sssd-tools-1.16.2-13.el7>t  DH`p[p$ƨzuc*nim6[S&ZQ[~n+-p8)DHKM0u%bܒHmTx¯0$bEK}6 =A@Bmx[z7`.##:gYTN>X*Èɹ M,|CSh|-ۯ:3RW*Pco ޡ&床vAn: yv'.8ר ߼f[ϑfI.hҩdac4b5165ec414482e9027f77ee0be462c43a136O[p$ƨsa'8 EEBX;qxOV>@Q@_9b4(5~D}[54 :KraRuA#xp@&E~ k([" 1. /*oñf])SDV6^gTr6q-X% @ϧ}گ*c(Y921S?g'){xd5jŌ/Vܐ|Y>Ofd#X[-L܄1׾r(ܤ$m-c].uj/ckpb u\y /_}m9۩ 8g'HO8:CZR08&E@>O ZzjtDbEɷ򐇏;|U˄E=0|-F_8)`?)Pd   A  J^{YY Y PY Y  Y hYY Y"F"dY##A$A+A(, 8,94,:pG|YHYI DYX Y $\ @Y] Y^rbdefltYu<YvwYx!,Yy")LCsssd-tools1.16.213.el7Userspace tools for use with the SSSDProvides userspace tools for manipulating users, groups, and nested groups in SSSD when using id_provider = local in /etc/sssd/sssd.conf. Also provides several other administrative tools: * sss_debuglevel to change the debug level on the fly * sss_seed which pre-creates a user entry for use in kickstarts * sss_obfuscate for generating an obfuscated LDAP password * sssctl -- an sssd status and control utility[!x86-01.bsys.centos.org ΉCentOSGPLv3+CentOS BuildSystem Applications/Systemhttps://pagure.io/SSSD/sssd/linuxx86_64xޠP @ c P X0KCV}bxL)Jn=EDgt`5Z}O `]QA * |w' = LI sA큤[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[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-1.16.2-13.el7.src.rpmsssd-toolssssd-tools(x86-64)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@   @ /bin/sh/usr/bin/pythonlibbasicobjects.so.0()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.7)(64bit)libcollection.so.2()(64bit)libdbus-1.so.3()(64bit)libdbus-1.so.3(LIBDBUS_1_3)(64bit)libdhash.so.1()(64bit)libdhash.so.1(DHASH_0.4.3)(64bit)libdl.so.2()(64bit)libdl.so.2(GLIBC_2.2.5)(64bit)libglib-2.0.so.0()(64bit)libini_config.so.3()(64bit)libini_config.so.3(INI_CONFIG_1.3.0)(64bit)libldb.so.1()(64bit)libldb.so.1(LDB_0.9.10)(64bit)libnspr4.so()(64bit)libnss3.so()(64bit)libnssutil3.so()(64bit)libpam.so.0()(64bit)libpam.so.0(LIBPAM_1.0)(64bit)libpam_misc.so.0()(64bit)libpam_misc.so.0(LIBPAM_MISC_1.0)(64bit)libpcre.so.1()(64bit)libplc4.so()(64bit)libplds4.so()(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.2.5)(64bit)libref_array.so.1()(64bit)libref_array.so.1(REF_ARRAY_0.1.1)(64bit)librt.so.1()(64bit)libselinux.so.1()(64bit)libsemanage.so.1()(64bit)libsmime3.so()(64bit)libssl3.so()(64bit)libsss_cert.so()(64bit)libsss_certmap.so.0()(64bit)libsss_child.so()(64bit)libsss_crypt.so()(64bit)libsss_debug.so()(64bit)libsss_semanage.so()(64bit)libsss_simpleifp.so.0()(64bit)libsss_simpleifp.so.0(SSS_SIMPLEIFP_0.0)(64bit)libsss_simpleifp.so.0(SSS_SIMPLEIFP_0.1)(64bit)libsss_util.so()(64bit)libsystemd.so.0()(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)libtdb.so.1()(64bit)libtevent.so.0()(64bit)python-ssspython-sssdconfigrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rtld(GNU_HASH)sssd-commonrpmlib(PayloadIsXz)1.16.2-13.el71.16.2-13.el73.0.4-14.6.0-14.0-11.16.2-13.el75.2-14.11.3[@[l,[b@[a[Y[Y[H@[E@[6@[0@[,[,[d@[[Z@Z@ZmZ@Z_@Z_@Z@ZyZhu@Z3@Z2gZ.s@Z*~Z'Z!D@ZZ@Z Z @Z7ZNYZ@Y@YYJ_YJ_YC@YBvYBvY9<@Y9<@Y5GY5GY5GY5GY0Y0Y(Y(Y%uY%uY$$@Y$$@Y"Y;@YR@YR@Y Y @Y @YtYtYtYtYtYXXh@XXX@X@X@XsX@X@X@XۡXۡXXӸX,XCX@XX*X lX lX lW$WW;W;W;W֘W֘W@W^@WiWiWiW/@W/@W/@W/@WWWWQWQWQW@W@W@WhW@W@Wt@WE@WE@W@W@W@W@WW~W-@W-@W-@WW@WWu WgWDB@WDB@WDB@WBW;W;W@VbV͛@VTQ@VCV @V @V @V V@VBVBVBVBVBUUUU@UXU@U@U@UUUUUUUUL@UL@UU@U@U@UnU@U(U@U@UUmUmU@UJ@UU7@U7@U7@U @U@U@TE@TE@TE@Tи@Tr@Tr@Tr@Tr@T}T}T}T}T}T7T7TTC@TTZ@TZ@TT@Tp@Tp@T@T{T*@T*@TTT~@T~@TuTuTto@Tto@Tto@Tto@Tto@Tto@TmTmTmTmTl@Tl@Tl@Tl@TcKTa@T\@TZ@TZ@TR(@TG@TG@TG@TG@TG@TD@T6xTTT SS@S|@Sr @Sr @Sr @Sr @S;S;S2@S2@S,)S!S L@SSS@S@S@S@S@S @S @S @S @S @S @S @S @SSSRb@Rb@Rb@R@R@R@R@RURURUR߲RRRx@Rx@Rx@RΏ@RΏ@RΏ@R=R=RkRRRR@R@R@R@R@Rv@Rv@Rv@Rv@Rv@Rv@Rv@Rv@Rv@RpREs@REs@R7Q@Q@Q@Q@Q@QQLQکQQQo@Q)@Q@QQ@Q@QbQyQV@Q'@QQQnQZ@Q0@QQQ@Q@QQ @QQh@PP@P@P@Pz@Pz@PqnPl(PaPaPS@PH@PDPM>M2@MMzMx@Mj - 1.16.2-13Fabiano Fidêncio - 1.16.2-12Jakub Hrozek - 1.16.2-11Jakub Hrozek - 1.16.2-10Jakub Hrozek - 1.16.2-9Jakub Hrozek - 1.16.2-8Fabiano Fidêncio - 1.16.2-7Fabiano Fidêncio - 1.16.2-6Fabiano Fidêncio - 1.16.2-5Fabiano Fidêncio - 1.16.2-4Fabiano Fidêncio - 1.16.2-3Fabiano Fidêncio - 1.16.2-2Fabiano Fidêncio - 1.16.2-1Fabiano Fidêncio - 1.16.0-25Fabiano Fidêncio - 1.16.0-24Fabiano Fidêncio - 1.16.0-23Fabiano Fidêncio - 1.16.0-22Jakub Hrozek - 1.16.0-21Fabiano Fidêncio - 1.16.0-20Fabiano Fidêncio - 1.16.0-19Fabiano Fidêncio - 1.16.0-18Fabiano Fidêncio - 1.16.0-17Fabiano Fidêncio - 1.16.0-16Fabiano Fidêncio - 1.16.0-15Fabiano Fidêncio - 1.16.0-14Fabiano Fidêncio - 1.16.0-13Fabiano Fidêncio - 1.16.0-12Fabiano Fidêncio - 1.16.0-11Fabiano Fidêncio - 1.16.0-10Fabiano Fidêncio - 1.16.0-9Fabiano Fidêncio - 1.16.0-8Fabiano Fidêncio - 1.16.0-7Fabiano Fidêncio - 1.16.0-6Fabiano Fidêncio - 1.16.0-5Fabiano Fidêncio - 1.16.0-4Fabiano Fidêncio - 1.16.0-3Fabiano Fidêncio - 1.16.0-2Fabiano Fidêncio - 1.16.0-1Jakub Hrozek - 1.15.2-51Jakub Hrozek - 1.15.2-50Jakub Hrozek - 1.15.2-49Jakub Hrozek - 1.15.2-48Jakub Hrozek - 1.15.2-47Jakub Hrozek - 1.15.2-46Jakub Hrozek - 1.15.2-45Jakub Hrozek - 1.15.2-44Jakub Hrozek - 1.15.2-43Jakub Hrozek - 1.15.2-42Jakub Hrozek - 1.15.2-41Jakub Hrozek - 1.15.2-40Jakub Hrozek - 1.15.2-39Jakub Hrozek - 1.15.2-38Jakub Hrozek - 1.15.2-37Jakub Hrozek - 1.15.2-36Jakub Hrozek - 1.15.2-35Jakub Hrozek - 1.15.2-34Jakub Hrozek - 1.15.2-33Jakub Hrozek - 1.15.2-32Jakub Hrozek - 1.15.2-31Sumit Bose - 1.15.2-30Jakub Hrozek - 1.15.2-29Jakub Hrozek - 1.15.2-28Jakub Hrozek - 1.15.2-25Jakub Hrozek - 1.15.2-24Lukas Slebodnik - 1.15.2-23Jakub Hrozek - 1.15.2-22Jakub Hrozek - 1.15.2-21Jakub Hrozek - 1.15.2-20Jakub Hrozek - 1.15.2-19Jakub Hrozek - 1.15.2-18Jakub Hrozek - 1.15.2-17Jakub Hrozek - 1.15.2-16Jakub Hrozek - 1.15.2-15Jakub Hrozek - 1.15.2-14Jakub Hrozek - 1.15.2-13Jakub Hrozek - 1.15.2-12Jakub Hrozek - 1.15.2-11Jakub Hrozek - 1.15.2-10Jakub Hrozek - 1.15.2-9Jakub Hrozek - 1.15.2-8Jakub Hrozek - 1.15.2-7Jakub Hrozek - 1.15.2-6Jakub Hrozek - 1.15.2-5Jakub Hrozek - 1.15.2-4Jakub Hrozek - 1.15.2-3Jakub Hrozek - 1.15.2-2Jakub Hrozek - 1.15.2-1Fabiano Fidêncio - 1.15.1-2Jakub Hrozek - 1.15.1-1Jakub Hrozek - 1.15.0-2Jakub Hrozek - 1.15.0-1Jakub Hrozek - 1.14.0-46Jakub Hrozek - 1.14.0-45Jakub Hrozek - 1.14.0-44Jakub Hrozek - 1.14.0-43Jakub Hrozek - 1.14.0-42Jakub Hrozek - 1.14.0-41Jakub Hrozek - 1.14.0-40Jakub Hrozek - 1.14.0-39Jakub Hrozek - 1.14.0-38Jakub Hrozek - 1.14.0-37Jakub Hrozek - 1.14.0-36Jakub Hrozek - 1.14.0-35Jakub Hrozek - 1.14.0-34Jakub Hrozek - 1.14.0-33Jakub Hrozek - 1.14.0-32Jakub Hrozek - 1.14.0-31Jakub Hrozek - 1.14.0-30Jakub Hrozek - 1.14.0-29Jakub Hrozek - 1.14.0-28Jakub Hrozek - 1.14.0-27Jakub Hrozek - 1.14.0-26Jakub Hrozek - 1.14.0-25Jakub Hrozek - 1.14.0-24Jakub Hrozek - 1.14.0-23Jakub Hrozek - 1.14.0-22Jakub Hrozek - 1.14.0-21Jakub Hrozek - 1.14.0-20Jakub Hrozek - 1.14.0-19Jakub Hrozek - 1.14.0-18Jakub Hrozek - 1.14.0-17Jakub Hrozek - 1.14.0-16Jakub Hrozek - 1.14.0-15Jakub Hrozek - 1.14.0-14Jakub Hrozek - 1.14.0-13Jakub Hrozek - 1.14.0-12Jakub Hrozek - 1.14.0-11Jakub Hrozek - 1.14.0-10Jakub Hrozek - 1.14.0-9Jakub Hrozek - 1.14.0-8Jakub Hrozek - 1.14.0-7Jakub Hrozek - 1.14.0-6Jakub Hrozek - 1.14.0-5Jakub Hrozek - 1.14.0-4Jakub Hrozek - 1.14.0-3Jakub Hrozek - 1.14.0-2Jakub Hrozek - 1.14.0-1Jakub Hrozek - 1.14.0beta1-2Jakub Hrozek - 1.14.0alpha-1Jakub Hrozek - 1.13.0-50Jakub Hrozek - 1.13.0-49Jakub Hrozek - 1.13.0-48Jakub Hrozek - 1.13.0-47Jakub Hrozek - 1.13.0-46Jakub Hrozek - 1.13.0-45Jakub Hrozek - 1.13.0-44Jakub Hrozek - 1.13.0-43Jakub Hrozek - 1.13.0-42Jakub Hrozek - 1.13.0-41Jakub Hrozek - 1.13.0-40Jakub Hrozek - 1.13.0-39Jakub Hrozek - 1.13.0-38Jakub Hrozek - 1.13.0-37Jakub Hrozek - 1.13.0-36Jakub Hrozek - 1.13.0-35Jakub Hrozek - 1.13.0-34Jakub Hrozek - 1.13.0-33Jakub Hrozek - 1.13.0-32Jakub Hrozek - 1.13.0-31Jakub Hrozek - 1.13.0-30Jakub Hrozek - 1.13.0-29Jakub Hrozek - 1.13.0-28Jakub Hrozek - 1.13.0-27Jakub Hrozek - 1.13.0-26Martin Kosek - 1.13.0-25Jakub Hrozek - 1.13.0-24Jakub Hrozek - 1.13.0-23Jakub Hrozek - 1.13.0-22Jakub Hrozek - 1.13.0-21Jakub Hrozek - 1.13.0-20Jakub Hrozek - 1.13.0-19Jakub Hrozek - 1.13.0-18Jakub Hrozek - 1.13.0-17Jakub Hrozek - 1.13.0-16Jakub Hrozek - 1.13.0-15Jakub Hrozek - 1.13.0-14Lukas Slebodnik - 1.13.0-13Jakub Hrozek - 1.13.0-12Jakub Hrozek - 1.13.0-11Jakub Hrozek - 1.13.0-10Jakub Hrozek - 1.13.0-9Jakub Hrozek - 1.13.0-8Jakub Hrozek - 1.13.0-7Jakub Hrozek - 1.13.0-6Jakub Hrozek - 1.13.0-5Jakub Hrozek - 1.13.0-4Jakub Hrozek - 1.13.0-3Jakub Hrozek - 1.13.0-2Jakub Hrozek - 1.13.0-1Jakub Hrozek - 1.13.0.3alphaJakub Hrozek - 1.13.0.2alphaJakub Hrozek - 1.13.0.1alphaJakub Hrozek - 1.12.2-61Jakub Hrozek - 1.12.2-60Jakub Hrozek - 1.12.2-59Jakub Hrozek - 1.12.2-58.6Jakub Hrozek - 1.12.2-58.5Jakub Hrozek - 1.12.2-58.4Jakub Hrozek - 1.12.2-58.3Jakub Hrozek - 1.12.2-58.2Jakub Hrozek - 1.12.2-58.1Jakub Hrozek - 1.12.2-57Jakub Hrozek - 1.12.2-56Jakub Hrozek - 1.12.2-55Jakub Hrozek - 1.12.2-54Jakub Hrozek - 1.12.2-53Jakub Hrozek - 1.12.2-52Jakub Hrozek - 1.12.2-51Jakub Hrozek - 1.12.2-50Jakub Hrozek - 1.12.2-49Jakub Hrozek - 1.12.2-48Jakub Hrozek - 1.12.2-47Jakub Hrozek - 1.12.2-46Jakub Hrozek - 1.12.2-45Jakub Hrozek - 1.12.2-44Jakub Hrozek - 1.12.2-43Jakub Hrozek - 1.12.2-42Jakub Hrozek - 1.12.2-41Jakub Hrozek - 1.12.2-40Sumit Bose - 1.12.2-39Sumit Bose - 1.12.2-38Sumit Bose - 1.12.2-37Jakub Hrozek - 1.12.2-35Jakub Hrozek - 1.12.2-35Jakub Hrozek - 1.12.2-34Jakub Hrozek - 1.12.2-33Jakub Hrozek - 1.12.2-32Jakub Hrozek - 1.12.2-31Jakub Hrozek - 1.12.2-30Jakub Hrozek - 1.12.2-29Jakub Hrozek - 1.12.2-28Jakub Hrozek - 1.12.2-27Jakub Hrozek - 1.12.2-26Jakub Hrozek - 1.12.2-25Jakub Hrozek - 1.12.2-24Jakub Hrozek - 1.12.2-23Jakub Hrozek - 1.12.2-22Jakub Hrozek - 1.12.2-21Jakub Hrozek - 1.12.2-20Jakub Hrozek - 1.12.2-19Jakub Hrozek - 1.12.2-18Jakub Hrozek - 1.12.2-17Jakub Hrozek - 1.12.2-16Jakub Hrozek - 1.12.2-15Jakub Hrozek - 1.12.2-14Jakub Hrozek - 1.12.2-13Jakub Hrozek - 1.12.2-12Jakub Hrozek - 1.12.2-11Jakub Hrozek - 1.12.2-10Jakub Hrozek - 1.12.2-9Jakub Hrozek - 1.12.2-8Jakub Hrozek - 1.12.2-7Jakub Hrozek - 1.12.2-6Jakub Hrozek - 1.12.2-5Jakub Hrozek - 1.12.2-4Jakub Hrozek - 1.12.2-3Jakub Hrozek - 1.12.2-2Jakub Hrozek - 1.12.2-1Jakub Hrozek - 1.12.1-2Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.0-3Jakub Hrozek - 1.12.0-2Jakub Hrozek - 1.12.0-1Jakub Hrozek - 1.11.2-70Jakub Hrozek - 1.11.2-69Jakub Hrozek - 1.11.2-68Jakub Hrozek - 1.11.2-67Jakub Hrozek - 1.11.2-66Jakub Hrozek - 1.11.2-65Jakub Hrozek - 1.11.2-64Sumit Bose - 1.11.2-63Sumit Bose - 1.11.2-62Jakub Hrozek - 1.11.2-61Jakub Hrozek - 1.11.2-60Jakub Hrozek - 1.11.2-59Jakub Hrozek - 1.11.2-58Jakub Hrozek - 1.11.2-57Jakub Hrozek - 1.11.2-56Jakub Hrozek - 1.11.2-55Jakub Hrozek - 1.11.2-54Jakub Hrozek - 1.11.2-53Jakub Hrozek - 1.11.2-52Jakub Hrozek - 1.11.2-51Jakub Hrozek - 1.11.2-50Jakub Hrozek - 1.11.2-49Jakub Hrozek - 1.11.2-48Jakub Hrozek - 1.11.2-47Jakub Hrozek - 1.11.2-46Jakub Hrozek - 1.11.2-45Jakub Hrozek - 1.11.2-44Jakub Hrozek - 1.11.2-43Jakub Hrozek - 1.11.2-42Jakub Hrozek - 1.11.2-41Jakub Hrozek - 1.11.2-40Jakub Hrozek - 1.11.2-39Jakub Hrozek - 1.11.2-38Jakub Hrozek - 1.11.2-37Jakub Hrozek - 1.11.2-36Jakub Hrozek - 1.11.2-35Jakub Hrozek - 1.11.2-34Daniel Mach - 1.11.2-33Jakub Hrozek - 1.11.2-32Jakub Hrozek - 1.11.2-31Jakub Hrozek - 1.11.2-30Jakub Hrozek - 1.11.2-29Jakub Hrozek - 1.11.2-28Jakub Hrozek - 1.11.2-27Jakub Hrozek - 1.11.2-26Jakub Hrozek - 1.11.2-25Jakub Hrozek - 1.11.2-24Jakub Hrozek - 1.11.2-23Jakub Hrozek - 1.11.2-22Jakub Hrozek - 1.11.2-21Jakub Hrozek - 1.11.2-20Daniel Mach - 1.11.2-19Jakub Hrozek - 1.11.2-18Jakub Hrozek - 1.11.2-17Jakub Hrozek - 1.11.2-16Jakub Hrozek - 1.11.2-15Jakub Hrozek - 1.11.2-14Jakub Hrozek - 1.11.2-13Jakub Hrozek - 1.11.2-12Jakub Hrozek - 1.11.2-11Jakub Hrozek - 1.11.2-10Jakub Hrozek - 1.11.2-9Jakub Hrozek - 1.11.2-8Jakub Hrozek - 1.11.2-7Jakub Hrozek - 1.11.2-6Jakub Hrozek - 1.11.2-5Jakub Hrozek - 1.11.2-4Jakub Hrozek - 1.11.2-3Jakub Hrozek - 1.11.2-2Jakub Hrozek - 1.11.2-1Jakub Hrozek - 1.11.1-2Jakub Hrozek - 1.11.1-1Jakub Hrozek - 1.11.0-1Jakub Hrozek - 1.11.0.1beta2Jakub Hrozek - 1.10.1-5Jakub Hrozek - 1.10.1-4Jakub Hrozek - 1.10.1-3Jakub Hrozek - 1.10.1-2Jakub Hrozek - 1.10.1-1Jakub Hrozek - 1.10.0-18Jakub Hrozek - 1.10.0-17Stephen Gallagher - 1.10.0-16Stephen Gallagher - 1.10.0-15Stephen Gallagher - 1.10.0-14Jakub Hrozek - 1.10.0-13Dan Horák - 1.10.0-12.beta2Jakub Hrozek - 1.10.0-11.beta2Jakub Hrozek - 1.10.0-10.beta2Jakub Hrozek - 1.10.0-9.beta2Jakub Hrozek - 1.10.0-8.beta2Jakub Hrozek - 1.10.0-7.beta1Jakub Hrozek - 1.10.0-6.beta1Jakub Hrozek - 1.10.0-5.beta1Jakub Hrozek - 1.10.0-4.beta1Jakub Hrozek - 1.10.0-3.beta1Jakub Hrozek - 1.10.0-2.alpha1Jakub Hrozek - 1.10.0-1.alpha1Stephen Gallagher - 1.9.4-9Jakub Hrozek - 1.9.4-8Jakub Hrozek - 1.9.4-7Jakub Hrozek - 1.9.4-6Jakub Hrozek - 1.9.4-5Jakub Hrozek - 1.9.4-4Jakub Hrozek - 1.9.4-3Jakub Hrozek - 1.9.4-2Jakub Hrozek - 1.9.4-1Jakub Hrozek - 1.9.3-1Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-23Jakub Hrozek - 1.9.0-22.rc1Jakub Hrozek - 1.9.0-21.beta7Jakub Hrozek - 1.9.0-20.beta6Jakub Hrozek - 1.9.0-19.beta6Jakub Hrozek - 1.9.0-18.beta6Jakub Hrozek - 1.9.0-17.beta6Jakub Hrozek - 1.9.0-16.beta6Jakub Hrozek - 1.9.0-14.beta6Jakub Hrozek - 1.9.0-13.beta6Fedora Release Engineering - 1.9.0-13.beta5Jakub Hrozek - 1.9.0-12.beta5Stephen Gallagher - 1.9.0-11.beta4Jakub Hrozek - 1.9.0-10.beta4Jakub Hrozek - 1.9.0-9.beta4Stephen Gallagher - 1.9.0-8.beta3Stephen Gallagher - 1.9.0-7.beta2Stephen Gallagher - 1.9.0-6.beta2Stephen Gallagher - 1.9.0-5.beta2Stephen Gallagher - 1.9.0-4.beta1Stephen Gallagher - 1.9.0-3.beta1Stephen Gallagher - 1.9.0-2.beta1Stephen Gallagher - 1.9.0-1.beta1Stephen Gallagher - 1.8.3-11Stephen Gallagher - 1.8.2-10Stephen Gallagher - 1.8.1-9Stephen Gallagher - 1.8.1-8Stephen Gallagher - 1.8.1-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5.beta3Stephen Gallagher - 1.8.0-4.beta3Petr Pisar - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-1.beta2Stephen Gallagher - 1.8.0-1.beta1Stephen Gallagher - 1.7.0-5Stephen Gallagher - 1.7.0-4Stephen Gallagher - 1.7.0-3Fedora Release Engineering - 1.7.0-2Stephen Gallagher - 1.7.0-1Stephen Gallagher - 1.6.4-1Stephen Gallagher - 1.6.3-5Stephen Gallagher - 1.6.3-4Jakub Hrozek - 1.6.3-3Stephen Gallagher - 1.6.3-2Stephen Gallagher - 1.6.3-1Fedora Release Engineering - 1.6.2-5Stephen Gallagher - 1.6.2-4Stephen Gallagher - 1.6.2-3Stephen Gallagher - 1.6.2-2Stephen Gallagher - 1.6.2-1Stephen Gallagher - 1.6.1-1Stephen Gallagher - 1.6.0-2Stephen Gallagher - 1.6.0-1Stephen Gallagher - 1.5.11-2Stephen Gallagher - 1.5.10-1Stephen Gallagher - 1.5.9-1Stephen Gallagher - 1.5.8-1Stephen Gallagher - 1.5.7-3Stephen Gallagher - 1.5.7-2Stephen Gallagher - 1.5.7-1Stephen Gallagher - 1.5.6.1-1Stephen Gallagher - 1.5.6-1Stephen Gallagher - 1.5.5-5Stephen Gallagher - 1.5.5-4Stephen Gallagher - 1.5.5-3Stephen Gallagher - 1.5.5-2Stephen Gallagher - 1.5.5-1Stephen Gallagher - 1.5.4-1Stephen Gallagher - 1.5.3-2Stephen Gallagher - 1.5.3-1Stephen Gallagher - 1.5.2-1Simo Sorce - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Fedora Release Engineering - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.4.1-3Stephen Gallagher - 1.4.1-2Stephen Gallagher - 1.4.1-1Stephen Gallagher - 1.4.0-2Stephen Gallagher - 1.4.0-1Stephen Gallagher - 1.3.0-35Stephen Gallagher - 1.3.0-34Stephen Gallagher - 1.3.0-33Stephen Gallagher - 1.3.0-32Stephen Gallagher - 1.3.0-31Stephen Gallagher - 1.3.0-30David Malcolm - 1.2.91-21Stephen Gallagher - 1.2.91-20Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Resolves: rhbz#1593756 - sssd needs to require a newer version of libtalloc and libtevent to avoid an issue in GPO processing- Resolves: rhbz#1610667 - sssd_ssh leaks file descriptors when more than one certificate is converted into an SSH key - Resolves: rhbz#1583360 - The IPA selinux provider can return an error if SELinux is completely disabled- Resolves: rhbz#1602781 - Local users failed to login with same password- Resolves: rhbz#1586127 - Spurious check in the sssd nss memcache can cause the memory cache to be skipped- Resolves: rhbz#1522928 - sssd doesn't allow user with expired password- Resolves: rhbz#1607313 - When sssd is running as non-root user, the sudo pipe is created as sssd:sssd but then the private pipe ownership fails- Resolves: rhbz#1600822 - SSSD bails out saving desktop profiles in case an invalid profile is found- Resolves: rhbz#1582975 - The search filter for detecting POSIX attributes in global catalog is too broad and can cause a high load on the servers- Resolves: rhbz#1583725 - SSSD AD uses LDAP filter to detect POSIX attributes stored in AD GC also for regular AD DC queries - Resolves: rhbz#1416528 - sssd in cross realm trust configuration should be able to use AD KDCs from a client site defined in sssd.conf or a snippet - Resolves: rhbz#1592964 - Groups go missing with PAC enabled in sssd- Resolves: rhbz#1590603 - EMBARGOED CVE-2018-10852 sssd: information leak from the sssd-sudo responder [rhel-7] - Resolves: rhbz#1450778 - Full information regarding priority of lookup of principal in keytab not in man page- Resolves: rhbz#1494690 - kdcinfo files are not created for subdomains of a directly joined AD client - Resolves: rhbz#1583343 - Login with sshkeys stored in ipa not working after update to RHEL-7.5 - Resolves: rhbz#1527662 - Handle conflicting e-mail addresses more gracefully - Resolves: rhbz#1509691 - Document how to change the regular expression for SSSD so that group names with an @-sign can be parsed- Related: rhbz#1558498 - Rebase sssd to the latests upstream release of the 1.16 branch- Resolves: rhbz#1558498 - Rebase sssd to the latests upstream release of the 1.16 branch - Resolves: rhbz#1523019 - Reset password with two factor authentication fails - Resolves: rhbz#1534749 - Requesting an AD user's private group and then the user itself returns an emty homedir - Resolves: rhbz#1537272 - SSH public key authentication keeps working after keys are removed from ID view - Resolves: rhbz#1537279 - Certificate is not removed from cache when it's removed from the override - Resolves: rhbz#1562025 - externalUser sudo attribute must be fully-qualified - Resolves: rhbz#1577335 - /usr/libexec/sssd/sssd_autofs SIGABRT crash daily - Resolves: rhbz#1508530 - How should sudo behave without sudoHost attribute? - Resolves: rhbz#1546754 - The man page of sss_ssh_authorizedkeys can be enhanced to better explain how the keys are retrieved and how X.509 certificates can be used - Resolves: rhbz#1572790 - getgrgid/getpwuid fails in setups with multiple domains if the first domain uses mid_id/max_id - Resolves: rhbz#1561562 - sssd not honoring dyndns_server if the DNS update process is terminated with a signal - Resolves: rhbz#1583251 - home dir disappear in sssd cache on the IPA master for AD users - Resolves: rhbz#1514061 - ID override GID from Default Trust View is not properly resolved in case domain resolution order is set - Resolves: rhbz#1571466 - Utilizing domain_resolution_order in sssd.conf breaks SELinux user map - Resolves: rhbz#1571526 - SSSD with ID provider 'ad' should give a warning in case the ldap schema is manually changed to something different than 'ad'.- Resolves: rhbz#1547782 - The SSSD IPA provider allocates information about external groups on a long lived memory context, causing memory growth of the sssd_be process- Related: rhbz#1578291 - Samba can not register sss idmap module because it's using an outdated SMB_IDMAP_INTERFACE_VERSION- Resolves: rhbz#1578291 - Samba can not register sss idmap module because it's using an outdated SMB_IDMAP_INTERFACE_VERSION- Resolves: rhbz#1516266 - Give a more detailed debug and system-log message if krb5_init_context() failed - Resolves: rhbz#1503802 - Smartcard authentication fails if SSSD is offline and 'krb5_store_password_if_offline = True' - Resolves: rhbz#1385665 - Incorrect error code returned from krb5_child (updated) - Resolves: rhbz#1547234 - SSSD's GPO code ignores ad_site option - Resolves: rhbz#1459348 - extend sss-certmap man page regarding priority processing - Resolves: rhbz#1220767 - Group renaming issue when "id_provider = ldap" is set - Resolves: rhbz#1538555 - crash in nss_protocol_fill_netgrent. sssd_nss[19234]: segfault at 80 ip 000055612688c2a0 sp 00007ffddf9b9cd0 error 4 in sssd_nss[55612687e000+39000]- Resolves: rhbz#1565774 - After updating to RHEL 7.5 failing to clear the sssd cache- Resolves: rhbz#1566782 - memory management issue in the sssd_nss_ex interface can cause the ns-slapd process on IPA server to crash- Related: rhbzrhbz#1544943 - sssd goes offline when renewing expired ticket- Resolves: rhbz#1543348 - sssd_be consumes more memory on RHEL 7.4 systems. - Resolves: rhbz#1544943 - sssd goes offline when renewing expired ticket- Resolves: rhbz#1523282 - sssd used wrong search base with wrong AD server- Resolves: rhbz#1538643 - SSSD crashes when retrieving a Desktop Profile with no specific host/hostgroup set - Related: rhbz#1441908 - SELINUX: Use getseuserbyname to get IPA seuser - Related: rhbz#1327705 - [RFE] Automatic creation of user private groups on RHEL clients joined to AD via sssd [RHEL 7]- Resolves: rhbz#1517971 - AD Domain goes offline immediately during subdomain initialization - IPA AD Trust - Related: rhbz#1482555 - sysdb index improvements - missing ghost attribute indexing, unneeded objectclass index etc.. - Related: rhbz#1327705 - [RFE] Automatic creation of user private groups on RHEL clients joined to AD via sssd [RHEL 7] - Resolves: rhbz#1527149 - AD provider - AD BUILTIN groups are cached with gidNumber = 0 - Related: rhbz#1461899 - Loading enterprise principals doesn't work with a primed cache - Related: rhbz#1473571 - ipa-extdom-extop plugin can exhaust DS worker threads- Resolves: rhbz#1525644 - dbus-send unable to find user by CAC cert- Resolves: rhbz#1523010 - IPA user able to authenticate with revoked cert on smart card- Resolves: rhbz#1512027 - NSS by-id requests are not checked against max_id/min_id ranges before triggering the backend- Related: rhbz#1507614 - Improve Smartcard integration if multiple certificates or multiple mapped identities are available - Resolves: rhbz#1523010 - IPA user able to authenticate with revoked cert on smart card - Resolves: rhbz#1520984 - getent output is not showing home directory for IPA AD trusted user - Related: rhbz#1473571 - ipa-extdom-extop plugin can exhaust DS worker threads- Resolves: rhbz#1421194 - SSSD doesn't use AD global catalog for gidnumber lookup, resulting in unacceptable delay for large forests- Resolves: rhbz#1482231 - sssd_nss consumes more memory until restarted or machine swaps - Resolves: rhbz#1512508 - SSSD fails to fetch group information after switching IPA client to a non-default view- Resolves: rhbz#1490120 - SSSD complaining about corrupted mmap cache and logging error in /var/log/messages and /var/log/sssd/sssd_nss.log- Resolves: rhbz#1272214 - [RFE] Create a local per system report about who can access that IDM client (attestation) - Resolves: rhbz#1482555 - sysdb index improvements - missing ghost attribute indexing, unneeded objectclass index etc.. - Resolves: rhbz#888739 - Enumerating large number of users makes sssd_be hog the cpu for a long time. - Resolves: rhbz#1373547 - SSSD performance issue with malloc and brk calls - Resolves: rhbz#1472255 - Improve SSSD performance in the 7.5 release- Related: rhbz#1460724 - SYSLOG_IDENTIFIER is different - Related: rhbz#1432010 - SSSD ships a drop-in configuration snippet in /etc/systemd/system - Related: rhbz#1507614 - Improve Smartcard integration if multiple certificates or multiple mapped identities are available- Resolves: rhbz#1507614 - Improve Smartcard integration if multiple certificates or multiple mapped identities are available - Related: rhbz#1499659 - CVE-2017-12173 sssd: unsanitized input when searching in local cache database [rhel-7.5] - Resolves: rhbz#1408294 - SSSD authentication fails when two IPA accounts share an email address without a clear way to debug the problem - Resolves: rhbz#1502686 - crash - /usr/libexec/sssd/sssd_nss in nss_setnetgrent_timeout- Related: rhbz#1460724 - SYSLOG_IDENTIFIER is different - Related: rhbz#1459609 - When sssd is configured with id_provider proxy and auth_provider ldap, login fails if the LDAP server is not allowing anonymous binds.- Resolves: rhbz#1473571 - ipa-extdom-extop plugin can exhaust DS worker threads- Resolves: rhbz#1484376 - [RFE] Add a configuration option to SSSD to disable the memory cache - Resolves: rhbz#1327705 - Automatic creation of user private groups on RHEL clients joined to AD via sssd [RHEL 7] - Resolves: rhbz#1505277 - Race condition between refreshing the cr_domain list and a request that is using the list can cause a segfault is sssd_nss - Resolves: rhbz#1462343 - document information on why SSSD does not use host-based security filtering when processing AD GPOs - Resolves: rhbz#1498734 - sssd_be stuck in an infinite loop after completing full refresh of sudo rules - Resolves: rhbz#1400614 - [RFE] sssd should remember DNS sites from first search - Resolves: rhbz#1460724 - SYSLOG_IDENTIFIER is different - Resolves: rhbz#1459609 - When sssd is configured with id_provider proxy and auth_provider ldap, login fails if the LDAP server is not allowing anonymous binds.- Resolves: rhbz#1469791 - Rebase SSSD to version 1.16+ - Resolves: rhbz#1132264 - Allow sssd to retrieve sudo rules of local users whose sudo rules stored in ldap server - Resolves: rhbz#1301740 - sssd can be marked offline if a trusted domain is not reachable - Resolves: rhbz#1399262 - Use TCP for kerberos with AD by default - Resolves: rhbz#1416150 - RFE: Log to syslog when sssd cannot contact servers, goes offline - Resolves: rhbz#1441908 - SELINUX: Use getseuserbyname to get IPA seuser - Resolves: rhbz#1454559 - python-sssdconfig doesn't parse hexadecimal debug _level, resulting in set_option(): /usr/lib/python2.7/site-packages/SSSDConfig/__init__.py killed by TypeError - Resolves: rhbz#1456968 - MAN: document that attribute 'provider' is not allowed in section 'secrets' - Resolves: rhbz#1460689 - KCM/secrets: Storing many secrets in a rapid succession segfaults the secrets responder - Resolves: rhbz#1464049 - Idle nss file descriptors should be closed - Resolves: rhbz#1468610 - sssd_be is utilizing more CPU during sudo rules refresh - Resolves: rhbz#1474711 - Querying the AD domain for external domain's ID can mark the AD domain offline - Resolves: rhbz#1479398 - samba shares with sssd authentication broken on 7.4 - Resolves: rhbz#1479983 - id root triggers an LDAP lookup - Resolves: rhbz#1489895 - Issues with certificate mapping rules - Resolves: rhbz#1490501 - sssd incorrectly checks 'try_inotify' thinking it is the wrong section - Resolves: rhbz#1490913 - MAN: Document that full_name_format must be set if the output of trusted domains user resolution should be shortnames only - Resolves: rhbz#1499659 - CVE-2017-12173 sssd: unsanitized input when searching in local cache database [rhel-7.5] - Resolves: rhbz#1461899 - Loading enterprise principals doesn't work with a primed cache - Resolves: rhbz#1482674 - SUDO doesn't work for IPA users on IPA clients after applying ID Views for them in IPA server - Resolves: rhbz#1486053 - Accessing IdM kerberos ticket fails while id mapping is applied - Resolves: rhbz#1486786 - sssd going in offline mode due to sudo search filter. - Resolves: rhbz#1500087 - SSSD creates bad override search filter due to AD Trust object with parenthesis - Resolves: rhbz#1502713 - SSSD can crash due to ABI changes in libldb >= 1.2.0 (1.1.30) - Resolves: rhbz#1461462 - sssd_client: add mutex protected call to the PAC responder - Resolves: rhbz#1489666 - Combination sssd-ad and postfix recieve incorrect mail with asterisks or spaces - Resolves: rhbz#1525052 - sssd_krb5_localauth_plugin fails to fallback to otheri localname rules- Require the 7.5 libldb version which broke ABI - Related: rhbz#1469791 - Rebase SSSD to version 1.16+- Resolves: rhbz#1457926 - Wrong search base used when SSSD is directly connected to AD child domain- Resolves: rhbz#1450107 - SSSD doesn't handle conflicts between users from trusted domains with the same name when shortname user resolution is enabled- Resolves: rhbz#1459846 - krb5: properly handle 'password expired' information retured by the KDC during PKINIT/Smartcard authentication- Resolves: rhbz#1430415 - ldap_purge_cache_timeout in RHEL7.3 invalidate most of the entries once the cleanup task kicks in- Resolves: rhbz#1455254 - Make domain available as user attribute- Resolves: rhbz#1449731 - IPA client cannot change AD Trusted User password- Resolves: rhbz#1457927 - getent failed to fetch netgroup information after changing default_domain_suffix to ADdomin in /etc/sssd/sssd.conf- Resolves: rhbz#1440132 - fiter_users and filter_groups stop working properly in v 1.15- Resolves: rhbz#1449728 - LDAP to IPA migration doesn't work in master- Resolves: rhbz#1445445 - Smart card login fails if same cert mapped to IdM user and AD user- Resolves: rhbz#1449729 - org.freedesktop.sssd.infopipe.GetUserGroups does not resolve groups into names with AD- Resolves: rhbz#1450094 - Properly support IPA's promptusername config option- Resolves: rhbz#1457644 - Segfault in access_provider = krb5 is set in sssd.conf due to an off-by-one error when constructing the child send buffer - Resolves: rhbz#1456531 - Option name typos are not detected with validator function of sssctl config-check command in domain sections- Resolves: rhbz#1428906 - sssd intermittently failing to resolve groups for an AD user in IPA-AD trust environment.- Resolves: rhbz#1389796 - Smartcard authentication with UPN as logon name might fail - Fix Coverity issues in patches for rhbz#1445445- Resolves: rhbz#1445445 - Smart card login fails if same cert mapped to IdM user and AD user- Resolves: rhbz#1446302 - crash in sssd-kcm due to a race-condition between two concurrent requests- Resolves: rhbz#1389796 - Smartcard authentication with UPN as logon name might fail- Resolves: rhbz#1306707 - Need better debug message when krb5_child returns an unhandled error, leading to a System Error PAM code- Resolves: rhbz#1446535 - Group resolution does not work in subdomain without ad_server option- Resolves: rhbz#1449726 - sss_nss_getlistbycert() does not return results from multiple domains - Resolves: rhbz#1447098 - sssd unable to search dbus for ipa user by certificate - Additional patch for rhbz#1440132- Reapply patch by Lukas Slebodnik to fix upgrade issues with libwbclient - Resolves: rhbz#1439457 - SSSD does not start after upgrade from 7.3 to 7.4 - Resolves: rhbz#1449107 - error: %pre(sssd-common-1.15.2-26.el7.x86_64) scriptlet failed, exit status 3- Resolves: rhbz#1440132 - fiter_users and filter_groups stop working properly in v 1.15 - Also apply an additional patch for rhbz#1441545- Resolves: rhbz#1445445 - Smart card login fails if same cert mapped to IdM user and AD user- Resolves: rhbz#1434992 - Wrong pam return code for user from subdomain with ad_access_filter- Resolves: rhbz#1430494 - expect sss_ssh_authorizedkeys and sss_ssh_knownhostsproxy manuals to be packaged into sssd-common package- Resolves: rhbz#1427749 - SSSD in server mode iterates over all domains for group-by-GID requests, causing unnecessary searches- Resolves: rhbz#1446139 - Infopipe method ListByCertificate does not return the users with overrides- Resolves: rhbz#1441545 - With multiple subdomain sections id command output for user is not displayed for both domains- Resolves: rhbz#1428866 - Using ad_enabled_domains configuration option in sssd.conf causes nameservice lookups to fail.- Remove an unused variable from the sssd-secrets responder - Related: rhbz#1398701 - [sssd-secrets] https proxy talks plain http - Improve two DEBUG messages in the client trust code to aid troubleshooting - Fix standalone application domains - Related: rhbz#1425891 - Support delivering non-POSIX users and groups through the IFP and PAM interfaces- Allow completely server-side unqualified name resolution if the domain order is set, do not require any client-side changes - Related: rhbz#1330196 - [RFE] Short name input format with SSSD for users from all domains when domain autodiscovery is used or when IPA client resolves trusted AD domain users- Resolves: rhbz#1402532 - D-Bus interface of sssd is giving inappropriate group information for trusted AD users- Resolves: rhbz#1431858 - Wrong principal found with ad provider and long host name- Resolves: rhbz#1415167 - pam_acct_mgmt with pam_sss.so fails in unprivileged container unless selinux_provider = none is used- Resolves: rhbz#1438388 - [abrt] [faf] sssd: unknown function(): /usr/libexec/sssd/sssd_pam killed by 6- Resolves: rhbz#1432112 - sssctl config-check does not give any error when default configuration file is not present- Resolves: rhbz#1438374 - [abrt] [faf] sssd: vfprintf(): /usr/libexec/sssd/sssd_be killed by 11- Resolves: rhbz#1427195 - sssd_nss consumes more memory until restarted or machine swaps- Resolves: rhbz#1414023 - Create troubleshooting tool to determine if a failure is in SSSD or not when using layered products like RH-SSO/CFME etc- Resolves: rhbz#1398701 - [sssd-secrets] https proxy talks plain http- Fix off-by-one error in the KCM responder - Related: rhbz#1396012 - [RFE] KCM ccache daemon in SSSD- Resolves: rhbz#1425891 - Support delivering non-POSIX users and groups through the IFP and PAM interfaces- Resolves: rhbz#1434991 - Issue processing ssh keys from certificates in ssh respoder- Resolves: rhbz#1330196 - [RFE] Short name input format with SSSD for users from all domains when domain autodiscovery is used or when IPA client resolves trusted AD domain users - Also backport some buildtime fixes for the KCM responder - Related: rhbz#1396012 - [RFE] KCM ccache daemon in SSSD- Resolves: rhbz#1396012 - [RFE] KCM ccache daemon in SSSD- Resolves: rhbz#1340711 - [RFE] Use one smartcard and certificate for authentication to distinct logon accounts- Update to upstream 1.15.2 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_2.html - Resolves: rhbz#1418728 - IPA - sudo does not handle associated conflict entries - Resolves: rhbz#1386748 - sssd doesn't update PTR records if A/PTR zones are configured as non-secure and secure - Resolves: rhbz#1214491 - [RFE] Make it possible to configure AD subdomain in the SSSD server mode- Drop "NOUPSTREAM: Bundle http-parser" patch Related: rhbz#1393819 - New package: http-parser- Update to upstream 1.15.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_1.html - Resolves: rhbz#1327085 - Don't prompt for password if there is already one on the stack - Resolves: rhbz#1378722 - [RFE] Make GETSIDBYNAME and GETORIGBYNAME request aware of UPNs and aliases - Resolves: rhbz#1405075 - [RFE] Add PKINIT support to SSSD Kerberos provider - Resolves: rhbz#1416526 - Need correction in sssd-krb5 man page - Resolves: rhbz#1418752 - pam_sss crashes in do_pam_conversation if no conversation function is provided by the client app - Resolves: rhbz#1419356 - Fails to accept any sudo rules if there are two user entries in an ldap role with the same sudo user - Resolves: rhbz#1421622 - SSSD - Users/Groups are cached as mixed-case resulting in users unable to sign in- Fix several packaging issues, notably the p11_child is no longer setuid and the libwbclient used a wrong version number in the symlink- Update to upstream 1.15.0 - Resolves: rhbz#1393824 - Rebase SSSD to version 1.15 - Resolves: rhbz#1407960 - wbcLookupSid() fails in pdomain is NULL - Resolves: rhbz#1406437 - sssctl netgroup-show Cannot allocate memory - Resolves: rhbz#1400422 - Use-after free in resolver in case the fd is writeable and readable at the same time - Resolves: rhbz#1393085 - bz - ldap group names don't resolve after upgrading sssd to 1.14.0 if ldap_nesting_level is set to 0 - Resolves: rhbz#1392444 - sssd_be keeps crashing - Resolves: rhbz#1392441 - sssd fails to start after upgrading to RHEL 7.3 - Resolves: rhbz#1382602 - autofs map resolution doesn't work offline - Resolves: rhbz#1380436 - sudo: ignore case on case insensitive domains - Resolves: rhbz#1378251 - Typo In SSSD-AD Man Page - Resolves: rhbz#1373427 - Clock skew makes SSSD return System Error - Resolves: rhbz#1306707 - Need better handling of "Server not found in Kerberos database" - Resolves: rhbz#1297462 - Don't include 'enable_only=sssd' in the localauth plugin config- Resolves: rhbz#1382598 - IPA: Uninitialized variable during subdomain check- Resolves: rhbz#1378911 - No supplementary groups are resolved for users in nested OUs when domain stanza differs from AD domain- Resolves: rhbz#1372075 - AD provider: SSSD does not retrieve a domain-local group with the AD provider when following AGGUDLP group structure across domains- Resolves: rhbz#1376831 - sssd-common is missing dependency on sssd-sudo- Resolves: rhbz#1371631 - login using gdm calls for gdm-smartcard when smartcard authentication is not enabled- Resolves: rhbz#1373420 - sss_override fails to export- Resolves: rhbz#1375299 - sss_groupshow fails with error "No such group in local domain. Printing groups only allowed in local domain"- Resolves: rhbz#1375182 - SSSD goes offline when the LDAP server returns sizelimit exceeded- Resolves: rhbz#1372753 - Access denied for user when access_provider = krb5 is set in sssd.conf- Resolves: rhbz#1373444 - unable to create group in sssd cache - Resolves: rhbz#1373577 - unable to add local user in sssd to a group in sssd- Resolves: rhbz#1369118 - Don't enable the default shadowtils domain in RHEL- Fix permissions for the private pipe directory - Resolves: rhbz#1362716 - selinux avc denial for vsftp login as ipa user- Resolves: rhbz#1371977 - resolving IPA nested user groups is broken in 1.14- Resolves: rhbz#1368496 - sssd is not able to authenticate with alias- Resolves: rhbz#1371152 - SSSD qualifies principal twice in IPA-AD trust if the principal attribute doesn't exist on the AD side- Apply forgotten patch - Resolves: rhbz#1368496 - sssd is not able to authenticate with alias - Resolves: rhbz#1366470 - sssd: throw away the timestamp cache if re-initializing the persistent cache - Fix deleting non-existent secret - Related: rhbz#1311056 - Add a Secrets as a Service component- Resolves: rhbz#1362716 - selinux avc denial for vsftp login as ipa user- Resolves: rhbz#1368496 - sssd is not able to authenticate with alias- Resolves: rhbz#1364033 - sssd exits if clock is adjusted backwards after boot- Resolves: rhbz#1362023 - SSSD fails to start when ldap_user_extra_attrs contains mail- Resolves: rhbz#1368324 - libsss_autofs.so is packaged in two packages sssd-common and libsss_autofs- Fix RPM scriptlet plumbing for the sssd-secrets responder - Related: rhbz#1311056 - Add a Secrets as a Service component- Add socket-activation plumbing for the sssd-secrets responder - Related: rhbz#1311056 - Add a Secrets as a Service component- Own the secrets directory - Related: rhbz#1311056 - Add a Secrets as a Service component- Resolves: rhbz#1268874 - Add an option to disable checking for trusted domains in the subdomains provider- Resolves: rhbz#1271280 - sssd stores and returns incorrect information about empty netgroup (ldap-server: 389-ds)- Resolves: rhbz#1290500 - [feat] command to manually list fo_add_server_to_list information- Add several small fixes related to the config API - Related: rhbz#1072458 - [RFE] SSSD configuration file test tool (sssd_check)- Resolves: rhbz#1349900 - gpo search errors out and gpo_cache file is never created- Fix regressions in the simple access provider - Resolves: rhbz#1360806 - sssd does not start if sub-domain user is used with simple access provider - Apply a number of specfile patches to better match the upstream spefile - Related: rhbz#1290381 - Rebase SSSD to 1.14.x in RHEL-7.3- Cherry-pick patches from upstream that fix several regressions - Avoid checking local users in all cases - Resolves: rhbz#1353951 - sssd_pam leaks file descriptors- Resolves: rhbz#1364118 - [abrt] [faf] sssd: unknown function(): /usr/libexec/sssd/sssd_nss killed by 11 - Resolves: rhbz#1361563 - Wrong pam error code returned for password change in offline mode- Resolves: rhbz#1309745 - Support multiple principals for IPA users- Resolves: rhbz#1304992 - Handle overriden name of members in the memberUid attribute- handle unresolvable sites more gracefully - Resolves: rhbz#1346011 - sssd is looking at a server in the GC of a subdomain, not the root domain. - fix compilation warnings in unit tests- fix capaths output - Resolves: rhbz#1344940 - GSSAPI error causes failures for child domain user logins across IPA - AD trust - also fix Coverity issues in the secrets responder and suppress noisy debug messages when setting the timestamp cache- Resolves: rhbz#1356577 - sssctl: Time stamps without time zone information- Resolves: rhbz#1354414 - New or modified ID-View User overrides are not visible unless rm -f /var/lib/sss/db/*cache*- Resolves: rhbz#1211631 - [RFE] Support of UPN for IdM trusted domains- Resolves: rhbz#1350520 - [abrt] sssd-common: ipa_dyndns_update_send(): sssd_be killed by SIGSEGV- Resolves: rhbz#1349882 - sssd does not work under non-root user - Also cherry-pick a few patches from upstream to fix config schema - Related: rhbz#1072458 - [RFE] SSSD configuration file test tool (sssd_check)- Sync a few minor patches from upstream - Fix sssctl manpage - Fix nss-tests unit test on big-endian machines - Fix several issues in the config schema - Related: rhbz#1072458 - [RFE] SSSD configuration file test tool (sssd_check)- Bundle http-parser - Resolves: rhbz#1311056 - Add a Secrets as a Service component- Sync a few minor patches from upstream - Fix a failover issue - Resolves: rhbz#1334749 - sssd fails to mark a connection as bad on searches that time out- Explicitly BuildRequire newer ding-libs - Resolves: rhbz#1072458 - [RFE] SSSD configuration file test tool (sssd_check)- New upstream release 1.14.0 - Resolves: rhbz#1290381 - Rebase SSSD to 1.14.x in RHEL-7.3 - Resolves: rhbz#835492 - [RFE] SSSD admin tool request - force reload - Resolves: rhbz#1072458 - [RFE] SSSD configuration file test tool (sssd_check) - Resolves: rhbz#1278691 - Please fix rfc2307 autofs schema defaults - Resolves: rhbz#1287209 - default_domain_suffix Appended to User Name - Resolves: rhbz#1300663 - Improve sudo protocol to support configurations with default_domain_suffix - Resolves: rhbz#1312275 - Support authentication indicators from IPA- Resolves: rhbz#1290381 - Rebase SSSD to 1.14.x in RHEL-7.3 - Resolves: rhbz#790113 - [RFE] "include" directive in sssd.conf - Resolves: rhbz#874985 - [RFE] AD provider support for automount lookups - Resolves: rhbz#879333 - [RFE] SSSD admin tool request - status overview - Resolves: rhbz#1140022 - [RFE]Allow sssd to add a new option that would specify which server to update DNS with - Resolves: rhbz#1290380 - RFE: Improve SSSD performance in large environments - Resolves: rhbz#883886 - sssd: incorrect checks on length values during packet decoding - Resolves: rhbz#988207 - sssd does not detail which line in configuration is invalid - Resolves: rhbz#1007969 - sssd_cache does not remove have an option to remove the sssd database - Resolves: rhbz#1103249 - PAC responder needs much time to process large group lists - Resolves: rhbz#1118257 - Users in ipa groups, added to netgroups are not resovable - Resolves: rhbz#1269018 - Too much logging from sssd_be - Resolves: rhbz#1293695 - sssd mixup nested group from AD trusted domains - Resolves: rhbz#1308935 - After removing certificate from user in IPA and even after sss_cache, FindByCertificate still finds the user - Resolves: rhbz#1315766 - SSSD PAM module does not support multiple password prompts (e.g. Password + Token) with sudo - Resolves: rhbz#1316164 - SSSD fails to process GPO from Active Directory - Resolves: rhbz#1322458 - sssd_be[11010]: segfault at 0 ip 00007ff889ff61bb sp 00007ffc7d66a3b0 error 4 in libsss_ipa.so[7ff889fcf000+5d000]- Resolves: rhbz#1290381 - Rebase SSSD to 1.14.x in RHEL-7.3 - The rebase includes fixes for the following bugzillas: - Resolves: rhbz#789477 - [RFE] SUDO: Support the IPA schema - Resolves: rhbz#1059972 - RFE: SSSD: Automatically assign new slices for any AD domain - Resolves: rhbz#1233200 - man sssd.conf should clarify details about subdomain_inherit option. - Resolves: rhbz#1238144 - Need better libhbac debuging added to sssd - Resolves: rhbz#1265366 - sss_override segfaults when accidentally adding --help flag to some commands - Resolves: rhbz#1269512 - sss_override: memory violation - Resolves: rhbz#1278566 - crash in sssd when non-Englsh locale is used and pam_strerror prints non-ASCII characters - Resolves: rhbz#1283686 - groups get deleted from the cache - Resolves: rhbz#1290378 - Smart Cards: Certificate in the ID View - Resolves: rhbz#1292238 - extreme memory usage in libnfsidmap sss.so plug-in when resolving groups with many members - Resolves: rhbz#1292456 - sssd_be AD segfaults on missing A record - Resolves: rhbz#1294670 - Local users with local sudo rules causes LDAP queries - Resolves: rhbz#1296618 - Properly remove OriginalMemberOf attribute in SSSD cache if user has no secondary groups anymore - Resolves: rhbz#1299553 - Cannot retrieve users after upgrade from 1.12 to 1.13 - Resolves: rhbz#1302821 - Cannot start sssd after switching to non-root - Resolves: rhbz#1310877 - [RFE] Support Automatic Renewing of Kerberos Host Keytabs - Resolves: rhbz#1313014 - sssd is not closing sockets properly - Resolves: rhbz#1318996 - SSSD does not fail over to next GC - Resolves: rhbz#1327270 - local overrides: issues with sub-domain users and mixed case names - Resolves: rhbz#1342547 - sssd-libwbclient: wbcSidsToUnixIds should not fail on lookup errors- Build the PAC plugin with krb5-1.14 - Related: rhbz#1336688 - sssd tries to resolve global catalog servers from AD forest sub-domains in AD-IPA trust setup- Resolves: rhbz#1336688 - sssd tries to resolve global catalog servers from AD forest sub-domains in AD-IPA trust setup- Resolves: rhbz#1290853 - [sssd] Trusted (AD) user's info stays in sssd cache for much more than expected.- Resolves: rhbz#1336706 - sssd_nss memory usage keeps growing when trying to retrieve non-existing netgroups- Resolves: rhbz#1296902 - In IPA-AD trust environment access is granted to AD user even if the user is disabled on AD.- Resolves: rhbz#1334159 - IPA provider crashes if a netgroup from a trusted domain is requested- Resolves: rhbz#1308913 - sssd be memory leak in sssd's memberof plugin - More patches from upstream related to the memory leak- Resolves: rhbz#1308913 - sssd be memory leak in sssd's memberof plugin- Resolves: rhbz#1300740 - [RFE] IPA: resolve external group memberships of IPA groups during getgrnam and getgrgid- Resolves: rhbz#1284814 - sssd: [sysdb_add_user] (0x0400): Error: 17- Resolves: rhbz#1270827 - local overrides: don't contact server with overridden name/id- Resolves: rhbz#1267837 - sssd_be crashed in ipa_srv_ad_acct_lookup_step- Resolves: rhbz#1267176 - Memory leak / possible DoS with krb auth.- Resolves: rhbz#1267836 - PAM responder crashed if user was not set- Resolves: rhbz#1266107 - AD: Conditional jump or move depends on uninitialised value- Resolves: rhbz#1250135 - Detect re-established trusts in the IPA subdomain code- Fix a Coverity warning in dyndns code - Resolves: rhbz#1261155 - nsupdate exits on first GSSAPI error instead of processing other commands- Resolves: rhbz#1261155 - nsupdate exits on first GSSAPI error instead of processing other commands- Resolves: rhbz#1263735 - Could not resolve AD user from root domain- Remove -d from sss_override manpage - Related: rhbz#1259512 - sss_override : The local override user is not found- Patches required for better handling of failover with one-way trusts - Related: rhbz#1250135 - Detect re-established trusts in the IPA subdomain code- Resolves: rhbz#1263587 - sss_override --name doesn't work with RFC2307 and ghost users- Resolves: rhbz#1259512 - sss_override : The local override user is not found- Resolves: rhbz#1260027 - sssd_be memory leak with sssd-ad in GPO code- Resolves: rhbz#1256398 - sssd cannot resolve user names containing backslash with ldap provider- Resolves: rhbz#1254189 - sss_override contains an extra parameter --debug but is not listed in the man page or in the arguments help- Resolves: rhbz#1254518 - Fix crash in nss responder- Support import/export for local overrides - Support FQDNs for local overrides - Resolves: rhbz#1254184 - sss_override does not work correctly when 'use_fully_qualified_names = True'- Resolves: rhbz#1244950 - Add index for 'objectSIDString' and maybe to other cache attributes- Resolves: rhbz#1250415 - sssd: p11_child hardening- Related: rhbz#1250135 - Detect re-established trusts in the IPA subdomain code- Resolves: rhbz#1202724 - [RFE] Add a way to lookup users based on CAC identity certificates- Resolves: rhbz#1232950 - [IPA/IdM] sudoOrder not honored as expected- Fix wildcard_limit=0 - Resolves: rhbz#1206571 - [RFE] Expose D-BUS interface- Fix race condition in invalidating the memory cache - Related: rhbz#1206575 - [RFE] The fast memory cache should cache initgroups- Resolves: rhbz#1249015 - KDC proxy not working with SSSD krb5_use_kdcinfo enabled- Bump release number - Related: rhbz#1246489 - sss_obfuscate fails with "ImportError: No module named pysss"- Fix missing dependency of sssd-tools - Resolves: rhbz#1246489 - sss_obfuscate fails with "ImportError: No module named pysss"- More memory cache related fixes - Related: rhbz#1206575 - [RFE] The fast memory cache should cache initgroups- Remove binary blob from SC patches as patch(1) can't handle those - Related: rhbz#854396 - [RFE] Support for smart cards- Resolves: rhbz#1244949 - getgrgid for user's UID on a trust client prevents getpw*- Fix memory cache integration tests - Resolves: rhbz#1206575 - [RFE] The fast memory cache should cache initgroups - Resolves: rhbz#854396 - [RFE] Support for smart cards- Remove OTP from PAM stack correctly - Related: rhbz#1200873 - [RFE] Allow smart multi step prompting when user logs in with password and token code from IPA - Handle sssd-owned keytabs when sssd runs as root - Related: rhbz#1205144 - RFE: Support one-way trusts for IPA- Resolves: rhbz#1183747 - [FEAT] UID and GID mapping on individual clients- Resolves: rhbz#1206565 - [RFE] Add dualstack and multihomed support - Resolves: rhbz#1187146 - If v4 address exists, will not create nonexistant v6 in ipa domain- Resolves: rhbz#1242942 - well-known SID check is broken for NetBIOS prefixes- Resolves: rhbz#1234722 - sssd ad provider fails to start in rhel7.2- Add support for InfoPipe wildcard requests - Resolves: rhbz#1206571 - [RFE] Expose D-BUS interface- Also package the initgr memcache - Related: rhbz#1205554 - Rebase SSSD to 1.13.x- Rebase to 1.13.0 upstream - Related: rhbz#1205554 - Rebase SSSD to 1.13.x - Resolves: rhbz#910187 - [RFE] authenticate against cache in SSSD - Resolves: rhbz#1206575 - [RFE] The fast memory cache should cache initgroups- Don't default to SSSD user - Related: rhbz#1205554 - Rebase SSSD to 1.13.x- Related: rhbz#1205554 - Rebase SSSD to 1.13.x - GPO default should be permissve- Resolves: rhbz#1205554 - Rebase SSSD to 1.13.x - Relax the libldb requirement - Resolves: rhbz#1221992 - sssd_be segfault at 0 ip sp error 6 in libtevent.so.0.9.21 - Resolves: rhbz#1221839 - SSSD group enumeration inconsistent due to binary SIDs - Resolves: rhbz#1219285 - Unable to resolve group memberships for AD users when using sssd-1.12.2-58.el7_1.6.x86_64 client in combination with ipa-server-3.0.0-42.el6.x86_64 with AD Trust - Resolves: rhbz#1217559 - [RFE] Support GPOs from different domain controllers - Resolves: rhbz#1217350 - ignore_group_members doesn't work for subdomains - Resolves: rhbz#1217127 - Override for IPA users with login does not list user all groups - Resolves: rhbz#1216285 - autofs provider fails when default_domain_suffix and use_fully_qualified_names set - Resolves: rhbz#1214719 - Group resolution is inconsistent with group overrides - Resolves: rhbz#1214718 - Overridde with --login fails trusted adusers group membership resolution - Resolves: rhbz#1214716 - idoverridegroup for ipa group with --group-name does not work - Resolves: rhbz#1214337 - Overrides with --login work in second attempt - Resolves: rhbz#1212489 - Disable the cleanup task by default - Resolves: rhbz#1211830 - external users do not resolve with "default_domain_suffix" set in IPA server sssd.conf - Resolves: rhbz#1210854 - Only set the selinux context if the context differs from the local one - Resolves: rhbz#1209483 - When using id_provider=proxy with auth_provider=ldap, it does not work as expected - Resolves: rhbz#1209374 - Man sssd-ad(5) lists Group Policy Management Editor naming for some policies but not for all - Resolves: rhbz#1208507 - sysdb sudo search doesn't escape special characters - Resolves: rhbz#1206571 - [RFE] Expose D-BUS interface - Resolves: rhbz#1206566 - SSSD does not update Dynamic DNS records if the IPA domain differs from machine hostname's domain - Resolves: rhbz#1206189 - [bug] sssd always appends default_domain_suffix when checking for host keys - Resolves: rhbz#1204203 - sssd crashes intermittently - Resolves: rhbz#1203945 - [FJ7.0 Bug]: getgrent returns error because sss is written in nsswitch.conf as default - Resolves: rhbz#1203642 - GPO access control looks for computer object in user's domain only - Resolves: rhbz#1202245 - SSSD's HBAC processing is not permissive enough with broken replication entries - Resolves: rhbz#1201271 - sssd_nss segfaults if initgroups request is by UPN and doesn't find anything - Resolves: rhbz#1200873 - [RFE] Allow smart multi step prompting when user logs in with password and token code from IPA - Resolves: rhbz#1199541 - Read and use the TTL value when resolving a SRV query - Resolves: rhbz#1199533 - [RFE] Implement background refresh for users, groups or other cache objects - Resolves: rhbz#1199445 - Does sssd-ad use the most suitable attribute for group name? - Resolves: rhbz#1198477 - ccname_file_dummy is not unlinked on error - Resolves: rhbz#1187103 - [RFE] User's home directories are not taken from AD when there is an IPA trust with AD - Resolves: rhbz#1185536 - In ipa-ad trust, with 'default_domain_suffix' set to AD domain, IPA user are not able to log unless use_fully_qualified_names is set - Resolves: rhbz#1175760 - [RFE] Have OpenLDAP lock out ssh keys when account naturally expires - Resolves: rhbz#1163806 - [RFE]ad provider dns_discovery_domain option: kerberos discovery is not using this option - Resolves: rhbz#1205160 - Complain loudly if backend doesn't start due to missing or invalid keytab- Resolves: rhbz#1226119 - Properly handle AD's binary objectGUID- Filter out domain-local groups during AD initgroups operation - Related: rhbz#1201840 - SSSD downloads too much information when fetching information about groups- Resolves: rhbz#1201840 - SSSD downloads too much information when fetching information about groups- Initialize variable in the views code in one success and one failure path - Resolves: rhbz#1202170 - sssd_be segfault on IPA(when auth with AD trusted domain) client at src/providers/ipa/ipa_s2n_exop.c:1605- Resolves: rhbz#1202170 - sssd_be segfault on IPA(when auth with AD trusted domain) client at src/providers/ipa/ipa_s2n_exop.c:1605- Handle case where there is no default and no rules - Resolves: rhbz#1192314 - With empty ipaselinuxusermapdefault security context on client is staff_u- Set a pointer in ldap_child to NULL to avoid warnings - Related: rhbz#1198759 - ccname_file_dummy is not unlinked on error- Resolves: rhbz#1199143 - With empty ipaselinuxusermapdefault security context on client is staff_u- Resolves: rhbz#1198759 - ccname_file_dummy is not unlinked on error- Run the restart in sssd-common posttrans - Explicitly require libwbclient - Resolves: rhbz#1187113 - sssd deamon was not running after RHEL 7.1 upgrade- Resolves: rhbz#1187113 - sssd deamon was not running after RHEL 7.1 upgrade- Fix endianess bug in fill_id() - Related: rhbz#1109331 - [RFE] Allow SSSD to be used with smbd shares- Resolves: rhbz#1168904 - gid is overridden by uid in default trust view- Resolves: rhbz#1187192 - IPA initgroups don't work correctly in non-default view- Resolves: rhbz#1184982 - Need to set different umask in selinux_child- Bump the release number - Related: rhbz#1184140 - Users saved throug extop don't have the originalMemberOf attribute- Add a patch dependency - Related: rhbz#1184140 - Users saved throug extop don't have the originalMemberOf attribute- Process ghost members only once - Fix processing of universal groups with members from different domains - Related: rhbz#1168904 - gid is overridden by uid in default trust view- Related: rhbz#1184140 - Users saved throug extop don't have the originalMemberOf attribute- Resolves: rhbz#1185188 - Uncached SIDs cannot be resolved- Handle GID override in MPG domains - Handle views with mixed-case domains - Related: rhbz#1168904 - gid is overridden by uid in default trust view- Open socket to the PAC responder in krb5_child before dropping root - Related: rhbz#1184140 - Users saved throug extop don't have the originalMemberOf attribute- Resolves: rhbz#1184140 - Users saved throug extop don't have the originalMemberOf attribute- Resolves: rhbz#1182183 - pam_sss(sshd:auth): authentication failure with user from AD- Resolves: rhbz#889206 - On clock skew sssd returns system error- Related: rhbz#1168904 - gid is overridden by uid in default trust view- Resolves: rhbz#1177140 - gpo_child fails if "log level" is enabled in smb.conf - Related: rhbz#1168904 - gid is overridden by uid in default trust view- Resolves: rhbz#1175408 - SSSD should not fail authentication when only allow rules are used - Resolves: rhbz#1175705 - sssd-libwbclient conflicts with Samba's and causes crash in wbinfo - in addition to the patch libwbclient.so is filtered out of the Provides list of the package- Resolves: rhbz#1171215 - Crash in function get_object_from_cache - Resolves: rhbz#1171383 - getent fails for posix group with AD users after login - Resolves: rhbz#1171382 - getent of AD universal group fails after group users login - Resolves: rhbz#1170300 - Access is not rejected for disabled domain - Resolves: rhbz#1162486 - Error processing external groups with getgrnam/getgrgid in the server mode - Resolves: rhbz#1168904 - gid is overridden by uid in default trust view- Resolves: rhbz#1169459 - sssd-ad: The man page description to enable GPO HBAC Policies are unclear - Related: rhbz#1113783 - sssd should run under unprivileged user- Rebuild to add several forgotten Patch entries - Resolves: rhbz#1173482 - MAN: Document that only user names are checked for pam_trusted_users - Resolves: rhbz#1167324 - pam_sss domains option: User auth should fail when domains=- Remove Coverity warnings in krb5_child code - Related: rhbz#1113783 - sssd should run under unprivileged user- Resolves: rhbz#1173482 - MAN: Document that only user names are checked for pam_trusted_users - Resolves: rhbz#1167324 - pam_sss domains option: User auth should fail when domains=- Don't error out on chpass with OTPs - Related: rhbz#1109756 - Rebase SSSD to 1.12- Resolves: rhbz#1124320 - [FJ7.0 Bug]: getgrent returns error because sss is written in nsswitch.conf as default.- Resolves: rhbz#1169739 - selinuxusermap rule does not apply to trusted AD users - Enable running unit tests without cmocka - Related: rhbz#1113783 - sssd should run under unprivileged user- krb5_child and ldap_child do not call Kerberos calls as root - Related: rhbz#1113783 - sssd should run under unprivileged user- Resolves: rhbz#1168735 - The Kerberos provider is not properly views-aware- Fix typo in libwbclient-devel alternatives invocation - Related: rhbz#1109331 - [RFE] Allow SSSD to be used with smbd shares- Resolves: rhbz#1166727 - pam_sss domains option: Untrusted users from the same domain are allowed to auth.- Handle migrating clients between views - Related: rhbz#891984 - [RFE] ID Views: Support migration from the sync solution to the trust solution- Use alternatives for libwbclient - Related: rhbz#1109331 - [RFE] Allow SSSD to be used with smbd shares- Resolves: rhbz#1165794 - sssd does not work with custom value of option re_expression- Add an option that describes where to put generated krb5 files to - Related: rhbz#1135043 - [RFE] Implement localauth plugin for MIT krb5 1.12- Handle IPA group names returned from the extop plugin - Related: rhbz#891984 - [RFE] ID Views: Support migration from the sync solution to the trust solution- Resolves: rhbz#1165792 - automount segfaults in sss_nss_check_header- Resolves: rhbz#1163742 - "debug_timestamps = false" and "debug_microseconds = true" do not work after enabling journald with sssd.- Resolves: rhbz#1153593 - Manpage description of case_sensitive=preserving is incomplete- Support views for IPA users - Related: rhbz#891984 - [RFE] ID Views: Support migration from the sync solution to the trust solution- Update man page to clarify TGs should be disabled with a custom search base - Related: rhbz#1161741 - TokenGroups for LDAP provider breaks in corner cases- Use upstreamed patches for the rootless sssd - Related: rhbz#1113783 - sssd should run under unprivileged user- Resolves: rhbz#1153603 - Proxy Provider: Fails to lookup case sensitive users and groups with case_sensitive=preserving- Resolves: rhbz#1161741 - TokenGroups for LDAP provider breaks in corner cases- Resolves: rhbz#1162480 - dereferencing failure against openldap server- Move adding the user from pretrans to pre, copy adding the user to sssd-krb5-common and sssd-ipa as well in order to work around yum ordering issue - Related: rhbz#1113783 - sssd should run under unprivileged user- Resolves: rhbz#1113783 - sssd should run under unprivileged user- Fix two regressions in the new selinux_child process - Related: rhbz#1113783 - sssd should run under unprivileged user - Resolves: rhbz#1132365 - Remove password from the PAM stack if OTP is used- Include the ldap_child and selinux_child patches for rootless sssd - Related: rhbz#1113783 - sssd should run under unprivileged user- Support overriding SSH public keys with views - Support extended attributes via the extop plugin - Related: rhbz#1109756 - Rebase SSSD to 1.12 - Resolves: rhbz#1137010 - disable midpoint refresh for netgroups if ptask refresh is enabled- Resolves: rhbz#1153518 - service lookups returned in lowercase with case_sensitive=preserving - Resolves: rhbz#1158809 - Enumeration shows only a single group multiple times- Include the responder and packaging patches for rootless sssd - Related: rhbz#1113783 - sssd should run under unprivileged user- Amend the sssd-ldap man page with info about lockout setup - Related: rhbz#1109756 - Rebase SSSD to 1.12 - Resolves: rhbz#1137014 - Shell fallback mechanism in SSSD - Resolves: rhbz#790854 - 4 functions with reference leaks within sssd (src/python/pyhbac.c)- Fix regressions caused by views patches when SSSD is connected to a pre-4.0 IPA server - Related: rhbz#1109756 - Rebase SSSD to 1.12- Add the low-level server changes for running as unprivileged user - Package the libsss_semange library needed for SELinux label changes - Related: rhbz#1113783 - sssd should run under unprivileged user - Resolves: rhbz#1113784 - sssd should audit selinux user map changes- Use libsemanage for SELinux label changes - Resolves: rhbz#1113784 - sssd should audit selinux user map changes- Rebase SSSD to 1.12.2 - Related: rhbz#1109756 - Rebase SSSD to 1.12- Sync with upstream - Related: rhbz#1109756 - Rebase SSSD to 1.12- Rebuild against ding-libs with fixed SONAME - Related: rhbz#1109756 - Rebase SSSD to 1.12- Rebase SSSD to 1.12.1 - Related: rhbz#1109756 - Rebase SSSD to 1.12- Require ldb 2.1.17 - Related: rhbz#1133914 - Rebase libldb to version 1.1.17 or newer- Fix fully qualified IFP lookups - Related: rhbz#1109756 - Rebase SSSD to 1.12- Rebase SSSD to 1.12.0 - Related: rhbz#1109756 - Rebase SSSD to 1.12- Squash in upstream review comments about the PAC patch - Related: rhbz#1097286 - Expanding home directory fails when the request comes from the PAC responder- Backport a patch to allow krb5-utils-test to run as root - Related: rhbz#1097286 - Expanding home directory fails when the request comes from the PAC responder- Resolves: rhbz#1097286 - Expanding home directory fails when the request comes from the PAC responder- Fix a DEBUG message, backport two related fixes - Related: rhbz#1090653 - segfault in sssd_be when second domain tree users are queried while joined to child domain- Resolves: rhbz#1090653 - segfault in sssd_be when second domain tree users are queried while joined to child domain- Resolves: rhbz#1082191 - RHEL7 IPA selinuxusermap hbac rule not always matching- Resolves: rhbz#1077328 - other subdomains are unavailable when joined to a subdomain in the ad forest- Resolves: rhbz#1078877 - Valgrind: Invalid read of int while processing netgroup- Resolves: rhbz#1075092 - Password change w/ OTP generates error on success- Resolves: rhbz#1078840 - Error during password change- Resolves: rhbz#1075663 - SSSD should create the SELinux mapping file with format expected by pam_selinux- Related: rhbz#1075621 - Add another Kerberos error code to trigger IPA password migration- Related: rhbz#1073635 - IPA SELinux code looks for the host in the wrong sysdb subdir when a trusted user logs in- Related: rhbz#1066096 - not retrieving homedirs of AD users with posix attributes- Related: rhbz#1072995 - AD group inconsistency when using AD provider in sssd-1.11-40- Resolves: rhbz#1073631 - sssd fails to handle expired passwords when OTP is used- Resolves: rhbz#1072067 - SSSD Does not cache SELinux map from FreeIPA correctly- Resolves: rhbz#1071903 - ipa-server-mode: Use lower-case user name component in home dir path- Resolves: rhbz#1068725 - Evaluate usage of sudo LDAP provider together with the AD provider- Fix idmap documentation - Bump idmap version info - Related: rhbz#1067361 - Check IPA idranges before saving them to the cache- Pull some follow up man page fixes from upstream - Related: rhbz#1060389 - Document that `sssd` cache needs to be cleared manually, if ID mapping configuration changes - Related: rhbz#1064908 - MAN: Remove misleading memberof example from ldap_access_filter example- Resolves: rhbz#1060389 - Document that `sssd` cache needs to be cleared manually, if ID mapping configuration changes- Resolves: rhbz#1064908 - MAN: Remove misleading memberof example from ldap_access_filter example- Resolves: rhbz#1068723 - Setting int option to 0 yields the default value- Resolves: rhbz#1067361 - Check IPA idranges before saving them to the cache- Resolves: rhbz#1067476 - SSSD pam module accepts usernames with leading spaces- Resolves: rhbz#1033069 - Configuring two different provider types might start two parallel enumeration tasks- Resolves: rhbz#1068640 - 'IPA: Don't call tevent_req_post outside _send' should be added to RHEL7- Resolves: rhbz#1063977 - SSSD needs to enable FAST by default- Resolves: rhbz#1064582 - sss_cache does not reset the SYSDB_INITGR_EXPIRE attribute when expiring users- Resolves: rhbz#1033081 - Implement heuristics to detect if POSIX attributes have been replicated to the Global Catalog or not- Resolves: rhbz#872177 - [RFE] subdomain homedir template should be configurable/use flatname by default- Resolves: rhbz#1059753 - Warn with a user-friendly error message when permissions on sssd.conf are incorrect- Resolves: rhbz#1037653 - Enabling ldap_id_mapping doesn't exclude uidNumber in filter- Resolves: rhbz#1059253 - Man page states default_shell option supersedes other shell options but in fact override_shell does. - Use the right domain for AD site resolution - Related: rhbz#743503 - [RFE] sssd should support DNS sites- Resolves: rhbz#1028039 - AD Enumeration reads data from LDAP while regular lookups connect to GC- Resolves: rhbz#877438 - sudoNotBefore/sudoNotAfter not supported by sssd sudoers plugin- Mass rebuild 2014-01-24- Resolves: rhbz#1054639 - sssd_be aborts a request if it doesn't match any configured idmap domain- Resolves: rhbz#1054899 - explicitly suggest krb5_auth_timeout in a loud DEBUG message in case Kerberos authentication times out- Resolves: rhbz#1037653 - Enabling ldap_id_mapping doesn't exclude uidNumber in filter- Resolves: rhbz#1051360 - [FJ7.0 Bug]: [REG] sssd_be crashes when ldap_search_base cannot be parsed. - Fix a typo in the man page - Related: rhbz#1034920 - RHEL7 sssd not setting IPA AD trusted user homedir- Resolves: rhbz#1054639 - sssd_be aborts a request if it doesn't match any configured idmap domain - Fix return value when searching for AD domain flat names - Resolves: rhbz#1048102 - Access denied for users from gc domain when using format DOMAIN\user- Resolves: rhbz#1034920 - RHEL7 sssd not setting IPA AD trusted user homedir- Resolves: rhbz#1048102 - Access denied for users from gc domain when using format DOMAIN\user- Resolves: rhbz#1053106 - sssd ad trusted sub domain do not inherit fallbacks and overrides settings- Resolves: rhbz#1051016 - FAST does not work in SSSD 1.11.2 in Fedora 20- Resolves: rhbz#1033133 - "System Error" when invalid ad_access_filter is used- Resolves: rhbz#1032983 - sssd_be crashes when ad_access_filter uses FOREST keyword. - Fix two memory leaks in the PAC responder (Related: rhbz#991065)- Resolves: rhbz#1048184 - Group lookup does not return member with multiple names after user lookup- Resolves: rhbz#1049533 - Group membership lookup issue- Mass rebuild 2013-12-27- Resolves: rhbz#894068 - sss_cache doesn't support subdomains- Re-initialize subdomains after provider startup - Related: rhbz#1038637 - If SSSD starts offline, subdomains list is never read- The AD provider is able to resolve group memberships for groups with Global and Universal scope - Related: rhbz#1033096 - tokenGroups do not work reliable with Global Catalog- Resolves: rhbz#1033096 - tokenGroups do not work reliable with Global Catalog - Resolves: rhbz#1030483 - Individual group search returned multiple results in GC lookups- Resolves: rhbz#1040969 - sssd_nss grows memory footprint when netgroups are requested- Resolves: rhbz#1023409 - Valgrind sssd "Syscall param socketcall.sendto(msg) points to uninitialised byte(s)"- Resolves: rhbz#1037936 - sssd_be crashes occasionally- Resolves: rhbz#1038637 - If SSSD starts offline, subdomains list is never read- Resolves: rhbz#1029631 - sssd_be crashes on manually adding a cleartext password to ldap_default_authtok- Resolves: rhbz#1036758 - SSSD: Allow for custom attributes in RDN when using id_provider = proxy- Resolves: rhbz#1034050 - Errors in domain log when saving user to sysdb- Resolves: rhbz#1036157 - sssd can't retrieve auto.master when using the "default_domain_suffix" option in- Resolves: rhbz#1028057 - Improve detection of the right domain when processing group with members from several domains- Resolves: rhbz#1033084 - sssd_be segfaults if empty grop is resolved using ad_matching_rule- Resolves: rhbz#1031562 - Incorrect mention of access_filter in sssd-ad manpage- Resolves: rhbz#991549 - sssd fails to retrieve netgroups with multiple CN attributes- Skip netgroups that don't provide well-formed triplets - Related: rhbz#991549 - sssd fails to retrieve netgroups with multiple CN attributes- New upstream release 1.11.2 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.2 - Resolves: rhbz#991065- Resolves: rhbz#1019882 - RHEL7 ipa ad trusted user lookups failed with sssd_be crash - Resolves: rhbz#1002597 - ad: unable to resolve membership when user is from different domain than group- New upstream release 1.11.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.1 - Resolves: rhbz#991065 - Rebase SSSD to 1.11.0- New upstream release 1.11.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0 - Resolves: rhbz#991065- New upstream release 1.11 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0beta2 - Related: rhbz#991065- Resolves: #906427 - Do not use %{_lib} in specfile for the nss and pam libraries- Resolves: #983587 - sss_debuglevel did not increase verbosity in sssd_pac.log- Resolves: #983580 - Netgroups should ignore the 'use_fully_qualified_names' setting- Apply several important fixes from upstream 1.10 branch - Related: #966757 - SSSD failover doesn't work if the first DNS server in resolv.conf is unavailable- New upstream release 1.10.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.1- Remove libcmocka dependency- sssd-tools should require sssd-common, not sssd- Move sssd_pac to the sssd-ipa and sssd-ad subpackages - Trim out RHEL5-specific macros since we don't build on RHEL 5 - Trim out macros for Fedora older than F18 - Update libldb requirement to 1.1.16 - Trim RPM changelog down to the last year- Move sssd_pac to the sssd-krb5 subpackage- Fix Obsoletes: to account for dist tag - Convert post and pre scripts to run on the sssd-common subpackage - Remove old conversion from SYSV- New upstream release 1.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0- the cmocka toolkit exists only on selected arches- Apply a number of patches from upstream to fix issues found post-beta, in particular: -- segfault with a high DEBUG level -- Fix IPA password migration (upstream #1873) -- Fix fail over when retrying SRV resolution (upstream #1886)- Only BuildRequire libcmocka on Fedora- Fix typo in Requires that prevented an upgrade (#973916) - Use a hardcoded version in Conflicts, not less-than-current- New upstream release 1.10 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta2 - BuildRequire libcmocka-devel in order to run all upstream tests during build - BuildRequire libnl3 instead of libnl1 - No longer BuildRequire initscripts, we no longer use /sbin/service - Remove explicit krb5-libs >= 1.10 requires; this platform doensn't carry any older krb5-libs version- Enable hardened build for RHEL7- Apply a couple of patches from upstream git that resolve crashes when ID mapping object was not initialized properly but needed later- Resolves: rhbz#961357 - Missing dyndns_update entry in sssd.conf during realm join - Resolves: rhbz#961278 - Login failure: Enterprise Principal enabled by default for AD Provider - Resolves: rhbz#961251 - sssd does not create user's krb5 ccache dir/file parent directory when logging in- Explicitly Require libini_config >= 1.0.0.1 to work around a SONAME bug in ding-libs - Fix SSH integration with fully-qualified domains - Add the ability to dynamically discover the NetBIOS name- New upstream release 1.10 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta1- Add a patch to fix krb5 ccache creation issue with krb5 1.11- New upstream release 1.10 alpha1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0alpha1- Split internal helper libraries into a shared object - Significantly reduce disk-space usage- Fix the Kerberos password expiration warning (#912223)- Do not write out dots in the domain-realm mapping file (#905650)- Include upstream patch to build with krb5-1.11- Rebuild against new libldb- Fix build with new automake versions- Recreate Kerberos ccache directory if it's missing - Resolves: rhbz#853558 - [sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir does not exist- Fix changelog dates to make F19 rpmbuild happy- New upstream release 1.9.4- New upstream release 1.9.3- Resolve groups from AD correctly- Check the validity of naming context- Move the sss_cache tool to the main package- Include the 1.9.2 tarball- New upstream release 1.9.2- New upstream release 1.9.1- require the latest libldb- Use mcpath insted of mcachepath macro to be consistent with upsteam spec file- New upstream release 1.9.0- New upstream release 1.9.0 rc1- New upstream release 1.9.0 beta7 - obsoletes patches #1-#3- Rebuild against libldb 1.12- Rebuild against libldb 1.11- Change the default ccache location to DIR:/run/user/${UID}/krb5cc and patch man page accordingly - Resolves: rhbz#851304- Rebuild against libldb 1.10- Only create the SELinux login file if there are SELinux mappings on the IPA server- Don't discard HBAC rule processing result if SELinux is on Resolves: rhbz#846792 (CVE-2012-3462)- New upstream release 1.9.0 beta 6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta6 - A new option, override_shell was added. If this option is set, all users managed by SSSD will have their shell set to its value. - Fixes for the support for setting default SELinux user context from FreeIPA. - Fixed a regression introduced in beta 5 that broke LDAP SASL binds - The SSSD supports the concept of a Primary Server and a Back Up Server in failover - A new command-line tool sss_seed is available to help prime the cache with a user record when deploying a new machine - SSSD is now able to discover and save the domain-realm mappings between an IPA server and a trusted Active Directory server. - Packaging changes to fix ldconfig usage in subpackages (#843995) - Rebuild against libldb 1.1.9- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- New upstream release 1.9.0 beta 5 - Obsoletes the patch for missing DP_OPTION_TERMINATOR in AD provider options - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta5 - Many fixes for the support for setting default SELinux user context from FreeIPA, most notably fixed the specificity evaluation - Fixed an incorrect default in the krb5_canonicalize option of the AD provider which was preventing password change operation - The shadowLastChange attribute value is now correctly updated with the number of days since the Epoch, not seconds- Fix broken ARM build - Add missing DP_OPTION_TERMINATOR in AD provider options- Own several directories create during make install (#839782)- New upstream release 1.9.0 beta 4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta4 - Add a new AD provider to improve integration with Active Directory 2008 R2 or later servers - SUDO integration was completely rewritten. The new implementation works with multiple domains and uses an improved refresh mechanism to download only the necessary rules - The IPA authentication provider now supports subdomains - Fixed regression for setups that were setting default_tkt_enctypes manually by reverting a previous workaround.- New upstream release 1.9.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta3 - Add a new PAC responder for dealing with cross-realm Kerberos trusts - Terminate idle connections to the NSS and PAM responders- Switch unicode library from libunistring to Glib - Drop unnecessary explicit Requires on keyutils - Guarantee that versioned Requires include the correct architecture- Fix accidental disabling of the DIR cache support- New upstream release 1.9.0 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta2 - Add support for the Kerberos DIR cache for storing multiple TGTs automatically - Major performance enhancement when storing large groups in the cache - Major performance enhancement when performing initgroups() against Active Directory - SSSDConfig data file default locations can now be set during configure for easier packaging- Fix regression in endianness patch- Rebuild SSSD against ding-libs 0.3.0beta1 - Fix endianness bug in service map protocol- Fix several regressions since 1.5.x - Ensure that the RPM creates the /var/lib/sss/mc directory - Add support for Netscape password warning expiration control - Rebuild against libldb 1.1.6- New upstream release 1.9.0 beta 1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta1 - Add native support for autofs to the IPA provider - Support for ID-mapping when connecting to Active Directory - Support for handling very large (> 1500 users) groups in Active Directory - Support for sub-domains (will be used for dealing with trust relationships) - Add a new fast in-memory cache to speed up lookups of cached data on repeated requests- New upstream release 1.8.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.3 - Numerous manpage and translation updates - LDAP: Handle situations where the RootDSE isn't available anonymously - LDAP: Fix regression for users using non-standard LDAP attributes for user information- New upstream release 1.8.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.2 - Several fixes to case-insensitive domain functions - Fix for GSSAPI binds when the keytab contains unrelated principals - Fixed several segfaults - Workarounds added for LDAP servers with unreadable RootDSE - SSH knownhostproxy will no longer enter an infinite loop preventing login - The provided SYSV init script now starts SSSD earlier at startup and stops it later during shutdown - Assorted minor fixes for issues discovered by static analysis tools- Don't duplicate libsss_autofs.so in two packages - Set explicit package contents instead of globbing- Fix uninitialized value bug causing crashes throughout the code - Resolves: rhbz#804783 - [abrt] Segfault during LDAP 'services' lookup- New upstream release 1.8.1 - Resolve issue where we could enter an infinite loop trying to connect to an auth server - Fix serious issue with complex (3+ levels) nested groups - Fix netgroup support for case-insensitivity and aliases - Fix serious issue with lookup bundling resulting in requests never completing - IPA provider will now check the value of nsAccountLock during pam_acct_mgmt in addition to pam_authenticate - Fix several regressions in the proxy provider - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#799031 - --debug option for sss_debuglevel doesn't work- New upstream release 1.8.0 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental) - Include the IPA AutoFS provider - Fixed several memory-corruption bugs - Fixed a regression in group enumeration since 1.7.0 - Fixed a regression in the proxy provider - Resolves: rhbz#741981 - Separate Cache Timeouts for SSSD - Resolves: rhbz#797968 - sssd_be: The requested tar get is not configured is logged at each login - Resolves: rhbz#754114 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - Resolves: rhbz#786957 - sssd and kerberos should change the default location for create the Credential Cashes to /run/usr/USERNAME/krb5cc- Change default kerberos credential cache location to /run/user/- New upstream release 1.8.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta3 - Fixed a regression in group enumeration since 1.7.0 - Fixed several memory-corruption bugs - Finalized the ABI for the autofs support - Fixed a regression in the proxy provider- Rebuild against PCRE 8.30- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta2 - Fix two minor manpage bugs - Include the IPA AutoFS provider- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta1 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental)- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - fix netgroups and sudo as well- Fixes a serious memory hierarchy bug causing unpredictable behavior in the LDAP provider.- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- New upstream release 1.7.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.7.0 - Support for case-insensitive domains - Support for multiple search bases in the LDAP provider - Support for the native FreeIPA netgroup implementation - Reliability improvements to the process monitor - New DEBUG facility with more consistent log levels - New tool to change debug log levels without restarting SSSD - SSSD will now disconnect from LDAP server when idle - FreeIPA HBAC rules can choose to ignore srchost options for significant performance gains - Assorted performance improvements in the LDAP provider- New upstream release 1.6.4 - Rolls up previous patches applied to the 1.6.3 tarball - Fixes a rare issue causing crashes in the failover logic - Fixes an issue where SSSD would return the wrong PAM error code for users that it does not recognize.- Rebuild against libldb 1.1.4- Resolves: rhbz#753639 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758425 - LDAP failover not working if server refuses connections- Rebuild for libldb 1.1.3- Resolves: rhbz#752495 - Crash when apply settings- New upstream release 1.6.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.3 - Fixes a major cache performance issue introduced in 1.6.2 - Fixes a potential infinite-loop with certain LDAP layouts- Rebuilt for glibc bug#747377- Change selinux policy requirement to Conflicts: with the old version, rather than Requires: the supported version.- Add explicit requirement on selinux-policy version to address new SBUS symlinks.- Remove %files reference to sss_debuglevel copied from wrong upstreeam spec file.- Improved handling of users and groups with multi-valued name attributes (aliases) - Performance enhancements Initgroups on RFC2307bis/FreeIPA HBAC rule processing - Improved process-hang detection and restarting - Enabled the midpoint cache refresh by default (fewer cache misses on commonly-used entries) - Cleaned up the example configuration - New tool to change debug level on the fly- New upstream release 1.6.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.1 - Fixes a serious issue with LDAP connections when the communication is dropped (e.g. VPN disconnection, waking from sleep) - SSSD is now less strict when dealing with users/groups with multiple names when a definitive primary name cannot be determined - The LDAP provider will no longer attempt to canonicalize by default when using SASL. An option to re-enable this has been provided. - Fixes for non-standard LDAP attribute names (e.g. those used by Active Directory) - Three HBAC regressions have been fixed. - Fix for an infinite loop in the deref code- Build with _hardened_build macro- New upstream release 1.6.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.0 - Add host access control support for LDAP (similar to pam_host_attr) - Finer-grained control on principals used with Kerberos (such as for FAST or - validation) - Added a new tool sss_cache to allow selective expiring of cached entries - Added support for LDAP DEREF and ASQ controls - Added access control features for Novell Directory Server - FreeIPA dynamic DNS update now checks first to see if an update is needed - Complete rewrite of the HBAC library - New libraries: libipa_hbac and libipa_hbac-python- New upstream release 1.5.11 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.11 - Fix a serious regression that prevented SSSD from working with ldaps:// URIs - IPA Provider: Fix a bug with dynamic DNS that resulted in the wrong IPv6 - address being saved to the AAAA record- New upstream release 1.5.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.10 - Fixed a regression introduced in 1.5.9 that could result in blocking calls - to LDAP- New upstream release 1.5.9 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.9 - Support for overriding home directory, shell and primary GID locally - Properly honor TTL values from SRV record lookups - Support non-POSIX groups in nested group chains (for RFC2307bis LDAP - servers) - Properly escape IPv6 addresses in the failover code - Do not crash if inotify fails (e.g. resource exhaustion) - Don't add multiple TGT renewal callbacks (too many log messages)- New upstream release 1.5.8 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.8 - Support for the LDAP paging control - Support for multiple DNS servers for name resolution - Fixes for several group membership bugs - Fixes for rare crash bugs- Resolves: rhbz#706740 - Orphaned links on rc0.d-rc6.d - Make sure to properly convert to systemd if upgrading from newer - updates for Fedora 14- Fix segfault in TGT renewal- Resolves: rhbz#700891 - CVE-2011-1758 sssd: automatic TGT renewal overwrites - cached password with predicatable filename- Re-add manpage translations- New upstream release 1.5.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.6 - Fixed a serious memory leak in the memberOf plugin - Fixed a regression with the negative cache that caused it to be essentially - nonfunctional - Fixed an issue where the user's full name would sometimes be removed from - the cache - Fixed an issue with password changes in the kerberos provider not working - with kpasswd- Resolves: rhbz#697057 - kpasswd fails when using sssd and - kadmin server != kdc server - Upgrades from SysV should now maintain enabled/disabled status- Fix %postun- Fix systemd conversion. Upgrades from SysV to systemd weren't properly - enabling the systemd service. - Fix a serious memory leak in the memberOf plugin - Fix an issue where the user's full name would sometimes be removed - from the cache- Install systemd unit file instead of sysv init script- New upstream release 1.5.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.5 - Fixes for several crash bugs - LDAP group lookups will no longer abort if there is a zero-length member - attribute - Add automatic fallback to 'cn' if the 'gecos' attribute does not exist- New upstream release 1.5.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.4 - Fixes for Active Directory when not all users and groups have POSIX attributes - Fixes for handling users and groups that have name aliases (aliases are ignored) - Fix group memberships after initgroups in the IPA provider- Resolves: rhbz#683267 - sssd 1.5.1-9 breaks AD authentication- New upstream release 1.5.3 - Support for libldb >= 1.0.0- New upstream release 1.5.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.2 - Fixes for support of FreeIPA v2 - Fixes for failover if DNS entries change - Improved sss_obfuscate tool with better interactive mode - Fix several crash bugs - Don't attempt to use START_TLS over SSL. Some LDAP servers can't handle this - Delete users from the local cache if initgroups calls return 'no such user' - (previously only worked for getpwnam/getpwuid) - Use new Transifex.net translations - Better support for automatic TGT renewal (now survives restart) - Netgroup fixes- Rebuild sssd against libldb 1.0.2 so the memberof module loads again. - Related: rhbz#677425- Resolves: rhbz#677768 - name service caches names, so id command shows - recently deleted users- Ensure that SSSD builds against libldb-1.0.0 on F15 and later - Remove .la for memberOf- Fix memberOf install path- Add support for libldb 1.0.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix nested group member filter sanitization for RFC2307bis - Put translated tool manpages into the sssd-tools subpackage- Restore Requires: cyrus-sasl-gssapi as it is not auto-detected during - rpmbuild- New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options -Assorted bugfixes- CVE-2010-4341 - DoS in sssd PAM responder can prevent logins- New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Solve a shutdown race-condition that sometimes left processes running - Resolves: rhbz#606887 - SSSD stops on upgrade- Log startup errors to the syslog - Allow cache cleanup to be disabled in sssd.conf- New upstream release 1.4.1 - Add support for netgroups to the proxy provider - Fixes a minor bug with UIDs/GIDs >= 2^31 - Fixes a segfault in the kerberos provider - Fixes a segfault in the NSS responder if a data provider crashes - Correctly use sdap_netgroup_search_base- Fix incorrect tarball URL- New upstream release 1.4.0 - Added support for netgroups to the LDAP provider - Performance improvements made to group processing of RFC2307 LDAP servers - Fixed nested group issues with RFC2307bis LDAP servers without a memberOf plugin - Build-system improvements to support Gentoo - Split out several libraries into the ding-libs tarball - Manpage reviewed and updated- Fix pre and post script requirements- Resolves: rhbz#606887 - sssd stops on upgrade- Resolves: rhbz#626205 - Unable to unlock screen- Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it- Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib- Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate - against LDAP- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- New upstream version 1.2.91 (1.3.0rc1) - Improved LDAP failover - Synchronous sysdb API (provides performance enhancements) - Better online reconnection detection- New stable upstream version 1.2.1 - Resolves: rhbz#595529 - spec file should eschew %define in favor of - %global - Resolves: rhbz#593644 - Empty list of simple_allow_users causes sssd service - to fail while restart. - Resolves: rhbz#599026 - Makefile typo causes SSSD not to use the kernel - keyring - Resolves: rhbz#599724 - sssd is broken on Rawhide- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code)  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYcacacacacacacacacacacsdededededededededeesesesesesesesesesfrfrfrfrfrfrfrfrfrjajajajajajajajanlptptsvukukukukukukukukukukukukuk1.16.2-13.el71.16.2-13.el7 sss_debuglevelsss_groupaddsss_groupdelsss_groupmodsss_groupshowsss_obfuscatesss_overridesss_seedsss_useraddsss_userdelsss_usermodsssctlsssd-tools-1.16.2COPYINGsss_rpcidmapd.5.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupdel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_override.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsssctl.8.gzsss_groupmod.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupmod.8.gzsss_rpcidmapd.5.gzsss_debuglevel.8.gzsss_groupadd.8.gzsss_groupdel.8.gzsss_groupmod.8.gzsss_groupshow.8.gzsss_obfuscate.8.gzsss_override.8.gzsss_seed.8.gzsss_useradd.8.gzsss_userdel.8.gzsss_usermod.8.gzsssctl.8.gz/usr/sbin//usr/share/licenses//usr/share/licenses/sssd-tools-1.16.2//usr/share/man/ca/man5//usr/share/man/ca/man8//usr/share/man/cs/man8//usr/share/man/de/man8//usr/share/man/es/man8//usr/share/man/fr/man8//usr/share/man/ja/man8//usr/share/man/man8//usr/share/man/nl/man8//usr/share/man/pt/man8//usr/share/man/sv/man8//usr/share/man/uk/man5//usr/share/man/uk/man8/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -m64 -mtune=genericcpioxz2x86_64-redhat-linux-gnu POSIX shell script, ASCII text executableELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=d26bf1db5b5bd06808198d21819edd74bf75a360, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=983db0da597888902d08a1fb61d4b734cd5b1b2f, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=74128709f7d1df0b14bc75cb755c7a24bbf51f6a, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=714cd1e519d51550aedd89725487fb0c44753186, strippedPython script, ASCII text executableELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=9c0c2c612f1ffac4dd4b3a5b967c15f97f0a92df, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=177971f450a24edaf0fb39dde024781bf5f707a6, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=933f1de2b1d7c867502b2ba57dea0913b43ec215, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=b75c8006e7edb0d6f9e260d6ec55259aa60ad4d2, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=c66a1779a42aabb11242f15244905adc6bdaa604, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=0ba7ff71dab8ef4a5fa12cc44b4eeb9c3db94e8f, strippeddirectoryASCII texttroff or preprocessor input, UTF-8 Unicode text (gzip compressed data, from Unix, max compression)troff or preprocessor input, UTF-8 Unicode text, with very long lines (gzip compressed data, from Unix, max compression)troff or preprocessor input, ASCII text (gzip compressed data, from Unix, max compression)troff or preprocessor input, ASCII text, with very long lines (gzip compressed data, from Unix, max compression)*S|#Oz))))))+,+5RR6R"R RRRRRR3R%RRR R&R7RRRRR#R R,R*R-R+R)R(RRRRRR!R.R8R5R R4RRR>R6R RRRRRR"R3R%RRR R&R7RRRRR#R R,R*R-R+R)R(RRRRRR!R.R8R5R R4RRR>R6R RRRRRR"R3R%RRR R&R7RRRRR#R R,R*R-R+R)R(RRRRRR!R.R8R5R R4RRR>R6R"R RRRRRR3R%RRR R&R7RRRRR#R R,R*R-R+R)R(RRRRRR!R.R8R5R R4RRR>RR"R6R RRRRRR3R%RRR R&R7RRRRR#R R,R*R-R+R)R(RRRRRR!R.R8R5R R4RRR>R6R"R RRRRRR3R%RRR R&R7RRRRR#R R,R*R-R+R)R(RRRRRR!R.R8R5R R4RRR>R RRRRRR6R"R3R%RRR R&R7RRRRR#R R,R*R-R+R)R(RRRRRR!R.R8R R/R5R4R'RRR>R RRRRRR R6R"R3R%RRR R&R7RRRRR#R R,R*R-R+R)R(RRRRRR!R.R8R R/R5R4R'RRR>R RRRRRR6R"R3R%RRR R&R7RRRRR#R R,R*R-R+R)R(RRRRRR!R.R8R R/R5R4R'RRR>R$RRRR6R"R RR2R1RRRRRRR R3R%RRR&R7RRRRR#R R,R*R-R+R)R(RRRRRR!R.R8R5R4RRR0R R RRR>?7zXZ !#,z] b2u y-iSqoyWam8K~ڏhrubG>”8n+.&هFd*r4lBi|h;o7T&@B8ih9)N# XNV]3H7(aFP$璷SuXJD;$MbƕK_&*C!9^&u'+%A2aL aBbSjdST! w#0Rd2JclS.t"pnG2e?5$҄a|gI짤vWY5.AuS@L@ T(<7+arK@$̕K]e{!{ n &049a:]*?hg?2tMGU$Y|! (0.Uʌ Uk$\o$ڝx冀h^};єڞN7w&";!* Ln\R5h}{tzyڒB(O˧׋]ii;8MFN #"%Xx=ΛXE2^XC/2`J(Pq騸C#$ L޿L?~LmSHDMJ`-(6⒠f{NvwI^X3^i4OہǀԸs'b*ا"~cPbߡZ_[0eqj lg\Wu =B<-XCt Qz^ufPNFKe scMÞz$}9#=zX3;r4$eB\mn: 'AeHZ.h.ju$҂J9@`f<~- K FknM"M~_§-(ne(TO* >F / mhcpɭ#ρu5@<tj&o'e E+WĴ4P67doWٜV?vZ;Oq0IZ \n ShwMO>PJR +x;o ͲI_%T*⾾0DV\I̓nifV(zJ2d-}d1<ݢ.IQ" 9)~Pz4rΌ3yODL-V|rվ%2i4Hp.ޠ]ئRD8KAH}rx)k| 2zQ): &| ?*&l<{鹚#.g%W>,mYo#{$( +9ArK.~/L۴6O$hE|icK ZS#,إiaPrÆBkXUgG 99 Tk AŽ}QK#Ȟ>niֽu(w.LoR1[H^J87093Bq8<1KwOC9ZbmXws{3 䄗8 ̢M I1xs1)j(.}9yn^/eK|ݵpaeUp; 2bUczۂ0z$dޖkPbW$ٙT]è)fz*"B~W"gMn1޻LWpfsUDtL22_M_*o'C,QF,X}/ B/ey$0]w]|qkCPܦ؜~RJ&IʃztKҏqCOݟ{q=.pPn|&yjN@;vt?Mj4 rE7WIPuO&/3ΞsP-*?q~Gx]̰WsfP[c.b2S&}jg#s#T-!c"U8wWÍC\JەK-CymG0pQ$h "\PfؾM,bK %l`SAg"Pa1(w?.Ж} ǯso>;H5Gv۹$J1Jmg6%]Բ=6 OMaӜZ2GJ%ZD 6-m9~'VAOlU@ 9J!o(~'^wƉa]B~g*:nJg{gb iMIT!c܈}.g:uD3nxzjP9J#0*Ha(nt$]B YCT'2UhL;yWQb:ʠ(RӖ1\=hvN3T}qp ]" WX 5MAU>VE"帑}]XQiԹd[r'#53^HBAF|(R)?;y/K6ƹYQA` -/H܌2a?v("EcT^jazOF6b &[^!؃R'.zx|4xs8L\%Gk~tk$(uwΫ2D2ʵIVzKW2 5, GrslVؙzl~<{b^jJLF1?‘7 z ]!OﻁS8$8HVhAabs%P6Iru[.5J`(zXs(uĎqR԰Ia!VQyI Y|:X@# +^YzF'S1N pEUU"<'ҹr7Fov'S"9 <.q_HAh KAN*ԣLd|Osϼ8‚GD@$'/JhO}Urp,ïӼ(i`8Шj zo7Լ1,)Bm$1+_bAx56Mu731,9.-F6u'tmU:I%@5c=TnpIo)YtzoWiZO.,ZAŰoڥLښto>L,sy!G L׿"3p,=-F͋c}"m\B \VHts|^{&m7"h_ `Hd@k`ͰØ}~6!(պ1Y#q:o *p 2h3z+"JhVԡv|\VDߕIWƠL̈́44/Vs.'XFby^.,xPqn_`f~31KOB;UaiĚ :`5hMe~"-?bm~gкbVu!y5+1,Gj)N^hC!Kk/*vwFl Ro(XTZ/tԢB5j4[)aVJfΛ^6gLVT }M;Dq%} ]!8\/-V .='g{@/Y,Ag 0io%}pBLrd(@^&{ه\?cau6K:b+H)&"O-oE뾴xjtG!ȊoFJ2Ufv]P'Ak_.F Jb'E]UC_ZF,Ӧ:iK:rh]j˿CqcmMWI JkT LrlzyމqUHrUG}ΙxĽ)Kt>\DܶKnF8+[\cOoXzgv/͇׻Ac5{ 3wȹsA2}60Aayqǡ\xe`r tCwH.Ycy/7Cg ޴PoF{7A-O>ajU/# ƍ.\O,(RG3U٤VsЯ랍~~&zh0Qq՘m/m<@ qQ0$˹S <1jckRL`/"$̽+ >=6o3E@JWUst'TPl؞m79:YMP ޝJR?e[|gKi ݨkcgHKF-RwBR~.jdž{+ I\C5Cv1pl+|̾W{Kk3J94:&r<% OE#`N!?[kd0Π}F6x9ZiU2{ݙ:Ϫs+Tg&1)x%FX獶; o!r8# d}(⢘ҧv7F2Bf0JsQ6]f4G`0PYYr*c~Vܛe4b.L8q{OXv;i~" B˨ ?tP~0-Nb#obG D7φZ#ŗS%._1厾?[g&Hu-B%͝-#ץ7k)Ptj^\ *18;!9#.Toߊg!gGjKL%[[4EJ5V6< d(VlJd}Snt(S;&v|$MZΡoG_3"٤+yKS0f9f69x={+H2OzVvnkᩜr1|uP[0 >;ܰ+V"pc%1uq!sFe%M4y Q*R?/MPD!Te]T-Ӆey?bVBQ`5H{6K[H {=Rٚ{ꏠ *M͕rV\/x@2p 2w>G Nc.-TʒtcA}Ҭ#hUdYS4600GSv|P"G\wp{XI ;KJD J%;PDm`BlƈDW=?N|5E,V]gtT17FYϠR)m-5(H{ɛQ bJ=Sɋ>VjO'NHGACK|]?:VpO͖.ŎMhEUNJ7fK꾗chK<%*qj1.0̄Z'/=s dI Q.x QTjQ^ ߪv|\Kgk٪Δ_ BD,>-@36 a*{~ܹ{F^Z( փMp3 *Uŷ'yz{0Ί9;_*r‡HO yq]EwYjZXǏթt2Xcz ʹ꾉RGA$˄ٿM4Pk3Gxžr4}Ietı#(%E"eJ)Eg G \yY +j/pB } 6SR<Mu R~pF 򕳷?aNS ]irꓝoJ4"(}7QuHP>~ú1Sy+Vk0lh?NIByr} & AֻnŠDH]XFwNŖruZ_Ɠ1d h%.JL!OA Mi)UiYeO?|u Zhu!%k mSG ZRB̋KG#YTBǙugܲ9P. }΍_hcFuܙ,[5*_V!-2:Sb$b@8(os5}1}Q-؁NM3 76Y5#nb•t/swzŨZ,25ť'GfWa1}:r~kQreC:W~ר;,Ş]N'Ώ%UsiC𯺡'.t up GK3 n֘+%mVJ+$c(Whڏd㓅l|ZsL_ <$8:{ ӂVoI&B+v, Иp9Wd0bI; o:E|!&p5*\,i ƏgI,u4<}CEH1zOo0Mt̿5XmenRkU@e ŏ앎2cO#,mR#@[ %&or_)0Cޢxfts3Ig?fi<ҔW.0S~HUVﰭAjKЕh7X!fVqx+z=2qH%{HqHǬ)NTkWm:2ίg eyi=u$c!\W0vA+-mWw !oˬ}SQpVu(=S+wn[φ^H/7ōalar:bۭk^c"b\}]䊆 P!>.S6-$ G}yrfsOV*'ǣTi 1o͋X8G mDŽPkaYշQ{yz'i=VٱngxMg]Buޜ@܇pgyWywou;CTULzGdvW}܌+5xTNЂӏS-דWܯpg:W#I`,g~,3F%~]3:-כ*'?0Ƴ4YlYܧ[E)xK h84 )d$X/}B y' `1w*@DJ˝Ş~wN\hdA1Eo@qqM[YG-LQE@i~;a=#`^lyێFMd41cMR+Kn]93wGhn3)^ =Gf#XPP:0'قEՓÆA9sBE\%ʶzz ާp Ne|7W"(޺ߙvnŒ 0 ^`9Kekn3!۔:;LnibhJ]mUcMaI O.$̱+GV;Gge)-/E E(wpyJYB!M3 simByFv0r6D_A٢%"xGa6:}o-l9 W3h`o~PUKBtY NuhY3}cK-6 &~=?ofbAP Qj ' ycwy K-l/?0cTn!ʵH Š!TtwAV۸[c juƷ1mrŅ/w_:j3W/ 2 \mc_8 s7{0®S-yePfb@4^qI0 q sNec:qb  0ᝲZ“sWA,]#0ώ0⭽*uqmWRC..ʏ~Wx1+V|w*"]jل}3<9 xELeL{;L4-kqM"QG>ˆ˝R)^^⩬7f1TSaq^+IkMWE <6$.H8W{uIY$ƥ!SaVRl$& v+4{H?HM>L9}0bWM/G*!#MHS mpv6g C_uvTAYir^xFFkWҿfkO$kCxC#Ţxۃ-+dzFe!3z(TXsWYn7T-K"^ /'Wwd_Ÿ W o,~+0[FR7PZqv62NDP5ёVI`2|w_ҨS$;c&JnF;zˬAwPCdY2cv3k"֘LP9ݠ+dɆoCnA~6f&-KVdT鬠y=աit\) Gƛ 28_K`+QFo`8aVBXqcwdXSdU_sxK jFǔ:wDntݸY?ХzdV KY詇Eƾe_=!˗vN@Ņ,Nwk$P߆kqU,8 Ô|cbnAQZU^X5VK,戤 n3t1ו/!4]JzId^tvvR~),Y--zl3Fyӳ vV_f>h^+eY= 43.j)^ L0,rC2${`V2ܪsU;ule'#X{W^*VNFJpR 8:<…zlTcMN]>Xƪ└IW@WyӑGts pSM4N9pycΒ68F|*""5dW))rf aqN21`@"Lw%bKˢ,dBK -O1(xB@¡q{c>aDWb2J|wyE ՕhwSe,Y7tBJM8kP0v{\+WQVgitvTzۜ, 2jCa۝?F`lW y+^˹ŬyIq 2X꺏B3qg^(PuV&Z]C<*>x: 2@y8I3m5\4z`s(S̹.4w6"I[u$\hUrxqIڗygh٧sEPw" #뾕ÚFFT"&ej i_g7 Σi7lj+^jz2ȍ@}a 2oՔC0Q!lh^n rBT_^C!u dt_@f!t;:HmJfæX"e[s6S#CqVVupwzfFZG|z-gٍ\忓fԾzyZhnz H,k/4Wބ% <&=&@-968⦣Q|ScrYMȇ k3(mPA+uδejkd0P)>ggXF#V~Xu m L)d@D `o8QԋU0f8ߏ$=RbHP6'! b\V9%81Xm:zJO)Ps|uRUlnSzJJS Ca!2\|l\ :YVϐܪwGt!KBp? Ju'ӡtE$ pt<[s6]ٟ xɍ+4Ǥ;?p ΋%ϊ+X ¼ğk9̎HtF80 (tkz&9 ^=2n um#b89q`RE? y0aGNm#MU<SYIQ{ /92 ,SX~WyN(Lkn o~8~٢*G^y 2v) f j 㴅dUgF-qy).q/%~@|NYB=<.UbC傒~Fg0ƄI]tQeɡG$ ԑQ??Wf "=[pZu?2$ܧg b"!IXK0VDkvA j_[]?s^`(Jbbq87]"RwZ:l|$X^EF~{YqDz##TY0*)`M}h1Br &w:LǻIDwWd־3&ٔ7HazDP,C֬D/^I ,$b9:ad楠%'OF%=i2>+n(INNJd2F4غG%TΔj0VfiWfTްO)X7;TWS?{d}'{  s ;a1p{g;wBWOܴY2HS{$Yg3lƠvTYW6r`v_C-+HwH^֛<\Whmeݼ<ͽ`m;T!NECϾwցSnّ= k!$Ȧ%t3xe@>u8Psv\݃YDPN͛}Lf:/sʡWE%kF&-$>KMX x4ޑA0)qM3!i9#5Kf4fJcbP/*tZQ1'$;A0FVԭi q5uEb~n ܲa_c}ZHk7x%^m ]+9L2GE0TYZAW~f9#& M,2Y;LȆ&:fwۏl.l|3+ڃhYUraZʣhw&r {Rfo=o Do 3lv r)"약ه)8 멏 C~z9}Z0'$4=p|<+{{BHy;y ԧUZ~`ڋctJ*,2Rh^Kr=:;5`*dyak3\Ϛ]K>!rzq?߿hED_Zgs@l\*(`p!fQW1e9hR#C:\k'3㈅-2qda{Z,X D9K "DK6QyL]b?]?1s\[N!B)$ i}o'xmWDdߠ9's%6cFqANQڧ(Pf*N]4i4݅xa~vB7)PT-W~ N  8 Rh&^QpB\xa6`MxiM"j>]YO5AF]gEqDH :_irk)IƘ ŌZQ+sY^} "[3:rDqgMJyRs2ҍR踜U #3'G0#e׆;7e.pyzG(ؐDw߬J^W 6/>rUYKZk{ R|]ƣez|/o a zw Kh WAСNQFW!)Ҁѡ@,ܓ[,EͨA+`2FВw"4fa(f5iq 5S?Nm:Y7Y]pPʸ0z ^ ԸJ'FBThYN&qPb S85Mc37N<`ߥ:f%B(5n2|N߉ư0Ems܀є7 Ng&<gٿÒa,kڌI3΁h?p cNͺl@kHK\E,aP$2p8qFMQHhsN9b4Ι \t>ڬ eT5m09.te blpq X]QWjizc84NY(j+\Nw;!V1{;0oeqѓd⑲$Ω8^UVhDZ[6ҲN־ƍzҹww!q4UjBK'@aJ6 Hl5q&??to+h.J 7pqNxizHh="!`Kkq|[ۓ`zu. =I!3>2U໺laav?\B,cUÇ)4Y?etabb=Jp"%&g:Χ Htg36/O3ǀӧ /Cp)BhҌ{"BB$Y$lz´0j -:6v  dSoX̝A&{#q=s5XE&HC92?0œIv.Z!8 pNYou(EW)5U*$Q"8ö6w覯lb%9U eˬ_p,0m c =B$!UcJ8w?E/Mwv.NHCjO(9<%#ZwBcZ 1~HohCO] xoMBpwUq3tgʱtTfk{P=*V@> 8q4YrHeQqƞO\o'{vxvZ٣ň7, Sq9\M AX{PJ8ھ$u>%[ӿuLɊ#ΧcYPYoZn GX,rPL4(8,c \ٯ_;W[6;DFv_KK-SdNGMAu%`h),QLIH6zK':Yf4uA '"3 (K2, [XKUDZfJRQQ;%HMH 해HV.T0o r,D]\̉Pɨ&(|< Kn]bm#^ʴ6g2uOvs36INUp!i.ETo W|>ƫ>]pShSfdc]jzNL]{Rg0nuC"(9ImŏkH[m<ODy%oj'Ŭ[Ƚ~8ɄP'D6nd򢹔l+&.AҥP1ZP`fW|PRO30 ܢvxyLWbFԦO1igQ^uM5Ute~ͧVy?DX&1- ct0[<@V$wd\x1jxIٙ}Zn66ީQ %q{\<_ԵX*_I6:MdQ~~gnjT똒>{_2^j ͹lռQ[=69n#YFfkM~:Ӊ_=GS.`, C, …,N Aow; G_t]@+fxw/5ꂠ%ِ} " pMkƱ%2t@9Gr9_)XoF~%=K9J=Px61 Q pk4SHp ;FjHqh]j@ $9l)G1@Ffj#1"d2A!ksȊ$õ[ί Iq.?8RK]_?vvr[km&X6]P3M>Gl?v65^,sTB+*^kh]qUȑ$=B=|/hlff}3čIB~]QG#5໯pdq=j`+QYLWFMvj29-(:T zfڧ&p}夼,Y*ULSup=ow%/Yڗ!h0saM=zJڟ4wn()8rb8v< [H1|,D-Q]?'fFqXxWW. Vs3*/O1J"w_"i9 bY.y=iup:a.wĻ Vi$Gl >|(Y(M Z^qfVZԦ+U+W.VH8S YNI]ؽӫyT KLԶT"e7V'% pOx{(Z?dRpKe5({cޞ`YRs$fЯ曈],39 Q:EHy )RP@m+vO~8u[3e6\R'0|/$ȏ5N6kn@ ;S^e5\p:f m﬛یH+t C̋ v:^ oLwl3_8Hv 5{ },&d0ZB q 2MixNR&kUY>fӻ5CfvjCpǼz@FſV-NTBꦮavaSْ+&F`o8h~\ŕ3{SH`fx& VY/SjoCpRQxj2g27vpj5QKH}yw vJܰ߆JOH*e+E󺪄q W!ظy,bS`U[adVt6 Bvk¢n haU1yZ)gەCҭ#ek JüTYd/ϣqˤ:aNQh|VjcBBtsgtNS{#Iz@i_o,$5Vt>4u5Vl~=8qIj#sQcd;&DK>0`^ G?pA%N r phz" .No$rn"u]@ǽnqEh89lX!0j9>'˜|Ǐ>~C;'d1?C=(=9r.u=B55y$ƲP! LN9--3(`gXS =Ff9?t)ɓd @8P#0LKh,{lu~XlȱZVyFK=‹ JľƑ%Pa1v W7YBjVCJm$NZwۋڙ#aUaf6M)sCx˽@g\ò&)nJ9+ &6Zb HğZzRfΎ6Il)f^Hfe. 6{~2g>t62{[C.iuGɥɹp)vO9-4n3[g!q,7eh/ͺ>(HşL([%u`Yj6`6N~)+&[ޏE;"6KԕEA6Wsm~dP=0ZE1F7z.5y{HGʱd[zwZ[Ȕ%&T+c b` ZJsNQ+8bB*;֥B®:yW!y^⩤Wo EwZ cEiX gaȘJs$u]k/wdT-O[-*1>y(9NNEU@sܖF'\䳽8x@Bg в]2|DtUޢ#1WsxVק!l>E}jO5^8f{?(ucple`5)q%]%Mߌgu4mko9X"je\@FF ?Cn߳5IHjl%1497+mMP.qj߾ԗ5Gt֛hZ%ݼ6+ፚ8x+W5=G|yQg8ةg4d9@?Ӹ9F[wHKr ;LY?x=t OvWV nv)N(݂v 0#w"S fR 'wrI4Hz^KP1r~)#%)) Rў4Ŀ3>_2&7Ǚ6y=]I H2u0Iwn[]9"]i,;,l%Z or+a]?W6Fez?{լN< Yf(^]G6} v2˞/,.Lߴ+;yXѺZxgnKS{7/+e,w3nZP c"[6݊#tS)ݞY aktm!7XMi;Ӆld zjÞӲ<|G 8B 3> Kiup *wl3^Gx eYᇲ0c  fNiЫkd|,i"ڙkU#6 W;v;!ͱͫZv!yh>L/{R=-coqiKKP>;JyQm/:\}դeRJ_Z}7磞}YUFe?2FpXk&Ƶ& $lCRҐ!'RV2UBX%1͑%iv$7/V{![xX`x^0{JNj_tob(V,H\hDžІt|,QC CWpWw2 pf04۞]X&iRN&HD)Oy wqOFI5:s]~%3nWA[ 0m:<٥0k酛 g@O }K^lC!uOP9M=J Y{V/=F\C".KJK84f>e wڈjX>1?&GDk'LFT&z~2B{r d˾}yyJJ:Kv?h}MxCImw-Ԏ/}Dq" ֟[V^Um]y椂"qNѪNʒ;DA_JϏeo!IuцKKbvi| 6 MDZǻܬdUlH;^Non&\r8N$2ȾS! ࢠD[/Q= hs꧳OfLK$`dKFDDkiIڑ9*.W^K0/^P@LyDn2Ƽpاd^|`uYd R@UX2FЩ)U4Ke~AzP=1Uv~\YC3N߳ZрGVWtN І)S/sO?P}ۭ'I=,AnwӦ)]`4Au joim }q ѧsap]P3'oe$ܓ{VIAy.v:~;JP[y*L!kM7C$@ߦ毎7Xts%+͙[½$~^Rbn}ޓ|67x͈3d$}y>VuDH;הA܂bUڄVVh[ȈW5FDرP> 'QQB}M]%Υ5"a qjs7`8WI'fH*[nfYTSn 2תډx.  ioQ"ib Dv&&&uwns|eO=J}{ݮ?1Hو,&АVe\<^ZzUfU|17Uk4PAAD@?rPkO7V/A'*z atg~!ev&NYp6dKBtAQK[J},\lAFi\vŝI(6 RGɗ~e&7J^*j9r5_\' }7h/-=>PRA(ޡN8@8R,D'/ԣܖb)X}_cJĈ-9H0޳S*O(ǃ`sXjun9kϑꨞyp76og;,!%x;J^ *v2g>{nmex'Ъ z3%nSc~Te40Q%ҥW\eKzCL: UՊV\X6TO*KO} &SObq <>~D֎@+^ԙo$ub|Q'p{6ӷ>8[TZh՚u;B(yD+~UZ?;q\~it^ kjٍ"Ri1qol dՖ]!aT6 l>n+nTЕbݡbz5O;эx⁩ԇ,XWҧ&D4yr_'^7mGukF*3UL6>&bU{7E/fCgGMƹH7?NpT8QU*rXk;9Ptbg+{&#EeڏJ8yHFY6LQihU5 J5"o{U&e%)v-Ʃ9+;CX14bz1'In1MPًovvdiZ4dbn\iH 3Vs{Yh\"cJ QBÈg;E7OSw?a,hԣM `Ak[ /xS l5 56 Uy_o/կa͒'uђr1?l,sɛG"rjp5:@BQNas\1Vo%OZvأ$5n|.PPA/)%i EgW#Z4ks\E28HXbw$Vs5_^X%*!?b!ǨŬ@~\^&ԢZ+ 1`7'k"Aݎur7Yr(#Z~5sNiV=eiw1X[]_"& ulQ05/w#%2Mpaэw *X`?䬂k;)7Np؞>po;RTޜqPjo\~۵}r*PQe4Eq\:fu)^B]G?X$dZ(Ynnm5ͯAH֞C^8̕`,'V0՝R$y>Y{J0Pm {Tzdl7- _Hx^(pE~F1q=^e.jF*㩍Ue%;mQFYSi <(ѯfHMYqsxWWj8Ұ^b9UB{aʤ_̠,mDw4tOW[XWGs!]؟,f`!b ?}e]-E=H}Rԉ"\^URfGˊdrܑ|\c/z}p^{\"bMH5 aə-dߠY;! _ys8(Bwn7/&isʮ9j*1)]}QTN1OF3%GA}! Afg"UL+J(DfaMIBq &uo%0&ŅDzRE`udީshB"Um1zr҆5B>.œnEF8=+ai*JzK"⢥#_`xS/|5G&D y{ VJ< H*Lx+1NjX41z9 GN+C:u Q^{V 9/{""(kGK'jh H٢|;б'I$2*G2vV7 ~r] yڊ/q@ t\C4_$ME?֭*iU yKȻ.>ʗtֻK>NUL弑(/˨A܉B?ŽTH׭È|ma|cgbҀn ]zp6Oϕ{D>4&'-/ ڸ&~9E|-73:o~Q=}*+7 =x+I䬸 u34JO~+RM}QdX7.fζAx ͆A-C S~fw\Q ϧ5 S[1Al*h?x=MzOJq/, }^0 J^6芪k5_kyKT^HUFc }\쏤tS6 #١G}KB"fX Ҹ3M AGI5qu{Z!k|  rŢTw8"vue^kA\Z3;&{D XD`WZ3ebjfh.1*sRB^FmZ(8gd8.{NN#jmy565\oxĦIԟX 肵!RrBТe`a+E\Nړsd@EV/ ,}TEqIʏvc dcwg>0(v˥m| @/텁g)M? -X6 2SM_`A=&Hr;{@>#c* 6ű8Μ .|`ZV6 )?WdM4¿FP=%dG2 }FCr{ F]aQtر؄W7]_7|L2rFr5"7ow@ |MVC74{@@^Rw9($woH^&IX(igwFK+1M}_a.l ކ,lM/.5 *r)qT#^Z3b;";-\td L5%8_m@_ d9aJ'yA=.|B8dEO۩ >Ôrdk1)j"=02_%*dBfH:5Y5w}Ƀr}W <ˮ ^4Q,k.Jvx 9ԇr1;m;xp0>dx鶹{?BgRG2g<:>~@r[5";3qZ=^knҘ5E~CKruWF?=0VQ8djb)o6pM +!*wzaFBKb -EÄʄKڔe}Zԁ {08PZBWkj֭>rk( d:þz2f dƫ|. 8^_]sQ? -'šX6Ǜ?;`)ZpSZyr2cWnP%8.?HBat8ہ1Q8]! :M*"..*ׂhΎB$ P~j06JX#_9$ [cQvܠ~ g!ĸ3=B1 Ey>'<ސO;6Y*bDwz^7p5%vŴ2s!3MA+8B:XX{m$B1Sf-ˋP nۏX['Hp5pRzulfj(!_3q/k"W,+JD2{L:4-'x.FFQ-grlr8qyG0Np͖ZҺ\Nn1/t}~/$2;eAܓp!/L6ʚ`#16SV.dFK) =ӣCLu-6 2iCՐLGf/E(L` -&}6Mڕ'lpeYt3lh MȞwuN^ 򻾟>.>o6zs_;Ťkb'/XD1˔(7g#o(]~)@{{mҵJ]`/͢10^U)-8GLOjH' 8BI\4NBFʵE/HւëO;]s]7n u%m}v6 v绝u]cU7\\Wa DR%ץ JH`uNx9lGl}2ldlq*ނZ`+GA1,D:IJNꃤCY6*iw|XGwn Q yac*SF~Yõ+D 'w)W&]" -nfK0OCme |ǰKc|UCPk,=Z01p_\!O׷"OW&Ɖxu &业P^$ƂO qv û2a;'d5s0B*Ow9YZ/E=vԸR. 1;BGU9\s$XK[&#Y U;r]ٜDWE>9x2bv@eaRr-MV) |z*lA/I$p/!@")ZPyd"i$X 9)#$we 'dZ |>%۬\fxY^ M|cXͅ 8w z:0,L Jֿ(OgiV^zȑqH,0'ʜpnuJce*ұQxOPix~raL7A CVR%$^=TGಆU6;@!CهP4/e-9D`Oe}6y4NKc^` FȌ>}#{ϥa5Fꈷ<7-_)]w1U\mT<R@5hA0wp#;=]FKf[)jd9Z;WٕߣPŷXtΟ!f#kwSOEd w!)3Ø}?Q? ̦DmYӜ[ FHӔ 㥔Q#Bs<^.-\j&_b m㝒{-;ܠuk_ 3Qi8N[I1=^meka+D)"xc&?&qkgg SD7= W? FQƖz27z f9)gHSt /rF6{6uczM6َϗ!hVfy |Bq\f&m1ֆ:sEm^:aF N,8#F blD/D$s"_` CMpدvKSLp ٥G)>POZHXNc*XCc'~hj$ ؾglIK1fsD!^YhW PUy9lWkr\d8EՆclqђrg=r0D;rE@"ܗ@ɰUBS|C}.qT2D џPxuS͵}Qe?ߛXY@3nn<Um8N'̘7 ~FFIeHe$ƈ)OCºE ֡.nzqM~㜁,D1,kl=tjP 'H ҺxakBC/<^AwOwv^R`+GZs|`Z?xOlPەP'}Y5$]H;ӠM-fQet==э,{K6G0;&1G MIMasw/2o롙5X"ϡ̴իwx|pY=f%h*Y.flvR JΜJDX(}w1C+vizUNlh&Y oѡ-tz:iѰd:j ) Zpis2mK姭UN7tDJ)sr-܃ΪQJUSiD^ӮWXTq>H=)[IUi؅DM#u€A1O^+*x^YZ_,m+d|?YW08zvϯ6$;Rb*ׁY3_]<i[y FYZ z%׃&G"şHGݛ}l*6ڛuKܭŎ߬x 8Ú9k Jع=w[2'wg'|AH}]jx_^Z>6 C/@Ԏĺb(cFQX hm=x}J~DHtT=}^kK$6/t;Nu>GKyKK[Id~^>2dJƯcA\dOҊ+nK8{YZ}%`5crikfjJ$9?`QCg3!cEV]?h{Yb!`kIG7^b]T9ږ6M[|  /J9t"{&?iYuE.$~X'^bi5GƸW2~Џ8dt vHR](W(MBCth{Tozri%(U n!cwLX\*O*lۮ<=LS. o'W5`0ΘKb܂PrY&"[10fHdRZdĿu?i ט+٪`_Ӊ7P4sH †(ܲD-MU*}1BO\7GE_;ݠs,r"5+]<[Sߦ 6wYu+ ]Lxlk^FO8SxZ"˯ ]73p5{3Yñl},ºpt@T :-9s\ˇOKgY,I{]ӯ凒ՁtfR%&Ƃaw S^V)*NQ0˽C uLbBG9g _R3w\s)?2|#pKg+Cy5SSY19 =fv#zH0ħ9⅏z6'nuա/yC! ij)Ѕqbczwf1e7zE[8eǥ*4[o$VUѪ~1B`cT]fK" Mq-DWԧ3+hO{$)͍Vт{ڊL[%I9O¹b ^AT?̖za }gC+N ^oXk$#,M"pq ؋X Sq.[}JZӰshWeyk9@ܗH=7| tcbPGLTyV<7Tx8{QA~o L9Y.]X{=R<ܼ&?] Ya|0@SMl7[{0Cz%WHmurr c\TK<_fTSLzPVU~8a uuoжמzUyg2\@-<ԧQw v` `țX[ów)>u-Hm.."C1^M-\ i [^N~[<HB\'n؃32'#xל'"%*[?D;q C]?n@=,M[͇ux&yOs^P3Eyz2$ޢ=C4|x&BnVB.::-Rĉ)+-U3|-Z46t D]xd]^Z.YF}a,j*eٕ?-RG,o/݄3+K_|=jc1] >w(7op$--ZOɃ~.@1Y-/WĭVT,:4g4tt&Um |j3yay>$Y]Cpi 4iWyp1fx(8󴖴j S}g /;0ZhT|G*z[z% Uj*lhV恭u`(W%E>34b?j@ɉʦc' %?9>h:J}8%,m-ۨrQaR >_Ю_^[v.tFVN鲽Y>Q_N)G'OYot/@s5̆ACgAtJ*@Gltf[uֈ*h6(zRP|yv8w>'LϚJ. u)"vkMq  lt.3ufRsvmLY^*2:ck!H|/`v}7kmaeO,)ȢF8 bA6b6$bM$G@k:=uz6VSDӷBH[՜C_X`)*T]=gBpZ#NG6?FLV܊_p^HD\uvy]%%xn&>e5x޵Ԝv崂̾>={ٲ _yϓ !Ϲ2Nˬ-mD̀# ժ%SYiҼ3۩R ͂(.`D$*Y̾`vt?O%B4Aʪ\(?j;b/K}^3w(3G̏ۉyOƳgmEnM dm,UocÖMg$ڙA#,#yw:9*y#CvК5h*7lXLT5. Ljgfo/SHx}\(ڇe"G–, C8-FYZ3C(T{9r{Մ)!4SsŨ 27E8zJW^oǹ@߲bhk9TP  ;{ц˰Uu~H#VXH"*ĖΊ :2 t Pk|+V#l(pvI!++ЁbvRd|`bP6 :*aHߎ$!yE@6Bz*ڧqո>> C3⼅u$,5I\ xUGdN?q(at;]Ro 8K^P^bB@0D9TR@="U, 2ѫCUb"q/%?~å[7\`qcRܺ\PvmH+^nI5:YEb+~GW9+] ̂6"Tz{Ҥ4~j].{Ԏ001@ 2~FWB}b%W}Z}WePL!q>,``vbĊ8jb6̝2IӐ- \=eC|p'M {Af9 2B?,Z=78X2!%{2@ ;9^lst{Y +AԠ@0SWno"~ V807K P>?q?3aɍ OG݉>Jh^np 7i4$VLS2{_7U9TޅKmcͱ?8kԊa3j /I,,AVRۍ c;qD*&/"e]XIYv3\w|G$`xQkO=QyD@}ץ8M|Z}I\Ô6ۋiA֦A;B]TaK&jpjc1v0 HFZfw?~ o#{al_>(3h̩`/)B]5ss 1o6b_ąK{`|O@T[desAǼr% U>m}XN)P v5 &"*  v` Uf&z(Xe+s<0#reӷGk;/( u]LDCc"mCD<6%ovVI8"8qbuցfp*|W/#^`T)58%4PGdIFjEL<1X eU>*wz׶yA"V.0L~XD gL}uqM{ ˹ ;@-_!S|'v@+`׈0ޏMM D(!eT!)*Ǽҧ(5($KTb ˮ&ލ4^<,{AfBQ+l U8+_o hsGMT8%FWT)=+IG }.oCЍ#\p~xMa"o"th@:}lZV>"K ~X6KHZt` OJԃ0̥.[)q~sK٥1bU2֓3?BE4ڙkOի >&5 cPr3ip]x-Eg>J|Ī ^߭쉴>|S, @Vڡ#cRHilqJUM1|cW߃z"`clm@/I@._#1&U@RuwKߠ?~^8oz;cW#AO\Ʋ-kʹSu[ּ=MEpEW\JcDUnۼ'7!s +р+a WĔ1gUa>ƺ>үx^;\"ު-B'sՏ}]2QA v#M 5yUH$q2MgqbIA+o 5TR\: cw;E%'HK,mR\~J18knr{7-{O2ROh|.nYߣ1d}8 &P}J u惕lbeՐȓU]}IJ!hpX0y`7@1Q6_-I`š͢*/qٝO2L#5"-% bt^ 5L?VvL؉8`f)} D*K"$s}wfͣ@U+y"tCo;ڃ 9]ݿ \tPpUaӼqi_0^i|i h~ˉHJO1gn ksHBO؊1Cv x2EKB&]-pV:o3!jf?s_؆v"Hz/JXtc;Vfdvhy<n33ҫcouwKu-DД_8 m:hDa;ǬN=*$xKit \ۿd=`~81g_=C[Ig<^ɇyv"O {ֺŸw1']ICAPSdOA`jJ318\B@T7qP9@' dZGeEl,2_gj3"j+y&&+M@)LǼ<e C<\6b)! -L7.յY+ 2Xxk8~SUVȚ φEMZ|0Ő 0HF.`(`K-=8CT 80?4h#'ZӅW3úNDPmdW H狉;TX@ʑ֐?eJkyhor'#G]a-@I˔ /!M%Ҡ]iTReNpZߘ[d-R#)jKۺ̨6Q[ؠG3@xEqmMB}{/8J\z*Hgެ=,Fn]+Hn-l,Q׼CʩE4\Ĵz 2uTЀԂi2ZiHxl&ZA=?~zULaCZ-AdOHDͼ 5Miר/)&xxЀ?^[D)IBqy7ީ}[g:m"7֧64Tߢ CTc QiP'cp c!M \^DAڦbI <ᛪ:JlEY2$)͹K֟tŶsa.}RʬK1("tF0";]67͙`'4Ѯ*:XL!vBn~<8H5ĖG2^M9'5=6E){G^KLZĔ8oQ"j6weao朤$XW Ae]*RX\eTTDEak89r 0m%Q]CPΫ|D# *ŞG|}v4c1EX}u! nz.1opa$1iìVc_"U"|ܲl{9,dQ` ϾhInmI$J:ݧę-8:xɼ1=`gVl8EF=&#U"q @x22Z}G:Ӻbfl.:Xɭ\lLBfי;z @3ѤM&MɓϧV`|-sGv}7ҩ3LPr)yc. egnuT`1[8GBS,!gevka+Sw|,RI{ʱ:y.Q'8ќ~Ą @z/"Zbe. K]}~۪PW/57c 1kcMBfPY˨w[Y"@b=xI>s[ NΓW#jqF;w ၮ:.ܜrM 5^ Kl/Y)|eBOOX`T=2bYBj1XH?, t^LJ*X]ϸd,WObH AՏGAPQ]ckЮˋ!Ấs$0Iy\u ։;):>"]B $-r b3@ÕiRѡg<ˣd'Һ,#jUA݋f2u'[~R95 w"Hި]06$HVBkqk]}KL>Ur 7V;c!|ݮU쫐c-cU2Q5 oԲ쿜Ie yΊHalh7ErKǰϲy%=Z cc+upB+ .,[%AIt!fn'QNusfVA9_c1fGwܽ6:8+4V;2t9 vG|KinĨӣ=qژt?[ LړV23G^LMz^3SJ]轷6\ZՃnГ5=ӀAW#acf4:P9OK&!<9Ykk#oBY_,6 ocH[*ɇktVމ7cL2#@bl}J<. LKb9fHʌ q}mCߵ];t՛~z @ qO(""CW"jψjkeͻUiU6-C>~k"@fz1(5] 92ͦзR'&`8؊) n, cPl|~frh}ePƭk'#6 zkd pR!:ou)<4OCYuԁtݻa9T֯HIÚ)Id6: fS}3kDܬ 5WOɜFjkںiVn6B95!~&pṡ<mJYg0䊻"$zYHidcBtal:Rպ4 -BWP!־@ p]%BZS,T"|*J7%YZJnq{l@ˬ=g(GQYu9=M/R&&.WK3;LEqY8ЅT;F0؈'b _a *Q#$Wnr[OFx=^iIh: PƠ)v@ꂁIojEEARI4k˜b %8~uALT!x8\ׁp`E"6shb\;˙&z91G)qpyZj[W`"{$p:i֕~+O}npk>RK!j\65.:U,#?R:lRv\2jʱG`3::W7zTCցE\;U˼VTL`䧏&̨|Kٙ}լtwg,Dƫ8Ϗp9*3%€0XΔcpWKI/w&uX^ɍj|Azc@8 ,0š9sC(`~:n!$82BZ{a}j7ЩZ";bN*G"#m',*j&qرtc0᠕㝩h'TiQ)8_EbJrmR Kw (n|xKݿ[܆S j{E|+B(M+ -;S¨ɦ%#~-|\ed D;{;=cLK^Z,V›r1} >$ꝗKb; 'Kf} !8)TvfN! ~X I[|G$bꬠ1'} @>h}$PNL=xQyNZ(iZ&)!wC#T튤t?R_s3V|c0uamhaTWqŗs_=_jS@?䡉qo9="BnufeY6{2,3G[]IYQ#ih7 8UxZ2˻a셸m9AR'KCC%NT dK;4Vj'yJu pGgҔ"!ҫEvXIyڛ]}[Dag̍qɉA3`գz[I VzkW,F HUPFNf7BF@eZ_a^[m)HA`97N.UOw 7? h}}a|c(ǂtQ53i&‹`IT8 bER0{- CZM<S@LfߒsC_> @Y.`“`%W0"Pك'8p)\Õ`(A1x=[F"*k>\QlsA!:d^-s^:芪vB#+3 w3bcԩl%L*pVE|,JaUGD̯Rpet j#݁ 짹]HA7vEfIt:{2V9Bz{ّyCtJ Ϩm܁)]#R-~L=hؔneܨLv]Ozo̬{T u>, N,/R5_ePy^I?x,#y2 jA45>̹t:{)%2ܻc]|"[ޔ٬ƥ O}¾߾ɒy_Z#/j5T‹џT.Ƨ.7iVZ<75)wJ M AɗIiXJK6:}˪. u(Q;LvJbGo5&ql Bwr~,#-YqTVߏOdOJ,h` |Q Hب<"lbI#|KڬNrqǦvrΪ-0[AH Vfs[>r15Ea#Dxܕl2_5];е$ЁؙISl:G1]caAU1ߒ[7>ɗ;Jx̳3{`_T?4i=p(c!'m= U}Knf"i7"< iAQ@iG9R~KmY Ȥs՞B4n)QtS"g {c/7y?~ր:lݘufË4_3:㖆s'bӔLMmkV26yj{yA2pcSG:_zv-7iLdC_!o%U稾?.S؞v2 #]۳}V>]7Cѿ0uB]x1S&8x4)J98l4~y4k/ SOBQtr h PΆR^CG@t,ھQa:#=xkE4Sn !D%5?H qjʊ 6Z轋\p rñi\-߱M PPR(sB|.;E= <6MQIvK(&9K.فgg6grJQt } 65\LǦLN_jv` :i ;neX\vpWW$KζMa1O*kkܹ=N:i խ*c;#qD*wKЫ?J)uugӎR]DpKeۿa&stqn/O-Wv]lѸ$"my_QRiN7k0Jj-fܿo f[Pg ;Z|p Iio 9v|K, {fR#2VPHz8>Zy n"+6t@"T$ eFNnS{dǷyK^e2MQy"<~+ĜJ&&ߐRc2RyK[u V"8v⠬ 0RzZDcܥ-9K %gu1X9(W*ދ @(+zGr>*&#Y2c;L9-bA o},EKW0WBxtSu@b!L;/c܆) ݫw0ѯci6S Q6PÊ[xM a+W\N΅Gp^ :E)Y`O~t-&K/p}4Iw+6n荥DCD݀ll:Y%lVNtV?5NsWؙI ˝Q+~/m΃ ?59$g~]1-Y'H!ޠ^Dr+ 8,=m.6~ft|\!?%ͥ{(l>F3f٣U=u/;5O)산)eRɒi_Ð9pЬ+ E-)sT>:Lk~Q0귭xB܎ ԧ3yMf}%'=cUePAx(3Wɿ5az'\Qnp]#cb]&$>0Bu|4{l S$u}jYNpW7W( QZe)ڵ3o2Tjjk7gDFȡ96(ADžsO}")v4Y2dHtA JEMCfƫfx?l]<^TwmFt6paY/rH׮+z̀>.xHQe6Nޭ֨쥛;S,J{#z{džrV* .L \WWuWE- (;t (f$#-߿~,jx<eO'~-hWJ*Cx{ϻYÄ[VLC#w/UZthQx8dԡ8yk?zdjU:^.*-k4nM+2Pn#T>7#ѣ"b@3  \LǙ3-s&H|C ɈK:-f1G4zXD/=\*1.;I"W\kV%1خ2e/w@4'Ղ0,3YzD[ۡQX|mnF _[t')Ijq:̤1;DS_,ڋ8k/M<tƄt"=%~S~7 T|'<3@M^o7s"%SxD:3'G^74lɵ4G/; JqHp+u7FbzCq7~zŠ6vb TI$#tJxQ k6aGt?Z +oTց*VG= [E69kM-% vBmdNҧfrMOA$UJsZ*lTN|{%yxR/Ĭ <4ZƥlxQ8\F1gWi052g=s7aLrR%n A&QJ  g4z$e.D6ez]9+l$L4œ:wnHi`~ב; QMFl8^.jKV}Щ=kDzG. m[W>ৃ縑!΢FYp?᷉ sW W+4OMuAEڋ~#l@"T7 w h@$JK T픯VɣP<0kr-E>5|?"ifgьlcJ>_vD`jE2[0U1G*m)He*::'W|<#q@0|tI(K<{|>ްE2Ki6?K׍^y\8J/&*P@ r!ˋi>tp&$ۺ70 t9Lաz`a_4@m4A!fk$Vz/i!v.h:'ATM+h.KH{Bu rF<}pGV+ΒS555 4Rx_rٝ5AyȤLOYJ3F @ 9EHHO~Dᚱ3f= [“4:2Ϣb㘲D.US'Vg`+εWsETN< @y]lTbbHީryh=0dyokTөO&8OR4¨UUlc계y*7{D/S?g4յqȮݩ+dOw_sjuJZxr# G!RE"oG4DD{ ]pUm{'9 >eNj}aA^Ԋ<7ʦ ŀ>E)j]izz| >ͫ; }7 %8lzN ,ɝ V6 T`MbkM̨a[b`kkd0V)/Hsj!w V'ܣO,.!IJ`/o/u}Y ,HG&弽ܟf,IGQql׈WnF;R9oÈ_[^;A>kֻu)|i~;ZzԲ׼ݞƢ|*L36O1F*$ |":/H^n"?l1c3yF &V8m)qR?-זzTmlyqٶH3 ?"] Z$ձ>T5@L;Tc=n-?֞sS_Gn&j*۹ (.mP4` uc.4[W!C {oVO0Ʉer Q[K32eUa `4P %cAɡJot%4Q@Oޱ߮*j߷mMa m ۏG*t3޹;Kܫa,&19fJغޔ hX\|hJd/PMpD >Q]3XyO_${L">Tc7{1 i 4J OD+`EXiy83t$ }>rDY8iFxX?.YSBCtv @A bHCXhbIS'3%9urdeQ./X{l7&NJN  ȉ<3B@\u3ڮ vK /ovX2^idƇğ"JyЌ?9Vgo>v EZUf- =vA754e%(.r] q2WПHթ6y#a)us2<ۏ 1gE]/2hbǨ#J!Qw[ 1n\!IHxA*W^H70zdNRt2i^M8Ԟ-#1@uh;dp!hi< hëQL9̀jH,7;S +iCy%y=on6mwW`79-^8֎ÛpPb%鯀*GWldr8!O̻ 7Dǐ:: '$}l&\zvSޚe-ƿ`/9cc>n\[=. 1|:P|>Ĥ=1H7ʼYȉ[z2Z{p9NY],_JTq-E4 7h Ľ#]A]8 AēUP.ZzscYqi ΓL^UD&|Q{ Y*6٤Š}̣^^8̷.9;/5:>)޳n[S 2~On::,KaZoΩ#uP[N7f($r1q']BߎP}> =&=ʠI`L ,xJgb\—H9uKuӥ\XG O$fAP0.LTOnl91#6vs7WU3ɟb>ԩa2EyjV@ &%|BX;pcW^  E5u[/\oӋ¨qH&0* 8SO8׼㞑h>F#^;3=VFi r M8+=M iƛ]'En0]Ep4)lzR赓i:. -}m` t򆬿֤ U!TAO9$~ cϜ+fPMRU??N Mx1X]iA^ !TFBR_2&j*q]=ӔɄRIuMQ֊Qd3P.iHWuܻ0{ʮJ2ܨϨ [eb̺w5er>ME vv1=!(Hջ*[6,ETҥb@t8<)k.dQ֕6ϼw0b~(!5nن|9[j 摿gwpwp(]OfUL(G+[`Gۃ9O,B1chׯZj؈_idtMPl1zBvӷܮq8R$ɰ'&\J tGⱅO'ki9?@pKQqWhw;;ۍ99(5@8!DR]ؐ*tD1 _(rP*b(Z83ZO읈9>]`+n*j;~t;HW9z5 ҀJ\Tqb3dN5۽0+)pZ0D%K#R`bP3<҇rg~Vuq@/%i &"kWz45?ŝf0o]XXerC@/Ŵ|bR4<OS Γ c=.Rбa"'`l[isf}nbhj^"DH GrKr|R)PTQMotյ]ՠE tRdS,bf˵.6]J[SG6T3fLvb.9_n^;oQNNk#~ }r)o| 8Mtfiay&t^l䃚l(R y#fQ>C Y )7}d'Q!ei ?{АqreN{*S Joɽk"nW26Eﻗ}NH%#P9jSwFD6kJCR=z%`$2g ۵5A6/헶-C]%+X Mz-Aw ;6sǣ iƵ\DV_/5cˤ6ME =P4! Q谀~V͐0ڕ`o)` `&kڱ*= փz~0I!ª(Caa_;n@)ƫcà>Ȓ ;ki2JHf(Z35,}32'A C`xhla#C&gUAC l7J˘&!KaIUy.KA?ƥ=F Dl5_Ml%Nk7HV1u(3_|Lj ˡmmezs  wN.B(:toLh]rN&#!s:Iս О; yDɢl֞kAI=_+T6063مq(96 )f4OG(W!t.)pIEqk7HZ;h'-i?ɄUi I-Eǥ6NDNigpd'' jįu%+A. xWrzCߕ98 Xp ߿P:x] 5:əWG~qB&,j;pQ jɅR o5^F]Vq+ʑa+%oZB|6gQPyftHgcr pf-m L .@#I.T@$}8 54<\y죾pVW=݀L=I`>u FфA/7'82im0kF0k6 k>F>jj #丰 F\6'+3b w_Wr5+i_]?6~w^rϠ\AGrCϥ参t$cDL#HuU.ocmfymzإ~GA|8F #_zRQQlP)xsY2I" Tff'J,.(ŭd8"w]NЩ ʓ`_kX: ^w?Yկ0Q }+vP4 jƜiF@ouIhɳ!r]>'ȼեS3[*Fw4 F; "UgkbbW=kaVUy&JRF|v CbH]D, 3N $Yzx+? (Y6 Ny6ȽUO7w̕zIdVLAc'NmMa58W<LT-$nq5u: ?f#w q{MS9OY=8`]DC=];\Z"WA 4h#Y! ʊ(iL͐5?)0>]i%t gڌiD߅U -;Uz KlS Ty.?Kl/x#ͼe@ qZ9Ga5]S>1_а09} D PhBT2Q굹k75/ 0YC/X3#|STX\$42}4Sr2F28e*֧e8kfOȝ:ЯN糦Z8Z_(dvo_V7e /Drw s+kr52ĸ1z&e^؝yvH'`-A#IqZH4V1$j6WuZ2 | LpFvoRPl%^z>7#Z*`fssq'μǽswÙPp._ϿTD¶  =cRkͳ%hT{FB8/',H ,?_ПF?~` qpWH⾎ȥ0ٯnHMYZ jE#ߦ9ڸ}v/j`eQ)4(c ;ā@iFݽJ̯'qRny{5EE!Ӛ+/,Js?ln+o2*D*A2gDX="a*Ue#,?} R(Oנ-F lHUtcR˕:c9|ڸZM ܔ|3aHhɘtn$d VApK,ic# !"MIAP{6 4rI֗v1m<X!/Q M5lsR_Úl\aгU]ݰ`+qͅv;Ō? S Pו$ddG*a!ReQqr,%蓧`C? Bqq @͗5͝'5t{ @to ,'Ok ?Sw.ϣ[d,$&ĒUE$[=o,oT]-tNx_bW =O.6E!ts$Hd"I~Z8=@:E2ỸG'wJxauxQ&ח-%ִBG/nÏH= e~k׮M Kf4 uQĜ2#bR I)Y7NH`5P)~8VDF E"\ b-q I~q,C :!Ǻny0qE]\P!@čUٹI=¤ +u}d_l'#eTޔDIt2I+#T׸o?Kcnel7&+BKeרxgzIggfǔIs W3)z0k;x9E Lp0z4Abr@9RHɖ~o`R k!ǰ/,OdH|驭M}$TB*#sJ:vwul@ԑ7~޵paR6wAo[!<[Ȗ)eE/vrP}}JT}+B!ًoEtК޸5ȋahZf1%]u^c faFmn$Ȕm~Au,BaR[ YOn?wJG^Y(S`]JxcԢS\gpigFR9* C"2D[>wHC|ZoMBGdu5${eؗd@ VB"Ho 1l8_!1e#OXid:yigZ1e@Avإd?bZl蜡+AιۥVkUщe]o5g\<0(GYxVtH*kn94JŁ̢z6lP ͊`} J'd޵XM$xdXb MD2kI'[|a?(b{G@V #1e3_p.-!nTFPF1BvU4md93m;XQE漺O:̬`Nc sf=cưkr濲f#b`3gz*!?^˫k$i"[p@"R4!4(Kyh8nM4'1m%$qg&t)[!PRLxdc厧RJO UunmB/jkqV.d~(9Z5H"CZWF#0 d9g q.zy捍iׄO#п{o|]$5[+ H ůtŨ@xdn?d r}w6xXRֱVa$ kŽ].<8a_M$T;cR<(5}j8M[l.ad0vA!;?iоmkr7z}`w$N"l*ۗ E _CJVFζ)nĚpz[pyzW߲?;\*%6>X|>%y:T>d ?U#&@J fi2;dy48 :uqЏ#DFM$4i|8{ #4hZ~2{%3N̕MͩjX!Tb:YQc9 _@i2wH90@1< /2^UK¢6!6"g܄ 4Ht跍_QA6̑#Qf1rAI +pN{OKC"Z9R3> ;=وdpzy1/Jݳck?p4:g.UDC !HL|ckFӭB Aha7cPFbݧJU}6@\ظFn 奕E(1G6 hVm!wC8eu]o<|}Vh.޿4h܃CfdbJx=l`q!m \G\x|Z3l&nZxs-s'u/8N(Yj?BhF?M'-Nd=$sco~59CqT2\. {/IܹZ&3#`Ya.LlR+QColyQ,[C5 >>A{ DQ,g*i1_bZє~9kH$̠Z*V!g-TP<5kѩ@;RȞol )i]U/+&)5(DkGx<(DuX}dI(2!\ȂP*ؿJ uDxfkR!ӆ]S TxjK̒Qdg 3"Nw4m U+]Ғ6 6!?5J䏌F,z1~-aIv1&tovT]v o6BnvGZYbdE[صզ Zaih}%HCX{ef~qݒ/~ 퓎NqsMemb3-4ba36}ÐK\5P{++` x_:lny&ŔUx2*~vJGY|!p rW#p/j{ r]_%Ej.!mT~Jj^ ۃCiY!^)v1 It/;̡F0zb󟣄lSG4@\} g%&D9q&c5/S* VlEVD=J8s{/TOĴ$k6p h7*da9P %RO߿Ɍ2[V} {]wBhKl Q SQwolJPH~ރMJ L;SHÍr?Ѭ>`byj9(پ6rN ffZDZW_̢Ҧz7,Z VDzW apݛsIuNDKœˁڇ,䯗-8d Ǯ_ ϶?*;g-r2 (8).M3TrPetڼ ˤ i9N/G믱/߈~˃HCU; "dG1^t-pedshM:U31Ĺ4" T @Cz mK3< 7FM[(V/_VdQa& o7IG9pPT9{FE IӞ7;9=:'7+革lhD罬bkZ&ovҩRϞ=:/DHi4-p͑(\Ӝ95hetr^k '$-z|oumİdI*VTݬ(Rz aRZG0*rB)pO D@]F<"ԗ(r=~Q.w(*M3FFyRшVR jsA7܏sAC^$ͬh-cc[E4bKQ}]yatdֵz³% 8Y&YCB9UC|YmA @g~ ʭӍP_2f}Cxڧ@15XC $)*e]BKlAߕ_:[}vvHP(+@2AkeT5Ixd;`shh H;ׅ:O :a5@H/AVF"<5LI2ksE62T+,6GBw?)4&e\Ήu7Ԟ#E5fiXNe~4#BgD3tg]0ɋ-lݟV$A:ѿ2,-dwHtChUk((P|wZOJ*qk+L(j[˗GQp0ۤ 2 iic7z7ĘB=>,AXU)&I՟Nx7H䕜,v, kw.? ﰶo. w3 0t@Hعbٙ )|Q-r3}%S9 a-1eӈ*Dж,~H:Lx͐WM=OO ߣoHo4}QJt[NrE?LNB)ـ&9!oVfC-7GCu(U`(yiiҖh$X&^[ ?n5ļ }JuzJCޕU_hyQ [Em~D|GcS|.%īVDx5|S * 8yىAHpe(8o|qj: ͊䈋Q4,dqq B=]X%t\MY fktKfK@6YGQ7k|!ma<4/C:>N(|"P>9n\]q&ؠ) by@ *"a E/-4#Q, JZ ."6{ ,]j=JMI鈐˳-+(,ܣx%~ZѾQ2% 7Z+~)`mdhv q(:\qa =-3RZxuD[& d_|'rK:Dcn%([s둙u(y8?kl5`. Ofa[܅1|~k⒱)%|v=7J&9g¹-gk0? LI*Ny%_ tVk+!dlH;fBy5ȼi1:) AJl j)2[mX<fѣv?~: VP9;SQ:J-D+e ~?o~[q+4?u`d"賸74LĨL0S"0( )C~UK"iKX~^ gzNx XEV؜`YAvP%b:P`J l-玙u,uLW>_ŏZN Q Jm^e V#YTGZ^϶#j"UТObK_b_,hla+0D (jݽ XYv6͟s]"p_~D]6l^5]}elt1Lt$9t 9 OOIBkTQkZ-w\(COQ4S@cj{Nqj8^`=kY<%WNS0#j@~3v 67N}l@_:?q!u &{_yxVkkdS%sϪu|P&WydQEDHO!fRaeRhײsx&'spM߸jBDΗDmix7't% Ƅq,%ʤT.g"?gጞdCɸul̞p"P|"I#G޴6H A4pcOctc<2cFb?B';Nzf"R;~> ,ؖ qf7dI"DM#(7qƒRaD&q} G1pfh8uLD$3#%?(aTu@GYszH. C2ƴ=HoL?s;5y7`AIY]h9BeNux2c16ά?;D@-n@]P"u1*cVINmlc[O8 89'$7G½{:i(@m E;vڛ~dz5 JQZ{PSeAq SU$v/y\a x4-SPԼԆn}lh(] O3 3^g8?:CFE'd댸M]`%4v%NF7 /Gx /-gtKL=^sZuMa-.]X_2{OT-ng-|=yڐ 4ǔ" nɭ,Dޓ.cg 5g܎c8ԋW8ASwJhV|q2ͯZ0 Ԁ|xG[Z]ՃtM6yHXU1\ f ,z/Ǵ=bŲ2L:I"I ::'>Y#9L`4}Vy҈>[߫"䈈*R Xɞ !aP:n3F>(ZZ>ՠdb^Ii!ri*{6!$졤ai2,Yެa{J&޼7Z|Hf{mƪx)/) cVc ˇp'?"\!Y"^?`Κ509 |^247f.R>n^s8[<؟Sxgeߖ12cB$Wank'`g烸H{C| S!LyJ*Zse.*J3~%$bkHϩ*ـ#@@2O(T#kd2^°5:ZY:՗0[ Y6JgHs $I z~ߋ8)}i7e2KY_4 VqޞXYmpi>UGUڕ'?gۘDFdE6@@7e@HwAފ "CZoe<(vT١1_' _ ҆vX`9SYq8lϦ61}J pz+JƻbIZ/?/yS̛^n+ݟ~%?圲VW8R^x/]&$ؠ.2Zq!<8рhƳ|QU u9wIPoiKϳzxo3;BjTov!z1R?#o܃=teorZ 0l뉀LøLױ TI , R~[HfRA`%هWp11nQe$d׋L3[HwiG٩J}L u5H KzF*ԟ$c6):U݈@A#YSkl";RZ|heoi<sqf' -b6Wۭlp3 PY#iSa9Ư4#^{C@i"%LN5f^]$%o\CRqSC#5N*ƕ Õ)MM1)h=c)Q"8{|_5PE 7u!nþ(` >zO7 '.-UuvA6 + 7qLCo;=О߇z!_w7*?쐇HDzjw>k27nB j/2G.B ,?("UeA:ғ;|~0_~& ϧ u B2 4FG)3d^UH{ ? RYthR6r|<; nXmg|9Wᑵ;s U Љ+=q$PNXpPWf\U`_T30@t1u-"%4}^j|'[5mn`iԲAV5tb􅞄xJP ⎱Kb6I^19ӛ՝8>tۼDd[]ݾ AhvJӷ ݾxhV5#IaU"_lx3BbHPrG%"GzL >6?IH]82uO$}!v[Q9V@A~bt\+uįCQ/^۶#?8<>ZmʠhW/צlq]Iag(c&OR"y8>8t!l<[p:G/ ͶH$l/'J/WVZ@]nŻ_\fT@ U/ -:+X=`NM۾d{꯿+lppڐG+nIX5:w72)*FG$ݼ_Bb(( ?տ_Ԉ^_O=b"- .M4+ ˺6r075+8HŒ}}넡t"jM"}|^ |mnw$'Uό9#/gGrXnzD9 SXvc}$zfmײI&XOl n4]dp(dp?ȭNYx.+O\^_ U׽0B4x5d͜Xa_,jAtG]$|4 &~!.Ph!?M7U4~ȍpEؠK~ 6x~穝eԮ<ʑRTo3'!x.=Hq/Ƴvm@ã-Gl^c_q%WhJ n .l fqEdU5!n^ A-8OKgp\Pq؊N-άjVZuU=haeP6u3smBoYq=N7I6Qiv ܑpqF 4'f,'(`Wc}c4f@5Cjq)p;<5Uo@{DzeP?$jEV檷;^0a_MG/d: H|:+1`'n6խlWEߘsb_ڀ,fE؜U Z0 f9lOY/:¼ZVW_Jpو#Q,07D7 Fk"tZX/^T a y49LE8?e6`f =Jޛ26cy`GF5ܔUpJ/$M}S?~{JlEQԉwA}8M'qG5t3HRIR\IݭuFYK1Z7V<3B¤9!b bwI2G'ޡvc s>p1i{Ǯim선}H9ӄyjiE|"CKrUw B+YB{=WøfEsI7)ȈXV|ǜ3aD89~z)<4¤}%Z∀p ?6+W"'q D&ld-u@qВ3Mdanmwl(x]e\|Ҹ0o3A_݌ St[ zųzzL<iEP4f"&PzNP3qmg& qb5[-pLEݗ }( խ=rb-\~E报~f9w$dv}^̌J)d07]tH2-uݾϽ7;X`R F@N>6&fr6xuA J-Ţ;&EʝR{KȮY-O*1p(/JW$3z w.OR%ZrQjQYiw- @樃ص[U j3˻ '_FjDO><ݙb"(m5>1LG9$9Q| ^tS9 mGsxьֹ3ˢJQW{nz>?bp xc3l@8h * 1uxR]$WQ^eAOF<ڞwN?ϋrR"ZxARGo~QcèujNQt-#B+:|2( i93.0 ~LK*չA^T;WkJMRKMsbLI0{̚:\*r\҅ T[ę%@Z% JQ*X$Y՟(GW'ǹpd1Df'\:GrBV$p`{ ;YLZsh~9fj|#U-C$o3pˀhy6qXGSfՎsѨY>(Ik_=-ؒqB냟̇"JP2@a X`Pֽ( j  -ClC;P&r ]R'k%*sOo߯*mFFBPIo`qVФU~s1MұM~M=JeѯxSvg--4!_Gzts A"zQq_`3E)YQz@fN6R:c C ^ѭ$s>0$H<2򨮪I D1DךS0Z`68@.x 7x@s(uU]B˶;ҭ2l44;z9va#HU.0_"i/HqM@DAܖr!RM쓒X&(r/?;ⷚwM|Baqf\Gafc͹|G@g<2YQ/@vH=Cny_7gnfzG蓼9Ȳs4pRCg'QA{7sd{DқKuoZF̅Pm9aS[| q=vr 4LFW\Z7dDɽx{ )+ J\Gb 0QsnXJJzx ,5cυ ڔ)-*b6h鴙a]-JP`-۱:YpS%4g-e`"3\ T{]aEl 2V&97REN(u!/c:ɦ z8bȠjbdh7T yDsw7XN)T _>FO8ҳK"3׍iI {d&׮vJR;Il%1ioVKlv2:.x3/r ŗ@X }uzکzU]BZؕ_J'@r9Cxkٯy׊H>!E~[_[rM cgY1~Nx܁GI0,#{ӮΜk>hւZR?dQ¿Ȏ[rk\Ѥ'M8czrugk^~/v?‚qb QKAWt:~pcN+/mq,nXJgc| ݗ&pRk~* ͸PE`؈X$LPiTzek &:kē)QHT /neK$l(-(Eo>KQ\zi\+"}ߩ5bޚW3Kǃл.G>.Izn5D_v-1OAwyw$Ivof2fE==⶧\2Yɘg]b']\ڙ u#<4p1?1SYz2F3fn@戁ˑ[$g~1bkǹ<&~B |`}N5`6L6A.&׀F0g+z_?,Nc Yjc{LE]@烐HW);K>GpСZ W =^D1Im|.FI1 Q%(;+HkBPCӵ9谕<8g?a8ITpK_#E2w{<";c8.qv\bȒUci>&_3(tb?oYꪽQRN)(ӧ$㒘67I`u*|<3h}v|+3շ 2+~/QSv X-T65d(Kh^LFJz {2Qbg0pC%зԜ%/- |;X2#-@2OrsX Mqwa,-[.$t'4oJo$E@>_/! v,}oj@;A3kkl@>M,7I]n1X D` RBW)łEv!~fp0zᰋ ĠJUվU7?| oEjN\Ԃxfr5=kYzm^_Kv=Ƴb(]PSߙ!" O0' /MK 2Y.Qs!fdaO :*`y,Ib@h7v U=Kt^ 3J5E;vHH0O:^B ;+3}v5*鳞"n)mdj7ݒށHOijU4,^wD\Z埡/0rrt'ZtUEebf|;:Hӭ.J^Ockp3 Th D4RѼT21]H/^Oӯ^]-'X٠i9ST]zntg1:,mOZ11kKl3@ʦq:M"tUMX8b4V ۑ\̠6dl9%4vqq5Bo^=-_CH`[*hc¶8fJ SaK05! jbIQ[fJGR1(vi`+]&0řS *E~?s9]ƦEqBy}6ǂj}9OJHbw4J \dQZ&0LG/"z&$e_z,'rЙmjb+,klWUHʫY}Ed8} "s=[);‚ڜ/ǣ֏&iN'oQc'`HB*ur7p'9kdo?K0P$oLBA"(.W 85~qF 2_k1Iۆr2B`識s2 3=/|sB1Eԩ|~VKQ 0͝I< "-Z{rx@p0# Z$._]/x [sBq`?ydAOa:Aύ|bSKʲpS]4#^L~ߞ**SQ& ן .WSʍwXSƂ>fkT_ߴ y{O)ixjs%hGc^N kK%5|deEF)"k*hԬF'Bu_]-iW`5ESxP>Lt]D<)f G!vť/y|{׀?iAj6{EUx-Dx RncerH#y#-H:ݿd{0\E_3p3_!Z!m,-Rf>Yk]OFL\σ)7f{wcU4F3rMt5PSܭ/])ĉ'va~]Dtd\sd+<ݸ#ys%ZECe╄Fp*p\Fi9eb2+FGaAcf:J,7q!,H&Of񲮹r`ۏnNHm^t$YxFi~|"RKh<+O "I<*9]@ˊTcv ֐xUlb#o&x*TK@aY7}y!"@ioJ_8 ݸ>_'+%._:ZW6^YD=Խ2?#rAj36awwnLX9?vPbh:Z<.+MMoj`IL1*DϪ7$iWHʛB ꠲?W%z¾Wiޤ"Oܚ:sJDF _4G#\1L#?+~ݩŷZ(YJԪMݧ*uno7hB .Fvoʱ%_҃ ֱ\6]YLB޶q [@ ]E{T'm wxC5_f̀ZgBFRjPQ 3VJ Z ~ Jy IoJyԏyY% 轚?|@>'u#.#$#T~IB˗ˎR㧁+mCSRvHA~ƚw"?s9'&dS8d22k٨u '3kEz) Ne[HBYSU<%,"q-˹#j[dr#+~'!6BYw3 >J veL=aB;x3Iswi\/hwЀg{[v3׊UH]ZSC8,&ih+Xi~q$2Ŗd({i.U.?3\̰! 6SYjU̢c&1$d(4=y?$MY.+M+H dn4B#"Qb~=6T)ɚј3*bn;y[CX؈R֫9W:=]ՅeKTߜ]zDbv]U!(P$Y CKenFvi^ 'q=Xz"a2։u]&| k7jhekM8.%huUdpbQnS%A 2h$R Q%SKFv L%AYv- jwmRDmŔk)c;vbTlS+E/`ƥC +'[!vBJ$YU/Ί2vd3#`< g%o(b4Wݣ/pwqk:e._1a>X)-pٯ/1#F͉Ҙ?6W2V. jzt=Ѻf]ο3'D$ ~8I+^Z h>Slę'P'SDB!J̣&@"Hv~wlZ0?ehs6 6ke@˰N-לБkTUCGjۧȻL혒 J=8 'FWbK"dk`OPJr_RvkN5nq*RS˗7,~TPO| i-j`nd]RV6ukBoe<in_K{FM94ї7$3nU( /ZeDlG\*sW}0-_ΡEc@{7U [sGTNzOAm)s8qB=ҶiC;*42|]-q-WR_Z3_ed=fP^Un>EMb آ:gb2hI?C}MxaG3WqU3˻c\փ Ib$8;]+|K(G_*>:rM (R#ɥ=@ծ2چL,M?0q2o\A2\?K}Ĕ]CYMmy56F_Y6.p{ٲ) tK ~L*fΉ$ 4=OBHOz wiG@z̀UUVX;iIQ{`eNXjl#vʘ"sav9{^]&@{r҉^&T $4%Yk 8W' ೂ!N!{`YK(LKi*/S=< t"rjҠj2MFLWJ˕lgOrg }O JK21M:$œjqi=D*A-~Qـ2Ks^ܚ(Ί6SN )v=ȓn_Ѵ#t瓖\]ֆēa"$m~u*%{*(Ѭ?X!RsɺQ2pnn_|qWW%CǑإ3*g{$ݪ闯7z8/eKoa vKXTĎu./P7њ@K;'*+_y\\j*V~rLے|6$HFBX}"^6OƵ >D:t?;_r^SŻE{!ok*3xE G,Ţ|4Q_P0 oXiIK}sUY.dB\PSx6 ד&қ<E(*݋{ejFtD fo&%d|{#Qƿ3j]eG͙5GНЇ:GyEzUB,[3d@ZHM( XJ]7)$ĖSN=0^b{ *.2~#64 Xr.2\? ,|@o|[ {o6s\{lt9Q%[_ә)5/v(nm Sdcx<ۥbU/TNⳝ/()?V'fK ڠ`=R#d0Gh ;uЬDt~n 7qH#;bfH{+(X, ǶPsS"?/n!jY =<540Y`b.6b(zT|R<ߞ `M o/F4]U;̯rTqMZf,+~txƋÞv5+kW}@ ] ڪyOwkzT~εfx[Nn9ŽWE{Ƚľ<`ޮ-/)gP폀?D%jIja2~6c/R{h@~uHu{nV{jYݜF\V\t;z]5 O(z%Ț KOYEhbc? <?ʩUlmѳxIi :;j`H-k / PsBI Gώ[ 0Ȁpv2/5k,"T xvX ] 2oK_ȷFTwۜ#_WNW|,vM FFX/'=a1A%<\)PY}0By& ^.6StJ1`AC؏~⍡p¼WkVw~I q_k@W h=bYu2vjv_~A)dPVsXMnfax E`G`H=Tā\6H9KUk˅ٮ?)yU5*HCp$0]֒. Y+LN5Yv^) cd&?(ن]777k m{**6sPP" ,*?`s 1`rI,3هX{8|a<]D} g| j/5#x;|ҢHl2j*/o -a|6ER{IV@ygJqeu]#b~ͤWmm=įL__q64AP̣Z,p&\Mɓ;8D)߅GSpwW &z;Y,ƌ[_>@٧&" qȺ+m62[I4v~5J&q֐t8=(c;|yx9,FL8G3e3mDn wꮐAzcʤgqz%YZw{A2_F!c(oV}ocN,ȜS16ò9w \in8F!PzkLͻg]; :7$ =t Qx+?3#T$ NJ?RT#cxCn`?[)jEŽyE0[0͙ !:%_B2ɖkNW|4usFCyʥؼ+;{u]IY,5gݢ}^LN> ynYj&ۓyi:*{7R c5{H,Wt~N?j mȔ]ƤO"}v4D pU0)qSq2R9o+ ?ܴJf\~\?;0Z^'|v?fl\%7 3'Ys+&kDx4vVO^!A |D[8 h|XN l0G49C=qȸnSӋ6A↑79E~ 'AB'g1N>BKouf#>mc2¼C41τ' 3)JH̛z6?Ab@XU;fw唅JrwG3<\%XlAS> ? { e>C^A ~j&3u[e v3?s>tǒY{8$%|wTƛ:&w49i+ͦگ V 1+G%$#O]pĂ ){=Jͽ!ύ^yJDwG"_(!z9VmoTB3 `8hPcwq6┇Je,71P۠3%,RNF tlGZSo4n"rW—(o=\#$xnv_h ֱ/i]>d쐉h%Xo5 ݍ vr,[t.e -'+M:dJ[*n @(-O4o&+s8Fd!8AoS<GD _Uhv9GݺK[@SQ}*-P<ىހ.Cv(Nþa^uKdZ&˿ >6͵{_yr9rTǕnS%i~Z&E-(dKJ+y&Q=lHnz.zlqia3#lGe_{gUm>|?MձH.<&)V(E^:FlO3W܇ SC򋓄 h-AzFԴS0XxjǙ 3{_n 遯;MѼ/3w}< [q>E$;{CKeVPtM;Ru>[\Wa7Iatz2OTh"'܇#;;̱,Ţ4v?8A-ڳal`ZyRBtDuSzCt?v@ŝO lulo% {N nP}M4-K~ˌbLFDi|.!!C/y@Gv\,U`M^qiCbb@׋OzDluL:`<] ᄆ ۪P@w6ժf.(JHxh)]}eT1 ^V _z^ju/(튗{HԐ4[q'nrNDҼPHL2띕UL5`>Qi zȹ͙k0fm%NE2OoDs1e eEpُPp: ?{B";/pC@+f'Ԯ2*ӽ^;,cyZ{F:K 25r\~٩ l5"xGy$ܮbޕSq>)<<^tj^(ʼnƴ u3wi (􃉻W;xbТ7fjRb'GK#Z^Rj㡑"U vӿwh]3^9bV3\d<1;DlG|C.ܿ &p{á8Ft0UH'pϭg1Ry`J3"el.Px2:XLy˺a  Ϋsrey(&+_]PQ-̳[Ljo_j_ΛV X>`/t9 R;_><x X{g",sYIABXSęߗ_CO/Vx&Hgzԃ+&ѣtntuIDŵ fs=o'J Gπ\޼8, Z0{/W=Ny/J 9Aug<wei{K3C-)b>8hCgZ >ݫLc͗1/ b&'Siތ]Jl-xph[2WdWM5`ei5Ũ7FJP%7o mUTЗ䠣V6l=tb\1љVW]t"| xy&^nW~Ni7H!h/xpUg|(k>u0?~>V*$֋P7^47rTiJcZɁ1K:oVOd-ܢLS|HST˜rL&V+`b:|u4vCMs!Y"Yt &5U:*KX_W. >d/DeDv`!aƃz*uNJ&Fw x2NDChbuG$CߦvI}%DZHpCngmڥ(}תV_5Jh^W~1"G@9S$+ `1lk#PĠ@J*+[ށiSI0FFƑ_y h c*Ryr 4I!Y S]j/[9fu=^7Z(%EQ2o,)\Sw%~f[N; ݡ`i} w nas3Kf@MXHd(`w8>q˵aOoOmGWS ׹{''p2XEf]AA"jkt1-F?@ evChM1p|'BX[1.y"3DxWM*{=[&OVvWȤvLiߚGlzn5i] QX+0 ОfSR) R2h@Jq]pwYdn a|泃tIhpppY-k6,b AgɁ%v&6dH CDFܲxG-2ɮCC[ uHGIa>!a߈ fz`P'F(b%Ȳ#My11Jl"D笂4g#yVt4M4fn1:|y?r3sỸW˯ppyH_cŧΒdV5㷄X_U0bGO9WǤ8|0,["؝/&K 63|04;`N?n}O!%K3זȽӉ QDf`'0)qWv~fnԬ@h7W A=^1;g437=ikߪC,Nl߶8A߄IL+%jE$: Q9uO[Q=[V :X_*>Wb#ʹ#a; I -(\M'ޒnіݰDkzH|@n?-;uԵB hmr*vj_hGC/1 ]{KA'(M L^8ϖ PSPŒ.9PU$?۬ e*4Y18 :U?9c ':JÈ(% ex|x\3[=x5aCc\ImސAwOpߒ;aсVit1u(!Х tBQaWm'AK|7Fڊ!D 98)z^Ez\UPܐZǷL\]\ۇQHl?~gI[ghY#A2*@=wvohtupgNc0%\&mciJCGG,߂ZJk,N>^oՂYaS1J|/`G8A0s!g BvIkN(.Jpŏ\ pߑ2^)o+fT~UaN$ ӣ!5|W6q=?ϼs2DNLr{vv,hv `X8:YoĖ!gT믢;'F,QEbTɹkTݸ-q {9oWlwJ[!MHr [?MLi?;Fj-OY.C !+~wD, Up]3b N.׳ᐢ0Qzl\xlYR_lzFˢ#+M,%7"׾P;+r`MKεƬ1we9Gj p*OO8Hp˭;{*M mK8cFT ,t ləCllل!T&̷4[w!_;ZsX@{[e'z޼niXQ˯dd,b|\|]+7y4hBc12S:"PPMexoJԁk*oZS]An؟rnjc t{;{s5lM==:uNio_#> AM=1k\tw7+_Bfxkߔ.Z=!Ef PK|י}^s> )TE2_)|aO*[XYk$y1 Y8qD֩,^hu)cW3ut&l3(.b$2D K8QVLx;rV.Nlp =z2D3( aue#Ĥ~кm!’7:v\62Z/o?:הքPN~+*kὀrӍ߶`^):G?(4EcBb粤/''w[b=]{/\>//*.SQ:o'.,OV&4aGZJK|A~d\'k#y>,h>Տs~ä `(:,x&1 ]5$V;V8uN/PADy2eic/!Ǣ`浗fԦcˬ?d5HԨ<#c{$]D\1w8_Fwq۫Xs>o meBkfKS:‡$v 2M~q"@ul&/ym/F旽m_!}ߣzR\/ڶ:cz/UR/W ĘY?x'4hV,!9d6EGK[; 3S2=`> "KIgL&|4ZEM44mKPVZ{[ U%XOm7A=17_=Gw"eh7B&"y>%8 QL)݆Ea9ٮnMZ׃e6`RdPBIHsmCEM"n:RQa/!U"9#^3#-;rszrQe̵|SsP(V4_8iR)UKEVYS87P>G]$H~!xKӡZF sG5K#%f(ZٿAlpͯW' Y3MNr9A8?*CI 2oFE6T!\xM=gXnP-BE}7oT|-1qamu?H?@x\Qr!Jr47Z~)4{Y;W95M8w*+Ww?w.!kǗ pjqOfK8]%z.I2140"Cm#2J[VZ9븐m/rB!ĽT!Dc05 8di-{j/>vrnRwڿ)W&cWuw?>ѩʺbyL 3TrSRNÛ:/XSzџ`< [A s0U҅G?W'" f0N>`p.y0Y6;b֯>Ag)eSLI+6GH=mG_kQ*?K> |Prmw)7L`Io&ROG̼10ÞNh4Nau&5ڬOؑ%I6rU$,=4"XNUw=}8Fd&ګS _rj9AGxH!~75.@! T@AmmQ%`2<{ܝE P>}ɕَSS9PiecB&vwo/8yؘydd Gw痘=YWz=S(j#(\c{T]YCP*4gr},-R  fGNvZ5:V9;6r$.H騉!j%so^ac4MRDI̷0 38qX_&',/ {R#)!*ۧG'lVk$lVЉ޿,i]zv)|a+Blt_.&Ap1^Օ{:L8[+쉣=ҹQTY fjg*lPP L@>s%4sD@d&pP{8]R;-ַǢߜw0~8EFJB;@/q #-)gJ)XE9Rϴse=V!Uf*yӽz;o/ךtiq:m8\eWFSuܐq^E+ۏ= QeFhV=Z'%%KebpMl.jǸ 7?iS5b}5ݓâKrJ3חkI)@)VG 5p+yj.XHqƨ:*ze :S{=ZWBvW+ۿM*X4C~(<.u|Rվ8=8GGw|_ֽB"Ug:d(&f:#[ggÚiN(o5p 'cS jhv@q K319YRĢT\0U u#|nڴy-g"O oK˻Ӥe {x2ٔTĎf1Y7黜G$s̝4M%>h|ʓsZ!%(OdߊmV4Y;:'Üi\nRz,[9S\G$$tg-`Q&nV$OF.DymWf  {E ]j*|6< ci=۳iTZ}p8owyEЍ'DV.-\sܥ7r=ޙB]ł/ P"t|L,7C.FR"@oCNDW i:q'$QC.ypׄHqIn]QPCؓ;W1RO63Ǫlu+\еC\iX7o}eOc[P9=Ρ#Q t9[f 0"zPCxPs勸ާ`f[QW^ ^=BxOpKѝGh͍N%=O9%]#_{eSE^ AdT nԡ8FA ePt:kvRϨѩiY%}`TˮIyL,<94wKd B" s膣t <#]R9䈌/"4zNq+@\Eko,=a e|yr{󇵋%j\4#֫6ib)q_$_F9l}u킻cwQYo ?\o \9Jc QL<`R ֓ź6{3M] tsT(%5+DfZOvv4cE<@3bFVIual䭿ќX4p0aY:ʻo]hxb44I2kǟrzsUcP: U/8I%ȨH6:qN3zLA*.oQ0\K2\bK^Qsi9LOK6OS'Fz{bAyxx_Q fB+T1sú]v,IGU!J7PʍTM:&5Dۀ6.~pxa/\lZj˻ϧKB7CM"Qb$ WɥIX ΧIN\=-CE8Gn5X{'a E&$АFӐN/6Ѯ%wx@jjQ}ts\[GRb>?}s4B0W5^W s${}무0Z+_b; ث.)r4_zjW)=dz=:Khj\h8! Uɓ48x'N? ;`,4p Ow%0"MI}8?^.fF#"wR5 /ӎOf!j('_3.uG˒R$c<|敒SKAGZf,IJ@xa%) AFhcpXAy7d7z6EtՌ{wً_vNGApA>+R 3DƶF*tgQb82/-#5#S-T;2Fq=M4=}Y5;̒0dͶ/>"B69eX̘x J[+EFwA8~;l'8ǭK>DIz+{:SYd`.-ň (XgWҀ(Ng#<,iz&>=[DZ[*Sўɰ(:Q@mq9GF[t>=,0P9`?GA[zǔyO[pJǫ\50bt٪hY:XuI`[IcDx2x$C7Nq{GviuL+cGy] R|Z HVZÔ?5)~*[1Wr36T \N1Z@ҐG&lI툇)iU*G[#c;K{ã.Bd4Nc M5J{i6v珮Dw$hq~R%@ -jVr g( ִ1"j(DS6[+%0[tOEL/^:q|bXY^ə( .L?|ƍ(g8!Xz;xWgάꩭQCXnPж^\`Ev_ LˠJZŒG]'f=s}CiZ3d\q uo463(Kޠx<\M mD E2A K" 1*2x IuK:'ޞK,Q[ZYocM^ACqn[Toa]!ڱ˫3=3M̻>Cђ@n{YkV V5z0y& eP~$¢?9?Ox V^vra@&k@ЯW[:ɀQԼ1wm(5N)vysҺx ԰I v2*& f/O&7oPXK{7Q.5DBjANB0ΡknUf?^ Jvy}jSœ䣙X`:sN` -Y؞@5Sa\=_JL l}(^oB%\jpo\Y#5>g&eRSb-SnZFb"¡)[ æKT.K2[<׶tD,c3-97zwvQq3JR; G0}ԺylA&7R4x4`Fҫsl [+>bU5bB6jyV;ćd;WO P쬌-q9.bvr . Aj_D/hi7"J9JE;msWŷWl*#ɜus|ðSU3J;͎HJ AZ?޺Q`'H82_s=jD1✣2tՐWP &~l T~>TE)=T97~Of En+|; ǗZv{Jc4@ 3źgX(>at}?{@X T1j(JaWَip:c97x*h] }q˚pxsh8<~3F+NHW%`_+LQ('"Zע}Z/Ṇ4jH t?cD,a~/똷54;VpOBcRn` ?3 u^|1'EA -vV ݡ 6&'dV-пwOCtDwb*W6YAȶ, ? @BȒYPuC Hq̈9e^V+mID38 g\Y : |P:1%v IG3rnҘRt^lV6mWQr+٣4 K:9w|[2ۺCf*c2Ir3qqa\XSl&bgԕ#f,7y{8N\F(\1xm֣^څ9c0%yg;[x4S2I}~?Ωp!O&V34JN6@qT=~z e3XrԷ \Ȥw,[ 8by8fR+e~ QCC@7`+) EQb*ؐ 4ʼ9A]]) x_H E"j^W Nԭf`oY$Y^# }͓!I 9b >B|Eɞ;8o rFu5*:v(-j S(5+{0 <4um։ 3(x!` vxQ;QS.ثYe 8jJWbڼ+W׳i[ ̀#qPh/Y #rsټ0t x9Sb/2h˄NfE}7;2GctdA)V)!tI֦7}"eY2V7szlhOF%`9\,quax9f 1nL4u4W}ؚ2$yw,$چF^0 1G:T![ } ʀ*T~"7fـWr$b|2MNJPce #c+lǂ f}'ž'=X2s/1I_ Nz0|^G,c ,/M8}[ ~jtYmAn tjwr2K|ŌgBƔ?(1@M[_,Çhȩ.V>KR {_ ĕtJ]si.Ix<h3&̘:މ+o * :q,/8)`,`.qrJ`p]a訝FꟑtZ$`Y5dI u6jw% ߺ>G]9'hU:0{*:&=?n+6-.h66h573\L޶_ҾXs\^C Go`^t kQE_))>6Maԯ:I2FumGЕL>ae1G#UujA3 Sڼ`9")pPeD8}/i1.PF͍ߩO2T/ږ/m5؝"}o[ޯTv{ XPvgLJX-t Mr<(0xUO5 Cx@ P|3xu|^Vmg=\s fݲ}>ĭyaAkf/?fo"L$6qn %1 ӵk\;.c 6!/=mys2u*ݑ wХknuCr7<,~- z->D8ݦWbℭj8gD>x0;2mv>83±qeSȳ3%'% &y8TbDB%.^0&̑Y/ڸ&H`ѐqBxW(Q!MIEH |њѨvol{l͞gDTއh5q1g󳲌+\l>J}pO>),+X/1ԟLs[<)&PFxUçcۄ&cyK=BwuxtLwFԌ'X e310ѵx(v?0~YX#NRc:y!WFFwEJUݷ`+xݗɃA+[V3y"i#,Q=Tݑ 17BF!n2 e.֓kaSN(ݶ] ¢o:sp-Ƌvv4݊;>T᧟7-'t]]ZvLsM/7h.s斣w t~c B/5G;&Ml[B~Ѵ! жO&~("[H)3s'?ȚT/ ]ܤW l2w\8A2kúuї(2A] zĤx'c@{I,:ΞY3Yբl t [mt:J7[E&QUT#[( թUf޸I s)w^  fnqq+[k`*F.xF414Q p 8GJEt Z߮87=G6D,N_#zY%-A㤆x."/ax@<ڎ+ս636ݼ6E h{nMuKA|צӡ5'Ӳ[ i.cxz~of;I0]O4]0>BX;5`d7u: YI:D"P/rT.9*`*=V9և;%!Yw-R ٔ&J\侪s .G6 Ɏzb(/F)Zƍx>X㫑{)3 d{'a=t<#p1 S I{gW'b{_i#P{whhKX m2; &`Ķ \*3;a>4.7<R/Ek,- s)b7˧c`3Ze:;#8XSGhv*%` HڊZ0*hh?@ LFF*hW, =9($\C !"-:J# jCHϗPVIkڥ׈N9Whp]9g?axQz  2| E l A3|ܥKǜטfq9E%Ik-8Xzd#tʢlZBtAIқ;/c4`Jef4!JFw#yiXNdr˫%єKvk_BSA4 Q{BW^~|M.w,bvB1eip\uN,Hy ҈C?߀J|o*AԇᤙwmWE$&u`'k\xTg/FF 'etbFK-(c%.ozO'FτeetC9f(z)~<]0T.u6\/\<<|oѲ^qժv'lxFʆSXrZҋN{;Gf WddZzТi+7[̾vi5ܰCuKpi%L`&U0{j1ZZs5H2&YD_`9`Ȟd!%C˶pŻJ6by>6Jf1>OeZd mɰ1{0wo[I:V?'il(XL"kF혟(D(Mc;Al|suϧSzJ RD~j9m $jvSQZjJD2.)IH󉷝|%lM 97K)v3eHseR#`蜢d]dkmКiz9ڞ )7 Q1> xpCuQ B_o%߇] "6EjTo$ˊ=",vފ/s;GrK#:ʍ%YAycVl[r0`i}Ik狃 G64(BO'5x4i$Nz qբԛI{z86C\*^0|,:M"cmjp+)j{c>4 GrRq.AƬe~CSX'x{f8u%Yk= ;Q8} QkBlFQ/wQ3^ c+0}H`8?JPzٻ]?J( >9(>/69 r )s׼dEY{)2 :k{ _M>|fy_(}60?؃OdL,.Ac.6p{6Vm5Kф3yځm< .VX}Vhګ[M!=wvE`#G&8q׸Zn噂j~Ru>۞)Q %ek}dղKH~^^h2pNBa4&zz]$gpT궂ܨO񁟤W6ˉ[鐲Q.#S)Ƨ(DOMeIh!N]-(ݨ 03'hOl]r*nBt,r+)Em%Dp^HUHZ' u7,b-5aiТb-]vUb,UylBImR~+_Ӭn`+)Ȩa "?dwqB HzV39(|V&+XqKXPJԉ['昺x/,Spwao/9KB{y31br )vt 4R)_~0ws[]Ls2k{Ĥgʸ:3$ՓJeb$S&eb~a[U/Lno9X9{L1)8F׍1qܾ2F<@|h^N>)jps' b/ovQ#<wU)4Dɾ@R>oĜL$^tt猅kdү\]*NH7YF sB7BlD/Bq%.9vzѴr5_@h,y|;/]e2&f(i+,<ذ5@r\='֖ZC?[(&J cO8`6[ZbLp?O R'dazgE/B \.bMPGHbvg8Z! &y (Ƕ'2K90gDzOTqF 2a % ĻKۚ卑avX8[c7SۛZ/ء*hGYYYZ GUѧT/T5/DTcm<@Ut Mqo!`AQo3 uťWn iNQKVnT[{C{ǸFZ޻\5tC#D<0RgfjDՙۧw`rfZ6XȦubWfxTa Xx8HDb'RǿLJ%< 0Ac'ToUݾFIV8\'n3 }>,U͙ *V hg?0MSt/dfZn'I'xn>⩽DepۗCarMC,CPEǚzH"cӝ *!H8KI|7ZjIo,Q3>Qqr[J(WAF/!Adʷ1K'aaxK|p̿_z1c^hG>b̖?ˌ.7 JDg)됁 J6ܚ1⼹E%t]#@A y'Vo` envLBD~;&@v]MStXu y|3J( 鱁y(8'=,eI/ˋ'65u-BeaںqL_^hO[ jN1|Q CP`¬:\w}d?#Dv򅊀`vOpm|TޚMcr$n W!󜥓BS;9AUry[AnmleE*KއIp^7 FܰtKܒ_ +3! #yR oSu[m92NZ; *1lə0E )W'4|6pyKap{]BُT,׉W8-`ة:~ ^ď&X eE-.#R+;zyt:=>!奘Y~J6'.|ť`/{͕x#D;%gUzQ^}@MT乢)a(3>"wlYn $\Uk ps6'Pz$~Q$RH+?.C LhF3 )MFI'/WTv9?쑷B"pq.XxUҊCmf14ɂƆ`oPLXBW9sxN X{r}c抠5e`گ=W S i.Z;Q}Bi۔| (҈tOazt2~(GL }Pmn&ᒿٍKl5G:h! ՉN>{d978U^< +*yb=Uy2k*Ad̰/8,/ǑA~HMKY2>-KR%n1:;<J? Fk%VpbR3;=);_vFrBT!3siaz~`OMj~QE+rjMyNH%^&\X͈9U,4nq䊪,J.Kfܚ "yfB;y'Dך>,?9t";R͞*7*ZLW '?)_. 2 mk{R QHrRDWfI'V7;H$ Օ[i-gmEs"ÒDB -a 2"Ӎz[WlpY o=ytu<3 8̺4sQ'rG[4VGD d# [˜=zLfz 6-hN_g$@ Q6L~.B-1. !Ac+C?̝#~ƴD@䗾et)2Qs0%14s>)>FZ](6 T)={WT}v5o ŏ` |4^,z?hgKc+@Hn}6ⲨLeg?Y\? E`Ֆ yϻ 48eTo: oG7 cZ(ql4cJ 56.w8(~kK') ̨Z#!5ZT^eHSeN#EM;^5d` ,-{ ,?&[;SyOG*LY("wIE CmXqQ#= 'f`{{R-oYWƳq5 ^> ! 0m/B+WkK) v׷rN3v9̠_ =r`eCKq8t"HzTfS7$ -ֿCzڪK#qח_H} >uguleVPo#9w#2VPƠzGDTut]*AeQcɽN /w>*_㪜N0^`z>x! I&e 4.^8v҈)-Ye=@Uids +vVu-6Gr niL֢ X_iEYdTLP*RVetH%lAXm22iv( "`su:~.Ev esKI3HO2Ds2(5e6v3\=tL.۷YqmuD A&vМ3ʒV/E)/hk'Vhd&`ZRV??jdU|=ČGݗ&;TDj>~` qTl= 0>9./K:lm#ozF2qBP٢Sp}tk{q$Lp2u7_`}mt9[j;XSzty_j9_4[g :@Ɏ63w3[`bpC@IwM^>Eb)NtMK5~KP3b3|T;4eU ,bQ\E ?ұ)7c {vFcBF>z.4N"ܣcvɾ IbAy?F㌰=QgWi `sGXe gshHcO9iVʏ=_?4P:/FW묂?\B?F{·+/AG_hz#}T7諬 OMyIs\9٨A_ D:-kqԝ.\V:Ǧػ8V%Yߟ;V;QJԷu9 ѥ^+_g{DΘqn 82>5+~SpVѝK^YDt j,2#<4gەf??A  l̩t$Ax:Fy$_-({z ףA͈Yn 5th i²3 >=bA0=4W},u5dv\T(NqnjFI(6DW͐2 & N s[PU$=1 &+j;xjxl"J2#ڡU/.*-MXu7eoXިnrp@x$[ :O"F=>Ǫq۠%96XE:O4=<9 TާCwPs*QO`o>ik5@1lğ (JD\L:Ytm\*eE%$-r"Sހ,8 4vLXN6%N$}'^XzBTYl)! _@@2u3 qΦS7֦mRY]%ۏO-& j5hGnjt/&US?GPݳ)U&"@$vL8e l [<ʼx({ Gz#:|rջܷg5[l\,r4**y]˄q p9㙪*t]:ٯәzgmE[aLQa22f#1}!{Ge GM}ڄˤДQP8 ;ueTy3v0PD.sRhOX3|\[j@?Qr*? *kTYʠ244E|@ː/>_QGqGvR\T8(:כ`z*?+2Jlޒ/'5.6+zHsYRe;YJ%e9laUE6X=5x|mR**Y'hj~\9@:JPjbpͪ@<_( WeQꕣvjeDNNXYҭ׊Nӈ$Xö&5aLЛtSF` 3](jT>I)]sI i#c$ReP&ط*YnL'ASFor*K[>d- ohΊX],%DW3O36,X6G)2퀀GhRD rPy b(3k+^,t~p2BɿRSXB!@63iҁwI0.Y>آmOТ8ELPR@+ZG3B ~uun½ur.2a 6vntPK;Jj7 wL?L6cB L5LSТW𮤺S6ʆ]!{HS."؃37^_"p5\{FH>ݛ7f!O5qc+8Y4\!i@x\\*vjbӿ*k]0ZGV@ _1ڀ 7a,al:DN:1YĀɅv%۰@ klaOBI9DQS{Hu3iJSM+?(1KAEWZhbK8=72о3>\AW~[Cps[*jGҙ*,%d Mf:x| o]pmG9[޻e~X&p"=w5B&;|.>|'яH {{C,?Aps'AUҤ? E=nXg>xEF7}LYo1ٍvey-9 m|8 v0oeÔ5) -T?( gna X9{H)R߮Z9/%vx < #plu  s\G轏OB zXyaV^N~QK=DcIZQR^`ME-|⨺ o "%Pvbک`?mQ_9gqs 0ͨ\E=dG|ҹ>az-QeDCA2k ]GSBٯAV?ic -HrX/њjA jE#'2 t8]zJOkX!b|Yeq'%sS { ]΂UGLRdƠ ;(ԉM η'|Vqdi E/hfft:M;_q!4NoIDW~sgQ}}Wf0B i XY-/.U0>3{Ӓ+CΪUxSMUJmE 8w]rs{aА7G1^sl2K-` 8GN˦Qbu\r˦׿ٟ"nN)!Ju-|Qaw`] l3SkCp[ p[&1/A#+>!%S`ge?2H@ jv>P%x}[0beNa튮" }!ya친Ymi;J|Z0~Y(;bF#[{soa.ՌK77^ x5mTI GE0Ncp{ \iޓ0&)Х'ߟ3tS{)j4fNx3n$~F9zVuhcs\%gM6mdKQ@UN{7sͤqKZ8O<®,SO l' Tĩ2dU,X\ˁڼ݀of,C"mcT7bZwȠ]S;MGeT]xiREdItAl$]kBCIhO;Кr_t-'\!`=a7Dǥ'z2kLHFe.Ġ܊+@st9T;hqj>,x(BZ5Xe% ujj\T\sm#6ytWSR]l\S0L`,YA%ir-^l^xVw?q+\O?k܃gU^Y"KZwayaF+/ nxa?h#PwV4ׂٰEtz{/D Ds;XCYdm#)gf .?u>|g}تdB=E@l2$Zo940(cV.O wR7~eMY/8ժůa1>+y ؂X7sFS3\jYp}utmjo\oƌB",<`_2D!S*?' v&bTHO)QmDYt.7S_S0w 'U_|Z֌`J|o>@G=nV;{ G bC&gON!%xkğEnf^Oc` (Q]%CO*Ж~pٕ5-値ˑl#kLܛ/Uƫ`\LgS=>cUA,OBqL1JE!Q$B=j:x]!]8,ӕP\ӸNr&CYrCmT BU3O =آJ+`v& a68c|뱒[QۖEq}$lk'#ɢ=i1DͲJZF2JZ"NSk\⇾"4E9FZV UgzD@*l*TEߎj9I*ghJ*A/VCGaڎ *7/=l294D"}ෆ0N5;Z2W%Tug0vO2R H6KaTJ0iGmkn Y2:8H .ۭd-WU]'ȱ f9-[,<^ɢ\uue~obVAL$F@MV6q-~H)v%[+ كsOH$ y@&|\]n€`@"3XCZt檟 g`-U>>XbG߲EaPdvJ7c^ |+t|Ui|3LWY<0oƬ c`[K*:#zY`!X|(dz`AklN'ܱ[3ѨĆҾ{'px $݁tc(qn}N8'9(mŠ_ITSuW>#֜H,̞AtѶ~JBG"Ys?J"{T¿&+,SpK-, =޿!WdB,u6F!Kq}o=' S~؟88)W U2H(r XϿD"iKۯִ)V_!sU2t1;Wf9Hd;rs Y3$M8wߌP z 8[ф8xS&~ Mp,%2m*|HAo&qCGy8[֍M>=2[~ZC> mZ}A>ttJ\c'>4ȏ6 :D+5ުd{"=]R#s*]_ (FV`; X3"ɘKnGݚ<%%575C_IB<xdkETw &#*Z`}åU6Bý5:egyWLk.8qo^?D*DԲmod;q5}h_rϼd䍎_ T!zSZ?,*GI\(1rȯR }pr.I/8 qL\< ފpj9޺=ңs9AL ]dxU3ҷN = ~aH0JY)9M/tk .‹ ]AA:e1^?;)?ŷ+O =jRLS}̣ូxtW8NQJ  x'6x%}W[#^07cׅaS*,plQ{]:&w#<ѵU;x"/~d!Lz .}ꯎ{.?_WRCVe:tpm-7G0bJpi["5 ^krDŽ/XIl%0i0r#ȝ,tqU߹u%2H\I6fcS!Oc9y7Qƒrư2D6ُ66GߺV-&MT}8zZKG|zhYyp{yui<ylN}EaMۥwh㵼vzw.Rra? faCK]jH6d&`3_r-*ɧ?{j<%KN-ɖn[,A)d1?8|6l0@6sMB2UJ7y79p*yltwx ¨tq~T #**u.aWHq{n$bbcyd57[Rba&3AY1vm#JZ+^ _GJ-rs [8`IFKm 澥QH)6Cۨ*]xXU mWO<_NǸgjzagU R0='='{5t-WCĻY Z }Eʡ2c>&0)SyX YE؞7?ZNj lAj܊p9^^ܬ>?X: >_Z!MmdDЅ-8{il=:N2T]Pǃ{)ai Xhj14-ɷ H?SMk_Ά.gJ@ē7Ft[J׶;8FgF|.޾ Eeϸ4@RJDQw@`Y`l٭I@.`ft =ǒK| S470fٸ"''@+b)& G@UlR;э`2T}Qizذ ) l[W(Z Mal4&\Mh[ApFY#Q)-SN82տ'ð6VQ_ Ĭ}7g@LK5Aڹ̊-=`oHãOٓgء 'GDa{Gl ךs`lm׌jP>]OiYÃk^;nXxcncq>`7~&lb@kMTLD93a/, pxDzF5cYff1'%^(GUB'mLFjBK1?W%޺71"#HqAJTс'T+i,դoY#e5r=) v:7 1W{q@_.zPtHs4toS\©Ai-^+$!NhTr|I5\749#QJ-'Vv.t0]._f? bޮs0lO4QrçTtbJ[3u&k .$3 ah{w!5tL)\"f h|Q_ۉ 4 m'M?  (W Gr#y;lx{XP&"QDjnLHuXa`^V4t㰙_n 6 B &u2F~S՝ԩC[(*x>ۄ E?5U*ҋO6#=|;la&؃yO$׼&j0~-I wfKΏ_|{CoӾyH&H-哣Yg4jsmF괲9d{XBzPg *:M:jKN< !p|'k 1;6KK3 .JUhwЯLhˇm7ɕApv"`iĐ̟bTp?{*C0/Fi#A>Wd*s (}U ~S0 Fnr]q̶JPXg:cP]'W% @2ˢ,,W*0eq%5 =?%o;ꤐF 6w^›[ZR$!Ϻ!喕S08&Ctd`+E{c2 u=8BJd(G< n#9 8(o%w_C|/(ioe} .+eK{㪨0)/9y}gVPϑ<-]Z" !Q~@yUp2}`DFb[|Փ [&>Yp~rfIt|[{4+Fe& fo{ }uc):Y7Ba6e^m%hfg2RZ# qkbNo}ݼгw U̧!iyYa([qc2!ȣ b,kd$ww;i\RgCg.f`?)ziJ>Q^,)Kwt)~ Ӫu1IM VK3Q*\}c"31޵f};,h"`jz{\v2I<oޯa~Fx6;XnT4zә"`VyAz^f_ÌrADZv j@rلńع}C2Oգo_<\)RRH{Nf f,x[ls5l5OR O|*@wz`S”3%%̍16ӥOr60b5LMV=wMMB"jggp;C!ķD/zGu`GvP^` vʠh2Eêpt"Ryi4l qd"V)RGH+z6 MAXH\FfytDvcW$xgj.ڐN]ԇFGR|lVR~^񨩡K9ZhjJ=k ,Ԇ4@.ZP=>#ÁZ9L z[uo"'TrD^Frs)M~yyƴj7-*Gk.H q' CaLwI (:ega}6lq~#cC%q cl6FTʰϚfQ/3Vڼ%乳;\NsTs|q3 ?iuMh iߺ!!>"LN-bbal%ݿmRS1wӞ"xNlޅyo>` YAsjp[Č}`y.[P՘KUzxm6^wz(cMڠZ Ɏ9ݼ9#OUؙk7.k',l8"/TяktlͱX͎!9m!RrUh,=R~pT#UvƱn3`_)䏄a2W8_mbVnw8lV6aū[*/({mS[y=qTn52J9an|S*- ,eXk2Qfg^S.>QwѶtc5:㋠)ʝ7X)떸${նQOִ|>f()BopGa4V/6[lE{7ݫ d^&.u3 5̜>,s~Rm~D!T:CY߈wutA׷Ub=cMk<bDk6Br\SGŌt;'w+䥷ήl0QZ-y&Φ4cx' 2dqVoimt5,6O~N>7@ؚ$.ҕ638SZutPՋŞz1wz4YЬVҰEA <6%/oA 29wɶI=xꅈ팜+';d$ ">8~dژd\=hwŲmvVUk7'ƣ:69Ṓl?}*p4+0wN k")DۢAJ:}ƜqgcXBww6suh( CԣT^4WnRqy2I ($I{+ +k.:0W.oDg9pf>JBڰ:oĚץ3q"8[?_$MRo)ɋ|%b?h~ ^.oOͥY6Z@^-K:jZ"2mPI*,kX&ȴk}p`-TйD3u7,/ԔsYB֌~\-L }b64&2'7Xqd%5nUᣡȜM6}3>G̈k'5 ԋjm ߵzx,lȜ&Dz銥 u_I V@=hOZXoFk2.W[I&DtH`MԒw(n@-F Ez4$rsǬ7ABhЅ;Bx1lb3hc;dr螪6"jd\yL:Ɋ`&ߌ"Yl.p JJ8/(gUn-U5) ܬ[U!S]/+91vCZ|&*0e*&۸Y|Ruz~H%ibl!(2`]>gLY %`::~gYYR/!Z F1VanGazj1Zgsry`{o_Ttr*z 4ލhUR?3r8xsap3ZJ.; XR~ZRhFsE]I#[iM^DP[ S˝8q.qW&O|"}r.WfA Q!..oq_(ƻ8aoW|23aqy}]ޓwuَ[=F4O^ExC2 =A%bHkǹ_+[g4X_H5ɺ ]x^}eܥ E.t bx䜌S!diU= (̱1q:pIQ^wY2ZC*Gۣ+V`Qk؉+"#Yg WᄩfXHDXM=J 1bFgQ)ExNȗ'@:qx3+jW$1C7zÊAu\%'r\ |c=f wTGɹKnA{uZZ^Xe טLcg8~wj\+( #TrznH뮧WgjZVjF\*yxuߛ#GW24 D43He('p r IΒTa~Dw9>ÓoMM@ b(ӾX[9{Dlcn@D2ʝ,vbaAv.܄-THo?> joDŽIjTl.prDV^#ae5Rd$ݶtXSi ޫ2-s}&BƖ6`Pott' 7 (l ~md*C= mt $iva, kRgE:pWE`jfiov@&8ۦl#npF! hA#]ݫ_.Z2 M!YY28QMTY}ou>.欕G[-Y VvEXi&J {8بo}2NGdg-<. #M*@BiyP+hT:4T: N{!7H^4GzTrVD'ul%j(|umqa4;}nҾ쵂]mIJ[:Zi~pwh§4x aXђF%QԚ7;2>JkYT PS?EN +- tH]iolRY` Ԫis8|)fr/Q^]6,6Kw=ωV;pIbT1 H;@6.E;+\œ+\~dZr'(6Q\>-8 ~>pх)cO ;?uf+V3x*%.NAҔ5M8,K vJߥ.Ք@oıWe[mb-GXQNA1Ze_ܔ?6\xk|;17]u]gLzuM[Ak 3RI\OB)$z_.;U(^,`97Ytt $Ypg15xqC\2>#ø "zln>;omQ,!p+05r㱏q]Ն\\QJ@1"5ǀKK\h'N zIC]pLKqNSlZxKPr`C*Uh"S(卢D~kkHrnMb BN/Y 5p=ToJ]yƄM$EcƂ U1dm7\6ŒWTa꯵cm&;x~Ɋ\ 7m^~.ހ7]iW:-u]CF(5,GPv: ΍C!^!:AYZRNZͥ d 5`$SOztec4'4lډ0Ԥ /~(*> Ř/D,=Vy6YCeP1jPAK%THgMh܏o.)h+LX"w2 $APPTHgae}[,MU &`SsiB An}ٷlt\̻2J=|[ Ԙ fۢU/ fGN3oHm2_`8&R6Vh=1ӭb1 \{S ER8N󘇰MmSlOog3O'o#;J'8T=puQs E(yƤ̢M1LKMx# ] Р!bGb@Y$U'x\f{ -{-c#7Z-A^I!e.*qqg7^6" GW$t RQsu  ~3*UG]zX|I c#҆R9k[ZE|d5Bvr(LtjybQ( BPU&G#W:Y ƲQOVt:}|z/]8N6cա(F9)Mm{?D G>tX+2b҈L%Zqdh5?jr*8:/U~N(`+s,I'?r'7?u"-xqznJ^$9 I ٪0Y~fpO1~^>HnMЧԹPhC NW=L5`IsnG=MO-!DG4,z{%*9\#@QAn!\pZ=%>_O{ǿ+k)4M/!MP(^}$pՈ}($2Kڔ ѹTm$1!t~#Nn(ӿՂzyϨjtvT#v}؛L?~h~$Mt>&:0\V!Z.bf'?#" 6^QFZ(w=KOggerT"0]'&uZV|\uφ+䇻:-[$gBxߢ 6*䠝S.H,i, B l$'D6XE(Vf_LLXŵoyV3]R()K Hi@Qv.Y6%>c4Q*[ Rc;k T<cL횏 7Pwa-»d:{z K#W) ֘K=O3uZ'D . ',gpq ?l0/1MiQeYV!:Oiѧw@BIy*'[CK&^Ton% } mgB"no"ܳ!u=D{HR2c1C+meu{q?N)[,؈8O˝z= Nk39Kܝ}St$>&k~T%86A[4,9炥'K|al+i w՘Mz7?@/lcڤDͱjBf]ՇSi߁{ WKifI)^Wg&' r.*g KbS B r奏 x'e^ؕ4=E]{*| ȑ%ټ#o<{SPqրHgio#L'4yj85RX?Gg!ek?\  TyȨLY.R:(ZӔY``iqicqbB| ,sZ#cI(, R/M$r vf*#!vQɫu`yr򪵳) XɆtͼ#2e r#>~3Bm:в+?E1뤫S (~ôjfiX:xB~l+O'hֻD 0& $+A驽V`u߿kX"h98Mɧv U#"GMi eĀBnK]0XR&~ɢ.u-,Ңe¬(SQ4\N}B1DHTH`R%1Lx6zcd Q|UxRQͯfKXMO=5 :' _6AvըcN "3T ~9e\gsaZu\VyCht!ƀ;!x$Gɺ^3 C~*I1^kpvD.6[.&<)J1Oc 37U Sk^ ,F #hV&vɺT8zޜV& ҍ(HxԖy;HV,q~ie5#+QS\4xB P#|=Fz49mΟ-Qv_c?ֵ==G;j9!E`}#u.%IqwO]6⏃Y_pIXT5 ;Fyґ"A0CL%Y4/}élF^5^y)cFi`qb۝wuG^BXޕT=xl?@o:1'=r`װ>גCe W)*fX ]Tz?bߔ߫H`S\I'#<)(PwjY_]]^J^k4)3-ݰ20oN[CQ-Mƿ,Ҥx探!=ȪoqHM_e,ʙᮔ eELX/Nۖ7V\Ü?a ţPzCTs?X,% Jj͝!ojS?`κicOX`K̽|=bܓƂ4G}ȫ!v ,b}?gf%/`u0+=f`R+t(GO#fgYNŹV+ճjUKϓj-m%z.2 &aZUc )(;>Q  )fc. r/t )ES>eGWGd=g&*~,+~F_/%#׆O*m.+l5 N`H`# %"x88uH yo`ԡ.LB4䕥ެV 7u&4JgG9]UMӘXIFMrH"&;'袺oH=/ѿ[A1{dD ˄F዁ sVsU][ Cyr#V ?%P --&a8!zx1n4wEF0|B,LإE]@c桚 6nlECȯpkLoF&@UmKVeV+U>9;9z-_{0$Ԡ7?X/'J1DRCp%kEYl}W'tle[:L4Gwk{CeV"D} x;.ε#kfì"Yp{v֒:EN=M:љ'm2C͏|[ݸ ?fs K̂SqQVǓTKK9>@v%\~]'W dGԺEsJ~{Q=dAxVH5pQBzx柣eUWu4s)"W7>AKxj^0vt=1p+I_t}9E?bM;8,֠,G%nkӃD͜M &11F">"nx2EQ4kj`~)KOwcɒ2j:1:7V6$Ʉqa||2D #z͌k`c(aؒ,UAD& =P1E =ƁB?s->e*]G@X0Z֓CW@| asu#w9RnL:8 J}g{EE#'2N&@WwASɲW"VPȇ-b&x* ̀~` Ky%AcGѶn i`D`,wkB9P21 =LyF!"#ӗ3* yV=̧]  '$kq$ĉ)q,žVK)t-6LlcD{Kf }yH'=< 7|yΨ'EBx'؎g++7԰v]i`Ƿˀ.q{6n-/V1'=:1U-3`Ư-ţnzڏof!=*7}wm8*||=L ;%vEn1=obEL }OU}GmHؖcy>eD݀F$ly8zrwP;#Plh `JWpOӔ\ʸLUqyt7ooȵ`:ڌEV,wed;.#ωu`Kb!79ۿޜh*R4K<׼3Kf^ɽda8E*oNF+a;;]Ǧe  IICߓ r4_8qO`A:=<|THuvAA ŀ]q3t0F-xdW)X myE1veyә>+qM󐧿sM̃hFA%?L r 7C9"I3L#naf4.m$o@͉/óo|̙bThPr,<9pW=м}yB7f"܀@Z V;t%hj–SШcbg27,1։~'V2|ۧ*E:JVs)_ʘrydt_, 1! w18vW H*?KWfg_xNEC0WX̷[24'7iewFU tx-Kð-YTxhBHխXqE=Nv@i[x{(] Fg$fl0"ӖMl“gՋzTD*vyt!@._F1E8gG=}&k7npHk7kDB/>[oFYՁzX[s<Fh5Lא3;`t2W_A[Sw"ꍼwo[sg*>2|=K*R`\y "M6h6*^~||Nm}\PY7Q\JVέsT&V$\б>rskJ fmQ('*#C@@Q\2XK X"y^<eRLoAs5fzuf>SE1xtZV\VKª͏/WB+ס)%}47[Q]В0+k$GD!&s83 _a 3h@vdse2&w3phL8=%2]@#4MC' {]]|N8~$d_ȣTDYmBJ9ņ>VnSN{n2*Lu0/-1g@K i5>_Y 3۲zcgD8yb.5MRN^l=LY0tC Ek>Kj#E*êڋHPXe_3n8^ĔI>]7uLzp=(qƿap}QKW̘E•"|nN|ѫ^ p NPDk #@]x [ B/ =fJ0D+HQҖ}zHvDت%0 Rb?Djxhyl=yx9WT<Cb~Lܱx`hs[ <*% ݫ<`NWk]3L`Ή@'5z  JqoQgd) xQ؇m$W)ɍ<Yux9W&l5~(cS }kU}~g#=Ε6鶇 lAa$~w`a֗fT/Mڷq~BC4kEw_Loe\]m/ZKw0eX[AN.C n%&((|x%=4I1CеfVN`q4Hz1UF0xH6<09}f^ڵ {hs3 "r]1ES㋴OQ`@-y۩ N} B+0/[zD?t~jj*e$mj3 $H5O.CϨ>O['#(F(c-G e WRYóK'`T]RH>'p/u&S * ~_vJi$a)dJ~!ə9gM%nbFcR<`S+挨 r7*hvvKPnі4ʣ*[ֹ&f/% p1Z)m%wt55&B"ZtNS!l;L7!}VwmM D(ʈp Uׂ:d~]ՇCAFC.-+'A8ENcbI|L #J4śh^69=1Ǡ4 )XnA Ŏ7D;4倧EylB`lAhpTV~"'%_U3R|EsxMF-+߽g=4 `:뗝ːY-b0"P#Cnm3BW*&O=f7]^&ްE%Y r}Rߵԥѿ|+¡1_EsAzЦQZߛz4|W61a[b"up]ܸ1:\1:5R=RH(-aVmimA&a0G-Rv<|{-Knni[ˬ~A `̐ \? tW 'XpI[DY a&fT_Ȟ~aeuIcT:&zQ/{k*R!wD%N-Qe˴ݹq:u.yꛈ10z1J񾍞!f7Z-w$ MaR58k+=SlȞ.?-4a] /mÓyP}yi=)·ބh$q[Y+^8ў,hR;3\YFͿ5B,#J)QCfG6J+?phOm߷C= SAkUW! z3͋wih$89?'glqO C:_V/FީۉX( ݹHj4GSDl$f O+fGztbh'PǸ>q . u1]> =0ʩ}+}F'+ܘ[&) (v>Ώpsdf#Xi Ҷ44zէPLTiGfq#0[Yi ƩZ+>^< w(PcI)jWl|̛&p6'u~EүV mF \V1soKh]B)]/d_lu&wr՚ b)7kWK'QqM=v>LM}fXPBJoEX |:L#]d>^V>'4a,@Yol*13+"!0 D(]ol\?/eV"":0{bjv.Ɨ) aiaYntZKJj)bze4w+va_K}r8qnD U쌭0@DO}S:Yy19<)ZtTg(!TuIBl7` .O+"굯¼p$K3J|vǤGSN#T>G9:P+acP>$W֛rdث(!':E5Zmp]W3lS܂g['u0ı^sgA9x)\Tf  -Wrԇ' a  w^ ګrz/=]a)fØz\(˫*ƉwS_ŏ*l9 Z(:#+M2ewT~Ѫb-*>!8Jc2 l }*LB{v26XJb mfЗipwiwT9Fh4FVJ>EM4y+v5y&.غ+׼?\HG) vw: -Ȫ x=~cLnx5"V#X_s{no9-q:bt>׊`FNO^) " [' ޗ/>6mIR'6\U@t6 E \c$KP@2/,ȏAc~ofj.acdܮ,{%invx( ,i]x`q@Wگ&g(lY-Uj 5ޣ|~̃Oʨ<ܖ0b+9|΃0RXpT웥MP= 4W۳GAKu G0Eډ& \:? 3XAAVߧYL~!]Na&m;UnR%y!u49R[|TE2`" Bu>DRRM߯Ul Rc ykvp<\Uz_*d" Gb稱%,6ke_d ׸U^p8b}OruR?` .>,rܔAܪi h*ksDr61*ܚAwad^r6vkaj;BWTD6lޯߢ=η\%zGڲ$>J6_$ǒ 7KQo }:v6 rȎJJQ)avΰi"]#i\+gnc jQPJͣ vlO͗ =hRvj)$^U`G2~gob`HyH285][&^YȜ^iS& RZi~dOwH |B]J𕸁\~%Woj| cn}62\x1儊ͦN`*^uݿ_oˢ \~L|OVtc-!mMmܠRq.z?Dg R^L$s ;՘$DU& Ȇp4q2+G u կ"VнƔϩ]vqw ^4D e,8MP"mIKg^k}ާVjXbJf{[B[@' "Ǝc]BMD>i&x0eʅJdWa8GVA[;*ьnfh"?+^i١KP ΀X;-]-[:yTbM6E;[Z^y^ά$7q(Aev mFCYZ}j;8JeyC9:ɻuFmʃ=!IBK;|'T|8pP[чK0T G2Ѡ! X%*& 9b.aAdqI Cc"nK~X^,H0OW.aP5Џt]$^&%шL߸]F<9R_8.P+]3A~ʡi7ɡ'W[S7zN7Ӄ-x-jFL)RF L|^=ue6$RH!谳@6?ԀS`iXGm: ^OmkG{r@|/LU? 2nG^ګb]n +lk*决Z&S@Ze}xO B6glyK|$tIq Y]䞦As2s>=g.=C7:8!b_ ]2ߒu,؊$+(]"m?RBU ?JiV!O}vD/0(D`:fO"’&LDTS;7f)\ol *z(.ڑr% C *yR15S3A%2etP  `4x۳vÞN[.dG`JBuLtQ;sOW(4f KM' ͫ޽O ,_{?vϷE:}P5( @x"* `L#ƅX,{nn ZJ ?_s/[?}7M-&}o 2UƝ>$A5՘l nܜlyȗgtA8Sa-ObH>4ʱ z| Zv:my6gGJjRHЁfA&>c@sJT;i|84Bu|PUi™tnsw0(.\Y5j/mX#!v[`;<\l jQ .3akq DP Aqg(PkX&Jx\"΂?ai\ ƽa*X`信tGՕ"9U'IhEJfJ1= E+53o|Lz}\ 蜴d,rv7LS|[e+}FJ}(VkXC͖i96xPYD͛):DpX,TN;VNǦs&]j, ke)@"ph20WMLM8W9rliH=o_#။uF`0we84PFvK̆U[7u OiVW9'T7}EƲv_@zӇNĢt-cDnJ!47:{8ajDt,&E`pĀ)Nk0qnozj[)좿Lt{90:R1sei!Mz ?`;`ll~u[C4kF5tM)D#=,}|2" =!F:p_夰 )nMՃi a,7V*W6Л͙@^ꐍw:?,M7=3 Bb))ˁUPߘ$ȂIh8Oz mMm·l `5`9y0g?cId0(#m@k-tS;2&+|T.4R#O;MG1mf/"6A&VT۔j8+b"@B~YЇ+fŖ3i%`PNWs?<ArVx)#[V#gV a|d*ow[DvD[-d%c.¹0ET5/B1y=РPZ$LXTTNׅd(0x8gj Z,i<9~<52cYÖMFq.we5̍Mx(&IPEɟ+|x$+1A.?8#0省c:2>f8bYH#QgaBC.T}R> ;hY2LlT&2Ha/׹uY~1(AvVG,FҮyE#+B1;_R?]hX 2MmL Bb^"6O, ,e{1NL%~{O P'Ja^jژ|j~)yte)x}4Y'# YQNe.WՍ~]+[h0ju Nk=59N e7gڌȰx֭b 5jiޭѰPly.\ٓRD8fq#.$]Al!ag[bZeՀ3{5tJ4ZSIR8z9A_KGY={|VJ3Eeqϡ&ͬ)tCK+iHoU| $cϾV՜ڼ {.u=}t6Lf>Pw,|XfRt|M^3Mg]T`Lp3KD%VHwR@vc|7\׆_!λC% LX-qPb̽co ( `~+Q܈Ȝ2VzEm |.\R ˟ױف˦n3,1SyA;9,˟[c:`17y^im~ʇ9^Q*@*jMą4_ !ohJᆲhZǬ!HemC\1:7t_4[gإҧ .0Y nCEe ֙W腬ZCQmx\-%Q*!۷.07Q$ e:9{D!<7L$L2eջǣ n[Y\]/2˱jaǙ3ڤsao$NY23AdiVC j H]q&wc5 [[ )$#GQ!؍6L]T ZK5Q먞%6/>{<8C|g[cd NaA7eA6BݫQۣۈAK6¬}U1S|Mx}>P48xNHp6+EC2VRVF+^b`rz<,)4"l"]Y gZ-g2y4si1ݣwh‡2:T .K'xJ=w{cKi  0"?>6'1uuh&<#9KI, 6AsE:U2b~ Eb -l0d(]7`xƳyT{Cfe&ɯ\qsbm|ۂ/U3}Q|!y-@4/E+F@,?>9OYM4d 89)'w:ڣ:nO>ol VJz;Oj|J'RSu4O܈IA8&$UA斑ؘ{/0/AjԲTէx rJp s6day48gjxĄtw%~ -c TRͺڻ#6W 7>a^PrC4ҨfB:Hҭ}dlTTTi~ iEȎDSͧ@K譚LaUFV9j2cG Kּumcl~.Rpׂ9ꡯ}{V!Y4`4}DIVl?F6\=Xpu;p /& D} ps8Sl!ryvF-^ce 3AU1aWuom؇xҩ'1؉lD; ͙L0*EVsT p0yG#9G? n5Dh|H7o= QmF }L1`!W|:0cLmkomi}$ӍM9蚇(EP2XxAvH618 HL.O7RZ'C~"ُ %~azHA$ҙUBq܏6Hج{C_1,N< "S4Π@aPr[W%,%Xk#^x^Y!}s1K=k>zc Et;&Iu**r3t21Z6?Eޤ K3h$khN\0. =9'T<]"tlظ Tj&zd82:qZJxImE̼` ?0!(e:ʼQ&E >C=zN~(ՕdJPc;)6|`6z"È*R#tfLc0O׎DUt[ f;5Ǐdck[rQGZS[]c>K_0ys}Sߦ.]lo[adf`H!̃A7G&j(ALLqzɕ5Rj(+$Z}R ʶDXI^!Zn)Qkt 􎢴EA ~#.?@Ukdž#(-q9mr#F"PVU";Ķ  Fo6`b˟'m&=O1.1$X28{xyΦ@PNd1{J)D*.ϣM{Q!mPO1CeS9!? j@>Ĝh5ε+nWW}ob(ZX{|,][\teV]UwI I۩SB$ɗȚ8ЍbD5c9fUI,~Q)$(M{)1zghMu#S̷w {[ ɻdނ@%W":F^,zhd-_ݵC4l涴B( Ry&']6!lks6'^.%lF\! dƹUiz$+ ao]Z݁4y=rS]SO_%-&λwdkLyL )]::{C~q`:1'  zmFvSW+u~&q^[T\7=E~Ha`̠F7zـ`Ǐ[%T`wCHg]7A1S_*a SHxJB1.E*.XsoWZC׺97/%ұ2[ێ -ℳm "~,i\M#Xi T۩hkN^s {uzC`: |v8jHکБ4~|ZGwS5Y xҕS R-s7Ea,|FH`xo QRxP㝕y`?#Fkt=&lFAtnouU4g;& ONDمhy>=չ]A} Rn>Kk?N!ҪQ$ٔ5'T'c{9Q?KQgE@lTG'/><~MW=IE5Gpw ÚaQF5>ر ۬J{YW6='U6b*%n4/?lxd43{6hRW+MNckB>Ox圬z){DCHdvH1,yIVKivf" S"ܯNY)<'^Uץ*0_%5ˊ+u)XwΕLy| 0dq+DŽ'e\v;tXMDQ,ppBA6VgqJM ]Mxa(np 5+t:ް*u z쪠q>e-/n"NaXa`| P 5Zd'1JE}5ͿțRMW<IvB[Ŋ+y=Y\oWOjI-R0w0 .!͛!?8 -^?y#3.~y=5Pi-ys,]^coEB¼,Se_Ep$wQ|^jV6u!^gɍ{lw!Њsm&PWo}?:1ir֦(e,QGp?uwY7d6)uQkS,JVg;ۤeFueUj5M)cn e9VuePGZV$mKbT4Zm2y_Z::ZiANJ߲䴏ُm)OXpYnwԚΉ[;7J!J5#e(fe a)C]kF-:qVb~n,#퇯HHɡ7 f8y֛ `HXxjXsJĺ[jP] oGi;:]ޫ  &BGhq6+}eR\\uJtQn0œou#F:a$DYMَ߱Wj-lz r5&̆nUhl)Z hIQYt_2+B' Zة'a6+uxqʖ<[;z(cc+h+EB}q/Gu bqkq$)~^春~'Ef^ [}widlzh<ğY(-筤0a!s-,^Q4V9L6?VMȧ:#\qR`G#ԯ $Iq(KJ97>hrdlVKQ88;,y_$w &BX9v;!8U\7w9b7b_sB2#q< YOGstƜ"UDwE`?ize"*SӢAb,,#%(O%1j"yvJ]+V'#BJJo'@{FE-3Jq2Nڮ7}h!54/ۤ;% C sVG\u=*Hvcʳ'Ǝ-u>5eR/8c`n[*`7X%hFI&'w&ȯLj{X J >9C ̳8nƚLu6d#@՟C\:NKi1(it+@TF 5/Fdo9c+z2"EtOO/`aM.rq{3Ҡא[V2AьΨ =|贯"TB8G­ LxE!5Bנefmܨ>e-7˸qR/yLaok%/9i<{WHӚ0I8hZ3->620•*_*An1yM44]XL,">F^|T7p/"n ߦtCz-H D l1zXq0} KAue = 쏬; R΅(}nBeֺ&ŜfHKM^rTYs,=Ӹ+{TG; a[m(!}-ʃg.u(m IDŇI@l':םWp[,GN$K{%86r ҩ^1_ra:ξ%QdըV+L_oH<8yh8g~ *V 7D ZcP{ܱ^BMuD}mdEp:h러'|-vЀ8Ao9(P9 A|9^a->aʭt@H&lO_9B u.UЅwh,C$Ak&!EXwSĵ1t6 -ۿ[U"/ @m`FF 5^L TnD\$8w(l+ >ͨ'xbv.o}*W6dW;2BNOd,뙹f ~k6%|mcd }##PAǨA%-WF_JxpP[6*#8"eWz̹/0o:1S-uT#[{!G3:"Ikb< a/n@n#csOW[DMD4[:H"6ּawjߟ3KT[v}̡))T9jGOBÑ-&yNbfzK#l&'UF >)3(iaԆ[?%TQQ.Ƞ{τ_MGЙx_ `}Z5+"ۤwV۰\F>`~VP +ò&'*@8s8N)--i6Bʦ dґYEiʇ7-<[fz"Ю媤,Hw _7eu8$X {&Y=O.{I.}[S񼍇2Q\.&1Z-겚[Ay2R^m経4)% !op ʲiY[={1l5nݝ[3q b-skm-w,xe7NF/%Bӯq1fAA-CN_)`hl{p2Uq"2q дYYX=y|BM(X#dfO^} eFl'y@,œ$sxmD`ܬt0:=an}'m"NM"C8RPr&vB-]H]"nH𘗋;uUqbb)k@ka=JjˢթFR>n߸ oOE}0:5D3wq_EV9dr`V5>[|5J_GrgM]² w|,D[,Ԛt//A'2s>G5> Ͻ-b,Q&a (vlQMch9ފ 4IAI S9^Ѡʝ8I?ǴoSq :s<ߎGB}#}IOuUwbQrڥ/.`D2W$kZؤ7\%M1P,+ԀH۫?a2pW#h%B:k,҇;j_%z"|[Vfl uMMi+ k~N~fC{O /~It?cySRd c TP_A Wk lGMS Ŏu/dɥ ЗWal j Ops'=tbIrD k6ҞVD)S >{/[KiP|؉ 4Rϰdghw!:<[ Qt}; }E 8}\ip__MȢAuz;vWcS?6*H$ H^I2-%\u,ab=QY}k::B6k8UcIR$A:d$y Rn!{+9-g -~~߈/Ys'$2j_³~Zn+d\ȟftQPr"w7ZN;\, y*?4{pw9h-Sgh5s=0kߘAH03ْV[ 2u'u5?Im,1a{{41%g􈯖!"#=o}9g]wKMjoWm,{{7,v%P;)3o i%cŠ\۾lk ODȴοL h<ݿtl_xnږ {LsWon⬤)je2q$SFBC+2o9er.~ؽ"&] rʎhANif7U%\Ԥg]h5,e.=N8`"*qL8 X Zފ\GQ]|U"\Z=$i9Ϳ,d@pHxQ1,[G:eַ|ױNt.e6%KE['NܡZ1Nq:qk R^˨[,s):›V?}RP56'IrĊ~` pE6x#D5=;T=ux; YS}RWjG 챻ĕs$7n.(G;/sЪ)&[ ss]eZ_y)8 .Guڷ),ࡈޢy1Hv"s'+'Q<|x;y1>NSL8+XFơR)ӪbU^| Ƞ[ge^k+:$&݌مXeI7)%MKPh/BZۣ9j!y 0~OI|\%,'1*jc?{{QbzdgdUu xAJњb"Y1 F+K?yG_VWa+/{][_qwٔ ~"#'{ (#Kv,<6$/mQn=1ȪݻzJS$:%XKS;oV`͝4g1M6ʵ30Zyٝ %B&|QNJ$FxgfR(iZТW)a@q`:I-$5T")䊫\8ϩPu cQgֺg9ng0p~ۋFlf;/dѦ>mՏeH"+;ڏP0OBFҜ25:|JDcqdLSdEdo#2߰,GVlg ~'̓-ԙAd4㦖&w~z"W!='Rz 9) e1s}KQ헋Ϲ.z^O`Nޑ4 ",-KJtÍߔƻ=ǻgDFtr|"?snWZ8Uοɦ𿓽ǣ:Uey@*ȏp*|}cŔ[oXfRKN:? 1Q]V pjD:>23V״g4WA"^%|sU];wf1X$+lto!dd* 2: {z~Nç$7`>FT#H,.)uNEy ;GTĮP`$qܻ~#TYjPKׂEϦBu9Ts2pJGBP.p#ߒ FTk:=5v,ژdg$@` xF Ї-.y} M%MFC沫HgvM9 y\VքlI;jY!MXQ4oBsS7lEܘs&2Iya/h` k֗/lAM!1'9)JZ>>qj &`6ªZZ@v{0ysy+%S Lm} q#E䔉il;%.eJG }JY2wZ&hG<85U!A@W*?ImH`Ǻ63k?/t;{Stޥ:dQ~࿎vsA- Ul>sSH\ߦᡍ#giZ)2Cz~/ d'10 'pixǞ Q<3q6EtM* ⽁aUO-;_ ޯP(_>YQq" }@N}k(RCIRFf=+K(I:4V}~1YECko כ1Ȫh2fa{+/\:'][ASi Q~fW~87&x/q[i *~P99+ޒЮׂ?~'ФÄVQ2!{f{40VPrKgD]ƝZ_8x$;ϭ/PO8XM0c]N v?)aOA[Ƭe{ԀT:=ďWU>H*,~i@oq@d;{zzQ+ ح o U\S޲;IRIeG ~q34{gcrG?2@_䡿O9MW.x0RXrtr5Q/܀V(^O0PA)σc:;ձF%!-uBt⇽ w:@kg|⪕%7p3Yye%iߪŐIb<\cϑ ЖjIt7z}d3۞5A6y4TmJ rbnJp.m*Od@),l9 @+"OzE"nr*|[=(j;9{U*M :)fA<ܒQSMC>Ȁ3s  jd2&kO"7/V{Ѳ]wy[@]l]E*%2Ҷ#^gSE(GEn: 1[@@-\ˤ s;,((Ee)"}@2;mkjHEOt˸>lwcmqPkqfũUF/=K4^]'t-|FE"zO4;'&xt8"I&qrqf#&CQZ[A%kP;J4 Yh̆y`GxIX,.XQчrVV{,$9*(V|}8yӥ?mj U:>]b?UyhFl#ub/:"O6=o(W i`n>Kbb.B;}m5"tG^өHM%wґpN-_@ꭔF.#U?`;z#y_8 )̐5x2AfpR}ja^&`,~.:G}Y䭬#gT(rp܎lqeE',ֈBO[Q⨔'}*7XU>Q٫)kROu=2[SNϧ&? )yvQN5w@Ketɷ" N|1 \C=p`k"C`9.XabyW^O>rNIf~)a?sN_o</?Ȏigd 8]NQ/] kA>m.!ZNʂ>&5b(Y*L^f-*8x ghQ|ӥ`@ U2ogpАh$U?B@ ⱏd>NK\.siUK#xGҬz3}3]=BQP^G;K"KF[Bjz9D_q(е{!3IIzAќ`9q ^f BGV1ÃљR(kN3$YWL7tv]W/C3,3otÎfıp9#*x5-ݧ̥m_aP5a8v1 g3*l>. ;=112.h޼F4>eTXWL%v ׭[fZf΋KW_ v(4@؇ز;ūPGDTТ3`mHD)I"UMIX٣'%doz#k6Ê_y^X<ݶ|2 M a֔n |#'(b?´dm$39lه<7F, x gBr֪Wȸa!K33j=;Kk{+ğsWI݅xa;#yp ejieǎ:.1W66h7cDpk~c=8Op'B\nq J1/x|8Ejb+' ?dX*݇R9. Ӱ߫{ms;a^Aca>Qu*'/OE~|6 \uP6u'hF>H\{CozFƮ +,`B?8 ϶C~npimOZ-vW{һly%]Bw)ygCZvkK]\7'-8Y,X3i.uؿe>h J. GCY8lJ}R$|dNCȴbig%< )d!g6k6D̗|.Ve `<">)?Qw6|=64hVܻ?X%T"X U Xf?Wts]WVD;eJ.Q^2W~GlF)Ym= Wwi}Br߆:XΡz/&n;] zn^:ծ`3d#[`6MOMUL鿉 ؍ ηOJi}PMm˩7PZqx n Rh?k"PĈ=؏A~v/*Z<϶gf$I( [Ԣ?Ga&vBo[ a6@lQP;sQ9U=':b qB% jD&0Oc]&V_,b -Nnʌ( ך^czq^Xr?'J!J a @JDeB5.)ɜ/@iEXݴWdtfOay!S E?X#5D˩0fZnU#exkZܽqF%DL T_A-~@_((cXf]:dSa0: @\b/OIXFekI&Ѐv{R(b 4 $!eJrCvCǨ 2mݥ0rhM63¶PڣWDDM9c kT0hQA W >SS s))C],x,Ԃ-5Md$>% :*: &TBBNL)UƬς9@%$6jmگH4wLry^iT _lN4 uSĶb9@-q2lC?k!oŒ-0fܖI1>Ԋ70`v㛅 t?6qYtGqy<}⢠-.Gr櫏Vf1!FP:q)3MhpӪq .*Ѿ0Jv-rTrPI)dSQq@a1 XW#0`(L_ciL}bWNƴdfVuzZEv#6K6`;ov@]M E+;}En|?̃S>"hD47!:-{2d훿+DmQiSXxbPY-|9'!8B螣r3 J /sw',o yTZQYlXlXoc1Yo>}P\Zmg#*)z45e\+LG{V9!dWZH-+#gI?wY<0tb(e<dD38,d *lgQEEwQɂȕUfoclpNCk ȍǤpZ@ܪ"̕z7ĹmCzDC(- Ybb7SW$SՊnZXYq(z!§Yxӥ](;n+-IFY: %=]E=R>wV2e7Q[|~e^=J-p@5<}|gȫ+E0 F&b52L5kOG2{Q].xP7ԃo=3ߩCvGyGQ"Xį_" ,II[〵u D3RJwYZW~a=].SG]"b>V_sCUլf|&Y\:OZ~ +ҚqIe nгN#?`7CK1 RΎSb$hPT[YND_di9fhǀ9:מ%Pj13z8|ޮ2p:pP۔R o[ XFK=ijY;4U<_5hi -$yAsYQEz7QT,3{0JMӠYVV:+W`ȏJ0#ZB|,i!a4<>P!eYq[HKf*8p<*49]L3EV63KɅ@I\l}҆ oʢQ 1i~a$(puCv]ٷGyƮn=Md<6z+6eBvʼz{ky'v,-[ĵsi=N927*t죓6tdO绡Ti6-iFAp\],(]Sf;us=y:h2mjZx\9٪7\;1.!a5$~ԉ5&!Ϋuqo}W^Y)&?حNLzfi42YB z 9ε:ߏ$8WřR_kU)ev'FW|AS` gkԠzιk ڃIjEv+g@{E 5SJ;dbhGRBԧ:ppr]V}eԘ'D<-CTmcw׻%e%)G5Ů|0 MK"GHŇ{ٌ+{~_<%sx1.uEP^ jGj/iZ[`m׫׆ _IqRGK3bTRpoyppDE=eg2j?xaܢ36e:3^焴J4u 7GV=ۨ\5R_?A*L0pC=Jͥ|xOo& 5]գj)WI W18UP+k&K\ʷ+IuȈsSRҽDbk pꊰ%RxܰZߌ^c\wU5Iӊ_6UѕV·&wC+֌HewLuшQݲ765m]m圻pͷ.Tni5XRye_OClpZiiث%.> j9!S MuxV5R]&⛙* ;5l)Ǩ'Ɂ79suOgt.O(R$?KQ[S"&x2? ggO#!f{8u.Ӳ6?DwN};$)S)6Vcsy{F*#o3x]Vo@Vbl,'BҋZ H^B<_[g7Ժvo>ݦ@$9+0BǾ}Ӆ]nȃheCz9;QZ.B8'JJ\cOim}Uॽ>2S+|ÿh͑~SvXlr-e0p]-|hό}6*n|t].XPNU%~϶ZΉsu0 2DQ11]ג8m00ެ2-nM"?i~hDSL!?A&i'tjd'5kgZG('j̘?7c{oz{M8wn 8 1^#)]gyﺭz+ZDt|^}=ܔB@Vf/ۺd>adN  Ed7G6lrJ9j}ߛZea+Z&O* #a efo<;R>Pf@?xO- Ā.Sc'JwX?G}@u?U+O,upe wؠ^()/:Ľb9qΥш޽j@Wձ{UD9} 5v~l Tp2H}.5Gy(_:95pbb6 ؤYsg0jdܙՋ Ml;Ku@ RMe0-xj8 Q! ){;)S%ⴰM2BKqA x57NQO Y{Tʊ DHX Xs2p4hbvU ݪb(c2eordGN'r+P : (LCH;}Ǣ<| dMv?\\$|[@E^|d&Gu](2خNlڊ[f3JѢ:tִΉ ϕ> ACw*ͥVJV_^vfޫڌRPaurpOL/[6g5:+_Ϥ &l#qB<ʂER^ )n+l6ԝlO-TQ[eD8"@pYfY-9)`cYQ^$`E,n۶I& R9*DWϡhz' 'jsBp&A/x,'0p^~-d75=4Q%ATa7@*8kiP%h25ŏo!|p#N{ ~2G1Uʆ6RA}e12ڑZ$w/փ?ظ|]pa~ !+UPK_iaJm yY#ȯ>k-?ćMrt0^Bp5"+8R,x% =&>|,'O!8ae/}: DnG{:i/c '38}g맫H0 {L@ˌ`(V%Hig IE:r%f ۆ@"~_xU* b2 &(Ϩ$k?&GK%mR-?%=M]6tN{Ғ/͌ ū < \qJj0n5a @4tʔd3b&;Ia:ћ.+ <WCb=؄aO,4DG~]J⵳7z#'h:D\7pĮw;1E99dC٘A 0gW'|<٭ȢnNr5VO|cf6Z{/y5?o&j]2sy1{T#{b qFn6u~<$ʲЕf衜&< ,‡c!Xivͧjõ"Z,X|K,zU\_i@Gqw[qhOi;\Zcu)F v9vX:#g0 fKrR3fءU^ČAQX= tJpROhT9 hha9Kmtv&,#: L $] |I_Xٹ ] ِ@8kr&g2Hh(.+Z=U3Gb>ZvOA:ATObS]KĿ܍GށκLzpTN2:? I3h'Ue]$[Ts;fl5t#0?ٻYw\J~$~YqaKҿ\LJ# mJ7/ͱARZT3 $7v X"Kʌ6q,F?]<2]K-I(߆qt\o @ȵks@r}?],J0v(VKsݺCBG4T`!uJLřI55 V ;Jwf](zd-<;o'}A6 5[m̦o\%ϋ~R-NjplEDTU\n L:; 6nϳ()2庠1mERZbYCuOnf+5@a(ewMyz6:mVf sqD_{9jsoTqթpmdg([kN猑CK{æ֔,l^J6%] lL'OSl2|ToJ)7bOŘkAW'RpC<Wny"K)N`ZS~c7VԂcVPfH3 r Y[O:dJͦ=Agmj @Aȫ鲽 &6ö\ƨ^;")O60zU% 0qHfGy \2E8{C^|&^j|IEfsLbG @ C,?JAyȮW DBR)ƞͺj渟ӂ3L?Fo?y@P `z|i"RϲdZ*ҫK Ҁxy@ͤ ō$TkS혖f&h:пX1f1!HXM?hֿ&N 4Yw3ys-?'Zn)pg?H<{5Dpּ%ϫ1NoYZsf0i;sa0v;ܞ8>`rD)@;$xT6W"|k/8p3T`/ٿiִ:E!V!r9[ڧm>)]Xe8}x9bUD2\a儭!\-2t7f\vTfN%F,KZG,^u믌FHvp# -vy^Rw9횃9[Le >M^ Ρew,cI7)'6l'ڀ)<<6(Q'=iD7S\b6;vޖt K"qcF!nY|0`vB-BR+Cvp\s6 SiIP1q!Uqa4)jjj;CDׁŶ/U0nczU꨸qsQ_uG>m~z@zbrlAk0΋%xK^W>W_4ԁ8;y$.tCǐ;YH@('s"H rйߍ%C&?tG!N>: /uavr0%"SnskNYfVKi)?h Dg=+ ᠼvz9{(qYNÁifrd !]O /IzJ3fvNUω2>% GghwP~v3'Vg#@'zVPIcg dr@^#Ů mNACiܬmix>[2yIl"Ä0R>~ʣ}m %]z%$w 7j]=1` %jݹ=5jQ=/tuc2lޒlǾ\DBƷhB:V蕏ۈ nt wl6olDkYj`߮Ddv {DgԨ|^m6r~fϹX36XR##6X c$&el麡|0_տ`nGaG0Thƹڽ^mh,qh|hKwm.5hpw=8#O EƲӮ \sAto 1c/ ^= ? 0I 1i>NQ 3`6$=ɻ;h XMb\H]@{QPI" 8v1Pkt%ݛqwCa¨hDӮ-뵑@G4kg<_R[=KFH`׌# k{;-nHҫ>` LAϯy~.IM+='TJwbuP|z`ra,,+e6Rx !bXg UU7Hi23O\Qci3k 6>@Z@&}R9YUh~sّ:Io[ƲRuދ G};&h|FT]d?GN]PS{BX̭ZNa?уM )NcJ"_OZ[@Ȫ(_sgpNcFqvYQüR g>@$j.KL: TbtX1o#: r;VۿqJ\a̋^1k ıZQZeoo?Lv#:x}Zs9E//SB$q3.'dUAXPj-E#OѤy.NoqCqCg0:6aVPXt{LQ2bx<"IaNL~`*FwoW,ۘ52n Po y׹ka{o\殈yptG?LZg_u_"/3<__fQpߪ Xݣ< ){4,t'GUPA9v|x<16Z=11]F )\ c65@¯ Cuy m8|VnHg&p뫹y%}+֠pĵN_Y"`v:c`+wHCU;,nJ^B\ sJvDfL_~wY‹hQgvŶxct؎@ |bu#{ռ@dA'ol6vs F/E*$:|5[Jn-kf/ڒˑۣ. zYu'Zچ.I˪LOU$xA|>ob'- khc EIwQ͕s+uŲ8ςpTKJ+֏F5^c=}sbt:ߎ8VIIHGm+AiXMwX<&`1uRim߻90CJjLU[Ճ /&\V/

"јP&h՗@pD;6Î%Ln{~3sfiiּç84(Y[V<L~Pryܽ޿vhCǕ9#e'%9>Es}%侐 9X6Z+D`Vuh~Ɨ!7 9z/9Sw{Cl7A~9-r<~TQַ"H1Pm1m%!TJC?k?ˇlJDݧmOu=5͚>a`I(faYGf3qkV5ƸJq< ݝG;R['EySf6zµ`ʛV.Z[8 ځSɞةv:h*N/ b"ujekO]U.30D}VK^ !NXyn53-app[Rcwy] i*bC'YjV_pMkG#GOjDKvJnA,Q>^'Ns`t=jZ_ouŹxu2i7RЪ+s>ṟ6}ȡHusT DiQ,B[+}]!TptMOFNFK k~]BbV7Hݟ&hZÒ=qb [F)A8?p#?Jk?&O¨Q)W BEI-]"<=6ϑ@k?[?O Rp7ncOB,mT|ډ'KD+L#]GgUQDfa"bĆjcyX řlu=5LV45^޴J"&qaf2霷?C(ͺ =wH-RU$C7ҟizܞY7 4R'M'ĿPI 腁5tm{J`f!]CVԭ)ԤݵGwЉo4tu_UIjh}㱌>e eM% ~Oq J݈?滹XNG#4}dL}qj wSFtG,KewRXg~|SҬ5iE1E3Q،rb}^B6A؃C"L̙0._љ"ì }SMQ>M6޻?:prm"+i3r[Gi4(䌐݇7xswm᜻ɝB)P}tR.( c /MPC}񼩞9X Pd)P`b) ? ψz_pzMP%R;R+_K\C>$| m}}̬+ 3C싀@wF䭩X Z隩dn7&velkqc Uڨ%`񨥵tV:`¢iZ&XzQyai5bu qU$Rl9jC3q2#QFZ\5tKṄF^ٚ yk!GQXI XFU o> q&E_nhN4#8iZKEYm$=߿,V8fMVX!4rBjRjlVۉjE_:rhi}]~e0uuJXLGkD<[;O@e̻AwٛC.`c^*pFzUjO].Ev C$܃`lf~m$N{.qff,*`\f!o-A#ɺ3DMڜ@7V|@SĦK_eͫ1;IR\>&P!F*#6H`?+ʋID// K3KO}%49_8a.Ȁ0PZ@6򪹰:xsX*e9uMTM֬b`9u̠U K9HՏdHQRZ$HVR6c W߻Hq"LFq.ރ ~ό~"`dQ£<!`D̂t{G.3\T7q"3hҞfѪSa̗h~ VҖ3;`q^YWʕ#Q}{դ b玌z](H:-K[T,s%Gya7VB]vunKBLQ汏i9grsN_-I_/G'(F3 ;R2F.6VrAtU{%vv ,6(qf?x>Oi8e^Jϒt|FU)~YU^tXR0q6X=XKCQQ'v%.|M+moJg wR<(TRm|'<'egtp-PW).@KM=?V(4m_ޒM> @/ڀr qʑ}S]VPrG6_H5Kcd)@ *#(R(ޔqZ$8B;$4R#v(-|J/L;X$ԌBV}T5S.@p_^(|[$is53FٶiSYܹn W r^7}Wˏs"l(a ;hV+M(K*3"o Nn$"n 'pqy]vR Ё|ˌ#XliCoݞx HysJjkD>vθ2W*7u*tIG| $5ݛAtѐ$\C(݇agFH/,MQXy yCZ1Q*Hg>y M'ͣڮSFo޴DNXyXRT>WZ). oK Ƙ.°=9%WJ#r7EǹֶcklqP_IzZSss:n7"3zgȈo?B.8M78dkQOL3;<*sZo|- ~8;~ }b2 'b\,ZB30"GOUBĦ_lBH)l+h6/l',S@1S^!Q$G=X?S"%T׵AX9Ch24 J*:m2౩6а]~B>j ps`Yuo@(w~mzG‰KXywwqޥP ,ɲLq~erWKx)Q@LƖdhۈ㋐-ql2f :uμ~YѮP$p&֢ZŤ>3M%)FtB⟉LXu [nd#$9&]%ى oedCֳ}?Se+\ʊ$=9.-},m 7X#plÓ5 L C_g ؛ 1P52f(g*x_s{, |vdjIl. 2@o<2/M\L g)4$+>s:'rJYiDOϢ P0!E"Q |H5LڒK n" gP=mLC0$c/{vk"oWmsX}lb]Yf唗lRCfnhMR+1V T13dY-lSzZX\Q>$ ra}-F7~ g\3'$kDoX8zfO>za'ߙ#NzY:M6 z@7NΙG5%MWi CbTVmYW ;*uO x_zY_%|sh~)s-]`e' ?`=Io3Aa1=ff:1STZ*Bͦ據|I fTDr4ʉfZ!~ڄhhu-li?P@ q{Q]p2l%+R:35xc7h##KPB=8s(DgLl5Qkg Rv4TG9GzUJ}^䁌ɼjϑ:(}l]rOa~uyCbjC E$S F؏q swHZV^# ~ ۗ^UIAG{~}NZ̺|JSfM,֤%Za]fRt^J_\+ą`[׆E$ Fu^z.]n ɓB͍+'vJ)weO8A<xߞ& B.: "t̨oL)(sWu)A4ޟôtU&?t.DCE>z;¥M1T ;EWsyM֏~<  %2/r֢Gzؤ>/2O%Լ+Y!buP.h.I)6aTߐ.ЬC О,|ov|? Js|Q&T{L;^Fv~-*f)%ԵaXӼ^dz3o?=2Tzxn:LD :(rH#;04c*1Jb& @}^7>(lFX!`]ދA 88hAxu:kETu}C>Xfcö"U6ӥ]6ӎCTL~;e*;,BRXgc2S Q7OG"H4y3͜c^+< [RgqpwrvOqxd+tWp<j!'$ \;Q@)}12o`8Ĥ2ǟ4Xzg3u^hmlܳ`6yҎRڿ٩C-UӁ)2y~}6n4YWL,\R6)E+Lz7L"jZq;i^.I1I }8CDa`m.Pz 5 evýVQoq>xfgq;@2j7|rE IʛɌ`OQ tϡ9Zn˴Zur#]5췚}didH QW[oPo0s^->(P汜O$h(wl~AA<:5^ Uyz୼ǼW4RsvN"餂3;#+o"vWv)$~[2hD.tGX'$TY3^Cf"8\d/7bfKֻc\B@E=aO'CFLlr.TE&1HWƙH;Lu\хEtP<֝"4n=~$A =ﷻe I?Zxʹءf>P zT|ÒG?';pa<;C@F=ᔯ1>DzETW8zj RGTckv:Є؋oEbک?jB5y[(R7<6H9.Z@0e/0aC SF޿"S+(}$5'ƏUSW3%h["ᶈ0͍{1)σ_4 SlK;܃;ɸR64[n#"8ŝ@U=#-M-CҧVkCfd\Hg!? Z{\3PWTpݩg-^iCv8v20,{;YM4JSt &g#> X5'_f'G0]Z1_d;t8VH)*2nFeCّ.Qղp8B{)ZC<~&B>,% J̦%#j\ac>-T|Vd.;j_.>=-Rg|V X`;KgCK6_Ijs\gym{oy Tsw(2An /Cՙ5 :Z @# -&!Xzu\tzz̚TU"-x^QxVp6iݽ7r'tR|~lKY :g>Q,2* l}/f@N5:QhRؕލC*7>_<^?|^__ZDR\a j $+n+EtEOCYpF{}^U%nާ0_,+|rZunRL$oxOvx.T*# YUNާ3ӵAFHup3qfYr"-tRKtvbV 7vܮj.|o6o }(&0{^@_ۣ? Cŕ. VQ$qi˶1 !KUߜu.g,1Qӱ A?˅D4drh? vn8a'L+!"r~1tv4[͉)LZӟ.>I^#N`yT7A2%?/& ;[h L\sW㦾*H4hڜf‰gF\^g iPcN5Y{:Hb%E`&'>I*#vwto&`7>KێDX''ԹVWTy^:uQ/=,DI8~9v!ĘzsP}S"57AtfC-,{d}$ YL'P7b>0-G͡#- .=_ޛppv^C5:: A]6^eya*߱ )ZlL`V ƿ@Wy`5& COpq@kI>V^p|ʽאj(RzS*Ф ,9% ~E]Lo"HWa(k޹>Wy4H6:Չ$:'4ddnJ!DNk9BDO>*$ n͑aACB.S 2});E`u >5vn'PR> nFc6bP0W~(EJr}v;D-Kahm@`"R6F9ש' tHذCY@J{$YAfZUײbsc}1ƥGi-t粠B(ɨg:/]<[ wG3fs:׎p)DғC"?qm2W )Xc 9lkK?,[iǖb7OĸEKpzv(<^ }Y>CV._FB|6%M ^DTM@(">Mvc!FugsA_ح,O{V?^6|k"sבCǺ/%C'$?9uQ};l wZ:6%#z@ٓΟ7U)WWjDlDhKbJ!ۭ8bƿ 1kSu#+V>Cj–aTG)א@bkEῡ`Tr6Ƃn}Yg  yyMKatkyj"nE&rt$rΰ;|wUO@;$abC]? ysm3M=ۧI&uC!j6mٕuq\۴I}T_;w!N*>p2@]нaXj2c䇋SF^M/:Rn#~Q}FWTu2LQ^ɾ/Ss~N[emehe1uoBb4oȜԷcgYϧ"M2УЯ͂>Ì DC Tبc㊇C}[2SE^GHL}OJVR#h-N*a[{iho >Q1;&-Req @r"%5)+N>=#)9A*l<r8:VnQukuLx^{)4J+[՘҅Ksġ0qa$Ah yR@I}iku4Q6B#<Z_:vS}SfRrI#a$iCáBu+k]+lbT˔ߤb.TH2MQ4`ѹHaçuH򢬸 Z%[N7]ֱOÕK= D(䬘/zHb&>[XH W4PeDCHK5`uT=`̚\" RV} 4#` 4vS6:ht40*W. BSgσޢ& [&Y*`9=G'\S_{ӊ+Ux ar&`~9͖]]kQAV13@}ko,)istN$vΕ_d* wogu]>2< uBڮDP!\u] Qpͭ; G(̳㒢;Ȃ eQ: fLMP++!¸#5j?g pErR xdqH yR7&=^O[Gno)$Ρ;{WB,6;IM6>+tx퀮ON妓N𾓴BKJ}] 5MH0rszTSH,(Y /^nnhvjLׅ?4bYpEj-e{gA;Kv90X 64BlQTlVKD#):Ձ'V Td;IonJO+c 9ӓhqCv=;"ǧMzMޓp챔$}?ÿn=>"X(B8HDy{>3;ǷwPr6gоӗ":Oc_sL#+ ѴB.\ul^ -xbuV5H\!PŴLڜ| xR"Ch5_p5+1_A$Vs Wu0ĭjI[D }HA 7QuP2o2y -Y}#9o 4~fx6Hf) z:$)Wͱ'\azd'T\QAj7 ú5cLݖOʃH*#,Q^͓nLw BOvB}_1Yk)h;e"Ù lԱHRr=f6-/PX>2~ɤB`hqmi㭝#s6<33ܣXd "\++SQ-3[ ɼ\(b%4N6C=/Y2!Rp}~%Z{R+cߠC:y a} #*Q^j՜׊B نjX O[--R aO3'b+Υȯ%4.@I[B?qS`e+k='T5UeΊY`b䟦/W΁N9/iOn=|Ħ[eOSR }L&pMT*oTaf{~ թS"ڷUE59=趴ˡ&2S/0gF ]%i)mGe4|XL: Nu92KmVЍW3gNT94W~'4R~!vr!o|Q6Ghflud]z:n,ȉ\дT0p=n g9riٽT vl>|nZ9m9!;dH|%ʈyk ed.k0W%HgS-Tdz\30 *YhyR.\a|7m0MSA԰74_<(m`tpZcрS 6EĸPi v @ x暥 EFl=UI UY r'w!0ijq l i?hQ%D99 RN˪q*H!X{t0p 5|y4V:-km Ib J،ӆI v`N(Bd(QFrU҇-Y%?]5CS˯9EA=qBd@I]s{miz7!@dt (bco}B. LDv])HyH^m{hHEecmz,ԔϦ]x\PFeQ C*y87re]qU)ab[3x3:@l}9{ݞsxG?+7V)||#_۬u/ {=*b95$3-=x?8[ owyY'th.Oc8BWYdfwLvٍ/9RCN^"G;m1cQ8QySR o' `oiM@/ GL(eŞ/w v~%To1S(^q7.uvLk/cH''x{tnAܴɆ 31y@$nZjha!T+6G Ҋ2q[cD vD3Me£,y-Lbw?A..m?Y7  NZy0wE(-FviL=Qxŏr=U|JuZ㯝kKoKJg6 JڈF#Ej7:P3Q7-ԑ@+=IݹO BF#:tc\w/:} x„ʩYpN7ȸ?kNJ0Rr^ȱs|pM%$aB#xw%.S9ƿG7łEG=-{?2Rf񙫋KMԃgn5_e)1O6^s 8T\ ,P?7BJL Q_۲(C{im2 L jT7]eLd6~Bhk\M-QK,#U%$۩k rtl7r8Ԗ{I7OG&s?l4APdz-V7C6!_K,z )2c]Rncr|XVFF>{ :ɢZiAta>pXWWC;]8^d )o΅|EEk MkQGtՏ^*۵U-)IJ"[|/W?8EDmMk ]"{()DL V a{:[j{yR$Z;FR-ؔT$HфqWJ̒Ş[>ҮyUVd"C ce|<31X!c`*WB(, )A ݆Ynq.璬PG. rݓ:6ѕuڈD'TUhsck"V+ g䜖'8gM5 :Fj.ou<nU\%ٻšW0$?r0 }"QTh(Oyw6+1 EsV}U"? uD2ITɏs`&]%67DrUmZQ~OsbLhC~ C pV&gI)pnSz8?s:66u 6]$GgoTQ̂}MM pOfOd-um.<_"ݏNL/crlα=t /f zť\Ćxg{Z Iu萌~-nHU=Lw&-Yw\bvwV'RKz;[W\Z4G!-i訄&p9 fQ>H>p0X~ ̯gߓnh= 9>>bba.^ ^LU`̯9 *υ txɎP uCU_2Ik /8j"C\dxxx$Of5]c2X"nr:n#u6EC1b ,IzcP&v^hgR {cS<`-u %}9\nin G:O{&*\mQ7kԒq@!Y\vtVga!-IJ53&V]PQ@T!}N260 `/eC)u.eME-oBw)-b AaͿ])5)% ZhȤu7VQZ#w4?`\ >@:{.[甠ysJ2ED: 8uLXlu[ֲtX8^&T"2o&dbޖqnA~Ӭa}VG-1x{8|d;4AT C7an#]{['*]zkr%{<|`92 B/eBE7")7,E8ï&w I۴*/ۡTX-G!dA [O+': у ~U1,ENA3a `bU2l/YVrgm$#]2Wn{PjM>IH/W0ʽ#[jжrM7DhRDqP鵝pT:vwNuPuЋ޼#7:лRU/In-SJ:'~ax-l|yS%&b|@ ']<ضnX/nLIhҲQ59^|1;4MIɛ?!v Ϫ]ʾWagBg$x1-7 x9FcqU"k3}+(mװ"\4McVgt7 nG SP{C&7`HV/\v\sU5GJKYÄ'$Rj湨vz瘕_Q~Iw[rr<9d\e2Vӭ>MT):Djnyd0-'J}3|_PC51 \U%](Rr?ю?  mWv&5oSѫQZ`, K|҅KM+MLmA97׿n.'IrH]`1-?N)}7 3~dU[$GJz^EѐD`#wnKi>04=+g_ 7""W_D8Ҳelub"K}FB؁"w[HV=|ΰE.dՙAeYQ=F}(P>RgB"Q^u;Ap0g{@%#n %4>!Ҏ)TW|d7BS`i9b:7?Wx[um ؔqK3=G'+r$ Aో@i]ŇAX3?/4C,=ꩻJ\0萳'Dx@[?AUL&I* mT+#|&H|c9&:*O/0D,Ywe]O[!ڤ<۲O,ք9/|V!Q'.Q|e IM7 W"[>Aɭh/me |ޠdف6騢5CMU\F— }!LOry#yn'T$B+5W/r=uGR)ye(;c8sYuaߡ :*;O |8(WS}.8 {7tbB=cWK%&+ ,='+?pKK}_#L'm 6TpJgvm\Sň|m/}1==Zr3SwD9ĩtoMz^6-> ]P؃Yt#aZN4E1޷3l?@oK>ѣHrd1i;selmt!Ei\*}ѽ?^R510nҚ)U¡#`{ "061Mq' ǧgc$kU'g u_ހ(((]\vhW_r%f:2jPP'/J%f HcR}-Fr9 Mi-ꋤ^.q)Q[CO诼MOQP@r\dv5pYbjی6d]k8_@8Ͼ`JfG~\?W/c9|A:)~QQ5Y U/Z:GA)V\ жͣMmvrhO{!u HEW0Ղźh OhB ;`MUos$lޤO;WL08YF53x,5~ҴgʻkX63y]֛,B U]?TߎU"1%hkVZdonMO,ySR\ױ@)`K/WXW?3<ZT~.5BHBO OwV"25zT`aD+ᗍ)zk0w<\v-ft4Y dWC&si ,&`P 5}}إpW;{fKS<.EPO4-6/bhS/Sr, ɤѧz̈́v:Ղ';-v_KI/A_*VД+˦(hɱ׫Ƭ+`NmI u.wҲSp[<%XuĔ^dwWfU;Ba2ӄ`p JKSĞag]'gغ3Lҋv#O0W3XM 3HYPTS_ed%wuu-+d!: M7}xECQzHI.IM./OC&Ab> pumS$cM,;\$׈{o8~*ඪS[1jN$jaMrv[3V.ϰOGh5]ȔNT/b$L_`a"em*rQJWW@3e"0  {B1L ||IٕZbJb&XR }ܒгK5ea!;ܣ Y!4yڹѡy _ dڈI9Β8@Norh?U_(::pM ibIB98^~cѩEkL]VlƷ"vU0l2շmjkl243T:@3dP%C\ϡQpT 7FMJ *s^^guh cpe3͝ğIMFD2Nhe u`9 [ S@!3K aU1.tC[;&͊C q|BX{,@jt^o>W9 5`nxdɕ˭o]=X-%MXPgKɫ KLPJOu&% h1#^M#aiU[m-e1piȵm8Zza6H*<XFj<2 K  LM^727l{b F`wtK*Hvv7<ۇF'7)&CGԳplc:4ZW0(i'I|{/K ?Vf뽟3LG~n+1^z$X7+cMmcƍK}U^ؑQ~/:UT{򿊍{wrwiJ>G2m sg}wk [*,+ag>iυ_!gӹ[ Zr}} lT>><mwzެk!Xxt6C UX"eYu mqDh/U EƱ[oC9BDgT {Q؁pc"ƗҚ|k%VܜXT !8&Co"f=CA}gSu#e*9$"ytn9&x:*;sө&SC 9.6x[2 _]v^k(8v D|߸3o֞?.B]+3Rw,;ϑ2A0SZE-y@+pmYyIOuzEn3qЎY/˻QFd(R1X+]/˽ﴃSock{ }Zo^`,~ gt6oS%-hŕimdO}=P3%Hci #`̥YJ/g+?ժ~$ YN:}oϟ,- m':3g$+q/DsxC8슣t.Ͼ'$^j1sG]9r1r3eƶ6; {j5>"~Ȑ@bl$CNA= 9szBdg zȱbT&+N˴qY"0&*C'+Δ8V+0V6$?62oYTQGQ^֫7OُϣyOe>sH#vTZt.+VtzZjeG$-CͦA8I̡P/Y +F`{nGm;F 'X@ؾwDiq/2R^ҿhZ4sKʮ,Pܪh¤H>y>dkX{R[! 56]f#Frg.TT Pn $kK ueD8 8y} qTmWxw-g]xtxOr;L>=qx2xޤWܫWݛr$@nj'gt76ȝY iu !tCJ*?CKBU-A]&k#hz4 Sh&u\Ň3Os#6][>7Mxo9Gcғj}\Qzig @]] /jŜ190@fZ89J\",䘭rGQ)7אP#yQ1C.6( (LKF#D#B1 HC䨝Ra J V>Գ!\k{g)]|H2 \`pyUTlټCGhu P@YGZ07Tuޏpٳ_y  e-=@Jd?}60O͊fN,PA%PSC\ pVFR.I>4$NP뼮Hnմ+hg+"S5mW7Y]J71gn;cS[hXMDdkrA/xGp͢Lg:(d.I0'%yC#QI[^Ӳ$|1o/-Rqz{\Wa0X_*W*VZỎb#ZyD؉ 14u}XGAk2[!CmHډ&@ ɨ$Cx;ݫYL(q^W`5,8]Ŵx!:Lh@Ch58KNsm@n @)|7סx_k e%8Tޡ̢n4i7/&ցo&]E[?3Mb!y]9u>QuP0˰'E D;7'n<1/% #m1nkHD]'C|wR.'~O@PY%"I J* pl')4 k" &M$F^!,]LiZs[![˃-cjR瑍3K[hw^w^q=ku#j+G@U3;©duD6KR:+Vvhw5ˮoh.w1'gUxPmTYf* ـ&۵dB/u*Q#DƦ9Kt+B`+=d:N6|(в1N/&2@ͼxBi}$l )^4&NǓTqLg@`9w'gb`6Ґ"CAݦ{V3/LKT oȕY 煋}MnzmV.T6{Ul?XS~b"znr]| 9hӢPIbnɉyJKp]ah)^OoNz@խyA@٫ dPY9| ߦEA!qJ% oufY)6 qj5|h̵ 5' qXmf~| Ok0PԄ[h7xK7-ZuJ߾d N $^/4TNb4И .p8 ;fQ56 zMժ"R]i7Kg'vt0;Ň.cՎ;ʎxTӎ_XMϢdoSiƏI-,[jI3%AOګ}%l$$i(Q}=X٠Y\Xa;- !Pi\F54qAhi3簢&CZ671+LLt@32JK~Nd-=;e~4'VUWWL)#޸,E+WfNl.4ڪ*Dxc~Ep} ߴ9G,:;ni~j`H<>(t綣)jW` t!Vst_>r/F=gʫac_Z&]*P9 +FCaΥ@/bNY4)«|L tizD0] 7~ v8#=D]܄nPA^ '<óxC<} S崠 IOooU$KPWm{uЊ̵'~XIH,cQz;Oe̱^Wj[$sC =JA"n${BPl.gu;Rj\b AvuY{H\]E~@luL:i{-1ȠM6p#yG("$ťʃy=|αIVϔ2(s ^ v'<`o">HȗCzI:%h05HGձ3+vu^;T75j@_d]vH]C ,Uq`jST4p'3") ]Vz}x:ZT_~*ݬ&x3B:fYꝛz}h-`&}@=58 q Oq|8?xЙ l(ϾGڍJ:k,}/xMyȶ_@OJ -R^>:Cu~2 7z{9vD>=.bc>ĞyȳGvc0 e tHdKc¥&1J*Uya=ε)2֯Kw):G(NB>bZ8V#Ჾj(T}f#5\i2xHG r+hz GFQf@,~ç:AUZiTT9R|6 P.LSeJB5wP9ILyB˭b/h,wMPdžS"YkZ{WsEi.5<,kS,g6W#T,N 5&s?˜'-6eN1 B lŪ!m^@q3jE u9ٍeׅwmɥ~tl]ZǪM)%¤DAZ<$k9wôf©{Şϲ(:4,7Dy <I+_Xm9̀!(i&귯Hvʹ~OwvS,(%!.j䈢]Dڗ L^_qLZ M+D Iú۰,x> |b'aO#IxXydM{qtܻqζ L"5BEEG)w]9(zݴD?.RWWd씯Fޣl|GK#7$fA,½2Yn@& fI#Efpe]".~thhy'N Č,F=h+h[ @zւjok7܇NLt>;kuHj^F(-*^ݗ.Ff9?aUa9= WH 7yf:gEoBe\PEs{/3Xm}-XL&k6A!X{z卪Qg݅J^i7<jv6fB4/*oXFQr9V)TW2,e*X-s }/ufk~ v1\e˻[F (4827DswpC=K kץ[ l9LLpj'Pd'ed;zRsx$\ǔ܃K?Wds`7m愨Ԋ'gwj ƿcxyizAXq Kt.̍bPlQ%wӉ y؟dIo> ?i"DMy]9ȒD$ L]_℄_clP cxRߍy:qV4AL[oKp҈09&m9o}3.G'"FNYWjbtzQ%g:>0?: z 0^ĜAPS jqNxpZm$'Mσ!0,*,߾O$L7~HDl!ӽDQvj74Og)܃B=lZ/ u7F_XOM(t'  v8Mϔ*z?D0fx+$6u9s2nNcUO) 7u-/w42q t!#Br~zRC ECR9lKqۋB@I\+`Þ|g3HiꜧT64~{{~G1%%#D)H^%L[9qNWg&[Wƽc;{_Y=86WԬN2`ijS!'4~E ( @m7oה?@W}(jG|Gu%!:j$EY3h팏Zv%<-H_HoXy*CZ{gv"x4<;LFȴX}s r%Y"u@iin>)53j/ B!|;w"o{wCM2sZvb zԮޔ'D뚻e`Ѧ3^rNq{@樂h# [#W\yUt@5I^az{n2}U fN]ѓmm 1#WܾVfu=UPWx`9~)fXS&iVbЯT]&a Vg) P9*?oq YXbh4AseP05J΄LG4#s@3+5U (G!l#M90.ٯ&FF6tT9S(^>p֘C0k/---\iO@_eO m `ԈMD'ΒڽTh%!lih(8-C>,p{>^83^VFbbwad)>ULs[QXn#$OTB"_(q#nPp*{5_ ň *7^ O,>MPh;lenn\Km+@ڔԮ$eeJË[;n+r}|9Vw2lq57TY6mo <^԰A|AfɤX>QDJ"&/ܡz*`)F<"U\MVr()G7`J6689G.ïyptkqg$Q3{ѸۚϨgD.ݳ3 !mXX{6X,Q9UH,]Lz7.;i$W*8I71o cAB.}a=FE!FmD yIA_0G.g&X!?.^~Će+B )kМ3O†70};NZaRu*ߑ3oK3\ߎcc酧+m߫v5 haT`v&z O.5ty (tx2M19 h@:F]±5eЀ [P_ `D"ӈw|G> ,:cliE%⋸.AJ^xL['r=~l~gGԿTz%U'+}g,'JStM=YʗaA07$FXz1PB t}$^ҌU-}Q<cA;;I]1K>f~EtdHK|tp<&,BkZ>6T$L b(4B[qHH> 2zwkTYSL*M3zm"_EhQF6܂ptAZ'ΚHtbE族;iwWfw:f4T**U|et:-OsBmFy0 n˓p-]3]&hҐGI̛AQߜ+ s7bAXDוNIcmk_И$54vGY W=W8漼 /zR[ (LHڬHG@(Z<]'IK:m5nO`gƌ*PC@@+'b ߷4a([xiz]|tv֢#L2j |?;qq&L|7a٫5f47>R 3FtCH4ہ g8 oy6;W9hPC͊=Z3麒}zhS;G-.C k&\ nKQl ,9ӹ ?qgLU{;E62}R1s58IFT{"J Dv)++1+tӮ{#AM Y 4QXihObs\oNesW qp(ԗJJɉ$I hC1)+(6!90Í5 m:Kbw8Чe%'^ fDWYݥU]ȫn%OIuln1[+r[ծ>(|tKUH/LLȱ&"QYM^-B;xV=g$4sly4λ(+nMQ*Rr%J4]n}Ci;01. n d(YRq|xim梢LFJMni c$E᭳ -{Z[4`F%^z05Ylқ@D>?zC룩#FRcgR σZ$RvGgmy%,KE z'F}ܚ> b;9,BFj%9NSZ*5@\ E%Фڀar0)|ŦQ%#I3]]e]H(rZC% @|.U]w}>?OD3Q_x<w=R֙g$]ǰc 'æ/,Tئ;UȔcx ca}+ؒ4RU ,[dYbvQr~W~"j¥)jSG"/)jG72gg3NƟw pu܏e?p]$t){>yj9BР\n.#K61uxU*mg)1yFoQEhp 2p:-~k- [-mQpUM(QGq|Yx.aӗ=5gJؽ;v KflU '⁜5+KX;7nJfұ,2$])U;ѪzgWʼnsEp Q 8i~.zf?~afxMD;t =;# )E29wW8{"`!- Xa9.=Bjk;oC>y,P*]rc/CwCy# +{#iC)f0$l)S5!S_Baxϳ;r < ?]VbՕT3#* ܃]m$E'u]%Ih7g;@'C$&&f ݖF/2} KyXO)lI1ZiV0URF; V%؉h"_@p ¶V޹:b)7b|_H:I/kmE*x JWɕJc$1LHkxGQRc&f [M^)qbQHO4P$NZp x 0k2vvRQղ#rpT-~9b_q&8땏]< e#M,4TWRTXs%M=#EnH@եCSK=/8aeZp+Bmjp`V|48_ĩ(7QY0w-\-k+ފ,fF6t.j01 F%</vkhPg]+`p 0$\4zqmT,qYm_7G: ¶Bex[WW\ Z͐z QJ ^kLJ/=]6&W`/3I A9T-4PAU-1'ttIգ97(xYGVWf ^ley 6yn6lΉ*/g'PAiLH-w6 ?u9<mIvWq*KK{0dM`3ek¼!Ae\+&(a(^/2Uckm_Iϝ W>JlqaШ% Uy:]FH8eҍ'` G7t|5 07=Ŭ"^2f;pQ|wVQ.&<%B%و|(787!|Hko5p\[b 0G̦Q;Qf7wqOQ:=ŤwhbF$Ӯ^V`~5H0ERU.2(U yI "%(||90 -)0"–Ȱ[rvz9? -_1 I{}Aaײqp3|=|Dr ^؈#Z* A( L6x42{?.`a+2m/$v"3\b5ϚOqy</Sh?EAL]hc>'/3 Gζ%V%SQD7ԧg.bYD&f:[> Po,wL|v0#$cuw0=l )"@E֏ h"n sǾA T<kWl2gX43[H<(fdNa?#2B?EH,ȥ(q\4Cletti.MGqjGf0.ƃP 6sQD1TH oa[@TkgQ&:*Z/p, H 0m?<@/<6>)L_p6T͠Eh㱦z* m(bmGz3n䴄?j+gAb6)” ˷ 4\[FiJ*hM*([6VwO.'%csH F!*IC]gqw|Xι<35frg;2wb tdc#k4 B=Tyvt3{Y ׳ɌϫΘݍf@!A'7-T@]wWhMxI3X'J\]pjݝ}šUzSG ~{f*z Q& fb5K{υZE3׍2 R3cK؂BSO>3m32L 7]jD.H\ҞY6r{7r!]A0¨sJaiNBrC7hr>uWَsm91_t,=/v>Z컫7Rqi RX`Q-1χc)/CHGh7u3&n~7sfĂylf%*z(0Σ-3b3TO!/ Q $2pDǧ^`8fCF3 |)-g]O1|ө)yk`Ⱥ,k6Z[J_'Z2YpnlO^4 |ZT><ǖ A+yz q[i$Gn7loeko%~=1% n5bpw*'y|*+Ր{]|WN q.}n`i&8;1lᾔŴ5KMCsZۀjˆ!PP݃jA ۾2"nfMgFҾs X ƴ(e0P9s s #ߩ}X p -+Lu;m*LKkJiYMPi;Y*Dg䵌qC}q*&~jz~]x\Y[V;qX3yytb>F(;jYh6ā3`˪і ZyiHSxч*{@s(W\{}&u$nifh6YZw}&}~@ۮIBjpqY}9M^k(aO#)Oac};_|غ]w뽎MǴJXB;6 5VsB "O~B*qdjo#>S'Syn/B%K];ьUq$WhxAֳ!ISxJxE'JD^mAr]qA.Pֳf&Z͉1 W[2)c!_޽Nێ\l5qt#6ăs67T6ft,'NKRP]Iїp7^|D ycnfgĀYQ˼s 6ٌ\bl_ض ɂ_^N?9‹ +!0p_",ͼѷmE^ by{Z|9~r{wMY6݅/{EZ~,B=Mr;A f5{;g k:0XV&3BIԠJ0*1.P&YwN­arJݟ̢몈exRT|ve)̝e)[vFp OT2h3^V0{<`QGY@~Jiz8YJTW"|qI+:?/ 2R7 DSd(:g)o߯fTm$jKCPuitC+]f WnTL ^-*El0No|3iQL.x>1,k*,K3Tòz{S5>I?Ow xҤUsq:Mj42#$O!͍QlB"sa5۞%\ $dXTWJGimə\)@_)!nYӨRY}¸.RT Û ;Qt`BDN7ν3hnH-(Js&)=[7]Brs&<:}Ŏm+0tb;"CQR,?I:̲xjWQt %<=b_O]`Yؐ\%A! eإ>ɺn^&|) X#ɮs~ڱL!&nWYq zp(țiiTILHG`qRQ; 6̮zǥO) Xҍ[`peckbHRXh 2WU8!zi k5)x(r-ɒbL o^^->' t;!(NC C&O)_(|(IO)fй9@9U-f 1V5?P˅#hjyLJk˰q):[I0X~#7/6`.[Opk;'_ܫQBE\L~h9'hL4p4CSXxr=.rnFխYu2 ߚR3wUi6`N5D4b7ɩ๫K;<{ٔWr3h23֝D\s aUQn_7\ajhXJzB D;;uZ9e@vb2TC'V$W~w ]i4sZS:+#a C1,)~\(zI,"1ˍHLZٿzj5nļSŞP\f։)-$@fV3x9Da꬘(k͛9Է&dǵ`ÿK*l$Yc zCҙqo@6;LCFuļ}2jaFa{gRZqw󔆑u( @7'qx6E} .Txk4ZƶfW~l@yٮ @ts{(stg*[*jfnp $oe[*Qr_#=_gMC)&E_2AJ#Mo 4Tv S͢M@AZ5ĪecoQҶeC}Gd#sJtp(>W՟<13ӈCTjˉu> I$ ϱv_.FʿjKz@i܂:- GK yb\Q I=?"0 aodm ]ffO7O+4x/0%W$}l !TJ]Q+pFz2S<{dhvK(Ef;X17X!lj封p/~Mvy:Os'VEP֨>0MZntF$6= >2*i ]L0W|s}(?Uz1%JF2w݉V`VaNm$0QR Dg|L!<Lj7yk&}i4A5&chz<gʳH)"jg$!M"փUg.:CzMQrDsd!G8 ZP2arQ@=~:Nw91)XǏ?|(Za=~BS6CuoqL42o)I,W_?efhCaw P~GI.dHl$juϨE%>tj }_S5u)v '"^剩ARGxJ9qCC7)\F'`έrŊi|"nj FTޝԨ6ǒ1 M15axB~و@ׄJ 6BNƎNTYuft<~\z~攢;=U[~^zR*+X/{ ilֈp(]"Nv~_v 8'e ZoY҄$_]±WIHUy^kTDdhCfѪNHTNF!PkygMvܺ,`'=׷diDݬ n# EhzVD`{etՀЎv64N3C?Vb\^ANԝd\"5X;%%5uK):@%ܩAݦ'[o'Id-(Qy+N ^ O8 3x ^i㐊loG}j '^k1ZY~WhƔ<JIA[<׆c42Jn7t-΢J%1Px7r!>)ټyz2]~vj"b q9FEuH۸ .\0$fAŒ(lv*<+r^|(x3-;sZ(>q@P^VMN*55U{[A2>a);kiN$R/ĶZtFs=/>ЃB霒ą6f_5=fH$e.)W^!;Uׄ^7!kr,1n-hK `\kwbシqp}O{gLfϩa^=ꀍz#yF.Ny?Ĝ] 9uz1ӟsX)#tx_Ӕ{`?@`z0v_uw:/]#“zmfI=C߳wn#~%TeBvoIKڟGl0f 1nkˮ녾g]d[rAG?'?5DuF]L o)aWweCIҴ#5-&f`es("$pL]<ѳkM[ts#2R# O9scv _avM{=0cV^"!FmBcܻkTD$6ՑhZ$r_ tJg6mͿc )Z@J?ȍ;7ߣdn{h>N^KfVv\̹tw  Gmx⸔ W=~}>s2.Bf]0ig= qlRR&)0wCѹTs kAW!q³v/:a%ܜHr:1ױ_pl}4|N3K0"KمhDG 8u W&쉪ŤӴ ѨϵHҒZxX3^&E\$Jj#Ʉe29 (F0\~:sIЌQ ˧DgԉG*`aEM=(b$ UhQ%8:حRu-Ci&Xp]cKdѼ q`.2" Yh{/qS߷RruDw1o5%WB2$k$&biԜyt܆q [CMX# 0@SVWșTzm'׹@`4zR. Y;K;Ÿ+k}7oYթTD`k 0~jۏ0^7d ):;j #~b]1I:o(B =}!BċՎ1A-/cf;lrN+2d;q4!8Ğ'~@t7L\َ[伕$eAǦS퇕4oP=\#8yF$9P`C7!Jk\`GEz6~ӹ(NŖJ] A޺X3 3 ^7V5tt\-\}gCd @H2vx ܛV۔M#uQ[b*СbdcMbqpfB@j^YZ(*Fԉ挬/\aw~b1hf t<{$k®ъ*ETr 0WT'̮ ēܖF  4tQGbB][O~\^?i@1X3dw79*>aFѼ|Uq5BU]Z古HԾ5RvzLUoS(B;)^ta-:@phL\K5&Q W'};l'w S52#ypd>3sC ʪqئ[N:DPg w%οk&ǬJvCZeWǓIFH<|=uOǠW׊TP;(+zͼ@\F3V[jeHТ| n?aU|`I`gv*l_>( Oڠ]$w.>Omqۺ9話n/QX] x2Svgʄ2fٞF5xeSNZq?hat(V,f!Ieԡv Yޛy:m H[I^i=sf`NONsݹs, WYʪR2bLg ໼a >-VٸSץxt ls>/ֱ0|밗GLMg8 |ټ$?ihᰄ?[~=&V> >P(=/mL6' "4@m*ydԲc; ˈa.;)A)4CCDy #J#̡e$ͷeҰBBqP gaRx~WA3-Zy_5 +NFk60؅t|`ܢ{* W¬8#5+ 6F6O?50\c R#pن~C s "g1oA5)SGn207K l U1x# 9ㅁE{OwZFL #p gc%[/bPf˹Gj/Ǹ+OQ\"FYeI~4͟.rT-ZIq`c":fCkQRH0:M;xB7?_|O,n#ZQE8_W~㦀]KP|r!ʋ]mwنI,j(X{y% g`?X%];;}.PR:xni֥eemAeRWk \1G:Qw}}M^ ǂw1pqhqKZ4FuMpL}3`I DcV2]s*iy$'n_M.8JB%AׂLVg"*P vb:&._ʝEԗ`|ǯG!9c\޳m Aj1Gl2QTbqgh; i[Xl* r=A^}T.1>T>3, pQ`wZ[Ow(]g4&Lh5$[DxF#/AE3/$ODO53> aa4t5V۴UDmoV!f>_MSB. `l{羿 EאLz{_P\˦R=E gY&H!557@U{NUT_`HhЉv I2w<$O7CjJoNfFH2*0(."%!8S~l(I0NC֩8Z}@3ǛV+fva9kdSw&kC}I7xN4']lUiMڥ;#ƼC _j~uSk#ȗ+:mE U0֓;9` VX.a*3yL_ٞʦVI,&O<|To/B_h/pL2.BKuUa M8.Fbw< %}}'Yt t ur?pۊi/PvɴaemQF$"_= dvdu ;ShuO*nHz{'@6)1m AWVVtfTl0&!{_bUI-O#k'YeL1n[䍏&Ez7:5lo7EνΕ\P!Q3JD\g"zKD;S{Zck&7%ÝH>Ҹ}`Vdw)wG\<炂nD\?y&o oE4mϜsa=t4Q#lzPtA*܂@5zP?oAux;g6ʿ. hcN[(Ef? ss8%ܮDk/&[ P.#;>"RLOwY)m˚?2^&kDR<3,3 /c횑\s|ěĚpĪ+UI.>A9 !6$Dz,I`Ȝ+%sYv4G{C}nZO/u0w m$WDU=vkm=Piuqxf\W =J쇢Y80?b>ϐUWw3[PI"vAhX sbwѪ0;hr*鞇{~$Y'rG+L 'H*(< ) !Zw>ywM]F(̝ev6T䬼RłLX1(ovc}MI@C`F(I  4_ȌΠ pXpE~T rݍ7aZSn@IH셐ɠ mKGLۥPW[VFA6 !'htBL#s {~!Շ2:mёEU_)Ь?J|݅*?[hxƎ'H.;JbOˮ=54r*MWvY]~=?b$@H>=+P=[Ok]ωQ&9YDYXv5BSbWKkl|R3,ޯUUs\;oI J"v9EQrm7`ճVLj4#3TL>{@4 8ʻ o 6eu۲;2Hnc<5 eIUfM< V52 ;K~6qUQw|S,{wD[8w]) ^0 *Ok@!#u8V] Y8㚅ΏߏnRc5(\v|'r@Sןj-Ͳg _ZZx SCs`5\I\1ٿlX9-JҞȜ6p/æ@)P/NCkɸJU+!YׅVGZ@sGjC hǠKE@J4H~0&Q>S#mN#u$pIR.V% SߐPpx-A oλiP?.'׳=^NݡIt GOuUfUKMS"%Ƿd-kq1jإƮND=%A4%1 MkhZ!\ )"Ѝo`Q=hxxg)7)@ƬN}Crӛ̊w&#dȚ|bV~n6Oη6h6 TyA3pM[(\|]3*"v'¯K-kԠ'LR5d$3&3!aȨv(gep~ d=e23d<J k"݆t[ؒ8`ilĚb O}Ն4a!(wM\}0[S % 6/z{Jnev CBL•R7kppndq&7狯+̔{e@Q!AD7oo3٘iGSW i4c?#.z gj+ˊJ%*:=y|^[*"ã%;V oh\j/Q~1ߐpmW*P2Y^}Eťd՗L,7g!N&O  f=a,^AwM7N4*A?E O_Mx/ c+Mt (uԸy5Auy_a=psE"@jU7dF+m9- eF vPWтWԼ@Jx`8Јouk\P>ARPu'M߯.lG%&*K r=V3I>S$ -h>HLFғWKICjL17b#RzhrR K  3/-v>"pQZJ  D6 ˚*[cǷ,Ti35D.XL&3049+vR٧dU/=_ !H%Jv 2O/"pZ2dƅVxԪ"іdv5>DǍ5idv1HS698d `[3C[pۑ}-×ߠ]D nb?*.}VDSpUx!- 6WFa-GyP\$C݉YB|(@Rq_ Jvl:6޵;&2?9by(z:LAs1 Q.ǹKS}%.KHA V6ZwoꮫMn k"dB~Ț ĵtX*=(²{`nճaFf%j8b%RRS@XXBL7MݎI=mnJjq60asv3hE'8K2`?}H!AQ ˒:P ) a@Ueqs MmBAe?VVC=gF5lApL߃ddO:$J8RiT'j 3t>JfȠcbfRShG)u[ *LR)䗔HbJ*\`&pT5`\'ƤܩIa:#ToVL.ﰹ.;&QgJ*4JюGq9E#3pg=?aaN#ccxu)M5R MsQ2€rPMb]!Kݱfo@/GQj.2s)a.'iUEΈVDrݿ6 kZ=462[_LDǽ߿a,/r]ʢm~eOeeD;-}jF;tcdm ʇ0%|@Pα?iVV 5x XZa"#YcS`;ІHƑnaSd\fdZRSlPV΅s).̎[@!x &*w](3wb V,`Z& wdd)ރ444_H* ˲0=zT8m PN~[ip8b *3ȑMM]O- Kf!Vw3X i=@ؙI_p; ;CKܽ Z ~Q~tAˍxivbOU3r2s 9ޱW_T 0y Y(D'DUѮ!f;mKFX?/, yDJ}a8{:njhg5:v$w]i@\{^ZhK zZ+sz\QY׾ 8);U3.g2=G'mjysٴ }pod$0X.qGk.z9 R֢T\;I,I!2DSދJi1*_eƂ:JU"jWOcd$9ջrc߮#zc~e[>T07>` 8ta~̀HRJŴG'4#Piƅ"㘦/^+G˼JJu kxwbë^}.8{ѩegΐ:T-dfV;!xIQԾMm^2t z1!jcV.̸+S-EcC GWn;}w.6I}k!`WrBCC>53Mں +31UH|K ;ZMmڥc%U֎/yNI,G*!]D=F߆5}3Eny#DgSCz̮c`7ߢvHVa`B٧-P0._O3q,7.,sr?aGq\y?3f;cOY7jzQ BA/%Ӷb ླྀU 1VM0ي2["4|dKAg/,\<ňn|_O) ɖqU N.ٺ 5A1& QB~xnJt?<#\0792NcECxzkCglJ.2X;9}c54~ [9KB5 0穼9M)Y8ߦqAw]/sm}*<&.9{ n05Tv0DE]Fwށif ZY6tzLD*SޕgկLuQ3Aċr:V)8Y+aC7$E|xx5y8G-`13[lK,ݗJF@yN{,yxgIHddrO^(EakCzlh1kf8c59(djDk=#7}A.4yxH }eT2*ٰ [+@ȇȺײj ;w ݀ #n{mB,tLNwMClA-Q/>cz=BRZnݞQ 3Lq (0¬1q5,P_JS+Ib0NE2~_ xPzvbLч˕{T*XТ4qsC ?D솿w~tJt%WT0zxr@zuD"@ɐ֬:rxߑM9Uŝ,sO#`Zn/ghMU`BaY _ ".Xpe*rPYkLU^w8j^BcE\K\vN *m*W}7Mƍ3̹ӽRmpw;ԈɏyrfL"_m~38;}- O@o| !5[{+`^JIm.yn4豥ĕ!q(=gW 'ڻ3H(!hA SM北)bB75PtG˄aR.JS]2M<IC{[q6jد>DI_PvV0}[gv90y6 A$68/Hjs `.LkFmvnNAh}NK#&ߠĴȖ*[ p+tf$_bܧrȢjgo ld_R4)l&¿a4jUPij(鷃;GԆ"5`kKEvſ_jutZ.zy꣭\B`mEgSd;l۷: e{zGa_e+W14XiP!zK9@Nuqmf7H 7ei%*x] |Tq NPM~̓-ŝ H,kGy>eUq.$GvUZ\.01M0m>Nt!hVC_{WyCOR4gwIvRB9iW˗u Rg7l{\.#W̞i /QZ¥B =z{\[LG vJ26_n>P wiIAC"Pi|>!駔.u.|=^[fJg}̪ 43éPp*+oXC?$?na02VnΛ ^T${-;?rktKBM47_0gxV.# J!z`c%p CB송6"Gp_Gtiė^*RnA0|5ǀ-vo(.1'i_H1rϱ`Ud,@rկlBXgd`EVݘ# j FK\IÉvӱSu0Ik95XdMr|DWp~f 03,kRs5 ,ZaU祋H6`P;hqE9 =sTlJzt0[W-l.,A=t$ja UڐTQؙH0FeQ(a>W]H6U31^tшŠQE}BsѻRM' ^veDX@厾y4+uF#3_ǀ ҿ]RHl¡wG'QFGQ%|j-Z0ݞVB LQF^(/ uMq=.o40,tOӆZy)E,@п y^^n#wZ94-{D OC&yardPO"q>\!ZxՔ剦H \5ᐘ)]X"p?AC0Z/%y%>G,~.b޸1?g]36kYQ[,T;Q s=/xMNGD߼Wݤ}Y5>PIcuBP[p?:dC,CƺBizTD!hb RVZu49.H? FA2zl1iv0]][HU E0'˿1LAu{_JptF@o~ݮT@Z;0Qny#/dF1ȔØiԔѓD~oAMf3+:i1aݏ37/*vZQbEH(?DO,uOtQ oLT]}p0Kz e(%;%c 9M`OXzgz?TIxK3:"AVƫ@\l 4߹ N!*:He\j~w?iz X8zؒOyXDZro^qML3&1'SC-³;#s{uƺ{n]v6$61KN7،"5rg%gh1SAWɊv LD XA#8)ɷ!19N=ڈacf5@XJMd(ȓs}i(5t[ǟ^c 28@\Fc!zkXMQp,luPJ6U#:(+GF4%@*;*V)뵕(|ђmos1Ur27Q3Mt"dn_J7AF_/9LZP܋u}fObUR^Q[_Pߓ &,%Ǹ͂w9͖y?GhY(VY9@B7P'ݱ4 }uxl-7tXB+6R/|,bף+E||e~b "l!5vF̷.泇}6j`3 _-e'i jq7Xm Fe3 z|wXm '1j@JBa&SqKe'7KL'9G9H^~JefvF5Ҹ$*mt9Lo%x68D ] 1X\@GR╒ymcA\cs|;߼A:$λQ~bEb-ytfM܃JǷp3ɋCwE!Sl==,sV:ĉ'{wd#z%?-2L e)x[wPI:Eج֍Bf{%h:s2{)BssLF]S@'v[,Ds4t?;FxQSj/SY- TnLg%](镆:R^b/_>~(%pȺ4*7zmNzI]{UvF6g^(V:FH^6)DF`mS.@bu#}P 1~(tg^[BQ6ˎ93PCjRT}PiQ=ƒZwUsߓ5t;_F,=Z!+>}@҇J$lB~};DQx؉nܽ=2xō d@LCg4~Jה,3!ϱ涗@R= k} ,{Xqz|!uxIj8,8 D,S|3Z 5#:qTɗ{N$23tn'>/S7;8 p]_?lζ<'A|u#+a6Igqm\ߪ{2d=TD^JKTVz5dFa/ɕeZPq<ȁ{ ?{,v8MZrvT6{jt(P;0dtMG&COݷJT B+5Ln '` U=$y?hۄќҕ#| -k|Gn,R\]jlsڡ"o) S>HsJ,|d08YuDDIk Hb;pxc _URxz=A]8 ДWP'}t Js꺄)6 2ô}*RoچFgԩs^[M2&2`fwKaO-sl^?[xDaJ_oFPLRJvf+mǡƙa#<TIK>ūR%Gmjg4K1q̿w#ʩh1}q{[,b 2O Ӱێ!~[.+JyBy\ewoQY^='Րn._z,ʈH;^Kv~"DY?I }&Bႌ~& ܵI B&, 2:[H:='S,Mq%8@GX#)|4L:dxVxhs~eOq0Y3z̙[H5K\?X\dFMvh5Ek]#NDrQ.hh⼛J԰08ż2[0r5K--3zlgL+O~s V `+,J\Od4K;WGnPZos?QMHd$baʴdRrpqi1΅kJAH4nʺz, ٍ$ՅȢE)7ϧq, Sረ=fY+2?jTX&s-XyV u-DGPVIChʶ0ε 4̗qr RODT"eK W5lk`5[%Tp)֤ͭerY uo{m,V6[.'HICVtE lanqb qAC}5w$fB~KZw\IۖL; ucSNfAȝޭ+ v-g,EN\.9*.]+FeOj+3.me6?@vosgM<5E]X~ހGԭ_xAACB7Q߼.S++v4,)$ &S#蛁5qֶ~gUh-se>:Q4)i V&Δ8)E162Ö#ny`4 0;k# )𢼡qSU 6D@\5;>' \X"8Y$A^ĄClƱ3\xJ#@N8"Lo3>g:OX ᭟ ,fٻ QOex./ 6.J?BҨ/iӃ)xWa : gHW)`<7τrS3MPOg p 1Y@nA\cZ(߂cuԁh6frغW[YuɶˈWm~,kUܛ q0ڎ纟0_6toTu/=s^pwt{ 3H*fOF@|ȿg$78VU>T-j}F Q:ɡb ?{6qPߐ,ݭ+sB;Ɂɇú-Z *\LK 5d`.X1y\5Hn) ̷b}(l.BB>| tuvR!5[ЄG|8@h+fR8uq`D<,yq]HH# Tͦʁ'kwHeH6ϻn,ajo;Cc@bO,]r{)3eXF9b/m N_+`kF{D%<#9ϰu&#m)Mn>"-cwvn)ZEܩh],9 •9?ո2\#(ޖe eZOAw& У͉f";B0J0`+8wZȸ.<+1;3Mբ&Te#?H~#l2wɠl5%>t;ޤ`X(ANBIYj8ux,M*^Nzx5xZ`7Lkcn}#)j ̱US^\e \5sO <^ccsRjgF[[z~ÇoYiRqkuE3z-{?HY9w}z~CGpwQHݙ°򏉝55P,dDۮ|IiD-&ݝM"Wj^ +4 f#E֌$4Cr$ u|#4Au%.wsdx.Q878 ƍ=qpʢ2$圔D5'^;=7_]⿔oncDmpD IJ xSиߢ~\o0sh6s0 kv5 !PT~/( a+˜tł$ʿv,:9zMAq*$Ԅ-it. v+nj,1I Ӯ[,,BiHt'm0oAtTyB]0!!0u] m 0|!<i!4vlYJ.MCtKp)D.x @^D{{kg ޒ< X#K[K\-vʮJ͆~A"¨Yv> d%ʟy+f1WZw^~mjdl:@ Lz{Rcw#~bWHg91JY @̍oHvB(VƐBdcėUNm-Aø^@(a3@hѦ&6O+"AX{zHn}BJR|TO4}@hrZSAy\ۯ󧔐8n> a𚵡_)T/5 Zʫ+,7ʍ wP b?5\uck*z֋Xݷ9ybhqLF4_I50d# .8C1c&@ 6d0 ~S"^ N0A e Re!_j~bCj Ais":d6ɓ|rӲݟE)-PJ(n5ڴN4]rL\9=u}PO8J%`,*?x {}mi`xr*ٕHȣ\[>VJ*&=/,\۩|KvI^4A1Dl1 9{s9݂!Fw[},XOEݹCט{s1X}_f!}k_o!fm%^eM1g1%5)dp ՈX w;H=L#=1\w9Z84TH2 2Í)`[rPQ(oCJk.Hi/ ~Al+I?RWZ&8v>~'W1v҉&uR֭),+O7\bC/­K.VWTƝT t8JZffL3}nopʕfL#aF^~hSe8ܰAj~EymNBu :)Fg~(RHDRqd}2AW$8hTn\l;|(6X#9 <8ʪŖhgovh:T;Z{D}K_~RCmK"MlalvO:?Px4J kՒY% ~ZW zs0K<û2HR_f[VOm0& b,꠆]R=b Z1 oū59) /56 Atإ8kk-6$Z@p'}ں@eʠg:;jݦ c`&&:@q\N'(l=LMRjln!̗O2GwǶ7<6sRM !ma ^jG]GRe~ˈ J2vѹ-J/T8;[OBH,T?#{,mkwAr@ { ,@7vYKZZ{P { ztKJ;' pr0LhS5vbH{t p8,"g6s\%ŭKiJ1WؒEo 1N/*ϽikLN+!9w6oؾHk4a0y --{]Rؽє#:]!5*H4]61ē܁NWOeꗨnX:Ff"iٛ-ʷ+,%X"^)(!@uƭb5%u#DS#.w\`ǥ,/] %h׉5'3'4y0sm//.zw4w ]GSf*'(eYְ_-E,K*pqKpY WM1C+Ni% q;±ʇ%L?e/B2;ZevjHSZ>ӹz Nq\?>63`` X-̡z]܉~l!ig77gpvQ6[R_D R6!KV L G#9oT&8ЫXw{9 ]AiAo/1:4h _1H3ٲ# OreRd."yObR[ BONSnkIA`N_jY`?^,ڹz4ȗ''}:̀flgCtq|?ߧg.exT53%H|ck|N&V{d01d ?Ny)\׬'O;aCITPQA lpqR坴Q@!c9'2 3/19IG*@ݸ;AYFtZՊ?ʳ][lkF(4)xǩ2zpobx hbpb,,hYAxk*`Px'(ܝwnlߔ0/IM2xcW0dh>w@1FA/lց~1p6-\o[=}oNeg]Fj!8gW#yţUIR`esixSХEgM@ڽ)? ޳-0E- 4fNkEd 'Cu^Q#z:LXeE&uZ&"8ޘ&qYK,pPV3 h_+pt= THwE?s2;Zذ | Z$Bj{=; k @&,t= %Gyٰt?6 MpM(:I+eaELXr5sM#8GidZ`7TdY:6ޚi_F@p͕@xl^hͻ<搟mff$u5 FضhǐYSU*9ܸD:&LPumV;Wrx+S@'<㊊{6 %~^Q- |JةE՛Lp-jGC`.b!|O4/knk='I$3jJҷ#9N/A 4Z @}q{ǹ^9!MMĩ 9m,~Zct*=Ov39׶mBwOU q'wo`2.CPoVP@8hոLrrH,Rk +ҨvHn0@L Ll F?Q:G%[shmq8`Z /ԫlb{nxU٬0ѯijg!UU] ˶FK4<~1El4f.1+wߏ2.V$|gkW,yud{ͱ\:jM²M2R/_dV/aOREcQ7XD1~`9qz3-k mya9qN=pt[Z1~%#wqn_Vܓpf-,,]O\Z" df8 "0h X+/}`(v}gg[;M'NyQv/Aϳ#,Z4BHc%9ĭ0ڰqñ} )C/WWUme˩z wVag4Sj490@!O9hp`q~͈!|i;N a[;~i2½yđzyXK ;oͧ)_E#nۊ<Ÿs.`#!%]jtKVHm'ت<DžxB؛ n=y㸑4 W7,q@6Nm/%4^׃WΑ$8uJ{KX?YªQkQ(iKߑ5,j57YPxu_MA^DzҒ~j!Q3IJoQId^=&숬E0B ŕj031 QF@S.IwxwX{ѰEbHm+IWJ2ʿ|IƱzVYL?^sZHOhiÝm+5἞wg΀^b ѧxvG61 5iHĉT>BKiHHoI2یsBGgOL.Q]yl!lv `LCgB4A|ޔ-Ns6~=t>W fT?Mc[b] 8o{hIR[0cpF\W[5êD!aJF̴GvmUv­'q郣3~xG 2ǥE RYe1/͂ЕuwuqĢ+\KBql#yN(Ҋ$!Rd];`K;Z kVP:4з]O#4LXMӏg$渃2=kϱobnGN5a~1:g~)VKGߝ9ocBL '쇐͕2ƈ |=8xQ\ =>g0ֿ0RȨOx FizږM:< ^27$G :pBcgh]W߃L`-1ݘ,X?X{bHa8yrR/1kAQBId X# rQEszVtf}>ZVd /( < yO`=|?ȧx!*v= EA/py%"M($E"2b 9odz:/YCu&riߴhPʅX9YHe>fTf.ɢ͉o}e14(RF*f>ٟYg~-Ʀ"-|c|Q\蚲68$v:j(7uA1:l:xA u =I:kxe>{1GGry/1Djo6m򷎢pFa7 >0YAh⽔#op)Qp4%}{-l|޵NiMfelP"O=.Jh{(RKR_T53q-&[Kȓ\s1גa+"$YӿтWNN6 b{sp)9FoOJCJqJ[G?a"e{1Ø: LR(E x8e&S-<@ؼjap:=.01#z 'VߊW6.f6-ATV7C[z2b"`UH^]K3E#rr )U=L+Y\BXؓΔ@-w$JZiQo@w֣m)N0Ůٹ';:Lmkg!ǐ: eh#qsqzJLFec5q$Y)1E|5((!v#_ xUbfmt;_}3P>Q gNu3uI'8abpF-`,y&m'hI|Hs@p{Wzd:fAbU_H%<#3XJ1$Ï`׃9p*{ -tp!.Ƴ4&I9! mb6K:L{ yCuT={E\K:@SZs֋S+YyQ6oKa ߡ 㒱Oӛ\;UOgo0 hҴE@"'K c,OŢҲY3I""nဨbL kݶn_h<VԾ,~kw Thͺc\e 2) cWD~F4RէY\Eo0$$ gM@u[ |ct% bٛ"G.xS$B)VN~~'%=xSz&;iS5)/HA2/$Pg o&iV,9lߺ.Ea419&M|<`9]Pjuq힭C:޺7'b 6\%VLQ@z' qS`⨅Ia;9΅҈w#.jI6wnX jK:\ZxO[OEP4eRy534#qEQ%M,uSDʲ9_=ႭܪM۔|B^$Iݝ|M\5Ч4Z%e f+!~(k z0Azr^Jﰀrkch+/b_Ijv5[`~xǧͬΚگw:˜e2EPx$+|=/&DEzKj$SDCymdX8Fq-omgk hVuDiXTh)k5m# 0%=lgOAZYL+L\]fR"9*#*׬KFelSG)#ҽbX` B ~uX6C˵ZuI8C"}&pGg# #:7}Qv$FQEV@1 fME} ^ ZA}dzk ߵf]k|1V^O Ge2AnƱ>ԼcU 0Còv)xLمzF o' }ZN ox5Ч7vg*-$ Gs!My]'&|`FYaYƆZ M}h<-Ѽ} 1TX>/ۗP9#X*z:x(|F/tA\ʼG1# HY !'' =?`$z-b!n,f;h>Q ͹sJZ<Sqj樆!.A]gSn8heQ5 ٙÈ$\O))Qr=Hܲ0 REt0U؏6Z9\'2L7fN"M34o{֢u[$뱱Rő!?|@J^`vtZm]._+HR$"`o p": (gD_oKς<˴}maXLG惬R%~.xa(!#Sov+V[ %$iH讹*cWڲX٢9` P'K q;(Bl'tEDb7naTw29֝Bn؏LsiQ9ɧӍm  K1?ybʐ"*/ VEE&I\0%xSPd|LFoejP @˪VtƺӾPeWt2r~U܋=mt{&9f#ktT6y~Ѫ10Q|ӭoh=#!?:t}14&Κ\Q>g$6G~)}r]p17b-RXJAİ|HZma9B q}to4wmG[FIAq+̂6q{`>A-41fkײtLk7u4p1ИްePUڵla^鋥ps6cOv/Jb%wu& W>.b!=[gp~kj< ~ gU,HܛvHO|Rp,@R\}%כI\Kf7GT1[Q}\UJh%@]7֞q:3$:΃K #R!샺i͔HYwsmUm{ Գ˴⼺ *REP#/ԿVp(ri Pj> =*&T'H»H`?hj0jYp(sE >!Trp AYĔBy'X8{Ų|ΐNkjVRBQݙ* 2J9]Φe)f CڰyC9xoM=F|SR;ro?ݶ*mL.rp=E$[g1*=v~6^꘼HHeGL/3zm#aT{^`v84VœU'omӇ"4+\neH&Ɂ,||]v,u-.$agKL5p4Ge>\Ov564d]Sr{[ J%l,JW`<\4xXt%ylg޵~\0oP6u20zi ?>kC*9If#dW/? H*{, Sk96NI҆=zN"qي"6VǛ1P4Y٥0|^^iDkZ5ֶda)~N9~H6fz_mw Nb$5=O%w~EK6oJ4dO?]G,_ UF?tɩ&+^7.qLs;|d/:h[r=V=Ap6}Mmh&?" Zͧh ʠ\tK 0#E:X{@:*~$Td;1ɓU>1XMGOExЗ.3f(shZ =@JakFzQ;*Cm+jJpL 2J˔wђq6drس:Uǎg ,}8,Ăw0 8tJY\Zհ&f.cOr VVKі@wWeCMzS{&s JbO)7hOt Oqz0z7& Ck GGLDn+OR1,S `o^c~G56AG}zJB@A!֎\(-@l;JQ/3@0ceyt ^3A$P=f^˝#bt:rCE'Jaʳ`AH#O~ VwH{z*y԰ՎM%w0ra6/j;^>G5Yk>gQMN6C!u`G>0nܞ|)FX0$ 9hMKݶ}lf MNmK٥Gx-S8,.`=SK S iCSq {xYTv z;.dqV߯0@6 ZXPwL Jx.Һ. Jm|v.8}E?0v]XK!G/FϮ #k 9Kq0-[U:o.c>oQV .OC/G#Aɲ &wVԑ-xenBaFeDyh0IRGFg{d-;`S?OL㭪7:JxkL96W.c=e݂j2j՗1>Q߄Ř~3Cɋ&@꽽^j@J'aẍQ*jDu:Ci= `vDe|TQ o5t{(m fıX/v8h{}꾍 AEIz?ll_]ZQir.ϓߋd>wWdg]gEGS ny{:.aT O:~!LiKm%6:XϟkE/ \[cYGW,Xo;'!eK@َ ?lf&ۊâUۜ篥9h4M;%KF%A o@q9\XvQ}\9G}F%[Weö/D gϣDw1uCڑXe:y^Rsp)k:&Ns8)ξSj}.n9fFG+$ƀ^ALH{ylHpQ?M,vs#DBgivN/EYCrADH 3oa0קV@ d(G_WjNoMu6#<8S(Mx"%,B6Zk\~8LLYBBCХp:Cu!U%H1Г_ece|& R}=Ipmuze"cF%YWW}9;U7G`gOly _ǃ!dm5<.Z0JԭS{5-ZӲ)"nxu$]K[иef3hb("NMf])]2e+.,q!} K{Qw|٘Vؗ9/N0ȏge@0t$-\t塾pNiscۻp `,!V6#8%0^ |Q4aE.:R5(>ZG2:;X4[fa4'/=uATR,2@!s>BE3urM.TCo[ ê \l{x<zNXRD-Ai[m(Fx8gVD 0'>jLzи&RN܎J[2K:k* .a3R ɖy@[KwxM_`ČUZ]pkn?DM-rj7{hYWO(ysZ P۔MԶCiHı:7EFw)j{!]:2dCU )v+FQTs0; Sb6ʿH`G_j>hvtnԱ&cg, kQqC!n@ LGK4xMWDvsm78_%oDajpA(39>^8L/Ȅf _Hwcv `=ܝ@GvDWݰ<ӌMcTϏ}T8~UN ?)a ˼+c:ӈ(35XAqZW,K{"fS\;LV:$$Sg! {rT#>JtYQP?rUK&{rLݮ>}fWE.Gvٸ$fMt /!7`58 DAI\q]/_g!R=&fW(0sU6djM$*'dn= mg Ī <; Kq4"?'Qs(Uf7cb&'i|)!>9uł;#~Sz؛y2<:n7<^|{} Gk0x*r|]1-Jی6?Cx:?:K@@s"hb0fU@p^f2R$QN*'4;Rm ]lHkXJ*!.;3O,$އS)\F,j *RTޝ7^/LXuu5WG0aqCbc#-6Dw=I]{ ~^o yB@19ذIBwxɍ7sfp#c[a z:rf Pkqzy%ZP`A܃'e,;m$hus7ổiގd甆O'RI%ˀW`x^`OOc o2aIV:RP _"86@-r,`%ra{~O_oo4p Hx99EY RDQ'ڹge4?Bs:L/bZZ^bS2&f<4eOs; ~"yXnKuՖpGGJ;<<`36lRM0Se ' OÎ'aWmhyeIA?yu-pH25`tjȨ«y:si@ bh)yC͞!@v;*/$?>yhkbcX/ RsDV͚%Cwtgޕ|w2>--zXdеEiC=!V@frGd{5v6BDJŖu%V=?`inY;|MG}C|5_#E*s31{2$8Jo}xMiqIMP{./U5R|qgԚ;@$ax8pMEg(Sfxs\ k6gXX%*}V*n&[J3,.LW&(};K,0r*tg!MuZj"j$ փTNȾ^ȓJpfuИLtȗ @7#lBFO. =o4j fōh2- M*IDdTV hEX]1!m89)fX.E#YRH´RAa?rG\'*, Lxn Jp+X):|aF}nKlK?u8[|0( j>8#6ѐ>+}~I.' Xh7;$P<</ YW H.b 6t'ysaOQI3Ú^,) Y '"{y7/ #&X~LxEw<ǓN)'Sc_o iiڌ6?l+Q,mxli:[( "F';rz_éQ3|g--j1s8PB{4~yjt%(9ÞG+?Ąza 2Yңe=] @}?l6f4 qz"A3!)Ow#Л8"c M4U7܏DZ,3~[H DG77߉;BJ2ۮ9>r^ BFAz 쏃SCwϚI2Qƽnfxr㘨}9A-q-()MXp8MzM C<{6!)*GMhRe6cp߼(GϿWPC:lU4; x zʹ2⍊GLidU yy㢶xoIY|EH%'o۬n#-"& d j\O$rlFHd(u/vK1xzΝp" *jJS{嬸F9!#YmHmDYUV DY<63ކ~lޖg5~ ѮD -4gsz䩠v-xp/0OAf~ wğIБ&ρT7`nHTEP~K\faK bt8ÛS/H"6?2$UtY:Sm$H $6ؿ_vҡVJr}bGG *guÒŵRpRa֓7YK)+:V R0ED6_*/7l ]7ҝW.7t5;n_lH#^@Ҏs8u _5RK,qꀷ;zwl;sj%ZDGtE-)~OP"`v: NGR8@dp&qYLW,+D["!j)(UGJr0 s魛i 8}P˚enVFIHAEKe!Ir+plGc [#*a ԗX狖ZJӁ=-[@p5YOѥ?B$h⯱PQ Fv IIYQpVP?'[kzҍw&ۈW&V+sY`% ՞fU>URXgEq`:LkC 6M xcOK шM(C.>Lqb9k#~*fMsgy/hۑxf\،9/N=B.%!NxMJVh݈mFcT!^]64Q EmE\0瑏CODĪo7+v5 Qw.[8[̔ZVF+[xXH`8yhmq*jQ7H[3]u>^enlt#*Σ3 ]/*Dԓ:'S"dؔ OeO@ H*w9vzduybZ$'il2@UedGx| >T V,x\!M#r/v49ܕ>eYG8@"(16^e @҄Ѣ8tz\ 61R=sȇZ,]<~aC[[/wp _?kEUv+8$_?/'$Em%kd(̝qtkWJ}`hjvouvU^ h}iw_ѧK!ӫ