libipa_hbac-2.9.5-4.el9_5.1> M Mv ĉJ4!!%joLne)Ip-Bm5 ']g3f-releng@rockylinux.org p-Bm5 ']+y֬ըN ~ ƙ-ZG "Yd,f&vZ@h;fO@&Jgk]}iBUFpe!Wv%,STy{Qn2W o#0w zP?=/-?/d  = <Hflt     ,Tt H O (t89: G*8H*XI*xX*Y*\*]*^+Ub+d-e-f- l-#t-<u-\v-|w.$x.Dy.d .....Clibipa_hbac2.9.54.el9_5.1FreeIPA HBAC Evaluator libraryUtility library to validate FreeIPA HBAC rules for authorization requestsg3cUpb-dfe44e04-fcf5-407d-aaad-91b0d41820e1-b-aarch64LRocky Linux 9.5Rocky Enterprise Software FoundationLGPLv3+Rocky Linux Build System (Peridot) Unspecifiedhttps://github.com/SSSD/sssd/linuxaarch64* KAAA큤g3dg3dg3dg3cg3dg3dfEfE1e9693c4e06f1f69c33bd3ab93ef20f6ffca746f3ca6ca6092f5ebef2158d4f08ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b9036c57f43c939054fd4b831f271a14c97a488c38f98cdda5e887c5d396e3b3bc58../../../../usr/lib64/libipa_hbac.so.0.1.0libipa_hbac.so.0.1.0rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.9.5-4.el9_5.1.src.rpmlibipa_hbaclibipa_hbac(aarch-64)libipa_hbac.so.0()(64bit)libipa_hbac.so.0(IPA_HBAC_0.0.1)(64bit)libipa_hbac.so.0(IPA_HBAC_0.1.0)(64bit)@@@@@    @ld-linux-aarch64.so.1()(64bit)ld-linux-aarch64.so.1(GLIBC_2.17)(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libunistring.so.2()(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)rtld(GNU_HASH)3.0.4-14.6.0-14.0-15.4.18-14.16.1.3ffffy_fE@f/f! @fg@e!@e@e@e)eReRe@d dd@ddu@doMdbc<@c]cdAlexey Tikhonov - 2.9.5-4.1Alexey Tikhonov - 2.9.5-4Alexey Tikhonov - 2.9.5-3Alexey Tikhonov - 2.9.5-2Alexey Tikhonov - 2.9.5-1Alexey Tikhonov - 2.9.4-7Alexey Tikhonov - 2.9.4-6Alexey Tikhonov - 2.9.4-5Alexey Tikhonov - 2.9.4-4Alexey Tikhonov - 2.9.4-3Alexey Tikhonov - 2.9.4-2Alexey Tikhonov - 2.9.4-1Alexey Tikhonov - 2.9.3-2Alexey Tikhonov - 2.9.3-1Alexey Tikhonov - 2.9.2-2Alexey Tikhonov - 2.9.2-1Alexey Tikhonov - 2.9.1-2Alexey Tikhonov - 2.9.1-1Alexey Tikhonov - 2.9.0-5Alexey Tikhonov - 2.9.0-4Alexey Tikhonov - 2.9.0-3Alexey Tikhonov - 2.9.0-1Alexey Tikhonov - 2.8.2-2Alexey Tikhonov - 2.8.2-1Alexey Tikhonov - 2.8.1-1- Resolves: RHEL-59876 - EL9/CentOS Stream 9 lost offline smart card authentication - Resolves: RHEL-50912 - possible regression of rhbz#2196521- Resolves: RHEL-49711 - SYSDB: remove index on dataExpireTimestamp - Resolves: RHEL-49811 - 2FA is being enforced after upgrading 2.9.1->2.9.4- Resolves: RHEL-40742 - passkey_child with wrong owner- Resolves: RHEL-40742 - passkey_child with wrong owner - Resolves: RHEL-41047 - sssd is skipping GPO evaluation with auto_private_groups - Resolves: RHEL-40570 - GPO access the wrong memory location- Resolves: RHEL-36586 - Rebase SSSD for RHEL 9.5 - Resolves: RHEL-27716 - SSSD fails to process AD groups with 'Global Scope' correctly causing incomplete group-membership on RHEL if cache is empty - Resolves: RHEL-17659 - [RfE] SSSD Failover Enhancements - Resolves: RHEL-35781 - Passkey errors when handling multiple altSecurityIdentities values - Resolves: RHEL-30142 - sssd_pac is crashing - Resolves: RHEL-22206 - Errors in krb5_child.log every time a user authenticates - Pre-authentication failed: No pkinit_anchors supplied - Resolves: RHEL-32595 - Excessive "Domain not found' messages logged to sssd_nss & sssd_be in multidomain AD forest - Resolves: RHEL-28666 - sssctl config-check is reporting false positive error msg - Resolves: RHEL-29454 - NULL dereference in inotify handling - Resolves: RHEL-1654 - Improve documentation for allowing e-mail address as username- Relates: RHEL-33645 - Rebase Samba to the latest 4.20.x release- Resolves: RHEL-27209 - Race condition during authorization leads to GPO policies functioning inconsistently [rhel-9.4.0]- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-22340 - socket leak - Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-12503 - AD users are unable to log in due to case sensitivity of user because the domain is found as an alias to the email address. - Resolves: RHEL-22288 - ssh pubkey stored in ldap/AD no longer works to authenticate via sssd - Resolves: RHEL-22194 - gdm smartcard login fails with sssd-2.9.3 in case of multiple identities- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-18395 - latest sssd breaks logging in via XDMCP for LDAP/Kerberos users - Resolves: RHEL-17498 - New sssd.conf seems not to be backwards compatible (wrt SmartCard auth of local users using 'files provider') [rhel-9] - Resolves: RHEL-21079 - SSSD GPO lacks group resolution on hosts [rhel-9] - Resolves: RHEL-19211 - Excessive logging to sssd_nss and sssd_be in multi-domain AD forest [rhel-9]- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-14427 - Expected cn in RDN, got uid - Resolves: RHEL-12229 - HANA validation on RHEL 9.2 issue possibly related to libc/nss_sss behaviour - Resolves: RHEL-3925 - SSSD goes offline when, while reading a single user, misses a required attribute (i.e. SID) - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: RHEL-4146 - Incorrect handling of reverse IPv6 update results in update failure - Resolves: RHEL-4971 - sssd-kcm does not appear to expire Kerberos tickets (RFE: sssd_kcm should have the option to automatically delete the expired tickets)- Resolves: RHEL-2319 - Passkey authentication for centrally managed users- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: rhbz#2234829 - SSSD runs multiples lookup search for each NFS request (SBUS req chaining stopped working) - Resolves: rhbz#2236119 - dbus and crond getting terminated with SIGBUS in sss_client code- Resolves: rhbz#2218858 - [sssd] SSSD enters failed state after heavy load in the system- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#2196816 - [RHEL9] [sssd] User lookup on IPA client fails with 's2n get_fqlist request failed' - Resolves: rhbz#2162552 - sssd client caches old data after removing netgroup member on IDM - Resolves: rhbz#2189542 - [sssd] RHEL 9.3 Tier 0 Localization - Resolves: rhbz#2133854 - [RHEL9] In some cases when `sdap_add_incomplete_groups()` is called with `ignore_group_members = true`, groups should be treated as complete - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys - Resolves: rhbz#1913839 - filter_groups doesn't filter GID from 'id' output: AD + 'ldap_id_mapping = True' corner case - Resolves: rhbz#2100789 - [Improvement] sssctl config-check command does not show an error when we don't have id_provider in the domain section - Resolves: rhbz#2152177 - [RFE] Add support for ldapi:// URLs - Resolves: rhbz#2164852 - man page entry should make clear that a nested group needs a name - Resolves: rhbz#2166627 - Improvement: sss_client: add 'getsidbyusername()' and 'getsidbygroupname()' and corresponding python bindings - Resolves: rhbz#2166943 - kinit switches KCM away from the newly issued ticket - Resolves: rhbz#2167728 - [sssd] Auth fails if client cannot speak to forest root domain (ldap_sasl_interactive_bind_s failed)- Resolves: rhbz#2160001 - Reference to 'sssd-ldap-attributes' man page is missing in 'sssd-ldap', etc man pages - Resolves: rhbz#2143159 - automount killed by SIGSEGV- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1608496 - sssd failing to register dynamic DNS addresses against an AD server due to unnecessary DNS search - Resolves: rhbz#2110091 - SSSD doesn't handle changes in 'resolv.conf' properly (when started right before network service) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139684 - [sssd] RHEL 9.2 Tier 0 Localization - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list - Resolves: rhbz#2142794 - SSSD: `sssctl analyze` command shouldn't require 'root' privileged - Resolves: rhbz#2144893 - changing password with ldap_password_policy = shadow does not take effect immediately - Resolves: rhbz#2148737 - UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1507035 - [RFE] SSSD does not support to change the user’s password when option ldap_pwd_policy equals to shadow in sssd.conf file - Resolves: rhbz#1766490 - Use negative cache better and domain checks for lookup by SIDs - Resolves: rhbz#1964121 - RFE: Add an option to sssd config to convert home directories to lowercase (or add a new template for the 'override_homedir' option) - Resolves: rhbz#2074307 - reduce debug level in case well_known_sid_to_name() fails - Resolves: rhbz#2096031 - SSSD: sdap_handle_id_collision_for_incomplete_groups debug message missing a new line - Resolves: rhbz#2103325 - Supported AD group types should be explained in the docs - Resolves: rhbz#2111388 - authenticating against external IdP services okta (native app) with OAuth client secret failed - Resolves: rhbz#2115171 - SSSD: duplicate dns_resolver_* option in man sssd.conf - Resolves: rhbz#2127492 - sssd timezone issues sudonotafter - Resolves: rhbz#2128840 - [RFE] provide dbus method to find users by attr - Resolves: rhbz#2128883 - Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list2.9.5-4.el9_5.12.9.5-4.el9_5.1.build-id72bd9c6a997c7033e8070dc5af5e23fdbed9fd09libipa_hbac.so.0libipa_hbac.so.0.1.0libipa_hbacCOPYINGCOPYING.LESSER/usr/lib//usr/lib/.build-id//usr/lib/.build-id/72//usr/lib64//usr/share/licenses//usr/share/licenses/libipa_hbac/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19aarch64-redhat-linux-gnudirectoryELF 64-bit LSB shared object, ARM aarch64, version 1 (SYSV), dynamically linked, BuildID[sha1]=72bd9c6a997c7033e8070dc5af5e23fdbed9fd09, strippedASCII text PPPPRRRRRRutf-80cd80571797b5d6740d775caeaa9c0b1e3efe55316d862872442b22986665b030ba9ff8fe49dd2f6d4e217f1671e65cc50eb752318fcea09fcac666e416a477c?0(/h%?NekR X < xǰ|Ɏq+Ί|ΈTJZ^wK2X܎-Ϩd?6n"e 3O<-xBW &Dsls"7X ^74ttaГx:0i3X҆Օs+wu2Zmag WG-*wU.;'zY⭮.X+T z>`~Eu{STju)Um[G*ꨅe%cVU~Tr{U&2YmcW-bݎhOIZi~flW-Øe/߽Ukk~aK& Se4`mwZm/%;g8Mg==^(ꟴ&+NXz[zfCyhP^%Ƞ 5EZutPkt^ihK,z<h#zزL4[ڟ /؞jf&zYYß9V2ccMSŵ†jmBv\aj6zo_dD͎v<D&l񧧝]:m  ZwJց.{%r5nSIK& ͜Ǻvbr$qi%)/iiroqhY :";(e` ߧW 0>>1:W]3X\+~A Ies3 -Զ&1o&1&z%4IůO|cx d2idD+Sxz.#Z8Rű0ۣ…H oAzL0TX!NׅtzRgqKw`PB 8LO,Jᆒ,77l׀í,ן7ۙu_/[y Wi!6*^mz9JMYYɪ&:] :U.jqiwQA?GcT;].㖹σPb$^ijb ^1u7&M$"Gh$fO=׌OH~lQMi5J{tU"8H؇yi}qAJv|߰dluvS&^6oH2,o+vNPCJπ2\.Urh$*\g* e(F7:PO T rA8Ț/ L'͖1 }`YEϋ ֲvx:hAkvn ZRG ?ݤpX93l Xh .1D;P|"E\HMyb[hPd2 vz8fBrsC6o 5dO:!Baxzsu$$dрj Y ƨ +RDjvE981C 5a ) X1 PD8kƏD\/j~̑tr xSL&rm|ZD|s9l I ',¨nJFN^*0 2u(^ B@E,| :^w 0p”yp (1D` > FIHj[Q&2f͔8m}hȄ NQj".%!Ox#rUTTjzaYW4)Et$G(_ڰ5rMvA3J|Aڳ]oRjޖmK_ִi?>qR3 C6ϑPO1'x.V\ Hyċ[h "G{1s7Vok1%Wa]i%>U|U_`\ Q l-ip5m%P]^F /n|U1+W"_򫣜=w7˛ce ~K5@",<#' K~CZ)l٭ޛ"Ns]$KQ`u3\}ED?&jQT;SBV|D+H{^ώ"*4KRQw0X.HLil˜j&O%HRCGp% <,zf^^v̲>)9ISnjSnkĀ=B1b/) J1>)Q#nA..IЍнB9t]1qGOYg d.|p΀%:#7ďlLkp5q&iSA2t:!'61-?,  !OA\C0$.W^s=!ex4׫ /&c =YlO$o"B2mwxqfqj|{olPpBݫWh%F[l ',@|Ȓ3<#g8_[CZ֦}s;Y69@`/ `Ez%*譩@U.+n͌9-4Ī9n*~g>o5PʠWo>^UX>0s.ǝ_r)fc0% dOˎ +v&1grb^: XRf`' ZJο=8Ӄj5QccG8d !scaDq>}.&!nlsrϖц">PY8tPn^tPKo*\t}qD# UdžG־W㭁<1h=Bp yG&W0(p 4OU6MP:2MO>Ʌ7 J5j&z17iE&#ϱZ08=ַGxAJ~\fjŹ6"7oY684RXEtBȇ>)<7M4>_Ab1t(kN *S:lJd͂{!s#~;=taiB:11S%Ac:}ϓL%vF7LUL{<:'E1jyMPxdl%=!޼޿}YpsXoŹ3qq÷5~O8E3^]w G87ycSapi>=ԋ{rѱb-|p-YmiZEu 91{wtOz8{e_Vӆru/ݥ"Wzs#² 4nj=5^7ӍZ7~/mkwsneVx~2&8K@NӗSkfW< AG}02OiK^y(ڡwr.8}~uN:r՘$ b3> GrS۬s3>g )%Cz©=g7Rv78)LM=)kt+~H|Vi>o~p4^w74HQqb[~ukcT~mLj>JI9wJMdDz #no݃vvy¢I3R|}9C;K)a6qXgd8Qw#8XMdj'wa1 y" y4IH`y}bzp/&qҙ܁4ԝ-ܦ'Xہqd <M!saܹ2] f-ӒfKNΏoV;gТ7Z(*(K%RAiI &qҶƦwr[x!R;^=`i$Y'5 ij!3tLXU>nc 507,,.]UwF3HT&7ɷΈtRGOI%g梦Њ9YQON 'kGzWTaw34_2ϡB ߯ɨ;l˸-FKDyḝ1q#'V`AC;ms0!iXI ݸI%^kb)Ļ[+VQx$,L"Ŗ]\xԳw>{;ۙ? AFkIu8\e>W˃/CO~tGyK^δ_̀F%6&#UU>K,Hps˰EyXKN*. Ke. Bb8/9B.}n:}#Gޢ"-m6G[aib -QaUكl# U`GlGcB2?6!+{U {I?9Q(b4uo݂&>ZH3tus]Hk^yª[3OS yn"`g\ #y g=bTQϗZMsL=u۬<뀹$9YD޿vW4 xʁjG%m>#Ue<sGs%z{⣜^!Q⤗nvvT 6&?" ,`K喍j'.!azS j4&z$iO)?l Ɉ2ʊRi'`NY"9-gmIJ>o ؕ@x ̸o}rp)o3{SO6b mQ|"ؚHqq㐦6;6f^`Oc=c#>ei3uiE|IzDtPv$q`MRê!bN>H)KHnFn~P\KY'5d-Yo]M`m^@(ոM޻<dմo<°c8 q Z|^L؎ E|W2BqxiUiL0(BQ 7DMC~:dt@- Ue D\-qp 8S9%AvNf&m0@cS3I1_ո$o<GvoBww0R]-4º{0 7\gC@[e6#oM)i7[> Pʝt5R[$` 7U+SŊ;^C)8z8~K$5ȪrUR xn"n^X<1s,$N*zu~0?3% z'ŭ0qfmɃqm2EjҞCv}L$o5ME^_l* ZdB&Ȩ&2HFé\YK;|ez;̓W ΚiI~[S_/,SV/@ӑ!AΓz>6GW ԅn"Xo/aʒ(*˳Y>{qeBs֝V|j-]ƹż1սMh9&Rge*E ,LbE1uS8"7ٓc_LKgQrQa;^ީKIɷj*k#1 (\Z A} B@`x[1gݫ&O|GK = $SG?#V;Nr+>d9/8Nc'-\B@OT ug@䀊XA8 !%I\'yvmA8nˮ)QMbe_dQP /x\vӎTk*'5;sU|A?gN":&aROJ]h lKJ!ޑ&S'Mz(;Aj'dV'ꥬP[m?lRLfa.sڬI.YSxʌbѻ>v9MbяcVp[?݁{i|mʧW̽Rt5 rWAP Ztʈ'DpP(ȳs}2lRx} N½e]#ӡ?Χ6X c2*X9|O/q&0LIۥtA Pk&DU!i%\ 9Mlr*@1]3SUzYXz y0J޴x|/$9I*0bFԌ+^6ӏV/<+ ߷܁RL2N}jF̱^U a ]u"Av"([8[yY;MchpB@]&tm-fOFЫCV3`S<%0|&OՐهvZj=RBvQ9X,QatqL.*@vsHj߸ ZlѮ=niid E[kjN`o1Qz8Ȧ#|OAux]ZNG$8RyG6े9f~J(5#H^V0׻}Z <8xrhہbᨳIL]-!%Fm"'JY9~+;QyڬGYY@X G؂'Cf^\M!G;[#fNXrEk!|wsFoUip%! f 02@")Xեy?vp4LZZwph1[RTeE2,?]/g;p o $V&0 fHϩ2}}+cSS;;  y(!3Zoȟ;n,0ŨI鸔|QW6|HE.7մ yq9CbDžhJ6eONџ'@Wc ?_o $lpr0_C7Idl{oT=W: p/H"@kZ|A{}G qr )Tzn#K:p%2Rqٯ)Kǩ?m"a#=Sj0E*jyFCFasO_6Aqi׭\VUZ?qﴁDւ/ع^,V+}lWp8zSYZ T7 w{uum-LoR*hft Z㬍6BqT.NGIJ"CS$2ؑ#I74OPhS"' $/Ftת뭨sX!Ҭ[*ZlUAG/޼wN7wڵu+Ъװa؅984zz̏?ثW.E߫8_vj^Y_ c/kK7`=-_=}kh2AUZ]JRN4C_#Ez$t1%$)iR 'ظ=KHFH.E  /M䐍䱔Bt|d|0fE4QÀdHI3"#$}H!'( #,`=>=$0 qN>>o[p(\m -­w-T(wБh*6 .,^+A"AU6(zNc6?0 1lwNHHYh*epRP*.ȴu}Cnp9FR[QM*Wu\A0yD=~jF\.keNh"Cj5J[[,̨XK@c0LN>$ʔӨ$FK{F(qOY4(Df ui 9e< ^~4¦'f96`A##^5zN@4ޕbJz n,914zzG=W)yrgķ_#Q/S?ɓǐ߆㌁x0SES/ Ϊ$l rk)._s>4cw;'EyqbIE;;E 8Hg&;SE&w6oIP~]XK#fԄ!+qG'gVugƤ&0tMEq$!xLeMԦ<N ~ `3KHlr`q:BڱM7cMWsG92N>ҬT*!,e^ڨF49/_IQ gr Eo(.!p!1E: O;69w269㮓f[:Snt) o"ƒJ%>HkgW4e;'hfJ;!i0rz(^+!K8Pk]ddP2Dye/lz=5;bz(pQbSDDkρxUɵ<>Q%h*ρ{H@lxT{^Z Fn/|Fm@l{;Ã_{E@̣~Hp3 /1S7u5=(?|f#pm3tzCy^O=j.yf|?h< u,=MrER(E*Et9oaS|WΗ. {89+X8"071_6D&SQ1{L[QE7B.ʺh r|)usX ;1s,S?0)S?-+۔ncbzcǂU}o4b̉riiZN#  --a}Cp"6BlV2t,ӱM0v9߶ Py.5|P8&5?Lߛp'OΓC?n|OBd h%4`X:9a [Tb8˺Ld4.~UC }{3[5˿a-XX %\TP[K&HZɔFsUtoըnּ|U i_dd "kUQȹH A<}Y$BaJla?!`WP…H=PgL#dh{w3 SB̤!Ӌc@`ϐ=hޥm M/Hmv8I}5 1B"t2=:5%')J$ELѱ4VE6ECqU|]vE2/=FFS4!Kf/W/sP$Ox?f4_o"IT?VL=5v.VL:Z^?52pwA 7.l:.fSjQPQiHVwAڹGl=(>,cdUeʠ2kNx$=.L\0T"0x$]F궟=FcSjxiNɼ[ޠsAKg2ikm$Ө˦W?u渿"b\5~%́@ks73l! _gOZXdtɂϗ‡Icc@C$*`iQl()%#e.* 0ʉv/_(/&ዧ6&Wtlb qtMGiЭ1?;sўnkӼ/-ѶƎb xIsS;>4Z$ -{HNDXcJU:C%e 睋EB׬Bhh'-Z}2[ZO$gMՃiSCٲ' xXYWS>팊w`aͪ9}TK}qغ2IHJ>1 R:PO|BE7KbRք@3z ( HPF%AѝL7MK72J,Bz FIyÁx%aE}C쒧⇯(}"a@3ezYbOXZ:tbavu>r^= H9 psjMar Yy +XkB$aPOU+LTm,a_.f08KGM_;:5 ՟Ce2%9S~Sy_/߆i1 VZ[amG3ճZPӡX1j<.b]}?YoYB^tz{m1:5XBlZOW=zh@(G2ztboV]Ukf|%!hkTq]!Bs y D! ӎONaPIڨ>#cΒ~|!ntG`7 T fPBJ6Y7,1 h[i() 6P2 <0|$N`oi0 Lmv\T0Ci}/,0ҾcR'љjW~r415NfaDIIΝb%(2dͻ]]LKMBPAlLXu8e ^ٯ& ޫ?PIXj=-:h-^#auSo1qg#Ӌue3s.i k`ޥ#zˉL(wCng3nAlfG|a@m2H~k|h׿L+R\T=#@Fw|vmA iϫ ܂QbzCܻRXL q'&X)uG!!Y.ƻSv Rnbe,.Ux9D.76K&h8ki BVuD y0v)`?/QIǕ"(SȤC8P86Ee-±B[#˜kl3D8@ʚ59),xd^^uTwSD5DF\ǐgt/nzZ\ 52=R5#OJ-"_ixtزclI|&ыw_J:WG=C.͹!lI6,Ta4Ϡcp>>q K#բ,=4R s{x旅ap=u8qQR׍j4sלSWa/4> Z@[vq<@8؉Iy>\Hb)a=yLC@md(I:̂keT!(UۡJj2G׫t]ZJ EGBOPk,&oa%6ijA||>ܴ/#OCF̽jdw&f|n Lri\Jc%‚pcT锟赓6 J\eUN{oBMk@\RUoEt,o!]Aā=_1l8<[UȠ`*gOyp0:B:5W .C$:P+z8 !$?B5'(0~oi,i 0d s@QF]gqLdž'bB F `G(.л#Z х