/net-snmp files - Don't audit attempts to write to stream socket of nscld by thumbnailers - Allow git_system_t to read network state - Allow pegasas to execute mount command - Fix desc for drdb_admin - Fix condor_amin() - Interface fixes for uptime, vdagent, vnstatd - Fix labeling for moodle in /var/www/moodle/data - Add interface fixes - Allow bugzilla to read certs - /var/www/moodle needs to be writable by apache - Add interface to dontaudit attempts to send dbus messages to systemd domains, for xguest - Fix namespace_init_t to create content with proper labels, and allow it to manage all user content - Allow httpd_t to connect to osapi_compute port using httpd_use_openstack bolean - Fixes for dlm_controld - Fix apache_read_sys_content_rw_dirs() interface - Allow logrotate to read /var/log/z-push dir - Fix sys_nice for cups_domain - Allow postfix_postdrop to acces postfix_public socket - Allow sched_setscheduler for cupsd_t - Add missing context for /usr/sbin/snmpd - Kernel_t needs mac_admin in order to support labeled NFS - Fix systemd_dontaudit_dbus_chat() interface - Add interface to dontaudit attempts to send dbus messages to systemd domains, for xguest - Allow consolehelper domain to write Xauth files in /root - Add port definition for osapi_compute port - Allow unconfined to create /etc/hostname with correct labeling - Add systemd_filetrans_named_hostname() interface- Allow httpd_t to connect to osapi_compute port using httpd_use_openstack bolean - Fixes for dlm_controld - Fix apache_read_sys_content_rw_dirs() interface - Allow logrotate to read /var/log/z-push dir - Allow postfix_postdrop to acces postfix_public socket - Allow sched_setscheduler for cupsd_t - Add missing context for /usr/sbin/snmpd - Allow consolehelper more access discovered by Tom London - Allow fsdaemon to send signull to all domain - Add port definition for osapi_compute port - Allow unconfined to create /etc/hostname with correct labeling - Add systemd_filetrans_named_hostname() interface- Fix file_contexts.subs to label /run/lock correctly- Try to label on controlC devices up to 30 correctly - Add mount_rw_pid_files() interface - Add additional mount/umount interfaces needed by mock - fsadm_t sends audit messages in reads kernel_ipc_info when doing livecd-iso-to-disk - Fix tabs - Allow initrc_domain to search rgmanager lib files - Add more fixes which make mock working together with confined users * Allow mock_t to manage rpm files * Allow mock_t to read rpm log files * Allow mock to setattr on tmpfs, devpts * Allow mount/umount filesystems - Add rpm_read_log() interface - yum-cron runs rpm from within it. - Allow tuned to transition to dmidecode - Allow firewalld to do net_admin - Allow mock to unmont tmpfs_t - Fix virt_sigkill() interface - Add additional fixes for mock. Mainly caused by mount running in mock_t - Allow mock to write sysfs_t and mount pid files - Add mailman_domain to mailman_template() - Allow openvswitch to execute shell - Allow qpidd to use kerberos - Allow mailman to use fusefs, needs back port to RHEL6 - Allow apache and its scripts to use anon_inodefs - Add alias for git_user_content_t and git_sys_content_t so that RHEL6 will update to RHEL7 - Realmd needs to connect to samba ports, needs back port to F18 also - Allow colord to read /run/initial-setup- - Allow sanlock-helper to send sigkill to virtd which is registred to sanlock - Add virt_kill() interface - Add rgmanager_search_lib() interface - Allow wdmd to getattr on all filesystems. Back ported from RHEL6- Allow realmd to create tmp files - FIx ircssi_home_t type to irssi_home_t - Allow adcli running as realmd_t to connect to ldap port - Allow NetworkManager to transition to ipsec_t, for running strongswan - Make openshift_initrc_t an lxc_domain - Allow gssd to manage user_tmp_t files - Fix handling of irclogs in users homedir - Fix labeling for drupal an wp-content in subdirs of /var/www/html - Allow abrt to read utmp_t file - Fix openshift policy to transition lnk_file, sock-file an fifo_file when created in a tmpfs_t, needs back port to RHEL6 - fix labeling for (oo|rhc)-restorer-wrapper.sh - firewalld needs to be able to write to network sysctls - Fix mozilla_plugin_dontaudit_rw_sem() interface - Dontaudit generic ipc read/write to a mozilla_plugin for sandbox_x domains - Add mozilla_plugin_dontaudit_rw_sem() interface - Allow svirt_lxc_t to transition to openshift domains - Allow condor domains block_suspend and dac_override caps - Allow condor_master to read passd - Allow condor_master to read system state - Allow NetworkManager to transition to ipsec_t, for running strongswan - Lots of access required by lvm_t to created encrypted usb device - Allow xdm_t to dbus communicate with systemd_localed_t - Label strongswan content as ipsec_exec_mgmt_t for now - Allow users to dbus chat with systemd_localed - Fix handling of .xsession-errors in xserver.if, so kde will work - Might be a bug but we are seeing avc's about people status on init_t:service - Make sure we label content under /var/run/lock as <> - Allow daemon and systemprocesses to search init_var_run_t directory - Add boolean to allow xdm to write xauth data to the home directory - Allow mount to write keys for the unconfined domain - Add unconfined_write_keys() interface- Add labeling for /usr/share/pki - Allow programs that read var_run_t symlinks also read var_t symlinks - Add additional ports as mongod_port_t for 27018, 27019, 28017, 28018 and 28019 ports - Fix labeling for /etc/dhcp directory - add missing systemd_stub_unit_file() interface - Add files_stub_var() interface - Add lables for cert_t directories - Make localectl set-x11-keymap working at all - Allow abrt to manage mock build environments to catch build problems. - Allow virt_domains to setsched for running gdb on itself - Allow thumb_t to execute user home content - Allow pulseaudio running as mozilla_plugin_t to read /run/systemd/users/1000 - Allow certwatch to execut /usr/bin/httpd - Allow cgred to send signal perms to itself, needs back port to RHEL6 - Allow openshift_cron_t to look at quota - Allow cups_t to read inhered tmpfs_t from the kernel - Allow yppasswdd to use NIS - Tuned wants sys_rawio capability - Add ftpd_use_fusefs boolean - Allow dirsrvadmin_t to signal itself- Allow localectl to read /etc/X11/xorg.conf.d directory - Revert "Revert "Fix filetrans rules for kdm creates .xsession-errors"" - Allow mount to transition to systemd_passwd_agent - Make sure abrt directories are labeled correctly - Allow commands that are going to read mount pid files to search mount_var_run_t - label /usr/bin/repoquery as rpm_exec_t - Allow automount to block suspend - Add abrt_filetrans_named_content so that abrt directories get labeled correctly - Allow virt domains to setrlimit and read file_context- Allow nagios to manage nagios spool files - /var/spool/snmptt is a directory which snmdp needs to write to, needs back port to RHEL6 - Add swift_alias.* policy files which contain typealiases for swift types - Add support for /run/lock/opencryptoki - Allow pkcsslotd chown capability - Allow pkcsslotd to read passwd - Add rsync_stub() interface - Allow systemd_timedate also manage gnome config homedirs - Label /usr/lib64/security/pam_krb5/pam_krb5_cchelper as bin_t - Fix filetrans rules for kdm creates .xsession-errors - Allow sytemd_tmpfiles to create wtmp file - Really should not label content under /var/lock, since it could have labels on it different from var_lock_t - Allow systemd to list all file system directories - Add some basic stub interfaces which will be used in PRODUCT policies- Fix log transition rule for cluster domains - Start to group all cluster log together - Dont use filename transition for POkemon Advanced Adventure until a new checkpolicy update - cups uses usbtty_device_t devices - These fixes were all required to build a MLS virtual Machine with single level desktops - Allow domains to transiton using httpd_exec_t - Allow svirt domains to manage kernel key rings - Allow setroubleshoot to execute ldconfig - Allow firewalld to read generate gnome data - Allow bluetooth to read machine-info - Allow boinc domain to send signal to itself - Fix gnome_filetrans_home_content() interface - Allow mozilla_plugins to list apache modules, for use with gxine - Fix labels for POkemon in the users homedir - Allow xguest to read mdstat - Dontaudit virt_domains getattr on /dev/* - These fixes were all required to build a MLS virtual Machine with single level desktops - Need to back port this to RHEL6 for openshift - Add tcp/8891 as milter port - Allow nsswitch domains to read sssd_var_lib_t files - Allow ping to read network state. - Fix typo - Add labels to /etc/X11/xorg.d and allow systemd-timestampd_t to manage them- Adopt swift changes from lhh@redhat.com - Add rhcs_manage_cluster_pid_files() interface - Allow screen domains to configure tty and setup sock_file in ~/.screen directory - ALlow setroubleshoot to read default_context_t, needed to backport to F18 - Label /etc/owncloud as being an apache writable directory - Allow sshd to stream connect to an lxc domain- Allow postgresql to manage rgmanager pid files - Allow postgresql to read ccs data - Allow systemd_domain to send dbus messages to policykit - Add labels for /etc/hostname and /etc/machine-info and allow systemd-hostnamed to create them - All systemd domains that create content are reading the file_context file and setfscreate - Systemd domains need to search through init_var_run_t - Allow sshd to communicate with libvirt to set containers labels - Add interface to manage pid files - Allow NetworkManger_t to read /etc/hostname - Dontaudit leaked locked files into openshift_domains - Add fixes for oo-cgroup-read - it nows creates tmp files - Allow gluster to manage all directories as well as files - Dontaudit chrome_sandbox_nacl_t using user terminals - Allow sysstat to manage its own log files - Allow virtual machines to setrlimit and send itself signals. - Add labeling for /var/run/hplip- Fix POSTIN scriptlet- Merge rgmanger, corosync,pacemaker,aisexec policies to cluster_t in rhcs.pp- Fix authconfig.py labeling - Make any domains that write homedir content do it correctly - Allow glusterd to read/write anyhwere on the file system by default - Be a little more liberal with the rsync log files - Fix iscsi_admin interface - Allow iscsid_t to read /dev/urand - Fix up iscsi domain for use with unit files - Add filename transition support for spamassassin policy - Allow web plugins to use badly formated libraries - Allow nmbd_t to create samba_var_t directories - Add filename transition support for spamassassin policy - Add filename transition support for tvtime - Fix alsa_home_filetrans_alsa_home() interface - Move all userdom_filetrans_home_content() calling out of booleans - Allow logrotote to getattr on all file sytems - Remove duplicate userdom_filetrans_home_content() calling - Allow kadmind to read /etc/passwd - Dontaudit append .xsession-errors file on ecryptfs for policykit-auth - Allow antivirus domain to manage antivirus db links - Allow logrotate to read /sys - Allow mandb to setattr on man dirs - Remove mozilla_plugin_enable_homedirs boolean - Fix ftp_home_dir boolean - homedir mozilla filetrans has been moved to userdom_home_manager - homedir telepathy filetrans has been moved to userdom_home_manager - Remove gnome_home_dir_filetrans() from gnome_role_gkeyringd() - Might want to eventually write a daemon on fusefsd. - Add policy fixes for sshd [net] child from plautrba@redhat.com - Tor uses a new port - Remove bin_t for authconfig.py - Fix so only one call to userdom_home_file_trans - Allow home_manager_types to create content with the correctl label - Fix all domains that write data into the homedir to do it with the correct label - Change the postgresql to use proper boolean names, which is causing httpd_t to - not get access to postgresql_var_run_t - Hostname needs to send syslog messages - Localectl needs to be able to send dbus signals to users - Make sure userdom_filetrans_type will create files/dirs with user_home_t labeling by default - Allow user_home_manger domains to create spam* homedir content with correct labeling - Allow user_home_manger domains to create HOMEDIR/.tvtime with correct labeling - Add missing miscfiles_setattr_man_pages() interface and for now comment some rules for userdom_filetrans_type to make build process working - Declare userdom_filetrans_type attribute - userdom_manage_home_role() needs to be called withoout usertype attribute because of userdom_filetrans_type attribute - fusefsd is mounding a fuse file system on /run/user/UID/gvfs- Man pages are now generated in the build process - Allow cgred to list inotifyfs filesystem- Allow gluster to get attrs on all fs - New access required for virt-sandbox - Allow dnsmasq to execute bin_t - Allow dnsmasq to create content in /var/run/NetworkManager - Fix openshift_initrc_signal() interface - Dontaudit openshift domains doing getattr on other domains - Allow consolehelper domain to communicate with session bus - Mock should not be transitioning to any other domains, we should keep mock_t as mock_t - Update virt_qemu_ga_t policy - Allow authconfig running from realmd to restart oddjob service - Add systemd support for oddjob - Add initial policy for realmd_consolehelper_t which if for authconfig executed by realmd - Add labeling for gnashpluginrc - Allow chrome_nacl to execute /dev/zero - Allow condor domains to read /proc - mozilla_plugin_t will getattr on /core if firefox crashes - Allow condor domains to read /etc/passwd - Allow dnsmasq to execute shell scripts, openstack requires this access - Fix glusterd labeling - Allow virtd_t to interact with the socket type - Allow nmbd_t to override dac if you turned on sharing all files - Allow tuned to created kobject_uevent socket - Allow guest user to run fusermount - Allow openshift to read /proc and locale - Allow realmd to dbus chat with rpm - Add new interface for virt - Remove depracated interfaces - Allow systemd_domains read access on etc, etc_runtime and usr files, also allow them to connect stream to syslog socket - /usr/share/munin/plugins/plugin.sh should be labeled as bin_t - Remove some more unconfined_t process transitions, that I don't believe are necessary - Stop transitioning uncofnined_t to checkpc - dmraid creates /var/lock/dmraid - Allow systemd_localed to creatre unix_dgram_sockets - Allow systemd_localed to write kernel messages. - Also cleanup systemd definition a little. - Fix userdom_restricted_xwindows_user_template() interface - Label any block devices or char devices under /dev/infiniband as fixed_disk_device_t - User accounts need to dbus chat with accountsd daemon - Gnome requires all users to be able to read /proc/1/- virsh now does a setexeccon call - Additional rules required by openshift domains - Allow svirt_lxc_domains to use inherited terminals, needed to make virt-sandbox-service execute work - Allow spamd_update_t to search spamc_home_t - Avcs discovered by mounting an isci device under /mnt - Allow lspci running as logrotate to read pci.ids - Additional fix for networkmanager_read_pid_files() - Fix networkmanager_read_pid_files() interface - Allow all svirt domains to connect to svirt_socket_t - Allow virsh to set SELinux context for a process. - Allow tuned to create netlink_kobject_uevent_socket - Allow systemd-timestamp to set SELinux context - Add support for /var/lib/systemd/linger - Fix ssh_sysadm_login to be working on MLS as expected- Rename files_rw_inherited_tmp_files to files_rw_inherited_tmp_file - Add missing files_rw_inherited_tmp_files interface - Add additional interface for ecryptfs - ALlow nova-cert to connect to postgresql - Allow keystone to connect to postgresql - Allow all cups domains to getattr on filesystems - Allow pppd to send signull - Allow tuned to execute ldconfig - Allow gpg to read fips_enabled - Add additional fixes for ecryptfs - Allow httpd to work with posgresql - Allow keystone getsched and setsched- Allow gpg to read fips_enabled - Add support for /var/cache/realmd - Add support for /usr/sbin/blazer_usb and systemd support for nut - Add labeling for fenced_sanlock and allow sanclok transition to fenced_t - bitlbee wants to read own log file - Allow glance domain to send a signal itself - Allow xend_t to request that the kernel load a kernel module - Allow pacemaker to execute heartbeat lib files - cleanup new swift policy- Fix smartmontools - Fix userdom_restricted_xwindows_user_template() interface - Add xserver_xdm_ioctl_log() interface - Allow Xusers to ioctl lxdm.log to make lxdm working - Add MLS fixes to make MLS boot/log-in working - Add mls_socket_write_all_levels() also for syslogd - fsck.xfs needs to read passwd - Fix ntp_filetrans_named_content calling in init.te - Allow postgresql to create pg_log dir - Allow sshd to read rsync_data_t to make rsync working - Change ntp.conf to be labeled net_conf_t - Allow useradd to create homedirs in /run. ircd-ratbox does this and we should just allow it - Allow xdm_t to execute gstreamer home content - Allod initrc_t and unconfined domains, and sysadm_t to manage ntp - New policy for openstack swift domains - More access required for openshift_cron_t - Use cupsd_log_t instead of cupsd_var_log_t - rpm_script_roles should be used in rpm_run - Fix rpm_run() interface - Fix openshift_initrc_run() - Fix sssd_dontaudit_stream_connect() interface - Fix sssd_dontaudit_stream_connect() interface - Allow LDA's job to deliver mail to the mailbox - dontaudit block_suspend for mozilla_plugin_t - Allow l2tpd_t to all signal perms - Allow uuidgen to read /dev/random - Allow mozilla-plugin-config to read power_supply info - Implement cups_domain attribute for cups domains - We now need access to user terminals since we start by executing a command outside the tty - We now need access to user terminals since we start by executing a command outside the tty - svirt lxc containers want to execute userhelper apps, need these changes to allow this to happen - Add containment of openshift cron jobs - Allow system cron jobs to create tmp directories - Make userhelp_conf_t a config file - Change rpm to use rpm_script_roles - More fixes for rsync to make rsync wokring - Allow logwatch to domtrans to mdadm - Allow pacemaker to domtrans to ifconfig - Allow pacemaker to setattr on corosync.log - Add pacemaker_use_execmem for memcheck-amd64 command - Allow block_suspend capability - Allow create fifo_file in /tmp with pacemaker_tmp_t - Allow systat to getattr on fixed disk - Relabel /etc/ntp.conf to be net_conf_t - ntp_admin should create files in /etc with the correct label - Add interface to create ntp_conf_t files in /etc - Add additional labeling for quantum - Allow quantum to execute dnsmasq with transition- boinc_cliean wants also execmem as boinc projecs have - Allow sa-update to search admin home for /root/.spamassassin - Allow sa-update to search admin home for /root/.spamassassin - Allow antivirus domain to read net sysctl - Dontaudit attempts from thumb_t to connect to ssd - Dontaudit attempts by readahead to read sock_files - Dontaudit attempts by readahead to read sock_files - Create tmpfs file while running as wine as user_tmpfs_t - Dontaudit attempts by readahead to read sock_files - libmpg ships badly created librarie- Change ssh_use_pts to use macro and only inherited sshd_devpts_t - Allow confined users to read systemd_logind seat information - libmpg ships badly created libraries - Add support for strongswan.service - Add labeling for strongswan - Allow l2tpd_t to read network manager content in /run directory - Allow rsync to getattr any file in rsync_data_t - Add labeling and filename transition for .grl-podcasts- mount.glusterfs executes glusterfsd binary - Allow systemd_hostnamed_t to stream connect to systemd - Dontaudit any user doing a access check - Allow obex-data-server to request the kernel to load a module - Allow gpg-agent to manage gnome content (~/.cache/gpg-agent-info) - Allow gpg-agent to read /proc/sys/crypto/fips_enabled - Add new types for antivirus.pp policy module - Allow gnomesystemmm_t caps because of ioprio_set - Make sure if mozilla_plugin creates files while in permissive mode, they get created with the correct label, user_home_t - Allow gnomesystemmm_t caps because of ioprio_set - Allow NM rawip socket - files_relabel_non_security_files can not be used with boolean - Add interface to thumb_t dbus_chat to allow it to read remote process state - ALlow logrotate to domtrans to mdadm_t - kde gnomeclock wants to write content to /tmp- kde gnomeclock wants to write content to /tmp - /usr/libexec/kde4/kcmdatetimehelper attempts to create /root/.kde - Allow blueman_t to rwx zero_device_t, for some kind of jre - Allow mozilla_plugin_t to rwx zero_device_t, for some kind of jre - Ftp full access should be allowed to create directories as well as files - Add boolean to allow rsync_full_acces, so that an rsync server can write all - over the local machine - logrotate needs to rotate logs in openshift directories, needs back port to RHEL6 - Add missing vpnc_roles type line - Allow stapserver to write content in /tmp - Allow gnome keyring to create keyrings dir in ~/.local/share - Dontaudit thumb drives trying to bind to udp sockets if nis_enabled is turned on - Add interface to colord_t dbus_chat to allow it to read remote process state - Allow colord_t to read cupsd_t state - Add mate-thumbnail-font as thumnailer - Allow sectoolm to sys_ptrace since it is looking at other proceses /proc data. - Allow qpidd to list /tmp. Needed by ssl - Only allow init_t to transition to rsync_t domain, not initrc_t. This should be back ported to F17, F18 - - Added systemd support for ksmtuned - Added booleans ksmtuned_use_nfs ksmtuned_use_cifs - firewalld seems to be creating mmap files which it needs to execute in /run /tmp and /dev/shm. Would like to clean this up but for now we will allow - Looks like qpidd_t needs to read /dev/random - Lots of probing avc's caused by execugting gpg from staff_t - Dontaudit senmail triggering a net_admin avc - Change thumb_role to use thumb_run, not sure why we have a thumb_role, needs back port - Logwatch does access check on mdadm binary - Add raid_access_check_mdadm() iterface- Fix systemd_manage_unit_symlinks() interface - Call systemd_manage_unit_symlinks(() which is correct interface - Add filename transition for opasswd - Switch gnomeclock_dbus_chat to systemd_dbus_chat_timedated since we have switched the name of gnomeclock - Allow sytstemd-timedated to get status of init_t - Add new systemd policies for hostnamed and rename gnomeclock_t to systemd_timedate_t - colord needs to communicate with systemd and systemd_logind, also remove duplicate rules - Switch gnomeclock_dbus_chat to systemd_dbus_chat_timedated since we have switched the name of gnomeclock - Allow gpg_t to manage all gnome files - Stop using pcscd_read_pub_files - New rules for xguest, dontaudit attempts to dbus chat - Allow firewalld to create its mmap files in tmpfs and tmp directories - Allow firewalld to create its mmap files in tmpfs and tmp directories - run unbound-chkconf as named_t, so it can read dnssec - Colord is reading xdm process state, probably reads state of any apps that sends dbus message - Allow mdadm_t to change the kernel scheduler - mythtv policy - Update mandb_admin() interface - Allow dsspam to listen on own tpc_socket - seutil_filetrans_named_content needs to be optional - Allow sysadm_t to execute content in his homedir - Add attach_queue to tun_socket, new patch from Paul Moore - Change most of selinux configuration types to security_file_type. - Add filename transition rules for selinux configuration - ssh into a box with -X -Y requires ssh_use_ptys - Dontaudit thumb drives trying to bind to udp sockets if nis_enabled is turned on - Allow all unpriv userdomains to send dbus messages to hostnamed and timedated - New allow rules found by Tom London for systemd_hostnamed- Allow systemd-tmpfiles to relabel lpd spool files - Ad labeling for texlive bash scripts - Add xserver_filetrans_fonts_cache_home_content() interface - Remove duplicate rules from *.te - Add support for /var/lock/man-db.lock - Add support for /var/tmp/abrt(/.*)? - Add additional labeling for munin cgi scripts - Allow httpd_t to read munin conf files - Allow certwatch to read meminfo - Fix nscd_dontaudit_write_sock_file() interfac - Fix gnome_filetrans_home_content() to include also "fontconfig" dir as cache_home_t - llow mozilla_plugin_t to create HOMEDIR/.fontconfig with the proper labeling- Allow gnomeclock to talk to puppet over dbus - Allow numad access discovered by Dominic - Add support for HOME_DIR/.maildir - Fix attribute_role for mozilla_plugin_t domain to allow staff_r to access this domain - Allow udev to relabel udev_var_run_t lnk_files - New bin_t file in mcelog- Remove all mcs overrides and replace with t1 != mcs_constrained_types - Add attribute_role for iptables - mcs_process_set_categories needs to be called for type - Implement additional role_attribute statements - Sodo domain is attempting to get the additributes of proc_kcore_t - Unbound uses port 8953 - Allow svirt_t images to compromise_kernel when using pci-passthrough - Add label for dns lib files - Bluetooth aquires a dbus name - Remove redundant files_read_usr_file calling - Remove redundant files_read_etc_file calling - Fix mozilla_run_plugin() - Add role_attribute support for more domains- Mass merge with upstream- Bump the policy version to 28 to match selinux userspace - Rebuild versus latest libsepol- Add systemd_status_all_unit_files() interface - Add support for nshadow - Allow sysadm_t to administrate the postfix domains - Add interface to setattr on isid directories for use by tmpreaper - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Add systemd_status_all_unit_files() interface - Add support for nshadow - Allow sysadm_t to administrate the postfix domains - Add interface to setattr on isid directories for use by tmpreaper - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - Allow sshd_t sys_admin for use with afs logins - Add labeling for /var/named/chroot/etc/localtim- Allow setroubleshoot_fixit to execute rpm - zoneminder needs to connect to httpd ports where remote cameras are listening - Allow firewalld to execute content created in /run directory - Allow svirt_t to read generic certs - Dontaudit leaked ps content to mozilla plugin - Allow sshd_t sys_admin for use with afs logins - Allow systemd to read/write all sysctls - init scripts are creating systemd_unit_file_t directories- systemd_logind_t is looking at all files under /run/user/apache - Allow systemd to manage all user tmp files - Add labeling for /var/named/chroot/etc/localtime - Allow netlabel_peer_t type to flow over netif_t and node_t, and only be hindered by MLS, need back port to RHEL6 - Keystone is now using a differnt port - Allow xdm_t to use usbmuxd daemon to control sound - Allow passwd daemon to execute gnome_exec_keyringd - Fix chrome_sandbox policy - Add labeling for /var/run/checkquorum-timer - More fixes for the dspam domain, needs back port to RHEL6 - More fixes for the dspam domain, needs back port to RHEL6 - sssd needs to connect to kerberos password port if a user changes his password - Lots of fixes from RHEL testing of dspam web - Allow chrome and mozilla_plugin to create msgq and semaphores - Fixes for dspam cgi scripts - Fixes for dspam cgi scripts - Allow confine users to ptrace screen - Backport virt_qemu_ga_t changes from RHEL - Fix labeling for dspam.cgi needed for RHEL6 - We need to back port this policy to RHEL6, for lxc domains - Dontaudit attempts to set sys_resource of logrotate - Allow corosync to read/write wdmd's tmpfs files - I see a ptrace of mozilla_plugin_t by staff_t, will allow without deny_ptrace being set - Allow cron jobs to read bind config for unbound - libvirt needs to inhibit systemd - kdumpctl needs to delete boot_t files - Fix duplicate gnome_config_filetrans - virtd_lxc_t is using /dev/fuse - Passenger needs to create a directory in /var/log, needs a backport to RHEL6 for openshift - apcupsd can be setup to listen to snmp trafic - Allow transition from kdumpgui to kdumpctl - Add fixes for munin CGI scripts - Allow deltacloud to connect to openstack at the keystone port - Allow domains that transition to svirt domains to be able to signal them - Fix file context of gstreamer in .cache directory - libvirt is communicating with logind - NetworkManager writes to the systemd inhibit pipe- Allow munin disk plugins to get attributes of all directories - Allow munin disk plugins to get attributes of all directorie - Allow logwatch to get attributes of all directories - Fix networkmanager_manage_lib() interface - Fix gnome_manage_config() to allow to manage sock_file - Fix virtual_domain_context - Add support for dynamic DNS for DHCPv6- Allow svirt to use netlink_route_socket which was a part of auth_use_nsswitch - Add additional labeling for /var/www/openshift/broker - Fix rhev policy - Allow openshift_initrc domain to dbus chat with systemd_logind - Allow httpd to getattr passenger log file if run_stickshift - Allow consolehelper-gtk to connect to xserver - Add labeling for the tmp-inst directory defined in pam_namespace.conf - Add lvm_metadata_t labeling for /etc/multipath- consoletype is no longer used- Add label for efivarfs - Allow certmonger to send signal to itself - Allow plugin-config to read own process status - Add more fixes for pacemaker - apache/drupal can run clamscan on uploaded content - Allow chrome_sandbox_nacl_t to read pid 1 content- Fix MCS Constraints to control ingres and egres controls on the network. - Change name of svirt_nokvm_t to svirt_tcg_t - Allow tuned to request the kernel to load kernel modules- Label /var/lib/pgsql/.ssh as ssh_home_t - Add labeling for /usr/bin/pg_ctl - Allow systemd-logind to manage keyring user tmp dirs - Add support for 7389/tcp port - gems seems to be placed in lots of places - Since xdm is running a full session, it seems to be trying to execute lots of executables via dbus - Add back tcp/8123 port as http_cache port - Add ovirt-guest-agent\.pid labeling - Allow xend to run scsi_id - Allow rhsmcertd-worker to read "physical_package_id" - Allow pki_tomcat to connect to ldap port - Allow lpr to read /usr/share/fonts - Allow open file from CD/DVD drive on domU - Allow munin services plugins to talk to SSSD - Allow all samba domains to create samba directory in var_t directories - Take away svirt_t ability to use nsswitch - Dontaudit attempts by openshift to read apache logs - Allow apache to create as well as append _ra_content_t - Dontaudit sendmail_t reading a leaked file descriptor - Add interface to have admin transition /etc/prelink.cache to the proper label - Add sntp support to ntp policy - Allow firewalld to dbus chat with devicekit_power - Allow tuned to call lsblk - Allow tor to read /proc/sys/kernel/random/uuid - Add tor_can_network_relay boolean- Add openshift_initrc_signal() interface - Fix typos - dspam port is treat as spamd_port_t - Allow setroubleshoot to getattr on all executables - Allow tuned to execute profiles scripts in /etc/tuned - Allow apache to create directories to store its log files - Allow all directories/files in /var/log starting with passenger to be labeled passenger_log_t - Looks like apache is sending sinal to openshift_initrc_t now,needs back port to RHEL6 - Allow Postfix to be configured to listen on TCP port 10026 for email from DSPAM - Add filename transition for /etc/tuned/active_profile - Allow condor_master to send mails - Allow condor_master to read submit.cf - Allow condor_master to create /tmp files/dirs - Allow condor_mater to send sigkill to other condor domains - Allow condor_procd sigkill capability - tuned-adm wants to talk with tuned daemon - Allow kadmind and krb5kdc to also list sssd_public_t - Allow accountsd to dbus chat with init - Fix git_read_generic_system_content_files() interface - pppd wants sys_nice by nmcli because of "syscall=sched_setscheduler" - Fix mozilla_plugin_can_network_connect to allow to connect to all ports - Label all munin plugins which are not covered by munin plugins policy as unconfined_munin_plugin_exec_t - dspam wants to search /var/spool for opendkim data - Revert "Add support for tcp/10026 port as dspam_port_t" - Turning on labeled networking requires additional access for netlabel_peer_t; these allow rules need to be back ported to RHEL6 - Allow all application domains to use fifo_files passed in from userdomains, also allow them to write to tmp_files inherited from userdomain - Allow systemd_tmpfiles_t to setattr on mandb_cache_t- consolekit.pp was not removed from the postinstall script- Add back consolekit policy - Silence bootloader trying to use inherited tty - Silence xdm_dbusd_t trying to execute telepathy apps - Fix shutdown avcs when machine has unconfined.pp disabled - The host and a virtual machine can share the same printer on a usb device - Change oddjob to transition to a ranged openshift_initr_exec_t when run from oddjob - Allow abrt_watch_log_t to execute bin_t - Allow chrome sandbox to write content in ~/.config/chromium - Dontaudit setattr on fontconfig dir for thumb_t - Allow lircd to request the kernel to load module - Make rsync as userdom_home_manager - Allow rsync to search automount filesystem - Add fixes for pacemaker- Add support for 4567/tcp port - Random fixes from Tuomo Soini - xdm wants to get init status - Allow programs to run in fips_mode - Add interface to allow the reading of all blk device nodes - Allow init to relabel rpcbind sock_file - Fix labeling for lastlog and faillog related to logrotate - ALlow aeolus_configserver to use TRAM port - Add fixes for aeolus_configserver - Allow snmpd to connect to snmp port - Allow spamd_update to create spamd_var_lib_t directories - Allow domains that can read sssd_public_t files to also list the directory - Remove miscfiles_read_localization, this is defined for all domains- Allow syslogd to request the kernel to load a module - Allow syslogd_t to read the network state information - Allow xdm_dbusd_t connect to the system DBUS - Add support for 7389/tcp port - Allow domains to read/write all inherited sockets - Allow staff_t to read kmsg - Add awstats_purge_apache_log boolean - Allow ksysguardproces to read /.config/Trolltech.conf - Allow passenger to create and append puppet log files - Add puppet_append_log and puppet_create_log interfaces - Add puppet_manage_log() interface - Allow tomcat domain to search tomcat_var_lib_t - Allow pki_tomcat_t to connect to pki_ca ports - Allow pegasus_t to have net_admin capability - Allow pegasus_t to write /sys/class/net//flags - Allow mailserver_delivery to manage mail_home_rw_t lnk_files - Allow fetchmail to create log files - Allow gnomeclock to manage home config in .kde - Allow bittlebee to read kernel sysctls - Allow logrotate to list /root- Fix userhelper_console_role_template() - Allow enabling Network Access Point service using blueman - Make vmware_host_t as unconfined domain - Allow authenticate users in webaccess via squid, using mysql as backend - Allow gathers to get various metrics on mounted file systems - Allow firewalld to read /etc/hosts - Fix cron_admin_role() to make sysadm cronjobs running in the sysadm_t instead of cronjob_t - Allow kdumpgui to read/write to zipl.conf - Commands needed to get mock to build from staff_t in enforcing mode - Allow mdadm_t to manage cgroup files - Allow all daemons and systemprocesses to use inherited initrc_tmp_t files - dontaudit ifconfig_t looking at fifo_files that are leaked to it - Add lableing for Quest Authentication System- Fix filetrans interface definitions - Dontaudit xdm_t to getattr on BOINC lib files - Add systemd_reload_all_services() interface - Dontaudit write access on /var/lib/net-snmp/mib_indexes - Only stop mcsuntrustedproc from relableing files - Allow accountsd to dbus chat with gdm - Allow realmd to getattr on all fs - Allow logrotate to reload all services - Add systemd unit file for radiusd - Allow winbind to create samba pid dir - Add labeling for /var/nmbd/unexpected - Allow chrome and mozilla plugin to connect to msnp ports- Fix storage_rw_inherited_fixed_disk_dev() to cover also blk_file - Dontaudit setfiles reading /dev/random - On initial boot gnomeclock is going to need to be set buy gdm - Fix tftp_read_content() interface - Random apps looking at kernel file systems - Testing virt with lxc requiers additional access for virsh_t - New allow rules requied for latest libvirt, libvirt talks directly to journald,lxc setup tool needs compromize_kernel,and we need ipc_lock in the container - Allow MPD to read /dev/radnom - Allow sandbox_web_type to read logind files which needs to read pulseaudio - Allow mozilla plugins to read /dev/hpet - Add labeling for /var/lib/zarafa-webap - Allow BOINC client to use an HTTP proxy for all connections - Allow rhsmertd to domain transition to dmidecod - Allow setroubleshootd to send D-Bus msg to ABRT- Define usbtty_device_t as a term_tty - Allow svnserve to accept a connection - Allow xend manage default virt_image_t type - Allow prelink_cron_system_t to overide user componant when executing cp - Add labeling for z-push - Gnomeclock sets the realtime clock - Openshift seems to be storing apache logs in /var/lib/openshift/.log/httpd - Allow lxc domains to use /dev/random and /dev/urandom- Add port defintion for tcp/9000 - Fix labeling for /usr/share/cluster/checkquorum to label also checkquorum.wdmd - Add rules and labeling for $HOME/cache/\.gstreamer-.* directory - Add support for CIM provider openlmi-networking which uses NetworkManager dbus API - Allow shorewall_t to create netlink_socket - Allow krb5admind to block suspend - Fix labels on /var/run/dlm_controld /var/log/dlm_controld - Allow krb5kdc to block suspend - gnomessytemmm_t needs to read /etc/passwd - Allow cgred to read all sysctls- Allow all domains to read /proc/sys/vm/overcommit_memory - Make proc_numa_t an MLS Trusted Object - Add /proc/numactl support for confined users - Allow ssh_t to connect to any port > 1023 - Add openvswitch domain - Pulseaudio tries to create directories in gnome_home_t directories - New ypbind pkg wants to search /var/run which is caused by sd_notify - Allow NM to read certs on NFS/CIFS using use_nfs_*, use_samba_* booleans - Allow sanlock to read /dev/random - Treat php-fpm with httpd_t - Allow domains that can read named_conf_t to be able to list the directories - Allow winbind to create sock files in /var/run/samba- Add smsd policy - Add support for OpenShift sbin labelin - Add boolean to allow virt to use rawip - Allow mozilla_plugin to read all file systems with noxattrs support - Allow kerberos to write on anon_inodefs fs - Additional access required by fenced - Add filename transitions for passwd.lock/group.lock - UPdate man pages - Create coolkey directory in /var/cache with the correct label- Fix label on /etc/group.lock - Allow gnomeclock to create lnk_file in /etc - label /root/.pki as a home_cert_t - Add interface to make sure rpcbind.sock is created with the correct label - Add definition for new directory /var/lib/os-probe and bootloader wants to read udev rules - opendkim should be a part of milter - Allow libvirt to set the kernel sched algorythm - Allow mongod to read sysfs_t - Add authconfig policy - Remove calls to miscfiles_read_localization all domains get this - Allow virsh_t to read /root/.pki/ content - Add label for log directory under /var/www/stickshift- Allow getty to setattr on usb ttys - Allow sshd to search all directories for sshd_home_t content - Allow staff domains to send dbus messages to kdumpgui - Fix labels on /etc/.pwd.lock and friends to be passwd_file_t - Dontaudit setfiles reading urand - Add files_dontaudit_list_tmp() for domains to which we added sys_nice/setsched - Allow staff_gkeyringd_t to read /home/$USER/.local/share/keyrings dir - Allow systemd-timedated to read /dev/urandom - Allow entropyd_t to read proc_t (meminfo) - Add unconfined munin plugin - Fix networkmanager_read_conf() interface - Allow blueman to list /tmp which is needed by sys_nic/setsched - Fix label of /etc/mail/aliasesdb-stamp - numad is searching cgroups - realmd is communicating with networkmanager using dbus - Lots of fixes to try to get kdump to work- Allow loging programs to dbus chat with realmd - Make apache_content_template calling as optional - realmd is using policy kit- Add new selinuxuser_use_ssh_chroot boolean - dbus needs to be able to read/write inherited fixed disk device_t passed through it - Cleanup netutils process allow rule - Dontaudit leaked fifo files from openshift to ping - sanlock needs to read mnt_t lnk files - Fail2ban needs to setsched and sys_nice- Change default label of all files in /var/run/rpcbind - Allow sandbox domains (java) to read hugetlbfs_t - Allow awstats cgi content to create tmp files and read apache log files - Allow setuid/setgid for cupsd-config - Allow setsched/sys_nice pro cupsd-config - Fix /etc/localtime sym link to be labeled locale_t - Allow sshd to search postgresql db t since this is a homedir - Allow xwindows users to chat with realmd - Allow unconfined domains to configure all files and null_device_t service- Adopt pki-selinux policy- pki is leaking which we dontaudit until a pki code fix - Allow setcap for arping - Update man pages - Add labeling for /usr/sbin/mcollectived - pki fixes - Allow smokeping to execute fping in the netutils_t domain- Allow mount to relabelfrom unlabeled file systems - systemd_logind wants to send and receive messages from devicekit disk over dbus to make connected mouse working - Add label to get bin files under libreoffice labeled correctly - Fix interface to allow executing of base_ro_file_type - Add fixes for realmd - Update pki policy - Add tftp_homedir boolean - Allow blueman sched_setscheduler - openshift user domains wants to r/w ssh tcp sockets- Additional requirements for disable unconfined module when booting - Fix label of systemd script files - semanage can use -F /dev/stdin to get input - syslog now uses kerberos keytabs - Allow xserver to compromise_kernel access - Allow nfsd to write to mount_var_run_t when running the mount command - Add filename transition rule for bin_t directories - Allow files to read usr_t lnk_files - dhcpc wants chown - Add support for new openshift labeling - Clean up for tunable+optional statements - Add labeling for /usr/sbin/mkhomedir_helper - Allow antivirus domain to managa amavis spool files - Allow rpcbind_t to read passwd - Allow pyzor running as spamc to manage amavis spool- Add interfaces to read kernel_t proc info - Missed this version of exec_all - Allow anyone who can load a kernel module to compromise kernel - Add oddjob_dbus_chat to openshift apache policy - Allow chrome_sandbox_nacl_t to send signals to itself - Add unit file support to usbmuxd_t - Allow all openshift domains to read sysfs info - Allow openshift domains to getattr on all domains- MLS fixes from Dan - Fix name of capability2 secure_firmware->compromise_kerne- Allow xdm to search all file systems - Add interface to allow the config of all files - Add rngd policy - Remove kgpg as a gpg_exec_t type - Allow plymouthd to block suspend - Allow systemd_dbus to config any file - Allow system_dbus_t to configure all services - Allow freshclam_t to read usr_files - varnishd requires execmem to load modules- Allow semanage to verify types - Allow sudo domain to execute user home files - Allow session_bus_type to transition to user_tmpfs_t - Add dontaudit caused by yum updates - Implement pki policy but not activated- tuned wants to getattr on all filesystems - tuned needs also setsched. The build is needed for test day- Add policy for qemu-qa - Allow razor to write own config files - Add an initial antivirus policy to collect all antivirus program - Allow qdisk to read usr_t - Add additional caps for vmware_host - Allow tmpfiles_t to setattr on mandb_cache_t - Dontaudit leaked files into mozilla_plugin_config_t - Allow wdmd to getattr on tmpfs - Allow realmd to use /dev/random - allow containers to send audit messages - Allow root mount any file via loop device with enforcing mls policy - Allow tmpfiles_t to setattr on mandb_cache_t - Allow tmpfiles_t to setattr on mandb_cache_t - Make userdom_dontaudit_write_all_ not allow open - Allow init scripts to read all unit files - Add support for saphostctrl ports- Add kernel_read_system_state to sandbox_client_t - Add some of the missing access to kdumpgui - Allow systemd_dbusd_t to status the init system - Allow vmnet-natd to request the kernel to load a module - Allow gsf-office-thum to append .cache/gdm/session.log - realmd wants to read .config/dconf/user - Firewalld wants sys_nice/setsched - Allow tmpreaper to delete mandb cache files - Firewalld wants sys_nice/setsched - Allow firewalld to perform a DNS name resolution - Allown winbind to read /usr/share/samba/codepages/lowcase.dat - Add support for HTTPProxy* in /etc/freshclam.conf - Fix authlogin_yubike boolean - Extend smbd_selinux man page to include samba booleans - Allow dhcpc to execute consoletype - Allow ping to use inherited tmp files created in init scripts - On full relabel with unconfined domain disabled, initrc was running some chcon's - Allow people who delete man pages to delete mandb cache files- Add missing permissive domains- Add new mandb policy - ALlow systemd-tmpfiles_t to relabel mandb_cache_t - Allow logrotate to start all unit files- Add fixes for ctbd - Allow nmbd to stream connect to ctbd - Make cglear_t as nsswitch_domain - Fix bogus in interfaces - Allow openshift to read/write postfix public pipe - Add postfix_manage_spool_maildrop_files() interface - stickshift paths have been renamed to openshift - gnome-settings-daemon wants to write to /run/systemd/inhibit/ pipes - Update man pages, adding ENTRYPOINTS- Add mei_device_t - Make sure gpg content in homedir created with correct label - Allow dmesg to write to abrt cache files - automount wants to search virtual memory sysctls - Add support for hplip logs stored in /var/log/hp/tmp - Add labeling for /etc/owncloud/config.php - Allow setroubleshoot to send analysys to syslogd-journal - Allow virsh_t to interact with new fenced daemon - Allow gpg to write to /etc/mail/spamassassiin directories - Make dovecot_deliver_t a mail server delivery type - Add label for /var/tmp/DNS25- Fixes for tomcat_domain template interface- Remove init_systemd and init_upstart boolean, Move init_daemon_domain and init_system_domain to use attributes - Add attribute to all base os types. Allow all domains to read all ro base OS types- Additional unit files to be defined as power unit files - Fix more boolean names- Fix boolean name so subs will continue to work- dbus needs to start getty unit files - Add interface to allow system_dbusd_t to start the poweroff service - xdm wants to exec telepathy apps - Allow users to send messages to systemdlogind - Additional rules needed for systemd and other boot apps - systemd wants to list /home and /boot - Allow gkeyringd to write dbus/conf file - realmd needs to read /dev/urand - Allow readahead to delete /.readahead if labeled root_t, might get created before policy is loaded- Fixes to safe more rules - Re-write tomcat_domain_template() - Fix passenger labeling - Allow all domains to read man pages - Add ephemeral_port_t to the 'generic' port interfaces - Fix the names of postgresql booleans- Stop using attributes form netlabel_peer and syslog, auth_use_nsswitch setsup netlabel_peer - Move netlable_peer check out of booleans - Remove call to recvfrom_netlabel for kerberos call - Remove use of attributes when calling syslog call - Move -miscfiles_read_localization to domain.te to save hundreds of allow rules - Allow all domains to read locale files. This eliminates around 1500 allow rules- Cleanup nis_use_ypbind_uncond interface - Allow rndc to block suspend - tuned needs to modify the schedule of the kernel - Allow svirt_t domains to read alsa configuration files - ighten security on irc domains and make sure they label content in homedir correctly - Add filetrans_home_content for irc files - Dontaudit all getattr access for devices and filesystems for sandbox domains - Allow stapserver to search cgroups directories - Allow all postfix domains to talk to spamd- Add interfaces to ignore setattr until kernel fixes this to be checked after the DAC check - Change pam_t to pam_timestamp_t - Add dovecot_domain attribute and allow this attribute block_suspend capability2 - Add sanlock_use_fusefs boolean - numad wants send/recieve msg - Allow rhnsd to send syslog msgs - Make piranha-pulse as initrc domain - Update openshift instances to dontaudit setattr until the kernel is fixed.- Fix auth_login_pgm_domain() interface to allow domains also managed user tmp dirs because of #856880 related to pam_systemd - Remove pam_selinux.8 which conflicts with man page owned by the pam package - Allow glance-api to talk to mysql - ABRT wants to read Xorg.0.log if if it detects problem with Xorg - Fix gstreamer filename trans. interface- Man page fixes by Dan Walsh- Allow postalias to read postfix config files - Allow man2html to read man pages - Allow rhev-agentd to search all mountpoints - Allow rhsmcertd to read /dev/random - Add tgtd_stream_connect() interface - Add cyrus_write_data() interface - Dontaudit attempts by sandboxX clients connectiing to the xserver_port_t - Add port definition for tcp/81 as http_port_t - Fix /dev/twa labeling - Allow systemd to read modules config- Merge openshift policy - Allow xauth to read /dev/urandom - systemd needs to relabel content in /run/systemd directories - Files unconfined should be able to perform all services on all files - Puppet tmp file can be leaked to all domains - Dontaudit rhsmcertd-worker to search /root/.local - Allow chown capability for zarafa domains - Allow system cronjobs to runcon into openshift domains - Allow virt_bridgehelper_t to manage content in the svirt_home_t labeled directories- nmbd wants to create /var/nmbd - Stop transitioning out of anaconda and firstboot, just causes AVC messages - Allow clamscan to read /etc files - Allow bcfg2 to bind cyphesis port - heartbeat should be run as rgmanager_t instead of corosync_t - Add labeling for /etc/openldap/certs - Add labeling for /opt/sartest directory - Make crontab_t as userdom home reader - Allow tmpreaper to list admin_home dir - Add defition for imap_0 replay cache file - Add support for gitolite3 - Allow virsh_t to send syslog messages - allow domains that can read samba content to be able to list the directories also - Add realmd_dbus_chat to allow all apps that use nsswitch to talk to realmd - Separate out sandbox from sandboxX policy so we can disable it by default - Run dmeventd as lvm_t - Mounting on any directory requires setattr and write permissions - Fix use_nfs_home_dirs() boolean - New labels for pam_krb5 - Allow init and initrc domains to sys_ptrace since this is needed to look at processes not owned by uid 0 - Add realmd_dbus_chat to allow all apps that use nsswitch to talk to realmd- Separate sandbox policy into sandbox and sandboxX, and disable sandbox by default on fresh installs - Allow domains that can read etc_t to read etc_runtime_t - Allow all domains to use inherited tmpfiles- Allow realmd to read resolv.conf - Add pegasus_cache_t type - Label /usr/sbin/fence_virtd as virsh_exec_t - Add policy for pkcsslotd - Add support for cpglockd - Allow polkit-agent-helper to read system-auth-ac - telepathy-idle wants to read gschemas.compiled - Allow plymouthd to getattr on fs_t - Add slpd policy - Allow ksysguardproces to read/write config_usr_t- Fix labeling substitution so rpm will label /lib/systemd content correctly- Add file name transitions for ttyACM0 - spice-vdagent(d)'s are going to log over to syslog - Add sensord policy - Add more fixes for passenger policy related to puppet - Allow wdmd to create wdmd_tmpfs_t - Fix labeling for /var/run/cachefilesd\.pid - Add thumb_tmpfs_t files type- Allow svirt domains to manage the network since this is containerized - Allow svirt_lxc_net_t to send audit messages- Make "snmpwalk -mREDHAT-CLUSTER-MIB ...." working - Allow dlm_controld to execute dlm_stonith labeled as bin_t - Allow GFS2 working on F17 - Abrt needs to execute dmesg - Allow jockey to list the contents of modeprobe.d - Add policy for lightsquid as squid_cron_t - Mailscanner is creating files and directories in /tmp - dmesg is now reading /dev/kmsg - Allow xserver to communicate with secure_firmware - Allow fsadm tools (fsck) to read /run/mount contnet - Allow sysadm types to read /dev/kmsg -- Allow postfix, sssd, rpcd to block_suspend - udev seems to need secure_firmware capability - Allow virtd to send dbus messages to firewalld so it can configure the firewall- Fix labeling of content in /run created by virsh_t - Allow condor domains to read kernel sysctls - Allow condor_master to connect to amqp - Allow thumb drives to create shared memory and semaphores - Allow abrt to read mozilla_plugin config files - Add labels for lightsquid - Default files in /opt and /usr that end in .cgi as httpd_sys_script_t, allow - dovecot_auth_t uses ldap for user auth - Allow domains that can read dhcp_etc_t to read lnk_files - Add more then one watchdog device - Allow useradd_t to manage etc_t files so it can rename it and edit them - Fix invalid class dir should be fifo_file - Move /run/blkid to fsadm and make sure labeling is correct- Fix bogus regex found by eparis - Fix manage run interface since lvm needs more access - syslogd is searching cgroups directory - Fixes to allow virt-sandbox-service to manage lxc var run content- Fix Boolean settings - Add new libjavascriptcoregtk as textrel_shlib_t - Allow xdm_t to create xdm_home_t directories - Additional access required for systemd - Dontaudit mozilla_plugin attempts to ipc_lock - Allow tmpreaper to delete unlabeled files - Eliminate screen_tmp_t and allow it to manage user_tmp_t - Dontaudit mozilla_plugin_config_t to append to leaked file descriptors - Allow web plugins to connect to the asterisk ports - Condor will recreate the lock directory if it does not exist - Oddjob mkhomedir needs to connectto user processes - Make oddjob_mkhomedir_t a userdom home manager- Put placeholder back in place for proper numbering of capabilities - Systemd also configures init scripts- Fix ecryptfs interfaces - Bootloader seems to be trolling around /dev/shm and /dev - init wants to create /etc/systemd/system-update.target.wants - Fix systemd_filetrans call to move it out of tunable - Fix up policy to work with systemd userspace manager - Add secure_firmware capability and remove bogus epolwakeup - Call seutil_*_login_config interfaces where should be needed - Allow rhsmcertd to send signal to itself - Allow thin domains to send signal to itself - Allow Chrome_ChildIO to read dosfs_t- Add role rules for realmd, sambagui- Add new type selinux_login_config_t for /etc/selinux//logins/ - Additional fixes for seutil_manage_module_store() - dbus_system_domain() should be used with optional_policy - Fix svirt to be allowed to use fusefs file system - Allow login programs to read /run/ data created by systemd_login - sssd wants to write /etc/selinux//logins/ for SELinux PAM module - Fix svirt to be allowed to use fusefs file system - Allow piranha domain to use nsswitch - Sanlock needs to send Kill Signals to non root processes - Pulseaudio wants to execute /run/user/PID/.orc- Fix saslauthd when it tries to read /etc/shadow - Label gnome-boxes as a virt homedir - Need to allow svirt_t ability to getattr on nfs_t file systems - Update sanlock policy to solve all AVC's - Change confined users can optionally manage virt content - Handle new directories under ~/.cache - Add block suspend to appropriate domains - More rules required for containers - Allow login programs to read /run/ data created by systemd_logind - Allow staff users to run svirt_t processes- Update to upstream- More fixes for systemd to make rawhide booting from Dan Walsh- Add systemd fixes to make rawhide booting- Add systemd_logind_inhibit_var_run_t attribute - Remove corenet_all_recvfrom_unlabeled() for non-contrib policies because we moved it to domain.if for all domain_type - Add interface for mysqld to dontaudit signull to all processes - Label new /var/run/journal directory correctly - Allow users to inhibit suspend via systemd - Add new type for the /var/run/inhibit directory - Add interface to send signull to systemd_login so avahi can send them - Allow systemd_passwd to send syslog messages - Remove corenet_all_recvfrom_unlabeled() calling fro policy files - Allow editparams.cgi running as httpd_bugzilla_script_t to read /etc/group - Allow smbd to read cluster config - Add additional labeling for passenger - Allow dbus to inhibit suspend via systemd - Allow avahi to send signull to systemd_login- Add interface to dontaudit getattr access on sysctls - Allow sshd to execute /bin/login - Looks like xdm is recreating the xdm directory in ~/.cache/ on login - Allow syslog to use the leaked kernel_t unix_dgram_socket from system-jounald - Fix semanage to work with unconfined domain disabled on F18 - Dontaudit attempts by mozilla plugins to getattr on all kernel sysctls - Virt seems to be using lock files - Dovecot seems to be searching directories of every mountpoint - Allow jockey to read random/urandom, execute shell and install third-party drivers - Add aditional params to allow cachedfiles to manage its content - gpg agent needs to read /dev/random - The kernel hands an svirt domains /SYSxxxxx which is a tmpfs that httpd wants to read and write - Add a bunch of dontaudit rules to quiet svirt_lxc domains - Additional perms needed to run svirt_lxc domains - Allow cgclear to read cgconfig - Allow sys_ptrace capability for snmp - Allow freshclam to read /proc - Allow procmail to manage /home/user/Maildir content - Allow NM to execute wpa_cli - Allow amavis to read clamd system state - Regenerate man pages- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Add realmd and stapserver policies - Allow useradd to manage stap-server lib files - Tighten up capabilities for confined users - Label /etc/security/opasswd as shadow_t - Add label for /dev/ecryptfs - Allow condor_startd_t to start sshd with the ranged - Allow lpstat.cups to read fips_enabled file - Allow pyzor running as spamc_t to create /root/.pyzor directory - Add labelinf for amavisd-snmp init script - Add support for amavisd-snmp - Allow fprintd sigkill self - Allow xend (w/o libvirt) to start virtual machines - Allow aiccu to read /etc/passwd - Allow condor_startd to Make specified domain MCS trusted for setting any category set for the processes it executes - Add condor_startd_ranged_domtrans_to() interface - Add ssd_conf_t for /etc/sssd - accountsd needs to fchown some files/directories - Add ICACLient and zibrauserdata as mozilla_filetrans_home_content - SELinux reports afs_t needs dac_override to read /etc/mtab, even though everything works, adding dontaudit - Allow xend_t to read the /etc/passwd file- Until we figure out how to fix systemd issues, allow all apps that send syslog messages to send them to kernel_t - Add init_access_check() interface - Fix label on /usr/bin/pingus to not be labeled as ping_exec_t - Allow tcpdump to create a netlink_socket - Label newusers like useradd - Change xdm log files to be labeled xdm_log_t - Allow sshd_t with privsep to work in MLS - Allow freshclam to update databases thru HTTP proxy - Allow s-m-config to access check on systemd - Allow abrt to read public files by default - Fix amavis_create_pid_files() interface - Add labeling and filename transition for dbomatic.log - Allow system_dbusd_t to stream connect to bluetooth, and use its socket - Allow amavisd to execute fsav - Allow tuned to use sys_admin and sys_nice capabilities - Add php-fpm policy from Bryan - Add labeling for aeolus-configserver-thinwrapper - Allow thin domains to execute shell - Fix gnome_role_gkeyringd() interface description - Lot of interface fixes - Allow OpenMPI job running as condor_startd_ssh_t to manage condor lib files - Allow OpenMPI job to use kerberos - Make deltacloudd_t as nsswitch_domain - Allow xend_t to run lsscsi - Allow qemu-dm running as xend_t to create tun_socket - Add labeling for /opt/brother/Printers(.*/)?inf - Allow jockey-backend to read pyconfig-64.h labeled as usr_t - Fix clamscan_can_scan_system boolean - Allow lpr to connectto to /run/user/$USER/keyring-22uREb/pkcs11- initrc is calling exportfs which is not confined so it attempts to read nfsd_files - Fixes for passenger running within openshift. - Add labeling for all tomcat6 dirs - Add support for tomcat6 - Allow cobblerd to read /etc/passwd - Allow jockey to read sysfs and and execute binaries with bin_t - Allow thum to use user terminals - Allow cgclear to read cgconfig config files - Fix bcf2g.fc - Remove sysnet_dns_name_resolve() from policies where auth_use_nsswitch() is used for other domains - Allow dbomatic to execute ruby - abrt_watch_log should be abrt_domain - Allow mozilla_plugin to connect to gatekeeper port- add ptrace_child access to process - remove files_read_etc_files() calling from all policies which have auth_use_nsswith() - Allow boinc domains to manage boinc_lib_t lnk_files - Add support for boinc-client.service unit file - Add support for boinc.log - Allow mozilla_plugin execmod on mozilla home files if allow_ex - Allow dovecot_deliver_t to read dovecot_var_run_t - Allow ldconfig and insmod to manage kdumpctl tmp files - Move thin policy out from cloudform.pp and add a new thin poli - pacemaker needs to communicate with corosync streams - abrt is now started on demand by dbus - Allow certmonger to talk directly to Dogtag servers - Change labeling for /var/lib/cobbler/webui_sessions to httpd_c - Allow mozila_plugin to execute gstreamer home files - Allow useradd to delete all file types stored in the users hom - rhsmcertd reads the rpm database - Add support for lightdm- Add tomcat policy - Remove pyzor/razor policy - rhsmcertd reads the rpm database - Dontaudit thumb to setattr on xdm_tmp dir - Allow wicd to execute ldconfig in the networkmanager_t domain - Add /var/run/cherokee\.pid labeling - Allow mozilla_plugin to create mozilla_plugin_tmp_t lnk files too - Allow postfix-master to r/w pipes other postfix domains - Allow snort to create netlink_socket - Add kdumpctl policy - Allow firstboot to create tmp_t files/directories - /usr/bin/paster should not be labeled as piranha_exec_t - remove initrc_domain from tomcat - Allow ddclient to read /etc/passwd - Allow useradd to delete all file types stored in the users homedir - Allow ldconfig and insmod to manage kdumpctl tmp files - Firstboot should be just creating tmp_t dirs and xauth should be allowed to write to those - Transition xauth files within firstboot_tmp_t - Fix labeling of /run/media to match /media - Label all lxdm.log as xserver_log_t - Add port definition for mxi port - Allow local_login_t to execute tmux- apcupsd needs to read /etc/passwd - Sanlock allso sends sigkill - Allow glance_registry to connect to the mysqld port - Dontaudit mozilla_plugin trying to getattr on /dev/gpmctl - Allow firefox plugins/flash to connect to port 1234 - Allow mozilla plugins to delete user_tmp_t files - Add transition name rule for printers.conf.O - Allow virt_lxc_t to read urand - Allow systemd_loigind to list gstreamer_home_dirs - Fix labeling for /usr/bin - Fixes for cloudform services * support FIPS - Allow polipo to work as web caching - Allow chfn to execute tmux- Add support for ecryptfs * ecryptfs does not support xattr * we need labeling for HOMEDIR - Add policy for (u)mount.ecryptfs* - Fix labeling of kerbero host cache files, allow rpc.svcgssd to manage host cache - Allow dovecot to manage Maildir content, fix transitions to Maildir - Allow postfix_local to transition to dovecot_deliver - Dontaudit attempts to setattr on xdm_tmp_t, looks like bogus code - Cleanup interface definitions - Allow apmd to change with the logind daemon - Changes required for sanlock in rhel6 - Label /run/user/apache as httpd_tmp_t - Allow thumb to use lib_t as execmod if boolean turned on - Allow squid to create the squid directory in /var with the correct labe - Add a new policy for glusterd from Bryan Bickford (bbickfor@redhat.com) - Allow virtd to exec xend_exec_t without transition - Allow virtd_lxc_t to unmount all file systems- PolicyKit path has changed - Allow httpd connect to dirsrv socket - Allow tuned to write generic kernel sysctls - Dontaudit logwatch to gettr on /dev/dm-2 - Allow policykit-auth to manage kerberos files - Make condor_startd and rgmanager as initrc domain - Allow virsh to read /etc/passwd - Allow mount to mount on user_tmp_t for /run/user/dwalsh/gvfs - xdm now needs to execute xsession_exec_t - Need labels for /var/lib/gdm - Fix files_filetrans_named_content() interface - Add new attribute - initrc_domain - Allow systemd_logind_t to signal, signull, sigkill all processes - Add filetrans rules for etc_runtime files- Rename boolean names to remove allow_- Mass merge with upstream * new policy topology to include contrib policy modules * we have now two base policy patches- Fix description of authlogin_nsswitch_use_ldap - Fix transition rule for rhsmcertd_t needed for RHEL7 - Allow useradd to list nfs state data - Allow openvpn to manage its log file and directory - We want vdsm to transition to mount_t when executing mount command to make sure /etc/mtab remains labeled correctly - Allow thumb to use nvidia devices - Allow local_login to create user_tmp_t files for kerberos - Pulseaudio needs to read systemd_login /var/run content - virt should only transition named system_conf_t config files - Allow munin to execute its plugins - Allow nagios system plugin to read /etc/passwd - Allow plugin to connect to soundd port - Fix httpd_passwd to be able to ask passwords - Radius servers can use ldap for backing store - Seems to need to mount on /var/lib for xguest polyinstatiation to work. - Allow systemd_logind to list the contents of gnome keyring - VirtualGL need xdm to be able to manage content in /etc/opt/VirtualGL - Add policy for isns-utils- Add policy for subversion daemon - Allow boinc to read passwd - Allow pads to read kernel network state - Fix man2html interface for sepolgen-ifgen - Remove extra /usr/lib/systemd/system/smb - Remove all /lib/systemd and replace with /usr/lib/systemd - Add policy for man2html - Fix the label of kerberos_home_t to krb5_home_t - Allow mozilla plugins to use Citrix - Allow tuned to read /proc/sys/kernel/nmi_watchdog - Allow tune /sys options via systemd's tmpfiles.d "w" type- Dontaudit lpr_t to read/write leaked mozilla tmp files - Add file name transition for .grl-podcasts directory - Allow corosync to read user tmp files - Allow fenced to create snmp lib dirs/files - More fixes for sge policy - Allow mozilla_plugin_t to execute any application - Allow dbus to read/write any open file descriptors to any non security file on the system that it inherits to that it can pass them to another domain - Allow mongod to read system state information - Fix wrong type, we should dontaudit sys_admin for xdm_t not xserver_t - Allow polipo to manage polipo_cache dirs - Add jabbar_client port to mozilla_plugin_t - Cleanup procmail policy - system bus will pass around open file descriptors on files that do not have labels on them - Allow l2tpd_t to read system state - Allow tuned to run ls /dev - Allow sudo domains to read usr_t files - Add label to machine-id - Fix corecmd_read_bin_symlinks cut and paste error- Fix pulseaudio port definition - Add labeling for condor_starter - Allow chfn_t to creat user_tmp_files - Allow chfn_t to execute bin_t - Allow prelink_cron_system_t to getpw calls - Allow sudo domains to manage kerberos rcache files - Allow user_mail_domains to work with courie - Port definitions necessary for running jboss apps within openshift - Add support for openstack-nova-metadata-api - Add support for nova-console* - Add support for openstack-nova-xvpvncproxy - Fixes to make privsep+SELinux working if we try to use chage to change passwd - Fix auth_role() interface - Allow numad to read sysfs - Allow matahari-rpcd to execute shell - Add label for ~/.spicec - xdm is executing lspci as root which is requesting a sys_admin priv but seems to succeed without it - Devicekit_disk wants to read the logind sessions file when writing a cd - Add fixes for condor to make condor jobs working correctly - Change label of /var/log/rpmpkgs to cron_log_t - Access requires to allow systemd-tmpfiles --create to work. - Fix obex to be a user application started by the session bus. - Add additional filename trans rules for kerberos - Fix /var/run/heartbeat labeling - Allow apps that are managing rcache to file trans correctly - Allow openvpn to authenticate against ldap server - Containers need to listen to network starting and stopping events- Make systemd unit files less specific- Fix zarafa labeling - Allow guest_t to fix labeling - corenet_tcp_bind_all_unreserved_ports(ssh_t) should be called with the user_tcp_server boolean - add lxc_contexts - Allow accountsd to read /proc - Allow restorecond to getattr on all file sytems - tmpwatch now calls getpw - Allow apache daemon to transition to pwauth domain - Label content under /var/run/user/NAME/keyring* as gkeyringd_tmp_t - The obex socket seems to be a stream socket - dd label for /var/run/nologin- Allow jetty running as httpd_t to read hugetlbfs files - Allow sys_nice and setsched for rhsmcertd - Dontaudit attempts by mozilla_plugin_t to bind to ssdp ports - Allow setfiles to append to xdm_tmp_t - Add labeling for /export as a usr_t directory - Add labels for .grl files created by gstreamer- Add labeling for /usr/share/jetty/bin/jetty.sh - Add jetty policy which contains file type definitios - Allow jockey to use its own fifo_file and make this the default for all domains - Allow mozilla_plugins to use spice (vnc_port/couchdb) - asterisk wants to read the network state - Blueman now uses /var/lib/blueman- Add label for nodejs_debug - Allow mozilla_plugin_t to create ~/.pki directory and content- Add clamscan_can_scan_system boolean - Allow mysqld to read kernel network state - Allow sshd to read/write condor lib files - Allow sshd to read/write condor-startd tcp socket - Fix description on httpd_graceful_shutdown - Allow glance_registry to communicate with mysql - dbus_system_domain is using systemd to lauch applications - add interfaces to allow domains to send kill signals to user mail agents - Remove unnessary access for svirt_lxc domains, add privs for virtd_lxc_t - Lots of new access required for secure containers - Corosync needs sys_admin capability - ALlow colord to create shm - .orc should be allowed to be created by any app that can create gstream home content, thumb_t to be specific - Add boolean to control whether or not mozilla plugins can create random content in the users homedir - Add new interface to allow domains to list msyql_db directories, needed for libra - shutdown has to be allowed to delete etc_runtime_t - Fail2ban needs to read /etc/passwd - Allow ldconfig to create /var/cache/ldconfig - Allow tgtd to read hardware state information - Allow collectd to create packet socket - Allow chronyd to send signal to itself - Allow collectd to read /dev/random - Allow collectd to send signal to itself - firewalld needs to execute restorecon - Allow restorecon and other login domains to execute restorecon- Allow logrotate to getattr on systemd unit files - Add support for tor systemd unit file - Allow apmd to create /var/run/pm-utils with the correct label - Allow l2tpd to send sigkill to pppd - Allow pppd to stream connect to l2tpd - Add label for scripts in /etc/gdm/ - Allow systemd_logind_t to ignore mcs constraints on sigkill - Fix files_filetrans_system_conf_named_files() interface - Add labels for /usr/share/wordpress/wp-includes/*.php - Allow cobbler to get SELinux mode and booleans- Add unconfined_execmem_exec_t as an alias to bin_t - Allow fenced to read snmp var lib files, also allow it to read usr_t - ontaudit access checks on all executables from mozilla_plugin - Allow all user domains to setexec, so that sshd will work properly if it call setexec(NULL) while running withing a user mode - Allow systemd_tmpfiles_t to getattr all pipes and sockets - Allow glance-registry to send system log messages - semanage needs to manage mock lib files/dirs- Add policy for abrt-watch-log - Add definitions for jboss_messaging ports - Allow systemd_tmpfiles to manage printer devices - Allow oddjob to use nsswitch - Fix labeling of log files for postgresql - Allow mozilla_plugin_t to execmem and execstack by default - Allow firewalld to execute shell - Fix /etc/wicd content files to get created with the correct label - Allow mcelog to exec shell - Add ~/.orc as a gstreamer_home_t - /var/spool/postfix/lib64 should be labeled lib_t - mpreaper should be able to list all file system labeled directories - Add support for apache to use openstack - Add labeling for /etc/zipl.conf and zipl binary - Turn on allow_execstack and turn off telepathy transition for final release- More access required for virt_qmf_t - Additional assess required for systemd-logind to support multi-seat - Allow mozilla_plugin to setrlimit - Revert changes to fuse file system to stop deadlock- Allow condor domains to connect to ephemeral ports - More fixes for condor policy - Allow keystone to stream connect to mysqld - Allow mozilla_plugin_t to read generic USB device to support GPS devices - Allow thum to file name transition gstreamer home content - Allow thum to read all non security files - Allow glance_api_t to connect to ephemeral ports - Allow nagios plugins to read /dev/urandom - Allow syslogd to search postfix spool to support postfix chroot env - Fix labeling for /var/spool/postfix/dev - Allow wdmd chown - Label .esd_auth as pulseaudio_home_t - Have no idea why keyring tries to write to /run/user/dwalsh/dconf/user, but we can dontaudit for now- Add support for clamd+systemd - Allow fresclam to execute systemctl to handle clamd - Change labeling for /usr/sbin/rpc.ypasswd.env - Allow yppaswd_t to execute yppaswd_exec_t - Allow yppaswd_t to read /etc/passwd - Gnomekeyring socket has been moved to /run/user/USER/ - Allow samba-net to connect to ldap port - Allow signal for vhostmd - allow mozilla_plugin_t to read user_home_t socket - New access required for secure Linux Containers - zfs now supports xattrs - Allow quantum to execute sudo and list sysfs - Allow init to dbus chat with the firewalld - Allow zebra to read /etc/passwd- Allow svirt_t to create content in the users homedir under ~/.libvirt - Fix label on /var/lib/heartbeat - Allow systemd_logind_t to send kill signals to all processes started by a user - Fuse now supports Xattr Support- upowered needs to setsched on the kernel - Allow mpd_t to manage log files - Allow xdm_t to create /var/run/systemd/multi-session-x - Add rules for missedfont.log to be used by thumb.fc - Additional access required for virt_qmf_t - Allow dhclient to dbus chat with the firewalld - Add label for lvmetad - Allow systemd_logind_t to remove userdomain sock_files - Allow cups to execute usr_t files - Fix labeling on nvidia shared libraries - wdmd_t needs access to sssd and /etc/passwd - Add boolean to allow ftp servers to run in passive mode - Allow namepspace_init_t to relabelto/from a different user system_u from the user the namespace_init running with - Fix using httpd_use_fusefs - Allow chrome_sandbox_nacl to write inherited user tmp files as we allow it for chrome_sandbox- Rename rdate port to time port, and allow gnomeclock to connect to it - We no longer need to transition to ldconfig from rpm, rpm_script, or anaconda - /etc/auto.* should be labeled bin_t - Add httpd_use_fusefs boolean - Add fixes for heartbeat - Allow sshd_t to signal processes that it transitions to - Add condor policy - Allow svirt to create monitors in ~/.libvirt - Allow dovecot to domtrans sendmail to handle sieve scripts - Lot of fixes for cfengine- /var/run/postmaster.* labeling is no longer needed - Alllow drbdadmin to read /dev/urandom - l2tpd_t seems to use ptmx - group+ and passwd+ should be labeled as /etc/passwd - Zarafa-indexer is a socket- Ensure lastlog is labeled correctly - Allow accountsd to read /proc data about gdm - Add fixes for tuned - Add bcfg2 fixes which were discovered during RHEL6 testing - More fixes for gnome-keyring socket being moved - Run semanage as a unconfined domain, and allow initrc_t to create tmpfs_t sym links on shutdown - Fix description for files_dontaudit_read_security_files() interface- Add new policy and man page for bcfg2 - cgconfig needs to use getpw calls - Allow domains that communicate with the keyring to use cache_home_t instead of gkeyringd_tmpt - gnome-keyring wants to create a directory in cache_home_t - sanlock calls getpw- Add numad policy and numad man page - Add fixes for interface bugs discovered by SEWatch - Add /tmp support for squid - Add fix for #799102 * change default labeling for /var/run/slapd.* sockets - Make thumb_t as userdom_home_reader - label /var/lib/sss/mc same as pubconf, so getpw domains can read it - Allow smbspool running as cups_t to stream connect to nmbd - accounts needs to be able to execute passwd on behalf of users - Allow systemd_tmpfiles_t to delete boot flags - Allow dnssec_trigger to connect to apache ports - Allow gnome keyring to create sock_files in ~/.cache - google_authenticator is using .google_authenticator - sandbox running from within firefox is exposing more leaks - Dontaudit thumb to read/write /dev/card0 - Dontaudit getattr on init_exec_t for gnomeclock_t - Allow certmonger to do a transition to certmonger_unconfined_t - Allow dhcpc setsched which is caused by nmcli - Add rpm_exec_t for /usr/sbin/bcfg2 - system cronjobs are sending dbus messages to systemd_logind - Thumnailers read /dev/urand- Allow auditctl getcap - Allow vdagent to use libsystemd-login - Allow abrt-dump-oops to search /etc/abrt - Got these avc's while trying to print a boarding pass from firefox - Devicekit is now putting the media directory under /run/media - Allow thumbnailers to create content in ~/.thumbails directory - Add support for proL2TPd by Dominick Grift - Allow all domains to call getcap - wdmd seems to get a random chown capability check that it does not need - Allow vhostmd to read kernel sysctls- Allow chronyd to read unix - Allow hpfax to read /etc/passwd - Add support matahari vios-proxy-* apps and add virtd_exec_t label for them - Allow rpcd to read quota_db_t - Update to man pages to match latest policy - Fix bug in jockey interface for sepolgen-ifgen - Add initial svirt_prot_exec_t policy- More fixes for systemd from Dan Walsh- Add a new type for /etc/firewalld and allow firewalld to write to this directory - Add definition for ~/Maildir, and allow mail deliver domains to write there - Allow polipo to run from a cron job - Allow rtkit to schedule wine processes - Allow mozilla_plugin_t to acquire a bug, and allow it to transition gnome content in the home dir to the proper label - Allow users domains to send signals to consolehelper domains- More fixes for boinc policy - Allow polipo domain to create its own cache dir and pid file - Add systemctl support to httpd domain - Add systemctl support to polipo, allow NetworkManager to manage the service - Add policy for jockey-backend - Add support for motion daemon which is now covered by zoneminder policy - Allow colord to read/write motion tmpfs - Allow vnstat to search through var_lib_t directories - Stop transitioning to quota_t, from init an sysadm_t- Add svirt_lxc_file_t as a customizable type- Add additional fixes for icmp nagios plugin - Allow cron jobs to open fifo_files from cron, since service script opens /dev/stdin - Add certmonger_unconfined_exec_t - Make sure tap22 device is created with the correct label - Allow staff users to read systemd unit files - Merge in previously built policy - Arpwatch needs to be able to start netlink sockets in order to start - Allow cgred_t to sys_ptrace to look at other DAC Processes- Back port some of the access that was allowed in nsplugin_t - Add definitiona for couchdb ports - Allow nagios to use inherited users ttys - Add git support for mock - Allow inetd to use rdate port - Add own type for rdate port - Allow samba to act as a portmapper - Dontaudit chrome_sandbox attempts to getattr on chr_files in /dev - New fixes needed for samba4 - Allow apps that use lib_t to read lib_t symlinks- Add policy for nove-cert - Add labeling for nova-openstack systemd unit files - Add policy for keystoke- Fix man pages fro domains - Add man pages for SELinux users and roles - Add storage_dev_filetrans_named_fixed_disk() and use it for smartmon - Add policy for matahari-rpcd - nfsd executes mount command on restart - Matahari domains execute renice and setsched - Dontaudit leaked tty in mozilla_plugin_config - mailman is changing to a per instance naming - Add 7600 and 4447 as jboss_management ports - Add fixes for nagios event handlers - Label httpd.event as httpd_exec_t, it is an apache daemon- Add labeling for /var/spool/postfix/dev/log - NM reads sysctl.conf - Iscsi log file context specification fix - Allow mozilla plugins to send dbus messages to user domains that transition to it - Allow mysql to read the passwd file - Allow mozilla_plugin_t to create mozilla home dirs in user homedir - Allow deltacloud to read kernel sysctl - Allow postgresql_t to connectto itselfAllow postgresql_t to connectto itself - Allow postgresql_t to connectto itself - Add login_userdomain attribute for users which can log in using terminal- Allow sysadm_u to reach system_r by default #784011 - Allow nagios plugins to use inherited user terminals - Razor labeling is not used no longer - Add systemd support for matahari - Add port_types to man page, move booleans to the top, fix some english - Add support for matahari-sysconfig-console - Clean up matahari.fc - Fix matahari_admin() interfac - Add labels for/etc/ssh/ssh_host_*.pub keys- Allow ksysguardproces to send system log msgs - Allow boinc setpgid and signull - Allow xdm_t to sys_ptrace to run pidof command - Allow smtpd_t to manage spool files/directories and symbolic links - Add labeling for jetty - Needed changes to get unbound/dnssec to work with openswan- Add user_fonts_t alias xfs_tmp_t - Since depmod now runs as insmod_t we need to write to kernel_object_t - Allow firewalld to dbus chat with networkmanager - Allow qpidd to connect to matahari ports - policykit needs to read /proc for uses not owned by it - Allow systemctl apps to connecto the init stream- Turn on deny_ptrace boolean- Remove pam_selinux.8 man page. There was a conflict.- Add proxy class and read access for gssd_proxy - Separate out the sharing public content booleans - Allow certmonger to execute a script and send signals to apache and dirsrv to reload the certificate - Add label transition for gstream-0.10 and 12 - Add booleans to allow rsync to share nfs and cifs file sytems - chrome_sandbox wants to read the /proc/PID/exe file of the program that executed it - Fix filename transitions for cups files - Allow denyhosts to read "unix" - Add file name transition for locale.conf.new - Allow boinc projects to gconf config files - sssd needs to be able to increase the socket limit under certain loads - sge_execd needs to read /etc/passwd - Allow denyhost to check network state - NetworkManager needs to read sessions data - Allow denyhost to check network state - Allow xen to search virt images directories - Add label for /dev/megaraid_sas_ioctl_node - Add autogenerated man pages- Allow boinc project to getattr on fs - Allow init to execute initrc_state_t - rhev-agent package was rename to ovirt-guest-agent - If initrc_t creates /etc/local.conf then we need to make sure it is labeled correctly - sytemd writes content to /run/initramfs and executes it on shutdown - kdump_t needs to read /etc/mtab, should be back ported to F16 - udev needs to load kernel modules in early system boot- Need to add sys_ptrace back in since reading any content in /proc can cause these accesses - Add additional systemd interfaces which are needed fro *_admin interfaces - Fix bind_admin() interface- Allow firewalld to read urand - Alias java, execmem_mono to bin_t to allow third parties - Add label for kmod - /etc/redhat-lsb contains binaries - Add boolean to allow gitosis to send mail - Add filename transition also for "event20" - Allow systemd_tmpfiles_t to delete all file types - Allow collectd to ipc_lock- make consoletype_exec optional, so we can remove consoletype policy - remove unconfined_permisive.patch - Allow openvpn_t to inherit user home content and tmp content - Fix dnssec-trigger labeling - Turn on obex policy for staff_t - Pem files should not be secret - Add lots of rules to fix AVC's when playing with containers - Fix policy for dnssec - Label ask-passwd directories correctly for systemd- sshd fixes seem to be causing unconfined domains to dyntrans to themselves - fuse file system is now being mounted in /run/user - systemd_logind is sending signals to processes that are dbus messaging with it - Add support for winshadow port and allow iscsid to connect to this port - httpd should be allowed to bind to the http_port_t udp socket - zarafa_var_lib_t can be a lnk_file - A couple of new .xsession-errors files - Seems like user space and login programs need to read logind_sessions_files - Devicekit disk seems to be being launched by systemd - Cleanup handling of setfiles so most of rules in te file - Correct port number for dnssec - logcheck has the home dir set to its cache- Add policy for grindengine MPI jobs- Add new sysadm_secadm.pp module * contains secadm definition for sysadm_t - Move user_mail_domain access out of the interface into the te file - Allow httpd_t to create httpd_var_lib_t directories as well as files - Allow snmpd to connect to the ricci_modcluster stream - Allow firewalld to read /etc/passwd - Add auth_use_nsswitch for colord - Allow smartd to read network state - smartdnotify needs to read /etc/group- Allow gpg and gpg_agent to store sock_file in gpg_secret_t directory - lxdm startup scripts should be labeled bin_t, so confined users will work - mcstransd now creates a pid, needs back port to F16 - qpidd should be allowed to connect to the amqp port - Label devices 010-029 as usb devices - ypserv packager says ypserv does not use tmp_t so removing selinux policy types - Remove all ptrace commands that I believe are caused by the kernel/ps avcs - Add initial Obex policy - Add logging_syslogd_use_tty boolean - Add polipo_connect_all_unreserved bolean - Allow zabbix to connect to ftp port - Allow systemd-logind to be able to switch VTs - Allow apache to communicate with memcached through a sock_file- Fix file_context.subs_dist for now to work with pre usrmove- More /usr move fixes- Add zabbix_can_network boolean - Add httpd_can_connect_zabbix boolean - Prepare file context labeling for usrmove functions - Allow system cronjobs to read kernel network state - Add support for selinux_avcstat munin plugin - Treat hearbeat with corosync policy - Allow corosync to read and write to qpidd shared mem - mozilla_plugin is trying to run pulseaudio - Fixes for new sshd patch for running priv sep domains as the users context - Turn off dontaudit rules when turning on allow_ypbind - udev now reads /etc/modules.d directory- Turn on deny_ptrace boolean for the Rawhide run, so we can test this out - Cups exchanges dbus messages with init - udisk2 needs to send syslog messages - certwatch needs to read /etc/passwd- Add labeling for udisks2 - Allow fsadmin to communicate with the systemd process- Treat Bip with bitlbee policy * Bip is an IRC proxy - Add port definition for interwise port - Add support for ipa_memcached socket - systemd_jounald needs to getattr on all processes - mdadmin fixes * uses getpw - amavisd calls getpwnam() - denyhosts calls getpwall()- Setup labeling of /var/rsa and /var/lib/rsa to allow login programs to write there - bluetooth says they do not use /tmp and want to remove the type - Allow init to transition to colord - Mongod needs to read /proc/sys/vm/zone_reclaim_mode - Allow postfix_smtpd_t to connect to spamd - Add boolean to allow ftp to connect to all ports > 1023 - Allow sendmain to write to inherited dovecot tmp files - setroubleshoot needs to be able to execute rpm to see what version of packages- Merge systemd patch - systemd-tmpfiles wants to relabel /sys/devices/system/cpu/online - Allow deltacloudd dac_override, setuid, setgid caps - Allow aisexec to execute shell - Add use_nfs_home_dirs boolean for ssh-keygen- Fixes to make rawhide boot in enforcing mode with latest systemd changes- Add labeling for /var/run/systemd/journal/syslog - libvirt sends signals to ifconfig - Allow domains that read logind session files to list them- Fixed destined form libvirt-sandbox - Allow apps that list sysfs to also read sympolicy links in this filesystem - Add ubac_constrained rules for chrome_sandbox - Need interface to allow domains to use tmpfs_t files created by the kernel, used by libra - Allow postgresql to be executed by the caller - Standardize interfaces of daemons - Add new labeling for mm-handler - Allow all matahari domains to read network state and etc_runtime_t files- New fix for seunshare, requires seunshare_domains to be able to mounton / - Allow systemctl running as logrotate_t to connect to private systemd socket - Allow tmpwatch to read meminfo - Allow rpc.svcgssd to read supported_krb5_enctype - Allow zarafa domains to read /dev/random and /dev/urandom - Allow snmpd to read dev_snmp6 - Allow procmail to talk with cyrus - Add fixes for check_disk and check_nagios plugins- default trans rules for Rawhide policy - Make sure sound_devices controlC* are labeled correctly on creation - sssd now needs sys_admin - Allow snmp to read all proc_type - Allow to setup users homedir with quota.group- Add httpd_can_connect_ldap() interface - apcupsd_t needs to use seriel ports connected to usb devices - Kde puts procmail mail directory under ~/.local/share - nfsd_t can trigger sys_rawio on tests that involve too many mountpoints, dontaudit for now - Add labeling for /sbin/iscsiuio- Add label for /var/lib/iscan/interpreter - Dont audit writes to leaked file descriptors or redirected output for nacl - NetworkManager needs to write to /sys/class/net/ib*/mode- Allow abrt to request the kernel to load a module - Make sure mozilla content is labeled correctly - Allow tgtd to read system state - More fixes for boinc * allow to resolve dns name * re-write boinc policy to use boinc_domain attribute - Allow munin services plugins to use NSCD services- Allow mozilla_plugin_t to manage mozilla_home_t - Allow ssh derived domain to execute ssh-keygen in the ssh_keygen_t domain - Add label for tumblerd- Fixes for xguest package- Fixes related to /bin, /sbin - Allow abrt to getattr on blk files - Add type for rhev-agent log file - Fix labeling for /dev/dmfm - Dontaudit wicd leaking - Allow systemd_logind_t to look at process info of apps that exchange dbus messages with it - Label /etc/locale.conf correctly - Allow user_mail_t to read /dev/random - Allow postfix-smtpd to read MIMEDefang - Add label for /var/log/suphp.log - Allow swat_t to connect and read/write nmbd_t sock_file - Allow systemd-tmpfiles to setattr for /run/user/gdm/dconf - Allow systemd-tmpfiles to change user identity in object contexts - More fixes for rhev_agentd_t consolehelper policy- Use fs_use_xattr for squashf - Fix procs_type interface - Dovecot has a new fifo_file /var/run/dovecot/stats-mail - Dovecot has a new fifo_file /var/run/stats-mail - Colord does not need to connect to network - Allow system_cronjob to dbus chat with NetworkManager - Puppet manages content, want to make sure it labels everything correctly- Change port 9050 to tor_socks_port_t and then allow openvpn to connect to it - Allow all postfix domains to use the fifo_file - Allow sshd_t to getattr on all file systems in order to generate avc on nfs_t - Allow apmd_t to read grub.cfg - Let firewallgui read the selinux config - Allow systemd-tmpfiles to delete content in /root that has been moved to /tmp - Fix devicekit_manage_pid_files() interface - Allow squid to check the network state - Dontaudit colord getattr on file systems - Allow ping domains to read zabbix_tmp_t files- Allow mcelog_t to create dir and file in /var/run and label it correctly - Allow dbus to manage fusefs - Mount needs to read process state when mounting gluster file systems - Allow collectd-web to read collectd lib files - Allow daemons and system processes started by init to read/write the unix_stream_socket passed in from as stdin/stdout/stderr - Allow colord to get the attributes of tmpfs filesystem - Add sanlock_use_nfs and sanlock_use_samba booleans - Add bin_t label for /usr/lib/virtualbox/VBoxManage- Add ssh_dontaudit_search_home_dir - Changes to allow namespace_init_t to work - Add interface to allow exec of mongod, add port definition for mongod port, 27017 - Label .kde/share/apps/networkmanagement/certificates/ as home_cert_t - Allow spamd and clamd to steam connect to each other - Add policy label for passwd.OLD - More fixes for postfix and postfix maildro - Add ftp support for mozilla plugins - Useradd now needs to manage policy since it calls libsemanage - Fix devicekit_manage_log_files() interface - Allow colord to execute ifconfig - Allow accountsd to read /sys - Allow mysqld-safe to execute shell - Allow openct to stream connect to pcscd - Add label for /var/run/nm-dns-dnsmasq\.conf - Allow networkmanager to chat with virtd_t- Pulseaudio changes - Merge patches- Merge patches back into git repository.- Remove allow_execmem boolean and replace with deny_execmem boolean- Turn back on allow_execmem boolean- Add more MCS fixes to make sandbox working - Make faillog MLS trusted to make sudo_$1_t working - Allow sandbox_web_client_t to read passwd_file_t - Add .mailrc file context - Remove execheap from openoffice domain - Allow chrome_sandbox_nacl_t to read cpu_info - Allow virtd to relabel generic usb which is need if USB device - Fixes for virt.if interfaces to consider chr_file as image file type- Remove Open Office policy - Remove execmem policy- MCS fixes - quota fixes- Remove transitions to consoletype- Make nvidia* to be labeled correctly - Fix abrt_manage_cache() interface - Make filetrans rules optional so base policy will build - Dontaudit chkpwd_t access to inherited TTYS - Make sure postfix content gets created with the correct label - Allow gnomeclock to read cgroup - Fixes for cloudform policy- Check in fixed for Chrome nacl support- Begin removing qemu_t domain, we really no longer need this domain. - systemd_passwd needs dac_overide to communicate with users TTY's - Allow svirt_lxc domains to send kill signals within their container- Remove qemu.pp again without causing a crash- Remove qemu.pp, everything should use svirt_t or stay in its current domain- Allow policykit to talk to the systemd via dbus - Move chrome_sandbox_nacl_t to permissive domains - Additional rules for chrome_sandbox_nacl- Change bootstrap name to nacl - Chrome still needs execmem - Missing role for chrome_sandbox_bootstrap - Add boolean to remove execmem and execstack from virtual machines - Dontaudit xdm_t doing an access_check on etc_t directories- Allow named to connect to dirsrv by default - add ldapmap1_0 as a krb5_host_rcache_t file - Google chrome developers asked me to add bootstrap policy for nacl stuff - Allow rhev_agentd_t to getattr on mountpoints - Postfix_smtpd_t needs access to milters and cleanup seems to read/write postfix_smtpd_t unix_stream_sockets- Fixes for cloudform policies which need to connect to random ports - Make sure if an admin creates modules content it creates them with the correct label - Add port 8953 as a dns port used by unbound - Fix file name transition for alsa and confined users- Turn on mock_t and thumb_t for unconfined domains- Policy update should not modify local contexts- Remove ada policy- Remove tzdata policy - Add labeling for udev - Add cloudform policy - Fixes for bootloader policy- Add policies for nova openstack- Add fixes for nova-stack policy- Allow svirt_lxc_domain to chr_file and blk_file devices if they are in the domain - Allow init process to setrlimit on itself - Take away transition rules for users executing ssh-keygen - Allow setroubleshoot_fixit_t to read /dev/urand - Allow sshd to relbale tunnel sockets - Allow fail2ban domtrans to shorewall in the same way as with iptables - Add support for lnk files in the /var/lib/sssd directory - Allow system mail to connect to courier-authdaemon over an unix stream socket- Add passwd_file_t for /etc/ptmptmp- Dontaudit access checks for all executables, gnome-shell is doing access(EXEC, X_OK) - Make corosync to be able to relabelto cluster lib fies - Allow samba domains to search /var/run/nmbd - Allow dirsrv to use pam - Allow thumb to call getuid - chrome less likely to get mmap_zero bug so removing dontaudit - gimp help-browser has built in javascript - Best guess is that devices named /dev/bsr4096 should be labeled as cpu_device_t - Re-write glance policy- Move dontaudit sys_ptrace line from permissive.te to domain.te - Remove policy for hal, it no longer exists- Don't check md5 size or mtime on certain config files- Remove allow_ptrace and replace it with deny_ptrace, which will remove all ptrace from the system - Remove 2000 dontaudit rules between confined domains on transition and replace with single dontaudit domain domain:process { noatsecure siginh rlimitinh } ;- Fixes for bootloader policy - $1_gkeyringd_t needs to read $HOME/%USER/.local/share/keystore - Allow nsplugin to read /usr/share/config - Allow sa-update to update rules - Add use_fusefs_home_dirs for chroot ssh option - Fixes for grub2 - Update systemd_exec_systemctl() interface - Allow gpg to read the mail spool - More fixes for sa-update running out of cron job - Allow ipsec_mgmt_t to read hardware state information - Allow pptp_t to connect to unreserved_port_t - Dontaudit getattr on initctl in /dev from chfn - Dontaudit getattr on kernel_core from chfn - Add systemd_list_unit_dirs to systemd_exec_systemctl call - Fixes for collectd policy - CHange sysadm_t to create content as user_tmp_t under /tmp- Shrink size of policy through use of attributes for userdomain and apache- Allow virsh to read xenstored pid file - Backport corenetwork fixes from upstream - Do not audit attempts by thumb to search config_home_t dirs (~/.config) - label ~/.cache/telepathy/logger telepathy_logger_cache_home_t - allow thumb to read generic data home files (mime.type)- Allow nmbd to manage sock file in /var/run/nmbd - ricci_modservice send syslog msgs - Stop transitioning from unconfined_t to ldconfig_t, but make sure /etc/ld.so.cache is labeled correctly - Allow systemd_logind_t to manage /run/USER/dconf/user- Fix missing patch from F16- Allow logrotate setuid and setgid since logrotate is supposed to do it - Fixes for thumb policy by grift - Add new nfsd ports - Added fix to allow confined apps to execmod on chrome - Add labeling for additional vdsm directories - Allow Exim and Dovecot SASL - Add label for /var/run/nmbd - Add fixes to make virsh and xen working together - Colord executes ls - /var/spool/cron is now labeled as user_cron_spool_t- Stop complaining about leaked file descriptors during install- Remove java and mono module and merge into execmem- Fixes for thumb policy and passwd_file_t- Fixes caused by the labeling of /etc/passwd - Add thumb.patch to transition unconfined_t to thumb_t for Rawhide- Add support for Clustered Samba commands - Allow ricci_modrpm_t to send log msgs - move permissive virt_qmf_t from virt.te to permissivedomains.te - Allow ssh_t to use kernel keyrings - Add policy for libvirt-qmf and more fixes for linux containers - Initial Polipo - Sanlock needs to run ranged in order to kill svirt processes - Allow smbcontrol to stream connect to ctdbd- Add label for /etc/passwd- Change unconfined_domains to permissive for Rawhide - Add definition for the ephemeral_ports- Make mta_role() active - Allow asterisk to connect to jabber client port - Allow procmail to read utmp - Add NIS support for systemd_logind_t - Allow systemd_logind_t to manage /run/user/$USER/dconf dir which is labeled as config_home_t - Fix systemd_manage_unit_dirs() interface - Allow ssh_t to manage directories passed into it - init needs to be able to create and delete unit file directories - Fix typo in apache_exec_sys_script - Add ability for logrotate to transition to awstat domain- Change screen to use screen_domain attribute and allow screen_domains to read all process domain state - Add SELinux support for ssh pre-auth net process in F17 - Add logging_syslogd_can_sendmail boolean- Add definition for ephemeral ports - Define user_tty_device_t as a customizable_type- Needs to require a new version of checkpolicy - Interface fixes- Allow sanlock to manage virt lib files - Add virt_use_sanlock booelan - ksmtuned is trying to resolve uids - Make sure .gvfs is labeled user_home_t in the users home directory - Sanlock sends kill signals and needs the kill capability - Allow mockbuild to work on nfs homedirs - Fix kerberos_manage_host_rcache() interface - Allow exim to read system state- Allow systemd-tmpfiles to set the correct labels on /var/run, /tmp and other files - We want any file type that is created in /tmp by a process running as initrc_t to be labeled initrc_tmp_t- Allow collectd to read hardware state information - Add loop_control_device_t - Allow mdadm to request kernel to load module - Allow domains that start other domains via systemctl to search unit dir - systemd_tmpfilses, needs to list any file systems mounted on /tmp - No one can explain why radius is listing the contents of /tmp, so we will dontaudit - If I can manage etc_runtime files, I should be able to read the links - Dontaudit hostname writing to mock library chr_files - Have gdm_t setup labeling correctly in users home dir - Label content unde /var/run/user/NAME/dconf as config_home_t - Allow sa-update to execute shell - Make ssh-keygen working with fips_enabled - Make mock work for staff_t user - Tighten security on mock_t- removing unconfined_notrans_t no longer necessary - Clean up handling of secure_mode_insmod and secure_mode_policyload - Remove unconfined_mount_t- Add exim_exec_t label for /usr/sbin/exim_tidydb - Call init_dontaudit_rw_stream_socket() interface in mta policy - sssd need to search /var/cache/krb5rcache directory - Allow corosync to relabel own tmp files - Allow zarafa domains to send system log messages - Allow ssh to do tunneling - Allow initrc scripts to sendto init_t unix_stream_socket - Changes to make sure dmsmasq and virt directories are labeled correctly - Changes needed to allow sysadm_t to manage systemd unit files - init is passing file descriptors to dbus and on to system daemons - Allow sulogin additional access Reported by dgrift and Jeremy Miller - Steve Grubb believes that wireshark does not need this access - Fix /var/run/initramfs to stop restorecon from looking at - pki needs another port - Add more labels for cluster scripts - Allow apps that manage cgroup_files to manage cgroup link files - Fix label on nfs-utils scripts directories - Allow gatherd to read /dev/rand and /dev/urand- pki needs another port - Add more labels for cluster scripts - Fix label on nfs-utils scripts directories - Fixes for cluster - Allow gatherd to read /dev/rand and /dev/urand - abrt leaks fifo files- Add glance policy - Allow mdadm setsched - /var/run/initramfs should not be relabeled with a restorecon run - memcache can be setup to override sys_resource - Allow httpd_t to read tetex data - Allow systemd_tmpfiles to delete kernel modules left in /tmp directory.- Allow Postfix to deliver to Dovecot LMTP socket - Ignore bogus sys_module for lldpad - Allow chrony and gpsd to send dgrams, gpsd needs to write to the real time clock - systemd_logind_t sets the attributes on usb devices - Allow hddtemp_t to read etc_t files - Add permissivedomains module - Move all permissive domains calls to permissivedomain.te - Allow pegasis to send kill signals to other UIDs- Allow insmod_t to use fds leaked from devicekit - dontaudit getattr between insmod_t and init_t unix_stream_sockets - Change sysctl unit file interfaces to use systemctl - Add support for chronyd unit file - Allow mozilla_plugin to read gnome_usr_config - Add policy for new gpsd - Allow cups to create kerberos rhost cache files - Add authlogin_filetrans_named_content, to unconfined_t to make sure shadow and other log files get labeled correctly- Make users_extra and seusers.final into config(noreplace) so semanage users and login does not get overwritten- Add policy for sa-update being run out of cron jobs - Add create perms to postgresql_manage_db - ntpd using a gps has to be able to read/write generic tty_device_t - If you disable unconfined and unconfineduser, rpm needs more privs to manage /dev - fix spec file - Remove qemu_domtrans_unconfined() interface - Make passenger working together with puppet - Add init_dontaudit_rw_stream_socket interface - Fixes for wordpress- Turn on allow_domain_fd_use boolean on F16 - Allow syslog to manage all log files - Add use_fusefs_home_dirs boolean for chrome - Make vdagent working with confined users - Add abrt_handle_event_t domain for ABRT event scripts - Labeled /usr/sbin/rhnreg_ks as rpm_exec_t and added changes related to this change - Allow httpd_git_script_t to read passwd data - Allow openvpn to set its process priority when the nice parameter is used- livecd fixes - spec file fixes- fetchmail can use kerberos - ksmtuned reads in shell programs - gnome_systemctl_t reads the process state of ntp - dnsmasq_t asks the kernel to load multiple kernel modules - Add rules for domains executing systemctl - Bogus text within fc file- Add cfengine policy- Add abrt_domain attribute - Allow corosync to manage cluster lib files - Allow corosync to connect to the system DBUS- Add sblim, uuidd policies - Allow kernel_t dyntrasition to init_t- init_t need setexec - More fixes of rules which cause an explosion in rules by Dan Walsh- Allow rcsmcertd to perform DNS name resolution - Add dirsrvadmin_unconfined_script_t domain type for 389-ds admin scripts - Allow tmux to run as screen - New policy for collectd - Allow gkeyring_t to interact with all user apps - Add rules to allow firstboot to run on machines with the unconfined.pp module removed- Allow systemd_logind to send dbus messages with users - allow accountsd to read wtmp file - Allow dhcpd to get and set capabilities- Fix oracledb_port definition - Allow mount to mounton the selinux file system - Allow users to list /var directories- systemd fixes- Add initial policy for abrt_dump_oops_t - xtables-multi wants to getattr of the proc fs - Smoltclient is connecting to abrt - Dontaudit leaked file descriptors to postdrop - Allow abrt_dump_oops to look at kernel sysctls - Abrt_dump_oops_t reads kernel ring buffer - Allow mysqld to request the kernel to load modules - systemd-login needs fowner - Allow postfix_cleanup_t to searh maildrop- Initial systemd_logind policy - Add policy for systemd_logger and additional proivs for systemd_logind - More fixes for systemd policies- Allow setsched for virsh - Systemd needs to impersonate cups, which means it needs to create tcp_sockets in cups_t domain, as well as manage spool directories - iptables: the various /sbin/ip6?tables.* are now symlinks for /sbin/xtables-multi- A lot of users are running yum -y update while in /root which is causing ldconfig to list the contents, adding dontaudit - Allow colord to interact with the users through the tmpfs file system - Since we changed the label on deferred, we need to allow postfix_qmgr_t to be able to create maildrop_t files - Add label for /var/log/mcelog - Allow asterisk to read /dev/random if it uses TLS - Allow colord to read ini files which are labeled as bin_t - Allow dirsrvadmin sys_resource and setrlimit to use ulimit - Systemd needs to be able to create sock_files for every label in /var/run directory, cupsd being the first. - Also lists /var and /var/spool directories - Add openl2tpd to l2tpd policy - qpidd is reading the sysfs file- Change usbmuxd_t to dontaudit attempts to read chr_file - Add mysld_safe_exec_t for libra domains to be able to start private mysql domains - Allow pppd to search /var/lock dir - Add rhsmcertd policy- Update to upstream- More fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git- Fix spec file to not report Verify errors- Add dspam policy - Add lldpad policy - dovecot auth wants to search statfs #713555 - Allow systemd passwd apps to read init fifo_file - Allow prelink to use inherited terminals - Run cherokee in the httpd_t domain - Allow mcs constraints on node connections - Implement pyicqt policy - Fixes for zarafa policy - Allow cobblerd to send syslog messages- Add policy.26 to the payload - Remove olpc stuff - Remove policygentool- Fixes for zabbix - init script needs to be able to manage sanlock_var_run_... - Allow sandlock and wdmd to create /var/run directories... - mixclip.so has been compiled correctly - Fix passenger policy module name- Add mailscanner policy from dgrift - Allow chrome to optionally be transitioned to - Zabbix needs these rules when starting the zabbix_server_mysql - Implement a type for freedesktop openicc standard (~/.local/share/icc) - Allow system_dbusd_t to read inherited icc_data_home_t files. - Allow colord_t to read icc_data_home_t content. #706975 - Label stuff under /usr/lib/debug as if it was labeled under /- Fixes for sanlock policy - Fixes for colord policy - Other fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log- Add rhev policy module to modules-targeted.conf- Lot of fixes * http://git.fedorahosted.org/git/?p=selinux-policy.git;a=log- Allow logrotate to execute systemctl - Allow nsplugin_t to getattr on gpmctl - Fix dev_getattr_all_chr_files() interface - Allow shorewall to use inherited terms - Allow userhelper to getattr all chr_file devices - sandbox domains should be able to getattr and dontaudit search of sysctl_kernel_t - Fix labeling for ABRT Retrace Server- Dontaudit sys_module for ifconfig - Make telepathy and gkeyringd daemon working with confined users - colord wants to read files in users homedir - Remote login should be creating user_tmp_t not its own tmp files- Fix label for /usr/share/munin/plugins/munin_* plugins - Add support for zarafa-indexer - Fix boolean description - Allow colord to getattr on /proc/scsi/scsi - Add label for /lib/upstart/init - Colord needs to list /mnt- Forard port changes from F15 for telepathy - NetworkManager should be allowed to use /dev/rfkill - Fix dontaudit messages to say Domain to not audit - Allow telepathy domains to read/write gnome_cache files - Allow telepathy domains to call getpw - Fixes for colord and vnstatd policy- Allow init_t getcap and setcap - Allow namespace_init_t to use nsswitch - aisexec will execute corosync - colord tries to read files off noxattr file systems - Allow init_t getcap and setcap- Add support for ABRT retrace server - Allow user_t and staff_t access to generic scsi to handle locally plugged in scanners - Allow telepath_msn_t to read /proc/PARENT/cmdline - ftpd needs kill capability - Allow telepath_msn_t to connect to sip port - keyring daemon does not work on nfs homedirs - Allow $1_sudo_t to read default SELinux context - Add label for tgtd sock file in /var/run/ - Add apache_exec_rotatelogs interface - allow all zaraha domains to signal themselves, server writes to /tmp - Allow syslog to read the process state - Add label for /usr/lib/chromium-browser/chrome - Remove the telepathy transition from unconfined_t - Dontaudit sandbox domains trying to mounton sandbox_file_t, this is caused by fuse mounts - Allow initrc_t domain to manage abrt pid files - Add support for AEOLUS project - Virt_admin should be allowed to manage images and processes - Allow plymountd to send signals to init - Change labeling of fping6- Add filename transitions- Fixes for zarafa policy - Add support for AEOLUS project - Change labeling of fping6 - Allow plymountd to send signals to init - Allow initrc_t domain to manage abrt pid files - Virt_admin should be allowed to manage images and processes- xdm_t needs getsession for switch user - Every app that used to exec init is now execing systemdctl - Allow squid to manage krb5_host_rcache_t files - Allow foghorn to connect to agentx port - Fixes for colord policy- Add Dan's patch to remove 64 bit variants - Allow colord to use unix_dgram_socket - Allow apps that search pids to read /var/run if it is a lnk_file - iscsid_t creates its own directory - Allow init to list var_lock_t dir - apm needs to verify user accounts auth_use_nsswitch - Add labeling for systemd unit files - Allow gnomeclok to enable ntpd service using systemctl - systemd_systemctl_t domain was added - Add label for matahari-broker.pid file - We want to remove untrustedmcsprocess from ability to read /proc/pid - Fixes for matahari policy - Allow system_tmpfiles_t to delete user_home_t files in the /tmp dir - Allow sshd to transition to sysadm_t if ssh_sysadm_login is turned on- Fix typo- Add /var/run/lock /var/lock definition to file_contexts.subs - nslcd_t is looking for kerberos cc files - SSH_USE_STRONG_RNG is 1 which requires /dev/random - Fix auth_rw_faillog definition - Allow sysadm_t to set attributes on fixed disks - allow user domains to execute lsof and look at application sockets - prelink_cron job calls telinit -u if init is rewritten - Fixes to run qemu_t from staff_t- Fix label for /var/run/udev to udev_var_run_t - Mock needs to be able to read network state- Add file_contexts.subs to handle /run and /run/lock - Add other fixes relating to /run changes from F15 policy- Allow $1_sudo_t and $1_su_t open access to user terminals - Allow initrc_t to use generic terminals - Make Makefile/Rules.modular run sepolgen-ifgen during build to check if files for bugs -systemd is going to be useing /run and /run/lock for early bootup files. - Fix some comments in rlogin.if - Add policy for KDE backlighthelper - sssd needs to read ~/.k5login in nfs, cifs or fusefs file systems - sssd wants to read .k5login file in users homedir - setroubleshoot reads executables to see if they have TEXTREL - Add /var/spool/audit support for new version of audit - Remove kerberos_connect_524() interface calling - Combine kerberos_master_port_t and kerberos_port_t - systemd has setup /dev/kmsg as stderr for apps it executes - Need these access so that init can impersonate sockets on unix_dgram_socket- Remove some unconfined domains - Remove permissive domains - Add policy-term.patch from Dan- Fix multiple specification for boot.log - devicekit leaks file descriptors to setfiles_t - Change all all_nodes to generic_node and all_if to generic_if - Should not use deprecated interface - Switch from using all_nodes to generic_node and from all_if to generic_if - Add support for xfce4-notifyd - Fix file context to show several labels as SystemHigh - seunshare needs to be able to mounton nfs/cifs/fusefs homedirs - Add etc_runtime_t label for /etc/securetty - Fixes to allow xdm_t to start gkeyringd_USERTYPE_t directly - login.krb needs to be able to write user_tmp_t - dirsrv needs to bind to port 7390 for dogtag - Fix a bug in gpg policy - gpg sends audit messages - Allow qpid to manage matahari files- Initial policy for matahari - Add dev_read_watchdog - Allow clamd to connect clamd port - Add support for kcmdatetimehelper - Allow shutdown to setrlimit and sys_nice - Allow systemd_passwd to talk to /dev/log before udev or syslog is running - Purge chr_file and blk files on /tmp - Fixes for pads - Fixes for piranha-pulse - gpg_t needs to be able to encyprt anything owned by the user- mozilla_plugin_tmp_t needs to be treated as user tmp files - More dontaudits of writes from readahead - Dontaudit readahead_t file_type:dir write, to cover up kernel bug - systemd_tmpfiles needs to relabel faillog directory as well as the file - Allow hostname and consoletype to r/w inherited initrc_tmp_t files handline hostname >> /tmp/myhost- Add policykit fixes from Tim Waugh - dontaudit sandbox domains sandbox_file_t:dir mounton - Add new dontaudit rules for sysadm_dbusd_t - Change label for /var/run/faillock * other fixes which relate with this change- Update to upstream - Fixes for telepathy - Add port defition for ssdp port - add policy for /bin/systemd-notify from Dan - Mount command requires users read mount_var_run_t - colord needs to read konject_uevent_socket - User domains connect to the gkeyring socket - Add colord policy and allow user_t and staff_t to dbus chat with it - Add lvm_exec_t label for kpartx - Dontaudit reading the mail_spool_t link from sandbox -X - systemd is creating sockets in avahi_var_run and system_dbusd_var_run- gpg_t needs to talk to gnome-keyring - nscd wants to read /usr/tmp->/var/tmp to generate randomziation in unixchkpwd - enforce MCS labeling on nodes - Allow arpwatch to read meminfo - Allow gnomeclock to send itself signals - init relabels /dev/.udev files on boot - gkeyringd has to transition back to staff_t when it runs commands in bin_t or shell_exec_t - nautilus checks access on /media directory before mounting usb sticks, dontaudit access_check on mnt_t - dnsmasq can run as a dbus service, needs acquire service - mysql_admin should be allowed to connect to mysql service - virt creates monitor sockets in the users home dir- Allow usbhid-ups to read hardware state information - systemd-tmpfiles has moved - Allo cgroup to sys_tty_config - For some reason prelink is attempting to read gconf settings - Add allow_daemons_use_tcp_wrapper boolean - Add label for ~/.cache/wocky to make telepathy work in enforcing mode - Add label for char devices /dev/dasd* - Fix for apache_role - Allow amavis to talk to nslcd - allow all sandbox to read selinux poilcy config files - Allow cluster domains to use the system bus and send each other dbus messages- Update to upstream- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Update to ref policy - cgred needs chown capability - Add /dev/crash crash_dev_t - systemd-readahead wants to use fanotify which means readahead_t needs sys_admin capability- New labeling for postfmulti #675654 - dontaudit xdm_t listing noxattr file systems - dovecot-auth needs to be able to connect to mysqld via the network as well as locally - shutdown is passed stdout to a xdm_log_t file - smartd creates a fixed disk device - dovecot_etc_t contains a lnk_file that domains need to read - mount needs to be able to read etc_runtim_t:lnk_file since in rawhide this is a link created at boot- syslog_t needs syslog capability - dirsrv needs to be able to create /var/lib/snmp - Fix labeling for dirsrv - Fix for dirsrv policy missing manage_dirs_pattern - corosync needs to delete clvm_tmpfs_t files - qdiskd needs to list hugetlbfs - Move setsched to sandbox_x_domain, so firefox can run without network access - Allow hddtemp to read removable devices - Adding syslog and read_policy permissions to policy * syslog Allow unconfined, sysadm_t, secadm_t, logadm_t * read_policy allow unconfined, sysadm_t, secadm_t, staff_t on Targeted allow sysadm_t (optionally), secadm_t on MLS - mdadm application will write into /sys/.../uevent whenever arrays are assembled or disassembled.- Add tcsd policy- ricci_modclusterd_t needs to bind to rpc ports 500-1023 - Allow dbus to use setrlimit to increase resoueces - Mozilla_plugin is leaking to sandbox - Allow confined users to connect to lircd over unix domain stream socket which allow to use remote control - Allow awstats to read squid logs - seunshare needs to manage tmp_t - apcupsd cgi scripts have a new directory- Fix xserver_dontaudit_read_xdm_pid - Change oracle_port_t to oracledb_port_t to prevent conflict with satellite - Allow dovecot_deliver_t to read/write postfix_master_t:fifo_file. * These fifo_file is passed from postfix_master_t to postfix_local_t to dovecot_deliver_t - Allow readahead to manage readahead pid dirs - Allow readahead to read all mcs levels - Allow mozilla_plugin_t to use nfs or samba homedirs- Allow nagios plugin to read /proc/meminfo - Fix for mozilla_plugin - Allow samba_net_t to create /etc/keytab - pppd_t setting up vpns needs to run unix_chkpwd, setsched its process and write wtmp_t - nslcd can read user credentials - Allow nsplugin to delete mozilla_plugin_tmpfs_t - abrt tries to create dir in rpm_var_lib_t - virt relabels fifo_files - sshd needs to manage content in fusefs homedir - mock manages link files in cache dir- nslcd needs setsched and to read /usr/tmp - Invalid call in likewise policy ends up creating a bogus role - Cannon puts content into /var/lib/bjlib that cups needs to be able to write - Allow screen to create screen_home_t in /root - dirsrv sends syslog messages - pinentry reads stuff in .kde directory - Add labels for .kde directory in homedir - Treat irpinit, iprupdate, iprdump services with raid policy- NetworkManager wants to read consolekit_var_run_t - Allow readahead to create /dev/.systemd/readahead - Remove permissive domains - Allow newrole to run namespace_init- Add sepgsql_contexts file- Update to upstream- Add oracle ports and allow apache to connect to them if the connect_db boolean is turned on - Add puppetmaster_use_db boolean - Fixes for zarafa policy - Fixes for gnomeclock poliy - Fix systemd-tmpfiles to use auth_use_nsswitch- gnomeclock executes a shell - Update for screen policy to handle pipe in homedir - Fixes for polyinstatiated homedir - Fixes for namespace policy and other fixes related to polyinstantiation - Add namespace policy - Allow dovecot-deliver transition to sendmail which is needed by sieve scripts - Fixes for init, psad policy which relate with confined users - Do not audit bootloader attempts to read devicekit pid files - Allow nagios service plugins to read /proc- Add firewalld policy - Allow vmware_host to read samba config - Kernel wants to read /proc Fix duplicate grub def in cobbler - Chrony sends mail, executes shell, uses fifo_file and reads /proc - devicekitdisk getattr all file systems - sambd daemon writes wtmp file - libvirt transitions to dmidecode- Add initial policy for system-setup-keyboard which is now daemon - Label /var/lock/subsys/shorewall as shorewall_lock_t - Allow users to communicate with the gpg_agent_t - Dontaudit mozilla_plugin_t using the inherited terminal - Allow sambagui to read files in /usr - webalizer manages squid log files - Allow unconfined domains to bind ports to raw_ip_sockets - Allow abrt to manage rpm logs when running yum - Need labels for /var/run/bittlebee - Label .ssh under amanda - Remove unused genrequires for virt_domain_template - Allow virt_domain to use fd inherited from virtd_t - Allow iptables to read shorewall config- Gnome apps list config_home_t - mpd creates lnk files in homedir - apache leaks write to mail apps on tmp files - /var/stockmaniac/templates_cache contains log files - Abrt list the connects of mount_tmp_t dirs - passwd agent reads files under /dev and reads utmp file - squid apache script connects to the squid port - fix name of plymouth log file - teamviewer is a wine app - allow dmesg to read system state - Stop labeling files under /var/lib/mock so restorecon will not go into this - nsplugin needs to read network state for google talk- Allow xdm and syslog to use /var/log/boot.log - Allow users to communicate with mozilla_plugin and kill it - Add labeling for ipv6 and dhcp- New labels for ghc http content - nsplugin_config needs to read urand, lvm now calls setfscreate to create dev - pm-suspend now creates log file for append access so we remove devicekit_wri - Change authlogin_use_sssd to authlogin_nsswitch_use_ldap - Fixes for greylist_milter policy- Update to upstream - Fixes for systemd policy - Fixes for passenger policy - Allow staff users to run mysqld in the staff_t domain, akonadi needs this - Add bin_t label for /usr/share/kde4/apps/kajongg/kajongg.py - auth_use_nsswitch does not need avahi to read passwords,needed for resolving data - Dontaudit (xdm_t) gok attempting to list contents of /var/account - Telepathy domains need to read urand - Need interface to getattr all file classes in a mock library for setroubleshoot- Update selinux policy to handle new /usr/share/sandbox/start script- Update to upstream - Fix version of policy in spec file- Allow sandbox to run on nfs partitions, fixes for systemd_tmpfs - remove per sandbox domains devpts types - Allow dkim-milter sending signal to itself- Allow domains that transition to ping or traceroute, kill them - Allow user_t to conditionally transition to ping_t and traceroute_t - Add fixes to systemd- tools, including new labeling for systemd-fsck, systemd-cryptsetup- Turn on systemd policy - mozilla_plugin needs to read certs in the homedir. - Dontaudit leaked file descriptors from devicekit - Fix ircssi to use auth_use_nsswitch - Change to use interface without param in corenet to disable unlabelednet packets - Allow init to relabel sockets and fifo files in /dev - certmonger needs dac* capabilities to manage cert files not owned by root - dovecot needs fsetid to change group membership on mail - plymouthd removes /var/log/boot.log - systemd is creating symlinks in /dev - Change label on /etc/httpd/alias to be all cert_t- Fixes for clamscan and boinc policy - Add boinc_project_t setpgid - Allow alsa to create tmp files in /tmp- Push fixes to allow disabling of unlabeled_t packet access - Enable unlabelednet policy- Fixes for lvm to work with systemd- Fix the label for wicd log - plymouthd creates force-display-on-active-vt file - Allow avahi to request the kernel to load a module - Dontaudit hal leaks - Fix gnome_manage_data interface - Add new interface corenet_packet to define a type as being an packet_type. - Removed general access to packet_type from icecast and squid. - Allow mpd to read alsa config - Fix the label for wicd log - Add systemd policy- Fix gnome_manage_data interface - Dontaudit sys_ptrace capability for iscsid - Fixes for nagios plugin policy- Fix cron to run ranged when started by init - Fix devicekit to use log files - Dontaudit use of devicekit_var_run_t for fstools - Allow init to setattr on logfile directories - Allow hald to manage files in /var/run/pm-utils/ dir which is now labeled as devicekit_var_run_t- Fix up handling of dnsmasq_t creating /var/run/libvirt/network - Turn on sshd_forward_ports boolean by default - Allow sysadmin to dbus chat with rpm - Add interface for rw_tpm_dev - Allow cron to execute bin - fsadm needs to write sysfs - Dontaudit consoletype reading /var/run/pm-utils - Lots of new privs fro mozilla_plugin_t running java app, make mozilla_plugin - certmonger needs to manage dirsrv data - /var/run/pm-utils should be labeled as devicekit_var_run_t- fixes to allow /var/run and /var/lock as tmpfs - Allow chrome sandbox to connect to web ports - Allow dovecot to listem on lmtp and sieve ports - Allov ddclient to search sysctl_net_t - Transition back to original domain if you execute the shell- Remove duplicate declaration- Update to upstream - Cleanup for sandbox - Add attribute to be able to select sandbox types- Allow ddclient to fix file mode bits of ddclient conf file - init leaks file descriptors to daemons - Add labels for /etc/lirc/ and - Allow amavis_t to exec shell - Add label for gssd_tmp_t for /var/tmp/nfs_0- Put back in lircd_etc_t so policy will install- Turn on allow_postfix_local_write_mail_spool - Allow initrc_t to transition to shutdown_t - Allow logwatch and cron to mls_read_to_clearance for MLS boxes - Allow wm to send signull to all applications and receive them from users - lircd patch from field - Login programs have to read /etc/samba - New programs under /lib/systemd - Abrt needs to read config files- Update to upstream - Dontaudit leaked sockets from userdomains to user domains - Fixes for mcelog to handle scripts - Apply patch from Ruben Kerkhof - Allow syslog to search spool dirs- Allow nagios plugins to read usr files - Allow mysqld-safe to send system log messages - Fixes fpr ddclient policy - Fix sasl_admin interface - Allow apache to search zarafa config - Allow munin plugins to search /var/lib directory - Allow gpsd to read sysfs_t - Fix labels on /etc/mcelog/triggers to bin_t- Remove saslauthd_tmp_t and transition tmp files to krb5_host_rcache_t - Allow saslauthd_t to create krb5_host_rcache_t files in /tmp - Fix xserver interface - Fix definition of /var/run/lxdm- Turn on mediawiki policy - kdump leaks kdump_etc_t to ifconfig, add dontaudit - uux needs to transition to uucpd_t - More init fixes relabels man,faillog - Remove maxima defs in libraries.fc - insmod needs to be able to create tmpfs_t files - ping needs setcap- Allow groupd transition to fenced domain when executes fence_node - Fixes for rchs policy - Allow mpd to be able to read samba/nfs files- Fix up corecommands.fc to match upstream - Make sure /lib/systemd/* is labeled init_exec_t - mount wants to setattr on all mountpoints - dovecot auth wants to read dovecot etc files - nscd daemon looks at the exe file of the comunicating daemon - openvpn wants to read utmp file - postfix apps now set sys_nice and lower limits - remote_login (telnetd/login) wants to use telnetd_devpts_t and user_devpts_t to work correctly - Also resolves nsswitch - Fix labels on /etc/hosts.* - Cleanup to make upsteam patch work - allow abrt to read etc_runtime_t- Add conflicts for dirsrv package- Update to upstream - Add vlock policy- Fix sandbox to work on nfs homedirs - Allow cdrecord to setrlimit - Allow mozilla_plugin to read xauth - Change label on systemd-logger to syslogd_exec_t - Install dirsrv policy from dirsrv package- Add virt_home_t, allow init to setattr on xserver_tmp_t and relabel it - Udev needs to stream connect to init and kernel - Add xdm_exec_bootloader boolean, which allows xdm to execute /sbin/grub and read files in /boot directory- Allow NetworkManager to read openvpn_etc_t - Dontaudit hplip to write of /usr dirs - Allow system_mail_t to create /root/dead.letter as mail_home_t - Add vdagent policy for spice agent daemon- Dontaudit sandbox sending sigkill to all user domains - Add policy for rssh_chroot_helper - Add missing flask definitions - Allow udev to relabelto removable_t - Fix label on /var/log/wicd.log - Transition to initrc_t from init when executing bin_t - Add audit_access permissions to file - Make removable_t a device_node - Fix label on /lib/systemd/*- Fixes for systemd to manage /var/run - Dontaudit leaks by firstboot- Allow chome to create netlink_route_socket - Add additional MATHLAB file context - Define nsplugin as an application_domain - Dontaudit sending signals from sandboxed domains to other domains - systemd requires init to build /tmp /var/auth and /var/lock dirs - mount wants to read devicekit_power /proc/ entries - mpd wants to connect to soundd port - Openoffice causes a setattr on a lib_t file for normal users, add dontaudit - Treat lib_t and textrel_shlib_t directories the same - Allow mount read access on virtual images- Allow sandbox_x_domains to work with nfs/cifs/fusefs home dirs. - Allow devicekit_power to domtrans to mount - Allow dhcp to bind to udp ports > 1024 to do named stuff - Allow ssh_t to exec ssh_exec_t - Remove telepathy_butterfly_rw_tmp_files(), dev_read_printk() interfaces which are nolonger used - Fix clamav_append_log() intefaces - Fix 'psad_rw_fifo_file' interface- Allow cobblerd to list cobler appache content- Fixup for the latest version of upowed - Dontaudit sandbox sending SIGNULL to desktop apps- Update to upstream-Mount command from a confined user generates setattr on /etc/mtab file, need to dontaudit this access - dovecot-auth_t needs ipc_lock - gpm needs to use the user terminal - Allow system_mail_t to append ~/dead.letter - Allow NetworkManager to edit /etc/NetworkManager/NetworkManager.conf - Add pid file to vnstatd - Allow mount to communicate with gfs_controld - Dontaudit hal leaks in setfiles- Lots of fixes for systemd - systemd now executes readahead and tmpwatch type scripts - Needs to manage random seed- Allow smbd to use sys_admin - Remove duplicate file context for tcfmgr - Update to upstream- Fix fusefs handling - Do not allow sandbox to manage nsplugin_rw_t - Allow mozilla_plugin_t to connecto its parent - Allow init_t to connect to plymouthd running as kernel_t - Add mediawiki policy - dontaudit sandbox sending signals to itself. This can happen when they are running at different mcs. - Disable transition from dbus_session_domain to telepathy for F14 - Allow boinc_project to use shm - Allow certmonger to search through directories that contain certs - Allow fail2ban the DAC Override so it can read log files owned by non root users- Start adding support for use_fusefs_home_dirs - Add /var/lib/syslog directory file context - Add /etc/localtime as locale file context- Turn off default transition to mozilla_plugin and telepathy domains from unconfined user - Turn off iptables from unconfined user - Allow sudo to send signals to any domains the user could have transitioned to. - Passwd in single user mode needs to talk to console_device_t - Mozilla_plugin_t needs to connect to web ports, needs to write to video device, and read alsa_home_t alsa setsup pulseaudio - locate tried to read a symbolic link, will dontaudit - New labels for telepathy-sunshine content in homedir - Google is storing other binaries under /opt/google/talkplugin - bluetooth/kernel is creating unlabeled_t socket that I will allow it to use until kernel fixes bug - Add boolean for unconfined_t transition to mozilla_plugin_t and telepathy domains, turned off in F14 on in F15 - modemmanger and bluetooth send dbus messages to devicekit_power - Samba needs to getquota on filesystems labeld samba_share_t- Dontaudit attempts by xdm_t to write to bin_t for kdm - Allow initrc_t to manage system_conf_t- Fixes to allow mozilla_plugin_t to create nsplugin_home_t directory. - Allow mozilla_plugin_t to create tcp/udp/netlink_route sockets - Allow confined users to read xdm_etc_t files - Allow xdm_t to transition to xauth_t for lxdm program- Rearrange firewallgui policy to be more easily updated to upstream, dontaudit search of /home - Allow clamd to send signals to itself - Allow mozilla_plugin_t to read user home content. And unlink pulseaudio shm. - Allow haze to connect to yahoo chat and messenger port tcp:5050. Bz #637339 - Allow guest to run ps command on its processes by allowing it to read /proc - Allow firewallgui to sys_rawio which seems to be required to setup masqerading - Allow all domains to search through default_t directories, in order to find differnet labels. For example people serring up /foo/bar to be share via samba. - Add label for /var/log/slim.log- Pull in cleanups from dgrift - Allow mozilla_plugin_t to execute mozilla_home_t - Allow rpc.quota to do quotamod- Cleanup policy via dgrift - Allow dovecot_deliver to append to inherited log files - Lots of fixes for consolehelper- Fix up Xguest policy- Add vnstat policy - allow libvirt to send audit messages - Allow chrome-sandbox to search nfs_t- Update to upstream- Add the ability to send audit messages to confined admin policies - Remove permissive domain from cmirrord and dontaudit sys_tty_config - Split out unconfined_domain() calls from other unconfined_ calls so we can d - virt needs to be able to read processes to clearance for MLS- Allow all domains that can use cgroups to search tmpfs_t directory - Allow init to send audit messages- Update to upstream- Allow mdadm_t to create files and sock files in /dev/md/- Add policy for ajaxterm- Handle /var/db/sudo - Allow pulseaudio to read alsa config - Allow init to send initrc_t dbus messagesAllow iptables to read shorewall tmp files Change chfn and passwd to use auth_use_pam so they can send dbus messages to fpr intd label vlc as an execmem_exec_t Lots of fixes for mozilla_plugin to run google vidio chat Allow telepath_msn to execute ldconfig and its own tmp files Fix labels on hugepages Allow mdadm to read files on /dev Remove permissive domains and change back to unconfined Allow freshclam to execute shell and bin_t Allow devicekit_power to transition to dhcpc Add boolean to allow icecast to connect to any port- Merge upstream fix of mmap_zero - Allow mount to write files in debugfs_t - Allow corosync to communicate with clvmd via tmpfs - Allow certmaster to read usr_t files - Allow dbus system services to search cgroup_t - Define rlogind_t as a login pgm- Allow mdadm_t to read/write hugetlbfs- Dominic Grift Cleanup - Miroslav Grepl policy for jabberd - Various fixes for mount/livecd and prelink- Merge with upstream- More access needed for devicekit - Add dbadm policy- Merge with upstream- Allow seunshare to fowner- Allow cron to look at user_cron_spool links - Lots of fixes for mozilla_plugin_t - Add sysv file system - Turn unconfined domains to permissive to find additional avcs- Update policy for mozilla_plugin_t- Allow clamscan to read proc_t - Allow mount_t to write to debufs_t dir - Dontaudit mount_t trying to write to security_t dir- Allow clamscan_t execmem if clamd_use_jit set - Add policy for firefox plugin-container- Fix /root/.forward definition- label dead.letter as mail_home_t- Allow login programs to search /cgroups- Fix cert handling- Fix devicekit_power bug - Allow policykit_auth_t more access.- Fix nis calls to allow bind to ports 512-1024 - Fix smartmon- Allow pcscd to read sysfs - systemd fixes - Fix wine_mmap_zero_ignore boolean- Apply Miroslav munin patch - Turn back on allow_execmem and allow_execmod booleans- Merge in fixes from dgrift repository- Update boinc policy - Fix sysstat policy to allow sys_admin - Change failsafe_context to unconfined_r:unconfined_t:s0- New paths for upstart- New permissions for syslog - New labels for /lib/upstart- Add mojomojo policy- Allow systemd to setsockcon on sockets to immitate other services- Remove debugfs label- Update to latest policy- Fix eclipse labeling from IBMSupportAssasstant packageing- Make boot with systemd in enforcing mode- Update to upstream- Add boolean to turn off port forwarding in sshd.- Add support for ebtables - Fixes for rhcs and corosync policy-Update to upstream-Update to upstream-Update to upstream- Add Zarafa policy- Cleanup of aiccu policy - initial mock policy- Lots of random fixes- Update to upstream- Update to upstream - Allow prelink script to signal itself - Cobbler fixes- Add xdm_var_run_t to xserver_stream_connect_xdm - Add cmorrord and mpd policy from Miroslav Grepl- Fix sshd creation of krb cc files for users to be user_tmp_t- Fixes for accountsdialog - Fixes for boinc- Fix label on /var/lib/dokwiki - Change permissive domains to enforcing - Fix libvirt policy to allow it to run on mls- Update to upstream- Allow procmail to execute scripts in the users home dir that are labeled home_bin_t - Fix /var/run/abrtd.lock label- Allow login programs to read krb5_home_t Resolves: 594833 - Add obsoletes for cachefilesfd-selinux package Resolves: #575084- Allow mount to r/w abrt fifo file - Allow svirt_t to getattr on hugetlbfs - Allow abrt to create a directory under /var/spool- Add labels for /sys - Allow sshd to getattr on shutdown - Fixes for munin - Allow sssd to use the kernel key ring - Allow tor to send syslog messages - Allow iptabels to read usr files - allow policykit to read all domains state- Fix path for /var/spool/abrt - Allow nfs_t as an entrypoint for http_sys_script_t - Add policy for piranha - Lots of fixes for sosreport- Allow xm_t to read network state and get and set capabilities - Allow policykit to getattr all processes - Allow denyhosts to connect to tcp port 9911 - Allow pyranha to use raw ip sockets and ptrace itself - Allow unconfined_execmem_t and gconfsd mechanism to dbus - Allow staff to kill ping process - Add additional MLS rules- Allow gdm to edit ~/.gconf dir Resolves: #590677 - Allow dovecot to create directories in /var/lib/dovecot Partially resolves 590224 - Allow avahi to dbus chat with NetworkManager - Fix cobbler labels - Dontaudit iceauth_t leaks - fix /var/lib/lxdm file context - Allow aiccu to use tun tap devices - Dontaudit shutdown using xserver.log- Fixes for sandbox_x_net_t to match access for sandbox_web_t ++ - Add xdm_etc_t for /etc/gdm directory, allow accountsd to manage this directory - Add dontaudit interface for bluetooth dbus - Add chronyd_read_keys, append_keys for initrc_t - Add log support for ksmtuned Resolves: #586663- Allow boinc to send mail- Allow initrc_t to remove dhcpc_state_t - Fix label on sa-update.cron - Allow dhcpc to restart chrony initrc - Don't allow sandbox to send signals to its parent processes - Fix transition from unconfined_t -> unconfined_mount_t -> rpcd_t Resolves: #589136- Fix location of oddjob_mkhomedir Resolves: #587385 - fix labeling on /root/.shosts and ~/.shosts - Allow ipsec_mgmt_t to manage net_conf_t Resolves: #586760- Dontaudit sandbox trying to connect to netlink sockets Resolves: #587609 - Add policy for piranha- Fixups for xguest policy - Fixes for running sandbox firefox- Allow ksmtuned to use terminals Resolves: #586663 - Allow lircd to write to generic usb devices- Allow sandbox_xserver to connectto unconfined stream Resolves: #585171- Allow initrc_t to read slapd_db_t Resolves: #585476 - Allow ipsec_mgmt to use unallocated devpts and to create /etc/resolv.conf Resolves: #585963- Allow rlogind_t to search /root for .rhosts Resolves: #582760 - Fix path for cached_var_t - Fix prelink paths /var/lib/prelink - Allow confined users to direct_dri - Allow mls lvm/cryptosetup to work- Allow virtd_t to manage firewall/iptables config Resolves: #573585- Fix label on /root/.rhosts Resolves: #582760 - Add labels for Picasa - Allow openvpn to read home certs - Allow plymouthd_t to use tty_device_t - Run ncftool as iptables_t - Allow mount to unmount unlabeled_t - Dontaudit hal leaks- Allow livecd to transition to mount- Update to upstream - Allow abrt to delete sosreport Resolves: #579998 - Allow snmp to setuid and gid Resolves: #582155 - Allow smartd to use generic scsi devices Resolves: #582145- Allow ipsec_t to create /etc/resolv.conf with the correct label - Fix reserved port destination - Allow autofs to transition to showmount - Stop crashing tuned- Add telepathysofiasip policy- Update to upstream - Fix label for /opt/google/chrome/chrome-sandbox - Allow modemmanager to dbus with policykit- Fix allow_httpd_mod_auth_pam to use auth_use_pam(httpd_t) - Allow accountsd to read shadow file - Allow apache to send audit messages when using pam - Allow asterisk to bind and connect to sip tcp ports - Fixes for dovecot 2.0 - Allow initrc_t to setattr on milter directories - Add procmail_home_t for .procmailrc file- Fixes for labels during install from livecd- Fix /cgroup file context - Fix broken afs use of unlabled_t - Allow getty to use the console for s390- Fix cgroup handling adding policy for /cgroup - Allow confined users to write to generic usb devices, if user_rw_noexattrfile boolean set- Merge patches from dgrift- Update upstream - Allow abrt to write to the /proc under any process- Fix ~/.fontconfig label - Add /root/.cert label - Allow reading of the fixed_file_disk_t:lnk_file if you can read file - Allow qemu_exec_t as an entrypoint to svirt_t- Update to upstream - Allow tmpreaper to delete sandbox sock files - Allow chrome-sandbox_t to use /dev/zero, and dontaudit getattr file systems - Fixes for gitosis - No transition on livecd to passwd or chfn - Fixes for denyhosts- Add label for /var/lib/upower - Allow logrotate to run sssd - dontaudit readahead on tmpfs blk files - Allow tmpreaper to setattr on sandbox files - Allow confined users to execute dos files - Allow sysadm_t to kill processes running within its clearance - Add accountsd policy - Fixes for corosync policy - Fixes from crontab policy - Allow svirt to manage svirt_image_t chr files - Fixes for qdisk policy - Fixes for sssd policy - Fixes for newrole policy- make libvirt work on an MLS platform- Add qpidd policy- Update to upstream- Allow boinc to read kernel sysctl - Fix snmp port definitions - Allow apache to read anon_inodefs- Allow shutdown dac_override- Add device_t as a file system - Fix sysfs association- Dontaudit ipsec_mgmt sys_ptrace - Allow at to mail its spool files - Allow nsplugin to search in .pulse directory- Update to upstream- Allow users to dbus chat with xdm - Allow users to r/w wireless_device_t - Dontaudit reading of process states by ipsec_mgmt- Fix openoffice from unconfined_t- Add shutdown policy so consolekit can shutdown system- Update to upstream- Update to upstream- Update to upstream - These are merges of my patches - Remove 389 labeling conflicts - Add MLS fixes found in RHEL6 testing - Allow pulseaudio to run as a service - Add label for mssql and allow apache to connect to this database port if boolean set - Dontaudit searches of debugfs mount point - Allow policykit_auth to send signals to itself - Allow modcluster to call getpwnam - Allow swat to signal winbind - Allow usbmux to run as a system role - Allow svirt to create and use devpts- Add MLS fixes found in RHEL6 testing - Allow domains to append to rpm_tmp_t - Add cachefilesfd policy - Dontaudit leaks when transitioning- Change allow_execstack and allow_execmem booleans to on - dontaudit acct using console - Add label for fping - Allow tmpreaper to delete sandbox_file_t - Fix wine dontaudit mmap_zero - Allow abrt to read var_t symlinks- Additional policy for rgmanager- Allow sshd to setattr on pseudo terms- Update to upstream- Allow policykit to send itself signals- Fix duplicate cobbler definition- Fix file context of /var/lib/avahi-autoipd- Merge with upstream- Allow sandbox to work with MLS- Make Chrome work with staff user- Add icecast policy - Cleanup spec file- Add mcelog policy- Lots of fixes found in F12- Fix rpm_dontaudit_leaks- Add getsched to hald_t - Add file context for Fedora/Redhat Directory Server- Allow abrt_helper to getattr on all filesystems - Add label for /opt/real/RealPlayer/plugins/oggfformat\.so- Add gstreamer_home_t for ~/.gstreamer- Update to upstream- Fix git- Turn on puppet policy - Update to dgrift git policy- Move users file to selection by spec file. - Allow vncserver to run as unconfined_u:unconfined_r:unconfined_t- Update to upstream- Remove most of the permissive domains from F12.- Add cobbler policy from dgrift- add usbmon device - Add allow rulse for devicekit_disk- Lots of fixes found in F12, fixes from Tom London- Cleanups from dgrift- Add back xserver_manage_home_fonts- Dontaudit sandbox trying to read nscd and sssd- Update to upstream- Rename udisks-daemon back to devicekit_disk_t policy- Fixes for abrt calls- Add tgtd policy- Update to upstream release- Add asterisk policy back in - Update to upstream release 2.20091117- Update to upstream release 2.20091117- Fixup nut policy- Update to upstream- Allow vpnc request the kernel to load modules- Fix minimum policy installs - Allow udev and rpcbind to request the kernel to load modules- Add plymouth policy - Allow local_login to sys_admin- Allow cupsd_config to read user tmp - Allow snmpd_t to signal itself - Allow sysstat_t to makedir in sysstat_log_t- Update rhcs policy- Allow users to exec restorecond- Allow sendmail to request kernel modules load- Fix all kernel_request_load_module domains- Fix all kernel_request_load_module domains- Remove allow_exec* booleans for confined users. Only available for unconfined_t- More fixes for sandbox_web_t- Allow sshd to create .ssh directory and content- Fix request_module line to module_request- Fix sandbox policy to allow it to run under firefox. - Dont audit leaks.- Fixes for sandbox- Update to upstream - Dontaudit nsplugin search /root - Dontaudit nsplugin sys_nice- Fix label on /usr/bin/notepad, /usr/sbin/vboxadd-service - Remove policycoreutils-python requirement except for minimum- Fix devicekit_disk_t to getattr on all domains sockets and fifo_files - Conflicts seedit (You can not use selinux-policy-targeted and seedit at the same time.)- Add wordpress/wp-content/uploads label - Fixes for sandbox when run from staff_t- Update to upstream - Fixes for devicekit_disk- More fixes- Lots of fixes for initrc and other unconfined domains- Allow xserver to use netlink_kobject_uevent_socket- Fixes for sandbox- Dontaudit setroubleshootfix looking at /root directory- Update to upsteam- Allow gssd to send signals to users - Fix duplicate label for apache content- Update to upstream- Remove polkit_auth on upgrades- Add back in unconfined.pp and unconfineduser.pp - Add Sandbox unshare- Fixes for cdrecord, mdadm, and others- Add capability setting to dhcpc and gpm- Allow cronjobs to read exim_spool_t- Add ABRT policy- Fix system-config-services policy- Allow libvirt to change user componant of virt_domain- Allow cupsd_config_t to be started by dbus - Add smoltclient policy- Add policycoreutils-python to pre install- Make all unconfined_domains permissive so we can see what AVC's happen- Add pt_chown policy- Add kdump policy for Miroslav Grepl - Turn off execstack boolean- Turn on execstack on a temporary basis (#512845)- Allow nsplugin to connecto the session bus - Allow samba_net to write to coolkey data- Allow devicekit_disk to list inotify- Allow svirt images to create sock_file in svirt_var_run_t- Allow exim to getattr on mountpoints - Fixes for pulseaudio- Allow svirt_t to stream_connect to virtd_t- Allod hald_dccm_t to create sock_files in /tmp- More fixes from upstream- Fix polkit label - Remove hidebrokensymptoms for nss_ldap fix - Add modemmanager policy - Lots of merges from upstream - Begin removing textrel_shlib_t labels, from fixed libraries- Update to upstream- Allow certmaster to override dac permissions- Update to upstream- Fix context for VirtualBox- Update to upstream- Allow clamscan read amavis spool files- Fixes for xguest- fix multiple directory ownership of mandirs- Update to upstream- Add rules for rtkit-daemon- Update to upstream - Fix nlscd_stream_connect- Add rtkit policy- Allow rpcd_t to stream connect to rpcbind- Allow kpropd to create tmp files- Fix last duplicate /var/log/rpmpkgs- Update to upstream * add sssd- Update to upstream * cleanup- Update to upstream - Additional mail ports - Add virt_use_usb boolean for svirt- Fix mcs rules to include chr_file and blk_file- Add label for udev-acl- Additional rules for consolekit/udev, privoxy and various other fixes- New version for upstream- Allow NetworkManager to read inotifyfs- Allow setroubleshoot to run mlocate- Update to upstream- Add fish as a shell - Allow fprintd to list usbfs_t - Allow consolekit to search mountpoints - Add proper labeling for shorewall- New log file for vmware - Allow xdm to setattr on user_tmp_t- Upgrade to upstream- Allow fprintd to access sys_ptrace - Add sandbox policy- Add varnishd policy- Fixes for kpropd- Allow brctl to r/w tun_tap_device_t- Add /usr/share/selinux/packages- Allow rpcd_t to send signals to kernel threads- Fix upgrade for F10 to F11- Add policy for /var/lib/fprint-Remove duplicate line- Allow svirt to manage pci and other sysfs device data- Fix package selection handling- Fix /sbin/ip6tables-save context - Allod udev to transition to mount - Fix loading of mls policy file- Add shorewall policy- Additional rules for fprintd and sssd- Allow nsplugin to unix_read unix_write sem for unconfined_java- Fix uml files to be owned by users- Fix Upgrade path to install unconfineduser.pp when unocnfined package is 3.0.0 or less- Allow confined users to manage virt_content_t, since this is home dir content - Allow all domains to read rpm_script_tmp_t which is what shell creates on redirection- Fix labeling on /var/lib/misc/prelink* - Allow xserver to rw_shm_perms with all x_clients - Allow prelink to execute files in the users home directory- Allow initrc_t to delete dev_null - Allow readahead to configure auditing - Fix milter policy - Add /var/lib/readahead- Update to latest milter code from Paul Howarth- Additional perms for readahead- Allow pulseaudio to acquire_svc on session bus - Fix readahead labeling- Allow sysadm_t to run rpm directly - libvirt needs fowner- Allow sshd to read var_lib symlinks for freenx- Allow nsplugin unix_read and write on users shm and sem - Allow sysadm_t to execute su- Dontaudit attempts to getattr user_tmpfs_t by lvm - Allow nfs to share removable media- Add ability to run postdrop from confined users- Fixes for podsleuth- Turn off nsplugin transition - Remove Konsole leaked file descriptors for release- Allow cupsd_t to create link files in print_spool_t - Fix iscsi_stream_connect typo - Fix labeling on /etc/acpi/actions - Don't reinstall unconfine and unconfineuser on upgrade if they are not installed- Allow audioentroy to read etc files- Add fail2ban_var_lib_t - Fixes for devicekit_power_t- Separate out the ucnonfined user from the unconfined.pp package- Make sure unconfined_java_t and unconfined_mono_t create user_tmpfs_t.- Upgrade to latest upstream - Allow devicekit_disk sys_rawio- Dontaudit binds to ports < 1024 for named - Upgrade to latest upstream- Allow podsleuth to use tmpfs files- Add customizable_types for svirt- Allow setroubelshoot exec* privs to prevent crash from bad libraries - add cpufreqselector- Dontaudit listing of /root directory for cron system jobs- Fix missing ld.so.cache label- Add label for ~/.forward and /root/.forward- Fixes for svirt- Fixes to allow svirt read iso files in homedir- Add xenner and wine fixes from mgrepl- Allow mdadm to read/write mls override- Change to svirt to only access svirt_image_t- Fix libvirt policy- Upgrade to latest upstream- Fixes for iscsid and sssd - More cleanups for upgrade from F10 to Rawhide.- Add pulseaudio, sssd policy - Allow networkmanager to exec udevadm- Add pulseaudio context- Upgrade to latest patches- Fixes for libvirt- Update to Latest upstream- Fix setrans.conf to show SystemLow for s0- Further confinement of qemu images via svirt- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- Allow NetworkManager to manage /etc/NetworkManager/system-connections- add virtual_image_context and virtual_domain_context files- Allow rpcd_t to send signal to mount_t - Allow libvirtd to run ranged- Fix sysnet/net_conf_t- Fix squidGuard labeling- Re-add corenet_in_generic_if(unlabeled_t)* Tue Feb 10 2009 Dan Walsh 3.6.5-2 - Add git web policy- Add setrans contains from upstream- Do transitions outside of the booleans- Allow xdm to create user_tmp_t sockets for switch user to work- Fix staff_t domain- Grab remainder of network_peer_controls patch- More fixes for devicekit- Upgrade to latest upstream- Add boolean to disallow unconfined_t login- Add back transition from xguest to mozilla- Add virt_content_ro_t and labeling for isos directory- Fixes for wicd daemon- More mls/rpm fixes- Add policy to make dbus/nm-applet work- Remove polgen-ifgen from post and add trigger to policycoreutils-python- Add wm policy - Make mls work in graphics mode- Fixed for DeviceKit- Add devicekit policy- Update to upstream- Define openoffice as an x_domain- Fixes for reading xserver_tmp_t- Allow cups_pdf_t write to nfs_t- Remove audio_entropy policy- Update to upstream- Allow hal_acl_t to getattr/setattr fixed_disk- Change userdom_read_all_users_state to include reading symbolic links in /proc- Fix dbus reading /proc information- Add missing alias for home directory content- Fixes for IBM java location- Allow unconfined_r unconfined_java_t- Add cron_role back to user domains- Fix sudo setting of user keys- Allow iptables to talk to terminals - Fixes for policy kit - lots of fixes for booting.- Cleanup policy- Rebuild for Python 2.6- Fix labeling on /var/spool/rsyslog- Allow postgresl to bind to udp nodes- Allow lvm to dbus chat with hal - Allow rlogind to read nfs_t- Fix cyphesis file context- Allow hal/pm-utils to look at /var/run/video.rom - Add ulogd policy- Additional fixes for cyphesis - Fix certmaster file context - Add policy for system-config-samba - Allow hal to read /var/run/video.rom- Allow dhcpc to restart ypbind - Fixup labeling in /var/run- Add certmaster policy- Fix confined users - Allow xguest to read/write xguest_dbusd_t- Allow openoffice execstack/execmem privs- Allow mozilla to run with unconfined_execmem_t- Dontaudit domains trying to write to .xsession-errors- Allow nsplugin to look at autofs_t directory- Allow kerneloops to create tmp files- More alias for fastcgi- Remove mod_fcgid-selinux package- Fix dovecot access- Policy cleanup- Remove Multiple spec - Add include - Fix makefile to not call per_role_expansion- Fix labeling of libGL- Update to upstream- Update to upstream policy- Fixes for confined xwindows and xdm_t- Allow confined users and xdm to exec wm - Allow nsplugin to talk to fifo files on nfs- Allow NetworkManager to transition to avahi and iptables - Allow domains to search other domains keys, coverup kernel bug- Fix labeling for oracle- Allow nsplugin to comminicate with xdm_tmp_t sock_file- Change all user tmpfs_t files to be labeled user_tmpfs_t - Allow radiusd to create sock_files- Upgrade to upstream- Allow confined users to login with dbus- Fix transition to nsplugin- Add file context for /dev/mspblk.*- Fix transition to nsplugin '- Fix labeling on new pm*log - Allow ssh to bind to all nodes- Merge upstream changes - Add Xavier Toth patches- Add qemu_cache_t for /var/cache/libvirt- Remove gamin policy- Add tinyxs-max file system support- Update to upstream - New handling of init scripts- Allow pcsd to dbus - Add memcache policy- Allow audit dispatcher to kill his children- Update to upstream - Fix crontab use by unconfined user- Allow ifconfig_t to read dhcpc_state_t- Update to upstream- Update to upstream- Allow system-config-selinux to work with policykit- Fix novel labeling- Consolodate pyzor,spamassassin, razor into one security domain - Fix xdm requiring additional perms.- Fixes for logrotate, alsa- Eliminate vbetool duplicate entry- Fix xguest -> xguest_mozilla_t -> xguest_openiffice_t - Change dhclient to be able to red networkmanager_var_run- Update to latest refpolicy - Fix libsemanage initial install bug- Add inotify support to nscd- Allow unconfined_t to setfcap- Allow amanda to read tape - Allow prewikka cgi to use syslog, allow audisp_t to signal cgi - Add support for netware file systems- Allow ypbind apps to net_bind_service- Allow all system domains and application domains to append to any log file- Allow gdm to read rpm database - Allow nsplugin to read mplayer config files- Allow vpnc to run ifconfig- Allow confined users to use postgres - Allow system_mail_t to exec other mail clients - Label mogrel_rails as an apache server- Apply unconfined_execmem_exec_t to haskell programs- Fix prelude file context- allow hplip to talk dbus - Fix context on ~/.local dir- Prevent applications from reading x_device- Add /var/lib/selinux context- Update to upstream- Add livecd policy- Dontaudit search of admin_home for init_system_domain - Rewrite of xace interfaces - Lots of new fs_list_inotify - Allow livecd to transition to setfiles_mac- Begin XAce integration- Merge Upstream- Allow amanada to create data files- Fix initial install, semanage setup- Allow system_r for httpd_unconfined_script_t- Remove dmesg boolean - Allow user domains to read/write game data- Change unconfined_t to transition to unconfined_mono_t when running mono - Change XXX_mono_t to transition to XXX_t when executing bin_t files, so gnome-do will work- Remove old booleans from targeted-booleans.conf file- Add boolean to mmap_zero - allow tor setgid - Allow gnomeclock to set clock- Don't run crontab from unconfined_t- Change etc files to config files to allow users to read them- Lots of fixes for confined domains on NFS_t homedir- dontaudit mrtg reading /proc - Allow iscsi to signal itself - Allow gnomeclock sys_ptrace- Allow dhcpd to read kernel network state- Label /var/run/gdm correctly - Fix unconfined_u user creation- Allow transition from initrc_t to getty_t- Allow passwd to communicate with user sockets to change gnome-keyring- Fix initial install- Allow radvd to use fifo_file - dontaudit setfiles reading links - allow semanage sys_resource - add allow_httpd_mod_auth_ntlm_winbind boolean - Allow privhome apps including dovecot read on nfs and cifs home dirs if the boolean is set- Allow nsplugin to read /etc/mozpluggerrc, user_fonts - Allow syslog to manage innd logs. - Allow procmail to ioctl spamd_exec_t- Allow initrc_t to dbus chat with consolekit.- Additional access for nsplugin - Allow xdm setcap/getcap until pulseaudio is fixed- Allow mount to mkdir on tmpfs - Allow ifconfig to search debugfs- Fix file context for MATLAB - Fixes for xace- Allow stunnel to transition to inetd children domains - Make unconfined_dbusd_t an unconfined domain- Fixes for qemu/virtd- Fix bug in mozilla policy to allow xguest transition - This will fix the libsemanage.dbase_llist_query: could not find record value libsemanage.dbase_llist_query: could not query record value (No such file or directory) bug in xguest- Allow nsplugin to run acroread- Add cups_pdf policy - Add openoffice policy to run in xguest- prewika needs to contact mysql - Allow syslog to read system_map files- Change init_t to an unconfined_domain- Allow init to transition to initrc_t on shell exec. - Fix init to be able to sendto init_t. - Allow syslog to connect to mysql - Allow lvm to manage its own fifo_files - Allow bugzilla to use ldap - More mls fixes- fixes for init policy (#436988) - fix build- Additional changes for MLS policy- Fix initrc_context generation for MLS- Fixes for libvirt- Allow bitlebee to read locale_t- More xselinux rules- Change httpd_$1_script_r*_t to httpd_$1_content_r*_t- Prepare policy for beta release - Change some of the system domains back to unconfined - Turn on some of the booleans- Allow nsplugin_config execstack/execmem - Allow nsplugin_t to read alsa config - Change apache to use user content- Add cyphesis policy- Fix Makefile.devel to build mls modules - Fix qemu to be more specific on labeling- Update to upstream fixes- Allow staff to mounton user_home_t- Add xace support- Add fusectl file system- Fixes from yum-cron - Update to latest upstream- Fix userdom_list_user_files- Merge with upstream- Allow udev to send audit messages- Add additional login users interfaces - userdom_admin_login_user_template(staff)- More fixes for polkit- Eliminate transition from unconfined_t to qemu by default - Fixes for gpg- Update to upstream- Fixes for staff_t- Add policy for kerneloops - Add policy for gnomeclock- Fixes for libvirt- Fixes for nsplugin- More fixes for qemu- Additional ports for vnc and allow qemu and libvirt to search all directories- Update to upstream - Add libvirt policy - add qemu policy- Allow fail2ban to create a socket in /var/run- Allow allow_httpd_mod_auth_pam to work- Add audisp policy and prelude- Allow all user roles to executae samba net command- Allow usertypes to read/write noxattr file systems- Fix nsplugin to allow flashplugin to work in enforcing mode- Allow pam_selinux_permit to kill all processes- Allow ptrace or user processes by users of same type - Add boolean for transition to nsplugin- Allow nsplugin sys_nice, getsched, setsched- Allow login programs to talk dbus to oddjob- Add procmail_log support - Lots of fixes for munin- Allow setroubleshoot to read policy config and send audit messages- Allow users to execute all files in homedir, if boolean set - Allow mount to read samba config- Fixes for xguest to run java plugin- dontaudit pam_t and dbusd writing to user_home_t- Update gpg to allow reading of inotify- Change user and staff roles to work correctly with varied perms- Fix munin log, - Eliminate duplicate mozilla file context - fix wpa_supplicant spec- Fix role transition from unconfined_r to system_r when running rpm - Allow unconfined_domains to communicate with user dbus instances- Fixes for xguest- Let all uncofined domains communicate with dbus unconfined- Run rpm in system_r- Zero out customizable types- Fix definiton of admin_home_t- Fix munin file context- Allow cron to run unconfined apps- Modify default login to unconfined_u- Dontaudit dbus user client search of /root- Update to upstream- Fixes for polkit - Allow xserver to ptrace- Add polkit policy - Symplify userdom context, remove automatic per_role changes- Update to upstream - Allow httpd_sys_script_t to search users homedirs- Allow rpm_script to transition to unconfined_execmem_t- Remove user based home directory separation- Remove user specific crond_t- Merge with upstream - Allow xsever to read hwdata_t - Allow login programs to setkeycreate- Update to upstream- Update to upstream- Allow XServer to read /proc/self/cmdline - Fix unconfined cron jobs - Allow fetchmail to transition to procmail - Fixes for hald_mac - Allow system_mail to transition to exim - Allow tftpd to upload files - Allow xdm to manage unconfined_tmp - Allow udef to read alsa config - Fix xguest to be able to connect to sound port- Fixes for hald_mac - Treat unconfined_home_dir_t as a home dir - dontaudit rhgb writes to fonts and root- Fix dnsmasq - Allow rshd full login privs- Allow rshd to connect to ports > 1023- Fix vpn to bind to port 4500 - Allow ssh to create shm - Add Kismet policy- Allow rpm to chat with networkmanager- Fixes for ipsec and exim mail - Change default to unconfined user- Pass the UNK_PERMS param to makefile - Fix gdm location- Make alsa work- Fixes for consolekit and startx sessions- Dontaudit consoletype talking to unconfined_t- Remove homedir_template- Check asound.state- Fix exim policy- Allow tmpreadper to read man_t - Allow racoon to bind to all nodes - Fixes for finger print reader- Allow xdm to talk to input device (fingerprint reader) - Allow octave to run as java- Allow login programs to set ioctl on /proc- Allow nsswitch apps to read samba_var_t- Fix maxima- Eliminate rpm_t:fifo_file avcs - Fix dbus path for helper app- Fix service start stop terminal avc's- Allow also to search var_lib - New context for dbus launcher- Allow cupsd_config_t to read/write usb_device_t - Support for finger print reader, - Many fixes for clvmd - dbus starting networkmanager- Fix java and mono to run in xguest account- Fix to add xguest account when inititial install - Allow mono, java, wine to run in userdomains- Allow xserver to search devpts_t - Dontaudit ldconfig output to homedir- Remove hplip_etc_t change back to etc_t.- Allow cron to search nfs and samba homedirs- Allow NetworkManager to dbus chat with yum-updated- Allow xfs to bind to port 7100- Allow newalias/sendmail dac_override - Allow bind to bind to all udp ports- Turn off direct transition- Allow wine to run in system role- Fix java labeling- Define user_home_type as home_type- Allow sendmail to create etc_aliases_t- Allow login programs to read symlinks on homedirs- Update an readd modules- Cleanup spec file- Allow xserver to be started by unconfined process and talk to tty- Upgrade to upstream to grab postgressql changes- Add setransd for mls policy- Add ldconfig_cache_t- Allow sshd to write to proc_t for afs login- Allow xserver access to urand- allow dovecot to search mountpoints- Fix Makefile for building policy modules- Fix dhcpc startup of service- Fix dbus chat to not happen for xguest and guest users- Fix nagios cgi - allow squid to communicate with winbind- Fixes for ldconfig- Update from upstream- Add nasd support- Fix new usb devices and dmfm- Eliminate mount_ntfs_t policy, merge into mount_t- Allow xserver to write to ramfs mounted by rhgb- Add context for dbus machine id- Update with latest changes from upstream- Fix prelink to handle execmod- Add ntpd_key_t to handle secret data- Add anon_inodefs - Allow unpriv user exec pam_exec_t - Fix trigger- Allow cups to use generic usb - fix inetd to be able to run random apps (git)- Add proper contexts for rsyslogd- Fixes for xguest policy- Allow execution of gconf- Fix moilscanner update problem- Begin adding policy to separate setsebool from semanage - Fix xserver.if definition to not break sepolgen.if- Add new devices- Add brctl policy- Fix root login to include system_r- Allow prelink to read kernel sysctls- Default to user_u:system_r:unconfined_t- fix squid - Fix rpm running as uid- Fix syslog declaration- Allow avahi to access inotify - Remove a lot of bogus security_t:filesystem avcs- Remove ifdef strict policy from upstream- Remove ifdef strict to allow user_u to login- Fix for amands - Allow semanage to read pp files - Allow rhgb to read xdm_xserver_tmp- Allow kerberos servers to use ldap for backing store- allow alsactl to read kernel state- More fixes for alsactl - Transition from hal and modutils - Fixes for suspend resume. - insmod domtrans to alsactl - insmod writes to hal log- Allow unconfined_t to transition to NetworkManager_t - Fix netlabel policy- Update to latest from upstream- Update to latest from upstream- Update to latest from upstream- Allow pcscd_t to send itself signals- Fixes for unix_update - Fix logwatch to be able to search all dirs- Upstream bumped the version- Allow consolekit to syslog - Allow ntfs to work with hal- Allow iptables to read etc_runtime_t- MLS Fixes- Fix path of /etc/lvm/cache directory - Fixes for alsactl and pppd_t - Fixes for consolekit- Allow insmod_t to mount kvmfs_t filesystems- Rwho policy - Fixes for consolekit- fixes for fusefs- Fix samba_net to allow it to view samba_var_t- Update to upstream- Fix Sonypic backlight - Allow snmp to look at squid_conf_t- Fixes for pyzor, cyrus, consoletype on everything installs- Fix hald_acl_t to be able to getattr/setattr on usb devices - Dontaudit write to unconfined_pipes for load_policy- Allow bluetooth to read inotifyfs- Fixes for samba domain controller. - Allow ConsoleKit to look at ttys- Fix interface call- Allow syslog-ng to read /var - Allow locate to getattr on all filesystems - nscd needs setcap- Update to upstream- Allow samba to run groupadd- Update to upstream- Allow mdadm to access generic scsi devices- Fix labeling on udev.tbl dirs- Fixes for logwatch- Add fusermount and mount_ntfs policy- Update to upstream - Allow saslauthd to use kerberos keytabs- Fixes for samba_var_t- Allow networkmanager to setpgid - Fixes for hal_acl_t- Remove disable_trans booleans - hald_acl_t needs to talk to nscd- Fix prelink to be able to manage usr dirs.- Allow insmod to launch init scripts- Remove setsebool policy- Fix handling of unlabled_t packets- More of my patches from upstream- Update to latest from upstream - Add fail2ban policy- Update to remove security_t:filesystem getattr problems- Policy for consolekit- Update to latest from upstream- Revert Nemiver change - Set sudo as a corecmd so prelink will work, remove sudoedit mapping, since this will not work, it does not transition. - Allow samba to execute useradd- Upgrade to the latest from upstream- Add sepolgen support - Add bugzilla policy- Fix file context for nemiver- Remove include sym link- Allow mozilla, evolution and thunderbird to read dev_random. Resolves: #227002 - Allow spamd to connect to smtp port Resolves: #227184 - Fixes to make ypxfr work Resolves: #227237- Fix ssh_agent to be marked as an executable - Allow Hal to rw sound device- Fix spamassisin so crond can update spam files - Fixes to allow kpasswd to work - Fixes for bluetooth- Remove some targeted diffs in file context file- Fix squid cachemgr labeling- Add ability to generate webadm_t policy - Lots of new interfaces for httpd - Allow sshd to login as unconfined_t- Continue fixing, additional user domains- Begin adding user confinement to targeted policy- Fixes for prelink, ktalkd, netlabel- Allow prelink when run from rpm to create tmp files Resolves: #221865 - Remove file_context for exportfs Resolves: #221181 - Allow spamassassin to create ~/.spamassissin Resolves: #203290 - Allow ssh access to the krb tickets - Allow sshd to change passwd - Stop newrole -l from working on non securetty Resolves: #200110 - Fixes to run prelink in MLS machine Resolves: #221233 - Allow spamassassin to read var_lib_t dir Resolves: #219234- fix mplayer to work under strict policy - Allow iptables to use nscd Resolves: #220794- Add gconf policy and make it work with strict- Many fixes for strict policy and by extension mls.- Fix to allow ftp to bind to ports > 1024 Resolves: #219349- Allow semanage to exec it self. Label genhomedircon as semanage_exec_t Resolves: #219421 - Allow sysadm_lpr_t to manage other print spool jobs Resolves: #220080- allow automount to setgid Resolves: #219999- Allow cron to polyinstatiate - Fix creation of boot flags Resolves: #207433- Fixes for irqbalance Resolves: #219606- Fix vixie-cron to work on mls Resolves: #207433Resolves: #218978- Allow initrc to create files in /var directories Resolves: #219227- More fixes for MLS Resolves: #181566- More Fixes polyinstatiation Resolves: #216184- More Fixes polyinstatiation - Fix handling of keyrings Resolves: #216184- Fix polyinstatiation - Fix pcscd handling of terminal Resolves: #218149 Resolves: #218350- More fixes for quota Resolves: #212957- ncsd needs to use avahi sockets Resolves: #217640 Resolves: #218014- Allow login programs to polyinstatiate homedirs Resolves: #216184 - Allow quotacheck to create database files Resolves: #212957- Dontaudit appending hal_var_lib files Resolves: #217452 Resolves: #217571 Resolves: #217611 Resolves: #217640 Resolves: #217725- Fix context for helix players file_context #216942- Fix load_policy to be able to mls_write_down so it can talk to the terminal- Fixes for hwclock, clamav, ftp- Move to upstream version which accepted my patches- Fixes for nvidia driver- Allow semanage to signal mcstrans- Update to upstream- Allow modstorage to edit /etc/fstab file- Fix for qemu, /dev/- Fix path to realplayer.bin- Allow xen to connect to xen port- Allow cups to search samba_etc_t directory - Allow xend_t to list auto_mountpoints- Allow xen to search automount- Fix spec of jre files- Fix unconfined access to shadow file- Allow xend to create files in xen_image_t directories- Fixes for /var/lib/hal- Remove ability for sysadm_t to look at audit.log- Fix rpc_port_types - Add aide policy for mls- Merge with upstream- Lots of fixes for ricci- Allow xen to read/write fixed devices with a boolean - Allow apache to search /var/log- Fix policygentool specfile problem. - Allow apache to send signals to it's logging helpers. - Resolves: rhbz#212731- Add perms for swat- Add perms for swat- Allow daemons to dump core files to /- Fixes for ricci- Allow mount.nfs to work- Allow ricci-modstorage to look at lvm_etc_t- Fixes for ricci using saslauthd- Allow mountpoint on home_dir_t and home_t- Update xen to read nfs files- Allow noxattrfs to associate with other noxattrfs- Allow hal to use power_device_t- Allow procemail to look at autofs_t - Allow xen_image_t to work as a fixed device- Refupdate from upstream- Add lots of fixes for mls cups- Lots of fixes for ricci- Fix number of cats- Update to upstream- More iSCSI changes for #209854- Test ISCSI fixes for #209854- allow semodule to rmdir selinux_config_t dir- Fix boot_runtime_t problem on ppc. Should not be creating these files.- Fix context mounts on reboot - Fix ccs creation of directory in /var/log- Update for tallylog- Allow xend to rewrite dhcp conf files - Allow mgetty sys_admin capability- Make xentapctrl work- Don't transition unconfined_t to bootloader_t - Fix label in /dev/xen/blktap- Patch for labeled networking- Fix crond handling for mls- Update to upstream- Remove bluetooth-helper transition - Add selinux_validate for semanage - Require new version of libsemanage- Fix prelink- Fix rhgb- Fix setrans handling on MLS and useradd- Support for fuse - fix vigr- Fix dovecot, amanda - Fix mls- Allow java execheap for itanium- Update with upstream- mls fixes- Update from upstream- More fixes for mls - Revert change on automount transition to mount- Fix cron jobs to run under the correct context- Fixes to make pppd work- Multiple policy fixes - Change max categories to 1023- Fix transition on mcstransd- Add /dev/em8300 defs- Upgrade to upstream- Fix ppp connections from network manager- Add tty access to all domains boolean - Fix gnome-pty-helper context for ia64- Fixed typealias of firstboot_rw_t- Fix location of xel log files - Fix handling of sysadm_r -> rpm_exec_t- Fixes for autofs, lp- Update from upstream- Fixup for test6- Update to upstream- Update to upstream- Fix suspend to disk problems- Lots of fixes for restarting daemons at the console.- Fix audit line - Fix requires line- Upgrade to upstream- Fix install problems- Allow setroubleshoot to getattr on all dirs to gather RPM data- Set /usr/lib/ia32el/ia32x_loader to unconfined_execmem_exec_t for ia32 platform - Fix spec for /dev/adsp- Fix xen tty devices- Fixes for setroubleshoot- Update to upstream- Fixes for stunnel and postgresql - Update from upstream- Update from upstream - More java fixes- Change allow_execstack to default to on, for RHEL5 Beta. This is required because of a Java compiler problem. Hope to turn off for next beta- Misc fixes- More fixes for strict policy- Quiet down anaconda audit messages- Fix setroubleshootd- Update to the latest from upstream- More fixes for xen- Fix anaconda transitions- yet more xen rules- more xen rules- Fixes for Samba- Fixes for xen- Allow setroubleshootd to send mail- Add nagios policy- fixes for setroubleshoot- Added Paul Howarth patch to only load policy packages shipped with this package - Allow pidof from initrc to ptrace higher level domains - Allow firstboot to communicate with hal via dbus- Add policy for /var/run/ldapi- Fix setroubleshoot policy- Fixes for mls use of ssh - named has a new conf file- Fixes to make setroubleshoot work- Cups needs to be able to read domain state off of printer client- add boolean to allow zebra to write config files- setroubleshootd fixes- Allow prelink to read bin_t symlink - allow xfs to read random devices - Change gfs to support xattr- Remove spamassassin_can_network boolean- Update to upstream - Fix lpr domain for mls- Add setroubleshoot policy- Turn off auditallow on setting booleans- Multiple fixes- Update to upstream- Update to upstream - Add new class for kernel key ring- Update to upstream- Update to upstream- Break out selinux-devel package- Add ibmasmfs- Fix policygentool gen_requires- Update from Upstream- Fix spec of realplay- Update to upstream- Fix semanage- Allow useradd to create_home_dir in MLS environment- Update from upstream- Update from upstream- Add oprofilefs- Fix for hplip and Picasus- Update to upstream- Update to upstream- fixes for spamd- fixes for java, openldap and webalizer- Xen fixes- Upgrade to upstream- allow hal to read boot_t files - Upgrade to upstream- allow hal to read boot_t files- Update from upstream- Fixes for amavis- Update from upstream- Allow auditctl to search all directories- Add acquire service for mono.- Turn off allow_execmem boolean - Allow ftp dac_override when allowed to access users homedirs- Clean up spec file - Transition from unconfined_t to prelink_t- Allow execution of cvs command- Update to upstream- Update to upstream- Fix libjvm spec- Update to upstream- Add xm policy - Fix policygentool- Update to upstream - Fix postun to only disable selinux on full removal of the packages- Allow mono to chat with unconfined- Allow procmail to sendmail - Allow nfs to share dosfs- Update to latest from upstream - Allow selinux-policy to be removed and kernel not to crash- Update to latest from upstream - Add James Antill patch for xen - Many fixes for pegasus- Add unconfined_mount_t - Allow privoxy to connect to httpd_cache - fix cups labeleing on /var/cache/cups- Update to latest from upstream- Update to latest from upstream - Allow mono and unconfined to talk to initrc_t dbus objects- Change libraries.fc to stop shlib_t form overriding texrel_shlib_t- Fix samba creating dirs in homedir - Fix NFS so its booleans would work- Allow secadm_t ability to relabel all files - Allow ftp to search xferlog_t directories - Allow mysql to communicate with ldap - Allow rsync to bind to rsync_port_t- Fixed mailman with Postfix #183928 - Allowed semanage to create file_context files. - Allowed amanda_t to access inetd_t TCP sockets and allowed amanda_recover_t to bind to reserved ports. #149030 - Don't allow devpts_t to be associated with tmp_t. - Allow hald_t to stat all mountpoints. - Added boolean samba_share_nfs to allow smbd_t full access to NFS mounts. - Make mount run in mount_t domain from unconfined_t to prevent mislabeling of /etc/mtab. - Changed the file_contexts to not have a regex before the first ^/[a-z]/ whenever possible, makes restorecon slightly faster. - Correct the label of /etc/named.caching-nameserver.conf - Now label /usr/src/kernels/.+/lib(/.*)? as usr_t instead of /usr/src(/.*)?/lib(/.*)? - I don't think we need anything else under /usr/src hit by this. - Granted xen access to /boot, allowed mounting on xend_var_lib_t, and allowed xenstored_t rw access to the xen device node.- More textrel_shlib_t file path fixes - Add ada support- Get auditctl working in MLS policy- Add mono dbus support - Lots of file_context fixes for textrel_shlib_t in FC5 - Turn off execmem auditallow since they are filling log files- Update to upstream- Allow automount and dbus to read cert files- Fix ftp policy - Fix secadm running of auditctl- Update to upstream- Update to upstream- Fix policyhelp- Fix pam_console handling of usb_device - dontaudit logwatch reading /mnt dir- Update to upstream- Get transition rules to create policy.20 at SystemHigh- Allow secadmin to shutdown system - Allow sendmail to exec newalias- MLS Fixes dmidecode needs mls_file_read_up - add ypxfr_t - run init needs access to nscd - udev needs setuid - another xen log file - Dontaudit mount getattr proc_kcore_t- fix buildroot usage (#185391)- Get rid of mount/fsdisk scan of /dev messages - Additional fixes for suspend/resume- Fake make to rebuild enableaudit.pp- Get xen networking running.- Fixes for Xen - enableaudit should not be the same as base.pp - Allow ps to work for all process- more xen policy fixups- more xen fixage (#184393)- Fix blkid specification - Allow postfix to execute mailman_que- Blkid changes - Allow udev access to usb_device_t - Fix post script to create targeted policy config file- Allow lvm tools to create drevice dir- Add Xen support- Fixes for cups - Make cryptosetup work with hal- Load Policy needs translock- Fix cups html interface- Add hal changes suggested by Jeremy - add policyhelp to point at policy html pages- Additional fixes for nvidia and cups- Update to upstream - Merged my latest fixes - Fix cups policy to handle unix domain sockets- NSCD socket is in nscd_var_run_t needs to be able to search dir- Fixes Apache interface file- Fixes for new version of cups- Turn off polyinstatiate util after FC5- Fix problem with privoxy talking to Tor- Turn on polyinstatiation- Don't transition from unconfined_t to fsadm_t- Fix policy update model.- Update to upstream- Fix load_policy to work on MLS - Fix cron_rw_system_pipes for postfix_postdrop_t - Allow audotmount to run showmount- Fix swapon - allow httpd_sys_script_t to be entered via a shell - Allow httpd_sys_script_t to read eventpolfs- Update from upstream- allow cron to read apache files- Fix vpnc policy to work from NetworkManager- Update to upstream - Fix semoudle polcy- Update to upstream - fix sysconfig/selinux link- Add router port for zebra - Add imaze port for spamd - Fixes for amanda and java- Fix bluetooth handling of usb devices - Fix spamd reading of ~/ - fix nvidia spec- Update to upsteam- Add users_extra files- Update to upstream- Add semodule policy- Update from upstream- Fix for spamd to use razor port- Fixes for mcs - Turn on mount and fsadm for unconfined_t- Fixes for the -devel package- Fix for spamd to use ldap- Update to upstream- Update to upstream - Fix rhgb, and other Xorg startups- Update to upstream- Separate out role of secadm for mls- Add inotifyfs handling- Update to upstream - Put back in changes for pup/zen- Many changes for MLS - Turn on strict policy- Update to upstream- Update to upstream - Fixes for booting and logging in on MLS machine- Update to upstream - Turn off execheap execstack for unconfined users - Add mono/wine policy to allow execheap and execstack for them - Add execheap for Xdm policy- Update to upstream - Fixes to fetchmail,- Update to upstream- Fix for procmail/spamassasin - Update to upstream - Add rules to allow rpcd to work with unlabeled_networks.- Update to upstream - Fix ftp Man page- Update to upstream- fix pup transitions (#177262) - fix xen disks (#177599)- Update to upstream- More Fixes for hal and readahead- Fixes for hal and readahead- Update to upstream - Apply- Add wine and fix hal problems- Handle new location of hal scripts- Allow su to read /etc/mtab- Update to upstream- Fix "libsemanage.parse_module_headers: Data did not represent a module." problem- Allow load_policy to read /etc/mtab- Fix dovecot to allow dovecot_auth to look at /tmp- Allow restorecon to read unlabeled_t directories in order to fix labeling.- Add Logwatch policy- Fix /dev/ub[a-z] file context- Fix library specification - Give kudzu execmem privs- Fix hostname in targeted policy- Fix passwd command on mls- Lots of fixes to make mls policy work- Add dri libs to textrel_shlib_t - Add system_r role for java - Add unconfined_exec_t for vncserver - Allow slapd to use kerberos- Add man pages- Add enableaudit.pp- Fix mls policy- Update mls file from old version- Add sids back in - Rebuild with update checkpolicy- Fixes to allow automount to use portmap - Fixes to start kernel in s0-s15:c0.c255- Add java unconfined/execmem policy- Add file context for /var/cvs - Dontaudit webalizer search of homedir- Update from upstream- Clean up spec - range_transition crond to SystemHigh- Fixes for hal - Update to upstream- Turn back on execmem since we need it for java, firefox, ooffice - Allow gpm to stream socket to itself- fix requirements to be on the actual packages so that policy can get created properly at install time- Allow unconfined_t to execmod texrel_shlib_t- Update to upstream - Turn off allow_execmem and allow_execmod booleans - Add tcpd and automount policies- Add two new httpd booleans, turned off by default * httpd_can_network_relay * httpd_can_network_connect_db- Add ghost for policy.20- Update to upstream - Turn off boolean allow_execstack- Change setrans-mls to use new libsetrans - Add default_context rule for xdm- Change Requires to PreReg for requiring of policycoreutils on install- New upstream releaseAdd xdm policyUpdate from upstreamUpdate from upstreamUpdate from upstream- Also trigger to rebuild policy for versions up to 2.0.7.- No longer installing policy.20 file, anaconda handles the building of the app.- Fixes for dovecot and saslauthd- Cleanup pegasus and named - Fix spec file - Fix up passwd changing applications-Update to latest from upstream- Add rules for pegasus and avahi- Start building MLS Policy- Update to upstream- Turn on bash- Initial version/bin/sh  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'())+,-./0123456789:;<=>?@ABCDEFGHI3.13.1-192.el7_5.6    develMakefileexample.fcexample.ifexample.tehtmlNetworkManager.htmlabrt.htmlabrt_dump_oops.htmlabrt_handle_event.htmlabrt_helper.htmlabrt_retrace_coredump.htmlabrt_retrace_worker.htmlabrt_upload_watch.htmlabrt_watch_log.htmlaccountsd.htmlacct.htmladmin_crontab.htmlafs.htmlafs_bosserver.htmlafs_fsserver.htmlafs_kaserver.htmlafs_ptserver.htmlafs_vlserver.htmlaiccu.htmlaide.htmlajaxterm.htmlajaxterm_ssh.htmlalsa.htmlamanda.htmlamanda_recover.htmlamtu.htmlanaconda.htmlanon_sftpd.htmlantivirus.htmlapcupsd.htmlapcupsd_cgi_script.htmlapm.htmlapmd.htmlarpwatch.htmlasterisk.htmlaudisp.htmlaudisp_remote.htmlauditadm.htmlauditadm_screen.htmlauditadm_su.htmlauditadm_sudo.htmlauditctl.htmlauditd.htmlauthconfig.htmlautomount.htmlavahi.htmlawstats.htmlawstats_script.htmlbacula.htmlbacula_admin.htmlbacula_unconfined_script.htmlbcfg2.htmlbitlbee.htmlblkmapd.htmlblktap.htmlblueman.htmlbluetooth.htmlbluetooth_helper.htmlboinc.htmlboinc_project.htmlbootloader.htmlbrctl.htmlbrltty.htmlbugzilla_script.htmlbumblebee.htmlcachefiles_kernel.htmlcachefilesd.htmlcalamaris.htmlcallweaver.htmlcanna.htmlcardmgr.htmlccs.htmlcdcc.htmlcdrecord.htmlcertmaster.htmlcertmonger.htmlcertmonger_unconfined.htmlcertwatch.htmlcfengine_execd.htmlcfengine_monitord.htmlcfengine_serverd.htmlcgclear.htmlcgconfig.htmlcgdcbxd.htmlcgred.htmlcheckpc.htmlcheckpolicy.htmlchfn.htmlchkpwd.htmlchrome_sandbox.htmlchrome_sandbox_nacl.htmlchronyc.htmlchronyd.htmlchroot_user.htmlcinder_api.htmlcinder_backup.htmlcinder_scheduler.htmlcinder_volume.htmlciped.htmlclogd.htmlcloud_init.htmlcluster.htmlclvmd.htmlcmirrord.htmlcobblerd.htmlcockpit_session.htmlcockpit_ws.htmlcollectd.htmlcollectd_script.htmlcolord.htmlcomsat.htmlcondor_collector.htmlcondor_master.htmlcondor_negotiator.htmlcondor_procd.htmlcondor_schedd.htmlcondor_startd.htmlcondor_startd_ssh.htmlconman.htmlconman_unconfined_script.htmlconsolekit.htmlcontainer.htmlcontainer_auth.htmlcontainer_runtime.htmlcouchdb.htmlcourier_authdaemon.htmlcourier_pcp.htmlcourier_pop.htmlcourier_sqwebmail.htmlcourier_tcpd.htmlcpucontrol.htmlcpufreqselector.htmlcpuplug.htmlcpuspeed.htmlcrack.htmlcrond.htmlcronjob.htmlcrontab.htmlctdbd.htmlcups_pdf.htmlcupsd.htmlcupsd_config.htmlcupsd_lpd.htmlcvs.htmlcvs_script.htmlcyphesis.htmlcyrus.htmldbadm.htmldbadm_sudo.htmldbskkd.htmldcc_client.htmldcc_dbclean.htmldccd.htmldccifd.htmldccm.htmldcerpcd.htmlddclient.htmldeltacloudd.htmldenyhosts.htmldepmod.htmldevicekit.htmldevicekit_disk.htmldevicekit_power.htmldhcpc.htmldhcpd.htmldictd.htmldirsrv.htmldirsrv_snmp.htmldirsrvadmin.htmldirsrvadmin_script.htmldirsrvadmin_unconfined_script.htmldisk_munin_plugin.htmldkim_milter.htmldlm_controld.htmldmesg.htmldmidecode.htmldnsmasq.htmldnssec_trigger.htmldovecot.htmldovecot_auth.htmldovecot_deliver.htmldrbd.htmldspam.htmldspam_script.htmlentropyd.htmleventlogd.htmlevtchnd.htmlexim.htmlfail2ban.htmlfail2ban_client.htmlfcoemon.htmlfenced.htmlfetchmail.htmlfingerd.htmlfirewalld.htmlfirewallgui.htmlfirstboot.htmlfoghorn.htmlfprintd.htmlfreeipmi_bmc_watchdog.htmlfreeipmi_ipmidetectd.htmlfreeipmi_ipmiseld.htmlfreqset.htmlfsadm.htmlfsdaemon.htmlftpd.htmlftpdctl.htmlgames.htmlgames_srv.htmlganesha.htmlgconfd.htmlgconfdefaultsm.htmlgdomap.htmlgeoclue.htmlgetty.htmlgfs_controld.htmlgit_script.htmlgit_session.htmlgit_system.htmlgitosis.htmlglance_api.htmlglance_registry.htmlglance_scrubber.htmlglusterd.htmlgnomesystemmm.htmlgpg.htmlgpg_agent.htmlgpg_helper.htmlgpg_pinentry.htmlgpg_web.htmlgpm.htmlgpsd.htmlgreylist_milter.htmlgroupadd.htmlgroupd.htmlgssd.htmlgssproxy.htmlguest.htmlhaproxy.htmlhddtemp.htmlhostname.htmlhsqldb.htmlhttpd.htmlhttpd_helper.htmlhttpd_passwd.htmlhttpd_php.htmlhttpd_rotatelogs.htmlhttpd_suexec.htmlhttpd_sys_script.htmlhttpd_unconfined_script.htmlhttpd_user_script.htmlhwclock.htmlhwloc_dhwd.htmlhypervkvp.htmlhypervvssd.htmliceauth.htmlicecast.htmlifconfig.htmlindex.htmlinetd.htmlinetd_child.htmlinit.htmlinitrc.htmlinnd.htmlinsmod.htmlinstall.htmliodined.htmliotop.htmlipa_dnskey.htmlipa_helper.htmlipa_otpd.htmlipmievd.htmlipsec.htmlipsec_mgmt.htmliptables.htmlirc.htmlirqbalance.htmlirssi.htmliscsid.htmlisnsd.htmliwhd.htmljabberd.htmljabberd_router.htmljockey.htmljournalctl.htmlkadmind.htmlkdump.htmlkdumpctl.htmlkdumpgui.htmlkeepalived.htmlkeepalived_unconfined_script.htmlkernel.htmlkeyboardd.htmlkeystone.htmlkeystone_cgi_script.htmlkismet.htmlklogd.htmlkmscon.htmlkpropd.htmlkrb5kdc.htmlksmtuned.htmlktalkd.htmll2tpd.htmlldconfig.htmllircd.htmllivecd.htmllldpad.htmlload_policy.htmlloadkeys.htmllocal_login.htmllocate.htmllockdev.htmllogadm.htmllogrotate.htmllogrotate_mail.htmllogwatch.htmllogwatch_mail.htmllpd.htmllpr.htmllsassd.htmllsmd.htmllsmd_plugin.htmllttng_sessiond.htmllvm.htmllwiod.htmllwregd.htmllwsmd.htmlmail_munin_plugin.htmlmailman_cgi.htmlmailman_mail.htmlmailman_queue.htmlman2html_script.htmlmandb.htmlmcelog.htmlmdadm.htmlmediawiki_script.htmlmemcached.htmlmencoder.htmlminidlna.htmlminissdpd.htmlmip6d.htmlmirrormanager.htmlmock.htmlmock_build.htmlmodemmanager.htmlmojomojo_script.htmlmon_procd.htmlmon_statd.htmlmongod.htmlmotion.htmlmount.htmlmount_ecryptfs.htmlmozilla.htmlmozilla_plugin.htmlmozilla_plugin_config.htmlmpd.htmlmplayer.htmlmrtg.htmlmscan.htmlmunin.htmlmunin_script.htmlmysqld.htmlmysqld_safe.htmlmysqlmanagerd.htmlmythtv_script.htmlnagios.htmlnagios_admin_plugin.htmlnagios_checkdisk_plugin.htmlnagios_eventhandler_plugin.htmlnagios_mail_plugin.htmlnagios_openshift_plugin.htmlnagios_script.htmlnagios_services_plugin.htmlnagios_system_plugin.htmlnagios_unconfined_plugin.htmlnamed.htmlnamespace_init.htmlncftool.htmlndc.htmlnetlabel_mgmt.htmlnetlogond.htmlnetutils.htmlneutron.htmlnewrole.htmlnfsd.htmlninfod.htmlnmbd.htmlnova.htmlnrpe.htmlnscd.htmlnsd.htmlnsd_crond.htmlnslcd.htmlntop.htmlntpd.htmlnumad.htmlnut_upsd.htmlnut_upsdrvctl.htmlnut_upsmon.htmlnutups_cgi_script.htmlnx_server.htmlnx_server_ssh.htmlobex.htmloddjob.htmloddjob_mkhomedir.htmlopenct.htmlopendnssec.htmlopenhpid.htmlopenshift.htmlopenshift_app.htmlopenshift_cgroup_read.htmlopenshift_cron.htmlopenshift_initrc.htmlopenshift_net_read.htmlopenshift_script.htmlopensm.htmlopenvpn.htmlopenvpn_unconfined_script.htmlopenvswitch.htmlopenwsman.htmloracleasm.htmlosad.htmlpads.htmlpam_console.htmlpam_timestamp.htmlpassenger.htmlpasswd.htmlpcp_pmcd.htmlpcp_pmie.htmlpcp_pmlogger.htmlpcp_pmmgr.htmlpcp_pmproxy.htmlpcp_pmwebd.htmlpcscd.htmlpegasus.htmlpegasus_openlmi_account.htmlpegasus_openlmi_admin.htmlpegasus_openlmi_logicalfile.htmlpegasus_openlmi_services.htmlpegasus_openlmi_storage.htmlpegasus_openlmi_system.htmlpegasus_openlmi_unconfined.htmlpesign.htmlphc2sys.htmlping.htmlpingd.htmlpiranha_fos.htmlpiranha_lvs.htmlpiranha_pulse.htmlpiranha_web.htmlpkcs_slotd.htmlpki_ra.htmlpki_tomcat.htmlpki_tomcat_script.htmlpki_tps.htmlplymouth.htmlplymouthd.htmlpodsleuth.htmlpolicykit.htmlpolicykit_auth.htmlpolicykit_grant.htmlpolicykit_resolve.htmlpolipo.htmlpolipo_session.htmlportmap.htmlportmap_helper.htmlportreserve.htmlpostfix_bounce.htmlpostfix_cleanup.htmlpostfix_local.htmlpostfix_map.htmlpostfix_master.htmlpostfix_pickup.htmlpostfix_pipe.htmlpostfix_postdrop.htmlpostfix_postqueue.htmlpostfix_qmgr.htmlpostfix_showq.htmlpostfix_smtp.htmlpostfix_smtpd.htmlpostfix_virtual.htmlpostgresql.htmlpostgrey.htmlpppd.htmlpptp.htmlprelink.htmlprelink_cron_system.htmlprelude.htmlprelude_audisp.htmlprelude_correlator.htmlprelude_lml.htmlpreupgrade.htmlprewikka_script.htmlprivoxy.htmlprocmail.htmlprosody.htmlpsad.htmlptal.htmlptchown.htmlptp4l.htmlpublicfile.htmlpulseaudio.htmlpuppetagent.htmlpuppetca.htmlpuppetmaster.htmlpwauth.htmlpyicqt.htmlqdiskd.htmlqemu_dm.htmlqmail_clean.htmlqmail_inject.htmlqmail_local.htmlqmail_lspawn.htmlqmail_queue.htmlqmail_remote.htmlqmail_rspawn.htmlqmail_send.htmlqmail_smtpd.htmlqmail_splogger.htmlqmail_start.htmlqmail_tcp_env.htmlqpidd.htmlquota.htmlquota_nld.htmlrabbitmq.htmlracoon.htmlradiusd.htmlradvd.htmlrasdaemon.htmlrdisc.htmlreadahead.htmlrealmd.htmlrealmd_consolehelper.htmlredis.htmlregex_milter.htmlremote_login.htmlrestorecond.htmlrhev_agentd.htmlrhev_agentd_consolehelper.htmlrhgb.htmlrhnsd.htmlrhsmcertd.htmlricci.htmlricci_modcluster.htmlricci_modclusterd.htmlricci_modlog.htmlricci_modrpm.htmlricci_modservice.htmlricci_modstorage.htmlrlogind.htmlrngd.htmlroundup.htmlrpcbind.htmlrpcd.htmlrpm.htmlrpm_script.htmlrshd.htmlrssh.htmlrssh_chroot_helper.htmlrsync.htmlrtas_errd.htmlrtkit_daemon.htmlrun_init.htmlrwho.htmlsamba_net.htmlsamba_unconfined_net.htmlsamba_unconfined_script.htmlsambagui.htmlsandbox.htmlsandbox_min.htmlsandbox_min_client.htmlsandbox_net.htmlsandbox_net_client.htmlsandbox_web.htmlsandbox_web_client.htmlsandbox_x.htmlsandbox_x_client.htmlsandbox_xserver.htmlsanlk_resetd.htmlsanlock.htmlsaslauthd.htmlsbd.htmlsblim_gatherd.htmlsblim_reposd.htmlsblim_sfcbd.htmlsecadm.htmlsecadm_screen.htmlsecadm_su.htmlsecadm_sudo.htmlsectoolm.htmlselinux_munin_plugin.htmlsemanage.htmlsendmail.htmlsensord.htmlsepgsql_ranged_proc.htmlsepgsql_trusted_proc.htmlservices_munin_plugin.htmlsetfiles.htmlsetfiles_mac.htmlsetkey.htmlsetrans.htmlsetroubleshoot_fixit.htmlsetroubleshootd.htmlsetsebool.htmlsftpd.htmlsge_execd.htmlsge_job.htmlsge_job_ssh.htmlsge_shepherd.htmlshorewall.htmlshowmount.htmlslapd.htmlslpd.htmlsmbcontrol.htmlsmbd.htmlsmbmount.htmlsmokeping.htmlsmokeping_cgi_script.htmlsmoltclient.htmlsmsd.htmlsnapperd.htmlsnmpd.htmlsnort.htmlsosreport.htmlsoundd.htmlspamass_milter.htmlspamc.htmlspamd.htmlspamd_update.htmlspc.htmlspeech-dispatcher.htmlsquid.htmlsquid_cron.htmlsquid_script.htmlsrvsvcd.htmlssh.htmlssh_keygen.htmlssh_keysign.htmlsshd.htmlsshd_keygen.htmlsshd_net.htmlsshd_sandbox.htmlsssd.htmlsssd_selinux_manager.htmlstaff.htmlstaff_consolehelper.htmlstaff_dbusd.htmlstaff_gkeyringd.htmlstaff_screen.htmlstaff_seunshare.htmlstaff_ssh_agent.htmlstaff_sudo.htmlstaff_wine.htmlstapserver.htmlstunnel.htmlstyle.csssulogin.htmlsvc_multilog.htmlsvc_run.htmlsvc_start.htmlsvirt.htmlsvirt_kvm_net.htmlsvirt_qemu_net.htmlsvirt_socket.htmlsvirt_tcg.htmlsvnserve.htmlswat.htmlswift.htmlsysadm.htmlsysadm_dbusd.htmlsysadm_passwd.htmlsysadm_screen.htmlsysadm_seunshare.htmlsysadm_ssh_agent.htmlsysadm_su.htmlsysadm_sudo.htmlsyslogd.htmlsysstat.htmlsystem_cronjob.htmlsystem_dbusd.htmlsystem_mail.htmlsystem_munin_plugin.htmlsystemd_bootchart.htmlsystemd_hostnamed.htmlsystemd_hwdb.htmlsystemd_initctl.htmlsystemd_localed.htmlsystemd_logger.htmlsystemd_logind.htmlsystemd_machined.htmlsystemd_networkd.htmlsystemd_notify.htmlsystemd_passwd_agent.htmlsystemd_resolved.htmlsystemd_sysctl.htmlsystemd_timedated.htmlsystemd_tmpfiles.htmltargetd.htmltcpd.htmltcsd.htmltelepathy_gabble.htmltelepathy_idle.htmltelepathy_logger.htmltelepathy_mission_control.htmltelepathy_msn.htmltelepathy_salut.htmltelepathy_sofiasip.htmltelepathy_stream_engine.htmltelepathy_sunshine.htmltelnetd.htmltftpd.htmltgtd.htmlthin.htmlthin_aeolus_configserver.htmlthumb.htmltimemaster.htmltmpreaper.htmltomcat.htmltor.htmltraceroute.htmltuned.htmltvtime.htmludev.htmlulogd.htmluml.htmluml_switch.htmlunconfined.htmlunconfined_cronjob.htmlunconfined_dbusd.htmlunconfined_mount.htmlunconfined_munin_plugin.htmlunconfined_sendmail.htmlunconfined_service.htmlupdate_modules.htmlupdfstab.htmlupdpwd.htmlusbmodules.htmlusbmuxd.htmluser.htmluser_dbusd.htmluser_gkeyringd.htmluser_mail.htmluser_screen.htmluser_seunshare.htmluser_ssh_agent.htmluser_wine.htmluseradd.htmlusernetctl.htmlutempter.htmluucpd.htmluuidd.htmluux.htmlvarnishd.htmlvarnishlog.htmlvdagent.htmlvhostmd.htmlvirsh.htmlvirsh_ssh.htmlvirt_bridgehelper.htmlvirt_qemu_ga.htmlvirt_qemu_ga_unconfined.htmlvirt_qmf.htmlvirtd.htmlvirtd_lxc.htmlvirtlogd.htmlvlock.htmlvmtools.htmlvmtools_helper.htmlvmware.htmlvmware_host.htmlvnstat.htmlvnstatd.htmlvpnc.htmlw3c_validator_script.htmlwatchdog.htmlwatchdog_unconfined.htmlwdmd.htmlwebadm.htmlwebalizer.htmlwebalizer_script.htmlwinbind.htmlwinbind_helper.htmlwine.htmlwireshark.htmlwpa_cli.htmlxauth.htmlxdm.htmlxdm_unconfined.htmlxenconsoled.htmlxend.htmlxenstored.htmlxguest.htmlxguest_dbusd.htmlxguest_gkeyringd.htmlxserver.htmlypbind.htmlyppasswdd.htmlypserv.htmlypxfr.htmlzabbix.htmlzabbix_agent.htmlzabbix_script.htmlzarafa_deliver.htmlzarafa_gateway.htmlzarafa_ical.htmlzarafa_indexer.htmlzarafa_monitor.htmlzarafa_server.htmlzarafa_spooler.htmlzebra.htmlzoneminder.htmlzoneminder_script.htmlzos_remote.htmlincludeMakefileadminadmin.xmlbootloader.ifconsoletype.ifdmesg.ifnetutils.ifsu.ifsudo.ifusermanage.ifappsapps.xmlseunshare.ifbuild.confcontribcontrib.xmlabrt.ifaccountsd.ifacct.ifada.ifafs.ifaiccu.ifaide.ifaisexec.ifajaxterm.ifalsa.ifamanda.ifamavis.ifamtu.ifanaconda.ifantivirus.ifapache.ifapcupsd.ifapm.ifapt.ifarpwatch.ifasterisk.ifauthbind.ifauthconfig.ifautomount.ifavahi.ifawstats.ifbackup.ifbacula.ifbcfg2.ifbind.ifbird.ifbitlbee.ifblkmapd.ifblueman.ifbluetooth.ifboinc.ifbrctl.ifbrltty.ifbugzilla.ifbumblebee.ifcachefilesd.ifcalamaris.ifcallweaver.ifcanna.ifccs.ifcdrecord.ifcertmaster.ifcertmonger.ifcertwatch.ifcfengine.ifcgdcbxd.ifcgroup.ifchrome.ifchronyd.ifcinder.ifcipe.ifclamav.ifclockspeed.ifclogd.ifcloudform.ifcmirrord.ifcobbler.ifcockpit.ifcollectd.ifcolord.ifcomsat.ifcondor.ifconman.ifconsolekit.ifcontainer.ifcorosync.ifcouchdb.ifcourier.ifcpucontrol.ifcpufreqselector.ifcpuplug.ifcron.ifctdb.ifcups.ifcvs.ifcyphesis.ifcyrus.ifdaemontools.ifdante.ifdbadm.ifdbskk.ifdbus.ifdcc.ifddclient.ifddcprobe.ifdenyhosts.ifdevicekit.ifdhcp.ifdictd.ifdirmngr.ifdirsrv-admin.ifdirsrv.ifdistcc.ifdjbdns.ifdkim.ifdmidecode.ifdnsmasq.ifdnssec.ifdnssectrigger.ifdovecot.ifdpkg.ifdrbd.ifdspam.ifentropyd.ifetcd.ifevolution.ifexim.iffail2ban.iffcoe.iffetchmail.iffinger.iffirewalld.iffirewallgui.iffirstboot.iffprintd.iffreeipmi.iffreqset.ifftp.ifgames.ifganesha.ifgatekeeper.ifgdomap.ifgear.ifgeoclue.ifgift.ifgit.ifgitosis.ifglance.ifglusterd.ifgnome.ifgnomeclock.ifgpg.ifgpm.ifgpsd.ifgssproxy.ifguest.ifhadoop.ifhal.ifhddtemp.ifhostapd.ifhowl.ifhsqldb.ifhwloc.ifhypervkvp.ifi18n_input.ificecast.ififplugd.ifimaze.ifinetd.ifinn.ifiodine.ifiotop.ifipa.ifipmievd.ifirc.ifircd.ifirqbalance.ifiscsi.ifisns.ifjabber.ifjava.ifjetty.ifjockey.ifjournalctl.ifkde.ifkdump.ifkdumpgui.ifkeepalived.ifkerberos.ifkerneloops.ifkeyboardd.ifkeystone.ifkismet.ifkmscon.ifksmtuned.ifktalk.ifkudzu.ifl2tp.ifldap.iflightsquid.iflikewise.iflinuxptp.iflircd.iflivecd.iflldpad.ifloadkeys.iflockdev.iflogrotate.iflogwatch.iflpd.iflsm.iflttng-tools.ifmailman.ifmailscanner.ifman2html.ifmandb.ifmcelog.ifmcollective.ifmediawiki.ifmemcached.ifmilter.ifminidlna.ifminissdpd.ifmip6d.ifmirrormanager.ifmock.ifmodemmanager.ifmojomojo.ifmon_statd.ifmongodb.ifmono.ifmonop.ifmotion.ifmozilla.ifmpd.ifmplayer.ifmrtg.ifmta.ifmunin.ifmysql.ifmythtv.ifnaemon.ifnagios.ifnamespace.ifncftool.ifnessus.ifnetworkmanager.ifninfod.ifnis.ifnova.ifnscd.ifnsd.ifnslcd.ifnsplugin.ifntop.ifntp.ifnumad.ifnut.ifnx.ifoav.ifobex.ifoddjob.ifoident.ifopenca.ifopenct.ifopendnssec.ifopenhpi.ifopenhpid.ifopenshift-origin.ifopenshift.ifopensm.ifopenvpn.ifopenvswitch.ifopenwsman.iforacleasm.ifosad.ifpacemaker.ifpads.ifpassenger.ifpcmcia.ifpcp.ifpcscd.ifpegasus.ifperdition.ifpesign.ifpingd.ifpiranha.ifpkcs.ifpki.ifplymouthd.ifpodsleuth.ifpolicykit.ifpolipo.ifportage.ifportmap.ifportreserve.ifportslave.ifpostfix.ifpostfixpolicyd.ifpostgrey.ifppp.ifprelink.ifprelude.ifprivoxy.ifprocmail.ifprosody.ifpsad.ifptchown.ifpublicfile.ifpulseaudio.ifpuppet.ifpwauth.ifpxe.ifpyzor.ifqemu.ifqmail.ifqpid.ifquantum.ifquota.ifrabbitmq.ifradius.ifradvd.ifraid.ifrasdaemon.ifrazor.ifrdisc.ifreadahead.ifrealmd.ifredis.ifremotelogin.ifresmgr.ifrgmanager.ifrhcs.ifrhev.ifrhgb.ifrhnsd.ifrhsmcertd.ifricci.ifrkhunter.ifrlogin.ifrngd.ifrolekit.ifroundup.ifrpc.ifrpcbind.ifrpm.ifrshd.ifrssh.ifrsync.ifrtas.ifrtkit.ifrwho.ifsamba.ifsambagui.ifsamhain.ifsandbox.ifsandboxX.ifsanlock.ifsasl.ifsbd.ifsblim.ifscreen.ifsectoolm.ifsendmail.ifsensord.ifsetroubleshoot.ifsge.ifshorewall.ifshutdown.ifslocate.ifslpd.ifslrnpull.ifsmartmon.ifsmokeping.ifsmoltclient.ifsmsd.ifsmstools.ifsnapper.ifsnmp.ifsnort.ifsosreport.ifsoundserver.ifspamassassin.ifspeech-dispatcher.ifspeedtouch.ifsquid.ifsssd.ifstapserver.ifstunnel.ifsvnserve.ifswift.ifswift_alias.ifsxid.ifsysstat.iftargetd.iftcpd.iftcsd.iftelepathy.iftelnet.iftftp.iftgtd.ifthin.ifthumb.ifthunderbird.iftimidity.iftmpreaper.iftomcat.iftor.iftransproxy.iftripwire.iftuned.iftvtime.iftzdata.ifucspitcp.ifulogd.ifuml.ifupdfstab.ifuptime.ifusbmodules.ifusbmuxd.ifuserhelper.ifusernetctl.ifuucp.ifuuidd.ifuwimap.ifvarnishd.ifvbetool.ifvdagent.ifvhostmd.ifvirt.ifvlock.ifvmtools.ifvmware.ifvnstatd.ifvpn.ifw3c.ifwatchdog.ifwdmd.ifwebadm.ifwebalizer.ifwine.ifwireshark.ifwm.ifxen.ifxfs.ifxguest.ifxprint.ifxscreensaver.ifyam.ifzabbix.ifzarafa.ifzebra.ifzoneminder.ifzosremote.ifglobal_booleans.xmlglobal_tunables.xmlkernelkernel.xmlcorecommands.ifcorenetwork.ifdevices.ifdomain.iffiles.iffilesystem.ifkernel.ifmcs.ifmls.ifselinux.ifstorage.ifterminal.ifubac.ifunlabelednet.ifrolesroles.xmlauditadm.iflogadm.ifsecadm.ifstaff.ifsysadm.ifsysadm_secadm.ifunconfineduser.ifunprivuser.ifservicesservices.xmlpostgresql.ifssh.ifxserver.ifsupportall_perms.sptdivert.m4file_patterns.sptipc_patterns.sptloadable_module.sptmisc_macros.sptmisc_patterns.sptmls_mcs_macros.sptobj_perm_sets.sptpolicy.dtdsegenxml.pysegenxml.pycsegenxml.pyoundivert.m4systemsystem.xmlapplication.ifauthlogin.ifclock.iffstools.ifgetty.ifhostname.ifhotplug.ifinit.ifipsec.ifiptables.iflibraries.iflocallogin.iflogging.iflvm.ifmiscfiles.ifmodutils.ifmount.ifnetlabel.ifselinuxutil.ifsetrans.ifsysnetwork.ifsystemd.ifudev.ifunconfined.ifuserdomain.ifpolicy.dtdpolicy.xmlinterface_info/usr/share/selinux//usr/share/selinux/devel//usr/share/selinux/devel/html//usr/share/selinux/devel/include//usr/share/selinux/devel/include/admin//usr/share/selinux/devel/include/apps//usr/share/selinux/devel/include/contrib//usr/share/selinux/devel/include/kernel//usr/share/selinux/devel/include/roles//usr/share/selinux/devel/include/services//usr/share/selinux/devel/include/support//usr/share/selinux/devel/include/system//var/lib/sepolgen/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -m32 -march=x86-64 -mtune=generic -mfpmath=sse -fasynchronous-unwind-tablescpioxz2noarch-redhat-linux-gnu  directoryASCII textSE Linux policy interface sourceSE Linux policy module sourceHTML document, ASCII textmakefile script, ASCII textC++ source, ASCII textASCII text, with very long linesASCII text, with no line terminatorsPython script, ASCII text executablepython 2.7 byte-compiledXML 1.0 document, ASCII textcannot open (No such file or directory)?p7zXZ !#,] b2u jӫ`(bVzo'pғ0sM)՟eRD,lvlq:=~ZS0Q(3Ib){;7!$@"QGݔy[lY8F2XWpYNpAW"Pl=e{YN-;xwi;~'l{ *4.ƒأ RI*foKYb6;0([̜=YLeI3\櫟-XW}Ƌ}7O49u1  ɖ.U*_Y{ίvzl:,xL0 ШiMw<jqZuZH%b&u#P |"c+ʶ)n\'H.˨-M<>eJY+-9h"R-MwGn 2MԣA+;(r!Or1>+\Qi0 $L %k;[`$)l\ƑKc7 UHjWy3 ]g^/o7Q1ǧzc9c%})b}UU q-# \MY0iMeCEy˪Zn/u9@~LpCԯ3{,R2'ŋѨ{XҵΣY;GR Vtəd;|uW){ '}p_G8dVz;ʹk."3y(3Ǭ'K6h9sľItߩ y$aOAlq7L!a9o?h+ q2p4иPOC(kOI1w/QE^`_ȼfdw8,ֆ/`y)dÀ飄ȱHQ[򨶠#>BA[(k;F3>#Xƪ?r1Q1V-LxD sfjy 3.peDrTxI Lo{*cG*BS6x<]AŲJ9 k!* ''e@Z$-hw[7##ΫA&(-XB %Yc^,]*,Eᚪo0\i+p{{y S䡌yM(ǚ#C&pX@5Q-zb. _Boe*U$jqV, $'ԚXy%\qO%J Ldݔk7Zrx&ϒ?0.>/B %hsuʷJn̯08k凓۩ lgܖf:^ jgDުP&`ΒR *_}| _:hiQ\rrTK_ b0sE:7=D0nxgggv|:(-+,He1iK e -"r'+(oG#v:XaE-QD>tDzGٛԽdJt&Y>><*Dw* 3qXhH+ynܬ9췩<EZÑyFA"E&ܬ ~fй.;1͂?~7̳h nh ph7JQ0ɺp&ФЇ` ZMBfY|F&6F2I>$Du16?acD #RJsp/]hFm&ǟfw 䫜Ȭ`vJ&2_MqГFTUe5pADTwCJtEq$+KhG" 6V=26o\P /VimוƕيUO'U t)DTirة(W{ :܁nh.:BUnK3P|HT@_p1ZӻnŪ>u:5*6PT= 87&ȋ-9Rd Ѽ7uU-◆c';QI4&wbimX1RIgyB^ms2Suhayhz4 =O^ި** A$ȪԊAOZP'u5Ik{Z*,e8 '^w8=z+Ø~L]*!xXآ.d-"U<2]kDMO55 }ޙEj  cl"!{i~hՄӱ.tZ]${Ut\ŕVt`$sT wU ]{5/' \& &%x5U|ͷuu>WjzZwH> S/ie}rߦ1Ir юK1DENO$5ybz |Ȗj1s{%R(y,ysCHH2Ŭg!M\t/VOnjhfVebg $*աP{k;:D!׽%Ln&2]H`mShM=$~E%窥22Jg@A)1׷)C]({\j]:Z'b/y".}AHIW/ygڈn\;/_e ~7 Fܦ)y8y_)DLlcυkܸr^/C1t$X * fC6̛L$!F.Kf5á86uy%yTׅx/աEv#eB!埙{ՙNrLo(7(CkXs CDGЄY'b@4K}~WqFebL_DEL='SGjmsue9F͞ O Xd(CR5N©H/И&/-i7i6>e0 Qu1/%S{|w^/%.Td:?i@XDDmԇL0ֻհ}1%lpU0mX@\ "u^ ˌ25l$}[KKx#58O“/1)pYzSic.ή6:>~=T?#ӈTӟBٔnjg9leBR 9/Gv LBb_ϥxqO e_5ѽz9#yzX'me?lᘤ38dfQk6"VDpʝ#V}P/ ;Hws>#0yoG}J~<9qwQ^tٟ8sb%d8 h 0Of|Jg}a3$ ǠUɵ?AU X8̏ßLEp dJ%/.;C`7wnai_"VB[lva P=2u>/:&7H- ж/akߢ˷ *LDݠF=U6S&Hv֐4[*u142c~4"W7 ÇGو,fl;'&=@r< xM?[|k) G|,9J ÃmNVdvf@JPԃ`h'Q>[ْrbǃVE~ǵ$t]5%}Ȟ9kYJ‡%rV׉e[AKkjd:2hگ4=3:3~I\ϣc#x~cgׄkU))1qI2uW"]t%a;!j fGc[֕'f֜W`#iucEO" WݓaE>zK2v~7,ԌC(S5Í.p#m^&lc`_nE[굊)ef&oZSoW\bҜU8o@r6vzQ& a4Me:ktS3eE8HB(iD.YA MEO$o6%V.^.4H9qJ`-#rPjqm%G窓m6aB^BZ(3QX ?$tiAT8. *e82:ʺ.WBܥnkW39/jzWLMF*Zi9}ԏj:T!"#:P*f&еx)j`'@3KQ`a=lBDjkMD)fX٭b SԱ4K.9, &:Ay*xs< i5^GSN&+u.0Dž%fgM4wo÷́3 c UNlC__Kcc< ȹ]痪JuWLhP ăTa lt"{m]"6} uΘRV_M[b8~;ݛJP6UЍ+> 'M)ikve.{Fo G^FۍC_,V`>0,|Zq;s 0aKXǢj{W Co"z 8ut]:h`p* c0 _#rA6K_w'ƨ ыȀ>+ Y!~HAz,Cm*sgDܮNy'V F %U+0_ іMKy,DV<-d` 0=CO{t [4kf>x &AQ{U!r)^@,'i,ϵ#3ӏt5-K椄0_k[&VLv\4nGX-qPBkPd=}hw[Z]"i_<)ax7buh[SS& iBd%`<,/ yԟM|(姧o͔k`X kcMm a,42iU1ܦ~.$tF_=m[hgq.̮WO-. IŮ;'v>.dP;=Qtu{eNwf=#c9'HI 8YT[v ivRtSP :UTߌ%- d.tۀԯ-?f%(v)00𹎲V&T iMe|&0*ӯ~;ç\xD30ſ QKHa{>׹?׸(0_EճB^[H`"zA.` 1k>' ʹ'Wkӵ-`X(.wCjpL=Sցds09 Zä+V8t0`K,jzt:^F o fˁJVF4jhvvih\uEUDGhĐX6% *<̄8WA@9htDy ƙ(ċX[b)<&FU[zDB ^*7$g?N6qj4[A ,̳KG@6*Ơr'>h~x&/s uV'<\u\[b>CR=QV1NCr`F]c.}ZKMp BG_z\lzd7׏y%e%0S5Emb#W#bj`hUT3._'ƈ/P9 j~=q${ ur5iw>Aޫ&~pf B@S"*~CC<&7_8Rm h) 2uJJFŴ]ll{B% k6X,.gRg(nJ܆f"_>G/p "#D^k:j}?w҅ _XVBv\c&NJ!xQ(gΞcEKLo=(RA#DzHJ„!"} &[Q:20>z ȬAyoշ\OU+ʙ:_c탋PpO E%Z\*ոZ[t\iMF*[ya6; ) [26T<Ӌ{Zr9q]zWSh*xTAanJ+>i+v׮.T`يS7dpGШ7q8ǔ'5-^/|q&_?&"[fb $a{t,4М tRd$LO.*&҇tȘ\6{[L^s297ě>PpADVZ3.\$b=g\,q;/U I$Gc-9ڣ,8K GҴrJ ;!C`Z{Oa(|qܧݏ[q2,YEs[ $<>fˋ[8UȆ,HN3_DDx$Ξ(Վs*8pa;PvGTE[FzL8 6A^afl~N;k+Kvmϕl*5K-s| saBCAjLBL.|r䑶SodkWy,9f.)]CZV~casSk  DQsyPn~!FEia#IV$f 3,D?ht1+OJ6\%$l}p!A[r&' GZRaBD kK&6XƔjtz>\(7i2/{`*Fg[jj&ɠa]=H}눟 ( riqzUŻi\#ƛ]v791 ȿSw*5GntkOʺYx(x\!ˇl4& nZ]Wρ|%JYvupJ`[o 4„93:cv) 9Q vg9/>?lY@ap*S()Y<7 iy z^ؤ-zN"d/#WL"ܦpe;scpTy֝QbبPǁI(=_sSDh%' p)MFT&`Wv}e_^[18#p_YJݜ=NR7eiJݷ_{MJKK=`krؗ@&}oOLjyC>]tHsRhK`3o#y:'B67haQ5? ƞО?7:o_L X ?Dq.1 B4Of={10Y5+][8 Ԇ#B|2B@p4kFoLO3Dab"0Fb>XVb>RVr"kޥl?LP@ Ĕcy\}sΜ7Nj3wiiCw-v8Xp%_ؼ̧Ϯ$d#w(8Wע+fk2,9ɪN^FjA0]% Ql瀒‰ GOl7!()+-a_.O]3:\03z[lm>3okeZk>,+ ۠ % ןΧa.]j,z 1a~Z*UkIٕ9`@>˒  .%GLe,Ѫ҂F'_;bTG>GO60_Y] i8R-ssBjzkjqV%h%?Ǎ.pi@ .W~&G^tWLT й;$Q;MHDs֋ʟl8Jŀ{tI9,D'}&!i<B 3#R%ۉ:US/Ǚa"7m3 d؜hec9Mw|4c N-ʠr|pb (&C3vZ7Oe#_Ie" dsu~/,kcV _:أ]捰"yRX T%zpq hQ8ju)f3RLji{ Ls+k¥, /}y˷OGz8fG+)ż 8`TVg?eЍ/3v7>%= Ưsfgy~(є}bI_fiwOGk2"qT `GS|svѤYjgt'~t?=k4]%n}gD|AoXY|#>*&tilIN儓$=p %x >sgI8XJn`eU6<[^">$/|Ahd &Y4H)QdX& Sw.[4?ʛj \ǻQQCs -(Z ##/C- G8G~d6'XLH 1% H2zG9q6M3I4n4GOxn[B"*pQS 1ע͞*A0hh6Q3FPP^Wd ͕FpbNfvL\ (7 y'_9:HK H%{7/ X[Xc7046ֈ[¸h~~e-6&# KL9GqZĉ_C7Q|VH[EWN{i[_nn{[3[Q1'iwN=mU0cL[}Yͨ؇%=T95<*U>%[sIM)7ੳc ᙐ١ww*(FbaKzM}wM.xT`&=CJIvF@U((ZP{%iNc/6-4YGyΤm\#pNUU`ub EuhVHBdؗcԶvKߥ`dK[PKh~zhr"å\eզ?R#kH1{ԡr[PĢ/lیP)D7U||1 ˃|O \}h"f'_6*șn zC'#ruw؞4[R(Z\kY3<Ѕn+q[%iDRtX}ypi*[ߪ wAl 8-NSQ{M۝$5d;+飯"` ת5Mr%!Q7G$a?؛) )1njr߽:H1~TиK}Jݛ`\vEA9qÑbs\EsxRi@\X;pi6qkʯ[n.2xBK;R8߁rO_/0v½\4ꉭ!vܪ$w3D'15lPwB~tAYz4Q͑x 4+#˟WUU-,}M'jy}ŪJH`IC!"0C5aq;fZR,!Ċ@+:TÚ߻E+Oey"0 H_|p>&@6 R@8wە 徂"%je%*1ufk*B* _H-7bd~B|^ԤΦ\bIZi "4ߑZGEle5= ũ1xZ g1va21HD6أ4[ f9bgH6zNJ7~=)3A= bf/!ll2'ҫ"F9 w w"5 W,~ tkI!7h_X |үiRV?TƬ٢|nZ bevPw\YNk@y?Heb;uOTa9ȱtBs`[Ϋ%5g9}ud^rfaٛJ/*>SS jFk<[zw<_1Ѿ-R:'ʚ7RVEiCT.#;ketԝsq o!T6=?Z7覛ӏUMA;3:/:h}w,mo,l4-YE~c'h؁pҞ9Y!.Cg>'_q\9Ք6ۺ%1Ĭsb$4G.@4̫mވ(xOQfkѽ0@хGeGfҚC:L vV"6zO\c0ZCS~bzqSU`ἄ6RhPIiAi ^0ic/< sz f )Od'"o)J'GcL" 7a9ܖG7i:I4";M&M_*1wd;jZЫ="{p?{kEDֻ̫kbOI1ӵ2a7R2oJ0|_B +*_Oq9XoZߠVJH6<#ߞRtuvyzMvmp7:6BNWDYl*%ɋ(*DXH_GON*ʻ>tK^7:XG"IC&$^P^ p8MD =Ov?^LL}.M;~ 8dJgqr B,{7P}5m{{-9~rAG )IHch8-iZDäk^7\0(^P]k-7^4~2c ClShG^tw0h<4xFAYc"y)~Riy),:Y6Hhs1lpMiEN qZDTPZIpx&qVѸɚhEcz/BchHzV7&J4#$RbVN?xwYP`".K[̠=ՄTwRa DႦ wđ eQL&"22=Ȯ%Gf,/s ˆ:8y{R ŀF9pr;*l  RQM^H^;.l[ C}74Z.@E"BZ M'HJ'MAH!XMZb'o_wvVAѭTwFy&]^srug4K?_pE?VyalākUlQA{RJL~íKZa: *-J`GPX&QDS#8]|2@9߉![B䑊β* p5bk]yb:\ޣJXumӦq=[bە!K~(1C>l ]j_}VŬ^7u&ߍ—G펼OT=+"UR$DJ/~+ = wk  G8"H1_yX~efZg@9aK2Ҩ jx2V!pFkzNoä@ꃕ~)0jto޿>(O03%n)dD@9\&b5*kp-(.&S<|f+`v3seO8LPG;`WJʬFiy1 ,8蒱ge^A?(B3,)x^[AY]Km3;땠1:3w%U|2vO]C\ޛb8zucaIA˘0b| &-*ëi5ЛpUY/@Ǔ9=MHZV,.4 nbfXa;Rш&c`"`#=[!a>9[9IvRL" `Ƭ^ХWeM>)”/)OޛBZu@5,›1=}4F!P~r 3( -RµÈ6zTGGW$R?IJ 8#I!6e2<[/(3JkhJ.c*BѸB$TR^qLI ՟qI!:m*XCRK94OU҅5/Eܷfwn%FA^S҄&TIFϭ5t.qƪՈOa5K'C4iq b 홳W_;x䝀~: VT֢> AZG{褺)&BL( Th] Ǒl "y;Y?(dJ)qpkLYG~6.b]\VhatnXڪrƩo|t_N"딌E%!;e3?O[]~]gIJ˟ ϖJoR{BWљ}C(W&_G 4 &)c<(1ێs.݅dh_wWišDu&쵭7z71=O%_o$w&j_%˕Pr3- 5tk˴zƢV_-RJD oY1F,s xrvwnBH|_rִ pkOp%d4^Xj`P>|V0CK0e.ɷ_U졍h{<ٜ%_2] mvw %>v3>;֯5G ObXOyɃ%%nUwgThf1nwh'GL7%]gB$;@#0d$NiS>TX_A pY mf-zX9FK*}2 (LEn |у`o7?| 3WT<aDY½;gq`X{i>YEF'm|mš r^œ.)Um9H.izCιۥyVG~D7sYMZ=}L"rs4wW qa>`7_E<F_Mw뤔hV >`x }/`V cڸGSp/EJF鍴`:/F|qB 6>P!_CE Xj~LvS՝G~`)>]oɫ?nb*i]PG"8tpaqŭD1jr<9ϴ*O\tT[Ѣ -v,_оsb`Yt߈x3` Êh4'zE97/&JMU࿣K4>?za`ljt~]Xņ5I@ҁ.L/ 0Ct$PLn8eQ ^dmؠ wɘwz䕱 4\_1d3)CgIï@XT ]bĹY[4 ffZn :TA}!RR*:˚DƽcHW_vwi]B^y ]fJnј3 ՛,^DQ.{ ͢&#ޛ~a\4E2uHsM`tq]*%axh>b#@s֢к# V~ts6%գ.6Һ? BFL| [d8k-)fA 2G>G V TQY.nn]uL/ֵ̈́fKjÃRQoր}mۛ5.nX)0LYVV&IR \>QРtk-ᗇ/Hj[ ]nB :0%rnq5c,gV4|w{`=D/6$gnPi@,?Lnrmc<|a!\&3q2j5ZܯNѝ nv#^{ӆ%G3@WI_ivʒ>/N`rIDWqw Sqki7k>9F}&f2(絊'7n,1K2!!fIu*֮ETgLact;[l6 Um1;%ީ3AFQd~J˼,ʿp<9cvKjhqn+v9F@ 4=z5hg#~zb\ ^Qөv]iB \˜ aTdl)1d6OX:kWކ Q>`$a$B?bF]N(<;ͺ=+ldjrv__p }"'P;г=C> b\IB26-I\-*tcɴE@wa\W'ظg/)&1 Z~(46Za>Pnt|!BQ4WM9 %ռ}Gmz/ߟo(sQ - ]8'1z]ܫv \EWװ&JlG$EKc [Wxb2FwO&|5oɆ5jB gFXa!( ѺRhiU햢t6 tji7ƌ(/n34UB 0,\nVéjD?yJH%0prh/ j)7-$&DDUQ *s iX)}׸#i R#ӻiBM,Zy}q>-(_wqȲ^ CH $ջPˁﶷJxs%Hv+0/>,N8Pe" x^n.Yu/MY"^^'qQ*X5rJ!aY*_c9Iv~~U`jhM~?='DϜDh &iЪH[O:{eʺ:w)rQgn!TŷmvM T0w.S.'XN1{iIn֍z0.L5Ο#wߙldA}{GC"ot|o'{%d:dBR4̘ uH[+(chZ{?f c2 ("Zs QPDZBѡ\wŋ]MLg^*MUNY`C(Z+3vy֌Xsa>=''s;'kʞ'b̏/Uy!H}={LNCW(w[>c-PK\ H"}I&n4r !ᣀ! 3S%oda:,)^w{VdrFaTgY5|: F/AHFxSs=$2=;6l_ Q\0`s|rquBb4oA\o(H8eu̚>ӳ9'*sTJ[LT>} J}51 (|~ "RYj@AC5ûGJamF[ٔUyC`!ap|aQAH^6ĩ$ke;:<P@I28nm%xMH.J!dIш{P%SҞ pUO'ל^7bK_7;( TF:>[oHV>TItuβp$D뺕AΓL )%)m-ErƢQ"NAY%3r a!¤ٜL]"Yӧ؁}jn7D F`ܔl3(ř_},+ukz E Ԭ*A:9=JnrɤRI[uȦ:\|\;GO#hkH(a< 57V#Q_2,U/ ;}#os_zZ}I:A!BύlE.m"$wm~IMOIAaG]-o0sKP;TKs s o}5'KJ Rc>Dg Olx)5dϥ*i`sPh*A-]ȳJ*r '2ӧyN> '8o:a9mŹ-=0:@N95#@p.e,+4>V݀}K}J 4O϶(-}Hbd_s%T,%-ʾd "񘎼e ^)ɏt낕&:K2TCӳ0pR ~517iGLb?xܠ,Jc;UFC;! \"kSo)sov=푦$vY%% [FID3Ed+)LJP s|}spAǔ ja.AK4fK;;]QhVA~/+~ Ci5C5m ŎKtgo,g)=rV}E-ĽF' , rTU7υU0a[AIh/ iIf2_#`'>],J`s*)l OTt|ni`CP?(xN OBp狹X]*9fx:=_.rE&hme+zl./sSz' dQtj2y·Cnįћq0B/S^QbiP װ?f4 |u^g(:zɨN^3oj#/w=S+bv.b"e!@`XwL)lEfKg@vk>@Cf4F zGsyg#* *,+)ŠR8s>p'q<OYٴ`GUdii\SNJ E.V=?Utz`M2V0~-HB ~%AGcb0-kQ.Y?W _ tS O`2x8rI2/!(Sat 1`Mg(u=%q^Z<,()[LQTȒX1an3O5HpZ@1 ;V߁CזjfGu?h.W uX走JWOaK즣^L,3]ū)ZU]j-K½>XԄK j?Kvט Z`qzˣj*D՜8:FhhxQzNUD߀mw=G93߈۩{_|/SٛOFɶ-ԎCh ѹle⊕9vO_s$+ayDFKK{؃V킘7l\7QDl-+NZO#e̶WE[*tqT`mMh DC;˶[x:1싦1{|fH-Df‘ȇ֭HV^T7=VІ0(!Rۆ\`Nc{g@iȱCfM|8ޏcy`h1JFD`82$a0q̖Ƨz[>sT#X=MK|VyɊ 1?(_׺ $ Hv&?CMΒəΌrJ #pBCd&4/jiAwJ@ a 0{8N{l ~=HPC}$#`f !l~k#ͭ/u1fgT͡psrEl[>P;,]UT=Ը$P[Цݿ/kסH0q|uSRZ#Я;[(2kFgV9WTbc)E07g`ђ磮;'^cƠzukOr` @lb~̦1 jNgd5#aA@- 8k/KW.($z55$AL֛> Pl  l\G, }\;.nP!Y aLD.C0NWцOa<\R== Uzo"Kc8kQ054Y=#U zٮ3SxMMX3TE8ytթJ:Sb#D}SvVjڟeI4Z5szM&aeuPJPˆ]Mu:C%UÔm-eal2f`(OYo.F'LøɔdP8VB .:7- lgyԺyN:?!jKX,$Lԭv3H4TEgBl>6Y 3:Go q0u#+seнwf*m7Z%b+1J^u~B*;21vYXl:'|dÈp-o_ڋes{*>ZqiF'/1lFF kB}c h5t `sa:`{$3?N~ }xO Fd,!Vy; F}UDr'R6Lvez}u>PaȒ:$b)I)ѓyѝF&:ϻPY =r1 TM42x! ?.4 LA޾%O&"׻8atJItEy'h0jPul# ZOΌ y(eM0[jU}pG)Wt}$O'\?WAPQe3xtWpl3.#@[ڏK>2r $Sh?U$m%ˣPTE6*:`-򥺦O?^HU ^;?ЃF qRg}Yl2u41"F_f7iTMcP71j#4oj$ r)/`<lgop>f@(5oC&W]iьeD$1*AD9\P@+T8װgfvmʸŅ[,[_RCNE #xK&5]V@M؍NYD,^pd SKinP1v`_̟~}=+ՖYBM\ug5uN0oЬ^89K>0e(l#ED@3u]D,ُo^EKE>@V COw0--zXQ )2u;4XQ'Fӊr.w`؂c7-5)z`&YN4U=Iޯʹ褨UB/ʡ '?a^a$\up 9Ɔ%bRA;m(?4ܢG[Z]S)ЉMC&m'Rd!yOﭙ:yN%ʸK5־+io置 dzLH`_.eĘ,W^ b ٟAdArQ~0@  f м^c2y$S?58|e LXwRv&g ɦ&="f+$U % >eaOD}K*?/#-6!Q=ֱ..VA7gNFl˿UalawJ?vjFR7NIoZ-~8[J&Bס lK6sPbd=Qxtjo9Z8gyf2tK:C.1n}rP!8r{3p1j`9M;D$Y%NNs- ?O*?k;Iǎz?&v]nǘ q䇻n%gY+ǜe|ǫ%H_f]~*?"Q:-ɹw&x͑ n,9jvT%򪵉ՄhPphz)HUOظ4fe9^+TВ- % ”emMvz -`xm YPn5z[.."ˈ%/Z~DCI1zdx Vy69ε/6G.dnʣ^vqtc ԺPgeqo^ѬFe4҅ Ȗ+ÊpbAc-4=R8 N'AvЉDY x(w0e.V vhj%eeiN\Gl/8l ΅$ A_;Anvyg`f/qA;c*ѯ,l.M2iŎtҿPP:?Fǟ+oSR *%n_6IyN"\2/".lH-%mNa:⮁2X@gqoQ)3Jd6nS&cVx0@KaDmc=>i'^84 $šAEk sQn ؎.v;߳rd^ZܭoWh9loI\f4>?]IsVL+rm}=6Zz -74JtMqдy9mԮȄQ /" }=OnhL8C9Djnd RW>VKfJtHpmh\dTv\H"tW?\'}VghgǡЂiLP~{%i(#6OW7%J6Ni}8 @9*>ͺ"\NX;]؋kӡLGAZ7ێH\.#5TNԕLr{\Z|b0 hGFW7u:Շ6a KEFBZ,+n@X(Ӥbn}E>EǨRaMg zd>K ´|xmh~F,)kf.)!l1T`ƻA6sg|wq ;W=PQ8f Eo@i fEgu{<+1ky+nQ /߱N)Eߝ /ڕ/CxũBFck£#GPZ.Fb ?wNʟq[+Cl"6@KtkOLߵ ^{l؅(/*V涗/7-9)ZCF_ w=jX HJWCM+º?~FQYk$&Vيk5;z:6nBě5}ќpfu%O D܈ f7 T!/囲\D@?F/؝"n`kzđ) RCf(&j_M,h9Y?>™F6V\iB&V k~BӼV = lrK.n)Ë,VU"`Vߵeb1Vq2kϷhrs6/ǂ-)~v*M'M a#6a!چ"曉*A3+eνN)C|fS'@/ejxV*/!k]}ូ2yKA{u$yHL,$1\i/_)XaBAWwE y7gQNԺۯ[VXjy;N- IPOt!s@XccjD/@Xuƨo(kmZ7B#HX%V*橔 $*WU^1;C|Y(Rok7t~f1/("]Gɴ|]hA/~0P#xgKAP~A9h-guLy8'zicW= Ҋ$j˻3@ۻ(L`,ny~uzS b݇3.T6^XL^We[>LYbaBI; /*/Ns6wűv|G._]#aA&ń$j7|o8Y:SnA@M|rE›ZˇO#ƶ|\QtW4\͓גμ6)Fۉ\Vvj~) g,}x!EU򥜘~,ih- k8-r)Uô`хD&Uؐ`ؙIV#Z|&kȧFI& ܶE#%=]H:hla'KSo#EW]M_e-n?;G<9*YE#C6J[ 6߃_ d(PKyĐ[nEήϤHQP"NА _ #$#;7;`6=- N#dNIxqΪ-K\sTjp x[bo%SV 7WORf&Ϟ ډyͯ#hPƂ$\(/̟N}|7d(nkXT;#y!AV6ej#ݗ zNF9ќ5'sP@hI'l:Gb>z֦Qz[wVM7F64>QS=ME/У.l)U1qW: "ϊ;UXC$I͏6& ?2:ޝ7j=עsIWi7R먶(GPL$;d4ON(yϧ=s 8?w&1e6HJ.[33S{v!mdsh:a Kv_-@;Qp] 6,HiX(]#?3A;KX\UMV>Ȓ,_O¦i⇈c\aQRrxd`~yvyNTS} ZzDX|FocVl_ ́z^{^c@dRUB.LdO9Yy#m߭*݃AqI >v ?$4 +#m;⦐Tt}ށZEpB |wd W^u!V%So| Md%T߸^yHn,3򈦑aC\mRBP%Z$5i2av/Cg>fXsyP 8d|QӬ/* X2 J|)bG2]3wNTp39ŀN L!k|cV #xS <έ{GRJ]+{zưzXNUb2XG~ O)o)ɐZf] @]50u:=.}WXxė@:2 cu:}*x94.z]imwX [pn?aUag@bԚ eT%(ˇ93[7˂jiaSC`:"15Ql9)4oj2a+ " EOKAc+[qb{2۵|ɇJ\C߼apE {BcC!T(%`bw a]4}AEGOԋQe[ H:ԎpƬ(տM{'ueRfZr;ݪfsAP EC=E\"#˶Ǻ+qԘ(䧦1s'-ϋžqkV 3iE^[)~W*~T&!\\JjKE/';gMϾP8_QO>UcƴZ/z -hobTd/P VG&2EY~;&D&SװBґ#2o7-~23e!qwwiXWR4T  sVL^/N,mtxtFx]U$2r|`w+؏JpO|ĮH::bj"pHnt9mM0p+'MR'sy&G~&pZv2}qh]GXg"g!D]Y%v gWM[B=1(勠)5nOؖB9DV 0UC-Șu086x3 7j`mD No$-dO8D#wJ71JgGv0WK6ػ |ߛ8wقCg0[9Wg2s͉B4q;KF>CQbGW0.k}]&1Ne_y3HowGȁsЈ{ǝ6es0xgNO7;LJ#4/c R4XYpP2Hȕ4{ amN l,m\0Y|5*i\G>m%m0&~q r k) WL}'ٳ{\I_U?kcrk&E"ȴWyXZu傸8r.E @ċ׃5-ʀ5GqNF49yq}"[J~$ ?8{CUZ;s ,;{w2G QmTyI _Mtfc-" ؜ZTE2(R[i9al/j/͋RcLeÖnD3=ED=HI0q9?)^_F&^Bz̿|a "a!~>r]d4[?je}v%󇕟](\HpU"pn zYD'mUg:l.(EkG1DnϹ+ȭt,-1;Wk?wLlAfKZWPt /s\oD,WeU!c^bHRNm >+W2Zs?c+{[d{l^uC4&%Jn#ޭY9*O ͳNۘ4qƅ"JᣪULCJY yECqh2I}=Qs ANatءݟi0xwMKfܽR7tM6i: Pjs2⻼T/)˦˼w qYS!ӝ:LQr&~(fP<(m#~O.9Җ {W-+c3ĸ\JŠ[ ª m劅8lOW>~g̙7?ִQ# L9E>]޲8~KP(آmRY#밠 oK!ś QP? p&"P^pv,R4/ UňDG=R{'j#'#9:L{mkӐeU=ѭfp}nL9,>sZoޑ)\1E$EqUX1|Jٸx~pa=v UJ д!K.BB5k$F "zŰ2ա h%qptĈA9\KH^ ,MAV6CZRrY rTJr `>އja9T2Jk>0g9֣ M:xYƄoq=tUEy{FUiSoFrD4 ~uщh:{(߃y#z*$5v+~%r= P\E[%>l kA|"4ZE֦5tuOPS {MV[>1H2Йe,# WX @/Vsb{vW ^d_URN̻t"Mn@z:oqO͇v-DO$VDD@\jۇw1ۛTƱW[L{ɗ ELԁ!Ǚ ;f@4xLpC խ򩔹ϰB'%SПs]rt~ivŃ IZ:0HOo @7H'#Rg|ۅE ]wOx ii ~U=VFL1'[B-B8B"a6f vPOp,;'[,F_v2ֶhV3bKȽ];s:QykۂW{_VX@53xl7ZTěONp~F|"b[Q$dFSOg$L+pH:SVc՜XKPϳ8P:u%q/iۇDJT|p?Y*K|,!K v'QTNV <:tR APT[R&ZVWroj5g.hN4pWw\pʱ1Կ)/:X.;xy13,#b*H싉;>d|pWƖI*$uއGqR'^B3,,9SDH^gIT f*W8{h 'ʵAU)QRL@wWW۟EE4e^8t9ﰬ/j7D,O(f@vČ/F>1hS!krv5?A/e}H3 5տ =Z\Da<xG;*̒>Dv>$uhy=э0!uVB& Ttb[$NPLm*VN+SpsT އh T{x0˺ c WLG&C#@l`#98~^[(܌$w3 q~;7觝zMd|kマ[ѥ#$iiEnRb9"5\z0bBθ%cVg Sv`/duk=gZ%lbg'mIP48i&99j›jʻ@+F[HWNE~5i5fOFdQQs@2rX 'Vk X<kF!1ܒM>NC ZyC/ stlFP ~\,oFd#6@Xri:ݿ S7Qk* ڴ@4{EttAKy%lQ}8{uן$uءgP?JMכa^⒒"N2e j)?Ӏ ̘:@TL"<"Wbl7CIpӇ h9rۤͭPr.JOC|Թes']oО ys*s:%x`)f̯c+x(~WFe"zJ>ǏF8=oLfޛƩ%z_Kj 3x㟴0ISl]w[g3hk:( `v̈́A0!Ljm6(q& u|/wc|y`Gd5ګ&?nՇռlʝZV(Ylqn! EY FB|s070Ԅ񍵑ofC*zr `d\`? C̻V$W싘4HO|N{ ;P\:weݪ5n7iZ-8 NV_5 {=Wo~'h`9̤=bZ}M6Lhj@i-wY(7$=npt~K>k6cz" 7G'L"\ffjA>8耠󗥰Qbw2b_\xo>=֕6h~}g2SjEYQN_guV&׳IUnn4qr*ĿB'ҷCV50l_w\K|t2 UHAɖQRȇh9*xv˴G+lo93Xm &40 $N:n,7yrL8XҨ1 B˽0t}#5Ury&B*_5Sz:eɥTNa9ȟ䐲_7! 8+F{sv\=,{/!$itM(qLȫt}R+=N3j@HXvMj}[pB_$c0jY9j9Kh3Q&(HŶ? yDQvyc7F|j;w!E8bK^įafC&o`bҺFHxr BA`#]5U/®gc|כ644ZL2`2<F;`bY!ʭupd~@`a"}UM($v.YC.O Ɗ7f,t60Th&>& ǏU-8,#xʖw{asG`{q0kYL2`k;EP=GLnEF ]3/ҹ ρmR+tj#0zּBa}ygXvA /"=s mzu9y*KDq$)kpYyuVI~˰kiX-fh%QiBoVfĀ~O{2rѮ3hBd“ sTߓǺC9Qb|9$)Iysd|gmhE9cFROT2@g(, I}LSt>=Jygo; i;];%k;Fhp3R:>R)iPAt^JW(lqٹg w\ūmĺTh0Hy d_"BQhZ~ @,}{fYf$rC5GNWp~;!2lbpEK{ƆjkvifNeFo+!TrJwX9[|`%o%'.S^R5Z i${NRD #1YaDO£[Fj@6Ã4"xAf :ƹ`)1Cf$;˄Tz#7RJ[тCt4 ֈ⡒+;ӓ.r1]kt@:Ja=584',<1$ VFr~WAo,lgQG`*ևDLˊv?Wv_S&C{ӿ"JI''iR,G(@> U{J/W`} #RA.qM8W-*8pHA^;'=hcaGʨ!xHYc".>(nf6;d@g CjDhP0nwcqK+RO X v4^V9l+eils )C) PI٥a }q DZaa[a *rK4]U՛d8> t9:>>gCO]-UoX 5L7$EFs V&b@#eUJ;=vR/>Q_=`mxApŎ>eR>6 -Y2И}QS0~=d;Y6CT*\; 3&uuLX?+:gz&."\5mŭ'#(̅ 2 z67R.GCزxnG1'ݵ;LP>yX#[[`ظ)7w*V~{~+}/зmqb;3ڗn Đn1/[*ͧƠDGTSsc&K;"@^i'gjT*BJ^hQ3o.m'Q}$hp$*d0?Kx-:L6>6aSY64#rTxe.K)Zrt/b KZȤcu-e cxiKUE$ ”?J/'x=6+g:<-#98Q o„ Z91#,a&wK%K&>ݏG}4Ժ u>R#\lfqcoNk8iF=+m+sᮯhc*IV+ 5h/OFGtfFn7V;۵q3ZIԤqLzoO H5yX:pE>\oRE,ݡ%F1$y[ޤ ?4Q`ojxuaYז jd%3 0-~$#w9O?+-36[+QQăeTl ׋ Xndzxȧ*jUAȶi O2a3=--I(=yQ?M?IBsaNR؞kKQ''K"[ At0n'Q>R߂7U>#cx(BZBN\|M#+A5DLLa2Exj֦0D0]n@Q[Frw#K|Pf[+CM\h6aNtWY"TZ&ҫuJ6x 0z 3Vs.B@{XPXf?tbA%BΓSNK EW٨ƔTú USx`Hd` LE/1MrϯFCg._ RUL"9m˪y MzbBG&'MavFn>^ѩI=Z@j@7& 6 ycp<'_W(˳ɘЇBܮsڟf燓aCX }|ujv Z?#V@$s"I59ཱིE3՘jǚL f GZFf"DpԸL4Z (ydc?)4Qڶ$*k{^`@s̍rЂ.*ٶBaMԴm-kP6 ~]sS?īATX]3dZZǁMqPBsO /Q޸{;hWԝ}&c s2`޲YKFw;큊hѠ+9u}+^~EMGSFM+nGEL }~[p A{L!;e?@\P:Z5fc$~oUn/qQ9A&WolK)\ԽYVWlaԌo{F>*E+&@_WE/q*u$VAˁq ^h+YQɥ&JG;n> M]oSWmHj *^Q#wJۅN|u, |nz%B- *`Hr H!4O+U߃'`n0q*0.SxIA̓)8Bx~蝃!ۭ`<*wHCTuٽ(Bn-fR"c1I'j0wa|3mCS hU@P?P[%T)U@oywk>N2Ԭ )\YB}s?/ )(=HVu:S` iLۙ?GsI%sd&[#uͳ%4=gWX1?z]I6xa;]ZHW`ɻ]Y);)O ]co1V,t08d@WZ0b9NջaC{3٬h<_QEfV{Sr S770HYHѫ_wg '7,bbFC;ed`kIC-lk?uWTZ'jz*F.C u;k'J YF7`o?apXro &fng127v*q˰6gase$HҘlBHkV%'!è%oVhlvM cwj2]Fo=N ŔH]a zG3rYN҅iUðeߴ!{%Hj-KX)ʓ>jzK)Ԥ]V㹐'mo\- QLw Q`%_TnP-M{oSug!3T |I;zBߪR󑀃;t&/<<@9( vjT-Wwԝ5+umcnNӸn۲A/BrPkoj%"#IXm)^p,̬F#e?\2)`P2u8WCX{k3<ܐJ*Xcy{C3;!hĄu|̉AlpF/7Qs_2K6 @@YYF!,@jW> _ FGqz3< f>K`>"cTvKf%WGo%ivCRkeX?*3c`Fm^&Ql}L0 LH>5|L:Rv?)% q*GQ& @* `«Ӣ9`2O;W+e?(D0BbkhT3D2cxr1cwe#cak{#R!%Q8nGw\?gW2,Zo׏0g|!#K5 B1N\fE(RmX+<9`<ܶ*E>Wuֳ`F cv9uX&ЍV*X\^Mp.޾ZPYh 2-5!xJJVĄC zFt F>[`ɻJ@RBi^bqD I.`78dn3-ZCc1li'uAg?vGڽ, u^NI!Pqqm3huY"~N.p-E}QOx< nbo镁# M7-8c؃ ܣ7 ]wz,BP18/@Y.(Xv i >& ļi&L)s59A dԃ֜xqoOS 'ΐBn M!>x.'gpƤEVbr oے)^)le۞gs& 0jvٜG 2oG? ]}ژˍt^?51-$ ,\/Y)>us]NJ,9g(mOi>A"|+OvנO>0X/d"˒*&( i(n߼$&ZJF FkthBNkJRLw'WQ9H,Mu`]c7 wn50]ZR8B>/)VtnfnPS"ӨMЇQN!kyDe;w9{mM]6W"i[_YB~`g@O-`R?&2^F]pI%w1Ycq#@K \ z35]sU#mOC ;F:bg=YB"B?c:-uwctGk\Lo!_=5w@1H^!+gx0V0|ZdHZV $ah3}? //,i߬# ˱%3Oq^=8?X\>\fLWzZ.΅BW3ž3"ByD!Hqf~ڈ0_ y҇ eKs=g-5yH+!@ ܯ3Y-YYXT<( P}DCIfc~|Jԃg6Tr>vv ;)CS߿E3xHg_,HT'CK7 C){,"9L&eke+[XnY/c_ oP1^ӲAc҆ ya؆*6}Lnp +!ad=vDz%`>jJ%n2<" c `5<^ˇϩܠΫT_PPc32悊Nr2Z>{$NαPOV!и[Ï`zb5{A]PTŬV_GOS=^2k,'~h&\IO>%  [2x Z;'Xe SDR[|%zL0A`3y8=ޖU2ht> :0=@>M^>1(h[L_y"% $L!NE$n6Q ʇ=u3J2&֎'2铰ؑS&%`O)5::bE9?ۃ׫V!MͶ άؕN=)ב&4 vH&T 0#M? -vN=u|||VRʩa1`[Dc2-3gv O > Zt=Ɍ߃HgVpp<~ܺ05,?W"yҲmVovbF4\F+KR_A%& OCy 4'$/au化V}5 %䠥 {%cfwҿ15՝; $?{'t*I` !T5fwg* 1ntQzWYrSս十 H9z~Kvʿpi?+S!];u#BO+}-T(0L̃w ḧp+Ph RL^ԛf̄ˍ% msy>FZEİXfy K^}Vtb(9 IIz8[cWίe޶oUA%ߡ*p((|HfGc SգKk[e[Ǣ-TtOIFhpk@#()H֌Uёhw>+9:6I,u$ `WBdT1}>OF:&MUtV$ArUFxr'\<Һ(#)jr%DyxHKeYrV d֟^Mx$rA0(r `5+q&R(¹H_ F愲bi7g@["~YQIcI-l}ho-ڏ<[sżZ|1l, h]84s2seKC~p&|@ZaN|}z @H,"u1`(gK HaM镦n RuSSڣ Ù-hK" !2 ښ^G9} <%N֠fS,ƊrSE,Yط"ږ)_GeV*5~'}Nz!Ai 3~:I? 1 \KTp )lwIZs1?D4~vf{ȫv!p xH$vC 7ܚ ``n|QT_,%xK٣ Sw(rx&0^FINvj+7<:م }L*|S4];T~HLR0aN ]]fHu9˄[JaP.dEQD _SN~lqږCn!k"p`>7TTѧCm~{ω$5ɓ5+U w0}|)p轮Y8cVTL'<'܊iRJm2P`NI(/jh|k' kifN.H  C MJߞ<1sB (a█^YkxE͂8ZJ1tذ)־Ŋkp;dfyDaLƿV}MS7$޿JNlH۰uG 4mƪj'{ UߍB2Y-{9vTв#1h 3Qhf@Ry:K>DPq[z]+E_/բvDI?!61YUo<`N}Ʈfÿ$x>PH$d!hh> #4R+]l\a|&T#HpM W;#=q#a%3Pѱ4}! qݹ4Cv;w}vd|UM[K&6HA,%a#aƶH/qIN3aki;*,c]S eJ[ $NXЀ8.qtQR-Y ^ug{ 1pDERR/%٢TIݛ.!fI~X3 (@Ui˘фTE Z4_Eĕ5܌5L*G]"4c}5vJO}H375Hf;1Wy}wGByC[N+Q/K~#QpsoAa}xg}HhjF;^$2o6"}9N]5]蘆 ;~cifمM 1Oylnŷsb-9Ke;n wro;uyn ѹPQi.с}{O31vX:7c <(vdM*${oFzފ} -ymؕ!u:=lgg WW>a}hZIzv&zQtUؾ>MX^n.vuJ$^F"O~+s?: -nh3yTɄ͘kPHT =w(M7YV t\tֵRR*~cbޒK'`5@Z.j 9:"$܀z뎉]2Û02Ln ½ e\)xՄ2Axv5/lS(oZdh룼w 7V.SVHf<-1%N-c^t#m8f_p&sj?V?uo*\W5 D 8OB%: .huhB)gk蟄H7YhͧTXdv A4:u*Eٲ)q讥(CuY7YrYm>\t2vlƒMW}F}dTbF*~;yw^3([5^[Y0nOUֱ }htW"׀Fδ:hlN- dw:sBWX4K4 Yа1 &Sv֞wT +sSNSnدxވZ"0>1TIoBsօۃSpծ ۹}~Ϊ՝&A#TJ:"ޞsWJ,pϖ -H5^؂i"q:3db[F[v7m|?c+#L×,DF9K:褫QE< g[t.x&җa!6=U5uRxts\q 6X$5q #Թ7S6XobYb%ȿ(h_Y jlznjH@Uj"j(+ri0gHWL(x0aTkڃ۸s'/y2lVE XZ5#8^xMPf,5~|J1Ei:LtHJ&n 2|&5_yy,ÃIa䫏ځ_]9 ̀]`(LW}M_R&m1TNժ' =ۆ#ZHh-l  @om.k:gh<1H;γΒܱ[/&oB&5 HYe=.8PR[ @ !2P7IsqXBb.aHnWj_bhH$rҜSTa7F2S@"/궡 M VpScFX5v_u3䍴&04s vqwoWE.?%r秖fq\0=L?jyjQ)+ߎ fcM>y@ZO XN3pu9X ޘdt#\ gl38'm [<~!-U2,@e\u5K7X_4[G{Wo:z>ߔx+w֧Aǝb}T7[W˲c8Rx8w*D XtbR;+GY{)M#ۍmS{kԱ(nH\Ro cM_*pʏhzDFe',0O=]o@z˘ 44DSnFGFpSNyWoBOt A82Rp P9@q8*_cPt0^Е 9V 2v/&=ChEsLe .M=&ꠄY~y%+?cz?I2ѾQ1}U;暯8፨Փy0z{֗" m*@dyEy{s=Y.ˈۧz*+&`)kH.PY-kBu0\X!rF<ڜ|iۛIx&`ztƅjdo;0G57]T[pSe<;,ywt@מ}@ 3k [ j'iIJY'04Q%8Lh.OڈMcԡFICհ6c^Aĭ'j'iFUۏ @^xL:}z_ApSqh)?}6( 8F7lz@"$ww?.{}/'yRmM بcLTfݐW}0's*d-W M_#B3eWyCjh Z]jO [:KYVH1Hr]M<,y}׆-g~ǯnGX1I:)W}:OXSĽ/SveAׯIZ'3FH$Yy!ZDlq&R&=6H2 5 V6P;H yLN`7qmfw]n +D&Ю `jNzq_8"уU@ȥXJLռQ` GK6#7l (hRBV̽YcNi1|ԧY팃Вy 8XVq.C & QsQfJ YeI(5#/+; )n\MZb֢fPRʽI\gSWp՚!k1z}Mp* %IPNzoIcB X`!f c#gg:ܻ(GlKc98K7,=( Xvlq*ɠoR8G:h,IE}/Y3-4=5}Hը!׆)&$2}orgVh^eu2; k9(U5N 36dQvX Z~`3xG25gI]$MKp"bVd @ȥ5tL6`\;->c"\6}f`t=SHl߷"j!L5FUήrLeyA1w{]z}yHI+S 5R U׸Y( ? e`Pe8J(}Oꄋ/ i9lc#LiHfߓA;!zֻ/PE j!B伇Vu`mv˼vLa)s^KK MM87c*l$R?oDg*ig/k ! g$ʮ!$$WOPf0f^Y ]^Ps V hx?C g|®?a~ٞ`6 hAA/y"럠q>;js>2G/}Ϭ~YxkE*,]}f%8 C,0Mc&DD.R6|V0vIy-=\'h9D pS-Ć8c OOyo[UÁf+V:~C4_둵JO[iKl&[2IyTl€c+s>:iXMJsV `A'B6:Ím7]jO r "6RZ !#ee^YxVugB%J􍹺gm[qeG|jBPd( L<9g Fzǫ)07NѲRCnMvQB\|ZDg*3XQ&-H3BKR-{O]!$ZV?wWT6NoEA|Zoyi D'տmBa5Jy;6= Wgkch#wwie$f_j֪|q/2*5}LsXmțS7^"?EkʔGӡ $Xv5_|t8u[tiS#HaOx[2} пkh UY.MAпΡl uafhDK/AԍY3.3lY~kc(IbʖW95Z M5oDs䣅b]"5%"*+}hpJwv4Cfڬ9@@{7EF<$ bOAY_Hfx'Qd3UŮR`~D~ 醌m-08)dž q)0IWO)fA43'E{7̊Hg}m4u>;s[l-$@UW" ժDXɜE 1ArH'7̈)՘(]3E W#GTbyE(40Fa8n\L>hMW>!+VSiٸ+Vs$\ybQ%I87Х ^#O:T)!Z3'ï,9b.M%X]9y7j¨5L[H͢jp[,Y#ubmo(迳-:jh]H+٧LuPrtΨ X3լg9|gɇ_5{>w6yZRt5V2?->sx{Jm]Ru Fo_6zmaSϤM2Q~nE7֎z;jx;& [d}K\5pÎZ.N& ͙m)89Nd5e7(m_3G[aVA._ &!#Sc{J2ئѮ9:Rp,YZȼ=U+"M[yrqhk N07I҆rC,؂~gjPp+!s1YNgJ |LiE16IxJR͊5mg@U(,drHmu(%8ݧӓVW5:)~ΊI_̲]SkZx|ڕޠhQ(, qbisV.&j(tP.~"*DM0#Mx]RF-O:+>b_K5s :w|yk feg Tv%w%%h*oMO3`4]\ vɰ{ @kΞ)JP %<#nI\ T[n]=R.3ǁ\` >t)'Jy8-b( O|ln.؄.fҶxUdO qxRՏ fEhrblR$t[#q'ƚF<ݑrr" FC<#E"WOæR*n5vjx^m??8 V,$(T847ڌo"Y_(\rzː<[|9)p {5dKL,ݨ"ȾW5,!82҃z h(@e&QIbĀ :u]ir}D-dwVe`n)@K 9i. _jUvc5Ga]W{CC_v Ć7h?͔ܧlS;p >"OۛqS@`ڸ %zՓSE16v ;bj ;e&SH1<ݦuLXf7weDWC;&g6FyMIMoKǕjzI{h<=]Ǚgcݑl9@Zh+igȖg3Y;ϭMm ^<꯭PFx!IrM^M6deĪFS18 q4L Ϫw@R KAF> a7Qv~m |;MgOܤXb GOSw¡05%:WV ;0&psc+甲 JN8D]pVQ)8~#J,o&eݭ}1%cUG:;e ]PRgH"ǔ &E ίK]-LTZC_! LGۺߎ0P񃢈5$RϰxLX5iR0kS֞ 6V@^ Wspd3]J=3'1c6R1VMi3/pQ+9D(0=` VW|ExP=u~8{IA3º)>YmgRU`Y񜭷m!X7~5B FE #s2omU#*ux {}Xbnm |~_dZtNܷ۴cK%xMHL ̐ޔI:~uЗ@LHQJ`T-K W.x'W-tnG˹]bVν)3r3 H@o!OIXk6UEʹr!GJ,(aa {8{Q^JЭUC~(YQ皵K6 /!$%0.틃56yH)~A iY2 vl Ln/zx@ј$xM&"@p׬ݯzN  /)g>Ri-hp{A hec0 yP)R3K\\/v(sjEu L0ٛ7AZ0T$թb9P,?kqxz<2*`W5-4[9iȑEz^OrV̲tX1fGH#.7̺(f^iߋzz9xtvQHa3{cmNI (cĪa8#|^=E6A[c>DLq "k4a }dqh7鳗4Ze*>׌Ef=:'*ևv9No*a"l|= IrIr&{W޹ۄ@bY}N&)} HV;)!E t.x$y)^^4ͤMiJ@f8*wŹ"CoO7:*v[rZObkpH1KH-57Za:1S q&uhwYpXY v]S݌@QVyR)u {=NεLց\Zi~.VhjP1Vn4=<:tn^{g+C:n/0u"u'z& {|Y†, <57 RAԷc5mtЯz Q(uN2.:2Uyp!QZz|]P!yI, dׇx-rݡӚLɣjDڣZGZJ-Ms/h˫LvXy,w BosU1OcyDhJ.s;l,3$s<躤ZE2,}{ PGjSO4s~O7~Lt4_5iLfUŒ|19Ob}?*`Mˏ{+ͪ!* 9XQ* 8!\(!&D8l4vZ1Z~Ep:KnóYD w,v#ٜXū>Rv3MfJ^[*gl'OͤN'Ot;q.jx+lՉ[%FA}YyU3ct;y9 ({73s)#=4.C,SE6A+r:(A￈&y3 /Wz˧F] ZٗglB́!mI?ˏR*g ǁ^9kl)_'fg`3vɓM8ORϡ4/p*F^ʚ kZZ_ >.=9<"IH NʭJm 8fĜw%2څi2hHjE] J<5Y!vJbKW!n~i>0!V5N$.lԂ&Tl.M[!:ۇ?oF 򦣶f.*n0C_dWeՉ̌Cȵ>CCkEFO?1%5NK'9urH>mS? o+[IM5G2d$-ȯf."7j"bGf=RȬǜN̔Bj#zLmVɰtTic^,C̟,GY8ho=Ԗ#||*+O(W _]ǭzT)T n+<, *g̱w4/u-T/T8 ԽSTyDHB`J!ڴH*"oUTT8C11M' ]<6}yv<|7O\ދs4+ e`{ 613KSm5/ ٛ/nM_RryH䱅Gr֒CN2TO$\O-5rһMZ$O(klTA:I%ϽqsTTQ|AJgWtxBOz7VE`oMz0t]ep3,CM?`)pGJ3Y ?u(Be{cʚ1<'uZz!ٯ]'$a$_ߛP%XPPČЎ1Kw>ҺSJrpk Q4'.^ObN ݼFKeifOۊh?LCR Q,$<8ۋxllɿ KBxQse*VskT\[۔>-i&! }I4u5JYA]dJpƋx?8Pž'1{ pӶU XycC Q74etus^D< (TK@dFÑoս_vϪHG!:O'C̷ E=ՐU+ G6 ?URE! QJfa}HsaTb|#^)ʣ\[ݣ >| ^I~N>Թai;ߍ ODW _j C/6Ӕ i0F`x1,D?0qCG՘=q$l=QDS8Dun_Ոov9[m~_Z7HRj|!)gu޹([Nh~Q{P['@#̝DٳõfEߕO]X/7jl6<FKiL>/L -چE@?$i"v'^? ^O/ػ|{ㅸibcLÒξ~O:F_-GۜPs4t/~⁔m*$rUtm޶v{5Z 3Y!i TH^)ǘe4Jiqߛ$5패qwR30rfG5R4s+8eYGysFO51Z~Pm^WyZJ]l]^X=]{ɡͿŋ+s)h[ PFTċq/` {5cxo7gj~*#fjm ecl5JX>k$0ȴߤiceI|J0oe[2i&װ<3g^oFZ'|L1یx;u2I)?(A:·ݝay%<ɜb%̇ޏyI>w|3 MxjePsr5)y<#m%ٳuǪs*WΟ' ,1Ͳ6:y#DjH>g10~{DRgZl?91'燕_ECf'c,e%ފoM'^q#IUA8U3Ua%֊q4.T< .U%rEi(8>Mnfl@'weh}s8JUMyY.0 -}V"+#Rv!KKl Rݙ5Jޢ:m ?B-ɬ{^Wob{票%#d bxoTU \en m­ [.*rPI12#%f9+$ 25ppp6TͧaQ9%,pލ[r@_c`Y<_{6}*N<6䛏!; p#R)"XH1 ѝ2s?xH7:ƉZݭwHW&V %Hn8)^ooT+UruK=RlpuQ`3\F{' !~Bxu'TFݩ \A'P]uj$Tb_m1%Ήyˇco1-~G=[=AMq>ߗdS A%氊˪<)ȁޘy59cswR 6΍P@u"0l 5ɘ/?)Z}V HLr6D-͓ێ@Ɩ %I ʩND dw##-N.,KW' 占 کV?S4ֵ(T!mxr2_9 1p<% 䙞a&2GwJ{'ywߓlě!-B0؝b'2@y SF@>hyU5#j sڙ hFҳL7i ݫ-B-ji#=&ۚWBQPf0 v$V[(v ҿe:׆H  EixΩq?m])Pnr@;5_- b&4t@ZK>nUTDD/%k(q" Ih۠QCs łj(7b`WbVՕ962I\"-GE- Ⱥsh`t@2>xp# يN]GQ X 㽏ZaFXii˾"32@`0:FjHE/Z5 mx¯ ҭ"U|0xv:l'9}%j E*.6 LJaڪ׾ Զ+u˴3|_NLH06C$g*h>q%011 @NnÄ3J..Όw~wӊgbKә\U |.z ׁYGA(^`vƴڷɄ ~;M 8OT^F#@4?^<"R-g|$T*.Reaoi >;;ÁEqܯXJt>ThX,n@(gzdv+h vrSJv0*դgV͒N Ce; :9h"},#ig1I#l 3 :MdBsҕݒtj$+'`釾;G%65 ŏ@`xSBg^r9y#U51Y9U0ccDGq@?("A+E!AnZ?NmP7"Ru%B4P^/t; |S<NI#Xg+UVOqoԲD~8<-> 3\ӈ#8׎$xO 0L?ف L-k}]^(%Q_0z[0OΪ_ہL]vvup1@Asa"%^hdCI43ogYթI M_h,ПROmкlj|%6~p}{'ŴII_yL&T8 ='lhI_@ˌGQ/4p-8r5L䯫3>]M|RFet:a jн,*"VgYkdI%GFB HXt>9XȍW4mPUDRrtRt %ʸjlER,T SFƷvec.Fc k$J};+u@ʱp{7aTp'^FǓ d)NHG z6XO po=(]v?.&\<>nJVw1۝RoHd֒Mҩχgw4G ]]mZѹw(ĭfa=]n$Q I(PS %PZI^O#!XGT 1EL/;oU6=TDh[3@ElXiz$S3h+':Vޫ| +'Rd<{u9a.0|mj1 j׎[52vlB*[<مu 򗯋ouꕬ+램HՅjrTQ(tOZeXZkttF񷬞Z3'&2UNz{4nRTȬ&?@1BF6]|[ Jr3NܤŇ,O$Y7iD\0Zwe8:]-Ef7J(P 19=FQF. c3/Ebtm ޷`xϢܢ2lA{ ~{5w[c8:n~7ފ.[c[[I-V#0?aLe3LUZ{#X+P@(:^zVKubi nT+JJAK~ŊJ,X x&8t|Bt6oc0@$wz(+ywAlMTX~++]4Mw)rrp[얱E(MGQ@{y ۜ[{YE4NCqBTI²ؕ5Ξ*EalE2, IF;{xk1(q_3Ma<8uϱ&kLOTW/ zc7Iջ ql$9^9y5/*W)НO;^Lr%o|5&NIBp~Oק̰!qҚVza#aI n337~$Ԫ&.C&Z `Q ɆdiA݈͋kFA>_w:vvOsLYTS[9#/. Nڑa$)>#x`." {U^.ʌJx 2L)`Dy"`Ii+~!h`Baښ q!rN]V9?Pz-NI^%l񖪪\TWFbF 9rw+{I,iD#WxLPr.2H ![r\I@s[]rꙈ[rtS6FyPR4@?-\![2*K&mYc]:ь?g0G=¡4T Ȧ~2VΙ&=UE4GFv;3/ z{/MȡJ:[v;qvoj+~[VZ솂VXIJLض)fUaʉ 9x9]Z (@Q:*$2=bݽаƁwhP|\VA e`ſsTb~  8CC ĎjHHstcb-L|w;z*mWEnuځLT ݼO{@nMOT1Ao/ao@$nE=)&K(+ZxMv'qɉ,3K$D:&@ݫP"Ն&yYǃ386}Xi|]@[B<.~Zmt7HҞq cn}FNChr]c=xi$IgPXJ&}s#$4#ljZ.)-=9$,#p`0ӵ9WQ"~Ϩ$){s ɠ}^uܴS -:IqD 2VPc(ܫKk vEIz-i.Pz\^|f9ax.W+k,wE wsD= 7R\*#2uC޽*+wx=Z6l?MxbUy?hkuE%&h w:_nKn,tᆿ V4H9tn5Xqh@;(ƙcJw IŽ v[ߝsBU&0ؐJؾ(2dkfmdyWWkW/%yB0k@qC1r0HcP|ĈUĔhG=ãD UWd(&:NE^MT_#IcnÙqgxoSwN.x~uH|:$TLH^o޻w~ȩ;up9<4juIk_koy*'~"F,aLk(f3Tj빣M5E&J3yUՙ?=/Z|1 -붹 ;E)K?V|<[coV֘XQ>+M I"\1;=d+[A!q'M;7Z|zӍ!#*Wh6qp#3wT),ICn{?$XiFlr#5`3M>+ h(  X8#,w6,STdCH_G{NjCG2#qW`zKQtn]i3(vCF=16qΠT @Os6ݼߏqP%i-~R鴈MKdQշB4)f+D t` *#fD(0eVfdpp.-w,7g/ђEuOBrcm|F۴]8,{Pw NG71Pm=l>[3w|y7YyS3q|2y(-qK#d RԐSCBHXp0Ҵ{ sZK[Vf?ۢvt~Eܴ'S Ͱ#twLtrG<'"J2goWWWRXyybRwj7 =|C獹!$aJw 醩sa&-K/BtmgǸ *})BUt:CcYgdĿRp7~DY祩ނ7#zu+#_41LȒe>"<%hw\aA1ѣ\I5:lBa\X 6aj^`9f>v,۪7xSD61i2L{I@v@Zg9z.x&jKat~ 9qM>b{v\ EU{0bFQtw;GK>Vt_8Ԧ<SQ@8k0eO|S"/ ^h&ܧ v[bV \BM/yع p2Fr+;Q8/c a~V]Zq"˕ 0lF`O%xrP2 {E!A*WFcQ:^ϴb Tp@GR۷(S+ݔ Ho$ Cީ$8̴VvS6X9E#KtQMo?$hA4C`yWDmQ/5󦦋v ;䋯nukC*筱QZ(FqgCby1C&Uҟ `Qmgig"|"CdJM +bU1=wHvnvt 8&-Ah6MS5TES;-vy"p+yMg[ ~~WHWz ޣY:ʙjfDY?oeb}d "M mhYPoHRz^Fa)-n(Vmx~241tLwsV;S=Ms@,w&;qi}o,衣x z (VHuyi[}EgX^E{,3noT+- KsUfi5-:4EQKx݋PG}~QNOwO ƴҺE`SRh*B{-OO8[Y8;[6e2)< eW1Oj$TG𑋾|k3fʍx5sB\~Bp5+Ls.ܽhA ;\" \%[E!eyR{[DbA]_`` 2&c:ˀ\=C7 ƍ 1+mtZ~;hj㓚U6ٱJWHS@ 03A'sgvK\FHq[:MV NoZĎ6t`<3usK⨩eH̚ wiI6<ԋ[C9 J𔢊B/ guk$cL'Ȧ}ҹdXdUrw6'28:'6Nv _QFmpNi-9hxh%%CdH9[2:Bv31f]yJijH$NV}TJG0sܶV⭜F֙U \0u B'5+(#Qڜ0JT¡qov>@4p^SҶB%" - mexth~bzwC~v]M%)ݖtT9jx9p_GÆ!>a+ N|t:sA>9*[xH\ȝ^,;t["A+׍ <TwW/ly霼 G)1 .ca8Y8GL&%&Q=JU!'ÉWEF4 VYQdesτ͚qqQJYN/Bn%G=aZ,c0/{|[W{E{zU--DbX{eL+"#/%PTu2Y,PO=lň$\nwr~оn;{_&2+|lw*#e'x7UX-^z7n}K=^$ԊXDN40rOD V:m,iVwe#˻J ʨ[普kir!h>A#K̯[c,{aZm 5cvT]LJU/G6 .WŊ !v4|_\6B9Mwmi )';#&y^x>Qu"FmcInQ z8wg^y0WErw87 ۿoqv_`@%iތV2)nEtdvKNhOI{Ƕ.} O}ތUHPRnwGth/o38A9cez\^&x\:0dBSmє-U۸ S~t֫k A`"%WZ yn:xf2}̟4ş^IL&:l\>eQ."`c"f3Aheڿdq!J'ϬXK&S77^u HxaWJ~UtӴkp򠳿m} ۛP _`O SǹiIMù%eh!U^$(cwXW?H{tSc}$Z4Z K/9E.%GqI#BL(+ Z?t֍:k1/.,w)MST LNAXY"1i: gPF+=5,|Ǥ]ݥl9 A3+ Ju5hepVӳY T꧎6`SyKOm;Έ(;a[Y tpmbwoa i'LJe#)y(A Z7Hx].%F('#dy(nW]qc5pRs5}=pK4j\I@̞!u0 +iR8@tvotLiLS@ꔚKRa4/Jli;#bQQC@z`j^vLpw<6Dt';P!yO(&a 3Zf84½W* iҡsH.5?Nx%`ZG@GHF<ڃMd/ J$BVH|U6Srjks XK%aU/{>uo.J|^ѱIA4am@MZ#Ѓ21PNVLI%,@ jyNssmxt .t1RgFB#̯\~H!g*8F dvO}WX#'\3[ cuHJ s哲@]^ٴ*l#;#f=ˋa+Vm%i<zEC+=.SBV zb|rȿ y-ta[jQF>\P:ϰ2)!U< B/nvû9pc-no`ߤd{b@ 1'H>D}p[= EL/b?g[lY6̻E~ZJIR}ҩW>G[%XKmDC|M˼܀y _{,rsNyV,@5sr&32Y JH2:F)k:!Y:k K7wmMjvysLƢ{7Y#BVZplw F=GDT ^NKnjqDB M,Epd;.)~ci7`@x79L2 WɅc.o1X(<2 ڥ"#]a|BC=l0dj)\\7gJ{ _C`E:F+!#x 'GG͑9fnJ~WJPHf ś }AZq:пGkK6Bq?ɹ!vee 󂝻̤g̗ `jC$EԔ6&ApsW^DQG dP8j$qo^F"n#noEGY|pyw*;Q7U{[Oۊ2rGoJ:@.fs-aP~Ą{󛕋}X%`;F5H@yM3]={$}[׵鶋n+`~P9ǃˌii?iMrFm"$Ex8  *cb1S펾 3Mf6Q !&K6 r{vJ[vnZ 7ax?Eixl[o$/wqr>QA;,vGB hg$'Qk=<͹co3o>kU#_Ak}j[DN,ʼn%8BߚQ6Ȑ(5"{;<8Yl+S߆R]h/ I{{:;a+46ƘϠzA /<{è1˷4\H_TK4 /.u+IH=F|7,Ն~qxVhx! Q6dwAĐ/4SCK>-;~,ҁ wߊ-39F8ro_J@&uY/h0c~, *)h~:=cL`)%CDRz= Iqwj)lTs{XJǛe;7IM{G$vo-\Ԣh?9OrX')zyfܳuHX(X+yz(L:s3,H%R[Zi`Q,nf1#]\n O bXXc)jt}fiR݄[Oz Q`"K`2'rz]_(O] b*G{N1Ee7-}*knǭ~HkV^IdvtPp1E ?T<]S̋ǹ PlMe=֢ȥ[jU׾e`ʟp&htԂ%QQjtij&o;tZlvsZ`hneʄۻNC5OʧRJ`z+g58s,:;Y3l(f'#8qā_jڗ 5G_^}hyO>q"Zض:̹WXO~qU`TU$i";\|ު0BO*͌tol\>-}= NPPk +lx=}XPي2cxJ0ΜzdG^܎YyDi_{4qwsP ۺ'R'`,]j@*bܰ͋4[VeQ._M6? UNOG1߇bN8CNO8)]LIdO,D#F[evKCIJd"%OT"ڷk6u,9k(jyk#57,p 2\B,ZbMZL`5A}g2%]Ȯ')h3Pyr!Gu[S&!g^Aɵ_L?e[qO T1لqcg\QjnN@A"6:/5QcY"rxb6/,Y@Jz"5ر=RN?KcK}h]*^V$ j h:F8\@rܰ%UCsDq|M`?k؀WCL#xY:q.69IR5fSزM&L[La~IZ RU_Nt컡 ݝX~[>"!j!⻾֟Pf¿.̦\v1L6IZfdG\=L^`~vZRGN4Ld A㧵zGGq-֎\г`d W/̌AZh7tyddwŨctfݸN8j)}:Ѷ}O8!3JO.B<i;?dLML{}q0;/|n֠EV o;R:DuX\B%`?mdfPک']ڿ+9Cv>-KI_rls(Aq$#u=H)|'pG/@dc-h\Ϣ%8!ywW }@36/aHH|W˱սk}̭88-tljƂNDA*Yuv"٧G-F nl)Ϡɧ"64!zlMfEyW4ɟ"X 7uPYsպhK^Q,]8iRv&pA)]ZHӃ31߁IEA=~pNCʾy ڌ,Nf]g{tNbuqwx|UmpG!TX7Cs=Bץ(K&.TXF֤I[ A8 ]ߵUsȵ3@FB[ކd )3V)Ms͹! "֖inUuxczPny5v6NZv= 6aMpILnawMcÃ4RN$ōTZטt9Zd+@ZILgǍap`hk@RIËu2)Pe#2ʞɸz?DAAVqXO cPU6f&#l~?0j*jUoX6ƛTz΁c 9d- >gnLKWx6)%XIx늀f1V2$'mQw&3pDCRm<\Yhiل=H=3PY~֭PIQOJ]pG`]Ў| \!}cЂ3HuAEsdhd35$vHմ֮?x{OE ಗ;T3ڡJG4t9'P+z% 7eP(эFR5ǜrwt⁗wl "d{W墛XO?/<=y`5!FB9wZoR`yP<{rKnϮۤ:zxLdlG8fc)pқjche[l r,դZ{(qbԢ뾹տ&y?U*s0ʤqk~:˅z19#]?о2R>{ 0 hWFHȲg"x"P-Z7.{c lRZT_(.Zi Ϩ8,1`'}ppK2گϩ'sC= A@ aL<8֍|ǣJD) JO_8Lօ#KjrLӽbO,)ev}cE]A'WCifZtzC"lHxZՓxTޙ3ր4ATP@ M ]%/`߭\W_sr3SEfWdGC]jP_4>AQeċ-W ӉtD"<$}׭Av$M o^DYu j>w/)=g:sV,(JN$$7P&煖4L)ǃsZ3O#AM{v݉2KfgƋֆ)k 5 s&^Zi %DҙiI`[qZ0Fk_q3UTWM17H`$)0Z RBlIB"tF˩![{m4D3 TctZ*wP܋Mz㜣 a3 廒A.4:}Xey++C$ & R^ .6U~+ ~*ځz(㜪lkstUzQ2Fwᔺ4GaLRXޡ05i]Svk_֦tX%WTFVx*"0 ƞb UdzBog64 5h`af7yi5fSϋMu:#n̽ |Y=Om9=9p Bf'3O&\ d ]Fy͡Y8!xEJ#,Gޖ(f :U} NLD@R5 UE?g3Krx ]t 3AHFV1G5d֯.5uY!XTj%z8Ma<5lBw !R '>`wQE#Hʅ-H(]V (/R!*58X˼^"c/}?qK]Eۯ M B53xJ17c!g/+Ϡф43a}!J.m8Zͺ| ^N-[=^ix!=[,>Dfu6/#T†B xJnhd]MCCxgE s|:2a寱$2wV#`h .}U8QygX}GuJ$F+[7$V&zZX)rdÎxE|pv͍4L=4@馵[#&6E <ɮ7} #ࡎf%9o:7!.l ' Ø #k`ћWsU(d3zly= ֊8W_n׌.A:*Qifw *Exrrٗu z9A;pL*(y>[} *DPty9jAҘ~6[~hVA,*\KHP'c@|E\W_D(ļG g _w@x W틗PkE }޻_1ޮrwtI{J;T=b]3vLL83u{`ɮU K%vAχvj2U%H+g̉I{0 JhZ\f_FYS#զ9/}s^27-a>yr\I%x־+xD]B!`0B*G>|yL .^ n(sux;=y'fXІ]vBo,V~S94!hhHd،Y}\SNv)"+b~5+LS} U881(KJDH0)݀S T=TqíX1or9'3;ZPGQ9-{4:ʸ/Qֳr~x8gMwO3 xeֲ1eDQxPvs`09]m#~Erb>K/ 7pp/ ނՒ T(5'H].3ܾ,֩|x ny^CNxdA`yE6:ٱ*k0-Ǎ/p(,eF@'$@8&ҪR@Md⇸Rav}7qѱH)) 鍦pXI]%_fe7*$_*ą~3"!X\`D4G F{XcD~R{raƁcp+frmا{):,m<#jESe k L&K c`,4Ƚ[d|~xj W2mXHvCL '5/vE@펛G@O6 `|qxYPAa/h \Xn>D#~ ݡf ]ս,u.?6#a>5osshuaM׺teKI˴1LBto+9VZZu_F.$޻h=#*i} lR^' WݶEy;U]c-7/OhCнrX,, 8fL39 SugVRF&d थ&|1t>Kv!F :a! O׆Ʒ˟>yqD_K{֒)jn\`E:*nWȿŰ;hAXz3^^_?K?'qF(dM±h Aee':5 )K'0"o޼ۡ}8\u+G}OŲ Y=E"i_I8wE,d6,KCa"Ũ4d5E2K7d\DaL.-mNG:D/Ԟͱ`"5k3bg8c{Sb.Xn_c+M%L1}ZZx"|`ٙ^Y*; 4\Z  ^?=D!%`Qޚ3{o0U?c7dk,y6*݀}6!);3 čN|l&ktE 'a7n aלk:'{8 ׆![F!ƳVD$AF3`kC '=i"D9ԯ9MWE[eT"B蓥FSY_(G(줵`d8Ad(ت = ?R9ldʮVX-95xiҳ qN ssA%&*ۀ?qrᩅ!ExOa2[b?"P ulghtJ~T;gƎެ\Eʨ?4*XgcPF2[S XM/$qev'ޱaZ@?3+%536ep8yM]ͯ 1QU0u_9Ea1m) Ľݖڄ0Zb^ACCY5OSň~k 3vUtiqM"֣ͩ'S*gV!_x\؅";j] hD52٬*5n F'<:2`n&NMT?lg}(U!Khf+]WGW Ⱥ[,aEW%%I N Ԝ=uNۿhGc]a0ZIfE|RVdB?@uy,FcMyz>: 'dOYGxgS`y;}}?J^OF02Chܪ.)Ң X+ȕΫԯ.5G.1nV&I`jzR7GP"vd|kVs"iy!hm|'E>oa4l'5q~K{&FbWF #--"j325{ X5TO09Ƥ~rwPQBq?Ҭ w,`1gKԣF~h/=z~LG5WR\^rU^E8} j_ҿBNh3ƭrSR7 ɇƹ<~N^ML>zTOB3曽!4R'Yh)&װ#xibq/ZY?i@P^#LNR(af;NKe +p2V woBa(eOFPv 4L&i89! M&NFCj*UB(#x֞oUs%:Lz &Z{h"e9M?IyR@X;HiٹȠrtzBs|$ izc>rEXRڀ%&0̑`ߔk(#Bamcڵ7x7[ _M=.w5.K8d3রcp9G=]BEt5ɔV T͒b ?<(&FaJ5(GNqg_2۽\xtv00`ѤR ڱ {"Ou97 Hϑ3Z<5 c(&: |e+-O[8ߺ0|׋aLFyDmt*tbwXl8=ۘ3Wc\EghC\#)-o!6A >rNI/ȃ0mi~kY( yJIutYB ;T2ZS,=Z|4Jشv@ #ۀ>tcdĄvs:.zת_H ϥWޔZC"Ig@V5#6& QYӝ{a6j0';oZF4ePWj\=7FA ?hrn0XRDXbDUf^dA. !\$ۗStڸ8] /p)kq,ٸ1XxEȫYD!kɹ`'/S !Y+N_!"C5H岷\beLrU"N] V:mux7!/;Jp~-CLHI+c•HU({`,~|] ŃwjyNm6嚅R(l_^IO~Yý0AڎOeE%,5ҳ$Cfu=q&|}k8y_.-G#!2x^caVC:.ʂ%7㒬{F,.?B_䛺V"7g>?kYzUty[zgsZC--^s3 DxB㔨C42FXYW;؅=}ڨ ivXюF&eyzRwv mDa{iJ#n_QP脖znĭjާ֐:8)Rj0= T՗1f `G4*a2Uqτ**w2AW8wE8]6Qvlnp E.h"Ԥ 砗~p=DF ;][+ +.!jؼ3`W.-'WuJmz#o# oDa7.a*Ǯ'}٢i/̔yqq%GZKy|QATPNbg0`JOZ8 2PY&V#A@p^7 s:%f* ~@E4_yt93-eLg-,~Im%?o`Q%2-Jq+As"6!atT )5/ݴ2TNp+Y[f!\JM RNfY#>cJcy;mQV˶?CY$ $QyOoTs92Qe΅KVb&?n1EImw> `=z d![v̚W[fhk œ9+1z"*WӝtZ]x4Xt:uzǻဢQK"8p=om_&-j=-^ls.S]JlΙ0oχæ%czLyIBD˱)Zt(F4*bzl@(˘&VpMxƷ{=S@ye57Ό$N"?LPC V 󻆈s2ۗwtUt.A"#5l&X3n*mՇۗR>VU߅Tɝj݃}?wj3A0G*g?$U7a)Jpt5|W[K?K7? ] 7wiklVu/1toFcuybNݰK*8"4_H: z<yNMY1 rtկmViW7"Fl} T>k1u31r XE@c qlL(NJG\F5">ؽ`lN  ?tRjwq! @owCC0kжyW܍ź*f[shћߊ.LR20P[t j(vm2^4Ʃ>vv<}Fgӳybݨ`h%4Yp^;cq{™5]uٓBi3aV^\ G*M+e&\"0ӠD^5K8D嶇pS٬hT4O$Tǟd!p0n&!ˊ(&"NW"شBj=]yB)zbYDޚdEs2nX0;Rn#((m{ST|q/iC⭷C5 }mng|=T&ܧѣU\Xtriz2x1ʦfi2FAy6D!"k F~{)ZAK.ۛұX&5PS7 |5og|XO; yc4O_LI Kܪ6LRaHbJ6^ED &g֢lve}N[2$֘)ƫlYy3\]%)?iOs:C*6vuf Ԗ lA]K4x,OEloZ x7תvZ c[|J8'p[o-FCvwh*ZEQN]z/h }w?L |4P7sa_3VŚP.?Tb=__ IA=^^koEs Uro;DB*ܖ8[᱗8/dm )8trf %W~ j<t(v, w߂Ĺv~CpN-^K?@ɺ] [G;0RH3FhVZCBƉѧEAuY0.[aeC#.VkŠWӠd@^ lHf\O$( Te3e Cs'URv/a7:9<( Ig]X0N'c2|4 >`ucf wR|PXb%. e:Cc3V9K~6c$tVwCVxXRj ;#TF:n΂:,WjNS$| YF'%$I4D1o΁ L]zs~C"vr]y:="c"EYvqfJB-M)i>&M|D?,,h9QPSsl+>J'x@%G^7!:aM3 PlbR.VKv>[D tE#Y{4yM9uMe"oyR$Tvw`ig\bU(#{Y7u$}QF\p@Z3*/QH&=EAKN2 ԤmS"}wE fI0G_'s1@SI]}دt?h-jVS `h}XkDv~.S6c/xk1wSSs,/;?I8ˤ%RJ5oǑX??tMW#*ޞ8ouaXm4/kxoB+kt\gM֤q81UKGصC֮(JZKV0,,}UJgFsaT\&c; Lݏ3O8i*F ) srxT);ߑvlryZU$3eh4O^S/;HbQphlQnX2 `Y- }?lФ#B]2쀛'_`AMJfH J_FhCoUfOJԴ,P}o{IQtRݵy_*M@4lc(nj${Z By &[MGn%24? Ev뭕h=k mt8kϗ?6ֽUbfdfV釓1CI);>kЕ@&aZ a̘1B? WS C15~]E\#wTOW作/MNck7RU}t[Vetc2!2Eb I\GJmn2sB3¬c+ KvgFCha?%՝qgÈ.*W̠, fS mnJ2l[CWG^K~/g={H=y{Sgg8=Nų[On@Az$p'4)A[m)u͝{v745'@>XK3W-R&}Oݧk|DR L ‚PY챙i69 J16[Ts%)VaCN {vZ'1E:~Vj LX^V}A>%MGك9lڌG0Rߝ!1HU0gq_mG / 3|ҦejR~!7 7~6r )kg~F넣?RCWwJLX+):/geɧBfӟ%Kh*r.m-j7˔0̪juԒl GD˰f?;ܦeB#~S'SCjyPɒ׺F@r\]t]ЄtThL P02>ܲSc, |q9eJz9 e*| uJ6a0h{6|HB{ ?4rXf(NJ"NzgI z{wiO SڭF\{LHӋ2S›qJ *k21v$A{˓/ X lO:[sgkMšua!XFXA my:VHvNU%VzES\*WƇ,'wߢ#*yxF1e]Rl/y FIy!А>[(:|AU+?1w\D^>;h[8,,HLoJʻ'ϝݟnuz揖ࢆh9u,ƚt{:4lUabxE:Nd ; yy~S)~,v7-XVQ ׈vk-7v湊4O!qF%X=JKbO@gT7)\=-kma]6W_(MFI0 e>7,&p& " 1&ݜ ÎZ׾k"Y׫4Vۏ ሐܡEQDkh~nSbG $~s uWmhoW iX+F=Ng`` eWǮ`"n&}qjè]P0$ z?٦$()`'9botj[h`$dW.6'LC.I^sY3\cL6I]wſ;?ϛtp`o2ptu$]C_$m fM(ow˫Ջh_bmtSu +AG-K|PLR('5Zpg;]} #.[s$ #Ḥ'qR@VfUA:Z0SBUQOdU? s(,mf:%7u-1& pK/>;0tˇQ nͮKcJ"㹢;|-lI㲕eȮ`ap]RvY~6u-UQ3+y&^x^ eq:z6G>>-CP0a% 65V=&7P:R״R}]5ʁK""5Z:#W;&%pAWYj%g+'nvU;|K{ Б=p\AV=A3e_X>(;ubJ.Z &ОIIAѽ)2t?ai%Ql=Nއ4:ԘiYۯSO+؃}OXx ߨcppuF Rh"5@sBl Đe룃C\*zjvx6ةO& вRoQ}LGwD"Q@yyy 3F\{o{ cE<`*斴uM,2KQ#l,:o7/w@ 0nJʃ/5_xs_>e1B{iLW%^?LI14b7‰(( JYCyNJrPEhsI̹ɖWtcYps ib] Emaɏp1IYe=A V<1P;b_yU7nqF=dG,bR-!BPn:L%NpHЭ}Wm)w z!'\X8yt2 M$_c5>6 ps(8:1@ؿ?{>#w|꺮SRkY'b 'Q4<(L3w.wh΅\ :?Y]5dvšqF:7Q?UEa5oQI [9d:}ȵ =dP(fpj X~ZO 1u#lVC]僪@:pUbk:?h+~Y Ec~ #F}= _Oko0OTKmt"\6Tkpq8-h.]`ͱ;ےǁ[k=BVk?ܩ` ˯}[9)l+&i48Đl PnJŌ;g 廲o',tQ0'i q;.-} TJ*b-11<j<;W_B5ykCDN{b{ yVGp8٪ph|[@uF&*y\Ny=<'7(Fu*,5p:ڋLχד1p\"bE#Aw}dR}AlFB$zB9١v,›?zLGy߽8V.hϴ($uHVbBj{jTUv {AЧ: \:6a%NsvʫƩnш,}A*y]jق(:VTmf%V\&JPiDRTP? f@Yd 3_yv6ʓ'Mݾ 7A\IX+TX[訆\`8|ppXn0&aNhcF^Z¼Ul %Uz}0>/M;CrC<ž|HFqlc!2h7>AKqDo8z Yg>4a`-${90GK|E0=%4x]}ac,va KMJ4b\tk߾L̨h&.EL-Gw_._'v|<>bm,~2}%HerGڔg~ .Cyk #BrVO9A [2?+/*b9i?>CL4/sߋ?l@q7uEHaK|W혢z ~V[|jd?()}NgsiN,]fJk , %@pGևBjY eu‹$[yZ(s-g< b|ˢsF}2G ӌʆ!F̪l_Y-k5XEy&NГ7M EIKU`;]߉Kڅ"Զc(Ơ9mojH8k} kJOsx?/͟}X 7lfbȘF_;[YF MȂ(_e}V\[/B'X~E[x$5Y,K6D3Y]z؎N2R>hfy̱υԨkK88Na.mb4at, l'^^^"zTLQ֚! xнsRBuۮ{A~Zt9H"nosiIKbZ&_K9$Q-ps4NT 쇌A+_F=ޕ]\w_L_om= Lz`vmHoߗ1Pt>Q>︛.H(="$Z~ǩM'auvsDBgu|3l|#nwuK 8*\XCmmٍ[yC" l*mϩ͓P](7c8ANyCC_"ěh,f]>Ddn!wYFG#]Dڲ6.ev8I");D],S1ꊷx}xDJ' ~ؐ ߇rflF{%b ˈ\.օ%8ys@|b\[ Q9]*U20V(L[0aekCGL`t/kn0Nw#i?Eod)2T8WRGsQ.~l_kʅUw`2do Y $䴤P% rZ֑ 7 L,c2v1b^i acBl·:kb$U*hU+HJ~Tv;Vh> ΠV)i} .un*N#+Z 2!m%wN@+6 'U`ϥ]]Pk0*ԅ!=J)7.lW'k=9Y`C6is>Ry_?%W2HiťP OU*z[@3ly6qіH/5j=vNTqX~qdsPeŒ\C6'sI"o5d ջ s#6+\WDb<I]kcs,i_GqJ߸dbZ+8L}4^_nf({6 ~36ԾezS稛4qAx풛ۑo'U1lNW1}P*I , <%\!瑛vᐾu\8⿀i󑓲xFI'3oGZo\6ٵHs4@Ɇ:RY< vl팢^03Ȼti#<XmF]p0\㠫^2Y t$@}?\Sd0 W7ЌghSr\yuìU$mW^xC7f Ia:Ê5L"^r3 1:#^>WN~P[ڒLl?FZ{t@=$P7;^qM5(L8m>Usڹ-kT%dpj!\kDߢfI#HEq^t(Go>< {qu7|g㨅A sū\5Њ'͊`UR5 2f 81U\6?3Ԗ,(}-[ٮkJ׬2%>xqZj QwG[-{]MP~$5 hk$cFuؙ4&^ C3=AgY'njhދ4l}ڟ .,Ŗ +~2kvt qv ^f$⧓YF'W3 t7x3s1+'0؋W#*=v)ג ִSiĝ}>Mvm*=q1W-{_׾E>&HrɼZ8* GbZ79&d~<\ ]&&/E4k0+b[$ ec2~JDAP]du3\Mfѡ#& b.eη 0k~J=fSf!0PȨG3%Mx1J>}3ysQbfiy჏qEZ)5(:` ɇڣ!Ѿ!:d~TDUa KX Y&DoBJ˔ri%rq800.c)jD+ |\|Rg [Rdgq46~͖ t^zgep[E5͛hK@ۘ$MYmsD%:W@iC~3NvC*h)ۦpiO,dtxg07XV hͼ .> ƮIoa xʝ7$RZu}v5ޑÙ'P(|G9NYj]]Zk%MHa%6FIv]+Yɱ:G@E7^-tDu%LCqN32If'V 7z8V t:g;Z-nb^'r+0nA7k'rGcq۔Tq2cfm^%T(ê#f[P(-s UBAVlMW$ Cq&5;i1]AqlIZc"Wݎsΐy [^!,Du+{CQIcAU1g (YtP8 u-KrD)}*k&}IYT)[8!nsjDv:1!D au}[o=jNgZEo*C*~,KhW ?""FnɱQ@|S==pHG=(@މՋ<{ x4t|:c]?iL+`9nQPDZ}E"bacŗXs4,Y =JZ:cPԐC•<OwD=}O:ySgvp,CvN~T/uȜXھe, i{ϼs9quߵ4RŻ䯱H4ut]iwHz#È(8'iY%exK;Q[HFfhPvw]lmBm;^ֳجw_4aٻ#8_+nBN*-"hh_ &} `=6vN@ n~?ۄV4["5{M.JnM U4ud7-7/"&V|kvCF1_XP  Dɱ 7ixXn7ytZp<ñ6ZpN/ dieXN5n|ȞW {[< u,!^uH|ikd$4a JUn(l!~ 2[ɀ܈oXwuS\J8_굤A[kx_W #>|R}f<#b37!:`> ϳK|^sw=cuWu_'ä0`*ڹI<%lL;{nneM֭g0unRS0SygĻuĿ( %@uETW>wէb"'p ;4TKc9BFSHbK,oxGPUڼAMEu͞QE| ?`4r3ɓA,oLXPM^PHL>[nTAC1UKnq{ гCJ#>X& @*EZ oqw(ԡҷ1L\+h#^ffLϺ|sa.0p90(M!&Ӫh/6O #ɵ-r  4ž᳐_ W(9v_RwF,c3"$5A`eXۡ6'6iCPoP .gKr8/Shf$B3jk岢.We6q0e/*Z>&{g*$V6 fW7@$E8|'9vkQW*'ۥPAB<r@ʤ{}]#{>5\a%Ͽ.<$Z= EY`\_8 ؀GLlkN&n<+h@SO6ۖ(+ɱSԨFMκQuJ5QU 2V֣ 1TC5pY[ ^S,|Gǂk‘6L,& mG'A]S/Z͚ƻnW;4p"pH$'TEgKmZج@^{rlz"pɘ:39ѕ~55BC[v_)lj_3sO[@|2gn{>=\S{hkDu8 J[S 0~zT븩})=B ^ÜW "%|sYѦ;9K sdN|=ivm|xLS!݃yhϠKo9.&6k&.EΉ􉄦nd\[,b W6Y.(< H}{qG̨(f3ydJqۘ99+TFi*Bsz@C$r} Y&Zsq6"J%6R*& Lo;{\t! y8[5`vMywPܼ_d̆`Vh_{\UM`#0\4,O^p{%-y".`.? sݪJ{Gq&q /#ɓs)H׵ -7Xm,//1;ҢDm' @F][Fa4R:&iul:67ORRۥ\r tg X8r\qC¬+?5" -mٵ# A*ry&)sV"qq56ih:MݦROfU*c# E,μV(fhLvG^eGHn5g1IpI8U4C 7(,43Lp{$ !D-sە2W) ESfk, b69f}م~1B;,Y'b|ܱ۷c-ɤ_I!Vy"BXқss{E +URξ PF-X8Xo 4ʹ)z8Qex-(~jC{u+e.>d̔56@ѹLfQyFa7c?D|, (Z"'),KP(!Qdu+Vŧ*O_:nCt_4H(Ř\>w5ȏ;͵֊iqR$8cQltb=ECT%q76d\*y*@nY~3FWm/R]G% k\̺k![ HVш6R[_Bٰ J#Egj_]I›q08e=$X+DLlr:M;׾@ײbgb@fkhhb>9Y9&UNa rb6AԪPVCzobWMP% P0.m>STǏ z4zS^"M=<-<X*.dX!XrែBܐi,gdfD/"s6\v {6I~Oωp1\D3BN[#`-MƬDXg\oT B_VdCV $V@#4CsUgDW8A`NRj?9 Y0pg@ N/[΍ݾ z( $?V>эL4ʣk2︶nR.*wlέO"˶cz~c΍, "…F$"C%GXK3j&ЄIs~3 {wy|}Fƙ岙}mlرK]S$ +ٺԈEohAqp}B_A2#nSuNĚ:>fb, ?& $ƶ܃ȵ3NG=KQt&.gۙq[c##)IѧFn#*RKW>gM;&pxGsu,w7%&1ҤL|"֬_/ ߋ?.̪p(LbӂNDDBeJdWeXCؐFn$&r"u Xs&T\$џ9!L ƪ=wxá)8B1ͧ'8Q&$uÂC贵|AfȇiadZ"Y)h/Ɇ ({JƥH?JٳbQ׍C m|D )lcIc8f!r:ypW zDi ^2PUʷ+"6[dQи'4E3#˶ք Xv*dʰ2d |3{{ԕ} hg*PGf|H͋zҏ UdTU\\/@21x#6omYEO0%}`${A< :,4e|Khrm,ﶢ֖Mj۪,W:Nμ$p=>KvsVX9üYb'sUƒXOg5gFq>2g9hխrIV2JRӉڜADuy${$ei1Wv 9F6t^qE(׊N% QVGC9|Y3]SS 'q:i'ȉ"]K'Y;gUY8m4Yh M>#7īBB{CE/یMK~+խ1Gyxf/QBW_<cA) ˽s#Ȯ|V9CR~-BSzѹf oXe|qtSl &`wQ-l[${a掞UjCbkiO/l%73|4;c"@RVU.Ǒq[wf5*.i5Y g1$3V8 SOV[9wH1ďȋYMclbwjw^-ݪkg_B"XWI&2rxUrǺ' -I(}0@h_Tg1,5Ęm! O^sy8-N\beQ.lWgYˋU} qOyZ-U6-}oY҈uJДv(TT_6/i伅ؙދ-V3ft1^f @||Ё]%/W~bH++T}:+F^v:c )>GV*@ gӻNڌAf-@m{sl #{Tisb?k(6rV>,Q˴gcu8‘z!cJJ*G_g6d8BKQdwᶔ?'D:y`-QƏexmi=/&ECabM"-NV.u)V<|EJ-V,D0 (ҫLp1a8H; L~V 3M )f W0% Ub y'h"-`29*5(=+rV|M#&˹(RчPuaE "x!k:&x*%|G! BZNcRɛ>ye|k\21╮'/֤!xjCT4F-Qr'lܤmۡ-vqLKD@ؚ),dl[綅8 Y5>&@>f0&阋62(Wj3掻GEbR!ag(38Z?qX6_9_J}U+OY2)onEZ8|' G$%$upW8_LbJ&)3/"zl0/Q צVu/TRz#3Q ͶT*|D/ ;98|ٗ =){7MGriP[`I zIW\ ]R X5t^o6M0iqOŠ-o|Q94hl%욉njb65^OĞ[v /Z`ZCuUȄ*4omVs1poe|a_<-ı0m%fi_˾BQyt3ٶ p䵋Vf[o3NA-pP"v&5lw_)Ϙw_^4=P& f}k{G^xRy+Tt-t@&n{W)◫ v_tal%XJ0 Ejnd"!?XR`yJoquUuݲNd6wAdqKo~s 巖l!$c % #n`Dg Q ?8WOW'R-#~;3Wp3ֿ$j@-5*l `\u|]e[Xrڳa!E*$$S{% %^oj$YNb6H6 \WTJ :=zA%āĂjh'uH}y"UԚZÅu?ҋVtMo$SgOHv3ӪTlבN7N3y 9LzRTUI>vHJC+$";~$D3;DHu\OS˷N/lVra Ȑf4PԝoFvqC}{qją7'nKω<ǚ .D2T0W' qZKEi&&ngR HPg=WǁG~7M{}e1nM6DR5Lt+X1a@.^4Ԯ\~;Nכ R߼۶yB.e/j.NgǓ8\ G0Я0BKˌm36m s}@ l#({aSeHQsuHd8jG*='oJ$@:ms;Sdiw iL %k^Y>|2W01h~ oԡvFԪ<9v8֋ &FJq{={@ZXUV]-чX[p OOb3gQVݸlGE/S.HF| i9IǗOlHdvW摑lR|`KC \> ѿ<5( L:5ZrбYes_uG-">mC푰qDuKvp-8v+~ɜRz߬$r:\)GmE5GTr eyc |?5$)xGv">-"z(Gw|,R&.2֒o*4㛮*qz&1 7Q`vxXٳԤe2l֢Q Bn>ETgq|=B6!r*ۖŃ%5-Qӣmiy]ZIұ Q ⚟m!o;-S]ZɵAs!##`Y7 nPY4UY1h.vϵ_t>`af߬Lx}":Y]5 4Pu]{;;ѳe~$= 9+~jy*,R*y=LrcF7pOM>o+9m$ڦj^R`TJ"nmwƦZ&/WtrFvydDdHي-NFu:އ&·^Q"U"޶*!2x +R 2QiHf\)zO]=\KpyMZnq=|<&֒6KHn}5N_#Q0{57Vɬ5Jo}w*iˑ-eJmar$K3 m kY-֌V F(Fug^Z/\%ֆϨyixCJrb*J  !|_?ʿ]q!w1AIVYF+²tb h'd>oA7QA   fU \~!QR£P_T@Ҹ ^ iOeCc\iu^T@Lltx;tO沝w2rCׄIi`Bo6fOۆwJ0){㠸Ϧ8c-S)>sY< -t8%8#lXQPLf}jxғL,#Ė-pEw}:˫sꡠ0~lɚLZw/28CA7< XYG!<_rl'ӡ-ʃOK`<(*PFGny*}1Fw { ) _"i#=aS2]SڲXjGxKfhld3#8#텢{ Ae3n%q\]n;U!LlVwV!?u!t@O}z\ϻr bm)@4?BܗH;و)K 1>]oۙIcֲ8zL͡A?PAZ|;SubBJIr2tb;Yx&2 huof1l2tDf`Rm/U&P61'%2hEp!)C9Xa p<.;E7} ~LeR|.U@ǽ.Yڶj~LrpO]s2 ).,"Ɏ\/R;8""M+Ɲŝp}!}?t?Ts菠|vEucwnRO(u|Uw@}G@Xz b6pR7X1[yn(Q3+)Zn]iOYCH5pVO;H|R\ʬmHVJ\1{O z!P;m\DxQ][mfDʖ~$X.|upS6,Xc(\dzӥ*t+2oyJ3X"bUtrГ $C9AAҕGEN-fdMFB;Ut2>ȱ@G#trc t]HW59qz•< avy۬fG`I/@j&3&CG#aFWhm08* _y{ Ymkp0,`PRP9G'c䯠_Ղ*{9\[R`sU6Qa7a1R_ < ks K[ani`-mζ **K}=Eqa W2݇"wYCLAsʷ(xXJؓCL EI ʿ*hL2y`iJjdb MX2:@ž'9f}u8XM;}EH%,^ZoYRZܿ.f ;<ުkmML+B1}n؋M- zǵlU@#.x^j4&LUW.v&y/zPA}: wNG]w9mj NM\ǃ=yA1Gi:T '-3$oXN{!p1Y"dYӡ!Vj42o@g(`HxΉSZtIs]mV%  s.i i@ dMN1:d,Ry+[Y*,?8B#ZDuڋ&C a2QQ7)C#Pb"&Yz}ĄX>vH-QZ៾?@Ha ~WyJ*GyxuzNnjԾ\mWF87Ri{1nLozQIP3J6&iVnA  رNE-2|t;#^6uR~S=;{VbL]|N@Zߤăe1c~^;;wBܸsFV-{x G;(oB9G0!=y #cdf9và ݚ(R @x^Q іo^QX{K*(s3V|1PKH:=u&#W&s ut)4;KWf(AI&])$8聙 SZRWuߊ)9&!lbyznR iV͠;_h[bY/YTPY2h;um#q^*wIJ]_R@c8茌Lfm[PIۍ.w73qQc~ .mPfQ& g-zk0 ʗW?R]!tKRktMˉ&CVRIp|͟q}&5&**t}CI؞ ֞ qlD p&ν&<)vGHgHĀ%LGL`}\%LV|7<,\Y*Vk5 z'ͪ2b>dqR'GB}[lɊdɶu7SmWP:Dƻ Z.!8+ Ѷ| $c{h73?oB~@c> Pa`"tjZ(V\xd7!8O0ͳߐ_˞OHd_[t!jJqm52$7q3( Lh$@K ߝCC ={UK=}+Ovsz6^҈?NV5U3ň#%Iyh =Nf*\G'&; U N\(.ķlenƻUAҞWJA+ʮ D1hoMM0_72ҵ 9ቂXkvsxP]j{SH1:D-aT7iR^j؄dģbm "TZu MnKUq5Jy}SU~1]{}bK,زwLY}ܯ2#zXB"4O!Ů%=֥YJһ&ʑ!Ƶ{KhqXY z_(S녝Y+czm] w'vdi^;QT Q6`ă3n{O/CJ8DɡuLr k<3ᝧ";R `3Yg \޷Q:5Gj-qh{iǴX0WЦLG}di8\ El{MRb{yA1⹦/so,U.o{ W桂:EȂ^vț"_f'һ`yǥDJyh&muIB5^]+$3 .RxΊȾv䌆EedHP c̠T0) } ?Dk7qxe$Ź"ɦRؔd9z(KL~W2LR@uZЎN&¾! m}̸"1o'#O!a.I+d\и% RQl (rYr8ti#z.[y.#ᒵ_|79/]UJI/x>H%놭ό)RT}^d kfv6MA?0@%rvU\ߐ{.F rB1=`W~Q1 EQ՝0% E3/4NwӑsnubVdd,ou'kxUONY? Gm~ s3r|tf75elļ4j[R}ddhQZiL2Gh>90U.j0o1m oF2ޘRMOu)T DGpaRζιHf~_I$64$-NBME m -ց/Pf2JG!XYMb޿ K5$ϖ]M . `Y[Uq*%lsٜ(Ly8頷؏Wb~A4X#A[n])ZPJN>G$r6>[>*waT2y N$^Ҕކ0?BA1@_feYi=ZjyvV*iko[.V$WT͉0}i!݄j7Yx{1rAE)Q$IWp>z^۸97|c{ٻݕv&I,7VJ)hտ ~ң LJ캽!!AedQz?w0ݯ%\ɵ86g|pT;(My̡ޟm_k<5'abՅ馅- ֍ 2{?"= 9\* w`È]e4k BrX:,}iEl{آeސycSДByס!Hj;ڈ]CIV?dxف>0bHm]%v\]ڤ/aY"y5}&K,c]rDJQR{wxGMNФmk:`2^?"z'n(%ODȴg29 GPWoq$1Qo}il׬W~S2.VBfOB8}&dk(S^,t3w$WX7u${ 7z'#G>VImS֫Q_)XhK'|m"Gi[<ڎ:p4!z&{֎44nFT$eJbKd_UDjexX")κ|4;%Yuf~j.`of'eO*;d t;0ƙʚpmzj02hiCfK5h3v*|iynm_W ]6VEgd!zH:Qߝ1& |DO&Mtl܀P_^lW/]'sv~\GalNnp4Zҏ}}60 `te,1ZWS,oYj)Hvp ]ᄛIܺiP!u[h<éI [䯖r=nXa;F1IJѥwC$:VCz} j5wv1 qk*8qtkJgM5|ƬصQOƈ m/P5|_(UBS lu\g7<7 =en/2.qD%Cgxп i,~][䢊/]|uc9!(z/ބ_`Y,.WW閉KfU~X ?%F^% 7I/o`2G=?yҭ}l6M1s?d|IQxhAσNΑj rJsR8p^FV|gjlQv_wj8nR3ЮSBl?jSRmV\l͵aʱ6R.1woG0ODv4,"N;,Hbm$ϴ]eݦFeXwqxK܏".hSxҍF&8c;ެ H-a=E_C+pw+@#;fƠeZFf=.FNf ZIIN B370JHQjq'sf3fߣGrQRԟoZ!': w6^t`1JTk!.;IN=* k'[(5:[e\9_YT<عN^ɳA;˝z5+ibMi*r`μ[,Hy^07ߝry{: * #ܯoDʅjƽh$+/luN5w6Jމ`]iNfG!u5A!lScIИ "#~UiĵUCVF $ޣ6d .&_oa\ԜX>"X2>Mrgr|.9N8jd!k6%0ibh۠a?ܖB6h5S47s* i<06/Hjh9;aߚ#)t_!OaO nQKj\Mlj̏1N~m .n/F:Kw喐e,K& O9F[qAeCd )UwΒ;y,~x$ XLp'6^3(+3{!+'.Qt/lK |oR7R߸_&0u[ztonl%yhk9im8QZpf˧/0z1n oSz+\u=̛s)έ;^ξOL_=>G||@lv+vzWQ3?Z3&]k"NDHH6`uzrF\0}b&zS-um(t_˰'N3όD2,u[Ijnill-fєLas_UQC:1@ŦɯVoST{֢E>P Wnɘ bqJߗcz{j0x\f!RGuuwN6&v2u?vKeCL< oG/H+zv>#^S=K{m#ըoMY4J] k>nԉ`} * /ÞeI ł Ͳw͕jR֓R.AA;sqwLDz"ٖ"|bcY#}d-l@N4 ك[VƸ\}-~1{Xd¯ <W :ZB\rWE0\4h?RAbTaK̒V5[EB  s)l# (l[O~9,ǘQ(q1t7qajfjt:ĦbUҨ}(UyWߨ HϬ ~u#-Ж $Kbbfw[xKMT {V1:e>:kB v⃲jY Y-ubb)Q=\4gj2ZVsi<;W?h:- {ʵTt!;”d Ɲs"<-83Їoɂy2?,E5KR LPZ3{m uN T@Ngr%W DCV$i4 JlIb=g ɮZ׊G2͜vR$J[=UHFn'Vj%u#^^@ g]Js]:]c7[a(8T:[rؽ )TTXÑ1cs'U5{nP]?48T~Bz4c5Ev1W8C)*6J˛$dgtNcwze쯀 o@:q"&DMjȳ0Z-ۓMบ QTsosuG$>,W*#(9G}7UO͢~ /YD Smr0ǗZX^RAtJKBOwBwxںx7<@Fq& ':p5Uh?U^^-i_ Q/M߮WT@gBd8X/#zUAp q,t, 3t1~RCP !Cƒj='pmFqog*;YpڳFilxZs1l0Ņ#~[s"gLV -1 vi=DcN6^+' LӇILPo(I6A*W2N6A!'gxF"+ f?U~_pxY=߱.2P9ZZwU'`Dˎ cjdoT+MxYYdXܞA ;9ﭓ`n}Ó!F!_rnҍjK5[#l-q(-_zāEYY$.>r> h -z~j{ 4?G b|x {b* z)CA0(;ЃKzd_I4h)N7 \aHb&IÏHiW$ģh&T,)&O f 4]>w/}!);YsvJa3~̫<96d<wS]H}82d=麂⦳.OT^`S$9Lc_V,kP[^PBPHDfO!_K ӬԷX=IIlL͸yς"@L'nm #՛U C-}%iMǓzdYsxNu ! 0* $iwCNa2=hdFm M)ű@LWdV{| ֯+oЏ@D[6`d`lope5}wIqNR7JiI੯c>x 鈹|tp lHuyڍqcU< {,Ҳ7[*22u:q,>lZqM4n~``@fy]H8Xqsɘ>qw~A}&@uBOߙk-,O+9*e0ÊO +Ö#25AζL36Gn˽A5 l&3YVCl)7i"ܭ#M[tWuJ'kd/C}-xp -(ݪMk[{hwitI.ܠUJ*.j32<[GMQiDj9z7'}2CYs-(""'q#ɩ?3 @+G!U0OǠ1ZN{UЎQJFX)lQ6L qK[ ҦPDtB8vN+m9Dtq7<# sW:s|Pd^0R*ƙ4l6QY2צYf+BFblCHxbvK,amOy[R~F4g uo<4"Pgr- ;MlWv&P8Kf;\]6;7Iģ*0ɒߐ U]ZxwR1K%_i!~_}<)`8|5lB94Ƙ-_Ǔ7~_4 9^raYg=]_'/bK-Ʋki/~ @ +CW5{M d=ʤ剝 EiS$TE =dJ(HUqd,{**gƣLSBEI`LqSn|7CXFJC{wSEyL l躕tcLW]lacc>\LޗK 0bϞ5mxam ZPa.0:|p؊O^jV q{z xnWk1bCo644m"C7oI}/Or7.?-Ar<+:ZRy5ͭ@Tl-7xսM?V`^ywR9y2kg8ڏ=.y"o3*lupT*#&8A}q[,le֙uFgiopZ.JGЙ([c^=uu1oE@UpwOA兔]))37q^皁+>PɏCoD rVr螄 #6?t1m@)؋A*QNPjz b|軐+5Osvh-_A=o.-VΎpYgjf"7@:?gFa[ ҴFz|b`3 %x'8FqCS۬扥3\6uHnyl Ve 2CXթ aw e40R*sHRg*G:@ Kr!'xU*j..-#HB\+D337L^nB(ƍ4tE\Shg7bIfS8-и頊aat;!#-ZJ{7;'fVu%X[_}HHpHX^ bXiD+aTH7yҋ6[ȈMpWHT fn&1 #ǻ 8GVip#W׺j11:q3UR6L6'iT+ 8Qo Si I4hr Qb.*Vt5Up-F 6ݛ4OڔV6TqG%XȲDeACxM%+|}|G2f.zCacD,Mp1`4-*9W 7Фڽ^s{$~=vȣ/.'dgܴuoLt8Ṭ* X q2gCuCwcbZ.% U Yay[o+ }-i`" Jc^wq?S 6ZzuX|?5߇1_V&G~ۇ0\a"&;ѝXJzoCr2raT\#]%18sY_=2v(Jq!ño|&ݻ}SLϳ9DzU4Pɢ)囸T5,zi Yav=эx:=*` j6K{cWKc9}*- ,x uK`moﹿ53D>u c'N&ӹG':dn"r?/_莲SFN͐HPhdWCFL \83Iy»h8 M3nAd^d G}Mk̘^_`aŐr}W4F%'3B!x, 3uC>1j q)\l@qaZT zЬҴ_,c&[7]p%O=[;L%IO^FFqv)(bVu(ǓDJSzt,IF7|V86 D:dP7 וַL)c%މ@V2"JRUqVFjL -Bz,H}!֗blSDXS v8QI@eޤ5p)nz}*JowL8'R'L`yԠ)HFj=i3 9NN%0봚zs㛽]q8BNs4a:{kXuwvq8vE05xa$=)hBׂLQ}=r+1l-C4o!-eX{m6M-U㍺s3o(R'x<*i-i8R#G >-94r{d BZY}&`G4{-[ݧL=4S"%l ]>EaBx.kv~qoz.¼]?{f#4㋽+#,n+U ])oQŶmg@R>؛*+*kO/4]6>SM tD v컚z) nw O¡D/v)rDk~dbdHo*wN=A<3Sֹ  6|4a[ʆGAr΃=ؘͿ?u. n-dckһV(R {<D0vm7-й{w@q&1BiG:2ctL/>d4nUtoR\z:ޚ`_}Y0 ^q84FQ5)$LQ}˳ČtǦ Bs[nTGûI>W}D&7(v&iLU1DK}}p۹Lj VT#.I>F3A &مz0 pX>#*Z=Pq"y"s:GT |˻$> 'HQ2P?ϵwo|WpC>aQ1Y:ɥB]x&I+~%JyX~q'+WBK#3 龥,)MV ,&vxAm{0Q\jQ9mgߑ'gG|@YPF9a}P9,ܲQ#z * t6;4L0ྡྷ7GB~8 sv˞fxn,-l-I')JytDr XfҮvbn5@_mxx+ 9 mz*s x%i~VFLl-|[@ҹ3vF6A,,c  G>0iWXDNdx0kТ5%&#诶Adp8ey΂s4,*~kVm2 )7 30,K2}uxy*Un2=LQ>H/B.U2@T]@2S]eʖQg%mmOʍw$,R1;Pʀ>mjV0gR z^"VZij_`a=PSxmRGe,4m+\7ւ3}' xa91ۡo9e6@ ?;¾R"-jd:w }RwQx>D+ΗpǷ,s"p׶^'w~6.H϶3֮"3+7AsM^-咚U !- ZD7H {V/PUhj/t#JڎԜdkHkdq m*z2M^]SWOb7[.`c`FQrbyxHݷɿK,fj+s,/*^oia(ɫqWWF2..%y}k):CXEY r^ =,Eٵf.j7R7iϥPT̀$mD\ul( b#͊f=MM RȞsmzʺ//f@w'E:~ɺًT.j㈨dr)eHzc w Ǐ03 <mN;ЈRi3}pQԏJu*.Ǵ)HI}Cݖh ߢ_E^!=ð8XrڴNn.WJPy3 [<%ozrNU`)r +Ńvb94`tY]k]?b3%GmSG0^)5\ߧz<65"7K25x] z)O5"㲮WڷzC0K<]_hߏCFrq$ٺ+y ^ҾPЈ*NKJew{o\ZG +%`h#՘c*"`jG#/hsU1H2cԴQzSfS:# Z[nџ"w"a%fwdDK7=p0@ϊu࿀|v7\}_Cjd5*}!T@6 %b$Z"PBFJAm-٫ [˷뜷}Oz8O'n'Ct7K]GE$Ufm2c/rŞ:I -JMiJA 6?7n%Yw8$ek0^S8eT9eePFq5%4lOX !u %B'Eg8L#w(@%G9Nľټ5fN\Wz~]Ei~h_n]X5 &uA"<;IPxeHP{{YwI7)hpw/7Z\`oHo^i* X/lOm+qr iWMn> u7v0zB f\I8^&۞7=PŸ#:;0SIY%iNA^"k YRۨͤc/y/| kT$#\dqU;‘D:{Ay -rF7ΦS6$|A(Bdӿ䶎=qZ3jkk|lwܢ&KDIW">i-mCb@h%{>WZYy4fmw ̈́aEب%xHs>iƝC{e:uL !zEÓ~` 41nђaf+Z"xDs\4%|f++7=eNXHKrJtagwmo2OH`䒽AWw A%xkbP>C#7/L F~4~ID< #h]fk{#VoWEX9HhΕ1";~TCxqEkxCne<CsT2|GV p^2y4eч/~m1t ംuPP9JSe 4}w\y4P+7ҟQ@?1Vod+[X{L\q+K_3,9 "86ժnr?MDYZ`GXNc{Oߧ痔z9@E]NRqS|%7h6s]ydb003_qU-,ZAKХz2FtW(M -wZlSDn Sl7jx]T:5!f{QC@j1@YY3z<)'+B"u|ŇᏣE />*uN/3 8i˅m#Bva'PyT<̐v7ovrYUb*@5a#h1'f* ^ޤH*ܭCs됄"sJE@Ȍm?])яB1^)O/a8th[9 oU7TkdHUxQؑ(D>pJ@E R2\g2EMyr`ڊ]q`"uీMr?Xv[PA3$ּ6#-6AW*ł)FB% IԾF{Ǔf7}R*+ "1 2>O(M)a/?]jC+܂xSWSttڏ*ktYO"T/R;q6= Q&fe W4e'y'4d ц5bG\*>x/T(c(R 60'F5:LEwt&5׬I!@8SC8D9r/- e"|Ό b ;"~xA yBy5Hg$U= Qez=œ`r{׆rV ;HKt2sSQmG7S@WBY/ip}^~EgJu I3f|ԍ}*tp:0Sd"h֋3 x4Lp*^v/G Ѥ$Q;XL~6QO_=t7 SV"&RkZ#ky>0u2 6jpv!nZmod FBI0D\ȓl7I%=a Ӱ* ھ&?_TY)MLl&S-`h,MtVyٹ:#Ԃgt uyΜbUA'%9H ? o<҆naI^Bf>ll{ !:Cr^r7?U}<̓ӄ=4H,]~-yJHv&jP3z[)q hO#R=sY]PRu1-CUxF2IܺQ?SvӔ?!&D= =a"%ڛAG s*|kPl+0+hsTC֬2l= ziScWN(!`s-by y=tXòZx2#}$KDTKIKNK6ҲJ6x]d4; @QBę}~@ӕ-tZ3iydEw2OGbT͉sɹX Im@Cp%C>3YQBF,!͚% pW.Wx.·cCAʪ]~ClD۞F0Lrq'*Gվo:~O w[DZTRts7Ʃ[8BP5HqBeQU.Pa (xluD atO L[,%z^7(KJ5l$>E9-QaMU'Y-B ][nǃ:Vt>q$,Ek>ϋMy']I=>Y.!Rjl//H?Ѳadg׏XJ]wcܬN[&XRIq$rE=bj}xwǑtU0gE*ad{@^\r@^5=(bJ 4#xa5Qmft)S7p1obJ}%pʻ̆wm:?򻲁 "&u^] Wx_Ӡ_2ѕDvzϯ,I #۪)$00PLa9ـs-N\ɞz~ \"H.%Zν3ֺ OF-pXLڜӌQԸG3%>QQJhQ^M$ hL @MRR0w4ùA  ;׬5]9ό3?Ou<+/P_'GaϪhc;YyS$-/\Fi<#0 \.ς% w[4R tsO[)ek%Z:ЊPdE7L2ݓ'أo(@80F ߹}[@vҁ47FVhl:y=ؽXWK Jp8u6u2+ dnT<*6:Rt1ɨ-ٰ'r9b>X%Sw΄Yۙ+t6lzcEK80e\ӂ{*W|Cgn[i+iɡ˝!=8Pѡ#91lŐ w%ABj+a.ـgU.CJEHLxC(46k*;Qj)!jNR9/"r uR%27J`y.ujGг$a&ViI dV7,[4B¥U)R0:M\_ sٔ N%InXJ&i*J#/fɈ#<~K=ZIB|r?ձg7US\>kU ]{c`[YĹ ~Blf9~ Ugr6 :]P{p_6hZU=Փ^S|&7dM6d~.Cy̤ıCW9P#Rges:QȌŶxu]IMCLl.Xн{xI~;A46”0-\ wpC7@p;+}LPDvtDZnJHmEbڞd)O i]ĩl}} ;]vY:rB~hϾ]d(hq@w3$!krsлɜ"*rJRTUP~[{}Khyҵ^/$Zm#-1)8Cb#nxE?N,擝EbGs,\D4d[q)J(X0j23U#OlE{mXF 27syp\*zmfAfx0o)OS$Z!zQۖ8=#^ph%®6yA9=.$Uo aDMwM|&[_=K<7T߀d5^W~) h]|qs*R/K(ECRy1x*^2ۢ0Qi4 X}ZZQ7JkCbeArp}eg*=ئVS'\pŸZB#M>G iƷ*V 3eT[ ذ~uȕKTb+v'=n2P 2L_%D@9\.6'9oOX}ibv.~SAr0w$Re+{I9G-X> 5{OM]"Tl'Hvʞ߰kvLR3?$璳sP0\K@m  Ztp{v+lpOy6x,=  ViYj^3"agbT؋lggCXlzqJ_1F܁٤Oc CpTf3 2_ix<UhMdg㎻9Vܛ(=6h 3ki޻]@DqԬOQ9eE%ڗvew9SnEvBPXnU1I =GX?hÞxKu=AX,IͱWuZ;_uJ6~huDǖB}sm nCL i04O./:0C@ҡ j껫erXB:+:DTONMoe.ء ]c ȕD'`*% 5DpypՉY9A ʲ(}gF6: @<ٓz?. ^OElɇ#g<@qǵ5{ e_EˉZ/|z P ȻIe@'x~V(EM>Џ`jn<j&Z T?ĢVNzB#8ķi|}:?Zex*` $~T`vMrerqUMCEaAߟٛow$3GR:8j_}`z)pXb8¡/i2/[+u@^2:qwťZ!"0Nwd{2WD?/f ra0ƚ#g ħJJ&3<.0$('Jy9)@|27ۡG%ۦnKJ(Mhs];-C[4Ak?;߰Ptp$#ta rEX6}V1.+qN~N\fFes)Y3>Q#lTKFT̪@&#KYA`}B~ z?4k\<1`m4.lp#/*˦U%<6sQHC\,>2ŖcbH{]Ph - ,o>8+%౏!1( N.h}}`Dj߄ՕJfFϮ5i^YG惄T=+~Z7m㦣ap@l tY*MF)\,RQ>(U2Y2b-b&5~E6<`c0V޹qhMD1궃z&2XKۤ{VHg7RO{f6WM+d?CVƵNeمN Ȯ+ݿ>ך~){9Qir*J(s$)LxTݓ$6QY#@KYI;>{}eM?a!D|0g=d}(H1BAVl.jd7Udq@VBeLĸpn:s"\{P (}/Jvmw1s)VgA~3_Ij'Zp.e6tܗ@T\j.aqd+a4 #o^4n| 6I6]jvXjZ?,$<\d61 k}* – P*,iό}СHwF* ĎX1$e Z-Au6 j&*mC}SXaNBmfS0LxR15gjrIR,,nUh˧+cK3Y<t·f7ƽ$LNkE< =-B;ə}*a=YldQe.C4|(d˻ܹ#} pĤWm1e1aȘ_swi"q J>”a格dBPgKlAC :MkV$(x`hd Y#L;ҙہ錻/9j_uUgT@ \Pڔ:WWwh2F3ڵ\ DPc704¯Ϸ.fbZ}:GHiOTn).:~?-Wmqt4ӆÈgD[c1Y5P݃xHgZO wWW$D*}t=-.f{D-P/B{v[7Wed "\bʎK/ mXl~fSâ v~sǴ99%*k5G`.5<aCӈ?U dsg` ]_ c̼?Z SFrSCfda[> %g'@[^-2dSW_xml 3LFYȴEjiV^mi߸ L=Thϔ1Ե! '2K(6ۛӫR'֜J4}Dv5'q6;QOy v}j{͢&b2)KsșxNL& Y82}WE6<<:sZFҝc9n'֔=S%xN]-5]ͭUD/^4k`jVיPϔorz[%ySN^mQ0E Br&RV{бpE{=WTk1VY>Yb<;=GG 4(P(?G}S6ׇscGb[϶h qc %43FO@7j?XWSq otd=p;MU^>=4 (n !#BI]_oa 1D.?1&t{3yKdIXƹ6,68DWu)H0=c.λN ZFgѐؕyjUahnڵ2-JmQoĿ3nd7H֗ m V (\r3>`zU䴝}aC{xc[|g`[g7/^& Jf,gy՚R fLX^wY TZF*J T[ L¿UC˜=À-1tk~ ^QM8^%͗'Mw V„!tu΂Li@P_H1FL?[`PXg(9%ַ NO-i}ܸvX:Hݿ88\N˪7f#v-r&%xԝQp _5:2o#. O$E`ۋ:w\MK `$ $?hq>O(m*y G Ir֕K+T qV-d@4֢bajr e83IQXsX X;,?PȻ 6ע+g` KHv=I$t!Ef^8ޡ㄄tH >vϺGvF A\͒<;2jFR94wi*8`dM-UixZ _0bmmH|a$w`I0ЭI,lˀX7,:ctpSt(Әr;G#yH{\d!랾o<csU5}a_򰙄 k2Mmӻ>tmziVcMҗfhX"tnd:El \cId5쬵'lB)(NUic\JK>jζ =f6PrޔeoNNlߐlW *ɏ; /I>b2u\/o;)d9-80jZדqTPrgYje],_u'#\0mc{i!_(Œs6[ +(g^Ss+q˯k2F/s8&2m0]-Տ8I?ya!}PV+Dy u&-)MƇ]Id%'*wA! w=!u: GnhxP,ZiDc"<\. lRPX3;k&T1kϟi{ݷš;Lm I'#|g= K^p\JIKUgi:KWos&MEy_3; -eC7p;MU4O|M&B8%Xwq }%8@ٗ+FTΎoHMFjfVHEj) V'w][Yj4T3ARnU`.R JL6$TװZəVfCI$KU3 ?l)YdKe ${dLÑNeVr,lNU}P2iXZ9fEṶk64_O0FtQ9ّ @oTQ+VZhWpk.>Z].Y5^>'46<œpi:7`ړŌ (9{ҿde5[xj S0lEU Q_(i$vHb L5χid0F>q"IȦ!*J= /eSIUI"JrfU *vnH<2hX1*K'OTs>VUV=ߺh> Lz*YӇ!q3 k]1~K)8 #Ķ7ik2-0OlJF.GoN>6~eFaǧC;1 ~_Uuf3ևOu#EHc :>r aF~ #7J4/>+>VY bkÉU2K2hdy2L7(Zeb?Oc.W %3vIiXpj1 \y 3WY+ׂ.IB8&CۄӮXZ-}IGZLA[@,3n)f(Cl!#{(q1LeWx/Y\SQ0½G}6^fVo]#Ĺ^ zCH=ȥ׷9]_lu?(/=kNtC}$OKB\`{٘;8 v'B9X$АƪfWA8P=^]C>7TmiLMLܞ7k Y6Z Sqcl-u: %JT i WTdR]ÈL͂ ?)U+*#tU1}:y kRǂ+QJT]9Ữ ZN>TCA 3#j:e%ho'EZvomCC P7@e`J[|t#f4 Ƽ67Sm_T)pɊY<h/1irG'P y}s_Bb(>4lR[:I._q4ގ ߨ-.k{HwO1r|'dN$d:yv wn& *֍+R#LDC G3ϋ0xk{0cd>?IM~OMeQmn){6lv"͜k$!*i-{7cfr4ݦ$? -R<162ퟋLFJTSW燢8Sh/C+t06awz>F*T+l +w3Qr*K9Uv3 3aq ?• Бbc֤q,V"+r6Ů$V|S@H||z\ ""3+Ռ$H :4оb{l 0Ӳ/xS--xdkON_m{A"P_jm(K­W9*tМL`h t)%>"3t ԣD\R$IRf&< mأ N(Sr߫<`Ise(Q rs]:C+oXf*1֬ÈlWOtqHl慓? isDUbe]Xn,f^|K K#nt6Ο;TSu$xά6|kdx<иs:PTfcI}/f>.Y\oB]'=X֏/Oea8ꉇB-/d7ٻa)W{WY+^(y9}-Kyo( Dk.b˜e~1QX ,@*\1+AdOuqnb}D,E9o {R8fA1~% '=#-WAAA5dM#EjKq3A4BD=1]Go"Zu&Phդ .y8Ynl5x>Hlla- pԴI!dsGPR: 4B]N{[ZaPH{datk0Ͽ%Nbv?xa dUuH#|跿obi8" !rpN͍~̃{}flNqvXs(m_`2PC,[]RG\NG4t:C {!$Z8la+nD"|V0YQ-BpP"gN峯<u#wsLl cOJbe"9In/UW,r ?eՍLnj^)f0qh,hDi$pWoCfM\?JH̯$4j+0l\nY T}j-&>]9byRTjb)Xu:2!wg2U_ !6ZKC*%WM,eT7msSmz1vPwo(/&^&Z[cYpn:GfxoiW%$*N 5*kDt,Jꄭw(Fw'Zpކ=;Dc`~K]"bvaϥOY 0q9Cm| ^UVklOht_j,:j֟:J1ng uex4btGJ$Ϥ=F 竩ewadcBe}G󨧑HE^- SA裂)~ߩw)5hV3"4.º@mx4;jSnWQ=7 :Y2J Te +ʶ7 ƀ>Qºޣ6G؄,vѮ72fK-Ya0doFgDA^bRpݾRhy`^ojRl\),iXb,]z9/?ٿ"(WhrB;_SPIUH Ϛɲ5A!%b V\g&ᡕ6'Px/F},p!ͯ߉yv"*@2֞_$Ūh~iI{EzorCyˬ&O/%|5T=jP4!Jz-6\ `rhAS.E'^>kNF ᮀH|-7uiME)&,&#P̙ݠHXCSKBeM6q0ֿ\;ܺ>{r:^j1(㬰4^w"?FFkrM3+pLF@Ļl*EF5srE=`gNh b}әػ<_[A RU0q,y F%cا?:%l@~8am k8՞* Uu۶Dd\WCHF@ <>fv,C XLnnffn2o_ݠP^ Jc tF;sWOaށ0UFDk/? KcyTi-3}tjbac|Yf?\8ErXֆm@Q뒆9:${=裍L`$]up}%Ё@ł7PDqQʕUS }mTfMҌ#V [!(޿1; g:- ?V(9(a14 >R6]?-[Z僘XؓtTш[c@>ը{GBy^{KRUkc@Hof+J2K%_bs>{KOjpf "7WJtO]Q\hfʞ.e 6-)}j,v9|P0n\|\ q&J8VBH#۹n [N7!e$,6h hP.MS DhycAY*ծ(6>Pғ1V.7Vor=2[Ξ"MH}xaus}ƫT+T-* @ d0 UrXs*?d*JSG/ .O07JQ`-(^^^@ gٍX o`Sp]:*76˪YM`nιjl!Jm"܇+boxȽ W:l4k !υ 6&ҡzGo]|P:_9{*xTa쮙gie>IxXT?/|)<^deg8[00yJӓz_z/7 3f \!_v1ROaX5؈ș"g1ݑiLF^RV8Wd5W34Bp0~K0"b>Wu;I4~ rwP"e4@u{{*aսHƷ/dU&T6'@vYL'{hhHK#=y8c 5݄7>϶w{$qUhrifQEplJn+# vd"OL9s]7x#bm\1GULa!xiccs2i;B~WN5S׈}r#mlz?Ko/GV7vWIc˶KgfF779귀+iu/:Eȳ=>:h\B=`ZӒsygs oJ]r-15pBo:B.KNԻI_K~2T+D0U\<%% eSؽI6•'Ld1b yZdf 2qSH44u(WJR%Vrq8#}W-+[^tdI!*?/d1)$8ꛦf]}rKQ3 9S`co:+d}MiiB?:{% תkgn HE/K}wL>LO=%rbW~DJE[дp)/휈YwK`Pq{U4ZHF.Yt6'ˆ4ٱͳeYpq1e̤kqe#>g#r"H^7_iuD7v| 6Dk$K"Le0= ~0@F=-yHrR.q lp@c;6?n^(\ݨc #5~P\FJ{2Dp;jB(wh K ue}_^ h+e_Y%sZs꽒LF=()E35P;N'xF0slxp]bݣ7 (ɲ6 lQ8 Fs,ieϡ\ R:ɐ.(̢D,:!]\y:? 6rJ: ?A&{^|XG<^ir  ^n޽?g Ck+G v=0b%, Ck$S51j451"zS  dėB惦h5ZL,:(~N (i^T6H蛲h|iP5P8Io6YLj«oz-0b?(@E뻊01e,O 0ٔI*~ 2h4]0͚;SAt"9؂TS (Y=? ƮjA<`@#s~VD'Y mXcy\S1}+~|nΗu e{\zŘ?#HԖBVdoԏE̻#C9ΘH K6nxlʦQ°ӻ!ߓ1貎儲gwd-),/K5nG0AAN߂uY W3F}.?u_%2XP[=Ijr%%y?UJIb}"b2^ב'"=Ń1=ŒUA_^-z}Q,F W0+ ܟè.)/P<`=i^!Ԯ)p2{Me 򈮷ŋvJGRѱ@܎ IO%+.Qfyn@ƨ*Z^0e7=F(,[AV ^^Ҧ*?N- =tN E-#gjTx/*ۊd-$q~L嫻Z)Q w6]"FF3èL-i]YQg\W%ΜdY«6)LJoݾNL§V|Tr)gvD+$R dj uvRT`-TчW, a$l 8g}媣i{E>$Lom,7q7@AI-ne`K%lO5xyHh]hi/U#76 :) }W{5FK@Ce|LE[>]"@Lz&n fьo?Vc)H9r8(QC9no0GEnw?k1&`22 Y_>y}~ F\6:CTt6$XnUjJ+r*Cp.: ?y@y0`J<1ci -ZD-˕naKҩX=lF훿5+lJZO;XjhVjBbIӍIt,(DQܦbUt(c-ay4[$0R!k GbeN6$2.:zx`vNK,vӕȉ愃F0w.*vP3!sN;,߹$iٽMQvRN]K.Ouj*1t䩆jYq󋪹&U29Uc?Ѳn3tY Ǝ"n'{?QhƖ%-41=ںyݕ#v=7VL81O,u[R gЁ‹#N,(;]Ƅ_2V991:R:YmVL]O5%!}X粢5Av}*,O/pd x~;E-Djڶ4uz–&|?S3%)=Qh[4)cVXa>v3vpJ@M̔N"~` DcD'y 1u ۈؑQa+3ȕ_g8f+[ ab4lЋ\+*o%A\P_gz% 8='* B+Ue`BuX8qZkVqBdY H*ߍ$?|NhcJQjT'慅 liv~4zjYPzegj1EFsƒ#b m l[C8l$H؏@ÏwuDu `uhHZȐ?T`YA5Pl˿GDN16$ǯ_,\r@~ nr¼+K!O*&}P1kr1MB^DU}IPz-vC=]2 bUL}YJ,nO4\i^LBLlp1bbcl?,| Š?|Qg8GX{p!&E$vr:t׼c M-7>_|mOA|4r=4Pj@cZ"zkx+XKsr;3Œ渚уr)z]:Jۨbkn(v2YՈŹ[2D@_}3v~KJ0QZր30\TuŽ;A`yxwٱnXg0 w`hq}e!ml >$ ۥ{{&BE0ZPϛefՙy<ͽ%A0 恂,bA):wF da~zc%C2uafrB^d=+8\i1 4%R u'S9W6x25eeE7^Qu0CD"87T_xk~J$].̀= kvɤw4zzGCHqAo4a?4"QjLtt.ޅB-aAɜXFm5֯``9M$!!d_9;PR- t̝ l6G>rNs!8 5\4fE7T#؎[a+Ad?[m6j1^ MØLS 04}t єL)T馨~Acu`6G$ӼS = dnCh4OXQ-ᣧ6"EV4) %%);77>&d0M7ΐ=VT^Ra/ Crzh,Bf6*$,YlN&AHCC(j i#-Qr  ,)F# `Q}](h p,w #P1yW 5 ~L|@.@uj霛( >BPґ 1@^0FpfvIw_8%;M['/WͱHkkepP'>Vlwڸk3avEWyHV:mCvy%H &3{eqž@Cn]VZc/pt.*z_|wo93ޥ64 @d^NKvh0:{`#%hZ-P9dN =j7M⧴koORB~4kQث0Iin}G5Գx.0#G<֝an!o됐cb :Բ^~ɎVUa}Z,$FM"E@&lj'L/˰OhHXaQF UP :0E!na-oìAwѢ0%r(z}ϲ]l?wo0 B,]4A@[$DR̚gJ䅛!d` L0f+5?\ؗ]ifmRu&c6ۄn:UR|"MS-bK`s?3^-:^HPB㣅~[CPK9ЖHiI1FUMaPpTqkZN>M~Y n+YD1"$+إjCy{&Պ+HnLyݜ*DؕR=EǕA!C=H) A`8N'=]dIb ̭~bYal:2aphX;n}GdPX =rg_5zUo ģ:<2] mq:cݚDe 6FoCn1\?1z nQ3 _=eMޮX) jY?T٩Hf4y? `4ҖfΔi]Mvt2C"`؝S/%~q&nBXwg٭W[~Һsdڢ8ͩp$1 NT_cA,;6(mVAJ1vHh.d:*Qv/ 䥝@Q#v'̤|37ެZ)FD Vtn6}\+J,zuֹWAX)&DVR1qkVKA䲞?QHmTI ~D#`lʢyԛf6"ѴD>y1rbVP#/Z9:p3wiHn? <ɿb1׶SC5!eڧ)YC+[.^8ޑ5Og£dN얀 cJg3ZᄉimJL@i~u 8D$c଄+ vsv{=uPcJsz}0EF(t}|Vmȼu?pž$)/ު/cߎyHl*ݫNyO;@4A/n&# (Yp_$޹>R?4u&MJ|qbz^n>*Hkδ SU8}KzJn:u]NҪj2a\ ZhJ`LPˆ SrR-z{+CmW_؄nQElG#ݖEaѦ,<k8S/ <4S{8SS(m۞Nӈ?Eh/} [n<Ƿ ʘY@E 6m\H^)~ A!}:tGiƖh.!B&q.{yEBE7hXw$t)7ZN\+,] U3I 3;SΌ5 IGrS?Axг^4w̳?$:04g]r1ܽ3dݽ7/tlpI o&ʢg0M] ` ; %6P"m{Z:|8 zyA^~`.YH 5;?.̵ۘR0A Bd^wY[͇z֫־tM;,8剀ep?@Z3Y[:?ňd$Ul@U9[5 `hm 빁˂!rg7Hzjܴ*<|co;2nXFK2c_?ŮB/_V5YDþ~Ĺw!X䖍G,< ȁ:+Dmqm \~jRN{ RuwH*q2ku ӂNc뺡k5ÓNk+"qG$]>[]-(t"\DL{uc8ҁ38t޶8Ev4ptZ~1 TȾv? KNN3WO ߜ\IrVĎR0AZ]۷uz9j|̹Ui J(+,J<v3DA'"V@ػ?6@)Zqu #!!EVZܫR>7a{Q-׿wܤOAlvuGPqu^q;:^ ɋ[ 0p#>.9( -0[O-nA_m2EY -ZS~o|2f aìa&AWoD*aV;aAV.&ߣm6_/GSNqi޽,H4j,.m]PbS|-B1Cp\ujB=F obj7>qt̛S_4TH%4SĎ4qO0eR $Lq{do0`_W}\ZKV䍴r*:@ 8OT'3Uc16F(>`E\ 9k!,Ȥ_# 9z c d]D=mtuH5x7p?H6y1s9@k*xۮAͶ*kN2T x' WYŬU[b8Fpn| ٕDEq +FAV;/w#6E~dPK9 ^$_7qT4m2dHS8:$u'r0zM</H>i%=e2bk|݃mA#}Y-XQRץ ʹ`!i9טycW$=Y}jTe1ObOn/ 'R|la[JeM2mÀ C|U$%%)ovV]joA=xqynjo+QwaIRw.1RW DǙ2j8! = .߲Ի_W"OL޶4Y?P [ ¸кG$D%?m3m{ $tehp-ILK`a` xma{[/j]j<5}xQ{2ȑ,b)/-51miN`q#L3%\6{ ^$e 2X5Kef=%VdVV]Z̢ӳ֗EL܆tG9*\rs( #ړe$̱~sP!1JdM=d uߑNGE5jFRn}*7c Ş}k)FFU0ȧE;Pllޣp~Ɍ˔Z~ ͯ[k璙<*gė 9-l7w/Qm4"!CO63&΃(b'62rF`q6$DO.n/h|pVK4w)@y -]OՋ^_$T㮴zKtp.w&4s_0ՓUC=qHk$ɜC8#pDxʱg(CąADE[4iH0Z-t'nD񞴝?W>}[2#NQW<9߶|Ґs Q.#ߥނ,!/pgvN4jYk[Ru7?>xH{RzU&OmBm?]_ą{L%kn}jb@:OU cjZ(AiDZ[j|',}tfjglR,(;F6X:;(&Ho%h6$lv;+R4={xջJQ2X*~43㊋Fa&s 3U9R`=>Lkjk<_\jAeA{jaa!qe'$E 9@YƸ zK}bE/[A^sM3#i0!,ŎDQ=@E+?7MaBt-MKn*KqKT7D@w+߬j_$h[G\uUgSZ&XjWe 4K87z)70]91/š1dg9ehm &#>]Ѻ?+/oeLGV)Mw `>i:-V$GgR5W^זoWTL&7%"CSbiǓoLGZ|nDG-kV$HFH&g`kptjxD 8aX fZiCe9wSU#0jt:j,cͥQ*:;%I0Yڧ_7;~gC!oQ⯌히HK;~}#'~\1:a G{ =tuu n0{nLJYJ;~`E\ 5nkֱ?xx f+Ʌ\I{0 8Ox$k240]Us).S!W!h;OCdA!Ƥpãa¿fl] ޼e^ ACP.[<DžW[*V_00mTe6N,N249&.KY<$+p!Me zΙāWpݏNR= S, i)^"$k5D^m)   "hM  +,kC]yVpJ6hlD1otɣ㵤GSFp!MFMUR+ I>P  e^흗Z£NPׯUjNfr7ijb3ByX,x?fIxwNݐ!-7{BӴ-E[(mm]cߜ*,hF[lsU5ihD4c(n@MBW\K|asɈDG͵sfDA_u(&~WCK#9B(O]4τQP_NnPm qw+yB7Q G  w6WCQ(G?*Ǽa89h=gֿ7&owYfJf*Mϕ--!MKJV^:_ɷ! 4=5U/V#t)/m-Hs^|rOsvޫj 0BvP>6i)=!(Tuc-vw{rLeU=cc,<+*wa/S?= (\bYsD&G}sCWV q ?qYN9""t:o0C ~kjA>viBJT$c# .]af$Ԯhv¢~Z/AY02Tǭ'.8BkgC#\K)xӸü32- m;Z}7+i=v0)_ȭ%o,0¬]} >GurMJ?nK('uTU]LuU ^B`S:u:+w GĶFat'Jvvwǭ8Mk2 W l-G:kǃRN֣j?&=/ _-Gn`1!'?SP OqyrB>׻ ++S>XWŵd(&0{k,93zY[#sS1e90yhmCX_IѝJ/?_.{Hʹɤ&?YcO;\C^`5Ix%B0|Gv5p}56n9=c@6M9 dލ' Mn)mG= \/hg(a(U4nYɀOf`OyOCd0l KbChH2?'¦x4j^6{^BI2+v\\իtU| ߝy~:Y |fH[8L-$"=ZH[7%g4a+U/x8A*:1DT?x&ox8xW#FAsT6>CXZwḊI  m`\뼽_|ooUuY~uLNse4>ܫ›C84c,GT_ n|]8G3|L$ 08ARǔ߯ ~qMj@=!E>=|Qb̦56o*REq/Xegbc8<cuVk|}vrֿ{ aR]*.|UŖt/k҇8#C1O`- v,?xA ~AG`𸼟:ͳgih8>Ge@ڍ) 2ۀ$/ Msy[KOӇZh;} Iq_{ċ>$8 -V˲rbSn  OcKaK5wDA5i޽ +"$c\L?bdj:2-.dl̠(SƤ~s8~A`JDU\Xl{WU9)`B)ә8=Du@<{5a uɰ>Mu+Lƪ1znS uLfKyhQ evܰߔUo8K܇`Z;aJp-e~̇jeշ Սeb_+`$xMWه{jC/, [efmN8icu*ۙ;Z=tZlU& '\%4*QQYw aL9w:¼Er?@Hu;L#sYd`8؎q[eוr8߷Kz i@\x_院=r~QHzo'a'^i>3:mҧ-V BM\PvF;z ]6+BL׹T\Qec)lzh:&`XUF SlS' |sQ4 q #>,{^^ؐ^ad fπ^ W=~%kKays:n@8ʓ{KQܰ*A8@I}!Y)$e .!AihXVH7~èJL(eIGr_T(P䬢|^2Zg]SBpv{.$rْ($@ {r!6Az87^ '}6SGTL83уK}6iR<;`2ߕ<. xRs5Y}A:`2!-ז4yj+Lcྜ I0CdH{LJy:}|JtRT[ӝZ>])q#Ewuwa&EfA/CL<0Ոc&|jB(P󮹚L KBdXZԚPLd7LY03~S3{$Fm5URfG])BY1qCO-v,M, !N)Kv]̘/aG4qc6K3>Fϋ)UUܺ#_V?hOwQ% ?M/ `g=M(!Zr)DeѯOլ7Dig:P 1$6&<"sWae[*=aJEX)2nn,__acr.1Дe4&i;_m5Ԛs EO +3!wQݶg]UsHM⊲;t@Th˜P߶2}٦!;߆@oJ/\ռw>5O Gn{ҘE3Qm9m'jQKl1\ ls3_.:LA ~/65%.f'yip|f( h0 0?!4nn.juwFwN$I YSL&Q9/*he0 Ecni 'o< c-?AIy|~*m=fSJl1퓃HI¤ĎiS2#\߅8ӮUQ.q%CкA 3Tv3Q(hyBtX7< *`\@ vT7]<,Ub#Ao͹?F#Fz] WTi)vCa1H|r5Op˽t(/`t[p o7EËMTE+٣7{G¦ ?A!7`qqUpvXvPީwR$ouWd S!fBz|ܽ攘7_d^G{_̄$TbstLkwY4 '@fQB!"1 l5f 6G$A R-h L ؁3L7.\O+VÕ]FgPfK2k=T6GՄ3AjjqĦI4G;jM}(S9Vmp<=P}Y~"Uj+9obGnzuuID:08CTj{׬,uRl[;~Yov Fpcv7wԫ1Imju5ʧIխ\&Ȣl.>8ɂ'oN*8ͫszw]P(.9F-UUc} |6uۘ6\ `HSn̏$Q]b͐pTgW]>'2:RlNw&hR [ZCv_7wH1`~~ .NXnŜ.Cc5Xg{3uJA!*e: @KzQQޟj5y{(JB:*rh(!5`l1k2^! T.l^=|{D,)cl7CP 3Fj) ]G Yfevx Slz ;٢UeqO$0ǎ#> F@ kF 41BG " r-zl#':zUv#nm.-`XޞCxDroadY8Bǽzڵfl Yoh ea7kfWԍGL\Rrz$Z22EJWOC'a۬Mqmua8v"{RA`50lP\rfI12V3d-U[vLG]dBKc`s)h($8\/{x}t4(,: G8N-w!:i%+I.ѷ+'ۻefwoW@7m6}矈cGcН4XemUU!WŬg!Dhd~UYL]IaOGw&k#E^9_ܪ`Ct 'v3p8d]h+@Z(g =Z 4Us6`ìo)7W5u \sLES1H꫺)P2m#;6Y'lެzPҜwm"/K o$*d'ľ^ ; *.׺yk\꒒];(Շ)PYg aTR^h*AͶ+si"_4:&(M*b0FX~U^J159b6j)n5ʝ:䵶(u@;S=AWǪJLm<hNU ^Td1إGV$ ө\Ssh 9fP+U}^3iVPNjjݽ+[kP;Tw>Jy0>kn]WԷıelb줉ZYMVl d%#mW)!. %n%xYf/X c*Iub,I۔\Qwy%I`ͫp,dm[Ne4φDϖ/wM8iJ Otwat'+> FkhPΦ;h3w8ތ/ |NKk`T; L!_K%ah[9 SznK} A rC? 7TI)U*7k@"6Az=ԷC:zds((0O W X$ԧ; [xfRn:~wdWʇzTMWāP ?.Qlpصk/(Tww6w̕1L8@0DޯMR&TʍyO9 1 4ƪ)ߊ/j :O4DK &9L!>m\+\& :ڋH#MhҨ|HqA>c elfܹR)@gcHMޱ)F@J0_d"Rܷ,1 `*zkm0C>Rs%նָ̤[{Lᴱfw[& #~/y52^)=*հ an:~Gl:+j-uhCE`Ԋ {'2xQSOSCi&dwL:įB5DnS}^#(H䲥uyl1#A42SF"E?NDEw ef2h& L&$6v ds+{2b,$v'<{Iw!~j٨V@)۶݃V7j55v!-zTMT)_x0H"EEl!9_05e7MӍ*A7U)\ӱÝ|0P1lh׭FT8fMJj%ah@oOn-k(1E"6OGQcQ ٻH#0uG>3WhMzR&U` W+>&L'0_ `R39W߫l]O7qQs|?Elle)ni'A\)iڍ#oKOצĶd+E ǖXyM[D_W+Fiz2W7hmaw^,^`eN0Ipڱ\"s^jJˮ'RKڈk&1ZL˘e(߮<,4;FqGIc*I t/~yaW P+A mʖ+&mo J`:>0b3H9`4݉;w?sx;lI(*AQL$ԁ={X:6YMU)y- 7rʡZDYX,x?F[@<%Ǎ7NŤ `C}?^5..| l$̋ Y1]{o̚bîq%m҉m0z) BzG))š6Wm<^Z]ޑp^Q"p!XP+#뒞;d\D›kڨ<☗ߣ EߕVg57v>{F4r!*CT!YԐ! QTX[-6[cl;(0l\\?;W"#av NA*Sc+cF`˙Vfї )z!hom#:p:f$.T7s#hžX܋[I_5K¡5ީԍ?/Ai'K)X'{e޲iy20|;7̔&$G"5 ErDTiF 7zILs-2|K+>< ˈ8βwi#擕E O FsT;6_Kgi rR)nWv۠HC:#+k}ig@jSȕnSٰbf'^'K^m88w]J: vԌDsi .(ĘP}DG,u[6 契 ᆓ cע7< zXJ{<,"$lG2Mgpo"@ƫmc6kuCJm^:}?3xq;|X'Ik0>t}D;ʑ(\ĩaE QYfk 5[" 0/e,$;8 ̙#s#z`=QH,1KXWI2{2Kh:܁)Q n6Wɟ~!W#zI6hT vm\(+3?GdԴ@?1NK^̰{ ru>4J[# aWC֐VCDgAIx"0R\k*JJkz` .z^_wciKV!`c$ nPV,Pòơ6 g[ٽ'c5\YKsT)6PlbӰ /I^O~=8Cc( XV5 GxM_ϩ{\'%7ƒ 2tɊ35 tu$&@߭t|x=0on8yd[dɾp5vL{%}C~6j q;[ExdTSɠ ۬)˼| jmsr)tgG:D~fq_Qc9O Ȳ{/p@3)}]]O C^fՄѺ{|j6 0r_sE/p0ݙƯױ^3n;dՃW 'eКZJ_(=^Z|g\p#|HfuRi:wrDeZcL \U{dy>3r]6qC e5$^K e:P1M,iO!_&sy@(Xn- _v$jRA_&6_WTBAd8y5OjRN!"EBVQv$CX !kEwMʐPk IfsuErxYkݢ s\еpnBb屜y OCQ(y d;\*鷟ŦlQԊJ+X,i?œk1P.>>2?`xH^~=@oVlJDe:mƌ/ZsVWd{rj5coI)9z#,/b3fk'B,qɐ|]-[܈`h?wb[pC#t((] 4YuI|sNء5%1l|I-ޕۇ0NX ]d 7԰Y͟(;(.H4"ЅEsV]-Tg 0rB,᠇Q-E63%yu woFSYQ=?Vj[SJz >T C[hS\t6t /FOc%ŻB|.PN*c X_%K\h߳2}9(;Mrm:N:ǤZ[:2Lg޸T$ZAt;-ɚU$N+ 2{0nAa&h[$ ɍ3 bPo07S.@iF֑dqEN2lD Q 5.pRUꂻ%k~QTCxu_zq`}59bNP7_Fv̾PM椹Y` {1h~@p ~< HHhepE%hgmRUWsKC$ ]oZ\-JϹvynDP?aQXs&uqQ eDlu0ʵ WL֩Sh{䒺x9E1ý4tS\,úħ vp՚ѥ>Lqko K?2#EHp kRc)mu)9NMiODo@1z Ϋ E7=8^h 2&'Bմr".Qe]#X)YMJ SJ\bĖ'po@@\6!! Urx|!}7 noqmr eRQ܆@7LɅ2q(FN E "FGvTϢD;PEEPH.f׌nd>^kE!s?į#4{Wz'mvV1b O޺;i:f Qy%ic#'`Z8G-zlu62)lΓuԢ6Ћ,$_U,4P|" P4V";%haglK͵sѯ#;}.+ Bb聤F-޶f?q o_)#܂7T!7% vӆ٧5wB.0N]{B1a=CN;lyMVc i^;I0V[6t0?{ƻٖY=%cEk2 G5n_9%vɪD'FDsL&";<& q"W-VUBG|D|$cY=gT=%Nk_0 rn TOHڂ'M]I|im/~7v$HB|*ϗ =I0/DNmXPe IfUEoYBo!5DG >*SLg '>gh66p.nx N'݀«wͭwZ@_8}GȸeYHwСaםlҭj%. EjIy0g)~4v*:9.}D[ϊMJg{ioDp«MZ%[ʋJy`{ۡ=o^ \ Kj]!mʫ؊3`OI=#s"t[*}FBm@ώf(&bTx'-goLmYHqejpOD{abuq]ߚqa0 ch:ya) +=J[= xgsVM>bJ9CX_Bcak=@}(xdwl2- RK%3,V}jPx J'Lu1NJ*H:ĹJJR M ;PIZ 5z[W#;.|֚9}ֱFǮbOPS@!XCǬZYbU _o'^⓻ޠs1{|1.؅rpS=G뒴rUWB sH4Β'M'*EX3P}71wـB68H 鞵`Y?*1fbЛU NROpA*X6dPp ?-#TT( Z N-hݤ0kUEPňc~PE[؄g 7|,}(.׵-Cx 6[A=+`Ͻo_Jձ(5g< !*,ԙZW hp?m J2EGen=I x塑Ou\țQ wf-qKmqlrj 2byέm|YU~)u/+% w+~ z>o&-dvIx# `ˊ,E,V35 ?PǝWFy. ,wJ#} ˦}uqy[ī6/̍?2 b4m2$IB|,{p,AzP?B1?AYg=Pts}+$6!CA~s&1D*`y1׮']?$d+!1 --mn K;'ib}Ԕg:$@.kַpӭ$RURvlw|WdqO?iW# @0 F ԍV H&p0r5v:!&̪RQyd"N! tr! YԔtFa {$EvC]y*%kZH+9gQy1+W m3 nkrf D9e,In n@P ȻлD}Pq|:)48G+p7q]X.F:loud큹7) Gt%<8""^EL٨v,DXKqXqFSh:NВWsuzYO !ops9Ybł Mص]$u1䭔 t'NY]!)c\p/$\sIMJ`Դ 巂92<a0dkXBvsr T8*_Q-G>/ig-HS ixQwb`wyN(H$ JK~f`.&@P4cV33@ҋ]JrA?ivCҷqT?C)KUjRSZ>u҈`Cs\Z_}V |xx/jr_H ~!=#x){ nhc Y\(|ϘJLFSq<^F攞Zj!O- i;[\ ,*pS4pՊ3ۦr5^T[EϸV>cn{b@t~Y/- ؖ`?-=&M=aQ4ψA7HdYju&Bo8(I V# &x{n"x'c# Ϊ,cbgYTh%%R"q&)?j65s mJ~/K|YD_Gt[=đc:ӕ!ۘVN6[M$5ӎ@F"ymHV|DӜ?`EYd ̿53n?1LlkmtX^=W՝o@ dEEHI9Ԝ#ܴzSKKx ̺㷪>"G.nTt"ZT(󛦆>Z1"Џ4MjD+w^Yg|4F"9DIE~>kqM]&:g?F@tS\[K?lFy_Ȇtg<D̔\։r(pp&d= +Xw @//D=W^o4KK7Wjz~d6 5a1B}).Fo1p4Jfquk%t.\Ha*]sXtFz;aWcr%Ї:}˖*C/8s,A%B"V.F 􇸚O+!s@> ܀ U RA|m2lP_MHL #9tX{b=ûp ,.]&A%M5` kFI7](•ί+KIQI1K-= Et=c$WQ+U}v1$FvI/2nP[FyT_ uDu'a@뛂W?u$ ]dKIeeMCP'(;[̍0RJ5l]<,"VlBdzFqLC UTaV#iirP=e&`ܐ6Y^.e\{ CVt_٣D3Bz6]~^YCTbsҕsԸfw]npUIOwo$AO}#{r]Lw̤:w eu5Zjk4 3L֧4!z?V\@Ou=de/o<Q e, Z8ɯX3uik6>seH#ʙQ'MRzf(y0e"/w9'55M\dwB0fܓ~/. [!!4zN`(ԇ~(Y1dlv1*;[k\h[@#qrc[eo+SH=B㇐Mc}vBV+RRŘA8|tʺhWqXm:xrB ǹ+sVFs͢o9%䱋('WNp@hGļb#XTr_8&{ 6$?jMGV,,CAPԺ.`Llp >PJD)Ӥ؂ɀ+'E^N:LNeDw'YU͑\u#ԙ%Z/aP2<+9\o4%XyB؈=!~|QvdM{H.Yqh]9Z~UaCS+|YT':%1DPUŸdb&n~N6Cu29񳜕^;X$Kfe0@lc…P%zT[7c'.ԫbf޲FJ43SkѰ71'яN>]xtx$&c.mVX1 PQkͩ8 46/NjyC E ?lXPvq_A5\;kI|&DI7'0[:v]7#@L̋]=/KZ :Zda߷z:EcNdhd Jn/g/{eb+A}]^l)#Y- }뤣Ţ9`d]-f\3%ҿݼ8Us,?J/=@2:l>{N(oLk, 3Dc1|#@^\ۓ+ TbCBIR zeЍRZvA!2[w9mwD\1яNs~@: @A"iVc}@J3<|lB$*;56vi7\luGM$r[tw+?U9zTi,]! klɡ\:,U8P? :kSbS\SQv$83#F!}>alJ$c=4+l].b ]$?*8ib7-c 1K@]6:4v߸΍nr'M71`TL.9[̯诎bTp{x 3mfih gQmH:6h-=@F(>k+}n}a8&?0''AkYj~}NQAWoi =1^s$O?hB+1)l2LĚt3 YA@av]Oukt'^g*yAu1z8KҮf=um]cPJ챨z/{.ѿkx߃!a5dxS@ a|#o|ӭ\cM,w[hDZ1N2""['+,ǀ]. q2d*P.o ~1=2{5Е郘U Bfoq$ϏM|6h'Ip`ѽ|.ٱnb Q!p7~lu咽V+ g㉺99Z 0 8u/y eWa]rQ!쑎jexDoOiJKDC>)ٳ̇M3bGГ! Gj% 1vqXfmZ^SB ycr0g̀ۿc^..ޠ˗è['l56@ݭd7楥WuRdRgė9rũ+V%{x_UDAAPJ ]?J^}O &xp6JImͧgc1\%XB4QZQ 5_dK| np NM5yׯV;A) /|حn} mDu}w:Ыa>?4*WHF&RЗ$VYbB2?>,BER, 8Rq ĽIrw~ymj8E ' kO褉OkFRO"efOag @qA+lɅݝO|;c*+њ/Di(X FF<.Oj %H419W4+Y9jV.hqr"#{fVlǿQ d\+;AEj  mZe$-)+d_f8rSo\n]S-UqP4q9{>^W"C2fLř:u%|S<1vJOkNHz>oKJ7 n[˥/>5c'jKOz"%w_kM)<|#kyxbYA*:q^i˾9xCH\Ǒn^ 指F+C1 i# '_?!W77҄pi&rp;Vvћ.3.'u jZM֕;a 陑N5`xQ]BR ..#K~{!o\'tIFzLRљ$L۰Bc2&%N`;bKFR'%/&d#QklTHokNyJ lևm%m+zٲr;+ܦcgLH] ƽ2Zx#~: [B1oL禲[fcH|$%8{98};!뮰G5K/XOP$ɐ\ޭ%y+jr*80 \W@;@DT" ׅϼj͹tB\{tKI AmO5ʧEE`J&nqWdbU11ahtX}'hS5>3bPraWN4s"pF*՝k+ L'q0%0x'Ɂ۰/J)$ <u$9TCҗ>%cgRz M&9Ĭ+*2ӆB5z>*:|M Zr!_63* v2sJUa;65wdB[J"&۶ol-hXګɺP*>hem[CrO7rŵe%pɛ{bO_[oஏt8.`!YkWKgY+8&9Ь 'D );uu29ߒT?kι8Z,mJ7e) 9[n(LAukx*"T*I0 /ԲmD$YS#AEs Sܐz&S &FP#pXu3TQ& ٿpO0taD>卺prm3[0\l9WBB`^YB3RwM RI{S'Em =Ա̷Ry?j ;ؔ0ȡsYf˴G~X2+ X"-ȘFnjW^.B3p.D''J-][nvG aFg&'PWO7G|)A3?㢆5pdDi<*9fXŴ,c^`7әα[~k83FfnӔij8&#o"`)sGJS_KӺo(*-RQ u,MgdW|D$-6SEqÎ}v>Aq8ٵyT}Id14/-42ؾ]t?[̕|8X0݈6V` 9I~q%W+tz]KejQ݀륉j|>Rzk =FSËi Aw/p+FtF*-~"ȫk.bYZX =u,PIf N]aӹV;ԩC` jp(d\sNN/Y g OYɾ*:Rj3lr6d4G-SFe?4{_}rbxn0[ZJKRL1ꅰơUp_ƸJtkS_c컱~'R@zP_ikQKR`K)>Mj% )=#W_ak1) C<˷3%mJl:RdGhX3 E^)`_ ')Ph8CRz50Ѳ,)pͳMy&> Nͯ܍hA,mb[-Cr;{V)L<%6&`H5<*W|m NDyr](E;=\ ΔgZ ;*@텼k_i8$gĐ0o>377ox!&CEv+*]W ]nzbA4=K1.W~MIYRxG_Ln61q-9Jp".2z QgÔBUɮschFh$147$v;CIȶ C5\S]"Ub 4()y{VqaM\lh$t=ܖr{57X}C Xx}+g C+D߁v)1>,Mw8ݩŲ,3$*Ň@JV%ʒZn.-V>ͭ5)QᅿG^!gM,HyӠNɲU%SܔU/}`01Uu]zyō%2G;m~4ݑӢ ]p/zD-0)uR"z? moA"@FuoLnϗ ƻ. mӡ0zv(@s؃xӷd1<=f"sx,d;B3a6ljT3ɜEe2HdEBJȨ1K=13Ah|5Ex'7 _~|`54_%Mgi]9r Q1Lj6)V;ʙgpk0ZP^+fɪgݑ7MZJ\Uk_PV[E 17ML\2n4y? 0.TPaBD_o /HTIv?Nt@dDMԋeVQI9a}mC3%-&zYck9&ބNi}B`h0ȉ2\7Yni~\Q>l'FJ)g@w>egvIfY#}6~yrZ7ԁ´jMxӯ=MDrˤrhX6Sl8E8(p⫦eJI^hA!W^:f>)"ψF+]i ߁Ec4%FGI,!%) d/#m8*:iH6ZhciώKpʤU,AJ޳*"҆Ӓoq] F _4-)ـLhgRٺ>U!7Er}?w(̱͚4BO7qxSIz`Nd241rڟq՚#V8QM(X+\e|А%s0m> |]ٵdѬ7m;!sg4F%piW~o^-׵BoEQe:uφ#y5Q8y6Z Ʊ0X[knB@08٬EbF>l5UjZ~T[?tk]Q*u,YZ6.\,AbH 78Xcjiȫgks2K.c u?5`iG^&tI&xp%.l O6ByPg~߲ y=1dӠ"xWt??380=e.Y(XjNJ+O.z pG?r˛gjARc+KtnOr>՞CMO@oskŽ?"B qfrU+% :pA#Hu;Ļ3Q'eɶϷs{u]xgUߨZM*3a<*QMJG 5*7xB#[*GMia pz&cPN1'6z͊C# mTb;않{͈p7SvEڣ,x'[J_5gg0aUѾpF+CXS81 hD8nmLudY(D TRJ$( &-Db5 T%yH~&/Ux5Gp=H++[[مX<:࿃e$!?i5551Z=kϲO$[Y"kNGǐ&6R[Y3U_D)yW0XV 74<8jZ.h#p EF΂e@\+xhsu:Q_Cs,X}c +Ik?}I$J s5D0 OT2{zT%(6z4Wqp;Y+Hqmz|3C4Ә.0CүۨXؓ)cn^Mg!kl9EGX͙7.~"ҳɕr8h;)އ'Y+srξqxX i}*Eu B"#= !'R2|~1_o9>TЇmyeZř/aaRn8:c3”qޑ-țg'F^o"q/kg=a+gOo3_㐜i|BQLU;gzxb,iPw,5n>6*qh7܎)% =9 Kǯ92 g}HF02X%iv9W@ .&҃Q^T$i,XDa9Vd%|l`37Z1cgcksQQd 6,zfx321'Եqċ4'G1pUuiGf6CTw(FcyâF|NLO2 2Y?r{bChׅ,brJFn ݮpv]Γ柶!6]W$Fiҩ-O?ӤZz1jFj#lQaAWPaw4 a/ lY Yp^g S? n(!j 4zF@+^Cv 77d̒GAM*!4d蚴H;$g׎Z"˜#ffLVֲ= \oa` ;4eq|`%AjE-ƊBppbH+˸7]ux~_]\Emu2^J)$1_ F21'T;sKT&y'%6M@6#UWe1Kɸ)k:ShtzMdHTg5 `+͂w5~Kbq\Ajsŕ.V^:aܬJ0#NۋG{%VbPuo?a&LRpJq(WtM o+A&:~nSX'RXT 0qi(\AmGI]7?!洎KBomlj7\'ӫܐk6j#MGM`3^stDʛ'䬶8\[d*i?'|]9k?\ :TCA{R:Hm;Wjڮ<"AM(#.['rp`+] p8 LΎM(pQW &H띖Nߛ{lj_Iv۰co 1m2~![$xMqa@ ݣU҃L2, U`,"81]5"8EN<8 &-i 2 q:1^} lFjx0WψOa&Mg~OkwwH>6"R6AW)$ *LS}),yXJ0O6+2F2鶓]vˍzDNiM_ %Z*zcnPWdzq.n 7\(ev8^ $k`1koB*t A1[~7C8*@?ۧ]x|-PD7]W#kǀ]5;N˳ F!!fp6gk ᶮ} rIyk-i/F;ΔS Ŭ3s,őp9jȿO#gqecɡ$H+\$=ա;8ڰ<0$X4(]P݃DX<<9RΠ/ѐxfw,%ma1gU gSh<}`Ju;O@+0GKFv ϜL,>RO'>9r E?m@(x;DP(ii9mQi26WQ84'՜Cq++9osiuRo*T:hcT a7Ŷ Sq=^\Ҫ%7|,/㲮6ڙ>=S"y~0T|'[Yig܂F NJ .*}Оf&Erw*&G! p2=,+b΁J̝,.2aQĤrxkxN/+s=PR5KorzOVّUI.#F\L+ =rmAOOC.< O8ֻz$ ^ec.IZtIAʲG>l4:k9H6 |BԆ|oyǢȗ;V pU;(n?sJiHnG;ŘNbz,b.p{oRNiGfտdCMV?iD0{1퓄fPSSt1L_ZRQkthJI}1R@$Z.pi\sPc$/18brj2Kz)};DՔZJ~uT(xߊCW!N@˱`swIea&UX#!u`, 3/#"h2)Aps%rHC,u|i@E"(qZ" Zro7ܶ5cnf! ׯ3gn[`.]+o)at-*f̦-VPUfۦQ5Ç͔>^}|{G&c&JD. \ XBIdSpS"Os:un]Fz$_/œ}+^-`3D.݋+|j gXoP7)wC2"G<iZoUp>ءa ~ PB/XI'-%?!@Pإ$3-g3ZމkZ.Na1(Mib9[7\ Zy8S$g)WM#)a&eIQ?*C`3gUPnUhe[T KE~>wt?W<ζg57T1.rfa~3]ߖp#k&}! $fؙ_oP-C~'Ш0'QQCݼr;u(OpR Љ}ܵ"@eٱCPp%y|A4[ʎI5;_qWSO!6~%)Ðʇs߬[ rgNHfgd"#|{t@*JRȌ#ϑ+أ"Hv!L-Q^fܧX76TiqЩVdRLs *l xsH|x{ħ:8`ML*ڑP+w^)K&:] $S) &>eQ_9_rIoI {c+gZtfH{@M42L4ܯ #[RcA^B@x~jÆj#;9X?HzYZ`Z/$|j)}m[-gSrhS1vq#Q?e_R$x *WGڜVfWǘ Ӵ/Ⱦ`ez MK2Xɋ{x qT?$kdBJ*jHv"FFS c/5XR\* g~,]?$FS4N^N. -i{G Ud|ϓ]:aAc$iF%!usx+@#oӛ㔢)Կ TK|V*&SgVgWفumBhoȺٯ[׶zƩ2\:fjL9DVՐIX˺rE& mU-(q'f}VK.ME0Ěڧ 0F51* /*yzw:LFn^>c1(bBUq&Y%喈N@۷jghSܬEdS`Ft40O{g{:RKٗk-g{i%!Gl&E<b<2¢)@847J`ȋcD? UU- -[]Vʼnq)" #Wj\YxG5[uT í=v_Q6$XԛSm>xy"'f: JR|}(MW@˨~0Y܅H~߷GTeOJxE劗IVɛ̅N AH=7sAAάZҁ˦ci |D8Q=&wA$Hِ͖oq;좆 D*)biK,8m-N8aöfegN>4\\zFWFkD.\Xѿ!uQoCG'F?TFѱF/E?uumaEV=kkր9游lS]n\uDyhǨ)T3 UE,De8FiNT؁Mo_h H(Y,Eljl"ؠBk#h I J Xj44̐ꃢÎCQ}wJc/^vu^W/ޛ\*E u-ISϻo_ Y)H ,y=vҰ#U=-xs *);dKAZ+ݣH,/=ix}y- a!$e!+"ם}f!v ܝO&&p|.p0GGHHк2?nC7S\ސpk=Ѣƀs:l55%Rgδ1>h8ţ̌i/i?Ċ[ ̺%-JDK{Hf[7im~Φ }}vy:৓4!|;]WGö,9LɒF7c-F=<q]<u?S4Qӌ!%f7`188쑔\7@=Q^-ϙ (+-v9v#PysĐU{Z{G'BD^ֵT;7bV<7z(dI5KՓ1Y>][mgN~JAI=Rz\$m#\ZnXCccXM.!a[_7aCj$} ^Kiղ22 ddRO9S vA #Q;XgI^ŷ&/p11Pzlv*G $^/ we礅GZ/(zdӨ`fΰZŽLS'*Ӯ_O|u2r?F?<м E&./ηQx %9NJ׽N]F݄^g&-;vT|3R/jId~£1 BhQ[+’:zay&3Awň)MuWSI!3_λJDu m+ETB xMicOr03 )c1p(Uӷq|^n!C|%@_vMR=g9%xAD($InXItW7 `lh5KĤZA6Gp(QGd#bH4HC<_.!!}:l"O-?iXÿDFNؑ2qZc;ˣǹ{ nIϣE$!1b0OO\`;с1NjB }Ao!5c~e T{-RJŴ'~%!6<+D\[-Y?t\b(P(ju9 U/2y'ujƕ32h-n ܴQ;pwbZAjyle\c)'IKEa8/e./PT]p QɠAviƖ*Me:VS+Uoc/bA3|`鶈ZUQy„|LS¡H 4碝(uFe-`/ZoucB֕ŀ0 m/SĽ'H¦cJ1hXHx=?P g3'6ůIћso`T1,RUG>A}(=<y%lkIJ~F逸h/sCZqci`! 0ovKa^w3-fx|q`jA{jd@<fNo 3Iӡ-{>Q3v;POz3?82/sY.#;*ua!HF^h{3P!J'j4gse2mR~VglfŅP[V@~4%  -wc>EuԄ-a`R 4 ոܫ6Uq}BRhK6v^E/ʱTե5,(pd*tf%0Mnj0-Q@hh!x슉Baj}MfMb@؅LQ`Ñ#8ż1Ą9-gp0g&ɬ;s@nvdE6U*6j& 沔ܛ_hT{x;7Q&N1da#Oߙ@raH෌e&wֵChҙiSQz : df;Ili^ zy3) oTޮ^GDD&iRNİmMW-Es$LS+~`Dd*: T:uq!hjNdI9oC3ЖNPeCoޮ͸4YG~ITUE "*-78_Sٟ^hI7Hzݘֽ~IFxj:ڧvUtʠ>7⟷G|R-tPR=GcMr:0}RQhm)!)}6 7; F$:p"T5$DɽAHGmӻtiw 98]Q+- GX Z;299LISXGT0wvy] pgG "To`}N m8}:q;x2F<J"aȸES &q H:=vKTq:3z%YFiRCxPefbgA048gEk(zRnȑIZђԕl㦵{|t3눝q8IosDxpږafk)wޗ(Wk=l@&# Ӊ[օǜ5%֌(:GF:y?@)I\M~!owR3RҢwޖ8KqXi ?%ۋ `JcyX1Z@GԵ@s|a# =%D;LtNF.QcSƸ+M&h\gMtG/W|#cȇ,%܆`Ya1HÝ#L1.֮^mr:44-YIO6Z tr%(WMNg#͛1:^8QD4iDJ WF^D2+^YxB-jp!U$-f?sk0k sIcl)g!x͟qk{=Cdyܪ[O,I5n$}Lfn_艊' 0KFA QkҞUMPzfhH GTS땺`AR٫nҨcv9 iRMa̳nԛѧVM:xI0#;Ān%Ou-Y{M%8lCteRV}0ᦇyR oIQedy=?$CR?Q+\VLf#*拘Qe+E&p]R maB|UkmFz;lwR\ChoٞQ~qNq"/\Tp4=\"{_3^]@ VX#.\aц%5~^ ں~g4Wu!O{LoS U6PԷ^qgÌ~%ăGBY͠;z!8z}:N_,#ZƬEiYTT : v !N>y& yErĵ؛ ;Im+dv@&Ê*\ Q} WZnPF[Q@)|3]vVc%mA(|v9|;6 i?ՂA=Ɨskɀ1\qSڪ&QhllFr(tM5U%e-\-b,0N]}i"0d9n;Eȼ@&6\8.~oh@#x973\3Xxgu?? Df[]59H[؟fUs6.Ys5M5m-YcA}t wFmH r.ism>Kf 24B֚mRI3'jF7p$[T!-*IV2Eh;-`_k|, G*$G"q;SepֺmLJdzԑx g!jNdh̎/c2/ewZkV0bKoh@RB?/8i/QӈiX/[1] iyĐ7Gc>U.Hv{kY.IZ`+-Q8.I &Q(;F'w zn,o80- u!"m -R#`i:Oa揿Yɍx 7lbUQj#{*+L*4'7Jg4aچI7A2*̗vi}H0pyr]Q/j@kǯ}=ڴ*LZ[0|еPǝ8s(q3rub҈ʶΆCR MR@Y r=-JgT*fBȵ!L$n9HɶT q|b\;!L4OX%/^bߐ?̝al^ll.2n{3|nd-#,rrxɯYp^ ^ a{V/HN9$Ҙ N;(." w\v<6N8Eڬ%Eٟx[?d#9TH,uvu!(H9_d<#<1rh~Q{QԲ"񖳫91&o\Rl"8M)UOOtW8-H%tGU ijeer]Z-ʬT>?A (5G\;t oyJ XE{GU[\#I:ޮUam9L`dpp^Dpp95ڶޔ_8\DK (фHO^VKEyoUОOK^k$#VX|]Ey:RmswE\ȫWrԬr^:A=,pC,LYelIٷyO)+ǁ%X,`Ba֠Q lwy3TXf@}c*) Eӓw4*̒Nص q96 9f^\gڝb* Βr }S aSY7rFE6$Z0$ju 49{8+>=}P׃m>gc嗋:\V$m)YF˛hщGs#$:\v<q4mwFq$fsE-WdKծdID(.UA   ;'`Oa,5̹죈q3jbtho5k."I?ށ<ݣWm!NR2 2,]2 5Bl( .%qQnLl3[bKѝ.̋u NW;/`N8A%0XxF-1PnCh;L<*jJކW6mYҝw"^>4ZJq8oU~;ɆxL;-ẩT 0O#ASO7&ٹ#fvJ,-:Ɓ,K׎8Hc#XuC,+Tv6#"`a6 T(mnQkg6”2-Tul._`} Pv7ӊRPŹŔ OBsy\$ooEK&wk,tש* Ko /kAIcsk+bMʇxcoaM[ an k,~#&ܑZ0|j*QKp۔v0^5fU+cIJq5DqggclK]lyokM 1q9'_?4D$ 1vHlAscX:[WSzTY0O1|6~]l [һub|tyA,pwWVxk,e?B\Ld]lw8;]DāzښG][|=Q7;@';fVIp<;cH9D q*S N?!˒Wbg)HA$D[$jq:bnj\Um˒I7ٌy:΁iOC$ s8mY,Jzlᨀ}ܧE64:\F1J)%}5O;7 <$-|!& <1._B[߇ U%V7̃U=5&,vnhIo;ྜAnO ebp=ѳbNts4sn"F9rAct;|Iʟ wJb^"g>! *{w2IZ*oKeM2QZɦ=p$D64Z5M Z}ab+V(,Ǽ}`g)'ƊHۭf$+ubr_Z-"}{3VT~ɗ摕d, NM!`n/s:_펷QG* 7,z6AJRIn!6$u݀[{F`~?tڌ:< x,;Ѧl2}87Ǹ{H"g14>!{Ue*-m`r@51;iea˖ b2ϸtcʆE#ō<A3+[*Jwzqgxg*_gt]u-Dd__;Y;q-b Mt*ūjI`="at5aB,6^z] 6]BM5괕fw?m&"SRy*L Q9e8[r~XMѐ(K0&| .Ҡ@-{Nlo'^dW^#,bmm|UO(..3BJf C8%~k'mسS.e@h!4,ƢSOpBw$ 4Fa44zKnV [M?8ET"}&y}0mME˺JtZIvmyD꼿#B?XL,\yZ(Gaq jh3dZj"mj1r5BWW̒/6!G\m*`I蹈R2G$8qywZHrWGTvWR6R^FHSS>_-Tn?1xu d蚍 pϩV`{(?_"S1kqe.rvB\v$43TVjLE(xSO3D|U_mZBN)!R h=FVT&*}8~#opA\QOaq]bsww Unw mAgTRr̈,o 4rS%`D ?.t UYeLPXERc9Hۤ}+UQ`fHAg!yٜv@a%R1CX]e\)F+#m𳎣Tpbs2WT:?,mbz}u/f&EQ$\^D)}GhW~b5;&g~haBhE/GQdw(tBs_{2 Ha .);ꪦ _ ь;+]]C^ dA0杫n/0͖]ءg9i#`2m\+ҩ}ƸeP̰CEUv^ DS=YWusb c4@@,ҿ5䁛Ԟ-wϤ+/AfX0CX2蕳p|ӂ'O 0Hou~9}v5oԁ@;4ҎƔen'V? %Pm@*KA^Kse^ӆEp:7h[\Dte \럍xrB]J.HVU4*QX/C)v+r\*-M 6a}PݨiGgCGC⼄P3B-A/<(<(/O(}ZBWklQB`1t5TZj [Pc hvf4e?Sv+Ʈ1b`au;g瓀RDv_\# /ž|JtZ!Du%POQ08طh#c*z+*E8"{b'8F\rš;E_uOˡtmL ~# xZ:4"E {TgBm?Q?Gv4ob HVd{? j4&j{ i(1 nkV `X%--;YKPfH- pL@|׍ <Ð˥^c;ܔͼ55*?fDoVI~i;ԡ7oS07}d+%3.@iRo"nz\7 r&Ü·ICݝ@0Vd=)iQ:] *5KA!/}OPD 󻦔=}|npYq q\?^E3a3 :A'Ȃ?ȥB^Nс Vr N=^x À6[P >㤍hJCa^ :MA:i0p.~Υ@Hpϱ?Tkv%[FSH:hIy$:ϡlsMNvY4_0~hXn@':>*΂v͉+{46*fAq݌I:gS7LA) ]hjQT20\2}hi@e~@cҥ2o2͓<oyEղν|CPHeUl9_6 ˏbNT=ŚPi]XGA |\ +=ǔTiF};sNF[aa 2Tb0^zYjvNAY(n9 WI'`@ |kPw7FږL(f_\q~mhV'K^Ur" o/z{iCRI[eBGf.HuBbT(I]VA@[,C$Wb:."1\|ܵ*_<@ο27xJOɌ{V bBZ0-|.ʹW| cMsd:VliyrLI{>gU8a)r2ǒP]5Y m2Cr+!\6:mBr)ZW2*gjOj`F:޸]5I?$M5,Y7C#Q'Q) #3iiSeT$5l, ̍^Nbݙʐs5̗F(*4'$~dcmz5 Gb͑95bd<rv昑$NXOM| IU&Fd52`dڅ#X`$GCv)ԕ:V)PyyJlaNkSEc+9)A%qH Z([ Ѽ2`ߒfRIpdpEcoP}:k7!X7:iq+ۮh x,/OLK!q;%_; [Cӣ_xd6[\E\?+_ge|u "FBSnOU'j@>-뒛}8a&3ǑljTA A3 WΟg`oܙ',Z{L;&xY>V6# wieAKOUkLo &=,Iq=H鬒s1ĻSjkPG++#r`.)Ҷu-*ǻC[9,2osr:_x*>~`Md(/*);T` ?Zyx`L}C*'.s0 Za71Oe8=p@'Q̀-/f/n\y^kvXuū60ۉTX˸Z!_Ȍ栮:.˞C-4c[03!k_:D6 ~ذ˽e,gyXih%խ`LVX"e0ض's̷+N/ F)xį`!>Ŏ߳G0 QA?ɂ2='ǥoWNGd9 ֏iԗ4[h.셣%g\1ro1W/DXTԔlq}_;' @;)^Mp$hp|`ͩxJ *#]&}wg..N&+lC[X ?k#"K9[ơuJ{rx,A/ :NvͻED+t'/FY45ÅJlD+&B} @tŧ!g7ME\M]:iW4,6 68n!l7I݇gkîFDo^aV|Jl}K4 ׇs,_$8RKteᚉ1[k7O0oW{G]^I˜ED[aޔ3q9A!g5~|@=cRI3 $JU9T*g|V8m+-*݈X()X`;$.ɉ-u3:V:~>ZV Z%3HlyZXSilvZζ{ ,!at.)"TK @A-#W7hv9u(:yz"eO=;Z[Yܠi їnq&x>xY)VUT{D$-bjal[N0f'H_FwTbT{ʭץfjjSods'Y 3"}?%M:OrI,;DM-Fll]jrdi nM-jV*j ë4COci.bE%]a.Z?Bv}COOzM4F&N֋skD!6p 0ь4I;s|iz,\䶰.L69_(=o|02xX og1HF'|/toRk:"dDhkSQPXnj> |!eb: p)T#(Q&" `jly ~x.# % ulvp;02>"ű ^:5YYY?U\TʂN%,+`s[ߠ`#t{n|=ոvVRc-ֆcњgt:>e\Puß +Iƃ\:q+n4ɋ^ ѩh.!0'X]hU9-uP3 80Dsl6ǵ1"P$oJ#V^5Coõ[d.Ve4TZ_5/,-Itn Xcj7ӞҦ)f+^f~>fF3;=&pPϙ2= sT?YiMɞ Ԃ;:YM6|8Y$gKȤ {" y2XN_2@[ ¯[˔2xW.O䪳qmCrUV nn]`M/L0ۘhѰJU2]Ӽf6hq_ b#|"XXvR0h Pgˉmլ~TJ K'4_}#gT`=RLm ?<,A$,GXФ>Ljx|rC*ҳ!j#%7ezqqYiA48h9&n"|=Y1" [cٺbaۜAvU¦YTsZ61;2.I^`B\/եfLʗ{.nyGyj=WS"82gdR6je8UqIVJFS#U9g9y\)#f\.e1:Ek3T&|b %{СX;Cʩ^TW WTA\YE;?ԄXP&?[2" ±$Z443 {tiWVh֚l& ١bQLY X2[c 7M?QdDs!N>vX%hrdS÷GkC{8q:܏=E/ " c u4ѻݨ*_ '2du4~:ۢ'(s[ $\?U*6Lڐݙ- =vR/g8rh761\[Pdyx;A+]dd~SM6#y({>gX 6Xu ?$|нid֔W)^W6U^+Y6ڟV Ȯ1Nak&fUYc=.녯t7`DT17~׭YnM2VڸKH __ TYɤ Vf_~1t'`FBv1l0s-]W<N+Ūc(XiN8{pP3drx_Js}_UH_V AY lB<\p s@v$(:`NHw+ܺeSGԒ/@>w\sθol`&B>P2}~u gl5,Az]*tWlmcGk-d1dw|40KJ¨l+wzŞd&#1|zAI|72+Ӵc>g+et1[൮w3+9 F&,ZA.>W#;zt)ٽ.䮷bܾw'VaY4R۪{^!Sx(Sb>q~P2Bf4lLhq'ȿKl>ӌyp)MZLɫ؈p<%Ӷ>ElcT1g3+H5ـӁm3bhMi\ ))^TX5>rL} ,($MVJƕFyZ:/ΘdlU bUy;C8lki Nju-شLsṈnήV:DeЯIB#w_eF7~Rj1+6"Ȃq+g! м= ֪n_HPC<*ʒ\u] LK?k#:Gtn.T$ i.qھC >K5{˛lo`Uo% }2u`Vb04EhUseVɛ5O]"mUVYq5*g= t4}0M]SVWH} &|")q煽:*eBOmi\+Sg)}.X K# ]fvpZ;=xq^ŵ՗Eg1Hw+R3ٻ{- ,>NL)b)m-(0OlQۭO|S \NHYmL0Կq? ϩBJiUC,43u\Nj9 /Y!}1<9kcMin[klhћkKE~:+ŋ*z F]JLro'78Zd>A>K韞qqKM>'s|2D6[V딼U0W⅙A+aqpI_ ܟfᑄZ1J]S&ύ#ש]p$,1ӲAg&wh% ײ#\#(f!D8/jNMgVi}(вWs݃" L"ā6Pdɍyσip~z3Dy%1nQ$5w4M']9WG}+k#z.Q qQ؊Acx*<^6#/'IFHO*R(i7ٗ@*?$ \ ޭ 3"jxsh8)cԗ֕X7'iq\K(hk\U xoez9B,4Ia-*[M Ge*nCz -䒾cs @@r~N k@ p >YtfGpb4W:RIO?ziS~o~lԖԅ,gnhaw}>նho~߼ ܤz.w]~L%oZ?"H^`wtn$N:ڗM5"TF( gؑbZyAɡIoPxsȱ49 uwnS!$eUkf+Qlqbs&xH/7_Pk>/";a'g+_uQ.x n=ł*םdS3fmj<$~e4k.eo7ʺ9R>ؠG5,l\ACMʴQ= Ͳ-Y0]I/yeNz/pׯ"Sm5h5^gq52A.a;zg[Uמa,JkMmkq+5D$!E,I+rwvc^,Dm&CtP$HIH嗣6Ǡ+OB1pTRq:4 K8ܷ C2 ^ UŎM tq`F 6KR**H^fth Ҏ=uBW 9GOע+@աoKJ,JS~QBJSyB@[_켡lPF[/ H=p|o96'Ln ^t|U[s\H!bA8H7݃:>GQb)Nt'u[PJ둲p7j)R*<"BS=̅g1@-F-}!1m`eF>BgnЄ%e؇[WHXocFaSj:9 W;>ļWv[R"ߚkɛ21w\Hl[H8>n@4<ˆql𤉇}C7gl(B#شz3Qn'& 6M[Z[FDk Rhjd{`\ͻ6ަ/_L#P ٭'1$ .R.-RHeab1,.E+/lښHd."1( Q F7 XAKI n3b:P ,` [_"5QgH+{Z 琢}IXՅK;S2ioӰXw$ݩҩS+;&2Ƒ;:vޛdW̅%T!⩨:Te8#`,`b~cFӓr|揗K HM X'f^2Ks4nbf|`I|+^`'w R]k{Ko uj5}/0>@^dEvYf~4;8q(h'BbL fcð_8qD=cU^jtY`2ʯm-1" `疎}0ۿ_RZy>iXbz"y4(l-fcsqS602EPr=?7Wo1ߴZ+4 '}ZD\Ƨ '0RZ E14q48A*IXlEHZ\&<Ԓ^> )wC_p)QƻCHyv:72?8y!޲-kOh\ZgX$Ixn$0~Z'ٵoX;2)e-V0Zjs:.t.D@9`A|[Kb2ʏ3f+딵|Cz҈%՝̀-'Z1'QxjOLs(ƣ& صg`/,?)+nzBC9$%^mPGX`Kuxd2XqO.D Lx;9bmTgxIl:=Qsc(O*+QT^Uz+gˬcL ' ߍUPTS}u#^4zh P8"7i] Ӎ_l>CTU/Aj$'#-?۪zoZSE;O2" $D}+:CVHhBLs;la8;G$"q9.205/<~V2Q[%EZ?_lJV"ysB!<'(N!8Iw,}ҾG*E=!@#d$RsNQ闣' xGKR$9_o9v˧IFRqrZ ~IЂmΫ*h 1FYF " $MYcD2GvH%yMJ?KKQ> b#PZrPMRmvϰNXHk0gK j_Tj=7?M *f[!CBӑѝ ٔgI`DP ݍ}d#Ȧh"e )ѽRjU'ThȘ*݉D`&m"-䉣].`*P]9FG e6,l%"Yʸk$ӞqwWM~Ҏ=)h~#'^UUq}tK\BAwճ[e2zˎ,Y/| n uK׬"RZ;R+ 3(b ĭB͑lK8: <νLpTKa!%Sq\aŦxȢOl;ҡD=cɍ唎-qASSqNo2-NM9"P-N \sNeQ* Xݧ~R`Kқt 4߁|C*2msR"﷑^Cf|)@Mk/B^I1GXX1ӼLL}z$*+BHܾVu [tS2D߰ rN䣨syzQ:Dž#YY ;ݘ(Wq)@&pXEp2H0YJ o>8DW} ?:k ئLsn,s3oz+կ`.űn\,r2}_WiTK[H"q*Iە)'|G{wi\N1rkiJh1RXpxR; 6sHO@MW|XWf=~~f:LizAV~@ `q.kz9TA%o"Koo7,*1d&%?"OXkU:qV xzSIAexۉkMQZdG.R\xS<#v7#jE[&׾9OSW} 'I^Yq +Ώv=N3-v>zk~|LQO n(\m{ޜ/X}2Q`KSJviE @.zL=zb9ᢹkba}\X%-a&ʤUWwfA^y:8.F&_r/9wΩMjAՑ (ii|xc^Gef@)fcBFFB ata p'&4ݮ#^ozkP@e;$~'ܹCH 3mx*r7+&F4g4 ١yw E|JjL`i +E# 871oaY`%!b} b8oa;h+ E:Vin%gR3T Z H# Co l84cm2a_d7>W/:ǰ Rg !6$R|( 4N|IPVi?˾ڈ""N:'{P6hD} \NN3$X =ŝvUȐH#_ˋկ&u~)d -’dуE F B;n Q<_j;XRdu{cd>nv36#[}hYsCqFadAGQDLDz;JohE%Jj4~.bG~%@*mYhhՁk!z aGGFG:v_ם㉮,eX ^SMnH9yH fF+ %Ge(ETHW/|7|; p;@ XQ0@v);^8-xS⊈o~t4yyui$|E ʶo(Hurn wnPclgzsBPJ9diʩO .Puj4GIӠ#l [HHħFYkg(dXp/IFT(|QssDPE,oRTirV[ej&6*=#DڞY!옆!HKp& Rgۀvڄ>TBlt$ݚNLI &Q۰ܓ w_6= 0ɚ]4U# 2{{{7TK͘T wnN:1gUkD*JE +B"$ҫv窊%q0l#Y2aeЮ Os_ş=<4,2uY )iɟ$y&OI7&uuGbS&-sss kH!wO"zy=I(VI:[2u3#GK [|X9ɦ4b  91H&4Q FRO}?%n|"V@%I4GL"쎒O@ƌֵ/x,g?7D؂1 >V 7r/  (ț&"@r{Ŕ7gicͮKU=YCz-΍E̲Z(1ZɀS u˾>g m󬶢:jQѻ*i{fϲ>j&"zi$Uؑ140Dz2- ٭ 8Yj2!9آAc< e #C {QĻ̢bG#g| z˗$j|H5x-+=4/c3ӻ%67ѱ/ []&J:r?&Fw$&:!jBEPqĮD{F7(Lo HWbv`T;Xռ8wj`ƷnaCE_[ YCHS* Y)Gh9YѦ#Ч †RMG8}\%CqÏѣ2a \U`^}bE7H]Fw6 ^CڴA$g^5>"/zHW 3Ĥs[{4VK/D.x fL^v ։Cŵ ѱI}L@+GIur,CZ..4TJKȤnH ^ ߱2b5 X $o'2)]G-Zp=f.y*ެ!wiriwiֿ۠chPkzFFB0 Ro< *OM]G{rFH ^ GeV*&lk";c`6${~Lnn Mq 4^5^2I)f{'I[ܫx=1/c*u>ݏĨW_>b'C2^sQ,Lj 7z) 1Pgꘛz Y LrUZ!R=Cn֡VDn- +#yp`֭!hRlΞdO_OHe@qTEkP.U~zUZ80直>pL|XDz*S +4َ?7CBv뉷.HR:;"ѿqw /aZN@ ԔOT}_jڍV&k)?ͽy_Ers}FRM"Pi uL/ 샔೷(Ip~: 4sqw~q@wbn&v/1b,4.pQf%~}P`X)q]Qռ⌏ahN[0͗G^ǔ8N 2DQ&EhRC'e7V9]{P+lXb+PJ[zc;dhTg]sč%Y{#g%';jNV|;d,LPz<=??sMOZfZh%B,"|kj(~ai%09Gsνs )"26I^y'pM0X}PKA#VΧ@Z+( ePsI%SL~c?gAeK}D9mN>YdxT2?հփ>VYȠG)'֏7뤈{%|jF%t @[bsԝT_׻k x-w ݇=%j!`S˽4\w;98 befR\4H~T"D:,q<ĭf3GΤ){^εF O6Ӫ[='vv&k)ԧυke0I~Ŗ`VTYl3#ѽsm}b6@74?Iv #C_0QQj27fzgqL]E? BJ9r"8M|aD<1D@TfHs"#l+U2:T0n^sAUuoԲ%|NnL]-JNƯilGn|my뱍 O7~oˆ8 эP *? ؂d[(v7Ś"]k^$؝bժ!2`_58KIB*j:.!Qvʋ>31UyB~4yꐔ\ Lq7 `U|^@p67 3G{i rC9tw8ꨖ3(4Y:WI3eN!tT{cMB}J] upFӆRx+g=ξ/KiJp`f4,cnƢ%FX6kIU Pf/Lw\~d@}zs'C+zt±BÃSe/A+0(u6<>'`6{fc±㰍CSَdz7o{m( Bn ~[ {3\pI>M0 sn6I\Tt{O|˨֪j *,aD\Ǥ+> gBD(:c p껚nl7sue|Da2r!+)> HwdL1\RƼ<ju{"5,.>ӥ:+?WKiI_]s{ӡĪKO%FOo~j߬@#e˵6g|,qA@lWcJu!E_Ƚ@EfNoe1Âq!P寪~cGpaG;K[ɄFK)v ,<} a+JE|gt41E '7DD~ۖue벜H/pRX/)Ui3|P +C &}PoH-FϷN\K^N.62Mf'‾*@̺X v]_`6u=Z9~oQ Z%jw״agZ=l5sD3Exc΂Ydnf{*q| gD=i hN  NQӇ"Fj~}RER()瑱AY|ݔp3SE~`Rjه[IAMq}f+F$iOE@Qd`KX!vxAzGqqgv6#lMZ`j+-UPڔ*C|Ǘ0oUiZzJũsgMk(1amr^Z*6t 669%j;FgY\I渱…x>U:S,v'%”k"nI0^C$nl9uD+*4\YX';+:Tg_ը ֘p9}5T?:oye@9IAEk-jzڂGcK|J~xĶZq(ˋӳta/у"| ڛ.q[vrm{06;$D25O6JA1P UY&o0[rἱ=˹6PVO3y} RTS0dY#|y?U βPx@m~ &sID^BIOhalRx,k*5$&@|FRvTTXpF6Ʊke;+73w-s-I>[74ʍ#u eQ^D;?b>"a$ߵozՉnSgg[=ky`Q]bJ/lspGe9H" 0T,ӰoMdd{e!U&C#_\(꠮rΥ̮GRp>x~3"Q¬a"l&<Sq~..O_ߵ@9t0p` ]z$+|c~|]Er󌻪?dPiܭM+ҢH2;FmgqGV!@&1b/7Fic!Mm#&AseCc4"!.Sfڗa[hP2uZH2hjS2yl%GbDÔ}xLE)* lXtK^"=>[8^|CN]M;3d9BAx sSċ@ 􉢋VtE} w1by%INFD5ҕBqO0F]dۍ~W{WZKE1oH;Itivgj0I >@ko||~ UC=N٭UbYcgG5EZqOcpAYoĒu"j$p=~e@B (K;tۉҩ TeΔf9C\DMxS*TFҦW8|o!%\R 2/6'?ie QC;.3nXZyQbp $$h"h#37iOyGÁꐱx0ɑY-rE59kUU/W΍a&CnP_&U;3W8``-xdY)PqϣŪH}dējD$*D"0HrvڽtZ`P3g]Azt͘O+8X" υ g:f7$Dva*e _Sf-Cb~FG=*IQ`xPu&Z)k(EHy+ ncWV}fD$\'iZ ˷82bݒЄL+|mO(>0M P$V³>jS8X_tSf~^G<-,N=cAҢxZ2Lv:@CFez%s œےDL 苒emm,w Ns[Ifo?/L ~eHX1Hoq4D!ߴwES-uVWj!6ŸG7~Qni7 ]Ts B *K WA-I,$*a F f~/Z_mho}&(MAO,;1gs[|!4 2ai]|_*7ZUGS#5 #xC;5@~׊9eo^@(0SWQ;x-izϥV~uv@w&E0P2NCK Od*z( }F  OW8 ݿD9 Ooإ"_o-jqO뢟=DQ?7GgBcgS| c"j2ʅ$UTy(ݍ|2дt6]2rt)k,] 9 ~Wr^C&M7(dm \j_>ZAgs[%aTWH ȉVy8dƒB?/SIw Q4e8' otU|sЀ4d&bR>;y9Ly$-6~< y9c*Lp0(x(%g6.ZBɰaQD%MdXT#vNۛ%F)EAU[8*1'G }ֺOjf/W@<WZg{/7ٝθO"=w04#>M{2 \ Z7yyoqPąjT^~e<@ |%J7[: ̪+iK4Q{̂D^\M.#e+@vb;Wq/mq,kxiw>ɕQ+R,a * n+U(& 8nFHяRe Ns&@A]l Bc Lc|SmH، VR8rs%d 0߽pܨX+`Qjo$a<qh267P1;gn&[by"ރ'|m+s&2lK} UF`l(7t4Xʶ쪥J:_2fu &~ 7{ET-ZeN';':t7uyoUٵCFeV5ꎡG@ uLf7diJ3!/7(D}ff $XoeBI]2o `>!nSm^2"%[U>lurcΘVa穛Ōi)[+;6%=?XkA0"l$5 ɪM<۷d:SPOi"0Uŗ#P_=ھbhq׳ޯU%?+HO7hL}FqZ0xYj~B8[yسb5w#'d:<)C,3 fyNc>O !U2i)h HQ.8iЮf̆vMVs`ȣ6S<֬W+?%0>Ѷe.uUS]w CS%?,&ۺhWX*?ۇ>~(TI"J? _ c;/ GꝂ6: :J Gݜl10)bS$޾h a&h;mẔ́л}9R0ga/kWPGpUKZx>ەfji5 W sB\rTk̠oA.HP62E".VYwB#iH'"̔LK*;!Hp%ud,jh 'u29YPwVЦ-#_ hlm-DC蠁~RҔx ϒT|~[LT'}^^ Y X1%7W%pPBla ̥`[7;H,'1v'xFr?0nd@ymBՓ6WNR%۩eQmk7 s pg36BKl"/v,(eJUBRhuP2YbM+c|7ځiS)Q !e~w@^_->$lEQ1szMH $ %$4H@Qb&5zb1r N,(%QB(ۯj@NGWvmA).Onx ;nR0aĖLqVe8+W?憧+!}0T|&nAHӣ_8WhlF 4 Reob`-elCr#yuk2@\}׿CT;?{F@pMFoᣵX'HZk؏QnI۸.n֖Td2GzAݗ;lvh?5<'F[_up!qA(M<, =,KPg ?ֹN+iHmڄSg8 Lə$'c,8W[Ғ#@;dZC % O[_KBreTW Ǖ32T QκZ >;! 683w4a Gf9/Е|P J<,Т4c6* ObDPGCVW:a2 \,E< qVDY 7'1|و37_-T[pJ& #9TJ9.h{ܬcdg!0f|@l3VCn;4W%ՓaB$n|)|An YejphbC$]+Q::Ǚ8HX q= 5Wʣ(O) -reI^+bWJJbx/TLitYJ/j^f* j#LKXhKPKH axԦYߴyJ+\IX ,m.nh*?j,k%S280V TcMF9u@>7K$lPorDg_8_ T 5[&ow} d&,t1wWX}c{ZhOwc[Xd in{u'L؏{ ˪%7[r )I$_.ǀsHJ_7mIU*i]W@k{|a5m3ÙR`=!RJ|{ҡ*{E1ZZs1`%ʱ7Q+X'*z(iF YrO3TKl1$݄" cjj^8Ogpˡxn(3wg &;i"PsSOUIG* JZMc%Xƭ"%/˭IҎ])eao>W;`.>V7HTL.m{>g("`RLW=*,\gyO bYһDK+:%EdShǨy|%Qdo xu'RY͵uby=^][J_iJd/7Tƫ8ԛ/Exy$5hflPU헰J-ޘlw< ITWW4B2F BqL\VڌexK.wt.E ? jBGES&.PnF!JVyc%E-H{_2F\$,8'Zps/L"I ތST:K~("nxtq0.Q?Aˋm:px <P@: s.Aĝ@V<3 ~ ]&U\ jW8vH,! mK.(H?pt4k5LtŊ_h9Cv(+JV0 >FhEo:ѢN2;Y ?e_*ӅNja.ċQ["[i (%:)0Hx_:baZ *O{;=EN/}ۖ@j0z}|۳ r=X Ч eA._ɭ< rb:S!{f(.{kbxW#~&_$ eQX?ו:OFgF͸?ٔNL_H#J=} ؏@fIPӵQ 2&սH8;u?qLIC1|Xu/( +&rD/Q]8'-gdsdxc?'8% \J(N=%?TPg.u!nFxWj]Sl~ܺXZ{Ps)մ-q6&;Zʮlce`DCW~>~EIlm3YAzV&Ri:m ÄJVž؏ѷF& }הmD3hi⒀lȪ!|D-rjӑAY.8qD1| wNZ'l׭щC2}Yw?eCHDw8\fUрs- P, $O&wҽ^w  M==4!N|WP|-K\&7* ]A)(re46Yj* L-ә'Fde=VtS\I}sjr_Q>3N 4uFoLMB٬7~L 3`EI5Y/?*D{~$yhӗd$%c1n%k0v\:*FwVzS8nڲL<#g 4EU +Iv l饱eJ K%3]Sz0OoZ$ @DB[k!Wz DԂ'eBiIXp|NI0|ΝnSm}4)YÎ.%UR B?.T>AF-Jywnd^ibJ!8H3`i^I#(%dLI ~S. G@+6Q@ÄOo{ L5{' -%3S^L #@x&U [⼶(W~ Q(^nܒ2m/n|TA+9:9Hjg5plI=owBׇ8MOz Nȶ" CiHшyU sYt8eKڴK0 xD`F@x\2?#517 l0#9iGV\qϲ Lcƣ9 R/wr,-Iv:.܍ǎё>^TL8<8_  Szv ϶ܵjP&j6b{=9DkyA| NSG QO%SoϚ`&9+T6 x5a- xXUo#NT.?Hئϝ(dDG:ǵCn0ŐoKI!"NIæ1lis #غv! Ol4TGٸ0g!^ 4J(.lK7qp %⚐GeDE1p4k۽w aN})sQTaGPRڐf[ֽMĕ6 +%]{ B~>"QVPUZ/vR@ㅌ*'H}|@(]|<NP9ŻgC@hޠG+exB M}ju~h=S8}hBUtS Z!6Bk^FI%TqH1̓FB-x%`]t`$fKćum ѿqrUgdXpSNieqՎ]6J[`}9Ĭ߶QjQ&DrƌDC.R ![״z2uS^2i<7+2o\h[`cdHqvS!}?}j Mk_b.!Ӆ;j˜I"ɴg!lm͗noR%j,PIi=pCIZqFyǽ!hLbFuwe:e_m+reR_"MY4%2 }+Β))Ff`Gaͦ?s9r%hyrXEyOw(LF7ppF_kDN$2͊ 31xރ8b`62YbI1̘/NFQ3IBe΄9z7m裒1(c+trˆ92WRSp),$sbR%.g#E3 (Tx: owM֬zl)lQ @9C̢q=bPh$1De :E+mi8%4Md+CGeo[=K:+xs/ MՈReF|"M>bxyq;_Znh+aLraa\qݯɆ]_RB@xoeUR{"9)?a7J*e.pFpOEɥk{;D*[}s7L:ֶ#/5.ь 4w"US5`0YEw=KkB(@NҰ]npM0iGp(1d,J[ nP~[m@_q5:ILA-(scT&A] |*E 'el ._iLYP(Lo?qaLʠtRC^ֹ̠I!ِ:>G_ Cz6nw!meg%,2Yt%t,:1js34YN8}|C@u@ǥY/Fv$ ˏsЄݧ ( GЄ _Ű \) a'! ˜ŮQ`K :=Iq yEں'D[B+BEUʅtfG 8o>ć&Ԧl!.[#lϘՑLdJ^# J?Ψ+S)-yUNvo+/8_G:2]1\<0ge$_!-y8 ZRb_/8 @Y#BiՎ~:ƙnגEϝ4z5+?$ʲ J_S5dSQFU@$øF--.l" ^9SҙO>ccI8L7:AmF[!%arϢ2BN̾D][3r}Sā)pwL ǝ\G3Jn1T [.<=+IWeuya0C_ιnPB?l_jHuUe@j?"tJd)IpMH!Lx7>`H wgWDM+HwfsRUu^}^*Kl`,RXRIFY@XҔpn=#mZ bbYlm,ymYdҐPY=[w| ne왌"r6V0X[ 3dgK1F8 5( Ǩ\C@8C-_ZĦ ((g:eWoo{t xƤXK&4;(5<ڪ2R B?%).վYiD/H l0 8{&fDps!-x-d]`$Xuߊh &!$t3zLNQH0c> r+qc}Y[[ˬ.P݃]K[y3c0(hC]W~jȆXǔ=w<84Ugn g97S5Ix,),Uk9WN9CC +b/2Y(g;Cbpzf? >mF4 6_٫rQ=l#CCjX sI" i?BrrK)ٖe%9bgzHE0&\{vؑwIPEE*EөߖDPAaCrՠ:]M8L?չ{1dr%@8iX"%KCpwN9>c'|w^8i 8*[W-=^7No C6}PsIS:y,@qb (j(jB-/&ińs[M>A?:Hyj ՞ BG|O͆JQk. l9"#[zkI"J<Dom+~*n"Zʌ-HG愌3Y(69?N7]_nmy"q}穋"Y==]fZ-9f,C𛉉qz>0R14o5.$.Ig,o9iHAZ܄H:u[ ,z}$ϩ0BPM3(Do5K]Crb&Ww|;K= (Y!Ģ ܒiwߧ+(,3eCv>zVN7ڀOV6Np%*$IӄX׺wNkֺ"(8fv0A_MZnw_%FH$Cn%Bd=oK~ٹĺ/,>dvZVDee6g)k&_v7ljv-xak u oڽbEϤGWC[ JgZ&Ie\YM7J)[AT'q7EaWC$Ci^eZBSaD[Lߊ{L+Ž!/Hwt/"[IeouT&rc0/5fHGF杵o$% 3)4h x|A']An[3?S{~;Tm(yW||Ė|WJ3/wqVqYG"֐b>NU0jd>Z-qfp/6,!G}5:Z" 7MV+$`RbSTgNY$."ӎ_E\eDŽNjz)o#懜M8 *!O}ͳڅeu ࢛J@ YF. k B룼OA%q%A42:eحI<:{Y0ŏ\3[L,*OiV'g"V[ᙝk,;م'4P繣 24!TF͆$2ܻ~e7m%8<LhNmTZk trꅫ̲?ˉ!p斄pz1&ؖ7}F-w5`r !05./%jn/ ~RTbEnae MIK>8/8 7~btNӐNkEI32V̤vzg_t%R*BI%7mt_^e̹֢7j)6w!z%Q^ӑc>~lN|9_lR!+/rar]ȟ^85x p;ݶ'ra^ O6!/«j7 ٛu, xĦ6l]N&]-7H6]usO1(iSJ?$x[ֳXWNUo,WRq^vu;xjƗ_;7ץѺ Y;4Sjĉ!GQarK2Fhq?x+7-20n##Y$C#!)η,=eatхgbhb'^< LUG rT 9#=pQ4ukâ;v`޻Dpu qF:r3AKk+UIw%df6ƋsiBY.U 0 Q)'57_.DK@]%Mސ{`a d>{Tit%ūߎxq\wsvxDsEl&z}ŖTv |k?i9t)R:Bs ??8@XGʼn.kQ4kzV GU6!DdC5ن!Rv#Լ8j( eeHlJj+*Zd{=(ʀ0nh? $c8榞vP $ ?&?; ~ ڄNEA2bzЙ8e*RTiPǎ7R:J~3Ѧ;`K̿=`AQ齟&8LLL:#>HBnoψ' PI)nL2^ww"290: lZ܊'Tn$nG~ @ԍ?zqpcx0Tƽ ak6G4@ԑ=%l}h hp!tUŃ/ D3X "ooC[L,f.yq6^"ce?I%k%{KkZNca7,/>_PD:4m73-FH5YMعNb[Ǎla puTJp5?7Dy2(w jv%[#7 "ACv`T"Hпl$ڐg{W͖f[ yz\upͿ~/_zr#mh kЛ)Il+>8_W9r: M y[ 8O@%`5BgM7ڞӳF^=Sͮb}Po3>^4X_PA#;f|!pHov0̓!f `ĉp| /hfQa0ˈރCfrzc7>9zh| X-o{qq<$)#/|] 7D`ς2KYV[ q`)PP4,97bbKDE^j.P|k1) /rY#Ԯ\YYQ  !/mo)b.&9;[uzϾL`0dFµ1?-ƅwl/Ib~W&%wςVln]>ga#`h+ kԾL& AōiEP+0̵ϷAW,h-EJ1;\í|xcEh#FϱaOdT&=-5°#tc&&^ZT4??+}Cg[YO1?~Cg+TKȴrjG_F^aQsІ0;iOxc\ڔU,/UC:i6@?ex#rh0Q'DlQptiHdK9BFY7S![unYd gKwEl*S L$NuA8JB]u> ^+;S[V,: 83!%Mjxґ1atf}׭YHAFE%Łu, :+YX~r杅h#ڤc 6noc!ܣ6-W:xGf%hV"hg?Qk9 /_0/{k~-ӔۂB d҆:bÙʏ90L(7?+C :k:v5- _R!Zӭ1 1;bg ŌE[fi,?,6U|R&]uiG|#=ׅ Rט,At98-# !U!Kѿ,P%A!hi؁6VBSz$^x](mHRb8BEM{"n84cR/cڼ~; uX@[m`_uf{g:rc kƕ yc_^l3m`J]c(`},$,U3h5mH2!rSjfU/~;V.tvUI1)"Áz+YHbXqs-iCw׻&i JyN(RrDJ*"ǕwfN TZ1z nz̵YT"Vn.oҊz,vOAӑ:M"y̽)88 NuKPI)* Dfj֐e}V f%.Lu~Fq'z dUޑG#;JJV4BiKF nml2; X篡lsxŴ\F@ݑyf̅02JENuVI8P$1O#jE܃aZdK!'9o'aJ^%KhLq")0ܟ6m?H0ʄ&[ُ2%왡71zhM:Ǩe=HE( /Ybn (fmI]}>,\Pێy*CI^k`7[9O2+45IxƄyoA%iŻsTӺq6b?gZ| ɓɁUY 3[ Yog9d n6}>z EJR//qZU=YS#P Lo/q}|B]|%ܲ?1:'b n҃N4qm {{4%|yo-z*$ * ~^_`nR}SI7J‘\EPxuvr6W|eBBjBѨo9# uĿҖ/F-Y#L`#ť/ل'Bs[XY{9_+< :Ŏ$v1uKkĕ@Ljp&TW [O[C [x/m vWtvJu>Kj[E:O>Txx;nA$\ BȴƜAGlÑlV BkɴfsY";}&p%[=ΎRjͅ (X݉xx۷|{ٿBqgSܐyIGP~ꍛJ̈N"B>)Of>eڳ/&"Rov.J|gM]0lmlHqU@ @=qL;,2tM 5yerGfVDXJ34R"ceJs.,m;JD{4p9k C{'؝ʌ =@ܱSD DyZ 7p̌rj-A=攥UĬgs5ʛH;CGRey?2кc~@۬[)k26ʹ}2N؛+ S%O DE fr+/.6x ~YXHMwK^ 'GFVq'YлEP^I[5h/`8Px*q.#:ݼFd yl#hFnYq7܁HTӵK oe,sq ԏhb>=VVz`ySr.k0Ȯw`׋W&&cCWg&I~>U@pkR@җ ;⾎D\Wkw7lREyFd#]e7^y\G0ب~]/YO0X KsKG33Soh)hF$a `Y[Tf T>4o,E4{zkMzBbml&[aײESvu'[Ocl`v'P$juu9Zݹ'ϖ'+O]NqrkO*(ݿŕ~B.U`ZȌ@JWenwX:e ?P(?>CuC+Y.ҙuN : P0{fI{|?BD_j6Kc{\Wr)''(cJFJBṭ3P?`gU8> h)޵sJ;#m@< ٥%Żܣ=\ K Y'*c.+ssLx#52N.vI `yĵ%ӥ-0.JSVYYPL[O/7q?N4H츥Jӌ!F_=iB^峻 K3ƈ [Q K3_ش5iA9d=JN8Ͻ^|lYM@fG2Z'{z+!GN(Hſ>u~UQX.^[7sH`h)Y_qb,C*]n{S*h|Y[k][*oV(ϰǫ1}pB(D_H;Z`e!IqʻGlе>ƟT~3vK9Iy{vd4Qīj ]r<٥̫PgIF$6\aSM) %j־(n2=G>ZZ%`❜5R^VEϻ.c)6A>xMiZ6 ƃ=foSq J?l:;! :p#HTP t&GʹȐ|5|~ E)"|[.T3$wJF Tbʨ_:_%@鶵"vhr ϴ=;ZlaNbT6-y}u"րI;BjhOv70Pf)ܷ,H7B4DA/x-z]G4UXPlR 7lG݊xB;l=7u(x䰔Oq*m5mΚ:5&66lC08*{[=@=ۊp.& ";A7G8>[uEޔ?Xഽ-ΒuknN{u $Cd?\QݳJQ gd@ᰏ`?57Sq*#]@1_qxxOԅۿ]@w\t1'G8(=J7ba@gBwV-/>V,|E?vw/JO7URUޛ*IՠT͛ ]~zE3 4i"žahu/ȗ4r{@<m;YuLX RZ\Aby'F֧= )44[ ;'"s@HWS(3U"e"%P@[&ܩo澨Il1CP͝5u .Z)Kzpҧށ_܋ auOuhɱ0ʘB]سriM(9umZ-uR8ku(E*&&UtYeM3RSH? (k2?nШ:_R#ЁY_xBөLAީ@AohhnxU {_ 'V>y̩x1R5:&n+GeC:?Rnb J!kR=";wc%7#:23Ї$}vQ8Ľģ;y"3=cNf@og6+4lg!T4 hS+gK~5p,d@ʋrt4Zx .աL6A£_r?bl%kW dΐB] s(:lDꁫMr-r6*~sìMn,v1c FpdJ*_LU|K֥#T=x|}QBu`n%`K5^bp-;1s\F(4h _FgpXy[v);lxk"NYt(204.wKe.ve"tɆ\4?;12.z.Ч osI:/%([98PK$@_DK&Iws3/"4D{%YT\8!|\4*% 'l"N`xt#u ؔvz&#os".D}M`Q^ATkE`%CN[p מ,dݪ|0۶&'S@*Bb2#Bk̾m5lޠh!GAӟIrj-_oʧ 0Gl&.W X~n+;AQH2n _@ /zYRe}z1ʉʼnP c.)Baj#|jX~01-P&FޱT@ 14=a|{$)Ĕ5W ,A-\Q.0ڷy"ϖ2?mR>*(}v/.E7?N?_)@5 m7w"1^N:eeg;qkr 3yɪLGm! K3e+!ۀVd,th02I=Iα;CgRJ%(i6 g<:,?jm:]c cj3X>;~Ґ)0j4+jkcfo&N{F& 7o6) deq[xXJ@nl]XVCoř{ǎsSF;X`79U;A_k膃JU9~+RJk֡þAn?yOVΡ"^ڀIMdm:J(I)K5}例o(*:Y!픪M[ؕ\IyT}Jd+ jŲD'HS `9P#$z L/,8iw ~8! uTZjjG9Ji68p g!l^)M{imRNJ=Q7I_֪X :r#@ $G&?Z$ ߑ$YSL޼QdB]Z6'4 Pћs>6`ϞΓ\AHC|>Fxr}^x\Д*,tER&e J$L(k;ˬ M6@9<6_@N^D8imi?ؼ*9oQ7T_5͵3Aѣ1+L[j|Svq"V:vGS+puO]P@D$N9.e$` H1ma%}>\_ JmE]"ؽ4Ǝ.G'z3qRTWq456sҬn??^HP^QBWТ,y>̉2-m+Qud5 k7u. a`7K%I~|>]h[s>3Bo9lvI'UFg y';o\6"y{3G//F(GM#s±@*Ȯ:FO) j&Ee<*v##OiZ9,⣽9jqڮI=ׅ_"ˍC_i|_Rp'im՝n9/u BPlE:MtL蕰1;%}=x+-UH4C|Ey %pʔBLP|Am4TL\Goq%Li@Gn~v]f4q`nn{'2_=b*LEΚ _eiy u~ARb2}gj ;XBUG{4ʅ|/`h^T%:J!2.۟uԤǁ M=#ﯫR@i}!mD(1' Me_DŽ0L:6XtJ"4z$g|&ow?cYB@۪q{}3Dz{wj(jh.:{>D@Q.uBH#!4o`A˵N>^~k.ٲE{!Ču>?gm?>xjAb?gQ_ BoyPk^$77lq\\j8}/Df)yTznbi-̬ЇH6!SuEqmqOh'¸%WHސ3tWeKO-\=/}BcNN0){d'?&1ݺuRh@sfs&~_]o9]ڛ3at'hk3v dq,\aɲfK^ܝ,tx!!SI(%ffȚ=3a¢TZAz^6_jX_S?H貘4;0U""LT=hIڦ<dzYFr] 8PS5 5>6!61XHs0G yHI ƣ(~#^l=*,T;1+&bZu& Y|f~%w-?ҦL>-<߷j :ޤ'ѓ܈82s>e~`Kck+C5z9fj~} a}\mD&mE MЕ _ә;?vG|{R }7^Eѥ*.'4 Ϭ= S_yCLմ@:B0l _m9'P>nk"mi[8LU<'yi 3]HvՠLLǢ%>d->#{ }d Ur䑯I@-'ǴR2\ + ^ea]]w>//)+֋m8V<+s[p5˗_ĺXE\g6)JZ ICW^s0Pz2)W[o}à h?WȂ7AADX+ Ԧa+[{ͤs(`=f-@eu0y ^bj#ȑ>n* 9~BkilࠆRb-]/;ui}y}(qHl}c^{) \\0VwBPZ3+REB|x>5zvG mpA6@AYEp@ 0C:-YR"٪S#0#+ܔm{ ϜީRBU$p>Tn{zĊ{9|tk̰8Gt;MȮ!x)G"#{P%IaI!֞Ud`whnl@)/cŨc9+d}M7 o %ނY 9!H`v8b)iRq!D_0?Sp$_ TF@ kIt)I)`?[׉ *P9ø%wZ:{ q€Af|LLSCri2RHixX7[ !9-_&kKnR1™;Rs?PîDСB~[yYYl`v~"ưpbz0^kYVߟ v(rۯVMUAO_6&!c^5>hw:i\JoVX#{֤@DU|r_#Ԫ *_ISyJ^UY=I%H1=a4dzD+9 {'$Z3>'rQ&SNi-IK=tij{gQ= DN'$jKkrג0t(>[J;xL40)7k!> aCcdh$˴>aAY&-4B( v*~XW7 ,aθ{b_rEg2PWqүK1 ;>'G])gv@.Wt0R+e>a,(w߅o)De؋HjjaNav`ך %Q9b?t͟1DZQ ޻DRRҨן׭&|HFwA1LODTӊ9%+ ~."e[̏.cEUa qƘVV\dH2]، _{kG/rrLnnK\ ),|1?|ni+n\lXo6GV¶t!}}kjD5+[q- zṜXI?? <ֵo  6alTzjz$ quz+OKff;auBE NXuGLBKDGNމq Bj~Kuf>-`g>zMֻ Wb ZetixF{Hf'ZIJ(/ 5PCѪD"8YXr̨ĐQƹ!TfpƯ`R1 ͖怷 -1@Ԋ@ ׽W}qr"i.O`vi|UɐQS~ʋ73pKӺ6\˹feZfx[%XL\qO~.J<>0t+wdY8 ,oE&B"vm 6h !s w$c\zW6gh粮c*W6zW`mJ Im&Ș`*0dcx,:dglʥ+ڃC`ERAGhHy+ nW3e洭;/{?Y/|<:\!4%ROp`/'F4gE©l&>YEGi$PCCӒC#I(3(V<^d.625N7#D =~^1b{' 6`~K;-ZIg cu]:f39HLlB9~k=cl$6> r(n}_+A\h[mF`KCyd e'Pzؕ+MnV3[%kdz]2x G&"dv1k\ #Stg.J}FYaS GA*_|RJ%4L#k/B\Zק*-/7':ܡyF!G~ߛ܉99=<~HZC7=aEZ>Ua7/TJ$((Yp{P;'-ǝ3qN'ᷱ]矂G!K(5 bWm %eU ˋWLęۏJLn^MYՆ;I#+ W'&+jv2(iv_ѨJguD8N1'H)o'fHXрWآ'um祿vz tZ%{6Me"#INUc 8FWku|˅ ג^B}X%:?@r*[QصKlCwÊ;4DK >6)3uYpqP i=mvd՟W9jˎJèؖ*p~* PKjzkL+]rcvr.;^;vY𣆡97 vS?Қvr d6?/]d53<FړXc)l h"B26 ˾Odފʍ"kӴUuJ =:,,%"#~[pl09aW)$ !#i߬BN}ňr>ЃgwP8K F=ڌ;d'=ܰ;A2~#1XfcTS`,V7z^B({fV梇!v}쪒S ݸ3uI[S;?(; IWitjd6:AV>.H&+RXk caɽO}Em\cNSb'mkZre Ӡ0oR,>PHgI1qdq7ZvJCDH]Z koQE Oi/.B̾DH6w,>A&Ӎb~uS9 TV7 SFa6ПNm&os1Ce†M] ݅Do4>Y<Ֆ[ƥe:*[$yR[/%:J!f4:4*7a^1d"+E)C"&Ë4{ ^?(G5olxRUjl\*~ 'eUU5%Yu}e9@..DDlpkb(߸)t7Ȋ*H~EmTѬNU*Y [Y9H^ ſ7# N?il嘺DۢJD9V~]8ʚ<6?dLPCL)QPq,6^>-42+k'e ѷb 0o_C_ pW[4ܼSUF+?0WR&-@󺲟@wi3k!v3sƾM@*_Ϧ<\nC&3,׭$="v@ڷ kNqЎ'& ,ܤ'% %-Z ^w$vD7zMp[Tt>Yo%>Iu]a^c39˲8JC͈ΙQÆW/4=$&9.FυK8*{I9 [ik@y_~xj'l&ɟJ0o$kV^d]yߚO1QU+#cnRk;k=Opj>Ojq(|%iOb[kHjrh-g# d%]p oϡtG2|簈Yx7} 1 4sAͶm-۩P7Bʚ#)7_z–jIjT2{&0ݷ8sR)Eδ1 7@ r' sCeJ7By݆LxeUىç78%uA2\7UӸT>u֡L嗔&<񡋞A{ _LZƨD*n=l68,ɳ˪hz9=okU.z*C_~[K&zi:F^ Pl.c6Wߊc ؖyi^= ftr]D5r2J0 8x?=ՂFS ̠'oz # 27AXY8=#K8[0Hv $j}/ K"M&9**=6p\C=UeA^ _]w@Z5Kiӣm%քs$ܶ?rUݷ UfJ(56/ x LTI▔ '$@rLR}jQ)#y @P,[ We{'Џ/7 &SS4Ɏ}2Q.疙P:CWlзJ&(B U*wW鴙OZsyL\~Ole@!B->TB (/54C횥a9Y$}ҙn4o*Pkp`J|'9FVGPRۊn=NF(R.>q ioE)E&%ZS'jԽܹ|*pm#Iˏ׃uhؿ\ 5' ٪˪mWZ2RKjYՖ[?u- Y:REht*1țd͗<u̫p z&DA b1' 鸋"\ݴYMCz2QƳ,v=w :#oe%a߈tI ѼJ[(79 Kš@ ORi`\fTHa~w_ n02 cPBRvLJG;gf |HEW+3mv5oON m*XyJޟjFl;2Ee; s,Yց dQ7#ϭϘdh`YyDI - ԏP. ΧsۜY4/+(k$eK!c=&v_`yg>%ߡ(͎R7dgy$B׊hX Ю'ࡻq_ni_%[7G4?I;1RX5"3z'הNc)w#]K/' `Qsyar%$ U+u-oEsu`V`I*6SEmۗ`F=ST/}AL1`[J]X_wX~ɱ1a52QN#pbB oc'\`;t>/њ칻*X#HPOT A`F 4枔tq-ڋꟋe< e[BRjx7W 70C1Ugى_1kRfuxyL/' :5|gO}j:'(*2&m00VxWԆ_]7 19B>BVvl6N1$G;K`Q({NMDYP+2wlꝥ=vۡi5ؖʠ T3bE7(%"i[DVysIZe e,gcw B 1 rDXԲIġd%렎ދpsxp(RrCbB̥sZ7FFP9\ Kk^LbU 1C}7jYd⇫:~ooX"=?J0ҼvE*/|*biLgORl<ȄGU&T8~ReWGd5HKwQ4U[T+Krh$~`~ :t&yvv({8 eX8ZA.*Q?N^2<#u,,pl#6XoB-⿬r2ZfܷS] |M,UNyʵuWy?cKOlҁriy5nOQGc(9ȍhL3wtz).\e˺<=^%8(3w8} ZU4_[ϋn&žfsSz`sߜ~S컮5mKwKA)eV|5e֜o?9 Φc"X$ %;/#h++#l"j&3ޮ:pa既ߎ9kRnn o{?$sY adp6ZbkrFdYr]NsS aYE5J|Uy2T8 z?pgXXo~SU>O~rB]EWtQ%J,jLBbzѯ l߽]_GrhFW^ò0J=>ΆwGXYΘ^Be}Rs@T"ƈbrB":vU>ǐS-}@'dVN|9wRw n Zϓ)=2R@iDtJTiAmi6OfMR<84 m+TԈZ㇖U! 8ph4{P|])Iyۈ aߟ&@jä2հX֜71|LqّhiЌr:Ά 1TS"BV+jQZ#CŏX Nmdv_r_>&Yjqy<{Y[rnǰm *rĬpk9qUnvEgz?k7S_x {ㅝRjC LNDhǓœDiWXtͮSw` :[w? : ?rԢwKieW\{@5VŁCn͞z#s}捍DG1xLY@brw T Ȟ/!:\>{pR+@35w ,l 0!O=SKZ|P'(BmA˓ŔfnI8`l]钓Bfw_3Pz n/QAR_!,hU_Io-5tn$4 jYy͏H Q7{N3 (06j!>ݚ"w iiU(kؕϭ={k fu7,sIg! } Th$ IGҵEx/`jdW_wd6-@.V֎ؗ* iz!zL:{L 4~˛l,[]#:/%$ fni͒k B^T@,*b-Ž V(݈Zn!S%b\bHPzuI>[? oM }0+1 ;*t/s`$Q1! 2db+ZTuzB2bQ%\Sg/F~)?B&'']o9_lw0cl ) fЎ5K&uȗ!vcp<#h9"Y,̃|p&A(i_A*7BxPgp ZO(%{Hqe[vZoχ BY-ieaIb6?u6hF5H6Q1c /p;ŖPz]?MGwF+ܣ2lf좡PaBW@li)Sۑa')e>>B VN[b6-sm7-5`ƿOrrEj@8G@\.|OO\<+K$S@l~cǶ)sیmWCz|oQSjtKHmY>@2 =DcX-^̶e4ZRrJAE%5 \p))TE$J]W8߬=):h U^Ce}kʫ Qe  #&D#(AsC?5Ln?ֵe009s /**tx趚F,L:ԯlzř fUT5m񠧐74&A=cԛ[@AQe#V_<;Ģ#!Bcj6=G7m ڥ:;+@duo+ $ F.b5ܬR["c4 X.:k.y 9"9L1%[oiߒC|rQdaFR" MJ/Ox-7_~R"  c%0QwZe?"y*:1 h/AUިoTy3tF6\~M٩NņRʅ+Ka{*#ő'SIZh𬤷)8I$Ro5]^goM,+'ҮΛ`»΋B$Up9QQǕ> G[[V<Y'IQ ?ӍEYNZEj #A:+LO\<mϢ*e@*[%/k-,|1Hψ1ִHCT?O^ThӧXbs?AUl ]V8Dؾhbcj%bE}-=o8x7r") WVϡMnPe WIT:3Jn֊7k:|h ~Vӟ]C$1Iib^.Q7i _Z]$cM)ZQO ^fj?אԩ7x{ԅOIl~5eAgdv8=Nc!!,Q¤B"}U\qucYhRk >4s`` 7HСS)$2 dMNq+ê 7}ܽI]/« ]3}tLk&ꎒOHw)2<-o6\95JW1]_a!BMUȟ`&8r`Ʈb8UUHdPDYa#l&.w)vk)WAisyw`Eh?;ŦJX) .($!'h>UXlrӽ- {=M R-P8/a9ԙ)lm.36PoKƤ\|Q($9^;52~3,quY.U-Ԃ,;Hk@`T x)i3%f8:v9{@uxxzZd 6)pQ?rG$)HݹT&`j ޲79ZhwwA E+hQHJT_Kr%f6jXW3n>7Lho _7eOAw^xqɝKB@DRx>?PB>F)AdCs@E n&NatH'h0jbm l#=ѡ tw}Ika#u%c(PHL=^jFwV ڸHÄK^`Ep`ޝPwJkM b΍lx@ӗE6<nIҷ$.0\=:iL|neWS4o3`1a~w 3\W9sW{_ј*y9 \Pe,hǶ&XdTh nv wH9ERtҏ}S֞_'x,Q`x Z3s4Rw7 Q 냔9Іؗa-|I,Lާfo>YROIzojzɂ9J:ŷeSrX'JZ[ SԹo ; i/-8zz*skt.≡ʦBV3unpm \J9z z4be|i9XrccR1+^n:# ܣh!v I s0ucSǠ%5YƍZ:be=@m%%2o35鸷3?bBeYHGmc6ys\WףdUn'o&?Bb23EZK?tscfs݄zk+SC%gOD-#T!g> ߗzQ%Fd&Գ3p+Nl_9lO,tO CZF7,,y6Ҿ>mLN8ɝTN:/;ޞ9=>F F_2+&(0쟓p/PL0.ðmRXβw>@@S d*.ɟM ?2͹tuoz`4:zu|H&DX=3W8J #O\}J5_;#ÿz!qWbR^vmGER#E)-v?7:89S1 f4b9!|݃Sz=¯"d嫭کt7&&a:nC3vN"1*4h[hmB@0U$\Q'4:W<`AAco:jt?F^#쳥Y}zpf\P<7!$-Qk)D4a\̢R9?U 7PVΚC.DoäPj+T73k4tzVYMV46+upt")rT_snG72U}_rAjY8Zg:1JjH>vc]v%Ecբkf(֦p=Y0KD: >,snsgD,>qȂjH;cݹ֏҂),<ثY| f #hsVfz1cGCKJ/qԅPA:0KC,*(Y[pڱu{Uͭ:3!*5vrmm4E/vn ˕/폺)'4IAq(=ܜN>tyg=hi$Rx5$Lsv  4Ɯ-K0j)i;$HBwAїDLO XbT&&^HW]6?$_((L(mll3pӤ1*'z1a0ؑL4!Ppn QsV~ʹ&l|E/odLc(k{nؗ]9N@դ3z %a9pNkR|ʳK+濞5s5P` MyBj6f}gA?ΠSF6`B^D~y j>{G۵}fOA"m 0_ӪÐ@K: մ?+~D[6˧24,!o}T"c{byP8g˦ o4^hE2W2¤x Zof / B>c'W?`<zb_{&Bxs0^>٬^ `wu<jT}V[zjp?'j( Q?\ 4 `=|y"EuO<Մ$/KSLj5遫MXD㏉!I!ڪ:$'MM ޶KnLZ9lxeLU 5^Qs,Lp XT8%#v ' -FwK^| {xdΔ򤃓ƘlkZ!(PO(PQmߎR- h>NU +cppoW{*t>lf9F~q )O>@Tnl+\@Dk5d~_'bޛLv?MCC3ҧL`֢Mѽk, ?UŎbmc(HS@*fJ7 (MVWDžṟDjKjc[/#N wVD8`ǣK޿BSFʽδ j#.҂.V*yBV"m$ t: C $˜f݄rwH%3!R{ܤ~wOS֦LHiʟ:8ALj>HɘI7[ Y>rU{ʁ*VC-ju\\YB@N&Utw(γ(EO~MYM)d{ ök=n<gÄ^. 8K6"3*,2Le֗daq uXT YX J*b %Cڟ2*>Dopi+] R`J{*R2vU8 2Ġezk)vXP[.r1aMb䜳Mf'Du ӻkƨ޻/pvtjQ1 ,qa;Qi~w l ΆKT;>~! G3u,nby)d(VhC;wlkn) ({TI{]ت X80dMLs:&O#E$ ĪN[DD95t u[XHe^_;YKG_% t[)ܤA PׁIpW=Gb̟tK~Esʇ`:W-IqǛOka ?LON|ʌB4voc*K93j1q! h=@ܛZ5d&PI#0BRe<.L}ZgwTLvqBټsƁC7aes[㌨طt.U@#7#-vH`dfkv:ίb{'&X*/̖A,s«/.gţ#.;K> ܉\Rb1۔֮vUEebq{ʕ!xwD|^7?j |&~E90Kjuo W5"+S$\ߌRi7Ԧ!!nu(HLgP2:`\af0:?U΅v>|FYpTY4Er)*]8P"2g1;/#_\ {" %rX<̌Ğ>V]_-.MK\t; qi6f,e7F|81);H-|S;`JA XMiuYRN*/Gv~`~b%Mtq٨8SXn 0c|F{NLn4To?~3(tC1q3F&+^řrMB1ϷP^BB-r _S;<]xncCaQS7}n{>@ NE׊ |na<"G%>lLu$v$g% 9/;Tpm+Lq1\ HamU"8L0&Tw's'5Ȅ`[٥1_ZOŭZ֔Fc3CYhi;Cz򇖽uםd*N1HnLt BS^Xeʹb*N(Llnwd @DBTMy$)}Y\G~cι(sH#>/,乎e =* m^yF0Ncڧ+R2 y$,6YU$juP15܃Plݐ[{ Oj&3q-4}  BQHQG_&VV5Q{+#}*+¡/}BҏK__;댅f'ux\ČԠtLo'Y׷szu o sB {r?tըl73XOC G2nHDmዑ.b>*o=kV4AݞDfohKuo;i_!,Vpq!`CCkUb?; 6.O'ZLvi#Q:;, R bFInBX"u3LڶŢؐ*OofJN7pъE)/6]zKWFseIAO@F[TEjrCsQ{U0Qh 6U䎷@P;3 ϭ3_,b^Z2 "$<;e@@]^zd+E/+%^,a" ͣg@7\QO3c +EK&QL(_}a}(hVk$ GIZ59irzM?[ B7(&lw;/x*ÍȜץO44 8&B4":qe#,(sl@W y_MbEǡjͅ`U~y/u~Ƥ̑LdAˊ.2rÐyM1#LP(53!C` L1j溒V2I'<6aIf$~4G? P]n}Ǫ/#**vvS7ܺB(+ΤMW5޹={}=8Tk_CFkcG`!a}$p>Ehhmԇ]?2}>8w눰Xӡ퉥 m| 8 Aq9I~/qAcPSJކΥwPӮ fƎ|v;"H50TEFs^d[r B =Ԙ+eOBCٽg:*O#H\uښΪan{TFD5f3>nHv\!(Z\SV`9~ق*  zN1-p+D:N9sɼjpYD3e&dFX⃁3|C^-'9ƹckKl;f~m¤!o^,Ct6L @t19*<()-/w S#cƎ[g˧BSr+dIdcM cygʒb8Fz2IijVnQDJL-AbI3tN>NޜNH) <;:ՆTZ,cq6}˹𗕀pdYf6cKpXlAڬ zBkx|_hEwobF D3Wi@]ox_*PO)Oc+6*ĵflgR;i84y<І2#guKR7]DI mϫ(Gx wa,d򦎁XϹ.~WknQJyWMacgŮ} 蓶`=CJ/f,)ltQ^ƧM sϡL5O|7Fʺ4e+T:5Ajfۜ.fq3X댽["& f6+-] Sw(WA-:'͓}SB&Ԯ8W6s|ޜUl] kS_]li d౶Di]/J<~䀕Vedg^3l~icHMԖhUK7_';$_W(.2A zM"2[̂[0,h C a20Ez )[͔yha>>h,HiEmuʑF)ψtTnbfGA_gN,@@${k uaᗎ#$N0&JVd 0K:ܛ0,8;_Sp[;sTL}d6q%؛ExڟQVkqzfj3wlKM? ýnJ'˷%Fۛ@A{K*mg}hTO΢>Q*vN#h@au Rl|@yk^θ#R,d l*`Ӛ^o#< WO>yDϽ^i!;! &iTQۧ9#hH M޳A&mDٯ)iwގ q . aIh'[s,lW4tRm&5Us4‹jW?0Q{B6 kbWf %*)oM]2r߱:T pYћM[6ݔi5*ZExq*0J^9H͵0vV nKŢ6AD dm B@[~{7/eN1Fz:>2"0IOc+ĤVW- 恱jtyCP(~L3Ě$|Zw9oCR*)JuʎVPs5- (V{-XC#A31#nfDQ/KvCqVh=9 pXv_u,:%Fbn%o}O|X168БRL=d yb`x10| 2qqhHt@`%-%@ky蕔ڛ4$"Ax;UX;!6Þ/Q5 }a n{;\$tviz{B}RK\ZsMR"Ud7\ C NS E@|SU 26" て")%tz ΉCjoO .``$&7eaNt$^Ln9ox DH%*Hqz2m't<5Oﵐ,j}+ߒ44\IM_<|Xڙ ,GvX>EH PX>RD+Vr"a槀Tmɭn@/cRa vB! Êɋ26@qeRi7EW7&8E tؽ}=%ra_(UB>Tv|m!@wU\ KZe? \sW iNZR}t` VYXE.{Imn0VE~"kaKCB:WEͬg]LѨ; T7@)ɦp/! ɍnI PlL(ߡZ Cvi1Txd"*ԘuNޑqL +&Ml{ӎ4Vh~ҵ)Os]e4zN6TtT1}6|eTH^9hY(l>^v1Q;9drqSRvի;V2>)0?O?rOAvlrZ7 f$"7UVE6} VFRkrK}E#O;gzCI!Lf;?.KBu+(Ulbp% XF?Z8Zjܾ7;\R-JbLJ0F 02 ݂ = {.It_4n`HEy`*d&U -!$W s2#ʿ8l293S`OCp9z/2̅7*c;X@! 1vN>OOQOAW7?KF],@.XJnOAw&M|YԦHKt-Ҝ@Ivi*guԖҽ;|_ݶ( x'etb b73FfVǕ&fZXX9}[+>GŐF*]vdF1_&z_Ҳ5;*lX'\©:-G O\90oZ@`xqU:0Ws/={P2>oDL^ 1)/n-zXghow@[x `lL%%1v޷#"24Ӫ_Ƽ aH#]j[ C]1n ,cJ yq֚ Qt%n2F͍< ]Hy+RW/GAZoh $ux=(sy0$9%u#I50*~e[ՠ'W &9.AajZ=7|-R(xC J[P%)VVK[&e?3JB]dsu? :ʯP:+C܍ !F ;cR0}Aـɕ6~ޜ_5xHAbWsgO?4jI FZM08Dy.]gxW)m92v"d#h-:˿Z%k ٛ2?c#'سŘ,&w1mzS|!J_jKO8<8 Gf`f* p4 ?p PE=:zͮ'-^Y;UdA-}ଜ"䠨uq`{``_+0^+PR+A|ۈ6Djl k*d]ek2&fX)wYӦ^URLJ_X0-ط12oĭS>`4 d![Q3_͆p `Ӧ33jmE`x۔# DE%f#!0C[bǯ .OjzWͶW&iR!aj>ڂLX_6J XrwI+;R޿/,|ow:ŘUVxɃ)0UR@e'$NKlGu4^&@4QH;~sݹ%Y ip#&g^|^_Ҽ ݂Yo @=p]͘K5è²A=1A !7bFu,ԜGrXS)clM#ZD֝F\bq,÷|7QzȊ֋8y:%G8'/z IթD\sL[/R C,o/_WX=o_Aާ Tѵ1͇y7V03[sބ+mλxM'nOnKIA^yf$!ϋu&{ݠsԞUƄ)-eVWL,s$4Α zfE9#|LZD,[o<ʯ9g&AUH" ޲4_6{q.ozUnlg E AH]b nD D79]¢!G3J .Q7;‚YCu-%tE?)YQX̛Yv!1h4_Vd9f:|8ژb'}BB%ڷ/VAji ӎ})++QḾ{~%IK?q9;I&oG7Q 64[;OQrk :?>S H Pa\zMY#^ܜH_rO$IU g%zsr;9a=~tn믵`Tvjwal8s}WB`hF VA!g)M~;.E]- Y4Wy,HD2^٘/N*B.%B]\r#)OErse ?lSbӼ%M5aU؉Us~JsMELM|:Rs}ha03!EsjյٴN` 9\_D _o:d)FN bG~(e\6goz>]_Ar qQRP+ xJ:WlñIis8AS?wA8vKeK5Z.wsů =''<{!.߰R瓻J S^EݠgQ? m[!0IdI[+LEcb-@' ן$wGy0iqlѢu\Teǭ97R/^BeBHwZ 'loTA>~O6.[?l~P@8/ M% MY!7n'Ft)UƦ*,'B9v.r 8LDICVhg*<.LSY`6]`J:Z d$qGlj\;DL"q(0b6P0> 5IWhHcg`|TipمH{E:V1vCgq\|땎8bB)rHHeR{Mr2,J1S%֑mnC[P!x-J4#ƪN+;nij&eP-h0ou\σe4b'3ԟ=) L$fܣ̾8ka%#*nTugl'E~'!|4kc8k*dzge2yTV`a,jf#O">\Md]ooEWQOՔHqT&ny,u=/GQ9U].(awرT[$js×"/ H[ƤlI?#5#dNPelԹ,29eЄqoy018Pv6?=a-?8g{~zꡅu-d%+d͓WnuRj]}7M`xW2é7zLfƮ܅_'8Ĩ}tJX66 $01+(xOR bÔ%64 */T$ :be+v?2->ԀG؍U>+w$ӤOളx?=Rhj!-*s/V=orB0&M56@ռ)X,V=DZnw|#തNYg_ Svդ4s»G-N%yxDH5]EȗKBM2<pm>؄0 5Y02ӀJ1/Mz6ȡC̾*g5)Э_?FC %KmBꖧbf4lQ ͝szWv 9JxjGjQjJ@_@.U7 Ö*]+AQpҤ4#6AC{"k]AVO'vq#iM$؟آޫC.jv 3.xa㲀ZBqي׺9Q{RxA}g/]eVGZn(ue2N},пY58C{_D DV u>1XMPH[VVH>` "9|=IXcT[a@:4cL_,C9)؏Ǵ[xf:jr?܍7/Juωo3&"B`[҉Q,=#XW9уF&tdaOŁ0P_׿]sq_ ؛Agf1rؿ]m 8uĠr*}_@KH' xK/q)~ޝϊh y~V6ya?6 UYIbPQ\>ZW-a D0tw$DrLcT$R>vfgSCOh16!FZ N׮E8 ~_b;H =R8m;˽D cX_ ^*zQY/5Wļ ǯTx(z Aq*ln,J=n>=^tFP,yz=|ȉYn_ҢAN- ~}"R|ҭ)7=:~."BdUSpAQ?փ *10:@L=|sЕ$Ԥڸ,c-K`[۰ G Z}˞?r_ڗD|[zd|voBV_.]E!2. Mk~3=qy"Sn"*[mBgZH^Weco&5R`^k A}TjNZ#XRJ8gY7,U^.QPKŊzj|҂I#t~`T(2:PSk$v'2 Q=rmYsV 矯VѲ`S֣bc5jEv&i% qbZwYVBDzs'=?q|,_A(5X7ٲ1$?a OnRmX%|B3, K܇(vul @dɰЩLPE#ZO;>zQ,S|y.~N@*|@ՇT"<qZJ/ʍmQ s֥VCLUN]VaB.v=* `_Vncܳ6 lq266rI W@V"b 0 ?uf-;?5k?/XtFhZuwܱθƵ{ͻQsv39dRއ tyV8e;B7]jׇb-᧼fv |Jov Y̷bą@ x-,TL4 ^nXRTOo7 F>Q6Y[41Z r>p3:!`Xg+փꇌ⡆kl. AISO(_Zj'u%joPt$4t 6>NWq*`@ :1^v׆ddƤp%t36L}#q. Cq$H';O =`>,'e'U< =u7YM1pZ>6cVt Gp=bH?FiKN6qD-|T Lh4ыS,[eZnq֫%9ePE$W!iy5{q/&A,C1FY*h^A~s-YaC@]gH%,;RGM+hV}:6@W8rx<>p#BdA~vּD0uS' Ŧy݌ Z[Qq/-X9cx1 Ѣ~_Y-yfwa˨^DiGqum#4*\tE*qI9I6?$܅pժ-a|PqYd0q@sK {*]T۝LHEWV/u\ۈ$`gGA7^#w!?T굊iJ~ԇn᪠ٜǝ(>(.EmłPW_$䡥ɳh(siY1 V:R3 Ck,zT܉KЗǓ}R܄Ȅ҆{T<)![(jx&@\TNw. .pΖ- H Ob#]rFsO6u6|9\Tە NEm^^l4(6G1@Y<3NcXFZ !`]2D:k-zɆȄH:,WT{ !w>[LNjmr@6&ڵ}njvT߾U@ZP_b\}~*c&4U`/}pf N-aHto|ll0M1;mERCL ?WA2tb4F>\ 4oSm%I (vKD"nVru \ wH@=¢([B *qUX$^'j)b:Lk6 Y!-Ú#/Yo-Л;2`32N~e"cxD+֍[  !-Ioɠϒ !V& 3A"lDطd P< XF==e~qj~|%S1 U@ ^1YA3t6fk#bGLs(~샘Eq*KHrb9S5b3{} бѶKgeX?xA`#|cq6zHCEYe^fӁяKk~1poQ]=Tj̃-dx‹;Ѧíq:Gxx!۩Ӫ}vDM)|Uws}XJ C.C/8.XJ:N:ůj8ZaC _ fOu7}:11t%l ~IZ}Q0ڔ4ۛLW+$^Z!Ic}q%(_G#Xց"{nĤ0hiJBP>klZ2b44呴:ia=MX\=: #KN*$v[,)b P)G-v%.`bvu /Ԗ,VXI8-؄+mt7Qju#u?MUGG"XJ=$-]%gtJyH5G5tib~11iS^ٚ͘e:E8 m`IGknOzߣXp"9ׂf=.E>~6МuhDpiXtֱ s4b\ F)1Dh9{7ڤze̋y }Vaw#~ `gCN"LHڣHl'G˜'$~h}KH4#z9踅5-j.c8$JuP@1iyDYhw}C7 .{Js-9 v0laVCLʹͩ$ ᾫqxA+y`Zґ(/h\AMTD|ZVݪ6r"s&{)hԝ/a20卲GK$5V РĒIe<jsGb,Q-TP1F hɵgP cՆC2.#}p[]k2 >/Kֳi5u:² IXbf7JyNDh$)k^|/zT;)1n>8C󺮾g5zviKFC] OYRᰢpBQ8L0Q <?HU`Ep#i9̚s24u;U)Y_s^X侤isGkɤ^ۜ6BgS65ط!,2T*Km ګPdգſYMB5G:Q}itc(B ɾ&^A?,&7TQ#PL6"`Wu̎&=*y&t5fVRk E|rh'Py4UWFlikSuWg+Y&HvoڵL7Œ1%Tp;:7d9yN@|},vmÍk:Ds}uI.^ ^C@KunML\~"Rdnߧ1?_r;ctT{h|+WOV)=p96,n<곘o?8;K7h +褊v{HOxeY铊SuwQA-QI jզFh #%W :wOi3ڳ(nldToC A6Mo ԫ a$}{"Н|IXv&?.f)hy[_Ջ~fMb"MZͫ$ExA+ȏ@04W<%8]/ ] X @\4i IIBeVϊ2l*i Mp2(gϱ(И0#)78 7*p[E:0,DTm'EaE3%qdPTl}g-~AǤBtx}ސ+LM,z/ $fayVkp竾:ӓh'|boc#\Gp9*,xn 6+ Ax*b?zY6y-SjGVNfGK$d[ihlX*1scqf\*{2"jδ)exsq5;K쪣 m1|X2Ƿt$~zA,8Fdp0Q S)EwU'@tYŒ.`"e^x1$MdzQ-s5!# ;E'1Z5B ]VBUZs')W窦~WIi>\VP`>(q`VՐJH[ѻe'0W4MKd& /8V>F|[tƲ"\ '$Lq-R;3U7v̸Sbz(19JK}I v=orXOO`[W,.W*}(OJe&Ǜ艚T_9_z[!F8#7Dzs{,0,H"Ts2SC^#i@ LG9\j"oB<rLlGϪ܃ӮXӛ}(]*GP09g 5,QH 쒚"1U#&ں][I23k6&_m7 Zo3,9cm)BT$JG7.v|VI?軎Ym<yVM'zyG!@9#MTb6ؑF@\o:Tp0DujXg@^(37$GoK?}{ڭgJ( ڧJe< ߝ"гDk"l,dh;|V8Z x{*UB45'wuzQ6 Lj*9:D儼;aV &Ω}ذqpQ%P C_3hCPi]9 })Vn?pzJ5_wI/,ؤhQ|bL^.bً×g iE};3 1-t\CBz1|P1 Ģ0 !& x>JR /Q>CEbl/ vQY3pGu;Y:SԲW7(X\âi 1١Xv3<-o)b^'qd}1bQh a=,G#$^KWZx;\lO/,{GBx3<}s(&t?HQLȇgF-2?2~a|;Q/ ;DFr bI= *j?~ꍁY[}ZaM+m%޳ 2tk>B@Vv?2  )e.%L8JӼղ_k'QPĶhPxhtP|,J`,Yq4b{3pN0x)kUl#zydZ4<&Ct;/6JqJnZ6}6XF)vCX9Mn L9>f_.mߙPQz32|=b.|64]fafjOup@bwD4 ^XEm(4;O̮Cf;RY]|p[H$4 ſ}ko:r$SUкRfbn CP JE:kZJ ח3*jc ;Emgj\sQp̼'f?B{@~t eM?kLxMڏdjY%Nu a?zObDŽf{D̞WO0B{d`AmF.,e@kD%޶".ַ^v>y܎!OlGrsJ<.qYF Xj,XeYeNbaH8Z;x;y$eEtUiN-2yPGh{tntBq\Nxvߐ´XM`|`QDl%sY+^,̉ q/{F7Ou&R[͓!k;$eA\! ٰk@.a);'-Neė66anՒ*H(ev?#\ $9Q"\Bՙh t۬.m!qlҘb^P>JҀ`Ad82pXxqU#kÆ u遇ʎ}g[9眨y|p+Ƥ.meo  XF d%+ yF=Lmټtz7 ^q)+[2yx@[Pwyk[w59Vp[u"ue+.Fu,TL^E. B&a4w])^áҏ@[/a>*O-O:R xuh0l:PGC/ 3Du?%tT|G7эJ(G3ɮr)r[J[kU{K2u?dbCg*j6٤ydR1 n.=F=*Z8j>37y2&v%JwA| ml〛wK &f ⦱P#.[iaXе6\ (Ovhsx?Np~ð4)8EVO:RmH+Èt)$#^˄aB_yVqU2.f[Yz9ңTPMRu<ŮZbI'\+:%m"z2/oD!ٝBp:t >oX]dUo|zqDOi6ƹwng"ʞ1 'n68J|%,S ʣ|a2;< L!Y5@ijGWXR;[KnxK7\u2 ;ϑ :$C'<*3ZIMV ']گ3:5'WژSb_بWs^k/^ֺXkFL1~ǹ pq39/ ۮscG6s9Qb)\4z(4BD-^b:$ YkunB`3p SZ kN[BtkXmS$f7IALgG(3?!kFrraALmdϒģbYdTLTg%_7?wv5Cz>u}D"0oF_.Ϟu'(kta=kh)5 gvl @0aF䩹c7tQK׌穖Ʈw(ҳkGf"QJyl~)!+ $a%--fMX%a}O#2 >~{L zp{YK.w$1+ʕ܄9_ F3YbMwO$?:ٷFN<=h* B BԈ~^ nNt/HJ v|XLai<-D5i͎9IC1 j jT>V-c [COBH!56 \5Yӫ"J<*r˴_P+G̝tZ%y(ơo( 6bWJU\]^Fɰ6=IzUJ;3zֻ<Ø0ʺ뗻tՏ4^oagN3R{NQ vu 6S,TꄒVC l]8qhX/͵Ae|1_NŎݙ%2%,ݛ xbW=FH"cҙkfTo^62%S>:IY1bGs<]myeE1Li3iZ鉐2x(k{et'sw QG"Rhd" k9(L> .UJdx1Boq"յ].oG_b1k86MbS8h/E[85ۍMΐXz>js%,Jz [@Kdflͯ; 5(QC]<ĪSp$qR.Z&%:K]Ɣ9^F쌵n7ՄTu9KPĭ 6XUʽk:i>wB@4)ⳝXG4Ip ZCsp[PmꇜFޓ\OQ1='iȲvru-xnya .0萍bM!|A; NX 4If;ZAԧ^}^N u8wLKBs>e?n*Nu't}]]C!E_<_vuYPjrkW|\Id~ rz]X̠_ c-ˑy.bH6ft^36B+*QM ĘkUPnv#.k }v HȚbr 'X p:= SƽB*ߪe Bw^?KfwC6Wp'j \B-R)-J9|PD/T;?ݟ=vEj`iT6yV`NՄ︟i=-ԋ\!%ƫ~5:Y}=Sh) 7ce cb W/&mSWJ*¡x ^sF(%a; lѽ8eK.Cщ6o $OKRخZ9L.#@&V ngG4 _/S Yue'#8xIz3PbhR0oBI{fg[+kH cjD#Fg%&zL7癰8(_d%ә6A6+M.!,ًd}C5y1<u\5~;JgLA&rv,=~-_٧"*uuD\V~\ }ɆhxjpI:o˾VDqjF2}![ nU}'2ICX[p midZ^I`Qi*$α6.'97);jiScg Ũ38B޷y3:nbJWv8EɝPW_?D+lٿAeoX-m\SpSZ{Jwaq =yă`M͒C: MSSMX9Wz P(-Һ饆v|E171KI,;v(|K@=Nw*0+슏>o\ =6鵶MYe@xi=J%%qx@Ǹ 0ZSQ+S^xGuߡlcyDl K|.[$z52<9JZTXH=TU˳N.0{u09l{#,Z–4$Y&EɋϹ"KON oͰ.?3 ʑoC Z =!V'/ID{%e ޭ'S{~KHĈ-:x#O{{œ$l.{:ME L8s_[9P0{MNAX9%KN~Zx#ۼ_s-<:Ɩ#ZDCvT3(VV0@X3j餐gm)}=-jcwp s:xϿL|7M?G`׭n\ ֟F+cs랆:iqɁ4{pخ_9lե"}!$f֯ˍaKCa*7AA !d"d9?wB3TY<1iP.HA:vI,qo,jUAGJ kԹZȶ$m-bߨRae"9Z1H 9AeZM%3d.ֿS#nr"b25Rd mװ @W;Sp0#6ӤNRNiiic Y)eN<ŗ3{,a%db zI ILs:9##.|Oy`?dr%@QF/8m<A|? FsV~r(U^Oie8(TfrmyT J YZNQe{Tz,%ϝWn`X|T4Qe˭Ϡ+HKa1 Qr6c=y`_<6\򉽋V볏ݦ_N͙$,D*&e]6xoqVF% ؉f{TM7㿳ra !BR״~hs2,".E> ȡЎU߬qYU=-JTT$~&~%:4_L^ڿZO$˾zkDܸ4( 1D @(b~䥢:D0`0DSIϐ5M!ML RkS p,mas`Z QvaJyl͇g!n ς< Ug'5)MX>l#zVjh7b I3r>eƣ&w[0mRIu[~]bj-c' K~;JWNu@&b^jrBT `_{zk| aXk/%hSL1".׹ekн!o$T"1c!H&sLA!,}T;mhtGkI2YB*a1CF -|%B׿q{EA#+ŢGg|:Ŗ ;71Yӵl6B^xIa,31ڿѡ)tln߳/e-j-@]ٸ*iɢ[?;YIe` YV[]pV ʨR/!AZJw Z اƑ!4%K✍:v4e12+(bIм<5- ./ ~Vgx T,XVUˬLX¦6T,v28F_ *s-)} ~I(?JL(zY#x(!< oPDkW@Ks;iEMgDX"BĶR.㮓>pM0/ٌ\-t>(rЗV\^cԃfu#[Qs9Oߎ#0}N!W{cb,)| 6ٿܛLEM&_HB7g u=8fÿcVQNRuE'ܘfRe)%73ݵ` yʓnmUHYRUXX&㜦qLHH%xAK6hݵQo1ÖIn8QhJw/<䦗{-VtTġه^&'k&@RC[=-vW!%$&g_sF]0rtK$ ,MXGJM>p}jVԒJ~]DSE ){eCsЩd&t'ɤ]oy2z^ZHj6.NCT=r63]ʪF@CХGj0Bq;\\Mo!.^g6O.TTBKKK [|>RǬ2Inl6 }&J6zN푷f?H 1V^_jr$od}yo;jJBKm5?G\Gթ dO''<Vb͈b-u,<,X{pߙWM4͇RX<T,ZirMJ>AbJUvG#",paОellNF"xnblo|Ld9pMZ:ްG%D+1H?Cm SD7gPLp D(*k |=<3TnՒZuWC瑵Ӥ76 =f24YF?2V*?b2ZѠ.^jHƅ0;CHQI\(Q{wiLdBQ/3xR 2YeI%G S -R[~ fsa2a22e!I%E¼oUѻm͟ɕyp\q#R:-:+"A1Wo+3{b4-|"; e+7A|U+Dbaʷ)v` ^0溇 n: PW(۲%Vf<U' FJ 366ko̙nׄ> t c0cg]|^lKArRBŠ?}LVmF`wAa«.`7&.g`r N +OJҏAzЌ[i f.o? }QzRO6:k"]Qzf=`l"6az \Ξz pKLy}P},?V13 E$*0o9Bxhp}NdL>^$g*he}͏ ;f6̮2nXZ̩|N_;tМυYZZ_ sI * ^ꡝ*r=QDkܝ>-Ϻt r= ԉ#ke#汝$McN%= hܭQzg6XQS!O5R*T=d&Q *0P8|tȁu;}~&)sifeÿ,&hZSH𼩪y2DٻWId'dnbJtnB؁N~c)a5qx(_ҕI)L IbQhq9.N%XR a_Pwi XY|ˤ7T&qv&w |ulTC%\7-.!RL uHUЅ}3 5k[[pوl@N ֊R O]#hxjugi ˩,ž3wz1i#cFֱnu]hG3LP`A]!RW#w$;&F`񶶍;A,"!2 }.G Wͭ5\Ȫi5D䆎 ?/Yt ! gf߳Ϻݎ<ַr 7GR_6<^zE/K`=IPoE˯:"WQdϸ5m"& BsO ,%':ɒ ^ 5n?'P `K3u<9sp>7vɜ0J_X ew4e|s4gR>)^֒b)L|_EZ拒`/tl,46:sў uR6 nIdv2Q * ~`3wznKa*zdTEBu wNruHkǰN ;- J3<]c E>H|/e٭58 P]`Aa— (c6lJ}.,"p:0>Z6ze1<~Tkh"W-p8n ndb?\釺쫰3s n{(YVor|C.|J`;)΄l˪BiէUQ *јяS !'qu'bQ@Z-EHZ:8zx]*Vɫ9M,%>D &x qS|r eA/ǔ~: rn^/x2Wj4O^ vfy\D9i .eh!]>!Op=ȶx!ELվ\cU<-۟#}ZIsϵvqV!ϓM5P@_3Q9heWxM$"p79je3-)-lL\ÏrtQ;^Q~VW/Z Z$JA1j<(_׼>!)ԏ|䰌+U 1?i=nVyĥUHHL8gvZ%KpV!);lAs]j,`a^uA.x)6 mbT}TFT:'J;xPH/) -rMT,+ " >STWnxfڡP%rB"@B#)UcmݑKNM'/ LT, +fWxVHuf0. VK3P`cuQx`LXw(NREk!v|̦׶o!yJey$%a.QNa`zz-D@lHͼH, ~B=j(_(n\8zp.Nũ ag<=[OkY6$1"N,e1XqOQM`#?Mpռ9HwdBsRmP92W ;!gfIs}޸Nsn:L;j=0/%z#|#2me: FCc$H7`gsJBm G~ ;m.h$C`w٢2Q| 4;jZ_3jTdn롋=Zd pK@F/\r)fo,@Dx.w\_vnb㨧7ګ|RD]gG (S܆N4}x␮*# $"-(ER <(*kn<=[?M?611mb|0 I(Y] g4cl8Oqjpx?*B 5BLX$46&ipuEqRaRfh+_9scg__K .b'%is]"OkʏրW4x=yB>͞Z-/בT w90u-T,{8ZnM=x*ەb&HAt3-ׇB /\HhrP݂/|" vcyRĨQ ǸLeႥƃ'$6E(;.4rX.-DPr~@ Poq ]&ob(`n{3k&*m\(ygDCC :?<9s\v.B ЭC o}]1LEs1L?׼y8|LFn+޸@D `AI.|Ǟd0 45f0˥L&T\ar@LJD&Hׂy߂ .=8Ue S'{<.؊$[OK!ʅ oͧQ g;ow qT~rA`tl"h\~l?;]M<Ԡo qoħީ RwrIT}$X>"M;ۉH k$ayDI?H!  nq,(xO'4"*Th; GTY|ۺDHg8PpY{_FU"f9%}؎"Im]bokQ,\pS0{ђչo|jjc>>BTA;Bo3`˜AUWJazǭG]_:[Vr1,٦ϕjzN `5PN;6$|aٌ_%[FTGro!WΟw>WhƭBU[/ c!es#Sy wuݯd"JDii$JتnGao6vbj-bsFF>SwQS9Ƥ7|Mؕ:S43y\gv`r0D,xn3h9mQdcٹf(?QVui`^ŝtTq솈wM"X¸9+sA>q7j7Mh3\<}an|c+QlOZWmzutEwcc!9GD~AMW5U\OJYO^) [iWro@n뉲c26oڤ);^:+;h֧O.}ԘH}"ccNl|,1wegV &~Ȧ}ɳƖ/k@ 'Hj=\v>k‰\ylLz`a`ߘ]^z]fRG)%‹w{ yX#H.s99&Di+2ַ~[Gɋb~pN+DXF- xgt56z{ Z3&(36q]9k=p<Q"nPrpNP+װVS WqcNO)SnWjfdOˍ&o.UeX<^(J #T,1GUj$+r ѩ@^(y˯(Pu嵓|>h}KI-OL^6կقp #ʫ}\ݔ`\ U"=KN,ޅ2<=@#E|QD=@l+vqUpg~ X'$?h g wNv݊qR ٤ݜ: )*bldP'|ާ 6װu-*By*lld+>ECDo0+ bqN_NEJ5T6DaR/kOsБG9qj A˒skYB" b|#'ѭ1N3n`,E xk+ձ)QK + #%zI”>$cw=H`s;5Zu$zO({ХFO+}T[iDaȊ#E^CsU]O曖ݰ[uOBShB9]Uz-L#]^AFgc<9,l^u1i)賥%uOa`G= "t)HNZVJH̹ x3 Y:̳bod *LR(,mpAu, ,nsR3Im9:\|j"Oʃ*|ܷ%$'X/;+!_ ?@Cog*Tq¤}OۋBv)~wuHmɏ!'Mܪ!:oQ-,hӯoD}`MKg!qtWaH<+K]i 6(JC҅ ¿$gj9(+Fgqln<ޯ3ZjQ鼜OɛHe3,6}p:k.n.XeMY&,cZԽ,K"볫:/,8[,F iҒicRR Iy͠Q̷g\'eW .'`| 艕uZϴ7EՌ 0ya8Qʍ6yHO^bG ]փ=ɷ*(뚅`nvZs$3L2-iW-tץquq֘{ݷJU!Qg ij53Pg{θ uSgId¸\s+wZzzxk_f4eo!|`*JWH1 =»'{ɞfYJd:nm]>/X#{{ };3H[[ #]n[h ((eh%uTx[u { Q6c/FZ0T\ S4Tl~?N[P +a'Wb" |ZKn'!+%>\ϢJ1^dNkܳc*@O2ZPiOei<}O%mA緕>+y5B`h\:vm% X(>LӞKhD1XIhUElNan{PC\ԸǬ&zv^6 K(N"|wbW=X% >^PNA?t.@XDtP" .N$z3ؤ$59.(ٿA0>Z@3:{$Y̦ZrWh xq1$^,;"ѿL^&Ѣ 8OTӯ x {\Y\kKJ e7t#̤uAe%PZ]zO7;ԭ_79 Y1w"m-EraQMSH1]C4w7ޯ7І%V^ #xb}L"^jL oՊf62R@$$jLllW7RO}`_Bh|Y;1i1 hf%5$an1VwdE8< 'ޟxEfQBN_v,{Kܜ13d\hmǡ4Ai/D$ V8NkO-Fo6b|_pm9NHFDOzԆ䝍Sr^MA6~>̟@Ƣ E7LUMf^4bE'qd؎+"`P88d9f}3{b'L8lՏ E^Sy6j"Ee~`!" !4gTрbZg66P.gw9J>NK{i<ŭf v z()mh^*Y{RT{:"%zOԁoqZOf$mkj6#;8nbBvSlTR_Dgʣְzn 8iM8jlڣ_K S&:uٗJ|KKiqHEnbW1^%*at,'7T7 P= VEi*|O:r~Vv$:AUD7NʃhOBB4 |AB⯽ޙV x%*@@!5$IU 6l0$^]gʞ /jw6,=Rou[mf3ăoJYxwAwŔa{Q{?Q۸~3_V,w}J3u6m :QJP{@uw3k)p;A%3=رFtM~>FRɧqUaCjҒDAJP 28Lw1}g$d&~ݩ=m˖(nvܷ]_<5hkd |P6e)?);2v~Sr_nJ9\awf{Q_*e,z00<@g+r c:+3VN{X`@Qnla3nw ak:i.ed0)#n`t>\DAО.o~voO:? >pG ] G 8~cFb8yiXa&Q>瑸}PEpz_ҷr2;0%| izb?qʜ\z%hf9۸\DZlǽ2sנ/P^҇fN-9ɥ{b6,%OJk FZ>2ϳCz>ƩYcY/M>dV)-D(D~'NuT8_ ' f\0" 6 hB_ylq.Wem,鉯xJEɧ'P+w(+If:>KS*g 7]Fء K8'h,Ki:˰+V ˠљ%;$ Gp C&:;Wٝkwcv-R`5ɺgrTQ(V_] =ԡb'+6Z! " ?ڴGb}xo9 ;^▀i :D\9m, oi\[@v75 r6P`kuI>SVR%mN8TƵWKoЂ6Z Gng1` >V:Cs,6uMb`d3,J7)Mn}St_'WƝGdBDGs18k0ЇƈS8)S;A2)Tb{g48 xnd&"K öFA (z9'_Wj6a.8zUF9Yw S<%6[qtf.6pg+mĢWN ք!JRHii_/A5vZss?~V{ 2m59ժ@a 񠚇[V c9^ *=!\gPŭ%1*b`!f?IV|9f9{*%]4=Az-dz!/A5H# shjhNȣߛh0ecK}B; -kd'n s8ZG ӉTg(:v. {@)QOYpS,`҄^ LmO"6^2W Y*8!V;,}{U8rnALpG/AExzwT+ߍV8eܔqjDIq΢o{(5n{v/~ gF[amV#I9c`Uk廗@ġq1JMW:J9G~2q[k2(?0|!÷=kKN3"W.|CnnU*w0]o~}d=Ro Ge MäH& >봣#sj\\֡(,nmˢнPх2Z<`M0{o0]?GE5bZ^/(_rnO/ )?=Ϫ75_Ua[l|@u`Tmݥ-y^nM^r9i0D-c~Aq2E?8LMPZvL\cp4x[Q?y1H?^9d\  BSx)-u'BUM3SXTCpl#}ط5Jl囷YM6Ŭ, FΜuΐ/p=~( f7Uޫg "ϰgs]Z0ckSge P+큁"nBi@mTf: cJcgD7,M>#dR!/lL ;%fv26));AZ!ޛA=&餴Cױ)!>ѲH?Tt$L3*baeXӮ& }Sӣ2u$D4ѣe؏`1f}:gNٷ{G~JV#-JmeRkU/>P DRzs\a)gpPJʽKqxGDžiŔ6,h"^8UWz85(vV>3׮FҠB C_Ǡ^l>jdp4䡏XZys;Q29U+Uk8#`? 5 @Y.CӷitM[i~_ƷSxˎvɀM[Z{`ע|i|р9H^(aRX`$]mY;Dߍ_&S\8/1V ek':v{|ŋ[{$` C\_"f`nhxO<7!0`R ,ta ;)@:88fx0F373ӍR8O]ܒ`8p hU?9 s3**rgpZ-%__ȃ+Pޓg;]s& t 0e(II֝Od8 #Ct 4@> Ȃ38>>p#-&?]R`Og[ iY0εv 7r59)n6B륿BQEIbnu %4"x+H !,Lam OIꧾ;),b0lM(1_ 7~FYǫ3EE_2Jy/1:>{zKC)?[P ǷkIŔ/oUrO7:Az a;',[{ܦ(2pyS|*؅ qAn,Vw4jgе3'OnH&TN+QX>֪H',)8[v9!UD}4˾zk];-P5m稈dPX'nj6$ǽ- op3,/=HVXΎe,n ӱY sK =M@~a?ͮHC[i[Q#y%toe!%!ʮH2jdC>ŗ:G`1G ۥ8 Rnk?]eIbma(:-M1hLHcX' OW}+)B==+QH984J,ԔD=o1ц{Lj78*%ᨑ+/jPNң${$ʃ_`Gg[*{8CӬsmՅ+1*ޚH( *;֫`% KL*^(h 30f/ ,Uc  V,iw~qvt*AJԥK$XzEU>gBֿ4J1CɤϷwzESQ"/1L/{?Q|y3-?Baϑ!ՊyєWlVTt$^k]XQ]WۊKoetxr3䱫*oopD?}`BPהc.i6vʩӤ @ծg6\qF9B?ˇqn J;WixdϤIElX5|U".тk@ -Ѧ_D04\'no}qEŻb5f<\ƋgB9sq5"/*)B5 z\>|UX*9J˜ixG,Xr?!n/t2y =ɹyEA90*rݳC*AپO%%ˤ'/B6PMR2b Fk?ސJSF8/;zR 8Д2|._zU*VjA<)Ui^`;UY:ס}sH("ڤ}r0[E{~J/7 V~aՃ Ag3\5:BdJ~BsG{0Eb O-qcCN7cUt5Aqo..,DZ[h %Q&4\AvR>O7m ecJ$9C-9nrhry.30{*'L` `ya-ᏹrljx֝M3!$MVѼ q+.ܹ vvjzK,Vо#1.ĝˌ<D\D.ęN vZs'{쵐pGvŻwd?6 qd [+e}ʴa(of1%IXRǒ%;P6&={븿95Ot:PU3 8(@9ʏ,#*GHU=*V@4LK4)_Z_xML] %I.-v CЄ/s[ش*uB^\:@wl0l}ی,$_YH>(Url "eg A,yKfA儽``%H إy ]k_&ߝ($Y*{3ι$Gjj5-ḻ̌!~Dx*sq c6*EsxrVԽ:?G>NhFe}q$DL &]5ADud}2_R򽰮D=Ǡ~|PF[*5MY-1z`YT,-ҭ]d^om.4 =Lk{؅Y KqG}Yؿ>tu3ȟj |9rUO3BJXpd{8LX"J;RUҫ7_ziO<2(`m%p.K- dsfͩe$kw Ѝ2͹]#qO` q9̽tvzVH}b! 8 [nbK=St;r؈kܠnMZ``Sy۟pCa!kǘ W]&hק~egz| %*/p{Q|wK'O_l0=*›3=Pm[m +y T-wTn rٸ{fnmb!7CJē_`ui mZ @a .DbaO4m#]#Z[x* KipG D/k5۳+8QyD_x+-H `zɉ \N<VY1cX$p2׹FjK2xȡ+U$j1W]'[*kO,<7-x00j,%.WaFlDbTJ+*DQ; Id=W"U&^8:3 ĭKRX% J/+@Z+xjOaKCF<(X Ш,_zwGx鴠fpvj>78Y"#sTK'tؖOsZU:~CL7\VWRR+|IP\<^m|3_>sx1m;MW6Ny₸p`C!!|B~?5"u# W?zvg3Î^ L֠_KewwztHbTNKfzK;+eh*aF+nVP,I,[ጏ˹1۳x(T$!JY_8SJtÞ *m zyٻ+)  }{K>D%7:Q2W]]y_A&vDxodWY[F:A˩#I vMLim cӞ7=NRR{'d"yr_ݬSv,zUQ/AeDV>0S/7Ղ*%l7r!Ns-\m{oWПE8)6A]=E%C;[ },j̊: ' ?B`c,gC|kv~ou YB'y 1ěYvpz/$+Ä́E6 K延$~9@Pd?5 eE:68 siݒ*: r zS ed#90(16#;t3|Z4*d*+K6c*v/tZfiZ)9Z^hO"vJnĖ.7B_Y姳F:\(+ f ɬ\RFz啡}o?FO-!>?%(a@L$5ߝ xjiژR4$PT֤bqB?> GoS*q])<*8Jnj?r@c͇uiԆeƩ'K4t&ۏCUΡ$|t!0A"rOpGqnv_hyw]JHޮ;fnbi\|ĢޒӰfЬDfcR-}IqʈJKxv늴uE#-]EC[mDz43'?3w$VDP>g%fIXrSkEhMU U~+kASIky蒌CޱɝiJDCC׆Ӭ{iBB J H?dQ닣5*9e EM5y:N2 ϋ(x| WC&Xe?ş<s?xڮgbwJe׭PwFIkt4} -6:kqw&(p?V;,k87NnK:TZ[9!Fm\ex*Z?n۝俖_v pI A׿ؾ޴4a˯_5֮C1cw+գE4_M$ -9:K ׄûg$3!`dwvh`@%TbDoإiBK LوۅV7azT 㖥!{o6} L[!y䣛"ޙam R %JA{խ7~@aAAm8q\#N?ի\>{m|ќ(Qi KinulfmLʶ+&R7FO6@w}YUcZż/8Cw6}|T}Y>N1&eS 0;Xޔft#,i$Teۂf-*_|Zv+dA$ҖFƞ|9 !cae$۾,ޱ.R~;ABR?hq5&2^yst]N٥˝{X7_fT?(=}8f棘v5hBNA+&@H7d>L#Gp^ 8; j㬁3>svL^0d4bl pUV<c#IQ{9 qP甪u0S(g{ejZG.QVf{T%BXN?#kPy5]ǮYG8^8lSä-?*X&TBEE葻J`d.ބ 1+BKCj<-zZuPTO0Oy1.W5C,b%_d(#ƙC<`>y ?T=Jpugk򬪫b{fY`Df{5%E~]f.UfK)%ɒZ.(9vH0U;# gHҶBK wp; \o"ġrahUvR/EDJ|_ӗD:8PkzXQDS0bBdJΑKV7qŦG%q˓-6qo1D\7TLhM4XwgkNx=$DYHgxREASr$Tċu rQ#[^Kc%.J "Nxկэ:ܶP?SSkYm|ZX1RjkWݕS?#J:f!XbWjo$?6E !"d2l%YdDMI6zJ5 }h=>*,Ӽ3a|D%?`U@ª8Z&qwsHmx w؂@,i͏TroX>ˎһ\T4i.%QpVF>㨲 jΓײB- !jV R'q.=St<q jG,qÎ|n'=-#=/6wO=@_C\:J.wmr\,'S 4ʿLfo/ExCa_+Xpr;XY@ZEo2+|;ߔڳ 1b>tg+Okuj/8-W1ی?~¶盭֦@i[XYRHb#;EZRfI=mnXeh>BֿFA:od\l_0Se35NbI7\r/EId|Y_}#>0%K*1"Y % g_t@d\ꗗ'J<٢ #[1H$D9;&@RkHy(K ߇ {;^U PkN5v8X-6+[TtW}ɸQ5nՙcmh`7xQ_xB9F.ȢI–¿igY+U!~cm:t3PT0uk-CF?۩SĄI',ӆ[8I7~\)+Nr_TP|RǟRHuzU}s)1G&NA"$W<`|cȓ_M*Z4ޞrnxȍ,aURZtbME;;Rz:^\'Q&\3]蘙t'4su \Qm3˒zα 5TdR Oh"0b[\@r 9F g;Oޟ(f˙  {%nC&"ma늸m|C~Qgށ?Cjvdjc!"#v{DNwnϣJ LaCwwI5qɪ_\ju.T֢-2k050yЄ}NX _b24~{; րcXdN@SH;*ivF#̞(υ2K>ep^VnwXۿjt2䄞c~ G.۵X)CV 4 v0>;UB^7#K-{M>M.f/q#7!ƮŠ>ή|OrnN[Z kr Ŭ@䨏ac% JCpWK(=X)!RfF_+3VJ t6|ֈ7|Ҕ1'@6Bsg녮YU ܭf|_ԥ mw81(']NxSڝIAgǹgn!dⵓ8=U絻^)ob͒XYZMhx=ؖr\7{W6TN9UD7ƨ|LO!hg5M_=YI+4̻O[6-0=EbMjk\M88I ڂl<&0˿?Δk5jVk γh7OKuڵt.AѫQ~=a,!q4TuSYFiG@h,=֑aj;~Ω@QKiwyK(aٞ ak8}.FYNJߎ 'sL]DZ^˫X!(o^{8<HE80~!@m-=!:}R̍_aуWGFɺ__uMM9IaqE?],eb d¹N"-X&ro-xUO!:j2n] [%C %^L3j??ㆭ>* w9\ֽ%!bshEԠ3y.^[L ?cѿIEN 1r}iGgO>vӑKFٶ?FA驈J㎋3<ɚ,ԍ3:mov*s㙬?ša$! TQErv,/ \70qUE~ ڶT+JR[҄Gэ#T7 y?F^G?Z5X_9QE "ycY2VvzI:Novbc'^ م$*DWr\UJ10e-bBL+XLzQm?I-kok &iTm9(|i-PFL$Pe06SWxN<#XJ>˧4ulo}H ?Esvݹ6 ʽro4հB7u3#FQ??3q̫="wpwCDu3]7zs^&+'4ȒRC+O]vNeEMdTbA>˜*y9䈤UELv і^:mU/.52tM8ͧTQ WϦeJ,cjxX(74n 9-ވ+"`iNX-bO٤q ͹da ./&:Ǝxf +O+!o.(V ]RX񟰎Xa2ÔE˨昰iH:l8aϙ˭^G隔vs }7m=;3Lj[Žz$bkh=Ax3P>08Ұ}콏 B ME`_S~ 6,67XDr.L)@'0:e]d̋W>fAԽJ=Bn JtPf1).BI{O'ZLhc6AjN6ߡ%NY;M%YpKB{Vr- g\'%fIQQ0pLZVL wVI%梔aW*sf@qޟ#3jks.d+`Y|4#lj@lA8 Uہ&@ix&sSbӋEQfiƍCv@ *sĽһ@Il̦ ll.St!wGxMCm9bTî`厁aP̪9 ar[8K`)XUnfh4*2ogi J"ܷs( wDߌ=PђxOgeJ>_w끕Fim7Z2i"DM~qY_zE7c_|e~,.'{q^gL*~8PLivk;3 .1dXm?{-~';Au4G>jw;]| |HRwLܢlNw[p-gџ8b2dl*T6mpy(q~JzdiW5cR<)Z m{-F:yioj6(#qTzSHF%Z]Wvt*׉͗zOT3ae,2 [4%+^H(]wKk4ͧZ{|w-t-d*q![*`M ٵ4SVGJgl[z9RXf=h" LQ-hʝ Fɉw;2X(LѲsJiQp(.z̤G&w5WVzP*q?1Kpё-u}݌q9>:!?[CXiӚ[\܈}#1d*:M4y٩ƩBPTC.{Y?Q{DP&~h<;5Fv߹wVJh ې˺*|Vs}!KL[hjF>q,J* oƤB .(ڄ4=ro[xJ"Nu.;"q|\=ré>w&Da?[ >K&Je4OV測Ys+\gj`}+$*y߭vz2HK/Y(,]A$4WjYXEGi^)ܱBɵ1&ng238p- EwӑpU_ ꬅ/q̫.\9hjE>.E@vv`|F(3Jtџh#f%ɡ >@}@2t,dx^ɳ|+͋d'ҖΓ' $#ɖrC'e_;DӜ #/IVx qA2W[yL̨Cwk*R _Fq S ]+j?hAC_۴C#8 1\g' "Um(©"YeEq)zDDTtt1URKd)bԚƐ]8;ڽjfnC8M^ kynX[DHiHc zYٿ)qN/1viBCWQ{lfS--Ne0Ӳ~uLp4~( `W].xS~=BxT#3xY{ ![j䄄iˀQtfcMn!PTm$uv)nfB_Њ'92n8;H2M\8#~b[E1A7|c|VPϒm!4ihxn5OX(vMn!N~0q<sȺ>͊.b'ӂ8lHZ^7_aΡ3>k*M/*eGO+ስUUDۯ=֧tU-&wmhMaFo'`т;2MArCl81\qaɽDsv. k%̀ՆuYrRā.%7@8iqhBQ_}͎)UNyP 5w6xp$j(3_?c40ըᧆlKբm< OiFHNxQlIq֍0Z(νELCʲ[z-@@{V^U7FvZè{צԘs.quJIu`ƺ00oF7Y؎)M.db t60_KK'+("WMlgQC/3&oHa2O;ʀ G"Fq h!Z*9S^h}RT>-viz8KRmDz ` 4g)W$2ĶWئK2 Q(=AnTDѱ !@ S''"0h@`lJ[qcƴ6u".> Y ۵rƫ Op~ҭ|:SذDcVAGt(\{!Ok-z6JՔY]?H7O ˻=*@,@AƅEh0  Yp'9,$Dώp儿+uaѩn4%YO<v@`vy}gK[.9gogu2ъ^\!beTa\/ckUxPӥs4%/.($ꔢ}!-E-\lQ۹3IJZ;d:ZcFP>o!}^=<r1Pw_ܢ"f_P] .!'X8$T/5D~4%jsnP: U*6˄}l\Ş!M>*!(%b rv`IF!VТ#0|'3PYp]l|G$:jv"ldDog![ݜIm b X4Zڻ Wʭ'>[gh|ٔV,mDc֦kjV% _4ƨ..T-]>Iǖ{zn`zr|.k ? dҕQoYwO2g륯X[*!@_㟈㖂%@K^Z Lj(.R V XP_j) w3ȏ-?U5۲BlYJ>C]!cN@v~J/ {oV`K):R0E#Ո[@4ހIW%>eE[ dH7=T?C"3v6 Ssl!b^Ok۷/Pkad8xa OSꊙS2kc! cl}"ި0!78¶a$6F~(4+JڦxS0œEyPܝ4979ݩv2*?^}bP*y(xH]|Rx[[s{6eWPĐ9t:1ZXQ+u M*Gb9]HC]z{7k/d/k`nt8jE*"tǥ2v15ov)U孙MSLK ^( dx sc!*fIKmN vSF%8oe=`ۄ#w8v<[ i[}@"*ͷ*Bjz#4LDђ?yOg (/ <^xz'ߣ/텈EOc\[\H::0)if5@ˇ@jPx3(dVU0'V>q1&6g+C!րU'sAg@`Nk7l{~7aDceTC5M!4LӲ5 p<Ύ=uCլQ* (cKKt*?"uˌ(Џ!$anG!BeK2 zYghrO˳5\sea1!kOb^jx¦T1we͛.X2B~=,s΂;Z}su!>M)&:KS't0ԕn¹2_Qd L1!*{*t d`-ثs]nJE,E˕Vz T9M~ Rn)viS_Msp:C4\XHR);tqP샎O}$ ӮcCi8/穹zOg++pkskH+fXuG\22tU= r>[ͤG*n&Gc_|yrf =Q! }rEǁ#PXMXY<@${zj{wDL96Սl2= zmr^=zo{-㤷dkL 9L*:#^`j~9[ְڔ 'xpu n4ڶ~>WۙF7P|`) ~xa͐Q~>tpVhMI/'*X4mA`iƭ-v0dJv&Gs%ބqE8%ʦz8qlg*#u])9Ļy3󺕵lAtnRθBuʄG~>/o 6I`O}#Ylil+{k^a$(TmZ-4 IO2}*~`1ɜ>cm|wGv" !9-tMBh04Tc G|R;DuFCI-{8E` h'nytƒн&j ;P$vص4CWDOLaα?oo @s`)+8N|㣋'c`XS.B ӕ 2iǯJr_)7 ͅnG4S>gEԸohTe-D[LZZ|U=G!Y!*}Ud7Uwjwߕo*jvv-cr`QsУ,uHNBYƊus[ֳVec?r2e:Lj/l1t:Q%}oLq ?jDp N&cSu^XrT|"v9I3"fy`u{85$cc9D`zSRב<%qRW^ޡe&KS|勏xmYiRgw^Xoff S/΁|%iݞjq>8Y2srT_BOC Krt֜#Ir< S.%L Sb*uVdre]/4~qY}Ι܋O-SU D&4X mXN_P"YӦ Ku[`{##[,Dxt ďB|bQfwلMY)HKgRǺGSH>ЅA:9B+ z8Ԏto}{!Qℰ<]=J\/ Z.㹬H$lv3.ӝeN- ǬAp.3=eo={7]LIaF-r lB UH9Fh{}AXig8 8AO7' ^c*?ΔֱZ6j:d% /ʦZy)s (rˉlto Â< 4Od5̐tiykLyWirrv}~ִ,GTЀ CKi5e BV<"D-hHT'ˀrp2:/TNw`e2Xy)M)%Q{k)-n{M!wj8Y|-JVoi{J)(֠_az#<[QZaVZjB(`7v*E$ABGh bml_4w- +bL֕-y.aYĎ?\j5BsFp GpdaVkirs6۶'_VrxcT\J,(̠9ge[!Mp NTm6D=Bތ|أ%~qxvWv>`O0x u/R{`ؙhW)WJ wHqe?/$8">bx+w o5#'CQشq,ΦaSAA§ X`Bm2o-7tYy#_H|ڦb`N_꫕v j 06Z'P_\B`O^T2AG ÚoA%V |[Ϧjdկ}=KC(&~1.`>4S˻_0?(=sB4H\g5mja| Y:7ۻ8wjAq%8ރTBZ ɀ9vO=D&JCo@jzrP]d=e*ˠ\GfW=!np,>\wn[ĭoYa*AV12Mh("(J<b_{?)p 1EC=tmNa+}WJ!;Q ZJznFrT]R!"Ę;URh #ވ4|5PI}ev62_ ->'dۜ 5\{1L]{cFfS⁌&l>݌%-s jpI!*%0ک_%Q5 4LZ#)4}Em<~2|ʗO(*]$;߬> .Ymhw780p@IfS zQ7 `se0SP< [|ټBw| R٭? CRZ㟽i|_ě; vfPr"\ҿdAKcEu^wx]ן1LD`~UֲnO*aO,>o8;~-4Lvz-V= PTx9o Q.P*t_rIzU-|.fc;Oq \n=ƺG^76If'ȋ_kW!`'+WVa)zpq3 $IT˚)}~aHQjA{%̨_fj=>~&-|e^V%5%t%DzT0 9hk(i/ޅI.(Sj6%m_4cDž}Hing #.}9C۽Kg`n'=< FXzII/A> q=pͱp3Bږ:I᥶Keg"dM-aqp-O#%sEqvYTzi%7(8J,!^,nvTe6;18dvۄk.&d1|E^KRPy:ȓD;M4Qdodlu85V{D^y?H։czކ|IZEn Wk8P5nn2dUpg:P 41-IRuQVZ9=r"z* yB} پ %((vPy[hs ~'{/7+k&ݍ%d ̓k jt q䱯(1|&ohU8l(֯}cwK!)4fbڐͬ-%`NF!0:%Jф⩀ec~h~R[z|VAV&To H+銔N[Ʈ0|Gnrkjr !#{h>뷽UX2L(Bn!< 'ly4 bE K~Ѻ],z>k4uwZo#'"_{Nt(Y~[fHeCuɏ]є3,p l>!K+.L#%/zn- < q𛐟;%DgG@#B<{>`84;ؗ[<3.}3A?qa>7UrriNу"^A1g8o(}>)L; zN}t>լy:% Se}RnaNQo6kqUaȘƙ[VW$㐨`t&^]s}aC 54oĽ>[aoh ('?:smPƅXC-4iM3ȧڝNdSn9/2a|Hg ʈ5=IE'[$*FLPc!,mm׬PK4~MGҩ[PmN;оddu`{axF~Wd<1Э/̶8= `=(>L! n9`nepZ748K#E[dLcfnq,ۭXo1k57s=B>)b 5 1CEt pi؞ .OhA>f|2p)Ś'QW?3xm6b1 g5JK+2B`C=sjX&tǁоaI6Ҵ<psr|DCboZ+/QèrӤ DŽVTlϸG:(JHXbqFcZ旷qºl#s,xs ,,϶VbqCj f({WJ}e(YOqU;OPX5Iu#{I˹BLh qVKLž}W5 Q*Q!-!` y`TWC6sflaT0y9;h!_Kx5`}4N yOk>qT7'[[*O0j/]vـ!v!3wli IRBu.DBi5=,[/vd_[e~D;pO%j$\DfFm1%m^/FQSRZu$ւF`Q]޻)l;^\.'u_1FXyj*ڒj=2g϶X+G"Dqr_RXS#PZOOSOvY"G[BY*j@ϵ*xGsZܶ֊5ҙJi0v0&4dRW*6 h?Mn+ȅ~dhm (-Jb'Doj6zkt)S]ՑDY1Ua?)Ekl|9)bx\ɮ܃pT6Q3\⫏tepRP;p5ŚmV]EI(h7rRȮoGXP̠%S(B(y;wL;Sp|K ~ XW18J-ono~))UnDm,NUXͿAsS * X~:@\1Z\8@9L TP-9(LH\f.o@(e4:kLj7c|$SG7\:Ӌ_8JH2SIBʒ^9 9:cOh~Lk" ԯRy[v8gztuc2,.1cJMm5䰉&&*;':킴#9j Z4˰2kMҨAV r Ɵ͊J/0(uIt* I_8؋FF!^@ #HHy֣13fڲk2:Ō#\^ ه&LuG`F5~)丯m`lqo׼{Fp"$fp3NC<6}]ύdٲ/}ݵYg;4`xO{!]cs|yӰ:o%Qk0aP8(~f4]g]i_2ϸ Hb? q)(IaBc8'ijZFnhF. 8t@ $!4w$NǦ %񟜡GCt<4=Zpz *RkXΉW-Ҋ05' lXv~lr%xI5kمoH}uS~²O%:R9cuV@lan)&gZ ;mJF_:U32~nXʂ cHqQBT]!dp-^no;ԟk2!\>0#jOXʹt}~bl L:Ƿt,.@B!Bh j*7Sd.b)Mux86=et[*橫wBj0x 6p*`%w3&.};6$nFn jj-iy@+kRn-sGOZ;SH|Y&G&|@:5@CR\U.ah@10PW;2Mr(K ky MQa} BGh:N߉YVFH5;R_|99GB&RC*M i%16095AXdt)>x{)pbK,!DG]Bc13Ab`fȽptBsvK)n@Td-o_U77kU!jp%M8'q#a@l񅉗"-m_e'[쪂F (Xp>ƪBqMS&BND](ˣ&hw@ m\õ0;e:mgdF 0z%f_b&=}mU$M%,[ءGYbw+JACOF 5W"yۡ-fg(>ŞCos4 (?qi.MM@pQN{i|zk-ݤwʨÌo=Uh>Uf`‚o= ;b9ZŢD|zԣp% +&AZu!'gĤh) q-J;9hݠWŶ<8)=l Fr R!50A5v)d䐰 r[D~aݹkrn}:̓V@$PzJ&\ \CFy[ʜ>\`񤏓}Iɫy^9,>Uks%3ðh$ ,S+Cʾ?ȵjr5@A3o@'{XG]4o -_u=Ԍ)ur.栏0JqDs͔ A4;yN+j@UEHgSqMbY| YNA=q 17wdᙡQsqp?5'[o*hm=3 >Q+0sIǬ/Lځ W+|YOz5=@>u|=g_Lz{ϲ+2H]LDt QVJ5=I!16$"=|2,۶d5[PΟ&RZ&l΍|E?IZ {w2,g6_%z8aAW;yh 9|̅':w|oviV"By洋Hc@~-i!|ʅ)*؇jh%Lk{>]\oG1u#UdgZm1%`WJ"=œ@;Yad4֨{Dt2r}oFaSZWg:Pl4x}Õ_!۫?tUcz)pۚA%3-' Ŋr5N' D/r&f6K*= Sm$"zojq̣.ab#ʰtmDҩQШ6⇨8[v{~L4H*DO=[C^=sUȰCHfdwx$U O|L,+ιxvoOJ9\Neh D_}^\aDh,}P5:,XU6l6 ތ`+,|0!CXoĔzhpfX-4!4ARןgM^k[ V|~& A=3bΜC6,^!HZ->:ANBZ&w~ۯa2p:9b|P%9I T : ]>˽6VKu~o#?ZjMlaC_H<`I:NAg"DMCy(rɎ(6uMg-YS~X A±^Ͳ>H[C Tгo9^NF\ӸpO^ vU>,!'Uv)::Gw\dFyu ̯t VŶcշ@3O~sjDөm9d,ɕ+jЍX^`͜oxIfbaƇ) R i fx['FePVW:A•C)Ig? \(YA<ֽHmWsja)A2 ~`lฎ)^79^j_EJ/6}@|~9j11:MӥD.5g(o R5Pk8D[lCGbB'-̬_/W4Χt.LJ: T̥~ƪ\`ExVOVxwI=Tp EH҄HW cBT1vaae𢀖AW_%s=Vf9.H? 34F ‚u,vBgE/'Ҿk#ĆA?7:|" O]>UNV3!꼞fM%fU60?g?zr 3 z2)Kw`5'$@Мc^sЏy^ʙ -OAk{;p|7qzh0R|@nx{m\Z/ך'OZ0p@#@8xt>ΛJ :=_1ǼYi$`˾dٙ])CdT#UOCJU4M+S/:{}-هp [ Bʑ|B$fj][Cx ]-leܧjn UN)`П.^! RKȆ}_488* Cj\H7n y;rђsV9p)}=c_kN{+ۣQrj".ߛ~KA>,[Ci767tGm. 0`SzOoL|A%=um2j"8{+fG.h!C~׭@e^XDˑ4Zˎ;/]ϡXwsX,T3*>j8M-kq'q^0C;5s?VVW⟶і9hE97b9؜ j: ]Zvގv%q$ϺmZ`wT_#On?AU@%>>s+y' &5%%ff`x֞s{ zJ%&VɊ/NJvmY@9=ΣWְDIظ:nνG2jd9ӬGAgb.R+MH+O$]^O |Pm2~! ky390[42TkI5gif. 0+)y+ 7Ds aMb*W<,AYC MO7U4 E>?/S5wyxm`|Q,wE9\QP=C̲a&q(uֻqAHmh D8*a.}(EK0oD-lZt͡ '>#ۨ5Dڥ-K=4-zE 7h)i i7WPJƈJ\ѓ*oD_ڛ&4|D`b|X(fc-G9:adQeezImj2`'U⭇LlVo D Yy)bRd3nsCyh/5BlId6.WbPv^8zy7 ZJN i(ߓ'`xXOg#D JF$ Н= F8xԔKuRע].)d 茢ۋOۈ}&Fo,uLkuL2BiE3g%dfdQ벴ۃrٷAskfTZPMiohRNKy0/N"Uq z"Z-pڦ~i%$; "ږ F4:3kHaqm0RlENߧI`"♸p+~ !2q8{r}&Ѫ+be4[[IY ubP5q*}}1 \*,=O6`dHpKf Ugju";A {n$Q;'Qsu@tKm!ߺut~7'"xrrJJUsM.X:󧁗YXg6$$.4:W/}w>rq m6u7QW.tA!:*39--INGć;nwb$l9O }8JfK%nME${j s5*=,F*P_Vd#DiG 7$&ּBIrِ9PbVl'Nku3y4@/:Fx7mˏZ'x+n. xČpu4&p``te#{w; KUN֛G|O.F;Jo]%@E1^]4:);S)ĔCN^>=`w TmCWܨSm?L?'Gw7|s^Pdңtr{"ΠۣkLs@v8ү *1arAOJɿq)<+g>E"yQ˻C|ʮJ|\ݞŝcBdVir5%k܍P˹ӷrqiZc֮6CN}-6fHK!& ,&c¿rPbIleܑeLdtwnnt46WXݽdyWZd.4F׎L>SbsIc,}S%{zu6>)] TR@N#~K Q}}O͌L"gzqg d{+rYw֢#EFMĄ/LCϗAUJǕ9>pzesFW *X'y@Dȸ1n wB@ٚYmqLjҾs](l`ؽgTH)Ek8սq]ISnp/\[ Dj 'O^dJd6yk5ka;F))  z0Y 8qYHXqA-;')`;JJ<A/n8J1>w3u/+*qaѤ@I"^V%%YyXE:\Fn| @@t7» خ{!%#y%<%Ynm̀oO٘4 7F4"uOMXNl]usINfuYEAN~}(WP [-"#A{9˽bY#YQ1q"Aj=6_x |eLa~hGְP=i7rJjZJAɻA2:C,2ywjfTZ & %䫬B\~&s.&Lj|ފ@dPbآTSbIs0㥝F$}gsˬH|> Yn$cM96_:~?үSl}ĿLUTCފoH"\٢S{dg;oF{V>IN): Ui63:+;)|n6&Ѫ}Gmy-J;C^PշV~~pSpz?%R,''*ztcE 9!W"SON@ϴlOZDFC_}ED^J/~YHK0c FZ;./V .go,ձv̨ofN?vm^wĦ ~]ȣCkNf M.Ê-/M^Rp RZܭ+_3"vQNG2>_X pfTc v +GI˖]h̑+]KtɟLȬ@_^7}F;|c.HE-~ 4+RL[ =383 v&ed,')vJ8)in+327~{ƜBh>^gH*@Q)Pc!DsHc%<"[e-O%x֍wǰKi{ I58hK&b]] ]6 $b>1 rVe9PLLo(;5D{ 9)rH7esX/o8ʫ-nohxj.p>6T:Umq97F!n-–` "K 03𯱛XlLP,e~Bsi<AZ0?@0sP|hȰE=BJM0%vѧEgRjif2) b录ܬ^%ݿg<"ku4ɺfn[Y)lD=;e('aH``(bO +T캺(> Pe.{ATD=ZY掐MvZ1;KzP|as{I$d+GU+2gw?v/el"=sp.*$A8$e(D7ܤw啢;6~= oмoY?C{[FH" P,fyVB;>-=ꄈܱ.{yݾQޟL"ZNx>n\맅sNxKR/MəڻҕF]HRj:;v[њ3WKG"nΧ,<(w[7 ӓ?qKERћ-Mi=*j V$6z9(/qqn^_=/ J6L*$ Ji3ۆ}ƒyv-7[|Eb@'G55ZlMQ4ϝ|%rDY.𳆙ˈχRyI;0Liҁfne . 0?fQˊ 0US"G"9Β i&7Ɨ0jNqM͋jYd#Xr!om{rBϷ^r30x]LKigr{:3 ,:o!u%VS_ јKxse܃k;Z !F,T+YyoH jd fC/ \\k5=~'ƼX' 'sK_{4C¥MHȸ&:oKpC㜶g"%Si` liET0ß]*^QD@%P^tS)_ZrUhMJl,miHڧnE?[gU@ՄVǒSFM̈́F9r=-J\gXkcȖRE"91TE: 1%8/چU捷%^tSm8A bSp%A!]&r?Ҏ>`L' V\5ڲNE76hbVČ({,n%XX>%o>ΔQ|P.cbgƱ*0eXR56=~jv/o8 !Hw.vP`)%s\.__^SWj/6\W\ G -t#%USQ'p[Z5'~PgRE;"iW*sz *+p+̞nzV3=#iWOy+3?%ͨ ? L(6aM,g\k2Rd3:0b,Z'3V4̈́v&<ֶK#bjז0N{#hTxr^i|{XSv4cE;HHN:uYXEf]*dx 0+&mFmVOHRs@ Ok hq zdm+<;%@8mzCjוO3!nAՐr*c\=2*cy*.c$Q`DIum.vn5bXdy>m ṥlSxnJ^_g}.YȩFe8d:mh"o)HY3!jXӑ'[蟎/H'fiMk|憀p^9"Y *ekFd]H }TV[כV]'q࠺+F9Iܩ^VVhK&:51$*8S0i<8 44oɇK4ϔV+-kUFYr`u**rjG~uoCBkj2'xS=sdhYvxnK[yAu8.cX|ʿΩ2"Sv}w[&ehӪ3}GO>;SRLoAyf?'-@:) `;费fKwDB#Ž51c^!{AIGT"*P9L^?|`Hw3UFz_x~i冰BS%-l̠zFFG(=7e4?PE=_]}ABGoLp .p5!+tV }_lJ{tӧ54;hV%0^:tRRWUH!ub7FWLxaGŇ:kgnܵ`.~D72X_-s| )4ڸ6{fțϗ ta VgYƙ9FWc1I_)V)Hg)Rg KVPvսRb A؜)2K͓:7 V3ݏ=]:ܸIg^9/m$z&n`Zpl׊'Q_ G[B vCrΌKT|% P`oһdaPRƭ@AxV +ޕR{dN~*ƫ4kn J뜈vp7vsRn3xjӃzUl GCz lח`I \*k6- d$0|Q&2TQ}E(>(LՈ.1>/P2 /h?ٗ^M 4#߼/-,\ R2vS;>/|<5H#{LVZDuo\zC}ǡ<\O-6{MΛpB7k5L=9~H Ghr^%aA̤H%Jp/ 'u^xuϝWmTTũbRARܳi?' -^+#2ta D،X5&("-6z".N;a ,Fe~= #z(i2l:͔*Jk0puYm>_#^rlH>z6Xt(3M,al3-M0J-έøULK Pnc#gr/u\?1od{v[JGfrZK$dg(yaTDfd/f:kDܷ;J{),7w_*dȈ7/Wpt8[@44\*,))ߤ$Yp7a‚VO;YB `Yk!1=_+ӣĤ?Yp^6>>˼/kcj!" ,oBC< ҅O?㝪8f}0\8/!7C<(c|⣦(gMvϫæƎy*76rUYsuRw%vx2i_iMdRh`Q_wO|gށ,ν;=Hk3@:Hr~WmN,U|W^n=Xx9ΊjX0o~7GkAd-Z8rCTlOiӯwԛSi-A w ,)K%*jgж"V^A~p Fc@~f^O'Cƌlvk1f{km4.cۢ'}-Et%5f3-~]sg1_^T`0rȌt-ŖvP Grliz578Hi3)ǭM܀lL^%SBsg8Ő -őJ?DNosLM<*96΢HBte~;"zWo 7+h:nљl(taH*J/E:mb7Xd5zNW${&{S5HrRNMD2w+pJS Wŷ˛ƻ SbBH5/ZZaIRWE{'َ.)_ mҠ"G?9㮱yCk3M[fOvD\Ҕ>Df B-UnXV/.l8 x ~`/5?>=NjOrԐ廑9]eExXvK(oVWb~hUH˥[I))"[Ί$e)E"$h^Z>/MD.H"z6K8$?mK+7I`5\EY5{ñ{Z$J"EAO`ժC)6xF0gqQCkP4&HQl4d3s|WsK',ơROKV'l0f͢fTɽG&wuܔ2;Zd n~WL ħ*CfT$џ]Nޚ1P7S.˥$b9OQ3nj7&!<5> x'؊]Zn<;\=mrŀҢ͝<<+OuOmGk5cbCXf9e^Xg"ϏZB"a*Bx"Ga`Tb{xAsr3op*X lї/&LtU#UP]CNQt[60J}!`>7Iڵ :K}6BaX=gfCe' 9Y(N(о1kLie}A٨Η{:2>c\op%یQuJsGugTfDsn,O=Xѿ"?iK j_~hTPܢ=; zT{{ Ac'i\ԃ虑 ,8XYO2V.ؑڼwgC0RgR+3y+ wb?)LV7[Uԛ :;u[q\"{zk>Bgڢ!ge̿[N+ǥȬo.4[ K@-ϏZ\\cv˾m*uIn \X:*.|7_ _~qB1̔Ć4K<ҡu{K|GG}oSwQT \G1;ɘ`\?2ƕ;(9O긎b)|M6ԹMF~Eg cCF< g^HP8w}5jݻwKEZE@EB V˶?%⶞~ory o4g7ϓ2Ysj@Bw Ŭg͡P|ڍbD4T- ya2.5h6K,6 G ([ܣa(qõ)$ ;Bё~ GK ~W݅AgLx'oԐ3*'l^Q bO3$)?H&.tunzǟN#d;Ț913P(;@b3R@*5FɞuUϭVf-Ȗ)CgMY씚OUZ3[l\0̡[:{Unbb@G6>m3τ6)3qW qF}'^,uH 'Ȼ?t#hn+L<\ܰ_ S-cqoZ*ctZ^YLA47q\1r%LeDVm Vs#  a)0z/X}y@Qm~;1;qmm2_P4"uM ? 5i}Q!Bi, ЊsZi^DںWeV!gcv;t !԰`{|%'wJ9q(+PU*8x/¨1wb+w\V=w0;2j6UL|ķ7{CWA|y YH58tXry|&nN8o)[իhѺ sһE7mطhb6mo(З?5&;83Aق|R1ޫ|ԐpxS(dfnE7'ZP6sG )oa?Ʊi!GdU rH0(GJXʞHHJ}P=USHlƅfıQ%"f9yъУ뇉KRu$MEN<".񢷉8Դ%?v.7`"!F 8^d+"]k+iA:c( xQe{`3 Ioϐэ`͘y+Am'f[ѝLgDs;wFUDho{-n_;*+0ԗ@Blo7;J]+&"yu)1(ӫ1wgLO~ tȳ$fNɷ(#BNWH3*n\ЩP0! nj ë8PUSx KYڈ%•ѭX{*O~ba yuJq :.,0xcR b[ 06ݵy9tQ PcM[ IrL%ƣMShx%wq=磥W8) KG G1pT4+3 hsZ2=c0){&%n9u'nI cQ3ї<?wj1D,_$GZdg_Qȵk+'j>BV ybG0di(0c.Wtx^FJ(nY=,$2ayBYZdXǬE]Ye.@["i g멢r62#p蠮XZ(jl|ӊRjiZ1rGN r#?TNNrtokwӃ|u Hd\k̥;,\԰転_ 9\b(o(RX瞑* _6h C="PUGFq>SkOiڏfvᄢڒ^f(Pn  YsuݴS(L$&ZDؾ=zcsx&O(/7XL2_0ddSU Aդɓ7Ǐ}ԯ9̍p]#aN#Np`taDu]u`edAFГ2:,4Bݠ~;gVFV$Z-x11ҜKbUeă)F]T`pTGՃjDߣC%iUZt$g %`Jc'xe3!^δ 'Yܤ}-(V?G<ާ5TQ@66b˝UA.XdmpJg/3U*fJϙI7lv)/ ok9f5E~#*_ק(!`!< NR-OKd^-c5Dl0>X:tsAއH;E41y'DL|j+(%SS.?}kxFeW!" 4#-)0 נׄL&v~#b,ug ՗DNc<^1E$|2@$,] jg&sZyJg n|e3AҕCyϺ_34߉/oT@(/0I-t`Qׂ-w s 4+w3+RхZKgJJes'nem$ʊkE4 ve-Y=[wborhNX_@-Cոs3jc^%_9x<׍KkV>hg,\LgXEakA6(Z=uaN$Qzi4"KRu= ` ,x>1B  ᛜVL=[\ |%D8ITk Ll X&9$Pw((bAdJ|N* gaKF>dHK=V3ӻ50vji̚E8a3:$7>(x@8N Zy3ZXyAy6Ģb7d#9IB__޶VB0ƟPD;( a1}z}f.ЌK\mr!A)hGR'JkO IQrDs!#Ct\C (>.}swlTpXu,ag[]vt>I)gєp`ke|Fcلh4|̹~w:y!h]5aa=N(v|i\,i10~-g4mԟ ӽ"j[ʔH‹Q*ySFDTLBW[O:fylڬ)uEbGd6utpJAd4(Mʸv(mBȉIpFzcC\ xi.簥•m:R¤GϝbnyWO~|lF 0ԷlEr,#r;7R` e|֊aC,ey):Jv_wowQ^U DUu3M EZ#1R7.6IlL BHUUwK9JqY9gzmݝ'5D%TGkp[#Gi7](@!r)#N'*vW,;!59߲I$Tz"ܷy P[! hs #ћ*MACcG(1ɻF }\#P n'\jy^r$G5_֬t4AT  sáYFIhimZήt\` jXơ޵U%z?K"qi`˹5A9$'m<λ`>*{g5XhM^.\0BˤFi<*xܝ 0!tLjlWHP+3t]wDgxm_j=X;ڑht\\ 1IT& T )(:bA{*rny7 6Raޑt,ϳH ߦK6qk-1`/ir`ԚD~9ngK[)Ny92 (Kp@>`a\ yG&{*0z.nR!I5 S m-CV;?3!$ )~ rz84e`߸}⳱ I,`Qjōrl8ytSձܡgt֍OlF6@y= ],Pᔀ`<3:fitsm R{pT T_ޜO?T팡֞X0DHB¯@ d ZBx; iфkX "MXLy?PcS<3Ѐhyh06"_)a v_̣g(d 2o@fHժ/qzm%Zj3HatPKo̅t35+e=O0OFYTcD>>N4}uZwF!̖=l9MxW/hlOF2+[:rauzioRr}J1""U9VaX鯔ꉓ E⋄k覘…$х +|n#s9"EWW(8mn- {'W \ۇ? 7ֵ1X P119Q;pN)|Nޥ8'0a%-~,5$ՠPB2꽷tuWH?I ̋DdFlrQ.5qJDPC% ?cIOa|M!)l4U|<`@I(s!f!?^y+_X'dhxJZepz$d˫ .PCT9e:޳Cnxp#xmaB=ŽB\EV H]U<ܞIG')9ûc#<x!r^ U~1.'gkӓ-q*GJaxO>E[ Њtz;l7^ I飡6<1dKq:..>!Ap׿ 6' )m]"E};dljd`aC9xj}՚ڙ$oOBx#Ecz?L?AW^]{Qޔϔ;" ax~!Qk8QzЛ La647> svgSê>wWN>A|P;>S4U?NPi oxYٗrqa?7@-VTEjx($}puMϒ73kV|e!. xf;*_w"UW_tbǹ׾l~iC2LLFϮ]V$}Ce12GrII(.C;Jr+dd:8 "z@^MB }^ w݉8@;Cg"_6@9a4{%htqX  Ibj!Cy\ɡ:Q"N> cRYSL*_Nx n09_W״tC'3[i/fD+F /u3"e<i5+992t$^a>^>!&ػƗ6~kOR!fC_t݁Ѻv59-YB@;y^dJ䷏`1&`C44}Rtz+C}FI2k )B[ ~ށ׼ OsbiY5%z=(1|>iuZq,gkۋD6_]$r>lx?z B (TY^ѝ Q4by4M}balrs"m?hԳzlY7:-z)pz EY4oxz4Ydd^mTBy|VvϺZuQӖ? 3t p$˴2 =oT>N`mW2o!#.BX@yL ? ĽVV' kkQ,ȝHCݡ>/˲YV'p ON8F#/]^rńP7iDt98.m@Jr,ُ)qTG 'rYҲ/a~o*ջ>2,>AV iv0DQcn[7ߺbh0V'Хֹf3X,}m 4ŨN !-#ª+d.]\vQi.9(|LNSygzZO:5 *>4jÎzLjf< 9M:%f D|Δ55 Ļ[U\["dɤA5:KW@N9ft j#?H.g[QLV8)3[VwEfpyYdE{E(Ѳ0F V%*XpiG%05Ͱo1G ~[tor&!W{59Vd#o_n~;!ufhf{Ĕ VL+@W(GrHAMȯ RWБ0[%\MS |0wWFI6*6A͒gډvna])@ŖR$r2umrld {Y~ ɻG >Hxó\033g%[d"*1Ye0[Vp9,_}[z~5MF\uCw@ȝm"jL 6!nnU7=3aBsg((Af@j|ؘ5~s$12FaKۍ˯2|2VtW|䴣~yʭ2]n^mDD_? R PY@dчjxDa ViuX Euʋ~ߛ)PVo|N\'Y ^LO^|ZmdZ IXC|iZeΪC4Pvau|K@mk|6ppRQj/R"m~)Qc\&>[>aSYʏ1yV1>q$=;kgyqN!Njȋ#j>t+mAH7:E#me(SL.`vyba5_ ^*Bqpb @i+#ހhƦVYbzW&k&2Ak~U쮆 U:v^@x{nِׯM4@.>{OOplSվ We /窭7~ zzA"\9);K Ѭf(ĵ jS8 ʉ4v`J t5Q\XՄ%Pג]?u~̬s[CTEs"~Vʥ1rD0Su),|F[we-DsZR1ڳd5` {3 yTLyMݿ=gvpa&ŖIh9;:j%Ӵ'"'W_]/'^Ed/v QqR^'Btt'Vo$ Q9iD3 MO=p VШU?ʎ[C_d*YXtI߂צ7\+`.7:6`$!JSe-/4ކWhe]+O =L{} ^2NMh vQ0c.G#m[P[{Kh QuY%ƂV Xb "(Lqp*3G7I90bۀYDkA3̅Q~ TDQǚe2FX@`X Iƙ$&J+[BRp\D\{ǛE(7sM.ص]8/ayy:4 eߌ Ju(^3d;%Uum,_6sws2s!F2kJ|]rXn^ZK4/{) G 33}b4HfG ^RpPnȹ8{vGq0p)j2pSj\/Ѡ;׭0tnDD؄h,芬t&Ǻ: '9;gvkF$4BN6Ў`-/L*fwHK<0ay3D„Aer|ZW>t#EZ.&: Ip<&L¢뀿^@%9rl&LmO8{PgCtβ ck|/2jjZ/ρS5H+\'j|>';[k|+YsÃs'0s[$"'ڷ_ؿ#,0cTUv( #׫Ie&5ʂK8]#ޑuGRDyJ yof;9&@*@zzIm`xkW3 Z{ )A]/3cU*m+cFM!ڶkZ 5Q5+D' (v5)@"s|ʅ ŗ-J&hcꩍ&)BaNa38{v]1[ӘtF |PJʀƗIi{[NƖ6ꐡ}$&,jP!kIb&sn]qjgw.1^Xi;=2* \$iM4b]a\ ̵؆AXkw^?x"xh5CQl; )_:UFhDM)/ЄOD+ق!tU$Q5|1ٌo#8GyصeC Mgݖdƒ|۶L\^h#2 [}7s8܌DɘT`%:ޫ)C̅ZeS1Ջ ^v (sdk<cAIHchz-2m/+ViU^9)z# ?; ֜&9փB Є8$RXW׶~^,@es;e} p9*<;N~x &8X;qD ?{ӤX3c*vS?v6Ysq`jvSJZ]>BjB O0Vrb[wթZ2PPM8EZNA+k/H<s(o`^@,Pۿ犜~ejXR1o\w>: zQ?ѓEߨRo+dyuA#ig:30^Π|˼_{20̛1^v O%8>>[FF(䰴A] eC4?T#Φ sEr]L 6ܜ=j6bf S־T-R'P٭,po6CMKE\$%hj{A,xt,2S9[F&Žށ ͸4K/d|m'"h"T\7:FN8ɆJ3J%[})}#hA] T#kMPNO|r7!P="_I8rT\, UժwsrBGDj.u_K{EޜZ XA5/rzXi$@|_>o T0-+O %sMRt3-[ ACYHAxȰ3(>>5'%[k ZP f FLd vEg2v;gvn`:xe)`.j:@Msay&mv O4'=뽬)@*BY1Ƿ'-҃~sU_;Āebouix?/:ͷx &Rrldvv9l_U_X(8! k!A uB}ܢ/2$Dz%k˷),;V^Ğ6,Thxg&[yҶ4 .Y`nLj yOPбI>Rpcc!P#R&ezӧ'1Z#8%;r n#$׎J+:+~4_Da0J:?Y?ӳ353,@ߡBRU5EQNU(fY=svM`n‚RDUsTg3C6oHP/!;&0waDa6g5 ~ѬO(X @)}  s{awd#&vfӈ 2tvuSejqjI'GD jh$w ;KV*Hd2ٽFI`?|B / uD8 S*g]8Sns 43@2ÏpuPG65v\;fw Nϑ_1ڎ ^mȧ2rIT-!p HiN9z_0i3 q׸jez|+)Y ǫ͆5е"?-N22ّۦz,xɜ+D' Pc(ˢE߸Ն/Yq(L}} [Od?PWnzM+97yC4ʥEVVnϷp۵tM"d@D|gC$|z}p( 7ids{[{_^6Mf-wbRh@b͜5<7iX2OxӞAr'V^EROO&^!->͓ZH[z%<'aQ]C,eQrYMXHQlXnJO٤wǭkFAyJ_5q%KWs[485J-gWzc Mdy {4|ҙC.z̜Ƅ~G#9*H,ܱ(4~<)QcisjǰO噭bgT8GGoMS^F)WQvX|0y2P=)h4~kӬ5%u^7磻*gs{ԫMuWPBELug~Fw H3 \li]]J5XY;U( ɇQXK;^I`Y nR:^9l;k|Gyq)9Ɏ E3wE&Y`Vqe;b`<^52EE; r;- դtN2@9sf^  @cf9ORύ*x`YUg~ n=)GҝUt1.OqV 3sB`rç8saO1tn}7:z?szbMЕI-4Z Q^Ac#Y@H1.p-muF OFykRFOh,TQR6EOfJ Rm${均`5%J==a& I^S؂=?7Rg7^2Eg=2~+f[XR7wl{k$@&6S%ۜtjj'j50j3k&`;5̄3c%He`2gO}Cb%]c4}tGG"\Xb֬㥃 iib L?͑`lmFA &n|#^aҪ/EEQ3n=@̽_,'Dɦ"*ɻc2W\}ל -Y3i~OGP |?gAyZ@ `\(\c$lh)G0VKi!کџk.@?QL! eAK0ZXu5(nA=w⑨6ʇ^aZ_&uv_j؍6oc áRlD YjM'_C8,>OQРx=:m9Ipydmdt\CzD}.l3W:ґ<Ëΰf;g^4t0P{-$>R2[]Džfy [-co$eS_IwHDx2+{jF$WzU%~o`}̸hעTZg[R{jE*I1-}٬P6-kP} 49r(M8SKyC3R<%vBit1l~{!α$@ᬲ0_31%H4}'"pA\m~x~'~X,H}:l^S Ts.+<*m$zl|Z<ēo UaVVЋzPqpVq}3,ZN\Z`WU< LǃmA2 ! ^M'LŏP.ityC?7w/$N6ݬ5-#lG{Q>'|gco`ɹ^tࡧ'9@ldp(59Yvg?43[CLhk? rV،<MC&-Rmÿ0wh'5pyF4]>\}Qf÷A׼ec2]Bf(ϛ߈>h.T,:.cF^F/\] ;Ȫ9<7poCt2;R fDe*Zĺ`| a=]m:^#JYt7S@g:70|CXfgϻ-E!m ]d8KHC{ء~@M^EPJ>@nG̟6+D3&>$/dVZ}xB 3<T\|lW6Q9bm}B+Y= SLfg #]1\EgUV'憨<_G'_& Ғ]&4iPp1DOG!`.5f*m.ץEQioC^cǬw=aۑFR:`ga**V7TO5{Z&7tU1N4,i'Hӧ*uh12KÁ<0)Ɉ*gܙ=AOkiq׾qBfXX8E{0e3jI#i6ȍpmUUuWX<2H-٠-W@nY\3^B<78bSU_[Ѩ7lJ7g'o[R\`$mt53/o5!`H(틐Xj:gx=(VrIuVU9&=@YZ#'[ #O]t߃;[ Tv1?@a_[L_ ՙ:.G_L^{nFl)[PmJ~Mn}ԏ]"&i6#D25;jvy`OUnz+7Zh-VĈ,@tHu,ly6QG+?<]mP'gHSך萦E2іxAAZcS5S?  C4+xa#'k&HJ'v ZNnzcy ,{􆎺WsaƦAe'S<qR'u7Wk-bmjaT}WX 8FԢ͘X?kHB)DHo]N]EզGIҾtDdhđlߣ+B{2;^9rr]eȓƮB},ZxKn1o<Iܡ#-A 6l5Lֻo A;߈1Zu|;vq] 觱V䆮[1Ô߰6zW-M/^A7oCA7XQ#3iID jX(oM )ͽȳÍ UA DR{(܋4ђRO{!Gwװ,zx"W c&ͽ'/f_s~JJg>٧9 %]˦YN(2suI0n<, %%]jV"GR SIՠL9eCȿU!Y7cSW!C1\$Pk7_>izCW;nBj97.R坖fchgS umD?ԗC3|l xzAn ${quuwe6de.E\^aCDm/\^!6#):|j{od7C̕Ww:ꧼ<̚^Kk!ScTZD /OTJos൩x؊O޴^r_]ՠK*ؔhc\\S2:X =ػRI"yMT?NQ?y(;HN cz> }VoY+61 04kWJۢTӈ (-.M"l^w'` - o(}nhcG@i̠?{}1c>M.Q FHP4kD)# ̒H~+,P(Ai KOVnrp%U'E.jUW)oکj &xxRb&;8ud@iR>yI,H7'\+_}& O*byϜΜV1y+"qiFXaGCwe/JPvS8`9e-XfC1VEØ7|4o{wGy,\O2wKWXUa$c?];7d)SW Tzza*hh+hOZؿ_g]m@Y |hWƔWWWJ6?Kr~m f椪e}I.NWSmJdކH+`>PURMlGJ_ VekU;\fž0A=i<;x6NMO'+Mezj=DҶۃnęIGEp*m޻߷(!%UJ趮J7 vvWp̼j AVlؙ^J5* d4)T΢5͟IA =8Ph< OS͢>q2 uyUeN*~Klզ 9΁_WٳJI:Z(E8=[i+"9ޕрU9}<\X{#G%:Bҡy(?Pj4dr,URPDmИ:ҿ+a \ł?t=)&3}HQ |bTq?.* 0sf( CUP4>=bJF,-^@<ڱU [+ѹ᜴b{IJs0ǧ,z  YP݃- ;6QVzbTw%5$c᭤݆М XtrTwAoI50i8\?ojÔFs Ol]%kJI69[^Fb {Yyp’iU= b]15+r8v" $佥e)@&DMKqt/;:O0yX$Dy%W ˵pU >e0{0M~Rk&o,h M"P9e,3T $8crnd?z6خ^ Z>= g"ML^ώB/,Ӗ4,l\4JA L ޵"CW00G6QtŽ\Ք<1ߵ$m }{on!qB`zq[w;YJS)sczjN;Xn4vQU2VMgrVWe\)g1?z851j <ި}|V3i0 pr/|%s!vcz⥼-P.%=oaOϳ)h%2 d¼Vb.'75bvęh79{QtsX'ҍ˜ĩ暓K,~iK[֯(0uο)V. TP/둆)FqX-ijq`FElr 6UŬeOå&Q׀c'{gNre/>v5PMLj'S }O>ifu\t̯K Ex=^>'lϛӡnJ (omj] }1l _+r: Ϊl1Z_pwUTWvWvk/ON\&|r21 G2l M&5';1@`q,G/ik4Z]t=թVa`C&Dlk1Zdy\/?=op Fx "]{$L>v^#1o8rn}ShE Ǜ!G\) M՚g3HXI̅EuVIQesD<ݎGƹb!#]rl T/3m%NMc5Ԋ~ɠqA$'s^p27p gN1]*Y6r= SSB%4|TDYugC:i6Oo칓@M9閁+E OrWˆi~?"d/7Lw0/ܴ>XQRwSM"®guݙZvz'(dbB!z=|TQᐤFMJfZSo4Hx/e,]0Hbډ  ]ҩ7^,݊ԹW26Eo 3f T[7T`*HAE hjQn7&jxۛ0VP v׫:7↔ɐ E c{I dtjvЄjpzWxGbU/zL(,ѳRBLv706(SN_2Ŕϵd3VᛋY~Bh#3|[O@"K[(\v@ c[AM rMvS\,f%IdFV,i Ľ^?ɷP!;mx p5`Ԫ.5%#`&9N`Qpʸb$@ZD౰\ҧ3^ϊ (un+k=BhE &^nQ`9%Wo.ki)w\ZT&Z ES^"ԏO'2] }{fb`!:JʦdPH&ݰ5 8|k-ZP!z5v К53B⪷0:d:DNV^-b hsj:&q"QwJ A0PL(&HƘaT)],.8fbxp͔ͯ%(2;LqZyV/`7ҘM\ ӿ hAcڳ8ɩĘ_䷡=v9P.m Ѕh G"3@-y5wmI%swguŊ8*3<.d$`lXѽyfk%Qd%_5K7`}lʔ7!f@w;.\KX?Ddjt?ľxKcǮeEI X/N ڶzfeky(ըɵRڼ$952[z&fE;B H`zJFj'ĺ"έ"Z 9GI'$^UNQ%~|^ ? da1^'Ҽ[nj u;Nr \ZqWdұr=m|*?36 waɅ! nW<{`ɲB&*,f$ؖa0d`~-n4+k;&W)5J۹ TfoJaK2u^ 96[s[Yj}`-R6X<0̴πN$ݚ`M?~p8$QLtT2bAQP):z0 +SHK šܵ&u;j6t[e!u48e35z8V}1"⬿ArsFp@NwePR{{eIj"MJ՗iٚ$6C;W1E^QVE3Kr%9\DP3Or3L2XͼtP0>nLIz{,0"7G0J(=tgkFR|rţ nS<9٧4wT;UMw) M0:z0%QXsA &o˽U}ҹؾ0CucOM)ZZX"]j("$a[ 8A CD'Yt}wL"@9\-aprEAQ6rc d1)oKuʪ"(uv7a]0hƬҶ#d|ljH;U)E<j/Mi;|xIEFCi!:g ЧXni^XGMq/ePDkM-C5GBZwGZVTХQK>a dGP+F֞Q=–_Aog]⑐#y]1f7YZwb +f8eܔZ[C.oy rއTؕZWp[Т9 Tq(yHR"C\2zݘ0͡Deً?zG+@#/s`G>&%̿|`d&y[ö:7}gl|ؗ~T wM%Mo} *렡z#ۨĥǑEʂWvp'0VI&G^rh@^rg8}nˌ7Eֱsѯ+C?A#ӧ4aqOy(6m?X&]x#۪ 8WNjca`#5su&WRZ F| q%Pcp*JU)pY:,^ t:n7[zusj`{kS~nɕ, -]P= ie!](u-pe|H?LPZ2tVBaS" tZ$>w|Q[!v7"/ȑWym+x[">tg!SX*ʚb=8(-+eSH \PFʹ"!+*-1`Ȫf߆)H??=A˙0 awJ"C o4!*(OC\` \ĘJӇCgahg|aiumKVw(=yqNlU GAX` Ohl'b*lw aB%*R v#(3`niR IFBfޱ}.'O >veEKf/[9ß-ŭU#5j&n jC?–LBy6>nr2aepxG5_7䐎(Ǘz]]*#̲ϵ')'F5VzsJ4fiC),Guf5̸w x%"0$N\V$u\t_69tUvT ^o_rtv"_ FgQY˃ /(dj4aQ{\@K$A6WǮG)W,O" ]Y0!>Z_&C/jiEuCrڒcI)K"< :f=KdOzb y4`{a.sl$#KF WZfŖUKaG@ΈZ6:~nJeVe|K1.u؈VŒ;H:.e w=#S\mN'I $6ȕU+U邬˗埛! H tQHaJĤMPDH#,ZUK|*P˔+l:Й[A>}z%P-e+B}x|/D࿼%#4|,~,g}!OVQ<@2Z6_gJ癘# Ylә}GDɊy}͇SNVL<v,>o57I`$oʹ5I\8'LUpWNӆ[`d RY Q= ;ٺ{ڕC~H}"4Ң[ `\Bo><:u^H؜X^*Ub?5I=G:ħ9Z,~d=_nm9o3L=ҸN ObX47dMf50>Z!O^AqQ#:/c`Op$2l])xӯ8^ʐi})DL"?jk,kM4/8/J{I=?| 4s}Jpo&0A{3IPSKG\Ee]e:z=3H .դ]U(*{ϮֶQyg*/Zʇ;/VAsMB(DNEm54܉EEt-#ܠ+&v:pHƟgfS"BZ±:}Ml`|NNۯr@Ic| @Ҿ6s.n3ݢ8Du6߲\;rN)9^mTeVhYdW>Jl҂;Y0710DD!!y;>ʗ]leH 3 :EwM N^8S_J' FdI3>ܒ#'Vsؘbu *TޝZ 1MZ1ٔw*@"_W6b }89 .x1 b FW]jk,-sX4&]7mN %vwG';_EILDg bd<%zx7|TERB[}C]vMS>~:8Mc Kᬏ!adkE%r[* e96EԒAK#KӘZųL,Ɉ{A SNoī#AkZЫWZGW?][zV0/oA2Uؔ3.e_ Y}q~[9Fak3bx1 M$i,CEr7&;KNd=UT1z˰=ǿdBa v5c og=`4*wj a–e P'."|C6]mDN)”~VQ`%F+w 5_-0&tJuj$9 ,?lLӎ[J7Dy !MQB8_Qp~ŵk~[#^9Tg'fS d6;V QE`AxOq./:R /9Vh6k[;6X>ߍDQD5mVQi|O8@ǤF .{WH.a]q%Jyd `Exl”E yƱ>`2ipdO]c3=3F$11R'9RdHΎ+I89Ơjk!xmʚN@3dЁ]#`Z$N=qv m[g4l+˫(~D8.:FK<"=8r@ϻbY;N<~CܽڣAƿaCh_;Jq@IڕLk6dM%_o)Qacnz]=e1Xl}7PZ6%a\E~b['p6PYVWE6o Y#iH5+vʲ–vą;hUy}JB[O7OAC1 YwMA\_뭸^Te*kv]AG.VX%~޶'{eJC6Xla1VMk @2<4ʅ#yQq3b$+m,H蒋/ҤŒHJh4Vw5`긘TY\4gw|t6` N.&zfZBʠ`48WߛאE4 s17 h&R WȖ|Z- :ɻW"CSmC,1iԃʮ # 8N*~p/[@oYBUq4qBW蔥~$~P t꽲fQu~6ZON0m-( D? v7EJ-Cm5F<~(m^)J$k-:+H{0 X–2+m:zfX{EYLEwj=ՌQO.ًn,J_V @A¥X<^G;M?h`{~(OfrayqT{>DG`#[%{:BjFpm ׭E{Ww!c%Ǘ^/nYkVLq{c]ݹ鶓m+ >[43m?#^!rwM17[fYJ$Z>G%`>04W+- ~tpB:+7@V@Mvw*We ֻC?e|s9XL.nƵo.(-9aD{>-tzÚ!BV&mYL3aV- /OW$r2RL~݃t=}Ԫzp|O>ZXv//fz]8nӹk2tE vM;L.CLEs8kRp["Ǯ촏{xD§ߢI>߯ʆrB2!bǮfM 5I;c)t#% ݬW n Ue}P䬥A)d+F,P9c)3%(ˈ-4AO& ' gIsPjQT}ˌP P;ܔa2s' ڠu^c퓖o ,k_򁢾JVQ@_G܌:zZxT#[Ug[f Crn>?PT*+:!\#XJ0LPM b7 p'R~7~k1cRkYf?ho|"AM]f)[#j$e<sΎ7"(4I.psx`jv\%t˸gqw 'bSI&k}Xi!V/(Q )XAc'#f0ʒ}&8nH訟&/FPɽ;*8*.>ivK5<;&rL1'q'?挽5QvKY8NgGVCΰdjM:=XD^?I&`G1:2^RQԞPwW^+XT!@1`)c[9æ0xʎnT'6Ь["@k{=k(^>p) w`ÉE$Ya j7xn}u䉩7 VÒ YbV;#d]1?ڲdDoζ8JOMetˮ⟏XDV#uYgG I[iuEOBk]HaÎB A stb՘="91J )b*Ƥr0r0oyT˯~5v*XpoHFE.N*_ EthrcNgh22ghtP+i E/QQP$隕R[mgxl.NO";6Crdϕr\%FN=Pׂ=?$iLghV*=iiEjH;b*G?؞]EwR | OǠe.F=)3'BXb /2ۗ#LЊ G@ȏjy1rV8"rR ;$\_v-I~!|RS+kvϪ$Vdu^rG1.щfLkHzFfm̾L.~KU*(x#0qT2^2hRi/+3>4J̞h qg^ScTHbhs~>=)r6st*y/pZ­wU (3N(&hd0yw* m?UH[$vՊ`en5 &T74*A09"$x= [2yKxm[sU ^2A#VJme6/u:79C|2 _OKJj mEtc 9wc0W3U4"vog0@}{t3Įq{Gׄ,}5/۬D$ 4{'w=Ĝbrw@nUml )YI> ҘDN U>{UwHlIaSfȴ!vYM%b3+Uŧ1PAz+k3B(>V٠90;>;n W_^$M&@Yy jc\(7JV vy\Г# x&["_ED,@0gNN.='̄@:l)R{O3cd}<j+ lBhؼ%Աp]b6iYO#d/xdw]l}_܈UCaD1>4^r|H#iEa2q0Fm#ɇJih*Ajr|eVO B0Z#&v߬InpZ {erʩ<hBn`n- 9W4@ÀFC|Yl?R[T*ӣm>%U_'X1`2<܏Ew4rGh*{62J+uҽqyuC?_Tƙ7o*s2; _H7h/JV w߬Wq*zcV1ܝ@L^tܼ㲳I ~vlc̢5&^Ji vV~z~-l*W漒n2MDpד9- IKB#tM LAٛa~oe\T}Lke働.EQl<k-uH TuXW|@]B]=4Vu^ۻ@rmtY)a3g:"6Puݵz,-_c)߻PFڊu}-(vE@^fk)%ߎ*r&7q 8|fCUaMokY=rG6zDƫ1=>sq#cI_ "`NgG9(Fh8BV*&k4r ybm0U6u܏ܟ=G9LL(huQ1i;Fr*닯޲Ni${3t$nl{=1 XHkwI˾&&mݖ_U*c~r GN&+5WvנDƠ/Qϳ^tq&(M2ihHdOɓ/p\"Ξ\ Z3eo~J?sp7a tFDp6qs\/"5Sry p)dUݛkYbFr\a jRb7V=`G.拫h"A8xc*74tYg`̌vS%.ҨC>Zf"o=C 竖۝-^Y?a;P Aq\ض mY0h2m'II^$x8zb{Hc@C"YN>%81)m65 uuX8 "fz̜gOk `Qc1<x( Rg[jtX ohUr֮"3n(8D#2nR 1Y1(&a5;K@ L_"S 垜"?CuOhtOyg0E79򂡪So6aS*u Op9-QB(򾄔Y:IWM3OU FX? 斚[##w],O ^v5~)p_A/M0BĮ ' XL5&hDiS&=(m*uA&*00yAO1S*fV솩tt'S}ulkc܁ ҿ|&6ۭPZVe Hxy^A}R˞@}8eoK2dFDFZv C!܋E&_Z^hrnC.-G/ݏA3oxGiivyC8莰FZb 0vߞ$pdBl{'ŠG{?_CRW#ʅlNKP9,^]cϭxՔ܈~e\2\`:ND>zt(nwݺL?D BPJ%=uoTԺz (MfNQ\ /zYǠGL77OcܴfIx.ے@F#U}bWax@;Hz^g>R!H]1S/@6 /4g`m _]{l֩GT$6q\T8r̥P\%::ƅ_i E3CK/Y]>!y8/J18]2Xݎ<k1I ~<\&&FaJy#!I>yJYKT u2"wtYaKrFFʩhy >THeFCZ&NF=c>`ɡ2a4>#+=I|u _ >Xvt̐Ԁ•UWɝ9%Uy(,mSblm *םn'bq}v2 (zZSUUs/.ZɎLrGO9sސsԏƧK};9J +3&} SrcZUYƸJ bL=8gl{ߤNJkeӻqcjhTpt#&ˮhZľ#W'BWCtIE~٬QU\Tp_C+7.A*mKvtNj %xN|_2 SKU)PRXi(Km "z&~N?x #6rJ(lG_ FŎ|#y]-܄(pj遦w2ƦMýrJ@ʐ䧮v]_S΅VbgDh"Hn7/f 0\hƝMe?K>'ʕyCS2]0bbͶaNMM=U14}7F0]`jZ3IvwGlcs֏έﴆ¾|^d7Q[)m:PEѐ2q9EO 7G PR/ӊw_Co;7FԥZBU0d)xFT? enN4=k;urR6l/uq@~4zpg MB ~C`tmu L+]F4}"Ȍ3IL} B&׼jAC,%oR]EF% G k G O'_u~D'xNȄq!LMW]0BT2ǶFip#'@WgnS8V_J66#qԼDBM/k,\uNOש3;xʮ6Pch\y  To#hz :O@7nPŬH˳OK!Ao3y ߢ>p=u U@Goȱ bɋN09yBѽ Yb V8l' @0I$v{㨻Mf+WB])ɼ$9(xⓊL1 ;B++9Xtĉ0w]tqUy;j|?>Ry+n[OeLqbV¯)h!Iƾ %$'V+:+`y~3t- Mƿ6H[1i]FŰ_Rv>{yPc1g^קfio?Il=^e(BpkW5$;֎\o?|rۤ:m}L ^`6.+9 #GE=fNzr,r5a.rt k'7q.ugT_؁,LjlZMسE`4upA"#ү+ Ge ]d[LT{3wtNβl&7.<X)㑢%u˥ꧨ <{7Ň0=CTGF>!@wrӕ+3G[˦[Uښ@ HK2jWgfj!h3T7㨼B EVxie:FFy(p-u1/ -zZYw:Ӗ ǖMӥGB= vb=F9wgb8t ڇW3;p@xwJKvM8!/rEӨ.m&٥;Sj73]X ,rSʋ"r-ZGSB0^<1جP0r< ҵRs~vР+ܻ!>^'Dj97kJ'0, {#6 )º#@,\r>yM9D0ŊQ\}o?~̺a}aא~*)nˣO|!)%mEGӁX W9YvrS#imzC)i{|NeQa {UVMd2S/Y#\@ذ?4ym|pӴéSwTF !…Ďqixer0F ͗?%?tgyyiF7=%+uo$Oh&G7?ى%ZZ<VUc#ظI .4n͂u,U]Xfaj" Pއ/~ߚ!!&dz %r;WDV/M Z[?I_B[,,KY}~ SC90ñ ɒCCm#o4N=`4r^_+6="y[jy dG+!}yE3̔K&Ռ=Bthe0p8k3|SO[+V`ܧIU^Z'.ESț.UGXٹĢ5 Cip>$N|4n*5섬%$ÐI я[X wۧU3 i :Ylb?x_(U :VVۓG&UW$NbLa$m)ʎɱqv l2.z?&amCo&!;VmȰ: x1~L->Sb c]Z}j7/kX G<ޖ](s,fLSa͖լ`-reJ5D7Dby'Mߺ%[?vqTv;[_-hvVC[iz? gnxsP4% "‰K/d,Ivʵz ~p,઎kcQT=<|˿w w ;zF#yx&-l[!dx%ze%g37vCh>C$Q&FR JHgR3y K^ɏ-\ ""՗fל z5H[?k jk*](j`nSP߻0v'cU2z ԲCP8k,4moc_ꧨF8JmQ*h&Q:AٜQRs8O5=Fg+F#<aj\qx[Zq̓o qNW*d(:*/+۾mCX  q5ٹ%bk֌mDSun̡*<\["%3@_~a?Gϛ,o!tJhA+ O7GEzwW68q$:=b~ +zZxS[\1q-ղQWѲ'gw%=H{277?Z(.NX anɀ fm )Ëdq(`\-r1#z&*N e6yW#]R$ѲbʰP wt6@Έ>s[3Ld6f(O"w :Uf NʲhNnNϝklXY NCYȵ?M_$I$wgD3.%zCvNHD;daV'umwI×(<xb{&bֺ\(59s`ЙNiVKB]ͅ/Me"Bek̷aaxLcU::I:)M;1b?Mi1r]4y:kN?&~T|mN"vco Mιoy>f?Ɲ)~;µQu)3A{b,c0ɡ>JkA`j e*7#M'Ú͕.<7]CW%K hmw!{j}9ߍ]m|-w`Ɣ3 U j]x$! 0ǣYŁC"ѿC84߻8ToO^R4 Kso"*p$? s4GДiR/VDay ]tt b?L-9A;:!BRQ^#-{yuNK  .'1URFݞ< S5F_{#3ohE; e,cn/{twzһjuN?Je )nOo'A-(kv7_ɩ7{0aDŽnlP HpHݖCr[ZQ[:Qf >[9B`zN ۭuBR6U@Ǟ ")H3htÑ仡Grl$v.`t/BP }' J\vXG=|֫Oh1"fX@hey1qx}>#~H8 > Ě1F 1D!#e%Տ1dz[iWU֨xƕ<_Ln&dutd{̾R9dh-!ݼ8sZeCU#!'Se}^Ip;S1 w~a 'I2 9sBSWLV myR4Mc%*<l+Qe.&`J\6jKOS!X?C+HB\.֜u_[NHK\q$Տ~ҁ'rW_4Dv8L I4ٟ)<{n`*ೣA[_QǶ}bb'IEuIϺt7HxR/qՊqXFk!"S]:[`oh|\؇ ][@毹Nԡs+Ns0嶫Q=lݘ($Py(,k r1}/ v 921 7p(;tߥ_7L&L$RPwtJo5]ͨ7᎔Ónd:xl[_E.ٞ1C=n$|B>[˵{ Ou|:{L^2$X0nJ.Tf [{æܾ Aw툏6#b2fζj^ԯ0*zߘ@N~`</Rͥ<)q{2 Tw{oz/{4!jEZC%繚m?)^|3a6Mym璎emD.i}/ [ w$L[܈9e}zi}F3?q1fjߣ_H<7SAsB 9!_cTl"܈PQ.{ſYXE_8+(}U?^%*7+HFk䙔K zG&L0Nx%!͓8iAG1 XvnꂀR~g'ͶOA.HRoκ޶☏Nޗ|%91FUݬ7"\',-H3$)btl8ty]PعP@K:e+E *&3C{iMI:WD#C.h+i=uOpk V7x aZCN󦄆sr _ #0X;C,Q2:ߜȗm/t9S0|?+ܢ>t|+L廦!+ƩZ-eI٧y6 _c_0I|;,S>${NϼTmp+6zt.lOo@Ɖ"󷉲ʸ!簘\ FroY5{}H跔dY>֌2h-4 ^ve md~ qw;gt7N߰a.]D ^LYmoyqHzg d Tk.sS JN>JQ꽛nr홈!2?cNہ)VJhַiT- ^}}ÁI՚KOU֔ha GT\hM:\7\Z'. (_*1xR|-9s#kC8@& E'Xɨƕk|RC Qr E@MAicz_9. "*/fS҄PbxQgҌ-~6iLC<(cvĦ@)e&vK6Y"$q{i=p3+ 7?ɶkFWdUB4v@ju N'E#% 6 prg6X@J ΑwS?^ᖛ#IĨW-6P©?V>kcؚڪbj){[P`(&%u ˟{W&scP?T66P8UѢqpcNaT3+D6Xr4uhI ex;;: qJ:ϞȏKYѭ\Og2F3 DBC!]:vg*ϛi@j)+k>+AQҪ,PG;J (A&R{}~L}lKK1y: ٻU:& 6ߦ3W&q qDrlPu.@E6"(JsgAI߃Lk񋔦J%@,.]ƕIV7~jzd/:Q1=^;zïOD~RCOta X਺ N0]JW8GE/ގSb%Hy{Ag5%9b_!#~v0&.ZyƛѨ]岡oڿ,ѥ* ?'$ ~Gd`Gf3CuH`(>@HVP5طǦD` ^xs8H:1qYc;G_)qڙBH[.L: Bѐ+zBmeɨp(Oor(c 7K} e mxAgtN"8!lY&؟X>js+fFb*rCffAYߓG-#eA0WY _8/'YRdt*^ s#wTɔb4L3U]ն]߈r( X:~<FG'GV8nA]\mW =d^a6 IDMu diIO" )@N mi 1;dYy#Ď̘汑 7F/sȱM9iЪ>5h $Ic%.e7ħLuM x>D0X }sI_`\ %<]N"!v(yt?8Aix WL&\@ѡ̰s $s'L_޻ !@"}9PO(2tK-]0ruen*; {)d)J8g8 lyX'_7*`Z|`OgRLFLmd1RjQ{gܴb͜ :!Zi)PۖXgk_P:h~oʉLě@U;i8o6~.UMOL[/Tp!~B]"i!TpW @NQ䨙FjSɚ{tdzxtpmݵ˷opMgL x7I!.!jV8z(ݷQ4I Y8ITn31^qJ%# ՄQ]x m Xel@:g' ^0bqkGܞS&N?_صV<7lT:LL! vǛ?@ fH;{z_{QnBMjaTQIY+HTk qr[iيfn:g4V-G>tτX.Mv_v٠(tV߲\v_8u:sq&cwJxUf =ljf?3,IUNHPKÁC`zn=EA NlgЙN*@ 0+=RJufҵ )F_$۷ʺ8V/y]z+@*wȮzEE 䰦~|@nzؓ^.S FX蹌u-ul|vV2@D E?^XYU'R4-&5>}|vGy [G׫ٗx֢U&ݤjuխ=6As!67Igf},Yk"K/3^.Q7y" ~lc1V b1ƜZuQF@V(?v :tXt6pY( r2w^0bp;?] MԗL.p1(?e=-[?hokA  Pw aW۫XBSHACkyơ{1'Kd? 9wp=^K4 '}7sr<|OF7#m c.ihWu$ޛthq=.t /ebXUoH<%8_j-\Li c3uJtbk"X]en2!8 0 k~?cgBXVt^oMrJYΒî^g7]t͑" .{4,p#ɧZ`|^D=Ū j;T60>)]Nm 1iW {_ZFG`ǎOiV3pvN(`0⩾4 /7\PN$C W$\m@^"[A)(QnRhخ}KInGAB 9~hƳlYNsH𰟡F!^op䈚)GT$Rb-7>7Pϸ,aFZ|i^ n&Ua̔XvA2sF0fWrr-%kbV2Fojs9d?C5|M™584_!&1ѩB>=M[e69Ox_rD<7?L: U+fi͑@d+׬"Ų+SS7[]ѿwg gA#ς#/~lQ2cA[kn B 6 t=tΙڵkѹVUW>gǯm~I֌97ߨV܂b0ثelof^AY\;KˇQtCTMe"Qu9[Ŕ-~[@`M$GAz-i+3WIr]0RSuDH~OzLܽBOi%6FéHw?nK1Sk p.+a!MV~jJ*iADDi?f@a̿񮣑B*OPU%%Et(l F+p_H"de众eӗG"Drf]ASd97gt<8B=]f93M X7"\oF*Yrٯ L.CD@Y\ӳc/2=6:+uO>!]ttYu9l3%Z;Jc ~' #H &B3 ؀/TqN,9_;_fO?un_#`]# 7[@,\>ye(aU6*1eOBxOJjf7;?_?r[nw 'L64`Panm^23DyP\xBO[=Igei*w6qtRgO{Ǥ\6Eµa~uMw+Etd׌k07Fvədߦo]B9<Ą5H\>CiqMP0#?hy7)$Uv?i1߉ 'KY&;r"~sHNE {IՀq`!it\2墡'q9(E[K|[+\N”1MO;V4,;C~ $@F,\$4Vi]@ҨԋK5䐥N Й])`櫂 F>t8) 1|@Uw$G'{\u@\[}$YC P3E8nfci5N,Apb9&RpRmF%Or~%y maD|"& 0 '0Cs9 [:'cJAnwX|q\Smp䆆~y'j>W1̷kALbnq}B;Yܴ!+:+0ꠤE$ {-o=[ehLFE8ay{H<yLZn},t4HW[nR7+.(J^h? >$,>գÉd3kĢZ fTbS^EgCGv\p )AOӾ,B/ "S~W*Uv >[¹ pp.K$76=f ɴ¯0^1OoEBɎ N+f?;&2@:1rЮGhi"q T] ~:qjWљY~W1&|OeAAy ͂eWm_ȑY-<"ݐ6jX(’* %шQc ͱCLԠDxQ$m(Tґbuq\\ˊvee tX  2͓rt$$_c%^shk=*-LK&'T,6@9yǶQʖ7|8޴Br[˸<8 >Ϣvki0ؖ85$zSBjdS}WU`NrH` iA`I^c_?]Bˆ.dǒٵ3>bvi|Ya,WC!ΨlMmJYN.ҬYIɾވ/)KWY*fU8f%OG0 )Ci 7J̧n] ͨMiGx|ߊuP7b5;p(Sop C>Zlҩu;wÖ+7(4'r&),[8*y\=mtf Ė}Eyr řl!1sϱǙor" M;M02˶d|kI >UBM5<0+뺵|W4!xWBIYMr|湠.V;72恢BV؟_y&x5Q୪\j=7jQC;˓5˵ %;Ϸ1B |@S zQSO]1h!<0Cr|Tľ٣SGe)NZJGxz;F2j[N.6bhrN'!P<ٽ`bq&Wc^밳X|:eL5?Rxˏ]'F\zҖ )+av5/s:NM?cM=\͈}`GI!)uUw+4XsHD}IzZ#}5w&[_(͵PnH6w%#>[ئHޕ~c=Q:]O|@pA`gR3x3kkɆh9pX+,!T9g`8?MmvIFg[tOz-Y`(ͦwkTIHz 8c jQQ$m״̗ѫ_ZǛY6M'$Mt(.]xh`m` V`I@>,L^:'O>۩H֗nUe"wN4;p<3,(>e $0Du[&3S?[9NQGv 738jh#Bv8ԵكqU[0Uc!ah9ʤ HbP7> v{!ԤWrG8 +_v&3ETή>D0UH#EU"Ex9I>5bVfjF}3tPÏsrDf;a\<ؓ\IR7 # a =s qV$3/T;^VJI2$@S~˩5ҳ(-ezMX^)g;fxAogey㸳ӊ9A~8E(# ?*`I[AJ)#M3:VZl9vBrm܀0Ybwk.U ȅ5T,T=ipǻsQI8֧=)#Ξ="Gml8E1r ŒTZr;d^f0VcW?UKQ_;wgS瓧K`PqyIix}ܔ0uP? v)-) %\BSy)vpCcרޏn4ȸ|xUhof7w$uQf>E:?vڰ1OVWºG\iNn%w<(\IX/,5ÜX*ٔ-J)agm_w!8Ɩ1|̍:d5(.kI^I{Z${p(L0jBvi#SYK`!(+}k-E3Yb0XfIJ<3GAJA> {፦ ^, ?y7:܍0+^vm6DS_9Q#+ 4͟) 6Հs8rEY^ |to*i옉BI*`k@TMW.x*T|h=8M&QpCPH+"ELzL w0 ztn6K\sYmx2hRqxО$Xڏ穪BrWgE=9lLC_='OH0)kbi"(Keb-EV :6XOA4+·' OI/ւዜi`)0#lR.Lel4*"EKG˟eB)5ĝM5/W-DDS2j_=y^Ύ\?i7]e<܏hB9_XR= ` B|gҚhSS ȿ$;q+t &Y!]Az0Mz1aoT.&L@ĪfiY_<΂Zj&@(')nwWmY6ҥ44 Hc44jhb鼶񉵙]j7ݥ ^.E51phgw{6Ϭԓ9ѭX3vB6Ԕo%F`!CuGkAEe݈;^tO2c~nEo &pw93^8j~7J Mqňa$ݤrA/ DA%﫟z\KOU%pY)s\9S%Gx644J`eNXXxMlP3\>X 瀈MI|_EȩD8`@svk$Tlw9z nNz͡ 8wƉ0 -0Wm9dԋ R0?d+c c3^x04MUYF`hav86D|QG)܈:ӕ0SKVM'2Kh/P]mYp!`Do E>o4lՙ= k;d9h>5UYacGbˠC8Gp==3:xbk,4AhZYZQy R%zƀQH ơ%z6;3"> [4;*v}qz ;wVU'hd,4wqReԶFzan3gk@% t _,cj,DfP2倆5(/F2У_sWdžTKЍ>ݶFX!: 90Pv'Pc9[wA1q]|3]^$`^VF6;յMƠ4pj C, ˈ.."IئyvI􏢟n-'Zr 4$sL^$%.L=<=2ӎ"oU*U3 `w TN0QrCR^^ y_Ab 1 +y+<{Edh]g.&YŎ~.x;EJ/lRjͪqfޅ`kؑx %WafX`Ӓ棾[+!1LLRܞ$t =НTwKƺba.) g9h_u֕iހ08x2؇ĥZ^1~Vu팫e)&:e 2noZF}MVkxƏ|B!:' ɣHed [oY ;kO *6Qh"sS҅FJނ٬bSP~yF%k z?Ii)6+qjlVn{=^V;'T;ᾢd揾"&zGSETxtd;,!cJTʔ1Yn6SiotsI=iE^@Vo;vu,a}ϳWnX+;1Lҗ `<.CN|gYIHJm"}5 h_C!Ѓ[Ke0WSwpX'fA/c]P XQlo#@5`ok>W1ҋ(MNGtڪ`XV<5?R/r^hd<Ë6Ѳ>-i͡?5<?e3hk s.M[r7'AɔNډO ϴ nPFòwM) ke1)3r~\k.t$LQ+#a!YQimR41>)XJ崖Ƣ1CN$ҘHٞ}-f_d5o3:5w6Νac}04nуIfM?C^h+Ef$<Qߪ ػ;NYie=ힱn\Ƹ*'Q<ӂ&E4d&B"zPenw7 S8w{%olp%2i.X1)*}Ïֈz\H䚉`Zð3]7<~D03JTM۸G .BT={ͼ +yR;J!pn`!և1s^^Hd!WQ`Zy$$^Q$7iX 3quarL N$altЦH͛lON2Cxl5g#4|P j[sesu,DAͽ0RKeI;?ؗŒ:[(irJhz%[<~?^5|YOvUpТ.ܕ#J POE$'96M~X4#,/H 4+b/$W6Un{}~Zfe=Dm%+,%&c9C&WR싉<PMie׷Y,͵8Ӆ@cJiM|\5a{\Eyh{ (9B^]L5z7\qxn#dco6$agǧ[M)ӽ @fŀPRF"1*臫Ywj$9}UrJv<_!-v/ {qπ,+-[}@zIiA6ӆ*'BͮsHN=QP>\]nNO0Ìنj9T۲{ ?9-@ǦC&®?=mh8f]K򇩧._& {, s3wwE%AE]c-ȤC序G&*64⤭ %4>@>o'ήRQUI0H gPpU!i}U' 0] }W"66~>6M Fb!28$-ƾް}#/ _; oi1 !Zf m{k:gDhgʭ# dqAyhhy tgF+EOICED:bQyvw\X7 =''0a i\RNu,ҝBc ̜pGk. k0`vpHbpqnoj R2u>6a;% Nuk~~D!3nj璞ƎPRf1l&̀O rJ72!uU(oډ-=\ J&l4 c֫;EݰQ#+"mHwxB@wx2)uˋLG:؀u8򾕹~לӾE{V?j/ }j^w )jȖPja@"ɟqc|eX5/:]n{VV/Zf\-n8@їs%eq$ .5s?*g?}pfm/=M 6^K0r?O _>Pۼ32 q'|Tm_KeM+I$j+ܺΓŁ+;|Jia# H{iRz3@ O(Z v7'<*i-gm K(U-eO{g/o F }֥@iN3R 䰶B|eJKK**9gҌg]#W -4hwAD2 iϣdWfԊhPSh2P|yEb_3) }65˼sU`3./% eѨ_Ֆ a!NO~nrmCg?|1K)69Ĵh) əƀmqk.S֡!eIvoe$.@7KD; &C?Ukv\tR0]Ur|ςf '˄H(x&,z"F(-S\ f$z~9`}E'ՔLã7tӖ45gi s+k2UzuE8'P{:{Fΰʒ$fWDŽBWmtfY_t1)>W|&#$R:*iе}e '`:hlczE#" F=b䱾WWI"@fN%lLp|L=)& *8JRiƪ<^|:l19 #w8EW*#u%KXb)6lA`Oۍ"Y~$ y0s:dFa> ~^2Gn*aE!1Ց/kM8{z5ofcMF82X|$@V3b'<2ٰ[,3?;X/!%QmE%T *&uH8!A?V=2;I=8$*gA%YM&L?q`bz@W#D C8 Q*VW^%uĔ b4WDVu9=R%vgUZ0(.F!;=SK?_]l<##a kUՊ1dxcuVtl a2dr3!~zǧ%zVT:]8gAfC-UL4+aOiߞXE_EB&Pe,}) YYo^ETGntpT( N]zh4vWAhʃ{#Oa +Mg"(.sB:ؤL}=c}+ndϰcHQ9nC c K3OO!Q:&{l:SikES ؊YwJFƗ57g?]V[kN JQEMpI 'Q3=i63OD~%B-ޛu[nRd\a9'=o 1-EsXT_U2菙󱽜tZo^܀y*5K6/m"~\?n߁N#1jˮ]xBUXQ Uèĵ&a@,G"эIJ֥Bk KG uS#&mCym;O g ?tkLYwn&;8u;\rPC%QqxJ`CNp/m Bј *s<.=C#Oܝh!pKt+ows4'zI8sn<9O`'`8XнH N , y6؈әzjRtl6"D.5(|ޞ'>WqRb oƨwKS~ :jP/o2u,E ݀wQ?nunRƫ kkz~V=śX>y״ڇasձC `Ѩ-o͉R2-62.GI')zi(Ooob@5ѪݎvQGG0KbkuZ@Wǧx8 :1?AUSip=?od4֐vL 4Ցe$Mi<-{\:ϊW["6{ѰabٔnP"{,j} BD;Gt;wzdzB+#pc: ]` Mc ZVVc{Cl;gM $Zd`1_l_LU&L]OPpQӥ>/{m:'^״*>}|olq"=sC*}ltj XVͮsvR`زg8îi fl3J]7U :%ᑰ@$*r_# :zmQ顗Zz#Xdt҆UCj Iq ArB¡eYOl2RҪ2-ZFO+%ma_ݿq=ֵ ~xx|C( 83#zJSzTp Xn?ou`iaۚV<-&*GAȤgwX -|G/\bF1"PAc7QUEU̯9Z~T%sQz5^lw6f j*Dv (OnkՇ+%悔6,L[ wqZq;sSҒ`џ6`e%.Vxy0n=,{ ,ު4[|MX qK̋/V`훽aI:;u&FQ.0RbNFP-JlS#gwQxK@]v.!9 L6I&X=ƼМ ֤bʋ #RNiŚ::8JJQ&\뿀w j-9 I&,٪tqFx|q$֦)w0ƞGܘ¼Mܿrzмڷ@s VlZ^$fZ^;6љȂG yuVC?t%MΪ.c,["|]O0`43䦱B2O@;M>yB#%<@g=V!܎quЫ3u*i-N-ɠ2Rd_w ˱ց2a7}ЗiR kaxOi34߄0n:ZBs;x`p*Vm'.jtLn[&]cH(<['L0g: ,99ezUbXe`ۥ"UXp{kv` ͿֶmEЙ1SQ3`Ig2z<Md $5P Tuhmdw%W$"=!"3Xiu Gyz rt>)<81 D~#קaڕ}tLRLί@Q@G0J6U!/sRwW庝$.cıO6HccsTSx9] 3Ǩ`Ά6k!.9"j=SS!XaX`Q҇IbcYu60K\P![%}ħFAs˰.Ȕ=_+F/ko @f$-wq0UdP@p"G`g 0(>uԇCFcwPx%ӗf^G@_'4WrڒQ;zZ+z\bR_X X1o1k䘧$ʻ:@Exa~RًCk}[ Hֻ"We4~'"TX%3Y%eb.ۛIN)IgG].1ƃ wOzcbʃ.O%`WMFiwSF[Tgu<:4[Xgʉ!_i߭]Mo[7xr1YJ@*Vd\CN =sXD׵ t-qP 2]Udq) .viYʟ5OGy<^Pr0$j?}gp$CmwCW3\-DVp%[}h<^BƷHQxpi|! a0JH @ =唋i$Ƽt#ait0gQL"c0R*&i:9_Lz?}cE%0]0%Jߡ_cEq쒾0 7ERT!0Fj; m֛ٲr^phu~"1CM~![jr,-<{X8?߭{5׌:Ts6!~(sZHNޙh_#@H[U0HbN!^AE{(  pΆ5 {^} ׮_UQUT>IQ{$:>uϤk&p0 &(ZH%FL(/X!,*E"e8AH5qcٳ;L/@o!x^g9S[V`ELЁvg3&P7@bk *s뉎X$=f$M4Pi~ KmsYA4jGoQđ%fVyeOŕVvQTa sWH*{Ѻ$(*eAچfYIiLaմ|g>oUjd[_өjϭNJtH*dhː|B<3M%!'EW0@pRqwoeKET=WV 6ߟBS&jVL7V7䆳:Bt" :Jϸ/ic$6Y-3u &==Ge)~f$oVMTl|%W04sf"mo#WU5e,3Cs&ǕnK{[^ sѝx@x$B:6IHr~?UeV {lY__CFd7x;!A%5Um Md8CSj(/Kц.Kf9n;5]rz@쮅ܑ0m ,3-J͇fastIk u I' Ko|iKx@|H’,]=88_6ِ^cqw䊁3$k[be:z~![+tH\˔8 i"hqi΅>*6׮OH>RǺGxT&ӊhbވzSEcmG.r\[2V+GUPbXoB5I(u篆 k>pjd*Lm1)69_/u+c= H _ڇt}_ +;b贡zxs6/VUZ)4=rH6?#:'qf!4/j#2cKWJb>+͜g)yeQG5 L|WC{/Ql^.qɾk3뙝gJC^s R1}U[BCG}R|K0QWNOwߞvü8koU=I=,9TB;'IguZZ 3P=x$kiB(6;V lkSQ>YoB'wF(IS».UY4ݝx^G)7勾]y/߯xҎ67YH{F8[ۜkW9lXa_52*~ (!tvbB;i -1#Di Rd5exx _+Y\yW%….*\+9dQޭv+)dnJ xǥP˴+ܠЍwbt.,ԩv6ÿg{ɨ1Tnqg_K95@6!L;%b!IB9AMBE@` -(2ȱ !?gt,~I !x֩CDh<\ؓ[H<Q^ 7br sif"b*tf :W?Y]" hny9gLE24k }ӳL=Luͪg&3khN|=,Jsxhi#~*hh䆜έnлAdFC.-#Ah0JH& MO< 2.P2Qq'  a훮oW@r8%2)IX()pMgH=֮?hf?>H7ΑO0EԦ1*)q$Rdd2n#W\E:H 'Z rRf|y_sO!$9W^0epK\@k1ʩ~!OiJ7U49s\|?Pzxf@DW]GKamJ*;lumȆMg*تɴD ~MˇQ@mp~>Q|XfHSf@cosD;c| HKUs[BJvOr4_{xc]hdQJѕʽ7^|UѺGhFO'GSt|7y3c#Z4Mcbش^tRWGNf0T%26%v}l$3N mHE꨼j]+㞝v`ab& S2nlTgAB`aV5,ux$oȶ7߳iycLwoCR>[ g|Ȱ3®S V]DW F,(õ.ֿ$Ͻb:޶IlV!{WwkY_fVc{!NE.C  :B ~`R{HQBcb@q+?9&d^hJם:OZbSP1gB:$b^=oY:=KJe}i{Y6Rz" 3YWv,?m9Գub 48B\ 3N eܿ=]ܕFС(+j #$)uOiTe^|\(͚@[!x]Aus.3+n\𺧲wBُH~|EJܯ"aGf{pLG >Nm(v=B1F FN ,0cmz4g7>}Ok7Dv_:ϤD gsݫ=#VEʇbYY r,͗ѻ4]IlaX"g:*h#PIv1l񪓞Hsô54[[tdH+!O 鲕N }~Rg<7t1"'qC]'"Ef':ʭw W;{;h }ilD2!&~ 4Rd7KLxN>8`gѷ@!R i(Z.S&_?wh0-B j==}[9yv溌Vmb<%=})IE^']n%nG7DG9J{-/4/n7ddo>n!E׌R r9w; 챖z>/d9m+S +/R[gͦG$CXLI=Y6($cz׉Dzǐ1Ї}Ռ;˫d32T3ZSZdr/h򪾻Y 26iӓB:pM=猁Xk%G)_ye0n}k#aE'K)!G< @4Ub+H7cD8spJY:?E5R( å`.Q ({vP2ULtiPA0guׯvFlIG$ ¸:F _DcӽIub A:`ss>C?)޷i3]'g,"IlDRQ!͟PDUmL+)0fT 7?/ph~\ע-"f:Ɔ3;!w+aNѷ · .&L"_y4lK~bBogNfȼ{ 4:3k!:lLfi t%y^q6A"3b{B4~8 ܕrg\Ipm[e=҇U=Zv n;e#HѵDfS0i`$?V0la*ǰQku8Kvn\F n qw-zƻ/{ͻ5˰닩Vͤ7Up\&?!^d3*"S2onq!\’– ;XyAЇv*諸 Z޾0 /G h XI8rd,~]A(4kx_spsJ$3d/61bGZaNAXP{ SƄgku'{N c`j}vV6Za(s ^|mC{o9<17o np氁$%ɻZG> 4GjIEܦ{ֺY΁ ڠt!B\+^R,-Մ7dU{! p5Se[S,4e. c,2SfMƿAȆ. &lV z{XWO{AEZ hӻcdDcf7Sc[>vJf@K vY mjo8Ne ;: Pɖ~aún`Mï Y};(kAvd}EAdhs;ɓ%rSr%lP |#1@x'm$'+a;JITWp{❲6Z0n6V `Gj U?(p$-nzLaǺ5 -3MI#}l=c6pǖaDe_6qd}fx <Չ.2 8kA~;tŋ{2 O$ wL2r$vk,ɳD]fl,|{[."R>{emCl nt{|g GU; ڕ]]qX N}kǶ$t`4ŋ~ڗBW\ϛOkBx?.dlD1r޲5֠_A_j. OPQ*3r_# I|17}s`o?A[bjJ']{Fq0?\]k\V;(b$>ɨ^|ԼuflTU:(Xٞ^.T=f( ; '7WHu&[鑠;0%Lt\.]: uuoF3ONɥ۽w>Rrd=jc}rJj&ĥwBGtT@RȺ>sj9.Mq"oh8@?9 Ųt6LʚorPBM9!* UXR 1k|[ 6 P2!@Sr#$V^0hB\&`6d(E?/.Q=:A]IiĜ ZbDLcq"Hg8V_]7aaCms4<@o־iYWpbb.EIn,lZM-Ľ2h0 |D/~`aYc{0fMHݠ xcL>K]79F TJpŇ~1W̱K/6FS`ZrBp卞Jr-䶕8#G;$Y ˛Ljnhb)Z͝ƻk#L ~ю/9 L5/JK1A_ߗKET"b*^,ۃR, 39ap*e4uJn mLl@`Mb@g988gR!vpq26S^}^>9{SyO&,m$,Zr09PV,8B|&Y*'MS~a\K 5X0u̲kiro@SdEkZgy<۔V gMI"B퇫GeKf:Wu[܎4F:nM̸PziT]k~ &FVו+͉h, W}uadA,%xήsh߽}#e;nr ]6cFB |+:D=^;6BH|$Y/1 S9huWe3`(_ C<:qQtz K@eo()򺟴-3|n QpOK3JLaL"lCYZbG6%è)hXQY"\'D 964VatnD,I73ΈJ<2Sy}a=ƉE~^0$x ^hJs:LΔh\}a3FZtɔnN*=bJӽ p[r ':o0iS.Eh&'>wnoφG~GxqVAS"c{$r S8RVr׈_xO?!|WxH: tvnsE^?rRd>O[`~eIOR0|+"G)!:)㖇 ʆq30U!S._+/(rPG}>"ʯnC{ y[q<!l6y*#X_؏ ܿ$hR,kdl~;C,YF^ `?QYOO&%R֙[8} I 6ShW\Hk>3Sк,G Kb#vQ]6flhDod'7N(^)یHKC'ɒ?N? AKDSYfRǩQ,5k@ xty7u>7۽AC /'nϲ`>4}f0Ւ@zLpWˁt>k϶Y.M:Sn&2t+,v T%\L3G-EVN 9#X;3Zy"")Lק\W"핅W7|vyuc_л=OQR3Se|+V-kWsaِF0(wM?hv8S(u pֺ25IDzaavH@C2ZH hӷ}Xsr6n4& ϻ^w&RU;k!,!+}W`Qg@ ,А7Efhp\jsP3*[ݭ98$VMaUXoĮe)xaɝ[_r=@}t:]L6!9Y` [CF:q̹Ɵ9`wem]+#<6Aac/#H3xw1^i/,\ -}yu &}3K\F{Е%/\9h ,|u D ;>HfMq:9ҷ> MGc8:?#<JO,%k. @j b~6f.=fF"v1q?$ W+k?qZ]MD$٦]hݘg(F9s+k |D'6yあ^'M &w%eB50BR_ܒA*]ˁ~SKc|GJO7>G` sle`n3W!aQ q BNfLE΋ւjT6 CߖnBpLI|CV'XovF18b>ᇄ~{Q{…{|jDD.I5]$ſ?@B@"Ra S^yҁSh)?-@;^d{sRَ‡">fBXmkZc zY.ǔz[,u5! oAA+:%_IuC#Lp^Ijب*DKY̴rru}+R&\S{3kip%D{~u/X 4~7)F)VZ,mPDo߱\wjpƘOE͖;ݶr})bH!M@MjM@rkqJ_֑3̢@!x9 4כN:+PI0T֠9CZGie,WDTu2v*MR0ix~_FmHf~=-B}ѫ+pd 7 -FL 6PTM]_BMSLm ;0D]M5+v ;qD6%0& bm,<~E28S)\in4DãNJ qZ.X/9X%5)YH zY6Fm˿q^z1|. a5iS:H3"{A5uLGyD]B.=0|꜖QsPAC\q;/z3t!DEBL?/,;A Jي=!Z/Qȿ jb=DZe욕-~5.\抣o+}5>ר]ie &C*{8y<^`|dgj!}r&j>_L;/?Y|qʚٌ)5#lXܕ#f P#εe ˮ[֯ aeCrɰ_;?[˽V@cBv.QpF\ mV&: 5n՝|z\gǁ ޑH0HmY5uHPߞr_?GE ,ZB91Sm$non~X)pu96*asm٭T$s+!.78p ⦎8[`a ^9Y!DdbJłm17E;߼"l|Xsﷲ1N2BzKtaf&g3& ;8aj2.ͫL^9|+rg/q6]$WONmNǥuPj<|PCV ]G2}ҪݺadC7U:kܚއʉ$ ^=5oĸIR[ ?ecl*(ko~&hB&,4'`ԾJf)01dB^] J#Z,6'79xuCJ|.} kH+2`+(]x/"agU$D];'ߦD+uehEvh2aI8[@..3Wvf;,MH߫@ǭ j<5_}ΑͧAH3-Jr'R5C}~bic'HZFznn'.]:ciGzԟhEL}dia IwUNMKukK|N fm)wE2Ba+,s+jpNA|$y1'Hqx/wJf..|NU'/81;^h_pD7Ct% KJԃؠB)mpjXGjiF[q[ 0P]y $ƕnl=íbU*wo{xyKCXqmGKݗL ȅCN u }(E.'G}>qe.il]{h ,rf4ߟ?٬\uZWD*CPTFyNgL6 hoJB{%xzCfs4T{Y%H'NG6ݸ )43ttwIty`J ^UlJ@Eڰ#2j눼@g7ǀ*?FCNgYk&Vujpc+ITq ^')f܌8G |X%6Gr 2T]S򳙢ޞݜ/P,w46}Op>>i|>;!4қ"6K gREf[8BSKpuO: Dg(%1v\i3ID WLtѾg!4:L-kL6MC DP"J3r.K}-AB:Lwӗ: "4/-AڑeaʆTpp_&`"h;P\8xę:;WMrEWLT1*9c `2_N:,TK(J%PX+O%9Lt=oOS o$6>dkq#n@nf;Eٷ`q$ s3Af:H5y(|O#RMclQ8u~6dGGrW{t~HR_GٶS}^C"v|zmg7UPqTD7: 5>49,G˔IY7 IP+W-#h&#)?, yeھ${(TTw' dEl C$C~)DOA#DnheQu!QfBM`Px8Kl7iG 0!Kc+HYNξ$7o!$L> Ma%#tgzDRJwۖsM5"qb){Gm[xF IJG:Y ȝobޱKƻXAHٷ3>Be:Qr$! pi^ W[ΛkSҠ>|tUV vS~>xOM$C2IP=c]QKqrvqzkNN㷚ٌ(wrP~l!b 4%W vz!BV-8`@ gtO+a _Pdz$-QWU% IF |xRT"WݹKXī{ʏ,Ո5ԪnʷTG21V?}p2B"I60PWg*h<[2<ηgMCnUT[ΜY[ƒTxlIm-u0&Hxeq@V <\*cf B}̑eW&PeQ}O7鷣zIZR*rM7z` 5bso\kNgIj-UO5](MR+нU $V$0'{Z'P+vJOzúۡ .}V^%aizSLb#O =? ^j-nسE# LXƦ̞w0g"ʃWс ES^0f;[̮p ?gZ=qhe@/"/ww8mi)aU1ٙPU91~XuP!+j#頏ގ+@mdn N(tRq[l#<xwuJXgGt\&&GꗾjyA ۼὲ6G0!$7\KM,h\&VYdpUFVм8pPyן7šTIp+{YӐmfC,@g<+4F͑,ˌՖz톎o4n:׍r%o &Sݒt1"[aFɻW;4rVzPm$D|næ|pٌHՠftpɲX hc%(WlTd?r]"BJUy2c; &B<ϬJ%() ,#i3})} OEܜg<̕NZJ-͑>S=6U!ۖngI6)&S`@uixS"6Xؖ7"KE:=ʺv/[)ϫUe푒7ud{o>{tD+A9\ܻT U 9XFlN(65 dvKp*}% Ha$[4aJ"F/Ew8o/0~N)^Glq[qxm$F,~L{jB-E)K7J"0 (mX}CG "\o̟ Znג1Q?4!ۇ ]gHˆ6[Vv 'ɟM6y.'A迮R.~t/:g b5u@? ȁmЯJlLrlg`[!'1'Nh09D)"QԷT5eO{R!(+P .ErW+w`Q[< #QqA[ke8je@YVI@QuJ>(p'5))EI1U+Y 4pA)acu#6eN2S)lm3骁zgu|‹;S+_NtۭfZnZXR'epf5d-rU@=@g0ca+\ FA+k&xKH V)|^JmVe8G4 xr'7$F9db5qЬ/Ab= ,v&WX 9[2)V3j2e9i;cdBR3Q-J@or>Jʈ/d, Z F!b-'űA._KnΩITe)bL1/[e?-` n C&B fk#Uت-zmBIaE 1.츆:ȖuYl}[bԆ㿑~^PX`[|Ct',jS8S/خҖ#>`׽ɜ'_ LE2hV(9Z ɐy{P4G^cs8#NYeÇruyœm5uY31Cm:* s%A_ (Ry g۵\&f5BGk-l ]NBlGnDŽfєߟ$NfdDZ6>]XSggd߷&~HV <4ZOr;d&Ek83ssȆ ۱!8=o4ʭ)Pf痢ϑ #^ct6lrK Fҷo:H~F*GN" QnV*5}BmGƒ`߅M_;r7Tw_;؇ /ը\&s5TM!S%#gpIZ)ޜKCSP(x8{|$L1wW s`##`LȺu2yqAy~ @=>aa4ۚ~$oykQj2(t*B"rΜhdrdcpg Kcx.y+N7Z5 s\j42 u=!,f;.T E$s  HQ|f~hi&֡LruB>G,_y1FĦ+Emx▽XdSݷ/.rgnt|zLVKr39~0 EgDɠH@m"%[p<=6)JYc$O]kDًBtdKQ Ѽ+(J-wyoq#r*^"` YzEXLLOQ.ADsrX0<;4 u6ga:.r3,#u= 5[ *R"%!Ej7 aH½;~ų kDjkN9+d+Opk3Ԫ.E!^L1NC9JBwQo7>yʶ`*+ Kȱlԇk̘wN&K yAQZ+8),1%W RF֟;j,SUաRH2VzI |(Pm~($@]S/~c!ZQ9D8M>j~đ[00Y=Le' ~Gm/>DrSD[IaX_/fCEsd$V`[g0 )y b*lz>ev K p!=Df$@MCi^L&%3˻oc)N?= 03g)cȺ e2XTQ:IBJ0T$Oٟ=J$Bî(+W"jط\9F fQ4WUUK4}@JDׅo)8fgCaV(Qi\Xqo咾$4~c@_3`'Zp1( TY{0g%Ɋ/lIJ bQxD8! |?)a?Gȁ\Eų>:k!]1u.7[{{}0u~dZH279Ũm%m`aXnW '0x_A(fH2 )`Ə4ǂkc`dm"}(H)}ٖ#uŁWGL%h<5|TY)9Gy;JR/Y_|p"3~5Z$a$-8a:S,nx 4bsc{k.}jkQh|d`>yN\ rogWZ:*٫|n~QK!zTQfT[h$`~HnxBcC`yN^`YX@}pҧdeLM=lj!ODԂlsMV#}0'HI~X@p&9DpO4L2;I6Z1X0Ȫke')ZVou&MװFu*U=_އ-&WPyrsWm5VL-uQN՞f,e׍ ʹWG TIDžOh%Su43c[>td4-f>`prrv[s\}/oW&} ̲^rmF=p 9u_r=K UWm!1 ,*Kj"׍5=*4!;Nns{TajԜ\jH-F|4~#`Ec]eU/ρtUjfJ^ [΋{X{Y}bqv? Cm9æք4|w/߲GXakl$(aV0(n>*i p*=h?c% Jd *ώ+<#Lm@M)xx J^+i/3VQ&n#NWx,jUt׀Z[zLaaߙ09W5R&F|]( c݈ڃ̉Їa]}$4@H+V#-3M(?Zug>ھ&GXs~'-*`9r#8LpN+ dmɑV2auv+R| bI3(MQvNhaA |>"6kJ*Rېu)7/^2oVf]h|ldxb ÀP0/DH̐qsV78L{rF!t]6D |dȭSy7p'лC8(\ kgP[Վ~As]{"'w r<*|"l"R8ߔ谽`t,?)LV[W׏BO# Mיӗ&i/x2oK1^Y4E%H!,R[-1.:yq=JM 2b%7e ΛjJ8rG:CD"E% ^xGʬL YOQv\CGDgڝ ا^Ch'ee-@ɭ\J4KѮ aܣ[7}]S 0.Tl~M%aJjѵW]n۹B-Nc(y._1+>2az .Zd~"J,-ֵ)fC~A7˼a0K+xX2:ZHrhh6-B< 0Bq$^<ߗ*;t{'ńӸfe %Dot WPi^ۈ/|8|#<UEdi@= £Xt9]jd,B^]yѫY|,hV#!h~߬Z5W;u(|gX$떎_AkZ~Q~;(w0'mE =Xzk^t,vDq?޼O]wC(28-tOV37ǹ7‘ Z)[S>>䆏 Tp2{~>Zt`Sdߺ8os\4Ɂp%j<c4y6DkR%)<Z;RX CPJ^ʒ ![ .z#Ѕ Lbk tckm42"@#Ilښ "$",d@?s}\G^.vd.BY;Rp"sQm夁 Yn z3x];}ъWA< ^ ݒ:BLl~d~kӫ:ݿ!/}R{a(4V]mtDŽ|aՊ)?]^[jaRÛAFRۘum/]UH 88 V."dAIw\'XT"%9sYddtML>?.R=qe,KVQfj㍢hCMyԋ>Ij0x߅3S| ;1Vpwy1S2l`.}LDgl" #_մ1Qf֙OčX2.( ya3zϕ'J&IG66,VN+r(vF}d/]j.dڷ}! [׼Kln{7/yO%= 'νT䄖 鶨ah^i74Q:w!Qӂbp~^ݻ}^"BEp+[/,StAm̪_}]SQ3 DZ6BR:&v5͠%"~Pɑ' E>d?ɗG|Әđwf,ŖUG5?f@MpADhfoI,zT#|TiQPgAVlEխԌN"!K>E>q/~\/֍ځ-Z|GᎪTh/滛 }?gk"mn3~~oQDxoy X>r5!]7'4 [PfıFRj#dF9WT .MUN3"b:ݝZ@i3S5d5,%[X)bP:6_.;$muO'36:J*)U#f@ZupmadH>?NˏTo /'v&}I#ekEUvH7W֬b㐮dE v#gGrsb}brv')}(g̬TiVRnt8g{o+5Ǧ9u1Y^I?SE,̒"&^Xd'yᾯAzѰxbrAL`/zQHv, B@|Q{m\\OЗ͸}͢$(%a5NHE6U.|ofj`|R =n3RVX^G.h`gEWx XNsޘ45/N691E3t+oi,+G-Ul3%U BJ<,}#K!Lu&$|RO@ #=[jrmh2a9ڙclj_\'NjdKPhs_&gqnMfz 2?jOe_\X44jG0ឧ7Ҝ4􋿃O~_ Zn*OK xvsVBldN !Z ˧GNҵK z R](j Qv_GKm;$ 83IOE]#asz q49%g{׻D`"=I$s.DE%)1$D,Ib/74J-rQt.A_l6^$ 7k ~'6`reSJIlqehe :!g#AdFlqjp|wD\+=tpzixsy4͈tSb*:R~kcnClݍ4x-Hn}Y7XރGm5A( /f=}>'悲fHf\ھI@mx" H{*IY+&ơ5cDLc8Y#Mνi<^"kyCPt͋wD̔erEfM"&TPqͧͳ?!PR}28rUՎ_Z G~qhZfǝu$!xt{`wpzT-D$F2KF= BYK*3 p$駼$r ۹͑aS=?D HZ_V ;L/t̷7cCa k+]]ߡ]=)#E TYsͦ-ue7oڲBFĘJ#Zҏ*^-1' Edg}|ajI㱺+GUi!!񣷌I@@w Ba 6EBP<¾ֲ&@~t]c^B:}/ۨ4I{%Ud<4ˊIi=[SI OWS.TC]XV[4i.oaEDPhnRzJESd7 j>:ܷE Ð= \؊[ם!uG9 ` '99>~f.Cf_X`z(_$jqdOv0ѲDAowv.PʂU DP۹VR[1>wKxj wr4&OR c+XQsY.B瘦%|xo1&lRw2Û"͐nh7Hۊ;wE 6 p. \>b9vޙWBz[ue6ہ8Ks术2hy3Ln?xbMc/d TN}޹hx9Ÿ󱪣!A+shj$߃]j؜ L-^nh]*}f*:A";&dKA&0r@4eKki,^59uY˯P+ꔁC$Ԗ)[pvL tPYHo馌tE/b%. I{C鎯X/ Z+q~YmQ +s0PK9XY؋[Hg=2yE]"RZFxټ|L!%b^d_h[ (D|w" zemzY━V`zWJqtT ` \ X}-IsV|kx3]mUۭP3VZn*nւ51.(QV:&wlep Yj~m}QpM -(%i01"1ŋ}0;׬T_nx MDӛD.[on9dX8F56`eÂ30>pٗ﫽 5\D\J)f~X, ZȵV\4~b;H2 /rua^4䢯{U^ps^6 T;M .TFeBxPFF\O)k3hG@6NYaƢyƆ}_j^`4HfI?۵St507}Wo}ngl ]lŢ'DgU1LΩ9vO7tz d~4tdX0ć|1qv>3:+;מ`-kcpy͚XV~[^%0# .t7a ?D#N8Ʌ1(_i31ʯCISwrWL ZeC:?ڿmm}Ǹ|.ѧ_ A@N)BkEcU+VƟYбx<<R1^%쬽yx:aU1='+9?Rε̾-ȇp_65EF> ¥J_7ԏoau-#ZWU؉B{R_A ȏt[uN, ٣*_Nx_R=qҕ(Zʥ4 tqNn DL0oT ټiC$ήy<4u!xߐ%i6QxVSܤ;n @[Q4I|(UW"!(P%Oۑ=Ł<x9r}y'UlT;lY-ƹ?ɢd,5/l#v 6&#i}\ v| KG:/c(.vM'ehV:muL`EotN}RUcQU=JKXU [PσWP$+$h+b8  2[ԫ Ͳ coHv>Phx Y[CZ<ߕin{[V[^ gO>⚘JbdV?A5J8 Adjġ6Eu٣Ξ=,@U"I'j|o]s-{7"Zw/[80OXٝזERzD.es]1x'H^{xVs!`vs}_:9do P\|$ISBR1~eSNd9H'J E_jGWlYYfKUb0̉ KBژL܅FF Uwgdk&65 JI ~]6Ԓ?H[@luόyiy֘^aqٱ ׉4  .Gj =!LpT3).)&~X*W{fSͫNlVkBf˗~Ml,tЧ^\_yIay `)O=AO븱j;Ӽ.\FJ8C-GK8P(gMDN-YD_d PjT54\/hd n.UUbN;H鏥% R5D7z]`RbK-lQZS$ʓp^O5Ϧ"@8#MVBxB[^[iH4Гk"o%u_a_ l\şžV"cpkQy,i2%sluM܌P#'yz%0tei`Pg2OHy=`:S*RRwAm"ZQN'yRcYa2H]ӷ!EvG߱&G0 Lf*XDƖ `]Dctt\p@);ONA2V\P"ɎI:SXYjn F} MyN~̂O|[[^2ٰ f| P$Mmy? ,8'ٴ0Yi<7!USx HEax 9BC6G!IImEH=@) `,34<=gN R1xlkE\ NIx'ry{^6NMp-$'77~sTnecx{tH7;ԥcB yiTَ4?@r'VH>iCSopkZ91KJ *? w3o>#qCg&5& H/e90hof[أu*%ޒ eƇy~I6k3h@k{>:L +kR5Cz;9 iM_fT[tL\QRX]ƛ}]'a=rmm߮tP *{\؍`֒(:m6.VD*_ˆ~DHҝH䥕 c).r1;PCPIo:ՎMt SEe}vw Xc#p -/{uj!~ `yG@i-*|?#v2?nlA@1 4FNfG?}ͮU.AI'XfGAb궉|Y=CuoUw8_c/@prRe;r|+h#T,cvwwxDU@ɸZ*&v!~'})G?MbxRG?{x'|l@=6 y~[~mLI;!XR%R=2ĸFP贺x\%O(@XrrSH0^M8#=yt[EdeW7#!c!`!bFݷqDd>ď': $ HK|a:JSNuҨ-l,d;aAeZdxHyۑk hg Pg”P4IgJE Ē~6!;}h:ĭ$bYIN%KoaMS ͮ"]]-5R:U2Ӳ?x{pѣE t: 4gd3Llcʕg> MI> 0&# /Ů7 q(3چn;ʆ;~W(1]i B &ɤ[S ‘ ?}"*M:>;BPR)\Df3ϻm+>,Lg !i@iPiaM,Y8)gTuDODH\s_T¨ex{T6?5߫NoIؼ?-)<9 p%K*1L^s+G~îw_N] ckC- #AWK(2xAq;)Ώs ReZt⊾ag+1LC-8Yxƞl*d ѹZj58ǫb]e&[PR.۷:釨z|y(+&mibj>SȁhLR-gz]T gm=5#9LLIcCm9PMFaw xzV,?3j aߩxa 8'Ӣb0-:)'y[!$N{wPغ4Oy7WI0o|9[z󋴂|iśd,G?!d5Q\z(h, nr}d{;-`g]Qmy* =̭6ˍ0ik#Ԗl y$A?|=%nH}5ZM7C xBVN]Y7. $!tΛ"ǎlOCfb 6<pgº(W}W0;RQq۠e()xוVKdNzu[ֆP?P!6{z5H8_J4_)->-$"QW `65/1=ንb^MyKO-7m; 1cl؏r_(9 ILվ9]2 ~tZOT<Ȟ21$mS.$KvZSFA洂~ ƊhJFƾn+ZtEzv8 r6aPmԫL'bh1!2Bc6oSL~W,][m\03 ¯/s6͑=V1`N:l]r2*=H^& >ּxp$Gv+'-[:ύj>8ni=7pv+xe}@JE2@5Rkqv鰔 \UL@K0w򘧭` ~SnS"_&OXMk6ʻ԰,)rB.  ":w"oWǞI8 .8 t,.2' [U׺0D @dBe$g]Zb_UK~`Sٺ ^r6=bcb 9zMnx-zw:؁@h@}EzV7G 0^fΝ %)=soa{lb%YN1LaZnG]j 5)OFkj1lƔz%6AᏖKUvۡ|_+؊:](M> cvͤ⁡3h#ƫʹGk5+B/~vvJI=PAGuYS [Ak|#Vh6vrGuy6C;.;3!c`wQ~698c?ix7n7#U[uI]sjvtd_dc$i;rǭZShb@);cϤFz&:lղISо&t7COZvZ[-޼(k?Ek,z_YYמp|1 %3 a/=T+:z۬t~%ݢ(ϥ``mfyQg>}'=i:-lPoI&}I"vzCgW+kB[߅4SI)AfsK㱒S1Η ܔf=DWʟ^T֮Ȭ(}Jۿ;>Zs]MqT6 }(uߝjGQ1߭0HUF@2C~9QUzHb4Mfתď֌*ƭ5kUF%Nrֈa׊αdU˼b ܾ-偓OpSkhZ0iH'r Hpx/'z h۫!Q0I(귒|a.SRa}s?{|-Pl sdV)sAy=("K:*m*_]}+q{;m<^4RM>A;{PT뒸r`f41=d op;EYJK.eGBt-u4/1j:0ò KؓI%eQik5ڻ;W%'LRRֵ$x֓ng'yqjpޝjدVbs2b=% IYW=/ū[mKAG@ %Ĺ߉dhgueȍNi>|sE ?a8wϝd;Qj:Kj(^D" ʾQ EVi^~{J>SUCZ?^<2Q[s@rt~ܥŇ7ȟpx}#޲hFt#^tpE8w23M hӟK [)C6SN܅e1άCmF+f;6Mi@yht|NZ&ϵK`P x6*lZ9"[l%ס=R)5ḑ-+tJ凝/7[.M xvNqrHMToT"]0K 0 /9J ?W߱LGU !27Dk5Sio c_{`,%]t#9ȱ튋o2|9AzfHa0ЉX[ȞpWy:7w#[u@n?ߖAVnD*%"0Wz>X)=ZTɺy-Љp' WL}w*ɡm)$S_pFNP;}dUQLWPe0cþhuIWʺ Ȓ,wS`lv (S!ѕb²{_0$"yO~}MV2@_\%=I|+\Sr_n+B^PSC1(.)`&4Yi&t1vX;ӏԸ%ex 1w*{.W$_!$]]:J4?HsC9gOXPe 2HCĵ,wRx63MG 04g8Cq݃%6-v3O >x_&ﻯ(S6# O"I3VK;nۚt3׫M EvνlԈqڝi:TYځJI]0eƱްPUݿp+BA2ǓHaWu u'r,XR2GI!T^.*V[JQ3gCȌ 09tt"y7[<ɗdq%[vW-(iIc*^ sO4(>&5Kش{8mT%6q% {4lQwxm齗 (fco| Jd^'8EC.J#? ЭNH4ׂ$NHB۴w%ꞔ)Hy+W葔4hJ&e!w>f|k'XR̓SrXu}f|x9?Z,GTf, el.Ֆ,zɓw5g69`iL;(BZFU:Hm֞5JwxnP6KxGL S+2C{lVʽ_=I .+Ii^FӘ]chȡjJBYlS\QB2@kW.G h+ Mǻ6Ed^xy-t(mf3d R)Q*A*N3o2oWΏRi@cc|ooxf!>a*H+l erŹM^ֳɐ.QS'1L%˗ZϮ\`YN ֔^cYMTgo=A ^.{$l (*pAj) Lí`: ؄vR h3,F,aH?b(Q:~̲cUi?*s57ғJ5[MI_9qt/N(Hi&,M<3D E| qDj\/,ќ+((ZPsH|뜚X2M4mۏ)D.kLTnB⇉>+eHX qtC wu?RN_W*DNM mwAlf?ڇZ `|~E)B0 V\CҤ=X]gK[+x]9^0fu"BV-,  A,x]؂D 8 7gIhRd; ё],8Yڅ, mqi1$xi-ϔ]\;0D~R&pNyUbY_iQAEk R/zcPF٩G.kY+Z : jx:2U#eGK]T;p Rjgq\@#KAX=m6%MY.lL-n5n搨nδ%`IlB 1OJnv@_uw0O>_SN r^BZmll]57Ӻ̲ӳ;9iᛖgu>w7;F t~*07L|%VlJx[K(5t"B  @i'#a";Z̿)9Is&ly'{~GRaAص tuu*p 6݂pn>5F8N)KǶޤMzL, Βtiĺ1ش% 1k AWbT4SY 7h-`A)vʥh\%>)>ecZ*_`SێοOډGP#pA^Bk PFݮ,Zf:zZd sŠ\r-_XgȊk)^E}T>TEw#eG ?Gyzm4*7{tV42@<ȽBr en}AveE} ##aK :?$UX՝@N5 Z%&^hr< b,?ȋ:Ok9 gAN}:h1"Qnc?ZaӱPZ&id-6pCBR792AnXgH|#`E%h#4-1ٔ8,G vfM399\K߲(Yln4p7m  ?sQw8Gfd'E0TX߯.L:pAtlAv]1w=A6zD4# of5,thZDê EJ8wf R*1uꩁ+7?*ω 0ڪLk69^a}pCzlf.5KZXQ2P_w,jjO?8-K倗cV'|ci]44qo[ȩ};Zx7#^w%LzzznXRxY?F{;pƛ߅ 7^x\357+M^ A;fWњ}B-UUcr)/MkY-1ǜj AZi|+!Co_V[5To5/ kWātT5ENьzq%yk 9iqN5^+p\\u?Uo%^rPj+<ٯI5dT^m?-j)y$ gts\5eC|]J%4  WZ-BH\UY\:l"/"Bo\fڔX^(|mDS1R-3ך"idcv BXZ5tF1Dx# ˼-g 7YtZ5OS0zNFN9O߇pa (8 @3S"Ss:W 拥4%+ 10TX )^1eEe<$8uVNn- u,448jU ^[%Bߋ<]1ϟ>Ne|AU]gq+&RV81UK8Kq.7)Zk'«cV>5&;qw,`;&o#VE?W ûI/x  aԿ3*zWb}r~"DzKIW[00j5Ikr{}1Lq\`u;Ef<g9innR.+{fo? q=N9x]ؓQRui`!h;bЄ1%#4 AmK_6yB0SλNZ[w6WT{q σ;Y܏ػ 7#%B\ÿ+`I!+Bi^`&׬uBDnXfc)y_`Pijㅤ!H וMB,]+8LK<09۬;o!&(p mJr\N쪶uI]"r#LB36H 0Cu$Rf`>-Z'K5{7@F7@h1⏱ؓm4"X({QY֗KkKNN._C#+z!@zgH! eN(Υ:,~'^DR'+8[[g uޕ#ԐJ2!ʠdW[_eh$ˈ..M,UΌsrP1Nk'_1$8CAyW$s荪0*w=v.KkaI@ I{2Nc(Ua]B4xRXc1ӛE[Xfd;]9\*ZX? G35&Wѭ}gŸx.«:χ\u=&Jt@bdnheuW`~g-ȩAL(u(~$qH A3W{洰s:&M/CEumТOQJL~4,FU/@v  .=ش\Cnx"=ow#8tg #l{ B=$]`ln0q*| B]gvFG1-% ܶK3鰕.i ʂa:cyZY[;;vlθ4AyM#6p3` oWp(WъK%&ʽ"JQC ]慙v{v>oY`fq- yy-"D>,A̘hzj*]uC PP~gTp%2iU?XP?+ɑa"1&J,u;@Awa5d>2%& E.aȱaޮ1:-t3sh@gf^ֹnKA̋jLGƹ)NpE2qiOt8w*ؘav~*UPfdLJnvC9V &y:.\Ng;}DX/H2%cq[$<rtq%-U>s*A4Jh!B&lqg!!QsFo_EP%|Qswx~ 0$ mIjhU/,Z}.ݷY^@+Oԃn;-1HJc&N۪3˞c6g&@t}VXK2DbTfǾJ)0aPSCEMx'e 6?XJ֪Ď)U8T@fw)aۘ{x%W6v^^Cu₪,?y'An?6 ֪SMSF  e"=%>EA!ԇ)S <(zdej7abXy~`uQK+ƅl]7O)b=(H{92!<{ߐn{[:@-7>Ck1tS žOL vZb=o5vEŊR ] *Cw1߳}@l46?zZ_H,uFN#|&?a5w'FZ\]DH ?âCpk3JxoG <}|UH[r\QzXLJSJ%N=4ƿ}!J5;Pd{85L94-F{i,|.W,Gؘr$p.*MvSoR #{&*ql}as^Fw!g>Kٽ~5Xq^m IcO  ͨu-UCͷPJ MTnnezoEwYƽV (j?C0ڥig&!,tliacZVT@:sKr=3Zxv"ӥMSĆY'}Z~/«#;Pe&\fq~ Y2wW_T5p%FVDO,!`ohr<Ƅ0d KM2Y:7}u'u yeBI-I-@(_b*juاs]u}|c!_4 Hz.>vaGNd T0;KQ\BBWȧ L ?]^2JBfB}6++Zh'1G=|y%7JƦKm'l)Ҝw]zy'gv3vOopAV>GvǾѺ'Wf;Ѓft6 ]<ٰ_t+wφv>*]]B/;)J*$ 2efuoՑfvA1FY|û>\`ՉOZ ;_ۇ:c^܏Db_f9nɞDF3V]܋p)Ґ*KE [r;fL_s7=kS|P9!{EO`pi2@ou۷" tEN&@RANj q_HQI qDCCYq0!k9H Ȥpanq,b//аdsGY<.V>?K!omU>v ~#D3dS0v[?h!R%ࠬn%5ΐ~zVJQ~?H6v w[ӯΝNvVnqN@!e_b B{:rWss.OT|qC)p|J1XcTYAF_*0sf,mb"L9MA(Q0Jԃb5LUͥ#4]Z\Hz@H)+=&jfu^?2䡹)渽4X@K;I&(`$SyP{!sxwkMў#0 r8bçe:F?POyk %kIE?^ = c'\B:Qo"z?jɗՔ-j"m Bnϭ⇍lpPeJ] mQ2 Xv%6TOv֚-\@m^kS'lBz_YFI~tr#B.G\S œBo2y u[jT{ 2"E;@P"#ρ6GzQZ#ߛW<'P;ww}8(Fixeyx1ԝ<|^B(4ŗDt!FLLA$%o!y4XUwXjU Wn~4eCv؄1Pj>Cq2igo%ǣNOl^{?eUhll0Ak]BD/s Q[V @.zOd^Ls5+-Վ9p>|(nr40}( n=Z-J(Ȫ,ڮZ4huglL x;88U 3NrOi&D(B~&w*=yg|(T4.NM^Z`|NjTG0 ^vLXJ*.l\f7MGHFN`ˇjNP9k~ag.8gly -1ƇٞQq{zFſצ%tZ:DsLC9nx{[G<ͶɑIq{SF׏W'VD [I Q M T91ߤ*. '$7ܔvuW'"rWӦ~([VY;Aǡ@I >FZ|&sUvVo\7d~r]Zyӻʭ?tAX0sjhzY^4Vr>xMvcME/Brt V¯]u㣸藌00,ü-ty]}C̘EWܸvRD IW~ &?(|H%+Z:*uR.gC[#mꓹ_\exBtdD4a۱w>sd}*/eY؟cq}xmo_!7DoP^ϧL-zʨ V8{m≏41\Ůd|dS)|oOAE%n.z5rn` !j <jȒʘ+R )LXZT^+@ehm{1ճIdrbW*gz%SO yOŷAqSÌ 8h+:_Y-9j+L%P;O cxvsvsT\ $8S:m5ޗ3pyaRfh`jSht$Lwl`RN#a@rQ75S h~b_bʏvs]HiШc1>`UıHMH"g']F`@þ|!ph~yai>z·t3S=۟ȱﲥ5]m6P%-!REq|@/e.aid<هjD1=y=۟sze:e$VJd2*wuW5hA9ɫdjbn QVgQo٣ +r߻ ,N>ZzGR`ƳZ$\Q@+tJͰ,H9 9Xu}[Ǿ?)a1^̕k ;rd,| a7ײbA0K=T57F-gwF[~P+-S4ԒgZ u(Mmq|s ߹ ZIn~ |1JEm+akO\M$ 4΋Xw9PtY/$+C5pcO^Q] AƭUa\Ae xqx4o.jvew{v'M9]D; `ׇ'<C1z 5Y 9cö,z\t^/fc6.-6՗%Q\Hx%24U"% ])*Ї MX&fty h EN:@.v?:tDG E3ttN%9i- "Laimdap^ï.Gf$c|HgB)1pֆ^gd7=TZ≑F#OΞ Kd&'.4x'ՔjNXԑܔ)1OI< `DZl_e}ҠJ}Y|DCv~ R\tvIr渵rkae&*)iVw6oXn[q%DERUrv>'FȰX7eVsmQmϋ;nDm>-rYi^ Bc#8Ao3TXѷ,ޭ]ZIh$vk=)\ -8k\y쮁ͨ? +es^cz"'F`\˴idP@C=MB&PN4`~h>c9+XN!R\Ҟeg}fӀlCi]P?p~c7wZ)bH{q q},3 )w${ޜOQhģsG"| <{E)TYg貪Jy MBz9 U7π;ž)ƃhgDW+4JvJQeC/~W~w&bo mO" +wl0CXځeeM:Sbcoż /n΁4VE>fɵ߽UXsuTDcY*.[OnE]lے6* ȳ4ؚISK>ߎG_)2b% pKgyUB|9{i G)uhק͗PIEѱCX|N=E{tjVJGs ʈ!/85,st uqH]# \:r$ޚB6*mpn1ޯ ]eE^l,rIBqZuAI@&@w@XGe_n!G.`$yX懂.HJ4n3Amٙ{ަ$""ɶkΔ'8!QRA,`čqn=tU ؋c|~U֟;uMDvW׋we;8Ie%Q dPviDlFAml~9`*0Btp`)CxX4AR0x(qf:FCF pmGuͩzk=Y-E s2L|ۯ-q4şРKpW]m !r[ג ƕ,2rPJaaYeE5VjoU{&{ *?()8C<9G._MHȆ{TDi}^U29rNU_ uV;\ ְ+5eQYL9ƸӘ@}XKQYPTYs6eCwZV m+?n6|y!QmI:'q 9֗C#XGg`t]N ltQLoZ'lu /[{ hU4:$cA\], RyG\I$YZwSQӧ W)deMs,剭a__k(%gA_[߳`bv^wq'ՍS/τöu S>+EQN5Pd{,ҷ4"`i'%`"\("e:?ڍɡ^Ґ8uۚ a|K-,R &8jfcR :#w;BJD&%rt؜dK+- ^9<;iX+[P t-ir.RCZXW);= ݃΍覹̼D@{KJSs6R3r^+@]"1=[FH}xB#+1r:NF{ktl%7-mVuj0 Ae<@@ [[XniY*K®XE*ԅ ncJOo>9тNF 6W{ɪ@ mHC %w9*IHxsTH%/6zcF'?d#086S娃:Ĕ1eLy{d]mfoqa]fݕ!d'ͯM%Jx^81a|C ";CL,>8Yՠӄ">ٍEvЉ;D#@|muS: Lhag:J..Oocc+Shw򓛥U&Byr4CZ; {BSg[$-ࡤS Fh_'5ݏh8;Hh= S#̌=׊oHUӌܲAElکNObO6uԨO=%XkШ45M)S0B њvaJDB!z.{?b-x.`rA%EuzEVL61{R钬MYKŹX$~5Q QF>X}V~ &oy73.GKAGN [ zdjL\g{ c9GN9<ТH%1u1W%CTiXs+#e6'NZW=h0pC:4eם $4(.%/=|P+'1Q \K8Z,o s2[OBgZ'BܓnaQl!cǴPd'v<&Im@wz~bNri q54kԇVShw_@φxvXI#^CgjI-ߌ'us}U5l ?2w0,$B1%*V-i,TZޙ@lLQO)x`J<U9I;F6[潸Ϻ#RyWd` 8/K@X=HLW+ N-iz`[u8ֱM.z[g54.1ԬIwn"m$u1C.syu?bS[GsۥjkJvTBZPߥhz^U O@|~{ sN@uol +دY4Nɒ8Mh9^p=ڔ&I47~E!18qǕ,IdKD]bXpm,K AA*MVmճIMh5TϿ2!,M *VF@\k} jTcYPܘTtWI/wdnv23`Xn#6#7Qj7$t =aq2кЕMbOm9U2›?=l0ߛ>^PoߜEZϰSl< \i}O~\Ax[j_qm|r%کBkkb&&Kjmi #mh׾$_J9ǒ\izc vP{= lT5ݦMC}H cQer&o'EʀݶpF*{WVHϯ_# =D=CT:AZq7*PsW5D LpHFB 5T5.ʅ7CD# aBJEY2Z~gnͫ23%Њѯ @P;\v(!eq`A=cw20.`+ӭS>H8IQv)84[TMFA% 򐫝 J!I : ._a)+ 絭q^`VP V}un1W̠!‚ :}7 M⿬hPj'D?*ix[z{o% +J 1(j2Bf)7Ec{Ntl ҁvĕ1;"eqa꧟=ʔ'_t wI.k[f6lnqiH'@d9O s3n'@_teqF׮q'_$74F*G5j'K+XV8:&b1^j pVU%U;26&W_'m9UM+-p?`W98,OАk|M2-9qM%JyGa}ڬnC֣i+SRW|>D#Igm;4B0;h7z&PMJJxvT^Zhe\og_٤OKzS7< 39vW5%Vf4m"O G="+nvob%*w=֡1ٴP>졞_/`ˌ2j^+~Ӌ}P 莌(Wc]I_7!ԇňdOMa!|Npyܲp`Pb:;u \'$|@֩[yW.k˯n_8|uQENEFָקzfͯlzʾ^ YX` IRCp[Lz妉<%g?-V6 (Ȣ93@i`i >M1'C ZGf9gi=IZ@Ar|顥:vʅye7e|5;d˭OP|ML.JtV,( c-CsLۜ-Bm}2=8CV% Nc6 .Cڡ%.ilt~l,6%a<64ma鈹be [W$\$_{dq ia7laNE]PM$)_Pmv3t}d.CB'7;E^.G%"IV9븅B)8~ T? Lo\G93̖KkiE{ \ ? E%H"!*C>Ma4uyTQq< JBqt#\7pO/<"9|JX9Y>˜7roi2ޕVRVgشLA lD=vXp1rőﻖ[@SO ˅lPcrW-qqk|}j3i C?^F"Ci\OA"c'Hr@gN_nVwh wۻUSq5TdrRPes֭"1E7(LTiѕ5̴$R4 g}_Z믷BޜdƔfV-k/;|}pi86L ,bϋFӍڪYZ\q#2HPFj5ˡL gI@(ڞΫɩH%S@:p}93 „\tMl۪߶C?҂tN_*Bs#wjzo꽿¦ 07i++!Gf k%l fFӅw>O21&zяyªZ3"uhzJP \8XGp=ʶ-'4WUq˄ȧ^yk!؁л.n{Gvm9e:ZP+HC|C턇v]R~%筠ĢO>#)w0g.~)'pm]c"RcLv:Vy+u2\ꍂZs~ $G0Zn ?B.}Qsp+%G؅R :SٝuҋQl]*[iy(OctH>ncJ>Z2oTv;jvwG0AxDMy_ឬͤw.gQxam(Ԩ]%o9&aa cF.ጱ/3PW%e̱ ]u+?wpsp=$q)em&6z m^U)' G7teqTI-i nr7AWh(N7V}3Txa˧oD|bšLBfAo.(IZRJee.TӓyJD" +N9HauZMf;`ٽ@0cdpy)Dɢ{ҭ~ DIbD%gPv¯C,W$ ?8 h`]n/"ʬPu,}@e0dXq #X՞| 3c]5mW`OF%'g֦dirw;QF֪RtPK{ĦBFwJuAkR{2L-=WŞjKޣclE-dՑLўt=bB;F&h~#bynWf%R`ԀQwP,o`uxKg.rz~pc>(R҉&s%PTvuR2`/O;N]mM`w'̋J>I^C-w 9~ {hɼ -2CIs=:_j2HjQޡ[zd<ܤ;ͺ-x]Zg.IΈ()BlG O6R(䉭4tTQf G=F7ubb V.9=Bni%}wq79+' ~&_WިrP+b;ȱޫ.[lN[޽8;T5ZS Iմ##ݜ>~5HVi֊hY5Ԋ«i$^""ʍ%-걶NۨV_~/wOAgPL5x)Nag={'ETvKч8Uhii9QzAp=VߴPdB,=˄se'ȋ"1%ݳItյ~qI-P]GJ n>Cښ̣tz@5ᬫCbt.mEgD!Pi85 1q YLD] R](<1a\LxLdjUu'kGRE Cᯇ0klt* :F=X-FDY_xXjpDn5.ccX? >IīB@)s4t]Էy g@+u53EQ mH$|kMfiye@?EٺkӞ.?A2fE@ՠmQ ޚdGJ J#_ʥv%gl$O!oFb9_Q[%M hdY9 So?0Ǩ ,o+b,!Aj|~VLCɨ,y$Vc9?3U|Uy'I)řm&$h%1 R٠ 7̀ߧU!0ߝJXzw=XU0%;0+&7C_XP)PpʫTmrp?#&.06}`2aT<X 9NoޗiaHf`a1KmX8t΢gޮ &RV?iJ^jNbs7(V/Wl萕w) pT:A=BAmd#?n mAHnHS7)Ko `-u+R>aR0b3ڞ[&߾꺀F ' T3kTPmSYqGxCN|a\hr"{*CέCMܥ W~H#O^Te =# A7.!Yj[<SlƜs Iz>乖0_ ]щ"̛?x!!V]`%!V3R\汱૖k6c͋PP<zFgl_mX^-OXc\8E_+n/HCGcG?bQ s(Ɏ9w(h32:ȥd'vBY*:,oZe<5:?;\Wh%ܓs=PT~&&gLXSOe& 1SA~/J ߼Jpܢ"W'fg"^bf5WӾ5PЕfdQ:K@?Ye8r"sP凜 6);jghՏO7$BL!ϰ#r=m=uzC0uG"U5!mԢz+j PCHuO}I 6z[Ӈ]nv(:C4<PaJNU~n^ś=#nvA Co!|‰gâCj90L[W(C zBaBߋNqArzIÚzmv|y Qc mΦr3j>HEAҩNFi13Bs S< V` ii+=PVӍ@*|\ݔVw tQxn Ԧ;Ϟ&Ջ!fB)\\}dGAj"ذ?6iഒ zvnj!BhX .!Zbrrc_6+a^aKu P$vN&/2}WA-IK&|bKXT?U=Go=FPj`lZ?'uv*LHfT:ЈK&u l'A4Zf(ɋhI5TY-thXFC E9܌@嶤jņ p4ul̜Nm]A\w Q K弱oW U&S"ܿ0E^&t5>gCoLwW,kE`L -4-=z;qӠti⦶n(lx.3~l  ŨVX89ԢKuN|zRAXOx)3ggQbц}rP漣^qA/[::$s;>(g|AB7AO~5V 2b8:]iԛJfzts 0'f~̶ $,2AU*,|)<~[I.wݹw`C6`vVWEuc$pȘ%~d#"@wfFI{|~͈Zy w\,H}fNVU\U+B ̢ l;Rv7ߖCwL1>v&Tͽcnxrlw`?x|Ko}4\}<2yG2(EudĚM[ZJ[/c4vpO+VYdݧYC SP4g͒Y9 =a{NZzi'r5 "soؓ9tG2]bNX,4G ޅ9eaKlb`E*6EsA7KF,{oYHgo Y?PqH>OJ0}16+['”e:{_ SjԴ~ݚLH}_n/1YlV8i:_Hs!?t :3̆iFegsr;Y0djMMA0an^"xP)kV0lBK^{D~PmGkV;ujf'y8LĘ!^'50,:e|(oɕDH[aT@SО.c鈋X_zfNmlymf +"zY@!?$Ircmt U9O{ a1ˀvozi`#Vl"]=,-sGk_J0ؒT&aiA7nm( Am1}셇%( ~oVdd`3q73yզm" a| oCMվ~;P)~v0j1[¿Q?o[ \zj'qbBkDˣG.[)'PF{>Ê=fl vI.ÿ쫞it8yZ6еkdv_PIx<@2.۞|횱L "،iKvP$եl ryK d[PM>q{$ۿCq uӼƬWxn'`­5>4BRgˇ^(>rMX7YM6L;tFVa׌97v] @AS`]FFi$ǂxBb"fFޛ7ΦSd2\D۞ PNC0PAU4O9 T{kP/4z3'(Fig$3?i+,EVqv'i%HjsE~-AOH G{'l$)oETB~@y*{.CVXo #mMIsjaq2 JEWT|xcȏGN  cۦӳD2Dz~ Id8*(zDzEG;4@rs$+8jGsF!K PVn՘9Sv7Jc%lUĺ+ǿJ^ƃ!5"Sn~SQX1pR7<'JIN}8>S+sBXYiyäåe6B#Ejch[3>+/OjKIeؕ&V:|;S3MQC0l3zp:\7Lťg%3 'uYY5^;MMr;u,: ]jMW߱h~/%N)D?Q/UvU+=ho0҂E >7e%d?s2 0]Nnʪ;LEW'*ҁs6FL?FNd!XX*_{>۽ST,} 3-Lż<&~ʇvQ:d-0V5>wFF_O)\"ņ=L=ft1DEoIy 5ɗ'xxqub{Bޏ*|0vmh-(?/]>엹s: ~-Y'[T^Du)1rYD?@Dd*"%,zE,?9@*4E1:Ov-}\+k:ONyR:aCUƯuI2h|z@?PqT5A{} `Ծ( !s_,_+ms[)O(i#Hn@?vӜL9V@pX9߽(oq;X7Q^>y}YZXِ4,߰1cɩJIǫ258!U'ӶRɨp$j j>%h0!DCTWT_?%Dx8 n5L)X5ӞouJF:6w*I-R%e{̏LwnOQA&LlZ%\LE-p%p. .t2 jKUBt'^lB$H.܁ t^7s߾bJխ'p U|D–>]^7ܜBN/fA[Eu9 1Dqkl“Q`uNyAS\x%b)3mҳ5d)D+Mե&|Jnګ6lG0T\*tkg.]#MT/U܃]Xm:(&IHڴ"`I޳\]dYI)2?D \#(GZz W .Ko)cJL%Cjb'S;=ocYA?e+"٦:ic >,(:)s]=qBcG9 G445xj%vEukj\E ,e× /,5S:?&L)FhF:+T~$) Fprț)T'y +[SJw ݢș.ڇY4R綣K}u9vȈ*\:gmݾ5GL%`onuon7wH gm3_Cuuk$IPd2@&K,HUWiӽVp6ܽ!! 9(sÊM01͌9{h{^(ŇaX)M7'4@߲иhLn.-:4j+#ys._Bza MwU]=:=_5,<scZ{"2oQ2k@UϪ%wESJ{ĊUE$cΜ2+p?έ ߴD/a}`N)j{^΢^AXoq͟:GŃ jqsXjiaBQ# YĎwY1Ow>oYD ţ;* 5-^tQ׏7ө_ϵ8p_OYoƇ=YzߛTe|ϥbLhjPZss"I#-߬1 CN RczZ€SSU|ya^&Yf&FJPݎ|(\_W!j3mW3ԽD Ea[FO^Kv7>+p7)7\%!p]ܶzԂ*BaP9L28alR:`+Yc-6MߦS@Ï6u{`[fΩڎ |(FCYVat't5 wDh G,3`?Oɉ şL.2*W5Nm<!3'}xi#M/OK1s95 dZ&q4NKC F娔7 "?!_iRVEZ:)a:O1I"Iw>s=+^ - Q}S&\v?v;O*5Erv "ܿ\e-,qW%F\ B$f]m( HOͤ[4fb4~1˟dF/o#8}{Mv0 'g]BAaKXEEn*P!v@ޮP'Ny`<ơwofbazKlϜ>`cZb7 ).[91U7lAOD,^C6gR$``c^*K45g^ ;xPBHޖcD0ަFaXr9cZyE[jxK"c|iFYLJ.nɒ|`eQ [X/Х|'vWPfR>S|V%S GA. $>{9 vHP:;w=ҵT$ɥ aX~jv_K/;S0",={%Cb5bԮ#?2I"T X :oXhGCp뼔N;Nq=S)AI39oc}?u1* \ˇW?؛^AC6>Lln'U--!iV8AMfZ^ 'EיeCKI&0h*lhWF/F4 <eXT9NTN Jcĭ8q|c,v3.ťֻF4-,l7(C u2NNXm(qN|SݗIFȋ\@(VS;FGHa UugA8U$4_$F)_?lGC]5r+^F=y]ֿ9k9h~V-Bђe,3)Sq`B8eTX;ݿ~Hxūę'9'Zrw^qou-P7 +&,^OR i&T;$z*&+,χ tԑfk5Bܼ f:YXNj "rѨ,URunc{S:e-la. JbV`߻Ƒsva"%!|ł+W{ f]RߣȂ*x1 5iA4IϏ퍚mL?4*ZM%eJ4vo5ʃ 3h70)m;Lh0F)<ƪKrT#Hs\L֦ sV=<#; 1~#>膕?7-b6q 2Nx Gl̤4o9[['/ '2+H{W)* -PGbϷ.G)eYpd!(wVHESӘ @y4b$Gr5!v{(:a_0$~1zr@>ez98îMFpV/-ft86C5(Z29Y,zs"uK8Dv([cɆ&D }KcLnDYv#t.4^VܤpشU@}N+8߀ѯ4.H.-f lqXeȎսX s|KS)eΫY&7?Uq j3-zQ-w#T$ɻɹ~/3Q[X*td;|ǮFT!Q|s-HT:ˑwD _L :ѱD;rj+X<| ۑ ӡkZ&6,TV׳b[{lC uyN: Ύ̰\p}[;#,PDyeHix:7=w:~̻`PX`XH0ج6 z"hv eT!ƪX%U%$-{xv )C9B2O2r` HQIanRI `s6q9y+<WI~LO΄yu':7:/H0X@^.QVdZn_L.q dՌ1`9Y3| l4tϚ[Y]Kxg~1!|\*߸*$b&Ŋ4~`HAUlf"fpw{kD$^4*z)թ0Sn$New0֤_jmDx=']Kj="Rj8li3KX~ey"7L(]3q a.[*G Ͼ+ިJ`cWR=Ԯc @GG ˘_Q?[!a,._xRy+RO-#&RWRᮚ 3.ufeBWnقU^_8ADp|Zf\iDK8";mpQk/ڗ(svH||9\9Hp2GÉղL `w1D֓}Ae4$ 'LyAąAq]+B*y m)>Rwy[nBk|{D֭hR@HfوS:3XxٖI4l:Lt27AfJe_-?;D|^U K.Z@2\:!O6*bm,+Wfv׍)|/!3-y<,=gXI>UwA!0OU3f{2Cͮ3d]FIDzCXEϩOIQu&^}*h!Vd.zwRZ 9O5:bi?7DLL:rNoe;QТo0ܸ=1P|pkV? )^Mt6;RBp[!8V˜{ű0Ty}yeRWN8' _zo?#@jLlCWrTu83ӨGJU D1XF+131Ҭ `].~(] =Zd[j+=5f2KL =2vLBunyӰ &Zd#0Lt v01l̽0; [5G12Fo,Itd$]9.L{b&2rNː0xblFaw[D}xp@w)=&W4 (:ً e 3t mXVevE9gj]"rj-gZ+(n؃v [Aŝ<7 ce!;-;HN[d%=-=dhV/4%\doXzWeKM.W]za@ W}TSGQ8𾇵!Wv(i.=?KxyWWv_:N|ӿ{7sT ^uL,O]$HWt%eBE@%|LwdAj[ VlҖl} kjl7f=E'HnRic𡍱!RL c RKw2E:>DOlw0!ns^"j6A0":潋mug8PξYy?ZtQZhBUpE+hf(e`[!% 6˱H}Ȉ06;-&˄}4>7"sMǧ7mxbs mgMãŔ&U}%^U`=)eygV.Z/wdsm̜wiJ[sNAUcwsijo̗´fh\$ [nɳ;I=~3T1nyK5ZT%&@h@h]&EjּutS/ħ>Ƚ~-#owf}s[|`#@j5Y Ю\l$Fġc;H”(P <<ȎpQcmYF gQ4FGC aY.OW&'‚ uZ[h+S v({Jns^s4MU-ɭs$#_|noKfH]N Gܝ 9()miOS Y `d=Lك3vxsЌ"+]vC"%,6Mh:ȁo{n/']S%z%\JHψ!T I^ю~sۑ| Ȑ p$h[tLI"),9Fz?sg*E21 [ G$R6狷Y!f{ud!m1UaW׽~/S.k|d׺nܒ蓥P=6`0w*dw;wVܿrot0FIrfڳZ|Ncc7FkdJxa֗gȈ9`,P|ПG$/+]JWqrJC'-X?iJJčV& J LofvY9E듕|"$7Yz}'r۾t*S{y'_G3U5?gXy G[^YU2'B=Qz"\QGB#{[e ™7dJOm!h56?^3WhIZs "l̊؜a+ v/^7ZGH:]*ۅ}F 122.2c4ޙiўSZk.3*-VK?xtmgBU"Ґ|G~WEC" }+2#LpmʢsȬ=HqF2Ba<Ɏp`_џhaقO_IՌ"H:d"\Y9o!KeIOe^(h2!tD"_5zME`9*cYӴh+AIPOD*SUISlmU(mǴL[i#w'xsm6\_c>zkdTPHδZu2jk:!Y #o~NJwٚ3Z*g(UG\rui ۃ<0& O'9RCOMat;p&rʸUf+?h~O~yb<>c7(~%y"6 `nՊZkÖr!JHv[24ڸSyFF;?*`qI+ 0(3%ً?#At)\ttn{@VllY4]xPe`Nt 8Xq9q[dڤv4[~ wR FRǻ/у[ GjiX TDYLs/ۨeݮJCT Z37}pyWh2+*-ܰOi6&SH5kw7́o0Z evDY#. KΧ OG+cռ+qʻIT׉p+@7PmL=hj>VnӞ 4ua3CX% 6)"踦YK;P fR0,Aw?ZO Xr1{@-^Q2z&c7ZI1Jyst&<ذlT'KKr*10O4Ky`/e+iB%H}m}0\=C0Hruk`>/ U@jێ!UV.AR8O(Hgc_koWi(*# ms%7j__bg7Aݟ8f%'AaBC浓+dwhژa){ ph?HMN$af ۻ }]nkYzFQ5\45Sx~xZO\|w>R\D`L p\u#!kЉE$߼eoJ|%߬ްrKP6BXww]"uYן$ʭ+s4}Q$wa|r['Lg87^?t9f]B0/.A?&V<tPټD.!嶔4M\ ݷ8|gB.:BYЙy-ҋnב*]Zi='TJ#ky'rsWk>W9ќu95ž0b&~GqYJ\kx@>D >zT W^{[I.FPVYw@tw#n`$ع.qꙢ| C)Ah38U$#ĥPBe:Ts=hnSHL^7׻ۖtAVɓH39l<] 5o= ^|*$X AX,,+za%nM͹*ӽlز8 UgW{ ZνJz-dEKlӊ3 zNH;" Sbb"?z7BF'+vkaŗ 9r)@ENfL K %]iFRr >O" gdtz&?I}x2N 6J~Y,ol* p,*TMt0/pRQ `4 |{.)$"M Q ~yPY3`FPU IoزT'Քk cL1r@W*ڈ&Fm}мBIlak3xԂm`X-=3no=MC  Io5pKvw/0[(?@*pl/cǒp|y ī`_刃] _IyEF*~8MnJi?sa] \wGʦH F\Sfjs u)cR]9Pu۾Dd\ʞeyIXRG9C5ᦘnsQ\nv~K28~!_!BU9Mi+B ^_OSNn0%{21gGD 늑ɉnڂwXVJ-y4TűzVߠauTA@I9Sb x4@й4FQa k07E, }";M酾@vm^ʵ_΄TuWGR*X Z*r3gmgVILof N. E7v_fᦄ\6|@p\W N m g%G"GM*"hLe:`x+> [!G[AoC^i !3P !qC acOz EٛOoR>/5#d<1^Rl0ϥ'R5Ur8W<~CUc_e!ҳ&7N xZhHY=vb@*9~ IԛJ-uY# (ePrK5eÖEQ ]Ts_mh}58:VᴠHM[gu/o-{ObJ2b6e[ހ&5S~4@e"CJ- 775S[>y8=߿8%4?]J"LQ"S:y:qVzEE0(v~e0ς.g'6W3;/뉰A+'k(wJ|,LΨ ƈ-=;j8j)%d%H-{F׭ǐи(mAΑB_x|pXǁV5sYivRo͒d{/L.EMq+Q%g|(:Ǻnh,Mc>Q /t-N:<77`"zh.n^Ndo*g`%X7 Z?VƦC#'@  *e)$Ei3UV%\;@p6m5[>OO/|kRb{H_p/m0;L>_@+fC0pzҬ Ka#͑&Wep٨PZe3]POo:*>;#&RԖgDG9K\ȇ) 2/'}XEq8Ph+*m3Ngfke%sjbeqwaD& Q t&kpE+G.(4z 'Cr{c BwdZ9dL^CDƘ DMm8{]J`vtows8lxڟ?Ob8Jh|BՎҴ83GC\~$'h>+oΗbW. AݐWz3˦߯`⑯iv`)S' Y0ME3ǞVQaV4,WrJ*ka&K`N\ JJj*S}Xi tA"Lc AHv`g|l)-qŐ>>O I6lW_':+By|y +vDi߰=6J!rO%HH tT}.AN"&V`)u~ yCuަ>ٟMib3)lVQ09#ģeNqa2np{ǛšQ3Psl3ŋ|=.\6ڗ CH,+ pGxq?H3XͨOyx [1?޼Z}Rqd^쩍@g{\2Җ/J޿ے~#`\̃ZqHg6]9H,U} b0ұIYeq' ,?g.&U~|_ּIPW"exv,lqNdܦ8ff+gM2z:QrSƤty6J́{$4" }ը}@;vxS~RC@1ROX2,bv0JE6p/%f Tc,goIFm>Oߖ I]Hzf:\(|H{ZӘ$&56y$Q(*'u]JS6 : DDD.HVXjuB;H%v6]$hƑTd]*͈;x'Tީ LA'spp4 L™c3zNnNb'{ RKf&%ɖHm0L@qo0 I8(=[ ,!ҫ&関^[pvG)>;ɳ֒0lݤ)a=yd򛶃HǾ*Krq_6y3:F>|:INB_$eK:Pmcy'~c Q0&:?Ӆqx8 3&ki)?,PX{)FQ/펗Hӄ33yHct"Gȓ/a| ϳDwGa~wo$ "I{|֓Dv0z-]cm6ΕD9X3- ):hCQ ?1"]/A+^~& %IjL!dd.WyξP>7)ծ M˅=޶7̵T塃B:iww}Qlj~@[-?lMq5di PM7п6%$ijafц7Y g#M"$G+vo~w!l HX,iV$1TN 08L>?:#:q0~g%`e&3L7LP]ψ> tCQzZX: u̠Qc6w J,7f@9e`>R C)h1it\k1);hm \9uQ:ᶒ_`o-G}yx~eV D8ޣ DP#tuzFpUg闞?Z]g1LOyyX#FU?"B{Ơmas+:f>qOydY H LG.vWg[ ZD2p`T ԡK4tkj]PJ&oљsN55@K?/2 'vv*]8fm2$Kď{JIT4O}^AՊՕ<.#t?ZۆBF;>W+ Z,)6; WY,X}y$нػH!^Z_Tw%n@t˚ <̕ʡP#ʄ{ПBWDi:*}ES%aMP`:]ОeqaМkXb`G$!y:@ycajWe"}H`B$|H,V.3C*ػ7ҹLՏrhv@ڈTb2Xb ֽf- g\#ÓD7ԁO;[ ^Uҩ; nmX6b 8zf DI3^fn=~_3пǁ NܹY$6z;;;NhN^.{$[I# cA}nGz;GH%e¬g[w*,HZ|@̳7A@숆(_>zn1M" H4)WwhGLPSGܔT1k=.Q`lbDM Y2|y"aicB+xʶ)].D7n̦N]y|&] /Z(B̭T齛ϙN,YQ`KA fwDp*F;=.Ӱmr{:˷o@:']H*邫n0F/xqNۘ0p/&L^i511hRES˄2Q0k?0Ap"I6C~iѮlb.:N!} c^RM^,܌&aX9:CA?1ŸV3~M*RD_ ,s΅/]ǷMgЬ;U-4jz멺L$ _se`cN=|1e7.=/X l?┇ MQG媄0_q bE!CIYϺ]X9 _1YdѠVŰ@Qq ԍ$&s+IlTͺF}Z3X&!:fwC' o?HZ=a*7>PUY/GnSUp5ٝ4#0ٓ;X]Ê$8ʉ{ sD ߌyUo2# Ϭ2mvV ;Fq[LʴM5xYmPS2w ؊>kJ%s;,Y2ՑGcFkd6qsɋ0|,CƧ#&p>"0:=?mw`;kK0Cf7|\d+f f8J:z7p%*lnIk=G >w]5u/ŊU.Woo`RL RoG&c#}l]w˾?Ύ-jǤr8Te$m IVp~ a`_@kf. 0 a_r6v7\i[)B3j*{ iA{l/|*Vb@85\(uA&}> o4H"TTsĄ]mRdDM87 {([#ڗG]&K~W/pKl$f5;:ej%{3ihI&((',bo*hrmPո^s\|v=`R;v)aǛ.ޡO;"@)*cދ\6Aai0X*ל,jv-qE6geo!Ete"[ǶP"靈R^nJa_/a Fa/\I5cdM.CAW~M{ﯫ|ĨMcDE,)+ݸJ̹uqMIr; n -U1f9_T"vƞ1WTɄݙQ <Ln FA2^VF8:+拥x5T8jZ uE Z4s2)zBQd-=muas4H(,| E$Hl'0en-!:&8K:~J}fLR7_l|xfv/L`Ug?}7|`ϘV<J"Q'`IՏD'+кz 2>.c2ela1NSQ)QNBgqV9m)vdWWiC(ue6',A D`x`m dpj@+)sB2]b$ß|H=~|"EA2ܾdnH9`qO_+o)݊H]1o?k}7KhV1RPKuA3x~=e(&glt;R^q~H:osҀۂr';]c?v2ѷ8}B3[@_n{ek%_?b&HB2IMoo99QaTzhSUg2ErxTlC8'"ta$r;v”uBVjqcryN)>ٗf>LWIS3cVv?iŞt1EĮB3VA=nf^L-q.A7LLpU>OO0YJafz2kLL]CRB[aMiz.8Wzϰ˱m 8." q4)P˱j91v(te{H9xnpf8f#QQ ##PXd$~tZJL[d7[xf,mrɝHcoR<љ؈{B*KM)4p֧fT|K<*6¹c/cS V7? AHEXQҙ:s8IjnO7lԚU1q4}-#g!.ii u6r#d x]oYVNE;N+A&Oh睂詚5;@eչsMjH5N$ vVƠ,_Eev~'&qKX?r*v\vz3r?.?5ҰA"c$}7ثh9D>I9Zۧ ,[߂Sp !Uꅩgځs U\~2*#!,Lι0 J3$Z%QnU"M-js\-;\:?S5YKG:[ә8z;h(/ oZ}@ ܎V*S LjqLGh@ ~EgDpHgCͺXD\.Ci&:.}аIT(6йQy6,*!Wꜫ&1G BB 7y࿻N40=; fns@/|I_~vw#75f?k%L_T,%HS=Á"G\"!A/Jn)ZPj= ["YULojJeE/ 6-Yltnx']P %PQF6*Ƹ*NC W&Wxa&IJQ䛡\7;:t/ {.Onf h x:OF*.hΩY;gU遤]cxoGճB8+@'JA{a\ZM;8cX }1TwgoDb!~\<- `^P޹*+D[g-8薌[juɘ`݇>'GfV xP,'҉cby%7d D|z',*t1Jd m *y}'r.Jo]ˬoYJOA뱅j[UY[蜾CyϧTt.۰07ks35_I@fTCDɪ G-+|=FCaOTwI=r YHe\?ƻLMۭ]by%AWeq5bZ:(</vṇ̃шW7 +UsL+ A ]7|׼94j$|a:(G?Avcprm,Z. |Ma|*!l^qYE$.eeKn6h{LոUܜ IlU ]W%Sϗ-H+Wz֯]F9;ӹ;]:5zљ>؇JO l*NT2J6ֱƾ~;+3|qQuu$ŌÏE#'T<>{<K0hel qo-BewQyhZAM3}y AulU16ة#sAdD/֧ÈmٖwF* eRȶE*/ LGRy-g69p[<=Vw y%6?u.q%AS٘p7F.L>H:$R83|:W^Na[ i|!~RM3p"gO`[BWE&bRc<\[5(M罰3Nީ~KRY׃Y9oVy ?!S$i ݑQ KΏA.餒XʽnMkW R*M!VBӍIG Ŵn /]Krꈟ-x0t,빞X݈ ;N`c o1.H)FML+xl9֟.0`cj< r*^kͧ*1&~Y;ӮR 3P =`N۠F7!ƨbRa#\??l,>e*Þ$28q ORz/}p#vSe^ӌ\qdֈ}km(0iIPhʲ:q0&#̼7? ՛|ƥ:rGǜf7hZ:SKR*Nu )ĞR(VoөMИPš(׭%uSBL,k_?^-[l^r߶0 ]$U^t[ȜsɏHJUnNzJ4hMH1`k}}Ӄs+_JP*3Nċ^Uy0@ Ө/p867٣?KZ/ TRԨNOT!ՒO k.8ڛ$J|aA*j&,S+BOXӄΜG$҈=k~>*oĆ73iȝ 6zvjᖰԘAAp~7ףO b&h+>􀫟=jxg`cLu U.Es֣zqEp;8\, !&W0E3am5F,cdʓ'!ٟm!HhgOTn+, :Y=7ٿZOUw5n}=mp42d88ݝ⋏O푯dؕ}Z)qFhi!FyjL CJhvbO~U(aPL+n-^@<}U@.rqQ#+D: -3g R3L;@ۥ[m2VW-b(8 fU8c%d"pG?e/XO. %(ئo *#=džl~倳+ %K0$}3Ig[S>ƗH_ƫIJ鱫3vd>D!6:A욿L0Y4fqGB^߼X'{ ۻdhJ1|z='J8!Ox!b.#B0wrc#$-G]UBws6lg'LLDص"C7(>{vKܹ'erA˓>macR()סۦF$OU 4T7 ƈGH;M$E :Jî/ީv$ Tɞ/-}住HW~ۃ;DeM3g%h<"u isS9 ac:Wߡ$F̡hmF 1}_ 줷ZrDrjncT6>+ե|CC'auZ䰾mI" wylQGkzZ ~W5*-{7/ʸ,^*=U=X./YmNfW^fiwCpmÄ6? ͱK5u֯a$r+oon^i{ 1Xjix))FBεqBKPx ,j~ got6oX'-4nQBC7s׫A}rP9E@ j2 ʡ CB"@\fZl7!z *SE X3t5K)KpbZɉk-^x:a.S6sE;98")!lT墴_qƌsYiqҚC9hR˩*Y燲['>.?uv[2яUa*΅nJE,ip* w^bpq:VXIĠƑP܈3"kh*Zfc3j9Wa`>Dd-s1N6BPԱ]p{Ǻ̙ݟ99νbI&ڑ$Y2/ܵ4q W;VjE.H{p?z,,[M@"1 eسXЃ#.p ۚh-h�!eqe5N#[X `^/С Ub{_?'>[-,HLSÎ6*3Z5k_9R 8:Ad̓=PɔG (ʮ֎I+lѻy+T آPllrvDk "Rdx'wۤ<5I~[E` C6X/vGB]5Oh֑ӢĀob8^skRibI(gC0|-"(}7ϭ('dpy-q܏9~-ιz:ZH_!Xn 3|%`z t4Ko׬eIhЧָ dz_6=̷_z/>Z\ җ?[7$ϒ sat] 90a8D՚PJ@\yݵ o=Vg*t)ι V'~'L,XGG:r*D1"0G\{ n3wGsB3s=5Mm(FyW3Zp%?tB]פ9Aɤ֎:@Uukڔp ,?7v+rGX9HydMGBh)2$k^JvC7̠yL z&˹\e f%DOiRk0VL֪&3h$r>Ș;PR RǦUyJy2 BX~ ?l@$+cR&LHm:_0mvUECF+}V7h]T [7A6O0Ȩ̚=HjsqĺDW|girb%SQa YA``C27=IFChbm.UWxfDx6Yf- &*GXz~L8#0PJbb"mGH&xO]:\ ̞ 0D{_M!?G%))Wѐw5r5C@>lLϺe aDJ 7,6zpx6 lëA6e!8ubyo4F.H4.jkeT*wTKWiNuQr-Q f>Y, 9:/ a|.Mņ7oA:.qKglex$?ġſ;0e u:S\+ u_vKph=ϣL| [#/%]qr"#`nGM_&y!WӲ]tw G%.~$U>v_>EHŪ-0# iD=Sg̪_FGtN ׂ $9 vmv _;z9D떴o∋ۇ(9ŕ˘#WMޛ-@ns#$ER}#GZ?џ[ynTb, iHk~}7/am].#G{e`u4 iͅ#*CMK %*y;Fr2mZNB/*T,oҸ^+P*P/ХJK2xFz)AG'A c ܣ0FHX]k~~pMۚ OJ.GFCHiC?o\wi Zc 9Ҧɍ$Wth]if iuv|"{k*˙:ankạ汙x$R|1 j0!]T䠒g W]0V>h筴#inҘT?bl`D?  'pc!iiS ?3FXHE{Yp)Lh&;zHJEjLSR >u'&!Df웱3+dǴfA l %zkXɓ0I҂|E4J|7T^GjpFJKvD+ml8"u'PR@ATD aT~Θ9y˟g,`q35.Z?TV2e5ǁ12JcztWOÁ+ sR_%iǍAqni2-7n X8es*8`.JNj?Dc+C1^׆2H#pż\A+DD;BLY'4'}NW -}]RP.!:6 TU|,KルSec&Upm*H%PĆzpLAQTO(d N ^g"療ze}7JƙaXļ2Qb 4㐅6M\ K/hXedaڄZMafc9o„K \?gio%׀y琅W@Z?!;-CnlF4 g"6X|/lي vhޑ^e)ɍLE钔LeTX7zMӌq^t>  2? jg( hT{PnL| : TWFRF" x(5yz /W'~7*ByLF9X^eKqC3yb+P:}_ByBW5?ģ)`Up{fAm󛩟P|PyaE Z9~L`Ӭ%}iZpyrK3oΘWql dڪ$n'碂YĔx}CQ^ S'BCl )va&cn ,:ҏiLc԰6ܸ4 v8 NhKjfAXJk1^^J<ޚuؤR(T ءuDh{U$ïĒNMܪ_|X*L xG%,XB&ʽ6;A\%r'u;<[rOՑ:TQVLyk`eSVr L_`N/iu({#JG dJ+cz),a#RWZdQt#IoOb p|^pz^Y^#)xRƱ8>.Uvrv[ dX"?Xʁ/5L"tsDUM8`ׄ2.3Mܗ#|ٕѾRQ$==ᜏ'[#ۗՋkoYC,`7/%ƙ6EXvK ӧHsKEK|kD=O]fz;xh+`Ͽ^ tF(5g\aQ` | 59 =ua!M-o@(ܡp0z>x,)-8Dul)dOHaNAk] Ydr6mX.?Y+m^&Y Q&T.z#&cScIu}bP!N*@/ivCC^r;R-ys[{MX.19G jZo V/@;GK­hNx´"z|ϫIn' }3|ec83}+~OB$\z֮3韀WŢ&̑\g.2/QRx=O0|KVI>jdlǰƟٝ J2,|B9&8g8>Ȯ钙׆cqԭHd f}"u ZEԈ>Gr|-3./1aMJ|=a_;W1׆i"%mJI0v0M0.#.eq3%y*w><@(! .$~ /h;EԴ=ҳqpO ޔ׋4CX۹GKavC|OOKs5NtVh>sV[b1;O;vȈS7auFed '@9HF?(^p>#Tp9Bxbnny@2^0줿 y_hp"*R P2;{m_R|N8W" je +V&F-~1wjޣE6O2-z_NH}3 ]ccCMja&˜؂8ڒ=gzҶif'%\৤p$x~ P5rGOoT =}f?uwT-Zkp@ }pg/g|K1;8T Xj&̆;Bb3so=,͕aKQoi4q\y@JXHBϷtެ$ǖPU^NVR}qU7{J;s ˋK \s갷6^?PJ=?{b?c ~ \_4\I%" D:ϯfLؚz$\E9ä=>|fzg4#~'ׂ1 /,aVxԦfK79i^yq]1:]<6mHFv5}w !:u @u;J @(tC/0NBts._h=S]%b ;(3TK6s5Xz'qjr1|%DrrZ)`aDـ0zpmk圡FٽK5i){]Ek`~1k_8ܜ̥$Fv7fAU|yb6G9B7yNj:iWGȭab!GFa:leeo ߾H g~x"`=Mq > dH$bl1lEWDVJڠՄ+!ZnApNbQB(x;1AjjG;s?=l A`q'-9x[~V} VcvUhijfPxW&}P8*[u ϑn[cK7T]Am0\ݭL LTt+$pvחԻ:SlpsH3_*es7W<^v~~S{UvOp-?zi{UK~BWB%~D:JJxe7E/JgIqd&1TPRˉy/QmN\ qhقf#>-ʜϝvQD1N؃`A6ǍX]cjôf=љԴVhiixXL& 3Ohh!,VV[:at'XF$Zwi27JFҬvG.5x*5eKB5h$'x?n3 FP'^f.p +LiΛQ[֭ё4w~l<6Hf^(s.aF8uԒff6c|R,=fK;*A,ܱgX6Wrd1~bUIlޭ-vwJ"g7׮jGb. @zVr??/(= L_sB8»1=5$Y׈'") y1IT~zm2[އI.ȥsfY$T{eNSWiݛ#P UR?3 ^E=P\adcmzժ@A?nMP@gȮdXJȒc?W$c ja(݄&Y`(!SHC&Y\$vv߇aCN#J'O$`x1#SDg2lb%lWo,s uJx3=LEzV 5rN2nu _ H7ov sKkԿߔ%EyxDϱ$y/.h}]Ю\@"D!9q56Ũ^qyی<&]§fնMDHfRħIj C5%_{U2v$4IJlV1rVYp%p}&iRK>}ڻvL}shKꪛQT ij*=J-/`Vbg'%{pEJ*CWQZj& YbÆ6k9;&S힑VA~O0΃p“΄38'2-3iF? zCy1b{š>9[ڿq-UfiI=<}^I%mM-|&bDo\cy_$1LE]O: 6X.f_Xe*ّiy*dWK3Gރ/*ΰH֌(;a2g.vN* Lg$ KPǷO[QspLb1쒍8`>Men7&_Nu,µcY6n }OmI :.L^ty ӛ pxM rXQcҕ@Yll`'[*G[ ǐdA/D4}- y6QdV^F\;$Fl©:zjn&?0f'b&c,hL1o?#nkB} 'GfWOd=cA=a>V,^ lXv1HT9Ͷs_D0=5r*U1K 0A@TK)Aa"=Y<4Ӎ1z>uuXuev`=},4I^!DVY2?6űY~V͞cscpʂR V,zFNm^uvDѳ):d3#a\we9>{F {\.AucM2F=sAy5K$H$k**&kk ,=eBʛhySjBA ~!xFq8SH[%9^ !,9`8 eʁ}(7_yZCfJEc98** i]1 QYg.Yv>aB(qBd)9D@{i"KNĒT~h^?bS[E/Z Z^A1wĘ :E큠ROg>(XX=&Pѡn[;/)ZY{ҟ Hs E鼎7­P ,?uBuVZ?^Ta'tz/~>;2 e1!!!keq^+/l7x#iG>g! ,-Ir.k~Srr:q׎auDC! K>ۂ> TVUW m¾CA)[0b"B2Rv]I|"d?H ȍvXA=P#A"̋~+ /V$ ?inPEjr)/3 F$ XLs|C}bp_ &lFZ\S&%]"k\m o?{X/_VfQ~kp(S#T醉Tzˇ_F+P6h3/nJdS|r:45+"ʝh߯k9iqIJO.RA؝ +I.;uQ4'!I kKml$;J+)"p+ ږϫ R% @ϝ YA8޹vHөP[64vLjXWƒY!.ױw/`r(PQOsЪhUܺfnv_;XgPd?[r *8#E5g$iM]p 5t ,ꓴH`הv^(cjv2A>[xE&&(5:M\9~H22f+KpG1úcY>vR5qxjYW-9]Y;oBWr3+ {w`cYCahDN}yz/>O]?jm$Db>Vk\`$V5+盢A NyPe ֱ=5~d`CP#mN4-Ca;ьO˧ 6zr$C+3*s5̈́z,mD3,vGîv-ì.z~@h|,=ɻVdbrGZRbS?ՍJh~ƭ hۊ(a/(s`[~eT@IO̪UAa|+3{g?POKΐZ32v9x](ڗx=@L:)Х8K%ӭsIîL_"~_a} JQ)o%^ A9TU>ʰ^z/By7qdaC- y6h-%=lF>! o`$e,nI} 9\25,Wd8s-F=!P.+)N*y/«3˯1pӳ7a|т"&H elѤ#z[5]>g-X,yƛd*1@ 6'x3vLJQawRVs(WwT_Eb W3Rm+߂jɮWnk mP߾t:QxzOf;ᦵ<@~O@YjOEA(X& q^!&<(' )D8yL1e`42N22c𣪸/üZ(2_Uq3ӭ݉-:&[R_Я),JWķ {=Z=GmcK~ܣ6cq j c37Q!mUQ*8V *&s{rͶ %-3ޖ82ÜѥŔ3;wYҲ8>,Ge-:p8 M0 _W-Wg Y8 H-? W6aIS-(d4 *d(¬/+LhrPgԿ 5ç^9 ~A}[k!`SZQUtؚ?Ԯ ?ջI&;(KT)*e$}n{] 'yL "a<yFqmQ\e7'8*ohN)vUBgd4nKbB,Y#kifJE(&UWM~βf(xu-&LLIb:ZS}\h:5jn] TS!â˜3 "Gdؚ+>ê) un&`Ef4O5PbqJă԰4G?-9MG)_ 7L]$V6݁G {8|Irǩ3:OL$s{VZ,n"]I׼$tH>=utq:`8A6 "6O9=Rt)17D(#60 #-VOɫYZiK{5O/_@s[RHnC4T*Sn~ 4] l".o1s-P::qQ ٴwk 9w"B/@@-⵳kznb7sq  9Ss "΁ ?ahP蒉ZK3y=;aް1wCw֖IHD&z(@4 crYҝ'棌`DFăv\ `dlPOwaukh΅?g4XjO)rzt}h"O2#dž.!}F:}nHEO\£}AHlm7\.(=ͷ*ѳdׇ9 BN G ƪzK(Oǃbc<}Rτ|I;fplSvX LDV !8Iu+ 1MI +*+:\A|s"(C`6]OR0ݝA#Z9¾faAe#a8ˋīG;{6%xx6ҩoeAjSНDg6X-CWFb?-սSN$hln{Q άʿA]ZET]3i|ef0r YΚ6%jK&āxv -n-A?!PzbzESvu?NxJJ"fƊ'b]Y 0+`;6}& dbe޺WT2I']z/]MDxaKF`lN}&E{nX78_c&?eD 72vs5#SdⱤm M$MtO`u r_K*g 4v-=b!PK*0!inC#v#Um7'8\~)%`6InyB[n_+YmPi`z AP.7JgbNa`_XSl{.sdsR%yÂ=r-$dZF|D>SEͅ~ePc"wU:e/#$Ӓ)yzZJTGShA{6ʑ i8@!dj~8RG&q}@ ̈E/R C|6s-_dד&E`AG7yW͍|.+j2{:__O}2MidjOJ!~'~ex[ _x@Y:OpxP7hzK"y#mgD{Fb 6TO]$EKx޳ Nl 7E*Hξ7O8Λ 62 J :kVc9&p?. 0ӈolMu:FW#B@Wx0Pŵ"&O(|LRmv@|Kw0XtA5E2P)j>:ht!PiP}@:{2nC,1ḼhoY#TS3t~CnbMg+h>7SV3\&RBR%I8PsB+'0Pa?Oa"^5 `<*#{~7;QG _.4]v2b{o'A_0'P[MߡK-O=PcUy_3=E? n{67SGm 5z "E[fBK◊ ayLkpJ VD W#qp^TՎ9b*O>"${:ݖTz\QJu 'D^] VwXBZ_=wz)4ݘQTHrT+n8 e{OʂNK(޷sRۣAGqr5w݅=ڪ_8iicm-#jX CȓVamd|>wYpgMC}7p Qˣs!*? J>l_TclBoA‘+<[໣k+pyM sȊc/ Ju@Vuu;N.|F5C5.<^'|W7d @I2i fYIټc=2t|A0u-%a\/hL0fܯZOz]Ea!"O}ؒeD3yVW}ĵ&e\;zx^$$_JDrdGY$4zӗꊅ0ƜDL6>w6h\B"): όV,C>P,оYe\4II;B*;)``6 <'6KSr)ңસ!T $00@AvUSm=nfI'U[F$f|{M>iĻ0{Ov ob/3♪V!ʭTTbD u2L/6 ɯ[T)Zk,(] AoϠuȎ6۳#[^͓\ys9Z;C[HoWh:`d脬Vj^kfE9j5X6kt8K*% ̢GĉD5"bYP5hl#VYO'ݾ+";,Dcm7Ǘ=M:NNjg>n\}ŧ?X5]<'Q@?@XLT/5+ ] ۟NgOeb9 rKn8congӴP h!QǸ*T ̟=ܪ1j%:+YB@\S\B0xH"֊| gsEjd'Z8S:*$-||=8_9 A@}C oFGտ Q4*B6lR j,ʌi!(ŵo a!a UP7TRNQD G_ ldΝ֦r5O|MKx/VEFU=:m69: Vs˕~vA]XNdPg>I@"V}S-SR&#b i{5'Z[S:@㷇 d^("4 \<~ײf0yt#m/] Z tA'L 1.ZTJͣ8cl\gFՋy SBA^Rtދwc ӟ8Axjn7ڮ"ja קh>OϮ*#!KN.~In(^0)m wq벬v(Kz騝kg[>B{w´-5+,g^}-t[b̮+BI`2VD4̽ma)j[!#U{;r~RΫql\Ud'<\ntkNJ'M÷%Yͱ.XڡxnZ$j/?> qˬamDGaiG8P۹9-7HS hj> #R2U}3 {eAM1mt!J.i$'&>%#: S|WwC]]EppDCjobNbP-`ў. V߮ӣN^ P{e:Ʌ~1i;xgaR캋p. R X<#ir'&ݖK #ֆѩ#d d51[lm^T2&}(ƃݳdCO6 jf?~5o4䈺1,F$&iAoKI~ 1uFk4MIK _$ 7҆s6INe\s5ݪ鼦F)WDdlQH fi5ag JTwmZZ{0_0ռjåI3ŔGl!ޚg2gϨp_ Ljopl*p5)~W`4n c&;Y&vt-#Y'gaiJ;,8;:kHLJKPB]*`=B蹘JF\C5Ze3ȹbk[r]JZVEJ߂] /jlAz ؑO~D/nF8s#32rRϹkv%QW!$MKN7p5O*?s9 2ʛb'EQ?&/?bc_:Btehʪy%O@ m 2 "JL͋Z*6<]hY%k"W}-}ևJ/W%0yZwU} IԎSO{c["{ 'iV/"-I'iަ#}U' G+ !K}V "]=aRqn}f~fn0U=0GTjX.q<4&)K-#g&C%n$?д SsH~@<㌸K|ލ p( w!`!@Rڠ?WP/ׂd++on] N?]KOhǠ\Z$$ѧoXtWonj0Ng 2Ac[Vs7 y-^۳+ i_@ R8IhE[vsr8EmM=7<ɴHF(='\HQ?. 7NM#k!$9q*Y 7Є +]ĴnoXUUYq}p~|ZE֕| 8AeBh?HUgs{@"z: P?n|_}P"t@n{Ol<5Ϩ{Eρm:>,fYp &^rKl|~u@jј1 U ]!|-QDRy֚ʘ벯DX GxjP@Ǔ&i58ǜ5 ׏<\q(5 <\$[iOwn`WB$^kR3WoH6˞J !? DGlG:6["e{*qYh=!]B°u oCa?)Ȋ5]yEI=bؾ9Z/r>bd:@q ƢWatf6e,V\xFSڲ`a,.urV-HZEeo6܈({mӯ%!U@z(-|T"d>vcsA*#`kӂGrip=F[įl|W!QM^jZU XO3PvG<+Q/95+xy@'>x闃eBb % ^[W`f?1lQo!4t5l j/@SR2d#>be,v}Ǟ)NJRlo3 4Z k$j/徎gz(L5e`Zn2 (u-)\'x[-#MWr)d`1G> +3OȸxfGM4̜P=j>ۏl4AÄ f1k1s?1巒vlۣ)C1ՕOy5EYx(I0p0EFBdQYolJ_FҦ'{rL7[{ejμoA06`^}fDXv'ѣIUﱞ"膴?L%{8sM}<)1Ey.NX<6n1(qB$nޑil(xJSޥwzV:jxʯPVݘr3"u Z4(g26\[w.LN6N> | !\@v.5K0[$!BE:須\Vհ yfS8m}|l3f!Ǝ`.gӌӁ77`Y} X_EGBizCa~.# XŅQC&\͡:AuVO)j3<䎶L_ʘUSHh_RX K_WG )[QnNi5^Ce+jvqt1O"/4NAo!kU#Ww?]T 6̀0 Z&y )lM9U`}wTkK^0P oŜ?$*:HVx.(v5iEk GJ;έLʂF.a[t؜KsOdhP\ PD ]ron# VWӀ(A Nf4h/~xH%˖tZQK#͏Ep.0Z? !HОDMHUi=VZs;t4>!sn:xgGVS׽4L4t_){/RV_$D,"u;۲a,Yo%1.ȐShvJ :ߩI\I:_Wp vTLG~K|PAx‹/, tC7̈!ӆ/[HOvِz(P ,;XQ>N.j&%}uClAl 5ԬOV q=<_/%n+΄Mo RbMd+)'Y1+dωzYxfN SajKt Bda;^h=ywoГ@NCHyO<~ W. u[ վr9,dŤQAz7ݳ;kO |ڄ.S;"x L)j9j71iFMUyWP{FgkNDϱ|46{["p@ 7VBt=Ae u_xO*,`ȫickBܜ4ݬNPK Q";q"N#t߸g#ɳA+G2h7k=;TGHDRMEICYln*|81R$wCgo[ͲC`Ss); ۞jk旼q@vwwb~)E;Gٵ+!ȍ1΃#ŅsV0,aYan5&-`oTcE'ʼnj *8Ca]GLt](5nzPy $D-WZ,a?0t/kTmD(PʐpD4Dqf-'̊[_.4&`sԟ] M ygst=XER_#>YǕ0uB7iTnzM|ګYBmU#U$O[Q8%mvʔҚrD VwXJnbpɅzZe}Uӈ駔Vb9hv:nƎ*ķ{q, K-7ZfYdĢ*|U!/cJPv.0~Z;n%C( pqjt%#D{'\ֹ7 .1 m[Ĭ??dv;O}'zE0T`cĖFZJY}B5^5'ə7E]QL9u[$U]I O`^PLT"cο+ $b߳xЫ]'@ roߡh P:'ȼ "q KO@H7.u4:JBGۺv6%sqZiy.N(!EP0mX"M3tJXEerP,3(pO"jW zrry ene^|~MQ$U[拣a;ޱo(%u#'H/|]D689STdn•ƣE֬ʋ,7+茆:PedP[3*q(a gqU#T| FҶ.Adܤ4kJ&Dr R?su_ 26KRd:r@v(toM "/N׬67ORҗTJ[&\4)OkjMr {q.| kV&|vm˫b?Va&Ba'C1C6Nڒ6iSiRE͍Bi.-pW^9$m^(V+ A2LDI'vO;sv7ǀ?ʬX Z\bK\cVKyzR9; OUL5˱sQ,/G|>i˃Y j$W+2&t0slF -?%/q5MA#{Vgě+[D+TvxOiz]zT'.N+ Hϵ¦3zt1rHJ˂@s9ڕs4ÛQj>D!% n zqt=i-20^5?rܶK({B0Qj5~]ù;zg+Y !b!<^ /C~cgt~A eJRKew=\}^M^3&At >:'$K4+dUy WCs~4G*2A]8L %Hnn0"ߍ ,.gE2j}eZ댴ڢrzt)#90Œleˑǐ]%a{G|)f6L[DRK9ڣ&\clrzT&$ὗAxPϢ9"Hknxq$d\&f ))@N@rQQ={l {B*PYyk.کCˇk1xvTJzVX>P+Z$jai즌Flf!J

/BNgKqfmS=Ε nF5MQi&gR}Z솪RXpS%l*ZJJ*T,q$G7/9ǎPZ} 2Em bq}giT ©Fqu'JNiH[( Ėh}Mq} EYy0:0) A'IY8-m RHA2L 䱡;}Km+' GmH0?o ij)TѻrW~!3 DQ/'CI٣m D^wHeA1Zq|'2PϽOz^M Vl*5''3Q$d#ҎҲsĦE3L YYsГZb0ȸ'ú/|riEͥ~5|fo9 gAL2\ttpvUE# nn^8Vӟ[?vrT˹(ߙh 3N8-.NE*Orv\~Ω*wAK{ϋiGok [^ˬV*Yvl%#2%쓱B4U Iem>G?da}7mvul,XJE|'"F|{/RSa )X,[^6,N}h{v^+8_1n74O(z=n!hܷd<%-}p 8*Ll (d i_քy[ -Xl`e[W p 2tFs 9744D`+>.m)RTV2'")!9LOhT PޕyP ?+Wvz/n=lyèYZ,b *Sʇh+tW>=)J)LbgV{H7" CRt!h>R-M&}:xϖ5)M86YP_90ߝB51#5?>nU'(+5Vml˸JMeGOg,i'YZՒxVT*C/O?Z,B /`4\,k qk,VҴ3Ny~2tIl)J uS\ﴨe͸zh}aa2  e_B.#z4 TT֤Do.a=I6&Լ4},?JgAُ@Fq&~HIF4r7- ړMdY1?MwI-.I9ظJlFC9)V,+eȞ. KG ،5 n.Z$6vwb `)=>zץ%` Lr)i%n|~@@߱L v%L+Um-fV?#MIOF6B`/RVcC2%k}ɣ&&ai~_ׄ4EE*^hRc7Ҿrކ6Of;(Et[vrB_h3+z zUbl\F}Sxm47ư]x Xi4A ^lC;.$@;H'Zb@RdŪE?:+L *M;*69Vj3mR x !RejdM0>wP1{SX{WLqWɛֻVGxG5j87q7VP"Z|(D:v:H(}zrF\70=ֆiVzF}R Aϡpxb nndO(GSM֍a:un#sgZACrrNJzJ/֚1d"_? Sp˱- 7;zG.,U9+r-oCI>` ߝy8w4'jrr:4G9vaڦ rhewI_a7 M_\!0gjbJ3X0^+иs;.=FZ\qzYv.e1xz Q\ҋY)!VmfS{-a{<j>W܃6p~~<R*>ol5qjۛ~Lrg'CMm]՗*z'\<`Q#>68i; .kmU4Z٤E4_:QZ'U^)O*g76^RvsvcJu~l5q= xXj|^|M{f9VϺ DzUFk֩Bu)Oݮ`h;,Utr)߽0Nm*& V 84e ]y6,bd$y,Lu oXt$ Х5i "f!H } Aik;fa+T?HfD:\9SshDJW1G‰aY{˵ 2+YB!ɯv t qX jîXbWܖ zN@'+tמvsi?WlmrxTa_8+LԘ Ie2u9ށ-~.zkGsL9vA2s+)#\k 0\7(F{6bS<7fg.,zUseu>|ɡ mq3Ý@0 ?Hr]4dYLnATg j t9"չ'5$ђeIb<vԗ۞G MJde1#0 xgƗBE N}j Sⲗ8R0; Jtc9V(IGMr1HY4{} \Fa#*sKd}i9kx2ʆwXS٢~ h"Y.jGӢlj%Ք|]I;V4v7#m u`]3f.9kY< 7;?KE-@2_NFK!*Ca3u=xջ]' -uUB)+kTaս7'ca*Bi_=JcKtqN͡稈$/;G`lG=S؜\+z-W; DAnHt3뮜-kF4 WJUX|nNR[(:h(Aw@sTw\.WsZX$J uzb1O?(>TxԦb/  : m 9 FZ~2_5o;&(ckğXkg `^0tR"WEN1Riޥɣ3 YDghRzl LoJ׾ e_ M=}zxL&2-RT;!S 0 ~-;jB뻟o||_bAA75";Y^^hGMߋ]fܜ1Vs3۠q/pﻩ9bW"m!qLAwNwRmg(EYŵԵ֏ ewc!!BQV|@PMw][(mKXN PE|.RW<%;<6K&2ƧB>L">} uan3X_Qqq$MPS0fўHuRj_qprG'qԞXAR%|q6h|/橧Oh$P@GU/nÓqaEl54a6y'Zv@MjZtuNTLŻ Q9"Tn`yыF Igb^=l2D `6D1k@=#|ܶ->ޛ`BMSѳ~0RP8ަgJh0DхI0ގ̀4D<]=k3ӉWe|ӘO b:3h o{$)&ow:d1IjQU%XO$aDy9/8-7P_YSM]Y)Rv% ܈&tQ%/Ex]nꇢ' .@sQ =4sX5JNKF!coJKCãuE|塯pȪ4-" 沍Oص*7iAV'9ABB d~Jo53w-6>Z%=NFbđdU![Km2;ۮ&܁Jə( o7+O1y:ڊGTcJfԨ8lMA:#C0A/ݫd @udXcfUkXN]!9h<"ʝu8 >5YR> y6x.?Ѣ["!XYn$)ZƆV(_E< #jKv ztܓIIM&:qP'L`C-Y$!>3O*z9/Uk)nI}*(X΢ԮLc \* x&9ăY]utm$csN!-Rډ@n"ȉ6ʽ 1=T_z/{?We{n5N q :aҌH0WyF{ KMoy3W_Y#Sg2ka3Ќ=@I:0~<̏l3%•X y~2THCY A-k8g%TBҒ!vrIixHXx4)@tA'"zs@>AF1 7v?ٰ.UŚ\BzM_>Hɀ{R[⛔!b&Ev)`(oɶ奥)!ܷ RC J;CvM} SHcv,!%Ƙ8}%r\BpzB"w#!%xbe&oF>9.f'6%Uej/.5ǰTOqr.`K@wv3{m]k"9XB'$'vPE~u*Vk;wI+2 TF)aPIMOkf-W{gx 鼮:^Ÿ9hV(4IQrE-8v桉:-~cC]qh&T1,L%' P<) 7s10^*8&SܺӔ!}8ujZW#; xܸQ:F*mP;tؤJ~;v/P4P}~mE}IǢS3C$@p{a,-֙~,sGPUK*:yzewq 0j1\ * 09cj{"@o4?nNRqp?CcYam*(Ħ|${7A^Z"rS>Z}cz˜ tR2P}0s{W-2$yȡ߷dbN-&r^d\[@3`.6qT:p[|O:^9p6ܰ{^5Nu $c\GW;QoSؗanwP=}5f-_x0|_* Tb2}Ni.ƶqe~i,⺯gt}J9(-lJ%٨7/&vwh7ő/H;V#H0BD`Y 5E9p4S+kT92CmA>/Mف28K}%V>%ebX7AQ# |HwW8 PCܤ{i2g;N/#{$WXm:Ɩ,$_ywlzIϐm6=> %ikiZFA(Ub|dPR8ZRc֮NO07o{ퟚ*%18PܡLjӅTs8qHGwR̞/cи6 0e5v/-oYvxlJ\zN1ao"ƩI1~ԟny/>*K\ ܩ5|y`U#{*Iȧ\Xs؎Uy m %Xu !\bG\K}$ʙsIx8IԬBKiyL{>ZД_Mm_s菞xX\31$Y^;ߣ.7fxJ ,]TB᳈ :ǘHK؛i^}P.)ǝ\4myqE릞}^Z_FE65!F2A84[Һ~¶(mdqЗ/=`xO\MO7m|vEw߁W|㫋{z}CsXK 91tQpX$Tpn8yor:*7aPElydΫP-OYl(s$ɝ9w1[y>c"m g'\[H#{'H 4G^~ܛ& ,|~78\lz8ӈ\'86Vjb#fYY *`YXS9"w\;>lI╨P07pj)6!kC(2^ˋ.ńp'W6dt2<%Q{EV#'ЪxҫX# [p{@k3~07ث {]dzI&m:>i&u poࣤ_> zp @U|Sh0oOh'?1xz{VwC(ݏnuAxD؋w'Q=Pu}of@jw~+?~Ou>JU*=L0KV;f;νt,|H$={B"F ztKEOtf["u d[ʔG|VKt {-nWQ yX9$XU#˺C.I6Pamҝ Wji n&S]0JL3"LVt\ LJ!,,q_ -;ph=me1˾+"/g vLZxsP2Q: ށ :=iXBtM2E;+a539>e8'8c8\Lwt JJFBp8,e׍Jh,~÷־k6ከ8M, ,6j8N0Z5kj}􅏁oqv_U#R! 3k(cV9b1ɥT_=[JC*,|ۗUqp0ɕB<%ug!~8!)=k*7D1Y9KJЙpB&䛺*nv ;&GS7hNA N&cg d!w7GtqY7/?ymCI+amWʃP?V˗D>YmDrnjFP~< ҡ.3HC$CȻ Hdbo.0^789.{XDù?^vROXBF!ݏ[1kśŗ2-]mAVUN MS;Br*|Z!u"-l9J9O5x>B}Ҹhbj*>X/Į}V珲nٴ"$顄q]0d- OzQAEp \Qǧb@JJ; P^9{ȯR̎4}L7fV,!Gh \Do"5QulE6Лn ^Y9ۼCFEmTBR3'vM 5( `,a9$$s&/|nK_G|ǂ5V& U(Dݡ#vV#*͕G!feeihTe%ę 47GpFX bJݬ?t'ɇ|V+(8POkQN 8 Hڠ"^JrP6jW$"KMHaZ \:S1\GR$sxTR?/:T>!f>v8a2s,g`:jY <Y+ Vˆ3PqQ*K4qs;j|Ejc|UƱo`R0eBuN vʎS d~ N^8f_dzSpg>\XkMh[+1Nl][~tyʿ?-}s^t><sڑ GRBY;)7eۖx&p*z(lBFKsœHƖ ~wiYi$;1E7fOӺYՒ(s ,q#J1 )HDiR {lu2$nRTNKǏ#k.tt8!+u& ӛط"CXO[ )Ufa _zM1d.y\x;{֗/e^38+NW!ivO?C5/m$єY򊊃)Iݜٺ|ԭ'ReqYN ide:zmt4 ^9.`."h"6=\&xo#ʚ16ᐳBVAc hVsy믽% |66XZ(;FU%6+kC !Za[jVJCW*b: 2l{ē-%wf8#jR D#&Jj{!@B[/=LМ3lhBYs 5q WgD$k:b:($54٢,TH(a^|fd{Ͻ^B Z:_!yJ1gLYtA4COҩT5BYEAp[>lY^ #¾0 \F,`Pe9qI/`t#!oSWWyv FOsDY\6ny#mmi#RJiVWQѫIƉ_~ĹV n0Կܼ̑JS @߄t[A=M(0=qD6)e%H@ṁ~i'_S;<5H">(L4`]Pӣ gӉGlCoϑrI.뵲)fp6PA r3VvZM@ߊd{]E7K;i*[p̊}X-F?綒;ɚ "a,mTLg:|Bf!\vdjB%g`OZ-n {^f j1L!w SbEa+j| %7/![HP܇w}?\Q\] l׍nn񝞋#n*3Ydga8 X.9Lk=d^-A9vs)":2)7R(* uB_F.oLvy4%j({>{'$ifZ/șӨTH,ԎD!mMSDڗH@MM0g8ָ Jb>7sDp1yoTnW 끝ޓ}p?%am[H-DDFW5QI,sм82r,kA0'FϛŸWCnU ŦWG=Mb*G6QVWXO|y7vj_z{z/se=}u1 +sFd$]l TN z\*["`Ly9uܱ*2Ř1A(J͐V4rUb FUmUä?'"SkOsn~1I|={Ws_TG984ދQYO:SeEyj"cL@5a0>ƏBˤG~4:]q{G̉a%%u-<Ȟc"#6(9y5ä ܔxrVu䳤U!sЮOR,AF5bBtߠH Yg?c7̅2M+z:eiڞK| YdyX³R(F$^TU Ùa:|Rכϝ?D2P(`zuSyjiȋ,y?aAΰr߁,K8<, 'K Rv +)VA:qvfs-Hh ь޺Eg<}E+Xѱ>6V+KyG}7@ O>*R+f;Z!Vj^B3Zlj͢j8yc]2>]R~ZɒDv 9~-8u=6\l8QTGTG5;֭zz8x1Mvp&\FrK7/B`pX%ҠUڶ_3! )dܜIH "Ås楏t8-f43Bܦ8F-Vp{٢DWYbўc <"Ty8M[}ZND[^n "Nܽ根DOp,_57Iz@C%V̒, {ӂ)Wen9E."Hͪn*Sٯ+I s5.(̂H|ȀXȅlMkfT>ȴD| KW۬j@v6LreSPAY-B] \u1 Ka~Ϫn0~fMOUr< tT*s=/I}.=l$ĨavA:) N|8:VFJ -{ΨpF<둠TTyQ$gɒvj#+:ɑBGV@2hk\HZ8{WƱB¶ȥ'bA/9ik-9WhFs0;J5MŐgU K; r0C(D*$ٛ.5cNr[м e7 婉^҅2nF9%RY?T ~@=Ma)\Xca?N*g&S(SDw.3Uo7?)B1<+A`'+@,\Nk"t"ts53i~lY:5AQ}}-/u0 =쩩+ʶ(lg/] (φ/MpA_OhxƼȞ ;TCt]yʀt"y渾ϘS2g.exQ#߃s4. /,#>B_̓e<'J- ¢8YJxAwgbv@?Y4.@&4BtiC q6ScJߔsUzxNZ6yrtʘX&'Q9/?hHQCU8 {ta$1KFo-cMybYv';2`q$Դc{BYS@9R? za|V Vfab=z0 n3ѕطpvrQODA"#.yўU^Ĕ^LK> &9 v|]:'sŐL{5Ӧٻ1ØS2ɶj%n*VB&1~Įᕌs"mcyM~ϫ܅ajژ ΐ䲒;{)Pj^5)5V](U~ZkZK#>ǵB"0"%{Wk\ʡtU9I=ؾrC|D:q=<49_jz>D<#éW{L ڙ/y3F1R'*#CP-G9e\):RHTNc:jCq,Ourb10&kMO;OiɩS/+(P l$xJ 7RYFmbT?B&_0++!T67: ~j~!=0MkCzL2eJX`195i YeAe`AɀK0+'=z?Ky9آZQ y6,2pf@oTN6\D=jPfR9<`#Q贕ݲ]d꾠m&j,4tH㟦>zX'\Ԓdy{q( 1KѼY@ .g* y/xsp9f-(¾,)ncaJrqcLm#썅 3_o=o+7PaVjFS/B,JN^H]QP􆨍yPv˾^ d'dӥ4'+b0HGXՎO=190'^Cމö(}R90ĺA?Z:NpAM(e;]m&|~j#"/wVX@,g9$TYFpm~D v}YBvGޠ\y\q5Di!h},.6Gפd̠nW Kd1,s%흞6}a|Z?o", 4z&R XgB$7!JO@?+,mj)j)]o#Ә*'+!/软ʚ?W#q5ưYRQ:㈘w{iiZf!!_7a UМ tݤ%XLzdpXUċ 0d)?D TbhC=7&CS4!HQu#~bwz~ta0nyIem1tJqږ5 Mڄn^5N,XշB3@6 `cAV@Eh۽\yH#Q-6hCXʥ I=9/.( N/DWV!:ڿD(lDƷ?x,17w((|~Q̅t\ugaүKx}fh4.GV#DRf/dQ$M@{3 7gcc DRI"D0 T{kKuI WnS;}a4 4x4 V`YA -8jۋ[]('XZYE X:Cas0rHRHb'}D6[X"q̹U"!ߥî%HgԞH/EE\٨Cz@saoEf"#jXD*YEֶSi"dU}x_L|h-hlyv z*bGI㾙 -L~05 ۛ0֔_5\:daZv'}CL4ŧP+pSSɋ@Jk5K{<e,~6⧠6'v4$؇chV>RK(DC_Oj8; 49<|Q" .-uv~l%D:U90 8`G/uo}qK^ xh˄d9ߗsgÓ?y)/w[ƓFwHfl ceUkqWY?5paG:)Ĵ:;ItuF4T0rcvTH2MkXgkޮe|+@]{vVz;zHD nXVN1'|8ѐ+.o8rr!fs|I B3}Y K"e79A?[iڜ/3SIG>߳eZtkR,O5^1$t>6K*9Aߌ6 Xjʇ(EoυRTp8P 9$58MQ6Hգ)7l2ߡ5YI,zzY_AF/653կ,ŞCy#u'ђv p_W_o:zsRh=L/nr̤]D#r~D!5`45s"P t 5< GI.ؙ͡Zd!l.fDli)W79!MwhP4| (_LZ+K P^;K5 xj2z|cTJyovĖ%2xς*˝Hr^r裿!.s0ENy ӇAV!B*\sj'VIayuc ;kDLޅW Н:@ +X+tkWP"'^g̖_8ز*r@6ڊ2͕?)KiQ;rgIM]M4ؕ ;:Њ.!KÁf 4StJ5L l-sS==·@-oV(z%#6'%V_  ?_mBЊ@;vF„>L*L5Όs^W,S=3lNbNoP.@n$xЇd_mq Ǡ~Ls^Cֺߌ~E#ygF[c+D}:|~`wu aWY0h6\9pħ>Y.h,ۨV^7KJ ܵ?[Q툰*v/ѣз"- u!Tb|c%Kz<4>l³~6Scq.oHahgxUji4\Jed*&Ms s̮"+ o^O`|yTMq7^ `Z(zBs'%/x(*hWv Mim;w~}EJE#qa&gHψˊ~RxjA}D" qY[ګH"]v9jp]vl@0.ib ! Իz1^2D,,;b}YLoE;h+&u:)1"',SYErjDcB첫 +Ȭ;ch>2ҰhB& '&Fd_I3mbz\x^ eɻyF#;1e/."L\!w '֒ESƒuxۡ6D5٢"uhY#ϱ w#jb$ j='s쐶^PÖF0=0oi)0cI%7ſR:W:y~\+,bx?=% K tic OkqlLJ$:3l=ۉ^on^|Gc^DdmD{0 {|Hyf_T9HbmfvƟ>pVG CM ߿ E VɨF- ݤ{8~:bjB&] 4rPlf&U`>.Fu,O8n(JjJ/uyO틆 Xg#[}p3e0xmhDu p&TySc3$d$G&% OɏLf*#-kb p2~[sśH$m]?(ݠdJ:˦I ՇJē9BlV eAmw'Y*fBy=o<z;P-9դ X61ȨWt'똍~}u(@n{rZc%qw-07IgT{+W UuݯsmjGF3g6Yt`gɴBf\|WWFkY3($ڂhhX#zI/3E 4uXRqNY7v)x%- QQT>.`lSTi]tk~ԗ_۩ڊJ?=-p! Ql/Y<ɸo]~8z9HZLc7஬mmLRʂc`rd_ב 3X׷[p:5|VdD!:JѠx5W yvR7^qޛs0+2^ȍvo*kf$ƺLHaΕ]# /_"B ށFDŕ#m(^W7d2rSL|HL'BPwn ;/O0LegmLꝺ"rxHnNN6Xxgsw_?duw#GG$!^&(ltQp8HlU !4 ~eo v2.&rƾb<-^7}+VTG}G~8х!.N[B~1eim9 BqǝQ]hIi !_JID,gJIs<}тܚIFEjȰI5Z.'C|G˫<,IQx5bD?i}?[KnO+O@<1- w7./4ᢪ8QbhoE=;&9$ߍD͢@ |2rهxMbsG;Hijt"(|G(kʏk-HuO-O6RI.{5X7&*_ Gҫ` J>CmB:1JϾ n}9_J8`EJ8K#`Za 7ǰMÎл X.C&+G|;z|M\=C9M4)dЖ'L uW[|E+= RV1H# u  ʯL(6,mf>ץZU fպg|M+t/Zu?cUc\Av(Cr*Tl;vbY,}3k d-/+(&Ҥ|Wa˙ί =(3ɄabtO:{D='acx֊Va$H_8%{&sdC8}: 1*ˠ[0X4IXɉz/9~bIj~D؈qE>{ Br}cɵڹ_~UE2g CS6VfG) NWUVI~̗gT Ĕ\ y`4".\,[Tt{ء|2IUST"բ}|R,FsK̮YҲ&ˋSZ/$Rxr&>:ۡyVGAN?}wR sDGZ`|}()цub#;r+ҽJ'T%j2St}I(AѶ3ZqU e.m Nw?[iJN|ZBUS.+J[zoռgooM)Q=kAo-}=BMhG5PPE L@ă^PBS,_tn)õ_ؑ諆W1v!V:."6'g3=X Kz*bcQ%Xi@ףH`p )!ujٳj~&@v~h+yݦK%FlOq Щ賜:bO/9]e _-:1U!mb <.koVIIH'n~1~[ W6=&Bgv[-%QK 'N(? 8Yi7Um$!=q\h b.qע'; V[8R=9"h*"K%|W[7@xVh.|週0yh"qX yAZR$>7p7x. wH}^41tOǯV\a>.= >87 Mbb(7*#dV9dt;jS/Bvbgw3\vVYbW.B{H }O*]3Naru;hLĚy:UNzڢ9'[ MWHoAk4c}$ztDUWH&l$aSJŪyɉYA`k{ڙ0{%DLmSRtu ۩\o}8hi698ʴB)ҹt9m/ 9([袺?=kqO6??04^P̸)=L9g$iQLWSI.ʲrqn:F8H9<ɨ7G簑M>^Tb>]3*Um28>?grB$@F&@M\z܇}#iܠkt{8h.oXyF55sbJsL5#Ͼڻn_ɮ<{mM!V7J.;M 7tԯC抁!^oQrg\~:]xLD׀@%yW1տW{Ȱi N&so;yv{ŕ]sBnHI VEÚUb0y[ZGkDs9GIF(=^ikw\wGQeqA )CG{MDN3jXiIk˯A%CSjwkSv<8{8oi5:7W*pA0]q+ .'-(ՎbmW$ږޞ58M#\1ِI٢@3) )E4[s==]vZrDWw&堙q oH[(ȸu7@y++DrV٪R2A]; A!)%S{S"2% H bDݳ.~>5*DM:??A3s9)" ஘qEV}2Tt$X_M" I "m$ıJP|I`o$w2DJ+ s?Ҭ.1qqpu= Ƣ`Z% ? o]8PYXUL=c>:!҂K/M|t0z:ˑ` ]0P"3bzUptEjfm,'OIluյB-Nb&2Zlãݬ>;F0&BPlv=*ay%y9 KӤƪz^ 1g- ~`kQ@P|*Bg{ iZ? IxNVL)hmCAUeOt&$S6=U0-MC۟XQ2}rC-~.h"j C.G3R.fg qOi{ұx7.ݫ㼛:lI v6R8a1Hb+\aS~1Lq{(-&,IFFe`)#ŞykDr̍ڣ_5R}Ĝ;`xo9Ru1%=疊n FvQ/44!LvLK'7ԣ{)w /LW&=-2h mREjA2~MxT; /t!s-^o&J޴GX-ZomH6r<φz98+@%$bjq5jq:4߉%jGDmBQzNR[$/*VU*agXX ~=A.@ew)(j豀 \fm׭fQH զ䯪;&' 9Zr2;2йQ EmIhţN>:nHnISZUt|٪px:& m[IN!Sp/э CӠUU{KaBRP0v[qڬ ԰ /C良D8A.Kx;at~[AYZ8gHn@~!ƴkvn\AM6F2gq$<[,Tv5,6JCU[-(+vwӷ fn~ pl^d_m{BquQJ.-n3VQ!(0e%]~@}oJC$/w p\l3  U"f͆oL#KnET|;8ecu'[WuϽM3c>(ܢ!6eE,ngn^ "3]̳=Q[11ͪ9t2YgO_3;E;?T 0Rb]1z׺iWUl>\4GT@қPU,_Gu1ݤ {c)u*|PuDZ4I'j-roul۹>aH=X&0 GH:8tAX xPj("JD '3&ѕkyD%F޺PMB9!lQlR_Sv(38ZG}Kdޅ5?:;ž0[Z"/UK-N_V^䰚[ ɵjV҆A~aGyB ƔFSJ?{dCF` Tm8{QADKKFjc^pN&SE'ҧe»4\ |~5 Wmӟ٘8K Re T2AkAe-X:foxd|ms}>=m=]C1=AJ6l50#7utDZ/꺶a03Gʶn Ug[FQOwdQS[:=߇ 4+w-oZ[qM%{MqKHy!) W%tb+w"T\~yMn@5? p-4՜^]SFKH caU0( 2e8kٝrտ hscaCD[v]n9@UosaGџ@aa(HGҒWܾ:ˌ_1娶` @%3>5%Tt3lF .֑0)ű^c==LV4 Gz"i89Æk]^>fpy衽͎ }c;m۫ו` 2dlq| o<6r'(Bn6:d"Efp{lw;] 6K0NS-dQߖ9nD&F !ʧʜ?n g9h.4rX6:k6Cm{(Zد)^NK^#ǜl^ PİƌTM٢,Q5"At8roň/ AO:.PXٝ;89:@Hl?N|trsRE;of)7±4*o厪bx 7H)cc% SWeU+4llM IՔN q̈/ ԔEg㤐i=)jxaN`\y 3Q5 3v|ė)?;^Dÿ\-r{v\HQjm1P{VB}JP_!]6'"?vBЩ2z&|gM)yber\Bl{ RPVYXTi#k/C;,f@d W[e¡iΰzYP?@u4z=iQ xl.ĭ {Rl}]ǽ>~BO@j+3D)f~5Q漠-q^y9e_i|?y+/,l{TMcF'cCߴ{:3KaXK(W4[L@!hlq4H21ם*>%J!DxL@K;iv3Q"GK_b 1Bs (=(ND*2Fq<k5eUryK/j.G ԊFime":Zw $2'\ OM,30m=`e Φ%5B\~yyu-+A Smb_1]$qiZvyhS/i^ Wpf3-TUF^v}24i,|.@KMb6{ec & q_bptkDbu[y?kQ>MBk}y}~vW8m; ~Y=/k^SWBCJOn`jUCX87uBdVXH( =vMS6zQWЮ@x0a%r!T<;;DQT8a1< P;y?ZAq%5]fy[=([<JvH'_znG$Q>Ίi^[B00VQFe%rqjCrH lӈ#gRvs4g ؅Ke(y,)34yJG׮7~p 6ի|$P.Lo]W&|ټ7l6,Y%ʝcDjGЖWU=' eUog Wh:6VO(>uVp494op4)D<^xdTyOna%-?.)_JywP;2 ?So]I娳-N7+vV2Qw &-5_s"8ɉpM\-AL]se*ˠ9-+2[1%9XG+V*i ]Y郩4*xm_2޶]C\\T".W_%wj =565S_sA?} -pL N/r 2>h p2PM$j'*,$N@R$mF\ BQ8A .2v!_3r Jp Zk]7vyT<ߔڂ~-V57/|x$tUyb:~%FO'"cs@,0C)U9X#b!g 0۷;)#YLMIGYQ'g*~}3&'~E+H#ţ Dyv߱#/l?;*?8|MiqƝ" v 2dG:Xref֎_5nwAԘG3OҤŔe$*J ˚m8DY7ý'T˶?Fk*<B?sQ !;7鵌daw85D1b!'o[ ՟A-a<B1at4w+Pͩ% !_ 8Fѩ;Se lɱ"%CwI/]y! 26͋Xc4I]3 ZO-D[75oȩ 0!W322ΕU&fRXTet J Ykѱj4Y*on,iletM6{;3啟]C-P{4V@i&D ,Yt>r M8h>p~3/J˚5S҉0D1~, Gׅ@B SanNG]ȣg-j0+ی.җ>FD°+' }lռ RwOUU Jb W@絲wZ wʃ[GŊ _b"?_TD7F4p=g"JP2 V 7(r>q'ҨH2 ySNMw¶@s4i41P|!Lم8'O J(U|XM#Ϙ(kr!AÞm `^\_ky h<Ҫ4eX']Dx%v "4ёgjeuo!U?9Kx9W<k_,9ͅeDݐ!n$5csG%V8s1OTQe7_FvXIC>>V M! !B:_JrP#d.A\2lpV_P{`S6|6aazO'q2M$xWpu6x\A݀(ˠx W0RT0E;sLQY&:M?ET;<6\ K۔ev)ZBŁeYÅ 4I0b󪉖PH;Hd,MHaRjq+^|1@HwH 週hC*;n_4WGlzGt/PttǏ{W"a9ERqf|ƛ{K rfU^sƊ ּ,--j_" #a0$HXRW]^v6B>y4Qtl X3u9,բ%y2omԥW_d#K怏^]WtY߾d8kD,GcLX{n{bEEI UUέV˷)|/@=|r6Jo>BӺ'wJ1%@WPMzi׆z4奉Ks0' .D+Yj+HȻwt|twq]Qh¢_w$\&P !/%\pNWo+cëƼO+Oaقk7\evL\ X* $)S[E17A%x:(7$TSC6(HH:bfiܲ  Whe膴|su vK3Ǹ 0l52Ź·Tϭ&CJ{J5 T9FƬQuᒂMYy~NŬʥfcTf/Z d^1R=joUZ%9eFR%Ŏ,T]bhBP!RS)Gn72Tj<##oe7 >KN(>=DnNqͥF {ܞa؃!8jzl_۩tkd "l *M8MOxj!T xBʿu//"'rqN1..iIXZc ] urF6췸0׸ )kl=M [2+,ŊWS~1l֏:^1|=!:ai ~3UY4$u D cRgpΉJWZƥ% j<)6z'/cϫlІqI xI/>ު2vA*" r 0AE/'QfY -6ߊ"Xv ]C^dr9`= ]hᦞzr.(4Tl}mJkFձgdgކvSV$v?qHTL%tɻ:ipٜ#/<~X"'Q*t~ N:7Pֱ ^oD'ʵ2O-vCXV1 Ci4͐큠(W1h>CHnrH _CFB0\|jʶ׆CKTmJi?Uo#/%@/c>yg?#!4@эt .sM U|և޾y sG1E s\x˵"APGND wx$C?뒣Ľz [ĩۂWto+0cx d)n2*+b)%_+Te#FwN QqCpo{x=VɀcǍí!*bbA%>FD&~cWi‘B(P?քc)pvo2'6B!UrZG!IcZ(HZ)\<,F8~WB>{)sR yItRM-UT?[C8>B"f#L:eFFTvo&!^K?^jvȂD`>Ol_?esȵjN TwjAX31nuB<긞D3>2r%ƫbz??~ ]pLLaǤ"/F!duQ΂|Pk 8C܇X?ssv1]K׸lDۊEd Ė~:dⶱ$taY9:PZ):6e(#>/ܩhB DP>0;wMn"JZl Y$ {)"u<|[ 4pT@2j4Zc7l@H@QRtIӀzlBL%g+O~е.ut2"4HvNPd=$>kzK%1807P%AHMiѲC(*\OPٱ%d9mO9sEs1j =ݩrC| .[\Id*=@k!.UZL<"D0l84y ;DwwOʞj=6?܌ އeL=CpTs>5bFovsCvhĈT Ƭ6Nj+9͋{ iWmyq)#}eI}X^{g eB;bG*N#[F̫2,^t ^ /^+ e}aQ-"()4x5lEm>8U \',{[b 6ùS_'[dQ H0~ѺGڔbbh}Lچ@}D(~R|A"oiH)u qxt>d||/0A5dl$z/vt(HTS! 7u_%\fM8KQ6y~8;njEnu!YWy6T0~ekw9K+@hE[bᵨG; e{_ 5#̤/""rX!ǰoI# ʵϨj {z:a&Hu!M/g3R0@gQ*zp}c|Q3;:ҩlH[PgI` Z# [H;D*/! t'b&vyyx`Ṩ4<ՠlnm& BU҅Oju*zdNo76k'e@Y }Go8 m=49]?ueqQU(Zz5×X^R!q|4; s|B"=Śi&pV芥4!^w^-̷| Fh$< ! bDGGIn?vFXD%ńwEsBe8^6-~/VJ(ͷxUJWچM4.a]|#t4xk|\{#k~-J2>d 4q4<aS>=vBK+V.ӎ&FC3x,3W_ID/ ?6}1;YJ9±iB?*>IqҦjj =΀F6aϑq霶R`G1F &['$ޒ:R86WGr$$}H&(ر⼖sSl{ :?dE1YQF.Rz&bK1tPaaaêb>U_{7&s0q?:ySUK,|m2ͣF0'33PXg]nAV6<Ř6)\Z2Hn?ʚg'8jtS|Vw]V+ eBզֶ;nYOH;ӧ[˖Ur Eq%y84_t)5"cV;ƙſE5Q9Cg+j` xn`Sn_0M>`az^dHOQyY_2MOpG<0ůV8$/Dh̿?ũ,"e@ E$6@呺;_U[CW)O&Q,G S%ow'F)"VC82vL$A! >~E֏-UA n׆A;?$c\ *Gꃸ Knq9, B( mH8A/v?LH%F&g [3%o }"Rov{Rv3'Co^g媔je'{n.>;E=[a7zQ5gymSnFOb) A܅c"V "a>38ZȆV:]z ZSbĀ՘Deh)D»Β?O/mPEN'P[Ҡ<8/[|˩u֌%eJlS"sOJ 2_VIHشtLF ;p?XIҧz(*[ 'ۡ>!AAk-" < %L5/@mWZ[t?iG0bXNqԨbFbIjLE–2hθ=mKp$0›5BHPcSVvg${߶0 !TC&bc݋#`mQ5e:ްܜ8;lӘS^>!L CL8D;f!c;q'TDO7')rc:EumM!l T_aCP=(1PaRVG\ <_c"ijYV LSaHFs vǷ=SIa8߫z;SeR ꧣ]4)J*CL ¬z 9[A}{4o\p !uB.9 f^g3K]pDzC熗c^,]ާ7.NJ(mCzC)ƖɆ /_g3WRQg-0RwmQ6h vfxTہ@:G^Pnܛ( uof,][Q_v:Wx[1:/r3ᩛOPHH^AkrQGiJU> 9f)4Bed]4gLU鼰&Wg bőcKcBu}ZsQa|~Ɩ@YDkNW[OXw|<`U|NFf'eLC6]4e^$'xvN0YjN(/0R&ág'Ix+'w:bX&a'w<Xډ'gg7y*4&Z.qPp9TByL7pɩJpu z:xW9<*rq6.!(Ms77)5 [mţwm-a8,0&Y".3lSY;)x1JS0%ZLtϨȦ:I,Hj*I;_,b\)MPO,Xk^aL]WQq0dn r*3]zMt6&6W>C [ʇRA}fC+?nh2X>=kLEDH-ܬȸ$s[9ju-gn"os}7>#s8| |)d-A#E=?вY.`38FL$31Tt&U.IƋԴ,&vӮ%3 WoF[6ZvQlR/ fRlA4cmp+]xMfcaZ Iw[T1GX#S~,Wt< Zx5z2B{2J<ebQ$rֆPlc&V % TF16 Yv7'3X@V ˍ%!-nj9& JVJ1gBFxV !+X>oj Dv8e0Jxc};JLQPIp<ś3||wBA|VDY%N?vF<;eL7~y##^{dO=8tϢ\',#Jn:j/3*z>rY}$ZDIh"9ڨV?yU:;X7GD( p4W<41OSNmZE3)x?#ULVlcO<X+Syt3N yQ>v'(Bw^Ў9ck4)!Qװ*51|^KuK/ǵ޽gr+V0Z;VwL,50iݙPtܯhݐSv0$b w&Ը~2Alvn5"K|C4Μ[l!Ȍ]ag`o.>oˀ`5!}鞮Tui,g +;g԰wkT%іD26q *d "[s &OWAx4RϗȤʟI XwHţ͇qbCiTKX9DүlM|[o6~x"$}Eʼn*R{qʪW[kzt#)+M[umWx{$2~~y7):7ctش,>EdFQ5 H2.߸80XH@CF# 4 N *"_y/Re_ οϕZ!p=/]eo1vЏ=~Eؾ)觭]>1Ll.]y!i_֩iGXm`J1n] 7O q,cC\qQxi:4jD$l4_RsBݣ`sJqe)z~ >2_k=q'ߋ&2 E,& {^W.PŋZfY࡮\p?[hy JǞA@P?ٍ?6,_J@B ݢ0.b29 8&#$k (ܫ+ݓ?4: O[ަ58;(Ajh~L>MZ)H\~|gxcYLV0=Z3-덜餛*W!:Ѷlp $%1Q ̀vDPkL0^й,Fd ;C#[!.e 98,nW;Mܷq bO*d9-B=TO`k}8ȕ㩇Qq+ɶЧZ׮ZxNqU@J/oc\B׋67iWuCz_4ʓò%i_(ZPhmf(>QuY_By uX>|*B4V _yW+P礊ig?JMzɷxoT~s mop@!r>LH؍Jhi㥼]tgm?.C#]5%3^3o|0CI^:sffz mp%UW|#ִ8Y"I\Kǻh ]7G~? =./>:DZ|*XKcM$ +/UAƶ b|꯿59N}RGdVn!FIڝ`=~UXtLOV^v#IFϒX(JJKd?h9 @7qU乿z:sgm3/DЄ+zӇۧ rD1.o0XG"C^Ooe48Ao: c r79^@^g ;o]wBGPxOzў:*q~L78(O<v*IwꎰdX̘7&2;֔D,nx8u$0jz]^A>@iI C^I]80߸L3{dT}ΝV8q4F{MC ԭPc"|i kbt4 U ӜwMyrU+ ؄1p RihLCX%a7l9~Cb!}igkkCΕJ7]  @0yɝGgH\ēl`j :n3K!҆5-3$qɭW`@?$@8eeTr/I5P}lU3|N=g-ݺJu=nxTp%mO-29zTV2j^NC14ESv)(o~85!dln^M)Y?& &R2(9Z>i5f`X8mpտ2nկ?tᑕpXW|$ UH 3˝?=e E^>x1JF:Dy$Xɬ pZW]癷: [#a4d)xkrLq W^LÚ5J"̡})mtY -7n+t+PUG5,/{UT)B);x=/$B7r>Jw@4bIjjphpGoek2a!Sb#QHmc6G>(W[s+}L~y^~~EȜ]tl;ea;.=Y0ky6$Du\Er\>LMA{<<χF>:<:nx+ED`&_Y10u'72\n1ɢNC $ ktBDX~ ޫAtRz # }-~>;VF"D^4 q)e$B;7etWV5gK>2zcOrO*ݚq8} 2 ,2Ht +wmWtm5l#OnZ f-KlٗR,gP2ʀHF CA7tͳ$~X k]h:-PJbϲD2)D^Jx +WĽ}˶1p Ԅ,"̉"Ռ$fA*!ȧj=vE #G"бx5>qk=V+yA; rfU'#~n6x¨_ <]\_t6A: ,U@-k9;B8`LFl Rhv傔1YLLBEy1*w[Dx)GISy@$$g"^_ Uu^; `z`׮P@Rw79h_3C܎ܠ b}>HE33L)rJ!׀!&7M=G!/2A~Ӕ0pfb]G#Y6kgy>`n@ 0'2]z}Ġeq֣cƗ`X;Tw ;RqUibs]D 58^zS[Vil{{_PI[i; >oM(tFN7d>al32{QI͖S7go6}Ck%Zכ,T5 ϕqW݈JK!AeiZϧMCy6rׄ#-8!I=Pl,\-Η.HS8%sTׁ?/ KS,LǛI&.b#67΂P,cԪ3/?(*TTORCI~Lbx"@ !V(yBz5J@؇_Ԇ#5:ЊCyTזG;+SY/հzaUt-x|욄N_]L,#¶`ފrBEA&]kQpUi gjOjYK/ƲujγbϠlLgU "ZnF' fp>c#T%=ss']*5a0 By |)!2DŽ3eiqa)5$}:_F=?:/+"ڰGo}*|K C\]cYbwRu}'OJK%0uqBc|]UܽWeLZ!LAӫx cӜe9Jp"t'܃B[I';va'!,x)6E1=9"E (73ĎMvaAA,衡bJ_V+`,na~P^l1|G݋ 7X9r1&?}0eOũ5CݎCrA,=ZE'!K(I{#*TM^o}uGy(h/H9=X7SŨѬe@7ev&`(qFRTk®{'' C+[.\8*U_Y-e8$p 1e1 }]wPSLʱ>YiZS9:xi'ã}S$iQ`TY VNDP+ |MqosjyCqδc$ C؟8:.+쳻&eQ2"/uMqO=OH':\ o)b2d{dm\~ϵ*ܞnݍ[n?0@J2ݤzMc9nuD|,4YY2?+adtFnZ:5DA̲ˑjj(ХK(W)3?մUTjc8_SWMe poh]'K_Ǡ3Bk,PV=iV_אn|׻b\UK`qpXWiޱ^BuȮ旊.eEYgd'Ӝ$ūM}}gl{ S VFgƯf42o,*D7awt}j]̕tΧ3.ز:$adcVB ߩ!뭕opA1p Xڗ2O҃"%WRrkvԫzAe_ʋW-ER4r_X޴g$i/AAr$\8%G :! qMb`FZM{wB4%k[VQ>ZUd@{?%۾s)lYʹ*좧l=90I鎸 CI><:bcos-a MF˷N?M܇ٺ$genOdQ}#/h:ۓ'Le%u:[x*`^0 CVdKo.çVChX=%yơ9)ZiY˂˝IKJjER]TՖ}fc 1NNXԒ֝|&y3L9|3#KpCp3x]o5wnd\c9{DcJbv3N/rT=%_m*:,SpH8g8>|ڄ5 mdgE}7L# 1`-d쑠^bÞ@EQIQ Di&4e_NP(H.<֘hO:m\!v"7{9+fԍ< eZW ZSq ya:(ɉ {#KEkd$%vjSxrOilmiyjɖ"A*ÊZ_rW 5][Ytcpr\u@g&חQy&]t2dʀt!BSǞ)*-rK*OGWl&={) ßO9YƓ EjsNT]2+?[qH ^`$USF}S%!hQE]\BJ}XF3H1*s\ɽt#WU8bXN`| }{|!%R+Қ@Ak-Ga xID;w eb1<`ܘ{ǺqT:; V_3#p u2 |nkα1rn[I(j4āw{9pϞlZBޗ~1̒D!y=Ev~Y|Xr! 6bcҊ v4 -y͑GTL |Sr gJ fsJgW3]\Bд5"}GK aݠ(ԫ!i2g<6މR![i^(d2k]e!mͭ_j8uRU s_Wlm!0Wl/?tϺ2)Ѵғ |R!?%?7Is*.ePs[uV,_.D4m׮5@|^^H-vVS%A$PލEl~~m&2#`td84yT,(TKKCv;z/E++ԛ_o2b=Q+C= h{f B ѿ[x-q_ŠXE$2獹=lK|ĺ^8uhVzGfĔkt #(8`bUuE?K~"BrjXlt%vE94%-['Z7L -SjI+i%8qY2O=r̆ lW1m~P V=Këmy[y'B7 "c@l-nT'x.?PЉd}?nDPˆY'17Ynaeo8P)uN'Q%" Sp#sl}t`~ xھe;Kr +X!& U/e*Vz[i#(}oCyw2ܘ@\Qn<$~N{Wk7R9s8yݤ@X*mE} {;MRg? у'$ڎaO *?a-Ab"ÆSzϕ-߽p5/+$hGchfSmKgk]aE#ղAukǷ~\$,Gޭ@y~6>.z9;ݳ`ml) a-:n(! H`՞7%lE: b27,ѨqܯTbm@deI犦)B>x!`[-YQz I_aP uR#=rA8*HvF~2Qj:jksX[`+VollDpc %S cQ`ˆu@Pv`AWj'ګ^C;KuBX~u4PFSZ LF$ >dP&ը,N= ,;g]迿%Ǩ,&(tCJ4:ӟԸ0 8Wѳߝ2~ r.i8қh *>Brڧ[$+U49-e#ypL_m| !ߑ0B[s<ɄJ.N;I^R%L#?_*9 z YIowCоkq9+늄cNdEԷr'k'rዃ.GNDxLjik= \]G}}Cʻ{ۣꂽl-&`\%^Ɠ7~]y:5 'h!2a.-lAKlē9UHWvj (C)7vD"pa5x&̹Y/hV&z, N='8s!>jPc&PߚD4M6]7T);z=k>9?GѾ αKE-?K1T({e96ė&SVrkcܫWx2(Fh‡!ݱB%iQM5dE啀闲WW}^wh_ΡBmv_$}5SL^ek c򚗛AA钄v{Y@~ר~@i4y'v3a-wQ^ܰGbg !Nӌ|J>X΃?1xL3AHFҾRO}4[G^0CױWeRys]R+qE/[euЇNEIWNN`(]M $‚ʝ;ɳW) rnl؉'Vw!x[~ 9~~ ߋ/?$K4TL]7 k&r9x$m;i"G+Ve`#G6@o;/$BH-2ERjCP _0<"1mVdޑ(h&zЪ]Vb)OPk$${ل 4RmHHgX]qkAMʙSΝ9jCSP"=7)]BdVRf5;9Z{@{d2 ?wZ$X/7|ob[<'ǕAKlot֟?./:2bqp]~ UQdOx) ,W3=M%<"f%5Y9?}j h '7d M[Xwitʼn9 |RgL+|nQ OrZMs3'Z^%P|y2&U)% +4/v$৺0[y UL̪8aI7Ԓ'bChKW`\2uk;I LJE=>VyDŋ| n.p+5@!{]1%Œg%([w=Lq 5{Ck#j,JV(Q=ZJN߭;o|BCȄ6K1w]Fݡ&=8<2afu-Wx@PQR 7$J9Y6>۝ !atriGL0GNъ+4IYR*(=8{=Udg\,Pg@q'Lٰ˼c'mMre٫ݦ׌!9lCo fɵ]́btlY,킺**\U[Xh [(Mr3iCfc}@袅:ү5KP+ѓ|a rO–WݒSF6L#*~?$g]2S1<ŇHyw_",0-,47!*-(ګՀ0}>oޅ.Sق$avwƑYJ$/%|k(9)EhK:9cy/8q0V:}HͿ 3C zS xpy3:(nTz %aQŸ9 ֒(GZ/\`\]P,T֜=F rdXB:5U<s+7ƎKXo 8Vy}fHOjhv0yiU=@#!'/K;W/1Pj`oI1_ŕ!eAqh"͝ձOit:1i?_(&ʨ39!(cH:=H{I;?cvEV,߮k19-ݧxxM #zKQ OŐ& OCq#@52.4" wLNaYǃNc w^;?0wR'4\k}ޫkK^/pɋUkvXBX SՂ?F!OAPAΨúu-r;;?ͨ2ދNkJJ(iً $Ie/m7@i|g h,1IMdJg3xjٛS[J^r4uv >O-,=[в5$5cjxb;#}7-5Ї4)ZPn'&zX 19=WB,L/!-n2[g|A+Az rҦ,C%(W 2͡`ͻSf6nZ#цo-:`{?K6< SU>bf~mYfcM/7${i_(y`i03PUk3#. .B6yc,#R] :𹇰 /ΉhYfSFU&[R/q#?YC'xHrwe\kSQ~kاv% -[H@UVuFD\qk* EIjmSFG٩"ud䔌=#*bS/tN bgIU8OdȄu2 F1ݎY\~n'갳+459C>0CU}WaOr ~բ F+p3 15fL7ϱũPWO n"$ ޱ+(ZQAq95=W(.*r C ʻfo19ef0DAe2'V2u_Xubasll60E/?3Y+`[qdMq-uU#bcLG1G|7ӿvs=^Bܫ%~K_?<(CT8nU=f!QV{|!B{6J+h0V4\D"mKְ jQP2p][m"b ȸXh֎2 Qź#0_֖HIiiAש3%Jx.1 CFPr 3 چdnRdԆ{BRE9K@`:gCdW1PL9Uxӑo ;qp"b3}nt^9gPg\hFN(B*BEmOw(Io5ȷOjJ=1Hz)]/\KЧ 7,={=mͿ^j 3s rhƊf\9IzT Чϴ 3*[B*ZNN=b8ޡ<pH9$|8DuHSFWk>/!M&/\“Hľڙb1C%C*R$깰;b[ (6L<|}u\'S^9r4lԟ}hAOT1 (fJ 3Շ N+wp,ącE, ˴ܩYrW 8~+H-GI[A[!EGڰOqu(f 8ZYp&[Q>Mzqpy Zς-+Ecx_x1~Y 4BBVzGڞt8jMnbbA*HvQ٩BE@jF04cp\3{S󪫩Vn[Fٻ)D@ZHNWØ#:%hm[esXЁ*LC_: ea :TM%* & 6J9>e܂WX;km/=أEFhbzj߄"Ý>n4'2)TpEX3ϟ}eJѐx#( zwyfI+hԧ^8c#.\@C&Pa@lc:*R5fɆ; ch1fz$>7e{ryxuƋϾM[CI%lg?ĒR Juⴤ阁:䄫, @% U)Ҡ{t9=p:͸ dp7okg%oYYp/9ȡ2LqxG# Jg9A >N񆓛 AjF=]{@`;C9vrfRv.gQS> WQv~jVW58;LN'ϢD-ɚKyF]lB”c(.;4и7a׆ ^sM@>*Z+ ET_W^?$ ˖-u:ǒJZl֣xTW]GqoY-̂M7Ӏŝ&:WAgqպx  8 ͧOC, A:Z/ _kMI\Ds^ |l9[-GNC9G#ou[bלudZ . v"Y6BO%['Cr%j:t7abVţsRIgm7]%J)\7ﳧ^8Q=]%(f(|.a_b3X Ѕu?)".ܓKe훪r/K޸^4E|!yzbKe \5{V< sKiƘ^wI]˷;$|.+3mHj_?md;Ooy掤O.kpEl _4ќ ̓ 7؋hF%(xx#|%W"Nl][[G~.7mЪH4eܲs񮧮{pP'._UΊZ.k:]sfQuFc_^b0sC1{<8WZ,g̡J&&aAoܕgJ:"~PcH/(s-Ɋ\)SʣZyKoȮPyx!^-xUǃ!z:U"4G%j:bYJ~hVr!iLqCM7:ը@sMc}O꘨ Gi&A@IZmKpj.4-_)Fdm W{sj\.'w-n֎a#C DW>R 6=e/)S#D|a% r=yں&9XFkȉ%PȩmVY ʍU"//f Ԫ֨U-ݪ*}>)Ε5Jȁ1Iife+k#+v$=?,$%gk\T@z+Vtڵw> ~h&O.y@e-+!S|l,Eb`I%f06 =LUdk0n!Еp9 ΂G1-Rn@ z$eBC7 D`$MpXB1t` *v핒C跉P-Ԣd7oWrZ_'0LH "vnJtwYwe(L-+8O+:v- a,C$dsH+#“8)dw қҗ 3p yz٩kb+_KAfB`0eM2Єmth^׹TK݆@eN"<^QrXrKUV$27>,S]؊okXj/i5cA Gs4<k.ۗlxzw(LTwz}Jw FS:6+ZeɼH+!+Q2;o+P4 1S,()͇f'HUTF FŜ# `֝@B1-#89-:T]" k2 }-9X#ܳ~4*e hRe9n ˌRVUep)Z.b G%V_y̕'H6g91`(jlgZhXI>i t3{',h*Jm"c ,rtZ7g@lZ@qMfr>\XlMM8N# 2=]k7\vb5gwv+Qvy[gޯ [,;Ǝj1a>5!Hz;"Gꗊ^r:4@!Y I+g<3 |{@Qs.}<)]S/Bu/8)'*pBexD}Ow{61; )l:+xnIHt|װvOߥ݊2U" aDg`A!F\D8\`@]9uK9:90tNlEqt+mFa)^0ep!kc'ị +gE@iW66o )(q!ol ]#0={,*',$; n9a}Bk?D UNaKP1գ ꡟo|%5e~A^] R@YD=5 %OPiLN^,`1cv@~? 1{\ǑKdwW3{Se yj^f*|$w>l zN,StN .H.Ԃ}J7 ̚5_@Dțg6NT>'3^Цb! L:rXgSS;84fE Iʐ$fF6mXs[09 ƐcW!o0!\Lm c Ӽ2紴!{!t(l܃fTw(; 3b1PTئ@USzݝ&~hj:6Qqog_ʵ]"|ɲ'ÿʬsOvC%GuT xh@d\`>fҀqsiMJ}F\ʌ" =Aۥ?7 OI`L^ ݤ貉7x=FH0X"EoNK~_܌]x !۱QA͘"(taNyG"*;JK܏=]>EldC^5$VKQ}| 9,;BwW(ӅBYIZ1QF R5yB)yK9xefeHmAS\ @mAJn S\tim0+33?l9Wf?ݵ~fJ.c;H`o8;n,;0InO`E0o`qGi^Fpn4 h&]9gMB^Z`C1fxC'b5H{~EpNPOT1v_2xlϳJūzmqzkE^$d=\ޅU-@(Fh[':Uܯ\{?sRq]lX%t$Nͷ.^ē}}4Fsm _S8N;gO5@nV5}?KR_f坵Dfp]AEN 3ǹ#!0"8,~}MVtR,|w7Iĩd {JYE{[SwR8qϤ>r Z$u{8~~%j#.I>yqF!2AЁ9m`'\@i>4J @/Z7x0F8m*2xOV9۞ 3ybv9sb5H9N"7@lx,'3%7#JG0u{ߥhQDJ6U^=-I*e;Y. џCAu6Y5Aзn9]Ѷ0#젭YsOu8:m}kDywx_V1yB>,:*3[Cdi~ܱ!N'(ahޏCIV %%i|APJ#֫^]0[&@&tڈ#N&ak$I h6&THǂ{9ƯC@}\)VO98NT?xz93Qz[].|ꅳNñmb`HOjYU0N@rj_;1 \P2 lL*,r{duc.Ng;VH; w}){IW3;P[| 2Xՠ_l?@kPA/s&q,هZz/.W8ӵ 6BhNS+>wxh(ƶ$%gPK9 =}Tp`}};%.<:YD8潷NJG]ڸ%Fr05-㥠y,(q靍Jp@(¢` -/aTrE3ڵk2L5@$u,Ciw,\ zppvDtVxM! Sb@"098ʽKIݧ=μ scɍ ]@fNoĖ 4ڭ ??c(p +˳Ϲma]Po/ˮ(XV?HA5/:Bmՠoi}o@I/Rʀ1'}FгULb3^*5C@JaJĚaGV.VtyV?L.^xD~K9|'ocG7>6Gj@OH1-!-^Tv슜rkc! [Kzs&v6I9a<)Q\e ,3Sh v['w=ý[ 9_oP%+[1N1xd"){] sF{qL4(y5ό+5@IZ Aꁼz^%U]~J|GPu^_$8DjZKw'XtXd+[cXRU^Ge-]5Hs&}`lhRjFޮ;*oRsM&}v7ϳE VWFVv$mտÙlA<bA#{y]\9ir8X=j?hn]IzXQb.  jruE=rL C Yg;x*ej5l`OʺSgt'T} N]aO٠JtEP Z i3:!.lˇLB1^y.33>  {#uFQ,gO5ߐ"} w΂zU3'2KML]ioܧ| eUpvc´`FI,[-(*[H~_&QJ)Ko2mLşLNʐgHX0G7?-DH 0"Tz Gy $ga87A |\u驂eBuhUR' wiȰSג꺊l%њڊ޸Cpk'ڽAh1Ȳ:d9d7[uXhP#ם&`=cf gpV+31'W\@Ni9ʕZfX!y\k.JσJxM:#_.5z1 zH-œ+ahaj7mYmĦ8Z B\QS9ET?L*DD׬?B0ObGwppl8fQF[&twiKrw"~Ԓhya+{B7*ܡcR\m/q>N[3x>OJ Or4 JY -d78j*p]@<>:N 쓫OloLkGcs2‚|@!ü4a3:?Tk #8}]3}S%Y9 ǧ0jF>N_\π%WQ_tj|Yp;kz[WAu 1$ {ݹ눹Y IǙdZI+/+16g1͌,/Rfek&Ւ  Np|FH)`.X}YW!7w)qbmes?qHy.&U-\Ziqp1Cc%oe {Kd xk8 IVc- Ǩ] f0N˕xx;9_tOx)Ϗ#1lr7!:I|ZVls9Mp@SFhXz胢% =gf,/G0˙©A_s6Hj/`8xј!x,{vtg?Uͦӳ&~>ce!^k= Xw >BS&#ݓ/i90&I:!D]hȑu2ϵm'2+xFMfp$rJq82 I?ł ; uuH:{|BNgs "eoوewz K[|c@Ş&=0JW[@2iھ^(:TWٝ~/ 4c#A(j,G׶QQ|yZAZo*Tjbi䊴 #'bV-O-ԍYAӜnVs5 Ecd%_a?]bJj<@`W/UoW@w$y1RP,rJĶ7zU ^rjxꏄʛ ̢dyb3iS}f1|6Vwnڒp:ՠp*U?T@eP걒%}xGYd%Hh]u:vH {;pVX8 Vfɦ @Au!l#.J9Vtىf\M)ՂESAq2+8v8~f_Mla{Ͽٓb*:q-Lʠ`N@z.,xY?r{@ V6u0u}ў0~]l@`㠋D /ƿ6ϦQYznIAu`L:㴥dQļ#GXoPUYEYGې|'a=s״Fz㫭dԃ1}ڀ46%婫yxvf[vd`WA"D#U9WC:Pysn秩088CcҐ?Q""zb=ӤAWETy5&2".H|!W0-[@g);7D(ۑWG478ԚJT[Vx`EI>묲y+,$`gnyEEaNzN!I3ð}a~Zx񌺈j띎,K"8f9YK&}AT#Sx2{:/"y``@IUewRC8C ?s ݓ'8E$_MMV I0 R=hɛnA"⦟B)s% $=FDZd;uFWsg DOӬ)'i# 9jni8Tъ'o?U0ֳ?w91]pq9GoyCt&*\LA]}rQsVhEV XI.̝xlNJݝӹۛ +KEaB[ ٰ xG v/!R~v+jܰ)qo)LJ3wA!Ў_ 6@>U׉Xh>ǚ18 9XTEY\&\>069,1H@b8Ns.k'3(G Dݸu kCVmUlSXDjǫ2tlG\j=i,@nW AC,"*_'(_tNbcfp`m#o!t )FCg cȒAj+_MA Bnf |媪ȘJÚ`!ix9]x975J<_BPr ! gCHUPlt(*ò&LrEO8oFEp%q 1d@e% ,1hd[2N c,#Un$NnfSȄ]/bijQNY(P7}ie THWH)yA#,C_(M㑠JNW곧fA\= A>7=旑ɢJ>0ՀS dD[g /s^'O3^}F3lqgM͙6Zl64ZJW6Ky$^^PE1?8$ZRt5" fAThA' :fp#8-b]8VtMHōX]9PrOMr6]KΌRNt .Kj׉:(s^+YRC .죦|Z]tيcPE:_7 dAeeCʐǺ !u^P}%!Lo—xYko؋rD? €5fl%D%mZ4Tt JvcА2MFZ+o0`9I 떤{d85Q4I֔'0&B|Y"cMˮfD{,݈+pM}\ gݪR<]\QVrF4qn:mt_c V2t_gX@=P"&T8ž 4;W@ ‡#aRO{c`OWg8DB8iùCKלUOMվO3Jog4t)c8ɲMY;TX2@ Gicqr3+xrgI2[4rFY7{\.9Fȴ/R:XycŽ}$v6ۜ/l#!ҽXͤ~IUQ 6,U0EHtRq zQIJjPݴ=%oְFQk? `.0!$=,XY(EYIO6\|WVLhrP*UoG . @$D8 [ARQ1a1#P?`ON64ƣ D@_p = '9[>(Sm"T@/r~yw5ծ<ӲZ,ԩ?9y /XVڊI'hGf;gam28p k %DȊW)"Jr41C]6npH" Ӥ@O @+ҫh B(r!d<Ql}Ws?nԖmZLdGQ%==$C 3A;bUOӇ,W͔2kdGGcoޑUB soseL4e "} . TAZ ,d5ҿOW#5pfpT(VCMs>e~?Ӣ~&<*`p'ENÍh(edr9 noG HN&ϝ]ǑڇFqH߾o38'y8|r%_0 c{9N"튡8dZe,b*&Ơ[Klנּ3N׮(vDpex9(hQpmSuAFi >o5$hzQYqg[K &c]L9iyvF`JqUBPe&´\%I03No4r>d|0LvdQI܏}%2: un2O7HsrWht@jl~wG#/dW7Ԋg~W L7"p E/?2PuB*עh[VPʲHei^4h-%k6Q^cGStK+ƿ,Mfx냺O^7klp}mUS9(Xp*P؍BE@w%Y*}g\YsBs8aFiǝ2߼E1d^h!⟉׃_$”+_F r{87%Lܛ AE4kv@5A'b_[]bIGۃ9zN;ٰÒ8zGuZ|r"$ז Di:3**RMx_ =UD;L"#"Х)֖w$kG_FC !5&9mIgjd?Ne=ʾDe?e-*Ke}^c.*P&k_p6rʺIPI]()ρ] 0kRU7k4Ez+d$yv*jTUm|_(-Y@P D\)ch}D tp{ڥ,lJ?R-C崢'm[U!Jr5^8WiКmVW)[1z|y"ݿ73%NxTp.}f0ڄݢ=U;fKSC*Isg_W˃ё be+lNH&?{ ^UJ^e91fK̸,,O}S4 к.x[iGu |~t4 e.Ft艜^xA /aPR<`;yl׭EǰkʊHHL x%YQ4o8wF4@o} #k|7 Of~$,D/BWW](>|LzٗARn JW~|K!FW<|X^:_ͧLTt5.|7Xi"ge $Qf#[7=M%5$O y\_]9kk=kUד ܠbZpTbv.GJ[_yOOxKmikSėkeUrH} [`vNWoad^DQR. ,M:5űHua:i\j^Dh t凼rh+|<) elkS$=TF̛;/W镶I,d=bH * Ca[`> ګO'DӐ``PA(T8vĢienpŌ!ȸs41;/-9w[tl|l*R^S)F?`x;b*iF'G~s@ cvuϷ${&˯k=罶\Kc!|L%ܠ?RΡY%.\>yqA~8h]Cuazz 5ެ(RZڬDJVcUqg/%F!"Lr0kٞ_KXY'䝥/ɅU{ Aa5BeCS-/4tg!LOx02Lݳp&)}7/B$,k0T%i,@?X&ȊaEMlR!q9V Lb&Ir9J YB32H/௣EQHdSXg&PK⓫egpfu3/XG!64֫u5|^Jj,Q%n % 'voh;\tcʧG=)቉8#aA0C.y;t!&&tg~أ~KVmS7{?„[ʒx@q4K6s!@dE[2\oiX"&i%FU-ql-4-秸^۟_D5ͮM}LJŇJk~4e~hJ${S0h9 $FDr˨{csc‡^LyMVx*T :oANOu V;="&=Yр͒Pblt-\8HM= )XN@lZ>ˊ( =:kk*zg]cv" <&g*y8Pko 9hb;펁WvkyZSNkܹ8aT^m195>wrSwnm|H_/^z]<Xڠp\kӨ6B\Ru|o`Td(ZM}E\gf(,tc@"( m%qӄ*q9,;eN1+*ހӅQGjY`uմH?*exL)yG t=])JzW =|A}_RʌLFnM!wJ("'lR0ڀu-z>p)V1eRu#,4;=rc,=˜RCpŒsK#*PRHS16=&AyB޴x+ A(ߜ<pff26@M3`Jځ!Y t\ӆ0o5(Ȧm 1Mv@˱$<ՂM}@(Ck'&C猿`q$4Er2(DW읛Y è~@%W$I) ҟau)FG~Qnv<-ڈa{oD:sƂ؊ 7l-N(M4M)9nK}WToT 1K{RlK60v]Crozw'> 7 `jC>J T?`מMd5'AKGbWaAwcY "t*8e\eokjߎu8Yڷ&\ekS6[c`hDgYƎ;v0" a^aw:`BssWi7u@Um=,ΐEjUvL_޶5 W2Cym6X>W Z&%ȱ]fIJq&ZCX ]Ba"K "S~/߄)wCW s% n,GAO_` 0^H`R 5p/kyp9М mӫeB}t+ sV$7rtaLoah^\^EAۡHi'kM;h$Bxdݮɐ]JR`S?eq #m'"Sӷ0o6[mU:n$3'L(YT5(y$"Du^o;i`͂N>IL]/YŹyj~Ns-pukݣp &}t0E9ԛ\}jWXB45 үCuLָSݢ $XР!\$p1y%KBSdkȵ7-!7W&k[Bt+uXl}O01)33uYs @-,Qd_W" *#Vkm@q%Cm6p$83TnH`W( SǷe8ѻ 34{uiNr+p19uq,ؕmQ1f `鬇Dmt-XS^ijS}Xylc_l"]1jZל:r[rMÑ}k5O28I+{?(.~eZSԋ/$$fjbi3y$g=}䅄eGb:baAs6~}]/UgW::fmg-`}86)OAo Ib*9jԊ "sVMu˅^n'dDͤLEЉZb R$a 4Q#:#BAF\E662r5ժ.uoEo lȏn,쎛G7 "<X i6I#3 x)3$`Hw22eR7 yI=ݒ0`GˁAx)3J[pwvn_I8H|u;d3RTAT )7lI M ޢ \B)O4 .ϴnq~v$\\%-5z/Z(׷knb)uLXؿ@MI-Β2h$5c@ wD2Һ>S!54  5^`ABj<8دip(ׂ1FۀdaR1p bFJбI%h(w˯-F[,pbz;(QxOs\EΗ16=n@gXk!d_p}-.b l:؋8(.WOf-gAc{%/_/'xzT!l,TWFc!o`98Z}Bb,]Gf E現T)E |vus$/L镻nOӵȘr(Uڧ0&b6.4,ZE.N"Ss<$i8$uN.Z%w{YlRذ =r!B:EVߐ{fk:qw3q=:œ2HLx٭OQ)瞆@oKfլ+rR㸼0 M ́jq%N &=C \qƵLt82&x(A@O>it ;<ñISHEdĊ47'(tI4>ٝq?O"_`?-rU uRuecEu6qʡ ِ*WGEC,Ust7c"yF&'_}9 ^bJ)^8 l L 8~ ^r5H t)?,To<;Me\guEP&N1t`WƜUNm^y1!wI.xӌ473='숰?4+'C 7$t#+.elx",^}jB_YL`*UXpJܣE)Im*ޱe=V}iBzym[f`.&34E>vNI##~?(Ξr˸COhS1՝JB޾0-jjA$a\7M /31|#8f*VHr`W%yZ fR)O^%gɩ*G'P?mC&V.KLʹ %"/]J1$KG2\DbP-`.BXq(9 7!E sRdQڟ P2kJ~7[xWUI>*/$MeAbe@& _cBiϖpajx3|HK!1TΘd&npRfx^)imԃڑ~? :A_ 8LWE SP8l_uIoL` jtL`-%ov -<@9k>CֈJB62yFlXFOo;WtEp6;h'n̽wMW^'r![0^Z}8@A9J;)jd/Yơ{D~h0^8Qd*=} 1g9=/EZ%AJo7X>|Ź|V#q=U0l(⤝B3mYI뢇c>O-'d Z*'}u QfaBZJ*fGָb@o,WIP+ Z>փ3 g۲.WLViмHM0f[+|y|7#GԒn2 s.Syh uܒXP+-ȤI+ٛwX^Cw.I~|FI?Lbhx`C@ 1L 0.cQOnL77>b$\Z*P벐%q.o/h LL {b6Y|G0im%IPXj*ڝ|sNz?+SXu( 8(Gr\62! έ2VH-vbSw9SFK a/ [QFЭIRrr(۫1A94ت.8uIyB3jډʎYyJ6f`][yZ[4h6  A8-Uωz y9Tw;Z_ A#Bdڅ~^q1^dAR5ӟط7zzCG}H MsͻiX5.MB9>3m mY FQ'5(&q`bFNbt;3ⷢ'M-^9QE54Ef$qnQ:YBE,5+$T*{Qƀ&&:xd_gŵPzE,Ľq$-4dVRdyog7/ǩtW!nEwEj߄nR< y< ?7ijv8AyB3CKgD8Rs<ݭ7ϟLa(I'n00դu:eapxWj T):}Y i"\!x`"֏?f2a'ȊH"-,ZOK^<œˑѩ -o g|fRrq+ !w(gd)<հ#Bsr@.vxDܸ_%JP? :ץsD^YמNI9\ۙ!/:vcoHF!Lg՝vTnMp,J~LRG]=h\!5qsa+9%EFu(3sv+Z̸"K9;Ԭ΄r)~ j'qyCRd$fi*NVg0#f}}7lu8'f#} @k'֓|@3 oF}^x1j†ݠ2YNMHvyCI&ibfUJ2Kc2"倔݅c2 E֞*Ag`6|MKqӬW%Yy/H C)jT6OJONGU$8|{pW5Yʒ9im-'?4nƧBH5i):v-RW#"tfxI: 9[OCpIC[f/X4gA`GLܫኤu5;]QiK38.1+Ep)]G{L?e3|!nU(b (pQ2]Kү5ضcs; ނ;p̰{Uu WmUC>㥘19)ig0R'69aDW]"jV(/SH4 SHd Fv>ݏ>t-PJ` N"L\|1Gf~7<vnepS3 @ D?/U灠)e*_?Ǔ{_ ^a0FG p{ ω 2Vv5Y[':PIXjQq 2l$I+YձX>W0<r1(aρN" JEwԨeqO:<+"lT5w{+\2OXymB  urVt*8˞ N>Ҧl|m@8ywעiYC)Q֑fG ;d,f~!\^8/[[RjJ4Vu%tˢr So&+B>7USs2H'W9*|JzrdV]^oQT)\^s6X1gʡcL5 _"~ɐf%i9B249fE p Oh:3xK%kQekż ƬWhtj@@  ɾT.`V2i'ٛc: $ۢIH6R[t [ J-sQo}Op5SN!+As9E«B4PfG-VVg7s0W-ew)w'~y\'=m>DtNopJ˓к V$\tZİo%߽CE+k>okNEM+Lj%X׃;-twgrs]6Dp<-xzhyhaJ9$B&9xzĤ͍Hb{PG*4*]rם*H'9tC K4^)dtg 6u /¯YR0J3m+u:Y\c3׵s( ExjDtrB`S%U)g7q ,[%a!O#|'R7CR%֥j73͆}6mYQ$bR0RGg Y2-Zro*!#&(?ú0X:>üi'QYk6.og59ntzţY2^>DvW3AG7<rWpE9͉CK} 004.a#:X:qOڸCt vHhNs1aw۔`YX"ϵ] Yev]`  1[QmqfO edqCmWx'!LfL(&\ІqJ>05Ƥ5-6)f75KT cUQ0!,U;[tvSYT⎕iV%J/dSgTEo(¢Qm!ef_<<-9&b-.ܑ4 ~,O|xS̞jfazkL:3VG9xNn) 55q&z,ſR 7;HQC{[\B ;|lmp4aZ;gLC[xfs5.t}lW4OktPsXMGCWk;t>IΧI@KyӋ.>|)p<%u1,ӧq#s 9i&SFqk1ֻ[Jo@RI!LxLƒ}lQnzv`s)Y+TZUR WCNchsW )cLiG.<ǖ;&fa_gֈXЫ{G9gZ΁rp |m# Z)c5EݿyFw.ƕ1IMg12Z{I8Mq8G11$׊ܹ|(5]IPrpΆ*JI- Hê2C+(%Lػӄv $_6ІAG:~Lޗ)\cPM^Z0hߎ۵觗̑jSk4{Yη)M@cPҙ%grЊn3DQ)J2AeBH#?*ڶe5faQEa s$p[!Ak]NJVy|sz4vV{4'n6j6ȃqR߇^;ЂumM2tH`&[n-:=P^-+;*`| s! >ewIe%a )<Ԉfz(G>0~٪J2\eE Ō > KhylsF>k=r%&PCc;pIֳV ikG4tq2Yd^fR5Swr9JoY+d+HMgE]3 4 !$ +^7ˈs.TN<=]cgf`)p2eP̓u' BN F BfDmT7UIy_ae@o2ňN-B ԞKAV e0SoTbQWk" d&J ;/ݲ F*6S$ӐD^Η$ /b9'J|@H a&jT|zU \+k " ~<2 -:Q0d)-&B|_=)f&:`1hsՀ36r1H TAngPY>{?%u5$}hwNQ䦸<Rk"!1 5OWrT.7M{rrLڇ1+[Z@75Y\,+v5g^|4ȡ?(<-ɺ=@/q7o ϚgG+O*hS.P(UaR5PK%нkӻ2~懫}˞y?38I`&^l_ ݮ[h'L"g׌G4Π01SÇ$ocp#M{nuǧHI'ysB5NhV(նB e1$&@ςih3w֧X!(vʽip4Boṷ1C"OLS8=Uz.3SטG4QĪqT^sЩ3z이f4q~#uIOsgTevBA5]t|x8u&󱹬Hh4ˀzqx8]WkwREQy ZM[&цTto˧߈k Y"a.=.jIMԅx]AUH ͻ߈_1aO,M8)vElduN$Fݴv;zh\ESWʋ\.Qgb>"k&&Ӎm3b ћ V Pڣ9ɲŏp(` ?[a/l*&>T޻̤> GkjhgW \2>ڡyaS|#6nL)b¼m_xCBOIyC*8ɐJ(1])P Gb^[; H0Lr`y3m2Ʌ"Ycɑq(t S[RhN8!ehBQi>هB*&FxNׇDs?aa1L]s|ШREMŋM%叺.#/hfSnLzS w=^rb(BgtDD?qǙpjtN{+wkPtIMPR::x`"rrTYUgvkB)[;M| bjhg NQh䮟 Q&B8i#c4p8D-{,\39HϨcHҗ !x%"yЀF?""N&sKwW3qt>+>p"릋x=kk1Jq IJTEN>&4Arõ95LZ-YrD$ّ2e,4Fmc^q < ^)JKG0S jN GM7$Ib?.2 /L8'ZeVnwxI; TT sDx,ԼYR]?D\g\!3FfA`a"/Q͆6&X3ow31h EV[kJ~1hOܯiHT|DWNŐi$b80W-bRk¢` @c>y;:M0N-[D NT8\mC/ 6^Hr'xZ{c~z{I3/w~fhҷlMk"Iږēd0Dr1~_v+` `bHف )d%{BoNS^',xkћ#ٰ'v)R&3]}38EghKD$pڟ{(Z8 ,k`'G| <M؜v%]4Wbtstj 3ٯhb^N ^!H;1ߪSg%Rj,2^$tLn`B CRj{Msi?i3TB!Lo߼+ُӽ\zzm`&9~s7U<,DʔUɱK?V+~ׄQb;vg7g}5B\όIE PZͫٳ?2:K bg#X$/ ٺ[+Zѽjd4 4șgQELѯtk,s.j7`B^ /mc7q:;K4u Ä aMNNS^%؇N%p S޼ AEE;ۍfŸ, \8 IEGwE=AWޤN0Ut7%e$1bf58} l|cƒ,"K"=vgz؂˜{q,=}8Ѷes8ڗx^%`%/4\FV}LmEVdg;0YlU] _]yZ).7GclyMfs.3FCXx,{ǩwHj̵sk=81Fu:AZyJT'#4mKAGm&9W>t4cV@K0x0[t=X ##t-`G&@(?߬$]1:ebEGKx_.Jɉw1xG(n,/?^({T㕽kbq#{<5>pTc@[#B S^gJ>v$a \V&3AI+bt4?Ï0HCF2zPnT5P8mwD&jptyKj5N`.=jkFO{IqÞ(6m>jjQ)pQnMsf(Z9S!^-8a&+.¯#xMXyX\1'+-&-߷Ɖ58l4n,k.4_&9q,`0 _pAg:^[FEP^P{ tm£&obV t~|6;>K#F,6`''W|вYJ~ΊEVf37ۗܥ]!`Y&ǗoK>șΎj,Ie9F}l*o#릍 X-3L&6d+9Opyi-ydN8 3ܦi)S9Ը fۯ>][ Bu`Lܼ≳+!A8m'Xy`D.k: ppPH9ߛF3Ғ 0KDE Sh 2ԑv_~`A"Hpl! E=})k ߝu*hE.;"t;r5QT'.nAF&v2hegqAX.ƌ }6)f,aI`-ԡPVuJő?'S#Xp1|0giVK:`_g8?fO+]Fd#>dws#ȭfkTj2,v=&D9AFSi7ڡE]L"T(:YxI'Lʘ"_jLם>fzAMRr." `fw@.J ݡY$J3`/&Nbz;dKl$XY ԺQi6Rj[G*Gk:AlOs/{Q%Wsd|ߤ2+^goSFرf_Z7x,lCUq1`\Т51I4'j=StIܿMt-}.D.^ N,۸-4^L7\dP^zΟX e(gFN30%M}嚒G]"='KQM){QtJjaǹ>3C*~w+qIC`Ţpp. i  h7Vl D<&VPWbNkcY6UBP c +K=Y"T _f땴g ʍJ*ג9)k@/q լ->P"Hgh]PSnм*Y7 eSZFԃf(B2.P\ԣ U(5hx=ߔޘU/<:~D _7 1ʱ#`d?t :m.}@X+=i,OqfhF"94:CF/{[)]hwQɄ7M2r{poP6io;ѩإ/CP̛ubF+~HYUSUH24 d:>p&:⬤(LBӒwDcFnhR3o Y&%`D 9u6̓ɡ"C)q".mC kٌ>GF2A\ݿؑ+'yaG:Ce?p\PK4-8)rs܊k_-ֱnuu'pcm(LYEz4P2@0|a%CrQ9n27X`> w*,Ci,KY9Ǯi!n_Y|||k5|_~cvsDtzlWL:+~^z#\(t% p;ykkx\pF mIE% hNgUAPU|Q6a!#wO]P;02ڦb.#6Q0ғʬFw SaY?Gr*7b_iɃ5ܬΗ:ĸC_; Mp}S +bbMPE > T̮0yOƓ!:AB*U+5.=8Jޖٮ]lP߇ {%"q bov6(ߡ3[2|GdubbԬd$8C)΍4LUbٕ[.ҔYm{Fd%(=GT<ךſn+\h)}( K*xKNeha _ԢdѬ<3 F4JkiE )ۍ=l@U̲{iUkU)Ӻ=dBSb5|HJ[^93M&[Z\'h=ڈ,`!Jtmk-_)V;M2vUyt2U^-` i(kG$ |J R蟑 m2CN*|[!]͂d^\ONQy7['`t2{N2UaNqzBoY );e]nW֐ M{;ٙe:{`&T2(S;F3k:;p襔/=v OL 5wLP`+*F4'@֝ kGdjAybG¤Izw:;iA{n A"R/g|ԧ9o6AQ| HZnj &'>/{Q4N>T3b$|_Q"fv5"3Ӹ|1r_N!¸H+c,[fT/ч`ZYuEdI|Nq֛%jjNYQeolE5 -)dC5!GZعKXɵG~w3aӌq 7|HᏽCHzs ,]qqU^?=kj)L qzu$1=eNݾNh ;^ރZQO?9oɮ4:({[~Y lVv@NjC JDtv.)Qt+D$3Vf"/9y҉ :s>~lPV~j4pt1]U#魥yǫUz,㻄;kِ'̈́4hgE{ ww` t9å`D)4YGS2UѾ49yW_)_鄹!u &,Shf!; C?2XvʉtPu_8/nWj55O܈E}4JKreeʏ;},XUAa aSBM175AǚGXp݅#zt thW?f+fԔ4t |Y_  09s'9QC˱}3€gsdGh~=:mD` #ۧ_OݻQo쑿dᰔ9#3SA.}Jo)7L5, 7 ߈yD' FdI@Vgdl4-R~l#pe+':V$4AvYu- o` !}JzE*#gDYm;ڪP[泭"d?} EІ|PkQga_m_JsCXE.-jDŽl'f/Qx2H!a̞t%@@}&%aЂftBAW5.kWX;i!O.89pŸ%ms 8u0ʻ v#v'+^N0J#J30Ss_l+XSupu*]\g Ȥ\ߡl[| {CqǪ4UC3[{_%WZv2Mu{+2E@]7C%D#X,|8`LWMlnwysǎ! K vAQpY6BJt^5"izk넢7 12yì̄-:cݳ뭙%Qক , (@fڅ#N8G+25 (.GCg*+S8Q|J6WJ1_d}[nj{+amUi#x5^ʔ|Ia5vnn~> O﬷@j k$%iŚH~CyóҮ۩Nz^ꡭ!NjA(`i78X@z/D~nc|}FV7Ԉ +:&n|[TBZCa(Ҹ|x _$$2"]Jge$0Ҧ'[Jٙ8i:oÚXK %L'|u\BlHN$ vq{]գVy(SG$K\mL9JB:T?IBE4+˰D&{nXʅdF[[eXRb$(tf/\[wݒGzjIRUc[=,B,݇=f#+Jjְ`MO֭^'qw<ablڄm.RlBf2zuv/$;=~9mϺJ[cgdݘ|Ub%u]e3{]Ӛ\Rn!H -r[*Ö$%& +(BPDW{9-s3>+T'>E-JcCTy}xp# hk#BM>UO1d+p+n7>F)k3[}G3Q2PQ,0']U}(Y/OaVRy?~ɘz%V^BIn|^֤ S 4+mb,sE>{ԹTQRn@4.^NZ(^QqG$}RX ¾h_dsC{ MFiO".RTĮ5KA3ROA.R>pw2(SW0Zig?~JQBBByYψVλtD~M^n{O N3}3*jhRz6 Fb ɒp8D\O͉j 0&޺G[c[хTꔽ)mk2gsWHq.vHѱ82*o"3 $b͋}/&JU1,GרFHߙf_ |x[90#aKdoQ= iA/=9+ ::!Q'WjM}紶xӶh =Z&Ǿ+/JQK$/bU ;x~N=$AgI)^kz9.^KK㋈K@,(,J' gCwyh+vԿyrI)w9Q1cIHyшȲyg;Ooʣhݐ`DkQp<fL#h&*54 ';Hˀey˔? ̭|4.ZN掎]Ki:ء9wp >r_ϡ6>u(O:E\^&9x$GՋ<@Ny"y}&W©~](l~["Dz Ϝsݝ_|ˀ=0_s=~ <`< ڥ{Sܓf1wqLbYvb7kmyN $3NW[n)ԗiW_ :xd7M"8<ۍw-{q>/eAf q霆A!+\c'þrR PcbZ`$MS}^ )0wbEFhK6ePd2=*ṟF:ֶ_-F}k@ 9F8o8$atL5pI!2f_ΞHjRz{PkS H/޵/9V:Dwc$:z/9(͗z/2>!ЊIeX^Mg} 隈YMD"7ӽ8o-ܔAkN 3%c-TKyG*7 hpN8Ɛ2p' yxa]C&vq}#<6a$`aȝ1VB64:H[Qҵޅ8MùmrcT"Ţ&.z[Br IJ/_,5RhzTe[5p.Y\6uIX͠ B3 0BblGk"({#I.ґqiai9&h#C\ 'YNjI4XrK\ q2҄4w/Ny:4ub5V?νg*;dU9&Ձ(f!ӗjU$W}(Dž1 hZT0kIiju:t# kr$,Rn\u˞VW - y~ XaK^88:2&rK]xmaz O5' kg2Tg2MlTgJA$b|kp_ebpw6@͞ܦ.lJٖ" [Pf&lSTvCsǡ=5Fkvt YBCĘ(HƔ~_W#.|-B$Reza$Y!ECb+ qrCQ:м DžXDY_6B2>>z:0#9q FYƭŃ[ҟlm*eͩROcX4SF`Ks{nBTm>1^z+U2+NV\ #̕N 2Z E82NxeL ijWBm :©Dj)CƏ@xJe)hY҂#mss9Ӆڥv!J\%>K†{ԇ 6|4$۫.; _(zCЏ2h҅ O`“VKꚃȓ'Af']v},2AR1.V0kWLaS,-@n䝖lǞ<bLHHc8TT!؍nSeԻMưI-j=:Gu- cukxFQ_Uh;d8mެ_}M+[} dDCQPˎյ?bNSI]W '_ J-ȰlDH4]^"PFuz Q>JE^J{&c' tgp`)P1K 3IFm"K(΢l}> Or800Sn5l@)A],N=QnL^iXWЃk'Tei+3ڑ= 0䀵ČR)-W)eY=6kAӧ׍]+ݠum*10\n+634vrT=b!~ؓcݟBE2Y3 eXQQªXbDt" IhŮw e۔V(ƛzV %B%?xr\C J"B<^A+w)+[3l0v uR$/lI~ULDٜ;%Cp|vhؒ&ѳdWwϞ${N2u*#~) 5VeɠD^tUpm;k j|t䎫_1_ \; !mڨ>7S'0ђG=*7:,D1~gp c41qfm4"mj aˆсŪ0X-F |9^S"EN"tq֫RQ,韡|4}DG Hn Vs|tk(( oWeرԬFe oޫ-nL*>zGhUc} ,kUqI[HЌFhedu7|ذíVX>]UoOSݦ>\_ӥAUSEh9dwi02o# Ŵ}f&tXUi͓s "u+`);f fQjϋbia72=!,C!1J)긒7&ˋT\JU|F{拹ّ*+sBS6%$H8Š'୐>̃uf*PnmDuUHclgDZ7Е;Akzϧ:z?[#üT!J17!o\q~^` ٕQ,գWԠ׬ʈGmd 4zm-r3EӐW=V4hZ֖6k]SF l(0bp.9~b4;)PM%U]|m7'pא@J~؊]O3)V>}É Fz,)9e I-/Bs(e22֕|՜Ȑ!@xqqY >[\noՁ`AjuG Wcc^MO>ͮ,BTnF|:oOU4C_cCrL2S9Z~(yA)~D Q9PCW1mrj)Fn/F9[%XAQ&q%{7.-i1h`+#lur 0;N ؒ .Q[A1#ޭRRKY@ِ-0Z%ft;c #M@g 3qui᫠A,&~<QZlF ǎ.BXd3=uZ?/,ĞJt}OtW)Ncc9X 5btJq'Au$j-)M"僧?}#|]Az51I#_X17&6mE.Naƒ?U]@7Nn6s,ƖAH@qVS{mpbUĂ=*05+<Ϥn-0ϟYT@EbBi-FL<Ys"WHQDM )ҽOړ=x!RT6; lUdWfGZ3qlɂ^Bo~D[!L++)8!)]VAހx 1¸@˅EgMXwM6 +ϖ&[yվi9qv)^hPf&% o@&!`2O?hh e9ۈu}H@3l#[H8RЉ(} 'F+Q:I~EXoKQ{cr]PL>ϊ_-;,ȿ^߇u#4 W7Pի Udt2'gDm A/$؄&h%gVߌGs? V(,Gfc#hevp떖|yG04d$epSW?G4ޭ^v^zGSwR2S\ )#Q;U#z}p;#^-;K^w@>.%kw\*R}:n -zDpT XFEU$+Nl{!F[Uh(sM\<; xf{澲+`hކJ Q,9=̜ouyYΥ XYRUdSdOhq^3 j ^к K)v2#z.U(?*0gz {81"\{tvPzN׺א1Fe+QѼ{׳i@`rϙdǣg$NqG\q&Xpt򒠚õfO~1m֍;Gk75T=WDZ~I xq$n;gڦaԐv;D+^̀:JTNʨ=֙@162v,zYw}p?)2tF^inK! 8(9Yr)U4Lb{euKspPߵ1ۥm%eVW€}UBzlڔ_- ͜H9by}7HI %$Z2/fð; Žqƙ\j&m%E|[2!m)cP|dnUex8:v;U;L/FD[<ly16[RYw2 `8!5X3xC4IGYbA֌jaÕu_˗u "mS5:59RV*|\tyHppRb | Taq\< $1qL6}<gA,a_s*lwj2=)FS V]~^N?-@U?H .hPne{cD#|s ܲrLXD7 e{ OEl'|F0*XtU1b ;jDJzLmЯudobCBPoYYN:̠Y[ S)`#oz4pigKU2FJê_==Do"-_!+0vŸE/'k е)!"_HQ)IͲ7p™B:Uq5Y/}KSf<1$QwEvMxf|(TB U0f(Ϣ] 瑣Bod;@ ҈v}\]6ȝOZg@ɨ(ji 9T\ 㣁ScC4U6ډX'ݢhM_~Zo;Ч"|z'"X唞JQiN= W񧱯T)|}mh\B QĢuO]3P97lI]9)* L_+9yU ځU-xqTJ1%}`i k 2w8s =.VٕlU t} }ʋȞ:;k9 -q֎`Q΅rKݟ%^%\m܀7!LCvفT6Ʒm2Y˃ʊ,.5tWz s@Ό :f3X+<fA(Ú\i=#N)1qIKMmƷ-JdHiYЗ35o@GF h)7`e D&jd'absXGe~&U19KбxsW[33$ً7g4t) |Ln[6&M%CKr/NB&RW %ޡӁ)I.-d/Bަl& =֜޿{W9؟SѲ+eP}+]2LV#8ftV`z#S0U"YqRFЛKC oxɱ읞 MF^*֍q|E`N[6G(=ҾVΐgAQkZ"Պ}ioQDsgc.?CG @*FL g>cS"C^)9p۱@-Z{+ #QI6YBU^9W>3^+2`ǻ TwP&6Ջi%h1V OG)wR( fJq` ?;koBsu?qttgv.L fI@4*KYc&ڮ1D6*&Mopsl>2d8ܢ7R7 MM\+eXIV a'h% G] )o؊1-2Zy;gG[Zbf@%40wJM\zKSIV%f&YT' [|q@7 {RB?tdEuqwBeҎ\]1#͏"T tz#Ef0V%eK F0ۡa֫} G^gP'c&aP(UWoO >ॱ`'WXToXq.;Ic9Q>[Dx G}S&h}C({.TaW!dz3yH4Wr`ϪcIl=񑵾.; =E6" ='"s p&}6P‚Fw5\.-aW\.~ÿ%T-p44/dpM7aBX6ze1Ŝ tn W_ %!@)KƒgD B›[ح90*hQ0טVYTzx7VG*QzL|uIGI,-^_.t6J݀%0ɭ3tB/?ix^?TbkPRo*9Cm喙o?hE yǘxCp-jYMFv*7kh5xsm *(˺c"M`JJj+/y?\Ú3t01i*m`ѳ!PcYHNs,1]G }{͑zMr>P"Z-QDX!JŔ^RL׹RpV$7ay5?6J_dh٪F_pQRv*)eaO\Y5܏B##ݬHEw} D+[wȧ7v,huײ0 \‘:RZo倭^IсWbgvRBe#4@%Ov0QUӧj<$Ѷ'VDDZNnw-NAt(0 E O V 4 s0D4R}=nMe /ȽKzI< 09GenXұ\,D:e/N"[5͜kȨ6<lbtpX٢E !Wn}2`ó2/PmKQ <;3J$[RD[N͍AR:.l-;hgY8ץQ0gˮLz̵C'gk}0"ēAM TkyX 6%ٮ5A1Q;J')S"CsB6Ș[0̤8@^3=Fv-hٿqjKZE|ZZn~|<:ˀ&% &5Lw ?A6@m7( q]%&)(aeU0)^dml\'RqFªe #6|zg;yOfr{BN@GM:;h .@+ؿT}:<7}($4 ^N/F̴G#o=41gJ~Jc";]KeOMwvvsi# յb\!Iu=<&%'p5-#V`cC|Q;RA(>sV7w$5Ap=xI #dY/~Gna, :Yp::Fʟ0~lƤCke )/),^`N%M8dv3 n%KfD+ `:!K_0Z"(^(%]ۮ_RNW(t `)UO]g#T&X>7Q,2i7}P5F>9 O*|X@}~Z>$<^ffECN(J^P֫re7|yh75a+9XZT al((Y:IdEifQ茟Kffh9JKCHPÎI`lw\ޠAI@)R:t?lj0:L3-A5b}ko뗣t$zm't[¦wvUc2]1y`oW^G40EJ۾NWұW-nYN$U`յ's~OPG.E" nIЃ+b8yπz%X1_n'Fa+bNVhƋ3%:ړ#ezӣ(s-]AwY#L5-'z*]RZt.(Q`8w!ǫ\b6q*@U5DŽ12B x'.$8mY^$mV-mg؎{z 1 $:"#˹Q/B*4D_i!M\,3HNz4eu95~K{KKtM.l=u[5V3WX?eVTv&! ψ=%BKf=pqhCR_z$mtgMkP|+&pszcNJV?$U8Ucjg!: +[<}LbA PoˌYom OAڳ! -$i<5@Nx?r}-_;㢲̒Xb˝Ӻ+|d{"ZME(Ir!Bj&kGU༊ۥ?qx-@rRPL[~r'%.Wb2֎[^m ?/ƦK[⤐Zҋ&e_+aCH]_u;)ܿ *Zc0 dmONY:<f.l=Ww&KN00c${CZI/tWwB%I+)4XPl˩ 灀ywQ4fa[#豔*`\q; ["KSƖԗvC6y6Č.gpXy;j0!*[wp>d;`4@eo\lD3b zDmgsOueT%9/]*0B9Tғ#PB66)'5P$,5faȗk+:0t[牎puHqaP~"@V#q)?l m]cڌvHD\g"( zL 'uȅVyNb@()4 Y g)65%sv*U(rG68ޥ bԫ :H F2`FE-Xwe>6)K${33lܕj޹jRLE+:Y/͔3yZi:]lc|? !=)ƻKTYhQCLy&W)b#9Qr+߇q &uZ;{pBԿ1u4dT^?.ՂȬ4r' ci6NQY&BH_(K\a'N.6P(@OVrxihUgf"pjO1Fqzty3Z ,Kw'C]'`D{,87R\yЃUԽ-Cբ\֔uӿBʏ5P2^xZy1VGj|[TSrCǙS3OԓAS`/ȫ3v[ Ϸv[/hZ+H1~,;@(죏WOvnL?@eCV{UK ]*3a֒+/{#bN{n c |#y *T8 dG祡.>#ts6Yy*dG^)bwO ̜DTf, E"TQ_1X%@}S7'iOMM lO8:oD$BMR[:U :y= f k׬ %(D󫴮,IC8~S4ځ+@CqQ)\2l韰D:#nhfSѹW+xcg۝5@_j׿,!62#RE൪هTD VlYgoKHaZ:-B<+ z- Zf8E5|T5q岑( Zdˀ+9^x,ZLbrzD%0]ڶZO4yhPZ 29{6 r}ھ r$ubrxMU7uDjB n+rMps 8 a8V[駻׏sN>d3Mq -pTpo9S^b$h ?Le@>#j`gzOL|xKZ ^K^wk v3JC7ki 8yC[Ŷ})9 @)(Ddy% `2 ĭKʪddsO^K"DZ\! deQ?#{8j.̔.X9rs4 c>qE U17>%GuYeq3!L+]lcf+ptRZ9(g[шH}T@|hA X *;6Ȝάė9P*{Э]ќd>;n,2+{6?)t(YqJ7װA`u@@=!pv*>g?g>QHp0GTcP*<:'*~. tK25_#х^1BF\cϳF 8hm{َ3o]zVK"5F&5!.<2kRYxG%@Xa,Z}*fsiAu(^t _`#c6`,w4eaTÁ¾H1UaZT H]lf_4oXHp0jn9TfWJ4$L5|ϣ -.whǸ{Ӻ&xq=crnXXzȻA?~ gD/UOƙݭsrilf lz3:HfϵPt e{;YֳEB;'ߨ/_ cZ 􎵈`Ws[UF3K5f>!Kub47ocapDK.Dg™vecTYE0] jXv|<;w&8{>ge)( K}'HG[-Oahjb|`8eAxgK681~(0}JP 8r6ێ%_qb<)ւ iv? jM~u^_8E4vr6e倗ZUF|4IY戟6k"Z"j_8O}=v2H65O 愯-x(w仕lEVPڡ>ǘHZ_i5$DEMڝS 3͋ߎUIfY0 xMݹS s%u!rES" /](90~{$'Of؎Ul5h~wIŐc3xRԣNyym[goR}}GMʢP#j4b֡?AL=48"숥+JfOlAuU$*!3fm>e2cTԸ>DA7Zh63ʸs [ G04݋f,ĪH8IP:y^GyZ&QG.~lɃqXױi m g2YzOUcci7#0k[zh3-?`9z,E/ <YKRL)j|~ vpаQ,aZ^'@tKb?+ɶ ٭T?{p6yEܪt7ſ[iUyu2RUD5e,xm1eT:Vc%TIIc6 w7M~7Z5e"ߍ ? t_"뤋ZtRp<u|. R ͇z@eDpd ⋟o%%i*XI=sZ'Ύ[c)H[Ifyzr WL  sڼ.] :ޱ⋂=vsI3㙇,k8y+XE~ s9!#r䔢V_ZaD<=&h2M@0˞XMmٷn ZS77.r4tCnOK;P:e98^ )7ȋ{8O_7˻"Uh鄑:؄jBZ RXy#!& xy6IiѦX^E4Q~v/جn2qrz#)fn7l5i ~Ztgkh|iKV>{{'>A%cJ.AG&~֯c1~2,U>!!*0Z{b>MVw|ZX ,Qfy][d'e ˅ H*?\ 6~CGy܈`kF{LP@t_iS[wzȔ1E5̉ kF8یhcY7CD vT$VE7%p +ϑ4םyIky-9kQZnG2X^S"1w UW-K`*10iT+fo<=`rcޯ Ug]-.O=Xm¼a=#~`x0)u%T܁NcZD߱.|-L$,9WN~V@A$Dqdžqt}j/35zH\[dԦ!*#|eڮ/8^NUU~ ֒Էq>OG6gpU@0F"T$g'v q_9ENKk>#E`N j$[ju:~(8st4x%$NxnfMU@O(^B5}эnt—ERBE Cy~4nv{"Z㚹G'> K/zR4mEk(z} HZs߮+jj?*SL4a3'w^>GFe_!D{V*Ϫ4<.YMFeahV7GljιtBb!nRDO30 c] ED#TD^ə22Iu *rt2QY᧪Rb\rz+gd* 컅"2܋Ǹ7trթCh `/q#<|SYp.`rU 2ċee7I_HtI c:):GmeCpf%&2t(n׷ٟ>~܍.2MKl|ǔZ!-2+4|/Zh)[DP B}z( QB>duMؽһNj;r3ōʇ RhpppX7L2rV$* }v53|2O~<,{:Xqufc75*hm ,J liixl_ 32Ł0yk3۪,zX$^uE ֡7T(@ d.͕&Y?,Oj*7ϖ)h&IuOo+C@6_ϲHMO.2]02\U6\%oC+ +&ڴ_3xXde2hZqwq\::%+(q\@.]ad gĹdm2{#vtz.-"q6EsӶP|\謕dAcmWJW+xVCTr6R|U'0tZܵd~f֘|SݿlB7Vr< 0z"\CH:O@X x9 "gŮ%԰p,Hy6p ^HbG鏲RE=4ۇ ބ\ XcJxn6$^T zѠ 7M|K= Ěuq2ީ&w>7NmtKwĸExr`>HP(3 t?]-$oٱ2jϧPMy+rXݜ"pTո"*4+|j,PG[0wqU8 .Wn u-H\3hXؙV"=đ.F^c1uj<diV#%w72t 7XDDE n ˂wXE=bC$`eox_wmѝboC=M⦾܇Z#ߌ{geT; Cj )81<쀇>~o}$IQGdNQ R>ӧLꮁJXlHNvb*jQ>ʷxpoQ&\K^cZh9AX9Kı qHt=}:-1Z˖NGlJ BBqP9Zv|uM# jnG\TFxm@܊]zg k0yKU 쿧>P=^Tz6lj^.n'/cB?lj@x5VOLi0`E =pDL^!Kت_ٲ*e; ޲vPSGm3~F, gL_RaWx?4xuv]G_oYW.;0w'FIz$O{2dViX N>*:݀G2o0D1BI^bȕS?\Hk8n#߱_mQdP3\m +wYPazRnێ|4JqP|zx~nkD0?-WbLMӎC;vp6^[f1kEc@S6vO |oCY=zY ,4T)G"&~ϻB;OJ9i0lf&qTONeQp0eo%⿽=0ד}d1%iC&oq[Je%MbΙWzQp(\ }70dZK?iu}SՀ18RۘɊ#x zpe{~kzy~M>u1].B|%OA> x߂6{2l3Dwېg#CZ^\(G7dT@ ܼ=%G[x i}?Bc}F"uäUk;\P/asZe]TmѪ\lٮ ʝل qz9k ]wNSW,7P*#j^OzPwmk3A-6&K!i; 5ַ.;1*p]-ʄ̗N{P2 P=[̂yVXL?|^,rVUhAԭJj:$Жat_E|-;_QY'U:ˇ5w1u8S[h]\q'/x(kHPY ߽ęo~e*YhXo?I\{~+p„}u}|De\ʡ``ڌ/+ނ\'GRKI D|+W+_./iTo > >*jb:m;1 {q:u8_#f*df43Q俙SӱbF2(r[+qSuqV tU6b#PZX7GA;`[$!t$' XJB|Y%2Isfo^ bE\6ޏdic)uԢm`nS$tΓSR|*]PBJNPi&VȟJ28kbІ;(w5fcco!}s3$Dhpfnh Q*p $FM%NV? f^P6ỲK]%a_ yP~+*Te 833{(}"֕rI0fKh)O73mbq@8'EBw扝\ oS\6}CtX]G={yѲl  ?b~W_?0hS4riGx0RWWYdH<}trPG&Ki^4@mל!MQ['TF?FAАmwlpPC袡2"KUJcAO]#4NS __pRs衦B7&)'-ڍӋ+&٬\sVJoQJ k`U >#!¸^G¶1e+"Fj5Z6!Psҧ2ߺH{"~sQGռ&"*9('xy֯=#mFޭEqe[cE.J=~f R*p9V Q=:bs 98=SK F' pkFkEδ0AGpǦW|poqHu"֡{D;.v ~ a'lpw@}aKvjW!_)IJđ׭VRިQjwx0Ѩq\ M.>v1H15w@ٶwSZV^R[x jjew7s>T;[T. tCj D(,-Xc"HL# -ނx䖺T( )7iz'[ma<>.(@2c<4=fÍ%(pp"K >vT4W)_ݾ5|Ntf2ScdT= #S~cl^k l}6i%7 ,zSf|3Ԫ@[=3s\c$Y7 E+03/=_،~jґ@U;R7`X5 [/(wY&CaK$7^ s<>Y%D}sTȬ7a1Z,1huL7G@5g~z$KS1+JMLT4&+)"&.SO^YOB6 Gl7O\0v̐mAAmP50w ;OS?!/gv:$~UZΏPQc6mn+HT޲=D w$MϿv&=Y*LfK[ qОSƊapGدYJ=`G<)ԏ &) zcwQ!]i  ; !A1BPh>[%{蟹2@RR‰,Tr b?&j[G-yBgZuvf*^7==%;trG ʇ+MLOwItUI<>8ߘy3S#a./D ^Kq\r̺d#`b돂ɹloړ7,:M:lL՜RvUv$3〲FfdbIa1"0f`A^!Su@iFlEe5<Ʋcm~C#BXJٷ,).ⷠS*cvPP.OgyO/?H$Ðo&=^6gy"讖P4QlF.GwhT,]FGyKTK6,/'eA,c4cm`07H9d9n \l mK8@ϝz2J EF;P^w #9VV2n+(Ng1@6SX2&oUUmfyg5s UA#!AQY*xcb5݋ȃ=Z[v]JSa$/c~UEkK#MS3u%f+ȗ+27!s^*||2}eJjRo-אfv𧄦c Z|D/M:@ i^,X&VvhHlXgm>*0a 528iq[ y5*S.j lhX+bܭ6Č^QDw- UVȪ90yFȡL͗ye69S'5;&R˩IKyPgP_ ʴԨX_$mʸy Ckݎ×J۠͵~:_KSb95oqLA<`!4@<B 㻣S^}0ʤ e?!LId7j Xl9賭#XHG',EYiƶ4d 7A~,%2EM[2HwэN_2)6\{: tjr'і2`7&:)gTlκqZ2곁 \rIr҄]^.i)%!)~sưSc 8# 4DpbV#k)]eT^^OW ltܠk{l:*ІsI*^Q ܗXkhw kؔ7(udyǝ2ͽ<"r`O{;xf4&W?>z2|w~o55VpZ%h pf5-%R)J-]1oHʾ}WNEzm5K9.D5_,ek_ iɼ,sOig7Ƕ>C8MTa,՝Μ¾^lZJ4?4\%[|= jXͶu n?TŧOeZ{Bt^͜?P` \"kgۤUXCq}ΚQ}qB*+:kK~xpuxi3ϥa߄~PpӜ 'He*D)Sε"7>9r 3vr?HN8&.ZOHA3+8Id<n~ BBᲒMǭ?~[Ѻ\ߡ8;z̲g./V5HUt&GocmʔL #2pw%} Wg7m Wؘ(ކpY'y=Mc/˘/Rv^$iT- %5kmUp S^DJNQ;eobVAiDĭY7pP3p?LbEv4.(LtwZ-ER6sc`0ia ]ƧjoX hk蘴Gijp+h@SJvnfw]`:| U_ulRd)8hgƱy6pepʐoF{ev Ǭh疺X\T.>{N\Q, !p7Sȵh&'sPA(KAN}R!ZTWO?mN)rj'P3rd)HiOXctz.qJ㯧R42ކLJL6;CGyu3`Hc%-[ctM;w_l_ٻ^OEʽYcUik&j;ԠFF{ugi lhu-H`26z@a ɍ 1P8e9 IȈ4}~nH.a"d9 3Rlxq1 F66i4`jJIL |u>tqOH32##[;<.O"IW jA{&}~Źe0,V2Hx+^0y8XfřD%}@K(msYjt^d@N'}ȂuɌ6qM.'3Pb=BN#'hX)d40D ^-cs+GoJkL@1T {~?Q?i7+4Vwyl(&@`^M.=tE.ɊYo-2):%TOY֮Np0Ier!Ai NC!LP Gv_Bk0Q ՑYR~_VN߁P=]AyQtTޓ֣{8o3 ZE řS;d4 S.Fx)GK:Vq\$ ǹϝ=vLPt0zUΔb:!lYR7D 83ߗ0ZQ4pLSOQxn')ʑpP@ H `wb,k H J 6ַb@$:ospɉ#?>qiDa];Li7Zxt_zfbTz'lIT#o5Dj`F|kKءKI2 A~\A)7XyOyS)2Pёf`jB\>!<( pĔ(.a3;E z6:[,&`f̒Sqd!>>FK+~VE^໺(In tB<*z!V^g. KXxi;[d>Fm&-!ʿN|4 +wkoaN!r׋Jl՝1i$D=׌4?0 Χ)xW}.q+8ov9OW [*.( ^;`K+.1R{ɗ& \@$7ʹ70s' \#LM [G~CoHx3Gv V7OaV|7&J7NŪRǙi_%f鮥.2A,xک<ŒVBr?+= Ig.#F"<|PANx}-z܇ȟV xߦ0%RfRb_"tIJ8dc:HɞŞH2\482@rp8sX",w'n `C3dim}|_׬O@zqO؁& xvw 4ji 掏S$TA]v' ̝33$Zd9.ާʘvZW,\]'udS023\mh ? q'ꥭkϊGBp t@l̶uٟ@M?ğ&As1,8ԕ^Tpp16@ys{qsר8<@,sB?Fk`lQ(/r y3FTlFJ綨Ƌ/tXgxAxٞ%Lh:!& h `L}2&mܖP&o=uxn(rlۮwIVaH1u'C1>.V * | ^rM^5?3uy[hTiE/AN_Z̶% ]דQ|E7һX~ڤK2D771] p >_^$Րq(*1{2@Q4kwRVX%e.ąF@Q¾u:wg_ș'D(E;GXi?W᳙H\.N#>Siw4&~6 }a,Kz Zt!$ם>G𴛜Y`xʤeʊ L`wc5=wQ3;w]2Y3]ekn, i2\%#鉎X3KW:'%6o:rkfSr#0Yp5#F|d#/Ƣ)\N7 zf-wnLd-78QC8r@zSu=wq9c/-ԋ|OidUy4eM@)L=)4L i={EiU@$}QJ-*eYNg!%`xU_ @s/! +>hs%lUL!֚̀T\-$Y{?:hg^:Ȅ1 L`r&-$ MF%-Sm&F$Ej60 hK\Y]C:` ۵r3[z?'+E͌jׇ\ֿ}&ۻ\O;B0#"I@< 牟d@([:;uENB,fE=1x#r*~(GKPڼWpyZG&?iuǓxf_Rڧz—(ߤfMkqJջ 2 n$m  tg[aFk$ys3%ak6 G<9A':1A^ Zg@>2*qئY7A?hA6O_ ڜdq@!Ǒ~G^U:WAM+#%fT;T lRki2lḁ́_u@/rzy Zb5>[{Y2? HsJjbp.翦 l1u꧰ˆ7ɆieԜ_J0.#1R^ '!DٙN6(II,ӹj쭛rB`߃#|p 5kVQ.)ߓ`^`Fz(p[dfcABً4NZP ;l*m >lAq&JsY7e iLc?7Qe O&ghMN-NpRV gV@KIQ@Qձy':K^UU 0+fa_:\>27WȔP=bJ?6%̄@X_h.{s_#/]9yi~ ;碆"P tyQ;b;ł%]z}*`@Ҭ~ۣu)CZV ̒&TYeiyxr:(_?bhex9Tv(e~8,N0_E T>'Wї]njK)7l4Q/ '6'uv]l+*kBUQr3NN"ofyFA#QJ>Ԕ'yt%\@,3QnaZ'+Z?[<\ I nwc%5 D@a%"NjYʞ\hIlk8Rv؄ ]5£@,CL{wf6{n29ߩyz~ q+l;U6n-˚:ȌԽB7Yv#=$:g3nwfg(yrV.hZTn<"1Ua;Cq4zP:]P<5u?hl9QExvh{N%!2BD*ToY:>Uc9tʄx!3k4Dvv8(er<> 3P G Ы/m|H*t^t!sy <ExaPIcZ6Ƞ<#_sJ  e{HHCX( { d)UTysTD F My*gol 뱎;$%y2="yB?D8BFvt ߻Ђs"fKd`4^#fT5Rk[pDrns/^9:q#{%iCNTh:?kr!,AalHpAiQLܥ~(>Q+_F"ag@} )nC;}؅7g4ȚU3awNߵ_[4yi,;Krjdw%~a|8$kv;]kB=6T >!iz֪Ƃu 2!//,|PPh=Ǻ24kKwR*TD{*\fp407юȍ XYԃ y")JzV82*3w+x+A.UCW˥ؑ<^3Bwx]uj=謴Be7l>~ eȖ}Z$4hV2 hJxA -af(ybTja; =*3Sx+Ll,IåvY_sށu4skQ(Od/)9L-cxO!F5ezlJUb4F: l@Xڱ}n4ʦc1Lao[]EE0a/x $mĞag5A&pDx]zaOzE`)kڬEcٕ{?Tk +WBQ;.%B}}GWzkFO!Pwr˼hΎÚs+󶚆]~;&s6z%.ˋNFixY`,Fz״ vC(悠5J#uʼ[}ϊeC`7@x酾]CG9nwaRp}Ϲ-=XzeR{S3RX!Sb>d=jɲv0dN$rQtXɜ;:IRkhYXo%WKqy5 R.g\CzQUßuI%C(=hK a9+E! \cG]@G}6D0]vFH0Èl{e,Zr3;j4ސ,g(ݹ&}.-Gt\{3G\`Mʽ$`Rj#TvvO"ۚS45tKmaxQ̦އ8_;ߓlr{g[jw>D]|ZnP,+ᱲS_eQd~6Kiv07}S((H 4 &+Lߋܑ[|S0ʉ/؛|A}F)qYX6ݙ< ?r@nsٻpN +<8QShZUVGI384~&u' o@>O#-9QaaU!~| *鸠.vo@d{`c@'*ܼ֒\JU e &QY{ ~h$i~Ͷ#+ fx3b8 `Ȉwr130Z;p2"+J |Sz61np ㋡ZljqΥ~,ױz*[@ >ݢDq[utx&ּL'j$2Gб ,OtB⮁$jmSRp?xډek D">*lj'k-D2Ԇ8Y2:9,5F'}dAQmt{dy̟,#?/]&vK/X Ǔ3nX Nsƻ*ʣXIqVWzL5 m}|Q7Пِcהe "G;S9 cL`ݙ I;@Iuqx [Z%Dhek8˷ :R6\k&ǎeJ4\-QϨoC> uzD3X}[Wu|"!tXȪ[ؤ#Y{+1ٸK z5v:{2?+̓Ǻ7_7F$ _ LGMӼD$b9m+0H4ޟ7*j+@Yj腊{qK7c5;cP̃>96\O^:ɑ7;}%øst 5.~qKx:@y۲jԷs@Glr3^A?Ώ|q ?^DF^H:SZl/Ybb_檛r6>vM=8RP!(%NN΄gZ64JY6Մ~D͒e_я u7%<2S/D8evI͝g5k^sG(ox/ᐓ2ڭ=fm6'(9bD6 :юL lM}7PDM]7}uGxt6޳-L S2_KQLDN~#Ȃ|@fmGq۶̴=͜{@;8/JoqGAmD{ :);@VGg?op^3/Qٮ뷐ު[XѲ񽈜>*ߢLM7H-Kq$PM@VikCo Mg$}@>:8k  R_|忕ĹE&1~zCYr,2į+YNsO7u62A֣gR摆J)w`)2ȉX6$yc%hqI^)׭- o~D6֮{4>7vĊzll$n C[;Z=u&1W_0ύ8Zbw&Y|6qDP̘3t*$Y~ g=^|HbA)N"_d(Ӟ- Tv\*m pUR">D ׌s??57fwK `M^ެݮUR,~͛o av8!i P{`~䋏@XjױUO>&939CK6ZykH\Pz`|ײ/%N:Fb.KţQyO|}QʀjԥT$K^A&PWښ?iy*TTY<@Q8NƋEWOr^?o!y׬BMą[bowbbקh;zHu"u f;1DO_aSH2!θ@n.1B X `ZqYG\7"ORz{^1~]h δj Ev86bXh$Jp(@E3K X1r*.­ZE<-S[0,gWan^lߑWy맧}jl2*rI1!Ɂk,*딩 ^ƾJkҮzJ"v'Hڏh0:dWs1N+3gD^_g26q-8 #-O*MZ02wO̥9GY˳7/CH:<߹Bmc_bl-~x|_<*ԥcbdRkHA#7mRoGS|gc `gn+"/ .@㙅T4ǐl=QYˆ숟 \:Q+P q>T'O0 {h>6>oo FY빩ebYZt=YJ%%ė\6z޲4`!?'=-l/2[wз6 t6W/y7}JD:1US#`ȶ@t1tw5g!3JN˳7KHs1[5I/:/ 84^zUrU`1q+4oj%;y6}?(U$^ fFmkNyOV N4\x6Mo1Sפ i^+A$5E#u&s3bvfڄJەv1Do_i6QBqbHI'lNJa*5"7g߆TUW`ʿzr YlxiU?<߇!0Wb5Z>(x˸w3bl*E@].Dڑ=Fuך|RJ_:P654]Q+l0Rg}/cjw.*[qś$ҏJגEr Unx?;pXyB`FL,cKUf03gA/c+̰D !@wr)jT~EU:KuB",A-/#(qOŀJ9Q.Zgoi&0WN5,Kt͞fxC'}J =Џ׮ ӊ9>gf^P~s6Y«`8 ( jx{-pX\(RHssQ㒒$cf;@`ZRzVoȇ^4@lgq}*xEs[pPo/Ol1ڼ_]-fq(4"US6[$$)o,u ł>C,GLIݙ% d̼#ĨBtPCIrNøJ>'HR&_d~sGN7EΒ|C;Z̥}uzdc5,=+3s4Bϒtu eAa@?lKlɭf&bہzL}s&%CQ܇5nS.PhGJns^Z.[']6NL4~z3_z+b:[ڰ;7k2O:Ѱ1Jrh SD N C-cCLv`uKnG?FI#PK qػ?|hT[Urɦ#LEn6޹Sx ĵC<^b4yO i-M3$?7I|*\w>z^J6MRatlaEje9U =>%5ZO L2>iS?_b ! tJLoEY xk`Yu-gM4 +CϺ{Pz^O^sdB<[/G}.-C&{y +0/IE ^ `E @|7X x;2qTZ'ȾH?3Uds,"U==}&ѵ!]Bvaj/ѕNx@5a_ 6.b*3h C^ @W5 ,"Ǒ D?`C՟$mK0e)G"x.Ic y}yk* FMNA=jGUfiIi'8&ӛH O43j|W%Sǒvlc *"U 0ɳE͈7E1nzJ')aLE2Lg-xs[Xñ6Z+N!WA%e/4 Gc@釙@0* d(ʖw<I> ,Ab٫oC$R?FQZ={+S K.Ŗ/F)tH|k>>{ >3Īş{AFf$--ISX '"Mf\Qi*f@)N,fY+kt 4ulc4***,`+x$aJ) *u~94Ud]-hnZc I:Ztq.¸?Q61Iܓe"`Ok.u,b7n1-k+Jәe=`h@h4ܕ'h8Z))Rkj=v}em#FqFa{碄k|bpfU ?.8 ˟ٓJ|5Z0K-} -j9g? 6Q,RYmv(_,p\%CdNM=VN`~Q5qV4OdoN5wdp X t磱5n:#\ML ."]y^b<҄ 4)RhORo&d - lJω3ܹUMhV~{5_ʎ yt02;?``,yGzq3bk?on 0emYƝV;BYNť$`PM JXQTYkՒb=bCC(#,S?3>h(P,=~>)rjB'DLCm ֤Cz؄˶4 ]?ltYn EqSZjGgsTh9L#;*)^sMeV?KZI_y=,tgKuю 2;!K߉Ym8'0_PQyb;CIeE0LV }߰%2Nz4I?aNHEH%h_Š Cpg~.ç>7kg QB-G*J嗟Q|O{zG!=d]nSGz ߡ^|0? T97mt&M_Β2vhY+~1݄ݰ]ydlVAV``)+\#?ID MmueUOlFjO@^P#ٮ-;`?|߀I!qyC54p$#Ec?&](=x_oDBAڇ3IMˍ/& XTn7lؔNXC޺DcO23E.]L!-ylٳZ!yοT!2aKqY4~TNlDUοuYkO <ÝRzGvw=69??'T,}W?GkV`}[| \=md;j K 1ՆޱQ}tzq+)2mubq.(qQOtzG=;2=E{ңwvDñtdUzI3nh܄*K1El[foiQl/㊎&A#_j/ҌJ]ےϔ l"(כVDWP"*!\_eg"`lu6\2"zVP 3 RF(,"g9`.E|K=~ M9UAU% JHQH*&6͸DKgk.HD3R\Fj&S)Z[Ы$뮢"Bhˌ.=yT!QSfkBSA2d⍐w-{@]v"MQ%#9k,ܛKgW ynPjPbk[+r1`yeisuW"«#"vSɘvb5SE[ܝt${CSD$ipYLFiAL,.8]2>ĕ9ð^ĉ/"}ʞ0tKb_ǷUm%gN#}Tq׈_7vr bn,<D͕t `yˣ́d:X'k*d{4L*l'J(xb6T.?"u_*99Ӛu{v5LC ?$z#)1@jK俓-0#KRO^Wzu d鞆eng4H S)DGS.r`T-l J(N3"QG:=xal:~M_jWiL V2pLlb@gY1F{ n&$c6LG[.e^;_e[!hYBo Mn:V>lu0Za)ZNK9a8`?/ޯ0_M>G$=Eewpr?%Ω%.ɧ&6)5Ouwg^ae_,qI%8<"nkEs %b/@eIq y*@0) X.Q9PB`1,-Ur])OUEnȍ R0u[J^:W!#r-S6ԟ% j^V9uԔ&Ԙ=3VC+ o~0'k s}p#j_ љ/R_ӧ q|G]Ͳ&m!jP?H3Xa0b.qC G:(  |{Ƭ]+8r]6q{)&G%<wf*0w80`^^S&uaiEqUhzty?7٨g!;t}mdWJ1zN;7&n'Hִ4vOh~*^4u@+n`i܁zzA{㨘zζ+9 [,zbV ^79 TePD;WwNd ~~QT~zqJ"!X n mX2 L;> qx m{xv c/ٶE,SQp9 Qe6I z|D^Tnj[7]Ű'*mږk L@CӴ'FX4̣!a1ud8H )u_DLZVzUb YMDBuOj2鯣qV/!'9pA)$e16q̡nWL9 _wUQ:ƃAYrh /I" ʝ 9brW`tR"]=EHnتWhPE.]n%IN^Jsn- $}1 aTwstrflNtܣ՟PN _t ?]Q!3RLuf\IpG.q\~i5W6LS@e0Ƈ˃:EСrYd)?1wKpxWK_8cDDtU?J}Fβtt 4moElhT騠-@i>&rf*m|aWm6&Y s$+VaRMiΈ4{ 9-s9MK}s^MVDzFf&p5Q|^yPj Cu>%fGR~Y*'YZ]}Zu'4o壈`Ew HTsOl_Wm\},#H>>zfZvLJ)9JГ$Z[OIF%GAT0$̒U?F}Yj=cA(MzY h*<1 ABwt8|ũ2zLY-?kDG̙Ff#bRT! H4'9ﶅ7fD@i:[RkYI5%VjnYUD^L fXus+!29,1k*"r?ɬFhe7aݚQ'fퟑ$%GjҶ9ywT&?A Ona}uOhΖ j/k*RC1j6x\E4yn+3[U+(YBXS"goM0%#a|uB_R kك?n Fws,܊*0>7 ͸!;v@ G˩I: ){1~OPܞ`i:sg,r,y䄞In fxQ\h.E+8M+7]o)ٔz*)9nyN8x|钃(KgI}5eNo7{FZ;2f؅6Q/ȗd8M^')٣K)E;d,QpCe U揭qHz*!m *47?F #T8`l< 6|49JBvgqoC#gU9O 9EVL- aԦT@]Q`(<9нMU9G7'iCCm=AG=p~l' 5݊{[?):7g W趽F :R, >L/j ѦLw.J|B%8eή8F);]lU8F6'#n?r,~_ f38[#'9-7R--ruLyʮ*zw++)x27rzP#:jIx_-4*J.Z%‰ķA^et(ڤ``\ʗiwD=rNEN[V>UǹuhJf.t.H+Mdr$2/X~6ʡ 6q"s^l~:dޱ ihqN:|MKnǜe:B`eB2H >TW"/xyND0(gW6a7Ks8]nc~%F q+\>GЩTHeL%߯>76K<ԸyJJ}/6/Ki&ԅv8r|@{&Sy ݈yÁhb>/ R}߈Ey>LE.&EeYkP= &HӛHRd<;G nKkVR[5~f5ę@~\ӆ"0?ra. Ň"H\xi>dh 5vاF]HILW`7}-XO$jɀҵşwXD0`"k679#|;hLz]]J 9z'ީWޭ8U=7|#v08=N_q~-[@54 H%$נf^s@ymJ)n?K_&RaE<-7+ACpvVʜ$yfpqnzsr**y[MYL@lA?Qh:"}_ b3X uڂݸ#` Lݲ G[&mTaONb( q8N3}ѽM1S: Jaxȓ%dzMEroF`~GI]En˶eU'%102o&(d6QhDc(|ĽE6{μ Weԫb#i mB2XQ8E,R+HYW"T0Z˻pm9뿔"SX*/>.*7y.T|m#ߌR;w; h2y}c,Zg}Okj:ƼPMID{V6C_2acް8l 4 b+j_k1 DJ2LTx<ȘX Hs@۠uNʘOqwIK>͆@u뉮]&L=~q 9WX'ki4ȭ%J*wmegD@7[" MJFӤ-S B,]\srpy-A4ƅ&c%rE| @jd0`#8*9ڪ'-%k6M)ֲUbfT):bRI<n9šy! Dl 灕0 ,<]hv8BQϯpA|V/RyvaF-9*s=[p)|R`n[ԉPjwܛeVƜ a&|@g ʯԏ_J9BG}ㅕo*.fTki Wك˘$ȧ3p,{t\^NVg{ Aj$K m;5 ؄`!p3~"wB]Ub?ӠzӅInŊwzEgY.t>6VnDTکUX/Ʉ`zf} B)l˜)/(<1]MpT(doirbɮ7ODa1hb9 L[Hd̡p`W"މyňSd uY~Z{+, 7X_'9=92SF7Od6hT1E63ie 3T@XT %SZZaVBthiːXpt?p8U* 9' +N JH;9M*D,{AK#\/< t@_"R>WI{ 0ڞdt" %{aBmKODɷ"aI,d"iX:luaSU6}!DI,@98CaѸX*ftb&bJS7J8lH7腴sz:|lJR3|6~cR]_fLRf#L537Nn:,akRgs/DFD~tyz OBA@KKOPh9pQBS]@15egWݖV//|u{agh*RX}r*nӭPcZ6ս?ҸEhx0VRdKYhb$  Bͧ rBI{ZC l/q{_b6 Tyӕ%X҈=r]wOU"W~-_"UC&k.MܧE+-& 8O\jv ;e&\r鰥*nis&&Dx5MOtAm_ /R&%E`: 0Xo24U2*wĔ0iTAZ?m GTui ѧ`PklE7*ܛ!WAPz!WZ6⫤sɺn|Ǽh}Zfjrx-[PDTUJ#gd>ЦJE#uBk? ;`oT9fRK_-uX^t^wF'b\˞J~nK|q_6"% l]{L'bPVϱ2n5~܁SUR?ۿ_y3υ?Hik-A6ž?p$[9Yy )a]kM2(Kx6GE f (;FK^碀 `€ Wk@Qٔ-_'Nոu?a"ϖc|hZP0`m('V~k\4GTGx8 tc=тԵuU#}_ \fR9ock,a'~.KYJyA *֩ڜJZ!fJ: Lu )a^/}ȆN#zZe4 %=?KC'V,FC]Zp$872X?Ȝ-o>`q`/.W Y0fDᄻn['zU<`~Pl[j^VjF U] T2^/PSk2e} x ,~d h{Q rOT"h1c2L}E. U/l56&rg~ctOOm5$~G l|LDw nԞ=[X?Y[l}W(xnl2WSwqi>W\S P\. R,"P``xbIi9+S|V_uX-ڠקH1;]ݪOa]k4d~R j?YsMJwKΪK ˏC`9L'2I8xlN2e Qts 'HQ0-XwIkPI&q&;fiJp?*3O:ܴ4h|FC/)]wֶ֯ZA'!u> T`)N 2(-婣{AMs CXjW]כ&neDIʚX}ѹDHkQy 4B2@|J AĄǡ@>IZl`Z酚7Zzѫ,[GwݗvkЏdU'T%G\9Sj?~vw4 46Ӱ*(yx'ww/_.I!u mj_A:G2*Ϗՙr!:vQD\QU$-|v{;s-FYz7)| 'rD FErB#c(Ry;oL=>1D+HbaB 4H,Yb;gY!,1m,vT8#5]=bF~ '? Tl"5yM3@_ߪ|EDK_)wA_?ݥgQ~# m7#.dC\ju~l?ݰzb["q0q;d}Mօġ%/: `?~ ?K4YRBW&TbK90q? .S|~x-A[cXU4#JY:hϔRhjH6H|feLpἁW5 =e=c$rٻ2%i|EjkO蠚XE[̞nG T𺹪^"|%L(K$5|SK$oS1R sK`ѐr  [S"㨹ss[R%94A>裂$)UӠ~8ii\"rO :nqXtЏ<$<*UܸB/Z99|>Og ƶ櫦eJ#yNd?*f!˧x/7R(k#kbhj``1QCF5јU*YN0;=z"6I,,^ FT?|@gUau F!y,5E+G~(374HYCr\ :VE6s6IrjOֺxt$xX'NKC9QW:EB٦?.:dqڅ`LHzqW$@eZn) .:DF};⪽׽3~m Ϣ3BuwYCBaJt~O6Jm[eY҈ťNa]O;xnC`AQ>F|4LFY@o܏ `ȓ<ݷi۲÷QoКiY9a1}}1&Ի͈k(ӑH6lrt2Y lG!6|M$xE^{\#ۀ}Ca~{xg\uGš&bK nW|fgx6gdhȨ񾱾]L$DJ]}ܨV4('QB?UBՍhrmw,G9RQjA ąEJxFK _A-1p[ GO{372&gGhq<TsU%OjݨsْT'ho]9:W=}Sۓ[,P)t8rvP箘1>Cq"b=Qo MrQ -jNJ}=G'«LN ;ЋtK.-olP*=Ԍ v^Љ!dqYl/48Ym8*<f֮C'H<Ods9㯨'Z+*X8{:nG[>T©{3 :H9{7P`Mf\[ŎPQ_+o"AW=0j l` lO[S6ŀ@3O`6sW'飽1e)6 gK;uJߩ1 ;`{` PxT(?VӴlS?Hּ&aV6 3CƬUl?}|Ha^:Io1$7fAj7\1"ydq w'=hˆêEڏD5U~uuZ]HYwrgɺs]n9.@|: %7!{T =xw vjfqrvعCէA YW(IOP]L i.FV̩WH38ɲؘnYX/o=a{ߒKlMI7Y=oIQ /5)8^Dgڑ-gNBA{?vJ0 Ober6C,Z7+Iz^&m2%T\J!`jحM#4*☞}PRиR1loIYOmC:,YZ_o#=)aO {!䘏‘0͊Ӻ& E~0\yR ̋9>  _?3-*b41Jq4H&״)EýWmg $q`u! ~{X] z17.T"`zazIZ'5lZV8l[>v+7 c=}ܖ3׈pL\ZRgRЛJEH p HiD>:&`{MD 81v>Ȁ篐諫-,8v }ɵl[hSH9 78.(J3(҂C oKOot=Dm2V w@F+L9-G5k=X`Ĭ$fshmJD5gBKQiG/$Xjxq{_l$Dv-č$oϑ7"4.Ս7qst3žug_ 1@k):.zM}JD+}t(o5Y{nvzpo:zlmǴmQd'+psմgcT.pTCg\.g9u`?9-:S1fPU:z ./˄d\p“!ɴ<]vtD 9_&F%'KF?x!GȂ[rdh:$Z+i&|ޣot/㑸[nEź|f "cxB S^#gix~dhp8 uQ` #7kW!'7o4~26М&bS>)>p0N4juRvrAD~iZ`)W,rQndu9:؃yXTBI׃AaQ;!q&VWBT^brFʹ P[;;x%9*P&REJq0^eMo97 jGyC8)rI x'& ~*Gp+~F 0\1;CL"뿥,QXG]n{D%[I %wT"-'>>ګ O^>p.W&| f.l# !%vn}#jB34S][|Tb+Vt + j]@8=˭BeMY4182*NEwg |S鯈=}¥AP}{l]@*(R'+5cx9PיvUDBWEdի <~۩(%20ؠտ[tekqmǫn r͡k0Eb\LM$ҽ8"aB~M[ A0bz]R|Z3$Eڥ-!@'_~ُ^$.Ƅ fYlR2n_P2 .+=mNPO1Mȉp KQNqՅ%3$;47H͈ z|C$ ^qZs.X{3y;<²HIZ^edeg4`_7TT%ԭ@-HL[ ÙJ?P`D&_ 7wwVo*,'%g#ޡ70[-~cj 4ov,ߔV=^:8Yt0Eq]!~R 2,muٕb/ᙾ_.9ZB {~, h[׽ɞ(QYmm"/A=q~Q>؝oL}!y ^x0Ac pKfL `5DТN&_"Vi! ,s*$[JT~ģy¸T:GbQ* @1gÁ@Q,^L h 8Q &e+y >ȪՍ.MA~oگN%j`w>MYq.>4>,꯾Ht鱑jrzh&NZ@7T? Bsn*o03583@ϜIo H[%j-{'E=#yhǪ_Kɶvڿ7EYp])9z|^̴. .=ͼeVeNamz\`hwωm'#.u)uA{Th"+i v:Æ L߶4ujbЙfp(`~&/$,=vNT\އ+94tdAvt/{~&z:2.oh~ JN`$b>bM&@hfkW AQtq 2:W.u8E.II'Cԏ3d:Bzbu2- p3YW헼}F?)oR޹ʡGFܹLSw nW<#L>"O|sC4J|5 ˑ-+cWѷBB#2 0/Lq?C=r5]xM*4'2T8!Wx!\ԿE>FY! [usصTq&`@vtz,$\(+WezяݡQ ̷ d%?6h_.An#GrÌ];m;tNQ\OX&!X{G; 9f-Zyvى ^l\G,NփAҾW\$T-ꢜX0)ZpB5{u1}api1BdAEđX4PMш`R0BhR(mNݎE s#Ǯ9:KYye*0߷Oj ]rTczdYs~ %UNn\#0Vtc-ٝp8hbT&m _oC0@}t@r'Wލ('Ψң߹wXiT)hBLBx[QݗGat߭hq84[{!y~#%ν+K=WÝ/)3k}?T=]3,^1Pnd ͇#MU 4Y<Hbo]&p/F̧?l1%ڜV ^wٜ={.aܐ=*$.C2002f0̓|*|;d]5JFXwvW{ E\Ǧxc\@]B Ϙ΃sW'U3ym)Eiesu14sfNy3}$-(qzu*ikV[t o/,'2 >غ>ÈDnk LXkɉq,?O 1.y\Lxj? sttsN3ZN,{^`a3Րܯwo/`xm0ژ?D`~ֹr@t9maKP~R, wDsP[ÇveV]i/RnLCw= 7%ܗϽ5z!sZH!/H>vN%I>*tW5ubgʿ s0[{9I^vyw]d]1N!g3'Suw:6^% g=?Yt *T 2m2tه=UvQYY_0WIi_-k;N?7oA8T'(!vBw6~RCL\,f[A`!̕G}>T# a8gpO6 rg5'-Pd??Ecm/{g#$8_" ,w7 gf1h,l+^1GBu"(բ[^ou*sR @2wl2}44~rRo-9+'B,"nc / S}A1- RN6֪k"Yn@`=NzR$ %L~yG'\`u9Ru"*TY%ey:j)kQ&h7e ^dUQD*f%:ʝGPOz-mFu ;>S3PuS]"T(W<}Y ZysqpXN< _)BapMEEj2-]v @gA{ܭp|B@2X!btMGĺ{(/#YB0&HOv)$3f F5=81H0)I7vc th/`>^c.H5AzwЫ%݌O؂3esCi6* ^YenS1y0y'ؕ]@ti٩u0pʟ >)ٳXT釒y6wi@:^p]pN l]e@ʯJB4L9΋yօUdz^\b]NHj\MC$+4JmJ%œMȃSw}NQϔMpba"%m,2u(2OiZ=K6\<$ QiEv$ WcMVy(eFj2#Z j_8 @cdFz @_?6L0&.KO|VZrB|NHqݰ K Ap1*dMSRxtި>7r6,)b͏c hj9$a H"%72^Sc>,XX19d;N@=/]&JDt;5aR㚳Gל^Jڷ%YKAw噯U+w 虷s.e3;xa (+wJMS}ZoAXPEt5 Fv / *z_Ǐ=[4&G/1y19_&\?Elۜ$t7(9| -3.e3pbP_o`~8Wb3]5L֖K` jH;wewX'/oAxnY$8{xx1Eri%c/xI;] _4kI7xZm ?GStFz>L 'k!4U@vu,k͞e5h1 mCؓv~T-Ӎ<BodڄpqEcʢ}?8p|슕nž.vv}ՁŪC$=zm!;Ʊ vիGB[*|g:81H aA_p$5㓟)Eg;{O(Jwی5/Q.]cn9Dx;pi$s4K'<߃Lx /*Mh{so0/%Ad2kw}$NT#_ze[*YauR d!dYRQ(%ZIA(|5[ ngb s$8a'x&7va ԡl% HڱBKUkYK1AN4⓱Tq0vjO6iMv~hio`x5 Rb4gqRRBv:@}.spjetz3*:|~HN:I#E`13 X*:cDl˖ uYh+o _;<.h۸I2ODwEuܢ=fiWj&I''ODÚ̾OA{a?CG}XV"FFS#=h|  Lχ+Ymy#6 p@GgԿĘ6ub'[de59h F}|PT.8-5u C/9?,JilyjAnЃݏ^.ҎaQ N@(Zᜌ 8IkLDx0Bxmȓa2T:Y+ E6&7OVfu N 0f.Bk㐩*\bB(mcNV 2K4)9ĔeAAr:g'?dq8wE]t {pO^b{Kg^pgSw| I@@a6W`ҚO]z> S=iz|6 $5iY.1BnF#W& (%Ҫfa|3q^2!%Ʉt;jd9{i:hbalzd[[p':p >>9a2fkֹha&%9=1_5SJvHLg?ZKn"LP Cr1BY ޯvla8ld58!ސB6 o/IփŰ<;6o"$k!ɚLM]\3bk5j$.s\cbG "Gڴswt&)e$ӑ:Pzò &A't'v>:f+],"ًmB-`+#uՒZlMZb(益7s+!4k A]ef{OA9}v̥ޱ[K!lY9\JU$ɼFƁɶK `i$@ݒlx a_3T6dAwbŒ6Um{A [.lF[65^tEFy)m7I㰀4Ck Ek0wZ= 4F-R]o9>v>v423|\:}1iSu%Ehgk/FplGݻb% *L HJo. 27K&=p]0S5+eaq%y&JޮL1dNCC(6*N3X Z9ɕ>ާCِWc%jvt+균y]*mpH3c;/mru|xĠ1֍p1Ea$IrNѰ˾PLD'EpM?H ߘD>5xwQmeTz[!`?Z+9_e٧$ 'cͅWrzR66[ OYiC}F^fWu骒]ӈK혠]h.)(]Uȉ*Olz0cf{| O9 nyYf4UΟ6|hHfU&E(KUI{Hm݌fI߬_'L f5mq^SrD w|bCӊ2Gy;5o#_:b_/{-뼂NwNJ8# 7YrWZ+Jm^z䙁;?Q#(Kp({+VZ;{ۿ!B >vw&Gƨd1+khfs(/u T wPu*rc,/= l`\9dsI?^X2n; 5bvP*'4 |ӋXZ.>|::J CӴbtmۮ4/bB jӉ\A굆lBnN}C?>iJm{XȊ1@fs"W @3Tc-UDw F7~1TWQ Z7N,ɽXF,ZQOIm$+-_(esz~3pP @2%hŘۥ1W<)-ZXLѳP~I]L_ܳ^??H?(< mRmmB '0 s*.I̿nr**жO\7¶~hqo>tW.#iH*Fw_`HVir.~lѵq ""g(B 0V dOT9mP'Q`eV7%#Z?:} f0 #piB$<֛!<>W@{TP0]KHoBA ^(+,v"v֦"OR-)5aA /L 80CSQ/I<3_{J|,|an~Ww|Pg^$DuP&06{qI"_P3_ʑϿ0nۗ[g(Na,伮vuF{~{:6FDubEɊ ~jaLZWvTlAʲa\A=Y5fFOmא$ARljJ[6zeӵ+۝;{ .!+sIc79EYz A0͊2OIEޯޞ~fMpTVnî$u+cCjy} '&%=(umH/E8ﴞwWrjEOT4,-8G'{я l7THBKVܱ{BI kfE cE^4P0ұ?H1GY#{e~؀rCKMn {ߵ"h3R򨶾-aX@B3iƫV%!E;&'tL#1ʮo̫*N*?ZwgDuMQhjPuc,} AkV $Cw%Q ex Y?ߟ,@#<t.ۦ I[͒$$lz(+RL̅xq _AdRMONX>ַ9Ie<"3S?Fg6@ak wG:^`fU'&>5}D hoB29=tJ A)tA.ihZW&^f$E΅VM!qD2C_dtXȟbjQ})A#Y_;v>?$lXR ;f8C#sjxv~9]:Om=4 Rnv)7@zZ؆Lu?}^ y͂OKr1z*줘qI0EZ քhO#i P,<+8s_),Iwa]X@|vzɏ>əIYKA7Q{PHU&Ev)Lm)XZmBGkj.g"R䔉ejp UKrb0K^=Bv|<  ]njt]%RoF3>\RhS]X7a9m|eg|Ip /W}`?PyKlO º<&fp0@3_ =-aLoym0W* ׻0ٙ'dp T~}J|B k񊎣Pk)!7/]ݦjZL=}w儬AXn ntЎZ9JJ-اܚ~Y)nvY 2|Z"&mXAFb[80Ζ)f}$قPoa"Kzn + 6m0 м-R&1HubB$wn$fF̩7=Xڵ7fIuTR' O2%#~A"4dmIL׾reJY6,tIta\鐫=DO6uIv6r( -hbi!d8pJF GevM.AWt20!5WWnώ}2%zʠxg(0'iBZf>|Q0lDCd"Gdٿu2?@g;! aP MA G&tnY r4 T,*U/Oj*n4~KQkK\ki.1Zy'>9 2ʮ| }Kyd&OEX[oF#zMgEVe7Ɲ>m-%ѓm wigWRM;Q,^Pd}͠^+:v1YC_?;Sά*ićn?.2$xou~<-iN.O1L4 enc?)=X$:%F<&OJܙ8DZ=~ךS|Jtd(E ҏFc4s?U2Ά Za~ RB[/ŝS/KN؜>V16QMxut >4s_{+XD7Kfs##Z-D+/+1|jL5@Ԕ_vv.'_s %$a֯ec$b_+x/L#eWBgOk 5z׹yZ>w tm%X"h6EpB˂5$/7ue2y0HHki.'am q1-H{qW9a)TMxcEHWhTbZLg?@,h|/8ff~vrx/P}K[:Tl-I+ఒ;i̺6^KN}Y@ ι(S|W$&_ó'Ch{DwikYn\)Ҭ^+%̢5/?c T,uZ0o","!Kuc9=wl|]uJxkJdQKҪ/IY?%`{.U kaklt.;?.s; *9ۘb9mtsQ .=IQviK2|gH ek"G`#L [2~H V6̏) o)h]nfPo(yj{f!ˍr`Fpg,2B1NHk6FGEmB ~.beЌvM{&c\b8ќ:Ic^! M2^.a~ :7S/N O:bԑ +Cq?cZ϶-\g0nkX\/]D[EXj܄ݑxTϐl!1n5OyzVͥ8/Ё"A7hWYH@Lݼ!)R06cXlch+=^*umn$ |߮V-iYNq͞RgG_='IZ.|v %{I75jh҈L<;{ZFiM%)AW{J.kGhмTOeUmp+Lv>IbB"18w6 H@'#y]I2è}ԅ`woop_" "TZ |@<[r$qh}{^F% o ɐ]9~SXgN|x|/F+bb0L$šQH17 #*/N6+y9#1;N=til{/ |-d~Ԫ樸z8SfRRŜ9Tfx)%_;!bh*(Pg%Ŭ̝Q{*6ˠDUH Y#Ն8ءc`A޿[uP}*YRiO4ȀO;}-K.V*.&CLZL'\3O䵐hAʜa| ~?c)@SK /rI`ĻBB 2&af 55\] ԫq9<:xp"ie(pXP$}>˓N]Ez0'A5SZ^u-2ъ kEf*bNKE(%{w DwxTr-ĹXS.?`,"1j8lO[cAc:..P=r(-!o v2JOxfPZEdpy :mecRlcF~w9r.<H:HZ C>3h,܉1ۯoƝ#dOJOޚ2Y5b1泠fK}צZ Hp0kHL]/&$[Ł"G@OZޗUK7d'0SpaGʲ_:p&X'}Tȯ^bG~@3YijT7cZprdJ~}85bq3Ǒe?׌3]{ uLq3Ua|섍xU>1sp>4O-Ǥ:~ ~IɴXdx1D4*~$Jqw٤.b6[3&WjлP^Xɔq6aq.6:.gNG] a`?p[xL$c83q/aujV6ILIffԏ vC].ђ9?~Xh-ܗϠgWd#ilnofs'bI~#C:l&L~q[u5v{N d-D0KvgcCu}$&lIy'@dt,?"Y

gFE-l)cSR >MI*e0S RȮE3K*oY<^/dL{Q^{U/2H͗FD .kwDis(!gæOOd8 xi17N&:'%&-ZoCJWyRiN bbй=Z8eYwgE4J "0Dwap`{e3I+x3`?x{3Dz1ۉs#q>w2-ckDfpY= x.*fOZ?=Sej7 |HqBt=^,!bZ6Qx[E˓ʩZ ^vl?Ǩ7x>Ii}-W̬a& Ij PT ʯc#ds&UDA8W {IZ=X~;'gEbRȼ) q'%x`fqu!??? fK2wN;P2CTEܹwQ"˃g5Jsɧ6VnWɋg_%dc&v _dBUT5dFʰai[k:q$иH:c^B˺C$ "?7أU \ؔUZ߹@@ARZ;՗ {?N^j] ]#/w4B{ۑ. HM)é /Ů TS3qU+. LIkeޫd5\ %E|dϒӋLFMa#K o}($0zͪ`~`'?t K'UI#u޹ J'{s-kg_K ~WxTCwM핶Z&/ j "8" q;GJeu9? yy׸i{7m+:IAc1o=n$}Y!uFpp1Cu2!CUbi"Ala" }RtLmQ-d)O-HG_Mwӣ2&6F"(-sgjG"" OV m͠>Hݐ ,ɘpnJ/q`x'igSc*?|nS+JS_duHYeأV[JմP]qG,fEoF$'`'٫ci;HP ߔbnulӎR3]_nX4m̩ .5Ph< pIp*RUC[qRջFJ x79!;*Fپɵ',Rs{y* hm':uF1-sM"e7.i|i{O5YVfUJ}ܨxbF1Ң)4q{ێ6D.jv8S ;hbziq Jˈz9 Iu [8ĹZoi~Jnv*ĺ/lJ~;AA +֐㍊TY@"d# ]"P*.opGUmjD=2IqrK2ď;\>̨,BtOCXd4x2k&lWDd r~e7F|[ήODS3g>+n0@!: 6SA$o٠XceDz:4Wf֍4Bu5m}NC:I9s-Rͩ/sU~FY 1#%]w;|Ko xD>vp_>?7XbRog/-+7{A ̈́m_wfp_~5Azu#|3K~0*tvLfd Y>bK9j{9׷ QgA?=v G0C{C+K^VEpr&@]]%,>_xA0;j ǒ5~go>>%$O_Cg:ˍ]3L\D:6Qi=;cT_lbwhR HFhcB/BBnMWP"@>QrbmU \11GrG]d3Hz`5D|"X:+hE.Hs uiܖZN~ʸO@fv )X8SҨ ;nk0vuqB<;6pH6A<of9]࿲֩c?*e.R [@dad.S扒\5ŝR.5JGlL=545UŠ\ўs?Ui{_li9T^*]x [sY4?\9uuޛGcu'oܷ :hF7,]j*Ҫ?9J:aw@:o+~ҞV-y*?ox'ru<[R- |(Wʠqqqp9k Bv:6(u7Hqbsbw Y})r.쎖 6%|А_ttU' OcBL,e!蠊@Vշi&R\_3H=Z,vY_f\(?iufBw.l9I?"PY?C/CZI@ތqAp6f3k7otǺو蓖%r|74b/U&)ӖPQolД)et24yKss]$ F#Ӹi&Y\Ϧ:Kڂ^Ð` иdwl%ڪkMNjM1pq #HŃ5jPvQa>O@F=R0fBLs= y|Oh놤$`cB--t Ck*O]c|= HJ/wO+6}/S~,?U_>֩CP #u[ޒ'~|LB׈ep䖩.3[Eѐ 6>x:9pgDVY5,O~ eC!wUB"A3]ٴ&b5 T'Fv$ L/gWf A9S`vC~x4a GS^@Ȧ1w'jT(w~c7wb9YhB-+ LΪd6xyzjafQKSj2.=>Yb=ԩ߀fU_>Cgdj=pal,DIÑ~ S8HLI+3nWJұB4K+|pG@ZoexRG JlG;nY>lPV0<ԎI7M})(*N_B$ f%31< 5Qu GjF DY~~>J6f-߰RW {۰C%@9%^_pA2mL3:`pL#h"vZ'X r'+ NyEa-Y_)g3OjP+i`0OK.rAxf qidzut'hۙK[P_W=DEdC~"[N%7#Rbd6Prxa~TeigQ!pO+~o^IOGpήʐh1A D~YIj zM2 mF)˚>hrD*+FiA顁|SgC~*hXS CwvFXsCI}3:mo wm i~U>UGqDSn#zQ~ YC?Y"x!W IL0V&SʄHXMl/UZ4ϩnT`&:L=ņ)4G:!uGqyY A4dX?VBu3/Rƽ1 ;]޽,lvV 0?8i0|v_x!|1S;>^?dIb%ނ/]-&y6Iay,ϕ[ GݫCHV}a\7 K՝"iUvmpPQnjHZ!;¢ҔG.i>z񭁐=$%[R+@2q&DY*6v0/185=[|$H-;^e#iOc+!EnI@_똈Wh9*m؏Bt֦k}a#k}|9Cën%=',Rs׮_4܈ $Y* Q#HIG"zatj !#6'n_bX0w($DϠNhH9JS{mUA%em_kVMrN`9Y c!6}T@벡I_܆0 &nG,?X-'ER4,lx[q!HF:Sit?Rpܟ`mbg39:6$9Ռ ^HeW954zlkZ_wtq*SƓ?!/ x[B;]2WQ@ҹsAX۞Q&@0@qr)1l_1İߐ-EStiρ ҵqpBӊX+k; ó.Kzxu< MƢh YNeIU[*5\Ys00DjBKj˜;(ףKqgFV$j )tZMt_Qӑssww@A0H & 5-:S&_&95<r]To>9 ~le2P: Oc4mF_V`.tF2E"7ȓw7ɫ'kл ӖCCFW[L_!Hǂ)W54umƒ%KvܛqCzRYjѬzt/[ Ίݬ=IjBaCVj] *ތOp.ָ,X;^jB9چ78ݳPBTj,Vgn嵉`m,]ɇ֗,#/I"m],b2hӐBG~ߚh*8ŌeϢZ f6"02v:Fhf<SRI'--W)|Ⱥ )}GroӤ/Z ЃuP`gBE\PI+n RPLoL8Zq{k*;R:,/pBՒˆliRE0z ѿs;*-Q_ ߔK'a-x_P骬Z͆yy& Lrq@Yy -|m^\L8",Yx=2TQyD sڣ X\k^5 +Gi28ME]Y\q^!+ : csPLDlۮǻz6Lwd]NqI8߬Z>iBα\P.&y5'zdd b})(UeX965tHzW(e$4lzjSEfI/|5G9d:?XM q1ZGuLJ8{2&/wA? ^6Gt7gDcBzXNh$ 5k։[._J-^̥ *jԪҺIu:ӏh $UH)d=5pvvkAV|lwxB(siAa`>YZG|;H_A{€U緪!RS0 0wc8KPJN)%]bM? |?x^Q$%U,?ԳNQ`ٚo|;p=5|'tԐx9l t|vK]垑զ.t+bddgsW]jpg$grE_ w JD{x {L  Em|ԭnf༚ P=)9zf!!FF.i,p*mz֟ цn3M#ąJ {A_$U,%r{壑§3 hO7̑[hkE U Gi,V`\GI/TUW`˂X0`oP]h1I|3U)?,¡ñ }U$Cfa $YYP-6ab b vt?!Q| u|ğsSa/eq5|مPmo~'KU x5 AԦ%-ǖ'9cR ?FB^}AY Oï RR7Pw{pw)ImXwW2Nr)tm:(R8Xҙ+"O\^eFLre'D0F0>P>ջM:#RgS^8N ;??S}x2#&_$F;iPy]J6Lj%ЦU,Jn7< lRQM@Cx l^.\@?bR Q7GJ>l: >/}Ptq#IzZn['E]ΪwhӍQbņ3_CX)XCtC7Ĵo̔3w^><~1>cCk*4+cmqxԒTCU)&EK{"*cz]ֻ'6q[uSE͒uRzd5ܕO0]*:4,1]O]\ܒ6@AFz Iꮕx?;dhv ?`NZgo+bq0YW NJ.st ̄kd2L|dUA!LC2}V7xaNv+ tNZal@Gh8Ut$,hVyI,.i h2c.J+9ŲfS"*2 r}$q25{qHID$գ1/bQ=τoe!G%f(ғM :`cUXe-(Z ܏ǵ6Ȼ4|YcV+PUM1+#%&zL?Wiㆶg{?a2(JK%aرCˉNIf7T. 4oೠt 6i9UVGjuuN^ /rUeZ> K8c%hMʁ@B|qfQyRЍ&r6_w.6R;]SYBV*}'um@NӀ XЫ3eˍ0Y_fzmݔ GZRE B1h osROK϶=WuQ*wAΟthB!˟\˛]T0+$P6;3<\^WD@s蠘4_-S0`e^~F -JK'uO-N}U{ O3p)@$%9?_S2:𿧼C T`pKiUB CWeŪ^TZC=yMFD{HO㪼 ZhqFFzk<ɦ=SAh 160KPhZ /a1PW+s KM;J/YyP5y _'oa9fL ^'iDtc^ g|?NyqΪ4&T7d&[rbF>T+~'ePf$ErjLZݬf{/\t3[LJ~ԾTnMK x= *ȑ^[rDŨ/x玡 @KdMRt U#m-a?z9P^'CB#3ҁTήq`.l9iDIi|;TȓGq9u/]/R;P5qK߸*J־pI>Ev]z9qIW87"4ʑm|j; uF.aVRv1^bS (|6l];k"vl8Wc@fImƢ|d#ڸ4Z~e|2p𸍍S(-A&w;Y&)vQDnΌSRS4:V,*~|#L1Rήl3*B ʆoMPa/ex)o֎ n v5ŀOnnvf(};ʩ8JdZ:og`Yj6FQ n0Q1Q'1"=Zh'~6d~ɒx' n!p%֠FSqC +~qٯ[7NZjDgrNaGKH==k rL-229|]lCu`FoItB"%&X^0 b1.Aܲ z2TNSBOg[ )_}-`Wdx` R3&][य़k+Gmxޫ EwsoqPsq[ =I>'4~dnYG-zrIQn?hL iV"wa[ ɳ;MW RW ZK6SxTOFR9K^t|.x&6g@m 2`ήDG~#aA/}؍NWl-M{nrфn[7gRpaらIw  -yU^_W7QWJsʺDغzn_k ~sB ")}LErdRsmAF32 Ojtij@VB~enƄl9:GOuvL5^QA`5&m6<3QMpmJLZR.D~}ȺCK}vسowt nJП\Huy|l:;:w3QVQ5emFM6\wd`a{ȵ֚FЭY] p@P~6ΌRU m[ʘDtd.C@}X`ظR^hJPpjA%apc)`n*Ui0k>M$iEY@W#qbaf#Oi 3rR#Hc,l cYMGzb-PtKqWT|S624H{O$G,mLX L49봦tJZ(1gk`OS l :ӿ%6| voIAfࣇЄ&FrmCF|y]URX@qK9EefeKD&zY^H܎ʉ9; DKr k)P y}y^*@Th[jKo=* kԹ+~^h6@ E& `e۴\q}TK>fb} ό1 ĬR%_24r@&d6Qw_"yvv=,>Z;DY{eda I0)9r45ݸU595+wٍG0[AAd>ޱ?0Zb$tM~ rzG1Oj)$>3&פ\~`CBV hfFyH<*E5@(`d}:}4køK!)GvTT\r]$kmC*.֙#(8 <9d/ff-3$U$+6;-mXH]ԇ|Хnd`whR׉fOw,YD/<YHpZ^"4" p.p쬙Oj0Stnܺ;'X\#`uevUЕL$ٽe\LOԳN>O~dKȃa.j d*pD|$g+*bлoY`9ۆ7VzBS$082RU7)QӴ&sSC';tڍT֛|Z qMf2W 2:jUqX {ei]g~V ifc<8OSә*TziN7,QyQ Z&8NİDmT|) j6+]M!t˹}{Af=S/8.U}( ):HV4GZ0Nbe;Aij7{=#; <4P\ u17d@&L}y̘_ɾqjm'$5q)7 txK -[ؾ='w(|1W/NRjЀJ#QK\룳 H?e&-!?$FN??o~xm&"ύWp]-e!l!r/A3 .5#:+"АR!V(t!R8<'SW^;k4~b]kݨAgͥ@oQă!ՋH!)b(%znҫSS:0Y9C1R(Eu=O$(*TwŘ, Hq/{_*<"2v笽ű c8!hTT5Ba2o)s[r2&`\ɲ-\6Î-@ khpeO0*[v:XM36q/ƿd7}Ǧaj=G+`CMA҃^L]9 /*#y0ˆrȽ}YYzuW SA}km`[-|be-Գ{ƳxJV@x]ZHzvftVb =ڣl<,!:ZkV¨)lx ϧ](qte #{,C ]1~`'u.I!̽Us>6hăʺpMS p"p F%(PA;*#DŽoO,Ỷ4K=g{h*Ln ^#;(y<ѫŸٴJ$LH|L^ 93_ާ E$wF]xD әEv2.G,7{v(f#zϚPY]2pwgLGXN_hl3^ d@^m4  oDSgj~^C+Jkeׄ9CKIQ!&5.~< c%L( Ej(%=4nӪeӋ]A~eK(^iPnn $D$II6'H?חǭjNF??%v}؅T ǽa>Crٟb$ wQܒ˳5 {؞E-V+ C-˕`Ý{b$CIfYrDGk|9ҭ03mg)Ҥ s»u8$ KJ[;\!A{Kϟ7%4`"͐ 5I7ZgٚpyAJi/~hǯb@*. D Cw fm7F*AdO!?X$"9&5Gemg Ym̵6%fVmƒ u Ըge"G6&՞c<7RC੗:ȑyǣW@@(ey(֙$8+ xܿ"+pRM[ž5%^xX+^%OOWun-.6Gۇ%j/ܛ/,y-H(4VVJo /c%/Y~O]?m6XS1RY! 4Q9}i9+tPHN e8"ɚ#1>'U!G3jDнrRaYVďvDiG9%,FB7B50G-[F2cwjK4Y&}fefc"77op< (qM'Jƕɂ0AH_5hHKD[]WΧ jȗ]Bꫥ9w'_4KZMl2!eR|ΔŭaAb 5㈡58tSQEs6ծ8 *xoe-)k'MBt"S⸈C؋9*}$ŵy|$ l`Z&*dGPK" *vmJцJ9@b:Ҭ;4b/03BO”f`2(s;^:4yI.)BsiP&i 1GH, Mg"R[eM\8<5K$8͔{E gۘW[)nd7,F%Md뜸rŻhɤxsLI5*)gN͇:^8oH,Y$XJrUM f#pWQ(\Z ] c ϿC,bl90y mhVr36c#A X~xW/~ ww 6~ p x$y;O7G 'SuA /:̾{'T˰y9O Ult;=Epz 6>D?Vf;Zd9nc) RݞR' ɝ'}览ي-\gE%ߟ2zOybV)072fHH"r6tKGy5ZoWS=<FSxZP3e"X֜68tvgQ@QRMdcF -9ctyuɧN]IiQ5[t>`_(~bWgU;5z=Oю>L;;`@q,#=]S8T=kѦMCISR&e0s>MYK}a7ё_Y>h6=S6)|hTGWLr?/u-7?C`ЊJʌ]mNںYd &Q$s4ChЃ'Ğgt8]+ d8BD0-`|b;i6xm:8uw:rOi-])g׻q@;U~ uqkk -uЭ7T2S>'I^JigtƤ1\~6XDpeş"Lt''7K# ܐ?mFʼcۍ3xuw{5DN儿P@rMBbO#cC_ k]<:vUY1Ynε@^~6ҁgW x1}nli6dX*QL/`aY02-~vҏ h04[(5e|L~mmU$BFu l렿Jd ;6M};GɮZ&ZJհ“| T XZߵ 񪂉$)8a[NjB@ZiWΫ,Igb:h  @fRp 8A&|7Ivr1!͚R7cRy& UTx/rbQ;"a*k1[TG;"5Ei\[z.ȽJL=7#yΛ /4Sx&JGM~GYD"J\*Q";?zӥ"|(uP:ZQg}gnҸwѓ_dmQC-4ĺ*)1B]20b8dϴ^XЮy$Tu~_tMtW*Vl;4~2\Al{҂鹕`z]lc,HF#sr1kmǺv@Jw)/@Gg@{s&U~Ɂ4Al9H#4 4G|yB5e,3)/ tuVB;Y+GW)Lne^Qo ?#.tJ JΕ(_VY 0jI;jr^✋Lnm Apsc @A(>FR`u?}+w~ х\;O)mψ>H_ 0/ڼA%d~^(}Y'1JUy?F5f;d*v&>c93E3[&Px%IS49[/+8:UF AD8;3Ds]J[Σdf nfT~o[Ӕ^P2@ s^pr Ap$&V0ԛ&;tɏHngcш,M"F=O D>0 5Sxj7g\#ǍrEcc9q& (mm`+[Kqwmr=y2]t7OȔxF h|v c'J!gNaL$˪fNuܐ}ܖGW߽`h/Sn -7!+x>(k/>XNw'`Da ,)zUx#mdiwYf#ʟ( my`iʸXXbeR=FlUQh1Wj]V G,6/CJ4ЪBFn:` 05K?XpϝMݏb7fړ+ʤ_#̗eT mO]pCJbj0g8@ALgP<i%L1>Rs_6涽3=*i PIv^V"xc>ϼȝ+ IxtXDdneЂᎬχp3L۷Zpes2L[,t=ߠ80%q0lbE5ՠ17N-sOZG@}걬`%-mjtFi}}j2vm~iĬG E&h3A-![NW|@D.*TZ~[p dW Qrn)du'8_)ԽB@}+mo{ z#[}: N\`aH%䲐T \DV· }q\bt?8dx 8e%c;K/ߩ- gn9H+V:-G>m=z73hI;bvg5{+E:# ]{GxmWٚ/R}LNA>D0{o+"|`oMR jmPUw[`_4bm-B؍nxrJ / [U w8_*kmÇPx"|ɾҹ~sws7}%iy&d㈞1Jsk˟S!*>r)S3Mth]`TOg|p5[J'G+iWWBPÔieʒ>%E:$b_yrQ9@w٩/=|n.Ii檶b' s)zPW/)F=WSm瞧det@wa; mIXuǖ0C5WN/!fJy+L\da?mv%++r.0˨eLvӑIʇD5»Nw7M'L3 H>?ӸUabzqbV{_2($k}4~XXԠFW)qDCZ'4q zTgE!YH6z# 3d}l% v=K@SaLQs .m`V7_f~g՚BÚ- ,QDF|^xWA*yP=+r0.v9vT:s-⧲jW}YeR45oXdjN$>;,=9Aa`sZs)k~(0f1{ˋJU;mHҨNn- gZm%ilJ[,Crs8I擡yAU6kKvT`uBJTs 0B>`DBjk`X%s f/gAOpt Er/B>^(i\i}a5=$AKF+b{{Uۍvcw4rELé>Ǹ#JTXܞ JojC/9"L YЏZ; kcxX='3 2_rE P 87m[ 5>HrTR=?6Elߙk uS}a2Fu-VHM hiXRT e:ۛFj"Ǻդ6N-<Xs} &1z[ ӞWR7'Ot6"zMA eEpv)| ,xEHrzJ9sd>{5 f|;=ى Qt+ªe Ӳ$ Ul#t*b(}Z7q8l&w\AfK-$  ZVm{8LtY+(,ޥ\G>&[oCƈ ߦ嘚A 2Fў)P6 -P [/d%xz+\&+.ǚy2鼠lzTwŨ(>.ڜEu?FЯI&.V2ǷX{1vW,[@RTicHӘ~[%nE1C@d)bQIN5J*޹j0pѧWTv|K4+nҴʔ?ïH&#d,E/DM̿YI1:nT^P&VAL_E} u&-]# ʘڊggIAճrxpHyIDY8֩Ѳ `ۅ'^߳B>a$  v gu1LG~ QbT[G q˧%V*&A֬[5A,#;k+MsaloO / \ڊ/fzv^#hPau]]LFx=((F-ڳilѽ=lste@P*.=N6Zs!lv1.D.!)6Tr|ub8`6OP6:+$|%LhC6-Q&AjBם:0}Zpn50t]߶Du TƴÑD ?j_8\3VS"ԍ^,#ANrʽ_3#72j9J9 .l@-FG$ӛUbMBdջNJC}-$*UnWN;$J7bq""2Gb?!% ƧNg9#FXC]gL悽%2uU|W%? `3 e=N/5 n您3=X=-eOW 縺ozv~{Ĥw]~[[I/pLJmܰ'#΃jk 1ofZ !zOGΰk.ZYo r7گнƹ%7}^e|&[VeFCiz,wn$j{1>=QlM R[A n/"/b"Vp=|s0lgxu<4Lj_d=0VǛg-!| ?bT'|HX=|@UXrQ vlahQ rR?031 fJ )I# ؠ\|nymQ8;h50K)-i\[ BOvn\Ȳ /f%\[n~nTf;C1Chcېn/8zP$ʆ _]SU9$8f/Q"YO1Bcl5/Tfx\꼮1Vw +Ǫ&{JGtqYxYKxa("%|Qzo;"{<§>S "s&8jnNY  ?w_iJ y j2۴ lٯNC G]vk;y+Ξi7 u==OrIw :o"5̹:۪<|_TLO VΖtU\|`A+޴¸Xq^F-~Pٹ4mslZ@7D3g9+n 91baƏU*'>lBP\ԕoӍm;35,?֦G+# zYA at:}|[|âuѯW">h)KT6׆EO,sK?JSuSzԀW36"|5+LcްYf*r[#U$ ^rb-;\|N,˛vaLN *Z c}-|&yE~'+e3ZҚntj=|Vh^:Q9BY@)=` S~S)I1xg]gs.(#(aeG$r30ۤl":^9kBZI ZκhJ ݠde2|kgy/:N:k,9 *4t)E>` ؀Ez~U;\#,}`>γ hj/2cKy8t8uC߂Q2ݷ)6fbʯ+{K6Gټdod+jLBӄ者9fi—$[(XαJ 825_߸Ѻ1⭝'%HTuR+cϻ4 Y{nܒips,$b_E.=Z:L8 EN+PlKLe6<sO;D*cQl gw;B[_;N I% egzۻmȪmh&Z;آQ,T;zi' ȸwHp} p~G#Lg5!s?@_ 8PWH~[TǼ1ҵI$AMma"y^zqp"S *oҰEB "M 3 0;tH&ұ>F';jxXUOG*- BAB(B ϵg}7 ںρDt-9RFdLC`%Nistw97sdsQ7>E۠'e=蟦iNa6x*/ad#fZO ] '+ln zc R[=Ӄ'&T1ҫOo^}RZ%!Ҙ>Y0^4QƯەЛ@bpy`j_l4tY)x cDB~EEX?ۙtP/H(sֶ0M}UTfu'i1LAS. >EcghYKת1T3Xm z +nRw)nYv`nH; -qr;SC!#q4uA?'>&|c,Y8x5wYm}c:>CaF3.\>fZ7)x[FiY H-de^cy VIET$ӌ*70fiz*Ac zUw&UdzmgW %ك<%n6 \&9[-"^=؈Ȅ?SWF }4BmX:uHx{kf}yzT/Zq496CTʻ]D#K?&>8IXk0M 0j{T sW Q׺2gmK 2:>CƖs,P*qmbĉ<ȋjZUsMJ + &ƱȈ5*5C}'1Vem$'54$2XFE֣62VfqۂF]RPy\35Yܽ ;r$PI̤^1ZAyM\K:̮~}+#$ N=2L߭b!5wĞ2!wx?G'B'UB,x)nKOj7c 8|'JTήFgWŊDlwy`wq"".MBtbci! jO>8V̿H<2AZOmh%UϺ' :2^pyMQ7iY2& "br D3_]aH?'P7SÔQ.[AoQGii3"5|$I+T]i.#A"g^ﳽ-)ld<Ŭ?6S?3xԥi̦,j Sd.'=˄nc(&ٳ:0 (|2bX-JU*r!r(/WH20ʇEt2E[*bπZls$8YCۄod\(תb"[$YW}7Ο.nAX  J9/"٪u=^}c1}fh\I^!6Xb?qseel43ڱdKE/Ey۱>~2HQsD:dثo$"JEKXj<"7Ѧse/V `U̙Gvָa%3c\|Sھ8eM lQC(@yPlc nϋ=jx\T-äq& qқ=6_N5tb3-S@9z `IPwAݠsg[qsvd!l_Kedܯt\p`\Bl ; @Mq8 2~š׽%Ŵ{@B;ٔͨ{8N2 |.{>33f46JkA+z!zc hIX]$VEiQ{2׌l-/Ӳȯˆ Zyc*F!h!EB-bl*;!_{E42(MaY':яF${ VP6)tD+$b}F 4G0ϝPf;3u |T14 4Y[7 *(+,9}E&T( Bm`]< 6iO~MsW"+i@+wʤPrZ;|&L'yC dS!3'O-β.b//G٬6[\Z(k FUٞ=*Y\XXDnDi腓qLQ|B״F4ye/o<8ܮnv,wT]ߗ0`l| gJw}t ;U8'_] ܗ5:ۯiP~\C=}:)3ZzX:?݂FХAOڰ,cC!'o>_x#q<1$S 2D(@I^{d̩,J*,<_3J|lqB@Arx}.S7Khy~/# 4n"w ̧dxNAD)zn#XLziMRp.;oY^Q?-;XXŜzəRy~|8 GmT*Q=T?ۉ!UPĊ`g$u!XbGUmf\LOr-҈82a 5hntk ={A-F}rFXP6^;ǐ3 qwy-4zơr_dYLJ {K1'YT4rBACj,Ⱗڋω I<LzwD!HM#sҳh!NrЎ?DzHߗjZd$sOwOIsr?+zGcd_[k3ʡ{-Oy6 PCcT}\m3wO,+CZK+lc*[*K  5S(OΞ(+.n@ !z#sۮl $ s$>&ؚy"M(;`K#Zm#j1StB2^!aIK eIo qn˵3IɖJ#(o| g`<ڜ PvS5{CSgIN/Z$ל0:VFqn #hPլ? W2 q4f#JA;P{>n}"!1aHg>HEo7q%yU[6_pG̏2/M4T=&-Cl[F~GR"/$8c; چ}SP~An֥Iy4)VN1ֶNsp!w^ڙ>=SWdj\\>.h?VHfiO;na 9vP2@4=ܷ;O ptmtE9S+kJ.) !ƶM3Ii0@¬Im5(){wg!:!VBQhf`> %hX|PWҘKlj "+8KސemR kRײt3pg< N`o ?nm)#4, Ajw`0xv`˅9Q(8慅K۩Э}rm 'pq5Y('c`BIa[@NG5 Q DoR JC(`1eQ@Fz8x}V-ɼJ2xh`N4>\lAJvSMQ >)'pq {VEJJoTooܢB$8l4cǾ?Jf% rH@Dz;:t[o?1j*syA SA-UI&(q)3|ݸvgs(hRC w۸zv~_dr ]0B7٨An?k 8`y6*̏۲Žhsl`jW?Fn lJ&ws~r6m'cf,(LᯭZY+%q9XyUh/n7TFcZ:ftdBALޟa*=Lf1˸Yp!qusT:/ } J@u—z Zt:j%V<2sdf ,!mpÅR>D~R/ZPxP2HBrRni VY@MgVAFT)a1JL,L6dI=|eZ qp&rmd¯KkT@{ *VF{47򙈍4q 7O]:!)W ;5{_/s/ 6!ގ삷%;8%m=0{+X^4xs8.E-T:r9`P`| zJpvfu/؋R Xa|5|J`lbbi6o\);c/wa|ܠ-3OcsxFc(I5>ohyHH_''c >ԽuϼƢ. J^*QP|ߍw곮A]H`̻U Oe{$ ?uJ{EaW._}ōXe'54N-*8]{h3wc7xä\I'^S6v~B $}0Hu-De&j%xYujʊq}Nd2䃇-~V6 JC+]D_/^1 7Z,i߯]i[ϻ榳W>^~fNC3TH}t*VF_ 2/W|M._%-B<}U!e$:`weL(PkVix!E$jer0zl{qXV]陳{!Jd)=Pn&AiYcveTB́:]:߭lKb=QWPUݹnI{QKr}no.U,"NģDmlbPuEWVF1VIAw<@lOGbr(@biq{5~̐I\zSEIW@eˆrKD@Dոy[ %-oSb˄mpw3x>Z-}þJYz4aw:%U;&J5|8$3ȜZYGw1ls*,$20jcSxDka ^o4E\(c֨ |/%]6ܕ!P:G D|܏[y#%:0ׯxc87Ձܒ54h^9fz6GxI<>#/+S>>u ,رwrwߛ CNk%U76kwt2r+}A@4.ȀAAf5alFz~+ $2N!tX>H3?3m7s D4gVyS:DTo܀ w#" v'( G9m u%P)7a S- *lƮfc-oa ^dٕAh^:zYh;^3#sR\}*N&5߷)' ܚ ^ӂWt~f0,zS:R$Wpi~hR>sp6,%8Q7J3K %kHhFJc|}R׌V2IοM5z/$-)al=T(c:.֪ʋA e'|ׁflo)BxhS %5Bu E7CjZ̚@P oYOp6l5O)Z{ԽB- ޹\S0YoPLDq&"JN^Y%'|G`G˥4L1!8k^\t| 0tI|ݦ(@6|8TSRgCcq#\z>dXauFܘ.VpW[b ( T98@*Ì VZiKtV5¼< -ݞhPh: 9z4:ڝnggr'6z](-{:E|m 8ߵ=`)8;#65"Jz ]?xNQn[d󘞺̂~ |u Lj3~JG>TxD$Fb=$`$ձ:[JR,Qfr+*F Coj}J^<~36Q1䓌M2 3,ꏃ"Grfn[ׇ7T&(`%宒m0> Sp[\Zău_8z_ѡ "?/e`d&Q(7q9ڜ:O:k&oli () vBaͺ W' {Flê#9p['Vɑ6{M)H֟ acj3?yraR/HXl{UAV$N<4"89"- hT I?aƊH`'N͒a+O&2< }>-lOvxƋ{`r%Ȃ9? v#ljO~=,k^"ǭlS)cnch0iGV1ϐ^ߜrՀR* G8o }b?*Kb5R"t/ĪJdD'ͪ؝Ԥ %5`&& BՇW?}{*peqAoÍເ b~d2]FG ˺h@6hUzt=ߑC{A/3C[<'To?rQJI߅@̡k}q$“o.X[ NGϚ*USi<9D"8U>4 Oyϝ!aa}hCn~OCY ɤ+.Hky$T`H0'RTPBe@ﭪKyK:%;QOix~M* &ꙻM{:$ST˸Yhq;X@11ncst{GBPQ+rZ{g~ q/]~Oxe< u3'_3&OJMj{bYyVSu{MO(禸ܽdJq9 ;W!#M'uS|o6BxVuBG@հ`d2?()AZ.|v=RdO!c) <|ФA"x1?dOo͝'B 6?F)P"ApMu#.hⲚul KEŤ)@{ݔRb@SU6^.O 6M@>^2’21MEO/8!Bks4bEvSxsk^T3b_.uA' j (ӎAJPəpBy׏s3~hPGƝg N>XD57%8[<:xp: Kڃ(ixEsR۲ftW 5y#g=@bKUqra=G{*\MD OVt|i: >HPMU9(a/hFtDž4'&Pxi 0yJ:#0DR(8 Zq*meK=b(>v$ls-0|$|P!x8BA}" #|AOm$7Ό~fPT*p;+1c0pvG]ܹYPNDj'Ys@I6f`6/5h9ATS9NjX;/e&H >O..zmS YRm#H>H-neq=s M<1T B.il䕮)<J:?G`BE80JɅSJ{$Ƅ\\Ij2zȀ.sYf%i}(>gY[ݎJ# :oY]3BߜiqѾȾI΄:| )M?!ھr8EL?YOrB]*ٸx"Pӽ[ sBMFRWay<}-*52}\>vٝEWhwch^𢦼]&hb `H>ca n;^B e$i X&闳KsWF}Q#'3QK}2+3#lt8ξmbz83(58~ǟ m>SblX%Slʔ 4`EyB`ڂ<[;:uBOlUSrI?߭#\un/ z?kS, ?$?T\g~ǿ TjXg_0hS噘 IWÁprcP|6 ëby65/i>w/T `ўPȚ ԀB{EG(~Z9SRsu4Gy!GyY-"03[\VIvqZim7K6?rBzEx m.cC× )U{r.J ¿ 7R)h^ fk8n-oGu`?ؠN{Ɣ=au\}c(fE6L>*!0ԫN˩˜Wj`yҊN@:ϋ)8a?Ԅ>l '$ԑ!6/z"gWedǘCăs,FRҲ0mGNd38T?`.c|اy$ QRYRܓ{7WFJemfؓM hiĪ™ȬdѾ9_#YW:޾,3]Oܷʑ6F8kS1OsvFopgQq T3xlI.vT3j -Sm.~: :(ޭyA[k3,RAN ޚqGFas%FuuۏVLp=sNN3]&q5Hr<&r><\@rB-$D`EE4 aҮM6@ Sle ^(%kP9 !&E:ESùJUȕitQxN(U"1?EF)ႋw[zˎVQA0 yhA O<;(KXzBL.ڄ溲Zo/oƦ6G-r231Y+5e]XH}x$ %XUKsAd XxDYAbA^%xc#@mDNh:|ϒg|VIEm9Ozմ(wEti 4=%8wܟ;.`k;{]ͯ$/2n=rH W' GL62kly.ކg޽Օ.Ij]Jn4R4Ї)&6Ǔ$5_?|ՖC`] 8|4#ɛ[ ?bG3hv40} !=p@ I}` F"+ϚA^W)Ǔ(/y nJoB;íK:Ey+z_nq8 " ] Y/b*\&@Tt8ay#q<1+THVB S"{z7QIrl2 HV67@%7 y|YKK6WnҏFg(YڣLJC=A6^*z3 5!mî$P'p(WRoY鈏) Â&F/ls xl~\>XBCKhTwj9?*)GWq%pXE+UC*MEU$2¿uu& /-io> RBlmDT  v.QVQjNLEy EKc:{yOjq胑F$=ҿ@NHm]MQs.w!׶BXbX{>7g_Mi5%2[gg%:QJC o~ U:)txD/wau1U[m uBb%LBD\=i4~J3!DNy Md"^nOQLskU5hP;>ѢzlrAfCbӑRۡ¡rꃅdԷ]_,L_Ʌuw:W9z7byL*n}q'~)yq6C w|k'KůoYUs*o40Lú2G\}sF@?vkdyi͏X,-ZIzr˼0 /؊a24ے$jVM "<;𵦳k]5L%tb vT)qfh1ǒ;:"]i8w]]qhHa[u4vfѾ[L"YݾPy\/9v#CcU 7mYoN2NgLnmz?+Oa g_ ~<&9:m$vKL "!d^Bdr}L8I?E.Ѝ+JWRuq CgF0SkOTS*CmpG0 fV¾YkZUgK-ߦ|0)UIƠD_EyDgy_Xc/ P3'u/ooPVlTN0p,6Z^1}EΒ\'M75"S,>'#QVYey@n~$ OHh7oo(9K֣S!B׫҂LJ\dFѬkDNϖf)RDF5ߟ;3"zYzM=u^J[sXX*zk/.j~`8k#.Ff^L?G`$%&HV[ƯAGg1܁_vny ym{{)ʩ {&޷tԑXvT3@S*"8Knf_(}i4| ݚB.xݑAIVKX4Be]x[Am_WuwH%$ AJ ΚB xx]gf~ZCPؠz83t/kx&CWT2u&Av۸MaԺ1N19IN xăa,=9gmo]ffPĒO~I-OY  }6" s+x^y7[ ~;e^$ZILrD9fP Wlw_D[5cS(h[M?8ChDs:yY L|kCT6hC]Oov!oM%X5UA}$.@t3Xڜ;,o˫" v_X(]C׼kuRbh@qc]jOov,pG 00ٍ) ̈́>j2 Rʁ\l3;KdtZQ9/mh23vϢb7-LUp,2vnZcQog6Ƭ仿w7=6}KiLQ3"gf$(S=Ǿ?]c9mԒ%#nn`tLj8G1׼ߦvt+Q@d>ƶUc *5Q7Lq䧶cxBX)\BBgQ.׵$űmA"@4ɳ'/jBg)BDhV#Nk🲏^Ɲ:)V\Uz e/MbuAP~O 0@˘ Ma`p|_e7FWP1t FItVӉ9=wRRMzV濫4:"wG% RNr/84kal| =[C &E)){B:IPuUܛ|5"s7M] ֎r<3D`ڟsJ}-PfJ FulƒП A!0zd-% @F$&ZoPI#Mw\}蹸NLWYicmo~΄5Decwظsuú4~ Rq)N5U{:|(" 顊쁢&[3ʹFdK3nMC2RʒFE}* 71vHPJcgׁdp_ n~Tmd6l&On!3V SAîk?AV#^q<0}*vk>Y;\Eqѯ* סo Zs:3t]5rqn "HW\Gڛ LP#nFӜD\Q}= QR%p"xN".J EVޔvT|k^WMp`oKlG \nЂ4 Ӫ8ݟI=DTs沈Jr6 `ƧBHm/tj@6'SHlxG7@x+BMdw)+T9vMԴoS=@'#\RH0)w_/yCI㉯\mqvlfziͭ-gnF\n(bO b}B)Ȃ*u  CA"r 5ʒER|\ƙ'Ϙ#}VµٿD+pz{H5H4 Th.tVT0i羿n=LUJuX.f(^JPt&P9SJW4k{֒,eX@chӏBdQϏf~(>PCۧ' zNE6Q ntH ]K%3qog+[eI!Rt.h" `̂޳,ML׿;o h%o;h+g 0CKO ɐ\JT N(J(-i׭g]W#I}Ʃ8}B"fK{5tY-7xT^K$6K#8*^I#'\v[sw8'.kHNࡎW!݅܎H@ +-6\ `EʩlPв&"_ ނRŷ:DB.ޜWNAUxT7؊g*#D1,@3j6ݷq2- jE%eꇽN"WߵVQ? d)~syxq6q2~%ڎ0SE:*^GtJ/[06@3&L`,hq;* Q@/ :g4Z'בB+rr}Hjku@POz*%gP~my<֩\WW1576B!LO'?2,HBaWi(;cwzzk;-hY+t *yi't-Ĉ0קd 1P5\zZŗ귅zF3ܬX3cz:sB9T|yxN1{*?MՃ&w17t|F,COR4*yMa37||O6`"ZOƪFCύjFۣ?e]h6iΛvlQ=ϙtD^ty(Y>~`]L5[(޷c.}juOn0'KAc6]Q^ߟti{O8JMDMԈ.C $PjCs)B?%.VC wݻ}` 8n*ofM |#J+i|is}A€1^ -%|KĐp0a ,?~6elԢ~n,xĠ"pq9enCW@XzI(-~<(NkuYd~,Y/ـf`lJcgМQ\ _yHDh{&/ vvD ^sI\ΐvBb x̗"U}^lC"B|etA 9+S3zF,2jO2F}bb-JGB*D!S``M\; mF>̪4R'ӔdhŤY=`bQ8>x3}X\R/ ;*JXF,3 WQEq3r/($/T YZ695d Bޟ|ü\F9 g+%J6 UUC&Ѷ@L|PኯB7*j}'9%BeNNQ ]ӓ I?j 5cVhT^^zEN3GEҵz/֬(,'$ɶ2d7<_-&7)-Yb1zufq-A=Gg!2J=^VQS~΄'eپ:ەNۜP|5mZIԮk5l<+ `2IA}M0LJQ3 w$kC7)ҳnӬx]p 8PtBCXҲ{CP,H304FCK_NEkdխ*2{cWۂn@@2=NJPė )$W|P'nǶ)jN=Qn =Av2L- g5') /Ly fdAȗ.Q D(lk*p%Y&DoZu w(;(LIcJ2$sg;f/"_g@KXjINGq H0_̵VE' f,p&Fxo]ІLOW30ma28ꏄ i6y'Jy0S #zI˲kq;nW>χg$s@ǫ(d/ETCz>R>(k"|~]dc =6rܓ>$Z/"d!D q!Fuؐ0@S0h( _-QԿ!ev7;.Հ aT#e\RLQvqެ}!ZE&b~^@y3u oXWP0bbhQ5>JX7HԖ7 PnF<%шyVBp-vN;~v\R~` .Lf6yzQǖ%7˺C7{uIqB2v1(? &1ɪL -QDdwAo2A'>\Mл&  mR>!ɻD5Z["Jp]VM,P^^?ӨaW3Wq d.o[5 \ )%Iz5_a(I.!I+s|;IO wftC~ihZ&S`3~c)jn3MvN0w]ϱǽ)5`$a^U!=v|x!44,LI+UB HZKJu5|$-.8Gj I~ri*{#Ec6,^!^H+`G+]Iٳ3d}N޳0XDb$QՌ=\n_q_l&!]p=>mꤤ/Ȋ'ũ(_=Ho ō}~lC"3O 3$x9Uќ<7|Myv#BygCZO$ y9~|x<$4SE٧pIF veVVQl [RX6}]b`=Oas;ʌ>y[Gˊ\ʄqDp ~CuqU8sLA0'W-p?>pL ޻q57e]Fozwo;cYbdaUg¾6/4N']557ZE:"L MfGu9x(Jͧ _cE5 ';=3ԉe oLӿ{t֖tp/$HC2sE%p*@k ^@;dl w U4h`w.#fUqv x :)'M0]҄©|׃9 Rʒo+P{ BuCz(/ʞ_Y4r Dӝ?K]L_˓Eco?[0(~E6fNĭǿAБg"L񐊵Wf Pk"_!9x2\ᓇ=Ly[u*=G_o V: gFw_,K&,ȡre炫z&_ñ&#:yЦrE[Y\9dhfL,6fBܿ1YW٥ 4 CSm^t`l'Aɵ+X!> .}TbS%اa$k)9ˇܮy|i`%3dgؗM+:#P/Y)?Hzr^ǶɔoH&{ (z6J%Zvz&PUwhG\ߩR8o*:QP+_S/QKkawbWX8r ng.&@wvȑV^HPZ&u}Π 'VRo9Zz{ju=dWhfIC A|*96OPp9GߐEp~43GV0 #q0ڠL EO~&Z y^y\i;r~cFQӧIVp"< jip߀Knbu.hNAI~`cX"3RFH+k 7.MJO=VZƹPULx"Y5ICB{ :{Fܫl`KϠ yqBTvy3,E3cHeP7{k@)vtM-?Ɗn Vx):ShyzᒀȒ,*^yOVO[k'A?lN/u.WmKGjzc6I  0/ d ClAaHhͿvthVۢ^SՏ- ÚH<-=Z- IlL "Wi-K՗?㑗\mD+dc\)M}t*;yPISN EA!ECn~Kk̿G)1}pu3QvrvS_)UÎb XhGKo9g|'7Gmm:\`[T,"M+(߈ulcc ^WsJ~n4 -,V46 JQ?*>-F`<;B@% A'5rqu,evm믑I Ђ\hTw*wibٹq$iMN>Ԯ2f4tUh+홏2G60 oqq`z=Ɓ+o%EjL>l|YEԎYR{* DvQ WddNm۩U<jt$`J }=WS!bH.xb:&"9 5/Ps GR82xbir EGc_?fյˋ=Xl0afH'ͱM\ Z |6`!]Y_sl6SkOHD'OM2Y}H1YƣgR$̻l_$L4E=d?v.ͯ}}s%ł=b$?qI{_^e qy~O:F44: \!dfڬ#?LAjΈ~G27,kTVo:}]s8$=fNag:7z6-;ڱw?Z5$qV621q@teUF{VErf~i,\U2}thOkb撚.*c6z,ُRn ը0-@ MEFBh奓_$jIw@h o X+t ߊpm>7ba`W7sTkkH{J;'ZŮ>F>vvϘt؛n 14qdŐfH%"C[·p>so1GRENEWDG5nU27U(2Y`.|L.x<{ *4^`r N̹D1zbSJΥHp鹆U< !{mnYWgdGzb8,dQQE+&J@lc^+k.Pp/f 1 c[C`1*^-J8T>-=ބFeUnU`a̓ 85Ƈ~ug7K]| SnK=,e/^@Yf<”}l~, .3"0GaJdUլ붆ߓ":f04GhoēȜ4?@y>:qbdh}@KFrʎ>QBȖI,3MMJja<4b *ZN2kd䔩 62ƝָiءO^MxikS_-$A⿡i!N.A4 +Nw3TC-x6vC)z'D{h/7# &8oN36 >Qͪnw]Ub&6pQ XO+.t7]# %$N@?GFA0699qD! CE}Ռ/UU>,a:NDVXvMuz/ȴ rM92qQl0sײ~chC΃D"Sq̈@eм`(i0^ttGX!t6 YU,9|\xA*t$FoZaq5P솯m\.ICG09*PwR7_N8im N0Mz (MV}wsGߡ~CU*h"3݃ĒihFzsf:L`;na 1@w ]}nUEߛ 6,Oɢk~(AIp=^)۠m{5H  R!@7}KVzqo1犂l\z8t^Qfȡ4Sz@#4ZcR^b)44H1e֨QHE9J|Z+[/]nQU 퇠LHcԺȒ2aX;]ep#7]OY'ֳ%~+c.֑S O-~3?YkHBרn*x/^E*D'!Hk袼[/ Zڡ'g[௉6Ne`Xd$<_-1'`=c〙0-VM8!>M: @-XRhqsIs!3zn&c[N ^$/Í*qTdI7^ECgS+_9hqY1]5e[[‚kca?itՅ@Srȩ#S|_/;') ,Ca˿NG[OQ6HNyk>S(;z"µ[>g#g0b1 b%G'!#;l]`$Gp:ժ} C`Dܠ8oϝ'L!)v.WDf~C_ 0EB@=iRLJU *qmceS-8KcMNRLA:ך<48Eo/ʕ>h OQ{k^"[iӮiЉK[dO TS$ ͵pTKeਔ]ZсG+W?srt(%aP_3YK3f(oҜd"S4Ƒ&q]0G mHpy^( 5j"tTjqsL>#YwC#תQIB>j5cl4w"E c|ޢh KOnlДQ%W'7eUP,DMR $Хd@Ft`Yh\B;W~#Q'灿o^qw@tmyg&k-]?@/uHB]nďJQcQs5#Pۑxx̃0e=z:ٜ2]Hr܁Fҝn)t`>'eqmQ^0㨹* z  I)1C~ s?&5l*էv¨)}P ЮBc,Μ$7mRXe-ZK_y 䳇NEH~cgm E^pQH*}5~;eAbb3b5 t( J៼T~OB9U/qw]͐p`Qc+}6 M b(H'i^֡+,ؓmP<?aAPkG`!#"mnzc᝸n7"D!˧ZSWÔmQ~i"ٕ/^/zfq !sF7^Y5-ډ eĆw&B/ HA/…җRG[)DS etyT1++_p%ysٰoi!\ϗ@߽PYg/$(涨G-Hf|:2<ͱJlA>ƐZY|=bTh?*Eu(τ3ė8dLwF `c"P]@xHj#A95gL6:S~KzDu^6:}8.uK9Z^o< ʏ v+,G{"٭

%bnǗbH$Ev_}]< sg|E wb@ą 5~o"-j >Pjn't !6T7pl}ǽ!LT\7ܽ4\,* r=qUDBg$EΉڋwE3 nf%ņAߚ}adM+bԿ fdyla -*#HO#ȂIeDe RSk+ GS*a򃶐PvB:_ߑ%pVߊN˩ъϹ`b U? 2I2(,wx;ϥB܏ ]c?u`Wح(cpY-tZ:iDsdyxh ~Gr5wDGsU0;=]huv=7w͜xR_ם@2sd%⣜zW.1_ŏ@^C^a`d z]X4)9:lE( :7>%kk oosbv?١V*:f+ZFh;>7CM+O~bSKx߹i& u0 Aco:-}- ;DaUt&n ^ihJ!"N4V,d }w ob9YYk,ڑ"TL8fIB4&U I8$PŘlQ-ɿ;t$=i Ñ4{D<7z=:]{b 0/c!rin82*fdWi* aZ;NTqx5°er1ڠ&f3Fom,دS<.n MiTKV?$cnwb}Xx-{cmdhxpJ,تsoHS搽 'J(l, N_,w@Z~LdeZٙxlm:MFTr7I@/'p }7f |;tܻ[jK5kv8ZLQNe~.3 yuMAw)*Ap.`pW2a Il1(#J-[fyoT##_ϜO_+ȹ+c%7 R |tl T0+J)7A]Jy3[ys  ׾ | P=x$4‘zhw^R8eS ᑚ.]K6ڵOj}XNBFSƥ3ˑKs$HMDk`h#us"Tҩ˹UXJ-,>u+lnnOד_!CJ=^`mԶRs`&8{9j9G#HvKK Y>PӧuUC?}*{|8`!._-yp@[4VO"n6Q~E>Z% [f1'D-}<˴ `S8ܗm%@} ܮ]5:cW3zNUMr ʜtf-?=Za2N ,n ȰuE0v=s)87T}N2`7>痁CX<9[j; 7?X7T,ôJ;7~H&zJ:!'Rl K*ꈅ%d>zaڞ;-WHc׵M:`9_Z^Ii秵y9_^E Awp5? b<ڙh"uQ/fnaX#߿"!s{ nr'Em෼Ʒ* Ca)߫i m]iKtmz)Ic4O. 0i%yaiy?į= Yklf>7RJ F݇x=8)qxV0>Ex"T D"5s!v S-$֒c{'gTugb8H5u/Px ,:~ 8⼸mT mU,3߂t o:^_U5b+>Xu]z+z7j90Oʈ1dc/}ȊWV3M1nRF>g3nKZ#ǒC N-X; R1 ]>_,TZ 2$]PNSϔxu_7C0ƁlMPa=-XqԣhOD6Q*}0770_o:Z 1S`ӀG\Jxo<zDŽ$";@n4V₺G:;^\CbfkE$?(6 Ysj/;~4e J\- a19p%˼b (g?! ʸv<+M/LTbJ_RG[.@sbNZv!62՞)@Ͽ|Z BUYQˎ{Nݍ ÙA܄3KIX7]CaGv׎w5]0Ү ICjSn)M%jإx@W6V3 rϐN6JAzҽKpb2NOJ[!tC*Zn)yqU5&46FSv+@edQZ,CS?wg>yn~ɖPM򰑀Hx_Y<87sEAH8)k&)iG^AM#*nk :"']N:0d>-\ ɋN%k)B<-,eJ_#w!S&0T-nEεP1nM tVK,?jT]@a\CJ=W] „Hx5tK^ Yߖ7,Coŏ$Xm6 s+n ς J6? 6bKZhKOU5LŢ ha +s-[l5>D#c?mp8KE"jT$JeUR?@д32P02<#R5: >%\K)2Iߖl߆τڟ^@>Lc3;Ëduz$,-p&|h@kk!P .~EI.X2xx,P/?Ė?~uWHRu$?0,crKHiVPaQ ZH(&΂!DJ S&XITˉ/R9ak+-R4n,p,ӂs E[P=C*6W(ֲSH}6:oXj4VӐ\a11PyTm.HNP{H+rlq*@>-ڝ3}5 Uޛ=21,{ < ~bt5eM-:?Փx5 k*©eܢ~6P'H˵4. w#8QEZ6\u.b,+h۰3}邭𲅈xTZ2|瞧V#o{|B5`%D9_\D{~M<^sr}>2d*5{Fo*k`/~-xYhqgB4yHHegfMպ4\suJUFˑa.4w|=+}.4u۔$+Y:^F<.7, l`I!/Ȱ5]y> 8bqNT)<ګ`n83 WM8͇H̳7W)f f8֟n隵<GfUgf:HSωtB8o-qKp=MH2?#&%uh`xnǹW; @cS>;\u]Uo$+Y4gA~R-Z/eK^mb)8I#?Pƺ׀:J,Br: 28 ;+A5,?@b wPЛLsſL,5ٗ u iJ"@!"?uٯߧ4Ehw{ב6] ŵbǷk9$YD} }dr4kSUܒ \,)>S 'Ǝ5 y=:F2O"*y}`D*Iw>ؖcʬU` EZZIVaE'ގQ=tZ#Έ:| ƿa%@1S7z8ՆjxECf͏iNxNs ZjuߔM v/zci#aȰv >UȀp)*Bh};=huJ_\ !)G|,s-CX6|cƙ  4YeI$72VLvˬC3 #f=fESG&BΌ1}|_X.p{#ՖeG1m N{@Sngv8kY=[g (12SS ~*VpRu4QpWaU2ADy:L z,vI0sXxN +LW%Vx`g9b7 (\u)3[w(K31D=SVdz&#Ro~+9grwJ{uPvMPz̊ jK.XsRɎp\`,&{ǹ"pR`cԪ%n\\Hw⮩{f\r,#E<.dGC6Y v^@cLZ$k3e6S2Q᭯q-8 s¿Ȥj1C1K/8#R{0%5~G4<1~Ǿ%!H(ÁԣgfhP:ج cqu] 2yz/+=AYCȵDvEw*ǧgN bE.m^GҸ^[kC$sG#9Y0rEoOgus)ݢw'r"F#jFCj-`)l&n鑬JvPO#}ѽ梦 7!۶y^hi!3j/r  +`DVv&WMy*oE$Z[Uan[@soɣLI:JBb;Dd1\{~l$k/JV=SF Y Fx Ig2E,"Ԃ Ȝun)ח1޾>TcokC "azUn?wr4a$^N`ڡ `c ctDa%36'x`bE~qHIN3s0̋{\EA~zqH[Ow`5X[[l WWR3x_͇JvVGŲ/ B`,R" z8}`aT3^m[z֛@_t۰0U\?waΩĜ wFω8vgN7A/UXO {⊈mjDHQ v6D Sc"1e9^b`0_2~׍QkА3trA?1%{a(0emp)Oaڵ$i,-l ܣ 6 Z+.9v6a>~`{Vu]3B-L )tRpG_bO"s 1k|$!RPejmF^"ab3'ۙ")x3Lrb#j<Fp9 SEp?H .qaT +Zeg6XP[lP#Y;OyvWAʷ/5nx(#&xN9xh]ٯjOGrHMxgYX)eƆAƪV,\d6C[84D^IP[fqn~"Z=q n?r2w:5Ʌ'nH¨X*[3f k!yLd;8,.95rvAm_D%7*/HŬlgUau6%:#~i"T!,RbCiQf%'$K'ɛK>P2U{0js p^|r` P+[ vvA_!`"G3-(>SEHU)o:R!P%*LTgsn…ŵKma7Gp*WPՄ'TӸ=.>5yLݑh 7  BHm{n\\NuCЅZ$F}<>"M.'ꙄS|b>>=M+&` A_ !MKCub"r1#|(|tHG XJ_}wh:W &7 'jGP* |g7W\7RO@ף- e8re}4]~ i hkx+'C2 #W뛙=J~ZV%=yYW{-<-dQyVwKfehg𜍡7z@I*\EVγ ŗA{aYIR(f^L}<eO)Z" %@ymm+N(/A^e~fQ"-^K>sg}(bsF?m+e?'zn}%Ɏ_6Jֱ2]"0}+FIʑ*pOwN(=Wph졾QxM6~X"A0EXAF?(TUw/2S?S lhpFfM~CCni~3~>4ۨ{r!&Et(.S( tojRϳuY M{bkIgj\?#e`+v]XV"X{ڃӔժ zq@fYNk j5+^,(+l"Z# cp<ݫ[IQʟRũʘSf>Pϭ,|D4){ѴHL-ˎ?^C2j{VR!Zb^<Sg>mN;&j0R#ip]Y32 ՌB@Gd 0[2j'$5Vjv҄:Nj]Ve6lf%/Bӽue'~n_!!;P'q0}fCOzӮ[C: mQhb|$'XOO[zg67]- iRny3|;~]^%̤*~ GPX1^-PqKׁYΑzܱTJtiYPJ?/&tf-݉ixmO.Fs$vuiCNae<ɕ L\zN`tG@7[d:! 团|)kJx:3A^4I$M&vPVm-Tv'~`nQ~ٰ%-)Y>~IK'-.f û&ICb>DxCޙNFأe]3+ZZ!ZMT]?~D?uOVK\V-ެVȶiWfиSW,M~FZC(H>ƀ73}/H2 9BJYw&~ޗUzo a:OΩ#j%/8uʵ[)=I njL K)=tKƟl>B5_ܜ.V{ @,ǥ|aXe4k8& Fu#1YiC|vSMTϞ Pf&wSaChmqBԟp~(I/.c/y/nZQ{7Bfu溜;=g m9ٳW@zʄƁFꏛh¦@­9;oo6|b@#?I S6 mg$tʳ‹~ަlT Eq8ܰnr,=+*q>VOUw O{N~e`J /پ2m \ қy<6%J#>ukhzD0BqR"YgDLn #~S<ײ>JVIErZBwvn=%U3yXEu.TcB*JmS.{ƭy~j֗IXz D/Rxbm,gi\e?8[PvSW X}MJ2*.Es*֭xRڷ3`2z2gUږlUrnw)uvۗSBkșrS\.5^]U⬑^uu7Ƴ}0⧲$=&x 2Jq{"V;?"ƀ(\3m&:#3v py`@K =i(Gw'mdϒ :\r'+oGfg[i3B*<&,ft^n439n?ߣ#:wuN}y]ꤖ 7݁-*S?0?1UkK l(1#nSu\CC-% đic06-`~3l0Y< izzfaXs>kQHY+\^BdK#˕c} #/;nU }ϳ:bZx]/W8'c3>n3\׉HZ016z<Ƒ W% ƧO("aY!V"up0< PEPQB}D=Ih+-dOÆ``~yE$LrZccs2:j,&q?rrzK;J\)wF' 1WA6lG&8X"[⨙#06oLy7xƮdG[ua-7S4 WF.y"=)4휖f8S,LX 7 !`huiM0y4rsyG spgߟ)ĈLyX<,3< yS,(ND`S 8:Fn[[Y&ǯSnL@deN- R|tW6eN\dv`oҗ{㽗o-<8Ÿ Lkþ-0kec=NaNlS{CE੸N|8o$8ȔەH2!Ͽo_ T;[vhz`I&]Pc2إ+yX CxEM/W vS+UQl}" Bޯ9D5 @R6KǤx:EM#ݔ*2qѬؗfVs*#=7aF-(ݓ C^ǝrA`Iٗk&ƞ&CYR8D4  D(qCC%i{}g#A6a1-WXbw/:pՀNZaqM#Z30LtwK]dzH=p8*Mxg2`%5zJnhP'!F pq{_&bphyE-Ì~R]Hdi٤6>) jk^e [3 ɿ0n|Mzdp{, 93Tkw (Ql$n+")uV>:J)Q`=s#oh[U 4FKR`0f $r]' a2ixBm~N.?!qQD>1{@nB[ܖ|1cGNňȷMj 82Jr)<[g &-BR"тj쫊N1MbZ +AݫgB\+D}IGKz~Vº0@ 6\&؀{βQF.gk!pI ?W$/%XNo+H u20!da5>LRt]fb<5+%fOk"ϼً3}y1>XYqY[=`u)Oe_Ny(g­uڣDwso[[MAaQp#LMM=2i:ǧ[!npr|"ov [VSŲ3~$"ڐ#?|GZgPL.ճ9ׇq+ kc!>5hKh g4_ qJ!~;ڨ/9㡏LNLj9B&gШMGl?qqd?7Ә}̢FIͫE;>I5YWH/*=&0ͼI=6q(K 9k9VSJ  (H\]]썞bONy5mf` DOb6JY|G椵BG  )G 4ܶ+}>|eN4SK?e}F_zagǀ9Տ5᳞–5zԸ=̈)׫7zQ' Nov\bO+:pZ)IGEdsLt(iۚ)$wCZn_ מ- S,DZ<-4@ņ6=Tϣ:3/&\r;- T]?Tm#+~O~Mj+[*E: `4aV7!GkV0gjKupY 40!fӷ4jiJ촫&FIyS8K1=u<*Cj_M$GR<jnZT `ݱ(} ȢE BkVGK1Z3D'+]+v#K'č] f;IÈ.Bٹ20rր*{Xf0=^Ӽ7 -b8Ru{`=&CpSO$uDiue/7>u*U  ӿTYȷmʥG"ؕv&G:lu q7_yˬŔp&Nde,Bqla1bócQ@/P=CToe||w׵ԻlPg၊*0uN1׎k$6?d#&͔nGGTtysH h>d*HN_Şkb>]GxVKj;`k99d6Ce%-0ib.'0Ȯܚyl0Ip= q00< # B[ P%aJvWS( !g83t]1قevqAS_C=XĩVrLu,:r‘˷ |^8"I}DՉeMv$4 Mǎ7i_Yk knda=@v/aXhGE]TSF)* }~2.\Uz?LcBmB5 0K4˹ /gYi9ff~11*%0TYgmg_Aaķw Q;,OJ޲Aq|DiHk]&%aZYۉ ]j5. A,}m#*?|{U{{V"yճr^֢vC+S"{x0Ge8iZP 1& GzODR}~]0t8$Q^RKv+7K.=|VT7x i"c%߮&u3ɗRV}X]$972٦*ͼY:f)Nۂ/12=|bU|ڍt8O%ZUrsg2@(UY=?>ߍC4toHQt}%Q0 @OÞZi9 `ږ?MB!6 8m] lg3ˆ^?wNR$ogAP "֡oDS#%`-8A_力% }1V{ 3?]9CnjpR6[@: :>c n2YBѻTtt#kJƒ@hOf=Dz{^ZnQXQ3Ҁi;C!n}m39V~Q9s>mR*ErҤaI(Vw;Ut`^<Ww Hc(VQ>,PLƦ-ub[qz\qʌiC[jX %gScue,JQ ZÅo4u82ۂs&g{P3ђdԆ|$K {51 *0g[뤡w5Ehd{zyc`r+D^0R[E C]<wm)WH]7L?$hM-wilݻ0zYLo!$Q;65&^ggz57k|ą j^;n; *ʰ\pOY]Q侬YO|l ohWht%i gmjh↛-=@ٲ?͋^)ֳt.#OEf4Uu x JC ed*=W&Չ[QS/$ !_k!㊹ԝFllNR;~Cɉ"+ERREe$3A&-vyd"˭C eaƺ9{zygQnf`{ b#j$zZy~r[W?'ew1Q'<DeW9:2s xJLX^9[j]4> ?CV\+O` of%hP\KV7tcp  i(o !Ch#46^BܮVlPR?bƘ礖ՀT lunA1TcPzI07*>#!*}<tMh*I0N짒j(I:ik|VJkŰ ^0]xj%`f Na;|_LtL)穪qjdbH#> 6㼨Z#m~vRS:c~;N3ݒII=+Ϋ7J'ڌcЎ#1@&3a=+A3*Dnhn  8HlY[K ikE iw}FOTcgs}@P̮:c7`Ae_Z_Cg}ݵS}bl aFy7cfinKjّ/'o:ut۫ʷ; mXJJ♗;䰑-.4~&lYMzqo$Bv/A3.O']4l~m=m@sk/NV]tLZ4>.\ !WX|=85yv!/]q0PA Ӭx+ 6=ގSMu soQZ^(9N05xk 5stRF6_JFhsHE)*#`#ؾ<vw;cx$7un׮( o S G~(qX-Dt{ׇW,B.LНn1$a2u T m%zXյBBD=&P)<[ynDxrM["%w*d%^;}2+i eqaL HX@]38ڭClBt]Ճ]Ƿ!:ӎ#S5fiX-#lvBBzn@Pxs|&XW8z焘诵juaQKe&fxaǦțDtEYͧmO;|VrI씄r/4 "NoB'V &#{4>9Kb vDqvRSd|8 WF7\vi^6cXdq -G0]; @6?Go}uv8VnXURRaGa/)J ki!j (=Ԏ3395᭝%t&>e3hљȧM8[o`xy`wQ&n߄KUϱ$[}) + g-2\HLF_eQ֙]$Vɛe~K ;? ¾}&y 5Lk^f^ä˼KʤC $z-.@icW6g0gBҰF KҠk(ϯ1Q"&^Pߓ=B. SXqVnAn\S`_ޥ#5zج#9c>I׹ ũi. RPWC_5Yi׿sw$XXYB)|C]0p Az`/v>Λt&;z-).oc`]'aqɮP'xGaduH!]7ȫ'YҚnD6[ Z%3j L68I/;K|_&wuh~鋢vMnIUTkjԵ0]xW9*Ζ~VKTwp,QԶn>*\[(mA?~J.T8vvn)VnL m/|w*d%JpU[9&uzIKX9YHOg0Mu(^F Vuˢyht gb Ghf k0<A;—s:)\b 8ŕ"^ݩwb`.7z9Iaąx񲂮"g#(HvvݳYvO~=30wGm9ƇJO{@郇"Q< ãRYqjISK-X'z^^ȗy39wyz=[ a c||Yos#M]b^LRB~i8M\յmkY+ /IB ~,b'* ;ϮWHYâ[ӡAF exR#!>B"'\y}.&ՄʍAdϬcΛ+SO K' 1xB۝`Ny  2ҺE+h(} W TݷЉ'6"%@͚Kp}0"r9XW:l\M=ˍٻ2|Rs77S@ s֪MUc0'X_أmK'}D -ˑPgjxjHAO W)t"Lr<p% ;oaf;*6EE֍Fԡ,K5ѳu>B ڦMP+$دC:Gb8U=93 u63alu \|ե["!9;OХaΕ%q)+T' =[$`*/.Ģey;~r ɨs=HBI옔r0<$~x_6]` 8%!(<ޫ0|2z/Rۍi%v X@Q!OOō=zɩF'.p¼uz NIFN^]FLe?ߑ̕[,@l֏RS`'}]eS^(wt$&ᕣ Ô], |,ޔaW]55.O S@!H8IŘ4yJz#> #z=a-8kai5 eh{8Цc7P:kU sP:7 8ӑaIKۅ:&bL"\0ynq"MٲOaSf鸏0S`Jq'yt?z:2.OHυٜP@s ?^P߳}$?iqd/ X=^<]O9h̿@vc~)7L{ IW+52׽YdKC%!l0[NU ްFE#A#I@Sz$sYEϷ3A ÙÁ몼j 0\6 2P紀=0; ӏ ΁M jxY USd?ќ\vKHk3W"ѼLIv-?'C NxK Dm*;7oڛ+?tKϪ]"8 ſH&6!؇N/`|_LQt-&p;QGIk'W 9>fd3%M4Wޅ)n0~-Ͳ"> )p.eޘBAbda\.l'~V )E7MsgQ PBZӧKFYYAj"lcy607)L*Ǘu/u촭$E/ }ҧn$CuJ5-V$nx$hbfaUP w&-!Sy.ճL`δ#;ǁ+JN\1&8a Y}o~!9&41/YAtuI2iQ  :/G IE%P9a&_Oã2NI]4hʋ_g>8EbNU#6W nnĔ~L?1NR!踙vj9VOr.] o]>VԘkn)]šU۲QG/`SXm+S팩Kw+ia)){ +IY8koZ]Gz(+ (-+@q̰N.y`, _v- R`/&, SMqixphgd ]a}BK i@r$Kqw{4c In $y"=c ̤v~ e<.7nH sKUEo wZ'EA '1SM7?kG:»%}W{}U|s8g3׆կ~#kaOzWlө Eo(7pvJ^+bJa l'ܶI`"`{ aL6G+b)iYkNޘ=57~eqRG1} |!p[⩖a[`-"a?G^MNRyȆ?@nSY>SL' ,IVϜ@z;$'1Mx\ -l֕s?ͳލoj.S6/e*iR.K۩!  7x}S-5~qXvK,-!c\˫ܰcb,:-=^j@)ƮSH%_mT0Qwo!<)̽>\pohY ʒ! RMߡ9MFGg(!!x,4*{^,i%GU'nb\E;]ET0Šy$mhq?EcvEoȇF*U{0莸h*s1PZsZM cc"tATx"{$4pQ*j'Di$IߵnS;N)h,O]P_Y z㏷y^s0(pʑW`Ln09 é{V9fL&,!hʐ&k|OmYl |ei8{ 6 ϔs ﱭ|D9KT$6ke}~^r涁 9epXGҩ´u7) &}=cSupkH( "f}Y+iQ566S— `qbLGx%T u8|tqlqcۖ :H|]Nd[(@q<ÈIb9$"?3c.-Vcuܳ qg Bf䆂.$W7a_;r2SUvkj%,IZV˼qr CTA1@dU "Bjm qZ2Z@ʹ'f)npxG_"NQz vj5&_q3c ]滄~EiWN09q6 @cy~L4'Aœ&βh32>AUݪx{z[KȭN\IU>ɥ\z^0P[m'P:=$,Y@0X= wnvGgЧ6z<̵f%n.ǒt9bU$G" 5G'/m:x2e|4;> |}[ZULܜ zX!mC0S >h \^|M83뎾r\f#sDw"*+D1gR^1h2k8=Ċ% xϢ]%5:+ Z%pi] %&uNn~L znq T&v%?fNl(9bĒ C2;oXmXfGhG#xׇ>w_jiUMܰ9; $wqQi,4i}2`{sg%blh 2kwvTz PdB#v PKyx"7'z=JVY!ѭzu=̷%iLUZe3ljTW!il .,2?#dP5_I<Lic2K-jw &b>mr W)[+tgd̴ނ=wÓ<.$.h;)9j0h|4ztTr<ǝY.,!@0 7]JH@n\`9f4,Ko].d/Ӥig( {를>쒰9!{"#b.Dͣ647+L4 4e$40c[&rR{1K3B{jax5XwPS'V(&yI)ljAW`#>grq]3{pyO!_uKtDZvFgm"d4 #xDS k^?c0/x.OZSϪkuB3 [2n֡ccEgۄȴþAOUPDZb-ϧ`4=F\ʑp)O?Y7?KUlp @ 1iePIs F&TvO ^!r;KC'Ga e4v9lp #m7y޴N)N6b(}$q)A _=m"T>?o<~%TJ*< gQ $O~<ʧ3v&Ƃ|wāUFj>ݹ 9t̹+$RsdmAqqA&Oqê#YU = ^!N+ "MSyO5Hٝ E^5pRyG΢he8Ղ:sZݼ'iAnA-1!xgJjK wgRҏ*$&jY=⮼sX֢^5q=3W|yA) H7m;"}c_o@Y{L(88xdO+:aό"zŨԱ}vN~ўO5AT#g Dy<4GQxH@6| ҅ʼ]2|p@][!鷦/Qp# ĊdN_6+]=$Z.qD$8Ar PBg!TfYWO-;ԌKEWHFmg6Tf;sqBxxl>QDyri%oïrS^ *o ]YNՊ8d,gbDayFe3Kh s`ituLof5B us5(6(lVNe8pLR5hU&*5P<_ (9V UKMFvs"`F?ne" rm{&] ѓc*[!ܻCk={|(IMB 81 O\UaeG̰ZxBu3Ϯcʅ1z*A?\$ Bؿɵ0~=1 j􅛏j|8G38<$f4Lql1t'NBktx}쑵oп(ϊKZ+OμҾȀiv)#~ ;dJtbb!M=rrZ GR؋<Q@d?NDya5oaAÎ櫆CZJ <#c;SSuD^F*U%A}>atۀ_slՏTȎ>Dp( \s D)~KJ`05CʯӪt`./qniuRa %o9+m.o_WRKx?v+>&`-)jTJX^e<#ʽB/dlTQLct}OTC]Uw-qAkJ6Dx!"xsǁ@Ճ" E`nhdZ,5֏}N=E W‰Nr)K/ \frL^){ݑNFrE_b9高[l ~VI܆[h$azJ"LYE v([QU}e3B:8jmh +0Ȝ,SmUcɜ)߇C|O[;NHYNQťOJQj(|46O8Oj!D_p2}A+'ެ| +9DTX(qo{`2nc*!$5:3Yu?"Y;0,/٫r$CDd6VҖe<'vK6m/±Hޭ3)<ɛ:!9/Ou.Ky\n"?Xnd`hD=ڈh~?%<Ч*ʙWU8Sq)yzJuu&^ $Ϋ)&` 6\GF&nefy@mIjWƩ#v/VLDmkYo= ۿtGـs*{27x~Ч/vAآwiw$Rw 7`EIxD@}  ;5H3ǵx !O^)>8a73"@Ѭ}lF \B7{3~FEUM"FY9`RXbDn3Xkvkk~3؎i~jJ/`gSpMn'aUa?;-ߵۊUε[$jb˦f@/(6,Aɋ>]11 cdDD[?.\Ԩ|eX] _3+3p _/ҳsI"%*O)j#?ޞXnr1ǐv`4sGLF F1xdrL3I]&Mˆ \zU --m?_"{y%_{LJocH#s2j^19Z>Ϲ 3* eYJ2PrYaJ&y h$d)Ř ] VQ,$Y4R>k\W?%/T@|)cqee>U?۪15>/—g &*Ϥ-&ԼЮdw8 ?mI0/_b`[+ ͉#X\<6sdNEv93d]1`A {_9FrP?K^5NEŃH+@pa٫S:!o$sQZ7;kyg q'I t8s? iիlr ԏǙ%]@h1+ƹ_k_%Hs v"t%>.ʢ)-0@p/x^"#@ ۲oj}lB #24<>˒$%mOŔ+`Tlĸi4<[a.Lp[N*?V.3R-IoVWHt'D$D^u_Mtz`MM$f]8ӐS)!p%kB"J cMEIH)tXPNj_s?(xh:N, m⁾.Wf~<l{d$p2c 1mU1Ius@S0j.GZ-:'mQ0N6p(Fw,ȍё/QHJL&bcxOS{uB|oeT1rqlA2RBUǧKG ℣W2lX/CW Ϯ̹5|6~{S䟲ZCDtś(iGdbI7~LOb ,IN% ک$[ deLy![撍'I4#XW4Mo)~`ì%̔M6V"5=܊>XgBku(JBL ąK92rYbaXlcjC%o/c F5&'hil6z84 e2WKolP-> ~Nvuݸ=/# = :1_/]X(EֺU^u]vAP㠶 MD\v}rb,v+{Ϗ>z\iӖ\Nk{N2v iJ8SJ(967z.KGy|04 > G^C8@woFTc"ؓ?6i{G1i xc`ϢI9H:.@V[{V(a SbH!~jkcsC6<}y糲# aIKyJ)z3T4U+h e'P81CSG3Ì+fp,]IRk/G`w,6GcΛ5tܭ3Gl^rnzᕏ|Y >Ͻn BS <45a&gLkXBTz7Eb[ŽR,ƞGB^MNeMHU[y$%kkWS.= yiQr(1i:Q@_Y1GZ,<ϮОlr(n1?8v:D|eI */ l_h~YV%+YL ~6Ml^wT(~R 3ry/q}=' E+0F`a^ [2tnjMFn5i]_ I˻?ppGĎQal csS,fͱ{tMT²Sodj>n͐zw, qT88&4x $/$߫3kr@Di`1* x;}t9-Tl*p"j!&0CǑ%{т8/od=%NyOPץu0 ͞+G([tgOe|>epv؝xMP MPb,;i8}؎-3R/pX]DOmipa0Q7^KL>,AȊ75&&PW"N yTF!)p*lC0ixB{2w,ÂU(*u 78dX+W'oJF(f#91*D@_>pUV |Xϟr6z 3E=mi;.93R:h-SS5thNȦpgN$=Wq$t|\ꤿ) H%vٺ.ܜkt~mkp>EԐ4zaז['~ݵlBΊq|VDlJx*^RM_ .B%^J%(+ zpM%r1 y=Tk('YVVm1@ѹMP +.lP7UL Ш#f8DGT02V'#^d$Ȏgk9@.Um[Ry <=v0dM|t@e _WEpӃ6k3ݚt{ǥ3%(:Co |l 8tw?!R"IZ\J{wC{_L8Ѭ3<,`L(tSTjUwJw9f C\~`;vdy|3_f[)5nnNi AfG;|] f3\nx%0DN I/oVokL̵|&N6xw{00̥S]=I,|pKAf[cD,]̙=1kl+Լ98 mGM XEa*/S̷HKyr~[Fe lȺ(CPD}3xxHh6n sfjqXwTF̙ ڹysT8y -Ixu^:D.HU>nNQ(]"J/b[96=(洩(U ̡hsD?0GU``OeL|<leɎ'5T. i1dwGKWStc'p@q]ӈShl' Ѡ>l{5L˾Y ;xD؝;C8 :c4b1@UL@B Ńa?UT2yza?QbrGϧ$?8N?CCzyv5ղl) %ƳNlVYL1OxVq_kqKyS/؍ЎRC(:7z2^ *_wdVS_Xt2X<8 ٙخH~`R-x(fYBawLn 7%vK?YD=UWV{idoj+"R帠GBtIj_Wwbc2;N^n׏^tdzJ,_j2w,nm`G@|/ ~~ųȝfj2F\Qp929$ {)d# gCm!IqTFFVsޟ$VlE`_^ ݣ ˔0,c2I5UI5lm#5`0\閷{7nZ ]vk2kϥJfYNqJ7T(QAB+-|9GK+vV2i9#GETmOI y/_f wBx>\/?+0Z6/OΉ^ Ip E`O]xM Kpc!I 3YcS#;YWJ9E m`l1bz ujڋ ,Fz^1k<e2q()Ao>Wca{4 %3/h|c`vE=ⅹC1N^D(3l!(y#fz738R:;s?eiH)c.MiPT(@>}J#'OI{,@q'FJ`7< Pv<,! p5 S~38!] #2]( w y1О7 7%x3u<e,3L!¡$e!~wLS(s-ȣeܖ{=ΐ@٧5 t^\j2-oΪpͥ?:>eL_Tk>mG(/;5Yeiɥ~pVe0oT?G`a={h8ns;s7*5unPת/A2-Qzq<5]Q6&BMVǝp>Xj&CzxTTYW_n3AVbL=0BwEnz_ԷP 03lsòe:!WO\Eѿ񚢔1*FeʅM-x&7o}҈ӄ7:a5Ū @I[‡$y(bݙol$\x 4$hVdмxœ3A=D^fDΩRTC2h4'(P%2lj+iM):;0Wg` Ƿ\NiMEe/wP_ʦ- #OX{NS=nc眀c) |:[Q0an(62'U㖼Iw0$On(5>KcSHTPMeUKkag5K9,Cy6oEK@ݖpjceW"17# VȽRB {r:&JP^876I썑>zs,uI}G[Oy7 0ϙ_4FBy NiP3j1tϙ9J7oB nш'L˕hP٦@QQt=y5_z^amNn z_f6؟x[F-p[6TmYX~^B?hl#oXyFe~/AW?h䊷V-s67@a%6c4QO]Y+6$s{c/P}\6^E% niHup&'voh6|}<Փ0#@Տ춍]Ѷ"&H4XɓN<ъԽ%edv#3϶WÐ8&r_g0 s( dԅO|^逍e͐:99]xCLe(xrzUsn7s-ӎ5X `$}´i~ƙ_Ы|6)b xxxwC/Nh3j{Xb5?yΦ"}_DbY, L pIP%N0SָCVOO'REãNBF@>$=z5yvU6"cN}qO83Aj8RW%8#tޓ~0ɁQ v @Y%FKx ]O%!zG=Zd:U^A)ERx.+˕ UvSmۄt{H!FLٙMAm}?"n!4ϻɋ^O971zT?P8sǏ+Z_ j1(<58ߓ|P f Qn|Frr)<Zy'.@1=s:H (LSlM6B :"w޻c 8cy퍑2O M&>V!v)H*u:eg3\zkͦ0۠3{gvWBN ,('t|a|{ R7\MI_<,Hc_6V+ XM 6AhCK 'x6)W|B͓QBHHrmÑ \.-L]#EKRI$c?~εis˼o0Hx5$;VoY%k.?|ex -RY'O:#8GEr%Qrl6w{ܸ*ivO 8XҔy*%7'q\+tm5M lE. EƟۡh9Op8,bt ;$\xB6k|WI$]:CkH.ː6-˪綿GEt-$sLg#61UJc=? ~"=|G>q?)C>k߽U8MwĬZ2DӧA@CaAg)itNdP5H歙"Vy~lvB-,8YY:m.ZB鴺[7ϘGyպ_mվ?+ 8oMYD <ɔ90!\>l"ScPz\(idn8˧VfZAd}, /2PcT랥R,94(ACϨD6^[(Ou7B7,Q0b(r kH): 6w:Ï&%S"Rv+td_D4, V#~O_{ҥ15'uؽ-4m/d63}$ڪ:@ RўpJZHq2\۰}L'iWG'ڭlAe󥃹U|s )oaV :1ȅ |z?kHhţ `u"+ORCbK70; c ϐpC;<D(G Ȟ1IJ| P}%fmȝq~AWwC$8&6_R 8A) ϊu<~RF2vU~v5f6-Xk3ʡH-ZE"}m$Hk=1_yeXtCe~sbzf;`Q|ʹe :p 6 LfY%Β6Zs,uN-FsKIv;e5%5],'1&U 3ߋ20iߚ+OJYXgm,N9_}kTD@9WЧOG.KC`Bc<)>KI|(T_^[#gJTuwhվ]BMQ_4 O^Z&V^E]X(qQvPg`ɣʈt+t~nmCWl Ef+;8fZ΅qN 5?sV89ű#j\%.LsfB}œ>ZQ)M}?WhJhΣF߶lQ),[*Tj #AiNmvQ֤鿈qgdV Zcb̞[ӢL ޒ%@45s562#>V@8}U2N!)s2wfy+!X Pxj - tw&|㊮!g5$<-"j`|ª'(3j(AzZ$JWEdF̄P.$<Ma ^hiϑ m2̝@hH.Z>jp ~b4bdG>/ewfQ!=1Gȇ|5tcDK͌tdR"#7#.D[LyiW'БjZ)ެ{hԡ)g\l1x: 8klܽMB pՊ^\[=-,#nf&XK6F.^zB”莭O.tTĘ1AŞM_M\M;{eۜOo]9r  =rn<׍& 6oc7STtʪ&[!!k_n%6V|?aΥFmg]&tȗ9w(Nx%IE:7렑o#?Fqv&_M ^8Fr9{im6c,pvi`[j6^@VE7o5(>HFyP7x{/N$q1qZ` +!y쩄[(1=u/EBIuS&9 TaMLhem2-,]O9z3:KRt;pi`1%ڑk^WjI(}mszg[+Rq>:"axBYֱ$6RO1Qq12\U(q`0w#ows&^wc˖BO3!sc|} x|~T(5 k [eԬ%/Β$M dJm&sjXbxbdjr5j)<'LE:i"cK"UBQ O/[q_iqѩoMC2"ȝO0ܬ@|ӀkXfx;õ1S=a lCX6o靎~GAU0 gkcnǘC Ǎ *X_4 X%6NӿB|:?])t͈ܿ97~rp>*@OUckn;sctIqZZb kK]+ G42f(ȘmFLͿt㠷7i_,ydfg`~+^m!+k^|7BnTi$ 52A4M|6Hfr1q.+~x]mZ.%uf&J,!E{LGC`SՕנmhd,**Y[xwT$F~Q=Z/.+Itlhۅ)d h]d/f>Q<4A׎0UB,Ȇk;Dffɲ-b Rn@}WǶ8T*r*^f]c‚.n #O1I83lJVFc '+SQv:5a2 alkQy`^K4)kȘPQ xۻ(BX|2hy؞-'Ҭ|ͼlK׏=h s>LH߶OgGP-$l9_j Pj$q}f%&ibúM~>ㄠ&:J U|XJgcVQ^x_n,d%Ԧ}N>Q% Y7& L]*B)X"&I[Zp*u o&9 2KJQZ來j>ӡ>֭㚷ʬEܻD3[YS4ɇؒy4FM q\I[utj9Z.<|7͉Nc"VdmաQ8rCKW=yq @4U5!D,2Ers@scadS1dCr2vnE(pI`_ҼIcbC7z]-%HHXEv v~g;^N  .X[*Q\zHfjmfǁFxPzbunQ0> (NR9<1 =Y{jN8ȹy(qKI P(t&jKCLXt$K7zw0J>6OjJFMzo8cNvR,J۪cxW@JU&fvF4ӂ`c00dm*p% 1Yeh^VW Xb~5}a־  grÿCq_❼]b~7>%ݬZ$~yw{ G~孂cL-XKCJ6׿]6OY{A ?Gz-D9=3^a@XKnOFUQLGtR|;s5B/ f*?/[~T .*i1R6K$fEzTtbe{i;*~% N}r{dKuqEӑ Ja$!ƢUTfEܗKZq0tDp4p\7Ia[ak EFx4) 6گШqeW[g ڽ~|^%8[6!&Nx+w`e9G$kΘVlhW&aC+ R GgX8rh8 &.`df2T=k'tSQPo5C-a~>>r, d_:xu?sۭ GlMm螇kUzļ iv-ռRNmI[UAg$G 4K o0lEf" z47#\OO:Ϲ,1r,4#C%bP^o ^ӫ4nX,= 0ve[jv7hk1<6;p,tҚeܰ]rE|Լ OC]V6"e] 0;&`Ns`{?2ұ @)Y-NTnڳXn3+Ait;<ш@U 0 0|Jo{Yw-X[|IID|Aځ0c}#% 7cy'GSQML͠VpsG !phUTL6ɧ  b-,|[Ƞ6 9u;bMJSc^+]txgKUkѰ[P$PM'Vݷ`zz gwYe{.5X+=R8ˢչr$l>) u;Ÿ"ǫH2Y20G%Qfl2ġ3(Nq GÓH *BðmȀz.Lr 'x5P-v*(|vt3b@n$8EœqQ$QEh ׿plq]oNgs=ԪߓzAdn<VZ07SHK(*}>c]gZZx?yqx:HPz,x?S=}AICm?;nͲ%g!pp02P5~+Ƽq*Zi- z| iA'$Z6v Յ&nV()toJM.-18/]Wɬ=Bwi:v s'TG/`!zn ~'>P;sP^BZi;vzTQ=Ov-PA~k"ħM }۲G _4#ZO/N$sǾ*z:+f)䎼D3"L~(ATdS`N.dutE\*G&cOۼXf/* Y_"j`)m>B*.!Zf&lC!@-_݃-oZKgwtnU8((+E026d2`KNY^`^NK158R=NmB#ȓ{Wb$` @ٖEJ^bo˯%:mB17&rj}mg98 [H-AWAfc33*u'`'Bә--h-3kpH8&NfcgDK1/Ҽ3]ݥUtZyѴ[$nDK~Q{j2Q'8H@N\(Δ5{R~$ێTlK3h K$Xbz7y^9nkh$@m6)k9і;rxh"qx)uS A̽GQI>&_]#VX eY8m .=x3iM+|6ݑocH^7J=XJpվs2̴vn;IG:QlUbet-? B) 5&~OX Ц< Dob砟)~=ӻEC5PVnS:ɗ;턫oIV+|(D݌ksﳟk]eבA10 F5X`i逃x;*ͣITG N{ؐY`n"6( F n9^*I0t #;Ԁz[ NQF3S;\DSIp#J 4.MG/EiCLoJJ.K0]dYuwA( ]8?tbBt<㋃F.pӅ%'|2 g$xw.a NkHUr 7_|3֭xrn:;5$!':!Gs$D8h)QQexF6qcHA&v LOuUy=(']T\Њc5qF\aL}W6(o_@0 0<,I%Y(z=֒5i)#Fxà}ey4C s02!ȦLG9AS$HݜqAnoP*i\!'wb4asb|%RƈN*M-W"XtHg+3E6Sm5pU: ^JE</Żqk,N\z -NzT(w| FvRbD<@HH=ϘF=eR.nXy֊FBω";'"m7Xm430^{0G2^Js~`b2Q*ju20ٚRu܆ҟ*{ ۺk\ *hc!M_ApHfIuRM򽝆Ȯ_7]?7"G׏"'eeKg: mr% (}=3b6)LǴ-AQ8ӬcZ'5oZ_ctvA֗J n5x9DR#XW*OlfX+U8r5:p49҇9~ci?^\I|M  1Fۯ3M])N(xҍ^NwХ)پ6]!|tjǜ70ׂ?dIx*2{OWNIy2V߫Ϲ8sT;Vm?b5\4Gu ~d# k9[ ;NsTϟn<{YghF}a8 w67I2`/k׵kWB4@C9)"R?V6M/wsTfyf+) C-,2SJbB{‡3f} $TU^䨲۶?u Wq.y7lTUp,9^06:S# r?*jh>EjRX>+g3uW ONRZ Lop}H~gk}bⲙG 2]4aRDmJ''FGeD{Qʄ^D._+ H+ /}1p_;VE>?Jj{4yƁ , )SRd⿸ c$2򂒡oRkKT7uOC3.;Dx6>sk-nwVP7]!BьE1ؕ'jRy=MeCXQKɗcS;? 6OMuW2=b"J\BAJJ9F.T1ˑI8-b{[v9OKEzЖozO=:l ,IUSuf4?o=̽9j;3ٱyM(;s$ F~~\0fXT!;k,eG !ְUp1 nˁθ> [zœk_b=rvjCi5,C6~SN7H䦌1I}7 fw>旱 bx, nMhYSKgxu`Vp2@ st!%TO,R:WvՅ𣚡WxP nuXՔ4oK+E~1O`y`VZ(Bn@6hrWj Acs'>-ZN'*g]ݗE ex{T?#8},Th-!l&)FC.޿7y´>G< ͯOG Ȋe`1=^#f=DϭN[ӓ=2Mw 5^0stO^69%zęi9~" U(<48;LǕ%*&uۨ9Ņt<*|i %ق}z koT`;kΘ;<34~NSƊ=8x1tb)!]'7Gj7kii @DE"\:(X6 z#tøԣ8՝>c$7,Bqv5cZ- NzE_kT=Id{8QWm\ 6{(PDt}5حc 4+$ɯ6aWqk?(x`G&P`+HAxGVDr ) $"Sp!>$_c-')*ܝś@sml7aF `NhRpEU4S7:~' 7@ ʇ~ HO4H?Wi!{S/QU :{`7re+jC/'*"KJ}8@Ū!POrdo.&}~#q& m}Oghc5[7 ?'[7 ̽wrMDK01۝BdT}| ڧ&j)@x5mD,5vDbt0ri %ylQMJH+.&T_(DA)k}0 #0 Fy]KLYr&FL bLs9b]xb58+ݦmYA<şO<+Oܥ P (Г~iFUw jݵ9ep,#ylAIZˊȵ((<g\pu[I&S1OKW܍;g{ݐdh;4+gn:-A6OGh:hp?YX]%]il#&O~ɦp^/KTg"{F>Y\0L8^ԅSp'#-gi iM+0Ai=3vM{8nVڨ]2 4NoV.W~ј@&^iv?hE~\qmEG{RARS虭KjlsVc{0__ fԿq2N54ș޷ )MȦ)L|Fx A"ΟtYΈ83Jp|%ReNi, u[aQ5\N};$mҒ7LD%sz"7FkbѲpaf@Q<cIRo`M7f0 ٣ u qynw*!ǢF\V$ZpI۷#UNWgbg'MC:N C̟&?<Ր4,?ίOnax*˻wg LeN}i$fO{'GHct ͵' 6j!KhuAz 9h/Z먭O7/>=:>2FwHoU:qazG.GDZ6) -NahcUˡzK^r Z wMݳ DoLbM o2) *CKi"뮃CVRrlca\].<3"$D܌!8wY `^T1 L jhftn4& _筷򃙎_f%v|MI @&2AUGD[y^8BTS5 ru,D58=,ӽsRdDYT`g l;F%b=@jGã@U@wkB[aO$*DoD+ q x^-(4"dX]uԏ\&wbƃ5̿P14-Jp34&5v$%WPIZa`MHɊ`_ >(S!4~gCX -JJ =$*lR՞yDU@cC{F=1bDMRxpU.x>Q][ AG%OQ,v(ꋔ#!TY>ŵkQǝ\c:W}[N8ð 'fw7Q-I*xLF#$6|ӳ; Yb$Y){}Yv!EAWgIZs{+Bz7>&9Zf7-/)6w2Szzg-Pfqs Sh D4mAS[I Y޹6)Z6=Iَ}dv ;Uc^E`N-)ܐwU$ 4=^p"0\jIvK$M׉=R'UGY Q`yYX, $j0`kGL"y Wkx=L< ١( ukAEdK1.|tU8a+S_f4 i3k֑{<̰fIBC&L̜kH3lq%#3E1ypMӧvK^(q4_'s# L> jmIRdAW N+(PMmbM\tJr,򇜅 D(N*4,k^~B Eq"\ޮ_{yil_2_^PV@֎]]aU}}cx ?HK3ASW5o ()=+"ߊZ"^UV-k~.@Pt9O:t #>)aCB!Y`'W{0+R;τܯm?XCUZa⤃cuf3UdZާ#~r"8]\.P!O3:- s48JQ@ e-V8!DS&6߹f_pEBhj.\*LYϐDLI(n>D3zO/xG%a_и ϨC۾/r*ߧF %MbzIU!m쒒ٽB xir>r B~fB[ii,Um0(!E| _ӟ*rl5~+}.o43tɌw>.$"i܁]A_]zWsZ!E˺`?4\|ffW:w<б㋤YS1`ٞǍ%2-34?Wm&+Ӳxe){jH8b?pz(պEp ]wj2KJ$ȱM +煌h5h N l_\&4Ԭu>$'7r!jAC*[ER[qFhGrHX5\C8*^:ӽw9b ˰i15h3f"%λaNJ+wL8p@f#F\]l9Cz&tESQYȞ3Dn Ζ\D J{ѓGgc6K-˞M]4aϫRVG0Ғn;B{Եg~ӈZ-yҩG\1Kњ]o9t`$?+e [=gCFjN` ~O.0m/L H]uSMG#,Kqfs~pywb/́T.!oHTe'H&d2a2SpDIJ4ބĺF奖 |ڍG}GT1DwV^%)Nڷ`?^Au|%cu˾[eA.P4%³pE8US!DyJ MЃ}tלVcs0I֨%G=OPGSStɪSp||S8~O;@LS&ءm@?;X᣹>hDO6,ux`sS֌q (3/WexmNcdWaR +$:.;ѭlB≾-[8L64e5!yAm'_W%i?ƈsZḟ6.qxPN~NvVopQ \1܃꩞Oo-依T; '(t$nꪘ3*^$"|6c7v cցMr'A[6Ry'G땁 ϭ(CX$ExcיحLF~+;Xcb0xC+eٷ6"J\7O'Q6`gӬ7T. yMxbIdZq~{Q@M&J&a3S (v0e@!a;-G`p|9 &V$F:( RgtuUzxw,BɰjL6hrn J"d>0H'[*#emN9raT1vRJlܱAŻ0Ǹqr-_}Eb*i sٞ4(c?Ap=`!2Ne&,~%ejq&עY[@k7m\{үrMG Bi=Z Nϵw9 zAijm^pťCѳ♆p+Zt@FP:9]5O" Jö [=A⺢J/DbXS5V~f ƇePRꓡ;jBf!8 % qʑy9&`U% ݮ6iԱ"e^Tjz z7Kj`n3*4~71\?w1اX{Ff R^?I,sc Tڏ6hʈmX !9דf7yr8Edr1ßm+ (AW LyF>W((Niea2Iҁ `|+HcWxG i–x>ȑ Y7-/3)c7TzDQ&nJΉm J\Hڝ 7a:Y%hcQFJ/z*f0NےAF:4Cgӳ9yEbS}X%Fx+QHVVI7_,Ѓc7SX&q1\'I|Թ~9˝(Rt;F3%W†A%Wz"5ϧڙ0G¬+s]Ptiee臟7`qNׂdy~ rTz׎)v+s5)R/S XT0Jh q!t.̦Z2 d/Z1ɞ' 46. 6JOB٫葤G\ lW;=EFYٸ{r8p-7|tHtF9iB2йR:[0ќJ?yb<2cE?A!114.JʅLꤛ;)췣yAïa2d?Ŭ̬[DSRW? [*e7cSunG-} sl~, (O~v{"NنEP%o8~i\kߛϴ9])5;TU;y1nc y2?kU& {XL]W6.=G**.\ NOas8&oj_l]a^M$L I :|~7'/6pH>dHOU,9B *<0krP\k0o/ӟv=C\V0GxYH`R=b62J@l&Shw[a~]Gm*tlf〱7ˢb "00 i!W3O@'д~o\pܗrԧ%@!hp,>hMq]wN \:XNœA" jTCcon=)\ -L A7蝳(qH cxN\&bŒ"Vqau/G7cʼn݂>~I]_,~yA#m>.X"?dYZS$1eCO+GN(jT v4>4g^  TJ=L4(]'%ؘ!>MTӝß(E4IQORC4MG)#2k[c Uf~8 4&rhP1ៗSUJ_I꯯נ(3o#q>:9=fdT*r WUnOjAzjD.h}(w^$%9kD p*'~p/1e nlvϖ-W"Fd.F2s~B_E |5䫽:;alPK6$*$1ՍBCja cWVDlS2ܑp}"xքj(ϳr3v]Of0d[F|ssHwa0=W%bdZsE!H ?E39/Ý{G\ eM-?0:%K -ɋ΅R 6B|+@xN3[-rԩ6F1 B{C Fhs4pS%6T0K)ӿIf)QmT󺧬0LeUd*'5nzClGճ4RW?;zZ3^ب",X%s0_|7z:Z9+13ޭ  5Ybɿ'hַnT /cOYV!e@`kDe1N%ވ$ӑ[pVNV"h3:v (';]c&&v`V֪ĔD5&#V?䞐eE,~V$V P͢ϓ;go}kB7w=w~xם"Z}$fo?TRdzπ";nĝ՗@wu"BZ*} ꗍ3C!xw^˲A0BòWSc9fK>]R&}sG dQmʼnHcԎfMf@R#gBd5UIGQumjŻJ9y68\K]0B"gve 3L!(g7k$4&ei[03xa"+0]g2(EFp#eS{41n5ۭ0zhx_^GQ5m]U s3(>WTRyΩi$\ i7# h\`w܉;+l`4q|27cp%Nof3`@PK%OpIW%avωCRf+n-Jm|xcVz He3E9%Ix1WM.k*kDya~٥ o fu\5uR!d qc"2dr9CߍǓ SU~C!'Q 2*[tqm'100"m=ND|qr{122i!ȎIKM/m >`FPRщATp-ߝy%Y/NVq\=+~N:? AHS9Lt҅qG3%l2<(LM$Nqr9ׇ!i^^|N+px!XzP+?gRi.`4=Bn3t=#є#$,voL$r]<(yMy3~(m敆"H{Pg?;d:p'2'wQ>>1y?7{v@0UGHN8]q>sU/I)Ϫ>wx++*^ i:2r ŷ+Oa{pp\D*k2j|jNQLHbTt;:6 NCN' SЩ bNG {:Ir Cr}fͬhHpb~{L [lɤcT(E/c樨͐qSvw=.Վt"a }O)4[iuAG1Bmd$$FsK~D4ۤ^.t Zq(OlT,:- P\|~b^ @,%$A!?ɂ| AJߋU럚Xm@SLq6mpz~8Lb)Xp6`$тs!|Jg Ȥ°Aʵ B6dРS)7bλ Oe؞ :8ۂg~U^^*ȰlO>Hn-D]iHMLCƺ:EV$ԥFJ מ_yo6c Y3=gGJaTq8ܵ֔/fiZh{;u8lk wmfT$VmȁfNoN3n Eӛ"tةֹ̚HǷ\ݤ6ngf3UW lAUKh,BY8{m(|FCMo6/3B_ ]xzy4ɭ{v Y55ƌ+Tn'gpre?OsǜZgJ᪲$#H~/2Ol| Y\<6UDAq^cZ#4V tŒKr7$7NSw셟4wi)7zIaگGb4#xrtn4ڗM-yֲׇNf<'#IS/|rIBߌ)K"$ȚQoĻKG*\ I`%e 4CMc7q17^=+n9'č7>{ejS-siŚ nh9! n`z^`X<:eHQUݳ\k!rv~l+:9P4} eȅ :|* 1n"y`2BVtz?{'j'yj]uwf=ym{|?c:pƽ.) nDž=NoY9ԶFƧd3 OtxhITl3|U[z4ZJr$> 1&|C-*;s'8$`Σ}Id-٧ЖSsc?؍`q0ƇAj:ώI^Y1(Jqwi׉Ɓu ]:b}m0:#ԄWsC6Td.LQس0؀b$k:U 6uKL MI?2 l?1F`kѷ9QUݝeP*+Pb)NOQ@ L:{'b=ƺ6Uh\cFYn|ޑi$Ш Ty?{K Ԣs&0qe VK9ʗҷ̧ˌ7)?;LTʦoN =<^R(kC}#_uӇB4|$ɤ^z%(ygLb \ 1FȎ٧”]nٜD^S,3|Iy׎EW̏Ul>9ݢigu'j^`]$,x00]Pm)a^fUҥTBUT0ֈ".nf>( *dvaU DT~/Zg=;g^MsKAo1BR80Ekq9AuW o?TS,+ =i`|Y'K X/V (`[#rGU`Flӆ=Jơz-5ߔo;2L: +QmmkP'8?xtn+w3kȝE۷޸2]/\I&!Lّ<n;0i@;Z;O)Wpp(%wR@[Pв4!2b߀+U#i"o16)Q EVHQ 6Z$\ Ln BƝҰdbőu9%?8[Z 6~x>߀zbx!RS[bi#^/mb H/i@mco1Q-4r&渮I(CRcӽF8nq`LTٴ,Lc20i]6$e*$/-ڊضxmkv1h!fLJfdXԎtN{tXIbN.hg7SW變t=Jۮ"a2Sӂ3 yiLBلql10*T3t+Wӂ\-\UjbwTԖW@WܯT[pQB&"}hSߛ1p~l5`^=@K6S2tïSQuC ZM(I }k!RL* |Dv ݦ}@Q2皦~@}ڲ9Ϯ.F^gB3lmI [H Xx\f ] }A?*zߚ(7*u925RF|?q"V**h7GjϬrpZ@sA,{ɉTh'>n̪1[]Z>fІ4w5|S5Kf;5"wi tqu0"i9I=Ovo3"}e! ߴ=!EdWj%b*5v{!92 vJCx|13W&em÷jd:3WV>}ǑEyq?W_ _٢](v|@Px>Ec\p(R5!8\@z-8W;q.j}!>u oDu@-H9Qhu=&S]ޅW;|Z+-F fr=NXIB]U%+(|,LmʎPүIf>"ͧddhd HB_/1`Z+HFR@όm$"x [XS\[| *R2NTmkR3]p 3)e;/ ҿ_sbFBsmFZ7N`{ć hsr6(2R2l%p2x677{h~@r{+_+m U3~l94cfb8gE)vN-fmCSW:.V."8KqCKX67;@e%rdN?WsCqkԬݔ* |LjS9+左-5pҥQP)0KhZDQt؋>bQx" 8ԡub䩣l>)&" ?&hBqG<[z'pwh9wau]oS.]킸_>m+`ѼϑȭW .jحrI;wQ<4n,f]~èr*peJgf*-x͹чS~u0ܪ431xra#;j1_֪@C!KiS,/@cOKE6Z`Ln۔.|y v_QwD56 򵔃>Vg&`q ğ)e$+OHt^dz *TK.4Y@jjJPRK\?qS6nbXVlHVO=ΗW| k#(H%oi^, mfJș ԇШ_/q˃0 ~ "U7l&5M@2xmŗ&Pmx]>J!eyVD ⚁H{>3U F$ZJly]ZjKS,,,]4_vk/ʵEJH[/Gmó %Я=hZSg[v4aŽAK|->rQ?(D%FRQ\̠9~}[k)@[V `$S=(19:j?{4$xVnY"dRi5;i'0i޴w'r|0%?TohE{j#B+xRAB7*9 DC"yl$yT0Up2&g^p+%=AlwNc¯NDp_9N_KR&Ҧ\Z@YPL '؏c09gϷC0yFl6'7{;CaP&eiEc:GO^lfyx=%sut|ֶ߾CpI Zb=I7oXeG?b)y䏎ʔ>ՉE|Pqq%18`^+܇a1BO<q~4N)]333K!OPLEܖtG$h=UK)>*Ń`/8|dWO@ o&Sͬɜxt;$ȶ?uf|%q鑼`-򧍬=DfP䖂? FX6={&П8 3+rRnJPК|5 =}f$z4)hwK Gv\B4#׳uk;q&w w Hl' myӹ~9. ai_'rf 7 a&=@:NqI;W"-+r)i`R"d)hsF'OUThBrs\N>ɽ&f̈d7ErC*ij)"'uEg}\eZA{Fs/s:bqtU_?W6fK  b$9]h\( pj>k5Bacao5v p<8p,t#R'bj3b #f@0R23sևMY9Ip NKQ]'ѝ0iMCTfqfbP \V55Ou]? -KDcR>Olxi,/KsวTj7cNt@(m܆dEreBOe2 oت"W5)b̬ce%9Z ~2d;' =kډZ!yz<6\~揇 %4hv.W{/V醵wx^+֦g9d~֧n+e[ˏ"/Ҫ9'*PD洲 3d:ț Bj$OӾ//fBo%VMtz2H7; y<ˋN)Z}UR$yLH<-lHd!*~0{zU| IM+,y+ͪ_Es_ R44$Ԫ̣J]vF @1, gŪLS JLafU?DP9;@\68yEDqjqVK);,$5dBnDE?᜾BߪPʧ3Tz5*Ɉ`dXhz' dH- k:5@%dd8[vEq/Gm$fqvkuʟl$ff|n2Vu,u`ܧ$` sUwAW>d][qOȥ|Jp?xx衸 u1V#Dk@sRUbdv j[TG7]._q*{s iHђ\DED]EMهz?l7ۘuluD]''N@wsRFTv/mv(/ȯLۏȂ(8ݓ-M^KN:n,#5?kZF͈٢Y=1NUԕʞ (n[t.<ya<\.^}22ylG#3U7Bc]zk!M7o@T$ߩVKe5xްXZL(3Jcf+3"@"RsǙ74Xq)د k[.З=y|`59cٳ^}X]sSOЙ)w. p0NA$$%ꅯ;֚SNʑ&fAapO޼|?oCRm +tޫ<uwF}QmʈH'=NFyp{4O̭`\$t'lv HJzz8S#rz!@bܒ5~жSVEjVo tGaf7YG^(* 6pre.[ .nEU7 5u!~D{8!nl?2?b~5Y# gb׌,g/)[ϖ9dɠSY^E' Kq固2V 71 z˴g[2z0}|Z ɴG I Ͼo4{azoVl5oX9'hx3z`0e1|mg+艉0uoz+ېPfT'}/A $9$ε } juw9Ѫnl:lzVwQXum~sz054YofT58R9ݳ"0 D(ƈ̤uRpněί}In^Hc镼M -°z縕6Ax赣? jaF"ԑ]#'X5I5Cxm?X>HqR#:f;O>OUA+,TGCL:R/hMb~lbhӖ6"J'f ʼnzVQJ'ٲ+z4ٌN#]O#7nZ| -0T_^WN3* Q3Gp^R89g%|o ])ʒjbmj7 *1D[aʎ_b'DAd7ik2,Q" 1?MĜ(X(ZϏ83;s؂ }| zXGR>|'İEDz'lh(#xc:4i%z=w؀Qz. /CHچS+RׅZDj(X{L!Fh>"'oAgօR9K-ҵ˫~p LYH%4x6xX~"+0#$K3HYy!yZmתũ; .9JnbZ)DY1 SO>)p2}ͬ h"Ø%ofR$oi yvjI9Q3MUYc_&Iqq0 a7h/YګT|GJav v5\IXJ xHa%zlF4JTl/3pD"yʹ3F:lJRհIfv/h A{oKlW>Du8;(x;内*L4+cRe}uI- \ %g7GFdm41mXu0k뱟 c9Y7e]PTh񄜶I2ዹ}w$g&]ȡtgm jO#u7c/Ol|{<;,NGl۵H8 $av2xK2S_XK{R)"g1|\n齸{oĬ+H."YCe*TQ|$!mc~s.`=\w$qN)2~,B04lQQGe›lic0 :)[z5 QNX4P'yZZ, +<9XM i42֫?_/` Ǹ}[)uP'xֽxń+=&0?8fi H+Hz1n| g _*h.ebNb6Tqa"*kk9T?XawkJhtyA=d7_9km]ļ {$'YL klcU3V}klAfzlK(<>r߬47X#7Y̑VrI- "6ǃg-$C ㉈D?T$izo kv+!b M+8ߊ{^4?qF~0dV'_56@].O''u-^$.n_U;ŗ4nU0<@KS$zy_o'R*3ZHtM'ݫx'բ/MүM"b9%Ǒ# Lon: Ƨ[B~[p v m2RB9}W&!<.(yY)A_]~MӠod֦vI'xij)6kHw R/\DFy"4ƺsHGۆ{bn9Pa| u:~+xK(f3npNi% H(|K,YUFj\}~LbfK0vrT莳I'񣣬Av؆-B{iCsf3$1d_~pCP"TT'tObHF2Rs1 90Cڜk䳠qlM00Dk&1-E8F,Jwͬ_M@E[q-)@ē# vbXR\ $t7AT¹5 W7S9Z8{kP烏2MR 1ОTC#4wbmoOX'~=TQEGaC?_ߘBW߹rY@(H.ʉLA2*Dw閒ۗ6@yA V/re\mCM61ڶ ^ٺٽ2[.\@q~ &[f_\dFyh3 S+7X gIЛv3`t,@?{yӐi:w<*spC -;z{"\0"$͞ -? Z0DlH#goܨGxKIXr?>D;DQ ! )ST WmЌ duU&یh$Mݩ%㘕7-TH^dR }\5o"8l!s^!uH\_>b&%Oi{ ;Dh'֠`gs>?eڴ[0iUv$^GTwlz֣tn~wiٞ=orV!m 2ѥ^/Z&%ku_R܃z#t[DKXs57܄* ʿgӽA{$Plg"9v(: f!H#fgY~V먥D[~=u';&iۊ& xgnkiB)bGC, O: WhѬ tO1˩QaGlNn߼EQc[ ? Hc3h;%[eL AZnSlJJxȯ:NםrC7K[Vx VY΍B^(uyYLvto)E痓BX5_mDU?fk)<9aS ,Fj\Q|V+#4vzNQ']` "pH MoW_y9P~9X3pƷE-k6mQΣHO3T0S߳\q&)PY0ߚQY0SȈ U~P_ys|@re7g%iMl\&\ ؗ<4AEzÑFsm6,Vayo(3>8Ӥ{:k9n@ 0t0&8ƥblG\8"яc&Pc^"g̽Oj"f*Wш "*O0OoLݿJMe3~pekp:Temz. "?< =P-(`ׯ&ԕ!WǛ[tLMF:V@DB76AaWc슀;vy/\KHh $1S6N-9c|t%Xߢsܢ.¦]eƥheJ?0TI[f G%)u̸¨:.idQ\Ijs^.nI&o1K&]n 23-XS%;TyAU{6Ռme22Hw87`"{<<>΂%=uKC1k|)ΰI!k~CO*8b4.]G깖e;I<Q>m*~o-&].)uCiǁХOAR_E ,2xu0Sg4eyJYV=L*Zz~-tfh*#5<ЂN..tT,+~W#xHLe@< 23pUm'or#TIԑ1ҨJ䟦Pm]t¸Tsg~b!F`Jwqn\[nzU<,揑s\<u:޸J~iMܡ ]r`Bm7A r|57w1\*V;Kqvi1~iU'fePŞLcgl77Ln8uC_SY攧)+*s"Mvђre8I.414ؒW?Ym"5(\)epbSۇ7$Hج_JCMK;GTT"5L_ql&.;A\$ExzNOJwzAJr'%pE3 kNѵWey_Vч(şxNR*?L$XSD(悁٢a5|+ Zl)g#d kP{Dq7d!\OӐ"bXZaŹtk`L\[ zz;euM?ow8+mǾ~p&q/P|d:`/r-̍2@ނ&}q S7Q=*rn:4!8X(ӱ~$o-Rz2k&<8 aܦ$cyKӡ,lπ˕x%Hp3YO+ 8[(ZZ&T@-`q!2p@pJV+Wnې6/O%tnF#0`U gEOLS-vV?{FRlց^n~0іc (\M29Kr- ̺p6l]F)nYDT%Xlr55Sr^O~_ǹ+̊W :-XfB=\M8c+]W 05M!xe>\OLf'miW*ؘ<,tAɾi4q45-,'6q^$LVR,oF+\Aov.q/#~ WdU[;3.?f]4y[j7?JQoS=fօ''HcS7lNDV~_]ˡM,7,oMIl\*A+L-j7ҊxE i@V`0gdf:9yՊ1Qw[iKxGb1om}<:n"5^e" ;+^uCy.ْT+TifUDiȌI/1>Ji 8|{ǒ)2R>}Ӥ^I{~uRb 63۠N`a\(1^MϞzxD;V8:i&jcaoD_ V7%;(( TZB)_P-L2eZ\d3 ?D)GW7_EQ%> ؾ/o&<iBE_dΧ)r+QaE24Uc1iDPCnOJ,+o]Rm3VXPuWHGV+tk~}VoަaӐ]!dnOiy'ĪkD@IRq+pY$D|57(T4i'MA 7NÕɈ.=0C;I9S)+d){oJk ew #`U%;rjƿ؁0/˨j'X^_gwFՌ~{:`k>:h|3/Rt^!>f7FQ~Z\HhԭI0fJdzUSJފLj3N^yzvSS!x,lPm?9U50SkϡC[btP06$sa++n3S# UxS?3aGk[LQ|L8.İhH,ږ_IbD!dJrtCM/pAQ2ɋmNL$GZR0otΘ}c)tKCQL]Ì{WF=20Xw[ 0+|jtnx D ~zMh3 HuJD {d%JN++[l}Ł%M-Vs `~;Rqjq~p_N5DLbdg K{LBhb70 F>1nhmSWEPxp[3oQ!]WphBk=l0CKР eJ۸fa\Mqns{4-/$Ƽs,1_ Nn\nB>LbQee'4]ztSfiBL]= .nB<15> rOU.r{ABV˙^^F2(lL^-c:gb\Pp ?q8 tq%T{ӕZxtVn 3_U8K\~cc0Š +K_7_L A&I \7¿\g`7 ٤G -`\!_躍&PnE(̚MltT́W>6 ZnŐKFfQ?0tk Q$ hxZDd }| ;q%NK_^Ai|V,D$ۜ0ϔ 7M[S{0OqqAhMm1!@cGޚ}D?휑\ )I"M4ߛY7FAT;tgmš[pg^ƠhK.R]hEFE:bQfcĈ_4@oP3gDKlrΨւ0crRsw]ǵ_=?T} 5;W,&֪-r])E_`vvg̎zL~N)P)*YD9wYP.R o0^Q~KuDzgԫҎx֝RRFy`a,bWyije^uHVZ`D0Cy6g Ֆ[%ch\)O$C`Nb%pp98Raa~^:e5YD%^dm̼D]s++ `' rE*eno!$Mkk#v"Fg $_.0/iy`ɼ V[>M`&iͰ&DYI\n`8 [-O!0C.7ě0ɅCcEd8Ol*EP4nQ^Xl;vs*:D2ǔ4Z;ys piÕJ.{ 0#Q A,oaQ5V=T+C &<u  T~wIv^al<"aw.wXw?ϔn=H|z@;XE.OQ B5/ȭ(=8~_ ~:zʳP\E_{h`F~EfҮT>即1@Υ됆l+!.uq .QPt%$i@Hh20 ;br;,&=Sk 2P|\YaoeY€1 r-}дr'0=XpCok1´ۺXvaK_gsOkBFH3$C7;C5y@Qݒ q(CjXwGxm趈Co (}22m1ʌԏ .x+چf۱3ЗAIz ?rߦ\)DV7F%4ߙA*XpI'_Fs4 )6?\=[1VO_27KsR֕ KRF9PяYoʟO >ayy˻Fڮ)UlilxzL,䩦gb7%xuaAmc4Wrx( ʊ:`^Xʇp(F{0f @/R^`\&G` Aq =m)P]҅+#Ѡ[Ap(xc"uɥGQgF;Hb{w* ]4Emt@Ot`jEԿ2 U ?֪j戛{52Ұh`$YLPi˪ܩA'<ƫ si}2Uv@#JHWdg[1Xsc;.xM <2J{8/> ;Q Ȏ uqu7OQlײ٨ 7;r3qڪ|Y yyUлr[zanX?nWK|jBOa_?+EW Y j8VYsc$N8ow` {#q6a<,U)4 _ =랢 GTh458P!d̈́rE*qNRq'zj@0^5#쨯#V$20 Ȧ#J6U:%;5i"`^2_\%YY]O$vMycǰ Tg5 n{*DWwF'$m~˩QF.M}vEƙtG,W~nMa!L@R`Ej$VtVDK._+*03~r~M(iyBGt¼"̛ h\ٿkg\홶Dp 6XX16iS"7RϻpqMd~]0ͤ0.zO4ﱄ_˝8-jgܨw%_kS G6O`5"k ernUG*)$2 9lWbZl(+V /X`QDRȐ#KMswߒ.{'j.3QudT#ۡe{ywK"cO3R*65JfړU4Dd k~3l0Q'[NEWHMٿr jD^~!jg]6!*cr`!vxQ4%u>g 4Ɔ݉͞Y1rjwp FXI?Zb e딌xv悡$AcBLg;@CkI1b 'j#<:~SyNCzMGkԱ?;_v*u z'pV竲ˏpC<5 WuJ%l `E "SHntigkGw'lTy)t}̽@ls%̲&*xauۓ!EkژukDڿgƉ {0s%oSBJ?@|{/<1OW1 Xsfce]JNféӊiv&Cj v܋ `k#deQ3 svv*&k=y:^H jRE SXk ]J%^<<ԅƠ1QJdWF+ߤ:IHGw_E5c/_DLԆ,'!~T"_mV{ĥ, nFYž3ї݀:i8VfZݚ&.5&H%pLJ3DB\8iN$ CM/58q6Ջ2pMpdP~IsFhӯF΃_8 A+ xHo#<N0˙50E(Z<帵S" McT8هmɆ,05-\N n>@`E&9Ht 2S~&k$r) G]9\2Q*Sy/meT`Nn09\ ňQ|-& !=(PC ;G/R:[a 1E7lui_{K5RE9qXgxA Y`O`tPA6_ή8s䫿I>h! Z>ebFZVh-piwjJ;PPԽP7bՁB3qIo0<[pcōhl(jdxpD6X]KvZQmQío*\~DOyQW>9؄:Q+*% w?gz{JYtΐIiaV XX0{j:fzWbRmJ ZSU£2W{" /σⵝwZwh$+ [blia gnڵetɬe+ ,BMXp'M<!^ei۫B# Xl2٘ĴITsbb~+59 6"Аh,iO⢘F4p31}WfJKcw$7,&*.`X,C_fMFt]SNO2ܛ+`)l턑vT0%:.!kئ7tT0B]1fx,@ƨZ=7`JM0Ɔ@—30+gi$KHvz_tء]AnVK֧^mK,,(ᑑgvрr͎lm2] ד[y {Kv_ĄoόYp߃bxLhF0@ol1弻m00iH>~Bͫª,T3?gXKiƓS'Rf'sGZkLIR~; gfSg%vgnL8FZEraB#DVdϒ{cyw8oqna#>I/$Q$ cRN0ke"-<M"}_N>< kü',c s 4ƸȟooPFhTFQ=PA|V|~}T6ց1J$/ߦ OFie㎱7I2W4gr`L !r4BP, w ,BaaOTٜ f9Ebק19Rް߹&5mQDh;R~mnY"qnv/ =5>y@߄4,b f͋UE;ThA DuBX;YVro2.Amjsoy٧ĠזF>_hc yj~A4/}.Jq(l]d{00Wf%JWzLO8(e@"#cH(z a7% qKzsZ׌T633a$ ? S<ģMD$jXmhCbƬ. MX$CD¹_pj!5K09%zdUJ 'b ,KK%[zI~KEP?%o*K.Ib_̄J'a\ʹ}~/'SC؅y}ODA۳ܕU&[l]={2+WJqq9IPH9- zR\oeAP|Ǔf`+^? XL}US!I:,;"flǥ*E{(B w k{sk_j-,zM,VswoP8|wPNsvHBr;ܢw,1}-b"$A4y2'._yzHS4.PCڼ_ I{L"єm+\[D O"^>|^^+HS7N[ZHX`Ȉc;o򗙠=}F{`#/PzC~q9cf3 }H-u J?)3~!t!ׯ%cY~1z%|cTJ='\5:fzHjz!2 D ڵ] LJK"\.W(jEUY E>ic_~j޻uGuy j=pgWUBrt-4!CIEF^Rn5mMp|%G_TAҾuPwD#} 'YZu jiyG͐13!usb3dGAy>w,Vq1,vL/{ Ћ5\lqX崗uwR%cz5yܧnzM_?_')Oͯ6=LoCşicbEQIeS8tehxK欕5=J;ˠDT|,^擗zRzɞ`+ W΃DF5GIze~8l%-D6;4> ;n֓#C(Np7{5f_'j&t/$R3FٟLϫZ!=, |V%l]Ÿ/ :9OAO3*%RQP NA;-DʅE9(|3?rZ\^ b_ßvG=̇1z$Oy7:V\~↢Ko7O7ϒ[7g{Q@d dÐ R3ΓS(P} : X}+oˏXMQP] "y{ z a\ᒂFLp@bu#,PI8=h{@x∕M4%þ(@s6O@MdT,*caq:|. LЏ#p"ճH>߳k#N6k^?ƿ2~~0ŭ@{ܱh j1T3QdmЦl@זr7)*F@M*/-|VH/~C15U26\mSC"IEPŰMw]&q`7 rq׬ <)p9Lc$dxÜ]dБLR ,1PO-$Zږ^˧P\=| KuaJq@W, WlS͖ྱ봕9Zh'-9zVguŠ2;ImZ ؾa_Vөs`\!Cbuc>Mdz!^^uKl{a'6,2#ibNm7gw p̩ܴޗv<~?^$m„#oGg5Dб\9_ͣ@eQtI*5N(<[ 3ޒ֖-Q^׽ki<O]xRr ~z; %7/q38ZB)Tٺ|Z:Ӹ~d"),DžHypMx$U4('-d;{FgycUKYj_ NO8\ ITQlg Mw}+DbXhxYIa[uvySS~6+.8{3App:P)I=а HJ4j@zP]kJW!˩ykE5y5!6e] /'--a _CuZi3-6CGYqoR&mgBIC̸r0줟99!Cn;)=m|qowPg"ޓLsզ4ܩtx_ $CQنj ~6.ٷ LxF {3q(-ҁ;\VnX\' )L-T.!؆m޵B~Te\:pxo4Yx ,VLd⅛΅mgntDgN|)(@57H߁^K9z -6 g\Pt7| 0=-["-,)MpuMVe &d#혩̜yĈOUp9|4Q =q`{V oi~SZa٪\覨pm:n봺96yPi]Xۢ^g׋h%Tdط=@)U#˜^a.6ͽ3o#IriHPcoؕ=dCsqp+wr*8;:S%4sh\' t.-FRZj3T|kbLhh.ZeQE!.-MqzwB]NkZ04dKCd'xA\(83H'"~q*'E5z?^HUt37*D+hUXLlP,gh%f{>>rvp YrĜrd G^%mzܛٝ4vl,;v s_AG%skV{݂h(PG =\IM j[xlߎM4]FCcxGėcq V`A &-\s 8 _/|dԊ(Y Lص^N&8op+ɦcH4E(`D]+q@-<=W#.J8iDIn/C,RD8 ZE֦LϥM]3hˮ;?EBeÿ}9C:lWٺ`93 j~neM\pGvKCC]o:JN5W{:Qa#7 ڋW,V_!nܜk"L]*n˩T?7^š=&ߊPg5Ti*?ba4z1L*8Q*eD D¬NoWH @xcGɡd_X5G!8qtv8L-" Lf-iyz?w{`wyz/J:i]tn& ~#_ {)" zT_`_WAU3W$MwV"Уygl)70 ̝$='Aĕab$j. X&e  2ݽùSG"l櫙 =㡺]dM[ٺ{iւ7{ @ ,*7aG˒G_vnb~"!8?N/(撫馊 O!qf:dZkBLHƶmdd#nW֧ucԭc^uÈH2j>ROLx,GO/X (_6ȡ?鞭Ѕh]i]V^гnkQ0)!w/ hx\,T3] 4LW`w}cR\"mK,N4péZn(w+}H 6.$- DA91UcиSYF7n9{eW{(uഢ+ - :+hKJK˲*ɥN 'zF¿EDCćrwA-e CT\6=T㧼~^a']ƴ0/,)$8PZZ\R lDӖAWuurrv}{ [s1H߲ cx&o ~On@rP9,nx!]a6Ұݟ Q`26$O${u ^KsIyWYc疵߻+ oVjzdWJ\`p$lB,7 )2l=w\Ei_8>`5Xמ2YzUqdpv+M?^nqW^&k(uMy@qxpϑ˦~̩~=]G!8<,z d 8iTlOS1KD8J mlm/Ytlh }ob12Maƅ-EpzXZp8zZD>FN*QώlT:^AnQpuǙ֩yhQh4ߌ Qw,۞.& b6M= ˥> WY4ËJ ԬK6eVp6-| CG<4˫ys+d̮|7F&Oߑ@=l^7P^dVPRTT;ƍ?9U{5fi {CpxhpY2N NEUa[ -=ӌqq'xj_kE(}a*E1"\hlq e6u *.#@,mJt;;Vwcn(h1dg, Zg<%ZMMmʬ*ct 6i½2-4áN[}fi w˫fC&lEŀM5哳kRFşTUe4}~yv^]^ǟ6T2$7[ܥ?Zo( ƍ{R4 ?ER+nL&DPeElJɿԑOgULjx}d]7{W)/]l(흿pY/W GgR M%"dcf5O=jzsfLVJ:C'S>GIfPsDG ^;O^k1_9o蠄z 9eg$ڰuKׁڦ+OfwU,cJȔ7h.ĨCRC{|!'I)NsI\Td OI޳>pS`:F/#@Ga`njv#"YLB78fN?#SH_4g{G& :̔Zs'oQWXYp]'']\x)d U`eUV_Wֻ5 zm"Վ@. e0gV#IwB)>}[TȷƬ@֬򪑍w>$2 j#xq 7vV }~WCM+&rowpU K}gh`S֘Iy/‰lh).Yh2 ,rjdU9v_B=H+@אַ'-TG7B~@uBRP''Ρ|"Rhavw#Ӻ*^Ld['}7'Jn9n?fXBsfsy1'- u 1<&F:Ez6nJWQ%JA=xq!wʹk)Ւj{Vi,cڨ) \mNDlSB7wg*?=Ywpv÷,5Kql[;JB;7>{ ᏻ~ t ًj*f(_'4,A #ݓSUQJ4%ARs 7##T r* q.-;D!N+@M}]ctkV?mc|%]if_ T]-9R0dq2:%J V׭MsF2 ^魋9Mr{/8<# g̥$S~҉im, k+Nh .ЭY$ m7"c^l?{O,,z]h" A˟\U1xҍ4r 9Ⱦb#H֛6 )1 hb9xu'T)Wm(ɻ 3ȱ}pU; 4W.Cm6lħod.΢cd2 aJ C`ۚgyS䢞}x'n O)a5TQ8>*FBֳ$Z%`vIFfuq(V߷A{F+RTZIMB&ྦ4Pw,38ն>M,9AR/숭q%x4QgUtB8~$y1CAAn&nNGBv_TXCP7*NLԼ"IAJY5؋$r]-M*0FuKt"Dp@6_n(Maee(ҋ(ͮpǦG Aڵ{}}9$^;NmntdZ(p{]쁻P$O}y[_Ii!yW2 ˄*Mv*'A5Uq-'}hߋzKmCt0 enyXg&R⩪Vbmn9*;zh\Y֧qܩtaT>4I(Hō5SksqA WX‹KG*{GmpAR|e UKQfp4H̫Tpڢ*Dj032xҀKr$&GMS_ {aK^ȰOҲX6qЁa7xn<%n`b놸?[0GA;P] *eXwBƙOJy,NbM\``P%QMUn1rmxY}Ě1s+"U g \ rRkfi*?,>J$S"IǑ vw7V] t~DC#N(sDLB5Oy +~L+XBAbJ`~R"?Ǧb&U[> &+IZ5u#sv/ӕ.O\qBad.1?1 L.5#7e1@#e|E>hKvl1I0ɖK*/; UmP_"HSOo0+AXR"*9v ):*>Ē\9W- R$՝s(IYSr簝_iN5pm5]iZ 'xFqM]0F6ڑKtBuў[FF{#PHk[WxX5+A{/0ttJOGwٛ/l#1HUT4TPB:m*p*bi#IǨ&HjmeOG>ӱ)g@٣$-!ͪo#\2{ЌKKamCP'-֝M<[LndJxh_LTJ݆@o&e4 ߐ5dw!d²NƢ~'J?VGݺg1^-(D}#~:A|o4FY(:i:̉UGwk!~JdP-vzOW'`"QHY=GP\7(dUy4E؍=T<&[$^žb .٩yN~e`0՛G}$&-J.4bt$H,ަߏhU[ɰueTALHQ6zxki6KH/%DbŻl`kd aS"FOb z_bftwsUHS'.Xu!.'h$a^\W\9RZЕQ$9Xi¢) 'o D/?gD M nxST$ϗ^4>D_|*E.FUtYOٝJ3|9u/}u+kbVXQEo i +wVlzg%:˵9` [4GkjݝS4MKⵦq rKpMy !RԦٸ94&ϸB:XCЎWp<%r$P\KalA[ 㺳|Ppw94GP5I=dh;g6#K[ŽR(W-B}DZqs{];U{imzt.%zA0Z7BaR(W*'aj8)~j-L /{G^[)ń'c,% @\$ϥBp'e*ʰ&0af_Q\p<sl|rw`>kbN~hmjF`YGف94`d'jOدP{# =sEޓ-H Z K>2vH6NoZi:PYmIkL3wm<5KRҧݨ&.idv0?g#%I'C^01kC3dbC;;1度aP_K`0H1Ƴg 9@$(0(^Օ}&'F< ZHxTznNhA^΅^.@) 7d ܚB]wvuj+>԰f+ryIƼaxd9bPO`Oar%C{R~)V6I2*G5#(#:#nנS4@"m48+<9DSYm72+,'ԝ{#FzhY"e<%\C)#mCװKEvP^Ia(:q:Uh?QNMQ?Â"!C?omLLYIW\dePf1Z@+M@WI$՚QLzͪv7b"}Z/&[y}(IXC*ۙ;L(L]U|q,9P#utjgD]xL6bk]O"xA/ϖwMr*{a-d 5L흩 FЯlQ9P~ɩ3=Exa] :@k7"RN|<2%q(]\x"Dy!scʭgIR^LZ-ykg U Z.H#/Q2_@֘ VK]`-siVt; H7>N Oe9P%@Q>&=I"^N#zEї1s{0}3Pl[=zRF{ykXTԏIgpAzV4OK؝J?t~ P±P~ͶSFܲf`8:|l\2hT!__څ\HqRMSRʂ^a+ $>ld`hUonj2QN|Ei yWBslS-|;,12mIm 4'yjY5R ɈuuU4CUHoVgKi7|JPE1:p:]I$\chڢrlCժAL XOUmr Cgxc-Q\3ڞyfmFD{ԯU5߷H(M2uV&Lh.;k(&8AEF-uO´D5 8 8sңo?iy$=G?u>;v?uƷP ~G9t X=ޤ*Bqb^ytX'@=\'T n񑙇/NLOszv-}&~.;OF7$D~vKPZq&4i dj&3O6ye*!&fp|:Ynɐ諹>V14#iWW26YME_[.hE*=vbkbI|2,Ïo zt /Kg{&^opClx^ֽJjG'D(U@Yr,SgCսһryͨJcVdF 㛨«H<-߻=/eru|=,p&_yg;xѬnH'~czmdy"BbhUǟ.akLE6ŧ"IFQezs>{d}Y7ׯmL0:$^,It9 ڑ?d~amg@ "NϮNDL:YO/!ߗtح ݴz6{wQoSouGtf@S'ȝJٺ5?&Fo]S^HcR .am%Em*i  ~T{r,%fEq` ?:c+V c|܊,6O/HGs6ğIh6k :~ݚN.l%ČޚWXm6c K:ujN jdF c+GW;Xӯ߶\{/5S@^ kjxmbAFxǰc>Q^*Rd5]*|i;2{wKT΅6>'zbm&SNNC$IQ(3*IQ~B7G?J?v~!q Fq貋abx]mI\wgo;4m6N,]Ig-op 1ϚDl.EJkh+8hp Y)XB,xOYÑ(j:K,#+NdKߊC[ݦcvzfyϜ){Qpu'=Ɇimd,Oa*-a:wE8Ry+Vwnɘohn2`P&l%W{ ]dUn nM >ɒc}'IQ&cį&Tn__{pyp}&RP*51j󳲂oBXеjD_SE3Uhx<8Gȍ"u)-q!3F|2m n&r6-pNCWd  2boM:']I }vҗlz&̊* kI(;]ˠOJ>wXꮄ1Ңnw$nݳ?W9?G5n[".`ʅfLSNH9(igBؙ B}zfdRfJjX@hŸ'D Ε"*;Gv!?/7BgmM ZOEf`zCA{UE3[orsnzB-ޔXݰE DG2rˠV[HԡTI-%Ҋ/pf2^^CYC|n.Ə/>"N(gĊӌeC3BtxN ӳ43ѭ{KƇB:ҍ ep)압4F-$ֽSώG'hDSmeii&8/Xw}d ў0lJDQ|¹b4if4ou3 ͏⨅L~rl9+eRt2B p"_(@=r ) |VwyvX6:;|$&lʖ3w,pdo&w8/P.|[s}GMk K+6 ZלRr ?ex]a]O3ws "2o @g+tPxRLDRue"c8!EY^ ;[[B;M)(=(˗?j/@4ܟGMTc3 |:"ϡ_>L؁uT2'cw_:ⷭ(#$ Gks7IgyR 4TW@. ƭr̶o5dwx¿|<}t 6%J3T3 gJ+:s-x`c@hQcMkpm}P@ZHp~)z.,K% ){zK-hNoU'^RX0@))MQ]ύW|"MVj,ľz~+ˎ~oMgMOvIhK?jޣb.aПRhOԟI/5Kjw <o*哤@JU(dRM[pM>(WÖ/6i ͮlW4f:DX' ۧDn\Bl. OC]kʱTL6+lx?DLTgz&<lԴqK@*G{Ns"q4-?:;kN}\i(\:'Nv1(6]Ν] ÝQ7b2d˫1EJ`XJ`2K m4dSWo#aCH8us#|y N_gˊpY"4K$eCwҗ 꿈.vઞܭ``U8-)RC4@{q,rh#!9t6^i7JTpRç.m=gp:c[mG@e> "0JY50K}.t`gπAgޡ.}P2^ńhD~$BAmJN`Od5VZ>1ۧo fnUCcuR}Z؆3AY+Tʺ;&w9g_apv[.j=;w7C[LEt_ E/2' W2]vb!K]C}JzI<դk9 8[GgfP+]`DK pyFx,/L,;ִAbdfa ɊVhqZ-\'YҰin҃t`G_LFM_Fe  1Tb`Ú:=lK tOV}6A,eшXW`P\Bs '-qZu94u^ 2{p\:L1+.M4&^U l}+UAT_hE%@1_7አd˭i5u8=Z.;j/sk|Y0&,|Y*9ՒVW9.Ioҗ@0HǞ$)C3hѧ_ELf͸t )V=V&X"zsLVp YEHJ] "}yzo*zH*ͰWGhQ}@](zvj^91c-Xئs$0Tzʹ4aܗvZ#4Xģ4]W~NyOT0|fZ-v!bzB":9:s=0p.@?J\}hSOy (Ow@g[I9czEe?L<)/Pqd.x R~]+/ԋ } Vj5m;u->Dq \{ΓWF("=Ά7wDuoXy1Bz>}Wm#m@'Mw=cg$7`RB2 :M+"q.EO f^ZUL襗٢)0v%&%‘q#w-WY6U:3 _ :$ĝ' !jpHWSW [ikLT],Tt~Z%=hhq$_RtCM;((߰YBDv%?SOG? K>4[&4D㮡BK"V8p]nn10,\_X2UTf5-#`*]E{}LgtP쭽S5^ C;z~ªK0 *>ݙ֌0 2 1w RSȌ!CWۄ$O ~~rFhN1q#nV\XO D<[qB;{*0+0ŸV Wd;;+Lrd]>dշ.Y'w;@GZ.&/v%:޷-OO]ACK!ФY>?kuuOpVLU3 G];`Q{MBE-}mن'6pV"4 ؋BHիv:6eg ;U* a=Y p"P:2E;MhP>n ٠;mI<Ч}=AqamT8$i|${kOo=uq +r8OJel}[&T8exS;cKEob2Dg+Errf%Ji*NJPE>:6%r-XfJY8x=; cEމ-7G* ȁz&ykfhx|Lx6\DDΣIR JuHY>ggFbqD`!q ă/[Xk}e?DcTs !^%6q7nTCI;IMptn]Zme5pji3k۹82`0Kjڢ5596X`|pP6D1 dv~q̎$@_M7E1V~|$UǍ<h661'P"q_#x~IgpsdvK_iyy3 eE|b3n n,C|d}+5]kr#qx^p z_uwMŞsRRêZ!&ѯo(WF.Nu;@oOy eZ[~ʴ"& M`i |#>jGv|x+MHBpjS|T? ߩ|T6\ř1yȗN΅;2Pr%2d}];eQwnJ,:AP$#2p%ku%tB̷Ȑ:_ ޥ.9/Mǐ}"[Y Zy,wfXI\L#)\q",.6Z2/צ=N_^znKO9=.Z2Uw~Y[ȅ3)2c7O4q)y Hb~ sm)V,J]53]j8 >jl^:/![}el*. نɒ^*BJm&ÅW ^Tv?NAq6md-f i%/vmi{/iך2z]}tuYH"dyBnj LJmj7BY!2%3LDG{,YPfLXtǛ7uR=fSy5N8=Zl6k7o &&7!' RD)_I?k|;CQ ;=qνJhHuc$_^s]]$*hYr295WzC0 ua鷻:"u)'<V,>M"W1yX+l.j1 N9YJ$Ex7_PSš `Z1H-?R{_'1HC`eYV{`+ //u(3À?2@nH5Śmf#EdW"N`zlB{Ob'@ ]\jJoS&+{SL!Q~'JEmBľN1fXp|"/w_q&h߽dxlp~E=:n گ윳lF~GzU`Qo<+5+XſKbD2 7Q|=ظY&/E#k>6äRq=N0y7G e &`縴+9v9|~.lbs;^jJ #?/a) r FL9a$TaTk 0!Eͦ( `NX3lDD}2\a <Va ~Hoβ2,gtgH8a#.Vub|5apSyDZd.&RrGf!9ÿ.l* jaUCKokC 2r*?2)RCJp6u(%Ĝ11<-B6o{4>+$]Zhul2J1%r߳pIzۉK&*z # s8_cŶy؟i1ʍH20By=T`&-{,Ҳ$hMw*hMrx.VL  ёQ" H9o5ހg.\a(r ozTRFR*1%%™tA7WQ`CY'k jOi!&隙Iz<ﰡfeÁU_TL8Y_{dC:/0Rcp~2ŐQ yP:9y=S?5@lsk\-s^d_oJ"*c3b>76={k dH3RF|$hh)#v 00+cXK͋b F|Zi9B\m\<~Ij 7J0fݽ 5?6$3kKо-$#1PœSsBuL{t#)Qjwor6yz _ƾ3o-z^ 5]/kqQy4gzK^!0J#VՐ tTp'cҕFGǎ]?{7 2 = 5q8.N,FB?Ϩ֧л7 :A7([)丟c6o4Q-|s j|,bu }~t#r?NW)\I l{lz7:тmaoc5+5B0ٙHsհU<Br)K_[Lj&>Bv#.\g;4|h {oOQS]5ҡ TuX;G ԬQ5#?*8bkQۉXW7jqo=y\5<h) Ld'ӓFީ'A,cr!H^_"%ڽ>v h8 -tUN?.'z}fE2Itl|\L+Q`~;9['vzi񎐬"=[xz,53V={Hl諍2>@HMl@?2r,V4I00)|4=:D Z`:e%#XsPzQ|٬;afn~%:J|<IE- Z0xQ` ԇ'a~ s?7=qApfh0ϩVL {uՄvV.L_>a{Fۢ,+n02M\<j"] 756Ώw3ZlG4kLˌWpw}4$ryRt\RԣW^Ψ݂F 1}(@ I!)=<3EΖ`.䰜cmd0ۃk).|eͳ"{u }+{n;ۢM~m8T۠nF=oHm|<P(LT&):JK@6O-!bAdg<=`v Q͜&d.w!uBT+*}$]A"E܍_],Gr:Hfӛ _][(v"ou"wA\44:ypC d}#pN& ^/vC+8IbG2f.m%J<nؿ{wyP' -YH|&h^6S˯dZ96gETj:vmI VYRMHStr7{sӂG\':wh/φ)mDU#&9I;${B1GYDR6N8^"JּC1;'Td_bgjb)*\SwͮZPDu%GhOK7x= eG\e'+ ,țrV ױ7x.eD@l3.km-\{*My:Łf>}o~(~P pbdASg0PP YC0ĥjɑ郰aTsf&  &tU2Cy}q%oGs Dx<WVv?nqǦHϚ4Ӯ4 0=3ҤD?[Txf<ߵZf9pJoZ21S/^UfZH@ ^Ѹ*舚Tl-tDMk$~B 8-)Vp7^p?S`uaEc"cVV)"e,o6GdW)m Nvi4Rg(\WBbK b:ڵX_~Vp`)寎5`k0 2W~>+IuKȻ~"sjѓRYyבܻCܭ4S_oF@ &C!I%t8P`;<ϋeL]aOXW~\m"-nBgvdp%m+$m {gjr*+WEHj*iG]؟* "()H4K)qRmѧ B#l*623OGJ~@2g fxkd }fϬ>.¼#ˋM߿ )W]$ r]4e:Pߜ\C_#l8߷3run/Uk}{qZ~克~ocj3ZHA ]Nȋ̎de?f'[+( gMQZAYt s*[++[wӍNWa\. RLO sq9.]-H>%<wo@LSx?} %]~+TT1<% } +  O`e-xJ?7$l,)k.?}m TgܗR" CbO;,ά 6]J h )񔇯[1$HSk2`/ayJz:qtSOJbj*ߘ=)?mľ!QvWMuC}'V*Y,MZUw&Rts9 Y#KEwe6NdlZL{_@m;5CerVLLO֮ر̖\%z Ub~1A$U[4mBԇo\@tȃ'ᘱ(%8PDKe;* j 7 EFPo <4~k {½?Eh [avc7Gx`qE_ L0ePEMۢ>)&/d;/&h6ndɭS79sθ/$^U^f7JY1ixq>!m"iA{\H>Ҫ`Pd.vmpQ{yTuW6ڝA\LDʇ3UtӏK{s#ց:zW& nT%Im(t|1m`ҶàEk@p2i6Lu`'/MY "xahYK|:^/WhؤԿ^)>c E=YxRFi2K''7Ve2PV}g7GؓB~IXy 7_!Yh4O>kW˪ #À٣>[z*&[F3"n8"N {D)$"r8X^4_6[64w%X6= @[,\ߢ"\| 9S \q|Z h$b@l12/%^u T~،(͎)tB1("6pP98>!hqld8V (y8}, eƺ0*Lkʛuk,KIR"F^'WD]śF1s#[鶱YF62se{U_Vܞ_4A<9$aJ@K3֛ްm\g1my\C?bː/b 3㭽!cw΂7M U^_T kz*(JϳL zx:JhKϵ Ovj*P+ {bLgv_`kf B-jN3%h7BntD  ٚJwl_&J`/V9>'@5Ak|KSw3?D]ȧSIBC2dKX]<2uڂ&,vud\8@/Q6|O-ۢGZG At &n">N_D?%e{E {=U Ʋatמ+%ըˋC>&#RsT dϤ^PjѓMp{2 O OgeܔJ] {ޏ);`(i:[^]׍icŤ;/q$g4E;:C]ݿthD41ͧ Sk Kmz~96g><z, '-9.=مE T͉nIx a#'GvJ 'e'_Wf.Ԏ{N%A|q~M;k6NeRbeJZD@Biۼ3IJH4 HvRrMN RT{@](oJ 7?'~\i"35ap74䰬&p)m E%'VUI-c;6o (|򑃺 g04sa_ũU HV:A;N!|)`uhe'[v<,o`1 Їhi8bK`wz$nlvS]iz`_֛rgf(.t 5=!-\Fz ٬ND+HfxY LœHt:7Ҷ@o#=}8i("'dɯ?3D)k*:$_o~„k_(MkT:ggC .0; NL٢pGdR9ܓNEԛZpHb Cf,'5565XhyOr,T$.<+Xn{K\~C.tf]Ѵ ;@SRI`~ AFl#cŚ>Mz_v<u⯢5,";4ى`.a PEC0VCo B}Z"ګ(S{(<쉘4C\?9֘A+YaV^m+:: C!=@'CyOyORQw ';:&m#*$L#-/ p ҋJ, y>ۦ!:3_J18a;,Y(L6j5zX7_]M^jZv켲=:*^҇E=]]cVhnbGP[6Δ Wv:vG ]p Uu hf=AF?k&wN]GSd %@z淞fɵ /Kx0dOY.bt?K6`$«5+>U1)"f m - ^{g |k^%c" e}U$Rq3!}et";ZJ %r1SN>E||qxѣq^eB` nCnQ6 b"@s~cF|2`̲Č÷ ([-Gy3sݲS,}eYz>z)g+YYMaO٠Vgzu[=䅄m5㸚(paQ:4*:} 㔗ۉ/s<]~>L?ܒ-)l;}e )qTUZ6!6}-E1)́AۧeJę`u;B EG$`!+MyM%cdrq@+yfhvdJa9 J}?J8aT_R~!IJlSTlQ6(Nm;gQJQ`k0 -Ht Ӽ&ml T̛ҔZ,#0>%hV3p*9RV#/'SM|+qo`ZZbtM<I{~=0$=1"!8t8I^w /@~+Ԓ klU\2̻ddi?e>PI{@<y#l7R?#3[n8h7py}f&RKG$H+?"O ul (?; 8rZv_N~M%ӝBGHJJƵ]K;ЁP;^EBGݹ>p2#XmַTp X&g)N"fRX-(R^>\Hs(5_xq~. ,T5~p13f в2TJ Mizl6B~Po;Q[ø`eI?Q<_a`=g=I!_WmwS[- Y)bX.H_,vxn{z<$w rH-d'.P `~6 |PTT!EuOf, 7ڔ}I _~gqY+M:k۹UԨoJoJs}֡qV~A\R~3P_DanAFE%9}esR:p>X ! Knc^²\-'>oqx(gÐAMÚ2P$iǟ(-uXWm3ql`KK",jN=-,_ ,b| H;8x M\90W˛\ޡ}@dҝmZ]G?8ssu62M&z_L"`f_V?A>#jg3w^R6 17P_h6}er}Z/}̣*BX!IPC>)%ji=Kky|/-}" T=y}^gX|hYOj a@:lOSl@`R^7[Q8:YtR~ˢ!fgLNڲ<|b_n ? [_Y'TT=F[rϗ;W1o9s.7(@c--]l{stu~B(GKX"ʒbk%knAb1^}pd(;. 1v= ^0YI'5]֍1PjjZ13< PZ%JF11)WP[ZkAJu0o0Ba;${) %BJVN(#ߴITca͉eb1= ̀gW1s,\(BW~P*8@ !nD|_R7  bJk>!4OY_Jáêm ekZ̽THl[k_7}3*&xv^ 1zD}D*ppߍ!`.QA_%śm} $MQc8Q{P ˏ:>eUh/PHYFQu AX00rKDp>y%mlkD/w-NQZ:ByQ4d(xWbMgoT&I5{}?؝lctƅ&ZLWW$& a}ְ?yH!iR۳]J9N ǩzRq*Nd%p}g+# W08C !H 5""dEg=LctLuZ*!,ߺ(gf b@W_KUb vыSbH{@,, w ƞ Ů/BKM1N"c!apY{Bs3q֚q mYX J5ڟ :x BytZ,{4[W'$f |\H1%L#jyS^W+7NޭvopT3 XI)ڊ?$^9#;i!W[T[1EK]pn[7D9W!fY||)^L>0.5S "3Gl"HH>䜤xËHT|ws7QQG4F;zi) b׊FڛG 牊~#~|,Pe" zϩE@ʪ 9D|#*v~rU]ŠЌ(i%;lĪB SM5tݲARD{д-3nBkΘ/3.rEbm /O,s>]1YqGV@ ˂WEdW0B8US$PIBM W*RS' >4WB͙&>Hm(׌J_$;9jp:DDh} !!)cϴc3Rw  xwK(vB>7F-|  vwyDPbt3U֤ej. ;՚ة4Y:G5feW,tL`B|h"۽K^%9yJZHHS$7(n*;YDg5ĽsH&uW"./B;Onr8~C-*Ev!>Wc¡p-:wK+y'87zUHcc)t~A*U @eFa)"Œ(;-iV}9V5vS\fSڪ'WmAo園2 >JWy>9VJW+X[/iӸC W ]ϔ׃yM_n`K=WYKh\n RGgts2]޷s"Ec6c1Э¥h) f -̴p|QrJFr `͘uH4{^&G8Ú=!t1*T eԊ:&HM+Mȡ;B;;:.A, |/Siȹ}:.ô<J3rU0ͶMYRK^g_7O#ͻ$Ve(wכNC {?EJs;20lU|))gd)~5=co<Lv,LۆJ)z@v#U9Ug@>c~f_Q5M͙xA"-3cDyUqJzZg [+% \ʕ שܨ6-=@P>2M2#-D9F~WJ]|٤ݻ 瑼;_zYg߿My:6Ȯ"X}$ A  /Ӄasqh';z/ C1%(]w綧y 0z&"&!t8OќV=R P>˭LަGN뎈#5h;FqRJcҚ^ b^KUȽn Ó;ABIj͢Z.s־J>¢ 7ft4Q k,KabKDYz'[>@˩5Y[ 4)Wj>lҒH1w/]~/\\r޺!׳ 2jWS.OrKSI T8,:ۆRwV?_ɿA9U ;^1 Q#pGh[Nc絏}޻ ;LpW|)ȿn7U7(m_+etdTKyUT‼B3FhxC *MxÑ5\YE\n E~`yXv"oDzpx*c .ꎥ@h`G]KNKlJ)DE5SՆ(ΏF;D o`혡(=ֲ|lP|Zȭˆ9jfkݯ,FcKi!嗻Tn5'06 j]C"Gܘ' w!ca)ZP.1d I+ j֋<Ű_!{HfՐS坡Yb>K MPx)\ õDJ[6#t,s`Lr#S<бyyZ 8aH{b ?H1tWRr o)ղ u HS8z%rQwH8lY8~~!.5VnFaL\5۬wVgYk.\ca*}'vxT c^ tE"# JrIz餸zʷ-LvY:VhrQ?̙PL`-H0+p$-tuKOK͔#Gm/G$7-b[ 4[8Jڮ[0 RbM1! =MhjkDW PnrDz]ۜD:/,Mvug1ÇuK pɁߣʓ'/A!EBjS;Ȃ lNp"+Qm-Z7HmK2T,wo7 +'q~c<QM*2ObkY,mɞsZC`NCWMV14lmJq4a\h0O';BO^™6ʠ' m0%)S^FHdr[7C_" "*PŢ'|Řcfz<^⬺Y'6:[3쟎.RwV+2m a(HWn\{ǭǶ.:eĿTrK3 /ڙ|k84҂OU)l\,!7:=C=.tk&dXʺ۵}4c L>->!{CwEiTs4 6j'wXzuNϔœ%*^y@~]V8T_#4YZߗl\3JZ6Jڵ@g]a2 I4h::)wD&ᗲmT>Q.GᕶMu\둷C7 ~ +ck[*s`ntaUt2lQyr}Hvy%H蘿 P!3cw9HzyNO-IЫxvT3E;#rEϜ+st>fAqV+"aIm;"wxNl_Ot^ F̪2fݦOjVX!$o{M݇걬;6fPH$9`7OCI+b $0̾ m$V 2Sl 1s{FG F2cVx^j%zO2Yixfa0^ОP!YCMm~_cTd- uYn^U-6x5t90DKXΎ4]5!뇍߱KcEzmͺE]o Su#o+3 BʶˈEG޼?}qE^lF?tW4Yҹ5T"N,$ȧQjeKO/X9<69('ShAb\,7!go[%g [ε_߀?2@Q榅,1.?LGv&Il Z9_&1x/('/ȝUcV5r:͸6qW{ڝ;)nIexw^%yZ5$!3|lKkպV*>by>}ṹi~ވڔ\C$p)* :C7s&u"!kWByn WW"On+SQx$\aVrx=!N"x#ȑ_\v &IDŜajc@6DMQkNDQFZ)l) oLH6*W2^Mr>⡖Gԝir/ 5vC6iKUg̺ ~e=s1_ߞFK ,G0L%%RIor**#`βED[+=EgeY0aP4/)|HP3a4EoϿo}/c\LK ھJqAdJ*T]]R߲=d+@. &1J)U@.i5nEg}k4Nt_P^bM&69Z;;f \,k}Bӌ;$+\(v |=lsm~ ̑Y*4!`kڹh ;&"3j4wpȪ\JVJ{w}mMp??ͪQPwV`.;T$1t~{2 .1] TBXgT-.ЄB$E"w䦺uصG TdM'F_nc6qId tQ/aV$Hqm"'hϣcrQ8|Iҍ%tߪ3?+6.$۷0+ajw+8~O%$Tճt.D"/;A\M|#Evm2VY=qy:/ͫZZFBu7e¾Uk ¶k $oxDmfgf98&&hbCԋźIɨ%Q۪6R0HDVK揑Saߟ0ln0j#=4޽^is$t@0 $@oK=+vԽp8P7 F7HINs04g[Ab[oQLB)?a2ߩσtX2(>ҾkB#`Ú=(s:T1C E +sevnS-(N-xc#Ҫצs\[6f$/q.8Ȥ]=b- wczc7Bϋ7?!1},EW*7!9L^k+󶊙xTQW뇛,. hQJW1QS%`KXXjRwwlvَLmy"m׭dFyoKb[snCTiʿ._LqR՟vc6! [EUz7RW"NGX͇BCΐ G{Q` gw0q= >MEM3$>{8tPb7nVn^C /{PtD[ 9ڊFeKt6  Kc%/o}@{+y} HkU g33v|67t9[׹iq9$87EE_r[lt97 u7"A}lvlMzۜSUa;j:/oTWP#o>T06mON:*:~kDʑ8Z*0=}BO :ު3,ݢlP%T^$5(Pkt\HTD{(j.lڈ̽3dz>ϛUwU s!\8;`/\Rږ % -ZҔ"Œ f̏{TV=/j4`"/[w2ȑCK&CU+ 8TE<` %_5M}q|"Zz@}9LXc)ߠr]^KT$]xޟtО({ˎHeHbEq >N=੫7ח2c(ρm1LJ ʃ =k {3e P # [_1f3.Enα _S@3˅G 5c88lx逅u]tË+{_2%w,$P J!v,^6eeA&VElZ0(R?*U@Rmf" `0%>cEG9JQLjp ZCE.ruiV(doxF^I#w#QPaBbyvČ o?լ97C7NK*ʦZho'd..DT=oR:pGe.y$8OSpz{,JkB<CΌg`!Ŷ,u U m5]R!7-I)}-J{Klt=Bo;Y! =Ʉ!)Gv+%NqHhݚ9dKmYhx&0˥klXf ˟ z kEtNO:OI[y\H϶}veU ~XzұOVf(w7e<م jpKox 绗 9c!TŻKbͺ$Uq2ZY&mMwdZZ8BoK+R@ $5+z-Ĺ,oodc 8P$]Y1.TC'Y#)#׸ ++رe z]MEan0MFnn(Y%NέD< );(cBxDh'[~gפ’Xo ddcYFB;Α HkzbԛPO'o;Jqd䓌;X-!E(Θ.rM!)}`n?6[]>MhfGcv;24F:ubYV.N Z FO F83'8$E2.bd::0J_}rIǮLi (/” rr]hkƕ}(,Nx{at}W2GhedYnIy<9`o==>/Ӱ>rF!v+H, n;S&w;(Iv.+98xZF횕빅[u!)|$ߝ|W1 mZV3[YpT,8A -?=0d~xL<|qh:j \",&^v[R$4.ׂlb^XK&ԄgB-O`%O ;jޘ440S+X8P lLƵFvjŐSHO g JP t|ZVۮ;ZպvxAZ? LZM!KKn.sgv8k3)t[.,V*h`honKOlpӰQ烞h,ebq,BPc/?ȴc2 9gmA2 ]Q[# ^G~p-=ȦYcDٹ]ᑴO+D3FAߛS|Xܮe3]StLJceW".QCH!]u ]a?Ē6 vbG[nY90 2Ȳd: gZh UrSKpYIb}݈O㣶uW{ԯHXT0ѱ$3:xd}cYWUaJgnֿ3^3o% ŔN2cXb/EbhuپThaw\f>-"A_Z-0lӍjn_Tm]EoPmx[/Ulx^'SIjgD *Y0!$\z @%ڇkJc+=OV{GuYi3 ѫ1Rr@ɅB8^l!3k3{+/ ~GtB9R { DD1͸6ǖ\:;3#^6(^TGU;YBD(i$_]up<0Z7fCxsPiF*b⭎\?Z<&Y/eiW'!!Xd+ݶՏZ?@1~H( s*ctKDžj3:$<3 bX%|, x*>,&+F1R:aXmDr!*?mMֈoU6`*f(ئ^B}/s'tv veO]WFV3ׄR~g-:`֫ En,8? 32P@2d .L ׌ke;*Za:-@%F+/fTUbF5bc fD/ @6&5qwxE{zn:7 lcqQSVh{3 ٣Tla,FAIY x2۳ %|$} ;piUmEH xr\m9 p_)?)]MVƋNȖw 0OImgO4>DE㦷Dc`Xj;侂Rz:~|{&2v1ix3)^-޻{'ԪA6ɜP JXxxܢM]!]@wkχ@3@%(F0119&`ҘK?D58qjs!g4\;Hov7f';YJ](l5`r j!%<5~3/Crx 9n넭t7g .W d(zĿWV[>=ߒc.go;/BiG_Vee?0tBzh"_,_IioH́"xk}c[C kk.[½=mξ2UԨxJhH=M8rl}P;9;\"^s:%Z%+4"* ^gO N^Y]'sѱKRoVByhBpdwD0߉{tƵe!Ajv?˚1T=ru(CԻV*ZjPa!jlghgԒZ½`lEyNg%4"@b}hҗrfK#| H)C7f0,OjQYOVa ߳!\9b} 貍O=9VBf]&AfyB5K䜚AԞ@bQ ߏQçuG^:ЍBk:\Pm=F=v_.ߧW0c|?LjWgq-Q*k=TY.~C!7a FZ z%+ f qD;hW{N̫12A$NJ)8w p&p]-VZE%.13"P;|# "H: "D\ƌ}%-t^33ɔ SS^wHIZ,,pӞ-qؠk:V#6iq!q/HbÛmQEVVr@]'~J= |G+d}{@vs0FaYݝB*s 3JVw%+v|v6mދ.xZ N]rob52V E-@-䙭ׁcQ|#Iz(+Cb HU'qC(a/Sj_tQغ_E H8֚<5Ưo1v)Wף2 %!lk_{fPXN◣hqx!OriuH}HEd݁})K2\6\ :G14n2A3vYZ+D۾} 2M%b+'23@n'r𥠜$+ ]/#o< W2QMð0®^VEďX"oMP`t}8t gxYϕqqN$ܦħlrO@A1x++1z8OG,$&]U\/,/ ,5/K\[_0%}7]^N53+8a3jI0ALd>NgjCKʾ ޤI,$:ɜxX֑w+,X|w*V-'JLj]odPrA',:iBxOMو:?B#_ؙi]^h1VO8X>dob:_FH$*d x6**R98uڊ퐬ϴ;uk2><]Ǟ|z,2Ai^ [X!E$]E,nsSbu LODJ(bΡwdqIt[ˎVG>?E)cV$- \g323ǀZ 8Ҿ$:姗:X5\DHD[%6ahQ;gɋ}[鑮} X tR Mj.gxK*o~p 4\wj|,:c"77؝L:\*%P,D!T.tJ^'^'%JdՂdtfZ4{JAW L̓< YC΂/}tcL ߸`|lC}"6H"5EkEZw_zPCq* P$-&ײ$<;J!&"9KYJ 38x%r3=HrG "[J}UT-ktm!AJh%vݺVSRLw,"N0dDềl!ltf=+kٮ=^DetrwnYec$<#?wֽU047SE82 2N' 2\o$)Rpp%a섔|ȞI* zE'>^}HOhU-a1 \Y=-ޔ\;,Ǩg"0 d;_kfN]9ۖcY Q~F Hgi$Յ UiM&nlᷮx=MU. kECN5 .i# g Š:Bz?ٟXIs4H%0{DZHwF=GBCG3 +\]Nm`xnPaxmy*X|n^ :*aAs繉ʧy!4nJ;t [D 5z@o(F1o[%IhX1 jKY"!P>;^Jy$lEmǫ\6Cj%f)*v؜o\|xPA &}H4ۊyX- 3oԅ*P=濛MLn̕,ߡWfʚOؓxYLZ)@o=80fRUղD%LžyZޏ?R x;85f--/]t@c,r%7N})ko?J&)p̯_5V;ufe2аRYʑ3Qe)YOن *nw$9beJv; 1uʝO<אÈUǐvgǂQWОg}^v@}Ef1拍9#ԈqIi+!Y\#ۇmqe"bfC fFICJT{ IJ0K={g+90'ssZT3q0+d}iOB;>w_y3&k\mYƏ/!DרMz߃M9Kj`ۼjp-hGD Ŏ_*}/Sx&zK!a}=TqvMIlA/'`L_9sM^݋z:A/C_!"p uq AՐ=72dFmRP[]wІ:͛3՚I,N@8ⳙ`m-+cNMҐP tۭv~8*`X RF/FfRT:fKc :E8]fkA>m2V;wU~ 4" 6 ! hj }Usp^KTuX8-^j4w| S^Go gc)^!W+4"tq2I^QՒ!\ /2R _hLHl\q5@ 2ݮMRm;z&p{=:e9 t `G5Q74~{6kIkvX5 jCq*$6IA~PV>зНo?*^5?" An$*mtҷ|!Z0s?oLopC X  w]W((G[ro=db SFWtN4CoXHEB ՗C:"*wJ_~0Z1@Kc$#a8ʖUH :ZB1CƘWv%)' m΁#C4jQA  ( )9^ UCUmU`]6 qr[JΞeu5nE|fLYr?}{0n@^#2 AMG(F NE=>_@IüQ+Y+c,Z7*saviH^tKU~6n!G=57!{Lf7D|x CCF l˨h܇8/vq=}uP~L]{'Zos͑Z/(~rMafRYR4:V"f/ Q 9fo}k:$rsft+~+05Mq=~Zf8Ԏtnl9Mw8EBQʜOΚũ,κ;th|:wZo}G{~$grBm <09X'( x=OK}i "jPB:4$@6 76EGd?\cg:ӽ=bGo D&~+&rZu\sRk/_eZ+Q6DI Faì@:85#*vF*RvUza^QuQnOr(ƛ*^\t]igh鬴8;&0;E /Pg_w3'[rރ`LJXTMO& PpL4RYl97EiW6AD[:ݵѼ%C N=eoR"}h=ߟI/B:1Ej΀1hEv a[l9pt8€8 ia_dA,Y#Mgg#LzVyۈ)8Dԙ]4i}߽]~|Q@ ad>' 6zl~pF H 2:|LnIqgb3z|sr?s@T*e CDkvwJNk="䫂ɈL{fbMeA>vϺϵV PkMIHڎ0k͋nSz_TgiN˗i\fO BWs-;t8]«H+TKs4k0v`7KώVS)&#0nT ,j;WuAQy3甗c*g b|2yQzd}rA(Z e-snL%a[`?47-m~wz"^+Nn;Աdo~93Dfǐ:+ Z4ۉp`E/Hpɺ(<3!Fz2VfeO 1OfkF-Y[R5\OƖ>r[рޠRva*k*Aa=X_.xnb`b Vd֜[Vx|2Q)+sEOo"DK_j5@:?,SJ6SYւt ̢v{Pи)+3cM {Ł _нA ߩ`Uֱ5m=C\†~!NtINR7&JQo\)b6 :yaׅ=3?T4ط܈&Ӂ܃J}(RL~3}oǢLmi^Pv SE@0럮pG8.^nZP 7h_f$1S%)>1/-b1p`:ĨˆEj][#ޱF~K_6#wj|y Dl3U~UeIc kFIv9(ױ.񧠾Uvj)迋jQhZ9"Ty>7bi3_ȦPs+mr~ `5{E>GzWhm1?y%TJ'QG.I/!ڬVUqxxX 7 æC }/鶥(a16;! 55_JP2|GB]&ސ8D}ªI'"a=;j @Ej=i) me#]> F #zr.myV/R *ޙ^ =@KtߕٔBMxҸEʤq%p1~m)qF%] HU)@Oe ߐmR.W1t*rҠ_AoV+#VD"Sᔸzfǻ`)8@&Inuau{h{)8bDZ$r;WNRFH+fu\ӇOD._f'9ŚLz#~I;FշHI Hk!=~ C~i5[\;F<2HN9 ^7F;ε^Nh='*5д>uQRByqW;VM\ՆYl/]тp S\ vP_01QZXWώC'1b4#ןqi_l^RƛEwb̮!`ˣhpC1SÞíjJF0x6㛑pW«ͅg%PX仫C}8 &8G4M8ٞ5]孩=hSѡWŭFFq'R`s!~=6XŢwaٍx5lqhA~ʯӰ?[A?2|8׶ {}z`l>pDꇣ ' Fve3U},Y͏Өݭ^IKȺQ5Ji%ۿ =x([b" #D/frp*{H"4]rSOR}3K>,N 팜=3B7!j$5\E^|/*@\?#t$bSrf&+),AH]j{A|Tqn W4غupu`KEF3/-wެ7WB&?:\2A>F>ճ oNp³)Q/F]Sb#8}D A0^W=ѶNìTy\F҇e=vcJ' xD1)eVQ&dR|\[K2Cy%imЬL ~xUVJ)+^_IohefTWHer2݄Tъ-eC]Y_"R8\R2ﵟU9䜣wv$= ]p2ɳܖEFq-N0.cP/͡P!;C{[bt3d.&"GF^\f"F;%?9|._>$)QVj [lnWCWw8T>(?Ȫ8 +Mɨc 3'agKs(4&lT$Kx[8wt NBj{#*,3?jƫM VǬ opZ>5½l a˱^CH389pwhNN[θY1gy80Wl;‰~iBH&P!{&d;RbάtmKJeG#?n?fݘcIx!s04FtLjH^ⰸ*辸zPT-֮{7 g7F2LHof#\sL֍vNT9Vr]r/a@pmlh:~?!!]IXD8e0SW]/嶺~:܏_L5jt@i= A6x|L̢@mt}%? 8=&PYyW,ga&Q׳~[K$8x/ \^dxxgj^Vm6$lO* !/ϡ ]hȫCHos,* FAWrR!+zEŦS"t ei%V/}X1[oXL6TCԚ6-%{55'I} w쭳%T r~%X/qq{9`E4(kkTrx?D}6wEf)O]^/j{,-xOS9JOu6 4Y" d"ݲ!KODp~ݻL ohc*3at%5+x~x~waI/9~h.:S6Y\VjTn4$]'a\c`b*[Epi7rLB݊A8T/D|~y2j`tu;mrtePuY'ZqDp:T~|98hw,s~ADq8&':XTuyuoLL==i)jDkƿ!;;CiJɈ_\:i*'Tp*W`I!>?J| "?7gԸJo-p!<,|(Ek~ Q܋}R+ cJ 2fF^P4vA5qE(RpR N5l?+2tʽkNEb{~.'v5otk@l0gLj ] 7/;[f $;C"IiR+rmZOZ|SUϟqQ ]V X$њ){8uAy~Klk1\@DMr&M#wHBYuem C@;ZH95t˿4<~::ilC7^g x0n}j"<|mVX]3~.RH)a/Ӥ9*9#T"tZźkp/>wTJ5[cqИ"b٥Ek͟Z@^طFg9T,{nfټC g.p{t![\?q)os}UJӮQp&|遵TwTwJQ=x8Ms}yTA6n䥒Qsy ouᓜ(W @d1jV@Dx!tSȅ]n~tfgT6{lag\jWϾwzqjk`6\u"qYtҤM`czZ(~$xd(LT+Xq^K7Wyt-+՟I'b7]g#I~Ph9& S!Z|I(okx 9_~Kn 縄4BqT k>X$Ew!61AzO D>vPtbcyً-7Dm=q97qQK 9qѐ(vt'$έM+Rly* 2rnjlpr_`T㝋 fSaVبt V N2˕wC/^J&/2Ld6&ڟ ʼ  ,M>`Ƅ?=XV-:n(E;G-PЕ-j Ldw?Y^_M7aSx`d vR45p!,}Y >~^1$eP)N{}i~jH;͘SeΌH-?z6-&ehP uV4H-Ds\?龔IV.%Ljo-Vi-; S. dA?0!!>|PBFb3Dv΃uɔ-Geڈ5Xei2Kv̎d`Ko:8f~n:$v*av^lx{@][Ae{zD\S> Hre f.ųcY95| f!7,GPyuq݋J"ve}Hy䈤0[{‰#"n`^Q߽6gFůx͍Tۉ&b{]} Vo/vM^ĸh"3 j}G G`N.!)C;F2=AEȲc WX  w-<ƔMK\v~VB63*D8q[rhre8[ zP|"8 Y4eQAB{!PB6j4ư騺8 uV (P\AM PYcُgOghf[]#+MeG}"%MZ):a @gK;(da-f۩F9a$q1;N+f h7|:/HWD+s@z6Kk/K)L!ҎtS)@ab@nP!=rv*ft5p*rbk p295fj$.dGDaL{VZQMEr/3;=pHVUewϗ0M,3gn]cXb UZ Zej'G(~ԯʜqhp gjGKM|P{8xn,z1StJH|M,3KP7 FT TGE@0TlhhGr4R^̄VZk2dϭ 7\\sxvmA- \d*Ѣd[:0 x3;+2ݍ|Y&nF>Iz L4Y0ٻw vg M״NJa/&1F XïZjS iD,NNIP}Nhjpɭf<ɩfDQGȫO&o-˅ɧJ)|VM p"^*o( Yk?Urp}n"t,Kfhd\W6Es- U\3jЕj?Qo*MKf EˮZn:t]+Ccl0)F/q#LsG09:`kyZo,ϑ 6|1C{\xH*8}4uI88g]evDHR[i4gV\qj_D B&ngGWZӸ.Y*RZ>*;]~StߡotH, e  ˆig˶NR씣(%U/ |M,wXN7f2 ?֣VG/|`"u1 TbXjynQ)x aH4=TYFpޘֶ@HiF&uiS:QGc9#BwhkP!Q4-l>YQfh&hݷ|zԕmȌ27ˀVF;e9!Xi*xWXW 90 6l]e8EUZ]g6g?or<(FG:2JU8i Nc?l/~Ow; A r'` ?j*JylF/CG(n+F%%f+iNyƈ/B5,K46noZTtlp`[ysS^rNh ]憦# Xpln'V**,\ g<T1|*[q&HwCҒ8>@6$JeߎH\d|;gCyFgШW2jX3s| lnoÁ87T5Dq/y.4FJ[5g.ǒ؝D+Z`,)(Yl&}c<崪?ךX.Dc>|9jzW301B5^mLyJGQy .1&}N"z*橳o =1b3ӾBb$[ڃnD5<X_DdKkӨO~cG-i'bL똄K@s m| }΢ϯlw^UŦ4o4Yo8$}8r͹.? SF'Z(2.x?Ycx_ȱYCkdYۃ c\^ 0l5E#ta'Is%m߶.^8T9PIm?$"W 4&Uq/d\(I`"n\Q^)bk|_@trXhŃ* !Rw}\TvƵ`I.ktKLޘT8Z^;W|;ᗅpOfc[e^n~V1>pjMma ]؍dgYA˭ 黨g-X U670IDc Gǝڰ| ]U5o;D3%,ye7aRDO|9%;,odu si?LjL5DŽ"P kPL[ u5D|d{qqy`+y9"IV T7sT5 Pl`BdKil#K\Hmt;`B`*0@i]ߒHr7bݡφq'3E<2 0`*ڟ?] y8BhI_3}#I$`r)H$Lbtxz4BJ*NWP^jOoy 4!htˆFh2Ãs[y":mKX>98)}a(5oܱCk>(F-a؆ 0%Ξsfs`5ּ;R8I.eE1t^2^;~>֠1uJ~(I^*"sv j1ZwBGIR,3-$Kt3P zb[6w+4ij:PYzy p-knQйt9mCw4pT~re2Iٸw"VsU%PwX*ZBwZ ~KiĉzOޥ}9UmW;.mk<ơ=ߨjPwk5uƒ+Q=m |F].Vլ}fEXf 9ՅeM!= N? Ġ:ǸZfTj&%2ܙnőJ1O+s_CtK_'+`"l3k)s(Qgu7_뇸e6d#n간Os8WJ ^'JlK !PxKc> a_GTWmQnj(gUz+itōW{_J ^&WD3ɯߓBZ\r߲jZ&9!qY?)I^*y:#sAmܐZ Z>:Úq[ эbϖWAmj>_x>O=Qɖ2#iB١̣*TLv{t V}: :/֟ɀ3o&)>#F. nf Үh&08QX[i!6,?Y̥XA&y/ʷ,Z9pQWs7)twEkx m8("׆3m=d{g?@',gt@}bJ0h} *uW5oݬuRU$9V/jp*lᄙa Synuh/6PZW (BM|*@݊SHNP!?kp$Bxơ2XԎSepw BaE9 Ob܈16 qh/&_WȗSѶ+f7\/J5V7gsN5;77ug0S1'8NuT}z*:qONqmdFp_Z[^b~Ei\7M08RuuO%~b]oz e`(hCT" Y kSP>~mĚosB0_k k9ʽ{; <6;Tޱ{')<֫\C_J >\|H. L)⴫+IzTp`Z6VcCP.ͪ(U[z G]; 7 \oT8r1`EC%*i ՚5mY3~P)=Yy6F9kz Tw/芸 $0Ur+3X>?"@  ڄ<"WZ Jpeobc{h!#//j45 KN)_KPȮ{=")pAW[EnưP AjNYhx'C`YZlq s ζ֠Ǩ:yiG"q]4WK1^p4,b |Ը%h%I_$)S!N/b  ',xXtu7`'ՑOnR&Ao++{6WR4 '̎u5zemOWQ G^@˙d>O5h aݮkmoQ5Vhؗ3T|U/ RPmNr_/#r2`_` G2yKR,PhOIN`$J,6Slo+Kd{}e`8O_ww$ԴBlQBL:ƒ2蕓tqӇ,| [ҎLi%às3*L*F{m5O?h91MpF&-GW`"FFHY?\'qԐw&ywn+mF1U}!`Ҟ`qI6ݝy8LY 7,'H#[8ɐeܚRq~jz``[umUQo 5!YD6@'ћ6@:ٱG/.Ow=@CV5F'J5ޜ+wM W9걌Vr%ً 4VW]iń᮱TˆŚ uP =K`l.p+ORtm٪o$TM?"0ڽ܌OyqcEU%qS CX[jO'~WOK-sefZ\j8pQ=8E3v~`do͏Ul|ryWؚ'S)G!>yY|d-o=b_%1ȕzt)<` 4*O,BzڿT/uT @o&‘4+6qODGg*@}Q2(l|k^Cdmd9rGO迂 bp̭:<c%#Q!6S&tnC8_om/ut(yɟv tsM,b?F2L%8]edd*J\ÈRey mt"jC) gu*,uM/)}Jg\"n$ p98q#~ j'O7igoEeDߪ=&Zb9x+E+QhXvE| Ț)+|,]DZT.aI)Iв*jFN{)+1M$k~QYOź3L'ܪb+a$rUPOY̳Sg{#$s7yT{h<`v͈OrRpQEfk(LΓ Gk&)7`U^|6R1\Hn@k_)XA0}?Hx:RkG`Uxf$@amm T c¤'S.Pg$get=:FcQaBb|+pFVytw-NRg3h&W3 #)l(XB$ o(uOE`',Ϊs(g}0ʳB ܰ3z0J4K6s^ŸoͻH9'kXd2$\Ğs SCU#!7[*#ئ5F'8Pi:<mT \Ec߾Iݕ{Yf2ژ=NJ[)o&װʧ;F$fNK7RcG"z 6䥲I9%†ʑԩ'ceYcMRsL83c3Z(`F(`)g_:45:bsz~T.B HR;0NG!.Eq' 5!&3@24M: 7Bj. E>s(s=5 x8]x!@7-֮@TM$Lvm~{VpP:ΖsiZzsI>gJVOZvMa\w`5t.j]gGH~.6+A"@ą'9ͷw 4عPv5 #&.A[ V֬"JE;TV/]Е8?OeF8Ns}u#@Pb3 IWs\\l"b]Z͵n!ym ص=[˜[AO+ĶɊ읻baT~$ ٚ2]3ķǎ:9,۸?fܼ5;'xB;Г(Ը$ cdmoA[mS5dCK,p.c._!:MKԒ^R1H!9ַFp qS~#h2s̤O2.`b2Z0*gAQ&+lI#ɣQ7 a.]}3'1H5(yّӪL[.) EBdL`|?$.}n4 40 ӛUO2l7sR}V)#\~Q~߬;rm RD)GΓI0R@E%ETgDhSN|8yJ ehŤC<|a% J22 =I:t C*Y EvhfWw9uj?{[#r+fd>(8vz> !oU,5$lxH22( o%}4|o^V*jVw[MgD,VR~G ϣ FJ:f!33Lz^xrwöAiLf:Q G;R G!4E2at2T$V=@o6K_M px̅;T8=<eAf#DrY*Yǎ@I#YE{KS.K!K]ɭۃ(>R:zl5ި4zҷDO^5=;{cGqY.aʨC͗[@2%pM$gqz\Ds8sfqd˟ENc鎘1g {أxȼ"@qLdoDU͈b(`eN0/ss!5<+)-^aE>FpW ! YARNT!Pefk8^sL'G< gR;87kBKԶ(У9w( @v,ZhG?!¥u9:DEUMV=V!7گc֔:55S$HV[q߿zM-^;$bVuy_iZx]|^ t{oLJf%v;u||?*ֈ"z7ɐRb c{8L&q5{&PlDdT uTT6G-# o7}i/(x5:H5{vp9ҧ$WhLmZ {ⱶU`T c{/h :z !)cS;?ﭸ.N/z- _ECB<=!%-'%1m = ^a!rni+ãJXA[񨪺=]-x;z_Ֆ8BXڑix ^|DNΉ?YQ]X`H@ BhT h`rhŴM@ +jH؁Z%}’_M.sV!c_y;suDS,k'>AG@zXo\8sO8)ňvK+HoZ>9j޺ KĜ֩gQ W*8cy,ܷ(#]qH@ ]8%BC]#k_j]ֿNmu+g_ncp&@%}e+Jb^=8ʬ3WʩAPғ7zRsKQ g$Ab>p&ӄL^k.؝7(P]B;./ɓj*_"'*VQPD],K adDPHG58Mϐ=nЧuZkjȴuP _8^,C8Q9KLsOq.Z=<"f v_35tmE Ij10qisVT}o\6G \ZϷxՁqf+SUl"y2~%X$[]Td* 0۠"H+p1,\F]]jrkaWOpiXN=f@{gߢ}9 p28% 6 /K)MW=/ccJYET3FھnPJA!) C :ih:KIMDF VvJ5tKM"$"{rX,P,6]:"(TLAzmQ\65I.P;9/Ehk#_/W_@]?8jK#;^o8{嶏ݰTKqӶк =FeGFU8c#qG?XgHuuQ ) ~(5ښ!n 0 E_}B)3rM /my۩D 1R#'Fp_[%` "KAEp*F v EOm`n\=(G7 (,!c]^۟PWTaE]riZ+w]zQ9q*PcE 8$`O'(@t^>(u#>%^}x;1!*Fbz8Hlk_p='aOrvZ =Χ+xAX6f.J`eYX4QSm߂1qdHDFx<~Q8xz>@HR,OL`z7{?ul`g(8ZPJs4Zt={vțSP dRo'=憖%ww$8ld~Ţ]čť*SWF!IrՀF^5j/NzmD t_~& e)Zͩ2{ pLYSu5l3۵)BGq[I' v] XBoF&Oc \!m袬a&lG]SlXwhhY^x&g|J?K*,clt p06 ⋵\:a&O!Zƈ95>u$E!k G̹GŬ@l`Jj:S(=M5EJ\Y9^,>T4.XF=lhGIE2;.]}ɴ/,4wȞ)t5 u[M84r. Nj4!a-08-Fhh4/XmۚsWбPIވі\b|wGӯ :n!.d6;?_™evNy,+buxcG`U p4OuGPcF+12}HV7wz (tbm۩^;6>[g~V i$A,KDvwo4r!Zc*OK Cy/46. a~`BxH~~t7'E\ZetiiӱίKMHld6my#cػGuz5ėU3ױU'o <6llntq ŸJܵ/į-]jߤu KW)'i!}Fi=ڰ D]+ נq5{+/C~~+GL+⫍mOb4BVuiMLU?ZEcq=N̴޷z|>YCfRk@=z 1GFV)B)TlZU}^V1g簭E ] $K%]y-= SjJi>T 2y-dAq-F }i2&KHYNY("r-kzz(fd^9HA\YdQ-q{L(QV㙥wljCkDRn&Թ z,Ȁɢ% #UFT%+BbWwAf8 2+N=&PXfx>m&"c .֕r#N˕;Y!b]'hd,"s b >K5*^GX #uX**VMcO$-\-. CS_9șMLqZZ1G*%M rKw3C9ppG'>/8*]ܶ+gri>`ZF~*÷zo\򸔚.xw:U@!fobɞbKqa:}F;yEWx8;$ixAϫ8UEH !^=k ,SMPf^5WbDsZ )w(bIJ,وu1gA+;rgB v.dT!,0;—4EFEDhVj_]IP@[s qOFR D}boA~Fh^Aɋ7ttdiw3ܾmGmPbx+޸$k*=b%Im>))uE쨥j6f\!\e MO{%(~v=D')u(d[GnѢWk.f 0?1VFdћ9XITV 8,AcDHsUa{/ #k 8-ThBM6Ket ;ZD]Ϣ[C.ĄHEG֘TL 9D%d1H eL K砺%"2vH-4}OKf>6BEo];".*1M*#jC*NN,Wd4Qb@Ld?`lbPM?" FR@dg>^a&h A$A{8UKYoA1"$IFv-J5Obꅪ=!o`Pm}ўskT2/i Fw\22tLK|NJ E\?XƏRצ !xЩӺc$8@Am5JYcY%T&iyJʿ4U);. j`Q҆1S:` VŐPʃ=@Vڎ#1jj8;`FPc֛h-%׃%'ڎGCn(PS^KGϗZ ,ȽӊDavZ-gt4RʛEge\a{j5|6 "ѦfH\lБY@<7D}wW"7x/-5GsuY7po-4fM TaHN G]ehOmbO50{Gvq@RmOWDFl#JRUK|B¦r+&w=!@Ԅ&gX?->xτ3beΝc{ M ?hQ8vo`]~jspޯKMDM&טJjgz,oԪd-UT2"dmY$Pge-G䑙Ueh]:yMꍯlga$ :nOPFjbu+ӻ_@^ 9'VJtptrF2(^ ^MR=IC|A)?h`6^۲$}uo}]u{),g¢)<&-{1 .}KӔk}!\IϦBj6=Ym>UyȗmYAo+!xVi)nQN(@^rPf^m 5k;SIq@w1֓j.r-9>,W(@MpZy#?(=VIl޻`ԴfmxL\NjaM@FNv5U"D0(+b5ZDvVVS)O+.hVC #K$!˛J͖Ǩ<zozV{zYfF9p},DI׫~:?gv%dt/Utej@JZ9m( -) W0 'o5+`ᣯqmBڪsYӨhxq*Ӄ1d(rqiB0A*AI {t_&$\14LmlYNR`Y;JdD}yIϒuLk֞ Gִbyw;z%y&eY 8˗:gkIhWT?s2.J9U)d:{4//&^NmvfOm㘼Q2Va}ɨVvf)u-u,GK0ORL=épSg?Le{nPMt²a8 T{pK[#M4!f|.'v-pRstͱ*pԟ=7!!ж~('fw^~4!rad]~D@9멙|Ժ$۩^ۻXm%3Ez$*)?".Ʉ'JV7)U {,+|awR0r?G]BJL8C ?GEPCʉZWS$7݁5{vvSy ;:@V{"n58Kow 0LKJTFff&%S#f( ^&U< MܤÕ" Hfbe5^cf 1sTJ|WPU܊(8Q)Y}sHsd(՜=}͵2mA7y̬׳iMu$jPg|[; ri6NjJRVJՠ:rn)BΒG}Fwo(&*Ù3zIæXv_\4޽&6To.bC<$z|ޡpgjٯM7{5zr䯊x&΀ *7O%26N=}=SeR?u=X^ i[ t Uq#l ٢>Ƒ,x͵0<鉂[;ݬ rb㴜š(xC)$t$Ɉ$N?WnuD#> H/7Z%ufqT k-rhj]kUR#xe=f}sfIIłt0[Ů*Iy\b/dB7M.`X6`*;2a/{WË*b )6H:3a=6nsy_Gk)&B|܂-m -*%VFyR/Gy";YsX*2rR_!,]5~\N9/GVd/Uta2ݬ8E*W&yI2WSJ {&iK |g 9!LVyP.x6(Ng a?CFh M푿%QݬޓqLo5đbl$2tB>sFٖe#U̡2X0<@kgps:*@Ƕ|Qp("6W_7+AV9rІ݁nh%l'H <^WL}&xR@5S|-=꧂^?7 Pc6 ù wNll &;J F>}.*AX1KGݯY uU2^F 5rN!} ︩ ټUgXLu3=˄m$[ 7L<6=ZƝ^'"N͊%}0[ Zkdӊ7晫^}+ֲes n ӝx$E$g5/eQ/ (A)9DŽc^ ?!]FH&ovЈQfN| yr=WȰ/Qoꈓmx$xsDSh`7)JIr Z,޶ `n)ov77Wi g% 1"b6WZY oؤaFkyq3Or8FQzZJFoD!4GU5!H ݈%? 'Tj=j ])khJ^_víkKd0<0lɼA81X>Ƨ3X 0{[#":^!E2z`5H낐%coT!50岺IfW _So~V헇$`\j]h_ltk 4gT*#kgk;mUNjfܶ:CcN =>&;D|>o!jۏeU`}fQBoȂ&F*53t7mk̀.9 }')PG,cu ?ZVߊm2sf F-U4!ʀuw+޾~&D#Mpͭ%'z'ƼEsюWI'$ htJ}̧jz*T? дIeF )R Jr1Z"NS*@:xeleH 7z`5ǃÎyXRl;Sq?d@PdڤKdfqRp/l:8 Lr J}bwJ75"[J 0HŊYp 3V7h-« MmǗ%4n6f))7q2&N_\9V.Ř7ԟb8YDKdB呙-?|Ex/!u~AK˞ ߶Ўc/ɓ+ч42ՒnnO1,p2|.&}1T`@|]\I$aLKէbzq55CEhA`k'd#č!M&\crӺ]:QxvCewms5X1 [V,s\ƭ?^2mbd)CPo&SV8KA *4a[JAE0@L6zl6Kzf;fX8ִU=mFY\MTH,׏-֚&0>SE׷RTS鸄Aj [bs P c%]S1;b'zu!ˮt0_?78ky.Rb . >t3伋\}HS*"H\Z?NGLV4"ifrWpioh],1I-@ |&a7\;G1XR7`cX[+d|#BKm5r7hFĺBd&qmzjWJ8*VSP: uPYPgc$/aS:2ڈ_ V2)7l鞒a2xԳ@'UJ/2 L^r Aө+HKS3U 8H'gU7&gFgƅ,˔ E!Ŝ-8OuD2`&*{P?Oqފ\Xxj`雴cpUXgYJ >;us/H׵,%r%`Aj)}չ_\UFxFF[aNײrg5Vcl?y 8" D߅i ^4H m?o%QW|T{`oT^.͒ =3nhČ|Ւ17(5Ox=05N-lsYG݀urppg-r2#5SU @keăȵaW@(g'ߤ]}\zS뎨trk`}}LU  Q(b h5ӈ#;]m*vH%ytCB} /* k&OV{޾QʲJ`})xw咁J9:IC!5gHW!%~:˩u8LY0.LY01  5R*,0,䎙 7]+(/:&eefQx |=S > ˚Y:NAXPCَX1*Vo)h!.#^g/:0'|G W4a \5u4LQΓ@6I^87RzK s+M~x%^ %cr~smutuyDGHRmף]iTVE@pϺ6 Yzd_Q~<.er<1ˁ){bK~~2M7zw1 Wm<(bg[Ml!זˊYrWS *S7J>Ci$*"Utf %Mgt]GlkiƭTyviQ䊚mb&ICf]e }v;0yDsOӬ~'P3? *:e,ꤣ3""EHzI< Hf)UKW"JX@v Xӽ3z =XJ~DG04 ]dv%R9`s,9<; ꘧O[rR@H{ӄ9MAD>mdsӹ5zO:2BEISyY//7 4b%qDQM--a٢&Gg y/Ω,tldNW y|>?@N" daDQ}oe@xO{|bh5#&NEc{NjUQ21ͬJPaïU՞9 o>_jLyLXxg}tZaƨ| ,Lr3J&XCj|,1)(D| [̴"vQŽl3 އ+!g;Xj?6Q trN0--UhC0+o'ͳzsۑL]/؅Ab* o>* )y9ߞ+cV%B!=b?Jn!ԏE+XYI>*J䅉xP'c{*3DV|Yo tb۹,_jiu'xE gi&oZ]z/߰5'Weٽsh\Mv mk:gOu,ꏡ@%1$,a.v3P+OcîG6| ZWY_kSXș%F5^4/N*b,_%Sڇڞm/g8 #<|wxyo3R-5.fl %޺0Zhًg`<)IEƨaV A3FǶ u!gLqMΙ ͌_T,"~~X~ {΢t6c/s 7tb1%i<^i`m_F%jSZQc;;Ʀo>F;q9IB&A;6}ntZaMB '&dAþŎe +`F. {|!zD߫/?(.dA)),- HխNwJxd=i G%p`[9UpK(\&1u[Dk ӊԭàǦn:25]c=)6sȺ m-QqY>y2 CYuS7P=(`|D gjHR ;b*@Н='fھ >(/U,1#ۋUGߟSlqf~%EêbJh6/S4,wK^Y4% '0 0ͭgh g k H˛I>9 y|$(ܥ/X=:XIln6 tN =>Ka<-cPd)v*% omND2].J{X0`Ծs Ymt/IVqN`*z 傄4$T xɛ!W"&DsvpL%9 ?Yr5CF@ԅ ҋ*pf>s!/f#Au[TfF7R&&PT)9m|W_C,: ;⳨*u!׽`̥zcXrH%33s>@alW͝voOޣU9xxw3Gw*+J6uF&]p[NbythlozG4Fs=GV.'){ + 3=}f(󂪕6ۚͺd⑱$8TA_S<3!kZI61Jč&9ι֪ ѵA qziCQڟ@T-ZR]<3ctZ5$m®(2HrQs ThNW,Qo~z{.#|6 2;y|Q!ءa\w czx}g;hN'+Pʗtgcه{x1wCi9PmCM 3=}-pM -!Oo)7sÔf|/WdDȝ]ε.ao&+NL^uc:ޯŞtaD0`fXdO^[d'Fֳ٧Bs^SXl8Ukg7E2i&=6Oc +'_:ܪI.JLwP9F P6ЇIoy~$B%05 EqZi@n /tטr-$wvbϘx=W*gKaI N,QV]E:ރ|}Xlc\.皾<\"{rEX!gο9~ƀc2eB0he(2Ip j^V AKhɰN>iV(X.FʨsC%cio[WnWumݞǘ' _ DfFѽr~l aw%wO#gOn0٩bLYwvw%joŷ{d.LWp(h@2V~;e/֑ڴ^\rk9GeQ1>/0{@{0f}Ri!<۟w؉dSXGC?_.]s+`ZO0~Da P?J3 (ZO`i'^ 3W,ln@ 2dJyfZDq~=#系q gM;F.UWxy!5[ivvkX1{JmQ4'0) gxj)pF!҆zvC_}wG;y3mW[;&L|\w旲e7藱y>c[ *|_h~Pcp/>$!:9Td> EeuAӓ9NSWA8f)Hоۛp" (7%d [r'zxj=T@AGKKD9%?(+T^ LPY.NC)֏?YILڔh hPܥȔʈ#rvmORr\R"ڕlS1qNHq%˓iu&e+ŽϡTJub} )6YѸՒݿC8s;9"h?RtU8,@nhes&0~?Zi ?hچE(%. 0j?-i4u44ԙ@ɉrtVUs^Z#.R n ]6Eˤ<*rԳ f.]{ B*΄`l1ip9hR:0gG{ыwv$ĖZ)"|'UP|Ck^.~MD8e<Êkΰ zyǦ+r,=7P9(}¸o2LvFz+pGZqK/qC.r>~rĂ/zh.94t́lX ˏ&+*b >;eqyr|A=`P Qwl aLߒQ dZBv6[yֽj,.Pňڕ\58hړb.fqߝi5DA@+Imx%rÕl- ψH}V&A)zLtψ|nIJJuFSGDLi[|- $탾'rPp@}|{EhYF\׶*ID;0u)h3g'$ӓ7ă#@TƙVF{kaf %OGk\IJn4Bʁ"<%֦.Ʀ%^ndz"hEm4n$~TP+W1sDS;CrYA5֝;|5 YJ:U*{n;H/F*_3fz~edJb XjEH7} Q-bTnfRSLy-[o6z5jp;#jWsS]^ 6%Lv޷Z8DjOh(޼$H2Y"LR!j_89W VFqaaS5Gn7dNJ)PK4'k>,Eͬj$. !N ؜Y;4l`P[z{:Q0̂i]L߉BݜE#X &յaKLfĪ L v8zPZK:̆VN_[. (]KH!::;<ފȌ G =;S3ʅOF%$6h9RPIbBA{#p,_@_KrhޥM&v^DFޤ̌4kIw˚Z w5{\{ +Yk DIP3zWJAh:fxM Rz敳0;@zN/L,Ԗ-!⛼h˼*`lDpk3ʂXg7)c(#d©ltM8ITϋh-:Қ.󀐼/H焰x?ҍ݄E_aqovj=i2i P5Fza~6nܼae}ngҦni>Y[ Y(^R}^F3qfԒ?Y`̯z'U` I*>uL^I9+KVxl1c󟖥 +kJu ٧0ਁX'+SDvB|HkX庨 mGoPͻ߆wgK^ &H6@5jg ے yOXqEA SdMߺP;ÌQ]FWB,o@#2Y=?;ci*EL]m![)%#qr'g%[4rw32ɄzI.H9J=N"4`w;v7eSHTjPm!Ga:ztl[鐫~8ىDm3z ?i0eÎ Ͽv흇 \^Q:x+A][楚2>Pi=7\ hcq6QlGz/kF{N9EκKzԽZՅ\oz޳܄SW%08ZzàM(g z7hV(MdA{W쪑yVfrT4+e֮0 8rnҹ2I^RixBTQXr'%4f|SI)1|A-ňCν$,T ?)chQcMcYBH~5 R5T! JHr~/aķ"!=2eHny9$ DŞ25ky@$ T,zB_B-ni@2t5DOnOV0\+yiŃg2N8\]Y"dJYcIx2RQXHp wQ=.PoY[]2mej&@* |!}L 蔳Ch#QI.VR}ё'uLxTbiB. !^$KqM+s76 ̝zJ 0r&:ezܧ34 0w ndۧĶHH1Z {k!'x6/Հ`XÌsזBt8:<Ɇ^d=9 PU yJ 69g0^c= 9*͏FII㮒T'^dzN<|K'v;rъJX*Ң~dINa[,MU'6:Kn#IFߞ$E' (QwH5fh *5`(vR_]ׇzD(wZ۠3W&Ƒ֘7:.C+>鴲)*{۱QwC<FbAc<=y/,urZloǂx.Љ2X|yȂl|u9șk@Yo沢5}൬@)  WA;pUDu]cOCt-pNn%Q:*0G2F5UH&DϘM#Qlqz-{9_o?B>Sjn?/9+JSa`ЦQBL:t:Zd_qr٢HCe)B_:-WW(&a6YPEqCB䍖5$<+! 6o?޾)7:FR]XMAhYY2Ǘ`sپ {H@2 lW(wװ_׍V o5_CmvT9h!tdqsFMP0i;rK%{%džkMByIhz6H9&ـt7 "(zXast,-b@]6 ۧ* mlp-f^-O޷~i( Q70<~ ͓2'XHrsE[X}%{t&昵v+ Wzڎ;#NɌH|<|Q`>GaZiyݹ k(0${zEie A>.FW Ŵo@e+ R"v|4+YtG3XXiUҹ8G! ` Hyt1 .'xUFN5 zV92 /iJ4h[>2 &Yu"," |OJH`m bӱ )3NEp|iܔ0BbLun@[]98*y@ ?_$"X; O?2:@42xU6t?jjB WB {!A@rֆd)ꯤC+WAG6=̗1]s;X(;xv5A;ҁF!K/}̘<*99nF9uӅduFL%U'?IRghZ:ɋS I<\,;?:!{6kx~Ӎ.n/RmwSnK>:k4d~:.lxva)| 1g©lm'Do9wb^X$* ~jQAcK/ʃquG| ia!.a ;wwBl* 2|!;F:H@VL8vUN bR :\$|Urc"/s`^0t6=ZJh}~pzn4!|]Ž w:S?i5wAF1&l82N7߲|-REMڤZ7VxUXg@B} T7$t2VS686;Iv81B2.C'CIbSW;y*\eYSs'7"!<-'K[tTj<꓏w?Rĵ;Av 1GXkS((Z2Qݕ:%)L{vU=~U!ucTU(D2X]<;CjnNx׀eҬ,K!zzz388^muV"͈X k­7②iBYs6\. r<ww&[HrNLU{1JW 5wmumFXR ~@|>-uNAnoQmEbi7Lev fU(@|gyFvh'd*qRQp$7r c7"S>yy(hm ^䡔skXYo-rVW#QƏ3o3u$А54!&zx:'AJ,rLenTŲ'`3l!Q}ܱqʧ +_&e^1/E8A<`L͑GR=)k:]hs \.>Q=͋4P\ 7 y7=d DX2 M>n'kȾgg4䫹iV 0/-P%-GWzz#A_zEDg@ E'/pug55" ;E:=c^*h >GuH[:_"W :RsB9lH?mD>˖=y9b4 ɀ|I5_8">ZL`b]a@}=)ԅV- .DϽ(cR R)Wv5:HD!K%-G>I(x[5Rx̓ޱ:sؤ%!KG\:h 'w`cldq̿36䧋w(Փff"\KIoÊ7U ۿqO Gݶ;5+yJyd݂ y=M 7_gNjz\y7s9qʝegϬJ;YJ^˓&]'J+W. lm,9+I=vExPgԳ*f!2Ha$8\Bfc970$W>U}! ~p;cfW-GI U)ɔy\'?v Og%8OaL%UC_OIt_aQZ6ϥ^WSY8Ô D ө<.[[T,teAUIzY#L3Po3" ƭYzT.NC+Ojpp=^DiB!Dj 7:BMnF*4wDv"'RCKH/b k8Mqx!-LKێ?\t~/u~ XYĄ%O"oS'~B훞]Dt0VǢ#slr Vꕻs9"j}I/"9g=K~x.Gg~ (H%K^b B6SPN#?|\q$|v2 W9@SYR`G%7JiH1 uց.]#hN]9y::k(G0|/udiGIǔτy}9] 'N L\"5)B>\V얤lҒª#>7EfcJvͶ )ּpoЙo n*I>va2E5K"xgT"%0xS=uvQ͜)U_e7*hl9N$bcǗ *VN{+.W ޑu ʤB~lǙ~0JD?(f}FrJZ-cXE(G Ld͑:]4wL\e=z2\ L?E -g*6Q;D9%ܑ!`Ӧ wfSc:9W|3p<ɊKHo}X=(+e %iƕ.97 qa[ұ-9TZ, X>ڣ{Aa10]0eMt}s:.hҔOqKĩr^RCW.kʕ~VvW4DR<`E )Fkd:[ AHGW9 *c ëjm1XBVWK(}XGcѮX8UMypϙk 5ctH-~Pk02DFFR~ WJzKO.&x{tRԝ{b9B5j?T=.iZ)kRnc9ABl b؄]8Fa%i7_TvfC$b ])#}V:2wxBWz?~/iybF'͂6Mج,LȊU4K}_{#n[,Gѫ ۨS`507!1W0a 5ܦwT{n=ܛ cH{i&{`vII'Nϸpcp o%gVnnKBRB2}h^FO죓h| hdM@j81.q~ʋɐ`gqxp!Ǚ~Wl2FzGoyh"ǂ"LI&(IO $ 7p[y F'ɲ܆}9 ۄ/̪/eD(oJ5mŞ3ެ%< }A9(9菳^Gu ηIlREটzT'-7z̗jJIhTL.w\d S PpuܜG'h>#[TAQ͔uh7wρ22 _cSy2=&,mWwIn#1)7PvbYȜgdԯ(t#0Ez &#/(C@9%Z|4̖ݚHjhY eZR%d*M"J 7`ZZ>INwCmO:l]fg]A'/ls]MY<ݣX~;̏45bm'XMߺN部?[}'dG4i~S+St]V\OG&{y أ5e=kG;EC/VAdDB[0d*Fa{ ]ÈQS\Lt$d}(h҂E y_8v!݆{lo2 Qm|Ǻ{L/'้ X !trB 9<flcݴ'jz+`}l4䅫C?\9YXeLOkgrѧe8KeobYm!'gj-EwBڗ:7]|y3Ip)Co6;ADul*:sx/֧9Kdnl Z->P6fkMh'ፔkgRt;/ BF.iPLՍٙs14K~8ך)wf?&ϑ?ǝ&pٯAݚ9\P[mOm 9TPPufIͿ 1?Ё &+Juet(F 9kSi&e'(,._=b2wf0[dk""́Lhg#V PuWuo~{$.S!wHzQ;2U@+,H!KbXD'<$B0 e(~sԍ>i)Zt:rCwsY%2l, G熷NcNK>Ŵœ{&c=/'lͶ[1[b+W34h;;#f6P:W#g=a6XNKDT՝UGgYOjpxu)ń֐f *]"8J^=dFŽ4j@/jrg:>)kZ kL_g76 7-D}v FLMƯo >.Ft /v<3l|w!7 ǥ}ow$e]"JJ{iM]K$~ 7"jq3P^@Қ(qɸx}:[y":]w*9r7h7evQl_)OT|q~3gP4vqKZPZgGKg0hX |*ZWH^QIRYv$i5yjs޷ C7!t54܄/Mx ]]`_٪5]TR'kb86.F=q`M%r% ֯G3'/А BUqi*ghzAMXmX,š f5'!G@7%Ȩ(IʶBnXXg4u`}@-sp)q]F-cC[YAQFwI\l -qB)ӬwcoIeORŁgPOh"" 2;QzMV[>gp|_A㯵&6K`R޻??V~<0eJ=jP v*d1r5FXB}:$ڶE9 Ey5ՈB.O.%vA@l븡=]E;^1d9ɤYn9 m 43X3/Dj|~C[t.tw]"{,.8|/oS Jz/t~;tQ"Oj>Jc: 6GSg =/~bX_7 ohYmWJm! &T{X[T2 Z%8kܯI<9{8G \JeS7dj_BEVcFz(~9&n{ !  ҞۇGQZ&[qw/-N3_'vKGDcw0d,1ܒ7seHaC-K8 ZgO镛kUgc]a#BsDиݖHjkM'x06iJ%e*O${vY$†HIT[婅Tz]trIh?$OW$-@dL捦3 wk+9][!m| ?}#[T>L ]P^te"k,Ft+?-pǐ%~a/0Q~$۾: pb'9frWEAW`O !}cfu?~ZsL I3.P,+ 4_S*hp6̝qA@#&:4&|\`v6O{pbq:R 8Z˸@x$/2 Mӊ<4 gH=P~t<@i D9@ }|ԯi4S:g1^YT'i{)F[<3@uTv"Q!0bOX.Qd}ju⸲N pW| *gq>)E@rypDž_ې >odXu ׵'n1OĪPsxIgTmGqe+uX$7Emm.2QSIt{,,NHj;IE!O&}?eB9+IX Ғ/۔mP2Q|3UAܣ[^a޺F XmKj_5O!T{ٹʼnWٽ~z{l`+eYKiZG~[:o]]ָ-<#I8nYo<Sc' KצMl3k~J꼅Ʊ*,\T0cpsOU:_pk WTNz#?)᨞3Q!ՖPwPwؤk->)C\lR׀'1]%`-lX;3]Yv҉Y~DUl.َXB>"0x1-H*xz#EABM͕oZTip(V<}y51wPXDsːb~*"@_7¥,EE3|ӷ.-Ͳ镓)7.U| ~9Hrf)TVT*;=mS i,?q4G~xń7@G #u%, ?_& N'@QskfF±}^e6|cg@Z^MnNςj⇤H)FlkjבiAѪ0._'bZIg#ÉA`qO4Xf@u.^] [k*LD af`3qu~';8`bW~+ e1xZ4 !w̯ƣ+vZ*!0(Gt6)SH0,QU|)ɦvr#7󤖓i#s~ؠi={->,o07d{>X©`wEi ,h7UoL$S>}5!lX'U&AsXU\"wj-fq-We b-_嚤vI8XjA?A[-;Q*wge?yΠh#Qm=fSo{>>8ႆwp#|c]nnɴQj}*K%6 ˞o 1"5nDS\h.d@Ef!n+ijDz{M ה9f,"f*\AdL?Dx4}r{91zqn<~Rb6 |w  B|xSF3e1& ޝ<\c6h24?+A:j`vƀ h&m7lrzOF: yh(IĢk-l;mB6e;+##7s0&E'{5DOD@[MpJ&XWl}uF{ĺFe8ٜp_}bHN@W+.M\.p`}봢roԿa. ۾JMB}z,;+>˕uL.xƜ /Wۨ4ƭJiP1c3UZ hܑ_ 䫫B_0(> mysd Ok5_6e31Q,U#k0O!Y&{}}Aۑyco:'Ϡ_C1hF|oܝ1L0ЉҝK6~b B.yY@jI`ܕ О׫,*AA%|,/f^ k@d m,@Nz".iNГ#x]C 9ܠ*ƒסheH[&2UlfK8D:\l!Q~a)YUNK'Xc0>c$V[|6Q@֐4m'}IMмҵsV~}kUpe܀ٓ-Qw=6LqRa5MSσ!|eih[c3'_ߠ;KyQi8PN:asis:pxbܑi'!|nth5OtKR'@mytOdB* >OQd)A4 ~7&/n[če;DaGNjKUPO?":)'9=x`SZï+Hq ǯZvl)M]dҽ"(S9~l9Fk%|O2+XsVEgKZyg5#\tF>ŕXUdr}/e*!/ ,4vG6u_k$WK|kjZP'yV>t&k^H2HHSZFb*t4ݯP,tEtR딀 ܼo{T|9=i85Fֽʩ`{ԍGr]V[UN"@'0).z;>wD}㧧 yX碲 3hoL_Q[y[(zA&2}rjVأ@w6`=PHY`t5 %iCa )SwEΖ 5F6LU9}a6Ev¹Ġ=gߒr4 iqn|׺#\w %A.D@IOm(Wh2-u _ȿЂGnxJf8{&#EOlTMQۡWbM,`:("3wDI{ZFTʒ>LiPhCݷ|[u b .*P뇢]x9+㍭ կ.~yTUSm治F%>Dud5 SOB-IjIVB0=k L^kpFGij+}8XDCc<qRCEX(s!כOM9a ~q;љoKwwf4Cbm/؂ww@lES ȨG\rJB*M2)ېs-{bAoE⑺+\ S.,3K |X>{Tn'HvM7S :2  /Њo P2ڻŅ2|'r.t31ΐ"M~;ߜBA "o|8ħq?!~H V3cfіi RW_v?tLggVP`^WIng.W.0+},,u(]. ?YEԼ˜,FM+d` \ě͹AXfnI"?_bmAoNqWB3FJ8\! \L4xx2Nqсиn8_Kssފx%ޞUQ2RdӊVunoO 1e`5Ӷ= CT( ll Oy@98!C0f9UhӨ` 7}edLVg`.mDiy^!Jj\ AHLO/v!y 1UGzϩZ *+@QSx碡OEiT^0Ɣ#/$ǰB7"Z|8ׅoũ"0riMڄjj|~:rs>h5?!j(& $BZvqܫk/iJguT%%\ը>6VvPB͞\UJ?{6q쏧vQTp=6jřnԎ͓i0pR+3$`X!ϑ~ _`{C3ũ္{"ӑ&% Xn~ hndKmάJK.q);I>HڨGY9H-@uz{pB7[ !g5:*m? 8-W4 Ni)QppjBp4̊pmo&)-#8g}>Nn76[DW /V >tȊ=pq 'UN>ث@mV J㗢IgDD'cIjv*:`jVdkKOaTΙopN~=Jmg]BzleZf'oZYW[2_ciu\:d=ɩÐ 3ۊz2‚HjmNmY(7[ah{ Odʢ*C=bǙQ:cʃT¬Lu0)(SeY:6,Fw<#rR.JN }!#bsyCgİ9h.6.n1r|&")vܩ|R<ADbbwSd%4l/ESx.9z7-b]aIC25HzT+c^5MF5s J <|P$Xһ!?QRS\3IiL'zlI6 v݋F2|m<ܧ{QYh<}Q?w{3I~_ =8KWDN`P,^]fMS:E&Oi]먛vxgeQ]_ nw_D*( ^謋i9&jwrzNaly*1v,ì{QWLCĻS)$^+Dy:F(`RPmueXy=L^ޥHnރelI,Bbe?D?W[栙GyyL#M9X=;s 6u*u(p~2l27 k-@7^pp]oAc!} x":2 Ɓf k~:>jDNrop Ơf_^F 61{7G4: u.=A$4i07vE2嬨}q51pȤrr+*+~,*Z"AvfFܓ6/ZoVcY{ ;mW@Ib>*+O^l|v|afDI^3t,AYmD#fDjeEg}g|FxSNj-(2paSnA=<ސ`E$8]QO}Z- 4 GrZh. Ӝ8"/<# uazA_6뺯#^f7i&% WFU9څbJV:A$ҘZGnPL2KmL*Q:q֗9w+C>UK-=r.  <%m x !PI Ųo ^TǶpģ`/M/r2WB+xM /ИE%KO:y S"?ϓYh )P '݀Ȃt@~c<p%^d,aOԹ9z>T!NHu{֪@Adf/ޅsRpQDZ]:OQW3֦۹ͱ5I+d࿗QWp0_sA.v~{ئ= %ù! - &Ъ0`⚕ag?HeIFWO\jȀ `YeP7"4K. ֝@$ 5Jq'=f;OQ&czCK=h>'l_@uvo ]/`A7.U Eۃ+/n'w/QjyZw/h,зT5ބ*.1e}ވGzhb4mPK7#VJLʡ 6שS:~,tԺU:?V*h,>#-\Txa,{[Z%9⢼9A6/Y+)y%Pˆ*FK"הO{뱎BSQ5tJ;\OIugFGO\ v 1H/ϾߊkeQr ~iP;)&YQ%!N Ucop,` x֬"նnEw 6sEj?~赗8 ^3 ' 1\oNUa 1_*H̠ÛXJ š m e0[R1)Uh"{7 a@C Xo+lsތ;}q1 YpζO'|3o Z`29T|qXt}U%#?ڴEX`z:c)#9#<8`Pk3'qocbC=M})mso3kmL~!I=;ZXȶ$A^ _q4wyC-i~|#XD|@C/\(^7DtIpPŇʈVe ;AI) (Tm6LPkVW"ut`蟿<~.tl_ߵ1vNsnⱊYsչcVE&OqRQ5u* ?=fiIGsJ agjnU鸙@V2zo}(0wTe< p )%Hϝ-]C!@`% NxIy:ÒS.Cb2"7;~WJS&{ߙ:ӝo5E~] 1rI !M/׹KrRjMg!dԆOAVrxĝdQF*v0!4S;+P/]{ ! b =L#xI~8[&=(@b9mh0C8f+DP8aӮX+s̃ wn}8:]pZҵ#iBaߢ-ַ}wAXDUn3ٿ\ k]$"sŢ f£5j;ܯ C_f$>Op\} n>ۍԊ-Nj~3\G]Bg[G»5j7:|[MHOI-kN Jwe&|_Ise-F ĘSv10 U+~``Eh+N:(`jkrX2XL `ߛ< {4 hp_Xd> _Mt t7N6c%2Z sθ7R$a-y? BRӶj(Q9\gD¤ձ߭hyB@i 7$M1=Ipc6KGv$}Qʄ ++x"tCyt/jdjbLBe#b4o^Hk5%FقNBΈ=<__9Wci@g90b=u ah2n|pqu? ē8l~Q~YCX1ri٣jY?BѬLòY[OyLZ̧V7R ql{=uHw6|SRUGMl]l(\_aL bOHHg<Ϛ~=ҳNjcn&MAʮSBYjUݾy\VGS+96œ[7R2XXB+៦*=F_Q8M Kqni9F]ͮT!m1*Ի݌jcJesL;٬bwv2!1X ;gNi6d?]i?Զ{ DxP}*G26kn"EDU:3RHT:CT$#$s` %#kn_?CjD%K2`Q^nn*h3퍞xE(!d0=Pi ~rW'U Aӣ "dCE-/w9z^`۾N}=uS G(|+s$>8mP~N9(ћ(wuQ,´B N>4~%,T%b6ķpaX?Våψ7N3G ژPV59̹ UM;/|SpD K@YdM-i'\z 8TBg4Ds3GLxg4cklf ٪3e]ao>Zz׹ s*M׭ Aubc~X$k༃ JHWh>ǟ0 Sޢ|b$D0fƨHK<ι% pam{L3]TWtGx{l;`",f9.z|0sS"_^8)R~i=0Cl3y׸齅`83>LXvިr*uY{ ퟎwfc xw>_Թ訑E5 !{3ὧkyCCM>Hٷ;)(RII'ar> $C3d3xQNfGhBN ӿj)Ey/qtj*ֻIjZ kNRC[]:s| 7?pyx;xx,y ?pȅ#; :a8 Y tuycXL3C%/ jĚplɽX:7ѷ j/K&aW)z{x ܟ䪙)c@dH{|܆#1iMVPxK93ldVQ推%{BHAL h Ɩ]=QeAWP xRz_gS&7U3>ߛ-|%} N3},{A [fejsNM^ 2Vup}uwT̞Ӂ¹}Ӥ0nY3m|1l J wB/i.^ v9C/g~x^ld+Zgm6FOjZ䯋՟z!.n쐂v/0F'ٛoZB{K]+M?:'ZJ.7EtOUYRAg?#| Op˒-@_j ؛{U9jecp y[; `@[Pz3Q'$+3)h<2ja=Ty*A"Ol7i3x-O~=p"5:@ɦSA}ɽ:a hnjIs7hǜȕ]*&f 6T Q(x|AٵĎ^(>bM {E~2Z>xwL4/h]A1l_bS ls7`˜iNqd: /hD@&S"3b`^\2ͶvxkQp ,DPskr壗?]0,E_?&u#s^1v|@4t/vCnЇ!BeJ j (ӛ+ļ.WcGKB(7Y|>"r 'Ŷ:WboUȅȮ B$͆T7T*Z{Q4ӓ8Qjw/jis羹9WνߎGb]OYnO*SY4a#ჿB{맍%:/0چl2^vGiM"/z*.1@Q+kT^?t洟|YRq @1Y(O>קb@ϋo`)9h5 R u;Cu) h=| Sֲyer>=9 }\5tۛD.vT[u˘l^ܕua}\-Z%JQj XkňRB#OY& 64c"t˶<&ZR*2`8^s$X9Ͻ\ꯪ>-!CJHu +o}P;(x JuLUu}`q jAIi]mӂa*lu-%M-nJIF2B}bIBq<Oσ8GF:`.y>CP^$ qm25 IԡZڎGef:,8K"NULPR4!nkzqWlFlcx^bwu%]V}ԓ*˃>Pi'L1g^A{OrD9o!k2<*aZn+Qve.f\xP*u W1KܟQ/ Waoqς /3 \!fcqgan.senߗ= O|!Q-Har{+K6`W%s~ʸ7Xn vgɈ\՟']do #RPtoozeb4z`E!ms/pkVԐ~eJ?n5e.7 ͍ύ(cz 1oמoZ8zZxd动έǔbg\Bo!j(]k}٘NN.ٯt<+9{"_{+s"DLY&+a',yfo: j >S4NБ3a>x^:n%"ʢ: r3p?d- Bv|/OE.ͼ,Af:qiª04Ry ?S5d2!T7#sG.bpUL)xgk97A*LD/[.&qܟE1~bT%MoUE=ŧ3)jj_+OeA/Xd1|&6 qT1n(\ "Z9pf#l3F@Uȗ"WK(sGZJ+8^˥Qw9.F|w& O~s=LTNOAK/9+3ńt/ &G7NK仲}76eaTTGwR9`dgK&^)4ZvJMr=}5ޑF˓4cY/#F2g}WJ0duȓD0,;Ր&eiY 9[ ~pl%Hbu($ HcqvAjwNAj~aY6.RC@<6ęnHY\&tq}xy~Aʔ W%Zѕ&{* JchT?ˏDƒ(EȖ=\cH|Q21=:\Pnu5z{年˨\\vYre]۾3 ܐ W*B}I~\9CU*%7J9MDeD:{];kjAB5% ќNe9jMboQ ԕAu=j{ HY"Y&H'7«o~|=%MSSd#_S5RPƋ=fdnt?8YIf4$ 5A#n$xUax^m*?ƼɳeuF2[~t71hs윊oy{ThLQj|\@pMͩ}}j|* }k3|yl`Gޟڂ%FSƾDGQl)0p}tRڵu y=apM_ sj7¼cVP:4pp=3*-8 R.inNEg졎8Ҟ['x~$ j{xɞn3.y;2a+?DJ[ aﲃ"`ɅwoB#@Pu1nwHd25G$0= y墄TBn5Ʃ 6zm#5%_BJ!h39li.=|VJIN3ܶ3oj[HF}q1YlYOoE5}zyTnbˇ')+6Ks5HRG;vwS/RE\l(H-Fc.k2tSo|Dg{uݮ!$Œl #ׯh:EKh`*/ 5:|?*d{gC&DŽ1Y! W1=,r%sO:V+ZNb؁;'$׈66{h94"p{&/{gdlPv;JMW6űVZ<=}w}OV\4fKF%i,om֝ KAZDu7l >뚕怴u-G;`88nή@u f@ z5VM㸱׍Q\7W0ݲq qe]PwVrvL")YUXuxKHle~[N`97:By:s:W=*ѱkS~A;!xщX|[J,,4& ';IdҤF5bu5Q^'"%fBX7:wV褤vóeuk^[)̀;OaXkOkr'#12%fX WE{z'_ r .\?q"rڨ1FkDSS3PPNU_E=/Hm0XHv#USU?~NቃwD O[!NC~CZb =,lЭNSvK_073شoz uͺE ՖL∦3 UlU*jDg E5Ƅ##jDE0N2S 1> YtAxQ.ƚZlS XdNlkfk*0J"&[jn7).4^v}FOtW Q4Y>6G=M,3I潿gN:!'EjA@f n?;lK_Yd~:k0/ Yb{{eZ#Y"JG贊:Etֿ/CWSaD]/T&G}Rp)"2 a(ixϗFƸ򄒉w_GFjX :ߖe!ml 2΄9Ǜ6S'ν⧦9:}4Z 'EsA [ԀFuaw̖I\?(~C0sYrۡJ*kKRS]_Sڞ[ye.EALV>A#x@Nk,|fEMFr]y?&bAv^<#k1h畃ʭPUU٬cam\R'd=[F ^?] mHvP޶@['H<J/f>*LzjKfX` oV _ӰnedRpލH[Q3GYAf {p0Zm.ԕkrHUa|t:X Τ_"b)khI"R&}~(6S#<9) 5QӻTw2BvTw6˗5)ps,#j=CZoTyC]\>s ; G|ȶ`ϖxH#0'.|TfdRkF738DA%).Y@,zl[ +rMv2<{6w4cNSO ^Ž ~ /=/LhAUKZc:wUUԕn zGͪYtq)'ۧ"b~&טw(7k %iN!r%&/|*'*(bv@9I˰Eg>k$%l+ Ys;pQ7s\I|eIroą/GKx >5I O:Hگ[76P>s&K:fp\z 8P҆46H*Gq  ?`hȠf 'F2CÄ} @5B ^a> A;YY@agGG8o}e:h:;fXi1 A*ŕϦz$gϜ¡\GQ g:*CJF7;XGpvphL*'0D=[!~u ,͚6IBO>*某EƜ'7y_mGԮM4f{2SNG!.R1VcįfN$)e.[8uIVK,hz{_ÓB9~ğcQJEK x\/TUn.$4_riD Ey(Th\)M @y+ZVv|X'04Vް&'ٙj}\̎]Ў[d*SETK:\s,֮A)oK %lGJ!T܄LڟIoÎ~ypJD q5j E'nU{ʽC4 c>xZ ҳ ̄mPq '.&u?nm;w7=z_,&R}}lc}?yHbjz霒}hD3b9OQ/ k(pL>=ksDkL,/&hkE[اߨ|es/@l4x4}qj4!rWNafsR};@HxE1pS0B`Stw6=¸OnY_Ix{EFTI>~2wJ^"%ZmpsX#.oNay(F3j@א`c%Դ< c6Z;*>4:!ܸ fN}=7Asuw 5mTQiIg|q~j(,s 5T?qx'[qg4;{;O"sM pD|]Y^ [?=CoA12S{7K Ǖ '0bf0JG%WwwW;US[]5Uv;H09SBV:,6hs'/+5!'SX` Ls&ۈ/& ٜ޵d B٭, M<+0l 2zWmڝt15ܪ m%&z1WQ$-<W^hKF[:@V:.c H?lu>eB](6x4~abBDAcnC^!w˾~K<*np5$t m P~B%U>e2<'glf(UgX; h%úR|s̮sw'eӼmxfU[H^(Y(ö@s/y\;kgTz|}D ߒV|+.6,%ײ5(P-# ~4/ɽ_['g|\(SGɦP2K'Bʳ՟XIT. >]*2R-Z>'ꦚoyD%{l`6a5RwN.3Y4nGO}"%k ]TgͺXRITȱ"Xhv_ - EV ^8dx VsH5S ig)Vvֶx@347$e ccP]ab@x?Ϲvq)HONsX#4lVmI!XNcV[ 1q@Tn?B"_7y4̨wМ99oةL?́ E[5) UNuhJ&S+7*E=o}x!=Y-n|z-8IG8pW":? 28kasM CI]φn]5[(Yl!\`URJO~:>Hp(&pNketwsRvDt/s^ߤ*A{wަtؿRx #<oII%]Kl{_)4t҇%^5p@P8U#ö {)aGdr&uΰh{>'Z ?E X Q29D-{ .jU %P5\vf.SW0AIv`EnYOJ/ ?F`3#L̸f`8Խ,P<[1 SʢP:23đLkEtA 0!20l7_l+OeMۥ=n/8xo Ȍm/fC8NW0ѧ\XdSBVdWs&"thbw+m8-;4hCg/Ex5ʎC6: ύ_qsqDί3"ğ\$KM#EY| f-5&c6MuU1fFJZ00 9cH<tPI4 ;:e.Q! 9mEpb6]SN*x HTGDH3Dj_.L]GZuS-ȭҝYHlUʕ< ";$ b |0T%!&jAP3 Xn&6Qۉ3p3st)>lpwȃK PG!FP`B/A81Af Er]Ĵ} $+f+~ (0w@x}U SM3F~DǢqr~ ZgmV 2ĸiWFTLOdV;!A#Vc=2j89 BMUgvrԹN~ ʪzfŸv2;Jy LCy 70#% c W8;y}'1FIvzBKIQ^#(sEe /lKþlrL$<4u)%*9Dj4ٞUNr^Ӄ{2bya~{>!ǮK-q~f{3;LtFZ~WM@tJufT$%-s袘q}d!Z,t Wf E*')IW.mް_/Ed>:o纘r^9qN!Q*z5"6a/ ō7WֺVt8M~R3 }ñ[#.o{ԗ)ц Glk;TuLa GWUy>u_OI>4׻8CZ}!_mEi#ϕ@+O,- 4a][6J|P 3 Hc'gAњ׿N@arXAKl=F 6kU= 7dQB{\!_9y7B;vd8kX]`

$C'/[82@N.Ǥ_{ĵ璮ˏ+EL/wٛT|:d;lwl1B+vBqpqMT R.#n,f)j; ~-pa\ Vw䨚/` \s -?@ūLx|8ŷ̻WBY_%v=TN9K 7M+cDD}tCtve/\ƹ߭?Mv2VK)eJ巢0i.lUD7f6`Ay)pIro}|c?%ك&4 A0E{QeXOlp^ Ս}04;ZB+Ϋ%ȇWH=  `?2"&r h/zd O_<W&EU2ks^RY3BW O$]8vY br; baF)JV&/HLm O #I嗺"4{ 1kt\E[[Jet~0_Y4~y8!lfi'Pz;0?A? N6(t {!WJj l&-Kc}( ҠQ2U,Pt|NE&V9hZyـ;sAb݉DzF'̷#7n@ i㾄FGC}v,6\Km X`jNy'QOws)6h0o{-o.RǸn8͗xL8iýM(a$0T2f$3qӃTFk04!i:\ٺ1ϑuxCp4N)x(Ry͗"VF9>cɬwL[|&!1 X DXD0K ^9r7 ө9n;R(7uI)2$dxJr+;%3!dɢ`d!#6} RM^U;c_ ,|ҏ`T|z 2 Hl$wdzCGOk?zIL{!Dm^tDjа96V ]An6 Dn:;ut$~ܣ.}Ge_`q)ҖI[>Jr+7T~<cca+z4<9n^>B4T`})Jj(F"4@8K&rqL%j$]0A"$d|"ϐƛ}>TP8 VQ 枑hR d1 !skJejce0:«y} 7x>iH#`]cuog2S=(udŦjat@KRcIj5hwZuViв>~xUG."/ seg)~:">KE@[2S\MBgo)T>fr錉w+FLuF-+7Oh9qKA[SLa}mJ32iv "krFW:\HlUEJ14Xz\W̵Og]jv${U˜꘍T}Deʍ{2Du gTLgEex1<{hqfՀ\ PY,\hca\%ฒQH6ϊVҪ#($:IkR>iܽzoS3 JZ,` ƛYrWfY@zJ2#2qhhE@ Uzd@3s&^ղ^S3a?1fE\TkbHª $(B͋owUK8@,fy,X } k!Vk\fGդgZAUZf&UDCL|>Y<eaU.3$+|-`妀7|^G#/čf?d&3%U"c!QybD2mĤɪU*/Vw^,¯`g\9)]o~$ꋒǏtTf6o->Ҙo{&#k{pa#HVs2¨b vn(1ڷw, tlkS)LR>C:/(hӬ&Q %<{~:U4CrH#BCHx/BO &`fͦBguXP3cRl M^:W,NDJBi"*4f"GV9| BKnr ;K"-/I4b[ӊj3-PwR,D M⽆ sW҄cU \bk)۝-\SП0V'SE'n'+qWVZ sa}=_ JTF$aޫmΨѻ\8c=ޚ 'fG%cPN8Bdߧ^-útT]U;/Us6&5QUaV߻牡F@.T 6i r['*aJы6dg=kvt.V]-FҲPOmfM 4څ$ћCmEP>֛=)kX)K I{_jt*c{aj N*n5b282f)Q`/ p1j/}]|l"ț@7x]zo0~5 n)dsx4G| ;VrY9%Z⅃:Js/o4@W~<) ?e/|洭艥e_.!Wu(p:^ n`^x M$[7^vV#kԪoeƄ] EyhH&c: :d7 KNU.>ṮZ Zw25EAr,*IEe/ewƳh&VImڼAJ.@p;p_RQ 5N~FH('SZ|뼴:n? s\k?NW@Ezhܢ[f s:AУX Sl`'VTUk1[^ET*&TtU(ir~ykt|Dunj8<@EʚN"(Qma(3DfoIopbefmKDrQ` 9')BwT " C}1I> /&f:*x7/p0;O+aHc]du~NzW_?.~kw ?i:[Ryq+L5p7;+E4ڞD.#ӿ̉N\%+8^!rIɬ\Gyz}$fПVHy浐ɳ`B;۳FmW5& "|n /,aqbKaY^I`y93w;~cg=q7(VAyA_θG(0lA;Gq,dpP t%ErMAך ~s\l}Hv{f!ZˋzjF6>]M˽[!ڄ zTN-b%:^E{*+Q{ÕFUsS.iˍ62QפqQV9yL7QlU7NRX" s"253147Х QyYk=Iۻ)V_L"wYa7}X]O\,0ϕ\MM$Z ٯ.~lypwwtI%q=Wz磌C&wTМ$܉i,74ь ʸ,:#"OclÒВ0$~K,77`} i^7@9 {z{Q "x9YO^! YvH`1~5:UD݇|׼s*+׭d(TL56(*'= 5r6v< gN ̸8TXf.p$9h|03V #+ 1MOld\jM\ȸ/3XQcxFumqsֹprH LoحdЅvg/獺.Uc :M%+VRrTAg ;4NI.2,< `[O9jmWO(U:$#%F'V;#waŷ6GeQZмљPص\˪N["{ mL&$2<_S-&ޚ )%b{-ͦDp;v\2oLjHЎG5'8 $lRy)K_J&MGkWKC MŒZ=[޷({V\BЦ =NZ/+A Hk.-It4Y6 掮{]BuL3ySo}dܺד6o֜ː竌wsWE `To#Lu?,TR`nɰ>%k1T G}U iV(%kcrAz%4ΒX®(PTvҳ镱aבA7.*sm@I"X'<'4{pu;̅ 4(^3E^lZF,R) "M|ah OPYu~K@)t M;Wex*+G j!){ys|{bБ@Z7*z P`ܛ/l 4 %HȽ07#2]B$(#/jF3Zy2zd&+xC,vuĈhs+8gJ=V;5M,̌gbmv7ѹPL9:v -ora6MXB'L_O CbAVGiёf0O".XO3 Q78}= \T~d@d[hCÙf \:A  M?8iXs:K'4ZGn:9XpNװUw%=R:V2^d0k/W@@Sphmf+ Go>ک9/yD+qȒ1q8{z WqaqJ5V{%Y]o E|ˢ/Pl$T--?x-Шﳚe*͇UrʙJOr\ƥȦ>ם~֝Q+L(UM?;c%>W .!ٕT% Rx\\24Ϟf5xNQA2 ;_;\ͱ E~-J_e{z-zĝ/W!&rWQ*'{þaGԹL4tĹpS$ʄ18ԫzjVSN@WA-&J[/+RV\1Z\u"9W2{/*<;4'|^J%]|%c̔mtpMu=h<wU0E>•^XǧT-JT GhȀ 9TԋѯcW xO&ؐJ;HuN uہpU}gfgz=-7<weO]S9Xb ); b~Aֽn`LPdU:RL$V@Ӌ0`#  wޕAARg$Ҳ 2Cg<2íz7 .泎FHz_jv HQg ^Bak1΃z\pn**>*Nӂ51_l ?Hhi/T&QE6*<߸ۤכε+,7 `Gbk&N {՜$]>-XYAdY9-5pp!&L!QC bXypTx xĚ3pAf]#yX T6ݯWR|K`Hn%Ÿd1áKnSIŠ3w @;^ PoH3k5+Q!!"~J};ObQϕs;IuZ߱|5ҸLfxgZ"Jn5tH&;Hs9:TX ӗK^?^?%3-ىW`` R(;w;/{r_Od`4U8]`N@+7-vU}^(o]Qby*iOC2%7X9r֭RYQ>Xn(fR5>jh&B͆3ֳнCY,%?6>ǝ КxP9u-6?|PAϸlG[kRu$MOk Psi $CYF5[=ZdN2 SATUS|!lq},+LvdA 99b$% e$}‰d@Et{J>qPHax@uAoh(┸xTl,]^`= tvss+fjjr>v"`\Ի $Z3qE /P.S<)%i5JbX0ANT4>ǝuDLhqH.i &7tAۧ!Kg!L~vC-.:]z x ^ u1xhZ=oXen*jZh(P kZXRAcivn c(_Un5tu0^ՇV"x͑ѓ  d$0a /G"Ua;ɥBH¨JxO6mKu x,^g t.OZZNnF(V IK!K,p7mE(nY%h{ոHҝQ2(j lLR$BپƩkIwxLDZ\ݓ +kh\WKzJ{ʚ49Ex@ciRE1[>@k.L.52CTB#-5 0l2t]`WgPSi4748ԧ}-99QN | ~b==BM+鷪D#\~VBs"+K4|Z>}=H*bg@ouKdj**I0/( R5*B +fg3\ M%7T18lV@K2ai+pH_>E|mR%0\*bA㉓^(Wۦ[Ѕ$g[H3U#9eo{D/JL9-2[E_Zp#we;43s,"f:=ߦdl ZURIB2AQA6Yo;D Uv-EMq{uҨeQ/( .@X3 Hp)`Yh;*`é)t&Nc(6_ ȶ iPFsrw\iA(L4{>:tz/6 y̋D5=} er[ܾch>KmuYu:/Կ<;Wug[_Ձ)̬IҪg =D<";YW)?-aI(\fe)su'r=<Y տA>jP=8+4Z#_r΅-s.S=/!:NbJv22<뛃 ZXő !ѻzT<|}F `@-rUrB7Sю::AȂh} @ih`7pBCGw4KRzFVqEwHJ4P*0ys63 HI8/8tJ/?QhZ-yg1Y_]l/auG i: ZptdA$kd^יN!Fe{4`fIqi*y0U]{dG{`W]:!XI8;jx@@v;As c m`IRPO'ؾRRU2\y $jy:%v\D0|_C [ɺfIJp!m7•BgRw}wh\nQYOmleN ,{Ъ͌"+JίLVᇚgSw2``PEyy՟}$N ˋ̇ғ1[ϒ&hu[Kѐ"Y?S̡hK~ehONBȏ{&X=Y*dR;Q>Q񲚞Z`bZ|i@g$<4 I(R \R >.GG>f˘CU?MBHw积tYsJJ%I&!'@csnr89+~ʛ E=Z\_VnEɥC3ȷPwjs: ;8CJ)~N1=s ɽd>{Ҥk\\ o:FZvAy]ɡ33grebjPzpáĖ5ue[jg=A\)A`ҩ֖=j+MYⅱgVLr0f6nGqvҬP%CZ/WE`^#97l"~Cl|Q|.5BXsJs͏9_b𓏴86L>i/-nhQ fa @  sn@o`|2ƨ]Vk},Ehҋ FtlpXSs`i ;慁EHZmK9h3@MnӌVж+6G4v'Ai6H6@:T7 U;s)S'pJP;t x`.zL?m`LEY`?)uR@# &3lGPnR1KT|,Z*|<ݠuIWX eџb-ߨ?c'-J={K]W J]h.zfcnʬyoZlSڊķC =aeC(ר~<(CrWX/v-9 *)ч/r8|uH5VXҫF5C8p<~ڟ;d*e/?{jEe;nvNJ; fr`ݻ8ԴH>-aRq \zGt+O?C-f6Dx^^`Ų#VY-{ɬ`߂""\veIc]gl@1XLSت ձN$qh W~"'3 uݴ䲃xqPL;kVY")/0e'g*cʺEuP A Wr11 vnuoUg c6jf^NbG p~TƉI9g1߹$>_X!$V8|d0IUcQX6 2yC>0>w'/Z3J<тe&rA2l$3 ZТ>hfIni6Ixgv~-gI3U:I&R|Ojp2c/ڄcE,*Wp JR}GDISqD?+,H:l=D- .0)IXr"0y/I(yz[,irB7N*L|2(DG7a;J,v|񝻶'Z1p[1E,Je/~+,Puk,3E/V;wK"sN`!(dpLWnwaCl[m(ηa-y V("ssUj冢*xc eH0D~Gw`Jj8$'aͤe@g\[1r"["AlM՟(l/XP2V j#,rTY~=sg)S=Ea=HTE_kT97fYI-,yLX!ptM<@xHE9"L)0(þ߆/ ɐpODvzz!FhGńe4GP]2jLHMזt=a@+ˊ"NfFBN& 汅_&B7 `cѪ?W!)X1A;{ʆ/_b48 eA & * XwI[W<Ez}lO} Er8rɹ۳d&FYlt3M$?L.ph"!/ӣ  w‰WX%s bȒ_9k ʘ|Ce[f>Ŭf2Ri6N'Jiƶ҈sT/{}I$[>>o:DPX1)4 lh:Ƨn._xq(;OP?sw=M6 VjLs+ñCH 3ؖO`Tw1@ %š=yuYAɁV{:+ϤD^d0pF[Px>8A5"א-lWFb5{KP k#M:$EWk!b˫?p"27g lm#AB|RQ%h>mB6>Kͩ dfY9TzC|_XgZ@%w|%\guA! D=G>>S#y&Q8kZ3oE vl@$axJl/A=q1t>:ڮRƄ}cQ?WI n׿Ζr6XMm~(H5}Ÿ쨷 soC;7_3뜮 }>aVJ\<4LNnP/hSQUCY\j ,4-w7"QfBL٭~?˸m-Z>Jeq& ZmP)L9,.͈j&=m3hEuPEբ3VJT}xl AZ/Oa;R3ӻCH)ШxYe9poӾ}H J.W-Zv+eIyKx="wo'$t3oPZ=;:.FW[ءkף}QF|~juK>R3)z0! Kխy:OZ2?"c!tr<ؕ6g[3,Ξ $-1ē||ఆn x4AW*,b4 gY j"P.pW4`]C$DdӘosX̏c7QҍlCc\9&#@!evw QC4]Of0q.Er9t("8CTL\- o ݎ,+BG\A{$(d>D/BǤ2 WirA!7h$̪wxRiX=ZR_ =:v*dHDؠS1FTWip],{*y/Hmd]oΎR 6178xŔfkFKtJ)<Ǻr:rBa#8#]gGuai'Υn+)(^4ӏ8{ܵ ~~:$%دX*Nu=!g*0X(d{\c7E!qBЙV-ޓO~Qӱ A7e5lebCQE%2c/ 8;KVɲh%}䦯O :*P9 sӚo"$nkZGv) N׼ƱIװi1}pP9\ FĔ%8Yu{4/; Q%(7?e&NVT5qY/0o֖6-y.'.\,v]ɆDr"s^({%;BOU黚|\AA!6 p5'>q?SUGtN#por[=\mv <`:Wı AhogRۈ.C!{NP7SlTٱ֡Q(lNh@+nЪ2oaaaFl$[9zafTemKaEB|B3c [tH;11-l<-S ֍v8IMR3GvaOaœW ˤKû͆45I.?|Qgrq 2ӂԺc9W=`E+:N}DJXr쩢iD072Jjkg&C87ݥ+FBg@QE 칑BLTDX%<[s_Ί%,ĵ}x\m` 9TV?':b-gq ];>Z;s&qK<`3sg(`JCD}/`3u^CdD_zK;(O/CGz$zc\Q' c3srO",;2nG`J9UN!=r8xCA6/ЌJLƭ52Sk++=KQq!n=Qa) 3] ?[[C8p%fKL֙/' 潊ノwC6Sh/??T ‚PqP[Mq򛢢D$GqGtH|Kq&u *ZÃ̤kf$իf\Ŧ2rߴ"Ù1D#BJrK3Hx U[U 2zP9.攚c I` n*k!2LK\}tr;[&UP,wp] > Vo/f>#P]SՁlu(|z՝=OO|Hiۛ~Y5_4(2jB)*۲.yqzk{:bK7RKV';q5b'f~l#`7_Kz=icqE` 9jr d#`4&ؖ)5|_6 ]"gED[:xy9p93ŲħW s1n֥]Zm4MPnDQQ[0Z)-K䥟T]5`}Ṅ~ލ金MjKyC4T=;Vɀhy'"q;û>/m)6gqq)P-1:L E<#:dv5!± 歯O45j-z25 qt$]CN;R t^J KE[cF޳qzm!h`Qe GgFү: >Zo_*蠋uje--e&M.V[9bo &\ E֭!Vr*&E{'!Gte FtKxLö_nReLf%EO0=6| ٮB(Z1V"Pݧ Z̥/B,;鷶n<e lGr!Lx6\J̓ޟL|Y<!S4[v>k5.~ǐ5 ~dNTI .+H72/c$YiswLމl@੧K$ m-zM)9.@CeF&YdA/ X_^ze=m?Ts,;`g'E!l?dZ䦡3mt='c_U@Zl qMJZ}yluը;KK׊iY&9+:V?^11v gm23rL4s;ό味PH[S Ҥ8juu4@<DM.Q9᫄H$#9^ 7XRKb4A z<~'N8!U+.?げv2YE]} P @6xǃuzg>1uVo*efOdr5Wzo[s!1 tyW,jMcS{ s7"TL(NQEP Sd50 2`TS0f@o`xa9 GAk(sRЃ.B-뮼G~LOf~;A6"Xë80^>lrcI⋒/LBRhhЮ|Unaeb_ߨl30o ט"Yb=|{jSxv_R/$(b>vTU%۳TD[}@T, {[pP4i?LQk<טiS -YkgUzMQ6mdn p;BcK , ſg JxyAR%L>Dy f<~6v}]1%peF2WZ.#:)&'%N#G:|B$~"fͪ>dqW)߭;*Dᄄ8O?WZEnOSS_e*f趌^s_g!gLfigem^YNgd7bM&:9„ӍNGgmFַyla?^; t%\Zb"Xd=gV#kw]zaK:`)A;x;Mt. B"RJ3I #eh=z%}{OYf<4 nP6nF)JȇXj^ߋYV~T_#I}%!۪}ktKh^HII sO$jS&'Ӛo, |( 6*"Co!%:h@{" :ߣoDX?cup4Fh$~̆Hb:j9(#.sdT;vfI% 惜~t tP9',~kژ5n6x>$jdnZ=~up 6i+;E`[,t#ip1' ~zarJ3ݐ[eq `G(}L"#'Uu"x0cuL-fp5'ZwX Kz)e:/򍾜|8B;raeařP* W)N ,\O>yIɀ-QGoj|z:W*O+ȵrmǶ!f ȗp0y i.˼Y' @_tl*5`E֏:藘E7 KlYR8كXwqC]/v &@OR%R<4~T*uAAӕ&SRʄIB<8qPWxqj~fLq9vpBo3iGT+TT^E$ekd?RR#)Aޑ; ^`GUxZ~Key1_*h@cZVMJl'UZ; &Sj:1v.\u$Ky C쐨)ޥIƫE)R(צ h\_=[vV{-AÓBN&:REYgxwuUYS(Z'6{@2R d}a*|隶r6-Aĸ:2( 3Geb[5,8~h| EVߙ%aT-82>y/ h/!4E\Dg̑K#wp5!,g2|_TDz}.}9UXFN"ZzOlsw!? ˱Y&C4y'-t_ZC =䓖|a!̱BJnT$Ο/$\,w<'BU&f=w?Fԋab>UtiYqCu0zK^v0o k)W(8:l>ŠA0 BLgk _Z-nY=ǎ}%`p =]cmH܊:HzGjۦ;a5/%0g|T%,"K߉@7b!*qҼX5pR+Uf7A Ԅ[#H ]DHE)W5UtN15{;%ޜJeC!; d쯏ŸJSNʖhpNG kh7i#W TH͍ƥJpj Pvno x&خ:mhPŰ겧'Yr7jrB|ǩKX߯0Yh  8 9۸=Zq| ]72XA\>F&Yٜ7Qk4i}\G8, S1Zrnߴ3XZASqB81 Wq DXHւHMg5<8ÊBm'D5A$ Qd0n\W5j@4aeD"QAB1 {l@mGe_ƒ ) Ͽe1@}5ؼ pb|?Ћ,UObL|ەͷ/CTJg=T5s!KjH>C6AGXCݑ5St43 cFFSc}.t5UD׊ڣ6˶@ݣAdI;-{J&BtYcZ?k-Y;Ա4ؒ_^05~ eLl9l])OGU?l N@w:|~=)^s/rFF%]&*'X~UK,R X>C_}4`-<^*j}9a#IŇE;ycu>;ԺbY6k1K딨;+eR !j SBZwܻzGb'aK:Yggg:V|T :4m5p285 0 vDâٝ9R:vis),+P=|Sp^>8$3DhXײ@"@Heiyu@]ׂ -Oh 扌ߋ &#^5GK{ $5`3(_*7W'tSħ ]PSgOA)LΗ`"F@FjU8h AGlm";U~uB`h`>Tcy;jɜ#B'ԕK'W V9 !3]9X~R,g h VxO>F\yeF UPQ exj@Ox:4t.n.SjWMc ~aUм H+BcCK< '€܌򃳩|)xh':)v?QiZ a}W9cc,(ܘ7553%Fzz` `S?|ʊO>#|vIìt+X[ L"Ēq^4ބ΂M'CvV w;߻+N<2(h} B0)d&NOԞR^9*P]嶶V0qkH闇u{+Ⴐ>ͬb|HRX0GҴt4.q>!M8,OYH=FXmG߬Fݰ j Fj mdyŗDވi7u~,u``vCum(-a .,B Hx2H/"Zfq-#PאSK7T=bo]i/s|Zx5ԶƅbKsaVa#:XgtfUKM{fLSfF8H{m@̛ugN;C9|amvh&hzj$I6HT9ZE+=x<βZt|m-&̅24Έ;ngHɴ{sHm28g,9DF\cO~6>EuK>1(>wɟs*uBѭvt|DWFR%CA<-vMV7&?87[ϰ}tS-Ie|lkeODj6ĵ%Jr^\8n 975^J aUdT-6,}]?0K?hKg+e?6"%@\trJ֥OW&JkJ @tأH716i;[LCSl T-C {v|y Qa xV;m>/<759{Λ<f 88mrKJK=b6TB-d ŝ"@044wt ( H&&r %iI]doC),ϖ+wtuczo.XѤンvMXJq8eP5J ݞU4vRdՒI;BiiNE0/9Õ2g6bwL" ∤ -n⼕IJxAC4,#2`%?`t|yIo9T)SFCvN\}$o*xi~" *fK2a(T72H0A@(Ueהr;}Ey"횂x>CLe -Uwn]^KDnhC]-V-H-8])dE5y B\S\0VBMF ? mf1NcJ)(Q:l%Uݷ{yzQ2ayk3o̅;p^8R&kj0l,eJH|g֛hC.9ˣ|/Zb?Tw7>IƍWPcHA[۹4HHlr-ވ}l}ؚ81g>2]i@#۞cfC):gk{‹F `%x>ɽB,Ko=FBH#/o6b;أ^\hM5+G |,P5QJVG @Eod?$=Jw:IrW>2=3ub:Vv^,=MFT/[BX"^)64ѕFU|u|-ߥO&K0>'P-j{  .qՌRBě%kYSz=ٔDi#cjccZpJ›C:X xßX)Qƈىߞv돻^t:w"n:Wt *kB$*`NkB9j4۞ ǵPH`.ѲhGU΀h-3 %mӔyvuq"r`$Y? $sG7cH;Jjೞ )_%p\?%6'!`\ ]S즠&)^k7~j]rF!6>2s5f qҽ^QkwT,'#R^.VtlB392״eeBz#<}oqm زhkϭ)PY{sKdw!̓% 7/!QZIs>\=qԧF/{#Jˁx4 {ˁG 4`L8 CQ` w=< Z|K\#û!p'"/l-tt]x V1p,q>ӣ!W[eV3F3Lj*Z&h%ϟ橙Fҗ\2xg:4Ǎ` *BogDv>G0,D KVȝvM*\t, z'b^<9+"pnve.z?N}nV獪1v| U4X$ J'm-<3D X62Ùi(+W7R{fl?xbXϣ: t/*YwLu0)Ϯaf4u<9F&!{U $Fv~& ؟8jL4߫O.9hLuKj6M -6~Y Vb*Z:ô&ܨZ6/s:5Kl'&~I>> Q|a_ebׂ6oO&Fʢ M:+ w WaIw56ܾ/l=23ɮ*qDP( ׶MD_4$ R) {0ou>O~NMx1]!≐H&9z׆ޟͣ>ym sy"Ztm;h Ez(b{/םIC),Gtل6TvbU,Z.Q)[m|y^XDqt>7خx Zzj\7Z>BGՉi QsIQQeU!U//LY80wuNrN jU??oF)^_3*>C^E$!m\K 6 2ij!ÆRWV^*fSvW]MЀ"I&S-jO] zGKZ"k싓xybrB!L\Hg͜%wPN 6^Y]&;~S=#_rdKyw(ZxΠێZ3 ҫWԼ#b? c0 l_#U h 8~cF*O2W̉3B ԃ{]0V[7xL2>PRg~WcN vwzYP94tj3S 'D3=π<BN@ @#g@#"~R-qi"藨糳jA{"@P}:31Vc X@~@bќs$e<'yOB+A)Vd Z"YD&‘!SBNy՞knہV]oH9|B