libsss_nss_idmap-2.9.1-4.el9_3> M Mv ĉJ4!!%joLne)Ip-Bm5 ']eK4Qreleng@rockylinux.org p-Bm5 ']l$)깃EIzp7S#BԼa%ݯz<3NL&P.*%D ttNQK y5kZ3A+XeVR` mCSߺ^|RK.3ZS{XfD#t(WlqJ|ݎ7]pLc3|R~O@tv}Aq.a1e}udԌPK-vjO Ko,L!ɛƕM&e7,TxI-m۬ ?Ed % su,p\n~thBzW\qA}!k6$U5Kf+/ }e%B#$xahìN,m3p1q J-KZ<@PP!0J&gcثym{ yY~/߿clQM3>D/(=qѵ$61ihZ-F*)x̦?F<7$K]J%0 \Eȱ3Bt 14cb99ae3486180d751ab78a715d1c94fa44c2a838478c396fcc7411cda957ed73af9643ad8182a83d81268e299543c5c7a7e8db0/boS''xrL >=9?9d ! O 8Dbhp     0Xt p*(T8`9: G4,H4LI4lX4t Y4 \4]4^5tb5d7Ue7Zf7_l7bt7|u7v7w8dx8y89999\9`Clibsss_nss_idmap2.9.14.el9_3Library for SID and certificate based lookupsUtility library for SID and certificate based lookupseK/pb-db3cd6c7-b827-474c-8992-bdcff90536e9-b-s390xFRocky Linux 9.3Rocky Enterprise Software FoundationLGPLv3+Rocky Linux Build System (Peridot) Unspecifiedhttps://github.com/SSSD/sssd/linuxs390x/KAAA큤eK3eK3eK3eK2zeK2eK3dudu7cc66e659283432fb3ef90126326c913419ffff1824d4db9eacbb87e96cee9c88ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b9036c57f43c939054fd4b831f271a14c97a488c38f98cdda5e887c5d396e3b3bc58../../../../usr/lib64/libsss_nss_idmap.so.0.6.0libsss_nss_idmap.so.0.6.0rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.9.1-4.el9_3.src.rpmlibsss_nss_idmaplibsss_nss_idmap(s390-64)libsss_nss_idmap.so.0()(64bit)libsss_nss_idmap.so.0(SSS_NSS_IDMAP_0.0.1)(64bit)libsss_nss_idmap.so.0(SSS_NSS_IDMAP_0.1.0)(64bit)libsss_nss_idmap.so.0(SSS_NSS_IDMAP_0.2.0)(64bit)libsss_nss_idmap.so.0(SSS_NSS_IDMAP_0.3.0)(64bit)libsss_nss_idmap.so.0(SSS_NSS_IDMAP_0.4.0)(64bit)libsss_nss_idmap.so.0(SSS_NSS_IDMAP_0.5.0)(64bit)libsss_nss_idmap.so.0(SSS_NSS_IDMAP_0.6.0)(64bit)libsss_nss_idmap.so.0(SSS_NSS_IDMAP_0.7.0)(64bit)@@@@@@@@@@    @ld64.so.1()(64bit)ld64.so.1(GLIBC_2.3)(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.2)(64bit)libc.so.6(GLIBC_2.28)(64bit)libc.so.6(GLIBC_2.33)(64bit)libc.so.6(GLIBC_2.34)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.8)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)rtld(GNU_HASH)3.0.4-14.6.0-14.0-15.4.18-14.16.1.3e@eRdd@ddu@doMdbc<@c]cdcc@bb'b&bI@b{@b_aZ@a@a@Eduardo Lima (Etrunko) - 2.9.1-4Eduardo Lima (Etrunko) - 2.9.1-3Alexey Tikhonov - 2.9.1-2Alexey Tikhonov - 2.9.1-1Alexey Tikhonov - 2.9.0-5Alexey Tikhonov - 2.9.0-4Alexey Tikhonov - 2.9.0-3Alexey Tikhonov - 2.9.0-1Alexey Tikhonov - 2.8.2-2Alexey Tikhonov - 2.8.2-1Alexey Tikhonov - 2.8.1-1Alexey Tikhonov - 2.7.3-4Alexey Tikhonov - 2.7.3-3Alexey Tikhonov - 2.7.3-2Alexey Tikhonov - 2.7.3-1Alexey Tikhonov - 2.7.1-2Alexey Tikhonov - 2.7.1-1Alexey Tikhonov - 2.7.0-2Alexey Tikhonov - 2.7.0-1Alexey Tikhonov - 2.6.2-2Alexey Tikhonov - 2.6.2-1Alexey Tikhonov - 2.6.1-1- Related: rhbz#2236236 - dbus and crond getting terminated with SIGBUS in sss_client code Handle all invalidations consistently Supply a valid pointer to `sss_mmap_cache_validate_or_reinit()`, not a pointer to a local var- Resolves: rhbz#2236236 - dbus and crond getting terminated with SIGBUS in sss_client code - Resolves: rhbz#2237301 - SSSD runs multiples lookup search for each NFS request (SBUS req chaining stopped working in sssd-2.7)- Resolves: rhbz#2218858 - [sssd] SSSD enters failed state after heavy load in the system- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#2196816 - [RHEL9] [sssd] User lookup on IPA client fails with 's2n get_fqlist request failed' - Resolves: rhbz#2162552 - sssd client caches old data after removing netgroup member on IDM - Resolves: rhbz#2189542 - [sssd] RHEL 9.3 Tier 0 Localization - Resolves: rhbz#2133854 - [RHEL9] In some cases when `sdap_add_incomplete_groups()` is called with `ignore_group_members = true`, groups should be treated as complete - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys - Resolves: rhbz#1913839 - filter_groups doesn't filter GID from 'id' output: AD + 'ldap_id_mapping = True' corner case - Resolves: rhbz#2100789 - [Improvement] sssctl config-check command does not show an error when we don't have id_provider in the domain section - Resolves: rhbz#2152177 - [RFE] Add support for ldapi:// URLs - Resolves: rhbz#2164852 - man page entry should make clear that a nested group needs a name - Resolves: rhbz#2166627 - Improvement: sss_client: add 'getsidbyusername()' and 'getsidbygroupname()' and corresponding python bindings - Resolves: rhbz#2166943 - kinit switches KCM away from the newly issued ticket - Resolves: rhbz#2167728 - [sssd] Auth fails if client cannot speak to forest root domain (ldap_sasl_interactive_bind_s failed)- Resolves: rhbz#2160001 - Reference to 'sssd-ldap-attributes' man page is missing in 'sssd-ldap', etc man pages - Resolves: rhbz#2143159 - automount killed by SIGSEGV- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1608496 - sssd failing to register dynamic DNS addresses against an AD server due to unnecessary DNS search - Resolves: rhbz#2110091 - SSSD doesn't handle changes in 'resolv.conf' properly (when started right before network service) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139684 - [sssd] RHEL 9.2 Tier 0 Localization - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list - Resolves: rhbz#2142794 - SSSD: `sssctl analyze` command shouldn't require 'root' privileged - Resolves: rhbz#2144893 - changing password with ldap_password_policy = shadow does not take effect immediately - Resolves: rhbz#2148737 - UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1507035 - [RFE] SSSD does not support to change the user’s password when option ldap_pwd_policy equals to shadow in sssd.conf file - Resolves: rhbz#1766490 - Use negative cache better and domain checks for lookup by SIDs - Resolves: rhbz#1964121 - RFE: Add an option to sssd config to convert home directories to lowercase (or add a new template for the 'override_homedir' option) - Resolves: rhbz#2074307 - reduce debug level in case well_known_sid_to_name() fails - Resolves: rhbz#2096031 - SSSD: sdap_handle_id_collision_for_incomplete_groups debug message missing a new line - Resolves: rhbz#2103325 - Supported AD group types should be explained in the docs - Resolves: rhbz#2111388 - authenticating against external IdP services okta (native app) with OAuth client secret failed - Resolves: rhbz#2115171 - SSSD: duplicate dns_resolver_* option in man sssd.conf - Resolves: rhbz#2127492 - sssd timezone issues sudonotafter - Resolves: rhbz#2128840 - [RFE] provide dbus method to find users by attr - Resolves: rhbz#2128883 - Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list- Related: rhbz#1978119 - [Improvement] avoid interlocking among threads that use `libsss_nss_idmap` API (or other sss_client libs)- Resolves: rhbz#2116389 - rpc.gssd crash when access a same file on krb5 nfs mount with multiple uids simultaneously since sssd-2.7.3-2.el9 - Resolves: rhbz#2119373 - sssctl analyze --logdir option requires sssd to be configured - Resolves: rhbz#2120657 - Incorrect request ID tracking from responder to backend- Resolves: rhbz#2106660 - [regression] sssd goes offline with forced ldaps configuration - Resolves: rhbz#2109451 - virsh command will hang after the host run several auto test cases - Resolves: rhbz#2098654 - cache_req_data_set_hybrid_lookup: cache_req_data should never be NULL - Resolves: rhbz#2106685 - [regression] sssctl analyze fails to parse PAM related sssd logs- Resolves: rhbz#2069376 - Rebase SSSD for RHEL 9.1 - Resolves: rhbz#1936551 - [Improvement] Provide user feedback when login fails due to blocked PIN - Resolves: rhbz#1978119 - [Improvement] avoid interlocking among threads that use `libsss_nss_idmap` API (or other sss_client libs) - Resolves: rhbz#2062665 - [sssd] RHEL 9.1 Tier 0 Localization- Resolves: rhbz#2073095 - Harden kerberos ticket validation (additional patch) - Resolves: rhbz#2061795 - Unable to lookup AD user if the AD group contains '@' symbol (additional patch)- Resolves: rhbz#2069376 - Rebase SSSD for RHEL 9.1 - Resolves: rhbz#1893192 - sdap_nested_group_deref_direct_process() triggers internal watchdog for large data sets - Resolves: rhbz#1927553 - [Improvement] add SSSD support for more than one CRL PEM file name with parameters certificate_verification and crl_file - Resolves: rhbz#2089216 - pam_sss_gss ceased to work after upgrade to 8.6 - Resolves: rhbz#2090776 - Add idp authentication indicator in man page of sssd.conf - Resolves: rhbz#1927195 - sssd runs out of proxy child slots and doesn't clear the counter for Active requests - Resolves: rhbz#2073095 - Harden kerberos ticket validation - Resolves: rhbz#2082455 - 'getent hosts' not return hosts if they have more than one CN in LDAP - Resolves: rhbz#2087581 - Regression "Missing internal domain data." when setting ad_domain to incorrect- Resolves: rhbz#2065693 - [RHEL9] Ship new sub-package called sssd-idp into sssd- Resolves: rhbz#2069376 - Rebase SSSD for RHEL 9.1 - Resolves: rhbz#2072640 - sssd_nss exiting (due to missing 'sssd' local user) making SSSD service to restart in a loop - Resolves: rhbz#2070189 - sssd error triggers backtrace : [write_krb5info_file_from_fo_server] (0x0020): [RID#73501] There is no server that can be written into kdc info file. - Resolves: rhbz#2070138 - SSSD authenticating to LDAP with obfuscated password produces Invalid authtoken type message causing sssd_be to go offline (cross inter_ference of different provider plugins options) - Resolves: rhbz#2065693 - [RHEL9] Ship new sub-package called sssd-idp into sssd - Resolves: rhbz#2065098 - Use right sdap_domain in ad_domain_info_send - Resolves: rhbz#2062716 - [Improvement] Add user and group version of sss_nss_getorigbyname() - Resolves: rhbz#2061795 - Unable to lookup AD user if the AD group contains '@' symbol - Resolves: rhbz#2056482 - [RFE] Add sssd internal krb5 plugin for authentication against external IdP via OAuth2 - Resolves: rhbz#1937895 - SSSD update prompts for smartcard pin twice - After update to 7.9 - Resolves: rhbz#1925559 - [RFE] Implement time logging for the LDAP queries and warning of high queries time - Resolves: rhbz#1915564 - sssd does not enforce smartcard auth for kde screen locker - Resolves: rhbz#1859751 - [RFE] Allow SSSD to use anonymous pkinit for FAST - Resolves: rhbz#1749279 - 2FA prompting setting ineffective - Resolves: rhbz#1661055 - sssd fails GPO-based access if AD have setup with Japanese language - Resolves: rhbz#1245367 - [RFE] Implement memory cache for SID requests to improve performance- Resolves: rhbz#2035244 - AD Domain in the AD Forest Missing after sssd latest update - Resolves: rhbz#2041560 - sssd does not use kerberos port that is set.- Resolves: rhbz#2011224 - Rebase SSSD for RHEL 9.0-GA - Resolves: rhbz#2017390 - [sssd] RHEL 9.0 GA Tier 0 Localization - Resolves: rhbz#2013263 - [RHEL9] Add ability to parse child log files - Resolves: rhbz#2013262 - [RHEL9] Add tevent chain ID logic into responders - Resolves: rhbz#1992432 - Add client certificate validation D-Bus API - Resolves: rhbz#1940517 - [RFE] Health and Support Analyzer: Add sssctl sub-command to select and display a single request from the logs- Resolves: rhbz#2011224 - Rebase SSSD for RHEL 9.0-GA - Resolves: rhbz#1966201 - sssd: incorrect checks on length values during packet decoding in unpack_authtok() - Resolves: rhbz#977803 - incorrect checks of `strto*()` string to number convertion functions - Resolves: rhbz#1992432 - Add client certificate validation D-Bus API - Resolves: rhbz#1992973 - Lookup with fully-qualified name does not work with 'cache_first = True' - Resolves: rhbz#1996151 - Add support for CKM_RSA_PKCS in smart card authentication. - Resolves: rhbz#1998459 - 2.5.x based SSSD adds more AD domains than it should based on the configuration file (not trusted and from a different forest) - Resolves: rhbz#2000476 - disabled root ad domain causes subdomains to be marked offline - Resolves: rhbz#2014249 - Consistency in defaults between OpenSSH and SSSD - Resolves: rhbz#2029419 - 'exclude_groups' option provided in SSSD for session recording (tlog) doesn't work as expected2.9.1-4.el9_32.9.1-4.el9_3.build-ida61b47d8771b0e30a0247617bc02d992caa729eclibsss_nss_idmap.so.0libsss_nss_idmap.so.0.6.0libsss_nss_idmapCOPYINGCOPYING.LESSER/usr/lib//usr/lib/.build-id//usr/lib/.build-id/a6//usr/lib64//usr/share/licenses//usr/share/licenses/libsss_nss_idmap/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -march=z14 -mtune=z15 -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19s390x-redhat-linux-gnudirectoryELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=a61b47d8771b0e30a0247617bc02d992caa729ec, strippedASCII textPPPPPPPPPPPP P P P PRRR RRRRRRRR utf-8074ebf43e886dbeca0e54efcb3683f9e956c452b23e37cb460a98f8db9b428afe6bba2a5c34756a3c44bc972873dbb2349ef3e6ca6b233cbc9ffd93b1b9f7e32?0(/h| zTKiBu m*2Ih>t\]^&<)%qiL*"񕚪Ktt2yߋ }g0K>zO(r[%$yΟaӃ&9Ng,ܓϕ;BP) w)Li$F@X娓w>Ⲙ 3X>A: q^M1Q䜀|Xqbt)& i tt~Ù q7a^}w7ҿʼBrhLcfȾ{OId2|h "]BĻzNdDwA_|! [#zVܛDzt_1O/z~bncP'@C+)T, ;.9>"+.7ӕe7#qI?Gڍ]Nnx&{_ÝI4e~"i ~%no7'c"O)0 `vBW^=9w҅ʑ3֎a42==4=DɿNVc2?gx; Q;n|~%3Ã8}>N?LMw o?(`>xAFu$PxžgV_EF~C'ևsoE.Wzv!<|#;أ{y|m 9{{H7D`cmgF:_Os˘6VF\vwE$"8-EqѰ HeKKlBd$Riǜ8I]=XvMyU;[Efj 9N h@;y`&M^_p8a⾇>v9z'NO6i?#z;2=sި|%3Ry"QwP'BXR[jm2=k&(_5Y2tT"d, $]/ VP7=P瘘Yz?eNIAdQYD ~к"7,f7+!~! )B TϏHZjlֹ~G,=`>,N8vS+uzk^_FbompuJonņ}ï)U-ܦجZlj,S5{Oܿ^fT-no|&wPJm^\6O׫u\tsﶗNn]XRMM7UkҳzqqT5g ^M Jq6֦L߉R;Zfq}[\ń6m VR'LBZ5mb`=mAؤQd[77]l N!^klRxcAp!>@W8O ~T_"qN>u{aX-T)^k9 .OlΠ}35})liLBH{(w D;>|=&W)((NA8qr{*GX5٠f0T1ZM r' E(hb C.<$ Ѓ R’I(JoM2bOB@gL͊.xH̬ijl, ˃+ÖV*hl c"b h5 :He-;Z(6%JJQc l} _D!_ǏQrm/4nw#zwOƧO! :P: :b\iӠx_ 2N]m[ax[1QOK!Pq wg1 ͦ|V0NBt)̀0z^ro3IMO$NSj L&.(E\vp<PL >|D'64 x7~NC05ez=(rpHH`j VW:~>XĴ(bk,(I@MGN8]9)4dNazT[] dB/S@ i*N|o/H22t#̰^fDpaV@ Gpaf'^m={a 5OYLFh aMxHˋbғ[ޣ쥝RŝLM(b|J 3Lb;5:P4yҏ˰ 7GCXyxPipHxxxxU-K=D$Dh؀N PÝh^:Qy >D;RN|_KTYDY8 GuЏ$gUc{Y՟2Y}vivncmWʵ6"hoKK2AE0[3~jtY o_S(#FhyMS8#jӖt"kP4UE˄.z/3U^ŸQ w)G?^ _qZկ ?Ut>kI9 ;oaY\-F<TCSF 9fSBOa}0@#ԑ5 I8AGz{LD}$HkUU)!=/Y7,r` EM9ztsT9yyD6<LЮH"AAEG<0P2$"t#KL'$ݫO:NQ:UaLyԁ'goT/$V|tC/Ӫznb(4(5с@G{W c HDKQ y^Bepp|1A:'#֓{*z@Px7ˀih@y$=N֦]-gtDi ]l7Ҷ.P"; m-BCj=O;؍|$߬;5o x=]&/@HIGX˥RDQ=h QI y9]Iޢ;a?(YQRʧBΤgٷrc<+k$]ef'T`/.x5(|7)O|.HI`Ӥf5;~&cG禘mqlE0;~Μo+ ]A=;6i]V/}8Dd/gw_䘍')6XB.aUBt_db ˶sZd npE )#' Rp ҲL 섑Ndz_ϰ3 :=N1}pa0Q_Е{rG: o90S+) itMQ?&iw2W^`Y ph tv"dAP(tˡ\89vc2{R9&`-A ,9 `.eP$m4Vc#ԃ1!ʃf3-ow.5PYCRPB fE~A. uD 0~;TIA*f'IB VvSq6yuXSUL. +23PE PvdܟA,bhȑd$ Iv)} R;"H {zO|W4R׻x19;+z\sD$;hnHXl˗R o}HX$RuE E?F$S ȑ]Q'1߃ ىgg )sX4HQ$E0} SQ>E/]mGAYah;el{=޾ℹ/ l "1 l'= c.FOĠ?^Z!||>c/No B%\r dkRg8Hr~TÈ}~H:q@}׻dOW<{s66{qIY3}=R> )qU#;}뻊EeI0}PT|3c-:1 1Ů9BZzs٭ꧨ\܊Sp\T\ T\ ?urTbDP3Ce``%BxAFp{ -5N7Nh$Lnvd YsU56-mB0W+SɃ` {B(cy8Ih84gLO%XLPIw$?7#V ?E&u(If#@*$Gc@Ark$ώ¤1:2DJ>.n3le,X)5 HdN(C \ zaCn<̷Y`M(v&̜%TG{Dy$s~~#!2 C}=ZZ-y]Ld\"`!T14$RΗb~a͎gb@sgnnEY6`7(h;c^7zBwbW%Z~wNAV3IA&@ѧqyyYLu 2aEm'; 2{vŬfapP80HnEC/GB##PlY6X_&L/[e$rƹh~c4Jn/v/zoMG@;rTSԨs_";a*q&_L1`W;vI` Ӂ}EӉ_̣|>}>/|x,FڷP{9"c0chFRW۽hN|[@B rq7BN7,?"֔6' u$̕L@I,аN 1Hd7@&t(i5rg2[/dW@q|UYl6Vwmɩn}~z9A/ջǺ𰀩?ecѷcT6kge1q7 GNٙd \3N(b\݅o~h6M: ȼ^ W= V:tɃwk\h7lt\HffccwL7W~/g4?4P{q'4ٽӷ_yf+kvhM&#a[5 X˕ތOBH9 Q8[6ӗbp/0=9̀|~CG,C$`1S226sD&t\u(`$#н\(FN:{^:βtAǽXAPG$Jv†nPlNo~0.nZP݅>htۧA.M> p&##&v M,0K+Vj]a66OvƷ?Rgb JNڀz'MPe,,w'$g}[n)$jNqۭ gfe#@**sf"JMSXV7rTkݾiب7.nmk)T+] 'ŵ7k}R5+ݾM5,r&Jn٩r]T+ŧS[̚ŹoY\zYH^{k}#rkLy۩J{6ղ~Z"3p7UYg_V$ʥbH)9*bnڊ#juzպI lV*R ^kV-en,R9MmqsgT,)۶N{*TZj6k]-U$.GlHfYHo-\'Y.V:߲i*&[JV^Z [͵Jmj-+t+}kbokőR8Wűr^u]nY-+WIXHq$ƶY7Ztqn֭frYlp\*ʢUȨ1V>,A mNHZ7ۃXg%+w(`B<р,Ҹta KbmhXy Uv'_X)pYlI(`e`^10‹@E,ßH Պ7upU0Kp iBaFⳣI hª̒/{ătyC2vpR24)V"^ٕxv((YrCQjQAi4GfH!d ,rrNHPTȎ'< , 2R!,bJ 1~/ (6V3vD M3s8WPj5$Ȍld(ʫ8!T6A!k2'HY+Ui=: # +k,1ENUrURc Z ꔏTYC <0+52la$>4i3Tcj.\x0ޠL7 c(KR 0tMpmJrj(J5Œ[ª&T!JpAfx0XT\zvhaI0N?1H~|9.b6">HmpcMTq$C$#I]ݑ'_-A0 q6U AT 9s#JXSJ&<2tXH.r8*ԀKŠ0靅 m!!A8>Y: Ib6K$JS / ,y[ero 9|h"GKW)0hoD؁0ZztC WpDa('_s#y)'7T4Pur̕0,:2p(딾0XnBtb8*?Q[rc HB`` bX#! X  "T Y+,ǗHlBd|AMЌYjscmLX Mp_,9c28&~ZjĜ( Lap7fW (a1먤(qcffD Ś, j$a1 d48-bR|cPl%cںEJR]4u2祃nR')8֢b57+DnAZdIx_nӱic̍\c=q}1>Kd{Gw-|AہrXl+y![n qZY\_<' k(}.')l6*j[^̳ P2* ɏZ;Ic_XEɂqa*2ٓfp3-Ĉ#F+ s V=8bS3p5\jW n`/)S+0M;-PcF'pKҺr HB.X6:$ <]y+e{O?(J62#yXףG:j1Vr;AtzYO53bh&Cp -@4Ov>8mTwm<'`q"AFu*IݕK{?{ǕOr3Kbc KAt= k d` EsʓS" W@,bROL@J[`kaۣmߠ,B8xbھG:9L᝷[A&7B0h0Qz^O*Ҵ iS]hCFlc^)8d8R_ZKM_񅪇ZH˚i'?n6<ֈ\|~A eӎ< gn ܂ᕂ{b2TQ+B,o1 ?>d/ZM\CWq32#}Kh#WYʗ>:rkj,uk+">xY*):d13&`.-,%[ҴRu]|~`zX"4׷ &LUvu jg -V ԰Yhə6g%G8j;XI`g.%֕PO N: #T-1Tz0Y͸tc Ԫk`{!*/ֲVb(P+nHUgb7PP6UC~^{ؑ{.>/[xUk}ӽLAQ0l=$ xGy{c$; M&0sb0ÇAV]Dga`+za`,kg*͊b蝖ѻ,ejՄ 7M,0ȑe$m卑C,h[ǵEL!'-P.dE7Ӡ,%D pط~k硼l` yL]]hrVoA;Wo]zw?z7nLfyCpwi;xdWn 0uXKR{vxRՈHGWt)I vKqIւ ġtk_s(8Jl-N +|`գj}nL2_ Jd=pH ?Ld9ꡡeS˹4$~yK]xRs9'Q]qxvFA\S1Kia"o6G׃ ]=:#D#jvݿb!sF# ᨨV{Τƌ빩߶Muv/(BUײNs  F/yxCxo~Sw$P= )Vz2d+?A b4GaKݽe-8A+`4s$EF9mY=CY" ~/G{>X۴sb.ф?:o ,;*G%KHܵ؄XvlJ8y1ZqИ>;q?/Oo#)ڇV1ro:?QL]>.NNcG6ʇ͈*1ާVr^(@8͆=hRtZ6@ɬVݗp Gtoph^x]QErA/['z2Dg5ɪjOi԰Cx03ۣӫ1(Gw,~ xV}Y]+q]| /KT֋X>Q[}[P!܏>ONeHβ|j=j+}վ퓫|+Ȼ߻C;c\~@[y] 3~/v?x' ]nP (/q-}G),IG"6mwLme[ ia]$.}1~mn6¯6o);9bxCwAAwLжPq.-D ڄW[q"V%\?sMou sL/ }?ٹB⎓FMNrv]rVe{zݠk={nslLTobgҩᨽlù{ޥ1a{stm n̳MbLhJ^em}gs?F7֌rrE{~ (x5^ ]şl,w!š2EC݂qz}W?K-&_B˄&)"(U{v)\/9KL W2ܓ9Ȱj nuU&9x+] ~8KcABҦ͡^)! Ԃ7+^!6@q柸s6ݬ@R?m*18^Sfp8:YW v&+?$ Wvnxpdm}fx\7-GӔm)jTyC >8Dsu:ee*R+L{ :<| 1YaYvMV@N]a}-\a7,iZRwTys5W'zIۭw$ G + &?:SV<-ęBD6b )a-L]' ?0;,PhB;kb%ˆԌ.d -F6P3'؋IAa{,M_H~Cxa0A0i9Z\vMR.G(m9uʄ-nwz!+hEWxWX u5zi>*>wͶj$?>^cI +FlB{(L4v;ve{}&Xqô=Ggo^򪿁2ɗ5R/!9A*D]i3a^$mzJca>P#Z{ ~w$'Mۘ .̜Muy6Iԗ WZI*S; b zI z~c"YO:uO 2[AC\~K}N?jm8 ^@rN(}K2C}A!R~e*P3IHv8OXQc~-^1 ң~y&:(LgҶceTڅ2+1 : +%K Cb'4FSYv)g-6݋ٮMHSr'WM Б;_`U4[ ˟ qߔa47ٙ$u=5"Pvr1cP,y)dfp,.j:-!lٽ~R6"CobZ~cj+>d8Ibh_ U AJ7Go{H. =T?o(@b%] 1G`ؓ#&.G'<_lsthCgq:W0I?_̀i3'oy~ CQ̼y>hF;xY]MQK#bT_y'}r^R9+/En`"Pӫ4+2kc {RLY]83<"/fHGM+t_I(%1uuQ&`l!$C` #e?34 !Dv`l]HV`CۥB2@1*$;-Kq;@M[$I /o"hU8^*,yE/vT5#>F4G뮲ǀ<ժ"(;G a~V{B؇W$\D!j:DNr)(Qsm<^i)&?J9%`NPM \ nE"8(Dw] ҮO,M4TNj m|)ۢ]ā[$ ͠{N-9WkWDGfj,bdf#!a#xD6y=I T#/d.֫P꘶rQ]%,C;|dous\JL/DC /`g FC/TcW(3k{9K֙@+bw~BV8Sxϡ2;~ J{fjL vH ϔmV9,SQA/$7W!YzDSj7 CnaΦ τ Mvn!/+oR9 | a]PId4Y7PE+2#7n|T1rpB@˭G!Q8L:rx܏|Si"3잲4 ^(Кέm~hZA{+&[lf(F2KړrLWL܆KRHoC24N7"٪J)V Rmz\Gr]Or 9K\_C!Ozqϴ&#3!_RWX:YcAi>1#&ըt/;VC"8;'Қ@dHôd/Iފ8犇[G}B;TR0`m9_:L󙃵fH υXyHS@4b-}:LClP{Z PHa(&tFp-&WSYDn$zn`ƫɨ"Ҫ{*(edD`T(JGBkjX8%9MD3d:(>(=Na:ChGMwj+ gWcz pR* ]Ѓ1%f4锟ȯDMv1M&\$= EPmy[Ɨ2ַP7`hlcqjzް`qe&LFc&gmp)zJo *1; ߖ }Gʫ0XRBbBi3,P֦# \%T8Jh䉽rqMdN. SE;=q4G, Q!?Q; =,V0`[%u W<ҜTP\T +Ҽmnp 9-3"E\M!SU0h3U1S~S{42`F+vK@~Zkaiu߰l$CT¢g.b0zJZn|P^U֟ Hχk)f;Ku5謶f`M{3&glB V_i ,͵BhWD^A#,>`h=I-y<NvlJYIW~DKI"􄒟[TdJ@*g~)K*3ꕃ B \ ȸJNkF@g8܋Ϭ 6 /Y q*#cX)g~~tZҐSt%DgoA6 l>'Npy䪾 ~x2߂QA= '4co6o.%ݱ"cSԹ o43KAPM+2G"! \Xe!&mW`VV ! ܩL~[ W ~$) iŬ"dΗl!yГH[cg> Bl",S&IxF>}J> 8 F{KKaki闚aͩ}-x7pENUyr1L:y[Yv`.(*T>(7}8Y=Lr 'zvw['b-CBb Ё3΋@cxsֺwQ::\B[rH3.{h{o;X%..`+Ga E朜u'iu$:Fc5iqN6;bQj|F4S5fi (L3!jW< ׹tKцDv>u눉?C%8Ԛ7-*r=6 :2I\'P<Jnp_TviR߾XRW/tfLp:@Um`}ePh~\;斉L ǸbI˝![K*TS&wƫ%G6IJt~ cE! re! 8\ C M@)$ N@?nCH-zN2b9vMS:<(  :g> =3?jSAk ljߍ)B$7|݂$4w-V@-#P,k= ,k4=ɐR:Ms`x rs¼S§Tqb"\  01*#iiPYjXpޘfdiuV{m3O? I: xx'AY‡gX\{.LTn2suIrŏahUc5,F6?/[겨9&i_tbFZ3)}7ēF˩+5_~2qg <=I%ku-NbUC:8O[9l ,b6I:Lq4'pSf'd!0qn9a͙!4Rh\bF 4dz*نE]NZ]0rAb9VgZŠo,U yYc ar!,([F|Q` &0uZ" ~5y_23 2_h6Am8 EB绑pu6؀]5؈̐,5| (^R3j;ڇЍc┅c ~Tm @N̬'Y"a\Ll8Jh;KOD 8od g #XW$!+24Yxєiz(2"idHUxiAa7RT[ERnyP=`yS.Tl}+WcV/˼[=`6|遟%4m( Qs3fMatOBe mmfW?wѯ118} 3)q>WwVƶ+lՄ1-xpSdhO>N"@۝8P? .DJ{=;%ɐm7/c1!5 t[,sOe¼۽%Nf5Fd60B$)T]mM3OЪΕv{O 3ՕQǜ~U(^Τ/юCiՖA8L5n7YOẈ I[m (JiRVi&xs4\ _vt,.ntbۼ 7hgcl%@ :'$ 2L 7$d9\ڠ9|luzUCW~ 0FNp؉"bsedRBP㌁o`":H׿ ⏡YQ7dgSXf%iRC՜įI7.ɛaу%b/Pp)JuSoDHNRTshd#dbBpF CC zr ʓNF^2+Ve¤ n+JfD^fQ(iHl#`N+.cCٶ"<Ϯ`\Of,~Me酻91k9Il]&ER/8)68)O#RWVn.Ր H,@@+q?$#dk0,w !;6qpCD}1Uϗ5OZ { J/a,a01p؇3Ɖ$),3cvu,p(g n_XAV"WǕ6&{ͨHR4+"np`lmnӐq^m3\pC* @VȺQo:9> 6Qw") Sڭ1*oc;g-TM~]VQIB5J{oLFKvU8uJ1OP+1$2r Ջ'}nII@SK;o>0gFp@hmid @.p3+WV9"ϱhԔt-q b`Wz8z 9p?b@"(A$NQ(6:*Uy#8y ,R~z7 =$ .uRH-8vF{%XbxԻ,شQ9 Pj,Xg_VFQȾx|CX4:Hme"m nґĂ-پYId I-$5A}YRyJxs lKb7ې1ow,.j6'RUNCҫbܠ5J]{ -з{pY)Sp<ۜ0/R1;,g*vm@aa!lh95P ;޼'>o]}oÄ4ʒw ҬQ&(4 Q#HAW=7|gVWa/2 ,PZL[:"evOVM2ӱ,qe0喱EL9\'{Zv8f;<`=hiS)Y6'HaF"Vtq"2UDPCaefl2jĀ}Y){9R+B5_n[GCHn..EsNLz,ȅ ,B#ȲuG8j6XN6#sp7 u&wnc|9;# [&zqE*rh&IONl8{Iy*aa*beTZ+bB"EȔ%FL$mjQG^]iܹ'8zG5=6Lx {1kc$dK1+}l"t:E:d#ɿ~ cZ8:KOAH~!േH_DBXM G`fkN\Ӥ/X:"B^w -qnf)$:8uA4iå(<'j׵DW=TU} cX5ͳ9iuCo!' (_cWKI rk³ 6.h4ah`VoN|Xײ&~*Z?ZSjuz%maSLIt͞jK;kaݫ8! 0iS.,DjHBrN~L$"0 &J&4 VCxToebTh!Lۉ^P>3mg#5 Js| ? wUy2l̉ IE[zCZi1ȐR쌷# [BmA.hԚJI,M",hhdN+$&gk()oIdX„>~0&[ɡ_Ps5+,q5\养 nDLIn~L8K47Ii}(~̠;ጁĕ(hF䉊4&ot$Y-wYN'#&xNsm5h8?5T_,."[eG|9ں&N L@A~<U&+7Tq]Kiq2=,/*_M-eQ(ˤ1ۼ &)h#?ʤc^u.av 4@143>hEӬLjBcG2*si^46ȴ~[JÜ/[ ^s{Ы`+@_O4AC^o90-Y VMشI!+.|ꠧI[]>K]m4c09Gm{5_-vj]Y B. ! 1.̦ax(`(6oj3`#)͠\v' |Knj@?y ']Q+\Ksܾrƀ%Y#u5ش#jpo&]B3"_@ OmaD=dmfwބ3"M ’nX<FT"̑`+Ggiq`a,h-5⣧%?~]aIrY.-pk߻s0qtTpg$X= lO0 =^t'˔85/ko|7Q?WlG& !8 F3k8O¾p̺68z7U6'x/ )իX$J 5=m)K6q!HI}U!C\WqSL2#8QSq;.acVNDH4j):Br7"4)*EfIMN>Jc~@nP;U\":NJ.K C!hzfSL7"M=. dC[b}jzSu䜘 L/f44%*7#9Hv WAU݆l KdIUyԕ$h3@t-Hۧ"#Pa5D{9G6lLٷN=,Us) hZKO1(EaZq?O '; }ݢ(ktk#TJk@;[HL}҅5ꗶ-(0ijYMiCB{c(xB%֐!Ypk6.p\!tmb BK6O ‡+ަd&"VLq5`b= [x%g^/s@fxHoRȘrvb$>90f m=khEdԹ1WsPɧZ1p'~/ aRzB#N*=AE0W*ydW 7^3c9ِ,=Īu;{Iؘ*y݀F[гK3oGHzTz}#7??P@/aBlfu߬l__;7/UjZSbpZ?g7ĝv"<=xcj6ZLN}GȄZjgr9t ;&5{^0h*myl>4XX *V1=CzA%VEޗ,5V{y|43@\M*>20sO ֕ИC,n"Exc^v<?B6S91ڷPo3"Y]׈ˮ8ĻL-~( @_(M֔'wب)E$Nɞ)CUxGSG4-j/k86E?@9w*J- nMdtyeUȓ6`8\DLclĖ^h:TCְ@WO+J9SU܆l|" a =\M9?/z#bYZ0:ISɅTcb,=֕W"(ɄR\?%NPYcwkI쭿e͍4FJjn.Pw qnZ^"ixAe(Ii@j&նQ.!NTUX"~}c-.ondZgb2w%Ѷ- A'g,zaWϙVCDN=0y"c6Έp1"1AГ@9."1%ݪe:'QХd[Ӈc[rZI`$%*