libipa_hbac-2.9.5-4.el9_5.1> M Mv ĉJ4!!%joLne)Ip-Bm5 ']g3f+releng@rockylinux.org p-Bm5 ']5j%ry퇁afReqkҺұ亇ݕo_Yd)eLv=zYfM dYS[^b,kNSJ\RQl2NҢ沄HwqT._hH¬Y*yt9RD.yJЁZWxb0:S/\}:H[ "1YQ$@D:pWxxZP$ (W|MKJOWZdsYKؒfҭLJ;bgr+Pcu]=X]wjoNe][XU,1)w~I UbZy:ʽp,[K  7;[═- 0us%zF3ퟎݷ[eUn'f݉CA* gp%:,^Fű)U۰BT,^BG { b%{(H֟2,MUR1d3b99cb99242da2bc3b83e7ae1015a6d99200f37786f2a28832ef0fe025a5b49e1d4f3016e368dc95b1539b11d21a1ebeb1a23c (J* 2c{>=.?.d  = <Hflt     6Tp   ( 8,9: BG)H*I*X*$Y*8\*\]*x^*b+Ud,e,f,l,t,u-v-4w-x-y. .4.8.>..Clibipa_hbac2.9.54.el9_5.1FreeIPA HBAC Evaluator libraryUtility library to validate FreeIPA HBAC rules for authorization requestsg3cMpb-e999b346-4e7b-4b32-9155-6376c2259010-b-x86-64Rocky Linux 9.5Rocky Enterprise Software FoundationLGPLv3+Rocky Linux Build System (Peridot) Unspecifiedhttps://github.com/SSSD/sssd/linuxx86_64*LKAA큤g3cg3cg3cg3cg3cfEfEc7d98dd163a0b413491df9f68fda10f0720328a2dbfa035971907aa95c09d15a8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b9036c57f43c939054fd4b831f271a14c97a488c38f98cdda5e887c5d396e3b3bc58../../../../usr/lib64/libipa_hbac.so.0.1.0libipa_hbac.so.0.1.0rootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.9.5-4.el9_5.1.src.rpmlibipa_hbaclibipa_hbac(x86-64)libipa_hbac.so.0()(64bit)libipa_hbac.so.0(IPA_HBAC_0.0.1)(64bit)libipa_hbac.so.0(IPA_HBAC_0.1.0)(64bit)@@@@    @libc.so.6()(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.4)(64bit)libunistring.so.2()(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)rtld(GNU_HASH)3.0.4-14.6.0-14.0-15.4.18-14.16.1.3ffffy_fE@f/f! @fg@e!@e@e@e)eReRe@d dd@ddu@doMdbc<@c]cdAlexey Tikhonov - 2.9.5-4.1Alexey Tikhonov - 2.9.5-4Alexey Tikhonov - 2.9.5-3Alexey Tikhonov - 2.9.5-2Alexey Tikhonov - 2.9.5-1Alexey Tikhonov - 2.9.4-7Alexey Tikhonov - 2.9.4-6Alexey Tikhonov - 2.9.4-5Alexey Tikhonov - 2.9.4-4Alexey Tikhonov - 2.9.4-3Alexey Tikhonov - 2.9.4-2Alexey Tikhonov - 2.9.4-1Alexey Tikhonov - 2.9.3-2Alexey Tikhonov - 2.9.3-1Alexey Tikhonov - 2.9.2-2Alexey Tikhonov - 2.9.2-1Alexey Tikhonov - 2.9.1-2Alexey Tikhonov - 2.9.1-1Alexey Tikhonov - 2.9.0-5Alexey Tikhonov - 2.9.0-4Alexey Tikhonov - 2.9.0-3Alexey Tikhonov - 2.9.0-1Alexey Tikhonov - 2.8.2-2Alexey Tikhonov - 2.8.2-1Alexey Tikhonov - 2.8.1-1- Resolves: RHEL-59876 - EL9/CentOS Stream 9 lost offline smart card authentication - Resolves: RHEL-50912 - possible regression of rhbz#2196521- Resolves: RHEL-49711 - SYSDB: remove index on dataExpireTimestamp - Resolves: RHEL-49811 - 2FA is being enforced after upgrading 2.9.1->2.9.4- Resolves: RHEL-40742 - passkey_child with wrong owner- Resolves: RHEL-40742 - passkey_child with wrong owner - Resolves: RHEL-41047 - sssd is skipping GPO evaluation with auto_private_groups - Resolves: RHEL-40570 - GPO access the wrong memory location- Resolves: RHEL-36586 - Rebase SSSD for RHEL 9.5 - Resolves: RHEL-27716 - SSSD fails to process AD groups with 'Global Scope' correctly causing incomplete group-membership on RHEL if cache is empty - Resolves: RHEL-17659 - [RfE] SSSD Failover Enhancements - Resolves: RHEL-35781 - Passkey errors when handling multiple altSecurityIdentities values - Resolves: RHEL-30142 - sssd_pac is crashing - Resolves: RHEL-22206 - Errors in krb5_child.log every time a user authenticates - Pre-authentication failed: No pkinit_anchors supplied - Resolves: RHEL-32595 - Excessive "Domain not found' messages logged to sssd_nss & sssd_be in multidomain AD forest - Resolves: RHEL-28666 - sssctl config-check is reporting false positive error msg - Resolves: RHEL-29454 - NULL dereference in inotify handling - Resolves: RHEL-1654 - Improve documentation for allowing e-mail address as username- Relates: RHEL-33645 - Rebase Samba to the latest 4.20.x release- Resolves: RHEL-27209 - Race condition during authorization leads to GPO policies functioning inconsistently [rhel-9.4.0]- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-22340 - socket leak - Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-12503 - AD users are unable to log in due to case sensitivity of user because the domain is found as an alias to the email address. - Resolves: RHEL-22288 - ssh pubkey stored in ldap/AD no longer works to authenticate via sssd - Resolves: RHEL-22194 - gdm smartcard login fails with sssd-2.9.3 in case of multiple identities- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-18395 - latest sssd breaks logging in via XDMCP for LDAP/Kerberos users - Resolves: RHEL-17498 - New sssd.conf seems not to be backwards compatible (wrt SmartCard auth of local users using 'files provider') [rhel-9] - Resolves: RHEL-21079 - SSSD GPO lacks group resolution on hosts [rhel-9] - Resolves: RHEL-19211 - Excessive logging to sssd_nss and sssd_be in multi-domain AD forest [rhel-9]- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-14427 - Expected cn in RDN, got uid - Resolves: RHEL-12229 - HANA validation on RHEL 9.2 issue possibly related to libc/nss_sss behaviour - Resolves: RHEL-3925 - SSSD goes offline when, while reading a single user, misses a required attribute (i.e. SID) - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: RHEL-4146 - Incorrect handling of reverse IPv6 update results in update failure - Resolves: RHEL-4971 - sssd-kcm does not appear to expire Kerberos tickets (RFE: sssd_kcm should have the option to automatically delete the expired tickets)- Resolves: RHEL-2319 - Passkey authentication for centrally managed users- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: rhbz#2234829 - SSSD runs multiples lookup search for each NFS request (SBUS req chaining stopped working) - Resolves: rhbz#2236119 - dbus and crond getting terminated with SIGBUS in sss_client code- Resolves: rhbz#2218858 - [sssd] SSSD enters failed state after heavy load in the system- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#2196816 - [RHEL9] [sssd] User lookup on IPA client fails with 's2n get_fqlist request failed' - Resolves: rhbz#2162552 - sssd client caches old data after removing netgroup member on IDM - Resolves: rhbz#2189542 - [sssd] RHEL 9.3 Tier 0 Localization - Resolves: rhbz#2133854 - [RHEL9] In some cases when `sdap_add_incomplete_groups()` is called with `ignore_group_members = true`, groups should be treated as complete - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys - Resolves: rhbz#1913839 - filter_groups doesn't filter GID from 'id' output: AD + 'ldap_id_mapping = True' corner case - Resolves: rhbz#2100789 - [Improvement] sssctl config-check command does not show an error when we don't have id_provider in the domain section - Resolves: rhbz#2152177 - [RFE] Add support for ldapi:// URLs - Resolves: rhbz#2164852 - man page entry should make clear that a nested group needs a name - Resolves: rhbz#2166627 - Improvement: sss_client: add 'getsidbyusername()' and 'getsidbygroupname()' and corresponding python bindings - Resolves: rhbz#2166943 - kinit switches KCM away from the newly issued ticket - Resolves: rhbz#2167728 - [sssd] Auth fails if client cannot speak to forest root domain (ldap_sasl_interactive_bind_s failed)- Resolves: rhbz#2160001 - Reference to 'sssd-ldap-attributes' man page is missing in 'sssd-ldap', etc man pages - Resolves: rhbz#2143159 - automount killed by SIGSEGV- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1608496 - sssd failing to register dynamic DNS addresses against an AD server due to unnecessary DNS search - Resolves: rhbz#2110091 - SSSD doesn't handle changes in 'resolv.conf' properly (when started right before network service) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139684 - [sssd] RHEL 9.2 Tier 0 Localization - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list - Resolves: rhbz#2142794 - SSSD: `sssctl analyze` command shouldn't require 'root' privileged - Resolves: rhbz#2144893 - changing password with ldap_password_policy = shadow does not take effect immediately - Resolves: rhbz#2148737 - UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1507035 - [RFE] SSSD does not support to change the user’s password when option ldap_pwd_policy equals to shadow in sssd.conf file - Resolves: rhbz#1766490 - Use negative cache better and domain checks for lookup by SIDs - Resolves: rhbz#1964121 - RFE: Add an option to sssd config to convert home directories to lowercase (or add a new template for the 'override_homedir' option) - Resolves: rhbz#2074307 - reduce debug level in case well_known_sid_to_name() fails - Resolves: rhbz#2096031 - SSSD: sdap_handle_id_collision_for_incomplete_groups debug message missing a new line - Resolves: rhbz#2103325 - Supported AD group types should be explained in the docs - Resolves: rhbz#2111388 - authenticating against external IdP services okta (native app) with OAuth client secret failed - Resolves: rhbz#2115171 - SSSD: duplicate dns_resolver_* option in man sssd.conf - Resolves: rhbz#2127492 - sssd timezone issues sudonotafter - Resolves: rhbz#2128840 - [RFE] provide dbus method to find users by attr - Resolves: rhbz#2128883 - Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list2.9.5-4.el9_5.12.9.5-4.el9_5.1.build-id0ddbc99b84e5c59deedeccc970cfd66f627459libipa_hbac.so.0libipa_hbac.so.0.1.0libipa_hbacCOPYINGCOPYING.LESSER/usr/lib//usr/lib/.build-id/20//usr/lib64//usr/share/licenses//usr/share/licenses/libipa_hbac/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -march=x86-64-v2 -mtune=generic -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protectioncpiozstd19x86_64-redhat-linux-gnudirectoryELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=200ddbc99b84e5c59deedeccc970cfd66f627459, strippedASCII text PPPPRRRRRutf-8d2a32d79c18daf9a2f746fac40c8e2698210e2540386696e2627c9f0286c4794756166d06eb462d8208fbaf2db4cc6c5bd59e8e78932b24fdc59d17962c312d6?0(/hDZ?Mm_QZ*P~C!)Z{4V(@NJXV:"-%.-f^ PCVSދNyVA\=29 r  #M09g ߖPeWrW$\;q\O$|}13 }M}0T(In2lA$*LʇA&3 @j02] Αg9*C(@r$0]XzO!}퇒Iwẉ3#qʃw!w! aD)'&]0a "1Sy[U@5ޖrK2 BΰtZA(_ԧU jq]3ߖ`ĵזK|fw(%r)wGSy'p5k\/yYD؉f/G  ħp)R*&A Y8ɖ#V88X3Z0?KSUg.~p_\^Q!1,k`HQA[ޮˀQ?Ҵ2)r `ḐE(r@J>XL*tvd1L6$pƯ-0?wP( =3 ̟l^Nw>Xsq[5:NIަorHdzC4h/ʇvpn|q.wkHz[KDttu|v{q>9{٢hƵ{7upFjh6qvok.\m[4Zǵ|',v6[i^kyjkk4=7;864yy~eEgz٢/k'Kn/8gs-4)'k϶:7I#h&#zS)-EFqY4kz5`V,"&3$Y< I Ɏ.)ű=iZ`liY2c(bmäh|L^6A>)8*%*@wOYG3"m֜qȀR͙ bj0sr,n6UW-6oyv n~m.״.e_Z6^ǿ}gOϽof:k3˜NJ$V WNSI%yg}4IB$^~PP[@ϯШItB1KnYP%\D՘Z xB*&nѱ<to/-$[T*@D*5NNB|U(vde8 4HAZ(?Q 苃6mX` ڃG pl/S q8-t@h*#˅NuR"Ɍ^:0?,(79"Wd+<1_!ldLXqc 1\hytےc%Ì!C 0C (!0 UNzA a z NeL ڪvN$zh+bfGhL{L# 0pB53fe++G^ &t z-Ҏ%H$qƏFaR05@!7` iCuE6"In ($A3L:J2$!"$P "da3LG܎iȸA6L?ߪ$ a@,X9ˁ%P(}xWDOt{;~߅ ^%tŀ ?B`ÓU L/P.$8:־87&/*Gk\5s&0 ;g{uD2w-[oߥg )1CUy`J\~ZSc޹ NF7:\BMeʌsyVɁmv=z+yj>qی$HL+k>KI) ky`i򚴞e?)c䘖g< Ct^oSAӖ%%:*K"kMzf9zt Y2a1nVW촋$CboQ:Ub;Clz\m:VB7v.){mE-Ը LW!;'Is^h7 0?z )lF\)^CML *>,m~( 0e]?/Kc ::!;Dc=? 8]#ڠS@)qY24hߐ 1E1j0m8 hz&=3|MڟӘ'5 3Pg`K< /MCs,`ǗVm~ |\(fh %i[W<49/,'@PQ9TS}MoFtW1i"Di`+aKxB)cc6uD2H 0 E..SUZuO#*+G;u8eȻ>aN )C~ b-8|4[=% VH/̈zI]5 8=[ua?xT³k FM-SLkr(/!!=Sy:G2E1zQuAt:46/8~8 SGfF󛾐][qlcMn硜Yh[EOP!?C/D!@Rv+.\]#7`@KB[UA |p? g{P3 !Ky]D!8x2+;wҾ &qQrH8KL z+,&/X1ZxI}5{V0y"YjO}|[` $"+q]K/BpXFw,sI ;-$t9֯sA/FxܼUYW%ud?8XǸsp(~N(#RG{~apwu@h{ŌbǾ[ Jw WX%UrP" 9c7a0ܚURatԩ7c[1 rI:9/aN3'tמ W4kl|(dX)IfmN90xTmA]fWL #&'"UOE TaaS[Q3NLlq? lt(_iveW14~**<'&pFU`Qɲ(gi)U7Ϳ\Zӈˆ@4F\&{,!| {>0#jWjEۼDtטA\*uNg]%Ki#!<O-BPS wƝ] FkIRk :ۉrM<2<4;_踾ouh>oV ,ى@o5}*q{}0402`3 7UzG yIl]^NKfx`9G޼/wq.·~؅/ 4tP]p֣ao6w%&R/^L"+- Bt!W霘ŦZCRyy!U1Mϱ@ gfgl6S&4>EmoF';4~u&4ydH hb4P",3RERBCGϠ^OǏjEYPxAl>/kmQmB*jB1;SWr?P}G_~EBbE)WwBΙ}z/fUDW`Z󫜰ݠUn^--'kJwvhf`-DBa8\(* .HT ,2&OEZpflV:VOU}vak{!9e?kR%4KmPV30¡J-ŠdOG4Qvv$S`3(Pq9xpb!P_r]tysM|,q[xMءmØa(<(A4_#\w!D0Vb^fևT4& vYTgz@qj²A@ A/RjWc  0:"i>#`L 4И$Ie9^mJLᗋMH{ C3hHP:ҍrNR xʴKo ,(cTQ ՋO9Wg^YTޙ]1v %azmLVOc}zZK݀Ũ:0dQs&*+yFԧ"?gz11dTkK,bz*oT|nc0P~!b} 5OƦ^S2 vtZy9= =UE.iE5Cn=4P(TAv[ mͮBwe}-fc!|9tdA򴌆r抵(_ʼ n(Ұ#MX>|Xs^ )% ޛdy(9f[nOTAة!je Kp'aQxQlaz6wӾ%7 Y $)r'fK&$ر1H Oꥌ`"R|&H^V.0a0toRyoߪU]06k4"wBC*VyKYcpH8 ( -3$&1"9xEyO2>d~ #TS&I. VEỡ 1>HסoBg5 QuђՆ/mLQI<̀@o[{ ^?-c"V6ف17wݪü~ਪS;X8~qp_( FKw{K Q3QrXÈB|'38˺$7Z^F6f+W5}/Zi͖G %ˠquJc8!Dl4n.Lqp2 Y.qv`/ h=)*8,\6ƪUQ! Xs7m# EP1>dDܡ.v; q<L2 )3&iI8E2Ff1V%B4I!5o& h?@PZ?Q[|b;Wc1g5wSJ+T!eSvzoAsK ēnXn.((a݌LAo7_FYe y^T"V#?xź\[@^|@l F<.2$6jG IxZP)UGy \\zPg~]|l%#*/4VY{w~"tM:)Q'`4%['.ݽNHţP(/"ljC)./3۠e]1% H~k$S})<}2u󬦚 ~ktZ Gt#jH" ^d :X#S* =6FF2=^䮚G}&}~Ce-vh3;z1efKCd`En:JCOP;4bHLBVy>ɯƇ{8s¡IRDdn%EQ{Y Wב;Fi*Ȝ~a7ZEk+&o waQRjn^0iKp+62;t!<tʼnqtrҡ6#В\8ѤC㩶<d"A`9YĹDy0H*lލ6Bo=Ft/J1Y"ت;$![ag]PJ{]5 Q! l>h]Es]s븮bF 26rXJǹrs `n096b0J-CE e uPh'@ z_MP2j)rǼYM3˸Ls<>>k) 7tPI]`e:Bj]d>wO n$dgI Ȭwy|E)ɋqfoZiP~Ts&^ @0pNp4Luq9-̧ 9-{Aٖn%i#vvMW3Ŏ_E&j`vđF?4!{T&syr,\EV,(!3˫rfCBqaoPgT26zD&7А/Snw n;+_hHGZ)R)Y(Va !40/>x ^h5Jwt'2 6֑D$ʎL_@80au,Aׯajy\gpHYѼa8sdb?_w7(2+ - Jt6+|mw$yq[SSIMB-4`Gf]D+ bXqBdm"egW8H-LO7xs)ַc<~T1jG~> íE*>I#ufO1@w_2͂%U!@) 82P+ЌcU\c-pcg? JO|5  s>gY;Be5ÃcM Z1`!0}!OT|e͆;zنUnyF&CFƹ\߾MPދVQrպUm5hZ4fv/ej9$Zeku3)qu\O9^KA/ppa>?0ibV`j*Xo[؇7jjw{ I8I%)IOhGD'݈$#=AqbΉhFzFLJ:Zg|HWC1 4IGGJcF_4ɧנ$#DJR5 '=&F I!E9M361!$$ qN~~)M} ր2-:Özx pS{w&\*V/uUbvpfh3~֥ m. ^nV< w$ <[ {'$$08XVC,f` ]%y*w0Zp9FRٯM V nAL8QO$E }Xjw0#.K ,NAčHЫڍ\0Өk!Ec0 >4$ u E!K8uoɗpσ){kP>"ŐA#,}wNv|-l@؃B{׀gKǦ=?%1w?4Xb;Q|c3ͼ ;{k7%1#̘=\P35'X4bA:L>Ax)kJl \h_3>S¢/dSHfbYS%l'W}HUaBW& T0k]+xe(H)Lg [1vitu(~3mHA0脈1s$BP*~!,r}JL VT`~V)Ċ4J]-5#:+'1vKOC$]Xs_74/H ,ڿFdK:=mOȦ%Nͤw$(4 >qoeDgipc)+W+F$LǭGlQ1ʹwQ_?F6ad@ܗ2DhNzJcuDj0/! @=.C5Vv\ t;hN+5-{!$G kGnTi@Mg$)n3cu{zs DG=8,m11񚘈9+z ul|X|PRL~-$i pQW,+"c0; J"1Db#Z( 9qttl}hpذ'OP;<FXf"͘Ӂ=E|'癷C_c)b&Y9{)vpv)`5\}535!-Cw(z-Tb׎z*{6tF^^:ڜh3nD;I: ĜCVV(=N+pAȷz;$M1 a]6KWkl^8O!$O5 NG C>ҔA27|.f. x, c u d 㺢J3P&>Ti\^ r|:OO#T895[.ve&KPWkuWLB܁q*z<-|+L$4.1ByuSCD4ޛ6C?k OTrm1'; Rx7RDb'`!НKG|h*"d_7o2Ā7Ts6d T x Aux@ewK95Ns n a$;W+^mU_f8 !H|7r]Ƅ}@aCAJc Ҍ*:1D$vQ`0sAg #䂦ͭ>Mg" c ] ;$SVcX(%vԀ0eaGˈ=K9Apqf68qHLHa,KP.iԿWD¹yJgĝ'~Ctq~̤mA&cMPTC=z^!>c5C>3]LI_bmv\h3^U=P/Qص Ϲ0G3*dg\+e3ɧ&ÕNE4&e{]x7myũ&ӌ.k ^W'3z}Ë]fmIi|\6F\,s,eqxȗ/zUmQ$V6#vkwsUl0XǞnj.y2k0N2e8ء!q5!yեa?]e%ZH (jw7cSe|W=S#:\Iu pȿ"߈ablMS% EGoc ޗM|.fѧ:r,d81v*uیSf'B"n@: *x9f~igiiA0^(x9.kJ :Gh=@ޫv5: h$h+3prAj#M~#xt-Z_3سA{X=#M&5x7tY0L'3 KXKتK `ţYHoQ:,z pX _Ue$WI1MMWve 2=w nA|;ﱑGjNIh Yr,M' =dc,.P2lh⼤x+XN 0Qξh;z{vW)ɋ1a@Q%:(mfa¸:p~\{#ه)mqK;CrϽ֞Ab@cr~!p.Gؘ0킲MSMX} 9;5o{ThoDv-G 6*pT!>_ǐ5d8%4S!ZEO'ŝ '6Ϥ~Ѿ"?7ũn Z5{h;594| цo4e.A+^sIc2`\ە)Y.ړ ]|Syy*i@qLV oC u]iG1h :e%˃9o(A\{|3&Ź:ql4 2HNԛUF,cS6F@ܴ18R^K.ĥGmH!Q*SfyyjwH4=b0Ƿ&"Ѫ˕lL^ jج:2xԘdWMAop?gO-dOd|+½AKvJ:eKŖODzzuFK^ˆB 2u+z<(,GNJVJR(2[QM zJ %/qhݑw؁u"%Y3O=I DIIFHٝL!EԲ 6̈q0' 1n eMvl8ٳjU{ƛ^YQm7+9t:W>?a8bw,[sil!DҦ>ѣ@EMۣ#8UUOҝ+8|.3U'38mg[)P.ccs^s|ctP?`#G! J:Kjd,k Nn U d \Vau+n~uJGyť°6pcq:MOBm+Ֆђp@cC4Ӏ}Z򟣪Ჾ> YfW7sX!J/dyc]ŭhK[h׺\MC,Szڨr3 *z+|6Wr:ikwČ9GǥIZ؍\fyb.wT*51y+qmѢ,^Adgi[t4< ;Hr|UC)uNu B1v&m Mł3}rM\Enؿݷ ۇ$<$dCzrEjl&~M-H~~z0uO2-  plrEcKwwm5pYsE&^,56?S *I#gQ*zɥHs5r!׳rto]o r2,,τ, QIRmBCJiz_*]ޤ88M(OZEI*Mg(?\-++!Gy&zl5d-807GEBTkOopLj5\s:o|fu2#Y /5*?S;]52$o`&^JM2=h"RUH}gSd<{cRƃ4=2$[w z*̲= i(-YT9w;S!e ?tڣ8%nLMO[j;'e(a85ub?-%ޯ@lUwAA7žɨzVje5A 995=Pcԩn{v[WHVvhNY>U9aXVkx b"RA)<󪱀Pc@ДDlΈGn)"C'[BV.B-"^^"Gp;U˾.t0+ LF:' 7:P2]u1$!^g.U-c#@-78sPA7fT_%v;8qdQ B߶+Ppf!ՂԚĀx=Օĸoxy" y=4%h6^b&eqQm*H wφj©4)N~xdd ^/ _?ngՠu*cwEf:y\vYUD6N8l0tA.m$߰RDXUrt"`X]<54#_J{$5"p>~!~QvijiX~F1,?\eR3ϰd+i<{؝B33ˬk<)#xwG!μ]hc, e(AMg}wiBHiNP*fl)p֡ P1(*{$أ8h[ e20Tzab=ETWXJs?qU} :I{ ,2KZ7 te("Voj/2حUO)5ˀx e"NꔾzdJX>9VjoLbV1f[R# h<)/ Dz4̫7,3ng`^X<+JB>)w, LC غdwϚP5Ќ".0W,/N'p-UjlJo\OоͰ8pbaHj$K NP赺MQcEuWfaBʄ4VHFgWoM $ߦgJEdN}#Nf> m IizO(Mګo>iي_J"q?'k@0#^SI銾#fމ]S>CIǎȃ[3@.Z-X' >d%(nDxHӸ;׹ Fk:cǦ - h,檵{',$1b_%= yRRf'3R E"hV8B_'G/X,i0YŹAl9+Y&mTx6D;RQ N?Ǡ+a) mӑ`Da8,*U|Ay k#s j('Dgt]#Ll!>ڟQ]<Lr9UPb4[J*˺%=(Xro%$1|!q$/`~E4}dTCj,}'aEvg)* OiD Z2 x8$d b|[)iugT:@Q6u(Fi'->0GZL#҅ 2fek[IjY4L@ Nd:9z76e/IX'"T&A7ݚAN