nss-util-3.101.0-7.el8_10 > 6 6_6 3!pQp)Tξ7]mtZ`fz ]mtZ`ZʥECNGC[k$۱HBǂH#q @k*b¤OH Ra8k/D03$Hy3!ah/ N(Xɭa B&Sgpp<@?0d   H /5<T ` l    4Lj8(89 :`GH(I@XHY\]^Hbd*e/f2l4tLudv|w$x<yT#,Cnss-util3.101.07.el8_10Network Security Services Utilities LibraryUtilities for Network Security Services and the Softoken modulefWord1-prod-x86build003.svc.aws.rockylinux.org-\KojiRockyMPLv2.0infrastructure@rockylinux.orgUnspecifiedhttp://www.mozilla.org/projects/security/pki/nss/linuxi686"FAAA큤fTfTfTfafTfc43bca6641430b40d8b19cbc6690ba7dc366132ce15bad7dd31ab574cc35aaa03ba20c1a32d1f8102432360b42e932869f7c11c7cdbacf9cac554c422132af47f4../../../../usr/lib/libnssutil3.sorootrootrootrootrootrootrootrootrootrootrootrootnss-3.101.0-7.el8_10.src.rpmlibnssutil3.solibnssutil3.so(NSSUTIL_3.101)libnssutil3.so(NSSUTIL_3.12)libnssutil3.so(NSSUTIL_3.12.3)libnssutil3.so(NSSUTIL_3.12.5)libnssutil3.so(NSSUTIL_3.12.7)libnssutil3.so(NSSUTIL_3.13)libnssutil3.so(NSSUTIL_3.14)libnssutil3.so(NSSUTIL_3.15)libnssutil3.so(NSSUTIL_3.17.1)libnssutil3.so(NSSUTIL_3.21)libnssutil3.so(NSSUTIL_3.24)libnssutil3.so(NSSUTIL_3.25)libnssutil3.so(NSSUTIL_3.31)libnssutil3.so(NSSUTIL_3.33)libnssutil3.so(NSSUTIL_3.38)libnssutil3.so(NSSUTIL_3.39)libnssutil3.so(NSSUTIL_3.59)libnssutil3.so(NSSUTIL_3.82)libnssutil3.so(NSSUTIL_3.90)libnssutil3.so(NSSUTIL_3.94)nss-utilnss-util(x86-32)@@@@@@@@@@@@@     @libc.so.6libc.so.6(GLIBC_2.0)libc.so.6(GLIBC_2.1)libc.so.6(GLIBC_2.1.3)libc.so.6(GLIBC_2.3)libc.so.6(GLIBC_2.3.4)libc.so.6(GLIBC_2.4)libdl.so.2libnspr4.solibplc4.solibplds4.solibpthread.so.0libpthread.so.0(GLIBC_2.0)nsprrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)4.35.0-13.0.4-14.6.0-14.0-15.2-14.14.3fKfxff@fqvf@e@e@epb@e\d˖d\@d\@dxb@b@bγby@bba@blbbb@a@@`E`ݮ@` @`ٹ`̊`9@`Ȗ@`D`r_@_^@___@__"@_"@_"@_!d_@_ L_ _@^^@@^@^ۅ@^4]N@]]߶]e@]M@]µ]L]]^@\F@\Q\\\\\\@\I\I\U@\ `\l@[[[u[#@[[W[O+[M@[ZZw@Z|;Zo Zo Zg#Z ZZZ@Y+@Y{YY@Yn@YV@Y@YyYm@Yg`YJ_Y1S@XX@XX @XXYX@X@XX~@Xx@XoX>@X*X@WW@Wt@W~Wv[@WrfWoWm WbWQq@WPWJWDB@W4p@W@Wo@W@VV޾V޾V@VяVIVɦV@V@V=@V@V@VO @VHsVEV3[V UYU@UU@U@U>Ua@Ug@U[%UUU @T@Ts@TTء@T@TÉ@TT@T@T?@T:m@T"@S@S<@S@S@S @SSSSpShS(5@S@SRy@RJ@R@RR@RSRR@Rm@Rg@RD!R@RRR|Q@Q*@QQ@QKQ@QQW@Qw@Q]k@QNQ9Q7/Q#@QQ @P!@PՠP @PqP@P@PAPXPd@Pd@PPP@PP5@PPnP;a@P(@P H@O;O;O@OiO@O@O}O~OiOYOX@OOdO&@O!@@OO@O@N>@N>@NNܲ@N`NؽNN@NuN;@Np@Nf @NA!@N*NpM@MWMc@MM@M@MMfH@M^_@MZjMS@MQ0@MQ0@MQ0@MQ0@MK@MGMF@M6@M-MM@Ls@LOLLZ@L6LdL@L*@L@LA@LL@L4Lx@Lx@Li(@Lf@L_L_LT@L0L0L K @KsKsKKCKCKCK]KMKLd@KD{@K<@K5K4@K,@K+nK*@K K@K@K@KJݦ@J - 3.101.0-7Bob Relyea - 3.101.0-6Bob Relyea - 3.101.0-3Bob Relyea - 3.101.0-2Bob Relyea - 3.101.0-1Frantisek Krenzelok - 3.90.0-7Bob Relyea - 3.90.0-6Bob Relyea - 3.90.0-5Bob Relyea - 3.90.0-4Bob Relyea - 3.90.0-3.1Bob Relyea - 3.90.0-3Bob Relyea - 3.90.0-2Bob Relyea - 3.90.0-1Bob Relyea - 3.79.0-11Bob Relyea - 3.79.0-10Bob Relyea - 3.79.0-9Bob Relyea - 3.79.0-8Bob Relyea - 3.79.0-7Bob Relyea - 3.79.0-6Bob Relyea - 3.79.0-5Bob Relyea - 3.79.0-4Bob Relyea - 3.79.0-3Bob Relyea - 3.79.0-2Bob Relyea - 3.79.0-1Bob Relyea - 3.67.0-7Bob Relyea - 3.67.0-6Bob Relyea - 3.67.0-5Bob Relyea - 3.67.0-4Bob Relyea - 3.67.0-3Bob Relyea - 3.67.0-2Bob Relyea - 3.67.0-1Bob Relyea - 3.66.0-2Bob Relyea - 3.66.0-1.1Bob Relyea - 3.66.0-1Bob Relyea - 3.53.1-17Bob Relyea - 3.53.1-16Bob Relyea - 3.53.1-15Bob Relyea - 3.53.1-14Bob Relyea - 3.53.1-13Bob Relyea - 3.53.1-12Bob Relyea - 3.53.1-11Bob Relyea - 3.53.1-10Daiki Ueno - 3.53.1-9Daiki Ueno - 3.53.1-8Bob Relyea - 3.53.1-7Daiki Ueno - 3.53.1-6Bob Relyea - 3.53.1-5Bob Relyea - 3.53.1-4Daiki Ueno - 3.53.1-3Daiki Ueno - 3.53.1-2Daiki Ueno - 3.53.1-1Daiki Ueno - 3.53.0-1Bob Relyea - 3.44.0-15Bob Relyea - 3.44.0-14Bob Relyea - 3.44.0-13Daiki Ueno - 3.44.0-12Bob Relyea - 3.44.0-11Daiki Ueno - 3.44.0-10Bob Relyea - 3.44.0-9Bob Relyea - 3.44.0-8Daiki Ueno - 3.44.0-7Daiki Ueno - 3.44.0-6Daiki Ueno - 3.44.0-5Bob Relyea - 3.44.0-4.1Bob Relyea - 3.44.0-4Daiki Ueno - 3.44.0-3Bob Relyea - 3.44.0-2Daiki Ueno - 3.44.0-1Daiki Ueno - 3.41.0-5Bob Relyea - 3.41.0-4Daiki Ueno - 3.41.0-3Daiki Ueno - 3.41.0-2Daiki Ueno - 3.41.0-1Daiki Ueno - 3.39.0-1.5Bob Relyea - 3.39.0-1.4Daiki Ueno - 3.39.0-1.3Daiki Ueno - 3.39.0-1.2Daiki Ueno - 3.39.0-1.1Daiki Ueno - 3.39.0-1.0Daiki Ueno - 3.38.0-1.2Daiki Ueno - 3.38.0-1.1Daiki Ueno - 3.38.0-1.0Kai Engert - 3.36.1-1.2Daiki Ueno - 3.36.1-1.1Daiki Ueno - 3.36.1-1.0Daiki Ueno - 3.36.0-1.0Fedora Release Engineering - 3.35.0-5Kai Engert - 3.35.0-4Kai Engert - 3.35.0-3Daiki Ueno - 3.35.0-2Daiki Ueno - 3.34.0-2Daiki Ueno - 3.33.0-6Kai Engert - 3.33.0-5Kai Engert - 3.33.0-4Kai Engert - 3.33.0-3Daiki Ueno - 3.33.0-2Daiki Ueno - 3.32.1-2Daiki Ueno - 3.32.0-4Kai Engert - 3.32.0-3Daiki Ueno - 3.32.0-2Fedora Release Engineering - 3.31.0-6Fedora Release Engineering - 3.31.0-5Daiki Ueno - 3.31.0-4Daiki Ueno - 3.31.0-3Daiki Ueno - 3.31.0-2Daiki Ueno - 3.30.2-3Daiki Ueno - 3.30.2-2Kai Engert - 3.30.0-3Daiki Ueno - 3.30.0-2Kai Engert - 3.29.1-3Daiki Ueno - 3.29.1-2Daiki Ueno - 3.29.0-3Daiki Ueno - 3.29.0-2Daiki Ueno - 3.28.1-6Daiki Ueno - 3.28.1-5Daiki Ueno - 3.28.1-4Daiki Ueno - 3.28.1-3Daiki Ueno - 3.28.1-2Daiki Ueno - 3.27.2-2Daiki Ueno - 3.27.0-5Kai Engert - 3.27.0-4Daiki Ueno - 3.27.0-3Daiki Ueno - 3.27.0-2Daiki Ueno - 3.26.0-2Elio Maldonado - 3.25.0-6Elio Maldonado - 3.25.0-5Elio Maldonado - 3.25.0-4Elio Maldonado - 3.25.0-3Elio Maldonado - 3.25.0-2Kamil Dudka - 3.24.0-3Elio Maldonado - 3.24.0-2.3Elio Maldonado - 3.24.0-2.2Elio Maldonado - 3.24.0-2.1Elio Maldonado - 3.24.0-2.0Elio Maldonado - 3.23.0-9Elio Maldonado - 3.23.0-8Elio Maldonado - 3.23.0-7Elio Maldonado - 3.23.0-6Elio Maldonado - 3.23.0-5Elio Maldonado - 3.23.0-4Elio Maldonado - 3.23.0-3Elio Maldonado - 3.23.0-2Elio Maldonado - 3.22.2-2Elio Maldonado - 3.22.1-3Elio Maldonado - 3.22.1-1Elio Maldonado - 3.22.0-3Elio Maldonado - 3.22.0-2Fedora Release Engineering - 3.21.0-7Elio Maldonado - 3.21.0-6Michal Toman - 3.21.0-5Elio Maldonado - 3.21.0-4Elio Maldonado - 3.21.0-3Elio Maldonado Batiz - 3.21.1-2Elio Maldonado - 3.20.1-2Elio Maldonado - 3.20.0-6Elio Maldonado - 3.20.0-5Elio Maldonado - 3.20.0-4Elio Maldonado - 3.20.0-3Elio Maldonado - 3.20.0-2Elio Maldonado - 3.19.3-2Elio Maldonado - 3.19.2-3Kai Engert - 3.19.2-2Kai Engert - 3.19.1-2Kai Engert - 3.19.0-2Kai Engert - 3.18.0-2Elio Maldonado - 3.18.0-1Elio Maldonado - 3.17.4-5Till Maas - 3.17.4-4Elio Maldonado - 3.17.4-3Elio Maldonado - 3.17.4-2Elio Maldonado - 3.17.4-1Ville Skyttä - 3.17.3-4Elio Maldonado - 3.17.3-3Elio Maldonado - 3.17.3-2Elio Maldonado - 3.17.3-1Elio Maldonado - 3.17.2-2Elio Maldonado - 3.17.2-1Kai Engert - 3.17.1-1Kevin Fenzi - 3.17.0-2Elio Maldonado - 3.17.0-1Fedora Release Engineering - 3.16.2-4Elio Maldonado - 3.16.2-3Tom Callaway - 3.16.2-2Elio Maldonado - 3.16.2-1Elio Maldonado - 3.16.1-4Fedora Release Engineering - 3.16.1-3Jaromir Capik - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.16.0-1Elio Maldonado - 3.15.5-2Elio Maldonado - 3.15.5-1Elio Maldonado - 3.15.4-5Elio Maldonado - 3.15.4-4Elio Maldonado - 3.15.4-3Peter Robinson 3.15.4-2Elio Maldonado - 3.15.4-1Elio Maldonado - 3.15.3.1-1Elio Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.2-3Elio Maldonado - 3.15.2-2Elio Maldonado - 3.15.2-1Elio Maldonado - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.15-5emaldona - 3.15-4emaldona - 3.15-3Elio Maldonado - 3.15-2Elio Maldonado - 3.15-1Elio Maldonado - 3.15-0.1.beta1.2Elio Maldonado - 3.15-0.1.beta1.1Kai Engert - 3.14.3-12Kai Engert - 3.14.3-10Kai Engert - 3.14.3-9Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.2-2Elio Maldonado - 3.14.2-1Kai Engert - 3.14.1-3Elio Maldonado - 3.14.1-2Elio Maldonado - 3.14.1-1Elio Maldonado - 3.14-12Elio Maldonado - 3.14-11Elio Maldonado - 3.14-10Elio Maldonado - 3.14-9Elio Maldonado - 3.14-8Elio Maldonado - 3.14-7Elio Maldonado - 3.14-6Elio Maldonado - 3.14-5Elio Maldonado - 3.14-4Elio Maldonado - 3.14-3Elio Maldonado - 3.14-2Elio Maldonado - 3.14-1Elio Maldonado - 3.14-0.1.rc.1Kai Engert - 3.13.6-1Elio Maldonado - 3.13.5-8Elio Maldonado - 3.13.5-7Fedora Release Engineering - 3.13.5-6Elio Maldonado - 3.13.5-5Elio Maldonado - 3.13.5-4Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.4-3Elio Maldonado - 3.13.4-2Elio Maldonado - 3.13.4-1Elio Maldonado - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Tom Callaway - 3.13.1-13Elio Maldonado - 3.13.1-12Fedora Release Engineering - 3.13.1-11Elio Maldonado - 3.13.1-11Elio Maldonado - 3.13.1-10elio maldonado - 3.13.1-9Elio Maldonado - 3.13.1-8Elio Maldonado - 3.13.1-7Elio Maldonado - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado Batiz - 3.13.1-4Elio Maldonado - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.13-1Elio Maldonado - 3.13-0.1.rc0.1Elio Maldonado - 3.12.11-3Kai Engert - 3.12.11-2Elio Maldonado - 3.12.11-1Elio Maldonado - 3.12.10-6Michael Schwendt - 3.12.10-5Elio Maldonado - 3.12.10-4Dennis Gilmore - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.10-0.1.beta1Elio Maldonado - 3.12.9-15Elio Maldonado - 3.12.9-14Elio Maldonado - 3.12.9-13Elio Maldonado - 3.12.9-12Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado - 3.12.9-9Fedora Release Engineering - 3.12.9-8Elio Maldonado - 3.12.9-7Christopher Aillon - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.9-0.1.beta2Elio Maldonado - 3.12.8.99.2-1Elio Maldonado - 3.12.8.99.1-1Elio Maldonado - 3.12.8-9Elio Maldonado - 3.12.8-8Elio Maldonado - 3.12.8-7Elio Maldonado - 3.12.8-6Elio Maldonado - 3.12.8-5Elio Maldonado - 3.12.8-4Elio Maldonado - 3.12.8-3Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Elio Maldonado - 3.12.7.99.4-1Elio Maldonado - 3.12.7.99.3-2Elio Maldonado - 3.12.7.99.3-1Elio Maldonado - 3.12.7-3Elio Maldonado - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-12Elio Maldonado - 3.12.6-11Elio Maldonado - 3.12.6-10Elio Maldonado - 3.12.6-9Dennis Gilmore - 3.12.6-8Elio Maldonado - 3.12.6-7Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.13.2Elio Maldonado - 3.12.5-1.13.1Elio Maldonado - 3.12.5-1.13Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.9Elio Maldonado - 3.12.5-2.7Elio Maldonado - 3.12.5-1.6Elio Maldonado - 3.12.5-1.5Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1.1Elio Maldonado - 3.12.5-1Elio Maldonado - 3.12.4-14.1Elio Maldonado - 3.12.4-13.1Elio Maldonado - 3.12.4-13Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - 3.12.3.99.3-30Elio Maldonado - 3.12.3.99.3-29Elio Maldonado - 3.12.3.99.3-28Elio Maldonado - 3.12.3.99.3-27Elio Maldonado - 3.12.3.99.3-26Elio Maldonado - 3.12.3.99.3-25Warren Togami - 3.12.3.99.3-24Elio Maldonado - 3.12.3.99.3-23Elio Maldonado - 3.12.3.99.3-22Elio Maldonado - 3.12.3.99.3-21Elio Maldonado - 3.12.3.99.3-20Elio Maldonado - 3.12.3.99.3-19Elio Maldonado - 3.12.3.99.3-18Elio Maldonado - 3.12.3.99.3-16Dennis Gilmore - 3.12.3.99.3-15Dennis Gilmore - 3.12.3.99.3-14Dennis Gilmore - 3.12.3.99.3-13Dennis Gilmore - 3.12.3.99.3-12Elio Maldonado+emaldona@redhat.com - 3.12.3.99.3-11Elio Maldonado - 3.12.3.99.3-10Dennis Gilmore - 3.12.3.99.3-9Elio Maldonado - 3.12.3.99.3-7.1Fedora Release Engineering - 3.12.3.99.3-7Elio Maldonado - 3.12.3.99.3-6Elio Maldonado - 3.12.3.99.3-5Elio Maldonado - 3.12.3.99.3-4Kai Engert - 3.12.3.99.3-3Kai Engert - 3.12.3.99.3-2Kai Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - 3.12.2.99.3-7Kai Engert - 3.12.2.99.3-6Kai Engert - 3.12.2.99.3-5Kai Engert - 3.12.2.99.3-4Kai Engert - 3.12.2.99.3-3Kai Engert - 3.12.2.99.3-2Kai Engert - 3.12.2.99.3-1Fedora Release Engineering - 3.12.2.0-4Kai Engert - 3.12.2.0-3Dennis Gilmore - 3.12.1.1-4Kai Engert - 3.12.1.1-3Kai Engert - 3.12.1.1-2Kai Engert - 3.12.1.0-2Kai Engert - 3.12.0.3-7Kai Engert - 3.12.0.3-6Kai Engert - 3.12.0.3-3Kai Engert - 3.12.0.3-2Kai Engert - 3.12.0.1-1Jesse Keating - 3.11.99.5-2Kai Engert - 3.11.99.5-1Kai Engert - 3.11.99.4-1Kai Engert - 3.11.99.3-6Kai Engert - 3.11.99.3-5Kai Engert - 3.11.99.3-4Kai Engert - 3.11.99.3-3Kai Engert - 3.11.99.3-2Kai Engert - 3.11.99.3-1Kai Engert - 3.11.99.2b-3Kai Engert - 3.11.99.2b-2Kai Engert - 3.11.99.2-2Kai Engert - 3.11.99.2-1Kai Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- fix cms abi breakage - fix long password issue on pbmac encodings- fix param encoding in pkcs12 pbamac encoding - add support for certificate compression in selfserv and tstclient- Fix missing and inaccurate key length checks - Fix chacha timing issue- Fix MD-5 decode issue in pkcs #12 - turn off policy processing for pkcs12 and smime - update the restore defaults for pkcs12- Rebase to NSS 3.101- Allow for shorter ecdsa signatures by padding them to full length- Fix ecc DER wrapping.- Pick up validated constant time implementations of p256, p384, and p521 from upsream - More Fips indicator changes- FIPS review changes - add PORT_SafeZero to avoid compiler optimizing a way zeroing memory. - update the indicators for this release - allow hashing of longer than int32 values in a single PKCS #11 call.- Fix expired certs in tests - Fix CVE-2023-5388- add indicators for pbkdf2 - add camellia to pkcs12 doc files - fix ems policy bug - disable ech- fix the change log- rebase to NSS 3.90- Fix CVE-2023-0767- Fix QA found failures: - remove extra '+' from sslpolicy.txt file causing test error values - only use GRND_RANDOM if the kernel is in FIPS mode.- FIPS 140-3 changes- Update fips default for pk12util to AES rather than TDES - Fix bug in pkcs12 files with null passwords- Better fix for test regressions- fix nss.spec so it works in a rhel-8.1.0 buildroot- FIPS 140-3 changes - Reject Small RSA keys, 1024 bit keys are marked as FIP OK when verifying, reject signature keys by policy - Allow applications to retrigger selftests on demand.- Fix pkgconfig output- NSR Coverity fix changed selfserv from passive to active, change it back- Fix regressions found in test suites.- Rebase to NSS 3.79 - Set FIPS Module ID - skip attribute verification on attributes with default values - don't export trust objects if they are default trust objects from dbm - add dbtool to nss-tools- Fix CVE 2021 43527- Fix ssl alert issue- Fix issue with reading databases that were updated using unpatched versions of nss- Better fix for the sdb timeout. The issue wasn't a race, it was the sqlite timeout waiting to begin a transaction under heavy thread usage.- Fix sdb race condition- Fix coverity issues- Rebase to NSS 3.67- Restore old pkcs12 defaults.- build nss for older nspr so we can pass gating with the new nspr in the build root- Rebase to NSS 3.66- Fix various corner cases with ike v1 app b support.- Fix the following CVE - CVE-2020-12403 chacha-poly issues - CVE-2020-12400 constant time ECC. - CVE-2020-6829 constant time ECC.- Revert some policy changes the generate ABI runtime issues.- Add support for enable/disable in policy. Now if your policy file has disallow=x enable=y it will act just like our other libraries.- Add OAEP interface so applications can wrap keys with RSA-OAEP rather than RSA-PKCS-1.- fips need to reject small primes even if they are approved - code to autodetect whether or not to use the cache needs to do so in a way that doesn't mess with filesystem negative file caching. - add kdf selftests- Fix issue with upgradedb where upgradedb expects standard to generate dbm databases, not sql databases (default in RHEL8)- Disable dh timing test because it's unreliable on s390- Explicitly enable upgradedb/sharedb test cycles- Disable Delegated Credentials for TLS- Fix attribute decryption issue where the private key components integrity check on private attributes where not being checked.- Update nss-rsa-pkcs1-sigalgs.patch to the upstream version- Include required checks for dh and ecdh key generation in FIPS mode.- Add better checks for dh derive operations in FIPS mode.- Disable NSS_HASH_ALG_SUPPORT as well for MD5 (#1849938) - Adjust for update-crypto-policies packaging change (#1848649) - Fix compilation with -Werror=strict-prototypes (#1843417)- Fix regression in MD5 disablement (#1849938) - Include rsa_pkcs1_* in signature_algorithms extension (#1847945)- Update to NSS 3.53.1- Update to NSS 3.53- Fix swapped CMAC PKCS #11 values. - Fix data alignment crash in CMAC.- Fix coverify scan issue- Fix endian problem in SP-800 108 code.- Install cmac.h required by blapi.h (#1764513) - Fix out-of-bounds write in NSC_EncryptUpdate (#1775913)- Add SP-800 108 Generalized kdf- Check policy against hash algorithms used for ServerKeyExchange (#1730039)- Add CMAC- CKM_NSS_IKE1_APP_B_PRF_DERIVE was missing from the mechanism list, preventing PK11_Derive*() from using it. Add gtests for the PK11_Derive interface for all the CKM_NSS_IKE*_DERIVE mechanism.- Backport fixes from 3.44.1- Add continuous RNG test required by FIPS - fipstest: use CKM_TLS12_MASTER_KEY_DERIVE instead of vendor specific mechanism- Rebuild with the correct build target- rebuild to try to retrigger CI tests- Fix certutil man page - Fix extracting a public key from a private key for dh, ec, and dsa- Disable TLS 1.3 under FIPS mode - Disable RSASSA-PKCS1-v1_5 in TLS 1.3 - Fix post-handshake auth transcript calculation if SSL_ENABLE_SESSION_TICKETS is set - Revert the change to use XDG basedirs (mozilla#818686)- Add ike mechanisms in softokn - Add FIPS checks in softoken- Update to NSS 3.44 - Define NSS_SEED_ONLY_DEV_URANDOM=1 to exclusively use getentropy - Use %autosetup - Clean up manual pages generation - Clean up %check - Remove prelink dependency, which is not available in RHEL-8 - Remove upstreamed patches- Update manual pages to reflect recent changes in commands- Make sure corresponding public keys are created when importing private keys.- Fix the last change - Add --no-reload option to update-crypto-policies to avoid unnecessary restart of daemons- Restore LDFLAGS injection when linking DSO- Update to NSS 3.41 - Consolidate nss-util, nss-softokn, and nss into a single source package- Fix the last commit- Support for IKE/IPsec typical PKIX usage so libreswan can use nss without rejecting certs based on EKU- Backport upstream fixes for rhbz#1649026, rhbz#1608895, rhbz#1644854 - Document PKCS #11 URI - Add warning when adding module with modutil while p11-kit is enabled- Update nss-dsa.patch to not advertise DSA signature algorithm - Update PayPal test certs for testing- Backport "DSA" keyword in crypto-policies- Update to NSS 3.39- Fix LDFLAGS injection when linking DSO- Install crypto-policies configuration file for https://fedoraproject.org/wiki/Changes/NSSLoadP11KitModules - Port enable-fips-when-system-is-in-fips-mode.patch from RHEL-7 - Use %ldconfig_scriptlets - Remove needless use of %defattr, by Jason Tibbitts- Update to NSS 3.38- Backport upstream addition of nss-policy-check utility, rhbz#1428746, includes required fixes for mozbz#1296263 and mozbz#1474875- Switch the default DB type to SQL - Enable SSLKEYLOGFILE- Update to NSS 3.36.1 - Remove nss-3.14.0.0-disble-ocsp-test.patch - Fix partial injection of LDFLAGS - Remove NSS_NO_PKCS11_BYPASS, which is no-op in upstream- Update to NSS 3.36.0 - Add gcc-c++ to BuildRequires (C++ is needed for gtests) - Make test failure detection robuster- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild- Fix a compiler error with gcc 8, mozbz#1434070 - Set NSS_FORCE_FIPS=1 at %build time, and remove from %check.- Stop pulling in nss-pem automatically, packages that need it should depend on it, rhbz#1539401- Update to NSS 3.35.0- Update to NSS 3.34.0- Make sure 32bit nss-pem always be installed with 32bit nss in multlib environment, patch by Kamil Dudka- Fix test script- Update tests to be compatible with default NSS DB changed to sql (the default was changed in the nss-util package).- rhbz#1505487, backport upstream fixes required for rhbz#1496560- Update to NSS 3.33.0- Update to NSS 3.32.1- Update iquote.patch to really prefer in-tree headers over system headers- NSS libnssckbi.so has already been obsoleted by p11-kit-trust, rhbz#1484449- Update to NSS 3.32.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild- Backport mozbz#1381784 to avoid deadlock in dnf- Move signtool to %_libdir/nss/unsupported-tools, for: https://fedoraproject.org/wiki/Changes/NSSSigntoolDeprecation- Rebase to NSS 3.31.0- Enable gtests- Rebase to NSS 3.30.2 - Enable TLS 1.3- Backport upstream mozbz#1328318 to support crypto policy FUTURE.- Rebase to NSS 3.30.0 - Remove upstreamed patches- Backport mozbz#1334976 and mozbz#1336487.- Rebase to NSS 3.29.1- Disable TLS 1.3, following the upstream change- Rebase to NSS 3.29.0 - Suppress -Werror=int-in-bool-context warnings with GCC7- Work around pkgconfig -> pkgconf transition issue (releng#6597)- Disable TLS 1.3 - Add "Conflicts" with packages using older Mozilla codebase, which is not compatible with NSS 3.28.1 - Remove NSS_ECC_MORE_THAN_SUITE_B setting, as it was removed in upstream- Add "Conflicts" with older firefox packages which don't have support for smaller curves added in NSS 3.28.1- Fix incorrect version specification in %nss_{util,softokn}_version, pointed by Elio Maldonado- Rebase to NSS 3.28.1 - Remove upstreamed patch for disabling RSA-PSS - Re-enable TLS 1.3- Rebase to NSS 3.27.2- Revert the previous fix for RSA-PSS and use the upstream fix instead- Disable the use of RSA-PSS with SSL/TLS. #1383809- Disable TLS 1.3 for now, to avoid reported regression with TLS to version intolerant servers- Rebase to NSS 3.27.0 - Remove upstreamed ectest patch- Rebase to NSS 3.26.0 - Update check policy file patch to better match what was upstreamed - Remove conditionally ignore system policy patch as it has been upstreamed - Skip ectest as well as ecperf, which are built as part of nss-softokn - Fix rpmlint error regarding %define usage- Incorporate some changes requested in upstream review and commited upstream (#1157720)- Add support for conditionally ignoring the system policy (#1157720) - Remove unneeded test scripts patches in order to run more tests - Remove unneeded test data modifications from the spec file- Remove obsolete patch and spurious lines from the spec file (#1347336)- Cleanup spec file and patches and add references to bugs filed upstream- Rebase to nss 3.25- decouple nss-pem from the nss package (#1347336)- Apply the patch that was last introduced - Renumber and reorder some of the patches - Resolves: Bug 1342158- Allow application requests to disable SSL v2 to succeed - Resolves: Bug 1342158 - nss-3.24 does no longer support ssl V2, installation of IPA fails because nss init fails- Rebase to NSS 3.24.0 - Restore setting the policy file location - Make ssl tests scripts aware of policy - Ajust tests data expected result for policy- Bootstrap build to rebase to NSS 3.24.0 - Temporarily not setting the policy file location- Change POLICY_FILE to "nss.config"- Change POLICY_FILE to "nss.cfg"- Change the POLICY_PATH to "/etc/crypto-policies/back-ends" - Regenerate the check policy patch with hg to provide more context- Fix typo in the last %changelog entry- Load policy file if /etc/pki/nssdb/policy.cfg exists - Resolves: Bug 1157720 - NSS should enforce the system-wide crypto policy- Remove unused patch rendered obsolete by pem update- Update pem sources to latest from nss-pem upstream - Resolves: Bug 1300652 - [PEM] insufficient input validity checking while loading a private key- Rebase to NSS 3.23- Rebase to NSS 3.22.2- Fix ssl2/exp test disabling to run all the required tests- Rebase to NSS 3.22.1- Update .gitignore as part of updating to nss 3.22- Update to NSS 3.22- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Resolves: Bug 1299040 - Enable ssl_gtests upstream test suite - Remove 'export NSS_DISABLE_GTESTS=1' go ssl_gtests are built - Use %define when specifying the nss_tests to run- Add 64-bit MIPS to multilib arches- Update %{nss_util_version} and %{nss_softokn_version} to 3.21.0 - Resolves: Bug 1284095 - all https fails with sec_error_no_token- Add references to bugs filed upstream- Update to NSS 3.21 - Package listsuites as part of the unsupported tools set - Resolves: Bug 1279912 - nss-3.21 is available - Resolves: Bug 1258425 - Use __isa_bits macro instead of list of 64-bit - Resolves: Bug 1280032 - Package listsuites as part of the nss unsupported tools set- Update to NSS 3.20.1- Enable ECC cipher-suites by default [hrbz#1185708] - Split the enabling patch in two for easier maintenance - Remove unused patches rendered obsolete by prior rebase- Enable ECC cipher-suites by default [hrbz#1185708] - Implement corrections requested in code review- Enable ECC cipher-suites by default [hrbz#1185708]- Fix patches that disable ssl2 and export cipher suites support - Fix libssl patch that disable ssl2 & export cipher suites to not disable RSA_WITH_NULL ciphers - Fix syntax errors in patch to skip ssl2 and export cipher suite tests - Turn ssl2 off by default in the tstclnt tool - Disable ssl stress tests containing TLS RC4 128 with MD5- Update to NSS 3.20- Update to NSS 3.19.3- Create on the fly versions of sslcov.txt and sslstress.txt that disable tests for SSL2 and EXPORT ciphers- Update to NSS 3.19.2- Update to NSS 3.19.1- Update to NSS 3.19- Replace expired test certificates, upstream bug 1151037- Update to nss-3.18.0 - Resolves: Bug 1203689 - nss-3.18 is available- Disable export suites and SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Rebuilt for Fedora 23 Change https://fedoraproject.org/wiki/Changes/Harden_all_packages_with_position-independent_code- Commented out the export NSS_NO_SSL2=1 line to not disable ssl2 - Backing out from disabling ssl2 until the patches are fixed- Disable SSL2 support at build time - Fix syntax errors in various shell scripts - Resolves: Bug 1189952 - Disable SSL2 and the export cipher suites- Update to nss-3.17.4- Own the %{_datadir}/doc/nss-tools dir- Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer - Install pp man page in %{_datadir}/doc/nss-tools/pp.1 - Use %{_mandir} instead of /usr/share/man as more generic- Install pp man page in alternative location - Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer- Update to nss-3.17.3 - Resolves: Bug 1171012 - nss-3.17.3 is available- Resolves: Bug 994599 - Enable TLS 1.2 by default- Update to nss-3.17.2- Update to nss-3.17.1 - Add a mechanism to skip test suite execution during development work- Rebuild for rpm bug 1131960- Update to nss-3.17.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Replace expired PayPal test cert with current one to prevent build failure- fix license handling- Update to nss-3.16.2- Remove unwanted source directories at end of %prep so it truly does it - Skip the cipher suite already run as part of the nss-softokn build- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- Replacing ppc64 and ppc64le with the power64 macro - Related: Bug 1052545 - Trivial change for ppc64le in nss spec- Update to nss-3.16.1 - Update the iquote patch on account of the rebase - Improve error detection in the %section - Resolves: Bug 1094702 - nss-3.16.1 is available- Update to nss-3.16.0 - Cleanup the copying of the tools man pages - Update the iquote.patch on account of the rebase- Restore requiring nss_softokn_version >= 3.15.5- Update to nss-3.15.5 - Temporarily requiring only nss_softokn_version >= 3.15.4 - Fix location of sharedb files and their manpages - Move cert9.db, key4.db, and pkcs11.txt to the main package - Move nss-sysinit manpages tar archives to the main package - Resolves: Bug 1066877 - nss-3.15.5 is available - Resolves: Bug 1067091 - Move sharedb files to the %files section- Revert previous change that moved some sysinit manpages - Restore nss-sysinit manpages tar archives to %files sysinit - Removing spurious wildcard entry was the only change needed- Add explanatory comments for iquote.patch as was done on f20- Update pem sources to latest from nss-pem upstream - Pick up pem fixes verified on RHEL and applied upstream - Fix a problem where same files in two rpms created rpm conflict - Move some nss-sysinit manpages tar archives to the %files the - All man pages are listed by name so there shouldn't be wildcard inclusion - Add support for ppc64le, Resolves: Bug 1052545- ARM tests pass so remove ARM conditional- Update to nss-3.15.4 (hg tag NSS_3_15_4_RTM) - Resolves: Bug 1049229 - nss-3.15.4 is available - Update pem sources to latest from the interim upstream for pem - Remove no longer needed patches - Update pem/rsawrapr.c patch on account of upstream changes to freebl/softoken - Update iquote.patch on account of upstream changes- Update to nss-3.15.3.1 (hg tag NSS_3_15_3_1_RTM) - Resolves: Bug 1040282 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) - Resolves: Bug 1040192 - nss-3.15.3.1 is available- Bump the release tag- Update to NSS_3_15_3_RTM - Resolves: Bug 1031897 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 nss: various flaws - Fix option descriptions for setup-nsssysinit manpage - Fix man page of nss-sysinit wrong path and other flaws - Document email option for certutil manpage - Remove unused patches- Revert one change from last commit to preserve full nss pluggable ecc supprt [1019245]- Use the full sources from upstream - Bug 1019245 - ECDHE in openssl available -> NSS needs too for Firefox/Thunderbird- Update to NSS_3_15_2_RTM - Update iquote.patch on account of modified prototype on cert.h installed by nss-devel- Update pem sources to pick up a patch applied upstream which a faulty merge had missed - The pem module should not require unique file basenames- Update pem sources to the latest from interim upstream- Resolves: rhbz#996639 - Minor bugs in nss man pages - Fix some typos and improve description and see also sections- Cleanup spec file to address most rpmlint errors and warnings - Using double percent symbols to fix macro-in-comment warnings - Ignore unversioned-explicit-provides nss-system-init per spec comments - Ignore invalid-url Source0 as it comes from the git lookaside cache - Ignore invalid-url Source12 as it comes from the git lookaside cache- Add man page for pkcs11.txt configuration file and cert and key databases - Resolves: rhbz#985114 - Provide man pages for the nss configuration files- Fix errors in the man pages - Resolves: rhbz#984106 - Add missing option descriptions to man pages for {cert|cms|crl}util - Resolves: rhbz#982856 - Fix path to script in man page for nss-sysinit- Update to NSS_3_15_1_RTM - Enable the iquote.patch to access newly introduced types- Install man pages for nss-tools and the nss-config and setup-nsssysinit scripts - Resolves: rhbz#606020 - nss security tools lack man pages- Build nss without softoken or util sources in the tree - Resolves: rhbz#689918- Update ssl-cbc-random-iv-by-default.patch- Fix generation of NSS_VMAJOR, NSS_VMINOR, and NSS_VPATCH for nss-config- Update to NSS_3_15_RTM- Fix incorrect path that hid failed test from view - Add ocsp to the test suites to run but ... - Temporarily disable the ocsp stapling tests - Do not treat failed attempts at ssl pkcs11 bypass as fatal errors- Update to NSS_3_15_BETA1 - Update spec file, patches, and helper scripts on account of a shallower source tree- Update expired test certificates (fixed in upstream bug 852781)- Fix incorrect post/postun scripts. Fix broken links in posttrans.- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement.- Update to NSS_3_14_3_RTM - sync up pem rsawrapr.c with softoken upstream changes for nss-3.14.3 - Resolves: rhbz#908257 - CVE-2013-1620 nss: TLS CBC padding timing attack - Resolves: rhbz#896651 - PEM module trashes private keys if login fails - Resolves: rhbz#909775 - specfile support for AArch64 - Resolves: rhbz#910584 - certutil -a does not produce ASCII output- Allow building nss against older system sqlite- Update to NSS_3_14_2_RTM- Update to NSS_3_14_1_WITH_CKBI_1_93_RTM- Require nspr >= 4.9.4 - Fix changelog invalid dates- Update to NSS_3_14_1_RTM- Bug 879978 - Install the nssck.api header template where mod_revocator can access it - Install nssck.api in /usr/includes/nss3/templates- Bug 879978 - Install the nssck.api header template in a place where mod_revocator can access it - Install nssck.api in /usr/includes/nss3- Bug 870864 - Add support in NSS for Secure Boot- Disable bypass code at build time and return failure on attempts to enable at runtime - Bug 806588 - Disable SSL PKCS #11 bypass at build time- Fix pk11wrap locking which fixes 'fedpkg new-sources' and 'fedpkg update' hangs - Bug 872124 - nss-3.14 breaks fedpkg new-sources - Fix should be considered preliminary since the patch may change upon upstream approval- Add a dummy source file for testing /preventing fedpkg breakage - Helps test the fedpkg new-sources and upload commands for breakage by nss updates - Related to Bug 872124 - nss 3.14 breaks fedpkg new-sources- Fix a previous unwanted merge from f18 - Update the SS_SSL_CBC_RANDOM_IV patch to match new sources while - Keeping the patch disabled while we are still in rawhide and - State in comment that patch is needed for both stable and beta branches - Update .gitignore to download only the new sources- Fix the spec file so sechash.h gets installed - Resolves: rhbz#871882 - missing header: sechash.h in nss 3.14- Update the license to MPLv2.0- Use only -f when removing unwanted headers- Add secmodt.h to the headers installed by nss-devel - nss-devel must install secmodt.h which moved from softoken to pk11wrap with nss-3.14- Update to NSS_3_14_RTM- Update to NSS_3_14_RC1 - update nss-589636.patch to apply to httpdserv - turn off ocsp tests for now - remove no longer needed patches - remove headers shipped by nss-util- Update to NSS_3_13_6_RTM- Rebase pem sources to fedora-hosted upstream to pick up two fixes from rhel-6.3 - Resolves: rhbz#847460 - Fix invalid read and free on invalid cert load - Resolves: rhbz#847462 - PEM module may attempt to free uninitialized pointer - Remove unneeded fix gcc 4.7 c++ issue in secmodt.h that actually undoes the upstream fix- Fix pluggable ecc support- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- Fix checkin comment to prevent unwanted expansions of percents- Resolves: Bug 830410 - Missing Requires %{?_isa} - Use Requires: %{name}%{?_isa} = %{version}-%{release} on tools - Drop zlib requires which rpmlint reports as error E: explicit-lib-dependency zlib - Enable sha224 portion of powerup selftest when running test suites - Require nspr 4.9.1- Resolves: rhbz#833529 - revert unwanted change to nss.pc.in- Resolves: rhbz#833529 - Remove unwanted space from the Libs: line on nss.pc.in- Update to NSS_3_13_5_RTM- Resolves: Bug 812423 - nss_Init leaks memory, fix from RHEL 6.3- Resolves: Bug 805723 - Library needs partial RELRO support added - Patch coreconf/Linux.mk as done on RHEL 6.2- Update to NSS_3_13_4_RTM - Update the nss-pem source archive to the latest version - Remove no longer needed patches - Resolves: Bug 806043 - use pem files interchangeably in a single process - Resolves: Bug 806051 - PEM various flaws detected by Coverity - Resolves: Bug 806058 - PEM pem_CreateObject leaks memory given a non-existing file name- Resolves: Bug 805723 - Library needs partial RELRO support added- Cleanup of the spec file - Add references to the upstream bugs - Fix typo in Summary for sysinit- Pick up fixes from RHEL - Resolves: rhbz#800674 - Unable to contact LDAP Server during winsync - Resolves: rhbz#800682 - Qpid AMQP daemon fails to load after nss update - Resolves: rhbz#800676 - NSS workaround for freebl bug that causes openswan to drop connections- Update to NSS_3_13_3_RTM- fix issue with gcc 4.7 in secmodt.h and C++11 user-defined literals- Resolves: Bug 784672 - nss should protect against being called before nss_Init- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- Deactivate a patch currently meant for stable branches only- Resolves: Bug 770682 - nss update breaks pidgin-sipe connectivity - NSS_SSL_CBC_RANDOM_IV set to 0 by default and changed to 1 on user request- Revert to using current nss_softokn_version - Patch to deal with lack of sha224 is no longer needed- Resolves: Bug 754771 - [PEM] an unregistered callback causes a SIGSEGV- Resolves: Bug 750376 - nss 3.13 breaks sssd TLS - Fix how pem is built so that nss-3.13.x works with nss-softokn-3.12.y - Only patch blapitest for the lack of sha224 on system freebl - Completed the patch to make pem link against system freebl- Removed unwanted /usr/include/nss3 in front of the normal cflags include path - Removed unnecessary patch dealing with CERTDB_TERMINAL_RECORD, it's visible- Statically link the pem module against system freebl found in buildroot - Disabling sha224-related powerup selftest until we update softokn - Disable sha224 and pss tests which nss-softokn 3.12.x doesn't support- Rebuild with nss-softokn from 3.12 in the buildroot - Allows the pem module to statically link against 3.12.x freebl - Required for using nss-3.13.x with nss-softokn-3.12.y for a merge inrto rhel git repo - Build will be temprarily placed on buildroot override but not pushed in bodhi- Fix broken dependencies by updating the nss-util and nss-softokn versions- Update to NSS_3_13_1_RTM - Update builtin certs to those from NSSCKBI_1_88_RTM- Update to NSS_3_13_RTM- Update to NSS_3_13_RC0- Fix attempt to free initilized pointer (#717338) - Fix leak on pem_CreateObject when given non-existing file name (#734760) - Fix pem_Initialize to return CKR_CANT_LOCK on multi-treaded calls (#736410)- Update builtins certs to those from NSSCKBI_1_87_RTM- Update to NSS_3_12_11_RTM- Indicate the provenance of stripped source tarball (#688015)- Provide virtual -static package to meet guidelines (#609612).- Enable pluggable ecc support (#712556) - Disable the nssdb write-access-on-read-only-dir tests when user is root (#646045)- make the testsuite non fatal on arm arches- Fix crmf hard-coded maximum size for wrapped private keys (#703656)- Update to NSS_3_12_10_RTM- Update to NSS_3_12_10_BETA1- Implement PEM logging using NSPR's own (#695011)- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Short-term fix for ssl test suites hangs on ipv6 type connections (#539183)- Add a missing requires for pkcs11-devel (#675196)- Run the test suites in the check section (#677809)- Fix cms headers to not use c++ reserved words (#676036) - Reenabling Bug 499444 patches - Fix to swap internal key slot on fips mode switches- Revert patches for 499444 until all c++ reserved words are found and extirpated- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix cms header to not use c++ reserved word (#676036) - Reenable patches for bug 499444- Revert patches for 499444 as they use a C++ reserved word and cause compilation of Firefox to fail- Fix the earlier infinite recursion patch (#499444) - Remove a header that now nss-softokn-freebl-devel ships- Fix infinite recursion when encoding NSS enveloped/digested data (#499444)- Update the cacert trust patch per upstream review requests (#633043)- Fix to honor the user's cert trust preferences (#633043) - Remove obsoleted patch- Update to 3.12.9- Rebuilt according to fedora pre-release package naming guidelines- Update to NSS_3_12_9_BETA2 - Fix libpnsspem crash when cacert dir contains other directories (#642433)- Update to NSS_3_12_9_BETA1- Update pem source tar with fixes for 614532 and 596674 - Remove no longer needed patches- Update PayPalEE.cert test certificate which had expired- Tell rpm not to verify md5, size, and modtime of configurations file- Fix certificates trust order (#643134) - Apply nss-sysinit-userdb-first.patch last- Move triggerpostun -n nss-sysinit script ahead of the other ones (#639248)- Fix invalid %postun scriptlet (#639248)- Replace posttrans sysinit scriptlet with a triggerpostun one (#636787) - Fix and cleanup the setup-nsssysinit.sh script (#636792, #636801)- Add posttrans scriptlet (#636787)- Update to 3.12.8 - Prevent disabling of nss-sysinit on package upgrade (#636787) - Create pkcs11.txt with correct permissions regardless of umask (#636792) - Setup-nsssysinit.sh reports whether nss-sysinit is turned on or off (#636801) - Added provides pkcs11-devel-static to comply with packaging guidelines (#609612)- NSS 3.12.8 RC0- Fix nss-util_version and nss_softokn_version required to be 3.12.7.99.3- NSS 3.12.8 Beta3 - Fix unclosed comment in renegotiate-transitional.patch- Change BuildRequries to available version of nss-util-devel- Define NSS_USE_SYSTEM_SQLITE and remove unneeded patch - Add comments regarding an unversioned provides which triggers rpmlint warning - Build requires nss-softokn-devel >= 3.12.7- Update to 3.12.7- Apply the patches to fix rhbz#614532- Removed pem sourecs as they are in the cache- Add support for PKCS#8 encoded PEM RSA private key files (#614532)- Fix nsssysinit to return userdb ahead of systemdb (#603313)- Require and BuildRequire >= the listed version not =- Require nss-softoken 3.12.6- Fix SIGSEGV within CreateObject (#596674)- Update pem source tar to pick up the following bug fixes: - PEM - Allow collect objects to search through all objects - PEM - Make CopyObject return a new shallow copy - PEM - Fix memory leak in pem_mdCryptoOperationRSAPriv- Update the test cert in the setup phase- Add sed to sysinit requires as setup-nsssysinit.sh requires it (#576071) - Update PayPalEE test cert with unexpired one (#580207)- Fix ns.spec to not require nss-softokn (#575001)- rebuilt with all tests enabled- Using SSL_RENEGOTIATE_TRANSITIONAL as default while on transition period - Disabling ssl tests suites until bug 539183 is resolved- Update to 3.12.6 - Reactivate all tests - Patch tools to validate command line options arguments- Fix curl related regression and general patch code clean up- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- New version of patch to allow root to modify ystem database (#547860)- Temporarily disabling the ssl tests- Fix nsssysinit to allow root to modify the nss system database (#547860)- Fix an error introduced when adapting the patch for rhbz #546211- Remove left over trace statements from nsssysinit patching- Fix a misconstructed patch- Fix nsssysinit to enable apps to use system cert store, patch contributed by David Woodhouse (#546221) - Fix spec so sysinit requires coreutils for post install scriplet (#547067) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387)- Fix nsssysinit to set the default flags on the crypto module (#545779) - Remove redundant header from the pem module- Remove unneeded patch- Retagging to include missing patch- Update to 3.12.5 - Patch to allow ssl/tls clients to interoperate with servers that require renogiation- Retagging- Require nss-softoken of same architecture as nss (#527867) - Merge setup-nsssysinit.sh improvements from F-12 (#527051)- User no longer prompted for a password when listing keys an empty system db (#527048) - Fix setup-nsssysinit to handle more general formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build3.101.0-7.el8_103.101.0-7.el8_10.build-id102e21bd9f85541154d69077c58fe25362ac1004libnssutil3.sonss-utilCOPYING/usr/lib//usr/lib/.build-id//usr/lib/.build-id/10//usr/share/licenses//usr/share/licenses/nss-util/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m32 -march=x86-64 -mtune=generic -mfpmath=sse -mstackrealign -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protectioncpioxz2i686-redhat-linux-gnudirectoryELF 32-bit LSB shared object, Intel 80386, version 1 (SYSV), dynamically linked, BuildID[sha1]=102e21bd9f85541154d69077c58fe25362ac1004, strippedASCII text#PPPPPPPP P P P P PPPPPPPPPR RRRRRRR R RR RRRutf-857dc4d0ba4a87413035d48955d5c0aab98618b02b92c00acbc3a0efc68fe0014?@7zXZ !#,l] b2u jӫ`(y0rLSkܸ6bD Nѱ69ȕԴ(54ZFg©iMCXr`gLzv~4>yh\a4USq.n KU8Q LTQH n:}_P1 v]=xl{>_=%i9jcqB36gSJۑ AT0-.:Iu\YV\|+諾J/-*2[q~֕ #fisO~n^r)KC5nXh}=Rfϔ}iʠS nQhK.Xl,RmZzWq6O-SOap.ΌU$8ӫuviq8 pL"/|j=Wi_|ZPB<'wW [P9e%cqױs @i00*0XN&cNΩLI$,vqcY)eN,=(>#zD:Tc柨TN ?:ږ7O ( ?n +Ef@js~&<dzq*|X[$8r,E}/5B=E']\<TP\v|uIڂtغ-V``rAr]#᜝'49r繦*d&MtAaurF<;RF !+Y_ ^E5Y4 51:~ :Ō9I-n"':_p`1BrYjOl ڳ^ᘈAHpH|F8% u7cZ1 2"_ky,?k{^ZY#t-.gn$+أrƥMC6-d+A BOqO+S3V]sk]w%3i Mր)w^YICV9qJv|W}NX3U$J)Y{gAG{QqG;4sd/ T3;'S$)C>jxO!TftXЦsIslvKq!kBym1oT ueϋ%")*̌Xd*ۆ,i'f'CPggf/H|_5K5#*ioT=ౣ~>gʿ&Ԃ>5GOdV/ Cō e kwnZO嬒 %gY4ulPau:fE["GnTF Ҕ" SCtPF+uK/ >׷/"*'=3>lʩ4g+ dttq}At1r-Ŭ#sI}Qzk}+~t5  t6+|oqco~ ‮H+>O]L9`KP7LS 1j\C!n(\{g[ (@R":Ƶyd赘YOOǞɄ#P/~SOH]'"VBm%t[GYU8G %+z>ڑH&e֪cbN |fUL4H+-D ^ ,VʩKPKpN4}}09 JիjfpNzvu5I/!)k]0I[x-ki+s4@x2nԞaܒÙ&8^WYY!?90L(~[A.&y~͗ȫ[ N- ~04+d\R5e뚼ܶ]hwυɧVC.Z#3@X ,B#2r)ЩN r/X`|f #Įv嫈Pb%ƛ2>R ofSi}wCGu@Kp4$iv$K'M24φ://6E1%N0!aS_yR3PĩL95ïy! {x߅oӫԳ`=^HO|1O`di\N|pe:k8kocd>ig;"cX)r Tl:у`=) qkWlŎ^< p9tLTYͿ[i^v? ፴a?ɬd1ʋXw"Tb|Kǫzn{3kTl-Ltò'Oj( ugkסpԍ@ XГmpv2"y'p1i( XdY/٦[[[5(5˪]Mxeجn Y2>S9Ty ZmNN?BgluLktֻ\- y|U ^e%_nY2typ)&Sj $[kg[>b%ry x qyu kar׊b&TRE)Pyd[3 x M j˚B'#y?(;uNVpOQ3lǘʾd^~;nUԟBgq[%шTꄀݐVScUW6 <$D=dk:E=P >ѩߜx3yf_j3 FݥeirAXɂ'UȐ6gb(tVfEm"%Y+> k&t701) C/_>S X/hÙnuOW LvހŞOc=o3n9>5[: 0w!m,RΕ>0S(9,2r P H̖uu)aoT3!y(kk(oGB4`#VjF3LOȠ>~jd{NsK '& &+toPjЅ?μC-.Wِ6j[?8Z+F]j:8g|"Zf7Lm4>Z> a:NPstwqfU!]CR$1P6>f-7\qTȋ7q(^`lB/=<F}; '@l5 Q~o/'s]na$&4SZ|RXjS)"M3%bJMPXpw96xMŤ,ƭ:b;{̯6I#z}OuQK:bT6ZQt:?\4aiGBbS@m_i 8]q z&@$?OP\/n feIڑ`WK޼A^㲯)i|*!@30Z6@H7b,ۃނNYGDt_Yc~{t @-_dTR̎0Gj2شQ+Zn1Kvy;}<9ceMӒ5}_q_h5i(V@vg"cf_]'M.,FAmwm@ ;4me;^Ĭ݀ǏR 9۵>iS(  $X54V"&G^q 'c@'ʕ`g(_| 'j3,6ܣXTgwLakddeK})(kPSŽy kH ogtpjS8BpbG2c LAmLY F cu4Ql4" fJ.80;vUV^sYDXxpnMH=vz9:AܴnE cnL*y@Hz@iVe' 6Jȶ,e{SzH-SY{*DV M+#T3oKh [w@El]?P?i76>FR_Ph>_ddYr'o{tƧ0ʊ3h~xn=OG >%J>a59"19Ixd#ɈMo]9q-b@>RǴ4dWpq_*mJUV/cU-rOk[ݖ DZ[AW$:IK 4/y0OdPlf6LvNd՚6ZlLٍS[Mt%/r̆5Br̜J~%x#?Ӂ؇i&H7X~0wf-ZxTq{=GC#)Tw-eU׃%ԉCb _dl&gsc]?]q ȼJ@Vi(:%kGkEĢʇ:VoI$X}5>.oQB&?D&'!?jlViSanW<1uP^VEz ύPx8]uet1mNgs;:q|9b.43Й׽yA!.ȓqy4P8J3XK$ ǐDwwwpS0 ?}r6\{|JϱW^[SpnJؖ'5W -`xAl$E ?fjZǷ+ItN{pn>8FN,-s-P۴|2g|$, $SzˊUM?&3u6}ܑKsA7_ES`^F'3&α*x4(6i7ֽKiÍb&̛og9kftKdZ-lƶAs<5=*IY ^fnͥ `}f.ٽmE6 ҼCx[rR\ izOR{Q?#UfY08X3Ƒ4 £f [M.imNP} %4Xw>=TqA40{d,ЀVf{ˡNBj'@tNέUy67PJ uϹ`ˇm *^a3Р۫(!{ 1ۮJS3G̱ 2쵑Ѷ6+@g1y|>ہ02*ݶ`"QB7诠M1BkeAds~:k 1]:Q*M`ϾÑVreGUGϢnzeaWJ3;4x4tч BZonKWD(^tJV=p"Tωd?fRo /ݮs8<3|zBBL@ #*.)tPRBh M vJxȕVc);W]5% r~4z v`8Y?; l[q쉵UM@6~S;6Q޴Qʬ}18 @OIDyx3LuBX~MP$! a=i9 anmC4#{8u@µ4'ux7s@L=ӘhHGoM+'Ƣ[ ֥SlTb@?<s;^ՄMZȴ]zfaX^{g:vv "U8u`?v{ L{jPB)\JvqP[m_ТWt'? aHbZY!npQXiI LFVCGQ7L֢XZvܘ꟭x'QSRo4ZJ c_(:M{Dc^ar 5Uǒ0K]#EE ?.1bBwS  kl4©^vSZR 6E>{_es4ED6eMrQ(aT ( )x?)q[YY]a.6lT@,E[Zp{lPk'%ٽ%>P:@ ʡ$U1'\X'recO .~̤NqgUP9Oh.w#9Ӣ4'\F BzGo%4O^]TL 夵V4_r\<9iMN~65a3栆wP! b=J"‚Btط-{ܦ6Dgm* #WFoJTRAG84⿶7@J,=*F]smgUxvܕ"$[,#:*z0y'+ ^<ϋ EF:ZMh_\װ KjMn>|1yCR_GydP⠖'gNwOš8 _RzZ)䣊05# ]ք؋~Ą@4Ng#Ŏg4@DiL'T,/ofxSdz|#HQqvw34+qGʫ)?_{^Ԅc 6uGiXj 8N'7#,[vЗe]»ո+dT-{gnkRCl'jBUBksMQ\'Iv#){^w+l._Ll (kۍn~`6夎0cW9W_CШ/Cd2vzS_:GT n:>}>`])..tk ZhuAXfYEy417󾉠Ն+N) ^oAMi҆Ձ+p4nGJk V0ʹJ$g&N װ4a<7^)4ԛ<#/Wm9q- 6z΋,Ў~ZE=v.zBHW&}%e(Md3heF3uUXLsZ3k):BSGWHK]fSeh"\ut0 9vy۱Q.'w`C33Ai(:o(*}P9|M݁_-IL,I-?@͋;-rV+=&%6(ܮv8;f:D[+<6<Ƞ4wBT]-*Dz_-a%ŵ rVɰoD-?+lwJT@o5@"CN-DLpw&Pudh  jL B8P@q#l?ȽM$bH9}H@Jΰ(y`D-N `%Vh]7CeMm$_״@}ȭy# _B_rA"wӷb/Xo Z`+>9 hyN [~ެ=ޱ \iB1PIdc2-Jܔo9Ց.GF)kX 1c DK w;hyǧL $+ &{zIŰxNs$;YB[m(zv19qZy[@rGU)Tw/{Icp` ک s#ԙnwy~\G1Di⤌>E\ǯnj=WHOޫxqȒvc^ܖiN_~P'-GMu ୟ#<}ez +<%߮Ķ$ "T{8JPws݌YnQLI%hcI+UMq3U 2&̸2g!Q^.jTPa#. dq4啹L&VĠ-P$|FU <1ދ.F?hl q*<;u㖉zpyj&=I8f?YZUT ř'b?2V,Anfj6%&DvmYV"~́F=@5_ZQ?<&'_pv"h!y)K| w`s?/ $e|} C["Tڞ]qi%44.]we7$r̹:zD**Ǧt GR+p1mJ?))0CtgI=Bi+X֭x=~]:q~]曎R< I[t{G;\X8H~!NW!<bj dr8f qgX'tFN1w)BjRг"&gׯ&qL"G9DQhRp'r!k=4baas$m"UgQ(5BLo`C1g N]]b6RZj;2LʑG`ZlUh?>>9$7xz퉢^{,I@evriȍjO7qj(djYOdtyJ>|) X$J Vo;$W|S͑olB'k@sq4C1pe>YP;nlC;-~{p*EFt ]eu"s-㶬Y =$k`]p]7}GĭK~k7c8--m^#$(:w,'=9a(m4)|mRQS P7|lн<\'LIJgNX_>= Zp9Г2D$ 8J fNuogŕ!y.̭öK4fEa#XFI~^QɭeN/#񫍓}N,%1|VǷͷA0Dޗx+mX*)3\ 5̣|>pRđb.A@fƒyWztX~zRXէCZP#c탵!EδyLk0?RDHmBS 't3o=8BLH#֡~ 2<ͦ 64cm@uPAcUsl6]xFNn ɭU_`>l||Ń59ƍ)]>9{ ;O?SG7PcƔɬ@gS\(W iMHg|eVkuK7V+-`Y@dc*R guQ=rM7/[*eLk}rxʫoE>4GI:öIfߍ7JQ) Pa/\<5B0:]J;6=Hj^ 95[A:t~zT~ 7ub&.2#‘G|z$DUFG\K3fjQmc*ƌ_ $֣2MI˝jΏsB_ٱ.;;"vt{":;Uw AKnlN:Ю͇\$(lxMwW"3.+ e_`S3"h[ҹ,@]d#EpGm'6xZB{EQV)*2-7h̅/G+օ=eq'8.bK% QNo4oYSHnʲ=2 +mK9`P{Rh ]+ t*M4B@Zp у2:?2ZNv6.ŜEIKH/3CZEL(=SG,Q?kGutu ϦkLe7=V; a־b'@rU^&^Y?rc>$sׇm-'_DFWe@ѱKazu[=lUdI[ :ɂi*0u  &hc <|U-exGldMF &g*+wtns>?ŊhJkn /Ds_3$2avi Q2Lg If7ʅv(I=IO. IlTiˇ#ѥ"\mA,!rFqАسt0wCa"GAƓnG*ݜD|5o4I/{i \2r=G٬&-YD I58Jq.9 Kk݀.B xENU;lBB,gS͎\l%`nYc)j%OpccyCGKA=FGPꁁFpVٛUn1W r+KE1/#E9<*u]|K K"P٥١KC4wQ fS=^fjoda9ӿYl7!Z_v=@rVV*NGydvgAgvEQsDrMΫ$dQ5U.[۬?Bl{dj}jd?5lp퉌m(a nőp,vO;ˠS޸Y }*5 ߣ *bth_V T_[ٻM(*K{ȓ:tGb/ [PF 0K]=ξ:( ō ݴ<PO<^ M-8|Wϰ0;5VyvFɵ%{" {X]zWxZ65Y ~;Rp\U:0S `3,«[EdY!ڴvWMTXi9Z[jRltϕl"l8 ITr/&31fzdLһ֤P/& ([쎤>դ+Os3VîӨp@*|mL;Xn7Zn–\gY,y|'/7 R՛ubCƘGRgd:B h sL`;yiYw%#ug^ŃÖRd C.&ݲP.ՎΟ gwXIN6͍? r0/㻎1$?ٙcXKԯRV=InT)q{ךrRqFc"&zϧŏ*؀!HˠtR9m!'8sH33k#M?8'3 ^e۴gC9g*{zfk!m&@td6u [ԩ6<@Q W/+0--A&ePWc$)|7%5N?O4T"kޫYӘܽmO T}ϵEx<^NP!'CX~7fǒ*:s4imB..% ȷ \"(K&9+nko0 {5`XB,8y%麽v6an.Gjqpg{8|ct|%;zo bOyױq-aCUQ>.5" dmC!{f> "0"dݓ%şrC+xvNብ>Ç;idМ\nHmOڿ$ n:=t f.unY?_t+ J|es!o1jTu5r˲Q} |zqDϔ:sV~~1QY$COO[E:$Ib]۠^  ƂVQ]۹AhMbp,Q&i 2\IBF́Nptᷲ=A_1s#һޟQ P$xbH _̄z߃F9V_?meJ^]񍝷&/ZNCB ۞ŏՊ]#(*}@ ¤U_dC T uj_ bGXD)lw% %nJgnց)bq 'ZZeFEmfsZ\D.5hş69 oȯܕw8䃎f禼HG6B,?7d{)0/^!'\&xκ /^"ZV2m&'g_ebns>'z_Oͱzq6k1$YnTK@ͰMbb񉢛`YЭXg"_#{Մߛt蜥6iHƥL$V%۹ Ҹ=Ac=\e Xf5 1M9o\2Nf@58Fs,/Wpz$\A)US ?vY6tXF Bd!}4z="=a9VeaՓL{Uq|L{\ .1wt!]!7v7WONVEY'>To,R<4I*AaT)\&telj zЪY>RlFl~<&wHuqAVfZW6W{{Ĝ"?1泌Wxgti'mt*CwQ"K{Cao@C}kR'>yNq )b}p@-_p|H9y^4w?JXm%76rhIm i~UUruw62g\j%ߣ !{wbdYd#M(bľ7jIZ>'I +Qp"ς?qs(JR\z״wZH!?=1#[g$1{x?v/סbGjAb`4[ z QT*w wC;d!oNRE82@ jtoڗ7w BƀIͩv:(6+qKc ov|Es꾍o1uqNH'ExΰO,vU*~pSN[:z ^z!k%ے_C;^65|4KhC\FP|FHx[=KpCFm }60=:ދBIyP :B\ykŠyHtD֕\8؝⑕굄SשVPaP2~*%Xd`(}} J]q D{٠n\:Y PY36|I|~ k9RwVU#\.sɁnD:73D1 ai&I zqy)ƥ煇r?9dl&&AanxXs(s 1l$CǵNs!+-45{0h>@F>Ģh1 Ʒ"H'"9)pӶ5sxkU\| y*~' O>{{k|ǐBX%TI REc'\p#;֢];#J0z4l9'isZ0Vkm%|ZkwH{fv$B{b\B I Y1Kٱ[aC ʱ1zL+ ɐ!wE;3͗rӣ sLv\N@g<&ޙGKьJυ3vFPS00\0)a=z$ڑSa]$/<.^ʼd@A`;J@^tW.3(o(F7njZdܼenĕ;T+(̟:JۥxC it6evx@}Oj?$ê䓑 5)+Tu+t~L $PL  8fzMuz#ߪ{!XgN~^G5tc36LŦqf$V3d}5 _xj,%-,-T?'P ,=׶0vXОՍM87W{l&ODRبI3ˆvl![y|*Ŀ & Q[1v)8,k |\J+_kx)>զ~ "<Ǿs.- .rՁTܔ[WS+5`쿱9*V{-؎5g znANnGGy M%;KD Z,|Pj@lJ+nڒEom$7/P~ZT "P^?Pq[a[l&܏=AY[X^1^Arx愓7@$N 4)Ow&ɋi#:iX:հ&>X1ANfi0WRoFafqͮ\+m$I5SO$Rlma/iGE)OUM"Z Ǟ?s{륰k zV]]bPQ <2qBXjo) gioRۂLbwj"=;4ŸQAwSs*鲙uF,_ ӊG`f3⹄KR@>rJ3+.{mCq>='3 L;=QڅIխ\[v*k”:j|Wf)_<3-ii+nLsVdNi`\hnw%ZT+R!"pޫx1ixuIؑ&S]hkB+zX}.=,JBFFE:W'ڃ/4ߛ1 cyݻqG@5@M;IgNФRA8N(氪 }P[Z8?X+IH}lguۉ"dYF;mwfC 1:P"q {Q龍I2m0|geBfpZO/MWB[ofߛ/2eXX^L_nKYxŽ$ D'7iC׃nxC|'bmY[D-\Ru] ~vC Zk)_hnDKmZ=oNu?OC3]z4Rjrde*KXxk[T൓]ښ@dd&'+5-5ṿdÓ]܇1ρ y: e +169EZVlﶮlyT=mfZuȹ}A~#O( ą!6d{ơ-ߚaJeor%ɡ f$c'&jLQTt띈b^a贞S2 Ogn&R)6:DBi7WkZŀDvnvAۼ?WӍ)`g|?i&H޻:`&a%C5+ X5:t˧W@Vm!.B4CҹbӸމ!<+6-;VF8i6굙Yf1{V-4J}F1IJQڒ|ۢ68+f9Hۥh EspX>~ Ń0 tE,[-9>(D%aVh`g+ۼ7 D(hS_в~62 SZE~b;Ӊ?aL%Bİ%=HRʿ 6@Wi 0z{>TovΈQu#Gqx ("gι(m:xE{r`LJ*dpl6 -i H䋜O漎4[5>Դ F $HNo  "f(8W?D;_G*S(e[S+K Kvd"jh^P׾%8QzcEkc}J h-P{0Fn8Yd ~ǫacnΗ{)eNíqY+GSb/Lb3^?Dh*&ND'wF}X,)@EPOvɝ =xp@80Wp*F`j'Js 4p\9Zġ`0Ց?{!ߊ3 ILl% 熭Hu5/"hwkG00EU W uke [‡93[Nyax48:&$znPqcpA?X SЬ+DPĜcxr{Fckf9EC#@2P!(<}3N0q3=4DWXR& D?=to49X-C ̂! [i7w tfv*LZNb3ޭ,!iLo8V)4jjM7;VvӽFTo#l*`34;8pޖO*E|LQ]?լ5E Zl %NkҒIh߯o&+(s l rjmO !zPzϞZr\xU <NurP?'!ܗD.v6DqwQU*m{ݐB#~7~F!DE*nޘ< $:X}`,XKQ r$eC8OS械8? e5#?f&[Zp '3S8?A*?y`0/ڵU%=j "@FspC5TvL" :p1{0ވSHj[58eh߷ku_7g;ʚObV@#%յj@QQ4B$q\)0t=@st!d#xg޼^HDqU4KO:nHUZ^v񴯑)^ P2I?z#J`R_'OJҷ Td% 9t#GcSH^%ohRZYocr#0 %ƈEnq&)&iYUdKrMl'SBtqFΒts!" =Wԝuv*Ef! h1Nh2|777y\AjD!|n)n\*Џ?-}]]_ eLeJNȟ:(S9>-mbl1C~>sv%_N!Ȯ!BW T%ɸfJh[a((S19cXf|AL߄ǻ"Oӎ?7Nㄮ̊VSugWESC1L,yS0, {)lh4vO0 #40kȼ. X`rF(uz;2Eno;5 jE됚Tt v@,Լפ/Vąuۿ)֍ʯM 2=i6Gva%\0r<Ϲd q6U rTȑ&!C٩~| U@ {Y (0@,ئ)\ښ@`^Z.сW}rjK`5k}B/sZ87zmxOVyAwb>ΗLꌡ|75ûDgv%-3sGWgON->PCw5T=%c(Wt- 1u.$w|yzsqAmF](m-/VģD4Huk$CʯLP|)6`uhQ*3 Tucu/JOoZgY9׭6Ȅu#S?N^U?-n׼D#koŢI w:I8e^KȀsbbP"OҒjDhN)"§favx5@ *Kz|,ႀLT$raVJ`v?ȰǹPRhx.vԕ9ooղ95J2;fMk4O?nU c%*?Z( 1 $aqɪM 1A^3^x{8Oe/{J _DבV7 K^7&0#)jDQ6ث&ddKYD,ؓW|x&DžcuMYT[սX<ei}٩0le6?xNcc#saY5名(|X:#FAJ#U3'AϋMl- 97SjhÐSEVΕ~8sn6 M6#:Vs֡{ӗg̔۝z;r o$2Xk3^>d ՓN9Ť. eh^5$O=`E> p]hHB9Y~a][K__[[5n3\/撨س_U {-WNCu.(D?.Ug߻Z@PW} nGpHWa([w00cwIx2Nl7}SPxrd!VW;Ohq }THAGߙ.e;,^`xt"g$;~ّ1dS <>sYZ]9o戀thdu\x+9Oj?e10amMXwD.{CᤚL5~mD0EcJj]ڨu543}f9fbo.R{9Oe@N@Go]ck p4L~bلXM7ǀ*T ]C{"O>`Bo'C@ل^2!&=㻤yf6UaՍ3j>;# ?1DYnF}튟.EBjey?>unO-E5e#4BL\"r;Me*Hϸ~IaBi{6\ٮ`dU#%3R)0U3j&2d.N 45EVmS$ɱ31REa\$^DhkFtϙ"5*IĶ:!vSgOz[ `7CP/T0 QK>(K~S(Rm# Kg?)e4)YE5 R6 w:87Ꮏgf9a$*QMn[춳MSý'8w>6!f]5M`ʇbxϢ »d=N'Sxn zȠPzr>MYۑuF/R<3[yFӤe *WGRLj*8:ߓB<{/;6z6LXc˖h \x,HWfPhsۇ陸Тfvդiz / ɨBE&X{E&vH覸QXy7QB݂=e7%Zxz|uS+ )FKu}vTim y W[\|r-]!kn"L&dt{uߣUtDpMl$F ?9;Ao\-fro=X $5StزE\w/is{yENsȦ!=IF[<:{Z)i4+ۈY࿤_b,Sqzcʈ);dN ϫM  P3yܡ}G׋WCV . %Ê ;mԭV);ꩦ30[)7h673cݷ,d*"+u uqV3_rM~8L8M] `S 6fTJ)v^"i3%i~wc^~?gG ech.տf^7H埧OKhٯVbz~ {zeqنyHeTԥG4RXl;] ragѡ5Gy PpO2/_>-@Oꄢও-. ˡ!@~c횢1]fwTј]'lJ Ds$G1IzZ#KoeԀ@f$TQBt#PV6ѡH"sFh͙<ݿx*K"ٵ*KT8m^P66Vċ}WZ GR="d*\2G^-#'mZcQB2zɟiNBHdP2V6˛Zhx#?Ɔ0gC{200Fw hc2C0Tw[@ްW)ܰBg1!~nZ|2svHkm2Z"tnOY岂vmW~f hCRBRAN^%Shs}^N@ x8 w"%|렣9mL/1l9MO]àt jօKtqwyN5n"\ĔI *^bBgs܇r̃Wb̯ϑ(pBW@[I$BHbw{\Y׃qWMK>yRCWL:XD1>\T?7\+ȑRr:?3 4:(j; G^+ a*S F4Yk_Tt4TyMa =(R!(%űE)ooI+#q' IW|?RKȤ/5Uf&5Q=IZ(mS2Ɨǐjηj'k0">$CJĭ.d]ó00GWW99Z gPn#\B%y%!\[1am͏&?6BO qL42҃z@?Qrb]Ќe']aT,pm *s9he9()ew\uq:]~vF a]{Wb7a{ؕ$kϢa%RpƍdkX̐ _poGexb544b'L-qttw?>!jC`Y .0~&y2&.?\ˎb-#8M_$tMh 3ՈIK^X5ȘDD lp{-?\`bMhywT0ngmqօDӥ[ʽ3^}Y_vGٿѯ3(3N9`m.z=y c1q\\%6+ iؾE+ᢏP3U%bM/5_-`D^ 8|)ICj4hrv5fghAG6S|_PSmKD;~ 7vq+zzC#1p:aL:=*fc{(1B#Gg2n|&'RQ~/သ轨ޝtʡYJ]lE"S>+Wi|vqMYz:I7e/n0 H^ MFZV/K޾A@Kj6՟*:gʙ-0EK2N݊\fȆ1êHFJ@*P nFLZ9EȬ>z 2mA:Y1YYռQhxa7w\x]x ˯n4^F5&frܗwSdxұ)F~-4ឩHK7ĸi3iuLe9TX W>u"旷`xLPX,ϑq767D'҉ .Xp "7LdETp*>h6 /N]<LkR0EH+ໆX@)~QPK"cWr0*mH_4v{q A!]Ӎў,!k ykypO~4ſcY߄K ) cW۽59m 9jS4'Wz}&hn0ߌE<6ᅂd{WLf,j;||mD<ӯ-ڟ8 97r/`lY(yaQ4Cz 4±b'4EGبk͋y.%dMNK57@Q xs> l,E1^*ѳ2Q]ncbtt6jGf\"=kIĀ&IE= W\'[WM`n?m_N%+a@.yhEH1ragZN|4Al)?yR#(R:{IsUg!Hu-qQ 1]Nj ;x!\52=HJI)#`x*hJJ&2Znv?Di:tGE'o/KY ]H%x3mn{ꝓ DrS&y;.?:İòf^Fi}j,_p"LIW&( rtg|3Ȉ`kՖ52a i[PǠR] 3kD4Wn Nu|=?#0Д_.&?,G+܆ԷȟB\\fwR0dSgd]$ AOH;e(DdG#,~֎{.3#dAj oTUfqgw`jL͐dZ$<oZ^`M6g֗/W~ۼ$x lD,MR]6zF)\>2i)oa릚HIrzT5SvӜ\$A(Plqeu–+,DKk4'FB2\dlnYYC^ q ݺU³3$^ը@jom]u!1W%= \|r !GEH4#?IC ꭞ0RXSh]&^,+rj!2l,?eDAsXeI[T](2 V/F82[@UTwz4b\2NDh}'e`4[R?Fjs V=: ׹̩# #=!r䩨DUcNeVm ߨ< 3 DylYſJM}+F{[>hP\X*fdkQ7XWF3JnA?6 N^۪l21*7@kƖހOs)Їܛx ҂K87XbF$ o %Bk갘಍4-g-sv£ΓO+3(z`׆x'7[6@kD(3H^j[w/ˎհm2EBa79f-X%P'OT,b#xZ` ͓Y՜De: / V&yioNUQPP|fa[;-r'=/(ravcM SLZMkƙD:4 PKP`G 0$G&K~1GiQ(B:_5%hwؐE'+JD#t)Pٮ77]B0/12K/({s^n^־bs + l MT]Mszά<yCKRjB8|3l& y% |RQ)ɓn-bbzrhbp"w6:Vлۛ<<5R '**bP)D 93H'qUo }͇5p?|훭Y,b5}c{+y[\DJә}4$ZYBXU rrn':nn'$b{YݠYzT7\`S𸤣8 P.+YwGie]ul Ou>u ^~ڹVIPCWs"joYOYGʱ`wʐg~i\SI9WBei$ EqF㏻eϽ疿y}RI4 @)br)=Y*f"yN#ch.Y}x9!F‰~Ss^s !cKߏ3_$Sx^IHV#H?/މN{Ϡ``P~Aet`k>ր/4.~:{Vzvp\ŠN1ʡC"&aBzG= #ۆ>FM*? / |+^8ȚVkc]L1Vw {`]廕 oK IaE3aEh1히s]7Sǣ KHJ|XLnw㏟14g:Du5iWͻէ!Ifj-0^7J׮xbW {^CG=V^̙6WY925p Q}ҡBl놰#tgRl2 9X{y B*cD­g|z 6%?;sZiH;W?ƴNlL̊ 8BYM̕i_xB3tu&݀2Ygӝ^ܖ9/׆BQWb8Uh]l׉>-v^!®DXBLIfe:T8%QC;HNשC"Am,h5u0\DwG^9?[ιpry`԰#Ƌ01|a0@2~ؖ3Ru핲*sbͩe?nvy-/sôh ޝy`9&/y7XN sA!!K -MS=/[k{' צ ]ͯwȡҿkXܑYw;ӀeKO%>/O#y׷Kw\_?kHyTƎ߂EF uc* Wc.`?,S~X)?FT舸P_W8@(׌#8GvVD>edƢUxw)o]*TfP St 8+;K#hXѴCb!6i:1[~F6B%N옭-NJcw " zHH}Zx/VÖ~p>(MA@wIk>:\U a PfjqlWwhGlԹ#?"͘9 rHI2 Է7ei%~򗷍[8pb)~;;q8 6ޒA,3 gsn^XP(nDw* 97LD0YН="wHG94FtGi!]B. wey{ :C\lD6mL&*&3"?r~n("^ΓcxgM-UyP fM<.f^q̧{JŪ;Чs)71=hP,l=3~ Tg`EQmrmqQϙ"ot&#'5=TpknxfT"cY!^]Z *Z]'NAX6mIGݍ&QI\Q XĤvmW[:&A W?DPحE}h0M J(Bz3l5I4@VE$SAS R)wb cu'O1tR-a^E+M~IaM9Uĭ`ۨ$dUoFrFŊE襥-Z'@u<8qеBAR.vX!x%A6堁;a& Rٖ֨-w}V5n#,6%#bXs/gYx&D(a+FJZpRownv"i7ر 穗M}`ÀC.2iuVM|F;:iY9V Ik[`Ɏʱ%:\'dXD`e,ވaz`PUnKUv{ֹ2q5QnDnO<<{=F桝"N!º-?"4WR[KLhَ~l`ȣ?Ɇ&Wv[r O:ijI1hTz80d}=h=}g`Yn(@Nfͺ ^2.mzXԲ;+~6" e]yDg1RUZ (b| K VÊtߕ]RcT}sV%X%vyƬi&Aӗ'gc,3&>$ȇ6Oʭ‚w}]^Q(hkjPOW麢Di@ng쎉VA˙-aV4*wIR&IkOQf% 񯞔 C,sK|w2 nRB޶cS5O-uKO&O'`"kB9]"Uz .cʛ,ۉv .ZQDp d[C(#Ië2հGQ():#>(ŠH Tp݇ q8J7 .1X(Lu?O!èK bcJ0|W}SꂤsΰloDbE ݽPJJ4aE\(a즯6!]N'z"Z  nعDK Hw4upd:.ɹ @R[g&Zw4Q @!y&A ={HZm#ΙtAG"R烗5QXՆUlWDa)Z c|}-7j\㼥[ _@r_H6 0nu{x$msVշұ$oEEY'cY[)- 6٧ÐBxi·z'9O}&HyfX ~՝ X[z(룢 ΄P ?K #2&4\7#`|~e7wڳv1dsEh%\ @q#dzIP_:WHۆ) E -I^055hi38, T*+jxX$eLB,W\.9|2d'Ӻ5hc]g9dxxU3qtK6CHFozOM`U5В /&K& v#P߻GVإ .# ֓+~{P5$9ђ)Fs"z|,j$,v%T7M!^G` B\(?Pe3&;^;6#S-n>v:#)\ƄܩVDs3pPzwyl\K([zR14 T^VhPm8c0) $B&~L);#?~QpSI)=3Wpu@ mD-%dNx *kgap-= F@Z<y.j;$HCxΊĞUm|Wci7Po`()`s+ +gg׹eg^|=~үɗЦ:ɴ52HP fKaC `aǨ᧱|Cm/(te^9n5lob' eזN8)k`q#E!5ι+پ\WmcUZn oFIQaMeۑ=N V4J&k>sz /c{n -RƝ;py vN.ERܸrs6c#%(<|JQIy1| \ΚH}}2Ro{¿O* Oɇ.y֙ϕŖ|e `'tV%GQN%/3 ϛ޼To"@>\$`{]X@zI?"HSq +|7m"l$3$=lRꂮ;›YC[+Z4=`͏cosׂ9ObO 1Ͻ5}W)y7EMosH{ I&Ͱ-jEkȠ41'[1 a[v iL6! z٠{aɣP! JlBM+nd [ǴSY}11$o:Aт :﹯TPzϊy" 4PAģej~Th&- 5{tRh9ԁ&:!Zc敉 k , l9"Bj↑C e6.U\PRu7VϏ/9 ꘮o]~I#2@\Ҷը]ՄWTy%%<)w>oBcGlN ,Ln^csϭ mkTt@3䱏IHDZ5>i)Mg5KTbt`T{Y5Nk:R@._p=s1F;%<)I5 @s\ 4aouInJ&Y=4dę"e+ZϷDy!msj4VXB4f ]d5cD;# /{.w#*LwMV?():?hD=}1u`jF`NYBA}GRmpMhB8syN@b+șdj3[t ,:?d$|4'#q@{qQ)~ E+fY4`L>s[9^ k)r/jq -zqwk¥Z9gێ7,2?~B7\<ao!aqmxR,x`yE's$$N& #v(ӌFJ nᆾD ϳψ6Jfd?Mg9~pEFXk$6 -{Ъfpſϥ`%u~UŧZ`wכijjuzFf#yN ZY8ptJ!q!sehh *'b}vĩW_ e ~&>(j֠&] $EX/aLfMpRdj2f wre#LԻ՝h|kL0Zg c'?5|o] %!1#buXo蘍(LEZX7\03NWhL_^V^m 0NUwZkF#K@6O| aweQ\c1\0 <6LLD[sSE _~/١П#ꤺol62Ya)Xb8VŠNW vM)0Mz rXket*Hnzh+,zk+I.ȵ? jk Z&%:e l)ч%,xD"wBp`٨3Y?Zy{4u1"V- XQbeσ2 -GD.tA!_N Hm ݘC2CFdZ&] 8pI |F,ȮѨ/Uj#fm\Kr?p(v+`CBp3;曭Ħk>G]N.F(o~H 4Ѷ}U$8aN3_Yl"#×xmKǏKH}DL~ԠHwgoa3UYvH# o87@M)tTJG!8wOkAւ0{k+#uB'~*z $czyGŋ  T2zL,H|jp불rns =ԺLjR>-թb'ר ۺHLSG3z@flƩ?W2>饕LY69r{Sb֨ruzsҌQ1:Yb5Ԗod#NnY20ܟIМ NH@jm? BRG$i`o:se$hC#x J_ KP2^;PŘn i a-ƼAL\)lur6Gt}:إô;NCzԀ#3cm `ޠl7lY(]Sl9n<}|78~3eR1{o8n/XhhS|FtH:@5xZl~:G|?6eGldD) M-5ǨfM`MzD*MqI aB/xW4Y~v$M 6Õ爌Ԟ5D-D0Hj** ^8$t*>)L0[0<>*t|*B ( L=z#xEҚ$-y>ȽPO4 r? ':,|>PʢlGiE__^I۸8>vr9ώ1LOYjA9٦,>8`@mrQtYʊ*iMD?' LMdERv=.}A q =JRhkkS?)͒Y҅z(Nfݔ"ƠrA }wSJQ;r eQ+zK訖^@-sC0% #'H]_}~N *XUAMa"0p#VeG_%e8p`ovN&f;e9Nez ,D yX 8]X6Zz*x:Ħ5!݂ TBPy @FbB,U&~E~ ij }IM!ѲJ0cgxA搠 ߹My~!R?7sNQ ZF;^*Q&'~2l]&ƐQU䴮 ofg^XZDzTq/J 2Cʕj]krW ;e/ތf`O۰;q=Sqg] 12ex۶6+|ZC_#͒rfD *#ƓQfҔ݇K035oiX)3AB΍(S˱9Id,UBQ{덊"7f1 $c>kW Soi }5o= K(&}t6L?x(y"0T0~c FOc @ߵyĖѴ0>~̣[wv-ȇؙLhZ8贄anjL)MbHت648ڽw /X!*5r=e [=,݇@'(>5q,^BbqDXr ؐaG>)̋recªŽjŒ1h6C+7Qz̪NG|XѰ[vJ"WJ;5.~\ ȵTyJr&R &I`\LN|o| /܎M]|:O([=Lm0%~ λ q#V,X-$rۢ'5Im02OB0oyH'"plirW#i@ zKm&} "|K -,<MQ$`Bv^$D{q1]n:1⋁ kMh+0lM!7ܱ>靖#bu?&3(ﻪws-AxQ~)J!A { Mndݕ"sIJc 0s-gHj-Z?]YTmt3zV=ï'у0?NK|[&Xp3;PO6JHZ7-aU9IeŴ[.[RŌb|/w6f]YܟpM]{*I **7#^AIb 7(35E舚]!-/c*sftC#ڢ,dkG;zMDh K&J'[\#(PS@B6dUDt[I`\U7֖ OغR3X $Ot=h;?Q_߈u/\K.x2}6⻳}͐,Ea N4X "y5/ ?ZAԪdD;e#vEp<%vaj(GC0ImxrYʨ$Rqw9 jz1Ro*vsFUTW02cp&)xziMT#g8&h3~Գp#T~۪YZe=A+qT頑YKZ}BB2,JH*Ws[l3 FdeCaQ=7Wit˝zfdqzaAMu"Ω?Ƌ>+}*|2<`<N{%%Bb> _]$kh}olw#1/ŏ2xHHD)rbߗZ1c+'0ޘypX#݋h}]y+(kpz ?SF-]rl++)/AgңSg"%HkK!o"$~~@0qO(EzNx`pL;YkZA.hXw䂜6ǵcW}:LJ:"hdrm5lR%j\t.P_KX.M6AV"Yĥ!(Tfoj-Up#̔L?mc[WGYԞ=$TSވb;6i}F/r[qC=8I$ Pz|%ͭݢ½'kh`xsASM*[:Q5GuA.3E]M3wUJ4l=4NH~"e׹# ~7V\{8wɳ o߸@[dD=T)Q.XDZzYi 9MXE#'Ɓt[6oطΈ TMV'iQcˆ@AXL|D aj{j$P@"ˣLx#Jy1q(uprӵL}L̴=oR gǙ*%z1Ys\e+1i6ʮm"뗥^t_$Kß[B#NWrkR.A$ٷұ4j$xhڱS0,kmjOU["e{luVk+I}rk )S`0&ufBE 1q)j~Igau*`d$ "4(lt9o^1y2cmh o+- ;)8c--&DUKnsv9)sOٳv=X"H!f}Crzt)ؿPjrtXl۵I:muqt;J|$Ъ'd`E1L&y5s@t76F]N9Ff\JQJU=Fp퇹Xr{EnDD@>nQ)$)cC2 W QL:o/JBEorrsƪ3\il_?e?ڵ z]F[U;}׿ȡ8\So\7ANzyG9?y[0s!CdB(t%j^KPZ:L@vjZdyq/1ci% S>bҩߩT[c(>-!w-sT+5}1J_oTU!qjI_p[1$€8bXJ(n ]ljb4 z i#FҔEI;ghnt/^$@/ĝ~Z偮lK'nչ5Q9^<#!F:Ho}>4̿k2x(A%`Dơ\x?"ghZEȔNû!xVCoWOCcЃmp)f`*Zqehg0. "%>3im ql ~θ%:/cMH( oS-o3F~Al*&}a)>IUE=6?&D1M20+?zpZY2n$zD.,/ Yܠ,"^-*$@RA-hCbsCU Jᳯty #(-fzFD6X =dm3<+l\h*ŦNE՜ "o]pGC*ŷOQVj/HPޱfPz J:Y/cp^ yF*hB/JBk/i.e{v|us$φV ~q_H?gjn,WM ׂRFcz;]$,LOQ~ :c}qziHF cJҀ½e*f4#9训nzQNi,vRtKHu/ $`ݤ =պC3(|^Sl c/̨~2  (t"KE ci +BtR/9D%b;N0d<Y/\F$`D 츑㝇1S&}K| oh[ {@`ǖ(,pEfR[^qė5O/Vzu' ˛x /bFI^Mv7n fiWC( ؼ;Q|\2eٕ M6xzq&7$7]SQsZÞ'DO+T:˄JJfEzq;CS_dV"zLuIۣ7jP*^kƣZDz'qzՄ0~ٚ9Z1D93n_8HK_SZ#E /p ٗDl pB"} u̠<}H|{d+ B[#TiG!R% pz7"4{, |"EB_ձLؠxS~xL{Kabr)|5/?QY]̎Bgw*?Ui3#yYHg,;g>UnZ3D *lkLÉj5KUM{ak'-!e˧6c qw0"SPkgB#6"y9Wg dc♦#,mFx䝝o+,g}pUː:'=_f 5\ p}o2Fxo}&l''IЮN:`1"Pa A(\A| lP&1xr^/;(0Pw Yc ~M[!:o/h Am.p惴IA o{Om18t`9_RЋqBSBOIҀ~=X!@.B6_eOc@֭gq?›JM?b^ -vdpO:`z)r>Yy  sml ZJ=FKDƿe͸=`h-$|)x)3XJL0 _=^ﶺ r:z0b3㑧污{2h&6][R}L@q ɜ,h8bbCϗ.T ~"O;Mqls&3HfFtvBJ k w%8Zr=.4GCQ1.7@qYK l~2,^yQr>OtYXI{zwvIP/nJ( t3⑂M6'(Ʌh%ŀfr]bma$*|=ҁn#Ox!mqw~&[kjq5W4>{DCl 8}ȬFoDQq(o2Fedr?ȿ" G-ѴvlEuN^wڼHqozXH&A< Ggg/Um,-t{Y};38绥\lʱgYZTҌ{de*(Iy+qW]Ĕhv㏤zh;PTW{%?I]"(UJøtg]rm]al)-O1DQ z׉^kL~yd=$UOL inj$iqm&C7zҁpqՓ)#W-C̏_1BN&oTszp8Aص"PNpEv+Әr=ְw?כ*P}0 8CDmg>{^ޭ3sV$&Ds>dyꕷIg#8L_UƹIN5p (=A !NAߊB U \EB B.tSSi\>+%T9c;R'{q. -U2wE*g {fT\HSH\<7BNcW hVVQ(s3bk7 Ma3i>5!m&LJp}d)Qp QnPN ^.pT+htmQ6CEEHiPtj=PzfJ1q}TÅ ˟yB1aQٗg(7P^C +2S#e%S Hv-ЄnpU?6`Em"!DCHOX6"5#9k6ͮj'- mx¦'fxѻtC؄?f N~UG &`mDNO#=&DCf  J}4kfXQa$ҶsoDTcS qn"C~h>N>.g[ mcQv ~ae:|+|=M+MhaH\"c~Z䆈MST(\cx |1 jYt2!gxy7] |jZ%m)1nBUa}8.ȵHahlؔ)ob:6 Q>uS04yrC '+T}jګ͔4ZOipCm=B<6^7J B󧾈ڡ5@TÛCAIڨ*enNC"]u8ℴ3[Lr)VPB[SPpwAߦ((uH26ɦkGϾv_qEvN?ݭNRnf%!oϵiN~X*fE,ʱ׌ëK{"FcGFRZW ĈRE1Hb$VޟڬAk^jV9Z)iEL7Y6EN^Ehd&`֏010N 4=졺 F wN#qo U""Й &)vxuWXf# ̱ل$D/jAlb8}gVՕ4!}<@d߮VAHg=%GDVPԌD7epŭ[9DT- D~'8@,2VkѴi×JWfO<ٶUA|zJ˒j-h"etpXU R*tHo6yRE\x )clȺIpl ٢Aeї ;:H '򖜆mͮT4t.B΁2vf l,HI&?@,ƶ*ڏEDt@0ui!)j.Od֡w&GQ"T!Qᏽ dg"B}[<3rpwzig, a@ KC>`dʲ U~`@Llj%1U%񯧑nΕ==̓ !E5WmթiN w(V%DUA];J}>Ә^(M8I]AW6Tt0.m{٥0͡]oҨLlkP3pBHIxN`.[k&;Pt ћ)0y@ MOrbJ}44hWqXo鱶*W+[N Uh2drS{P rח"eadg\,~.aNceY OFbD#@$}>k"3hڠEg@hC4@m #D,:ψ:dVtNTװ) jҒ8K;yW0d7H΍5?#UY"GnSi\nTi5*Zo"YCd &Ӟ{tcVybm;t.>RꈚԼv &oj y&vr}!.ώE2!O6jp8rKns_yK /5\r"hߒrb:x a]ak>;va|,S|dƌ%[R"^1ŗ" CK;#M9]oԀbrIiR>N/N@qܚb?~ bA}3L$>'[}bfzTFnl'X^4ŅyĈ`1^rxC޿X~9 dNCEeH `$kwB/WWLK! [yYމӿW'g>ze;E1ӣ1[/,pO$7 u}RQnoe;Y,{>1.C&k|&S\n) ^Vt¢ G޼Bb):`UJD粩}SvK|JTa yٕ]іᲧ,wjiTcz!xN$9e0bW`BJjNWo54Ac%=9z/?NX yוe =S}{CuN@v1b$.fnMa$' ds/fC(:p!sUeAw|ل-!" ӦDMY'XeaLB( 2R'+}hɦq+W7 ~7(E-vͱԄ+ |chPG:n1Ha/L+Os.IO'YDEYLOw:PGSU ;.^z4QH GGW'5}Rdž+icլ îxZdLrU lQԳ4=+.m|ơr~f mD{c$%hpّh-JYZ씲7fGd4@\*B ds$B=C[.2;%~R~j%1=逊iXTQuQ k| (('fyPMŜ,2%ƱO25N>u ebq)^D)XuCj^|VΎ~ =g]խt5?4ȒQ*l#4~amQ' PY?Ƅo Ȝ!;Z<2<࠯=K+鐡?q.n6iV̹Eh%R?`D)=Cۛ.lq4fD2&B82~~`o>̂t<"YB?y}e {mFduÍ 0h /8v>w +Dm$6um)n^ͷWoZJؙFh2m4`l\dP+mw+\[WĽi#s5Pae02 &%ANOOƎwe )mr$C۰Cē&"ߘʮaMa Ziv&m OD`|5U" l r*8| ob9L8gr#9`l )ET@m 3 L62`^P/g3FT[㪜: M9Jd8X[9?ctInYeWaz,:'smnM8۫ALĞQ5P}=Zaa+#~Glvr>U`B&)dޕhĄ#gMd@%6eKsjy3(7-Rs& uw!'' ~H}3.< mZ-J|1y4(4FH M'Xq 5{RP*zC%lKa}|NO*UOd,ł!d<aS}ݭ+4y@y;7`9j0Tm6Huֶ4JFfdluRw,QUHֿo>#y,D/32fDwXtpI{|5^S'i¬?ΪGzaB mQz!+1;/`i4ZLIMյafZZzg)JpOѫ֬"}XZkc-uD5s/(!cjnH+XIF2Qgf5Vߺ^wˁмybD@w &V|Fގrty򒣊A$LtY* I6QS-K.,Q +X#=ȴ6}ĭ1QkeD[dU4 u~$ʇ)!uUdyaWHmAv?5e[9, 3.^顏t{`ca,&)bIޭП`&Ըi]aKKPGl +B4/80E?SpjNx/n#*|esb`l{UDsl4~+u{T{j:P>FW`T1b5 cYO*NkEeK!,׼MHr# UeeTnٺǪNjR*Hr#5 $6W]KKu1uvI-Ng lx9yR# Fމʛj!7\>D:/{O֨ D_=`M3ŔYu)FmDNUhpZ*;"/qGdm7#8 i)aa:lNrXki2NOd!@/1kpEj;~|~KZ (6/ʺX?1R;=6; n;T`8[]-3ĝjP}b8O.爯mb!xXqɘ7+ם}\Ӏ?m\n?*57?C̯(YTaT )<ocHt$u^2FEN#ZStKW" .uVP2O!*OE{>sz,pbzM.'o({Xnh`(3W^z!`2n<.$^qLf,&<  R[Mi "6I4&SRE7ݢ!o?0B`Q̍-ijği(#} O 8J;oI/^Lbl8 . AVG8Y${Je#15asfUFZn1n]mNS^wo's>\B6X_'xIۺTӞܶ桷.%50FӼ "C;I1B(G?պDR06 G sd?΄M+zE= J8/^~&Wæ? >D}`#Dڃ-䞈=:+ӄzy.3\w,P+:}ۀt8I5=whmFA,"(:ae3M' #ʄ q-⭿w"DU>\YK>9"V(~Pl¹K7[]!t G9-?Aڏc8f]sdz#&'%e[d78P67O0:(^;o?hQjMj6+^1 DS2 $F2+oޟYDٴU$Dg"*ݵfv/7#y?>K`)'&ʗY1#,_cz-yF0ІG7YjI*x[CPgr hR(;5;'uB12tGG>߿ƌbΆ+Zj }cS!npVl=>W:%>J`,Gdn1>dubBD4' QsUo!o^WR^nk:e: '=m.p]p. v `usCn,iD6(-2`퓲1=%U:u8XNP%?pV]0dE .sYeQc!T`~d/hqMGZeqܝ* +8rtC5숉}=}zUb(F"IN(xPkQۋLyҴu-\-=&B~`>RXR౺ٿ]+Tq66osCX&  S Z/ֵ]P88O8&06|/*T[$1ψY)Ɂ~H3`Fk0~3-@=fluǙfQ&qmEQ)#'WV@9! RNGY8̪9G_B3!HDŽK)N=`Ҏ%H82ֆ5蒜3sCfRKL7Bi5]/`KR_.zLuyB)sQ~ͩ7n 7({bmO.ҲD/^UKqW{@sC5;!Ut;i~m&j l_!ӡcr݆ӛpK)$]H`i7_vP&scmŗP4cñ͆qCð#s˾sB@Mx:JIWC 7ٞ9Am9~!2DܺG8U+[ Q `Ue{{fPPNhYL<^+JqqjiYTnφ|4(5IJȾD MR\tVɸ?tϿnf8j#3#KJ]VS88ydژGmÄJة Q5ߨX죻1a.fu:kz7$(xP`# r\A-Ǯahӭ65 9"R_:XaZn{0{Y_KPs`8JQRG]fTV y0;jqci:eOؓy&Rl\6AkX`@QN~tۯHuSg'(vc0RkH zqcI9̄1n?yE5 eG< ;s #ʊX) Tf eTxqt;9&hBLf ]9[6"gӈ)ӹ fեsī~B+?bRJE|u8\|&vanzaRk:{A.'G}8%~ l@)"|^NYClᠫr: ?DW?b=5UNKn:`dY|t"C~s&(L9ǵ)%K?ոHP 8[esdeG/|upRBɫrǬ4=/)o#FGqАݠL:` EV=['Źu$l G|n*3>ݬ[r@B*fӶ qIW޻:cp_yyg4c\}Ӣ_1bSK5d~L:w@kI= Eɖ jyC8J!nDWC`]lxTKPp1*Rp%ʎ!B '˦SZa5 xy/3UJރc" SHi5SӒczZN#_ l;aj?g #Oym]r2im!PvX!mTlw8ގB"N05GP0zNFg8YT_t1OXWc},jJLbhceh1!gWlxZ퇓mNZgmU\%b;$Eߜ0{l#I!G|^8/&zVAlMS\ek8ߧIӛ_;VyJ*abe"2yFo=͘>_E1՜bqTI赗\t0km=FoSyƷwz:0yU 'V>j=aL4HJ] 3 ^} _c+2zP&9^"E-j[63 qi@D ܘb@e>u"Xr_w(ufW m֓@|h=auTCʚ7߰Yn|Ţ,P HԻ6LԒf쟎/\SgҨ3ۖ 3DYeVB sAw֊@ZnjiN%J|JԠMH-<檳ea }+[fv@"xkwzb˻$i2,ӼEuK#﵊iUmrG j'v~٠ heC4o&BNc~>25^| Y YTwU8{q9AW {Ư[ NYL'팁AM x_m`u5.귎HmVXƥʊohvEf.LrVLFUO0Iv:B4F:>!kk6VvY1X)Y-܏e"yW V_sVf*I-cO͚|-[v/7pn>eh|DWyN鼊ۏZSXLghlZyQį.Q%0)? uG$e](P5/җKP`oeϔcEFP*4P.+r!Xl* $<~ٚX!9 iܗ؜|[{=7P7_ΓiPyFs>! tNLGQav؈f|G/rMiL@W?Ƥ^KOu'2y2\ކQã %YE1z,!R+Y9ݚ1N!>,s-c$$ĕ zv"Ժ6iue b^y%i/K m,13Mr+QPeiXS{R:SfإӒ@^\DJyǜx!;4D^u1T]0E֏\?ռYX[=pY+EQ1ݍZ5M$P`6 ;Boj>yC2z pu^Ǵĉ;SzF ( yv:\=*  QSg{x"ZIZ`MN"]'gHשV L&`6x B`n}h7rbfSm?}uFLC4ߑ̝0 c}hpRGj¾d D.'X+7dAUʻu1*TS 6Gz30^xnѯ@Mh*Kh\icTS?ɸ _pce8@ ,Zb| Er*S@eąܐ7;̸4_уwJ$TFΔaÔWd,lզ'&79^pp^ Eo%kH>VBX2%3# h&.:m_38c-hcŶi@^WD?ޕ l`}xI hҀ|tKD;H 4*?Ⱦ }y@QCoY8B(QmHk9@f;_$c-̜ =C$@'8(rļ>xY;CqHѩWH`2/GR)6G# $S#˗'o%z ø$ YRu+RY5ʵI%)l~i054ipC gym-N5&]F8 _V @?7^ tjnFAh}9211MJZ 9.3Χ8Ĕf:Mvgմy +i:;m FBw 8@<-O2: 5H>y\vVi8G/N:l04w81I"#™H@־&*N.=r* uJ{kKvډgM Xalg:n x6*XEyJ[]F oMs TtlQ<`gaYw 磮sx?2-m0AWܮ.&<+>udk?^&>PǪI帍NY*9q|<^3 S4ܻCO_x ꚚibItoMN,)_{P` hc}u5 + Xr'T6xVP898=edI%,~ He*~iHs94 [> âxFu}y14aBf$umb%?YokK`$ .Bzu\\rF.Իk$W%n $)HK 1 5'n%+rF@;g4װy[5e3CI" o;t;"|oC}/}H^b&#;P H͛:%7rAW⽮o_W&OXV$F!i"'/3>qS {)MeyN_7!ZV?kD)t'^DL*RW <j 8]ղ|{$>Yg<9 3\ ({+]ق,1;A#{4`y=[ x=WmI~W N'Ẕq EZ D5yw "Dϛ>ۣH9R<0 jV7)AQ|{>;B7pƣ^¶PIJB9~ q!wK}!3 \~[FM}I&MmހskrxX9R- Μo&h҉gxۿs$s- ̥,A %ڴ!!¬O'(xxr6rBR,&Ɍ7E;_pZ}v `4 Zu" > !Kmgcyz([U jt#`og+w,,l n)U;+@!W"he6J[/95Κ).Y,kGz8VV}qNPg6n|{T;:DW'_÷,$b yy^8D±?r?ToүW:eʋ5y*13}yS72nUY'|F# pL|Vn{@sTDk5Bהi`@4DR\?'4־, ;=5^40v.K-%?7-*Hx:\hV$)@Ĵ7DNl=FZq !wn8Zvp G~1 "ڠy $u>+"|\M}*3'vJ$"#s]lAj1aq6\Gf}4wHNY#9M|]w_蔺t5pm%ʙ,c:%sh:Mr7U8t8!sT{ѪxL%"tx g2OӼ2ܯf#c !gKU4l,MM$аD ftK(lgLmU8Z3#/Q5u:][QpqQo9myWl exP٥YDS|0]+48EVo+{ ܚl z^\s^ۆ$br>;M͏!Fqw8W8x0ݓt&^#L>ËouïX'%A1-Y pV(jЬgLVw@_ֻ]TmW(:p3_1$bD))\%wzoU]Bät 寺քSTJƑ3yoa IؤiaapR 8=Ψx2ae~,=dkRrn`,vW" dOXIE|ff缹4>֐{ioX<$y"Ch..!aRc3ftԼMJd0}[;U0¥S\ F"n% @{[[H_9S|Ы5O( XP,l\!ѣ#.Z1-  .tpOjX{?d1;nϠ*RyPZ̓ ~`f"CIK;䪵ITs|u*'Iuc*hdC? ATY 7-ۮ$D*}C8O_>'&JeN1]+., p*oѤ!!`^?r&hInދy+\aG~'dEV#8˸.:-ܷ]4bSHB'#IrcoZe 뭫RJ)!(7u$íyEI2"bf,G+c#R2Vvh +wӦl{^"ٓ UI 3u*PM+ ދL`L!.{ѡ،de8*%[p\[1q6::D/Eqg$2ʒ--y5V |2*ċf'`γ~ ,@ci_,LiD6lk3Z{z? KU:CpA.~Zźj@ЊYnM=5$ZiZ&c6M@}b[ SáR1 CByJ8y.ht qx>mmH̚kBO)b7"ͯc?)%$A%#}%;Zԓr$o"]iCQP=BE8> !Uf ס03T6ǾpPAWY UƘf4zJtՓ3IX׌gPBpv bCȄdTns8(F˱s_)Jqq({Lѭuc5;~ԡ3 I?Xw%jk])C _ezW;kɒVQȎQ;d4ͶOjP ~*|ϐL=gC33ߐe'RJ̲uxR)Y_y4X|JBF$gGl1pZ,UFUvF.QB7#oЄ(u{Ma,/5.>r%y'DY^n!@O~.IoA'n2'ہXQEsgmJ򟤔 >1;F Ą@9@X x1to/}Xо )!DwOslb1yL4Y{iO گo #L-ؕMٷWgׁ~U[az^6z{2l߰&k NP0ݯn {Q{b߹*\!^=\B41=pqG vqGAAśg M㢺H&!] ?sڔ8Sm\$rrŹ"r< *P Y.x mň FoiF߿뛶 7H%SEHxsXrq&wlF5F0:8<qaحOrG,6;('Emv~PHne.;DtL#mM9]dG?Wkm^Y53{GAb2>"FmRM62bR8l2kx*ƖŮ$č| 1EJX&KԼ{?'3_DCɘyb > !P'زaVVrIwG8 (Rw7SdF"2%<G?ph.jm3w?M '@ @#wU43YA;3^ ! !K!ڊϡ'VNdfc+`Z,#fx_=u' >7ni B ;70fNy2L23{> ) C  =+ 2΢'WS{t` P:u`E K×?9%ՔF9cLv=M>ߵCTq 5a=[\NxsqˎzViUmm/RBؑn!!Ү޽"Ֆ?[3bV|Ay, d!Q?qP]c:&r]S̭Rdx\eb/SO$%vl 8B`4#C{'iacsg7\Q3g^]]<ħ%%W9Nމh7u\obfg!9?x8풃Ou~芅:JGuyܒQXBm\'TӺWwy菂Zb=TH˺kys^Y,tг/T޻Z=hZb6+.^Z)EÕ+x~<7ѧ,߷0l Dʺ~j;A4茥V^$6DnXTWtCpsD[;렩:Wէ*% \;v v(ݒBwYk<[YS^c$W#G?Mz"[{ Wf-q$a%{ @`6J`Jm%`jYnʻ禳rt6}C\>j ޱ|m]h؄T|R娇sB/<Q!uQݙ&Ym97c ?9yD手 g>-j3#l&-@4.Dl* x2 ψ*= Wؙ->كdkkҊЙtBY=qrE>KIT' nv&*V8!FPE77-pOf+YCC(4ݙ@/PbQnd` N_Hg\OߟI""L&b>1} !JEY49@X ǹ&ol<"%|j7tap[$kḅXa xu=)>>\?PX r:Φ3 }vLǾX\ٺn,]ɤtLO]Vw5I" zW@w cI e⸜htQ]Z^5 7O;o ls&.ҷ֛z6;>]3<3yV/fqIL5`b7: -?M?S۬>eZ.ͨ ?FkiG'ܸ +]~KD[^We,k4gfBrUT}#i ,/݄ aSb2d%+ w$_j_uc4A~aZ^\\ 5/_ؘD#:ʋ䛲j14|y{T)]i=N OdGuS"/ظkJ"reD:( eteW GTb07HwͅPɞ^ vt'W5$NT? w q#kZx˼P}5na {6Z)"%Y*i';M6f iZJ,%J vdŏB$ʷT+ҁ^'Rzg[?R:QPzS:hR_7@ŢD>"!v)aoތC#_GPo)Hi9 x #PC?{^5hhR5<1O01mx-`"Ν3;yR],&< F9H+_dL} %C?ҏS02`hISX2jqe;,FjO6> 2SC2*FGI.%}fXwtee:n_~@y<'W$O2(YɴAVD~5+Ç80q3qua,J:.-CU!ev9g"MTҸT#ȗì洱y Ӆض YZ