libipa_hbac-2.9.5-4.el9_5.1> M Mv ĉJ4!!%joLne)Ip-Bm5 ']g3f( p-Bm5 ']KuNr~51ؘ^TV-²}0hcmb~4:Jqu7^jCF@KSFW@234Ҫjįe%ۦxRxEX!tF) 3tK1>*=>+nuFŲ@Mv:hyH M@-{k7)WSnpWr_P]@A9?5;\{)R5檜2^:dX1~Q}B=%[X`okiH}d|2\|Q+Ď[ 6yv%'1R/q54e̿NS#}46+|_gq\i@Jc`n2u!FVסf9~P|'(ctKOuA\m4To\a*̫Ĵ139dff8e2e86b5719ef0de086f0aaa8a4f42cd5ae40bea492e9295ff0b7312f66a4ba41eee324d4491ab0a7b945b11895523023b~ă$;{:q 鼳 @>=/ ?.d  = 8Dbhp     (Pp @  (>8H9: ^G*H* I*@X*HY*\\*]*^+b+d,e,f-l-t- u-@v-`w.x.(y.H .l.p.v..Clibipa_hbac2.9.54.el9_5.1FreeIPA HBAC Evaluator libraryUtility library to validate FreeIPA HBAC rules for authorization requestsg3cpb-c6f38e83-dab8-4168-8f84-a38b4f3fa084-b-s390x$Rocky Linux 9.5Rocky Enterprise Software FoundationLGPLv3+Rocky Linux Build System (Peridot) Unspecified*;KAAA큤g3eg3eg3eg3eg3eg3efEfE87aaf30e58ef6e050ec331721c289be022d12fdb8fb8f01b3800431ab18e3a6b8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b9036c57f43c939054fd4b831f271a14c97a488c38f98cdda5e887c5d396e3b3bc58../../../../usr/lib64/! @fg@e!@e@e@e)eReRe@d dd@ddu@doMdbc<@c]cdAlexey Tikhonov - 2.9.5-4.1Alexey Tikhonov - 2.9.5-4Alexey Tikhonov - 2.9.5-3Alexey Tikhonov - 2.9.5-2Alexey Tikhonov - 2.9.5-1Alexey Tikhonov - 2.9.4-7Alexey Tikhonov - 2.9.4-6Alexey Tikhonov - 2.9.4-5Alexey Tikhonov - 2.9.4-4Alexey Tikhonov - 2.9.4-3Alexey Tikhonov - 2.9.4-2Alexey Tikhonov - 2.9.4-1Alexey Tikhonov - 2.9.3-2Alexey Tikhonov - 2.9.3-1Alexey Tikhonov - 2.9.2-2Alexey Tikhonov - 2.9.2-1Alexey Tikhonov - 2.9.1-2Alexey Tikhonov - 2.9.1-1Alexey Tikhonov - 2.9.0-5Alexey Tikhonov - 2.9.0-4Alexey Tikhonov - 2.9.0-3Alexey Tikhonov - 2.9.0-1Alexey Tikhonov - 2.8.2-2Alexey Tikhonov - 2.8.2-1Alexey Tikhonov - 2.8.1-1- Resolves: RHEL-59876 - EL9/CentOS Stream 9 lost offline smart card authentication - Resolves: RHEL-50912 - possible regression of rhbz#2196521- Resolves: RHEL-49711 - SYSDB: remove index on dataExpireTimestamp - Resolves: RHEL-49811 - 2FA is being enforced after upgrading 2.9.1->2.9.4- Resolves: RHEL-40742 - passkey_child with wrong owner- Resolves: RHEL-40742 - passkey_child with wrong owner - Resolves: RHEL-41047 - sssd is skipping GPO evaluation with auto_private_groups - Resolves: RHEL-40570 - GPO access the wrong memory location- Resolves: RHEL-36586 - Rebase SSSD for RHEL 9.5 - Resolves: RHEL-27716 - SSSD fails to process AD groups with 'Global Scope' correctly causing incomplete group-membership on RHEL if cache is empty - Resolves: RHEL-17659 - [RfE] SSSD Failover Enhancements - Resolves: RHEL-35781 - Passkey errors when handling multiple altSecurityIdentities values - Resolves: RHEL-30142 - sssd_pac is crashing - Resolves: RHEL-22206 - Errors in krb5_child.log every time a user authenticates - Pre-authentication failed: No pkinit_anchors supplied - Resolves: RHEL-32595 - Excessive "Domain not found' messages logged to sssd_nss & sssd_be in multidomain AD forest - Resolves: RHEL-28666 - sssctl config-check is reporting false positive error msg - Resolves: RHEL-29454 - NULL dereference in inotify handling - Resolves: RHEL-1654 - Improve documentation for allowing e-mail address as username- Relates: RHEL-33645 - Rebase Samba to the latest 4.20.x release- Resolves: RHEL-27209 - Race condition during authorization leads to GPO policies functioning inconsistently [rhel-9.4.0]- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-22340 - socket leak - Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-12503 - AD users are unable to log in due to case sensitivity of user because the domain is found as an alias to the email address. - Resolves: RHEL-22288 - ssh pubkey stored in ldap/AD no longer works to authenticate via sssd - Resolves: RHEL-22194 - gdm smartcard login fails with sssd-2.9.3 in case of multiple identities- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-18395 - latest sssd breaks logging in via XDMCP for LDAP/Kerberos users - Resolves: RHEL-17498 - New sssd.conf seems not to be backwards compatible (wrt SmartCard auth of local users using 'files provider') [rhel-9] - Resolves: RHEL-21079 - SSSD GPO lacks group resolution on hosts [rhel-9] - Resolves: RHEL-19211 - Excessive logging to sssd_nss and sssd_be in multi-domain AD forest [rhel-9]- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-14427 - Expected cn in RDN, got uid - Resolves: RHEL-12229 - HANA validation on RHEL 9.2 issue possibly related to libc/nss_sss behaviour - Resolves: RHEL-3925 - SSSD goes offline when, while reading a single user, misses a required attribute (i.e. SID) - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: RHEL-4146 - Incorrect handling of reverse IPv6 update results in update failure - Resolves: RHEL-4971 - sssd-kcm does not appear to expire Kerberos tickets (RFE: sssd_kcm should have the option to automatically delete the expired tickets)- Resolves: RHEL-2319 - Passkey authentication for centrally managed users- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: rhbz#2234829 - SSSD runs multiples lookup search for each NFS request (SBUS req chaining stopped working) - Resolves: rhbz#2236119 - dbus and crond getting terminated with SIGBUS in sss_client code- Resolves: rhbz#2218858 - [sssd] SSSD enters failed state after heavy load in the system- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#2196816 - [RHEL9] [sssd] User lookup on IPA client fails with 's2n get_fqlist request failed' - Resolves: rhbz#2162552 - sssd client caches old data after removing netgroup member on IDM - Resolves: rhbz#2189542 - [sssd] RHEL 9.3 Tier 0 Localization - Resolves: rhbz#2133854 - [RHEL9] In some cases when `sdap_add_incomplete_groups()` is called with `ignore_group_members = true`, groups should be treated as complete - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys - Resolves: rhbz#1913839 - filter_groups doesn't filter GID from 'id' output: AD + 'ldap_id_mapping = True' corner case - Resolves: rhbz#2100789 - [Improvement] sssctl config-check command does not show an error when we don't have id_provider in the domain section - Resolves: rhbz#2152177 - [RFE] Add support for ldapi:// URLs - Resolves: rhbz#2164852 - man page entry should make clear that a nested group needs a name - Resolves: rhbz#2166627 - Improvement: sss_client: add 'getsidbyusername()' and 'getsidbygroupname()' and corresponding python bindings - Resolves: rhbz#2166943 - kinit switches KCM away from the newly issued ticket - Resolves: rhbz#2167728 - [sssd] Auth fails if client cannot speak to forest root domain (ldap_sasl_interactive_bind_s failed)- Resolves: rhbz#2160001 - Reference to 'sssd-ldap-attributes' man page is missing in 'sssd-ldap', etc man pages - Resolves: rhbz#2143159 - automount killed by SIGSEGV- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1608496 - sssd failing to register dynamic DNS addresses against an AD server due to unnecessary DNS search - Resolves: rhbz#2110091 - SSSD doesn't handle changes in 'resolv.conf' properly (when started right before network service) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139684 - [sssd] RHEL 9.2 Tier 0 Localization - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list - Resolves: rhbz#2142794 - SSSD: `sssctl analyze` command shouldn't require 'root' privileged - Resolves: rhbz#2144893 - changing password with ldap_password_policy = shadow does not take effect immediately - Resolves: rhbz#2148737 - UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1507035 - [RFE] SSSD does not support to change the user’s password when option ldap_pwd_policy equals to shadow in sssd.conf file - Resolves: rhbz#1766490 - Use negative cache better and domain checks for lookup by SIDs - Resolves: rhbz#1964121 - RFE: Add an option to sssd config to convert home directories to lowercase (or add a new template for the 'override_homedir' option) - Resolves: rhbz#2074307 - reduce debug level in case well_known_sid_to_name() fails - Resolves: rhbz#2096031 - SSSD: sdap_handle_id_collision_for_incomplete_groups debug message missing a new line - Resolves: rhbz#2103325 - Supported AD group types should be explained in the docs - Resolves: rhbz#2111388 - authenticating against external IdP services okta (native app) with OAuth client secret failed - Resolves: rhbz#2115171 - SSSD: duplicate dns_resolver_* option in man sssd.conf - Resolves: rhbz#2127492 - sssd timezone issues sudonotafter - Resolves: rhbz#2128840 - [RFE] provide dbus method to find users by attr - Resolves: rhbz#2128883 - Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -march=z14 -mtune=z15 -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19s390x-redhat-linux-gnudirectoryELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=e25e778d819485728bb0b28d778f6008e61ede56, strippedASCII text PPPPRRRRRutf-88b928e6ddedc882952f8ac3cb96a1fa28486ea0f7d84d91d9eeab2fd7b1e50ab7c80355612c986142cad346e05e8e4e301c054578028c1b00363b20667bea88b?0(/hLs͟@d<۱!:2 "q4v4DzQvqn.^M mW!`cx]/6%^e+ pP%^@\#D r;VA's,^y?vn"~o/R"kn&\B dˇ%+G]\Lw y!M{;]abn?v'X.Սu'c?uv Hp *܇Gollr1~`I@AP)kj"hQ0Xg6MbbHx>wBwl$.tb]j%( ݑy¤ 䵡Ȍziȫ{Q-/W3"ի]]9v햊Ko4?VQӶhv앮FլӨT~~ھF+(6~,=k%b9~MFE}E{4tGk;A)Hʓ2aw%E]Y h, RSذQrP$>%+>A@5)t$Q @B&(1JuEq@\[NE$6v7ƗS:.ɧcTN,* }؅q}5ErRNj2M345JkSUOLfUlVU(&3ʊ9u:>ӗU(ZG';D^h'+ƷO)fJJʪ PVحF=ؓ+ 2-S}oS?z0itzo[tm/ih5=ܮ~J>ߎ2l,LW1<}ڿK$9HrԤS6dqۚ޷OlJU ai\A.E{t"17%o2!ӕ-i /rچ X[d#ם./b'4T ΃ pfJ@DL?98Fn#v+0h yB%H _7,zF0GFRt-[Ag611Chw6Uh!-$ZnN@1.2TVn@/(jē ;qHLY!.%\,9r0aFɺ`aV$w@f H p@k(J)` 9Xd[$籁 m+@eiN 1OH*[[ H.` q{s +%#:ʠrj节gF`b #B+ XHxN#NڜU XGz xmm+!p7'DR^d5< SĹ,WB#qEd')Ci'=*K.KoI_|((0#%ʇ Ւ\FfJ36,)]IkSeI6Qrz9qSRyB`▅CEdaOy8rg'^Ps5mQ| iYfx!l60{؁c |2ȜfIx^sĉ,is#)wʅ}vTlwܴѿ&^!,0X%Yg_ 4MnxLYW 5_o(Ƹ0;>3-èP^CqCD nG` {AaT$> @,dg#% IGͤgӂN" PFc5lI(V$FAseC9&xP0P,XF.*8# qDA@8L;pG݀ݠ-\x&128 ᓣgsCTC ], -BAn.O8 c*sQrF:esa?%8.N8 asm4 6Vɦԯit[|Uپ8NXkMPʟޚCüʸYmW5:Kwq^2bx~l3[ Oesۦm_tdůmz[h~ĭ.mlf[ qcjƱZ-A.+:9ٴ?}4jsyoZ~ot_]OSfmom\Ϋ4ԣm<Øߖ_j:~Toe_h[So~{zyfVm[=xKj|[^K.ߴ5zi-/Q[U_Jy^~{/Yf=^e6b miUTSUS4OxUxJh$9f,64ܞ21=LaPϘ;Hi~J=RXG,F7]Z?9Mn?WfϱZoj-oTfu[1n̎Fw[qf?aF0U"W:IWĺA P) ?/$,9?6ȅU(%:##~4 j- elx<噩b> O*ӉP|dx n+]Ap>ػup6CZ9r?=+zLs ?c!`h Ty[ne8w(7R6p!P:,GKl\j7I\;8'{D@qH$Ð0ƈ\ Sboy)%b}C=A[(K;]ǖ&Z?-{А bq(4קӀisb״:&fUֹPg38p<5V {N%dsT]t5l} 4r^J,r}bp€;Mx7՟x VǨss v%샸%B72UvLYw/PMqW8u|XsN̈́[WttqpfM$;q䥪@ag|5*#͇AC9n5h^e|%d"h`ob,ʺ鱒+))r^)(Bb[[ )%˝57E*xq1LoV;omoEG.?63Z< 7T7VoAl?Lucp|o9 p7_)J"RbDa ų+?`qp;0E/[Zl&Zܕs6osɷK*& 2 M>pTF>hmdD?%HW$>WV0A{.τiG,j O!W) _JKEYY GP۲, @L>l8O(:םբV.ˇ:()DpOitfF*{\ >A {#?*3t  1^?وy03sxQ!a t"F} 8D'|,?&s,!X|p.G,Q[>߉X_unD Dc+bb/tJ>,a&3Xjn\1y$`qƏi2ߘaH< H WSѝj*^-@0!=u UKa, #oVb|6ci93IV:}뾳>$$.]ScRC2o{R|sՉn1O[v>OΣ JEۨ9[ھj:$!@0ap IzF|I^}5C8͖”*|?ut$g$Dʏu=dKPox yInjK6TKO Ofh&4oɿbhbs;ؐU9KоTMD3lّN6m7ƘR ~l I_HJ#E?$mOöɨKǑY1KzRggʀ2_y RWЁFuo4y'Yi?xui7~?# ?&l}_Vvҕ(&ߠUSngpKe՘3}1F؃}1 +Tvh٨ɴ2 rG!u_$k'ןg&nL(+h8@VVg_Jdkt( T^1?z1$4d.۰'b"c8tKoqi3f;bP%Y̐䏁!$1εOWt֞mu>dvF n3?A+F KD1 'r{˒oɠa_Y6ڈN.U"ی6Qdi,=eSE{p bPSgo]I~问 fMz^s dxGσ78&l4_M>֦ k@#v1g]ZĎ%o{ ie* R{B% $<#~ZKEz3Ц9 ((dxFե?<1Gi]['& @C_IKs7E%8 Ei ak9v| ~ִ%▭3 K'!^ZТZkA)ҺvŒebaiLTTeAa$*,uNj 7IMQ9ޯi'F2)lMޤ|h:n>|PMߍOدD88ǣ8kzG++s-Pチo3ӽu2gjmV'kV&?{oTϰk_]/ݑ+q}v׻Y(6TN˴TNn*7/ȖZxVbV5&'(, BAרDT$ j22^)f5q秾?flδ[9e?+R%t{_5h?2?(h|,A5TEX3 Q%7  a8(.Ǹo8Y.yU=\ ‰@}v?7Ht'9Ns$ufb FFl;mmļ T0&f+m<{5I+WS0 0\lFñ-R)E2"")H *u9܃bu!$IВ+aZ ː4B6겠͗3k @0i9`i`}tϦt2Fw9lD-"*<fe5ԡykFO3đCC 6HVZaALѫmb n`SJ [W$#Pv 5%r[F:f\|1jVH<(k8>m$VY"ST/U { e\z ÂdE[hDhRڏ L&+khM*>PmC~:̍w Ce4'06 3z_T6yS&86(Yxw95CaJvXJ^}0#="di~ MI}!`z6 ?>N!,In4H[v53.+?ȗDBHcܒMҼj:G^ CmP&a7'ba󁳔*V^vלhW~9)>c bŃESg oxĕ 1=yGNw^ 6BE Ըcc"?;xv@^"S0:NHL@Dq^LuLl g]qh9Ŕa?;{-vURSW= @3Jm&?-ZB!hrn3>+;Q zq?AK!b&Y-HZ^̧^ivl‹IiZ2(pw㉇K :8oBlbHZ4|3] {2 0(ӌ56dE=!8N5'ِj4Ll_u 5s7kFhY ![C&,G' lE6[/zlL<lhd0M-o! ˈICJɔ#ڄ/Jf&.)A}Kl.{QaG22fU_jkqfDrBn( Qyh\G>@-0Jz~DZA]b) mΤv+ k2Wذ Qdj$ds2xͼIi|9v[{S;2(͆.vDo (U#f6m&Iopb00xJ*[@Y Oۉ;gnE&כ͗ 7eVc' b*{sD6 Fz.']RҬP@Z% ig@%ۆ6ΘӄU\\*V}I_L?56H`[ˤqkdH@UW´F)l49rF˜j3+{yq.ztUg7yDn:m>N&m!0|cB%&rȦ~:<2.;P^~/>q 0s* 6-¨9)3K&FN0ivdLFWL]qI2譴'6׎QD'"kȯۆJ}(s&<O3I ɰd/8XpBNDAQ #50 ZE0ȗr;D:](6)@?%zedG?yVW[cWr=`k/md]pYtn_X&"#`:=N[K"a+88ׁ?W,<^Rjzn]*CI_(ω Y g1 /R\i/E_=BںaҼ-B'2-=F .2jOt{Qij"kҮa[VR8RRO(Qqϥ;uzcMR-mXvB#X9fa9-BC!(3BɟL%gSJ1nٔ Nj6*uBߏBSGɞ``@ll: ] D?LB%ᨾɖc"ͯ")c4 *Bc8j 9x; эiP/B ZP!e1u|8۾YͤDdK9ٶzL6,8]l 2N45:kLn 'ebȌѥR`3T-Z Ň1CP쨮m1w2ݘ$ӊ_ZR'$ԎF Ќi]DS=|ROi}m 6} QHpR1oo(xdYe )gS^u27R6sAƲ:>L:b&N*0>:]wHZ9h/ѵmZ89 qpߖN!NNsY())@Łr'o9' @P%ˑO oUu lE -\ʤ% H%Dڧ3Al (aa ~ {2zy>D(<NPv-2C.w-8 %Rb '$l]RxZ$w%娫[lЬcdnV&+(V昗RBzW2zB DV[@}|#y& H[Ԝ=k(BFn>6aq!)QVQAr`Q]+Dq0Db#>8N9~o䴓XNIQVN96 iH@B0r]Fޞ0ܿ?I@4+, U큸ho),Ŗ%ZQ+Ъ#4 뺌z=A+k}E\ ہP77U-8XUUռgRfkCW_y2X*f4-Ca8ǿ寿S̶;̕z ޮ]je $xYv/լR߲{믵݊36[IH1'$9'#/'z|zHL:M: N?|~g#  Vڪ \6Cˇ]tro fu2Uə(> 12[khqmj+,xwY}SOw&x\:ƆB .LpRP(آ䧫V}t>3%^EnJ<\It{?j ~ !}~fמ?o;O*4X"( nFsKY v/#{΍dxy[f*g `-eG98rRGSs  Ȳz5H&j4X>Y l/V\l`#ѸX-3H9Z~#o._έ0@^%cx;:A7fIHW.i Q>6dmBq|ap2lVDZa[^$O< 0_yox m^v]A _Zsg&&P&#B7Vy)ν4I7FFk%DttK--s;-̾2T`ՠ+s2zhXuV.#q pi‰G"sjHCVw0. 0/O%6'ʺaHHIYlv(,_)b&jV;)HVU-7 z5X[BB[q^gUͪsV'1*:݋2SW GM(N1 l4F+~<i܇mc,XJ5w##%/L]TaajBz jD\a{LX_CqA#`o]£52DؕP{wȽ]_$s2&}jqmS&# i=64p|ϔMatrj&g;Ti YrVW`wRdРYDpO\ߢ%uZ;w tt|+/wԅ~"-||p]?ڻPr#2:܌w2b[u} Ў' cCJz 2&+FO&J$!t!( \9ACkX }-)׎N#wcW"d^c}Z]q'W3&fءD cMI|Fm-:5D0]M[IՕ&.,0r^44z-tڂ7\MPwVvp>4欦Lm /S~W0{v'* cMwO8"3e Pq I-H?ʵ8{]٤) !5V1k2YBL<\G[ ȈۮOv3OㄅQX휎 0%œ \gތ7\Xs?g/B A;Sz[ͤh^=@Kx_gXϨ08|gXt1qW-1آe9u Zqޭn܋MLCQ6W B)J8RKdPb4jtZz>`$ ":=sx7\g=#J\+`J[e1 Ql޸Iކ].Niuw)B$WiؖC*'O. 9ٗq2Ư?uSR3D@+Nl#naL-ظ\<2/q[R*tvcY9^ڡnUBUBD^MOF/@CDCTP3UP*J|R6ARQiu|_~"~+@S8 $OIRJQL\ڝM + ubiei1N#1B!ddHqQR tT$ܱ,'M{$3E$Ie-ssV#/mc҆C"kK)pe\#(B&Mb[)L3fL9<6.RYy-i2֩)| (ø gkQZ#[*Pk6d%!W <4,)O,qAE1ҤXπDWT|yn!ia7t1Oʗ]4j(uTc724Ozn b y\fSʴݮ vAec t|/ꢮ"Q|#==ʒd~eQ7v0x8ԍ[ (ђiȬ[_E=KVZp Q(0/g!˗ :0 ="Y jI]0!>[~gcԦ8љˮ78}vErb 4BU ֵ܊z8*&.}@F.h䶞AQ(FQᤜ^aBWw:iؠ55`8ܤp$(*=ˬ 'gp޾8$*5O:bsph,^drz:@9~Hrj/b3C PJg'P23Q0-[j\ŌA鸊*AA:9\b@qIk"l`L뾅N2 @{Hl@3ݑFU̳N&=r?tQ ~vJ `!I%MG+LDTmX;8Iw> 0&iZt|%. I)Dbt- 16})G#p]H}ER S_UYn1ٹdq.cD[SОd;:A%1[(>]c",e)+zT_vkH= !D`19f̈"Wy'ߦ1 [2ÎAD|8˘=)#ɤ%Zen}I.,;|t?=VBoutjXWL歖sq?똲hϐ9; V,r'ޤU Y 4rJvGꪰۈZ()HMC{ @~ ~,A\z<\v0!nl=QTjh(,|l,<>º#~Gx!bCc+t$6 >huHzLh"[\KU z,w 1.0dm$;x*uX$#7#xG[. /[uoH&$`2Dw'@~[\;C4'q({Ƥ"qqˆl*B"^ؘ@Ԟ?co %R¤}0|[%}c*XyChB @[5#&.,?i~OZ3ەɉK7YMY'G.5T$[~1?> ":?rJ~|0yRKSW m3Uo:=Gf:p3TGH.S?q0 A7eP(eڋ NSBH2CI )G ]B01֝ 6xߑOAl8Z$;TKDkkuFŦRd!.Hee HY<.]7*!_zzrу*ɦ!2>55ɴy4L ~3&ՄүMBڝcyVcaT"bH FQQ ?l^<$3.l`^8a >Aihoݾ ?R Qa$\ 6"{9Tˬ*:UO7 [CYx1)<NLv^rG_CdEǡQW Ax8 ˆ0