sssd-idp-2.9.5-4.el9_5.1> M Mv ĉJ4!!%joLne)Ip-Bm5 ']g3f,releng@rockylinux.org p-Bm5 ']՘mP5oj&'x(:B[k4:& 7[I|>YFZt:I憺^`DJFYꜼd-qO+{.0AbF-&_ Xshg;n֞Hti:O;V{pn!%2F~.$Ǧ"=:b*Y$e(^C'=fb(fÅ>9TPLc N'D`U'aH5NG`W\a'y eK|^$8ێ,n{|pn0hxhg-kQfM]p&8܌"m*W0HT0LmI#B8HYޮ|˵WFHHjD#ɫ5*]sY<CeSo^J Y7úبb, mc{nLMb0cc0ff3ded8570e8f45870eb16eed4468b07e3ec6af56ff433936855c27e63bb2cf53677797cf31b1de4d2f78793b156852e397c^kn@# >=4 ?3d   ]48lp  D  V  h       $ Q ~ d^(89 $: G-x H- I- X-Y-\. ]., ^.b/vd0e0f0l0t0 u1 v10w2 x2 y23h3l3r33Csssd-idp2.9.54.el9_5.1Kerberos plugins and OIDC helper for external identity providers.This package provides Kerberos plugins that are required to enable authentication against external identity providers. Additionally a helper program to handle the OAuth 2.0 Device Authorization Grant is provided.g3cUpb-dfe44e04-fcf5-407d-aaad-91b0d41820e1-b-aarch64SRocky Linux 9.5Rocky Enterprise Software FoundationGPLv3+Rocky Linux Build System (Peridot) Unspecifiedhttps://github.com/SSSD/sssd/linuxaarch64y:'  yAAA큤g3dg3dg3dg3dg3dg3dg3dg3dfEe0898a66f9f24c57f0ec5f2f97348b430cc0a1246bbd89d3ce03f3dbfbdd4274902333cffcaa7741458d26aaca94e10b1da7cdc18ae2ec2e3a44eb2011e7b5f809a13606d65986209bf208de33cc3db7b4d467e4e7413138ce5b0f6bfc8aa239e0898a66f9f24c57f0ec5f2f97348b430cc0a1246bbd89d3ce03f3dbfbdd4274../../../../usr/lib64/sssd/modules/sssd_krb5_idp_plugin.so../../../../usr/libexec/sssd/oidc_childrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.9.5-4.el9_5.1.src.rpmconfig(sssd-idp)sssd-idpsssd-idp(aarch-64)@@@@@@@@@@@@@@@@@@@@@@    @config(sssd-idp)ld-linux-aarch64.so.1()(64bit)ld-linux-aarch64.so.1(GLIBC_2.17)(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.25)(64bit)libc.so.6(GLIBC_2.34)(64bit)libcom_err.so.2()(64bit)libcurl.so.4()(64bit)libjansson.so.4()(64bit)libjansson.so.4(libjansson.so.4)(64bit)libjose.so.0()(64bit)libjose.so.0(LIBJOSE_1.0)(64bit)libk5crypto.so.3()(64bit)libkrad.so.0()(64bit)libkrad.so.0(krad_0_MIT)(64bit)libkrb5.so.3()(64bit)libkrb5.so.3(krb5_3_MIT)(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libsss_debug.so()(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)rtld(GNU_HASH)sssd-common2.9.5-4.el9_5.13.0.4-14.6.0-14.0-15.4.18-12.9.5-4.el9_5.14.16.1.3ffffy_fE@f/f! @fg@e!@e@e@e)eReRe@d dd@ddu@doMdbc<@c]cdAlexey Tikhonov - 2.9.5-4.1Alexey Tikhonov - 2.9.5-4Alexey Tikhonov - 2.9.5-3Alexey Tikhonov - 2.9.5-2Alexey Tikhonov - 2.9.5-1Alexey Tikhonov - 2.9.4-7Alexey Tikhonov - 2.9.4-6Alexey Tikhonov - 2.9.4-5Alexey Tikhonov - 2.9.4-4Alexey Tikhonov - 2.9.4-3Alexey Tikhonov - 2.9.4-2Alexey Tikhonov - 2.9.4-1Alexey Tikhonov - 2.9.3-2Alexey Tikhonov - 2.9.3-1Alexey Tikhonov - 2.9.2-2Alexey Tikhonov - 2.9.2-1Alexey Tikhonov - 2.9.1-2Alexey Tikhonov - 2.9.1-1Alexey Tikhonov - 2.9.0-5Alexey Tikhonov - 2.9.0-4Alexey Tikhonov - 2.9.0-3Alexey Tikhonov - 2.9.0-1Alexey Tikhonov - 2.8.2-2Alexey Tikhonov - 2.8.2-1Alexey Tikhonov - 2.8.1-1- Resolves: RHEL-59876 - EL9/CentOS Stream 9 lost offline smart card authentication - Resolves: RHEL-50912 - possible regression of rhbz#2196521- Resolves: RHEL-49711 - SYSDB: remove index on dataExpireTimestamp - Resolves: RHEL-49811 - 2FA is being enforced after upgrading 2.9.1->2.9.4- Resolves: RHEL-40742 - passkey_child with wrong owner- Resolves: RHEL-40742 - passkey_child with wrong owner - Resolves: RHEL-41047 - sssd is skipping GPO evaluation with auto_private_groups - Resolves: RHEL-40570 - GPO access the wrong memory location- Resolves: RHEL-36586 - Rebase SSSD for RHEL 9.5 - Resolves: RHEL-27716 - SSSD fails to process AD groups with 'Global Scope' correctly causing incomplete group-membership on RHEL if cache is empty - Resolves: RHEL-17659 - [RfE] SSSD Failover Enhancements - Resolves: RHEL-35781 - Passkey errors when handling multiple altSecurityIdentities values - Resolves: RHEL-30142 - sssd_pac is crashing - Resolves: RHEL-22206 - Errors in krb5_child.log every time a user authenticates - Pre-authentication failed: No pkinit_anchors supplied - Resolves: RHEL-32595 - Excessive "Domain not found' messages logged to sssd_nss & sssd_be in multidomain AD forest - Resolves: RHEL-28666 - sssctl config-check is reporting false positive error msg - Resolves: RHEL-29454 - NULL dereference in inotify handling - Resolves: RHEL-1654 - Improve documentation for allowing e-mail address as username- Relates: RHEL-33645 - Rebase Samba to the latest 4.20.x release- Resolves: RHEL-27209 - Race condition during authorization leads to GPO policies functioning inconsistently [rhel-9.4.0]- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-22340 - socket leak - Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-12503 - AD users are unable to log in due to case sensitivity of user because the domain is found as an alias to the email address. - Resolves: RHEL-22288 - ssh pubkey stored in ldap/AD no longer works to authenticate via sssd - Resolves: RHEL-22194 - gdm smartcard login fails with sssd-2.9.3 in case of multiple identities- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-18395 - latest sssd breaks logging in via XDMCP for LDAP/Kerberos users - Resolves: RHEL-17498 - New sssd.conf seems not to be backwards compatible (wrt SmartCard auth of local users using 'files provider') [rhel-9] - Resolves: RHEL-21079 - SSSD GPO lacks group resolution on hosts [rhel-9] - Resolves: RHEL-19211 - Excessive logging to sssd_nss and sssd_be in multi-domain AD forest [rhel-9]- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-14427 - Expected cn in RDN, got uid - Resolves: RHEL-12229 - HANA validation on RHEL 9.2 issue possibly related to libc/nss_sss behaviour - Resolves: RHEL-3925 - SSSD goes offline when, while reading a single user, misses a required attribute (i.e. SID) - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: RHEL-4146 - Incorrect handling of reverse IPv6 update results in update failure - Resolves: RHEL-4971 - sssd-kcm does not appear to expire Kerberos tickets (RFE: sssd_kcm should have the option to automatically delete the expired tickets)- Resolves: RHEL-2319 - Passkey authentication for centrally managed users- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: rhbz#2234829 - SSSD runs multiples lookup search for each NFS request (SBUS req chaining stopped working) - Resolves: rhbz#2236119 - dbus and crond getting terminated with SIGBUS in sss_client code- Resolves: rhbz#2218858 - [sssd] SSSD enters failed state after heavy load in the system- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#2196816 - [RHEL9] [sssd] User lookup on IPA client fails with 's2n get_fqlist request failed' - Resolves: rhbz#2162552 - sssd client caches old data after removing netgroup member on IDM - Resolves: rhbz#2189542 - [sssd] RHEL 9.3 Tier 0 Localization - Resolves: rhbz#2133854 - [RHEL9] In some cases when `sdap_add_incomplete_groups()` is called with `ignore_group_members = true`, groups should be treated as complete - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys - Resolves: rhbz#1913839 - filter_groups doesn't filter GID from 'id' output: AD + 'ldap_id_mapping = True' corner case - Resolves: rhbz#2100789 - [Improvement] sssctl config-check command does not show an error when we don't have id_provider in the domain section - Resolves: rhbz#2152177 - [RFE] Add support for ldapi:// URLs - Resolves: rhbz#2164852 - man page entry should make clear that a nested group needs a name - Resolves: rhbz#2166627 - Improvement: sss_client: add 'getsidbyusername()' and 'getsidbygroupname()' and corresponding python bindings - Resolves: rhbz#2166943 - kinit switches KCM away from the newly issued ticket - Resolves: rhbz#2167728 - [sssd] Auth fails if client cannot speak to forest root domain (ldap_sasl_interactive_bind_s failed)- Resolves: rhbz#2160001 - Reference to 'sssd-ldap-attributes' man page is missing in 'sssd-ldap', etc man pages - Resolves: rhbz#2143159 - automount killed by SIGSEGV- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1608496 - sssd failing to register dynamic DNS addresses against an AD server due to unnecessary DNS search - Resolves: rhbz#2110091 - SSSD doesn't handle changes in 'resolv.conf' properly (when started right before network service) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139684 - [sssd] RHEL 9.2 Tier 0 Localization - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list - Resolves: rhbz#2142794 - SSSD: `sssctl analyze` command shouldn't require 'root' privileged - Resolves: rhbz#2144893 - changing password with ldap_password_policy = shadow does not take effect immediately - Resolves: rhbz#2148737 - UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1507035 - [RFE] SSSD does not support to change the user’s password when option ldap_pwd_policy equals to shadow in sssd.conf file - Resolves: rhbz#1766490 - Use negative cache better and domain checks for lookup by SIDs - Resolves: rhbz#1964121 - RFE: Add an option to sssd config to convert home directories to lowercase (or add a new template for the 'override_homedir' option) - Resolves: rhbz#2074307 - reduce debug level in case well_known_sid_to_name() fails - Resolves: rhbz#2096031 - SSSD: sdap_handle_id_collision_for_incomplete_groups debug message missing a new line - Resolves: rhbz#2103325 - Supported AD group types should be explained in the docs - Resolves: rhbz#2111388 - authenticating against external IdP services okta (native app) with OAuth client secret failed - Resolves: rhbz#2115171 - SSSD: duplicate dns_resolver_* option in man sssd.conf - Resolves: rhbz#2127492 - sssd timezone issues sudonotafter - Resolves: rhbz#2128840 - [RFE] provide dbus method to find users by attr - Resolves: rhbz#2128883 - Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list 2.9.5-4.el9_5.12.9.5-4.el9_5.12.9.5-4.el9_5.1sssd_enable_idp.build-id6411950a9aee323a9e41c9632101d7eb330b9e32ddaa9dc1652a3bfae7e5536399ecc517dd877b7csssd_krb5_idp_plugin.sooidc_childsssd_enable_idp/etc/krb5.conf.d//usr/lib//usr/lib/.build-id//usr/lib/.build-id/64//usr/lib/.build-id/dd//usr/lib64/sssd/modules//usr/libexec/sssd//usr/share/sssd/krb5-snippets/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19aarch64-redhat-linux-gnuASCII textdirectoryELF 64-bit LSB shared object, ARM aarch64, version 1 (SYSV), dynamically linked, BuildID[sha1]=6411950a9aee323a9e41c9632101d7eb330b9e32, strippedELF 64-bit LSB pie executable, ARM aarch64, version 1 (SYSV), dynamically linked, interpreter /lib/ld-linux-aarch64.so.1, BuildID[sha1]=ddaa9dc1652a3bfae7e5536399ecc517dd877b7c, for GNU/Linux 3.7.0, stripped RR RRRRR RRR RRRR RRR RRRRRRRR R RRRRutf-8efe350aa8df8c6104d9d152191c1f249d5192e237feed052c3f61f17c8e7ea2438b58028bc24554e1aabfb4a3b9b0b14a7d767f3523826515aff21af782892ac?0(/h|ʻbNgiDzsg}8\/9>i~,\3~v·\̈́oo>ϧcYY")  nnAzr#%sm>yZ;X_N~Y"u׳fX;~Pšl߇OÛX؃  Ar-q;PY{pͳ1&#Hٶ2-\Y/9a?h;inC,Ze7ʀp"(q 2̋e`]P9m} 2M .uh~tf̀dr7=?T*u̗rpQQ5q}Bk;GvK>溳1u<˵G-m鷥@F?l8n6/gx¾j؅qVWnBѽQpm45^o_q>/um"P:]yͱP FSrer宇:3_n_V"WQQvikx7kw9kms|oug<'gs a<v\{hCt? g [%6ك 7v={1\6\ ]|gWzy:5 oYf`s屄|Cu#})㊴nQ^nN/;fC _,!]~]>!`klwДh/#{a8)]|}qoO1g+`hJ88k"ڇx.>.n>p颶6oto`zn? Oga.cn?3دx9ΧSG0w~6Cn sH~"׃n!?Mw$ܦD7߷?vSo=+rؾ# , Iː#Јs޽o})~];;}'`ٹ\~Fᄜ67 L6?^.B)W1UI-9O2rMX%AF 1< ?\gfp) [(G$Cl$3*) \=m3B#cx3s,XtT\- h] Ar3fu&c!q*S@cբ%FwH-GCS,ͻ )-s5|*̳я? gբ9UQNRͥGȞn:>x8*yr^,{7izSZq'kbTnB٪Yv*XݬUf2*Bq{įֻ:͎EŠV+޼b8vJ C˚Sk[PiV7zgǚe)^5{NԊR}f }JoX|W*hU5nnZW,.ůU,yW8cT,NMBokqQ=5gOe ^c6[0lb7ڜRƚ͗&A)01`VOL>Yy[=y1)NV0 D^1RZBx@?,Hi&l[9;'Mʓ_TrXG,R*R6ĩK?jiJ$fԕ_NFgwTu8ý@.t_4$0}fpK|bl_o fBVRgL6@q~~ypO'd6p%؁?4m#%Z(A R! X2c[@KN]iHS3. TjdaeKsҧ?$( cmtfPv\Xr[לM64k>ucbD1^$/k {FD!F//\Pŵb,X%))(;?Wc3ɏ pI"I5ər!L\|lr%bp5#/!?X?:a `yor (|DMY=Ȟ'4J}g* :>89E5uJi*Rk33fF5l,KaksaԚTzU*k4FɘtFDzj=F37nW+j)2l6QG_F4Mz}:MOcşU(#TU񎲂 OVWbSo2i *vΜ`jp|vT0@MJ>5'@:`i>:8@+JC 3KJ؍I ~hٓ$9p,4[ʶj @ 3&8hntȝG Y~ 1~X, dF+0Jaݖ BT?L@U|]C󅣁,w:h[`E( mQ4P6 )rl{o&AΔ'T]9Ph A# U"éY+\D 29*PD@z2 pCb+D'a:U( ;LHwsAyܮ񧥪HP 2R<Bpz  A P#vhlI̐$$XlO65ʺ|)K@cL0F\5d%b2oMv( ,ƕ5@ѩ-dd Gl`)MȎI!t#+ 4SZkB0CPSaC 1aC*iu@@3ONH`ȍ' 9^`{VQ]AJb:A=\pՍg!Ňhk+G!՞ꄈB0.:,WޚZWB8DKJ)`xz-0T>b8 B *kxjMJԕ6&n )#/* wkJaM` [CgT:  @qp`QfK eepSӱNƦI I &>>6!qr?]Y(LC̣ x|@$CC<;/r)0jy,GP bcZ3 $q (api^-po4 Kd%)xKnii-e3fTX.y2RQYGbI& @B W뤠R27-2CD HdIlۄD7M(b+lbLh9|ZiDH7x-5(z  TH8R5b rTV_ !/I/4M)QjzqAFlD.2D&BjJ,ENu*@' afd?%\DsځZ'ugXT1L2xA#~6Hg4h]H.p؏WEKa`<.*Ub a@bEp8 n[EHJ/a34ybwV [ b8#?ZҌf29 3V ]8W$mA3M(Na/!Ӹ˔=w&4iZJɰN_(.P]_CD!ػƛ7 jPl`V*t k/hWzşϤ)Fل?:8ؿNqhWXd;j4KJ55E^,b$SzzB˦YuYK5Slӊ_WZv|&u񿊴qhXJ3"f¶<+0`ܕtca6֦ιUO\/Dܐ5{䘖rCwzi= $7J6",3<8rڽxf'qw&3U`ɕ^\h[jav4fȈ >_]P{l%' ~n8@-%H9Ro?G[!+x~?Q 2qnq*.G~g9m6y;!P?17+—]f"-k_; 0p 'Ph OMDgg6|:CvyaW};RK 1֭nꠌv_P8mqys0W}\e;./k!mm"Gc?uvwaَ0YᕻưM'NI}o [9r-7BY !n;Y=[z+77⾵> :N]K6;_ i祥5^iv ln.RWv@3]C=CM|1Y'*6~:/hW7:mH#@eZg8聠/7}UnUs. 3/} 荱@kӕŪqmJr)r?fɄ ~]T}8R`ХﴧGyKB@=VPurTюUzs04*u&;6/iމPWѰ =?o.)~Y^Ӄ]e# !4^ k3;>^-&$_l!Z6y%?j09io44{up+unzNA.V?tbwͫϯ /<ٲ[ew{N^ɤ78F1sQ"~{%3"&Ҿ|y|-%PqGdƚ |r֙4Nw"X޹3pOw;+-vޚ_[I;>#$e9K' Axs t.P!Ď;!3>zsWC,ǞMg.\Y!?^ӿї+ځj Oʳ乍 dǕ8s{q~{"c,v1 OE09\Eˣpf% ,N7Q?"nBvrXz|uDB҇W@%2OD}?/3w[0~-_9쎄.?nԇ g,;C~3pgޓ"PXJ))N.>]zw -'cr++ :һ#}ʢc(v^UڤNV|*ִRFogXLs\4yY)x?'#GFkat[%7{ @NfYMh_F{|fü|g{!2*C 3k=ϗ5x)񋉳.zFb(:^ o> $$y+9鐾̬j?6&j=<NFA43XO'$4"TL%#{W>/`fGYGRjPEǏ [-S)˜gV 㤙|m 3!>m3Ù,|S6Jk5P2X w4XiZqfh)ɮ7Yv:cSVԠe,;8#$8BwN0<֗R/('fTue`$|O'0xSjp噥*ar@ᚱTw*Ye1I4T&b"[]pP|w\Y!,aL|_[ j0S*mlj0@Rp޲ p"j^]+1,BVh3j}_2H*W$ЧQZ_PQW_7Ul44-kJNW(udbbx=f'Y ѲXz;Mj<,kV75.5KA+( M~b8ǧXtDŭZ]R,~[1CEӵl::m6EV56zh1*ZMb;d`ZJsWFF5QSZVfA6&_;Auw ޵aͩ)+5c+]XZxINI֨Y6C/Jk)ChU1Zbi4KEbk'izWxY}֚ ˊ)>vC9A=g]+J:̋u):8Zc+#?qkVbSTWBw}biW$@lP&8zSiuɩ?>anxK sf6 nTm+,qN8-AK3{|(O`xRN}:">E5Q='wuzPd566ؕqygyJQFQ,̏E~$|HYWOŸ;JS 6䤃+20$^ffԪc=y|KgwC= ns_P $( 'JdqQrt @vpn)¦srt'e.5|4 _ך]['RNjm_kv\v|!Q8vԑ7/N9|i3D_kuZ'jyҬrq>PFάO'EwmLnA#R/{{zQD7|8_Hơh)$)LE D.Qa% _ &3s sƧHZAWPΣA+\[6t }&!/_v21x!>|f#rs90}|~}$4ͩwKl挐/hyA@Ԝlriguťkظ#XCtP˃I3fН9_)!3sHn\p*&P3uŜkЏQϘ#@GJOt68~E'Yε7 .-afs4]zt5-M@\i#<1ND8TmO~I:]+ACEN\i|u#'? |>P Ian to*m?s݂qha{e~Q3d18c*\>w@DQa4\[COڹ$͹\[&7rHqKN.p=*+a4ݘ I1Oyu({|>%}Fs9Q\ˏs`ٌQrs3a.WzӃcHtm%:M sW_q3syщ7`M>1 DU߀p);|y9P5pR{?no@6\"n.VQA ;Oao@Wrˉ$} f*uGF-ggʫTj<`.OQ5tR!Mɪr8+̕^C?ZW'm?k${趙;2ٯs߾Rh.}|t$g$FZodN]$N޷Ysy[ok.J~|  $oCjHޔ[T|.gʇrTcFd;nwzuԋ]"HH|$mtϯ>/|PM }+e*/ 20t!tڋN;ɥi=\nQp3=N=H5{nxmlؘL@}97v 4ekOTԅnk 3;I`ߢ^qwȩ@rm"Xݵ+ H,g$pP2J4"w2x K@0l3 @#Ӟ{!??3wsMkPʼnj_?El,@^ZuXAy<=K>K꜀5 'M2}z;5*O l360\$Zvg;["C_FE'yV_nTs"^{W"^97g\E}Ӝ-Y|xYB/pEoìk/ 5mqz:/y;l2l 0-B +;!XhPpJ106f‹=)ܟw҇BwA/+Tl``;xl x%RӗDJ止h믟hV3jV5~ñqc5.*Y|JY6pįJ"w(9 YFh  D`X(],KQxyX~ΜK2M(uIwN(-lus>_( f%fYd8 ,=+yt`ܩ%έiV>|[.Nbſ/N, @z F3TH\Pp$xB?ˎWjN2?AL@r u< 'R87#DFmc5D܉ k3WcPZ/vy#N`4yP|hIJ.Nm&H D inX+غ0qơ N]@s؀SY m)`HK_M`Ff T~eck:~ґd#$ ?>1'񌧑7ݮl**O lL`l,JRɻզv_6tJr٨dʼn(a ;|;ӈ8utW:aP%pXzvO{$ʇ]ךn?LpBEQ82!p Z:ĩV#h=DH3&7wN˫[Pd4Z5 ?{D\bƱ#kd . Ap]zn+.% 3M7FU(׸1ZNDUtєDP}X Ͳ_e0ohSJU;PgC7y"cz(rEM}^LCac@GVq(6 1#9b*x$o+ GB9cOv n'(C[hblᣴTVC^6bRZN[ 1[s֙Ot@`D eoRKRz;At 9ϠȢ.7 D/P]jihC)VnM{(MUﳾý61;( :Z/o.!ۋs:ayhc54Fp ALHQ!Ċ0<}޺/Dem\[8AE' 3~Բ["m,r=D](YrSAVFiCm ^rY@z7@1  CٍGNB>݋f ЄjNяb[{ 9#? fM}g,KG'"{N_vLNdX_QtӿeT$oc[Q,Tp&}y7YKd@&Yc;ʿTȣ0Tr`ވ1RbEugQ(-exek˲ z0\kEp 6Р1i̼KeEZx)JJ њ+642D2AQ+nrOt`#Ip98 J26E0ըEwab> *s5ߊZܢ/6=O#yv|2DeJ~gӪf{Q7?iǽ Y$gnϚI1NQʛ|zU ף2OI ecg5~,f`xX\qyު̈́u>:O) iN0K;S0Id1xuō'm Vlr#or\SĞhSE=I2>m,XfM83&W ~ǹ+#9,dV2;@K;ܻnN\y<=U:MANwY_vʉs'Nz(G/JWLȾ ;AgnemNnԙ}^ۅh{c/$x=nύ=W/f״_0dd}*6NlFShT8CʎR'?_хU!5N?Mcf@ҐFȦ4_9Ke`dz{vjVÖ X>@,cJ:eDs~C %6U+)zmYɴH(FP:>uSs;:Hxilնѯ98{O.<r݈Q0zS(6͋{aGK$벚9'?o[]>~q̾u d4c`Z9 x/W` (ɚ΋ /<>j=V[fsFw<(pnע? rs:HKqlhZc %e) 0~^,7&i ~ge#9៚\fqz6YX #|n[M 6[}'iN_IπiqqfMNw5OCxyc.O7Qf]ڵ|417` tq?ȑ|-a]7ⷌGInי@^[<әT|wI?8ىϥWe#al2T:dcRaugb>GűNJ멷r?+OsS WrGu1aF>gc\3pE{O/&3{smJ=/;hu32"eocz^[+uw.F i ie8ɶuy Bd^n>\ue#,u˾vYmݴP2‚<9uL^EwˍN/OїX\> c+/8.#q`÷N>Cb[vC2h01l_~iz{'k\Lz^w{h~7jhQ`A0^ExᵣsrHuL hnn4lO O$jx*Nȿh+>4{&-Em/b'Y= G^.f(\ܔU\M|7y hw;A;?kh9|;|8!}'MM:EҷSכ[ހ>WV{;'nwTW 3C~/?H_[{K*IqzO ?wl],`L`?ߖ?-:C f"YxGW)3OIyrﲻBs;QLA H)#3vܒt/u`?؊h4|ݣu:pwCz[{ f=&@d?ͳ8=8CS<7roX@nMlj%ޓ?jDGV L,QRfK\ 966dvy>QSFlQvb]G$oGIAoaqږ~pP:;@Ǩ;6Lnu?ݜ0l+QXGG{ O׫!wGFP\+vz~G}ap (QiၬΆ9k]$Irq]C fAWlyhB c{ "Q8oqQ*ٛ MN?.Up3r.uw'`!;Q}TT7Ʈ}SZkH _ y̵ZU(i|Bg@_[a$o2Z"~*Dg`soc|<yta$LouдWbeLw$ԏy&B.(*OV4FLqAtVDH ?B|G;, TZ:#xb$$6ꈂ‚}_IcAuzAPegX`a,Y$J:P0hit{(A\N=%Q_4!Û/:Gŀ$u73!L<‚ry0HAo׈bK`TSfVQU̷;t]A6Gqۑ8v )Gq'ѻUa] _Fq[H.s 5p7$ >dAq +RNk5iMD2w(tSFgR7M\5I&8mZĒ{ڮThQtr:i!0O@L}@6 93G[@X/zn6lTڭpiȽ FI4i*k5u Znx/lyMFMxh v4t9 ͢41$Cu +&y!QۢQdKQC߷=mhN'9Ƞ@͜9]gscZJD_`(:ޅu@]7Mmwuv(j(+(DH^ . X[,|ևב+O̜fήl~ Vz?C̋8iLPAƮEs%&f2ؖlM^ɻkoub%H/^ImS=[@@]7#mX8ԓDVzsT%-_7:AWc^Pخϓ?l x#PxFљe/S0r?c?¬db3N̝F4ZK>s+S`C_xKnޗθq LTȰ ؂{a o jLSUVEA-| 0LV3Њc=4ɕ"zC} :e7F^ Y6F]J-[j|LK>x H1\2ƛ-v \]9]P 3F]EEؙ-hͨuBXǝi;k=#0yU>ror &f|aW0ѧH&X6uA^=,[-R:&St Gs AZ  z/勻=Rfh´u snZ|>bY况Jaz\FX!F /w \߻R"5^7Vv ^!^h*_{TDBSuV7m ǧ@ƈ -|U56:si7I]c[zK#O6XI"Xie>,LG~*EH!}EN'X)ڔ>LSD1w-Y ir<WO2^ب8ބiZ(>FK)GENC4\{>k9 | '9dB{MV2+hD ۃDtJ;vds I)RmžJc_p~hE.sAd%|aXM$w:2RT[H~"997aM.|aψQ07r:GN?>P诉qaΰswEAk ~d`՟v~֋zzـY3?Ҷ_>Q;mӚmSz KvK'ϝK|o0֓OG#g2Ň|gD8T{ /X:]k7_-ч6Sѫ0u!nNEQe2/!xzs9l&oĽt3^3\sxd 4.&x'2䍘>dm@cfyA]@&3! =HPšӚ^N h1K~##[2UtU=Kvx9L//_^Zp2}ߵ<_Y GߟfC!Y;m&7FPTϸ%$|q3T3S-xgzZc}Nj^rZsXs>鐳#UF0yӃ8\:%ߊ/½9UpG[ [rWݳ=D\ 64 Dg̫P)}'5wFн@nsq!j0d3(t(۳qx^~m%b^|3`Tr]ySa=a7Z$)h^G<8(smq̋f:l@#3}upoMw ͇\ 8ߠ);߶M[m;^7퓪v_lozlw}X憌Rt94~q4g=ly8knfœo곓Q;<ydLonOmZZϵÙXoNx:^q%BnVꇂS1U>BOvƏ_w|[箋5gӅ)}1saڃ_*Qo7>]5/u__Z=_|}sW~DLnҗCDY\lnOx*C諄=iNj8S$z#9ԛ~sw;ɏfYo:^-Po x&~Uf}N~wc0׬_=x̹!~Zkg$EsVwU߭jʘ{2JN2qJ#c.'묙+[K#rF_*3Ȝ{싾i|;tSϷP,9STwMsia- ?YtpZtbd?gvџy/U{?9V~7ߐf[==r+9G_YTCjM̙ qn`i縗 sKEЬMQ8Ş``Pn 4c [vw|x)]d3 K } fvv^t:bv&W~s3$a\sq1Mi;cj 1 +Kv>oS󞍌)WR~RlɏM*;`8#a|s'|yrq _- L(s9ZC;qO ,\p8{~Iᚔ.6Yϛuv53)v_`,灳 pnr#NfzC{b磚A( :ğAvyd&sB>Vٴacqʢ+ ΆVg8)=gOu5@0O)A ,{8+4Dvh/-Zǂ|-Yկ} ;kɧ36~:b26[#n:١)<?,~22f|"Χ2`Rf`͖ axz[0i| Ӿ&Gx4\ \XxsgfiR?$=xԽ™;d8J_93ӝ~_bIs@h^-_8rxkz~k4r[e z@6ƨg XWhھa'&@S Q́w?8z7 'x+#E1s.).Y- t}2g1F>&1;dԼÁSm{vϒ7;\FJx 9Ǫm|rY<o M]Љ)AٷCR}>fDx03|Cǧizׇ{>w(~VY_eSxGKZ 淬؇gN%-H<=˯K U)cUuiKEWH j#u@ѩc$blEӸQ̢tszVKaLn>=^*\O ~X)Q&Ry:gf)WdpZ ,̳KvuFXwP68`M۰k=OJ#5vJsU[!42Nm}6m)cDN/IZq zin+VMt\TGBܠ:]?VucrHd)Rܾ+5B9 3h2]5J*+°@ 0m"Z}R֩g`]ڨ zb1hXϥ,H&-,hm>.}:<}N >H4v55Cϟ5L҃1pqu0^ᵴ9F+M[#Ndɐ.Q5ń\b-ԍxNjbb-NcFJmJ$@e]McY;@ni{ǺjIt$Jc5,ЫZS{gPSK2PC5ms=5ti40[yz%W$.ڻ|7bT,%NBwjdui>e*֮ȸ 7y5\Lly1#~I]L0YH34cE}lda"j>޼f,[K?6hc4?Jl&hu 8}VAx Tjp Ns__lf]'$&r q51 Ԉ g?)$]ka}#a]~anpڸ f;k+t)G %[kb~f0feH4@Pnf.sͩ aSn2So 7̭fO%"Qy1D)~+\|Crb&xobgyAwe'{-pZK܋iJw+Jg4FJOb7-+㜘)*Dz:t\z:Knr& ?=?=k.5G'mU ǫ7Ofh`c>?s|4{᫟0,)uF!}TFh9- I-̊a @3FY:4[@/E&|GgGp ?(78PHi`":\}O&AX0Ȼ v1l3ǁ4Ke0kx&aaEԠCajEuMɖ.R ENjucFAN"?eD  S=bYVv{HA=<܃_VhְNJܝߕ=_piԋ\(#>v>qnVhh-0GqVY\ BLj {wl?|򱕫h>s~ЄV0}@~<޳e}`5`\-$)09~(YBD|E7Yg rft[&v83<͞IZ QBң?lW^-AjbF b<)7׳ 8+a$EUHK'8aEf|\<"O ^:dӗy޴Ƅ/a~WN=/#gX $r pABI-tag &x 4>pF(|N[jtB~yЄ 6@VVt wՠp 0P$t 9a4645ef7ffshare-snippets0bTLER!!!2! FDrpC #4bV@1#`Ɉ3&&`(k81 pptE+ˊYd.!6,0Fx0HL@<ya44qn lъzpj'hJL8(Pڨ cG ҡ { P,xu9aGG.c@#$V >7ĒAF >Y!6LqS ~ИIB+4;0;