certmonger-debugsource-0.79.17-2.el8 > 6 6_6 3!pQp)Tξ7]mtZ`c, ]mtZ` Sb^3!vqvۭPNl].f`slts{x}VjJXFyZv)'z@M--& Ŭ(u9t=9~ X.jD ,8m3vs-]yB ;j^4TM\nnzRYiz0 >wb?Ikj /KNƀJP;ɑq2 Ҭt@C G|B1sFVDž<`~nEU =T CՀܠps9_eI$jxf[:ޛa- Me5=t* s캱u4iKqaLLشDZ]phCѨ 9k"<3]EXN4r!:{Ty"Hɝ>Rc!Ս1']_{^tFvU!-ha 96#^Hy?y "^N{b_ڍ?MOO]-b!LE-\Xm/4 I-NRWPZĤ>p9 x? hd! ' L(,17> \n    'K '),C..011$1(18194:VG\HXITXY\]^bfdefltuv    " dCcertmonger-debugsource0.79.172.el8Debug sources for package certmongerThis package provides debug sources for package certmonger. Debug sources are useful when developing applications that use this package or when debugging this package.c ord1-prod-x86build003.svc.aws.rockylinux.orgn9KojiRockyGPLv3+infrastructure@rockylinux.orgDevelopment/Debughttp://pagure.io/certmonger/linuxi686b> k?"8M`0q=A3 @E~`7b $@ FO \Y ;e5 G.P*#1cIFE )/ `/@xMr 9/ ^63k zuuT6 RUu 1  6|27/!h x -3aT8}$} 8M2TAA큤c Sc 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.79.17-2.el8.src.rpmcertmonger-debugsourcecertmonger-debugsource(x86-32)    rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3c@c.amaa]`N@__]@_"@^?@^x^2^^^^T@]@]q]]\ڭ\g\@[F[][qr[b@[aZ@Z_@Zz@ZV@Y@YKY3YV@YYx@Xf@XXXXX@XM@W|W|VV<@VD@U@UUb@U@UUUa@Ug@UUUKSU-@T\@Tk4Ta@T`T`T`T`TZ@TXTSyTSySS@SSS@SS@S/SSǺSǺS @S"@S"@SS@S@S9@SSDSSS@S[SS=M@S@SR@R@RRJ@RURTRkRR7R@QQ=@Q@PPP @P @PZPN@P@P`K@PG>Pw@P@OOO#O@ORO;@O;@O:LO@N2NN$@N@N]NN[@NI @NC@NC@NBrN;@NM@M@Mx@MM2@M@M@Mn1@MY@MQ0@M0:M9L,@L@LML{L*@LA@LuLrbLjyLjyLe3Le3L(Lk@LL0K^K;@K @KK@KuBK]KD{@K"4@K?K @K K K y@JJ@JJ@JUJJ@JJJI@J@Rob Crittenden - 0.79.17-2Rob Crittenden - 0.79.17-1Rob Crittenden - 0.79.13-5Rob Crittenden - 0.79.13-4Rob Crittenden - 0.79.13-3Rob Crittenden - 0.79.13-2Rob Crittenden - 0.79.13-1Rob Crittenden - 0.79.7-15Rob Crittenden - 0.79.7-14Rob Crittenden - 0.79.7-13Rob Crittenden - 0.79.7-12Rob Crittenden - 0.79.7-11Rob Crittenden - 0.79.7-10Rob Crittenden - 0.79.7-9Rob Crittenden - 0.79.7-8Rob Crittenden - 0.79.7-7Rob Crittenden - 0.79.7-6Rob Crittenden - 0.79.7-5Rob Crittenden - 0.79.7-4Rob Crittenden - 0.79.7-3Rob Crittenden - 0.79.7-2Alexander Bokovoy - 0.79.7-1Rob Crittenden - 0.79.6-5Rob Crittenden - 0.79.6-4Rob Crittenden - 0.79.6-3Rob Crittenden - 0.79.6-2Rob Crittenden - 0.79.6-1Rob Crittenden 0.79.5-6Rob Crittenden 0.79.5-5Fedora Release Engineering - 0.79.5-4Rob Crittenden 0.79.5-3Rob Crittenden 0.79.5-2Rob Crittenden 0.79.5-1Rob Crittenden 0.79.4-2Rob Crittenden 0.79.4-1Fedora Release Engineering - 0.79.3-3Fedora Release Engineering - 0.79.3-2Nalin Dahyabhai 0.79.3-1Nalin Dahyabhai 0.79.2-2Nalin Dahyabhai 0.79.2-1Nalin Dahyabhai 0.79.1-1Nalin Dahyabhai 0.79-1Fedora Release Engineering - 0.78.6-6Igor Gnatenko - 0.78.6-5Nalin Dahyabhai 0.78.6-4Nalin Dahyabhai 0.78.6-3Fedora Release Engineering - 0.78.6-2Nalin Dahyabhai 0.78.6-1Nalin Dahyabhai 0.78.5-1Nalin Dahyabhai 0.78.4-1Nalin Dahyabhai 0.78.3-1Nalin Dahyabhai 0.78.2-1Nalin Dahyabhai 0.78.1-1Nalin Dahyabhai 0.78-1Fedora Release Engineering - 0.77.5-2Nalin Dahyabhai 0.77.5-1Nalin Dahyabhai 0.77.4-1Nalin Dahyabhai 0.77.3-1Nalin Dahyabhai 0.77.2-1Nalin Dahyabhai 0.77.1-1Nalin Dahyabhai 0.76.8-1Nalin Dahyabhai 0.76.7-1Nalin Dahyabhai 0.76.6-1Nalin Dahyabhai 0.76.5-1Nalin Dahyabhai 0.76.4-1Nalin Dahyabhai 0.76.3-1Nalin Dahyabhai Nalin Dahyabhai 0.76.2-1Nalin Dahyabhai 0.76.1-1Nalin Dahyabhai 0.76-1Nalin Dahyabhai 0.75.14-1Kevin Fenzi - 0.75.13-2Nalin Dahyabhai 0.75.13-1Nalin Dahyabhai 0.75.12-1Fedora Release Engineering - 0.75.10-2Nalin Dahyabhai 0.75.11-1Nalin Dahyabhai 0.75.10-1Nalin Dahyabhai 0.75.9-1Nalin Dahyabhai 0.75.8-1Nalin Dahyabhai 0.75.7-2Nalin Dahyabhai 0.75.7-1Nalin Dahyabhai 0.75.6-1Nalin Dahyabhai 0.75.5-1Nalin Dahyabhai 0.75.4-2Nalin Dahyabhai 0.75.4-1Nalin Dahyabhai 0.75.3-1Nalin Dahyabhai 0.75.2-1Nalin Dahyabhai 0.75.1-1Nalin Dahyabhai 0.75-1Nalin Dahyabhai 0.74.96-1Nalin Dahyabhai 0.74.95-1Fedora Release Engineering - 0.74-2Nalin Dahyabhai 0.74.94-1Nalin Dahyabhai 0.74.93-1Nalin Dahyabhai 0.74.92-1Nalin Dahyabhai 0.74-1Nalin Dahyabhai 0.73-1Nalin Dahyabhai Nalin Dahyabhai Nalin Dahyabhai Nalin Dahyabhai 0.72-1Nalin Dahyabhai 0.71-1Daniel Mach - 0.70-2Nalin Dahyabhai 0.70-1Daniel Mach - 0.69-2Nalin Dahyabhai 0.69-1Nalin Dahyabhai 0.68-1Nalin Dahyabhai 0.67-3Fedora Release Engineering - 0.67-2Nalin Dahyabhai 0.67-1Fedora Release Engineering - 0.65-2Nalin Dahyabhai 0.66-1Nalin Dahyabhai 0.65-2Nalin Dahyabhai 0.65-1Nalin Dahyabhai 0.64-1Nalin Dahyabhai 0.63-1Nalin Dahyabhai 0.62-1Nalin Dahyabhai 0.61-3Nalin Dahyabhai 0.61-1Nalin Dahyabhai 0.60-1Nalin Dahyabhai Fedora Release Engineering - 0.59-2Nalin Dahyabhai 0.59-1Nalin Dahyabhai 0.58-1Nalin Dahyabhai Nalin Dahyabhai 0.57-1Nalin Dahyabhai 0.56-1Nalin Dahyabhai 0.55-1Nalin Dahyabhai 0.54-1Nalin Dahyabhai 0.53-1Fedora Release Engineering - 0.52-2Nalin Dahyabhai 0.52-1Nalin Dahyabhai 0.51-1Nalin Dahyabhai 0.50-1Nalin Dahyabhai 0.49-1Nalin Dahyabhai 0.48-1Nalin Dahyabhai 0.47-1Stephen Gallagher - 0.46-1.1Nalin Dahyabhai 0.46-1Nalin Dahyabhai 0.45-1Nalin Dahyabhai 0.44-1Nalin Dahyabhai 0.43-1Nalin Dahyabhai Nalin Dahyabhai Nalin Dahyabhai 0.42-1Nalin Dahyabhai 0.41-1Nalin Dahyabhai 0.40-1Nalin Dahyabhai 0.39-1Nalin Dahyabhai 0.38-1Nalin Dahyabhai 0.37-1Nalin Dahyabhai 0.36-1Nalin Dahyabhai 0.35.1-1Nalin Dahyabhai 0.35-1Fedora Release Engineering - 0.34-2Nalin Dahyabhai 0.34-1Nalin Dahyabhai 0.33-1Nalin Dahyabhai 0.32-2Nalin Dahyabhai 0.32-1Nalin Dahyabhai 0.31-1Nalin Dahyabhai 0.30-4jkeating - 0.30-3Nalin Dahyabhai 0.30-2Nalin Dahyabhai 0.30-1Nalin Dahyabhai 0.29-1Nalin Dahyabhai 0.28-1Nalin Dahyabhai 0.27-1Nalin Dahyabhai 0.26-1Nalin Dahyabhai 0.25-1Nalin Dahyabhai 0.24-4Nalin Dahyabhai 0.24-3Nalin Dahyabhai 0.24-2Nalin Dahyabhai 0.24-1Nalin Dahyabhai 0.23-1Nalin Dahyabhai 0.22-1Nalin Dahyabhai 0.21-1Nalin Dahyabhai 0.20-1Nalin Dahyabhai 0.19-1Nalin Dahyabhai 0.18-1Nalin Dahyabhai 0.17-2Nalin Dahyabhai 0.17-1Nalin Dahyabhai 0.16-1Nalin Dahyabhai 0.15-1Nalin Dahyabhai 0.14-1Nalin Dahyabhai 0.13-1Nalin Dahyabhai 0.12-1Nalin Dahyabhai 0.11-1Nalin Dahyabhai 0.10-1Nalin Dahyabhai 0.9-1Nalin Dahyabhai 0.8-1Nalin Dahyabhai 0.7-1Nalin Dahyabhai 0.6-1Nalin Dahyabhai 0.5-1Nalin Dahyabhai 0.4-1Nalin Dahyabhai 0.1-1Nalin Dahyabhai 0.0-1- Skip the keygen tests when executed as root.- Update to upstream 0.79.17 (#2139523) - Certificate format validation when adding the SCEP server's CA (#2150025) - Certmonger SCEP renewal should not use old challenges (#2150030) - certmonger SEGV during rekey in FIPS mode (#2150070)- certmonger creates CSRs with invalid DER syntax for X509v3 extensions with critical=FALSE (#2012258)- Certmonger SCEP renewal should not use old challenges (#1577570) - Certmonger segfault after cert renewal request (#1881500) - Include certificate NotBefore date in output of the 'getcert list' command (#1940261) - Certmonger certificates stuck in NEED_GUIDANCE (#2001079)- Fix local CA to work under FIPS (#1950132)- Rebuild with xmlrpc-c support enabled (#1687698)- Rebase to 0.79.13 (#1891743)- Replace the previous fix for dbus restarting with PartOf in the certmonger systemd service file to link the two (#1687698)- Include &message=CA-IDENT with GetCACaps/GetCACert requests (#1843009)- Exit gracefully if dbus is restarted (#1687698)- Add long command-line options to man pages and help output (#1782838)- Fix test failure in 039-fromfile- Ensure that files read in have a trailing new-line (#1829490)- Call the secport equivalent of PR_ErrorToString - Remove a couple of unused varaibles found by coverity- Move systemd tmpfiles from /var/run to /run (#1804928) - Improve logging in the SCEP helper (#1807691) - Fix sort order of certificates passed into PKCS7_verify (#1808052) - Add -N option to SCEP helper to separate web server chain from SCEP issuer chain (#1808613) - Add template profile, MS v2 template and issuer to getcert list output (#1734451)- Update gating requirements- Rebuild- Fix use-after-free issue when retrieving CA chain (#1710632)- Optimize closing of file descriptors on fork (#1763745) - Remove NOMODDB flag flag from context init, look for full tokens (#1746543) - Retrieve full IPA CA chain (#1710632)- Rebuild for new annobin (#1708095)- Rebuild for new annobin (#1708095)- Rebase to 0.79.7 (#1708095)- Address more issues uncovered by static analysis (#1632449)- Improve handling of NSS tokens (#1624930) - Pull in upstream fixes discovered in coverity and clang (#1632449)- Add BuildRequires on python3-devel (#1615507)- Fix test failure on some platforms- Update to upstream 0.79.6 - Fix unit tests to work with python 3- Fix unit tests. NSS crypto policy disallows keys < 1024- Add BuildRequires on gcc- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild- Remove BR on mktemp. It is now provided by coreutils. - Patch to fix NSS handling of keys in sqlite databases - Patches to fix tests now that sqlite is the NSS default.- Switch BR from /usr/include/popt.h to popt-devel- update to 0.79.5: - getcert start-tracking: use issuer option when specified - add support for specifying the MS certificate template - Reformat certificates returned by Dogtag to strip extra newline- Reformat certificates returned by Dogtag. Dogtag was including a spurious newline before -----END CERTIFICATE------ update to 0.79.4 - fix CA option name for ipa cert-request - fix minor memory leak - fix build warnings - fix an incorrect date in the .spec changelog - bump gettext version to avoid warning- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- update to 0.79.3: - fix self-signing self-test cases that used DSA or EC keys- update %docs list because README is now README.md- update to 0.79.2: - fix 'make distcheck' target- update to 0.79.1: - update translations - fix 'make archive' target- update to 0.79: - getcert now offers an option (-X) for requesting processing by a particular CA if the server we're contacting is running more than one - getcert also offers options (--for-ca, --not-for-ca, --ca-path-length) for requesting BasicConstraints values - getcert now displays times in local time instead of UTC, which was previously the only way they were displayed; the --utc option can often be used to switch back to its previous behavior - the SCEP enrollment helper now correctly issues GetCACertChain requests to SCEP servers, instead of issuing a GetCAChain request, which isn't part of the protocol; from report by Jason Garland - when issuing SCEP requests, the ID of the CA included in the HTTP request is now URL-encoded, as it should be - renewal or notification-of-impending-expiration logic is now triggered closer to TTL thresholds rather than waiting for a periodic check to pass a threshold - properly builds with OpenSSL 1.1, thanks to Lukas Slebodnik and Tomas Mraz for a lot of the legwork - resync .spec file with Fedora - upstream project migrated from fedorahosted.org to pagure.io- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild- Rebuild for xmlrpc-c- add backported fix to wait a reasonable amount of time after calling the 'resubmit' method for a new certificate to be issued when we're exercising the D-Bus API during tests (Jan Cholasta, #1351052)- instead of using killall to send a SIGHUP to the system bus daemon in %post to get it to reload its configuration, use dbus-send to send a ReloadConfig request over the bus (should fix #1277573)- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- document the -R, -N, -o, and -t flags for dogtag-ipa-renew-agent-submit - stop checking that we can generate 512 bit keys during self-tests- fix a possible uninitialized memory read (possibly #1260871) - log a diagnostic error when we fail to initialize libkrb5- fix the "getcert start-tracking" -L and -l options (#1249753) - output diagnostics about the second request when scep-submit encounters an error during a second request to the SCEP server- call poptGetOptArg() correctly, to fix parsing of the -R flag to scep-submit and the -O and -o flags to dogtag-submit (#1244914)- tweak initialization so that we set up for providing our D-Bus API before we register our name with the bus, so that we can handle any requests that arrive before the acknowledgement of that registration - on systems that run systemd, add the right data file so that the service gets started when someone tries to talk to the daemon (ticket #38) - correctly check for error responses when sending GetCAChain requests to SCEP servers- self-tests: assume that certutil won't generate DSA keys with more than 1024 bits, and will often short us by a few- switch to using popt for parsing command line arguments, continuing to use old help text for now so that we can catch up with translations (print old text for --help, new text (with longopts!) for -H) - add some plumbing for eventually receiving per-certificate roots in addition to issued certificates and chain certificates - add a "rekey" command to getcert, for triggering enrollment using a new key pair (#1087932) - scep-submit: check for the Renewal capability, and default to taking advantage of it during rekeying, unless the new -n flag is specified to it - dogtag-submit: add flags for passing user names, UDNs, passwords, and PINs to the helper (part of ticket #12) - dogtag-submit: add a flag for using the agent creds to do TLS client auth while submitting enrollment requests (more of ticket #12) - dogtag-submit: handle cases where we submit a request and the server returns a success code rather than just queuing the request (#12 again) - ipa-submit: pass requested profile names to the server as an argument named "profile_id"; if the server gives us an "unrecognized argument" error, retry without it for compatibility's sake (part of IPA ticket #57) - keygen: fix a possible crash if keygen fails to return a key from NSS - correct the certmonger(8) man page's description of the -c flag, which it used to call the -C flag - add logic for setting ownership and permissions on certificates and keys when saving them to disk - add configuration options "max_key_lifetime" and "max_key_use_count" for making automatic renewal prefer rekeying- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- pass $CERTMONGER_REQ_IP_ADDRESS to enrollment helpers if the signing request includes IP address subjectAltName values - correctly verify signatures on SCEP server replies when the signer is neither the top-level CA nor the RA (feedback in #1161768) - correctly verify signatures on SCEP server replies when there is more than one certificate in the chain between the RA and the top-level CA (feedback in- don't display PINs in "getcert list" output (#42) - clean up launching of a private instance in "getcert" - expand on the don't-delete-private-key fix from 0.77.3 by letting NSS's own safety checks have an effect - backport record-keeping of key generation dates and counts of how many times we've gotten certificates using a given key pair- fix a data loss bug when saving renewed certificates to NSS databases - the private key could be removed in error since 0.77 - fixes for bugs found by static analysis - fix self-tests when built with OpenSSL 1.0.2- expose the certificate's not-valid-before and not-valid-after dates as a property over D-Bus (ticket #41) - give the local signer its own configuration option to set the lifetime of its signing certificate, falling back to the lifetime configured for the self-signer as a default to match the previous behavior - fix a potential read segfault parsing the output of an enrollment helper, introduced in 0.77 (thanks to Steve Neuharth) - read the ns-certtype extension value in certificates - request an enrollment certtype extension to CSRs if we have a profile name that we want to use (ticket #17, possibly part of IPA ticket #57)- update to 0.77 - add initial, still rough, SCEP support (#1140241,#1161768) - add an scep-submit helper to handle part of it - getcert: add add-ca/add-scep-ca/modify-ca/remove-ca commands - getcert: add -l, -L flags to request/resubmit/start-tracking commands to provide a way to set a ChallengePassword in signing requests - lay some groundwork for rekeying support - bundled dogtag enrollment helpers now output debugging info to stderr (#) - ipa-getcert: fix a crash when using DNS discovery to locate servers (#39) - getcert: fix displaying of pre-request pre-/post-save commands (#1178190, - use Zanata for translations - getcert list: list the certificate's profile name, if it contains one- dogtag-submit: accept additional options to pass to the server when approving requests using agent creds (#1165155, patch by Jan Cholasta) - getcert: print help output when 'status' isn't given any args (#1163541)- correctly read CA not-valid-after dates on 32-bit machines (also reported by Natxo Asenjo), so that we don't spin on polling them (#1163023)- don't discard the priority value in DNS SRV records- avoid premature exit on CA data analysis failures (should fix an issue reported by Natxo Asenjo)- fix a failure in self-tests- fixes for bugs found by static analysis - handle IDN correctly when doing service location using SRV records - documentation updates- rework the state machine so that we save an issued certificate's associated CA certificates, then re-read the certificate, then run the post hook and issue notifications, in that order, instead of saving CA certificates after running the post hook, which was always a surprising order (#1131700) - add a generic dogtag-submit helper that doesn't include any IPA defaults, to make it easier to know the difference between paramenters it requires and parameters which are optional (#12)- ipa-submit: when we fail to locate/contact LDAP or XML-RPC servers, use discovery to find them (#1136900)- allow for 'certmonger -P abstract:...' to work, too- require a single certificate to be specified to 'getcert status' (#1148001, - shorten the default help message which getcert prints when it's not given a specific command (#1131704) - add private listener (-l, -L, -P) mode to certmonger, to allow it to listen for connections directly from clients running under the same UID - add a command mode (-c) to certmonger, in which once it's started, it launches a specified command, and after that command exits, the daemon exits - when getcert is invoked with no bus running, if it's running as root, run certmonger in private listener mode with the same invocation of getcert as the command to start and wait for (#1134497)- make pathname canonicalization slightly smarter, to handle ".." in locations (#1131758) - updates to self-tests (#1144082)- Rebuild for rpm bug 1131960- add a missing test case file (whoops)- correct encoding/decoding of variant-typed data which we receive and send as part of the org.freedesktop.DBus.Properties interface over the bus, and add some tests for them (based on patch from David Kupka, ticket #36)- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- when getcert is passed a -a flag, to indicate that CA root certificates should be stored in the specified database, don't ignore locations which don't include a storage scheme (#1129537) - when called to 'start-tracking' with the -a or -F flags, if we have applicable certificates on-hand for a CA that we're either told to use or which we decide is the correct one, save the certificates (#1129696)- when attempting to contact an IPA LDAP server, if no "ldap_uri" is set in default.conf, and no "host" is set either, try to construct the server URI using the "server" setting (#1126985)- avoid potential use-after-free after a CA is removed dynamically (thanks to Keenan Brock) (#1125342) - add a "external-helper" property to CA objects- add a 'refresh' option to the getcert command - add a '-a' flag to the getcert command's 'refresh-ca' option- reintroduce package Requires: on systemd-sysv on F19 and EL6 and older, conditionalized it so that it's ignored on newer releases, and make whether or not we call systemd-sysv-convert in triggers depend on that, too (#1104138)- fix an inconsistency in how we parse cookie values returned by CA helpers, in that single-line values would lose the end-of-line after a daemon restart, but not before - handle timeout values and exit status values when calling CA helpers in non-SUBMIT, non-POLL modes (#1118468) - rework how we save CA certificates so that we save CA certificates associated with end-entity certificates when we save that end-entity certificate, which requires running all of the involved pre- and post-save commands - drop package Requires: on systemd-sysv (#1104138)- avoid potential use-after-free and read overrun after a CA is added dynamically (thanks to Jan Cholasta)- documentation updates- add a %trigger to remove knowledge of the "dogtag-ipa-renew-agent" CA when we detect certmonger versions prior to 0.58 being installed, to avoid cases where some older versions choke on CAs with nicknames that contain characters that can't legally be part of a D-Bus name (#948993)- fix creation and packaging of the "local" CA's data directory- read and cache whether or not we saw a noOCSPcheck extension in certificates - documentation updates- when generating keys using OpenSSL, if key generation fails, try again with the default key size, in case we're in FIPS mode - documentation updates- log the state in 'getcert status' verbose mode- add a -w (wait) flag to the getcert's request/resubmit/start-tracking commands, and add a non-waiting status command- make the trust settings we apply to CA-supplied certificates while saving them to NSS databases run-time configurable - fix compiling against EL5-era OpenSSL - when saving CA certificates we pull from an IPA server, nickname it using the realm name with " IPA CA" appended rather than just naming it "IPA CA" - fix the local signer so that when it issues itself a new certificate, it uses the same subject name - add a -w flag to getcert's request, resubmit, and start-tracking commands, telling it to wait until either the certificate is issued, we get to a state where we know that we won't be able to get one, or we are waiting for a CA- add the "local" signer, a local toy CA that signs anything you'll ask it to sign- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- fix self-test errors that we trigger with new OpenSSL - fix a build error that would sometimes happen when we're told to build PIE binaries - quiet a compile warning- add some self-tests - simplify the internal submit-to-CA logic - fixes for more problems found through static analysis- retrieve CA information from CAs, if the helpers can do so, and add a command to explicitly refresh that data: "getcert refresh-ca" - offer to save CA certificates to files and databases, when specified with new -a and -F flags to getcert request/resubmit/start-tracking (#1098208, trac #31) - add IP address subject alternate names when getcert request/resubmit is passed the -A option (trac #35) - read and cache the freshestCRL extension in certificates - properly interpret KDC-unreachable errors encountered in the IPA submission error as a server-unreachable error that we will retry, rather than a misconfiguration error which we won't - don't let tests get tripped up by new formatting used in dos2unix status messages (#1099080) - updated translations - be explicit that we are going to use bashisms in test scripts by calling the shell interpreter as 'bash' rather than 'sh' (trac #27)- also save state when we exit due to SIGHUP - don't get tripped up when enrollment helpers hand us certificates which include CRLF line terminators (ticket #25) - be tolerant of certificate issuer names, subject names, DNS, email, and Kerberos principal namem subjectAltNames, and crl distribution point URLs that contain newlines - read and cache the certificate template extension in certificates - enforce different minimum key sizes depending on the type of key we're trying to generate - store DER versions of subject, issuer and template subject, if we have them (Jan Cholasta, ticket #26) - when generating signing requests with subject names that don't quite parse as subject names, encode what we're given as PrintableString rather than as a UTF8String - always chdir() to a known location at startup, even if we're not becoming a daemon - fix a couple of memory leaks (static analysis) - add missing buildrequires: on which- updates to 0.73 - getcert no longer claims to be stuck when a CA is unreachable, because the daemon isn't actually stuck- updates to 0.73 - also pass the key type to enrollment helpers in the environment as a the value of "CERTMONGER_KEY_TYPE"- move the tmpfiles.d file from /etc/tmpfiles.d to %{_tmpfilesdir}, where it belongs (#1180978)- updates for 0.73 - set the flag to encode EC public key parameters using named curves instead of the default of all-the-details when using OpenSSL - don't break when NSS supports secp521r1 but OpenSSL doesn't - also pass the CA nickname to enrollment helpers in the environment as a text value in "CERTMONGER_CA_NICKNAME", so they can use that value when reading configuration settings - also pass the SPKAC value to enrollment helpers in the environment as a base64 value in "CERTMONGER_SPKAC" - also pass the request's SubjectPublicKeyInfo value to enrollment helpers in the environment as a base64 value in "CERTMONGER_SPKI" (part of #16) - when generating signing requests using NSS, be more accommodating of requested subject names that don't parse properly- update to 0.72 - support generating DSA parameters and keys on sufficiently-new OpenSSL and NSS - support generating EC keys when OpenSSL and NSS support it, using key size to select the curve to use from among secp256r1, secp384r1, secp521r1 (which are the ones that are usually available, though secp521r1 isn't always, even if the other two are) - stop trying to cache public key parameters at all and instead cache public key info properly - encode the friendlyName attribute in signing requests as a BMPString, not as a PrintableString - catch more filesystem permissions problems earlier (more of #996581)- check for cases where we fail to allocate memory while reading a request or CA entry from disk (John Haxby) - only handle one watch at a time, which should avoid abort() during attempts to reconnect to the message bus after losing our connection to it (#1055521)- Mass rebuild 2014-01-24- add a --with-homedir option to configure, and use it, since subprocesses which we run and which use NSS may attempt to write to $HOME/.pki, and 0.69's strategy of setting that to "/" was rightly hitting SELinux policy denials (#1047798)- Mass rebuild 2013-12-27- tweak how we decide whether we're on the master or a minion when we're told to use certmaster as a CA - clean up one of the tests so that it doesn't have to work around internal logging producing duplicate messages - when logging errors while setting up to contact xmlrpc servers, explicitly note that the error is client-side - don't abort() due to incorrect locking when an attempt to save an issued certificate to the designated location fails (part of #1032760/#1033333, ticket #22) - when reading an issued certificate from an enrollment helper, ignore noise before or after the certificate itself (more of #1032760/1033333, ticket #22) - run subprocesses in a cleaned-up environment (more of #1032760/1033333, ticket #22) - clear the ca-error that we saved when we had an error talking to the CA if we subsequently succeed in talking to the CA - various other static-analysis fixes- notice when the OpenSSL RNG isn't seeded - notice when saving certificates or keys fails due to filesystem-related permission denial (#996581)- pull up a patch from master to adapt self-tests to certutil's diagnostic output having changed (#992050)- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild- when saving certificates to NSS databases, try to preserve the trust value assigned to a previously-present certificate with the same nickname and subject, if one is found - when saving certificates to NSS databases, also prune certificates from the database which have both the same nickname and subject as the one we're adding, to avoid tripping up tools that only fetch one certificate by nickname- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild- build as position-independent executables with early binding (#883966) - also don't tag the unit file as a configuration file (internal tooling)- don't tag the D-Bus session .service file as a configuration file (internal tooling)- fix a crash in the self-tests- at startup, if we resume the state machine for a given certificate to a state which expects to have the newly-added lock already acquired, acquire it before moving on with the certificate's work (still aimed at fixing #883484)- serialize access to NSS databases and the running of pre- and post-save commands which might also access them (possibly fixing part of #883484)- add a -u flag to getcert to enable requesting a keyUsage extension value - request subjectKeyIdentifier extensions from CAs, and include them in self-signed certificates - request basicConstraints from CAs, defaulting to requests for end-entity certificates - when requesting CA certificates, also request authorityKeyIdentifier - add support for requesting CRL distribution point and authorityInfoAccess extensions that specify OCSP responder locations - don't crash when OpenSSL can't build a template certificate from a request when we're in FIPS mode - put NSS in FIPS mode, when the system booted that way, except when we're trying to write certificates to a database - fix CSR generation and self-signing in FIPS mode with NSS - fix self-signing in FIPS mode with OpenSSL - new languages from the translation team: mai, ml, nn, ga- backport change from git to not choke if X509_REQ_to_X509() fails when we're self-signing using OpenSSL - backport another change from git to represent this as a CA-rejected error- fix a regression in reading old request tracking files where the request was in state NEED_TO_NOTIFY or NOTIFYING- adjust internals of logic for talking to dogtag to at least have a concept of non-agent cases - when talking to an IPA server's internal Dogtag instance, infer which ports the CA is listening on from the "dogtag_version" setting in the IPA configuration (Ade Lee) - send a notification (or log a message, whatever) when we save a new certificate (#766167)- fix a bad %preun scriptlet- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- mostly documentation updates- add a "dogtag-ipa-renew-agent" CA so that we can renew certificates using an IPA server's internal Dogtag instance - export the requested profile and old certificate to enrollment helpers - make libxml and libcurl into hard build-time requirements - serialize all pre/save/post sequences to make sure that stop/save/start doesn't become stop1/save1/stop2/start1/save2/start2 when we're stopping a service while we muck with more than one of its certificates- add a command option (-T) to getcert for specifying which enrollment profile to tell a CA that we're using, in case it cares (#10)- clarify that the command passed to getcert -C is a "post"-save command - add a "pre"-save command option to getcert, specified with the -B flag (#9) - after we notify of an impending not-valid-after approaching, don't do it again immediately- when a caller sets the is-default flag on a CA, and another CA is no longer the default, emit the PropertiesChanged signal on the CA which is not the default, instead on the new default a second time - drop some dead code from the D-Bus message handlers (static analysis, - cache public keys when we read private keys - go back to printing an error indicating that we're missing a required argument when we're missing a required argument, not that the option is invalid (broken since 0.51, #796542)- allow root to use our implementation of org.freedesktop.DBus.Properties - take more care to not emit useless PropertiesChanged signals- fix setting the group ID when spawning the post-save command- large changes to the D-Bus glue, exposing a lot of data which we were providing via D-Bus getter methods as properties, and providing more accurate introspection data - emit a signal when the daemon saves a certificate to the destination location, and provide an option to have the daemon spawn an arbitrary command at that point, too (#766167) - enable starting the service by default on RHEL (#765600)- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- note that SELinux usually confines us to writing only to cert_t in doc/getting-started.txt (#765599) - fix crashes when we add a request during our first run when we're populating the hard-coded CA list - properly deal with cases where a path is passed to us is "./XXX" - in session mode, create our data directories as we go- api: lift restrictions on characters used in request and CA nicknames by making their object names not incorporate their nicknames - api: add find_request_by_nickname and find_ca_by_nickname - certmonger-ipa-submit.8: list -k, -K, -t in the summary, document -K - getcert: print "invalid option" error messages ourselves (#756291) - ipa-submit: supply a Referer: header when submitting requests to IPA (#750617, needed for #747710)- really fix these this time: - getcert: error out when "list -c" finds no matching CA (#743488) - getcert: error out when "list -i" finds no matching request (#743485)- when using an NSS database, skip loading the module database (#743042) - when using an NSS database, skip loading root certs - generate SPKAC values when generating CSRs, though we don't do anything with SPKAC values yet - internally maintain and use challenge passwords, if we have them - behave better when certificates have shorter lifetimes - add/recognize/handle notification type "none" - getcert: error out when "list -c" finds no matching CA (#743488) - getcert: error out when "list -i" finds no matching request (#743485)- don't incorrectly assume that CERT_ImportCerts() returns a NULL-terminated array (#742348)- getcert: distinguish between {stat() succeeds but isn't a directory} and {stat() failed} when printing an error message (#739903) - getcert resubmit/start-tracking: when we're looking for an existing request by ID, and we don't find one, note that specifically (#741262)- Rebuild against fixed libtevent version- treat the ability to access keys in an NSS database without using a PIN, when we've been told we need one, as an error (#692766, really this time)- modify the systemd .service file to be a proper 'dbus' service (more of #718172)- check specifically for cases where a specified token that we need to use just isn't present for whatever reason (#697058)- add a -K option to ipa-submit, to use the current ccache, which makes it easier to test- if xmlrpc-c's struct xmlrpc_curl_xportparms has a gss_delegate field, set it to TRUE when we're doing Negotiate auth (#727864, #727863, #727866)- treat the ability to access keys in an NSS database without using a PIN, when we've been told we need one, as an error (#692766) - when handling "getcert resubmit" requests, if we don't have a key yet, make sure we go all the way back to generating one (#694184) - getcert: try to clean up tests for NSS and PEM file locations (#699059) - don't try to set reconnect-on-exit policy unless we managed to connect to the bus (#712500) - handle cases where we specify a token but the storage token isn't known (#699552) - getcert: recognize -i and storage options to narrow down which requests the user wants to know about (#698772) - output hints when the daemon has startup problems, too (#712075) - add flags to specify whether we're bus-activated or not, so that we can exit if we have nothing to do after handling a request received over the bus if some specified amount of time has passed - explicitly disallow non-root access in the D-Bus configuration (#712072) - migrate to systemd on releases newer than Fedora 15 or RHEL 6 (#718172) - fix a couple of incorrect calls to talloc_asprintf() (#721392)- getcert: fix a buffer overrun preparing a request for the daemon when there are more parameters to encode than space in the array (#696185) - updated translations: de, es, id, pl, ru, uk- read information about the keys we've just generated before proceeding to generating a CSR (part of #694184, part of #695675) - when processing a "resubmit" request from getcert, go back to key generation if we don't have keys yet, else go back to CSR generation as before (#694184, #695675) - configure with --with-tmpdir=/var/run/certmonger and own /var/run/certmonger (#687899), and add a systemd tmpfiles.d control file for creating /var/run/certmonger on Fedora 15 and later - let session instances exit when they get disconnected from the bus - use a lock file to make sure there's only one session instance messing around with the user's files at a time - fix errors saving certificates to NSS databases when there's already a certificate there with the same nickname (#695672) - make key and certificate location output from 'getcert list' more properly translatable (#7)- update to 0.40 - fix validation check on EKU OIDs in getcert (#691351) - get session bus mode sorted - add a list of recognized EKU values to the getcert-request man page- update to 0.39 - fix use of an uninitialized variable in the xmlrpc-based submission helpers (#690886)- update to 0.38 - catch cases where we can't read a PIN file, but we never have to log in to the token to access the private key (more of #688229)- update to 0.37 - be more careful about checking if we can read a PIN file successfully before we even call an API that might need us to try (#688229) - fix strict aliasing warnings- update to 0.36 - fix some use-after-free bugs in the daemon (#689776) - fix a copy/paste error in certmonger-ipa-submit(8) - getcert now suppresses error details when not given its new -v option (#683926, more of #681641/#652047) - updated translations - de, es, pl, ru, uk - indonesian translation is now for "id" rather than "in"- fix a self-test that broke because one-year-from-now is now a day's worth of seconds further out than it was a few days ago- update to 0.35 - self-test fixes to rebuild properly in mock (#670322)- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- update to 0.34 - explicitly note the number of requests we're tracking in the output of "getcert list" (#652049) - try to offer some suggestions when we get certain specific errors back in "getcert" (#652047) - updated translations - es- update to 0.33 - new translations - id by Okta Purnama Rahadian! - updated translations - pl, uk - roll up assorted fixes for defects- depend on the e2fsprogs libuuid on Fedora and RHEL releases where it's not part of util-linux-ng- oops, rfc5280 says we shouldn't be populating unique identifiers, so make it a configuration option and default the behavior to off- start populating the optional unique identifier fields in self-signed certificates- explicitly require "dbus" to try to ensure we have a running system bus when we get started (#639126)- Rebuilt for gcc bug 634757- try to SIGHUP the messagebus daemon at first install so that it'll let us claim our service name if it isn't restarted before we are first started (#636876)- update to 0.30 - fix errors computing the time at the end of an interval that were caught by self-tests- update to 0.29 - fix 64-bit cleanliness issue using libdbus - actually include the full set of tests in tarballs- update to 0.28 - fix self-signing certificate notBefore and notAfter values on 32-bit machines- update to 0.27 - portability and test fixes- update to 0.26 - when canceling a submission request that's being handled by a helper, reap the child process's status after killing it (#624120)- update to 0.25 - new translations - in by Okta Purnama Rahadian! - fix detection of cases where we can't access a private key in an NSS database because we don't have the PIN - teach '*getcert start-tracking' about the -p and -P options which the '*getcert request' commands already understand (#621670), and also the -U, -K, -E, and -D flags - double-check that the nicknames of keys we get back from PK11_ListPrivKeysInSlot() match the desired nickname before accepting them as matches, so that our tests won't all blow up on EL5 - fix dynamic addition and removal of CAs implemented through helpers- init script: ensure that the subsys lock is created whenever we're called to "start" when we're already running (even more of #596719)- more gracefully handle manual daemon startups and cleaning up of unexpected crashes (still more of #596719)- don't create the daemon pidfile until after we've connected to the D-Bus (still more of #596719)- update to 0.24 - keep the lock on the pid file, if we have one, when we fork, and cancel daemon startup if we can't gain ownership of the lock (the rest of #596719) - make the man pages note which external configuration files we consult when submitting requests to certmaster and ipa CAs- update to 0.23 - new translations - pl by Piotr Drąg! - cancel daemon startup if we can't gain ownership of our well-known service name on the DBus (#596719)- update to 0.22 - new translations - de by Fabian Affolter! - certmaster-submit: don't fall over when we can't find a certmaster.conf or a minion.conf (i.e., certmaster isn't installed) (#588932) - when reading extension values from certificates, prune out duplicate principal names, email addresses, and hostnames- update to 0.21 - getcert/*-getcert: relay the desired CA to the local service, whether specified on the command line (in getcert) or as a built-in hard-wired default (in *-getcert) (#584983) - flesh out the default certmonger.conf so that people can get a feel for the expected formatting (Jenny Galipeau)- update to 0.20 - correctly parse certificate validity periods given in years (spotted by Stephen Gallagher) - setup for translation - es by Héctor Daniel Cabrera! - ru by Yulia Poyarkova! - uk by Yuri Chornoivan! - fix unpreprocessed defaults in certmonger.conf's man page - tweak the IPA-specific message that indicates a principal name also needs to be specified if we're not using the default subject name (#579542) - make the validity period of self-signed certificates into a configuration setting and not a piece of the state information we track about the signer - init script: exit with status 2 instead of 1 when invoked with an unrecognized argument (#584517)- update to 0.19 - correctly initialize NSS databases that need to be using a PIN - add certmonger.conf, for customizing notification timings and settings, and use of digests other than the previously-hard-coded SHA256, and drop those settings from individual requests - up the default self-sign validity interval from 30 days to 365 days - drop the first default notification interval from 30 days to 28 days (these two combined to create a fun always-reissuing loop earlier) - record the token which contains the key or certificate when we're storing them in an NSS database, and report it - improve handling of cases where we're supposed to use a PIN but we either don't have one or we have the wrong one - teach getcert to accept a PIN file's name or a PIN value when adding a new entry - update the IPA submission helper to use the new 'request_cert' signature that's landing soon - more tests- update to 0.18 - add support for using encrypted storage for keys, using PIN values supplied directly or read from files whose names are supplied - don't choke on NSS database locations that use the "sql:" or "dbm:" prefix- make the D-Bus configuration file (noreplace) (#541072) - make the %check section and the deps we have just for it conditional on the same macro (#541072)- update to 0.17 - fix a hang in the daemon (Rob Crittenden) - documentation updates - fix parsing of submission results from IPA (Rob Crittenden)- update to 0.16 - set a umask at startup (Dan Walsh)- update to 0.15 - notice that a directory with a trailing '/' is the same location as the directory without it - fix handling of the pid file when we write one (by actually giving it contents)- update to 0.14 - check key and certificate location at add-time to make sure they're absolute paths to files or directories, as appropriate - IPA: dig into the 'result' item if the named result value we're looking for isn't in the result struct- update to 0.13 - change the default so that we default to trying to auto-refresh certificates unless told otherwise - preemptively enforce limitations on request nicknames so that they make valid D-Bus object path components- update to 0.12 - add a crucial bit of error reporting when CAs reject our requests - count the number of configured CAs correctly- update to 0.11 - add XML-RPC submission for certmaster and IPA - prune entries with duplicate names from the data store- update to 0.10 - add some compiler warnings and then fix them- update to 0.9 - run external submission helpers correctly - fix signing of signing requests generated for keys stored in files - only care about new interface and route notifications from netlink, and ignore notifications that don't come from pid 0 - fix logic for determining expiration status - correct the version number in self-signed certificates- update to 0.8 - encode windows UPN values in requests correctly - watch for netlink routing changes and restart stalled submission requests - 'getcert resubmit' can force a regeneration of the CSR and submission- update to 0.7 - first cut at a getting-started document - refactor some internal key handling with NSS - check for duplicate request nicknames at add-time- update to 0.6 - man pages - 'getcert stop-tracking' actually makes the server forget now - 'getcert request -e' was redundant, dropped the -e option - 'getcert request -i' now sets the request nickname - 'getcert start-tracking -i' now sets the request nickname- update to 0.5 - packaging fixes - add a selfsign-getcert client - self-signed certs now get basic constraints and their own serial numbers - accept id-ms-kp-sc-logon as a named EKU value in a request- update to 0.4- update to 0.1- initial package  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~0.79.17-2.el80.79.17-2.el8certmonger-0.79.17-2.el8.i386srccadata.ccadata.hcanalyze.ccanalyze.hcasave.ccasave.hcertext-n.hcertext.ccertext.hcertmaster.ccertread-int.hcertread-n.ccertread-o.ccertread.ccertread.hcertsave-int.hcertsave-n.ccertsave-o.ccertsave.ccertsave.hcm.ccm.hcsrgen-int.hcsrgen-n.ccsrgen-o.ccsrgen.ccsrgen.hdogtag-ipa.cdogtag-ipa.hdogtag.cenv-session.cenv-shared.cenv-system.cenv.hgetcert.chook.chook.hipa.citerate.citerate.hjson.cjson.hkeygen-int.hkeygen-n.ckeygen-o.ckeygen.ckeygen.hkeyiread-int.hkeyiread-n.ckeyiread-n.hkeyiread-o.ckeyiread.ckeyiread.hkudict.ckudict.hlocal.clog.clog.hmain.cnetlink.cnetlink.hnotify.cnotify.hoiddict.coiddict.hpin.cpin.hpkcs7.cpkcs7.hprefs-n.cprefs-n.hprefs-o.cprefs-o.hprefs.cprefs.hscep-o.cscep-o.hscep.cscepgen-int.hscepgen-n.cscepgen-o.cscepgen.cscepgen.hsrvloc.csrvloc.hstore-files.cstore-gen.cstore-int.hstore.hsubmit-d.csubmit-d.hsubmit-e.csubmit-e.hsubmit-h.csubmit-h.hsubmit-int.hsubmit-n.csubmit-o.csubmit-o.hsubmit-sn.csubmit-so.csubmit-u.csubmit-u.hsubmit-x.csubmit-x.hsubmit.csubmit.hsubproc.csubproc.htdbus.ctdbus.htdbush.ctdbush.htdbusm.ctdbusm.htm.ctm.hutil-m.cutil-m.hutil-n.cutil-n.hutil-o.cutil-o.hutil.cutil.h/usr/src/debug//usr/src/debug/certmonger-0.79.17-2.el8.i386//usr/src/debug/certmonger-0.79.17-2.el8.i386/src/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m32 -march=x86-64 -mtune=generic -mfpmath=sse -mstackrealign -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protectioncpioxz2i686-redhat-linux-gnudirectoryC source, ASCII textutf-8dc51c5bc482436f2d2a20b9662d0da368684b293efb96ec857768aaa9cc14dc7?p7zXZ !#,] b2u jӫ`(y.?pS2ғ|X!:hvH3N3HK ?btMݮDAz ϥsKE&wAO,Bww=IƸcs,S[[ eJfV]7[g^=3m *hYŒ&R!kNűK܁{qbPdr+!{B׼ŕ)v[dEp>nREvK,}͔0f2*#cYܕUeUBp_W1 5&G+vA%c7 [Y ˏ;&Qg߻,q4t<"!;r` hA T͙]z%ڿ߆5A ٩Y|朲ߓ5'p'{"I'}nݙ رQ(8u/LB vRFM3+uJ&IљVqJzK@ ܨs 7ぎ.K O/v^)m彈_xV|Um~#je3cXGCb>8Qjytw"fD&52)=0w1Eq` '! 1n\cLLIoxhLIk5e=2b1}Qŗ# 4+{ k[EmYx.)U8 [[IgLrnx8^ɴxA*rԱfX&4unIˬ[߼Щ4р:J1"0*Ʃ^XvT]fԷbfvm $1.zg l-v$a?xc+R22RwN+SӖ>d:A}m7PCxy( 6U=A)ºN?Dӝ>ol{PB ـVP  r!}&%߹11I!KGN`D\N+seHCg+̽&)ɨAE`y:j\nBCKDǺ3iGyQe =a/bH0P{_;9Au9ZJ3`W\Tvfd;D׹]aTǀ&_2V#s5:! z'!Tt꣫n.j]@Q|ÞWX=[G!I)wΡTPNb8+n:b؝׭B?Æ$~+Εsִm %zj5xY,(Op_k1jU`=ON=`K<7zra/g=,=m\oFV(4J }~aYNXmLeȒi~?SNpO!fH(Wu; ΘC%l$sA]ި_간Dae/%\wɱA ɝ=r -8 6=Z܌ٰ6sǣ f&zOj:;HOX9|#a&! 8鵩Aϵ:ma۵bcSZP%_֤gyh@* :g)< آN&T%vtzCOAn:p] E!dYsv(QZeg+e N,rY@<3?:n{yhX CSPUd>=]x84Yz%`ʭbGGlcLζ69 (k"ܯ'0œ(<\nCkZkosqhUxMO}?i;_d##qڞ rPp:E0_Zpuo+c}1s?CB;>1c?'G 9='lS /({SaC9ǂ?šhbejgj+L/ՙ^b~Zng(OѪSaɤ#kfA)- U-$)ԥBJj9o+;̛y)";!2xYgW2LxKd'ʬ dB>̙EtJCWĘ_֎NzP$_q2wȏklZ&)i{]`4EH,!ZjzM`2vJp[gap}Hu_apZI"1ٻC xIHJu]cv×%$_ 3a:qׅmFݜp_Ra4z>L{gUSy;ϟq9שWPBvsdϛ/u~?'T凗Z%b ƌB> &53M2N"̟mUg%zT*WPPN13F}LRz]U zYK2T0mP:;:c[p}:I9z`b[})&ky7J7;,9x9 ?GE$j@E Z+nlk!0O^&])#u*ij6/&$ӹ#jւ mt_':q!D>jbzHu e مz!k_>y1;vx z?\,_NKT"-e2MOp3~w=Wx-9id$_#@&TQ&tfOYUk>bLTOƙ sqa$=˴ȵ^ˇl,"IHfZg.{"K&v)e0/XF>dÎJ@[!SRT+OPZySX1%PwRd6Z?psPxd|$T ЊxRm5*Ꚛs--1nξX?̊@qR-G wWKHRUJKAH4sګN!$AA52 W&EwѝZzhMKJ#Wx2VYF]Nv+vC9KuDu_&-k>GS=B' PwHej-*+mSN>Kb!RSZ:eYzZ[u p޺O+=o8 -$ . Ɗ -+u./ 5RPZcҗ"ĊNC1 !7MRN44NՊ1~ͦ(и+.l(qn^RmRGuu @HU' )%_=E[ Mw9Hy:( `մ&4`of}q/OYp)]P^Ĉj{0g v9毭1!AkMG6$vp,hA wp!,@iUhiLtsBϐ7ǕL'~{(/Qd%K(9pCrZnf'I3N3""'g#3&| _X/I||}#ȟڮ!~L|"o D0[G72n'7aT?Ko[oC^Gn2֞ueFA~m2%"_tj ZU?=NhC UISIb̯Νj̱~)i6-3 MfٚJs9,QlrT2DؾE"jzKwѦnbns2F=ڙ&Xj+B+k l;9<~cO{ds>A\Nqf yR9DOeD$Zj(9w0s%pl\p(T*˱odۛ8Rm#0'NC@MD hY|}˜ !)yt) YW_) 97Qe 㵧$-0 g:^uĈГ I(اz &LdzDz|PF4wL0E6c, \T|<5k 囤ď9M0>stV}tl羃ғ.]0^-pl]ە?;6FB h Gb;n+,oIU/|xl8TXh+P\ )3楺[)9l 8qg5L8DdDJsGb3I a*ud^@FL੏{`k; `rNPeqr^>VL]B >~9]"dOzs&0뫮@Ø&ݪHY"Y2`U9#qEs=/{ -k|tr.I)ަzuKP{fsxر ioW:р(S۔I$Wf&zi:m'Vi  |,$9J3?Ci<0x?l/\q2h.J 3+_VʣFٱI;NcOQO}A4U3w҆+vز6ǘY5g]fa4&h0ӱݦAK\D)ӠyMcDY<\ª2:˭t-sjnG=g!0hLbY}ͱΩABIӌ[Qj `+[ovBCQn+* =пp[k\0"nj}3 BYe%{Vm{# (-|:qqXN ^QH1cJ\tPzDsqbSը|Hw&VH"Rv+s9"pJ=fk1@1!E#\u$2SW A^,蓌B&L97`1Nn>C_|^gUJN蔘 BY*M@lPNu&|43Vu #d,E@CQaLZD R{p,*o^vn*Dh#|āeX|XMy[0CGQac4 UL^_ϔ[y?T:N1$,'pTƎW>iPwdRx(QʀdԢG'wyַ^ w.6y`A}+A"e"F+5NW}FuԷmF)rbv-kaVY_ tѿf}"Z&zMBq[ Lח,V9)4^G|᫴KG#@|OpjrvjxS+Fj> ץxg*T3I>~]>]: EӜL/ $60yg[2gaD%,^? $.et@5VJ[ z+耒^g9s:@qDž̌5nn 0gĺ8xwi_f9:--*MLӎR9XO 8=Z W7"aV\(5B˓>}H{ 7LG-ȥD (21Gzjd#[1Ew]c^|>`ը%ץU€tCC1zT2 n>r(Tai:=<=`Zl!\VFb t#1G?l v{L-f`qhjP k,~hϼ`DVk7_, ,mNgcȩS\a9W?n 5qInO8y pFSW2ϔzcҜVmR;@-.=t1ueo$uN>MכZ햁zj@f5š\dzqJ&s1fONNs8^KϊCd"U;ocJ }vC>@ wm.rcG*5߭`}@; -%F">;{8K+ Npr 0k;`^ĕjy8JfMo,ﰞY 9b7E8`[ouK)Vf+$ '߰WpK 2rJ+$X{:e1ר\NnO)z|6U+|Y'˖fG%?4ii JCP?9oYwiG^3FEW0s9vvr`b)j}ڱyi5 b4L43YƍŞ#'A] t S훹-Yf"OTqw[6QV5 @U|hs%=;8nLJa|RT㡸GgS T,T;tglCGJgwP3ĵHG햁[\bKnɶ_Q >#/[7ah;kJ2ڱv8xXnK'u31tDRt35۝5ޝOhfHE(6N0ڦj=j6^{|PXJ~α< p/&*}%qHثyC b&Ov t,{D"+N#)|9Z)\zrk؁u7>G EAF0kO-pgWdA֤0\\=BձC>+ 9Nz|sek" =Ķˆ4!>" ]7]1X$#}ڣ́!N@<,$0 ihd>g |R #r9 PǙYY= u]vU MM#"H? <C/p\D)]6m=6*`q`ixH%xL8h m4,L/IGE=DplC&x9։3x?2~t;)scsPAsANM>9ϧr/Z)PV[3߯eJG=1g-HrHwQeU4Yj\FUJ#X2Ul42ԕQZe?T)qRCDHM#bD%af}Xʖƍ{4Ȯ%vo3 .0N=-[㕪hTDi%A["rJCxc]zOl{#ůbZ_AG⒪H}]k]*z2n 3X7ա#Wu ֊x+{Xġ@m 3"oyYq ՇL[np`QcW(?]/eaPu:&HmgKZF[Jpft:*Xa3l);d7w وɄ+NPr?.^쾢$L0JIoAؘc Q G9f }١bdg>^ZA,7"$[X"ΐvYX`\n3)LhH#B%ZQO"\̝ŬBiRTur\OG &wJb d; +Hܱ}`s]s+nkĊPgOSOMei+-i@VZH1]C$pH`VγAVJCeRtP!lnd_W n|s?7ptK{whX;P+lżYrWSI-XՆnj䧚q=D4v<zB^CaTdk}okXGͣ(>KOEV8B.7-䃠'=?aEE4~4qEUtp?x0w``I-I SOFn=l(J{NeP#,S_Q16U-l$ ǜ@\8D7?5ٚtm'( RwdZ~Q}%9iLMeV\]Cb?6u^!*!ڇ\ȮI(>-k+dXK8E0"qn+௸]}QYWSH*dO$keShI׮xiE}BCI*VMEdb/{(^% dE1I~c-OL%@cnbķpY4خ|%OWaS ~yRPag @򳊧d.4 _]$rsN5SH6ÕͷZ_"PZ,dHՑ+ԑSQ)ewIH@(BX%ea;Ϯsz8$iTZb)o/ű7K%o].Ҟ;V}Tԧf0V!w8©VSN!ϵz,X0-:Z@S@(,ǏPi_4ܙ)O󴥚$\wl}2\"@вAhxP vUy9WvN?B,i 3u·?{#jA /n}|t1p$KHķ̨| p NO[WN*sDzw` PdI9oc0a!"nR֋yQ`P+YKi2:/{ ̊Oqߦ:b7-O0(SBvzSg.s-kb/Fc!DE١adZ]&&,xG3ңa3Iw=M.,~ϵr<\ _#gqo SfjP/k T׾n^#X! %gFL 3S/fA!TGiE2 tQx/J&&,+U 5UwmR%_L; +VvۡI o9QET`?r4V ؾ+[[Dpr}-o jn\JPWLc7'ș0eY*o_朤\9dBwhT4TXonj^Ӈ'^;0gWXvě(省17J`P+S FK4`T)ҙ^dA8,[wTdu-Ye[W X|(-<)*1R18*0X>I-opibO+lxD_8'Rs=AE;Hn9?G3}O_@ nj$+W0a~LQ.|~92l>+S_‚%ޓR,=3ǥqvT"lQ(B.8R,>9F[wְObO9#9y?g'D'iB".;R10p|ԝH0^ǒwvɌ?6TɁ.x'T!t4S8Ph%ܵ8Kuz]O"Z^M0߲omkOĸn%;O,++|rّ( ''h)LY[bjvf!:{Ew0L؈s0ə^ؽz4[j(Иӹ.| <L80zi3Bn h,a6I䰝%~"Wrx|^@8B6:=|ɞ905ޮ(w9oLjNt-ʕ7̢z䟳Hk.d?`*O䳇hAPdKS9S la鋏$_3PO bO c ֒T "֯*`wP'>t}PE*{X_{B[9{T~zɱtpo>pEɨYօ74@6<?/sb#pgbv?Rr)f%skZ\^57i5ӾX.ќr?{cM4|+>-˥C[ȃXym7ˌA嫉7=n r5`RE ,Huj~y^^ 6bl*^UD8v2WS@1pb?5G)儲wyF_4ԹL]Vf<% I̊ƫՆlmzu.|c38)ߢ/'^55n {œolDEĺ(tkҍ%ABN6PK{T$:LKhS%>3}Sr{< g[zwF_Yzq[dhwg!?vpʻ`}6b;]ļ69o%9U 7;C~9V"{ Wj5P텏:(YgЧW-Cے| ,:ER*(Ř= ]iv!Z%jYQ\"t,fЋoSX'•'C&+1A/z%011Sc29AD/N&v7F4fm^ %˳4(V<(E 0֚>;C"Rr`V`MI~Q@P FWJ,o2W+.6-`4WWrI1W <4*vvh# [C- vYߗf1X։z=?a#U{?6 U~j @]8m^GEd؅/&ecGVc h͛E.hA޵.4%ho*d| ޹BE s%@pqYE! Si5 ACW/XcJ, ,ԭlnh`|5FwT"Ա|?vi9deV=hXyclK_`\E/G;/8A>w gb^C|ܼE0/?y.3PodCjoÜ9]JZ!z)3+ZĮd## e$l\B m |CkQ?ՒkRJLW|![@oWm_HYt$C0J:Zdz5ECQgh:̒ I8r ֻis4V6xbwyrL3X:'ţȂЏGuy2Z!Y MϨ6M;|;<;cOo.',Qϭ9m1!$@ׂ2L =?@>17Z`JچP-pVT,3yw9!"XC0qyw̐zgwxGּGwzk=tJkV凘KhmD# E-77p}1у✱ZCn%În'&,ҠtyսtۈUY Sj'5eQBIvW-x*ܲ`27cMN.0Ys#w RxsFA?PIL!A1XO)guYEbXQ3*,_p:¦:ZُOƫ(*.peW˒wNƮLdÙA REHgam~ id ,W$~捦)ךh&m`̵xRFAwX6ؙxjМ cn66=K38J&t&eѱ (yі} ;A}иO2} 1ЁMޯ1 5EYl5)k1yX]d+"п-~\,w hN@KJվ}oY} , =ng7BH+Y VݽZAuӞwb*f"ƌ ֢3l?rTOTfbݹDeg㓙w) )G^ 3ahv3PiIڈ&2Ә"ZovgNzh=٧7ءUSy]L+%.x%"O!;bDO0yܒ 6-Ȉ^t557DGdBrOJ55:˲`s;ת1o4Ľxy+C= 16i63TQ؛)y"ofAgWqFչ 6zɒTY8OP%O$+zxeʖMq=cx<4PUx$pI{< :iv*m fDJP,0ybE\sOnb Ӹ\o/  kt93qvN CR#cCKo\F')PCz|=~^<G+V>r9Oc3pNĪgȖ-5W*<.[EfZ (@d<4Nf'Zzon`sȔ+YG>}p(&)$ C*6^Z>W} ()Z/t՟͋ WjEOɸD+Y{.8p˜J=iT@vBl7qvFmz{K֞]` USk鼆o[4&Zpg$jC>!w%@5.[fve19)F_G7׺;C)TUгKycJ\;AAѷipB  1HU2Hx*YTfkQAA#+w` :Y nXӵ̍fh6BTJ_'S!#2A8+BXh/[z;ϝbK~ 5]8$;Bz Y)M\YZTAAP$&I/f?;vq;HTopǎb>=)?.R-sN:5VAfT wo"7A:#H)v4L:&=Dp7 (CW&SP҂} ~V% {.>̌Y=)iQzAyi8b= vѺ+ \ț16v*:/CׇF2ɾ.pUni?SO!Pٟӭ/>Qұ4d`i.2&>=ʍL32g!C@ |"겷àΆ'7iu~7%@U0E$$1t +(Bp3nT6S]=6qw_V(W:_ME/T9?1 néRo~-@},{Eށ+Vp&۩ ߡ#)h9R-db "k\Co W0愐ǣP9`&~Qo)]duࡋ[}.q<\pJC&a,(T'0c 1+WEDa7̈OSc$8>D h9Sܬ$5*?X=-=H1р5A%?8F5(r渧hgS:%1 : <CY:ޛ!e6&mCRנݸ?]\opit&f 9t9uD<$̪x52 ~TFa-5ýRWAtR9-gpˇx_:g)R;935W)[!4ܳ`O@n%zrAVqiURǒ̥2}/PЦcF!G戃M?W&!0j{zQ. tUV YWߎ tq:;ne(x *=dVk8!j}=2CfѶ`t{ғN Ji6+'Nn¡+0~MJnP",7R'ߒ_JNner8ƽLVCiMd,*q\̱dWտxIO֣8˄i7yu5.&8LUPo$fgJMNC OnsBaHyQy*()d\LN r,q|: :/}ڃ&7ќHGSUc TAxɴ6,!Ip & ouW2}ٸ˞Wt"꒫2$UCUxRX*O'ʞ `0$lȵQjk"PQy\L^ֶQ~ItRT[/=Zˏa F#GwZf]?{&k`gՃPl-|/l[g\&PgӾj,+RQJONKlVۀז+u(<3qH:x]ӇU wn ō_?}X[R%c7ѱB`331h}{3 xV*O `XbOȊ/ZX|ڭɑ njng3U9HĤS ˶~d ;P``둉Y,rrt&zMp3jRU^+Gce)&.,XC!W?ДX >PjWmѠ,VexaP׸ )u$2Y^VyjE#̍ݮ}8 sz0T>G!T4MX DKsK'R!IףxPW`%J7!~5OġeӜZr8ݿ ֪NNnw/(N_ &qٝnGA9e S}]O yAw"qqw8BS&< `Nm[|8}7feH,P6d3͍΄~6cmaޣ+ےn\BcEktnP@ S4K.Vgr6ýy:1 ޠ1X?xi#|+6r|ͅT]DbUH^ WlqyC4_J#glThJ=#̋ѶI] :K[pϲ@2mtZjW;hӧZ,!?l+2qv8İf:W|_!#g=޸UW*=GzڕCl"X+5,} NCY95"S&9PdJRFqܳE Ÿka yM¿gqf\' i'ȽL!0{(V$3^p_6RÉPWG-Vvu3GfĈ,J1ˏG݊1* w|G( Y802HOQhV}$@\ qtyQߛ 8:ȴ'r7#1;?(=ϔou?{aOuB`ք3D`ӃÔZMx@EC/^P]al ( eܟD#E KxC#2At0PIF(3їAʦ>l(uv'ߡR&oxa*(jXjDRfy5Gr%#ɐNr,ew˨'kCZVȈ'DZw4eE@o,q3Mmq7) _]3 5ϰ58kکuG\Q&A.3s}! &P{2앓H|+lx nr) bgC`{_38a]iY@ZZ !,B@up}S^&G+-(:/{8xb:Z:mPrm~t3gw7փ@k^7 fJ#j ݏc R/49v)X0'*a|;!<IQjʙU#E$xN`WS+Qfpe.gc>Γj;xv,&jg5]bx;H֭m6Z>ƞѧl#53%N;.uÝp^S),堢sp;-y-  !Cـʤb$(# F}9};YR'ϙc)GXۈ(T#)\C͡\9 &Gmn8/Nw?vߢ7Rr6pPjrIZw06Qlv+;99]{y#ȗQH nB⚳Fw?k $@Bu2-*?֠?mWmI3GJHX'.՗#ބIUk50 g=A%TGwzV7 E('vi6-m|-B*'a!㲝nCu}({^eǹ(~]`*"O })Z5 %P2*ȸ1lၺ"KQ:/,AySSH`ɝi!J+c*zm8#E[_ 6GIUDumWMCj`>O^'[aL xݪ#veA/ꡌ-rIzb?mivCFC& ^it)( +_$ҹr1SM]&ݠh{"D8S8z|L.I.u\? X=ߌ&%}8$#n+fay|/Ff?|Cbb=YYg2 h_b-^=TmqR#Re6b;_ HM5xSeIRȞ[#yt9#k FD N%W !N&#=bb3?H]t]/6g |:b>wj5C{PaFVu m^6!k۰VSn{M Л=I&< ȓRP(&'?8,.7\ebL53ilEʡO͌|[ZiKoic MH^r&(Oс 0@4W<$MAGaL>$]<x\&MaX@Dr&-ӝD&AB<x c^A,^';X!lِS%2zס;߱w#-uDi33{OG%(qhAE!Rq,@c8s5DLt9#- tVG1Ĥ5 JdeymRκsH#ymGO@/=~u$,Ca)fR *5}tJ @r=)1A/HSpp1LlѼ,0j-E&5dzWG3{31GֳsDqQ~P%w!xJT3Q䜯įsRݓ_n#xS(ɸU}%6|}3o 3^$7+ǂ4Zg9 zQ{%) ;t$&ȵ]-3FDC>%thт %ߑ\.iP U`bE8B ?:vߥ:2Wy)J~ mcϩ%ErmmHgn$]ݔ_ID{i$D@=\GiaX$l|G[~Jp0{qqF#:W^9l* AͲ9Rމ]O%{&ڹjPD~rvGG@>jy\Xb (M:1&T[pq/ݼ;ViVvl؉¦( 8xX<FI-kƲ)#LNS J{O;D7MߚtYM5 G֬`1[و܈c R@]@[V@[#@*5)J}!J1?$!%s;K6fD=r#Wˍ!G^}8XutWcm2<)VPm5ÊTl K mV<$pƒ$0 9bI#wIDAe9QݕF>WWUY2 (uIY7X8])-֨MnegH]kH{/$+4ΈG+o.]"qJ=7vkC}n)xǹ9mf4Ea7p 4kK7 l]ʀU1YMXc-Vs ie+ ѵ&F;)"Ƶ}UGMjԀ>&naoe_rTrQtC%W.\m߳|Fw߅s!rE°$jESak7jo:0j =*Fk%.Lէb-wЬnS 17wbЬZX ohEY֗**<~Mkq"RmFYW〼 d@.BF-ಷˬ eB&vjϗ`= %nv}$:N\ך蓃)N" [47xϤeōۅ+uGc)y;妐I_ ;<טX`k"gr<$}gs$V: >dJϥ٨s]Z|!p12@`>b~MJK "Z*0aҥyD-.IilWW%j!I?6 :VpZhisg5Sl 7|iCZvpSoOP7!#aaҤ#G%!dYfso,ߍeudW,0!] =`WE9I!LM t|"fZt$&K:!Q%!w_Nyԅ k9 YS I!3 jMے6F{bH-f̄L:kW}DغDRcn?~-ـ+嫹Gk]?F@u-Lji"9v-h*\=D6~4OhBxtM͓xDp_W:wͥ|;׹ !A XΜtDfḠ_w&ԷX칇!~YگGPvɰm_!czp!!6sb6M~(íie; |M>]Ĩ 42XIl^z(i)vBUFq:YFMZbl m5 s㔶*UKdw ľC9CMtw^tZkRՔ1pQ!0oÕNGcjl=hqz^?-^(2` 9 ]wz:z^9ɴ_}>hxID /#>PN^FQW`wd[{I#ryr+_PpSIS$X tNyI9:T PvO~DSDhNJ-?G3J8\Ȕ Kᙯ뵇;=g|̯SnL8Vbg=],^6ٗJXIMĝ9W:K/l&~A`qk gKFf}}mɠS0 d{:䡌,hyNJOƏע69Lj(אpS D5V}C]Dv|*17Tj,>2@a6p1Ll#~1Lv3ۍa"ovcy6:xR'ެӿbW[O^kcalD.VC ZkVB{?cl}>oo E BU`gkw )ͩ2[e_:(w vxs1 PS&?Cŋ`rۡ:4*}%STU%|_D&~Qj Q @~+lz`c>-;h6l J |/QWU;&X4l~+'i蚳 l{nsGL$3!E,?E7g Y)k0ڲ,/*."L0a_Q X'fˠ(\YQ:'t~Áhhjyʼnm%2Eޗ/!8c[֋"0 >r\W#e` gd!6Դlr'L|ȯ/X]pN cP}bvtWHYH;enņu)Ȳ`?8){9+S'CٗL;(@#EI[Ɔn7:f5N+VzdFL]KԨLx=' >Mc ߣ٫e]c)QOG:ILSkʐpmR ez`v;\v`éx jw R(7\ǘ+] lH3ICvӡyMܮYjc _lNz:L$$'}+`*Z龵)`D3<;[Z*vZR `EH_P^QZ@NM2Z#GOWZŗ~DjK+gmSI3\w aA8d1l~c ?Q7zv92o%au]>_ M$OI^aƼX_ylvQhB?n3rZ3-[u[E3ބ\B8\8vMW+ #νbc<Tg!@31:|{ ^Nb{:ٿM`F+Slhh]}̼Cr%CwI 7Y0%Ja^.;h%_MlEK-y*}Y|!J0ƺ>%8`nsd;ЄGXL7?Σ+n@b]܋_] ބ$<Y|N@ޢ@Qw &j#H]3 %*d%u2ӎ؛3=@$bj3xJ ?o1vlpzb"0pQ\X D9p(mW9s-Cg`1LG:c!_Sշn9O1c Rc$3d;!>N2-NAWjݦaEUz 4ʭ}i N YI<,NvB*{8{3[W7Q|h= ^*h`rX>QS ZEw̕4:Ê~Gщ XVf‰rR9X~y#^[E$k2pnLB涰?&V_;ӌ;rY"*Xش Fhq:cM:~mpzLbs̎cYk?RH҂2Sg|Yz0s ȹo>:LЃIy /++pW,;b^3) /yxBB&sPlxc&VY<5AA~dsPLfJ7n4%*aW)4/X+¼WI Ũn)zOkBb ? բXG9ߝX ujAcU ,xG$6>"5ms!ų5,fgFl n-œYq bGv?Cۃq*'\_kXSA]$<1o9]V[0G)PoAxi(z[U3?c"2 XG9{ঞP1q[ՂHQ`ZkMO}4Øi#Ҍ[KH\Cxi<aHsS ѹ+"6OGjN`WP{ekPVC}eM(:z$+ؙGrUD뷹_ʰ}ߗV(WR ;G ޭD\VR 0z9"/ _Pw%[%BvO]nS[~nMyݴrb"r hQMnZEC&_;mkiR/OW227Ǎr8ˈexُGȔ"u "T/@bdDzlަtLĸx'O.랠AtVב ]gMH 4|.̠7ꓨPů$T eБlW%L.\BΗ*v ~")Iq$N 4牼^ܕ]0B4mNpedVQ(`b }afN-/`ҹ - 7qvm|Sf淅j8O7#l(!ӭZ9c![0SO|$Ay-]DAaz1*>+No`3"wq2bhG^di`0Hr4^r0H3g/ثs2mT%@:yRsu# m/7Gdeo!qEzoe]wr^A j̈ƒNԞ= Z @knl?4h12nHFũn=|g x.bbVw| \-Cf'8##K`TߊZ;2zx!2FGa޶kA5HjUTekVR'ÜM$.[*bjQU7׭ ~id\V ϰl:tbWEU20mh }j/첈eaYz;ɢ$LR;\sTFt޵ln65sS`La&R (xRKH8IrܚBauh '`y[+p೅Sb˛#[ZB0I5DCe kJ!uln\˃ fԃQO"Ɇ}܇%@g-fgm keC:`!ȟ8O7a0) O#'EFXP>Ob\=Mya8G'"`K-0Oz2I@/_I_=Ł<0Vi~_' D=e斻~tj2%vV^(L+*. B7<j֬rtα3 lwe "cg`"$C.k!-8F9́0k4`#⫨sh7]OQSAzZ6d㢃/bbt0g 2e?' €劄2gj4[k SrgϏʉZ(y{D8j8iiDCsvN ܆p9QcȢ*Y2#wnF؀yt1 ;oֻFHc΀B橛,4Rᦺkc=kTX0sW* ~ʀ' 1|_ooZTߏq]-T@ieayY{N}ʼ-AP@5> UfӐstڝnvXu5N:IDR<۔xt5{ ]]>jŁ,6+p@mV&!CpHS|e7)6%.PrؕK^v2^ xh6j_;BYܻbz*Zh4߹BoB'^MͺǤ oa OvOY'tҌtY ؼp\J!/b3ɼMfc8K'PB8kKLm*ʙuR&8iQٿc]]I֚mI$**@7*|+YiM{7z,'g8I5 Hؙ9K`3 'bad#כ8qOQ7 CV(Hpd.-wHV+vIcXV Qnz,soϱ(iNtDffg UDz}7rgd-sAǁÀi[̸P}>g gm֣k8V@h-/PMF8(io #ہoBeC 7pXSz ײ#VEB7y$V +Oui*>_7Yz%ft:mŘ-xJ^LXg kY<3K_~{k<>ȿ;N581P4/t1F$c^ >8ͤܓ肗V{sV cm;J@T $`\y^EjXzF B$9B{o AT$ctȈ8_ qV$eƋI}AOך CE~ k-=>IT:K2F`Gf»r/:_84H! iJ=9 X:?jêSQq{Y@yI̩;u'b4/I_* ^U p8̧=" ;1fx֨.]ZȚ*#;} P5#C'jnk-p4(;N20 $(׸`jJt<<,r>׀-(Hp#dT;X?+H#\؜dp124EJ=G fw;wۅ=g?=sqt D+G7R"g"rA3s>^#֟ް9r7P~b_YRl`sAA$ <óߗm&e!0 &&"B&3FJz#NƵeT1 *~L'GjsZ 9kt]BNDRMg*m*ѭ(]&o,kz'tSScY-.OitV3y %Bc_vyC,vϜk'It y'\ pt%S45I[χj@t;Dk !ryh&|"T*`a1^sDRߝ{PX(jJ0:z"1;6@@)^tnXDnFX\ Qeyad~G@Wҧa^`xkJ1Tw|F{fp+cr$5_e[(X~6ޞ"vJUjba!5f\*:0w3h92ѱcmre(ܵ9Z;PuDS/*A2t/M-DJW$MaU>*a.=Uj3[eݪ4|6b܉ Έ!!w-qt+'Z,™~solf7sZ-`k1 E|ȓ+dI}åCfS)t2"HWޘM aEE>">vgX\dzIE&G  ;BRFg<"Q>sOӕ- IཿH'?5NaF:b 5NzW.)CB2w KRcG#q:TX7Dn1xt2pCq:P@& 1YKHբḆA"h+.qoӂ5thۻ= 5{-Xck;9q9%! _OUe]x6c,Л2 %=f աrO: Z<pAe$Zū|ƒSr 68-~)ݓYPD5/|lڹ?]FI!.t"^HL!IĞ1"zY3|5Y ^,-p g„ 31<GSkC` >g;VM G_*brqֺj8da[p+J%w(5!C.NKUc=g@G|1U9 =KJU+3#Z/B}OJ۶VЭSI3K8Ξ[eGpCAub+r^0 i3.}_ 2&J q3/=+Cz!X묪MP᳀Zi o=?)?F(l0NpD|}p`M!`ۥ$e5QwbcD,6\O'I Io,=*ݕ~﹬:P1a:,Ө5|xyD} {Qt}"4Zs0I`53lEǤ^sU@:\y~.7㬚>] r-7Ͼ+&RDTAꕄJ5>޽1vTwV@NyGJ.D@k):Z[̔u? EU%f*' OA{K:Fj͜c\ώڳzWi/Sy|Bt%+*(pK@"dey>>ҔT^dX0n"}XBlPQ(_Cs@LJx=ؼ9pR_x2>A)_>VqIB!9N@E< b{LgzfQVr7N,bPoev4aV*ј I F^Tu۩zi>?NnaythAc:8N!Im.s9! Ni$nW_u:9ʰڃP,"P]f󐋔A$mc#h.]Mͪ v/jl۵Z>]yy*ӄt@gɽ|]RPLsmRt<'.YfVvcp6fʏ iǔlEE3@M=^mKS 5 یY]r @Q AvW7J r07H5̛i>5^Kumy1LDU .r>3Qʹ{@&BP[KZtuR{TSv발=]+uvAS$'kSӢpF`O_kJIXx7èzhRj~ڎG0 ;ǙR"9|!#KDWNHM6ɒx(%,Ώ ~ |QN~40aǟ8lTqB e1$79lB+!jŪUO Ut9`(aU6 ɋmˍbxRAٻ^\. Igr։zfbu#.969Tj4IU6spcDowBA JA'L۰b ҄]pЃ'3| I/m_rm𭡸AZ/9y9].vfpjRj׺44CjexG1Sƹ[DJxWݧ4\\.xmXx0~%cCAkH9إ[cZwgMFIy_ G5hrgkb![';i~}zZNY-j;˒\{P\ U}Z2r r7N`;9uηKd1-vkvn=?a:WRd+QNGिT3W/ FVv2\ΫN:g׵Tr1tb\nC䕑&ѵyxL&+*id5% dےμUq4 e hE8ڂ$^[r~DWewʽ#'+I>$"&'{Ea~u2,,oϷ;c N2;ʫ` `p) gf↕}J "|nɗKN,omǪW B)DQ0 P0?،,s>P+OvNRxf{)2#*@ M,WC: 6f[$)f9$pi r:!I#ZN{+^HL- 3<H~ᡨ=QXMSll\oƫ1E{;.)n޷ϘXu]iQ,slI[KF&zu ٝe_=K0͸=mߓѿ(B1iw'bT@7CqrAL!z ?o(Q mi>&q6t %p:x?t8{%uXA"VsQBO'͏d8qĩMgdkV32 /Z$ah$YN̙Ps]VhİfɖŽ\kxI[ )z.Hk \1dk&ixS%MqO@NPc LadMn'Q-: s U=ATGÆ6iU>H:p?. SJ6K{8VZ Bm%n|!("$ Tpw,V! DB,q; k `KcjUCAƮ~Qt}\+V7!k+:k|T~:Z%Z®p6dcG[C >+J;mN.6_F5fBYIӨd?M,8cߔ:XY-L1(Ƞpod TlBc CĦH*8wE|̏llTWQK H(ogX/%hމ&"gGiH?5?Ѓ,|' Gے z@Fa9V@6~|?Ғc$Y2Kh :m. Óe4>.Dy@Rq=A$kpCWh.2rN 4֦ՠlIfb43BI" XBvlUfv;uS_pozB!yՌD5ЯrPG;ҕ *gG61 dچ (6O4+.!PelI!ݚ"J~e jGzӿu:! gvXkBbw-ɓ3l1aw^Ť< ŹWPz9\Qz_m(S )ZQ|LEq_SSeA.52g:Vswgr"XˌKwW |K\H`|Elc(د1^$,zKAqvccy\Κˀ; 0?T jCyE)j`^nbtFpK^5 :3DO@|@HrU/%}*Ysr|{V%>K%5mx1_4< Ko[gCLעLvpRqH@ -` w&ǠÂe'8K>ѩGpB39}o |WG%k~$op}Ez)g?( ,Ǧ=R`$_)@ujbx[yP7q r{oROG߽-.o=-TBi/Z^-If|)]HGU LwaVKLJ8#WTbv_v=B ~#J=.UE,le-k7gcK[I/%&oe˚:M!8.6Dm(!>T~ f U:T?]p@ss{ ^1#]#U./Q7P݇ᕧ±\ R>bC扠 ܧrgR|`h]YX]1ČJD_\P؎~z+BÛt,hP ꄃyjͱnǷp0xuO["2=e+4(?֋m6ʨF`;.}\iCKN`AC8TZTVW8Ѡ %nfJ`fqV"l-uyg%QU:/ˇ"&,i0,4Ԙ]\Xە*.ZQ}m0 9O\ ղA.U/X_xC2x-zn.aI~<M_\on]3-5Go8e3Bfý}@M$񉌯6BTI5QN*n[3$e4iK P2'sFzYAۯC*s%0Ւ7f 5`U("Ȳ?-ԱuN%u6CjݞۢO×78j?F$+wܸyq[X4JW Hii+E`O5ݮ\B^te܏d:?'+ӊ0_/n26ėE'hW 7;-TZjHF˾a_hms'iU/(єR@cd,\nc&I(I30Գ^Mg@qڹ 93 v8Gn皥ex+{G/(cK܏@Z,CпCenլ[׭ڶH,i71HqqL b2mvW/a"] }X T/Şq-fI&rPKӔkjld$G/Ot nQOU?#{N=Ç["iNeyɯaE<8[02w[f(]"\1xFDa]?dJڦKµ:vGk5yD׼w:"`qpexY?l|⯶1)md̕z Sؕo1|и8;(N3Eٖf?ĒrOl Kln˔PՌwRc|"-lڢEE ݻXZ/PW\Th:X4'$z5v\oVtC\15+)OMZ8^wM0Gش=AP~n.r|#b% SIlho$רJC06Tʼn;W{_o:cڳY@?LCvDBAд%V('05[{&ؖgwlڍ~yoHYr'8'd1GU/;9)%6?y%E" ))_KOOF2 5}nT[7̛k1=QB#4wVSȳm)-~nhwSd# )rsXuRM0cph;zy*tw.hW'vy 8'x)ҵmXtLIm'~7o61>`VP_6#IVAGgFJ3( ڀ! d5c9N^ܕ4T5:d.bh4gSQ2@6ToH{qaj<®?z]!o!H˷wqIis@薩w%ll@ k]~;Ocw@ؽ$#_lܨRʍCa8$? G#7Ay+ GiξJf߀^2kb8f)]׈c-C 0a6帕8{n<k$:y?IEcKf \=xRp;-ޡ?#نIG* p,]i!MVuʌޏ_uId5$hUH,|uҾje "1r[.}>s!Mk [dODA/ϺY#nLm] >Ʌ0Ӹ}֊sw9o C<1T|Rx~m&T'g A6wqXUX mfxv|m!xꉥ\/5]_sTATR@ r–<5.qk7k"[CdoY]̆/%p0;Y"Hl4`3l@OvYNن4/:8p8:i62;ץ$L'ܥ`3V7qɆ=gO3;Y ?v{h\3*͖ngdUFᜧ594UmgZjD3gXIu$o!G,1a=E)u n+ޯa-.;D)8<*>1| m3v|vC$WT]W>KD$W|*$zs=1?2\7@X< ;wkO2*x_ryݶa ^I{2Re0PF15A;h@ E]H U]|^ AqzFތ5N_Hvjӳ5F眰v2b&KR|1+ٶ)L稯GaM?魳cӚU"m-+/Tr<+eG-tɲ9> >:#ec%ƫZrČh@@O-XjPp2`ng5[] Y룑 _4O0JS+EvP+P+7ࡠBSޒQU!Zfep=FY;_] av 3~Eȩ6 z)@#3$=kr,;X3h'ņ_7?9-K0=34iZS\idߏccz"~qu`D G9zf %XBnz\4wF`0FpRK07ef3n(7=S;V|*<*0 m0T$Y"GUSL•o7$%p8#ZD~IyZHckCʥD:xMV-tA4pwYAi2LWK' ``?-g#4clB{[y#l<*7j,-ŎW&ftdimuKׁwW䡣b` nHdj}[q/2=:J_rπz#k/*]<±|sNHs"hj.mYa*YCF"zt$R)Ċ3)kr`Fs(kƒҩ (.X>c{#γzTm" 9\Ob#x Biq[C1[7>A5_ȉu,0Iٚ~!K6Jg-LlV[ 4wԄ>a7~$縜EI[cR7ŁCgYp 97=v8-c'ˍhi?܋āK,&$@ Nh/e-FG>A6f &/NI݃4 3>$ܯ-}5&te3a-\Ir_);Id@ MXYtmАBtobz7y!+;f<:^yfS1kpMKs;`5<_RrQl9K<.Kxbjܣ: vQۊ"5@Y-ƅ0)$s2UaNd5dB~-4,s9ϊ2WCኛLV[sOt'5g+aK5G`sNGIG9PC?\3䶅I VUD)h`]''œ4TExyN[.8^CvܾĽ m}⵮R%~(h99)j: uan1:/uf1jzqrp$fVahEAܡ/I`A,]~G.O2_$hs7:u❸ޤK*.dDz83fC~?-v?GUTGTWfFuw#r_|Z)8 {sCuM=/$Ei -915|Y !ap:'y v:ez_1Me[T+~~#6DY3StQѐ,}0S鉴¤Q[4NZT3J~EXu^btQ|ƕR vJ>F6N/xw٤׌ miJ[^em)W:DYV¬b2(xC2K9 p ]yDAL>;I0+g,G @0\E=]KGBo/3cV狽v) or,yН &_& 0ƚ(ri$V橗$am{Al,>M6[Amo!&} yM9CochgaEfgQh'_(IȚNjK&9iAh/v 3=_ `h>+<.Z;" w?юȍ8l +9N[vzaPyj75j7ܞB43LSiztW<._h7 hx5,+uQHk ?xSwjRKM, aQ:x2a$рAuIuϨڳCSkt|bV﹨lSPso6cȩeism\gJk2B{-뫿|V5>Mc4Gu][&Ó`36xx$:,/$Pq@hU/n#\\s e(|3Ħ$40y;|4} Am Qoa|__]NUCV:"Ym)bL!KI *T64eFSN)"EDRV.9DUC~C=0 Va@96] e5 v[[J9% meZ~5V+W嚲3|֑) rh1H:5/uP!)z_bh&ɑޑ|䩴GJD&ڀ6phq@OQlxf#"#!EP%5zYtᴭlCB(gu,pVA3`nPH0}B`' )1Ic(1oZB;G gtKٱwMMKŅ//82ԦF\mVQãX*s1>=NACn?~N4cp2}//y+er!סR~s)vC14yK^nV6 Ex8k+Tc U::4:Bt:ʝ|<,5꽝\b"y,cêr)=;5ܤlҨ2L{^ґrwNI+W|5S/[~PY^xN3tX vRPo)P46lk#+v ! z=o z#)|-G-D:dHR?dJ 7z9BTըjFҩDxX׷W/U "I!}s}H΢QatJ\-38ۇ.u03~7P D#a `RcY(eQ@LAf*,ow|BH[='JX:flE4t앃1t^hvaM$8=LL@Muz+29UE΅?AԋCцZ&O=<"_86æI#@VIT^z @ƀjώ_zO*, pG{-5lo>wZKDpQAJ8XXg84$Nt׵pԄA\+8@3D^i8,Vt8M@5&Ƃb$euP2)uT3{Rp.fL? 픮sB6h\}Kg? ፂ$i s+7&Q]OT2qT.2WV9b<~,ʅ)n}x$j<%+ČAEaSנkƓKP#O1b\6/͕>w#q5laMR@CGEH~Y+H7 @=LRwbۣQS9ѫ0,l7D9$IE3kkFo@EoWdz (qehB93J)$YX<#_ 4h Y^N3 Cu}L, H9?o1H(I#o8dNl|64s-+L4`ZKPw0QpΒDeA$lX-Z"sg-3ǖTv*.)=}ľ>x%BNx7Nڵ]1plnH}TIMCӒ:hRb*D뼤BM$9x!rrVpWl+tK$geBs:Պ**Ut~gș^nL봳הiho-L uFK؂{ j]qq۴f՛Hry.u'GcVe+t* j:W.wk=F$tM{'cvB8&-o'&)RwoGUZx`p GPX7CN+<8Q" 4O9AGDY,c}FA_ҌN7݀#㶥Pgo1޿})-F$7 F\9 тXLaؽ:*TTjܦ[P+Yca,U(@,atV/bj1L&uD(kL0ʝqCw_Ύ|SA›{oiO-")TxSצI$vV5M4bG𬕃MEo<c,g'9 5+w7WDSn;@~H7UlR'tWp=c$}X8uht$ATB-%qU=`i1ʑKw:BxO}Pc.=qaTA+uHhCRH*kSAXw/!%^9T)ŀ̐F\K`+6f#Vkh-@bvt"ɘ{_]oү%Up_XOkҡ`I9T=^@_#a9n_u#/ B$P/ݲׯv,G )lKpz3'fnW3omT%P B,⃾K7vYlo-.5tpzz/@^26[|J[+%7#d,̑iI86P,a6*h;q*cwefN`2_](Y>S~icZrjYrSu"WjNi+4j b1kmwI[TJ>EԖ?8wW|,p=ZM3`*uUaSXc&d>o:-(r}fC_ffttbr`Qie1b^;k^\2!Nbz5z@Q1 jJV͞J ܶkj4 VX@IƨD$sLȫV3o5–R3J%T^"2 ȱ–Wj4z.y* nxJ%3LySPVH<h];zfo u=%䩱iQOΐ'_7∇b|tmfYj{-gy6Go-+iŝR͚zy"3*-J,d"Vnw~6m-魶"6(r8zVS GV-i|vDKNY+{<V`tE~,I];):8wnFjjs zT6Y1XO3 \=01ɖ[o8bġ$-CsqV%ؤZU'ƒʘ`Gu}8ZqŒw`p]& wPl-Bt>;݌DGZ<+ʖ1c\@g t"Y}Z) cPۤ!o4w)?c\>ҧ:m|/[WJ ; 3 ˌ}eZ"/qͣ4N~֐~Oӯ]R ,UL\0wt|0>ɹѬȐkUx-5;vU쌭3qouL"d FRr}G>ĥ)OWl@r`_M/ywEibj :ɴ-uV S2([CQCㆮ_{_zŭ5 d WRȈY=,|C##wmfrBSֈ*ΤM;]6Ҍ`%}_\Piw; FV9|= /' ֳ W9Fߣ?r,!˶ sTG[r[m&oO,n2,VRe!k\тfҭO٦sz V' MVsEWnDX[vxwLju>f?L{ÒwL[^H|ΚAoޱ).ik0+c.e xC:W_ޞ meyfSql7{Ikϵ22 YeZp".]6^Qk:(-aE.)|V.H%ٱy_LáV/ ;EWsZKR{z_OPpU/iЌ`%j{q5T4kzgpCY_`3aJY+395o}5F7=ύw\۔ Lw4 iqV߬yNtP߂_`l n8Xc:SFxF^aL$~'%P#Xj`O*D6i|X"u}2w|givJ|$ V/n4W|F\miMS~շ2i`'lsUdo m Gғz)t]ѷWgif8| PnVJ{DiXc2,-c+,;  6@cpWX蕚(Lfцe-3xb_cKyb^g֊2 Hλn\}@;0Mڼ8,18w NB~=0b<"I39?\b[⻸od|YjReBVYm:"${kyj{V8b7ra7S3|B!?&s_Q^#&IwsZ's9F9 0vcSuekb hstO^"%,0S*D-/[8o-^u*|e*htLtbEj.d^2E W7?Wȸ{;K28vfxr]YMlBnE{$ֹ8A7Bu lr r@1cgaRbBqNA*>E ~=y˲" d,]Ѓ1k1j&{V_ȨF_8*ˤkx>V1b8,ͅyP+NT]dC?ʛQV/{?Z1.ti%kQw'RE,豠E}Ru,6܉T[r8?2Tܬ遳?F:x䧓tnMm~.\@Q{O9yȆ|gÎ!G!%iNE]>P2sL,\~n)XQ}Ҕ.#zO9&<؁5> NIXq'v\ c؂3,̤X %ΪbRY0ST/>Je7h2>c_+I]@ȢclX#o;fy)KO~RS@~'Q;MQGOc"Gɖͮ*#C` ĵ kS) |q;putrB=epDM 8;lj˛vaJuK";}bb4bQ3_'U4’xC\^G鄅XN#/6\>_>zH= %/4)Ȼ&}#U4;QNru-3®J#Jc~φ"&.Y&3)ơX|T55H>XopHkZzlr ?B''i$#{1Aj,<]F7| oX?4!#"yO:@=a9Q/ 6эW^fS뵍H!=ȹLZxu0<,䂦24|w`19 ~eٰ;эU\ ruxI$4GX]ydw ,*j A_ hjilv H uziHɶ(12FZp95ƽؽ#=}RbgZXJf̀xAit3]n=3ɜy/&\T:.U`Xdݐ.b31 J1LGw?JI,@['fhɻ+tɑ59x}GJxյKFDZ_g"s8$SS[0aJ S#j|⣗ lRCNSͭwfta9qKG7k=Ǧ?\ӐYR^*̡61k%gl zUtCe~Zm֯3>gJr_o^sG׌`Y%q!٭[rKk)Ć띿db7L>>sP>:'99)+ -P>AOx8D>g-cݽ1i-JԪGlnfUj! =9V\nb&3a14l6T5Mw4`.VC _DGQxŒ( qqn.ktß}V#- eRPMH%qـ(~^wwT< iM_jAx7&Ai\xw%nSu#;GB]2_%9gU/Qdz㋃[c*Yciy z[%*6'^2J3zh gDoꅢ ԍp;@K#U1r6 O)"3Ruk,cNHfg=JV?"! ނh$e&ݜv[,.S^wsu;("T z*SiտV,l^Dt8<, |:1jϧ=ɡ{^+5H`a܎7gG1i+F$YXw 7ZG&>3*u6-hf떓+tC @KdZ\AR\ڔ*\hŵPom\Jڻ=gLWbp1;IA+<WR Xq|Tje~H\hZKsњ`FDgJ+u,j!M` wMzvc FG9c}\@~@_\>rH(cjeFgDO dž9Ld[ZP_r{@bCe78SGN֫y ǜG]U%QZ}7hCQ9GzrsHN/ƻ3zhONӘܷ(_߿Nw7:ddߵuYKU4QՕ.V EH^\{W[KzM#nImIg,tߒk˗TpKp[Ot`q#s 9\F] 3GCW~m2"F3lHH~N @SmG/FrC_AiQz*.(+ \i]by! cΕXR9a/52/ײ_ψb~ {- MM{z( ~O^?a607yP}Fz\}΂:}#F lN{f|[׹f72W IWIY 3_g~h?[жQmyӇ)OօC{JNm_[}UZWolH)pN<9h0Q=fk{Ti^>ʢyy~W%˄j BMһB)(@, ǜuh!ùrPDNZ^mdi?V~Pե"ipшoUȠ[v 0ow E' t:}($_-*Б-0R("A_,>ZWYFERHL4mY>Y^xG,ڭ0C $;YkvsB0/Gsp }yddjUI)pHLǼ`/My&epq.5'qnxq:"'ɜ),"6K-x3!ಐu\ӂNmueJr1mЮ%0B_ {'q$>ݠ"G6,ɼCBMZ'C4۵|; oza!+M{g) 9<7~弈4f*}apE6@osa20TVxL&3ZodsE@+?Qdq^+ta`BчJ#噠2Z&W45S;W<\#iޕ?Q-_:.b,z'ÿPĐ~ٙŴП$h>҅+v3XbT)="9hjCS9DZS0 ?GSdTe_.;i//OLK~ORvuzrZ<<6)r,d9KUrnCÍ>ogtʤz1Յ/CXX/ح#ںD)oE#I""5˜m C&͊ݿ"6/`}X7I~^8q:M6LhUOML#'pQ+?J6f'#OKʘHRo ^%ZE#\[ܯ:̇b ű^P֥E!.޴H AԆFx@zL2V?ˑ:75ҌѽZKLh܁FʟO:R."=u7ẓ7cZ w\v7S|`(3}G[..Ν hECy$FБ 7b`VTCKЙn/ؙuKZK K{Yme騬x -f54+4:&e\l-8$xd(M Gڐ.=ޞځWBsF؅X㍄|mK6ʰ:ҷiT흇G`h3j{ψb]ڮlG8HZ!{V$I2J/4`HǘܪTG.5"q;EA3#oc-kwF D)]٢@f=25Wd8@GB{P,Wͣw 蟺nz'B+7a5́FEȊ%}L6OZR OyA %@ XTӲw2r47ZI^Hm9 XaaD"۵Z6k/!'rYS7E."5>eԓ _iuELw@)+ň_c˽V7Iu dq 5 :SXVЄLK=66}\#=Yʯ^ٻ-sSĜT`Qҫ0!sy#h;'Y%Zy͈$6kj`SV:~>qv-f&RUU]r,H=1մ:rZcBx|aiXm8/| kT]zӘ:+Ǹ}ږ?rQcАr=Fc~=##ȠUj{s4ח}uQ˯a2y&OCj$,VPi lUO ~:woA*M?+^SŵePCg T51w-g8>QFRlxq{3 CT?Eӫz" ߴ= }Re77ӿZkBt}Ƴ0SGCgyJ㈵/ ~ᾇrqWdFEڣ`Ln򩒇u92N;R~$ ]??s?󡸠Fxa'OOceP4dX"f-5-I~ ɰg=uWC V~VMFD@$V ZŔ(zcKRD3  Dŏon4OI u[M)Y qEvc4E(כq6:M$tգvf8.eI5t"{0U ;׿& w<(]56C(f9݌|.GgB^ :&jIms&P}C8G{35Cp@6elP~{z-]M"(՟ӨԒ8ˊ:H*ft[@t'盧fj'V%7PMUR7$' 6c<8M(֛t'L]'lqfb:y8y}+ mLВm`CJ̎ >Y =sf]=i? ,~FL1=HNa⺁ w0 >ǿR5= 0PB-*ߚ<0ԴJ“JB)Ƒ1'FAǽPd1NSJTP$nxC- WJ '^*(6z]_ZEU97bhs0Tδa]_k׬ &m/9w̝)0sBs.mFRW}1K+x=| **i Qg\ TS fRX+-;rhCOn׃(I\lvm4'<dx 5ao6ѶcLқ?0Ճs2?uܗ#Aԇ8ܘ-Cq$# HrDs; p!36刓D{Krl.ÅM{+E1 ٠ ]3j6ӯĈC-ʣ21 +QZ uWw4 ؘ p!-kTvښF2WmntͦH@Y. &jxЯP2Mͩ,N;Vd2* 9/,Ȅ;3!Lr 4Sukmuf4S@$r gn?.ptK2<С& nH w"ܔ0.l hCfҬu|ػO^h(s=QJ ^"I9wZZΉĉʩ prOѴ Z'ӯO{#!R nV\[EtoYpvHm*aM:w'G+V߀v w:Z76$RԜl3l}A\?UB_\V ?'W;" 4_?–Z:6~Yk{uE@娜@7,BLˢ y;̀E6wLJUz5m2Wvy`BՀ8 Jbe%}T!P7F!C;T'J[U]d)h8<3fYpqo0 9S:2QR]pc50[b_&} \7C5>$"@p10c,Z Pzd}9D;WG!!q V_aNe%-,ٚF%Ŕ%"Gž9J4*toZTy 0,s8Aan,g*\M9sTLi,ȫM|ܔP:qq!Zd!0L|Z;x]+" K!'&,.Xl5sMZ${\(!ʌIQ*8/(YnaB#y[*^Ae,J6B}mrb/<"802s"?mPH6R+jM& "*,AslᦃΈKPK~"/GT咰 2z`1FL;OwX@K!2"*\T YHibq|4J1`JGdTxF5"`;GV lҪ5Nn7.PF864)Yc]2gocP<Ը&|+.kmc:)_G#P QVK:iA$hZbQ7ͼ"i,vQnm~Sef-E(Ը0+)*^H-$&}d10h=YSbYYј!C,g9B|{}?B5l1~OzFXKv'V.y!ܙ  q uɦ sg"ynw.K3@f %b%lpwG7?oExd˅ǧ!+e'|ta$tPKcRs^F#7ﵯ@HTy{CD[3@}4juoD-4g<͔VUrN01]jcwԮdDOSqC8pfzt 1q6 x 4Ju_ޙ@ B 1$xoy%ICSe-n;]ur9'r?Nk= gle9s j*Q@Vr(z"wsq=åe6A)to l󬹽a.eҞ $Ьuy?^"דGaO'MyVqK@V:2V 7B@ V#fa9د{YRI8zukxjM8'd,YzxRy"GŪ*MfK͢n1^i:U@y0YKiG#?ev&l\,f:5_#5"f୺F1njkg*DE7_56+].,67(A"d9 祊 (ɗ\g #[3F,??aY6ޱc u\0_^ ү$uBu?"Ɓ#-5RJB{\+{ O#K0FlcK(tVB!" *`*,ˋ9eLP"UȌuD`WN' ܁A_B?T,*pe6y`L3re96dY[{=w9f3ʕrS\x{eq qnP sPd 3pB1ЁY5 ZՓ&-qyP>y0uvқ0\3+TztGg E/9c٨kGn]Guu$? s}wə}/p~|iU;7`R{??m_:wy aXPh󯮓iX6z[nقOuV:I3DN|Shi8W0ٗR͋9dĚ0>o* wc4DN0RoYΔŰ/E'QZj^S/&(E~Tn&4dn^ޒTFݮ>9%m_%V}?/DrOqdة`&oǽz{fG){hisTz$3oш9 Dz[+ 8IRZB ֶK[a1#+Jل0ª8ɀbY%*Eט?2}w x=i{ $OGkB??( O xjϴLvDY\kG/w8Dr9|A m`r-DXbaN[dU獥zl,{mS] Z5+=Ya fpT+xIJY=u7dW_L Ҕ y/l/uu?w-a+% (XXs@Yqrܾ=j9% J1c)%6Ry"_j8d{SQB_^!( M:8Vy${~!ffy-]TX|%GF/+xp<+ (MEaʎʢѠC5I"[4 7BiR#)I8t!P^wNy3H{;ݸYy1AJjyS[W'"OMI;{%lv@M{׎;x^$Ipdz1"D1JnB˾Tm43CVfś51ڠEIҜKG?%]ք1jp/ 17'21ҜVzp 4Ͽ螵%?]²/˸9^=ttaS5)u. rNmQ׵9??q4s,AKFzz D03=XPaeR] '0L{&HVLbmDRBac (ˆjH*`K% k#`COu7毡5Slls-qIt "~E"4OAK :ʉ^YwC"+]1S`Q@fflT+N1=ΰ'%;|Xxv X/q!2 =crҚot)xPc>O@1e3fJhd˹!BllM\/LaRI Inz=tH‘4X j;~>}tc;qѕ;L>#Ȍj &MW+,yNQS2,濚i-wy:]orHΫ+b~P%4?,#,9H;R$ QЮrͳk?Ӵ5"f9 &k&AqrˋN Qc=gi8uSa`YݲCXN1 ^ͪdtGZ٩~(| vǦ QTɁf'_`pU,~_O߷Ux슻b z,S҇l!GuҘGpȍ ,x{``Hv#=tc).Gw„I!]axe\Pl{HS? 4ʓ8j[{D|?觩e% q%{xҗ@rnUb˂DcOHW"ڨ6] <] ?: @gų81,&!\kg9zTN$Y֜7KV/5}#lr M^9;WtL)ewQ9,ުASQ䇡H Ɯk!`\G,M5X{'`rB&Gs);&8ŧVB pe.$M63\GqpOY;&Z3^LAU;ȷY=L_kW R}u}/}C@. ct;ja&^`F̹o4ZT1/ט:۪,)J-0Mi6FU!#! g gCOj &NBA[MJDv_ xP&-a3 @f4J4Akb$XVl0DA**m߅W# f#L\y! =lP$Ww s'"oϳw)kX% 1vO={6Tj% $«'%v[B.L`Gkƅ U؝IkF2)[> ЮQ0kC$UZHp`&wIbq2sg*-ƻTbXum7xPϠL+"#< 63$[=9Su谅 YIڋK*c$_T]Rk\g‘Xޘ {ZZs|W]@ ?Z=i ݢАP꺫#kY |5$s\Ԏ0{e۞y-;+\¤?Jc>4 k;ʦx znj&QqM\vEn%)hm5aOn,RVVaX{Mcޑ6uA$D\><'r͛ SuY!eͿΠM Wveնetu r-Ո,4Po݂~|*t@!B{cڐD %Va;T)=|P;~ʳ"k.yQ{pUӧ,X5+"sCԧtKsWr[ɳ{у4c(*Աdѭt%ޤdfbl?pUhD?.!GX~QӴy;-3yV}!=-q&R6j!cbč>XqtvD*iSrVIEz>N_ƍiw.=t 7 l<HAGs[4eupm"z#d@.GU ? v>6_Ծ  QpNo:wL!)Tp6=ĖFЎpq_.މAU޶^^שp}Es@i';֞ o5(siH[KL"4i_=I>:^&W9JZFB0?)Xfvp ﱭ lT9:>1qhA}fA| Ҋ^9?Bto, NKܑ?sZ5ƴGlO6 zjX3'`JN0P}Rw0pCԳt"B+K &^:& : h6SNGqumE$)4{RVW¿gNaϊ`'8p Sv2yɛ͏,"%6U1U^]s~!$"39bqW.DG m%'.jۿ&( -[&C`GjqfKw >H*t[NN>&'cjRettVW9^ANv5JmsXθާ*(FFR^&9N('*v"ujJjd2lIxi );/  6R!=$ssxi#rFH:p]?#oe(d Ӂgj؈,U;&1!nvcc 7 !פM7]pAنx,OA7{Pw ,KDu[x{ A4HVQJt,͐}GF/tN<.w&xO?! NrI Z(_5.ͻG۲p^Wʉ@R8 _=C8sg>gOյwAGsl1AJ|#p$Ex_H V Rx7q^f J^]*=ur"{<7|@,*cle&4'^qC.8҆VApƣCzO,SYMD&8hY \JcuLFaCuNu?択mmه|U(JHoc/" wE@GOJ1jn5%$ tM\[M%6_{sP﹆@B6:Mz_o<#y.?cIݳ185-ּNAҖ :q6(Z|=A'mÁ{6|Iv(AŘC. y[pȥ*5߄71M6.X$'"uFֳ)Nq{ )ɗysؔ{`K|4Zj(9D uwv:G.?OÏV)^lsX܍ZpΓ`u$Fݎ\P,`klaIXPc2ۛd0#EEXQB'\̀H p)\7ɀ [3g|کcm6!;ޑ~V8p&d X)'i``Zg:lWgsU?F6汽g]]~7ρ~?TPMpi[t/E'=+=Jn2kTVAM E8 \LKr,}Ms0QR]Kgea.U@H7Bhd _I^w)潌iF}:Jn~ocNDW$h4+%ɍ1Bm?k4b)3^S&7r (`BNKltrԌ:~bZVV7[\i_Mo݉,AHjDhKV M%SC7k ȁET/w` A߰wpu8La4 ']lS{Ά0jq ~d'V%, WTL̶PM<=M>`S==׳2og&{2+;Bg !v|PR[;Fk=U aXr0N[:g5xO5jЗs϶%q';4#G;ۇ|/w$nfK7YO@0-uP> J5ҷ~j VA[RCSCC4]VlhbHKk".22w'S.((-kJ ; e{HS);<63=2=eE"#]A(˖!;wkڍl5o0ɊbN@-M>+ݙ^4!yxs)uӐD_S:vE??휹&[-N$褸 UDxM :@Ai "-kB>W|{ =C󃒌HB@a ^-I/WaK|cqH(Іr~)=>Z]AD`$87l[ GL4U^] V)$fh0XСl.+Ja#`[sK 89ޯ'fnF䃚LÄkfN$x`ҥ]`QyH|BlL+tZ@u倽`[`F>kmKCwUVT p{VBQ{JϑUͶ^D3:+.2iqU"-x]0StlW͸!7,jfYEsv7D L-Dwq85UpK1b0ЎrʄrY=JPwwd2Y pM*}^ pMg!'G-k(>w쭐#JʺrN*u.o rr-oHXĹqzєR.M7E7tÍcF0c۠J%@)op `S27W8"r>Un[<(%Z:%ӆ/դp]L4MvLϔf-tCu2K%q2筸-gꩬk~-۰&/{m-P4Ld32%ON5%QZ+ J?䃧yUzg1l(h_igulo|` Ҟ_iU̎u.{9pҘ1hHLW 4Rj{}(7&˞U.1sPH(1e"J>YN-/^Zږ [DŽ 9{ߔ,\짬fj~w$x90,J{+ǁueζ܇GHIȪ8R"e3*)GK9ט n?yr53s_]hWװ*FX!Fkoo P؀V(m9Զ0 ՑWE$ڇKO\\oeQFҤ6yP׃Z)"P3C_}U^vegԬ#.?8PoCi4l6b CI{!g7ke*ˎ+j?k<ΒG+:NU]@a7PwU^p^nwpirRDIy>t.G k*IkHy΍P) #J u?)W_t5 ?{a;c8M'iJ 0C ̌ǃ=6 >ɧ-iUtq}*YI*a8p`0YqHH"A0oٲX?W3ͨ`֩#pz}.StjZQN6#ݶ泳8(`^(p)4xNq)p_&;!2%^ot]a rKz3QÇeKp8@ǀ6[=|_Wg =eEg>$?O*sA՘QDwM L^Yn[I| mOR02 Vօȝ|N)0pE>RUԪbXtcR6i#IkY.h[оog?]o"eϢ;I,[fy } m9hV[-"EN2p_VZ2D@Q|EDbSHSEڤ?!$q_"~T-Q%*(^X!d$;8ZUNZT*YF<\o4}6TtS4W n1aIYل8$-Jzӥ⺈/QC))e,8-X.-n茆+F&gg52WGÐgS+ 4Jƚ<PORZs&vfn-)Yccx]`5,N3]ƽ֕GZAi"ȁ9svqCro/}lJ^GgmIvU&^+:漋joՍwhWAȍ߅\>kp%6&;ߡg4Z+ۅ!abW>R=KҚz&<>}Ѓ.(g鷺oDr}|YюϺ/ަDi О1:ar, }0w:jHYjd`c)А`ހL*?Bg5O%dl|.e ѧX&qlnJV)WyL&T dGVQ6 8`hR7I LX78QVۿ )w7a,B6vHGTW5sӳ 2OQI$ lKYKgCmkϨsf|0&VNڊ)5c6ֆ){8v|EELֈ&PO‹S-" Y9I6(%jNpB8*&Kn%ŕ?cRRmiH% ԫAPV qS 8rB!epMY{bj1xӉT"~Zш\6|4z1ʒ62=B>'m(cϣz\_w*mJݙ II^Uz->b|4`~ZC狥:1[*E7s<_`N:<)'oL- LK¶+u2aQ`GU<݄(edުWr'NV{RN; ]U)X#ܤAIrp8[7ĩMB~ΟOPR11)P31㑨)O{8(U) )ri$GL>ء3D[>dS[VX2 Λ /(|58\lKBԈX# xlA$?%>TTS!-VzrjtN-]e1n)'=RjW 1at'g"G~Fuh/yR$vFal<bA;-(js͆z)uU%Q 8{saTZ (4 ¦rhMY&tqk5' I#V"h6ڠqbx/僟˵is(Tw ) Iӕ最;N%x= *ޒ+}eGHOKw(3d'J,k" 91>@A2}=~Z nj[]Φ W"tbJfa윭WApG3qRϰƅm6cO-^FZLtk|ȬQ[gDP0w>u, IKA9`vuǀGB'a4@ƽN w{_s-5zxidJ (512qXĬLR&0# MFzAgA#lgl0f-LJB:U\n怐sC}]}kldn߸SK櫢Q;5Fv;->\fwУ-0CO0Q)ٶjV²,zSFͿGb*pLfCrMJFiX \#<J!QWԭҭ'E[rjSUn/h@J&D[c~92Gh9nA l‚+ˆDZ鰙ƾ8zmܫH0Jkp!/a!0 T@Ǩ#~E^ v38'A=3g d UIc"C , +3HUxoMՈsu `/_ x 2]N?{ p~I*+BE܈~,5{;.Spа51U?odv+&/l-έ$-'5ӗz6}^S Y9F@+e_7u 8;&pbP#*Meti֭V^2x:[H5`8_kB`iψ)R\qe!\#Ì" kI]5u<3z:>bhh,8Ds ,z]m9XOvɢCQ˅<A 0e P]mF'8Y; Uد,y:hïX, i %5^̃xӛMU)Rbj0 B1CՈ#s9J !f2i@bp*M(5OP}4\0h^-Fr ;,\yDh7K̟ T02aHyUh ‹4v(_:x@Eώ˜BUWpC#VܯaDV E:.$ج`XhB9\DVΝKm$Ѱm6c]9Atkba@۝$FdKU ~ U3GC-"(rcӓ;lu 1y00_L+Q+Vnt^ ceZzOcX_:j7npi-=5LP=7 G6 ;x}JmkzH` ׍6&Jx4>+Na:1f̡D!ଥt; s8?tܭo{B?Of*y=:em=.s`~X x~%f20ZVFC=!V^? nE.tu@4 X*^d;V>x BRN#qznA43c.vDF˷^y<+@<.xQ2Rb4v"}Y|jOMFl|'(Ғp 3.T9JB`ѐq"k'*nJc 1GS@l.$Ava#AIJAIih^H3 l~}Z$0yMd- 3@;YA|R تnϠ庭iYwd+e#fa$-Q{=:kHnUXemz!9@dOJAxRL+RۤuOhUpw'z=fzj]?y vvS^)̈́{Y 7w '`a; |L5:^3!?MX7b0nņ:$56ΤHHDfdW:J*!çW9|YO9E!UʃÅ]Ros)ܐ 0&TQٝ֋%P'!/!i"g1GeZnukĂ4T_Tgz` oWl>=ID>A #롏q9l(eN]6$,DYw]JbPe ?SH xE}gs!wdRNB*wy4 !&^[\H$KwXͽoNRR)^W?1I*?"AsX:9u{hs(v#7Ƽa@;l /!›`<רz"ZnI+o|C,d,Qgj1Vp 7;4F]IT5KDHU^݁6߲z#"4~,̯ulD omS@LƬ\ƒ q! ~UU%m-^3^A]anI8aAaP,w!pP:XޤL='q4,8RXhuQ0ߊ%4ܭ; *Uv0aս<=l-92;M<|9JdE ¥V`}j˗pxPbd 7; zPo a',C9%H_ޞ59vݴasrOMƶ+#GLk"PF YVOe!_])n7=s`T{: u:=3\M%%įQW?7ē||ŮeA}[-ϒ\o˫~;dHQ- gZofWgkOq|:h@px nSyUu}È@CS[$y\oRev'~E vup\xICt4nfPcȈzu{V_ϺN[\|T_Pf=H&VיRzynk^w.]$&+(̃fZb_ϫz3l+FFƱT0(Q>/M{6";]/WG-@sqKǕkL [Ig?ٮcuQOM-WfؐIzt!Pp߄2oRnT[|yN+`Hi0"G:znE4uRuHȆ:IXQҌc΅֍$͑`: kآKxjk̓Cf'?]O&w:I;0O/ذ9IQhxՉzjJP ~H >m%% 7_(^]d19[4Z=I0TWd/GƉ9w2͢n)Ss(l/K@cGrA4Sfx2/1j83rg%Rv#*|3违)d$ 9$8ꈦG-Ars?9 pevDG|)>9vM)N2[rv@~\CM R& s rӇLsXB ?BRr,e`kp1`,XRk7>t3.&pQUeXMg'cAU=`v֠.ჼ< 0\|d֎BXɓ^8 ÜK`74\7CwF2뱉ET;%M_F$ڠJ_k~"%&υ6 O/I{N>)4+YotQ4>/:9^V-OmOYGrTn?LP%d @ ??5cP9z$!+Z>K!1kSsRm,x0ZAȃR{8JJpEmҎ͒!q1}^Ôc6 &޵,yHEl,A)TaxqnKh2 Ygnӫw0;uK'q)(YسEmYHmYUl$_(b=}8L];R$,0Cf?5NK6qX&yp ٶ`濨sԠ_{?shMEHH=VzE\~q/ ]r/je(s@tCb,9cƻ[/EJԩ-[q>f)a ~}z[[a~ol$[ ¾L.o줆v$3\f}vÊ;,:OL7pZK982!Y& SSn>|('bWTgަ# X3gE8={'ҪYg甤J쁭q=H'EkJnd’y۵7\_,V. WHp}5]mYj« #ѢM_ ۝(.Otbx]+pi{}F 'U 'znG]t?Д.IOHk#Ћ9ɟ D#qC{Ә6QW1 ~D7Ie !zeR(ff@8e-]3}D:¦%҅5lgd‘dNYhS=7jTdڗzi=IAp:@UQ\$g6g}Fv Ii0 "B'HJej'$nMھ~i'<ƌ=s,2]$@8Ji/2L(Wl9k#!qG.Ɍfjd̈́a`aǕ.AJhDLQp4XRޡEH C5AIH 37=Ƙ1 =Y\FXVg['O^=!M̅c-Ĥ.L#SaS4 q:C˻B((dg&qyM$ ;;3F'kp(I?=\n0SlHv#9t-kVſx{*r3>΀K;/Oyw)hĉ[?T ݋L YpYl;іmKoEØLJRcïKJgkp=:}Lε@G,_犛?]#C\*5|;xl7{g_4ʎ1}o((;h0qYu|E)WEEM [=)ޙW `r5L\ka=vF 0AcI[)N b0iĶ̝aT}^`WY]3X}^e"xLyHXeT'xigS S:.8`ٚjc[*9rnppt ^+iw]"ֺ<cP|B2m}l!dņ>a{]k!ϩβX,΂6@b22v[b2=< 'Yh=;f$RSPRsQYNxLW%0h3{M*7rBf@m*xT8!J/U'm]8^Wإy8I2 _0mk´}A2H[{hl%Aءy@<͵ x`JyJFWe`A74UD(%E_ bmJRNLv".4!ko +CL_P{'(}*s~12A!2oX"+,Iɮnq} "Y_v`_OV BY78ߋňж惟 P؛S5I7-ӊY^+RT/?|O@]DZ\Q>~rR%Pأ`u%+Rȋ!xLq!AnG#m|z$NJxDa$3K!*{:`3(i! L: eeA^ 0BP{2߄,9KCTHt?6=@ݨ> Fo`MC,?nFhOeSNn@Iz'`--k)yN`>Uo0kиP02m'5J{nxoHΡ\Ǵ 3U8iAw~ҕlå0P!3PD.P=!dǎ!*Ǽ  z3⣓/U6)0! M%FРN-cłxԙL[&8':N d^olelhoۢfs7DƺEbZaX}WĥZ<,U~8{׉ƠLĬ^B"8ɥ?61){,'jPUdٖby3i_\0jvn;G1ȰSG^ƃ, <_|5y̭ܚzi3[|_CG,Lb mSGZB4L\J+aʄH= i|X+ҕU~R@iY)-=ꔃI\}*Ś_m*}AoD<`oٌ-U=q!ǢqypU4ʗyܣ)*Or^,YȡCK~P{8W99j}Um{PMlBقlWPl(HS;FYqŀ}jd+J@-ĢAz@c' Bcž2 r~oPJ/gKqbG,2|0ax+g{,zEe_㱅.[hpF QI@r/7`O `b3 w$Ce;.BE٭;LM&,=~E W^l1S\|֎ Bwd#/':zqNO4[IvfL<.aE\X E$d}ګBX,OeO $GᦘWLHtm.k["Zp 2²ƶ/*&ˁ9hYQX!tUDu}!5 1-ǷpixHq{`%N޹R ty C+s9Xz?z3|| ųWzSJxVGR?Es<{I!p]؉ GM|Q/Ưt>2d0\iᆕ#Inh#etۑ կ?Ȓ^%laٻbTfO Dׇ N9ҵv#"<99 [w”,FtNE?BZd+[^g;r[*ɾ,t& cˮ⻗wl\-47B5|.5 0A$Pi=6GܿjW1_٥02MFX۳֍^6w蝽Χ&3N3i՝:yep'W`MN]9\S`\Igэ/hˎNaA+_6A~v ] ԞXfZ6xȖ0bN+pF\36BvY6|/ o05ZCgzrDBdz/E2;. Ӊ8d8x]+;)gVenY~#hyIѳޕw e01U& ,A?vW@10 ߒRr m/Lh*1/p>.uʧPtaqi)*zT.zuo[RM^6[b'9 g)qvd64B, 1 KIbٰB.Vq /ENۅ;QU5;C~irS{*Uv$ؽ[@ʡQaM.,Qἄw9c s2+Ii9>yu*TJI(fLF&ya}7&1UpbLXٺa% R⛿F2RZJgX|#(b|&>Eqّqf9\Q)ei9!:ߒI̻~OeG/?9\ X{t8s\%jmdxATź N9%NBOvQU9u OH^ :֍;9)=)qPHH HWȊS82ۂO2rUl"ѡa\5R},l~%Eq}J)8Ċ?BkttPˍp#@(OC"o pW"VK+Xy0~f{h{m.4RvBU8"<*t壵 j/}cs5^cx^.W8ʠ7,ay"^\c/Qr]zeӑ׭$fvlL^ 0Vҡ*w2[E_G\ Fr9)ٯDgqId!e\X0Hmv8'ez?=4kҔY(3W6 =b垪;6B=3kR8 n\GP4JI`b?ǁo$+L%ڔd藺}KTD r9 =Y4Tk#„[2/CZ99?T$ߺ  'Tr2iPg4nlj L][7{iݬXcJǏ9Ue>7 =8!7yu–RA[}I+ZpL `Cn3޽uF":qAgIɕ.BP;;gS7k~-02ITA q #( QEΫP3C;' umu>ʷrW|)]+Wgi6F9~ۅIễϟRKpO*ՋhE/O+D>BKm Zd : }<&Heۤè떐p e'9wm-r=YO婌0`f@C9!y^:/yG*PdOC#M\"Ig9KYowυf6_棹/擈si6kXKQU7$lV#BwZ u6,路UfM(p}H~ -n @.;-!Ԙc[XxfN+x+?`1O_%9w!0S3_qܹM áMՐ|2z{њbm&KR6I` ,WpK J,O7TbЫ~B}DZjފ\p|F3Bby=?ն/w~.v$GpUҮ&wYAz޾i؈cƿ1~_} iYs#n…iGь hU|z{|<&!d Ц>fϑ/q- ַaL% x5wddN ԸjgD&5Z_yt/]m: %޲^҂$mlAzgi-,KL,#qBV~wi'CCǹ7hRLWMq2gQQ>AmָTd>:B.Czuhi;Q'rY\0vZ tzÆ:Eo{ڙHlRX }k.w9 |a?&+^[>yzRe'ȲHqB=G+N0pWGHlT]n_^Y3F 0{\ <_C乤d.lxz)ŀ nW';MOz.a%-2UXLyTC;iQ,~|귪%hMC@]uJ'ZVU9bgZIh=~cL<˃x=IQ]iH0Muۿ:Hc%Ȇَ-?0)6D~xϳ{dݯx ܧϭHz1zÝt$jA/ eD:\ҡ,$ :d$/:J76Pջ?>7Y+.{)Lz~~?j5Tv߅a\2}֜6{1tYe:9؁ #u.ڍc=qOSsM™4m!^Z]EɁ+-ÎU'z/ RDһ[+vDr1ѻв'0 ~H=S_ݬGGl/1][ܐ{4X92uA, X^t|!yXK6['v--2;Lj:-pׅ'~" pb27 BNxw:U(6)<ź4ս[E1װ܎s1gkSMHI{B0g@$r7gIpBW[QmN۔"綴 3ȻL. e?%"%$b'$Zg>] 8h ȫ72dwV0cH` ]zf.lKF&>9'ǚvƃ8} })]g3%M^QK)yKqMZzdsr!3vw+s>PN-,MD,׸+k1?P/h?kn;yA "]~i؛=ng$[>.”WUy8(!`*8THTysT2tzwJ3ɟzʂ}}MV),T~8ʼeY*D̢K:^DI]9mp`L//(ifQ&J(8 {y;GJaxؗJ8Y(*5mS;25B 1i$NY rW!`ĈSN45:dE}EO Ձ4w=k0&5%Ǐ^~'HY_u,ⱔ?J_pUc0Xy)G|(;mfʍ/.vQa?.S?ȋɇ:7~&Y&+9O,m=EN-a3tЎ}bו":Ͳ)so\vOpo q#BD(jW|o7lEd1>!X@@Z }l8 w>$&b^t7 p _G6p4ѯ m!37\z,NdlE|ՙ,QԝWt&rz5" ]-_Mj^:1X~fMh&*ɥOӟټ9h&l K :L5Mߥ UvgH$ˬ :\4 :]'p47pqˬ=kjvkrPZ4v?M 4I(tU "4&$})ͦi)gѺ8,eO#~cwUq݋{7'LjbZHKIvC/s tȖa ]u;֤Î̓pI#n,1AgE@_p]Me(&a;K!#swYe֛ 4WQ6X&<s7 @E-j͉XP;D@u_ۄg.N8Y:B' Z ,taۙx1szMa[RWD(҉JA%7q?94%u= s6d IT:laLgpZKo1P9BݫLŖ.̈xmtN0mZK#]7L!sp  蜥ܽLgǞ #<{F-js+7\zƌjFDR:u\mS/N4{N} T[Q(Oi3K܍kb.Z;/Xt4rZvx HƝ.TbJO.\.*8QWA \u'O^Z+ b!L$0Y$ 5P:ﯺ&LGݏC/xE`v|N([3XoMyxNlUypA~ 1giJV: rqr7b`8--ۂ `dqzus&~B"m{`I!Whk lK}$݈ Nè'AoDIF?CxʷP xUBl<[ڝʙşl& /%9MlkUo^Mt.Pj(-"y"DBҡp9,<ٟ1Ra5|wKϤe݇/oAqO_;;Uv5 l"&z\|^)1aH L翓Jl!uezp6WblqScA;#&7vKz'qO~|6F\ , _y.GHA"ޮFk zH7'c5sODG4!4K{qq}ڥU B,ZtkO Rn ;U!^ /YaR),ԽQ $u~^QjV~ C F8mႰ5 f;O@GDG~&毥NU|t,ݝׄŏ4xYLM (@Κ\`=AIu!K{=jxJ[ Us-Bt>~ԩ<>$ \+Mӝߋ߂_~ 37/{pmDž':t~{m 5 aq-e>-^BoGihzkt?̢6!z*lNhv -=elh޳_򛢷EtZn:gq)F ˊ^/8TZQ!YO.q+A,B5+t&Jk&n}GPJ (1,%\E5c'ktC.vBmjWӊ,g$9._vϤfz˪SDӍ|(.ccL 2ddL)aL{M5PmHk!EjK?RU==Mc#DJI~qK`l"rA|xÝm*k3僇 5A4M8dՊjZ1-KĮy), gtG \ ;^ }"N۔Wcw[Q1/U60)* dyu 8q1qt1ݨlόV)UȨ\5kv#݌-i?@Q8]r \vZJUj>Sر?&PW:6NJ`F2R;{ a`"% .OpT+4S,8Lsk9F>BW^qVN,IGc(#̣ ZV B(bYn5@ JqIkDZU.J99~ƣD VsVr.vJ"x O+$ E&vo.wL2ĈkV(y$BOr$…XwT -Y޷m!IBMD}HR&=٬JK%ԏYLk r]GC5T N_!-B1pX2hIuD+d-mc]4k/ `] WNsl'ku, NY9HdG"վ󠇑SR\W m nmkmeˆAkwtA<60'a8.׭Nf\ܘd֧,opF;Ox՛`>c mF/HtK?* -7ak/@,IrUD1X^|x`{6)X &0l;>gjyb*?FXjFO#eE[xU^:`"8qR!s.=_?aֲ@0o)Ҙ8jW=% :k_!\vmtLߘaQv.516!:,L%UZD2$f>`?D}AaWR`ͫ $~~<ۤKџoM\#o:}JSћvzܑB9V#Tɇp )ԤuxF,G"}PXLAĘwW'4ORH :F=쬙ZhGf(`;=&ߐ0xLǾi/:f5Ft)jąu{cc $:m*w4 ϧf%VOбsFA^.z'wt*V 1ʹi.jlj *h;N5"=]|N8 ] $Gb?xawIhyeO]Zޘ\kgDSxK3ӨKnx4f7~a Wtn2 ),\u2ՠ/pk$DS*2  ?EQd_c:Q\Bn6? ]|,=8M_إ.+#'Av;8RC;ʔs+DU H>(5AYm9(ߗΨX*pJW?l*AĈA`W5PGOO9{&Hz%ͱ ^@-$.+ .$܆; 星]y0jU0iu;5IH˜ڨ* iC1Þ=¸~jPۻ4z0ul>)*sTfxrFx!~ˬ1ތ3c}>GL؝?I%D5G\%Pvy.Xԗ"c]cTnB% @-vNP> Q3$k%OPڜhz v!q#m뀫1>C~FAa08%ޣmOaxקZpj3 =A8h? . R ;'jT٪ŽD:MB<0L|y3rRv=-~aXrpS$"V\<\p; .lDYQ U݆;5|<EF$R% _1FK ᪗iߊd!o&3=^p72Q!f% &KG*bq=]Va+|30 0=^&8Bo|aI7\>QQr?{qڵhG<(h>b2x{r͘ڑA~'(~B@d7UZ$n+9G ИIBɢwB&"WO<7 B]ރou?s4FV|PR݌[@p!Vygfp\wLй~f]%jyVX4)e$!$ܲlLXp! w[1OX") M{^M?bAQ͍ $>ӨBtFg+$Z vۂXnv\&ei>FFY߈ NE|Q, |1Dvy >g\6u(-2c;Z"gVf$9ggf5 6U9~ 偃;[Ֆeo״5@@Vc !1F ]&ډG8w<<+a"X?Щ3?˞6V:ޢ_6G]ynEq{",+w&AW7c+,H̚hi/@D&p&n#2`)2mE Qȷ67= FgN|&Eϙ֔)XXсtRÇڨDR8?IJ;_!}l6,:-j@Stj6_iǦ;)(pk/Z&NºVku: ~%#;#fŚtbm8sQ'A~,#lW`>50 u!(2=O uEÍ/$FЄW)߭S7g\|/g=h:*j+b+ hzrzɡ=~#@Jd8]_BnNgU'g>^ %tld[꿒Q_~eI 0>фvճ53xܓ'T w g3+`VT񽽯@WE(9uN>gW-Cx/EuƷaSX[2OaJW)tT,2)#i~ /l?H3ps5 ̍׌\+͗c/a CpBJҧBl!7Pp $%†N/]X|w"QJhyez % ٢ʹsAKx7 u]du>w a͍#boރ M@[&\14˨DXZY4utcҥD y{  2 Sp0NeAvp:xTM&+̝}ioqnbTX09[: n|keuٞFR㺓Jf`%8l= & >^K|ϑOi{69?suԝ @޿l4b.=Ӗa:Lt &'K֔'q&*]jR\7]ٲ>&XMrn`jg܉ai\KJl_N-7 C[ KCU̱aA|Y+ iV): tVIom`5[?IbH?gؓzE*2:@ 7|X+y@^aA8x& Gig֤T!4B uvz ,Aº _elKqRŮe8|@x)fԷ3'΅-z kґb3mѤ{'?BR%{BFQlJharUO4@:ϸlZyPԎE&D%HMh.4t* ;-FP|K"Up_ H:MAOz_1)5MI91.:2Kaѿv/JC'fwy6s9r-/]XCuYאg 2࿷ohXp5}\zcxlvcmٛl$,xR085;ԩ0;9êi fٹLzJz#uYM Sљ&$rj%7ɗ/Ɓ $>)|<1C sSyu_ګJŧ:\]+i(̜Ivv)Sa7Td[//n9f>`Ht7b=L;nlϏwbtIq,ꋊE#C |KrcOAg7yUKۛc:0 6egf3Zr2X5?@u SW oͅ:.uM 23dA"?a`FpvV}1BsAd6ǣk/F]gX->_cqbf,./nT28 05\Z0h8U:B:Aw]PkxPJٓei:QzQq 29i4_W'52o*nLL ɤQm ޻A)C17ТTɑMRV. !, Mʠ6 n/b_TqJq#|#LyXu?kCbi(r`mOև+74& dVF'~̇Ky֑XV VpmTA͔vsEHP޹!Æru-8W`OWL].!iJIblBagj8*5H[ F Hfvs%n4d[ R ZZGOGndx{K+O+BgLϘq_0:*r 2D#D`ϱQ8:B6JmWJͱA J)7hH0|^Dbp."Qh =j,(^1Pǿ>!¨̴}F\7B&ܭ$]B c\FTk{qV.Gg4#@Vo uPW뎺p)5|9{[*'`HSf,C)Sg\o:sQ`%? ÊNP"2ϖ`}w)h*b֤רQul+MKLCw [QL鸙aJz:/$c֗;xh ݇>Wx6SP9rUA}|Jy^EQC0q$XUu/ (E br&uUΚ}HZMWpJ!JG{.pFKa5wr=fjtbҒ!Ŧc˧#KxjVuB% U;o{ "Q~Ќ~Zg-zWV~ (\[,?m[ļvG-oE#yXC~r5EM y&i}Q FQvV`~Hjڰ5Ի)rO0mUc`qqMHPd֦nc"U g);W2LCB:][?Kq95Cj J`wɾM'oPQXLiŞzkT.nPVʏu:58W$TLDigPjpMfM{R_Q~ ߜF[\y8Eq*@x;RzRmoGu+Gz2g26dpKoS)YSJ 6uWIqp+p@.a~-&$Z> kT<.}uؿXcj/#7z_:ܘo&a JJXMҚRR@|5ujY3 V KIܴ˴k/y,EZw=C/.0D[~CTj0"`EĞ΋E(6d#S^L8UOhQJ4?hU ',vӵ2<ǒC>=Ꮻ='طreVn,,d YՑ?~Db4}L_{mOEṀV8 9a~hEfkVvbkD}[Fi K4, #A0SDjZ+NMLPG]nF2B"3 1yTF)&~E ?G$+bXi3S4 N+"Աij'ԄvhD^-6jVut砟% W2&eox PZ 꿨~t5)ɇx)s~_R47tױ^0tH+YPًk*Z$xaeþٟnHU~гϗ=E TLb\oS95XG*ƫcK+5Jdi,oO`TW=gylJSoP:owQ;)yR"3tb#v[$uVG"GYʭD>. }o#C\YUqR:$Øy!Z& iv~⦿f4/f$?Li)i<}1ts%W(lFq[9!s~_ys7`v1ك#2k0L]gͪ*gaV+(,Npʹj^\oVWhT!V|U2d#tW/:l`]Ɔ P͵:M¡&NOꜼpab4e{J۱7$6byP̚$$~XvWH͵.Iwt\g<9@R7P̠99Xbxa ];vv!O8D枌){?%ˏFP srJGhLnӪEeq0v2/|,ڰ]] ɗ- WquVWס=v'E St*HQsa~4Y,1]uS)R3!13V!W:+s(Yg!CX%=rүkkn T5!~6]<X AC,:!%W>51E,غ!\@0WaR-