ipa-client-epn-4.12.2-1.el9> M Mv ĉJ4!!%joLne)Ip-Bm5 ']g'\releng@rockylinux.org p-Bm5 ']u-+%NVFi9=SFT3YWy  naFvBXJx"7,hdwŘOGNVS\eG2!ϫ>Nu8`-UNoMmC0dFwv/.BA?Ad  W 1B }?   "  <  p     @     P  p( 8 9 P:.>;?;@;G; H; I< X<(Y<4\<\ ]< ^=3 b>d?ke?pf?ul?xt? u? v?w@ x@ yA AAAA\A`Cipa-client-epn4.12.21.el9Tools to configure Expiring Password Notification in IPAThis package provides a service to collect and send expiring password notifications via email (SMTP).g'pb-65ad9132-1a09-4f52-8a55-d72dfbcab9e3-b-ppc64leRocky Linux 9.5Rocky Enterprise Software FoundationGPL-3.0-or-laterRocky Linux Build System (Peridot) System Environment/Basehttp://www.freeipa.org/linuxppc64le if [ $1 -eq 1 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Initial installation /usr/lib/systemd/systemd-update-helper install-system-units ipa-epn.service || : fi if [ $1 -eq 1 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Initial installation /usr/lib/systemd/systemd-update-helper install-system-units ipa-epn.timer || : fi if [ $1 -eq 0 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Package removal, not upgrade /usr/lib/systemd/systemd-update-helper remove-system-units ipa-epn.service || : fi if [ $1 -eq 0 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Package removal, not upgrade /usr/lib/systemd/systemd-update-helper remove-system-units ipa-epn.timer || : fi j -KTA큀A큤A큤g' f}f}g'g'g'g'*f}f}g'*f}f}f}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-4.12.2-1.el9.src.rpmconfig(ipa-client-epn)ipa-client-epnipa-client-epn(ppc-64) @       /bin/sh/bin/sh/bin/sh/usr/bin/python3config(ipa-client-epn)ipa-clientrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)systemd-unitssystemd-unitssystemd-unitssystemd-units4.12.2-1.el94.12.2-1.el93.0.4-14.6.0-14.0-15.4.18-1246.6-3246.6-3246.6-3246.6-34.16.1.3ff@fffff`S@f_fWf0@f@e@eԔ@eN@eeeie[J@eH@ed d@dr@dcc&@cc@c#@c@cWFlorence Blanc-Renaud - 4.12.2-1Florence Blanc-Renaud - 4.12.0-7Florence Blanc-Renaud - 4.12.0-6Florence Blanc-Renaud - 4.12.0-5Julien Rische - 4.12.0-4Florence Blanc-Renaud - 4.12.0-3Florence Blanc-Renaud - 4.12.0-2Florence Blanc-Renaud - 4.12.0-1Florence Blanc-Renaud - 4.11.0-11Florence Blanc-Renaud - 4.11.0-10Florence Blanc-Renaud - 4.11.0-9Florence Blanc-Renaud - 4.11.0-8Florence Blanc-Renaud - 4.11.0-72024 Florence Blanc-Renaud - 4.11.0-6Florence Blanc-Renaud - 4.11.0-5Florence Blanc-Renaud - 4.11.0-4Florence Blanc-Renaud - 4.11.0-3Florence Blanc-Renaud - 4.11.0-2Florence Blanc-Renaud - 4.11.0-1Florence Blanc-Renaud - 4.10.2-4Florence Blanc-Renaud - 4.10.2-3Florence Blanc-Renaud - 4.10.2-2Florence Blanc-Renaud - 4.10.2-1Florence Blanc-Renaud - 4.10.1-6Florence Blanc-Renaud - 4.10.1-5Florence Blanc-Renaud - 4.10.1-4Alexander Bokovoy - 4.10.1-3Florence Blanc-Renaud - 4.10.1-2Florence Blanc-Renaud - 4.10.1-1Rafael Jeffman - 4.10.0-7- Resolves: RHEL-54546 Covscan issues: Resource Leak - Resolves: RHEL-49602 misleading warning for missing ipa-selinux-nfast package on luna hsm h/w - Resolves: RHEL-40359 With unreachable AD, ipa trust returns an internal error- Resolves: RHEL-53500 adtrustinstance only prints issues in check_inst() and does not log them - Resolves: RHEL-52306 Unconditionally add MS-PAC to global config - Resolves: RHEL-52300 RFE - Keep the configured value for the "nsslapd-ignore-time-skew" after a "force-sync" - Resolves: RHEL-52222 ipa-replica/server-install with softhsm needs to check permission/ownership of /var/lib/softhsm/tokens to avoid install failure - Resolves: RHEL-51944 Include latest fixes in python3-ipatests packages - Resolves: RHEL-50804 ipa-migrate -Z with invalid cert options fails with 'ValueError: option error' - Resolves: RHEL-49602 misleading warning for missing ipa-selinux-nfast package on luna hsm h/w - Resolves: RHEL-27856 'Unable to log in as uid=admin-replica.testrealm.test,ou=people,o=ipaca' during replica install- Resolves: RHEL-47292 Include latest fixes in python3-ipatests packages - Resolves: RHEL-47146 Syntax error uninstalling the selinux-luna subpackage - Resolves: RHEL-46009 ipa-migrate with -Z option fails with ValueError: option error - Resolves: RHEL-46003 ipa-migrate -V options fails to display version - Resolves: RHEL-45463 ipa-migrate stage-mode is failing with error: Modifying a mapped attribute in a managed entry is not allowed - Resolves: RHEL-40890 ipa-server-install: token_password_file read in kra.install_check after calling hsm_validator in ca.install_check - Resolves: RHEL-40661 Adjust "ipa config-mod --addattr ipaconfigstring=EnforceLDAPOTP" to allow for non OTP users in some cases- Resolves: RHEL-37285 IPA Web UI not showing replication agreement for non-admin users - Resolves: RHEL-42703 PSKC.xml issues with ipa_otptoken_import.py - Resolves: RHEL-41194 ipa-client rpm post script creates always ssh_config.orig even if nothing needs to be changed - Resolves: RHEL-39477 kdc.crt certificate not getting automatically renewed by certmonger in IPA Hidden replica - Resolves: RHEL-46559 Include latest fixes in python3-ipatests packages - Resolves: RHEL-22188 [RFE] Allow IPA SIDgen task to continue if it finds an entity that SID can't be assigned to- Resolves: RHEL-29928 CVE-2024-3183 freeipa: user can obtain a hash of the passwords of all domain users and perform offline brute force - Resolves: RHEL-29691 CVE-2024-2698 freeipa: delegation rules allow a proxy service to impersonate any user to access another target service- Related: RHEL-34809 temporarily revert a commit that depends on newer version of python-jwcrypto- Resolves: RHEL-39950 ipa-client can't be installed because of a missing dependency- Resolves: RHEL-39140 Rebase ipa to the latest 4.12 version for RHEL 9.5 - Resolves: RHEL-34757 The change for preventing deletion of the admin user caused a regression in disable - Resolves: RHEL-30553 Depend on nfsv4-client-utils or nfs-utils - Resolves: RHEL-29762 IPA sidgen fails to create SID for manually set ID for a new range [rhel-9.5.0] - Resolves: RHEL-26261 Fix replica connection check for use with AD administrator - Resolves: RHEL-18062 ipa ca-show NAME --certificate-out=file creates empty file when NAME does not exist - Resolves: RHEL-12149 traceback in ipaserver/dcerpc.py - Resolves: RHEL-4810 [RFE] FreeIPA-to-FreeIPA migration - Resolves: RHEL-4807 [RFE] Support in IPA for HSM boxes- Resolves: RHEL-33645 - Update samba to version 4.20.0- Resolves: RHEL-23377 Enforce OTP for ldap bind (in some scenarios) - Resolves: RHEL-29745 Unable to re-add broken AD trust - NT_STATUS_INVALID_PARAMETER - Resolves: RHEL-30905 Backport latest test fixes in ipa- Resolves: RHEL-28258 vault fails on non-fips client if server is in FIPS mode - Resolves: RHEL-26154 ipa: freeipa: specially crafted HTTP requests potentially lead to DoS or data exposure- Resolves: RHEL-12143 'ipa vault-add is failing with ipa: ERROR: an internal error has occurred in FIPS mode - Resolves: RHEL-25738 ipa-kdb: Cannot determine if PAC generator is available- Resolves: RHEL-25260 tier-1-upstream-dns-locations failed on RHEL8.8 gating - Resolves: RHEL-25738 ipa-kdb: Cannot determine if PAC generator is available - Resolves: RHEL-25815 Backport latest test fixes in python3-ipatests- Resolves: RHEL-23627 IPA stops working if HTTP/... service principal was created before FreeIPA 4.4.0 and never modified - Resolves: RHEL-23625 sidgen plugin does not ignore staged users - Resolves: RHEL-23621 session cookie can't be read - Resolves: RHEL-22372 Gating-DL1 test failure in test_integration/test_dns_locations.py::TestDNSLocations::()::test_ipa_ca_records - Resolves: RHEL-21809 CA less servers are failing to be added in topology segment for domain suffix - Resolves: RHEL-17996 Memory leak in IdM's KDC- Resolves: RHEL-12589 ipa: Invalid CSRF protection - Resolves: RHEL-19748 ipa hbac-test did not report that it hit an arbitrary search limit - Resolves: RHEL-21059 'DogtagCertsConfigCheck' fails, displaying the error message 'Malformed directive: ca.signing.certnickname=caSigningCert cert-pki-ca' - Resolves: RHEL-21804 ipa client 4.10.2 - Failed to obtain host TGT - Resolves: RHEL-21809 CA less servers are failing to be added in topology segment for domain suffix - Resolves: RHEL-21810 ipa-client-install --automount-location does not work - Resolves: RHEL-21811 Handle change in behavior of pki-server ca-config-show in pki 11.5.0 - Resolves: RHEL-21812 Backport latest test fixes in ipa - Resolves: RHEL-21813 krb5kdc fails to start when pkinit and otp auth type is enabled in ipa - Resolves: RHEL-21815 IPA 389ds plugins need to have better logging and tracing - Resolves: RHEL-21937 Make sure a default NetBIOS name is set if not passed in by ADTrust instance constructor- Resolves: RHEL-16985 Handle samba 4.19 changes in samba.security.dom_sid()- Resolves: RHEL-14428 healthcheck reports nsslapd-accesslog-logbuffering is set to 'off'- Resolves: RHEL-14292 Backport latest test fixes in python3-ipatests - Resolves: RHEL-15443 Server install: failure to install with externally signed CA because of timezone issue - Resolves: RHEL-15444 Minimum length parameter in pwpolicy cannot be removed with empty string - Resolves: RHEL-14842 Upstream xmlrpc tests are failing in RHEL9.4- Resolves: RHEL-11652 Rebase ipa to latest 4.11.x version for RHEL 9.4- Resolves: rhbz#2231847 RHEL 8.8 & 9.2 fails to create AD trust with STIG applied - Resolves: rhbz#2232056 Include latest test fixes in python3-ipatests- Resolves: rhbz#2229712 Delete operation protection for admin user - Resolves: rhbz#2227831 Interrupt request processing in ipadb_fill_info3() if connection to 389ds is lost - Resolves: rhbz#2227784 libipa_otp_lasttoken plugin memory leak - Resolves: rhbz#2224570 Improved error messages are needed when attempting to add a non-existing idp to a user - Resolves: rhbz#2230251 Backport latest test fixes to python3-ipatests- Resolves: rhbz#2192969 Better handling of the command line and web UI cert search and/or list features - Resolves: rhbz#2214933 Uninstalling of the IPA server is encountering a failure during the unconfiguration of the CA (Unconfiguring CA) - Resolves: rhbz#2216114 After updating the RHEL from 8.7 to 8.8, IPA services fails to start - Resolves: rhbz#2216549 Upgrade to 4.9.10-6.0.1 fails: attributes are managed by topology plugin - Resolves: rhbz#2216611 Backport latest test fixes in python3-ipatests - Resolves: rhbz#2216872 User authentication failing on OTP validation using multiple tokens, succeeds with password only- Resolves: rhbz#2196426 [Rebase] Rebase ipa to latest 4.10.x release for RHEL 9.3 - Resolves: rhbz#2192969 Better handling of the command line and web UI cert search and/or list features - Resolves: rhbz#2192625 Better catch of the IPA web UI event "IPA Error 4301:CertificateOperationError", and IPA httpd error CertificateOperationError - Resolves: rhbz#2188567 IPA client Kerberos configuration incompatible with java - Resolves: rhbz#2182683 Tolerate absence of PAC ticket signature depending of domain and servers capabilities [rhel-9] - Resolves: rhbz#2180914 Sequence processing failures for group_add using server context - Resolves: rhbz#2165880 Add RBCD support to IPA - Resolves: rhbz#2160399 get_ranges - [file ipa_sidgen_common.c, line 276]: Failed to convert LDAP entry to range struct- Resolves: rhbz#2169632 Backport latest test fixes in python3-ipatests- Resolves: rhbz#2162656 Passwordless (GSSAPI) SSH not working for subdomain - Resolves: rhbz#2166326 Removing the last DNS type for ipa-ca does not work - Resolves: rhbz#2167473 RFE - Add a warning note about possible performance impact of the Auto Member rebuild task - Resolves: rhbz#2168244 requestsearchtimelimit=0 doesn't seems to be work with ipa-acme-manage pruning command- Resolves: rhbz#2161284 'ERROR Could not remove /tmp/tmpbkw6hawo.ipabkp' can be seen prior to 'ipa-client-install' command was successful - Resolves: rhbz#2164403 ipa-trust-add with --range-type=ipa-ad-trust-posix fails while creating an ID range - Resolves: rhbz#2162677 RFE: Implement support for PKI certificate and request pruning - Resolves: rhbz#2167312 - Backport latest test fixes in python3-ipatests- Rebuild against krb5 1.20.1 ABI - Resolves: rhbz#2155425- Resolves: rhbz#2148887 MemberManager with groups fails - Resolves: rhbz#2150335 idm:client is missing dependency on krb5-pkinit- Resolves: rhbz#2141315 [Rebase] Rebase ipa to latest 4.10.x release for RHEL 9.2 - Resolves: rhbz#2094673 ipa-client-install should just use system wide CA store and do not specify TLS_CACERT in ldap.conf - Resolves: rhbz#2117167 After leapp upgrade on ipa-client ipa-server package installation failed. (`REQ_FULL_WITH_MEMBERS` returns object from wrong domain) - Resolves: rhbz#2127833 Password Policy Grace login limit allows invalid maximum value - Resolves: rhbz#2143224 [RFE] add certificate support to ipa-client instead of one time password - Resolves: rhbz#2144736 vault interoperability with older RHEL systems is broken - Resolves: rhbz#2148258 ipa-client-install does not maintain server affinity during installation - Resolves: rhbz#2148379 Add warning for empty targetattr when creating ACI with RBAC - Resolves: rhbz#2148380 OTP token sync always returns OK even with random numbers - Resolves: rhbz#2148381 Deprecated feature idnssoaserial in IdM appears when creating reverse dns zones - Resolves: rhbz#2148382 Introduction of URI records for kerberos breaks location functionality- Resolves: rhbz#2124547 Attempt to log in as "root" user with admin's password in Web UI does not properly fail - Resolves: rhbz#2137555 Attempt to log in as "root" user with admin's password in Web UI does not properly fail [rhel-9.1.0.z]/bin/sh/bin/sh/bin/sh 4.12.2-1.el94.12.2-1.el94.12.2-1.el9 epnepn.confexpire_msg.templateipa-epn.serviceipa-epn.timeripa-epnipa-client-epnContributors.txtREADME.mdipa-client-epnCOPYINGipa-epn.1.gzepn.conf.5.gz/etc/ipa//etc/ipa/epn//usr/lib/systemd/system//usr/sbin//usr/share/doc//usr/share/doc/ipa-client-epn//usr/share/licenses//usr/share/licenses/ipa-client-epn//usr/share/man/man1//usr/share/man/man5/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -mcpu=power9 -mtune=power9 -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19ppc64le-redhat-linux-gnudirectoryASCII textPython script, ASCII text executableUTF-8 Unicode texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)Rutf-8fdb51c8c89afa93e621dd3c2aeb53fde8d006c9b7e6ed49ef4684a04018e26a8d937244c5b73c90914a6ca39d1fa027b278ac57bd3b92db4c4c28e09026dc04f?(/hZ̬$H8Diy}q 2=#qe+mtv[6J[{a#AN0Aii dMp3H-bƔ&u_q$;!I 4JHrf,*#|4@Q,:IԢLfdņp'=-xRYL!lj@sA}۰зN[mvܡ# *>n9闂Zw%;Xv/Fpc]B6ۢ_w݆nf[IK6ֽ"}=$-^!,GYɉ~Hb3"E/O.ۊ[fy_ ƨ؈'툽AAPn1B.lTjDj8%zgzJK,b/Cx~<҈J$9B1cÊ׬|yXP.eu4+rul| %ԼTR n(Iqq V,1j ?To,VP-*+>>3NS *FBs1uҢtP_Fbs $>%lZ9BDp<*&N>lʒqq؀a`qAf{ь/T܋e-8P06hp{bEzۑ{TjRKzc'ٵCr$9i­| fyj PreE㐎4uxA!O\_u=$6Hs͸yjEv%ƔK-h])x{v4!EN? 0^ ]1?۶m[>m$W/&IkQC}"I\:X*@>u>Oo+1Ci!wQؚ0Ԫ m?]yIq_֛=#IH"Z.ƅP $Ikua~gJ5 ." m*o܆xܐZqz2-NDŽIf`8NIx t`@2-Bu&ć`>$L~LJ@>ɛr"7+<֋q/܏4!x5vq٭k%* Lj(~${GmbM\hU[֙M%3pCظ ,F|F0ۦo ŭ*qln#O 9?.0QRALC5kuYTT(VwjiY7T@k hj듘IMO`O1 ':zboSkDko7_)ɵ%Np,qb{o{nہJkGu ĉ)W Igb\hh}7'ڷ IPo#߬ š9;Ǟ}m$|DyeskҐ?u)N:r)O__KC䅝N 7LARwȞ[3n!p:WXɴXfԗ cHF~EU&7Wi4\i/th঩$_Ch#D݂J&C9#2\͈&`4"[e7Κzt2IcY1mC@<_>=qaFyLk҅o*u)~Jtӷ(L IЂo Sr(7u`߇A-aJ:jZ+61ӊm$R(*ȎKT0LjqpAJ%%RF6"ܘTLXQ&ɥ6Qk nd_AxVm쇢uEf){5 5}A-qBM6HѨmSObZR+D2׃JGn#m t#RMA'` `Bm7ڸq!nVF (jo=i;-F(<ʖB5־% !e\Åb)1}+#uPz^kGNa[{V4I>23\TJFf$Ip 8|@8$mjFU)[+-*b'cΣ&ـut8z CQsOuCMÊXk/Y'hvCտ!cV& 3 EҪGXrz*o]I tArڄJʗUkm1Ѻ xp*ɿPŽY/p\pꂉ d7eU-ى¯4-;܆2U~R}Bs *qgj'K 5klIpċ{Ў QL,.g3Bwj(Ņtp-*o9(aRY0 &-kG^ZٲfdY}Po@hTb~^ m· ^Q bysUPg3DH Ejb$=(uȻ/hlY&J~FMd6!.yf-MXKjrA$ y-X_g#! p6?; b FJ뼈-o<;XkJӘXʨFˆcd$#pN/X2+JWr7`OVnORBu_V"]mS;gbW6ҢqW >d E/T?܇Li) 8>h$sJD#ր 7kߋk܀hs*Fb B&-W/퓣χ*UŗTIM0lkT$ʔeꭊ LoTw43AGL;$!9$[nBI"^ۨ`] 9L+bRJXT3 v#/!ZSHg@ |o·,*AdQ躀 x#B+P2& le>%OJ.Qj3rغ`i_9hB:cZ P#~VXF@ 0ˠGd  ˾`иXa_xlK!IjFY`tVia#_pPu_S ԴO"|LK@ oɧzr4v{kG jt&e j2oz"Sp;a~k"D >(ɘ,a[en6L$ɼ,B*t $Ϗ0xE/PF/iE ar骸j]q6lFr?WvڧAk'm`=)weu"/#,vs ;LK!"N(;;PQ@3*QHͿi亀xM ]:W 2$7uۨ G$Yw+mtRcuu @P+ޜ.ٺ] ѻ>::텓 ؞Lv+'!lfjѓ_"A@!BHPBg(FMfnH5R% S(i5$?"-(h c]=8)4=`ay+BEwLиdm>^K%56 Mg2&rfr|Oa};,'4p"e[!γ){dKĹMF:r!(*m& J^9y^[pY|V2jIqu1y9y{k&5"H`QeA搢eJ^Z)ĘxV BI@z'ws iپnm=o.}Ƈi*&7*U7h[cDz,o^}#-fІ|\W=b^ $7qZ9)#?™a;VT5S y {R*5rT! wG靽>_d9ep.?-uHOK9S5DEWS L-`' p#AiŪxihF y?j^ FbVLV ۺn:,` i!AO:Rk/DYS17zhLGWSfagHp?ph1|{N0 D3û ~ᣊB$~ۼ2-h䕱X3Jg$Y6B8(ON'% 5 Å沦} -J txsddSjG`jWB!_/9?ZMǡ;tRx$S ԺJs[42a}qNާŦDhh 왐¨4zieLE-:=(jĈ'd 0o{᫳8ۙĸN]:;:^̟Ez. wbL Gu1ْiZZP;vt8Sd<߭DŽ_DoGTKL-=?@Ay?f' T^$z D Ji+ BJYR ZtEAl{YV"zҪVE"nַS2|IB?91JM푒/ -HP0"<<$وt`:$y0& 4& jEY(2k(ߞF~l]/VNU.JDZOM{JԈlL:2uu}HUH"}X@XxHJ6Dx|U`CI5J|.s-V@9Z"=S͹Hi]DUPb}EJAV|XS_Q7W8-4Yַ纏@!<)0.Pp%cR^⍯a Ji-ҾbCȏ'~-\qvRC_4E[{] )bQ2A IOcu,TiTjM&=*DmX.ة/w|.2PDdmaTG/\?kH+(є6+(d~-*"Z6@bJWR.],~-3'pc}LyxXc_Å&fb gBW=5*D$S '-·O<1r2[bN_C*6!wVi+ҨE~&I#Sbx{NR҃Q1&Ic 7ՒEۓ^5T b{gㅓSd8c  ,OI$n"%&c䈔HP$,auنuV&hd6+&jZ#LUHW,ls 7ZU |zchԃ1'1&$] L Kݫ?D ;"mW5a !z30"T =f_c;d!c0@] n̏ IS,&bj6ӄheNr$)]YiyZLytX^Q!@5ͲDsw۴ב{&Y*zSקر@9!<7f|BZkrsvdj?Nȏ2 w7@KxfzU#{ZXΘC<uؔ3CG 9WH,-L# u:\M[O,WQ^_#f{@=Ӂ<_rgdDzضVtw ;] DyKkJDŽQPMYw䗮,S1<*@yek;yŇ}wA&#~OѶT鰐G1ZqND[Θ!ݭ:n!xۮ1N`dRdd 1 H[gOKLrik7iSУj 8;Tx iRF5Bk;Ge/UdLdm6`g6MJPv=j5bYX}Ft\BٯKUpED9;76 U|ȽK^5dY[*wq*e)Xu@k|K/-}\i ihޭQ39W~3YH"2!& d},̓g@bc&H&Q@RO*{~> WGփ_r}?8FQqf +-KZihLMcA_SwČλ%3'B#֯>+!'Nq9 CM> }A rёǍHQ7!dISnŴgJJp1Q+h-A5|{QCc*㦰a͒R]R@0A' 9i4/A898$hZGQ6l_1 KmŨzFmZYʶfb'Y>ZM@hl*SkY1r]'~ȗ 3U!wVI LX3;5p8OV}74 K WP>Nd,42tS)|͖8kԝ9%Iw\}`e.@9ȸH@ophW:N3'AO [tvЊ눞cN@K)A4 *M)H%I8ᓮv{\R?11{.CWYyõGJAT }MۣiǢ3)@`,ȑ¡Vҡe3y:ǏX|,6RO\ qޢuAԜ{k0hӰ^TO}V>: 6_fx r%g"qc@ljU$Sv @`\[ϗX^,㔗VY9Wޙ_QBد ph",MB_pOB{A&ǠcdѳNk"zr ɹW-]cϮiPKzwA}i~w)u<22nc-0۹uSꯆ3%LMTFys P_qN7 5q{mO;[v\gm.jWe锅{֚tC @BpH+Q(RF( $2"$BRBav i%^$1xЄB\?c9=/oE!q>*E],hHf6g?!s&$o< Ɗϧxp-GESky7ڐ\,ARHLJ#ՔcHZ^A365g6ie({D5? "$ xSHTf-pe'Q aV #඿%^Q,x8 ˉPvYաn!N}1VיSH}z֢J79j%>7Hܹ5r6}4Auw(Ia0j]TU_ e aX%X7a~sY`Om-"h@7̺(oF' ;$:>n"QV~6qo#}5I&UUl93| 4#;oU'xA5ytnuH( q#mZm/aiɨA.Ol@ݖQRd-Р3 jCLXmFoyYQ0' SoT% c/e4Q9 UX7+CD*r̋9_1$Uu>8>uqg91TpvYaZ!S1I7= @gD7/5 ʒrʀy\`CA[7<$ʘg'.Y#K3K?$Pf-LIC.,4~P̑ W!AI''QĬazfGCylDu5_ i*N@Q7ĨA+MY[FA k鷰>USk"S6:ԁCgnUfZ%:L`q\1'!\D ×%6eKebM< XvwҼCBq1@LuCY;v_g9~F<]AI<>btVr#kgA}PHv Z#cpK;ʥ8}CLRvt6 t &4rt|MZ^c:4`$݆pT g!.bvY<֝$Cx5ÁVYg0[gzƳ=M˃b-p>~ϭ_L BPHyASޘŬ6fHmX(\N>522BHI:Wct_[t!Urr&=?9+2h ~%m۬0*-E NE\ؙ):n:rHጜ&Nҭa̞M{A^~3ܔǕbR:< 4G tȤۑ+? ʔ8TY 2"dObV, dF]'7z>~1w9괚ai:[3SCn((`Iߒ7G(\;9]w$t,AMS9qHe_ZIiO]1t8""ji. 7xnVmKgAX q#R> 3:*ٿN] pt 'HZS J5B*M4?7o&[dfI:e`hPG)e&R<^>uL <0DbZ1M}iH9$k$O`)G.nK\9Dj ˖44)mWAPFhNdp߈HbLH(YG=fڌSw7vթq>dbБ(xO*yB c,`^&_rG>1ĀqB<^"6o+,dQo,@|.L=fԕԂw4&ؐB&b-zPoaJ2+2;6D !% @q`,f/ &bfjEPH6f[%ʟiS\PEJ1N,Fl/8β7KۼD+ 20CBlK' *aeGjW@.`9|^r}t` 6 Q݂W9iUX>Y9+ PkѦD<>V\zCC$V}Bҩ꣪PYhn+0G#(@-#8\麐_CoKi:VNcV_" !W7>O=>?R_ˎ{_#5b-f',6m:z{aer]'yQ <` ɸR6rP0eD I0ܮ\.*UaZ[ū9 4EZ@86Z_OX&\e>fC7Rn bjuq݆t[N3,u`eD|4-tH%#=)c2"x.wj|(3 WH!yݮc+uL[Ѭ0FZim^bAwb7F&aF6 ?'Sbb6>OF_h+Xo1`yf<AhrdLj}'WN mB_F?S2;)x٢@XI%J+^O]ᘝX±죔_$,r0{`)\ω9-*|Koa.)lE"AK*(Ix^SB_Ap{p:6_qъN`0 V2Gg wmvxGK@[Bc) `"/FZz}6|슒yt__<8&=3{BSxJ:&~0y)q%\\af'݈Ut} .+5u v bU K׺c9M,!<7"Q`d-2dw`ΔTȃe^12 ( ٧@ܲ vjڞ(%VYA. jZ|uN(Z~RQ^rEtD3@ltVE&^,ٶ1E`Z:vrKsT+]MŴMՒzn#WNsPm cx@~>j11.ӉW|չ }[4wgHjo]( o3#[gJCF]~LHeFN*. >[ Ts >QoƝU8AWP_hP,N-&!44gUt,15 ܷ54w`Iv͜ىI H2.܊͈f]fM[.1zz)EmxA-)'2*ZO_X]Go89BuWćg љ#p=0#=ҡp3cJh?-X\5ǭNRt:t$r:^S̊>eC(cif:xK&3rfEt1ns U䇝HեJ˥<$&ͻ~hrZnAN)rp't橘{uVd\ae ӜBa)cq@/89&4< \Ofwufb+J=Y(K $LWm{9|iHFv"D!@kEKA. %"Kn<mkLD87*f]ys< Gb$#"G45|j zd:B2goU-gγ3koI(Q _yxy6TlSn6&(c(t 욢=wmW;ίbmg&bℙ2kA2L`7!XlKcMyZn4\}myU,͇I=FdWT#e"IR1@(B=2Ra3քQo|HP:HuJ= PY(9x<,V矅N }?0*!_B /R[[!P>iYm'n\*,LNVq ?0 8,bZs,}` )'o[԰&x8X)$g+ap.PKx%n"ܚj@ WN";Nq9 !mhv}`,@uc 7}:oߗ6]@T5>2wQCEڟO̒Q:ȳ4g nMptL&,E:@,@|ncC$Xk瘄Kl`3Vꗭ*.Lzy`Vs 4ƬĊjΏE6 }YtUs\Q96wR@>9/Tew>1|~Riq'mфc%U@[1JhPMiNQlQlIJFq3-u*L>g*5Z"4J~L;9Du>5 R:Mc2V [gG4 9GmmJgg<3(3U!gn JW3tKz[ &?ZZIپ)B8|fD+Nch6gxg]٫@d]'U~d?%cIޮxŕS), IFCHHASADVIIISdwll eawsopimbsolutecivilurATNews at bhit ettsafmos "cofu<'sbriefa.>o>:Alsoncronicapepl,art e:>SOLUTELY;`sw'.el;c'Typ Of mbea GUI"boxgeeoy)"F ngsariay,Lesseread,rphilosophy/why--lgpc54211.gzXmo8_1}hlw87uZ%a9uQe*I.3d˹ݷ Pyy2K#DNHJ!U,NG׺:zy]]B^M(`!/*K#2HIV'n'FuFK'I9yZ,'Y8B)gN|f,P=F)0i+$RIE`gk7>VHᄃr Y8ֹb8v`6AZi_>u{Nx>R¨.~y6wD^W(!NGwn⒠U81o2 ڝ61yvjoq:?Y|ds|;r2d~Dcrs3_%HfA'` q"@tw 05S 2t&dE?W}S\v[my+ QC*.}VwIP[@3HwboolZk-[" #Q(Kvoʤ :CoXy6SRI-W\1 VCGdեDp2)]|G @DM|B؊#kꝷOZ,?M *uԌ2Uf_9 䗼hC+^H%vR|<*1zGm'TȵeqvmCHVYNv51:[El!#hq,iM@/P[ol>ڿ¶]C&:a@&DnaM\0oKQ88TW !i3/` q򠍈C7MUܱ+ޱt ~T2grmr%<:U fz&Vj77whTJݴn~;Zbz/AzzDVH`Z]YHWk4r%`ODޏiTFk{$&oT/ܔ=G"iʟue@ڼjrjH1<_$ 1/jxq9<{M;Ju:?/~O!vxCW^A7tY7?βҪp_ ·W'[9,酷Wx0e^|R‰9iŇB sj+-t@":OۚUgG@I(1K/[P.o\ِ_L.GOfg4פ14-;itμ+gqeem)^oU= C);lש^2Qi8;h~@dqߧSzs.O5l{h ;/[Oq/ߍKL؉{N&MsZFxKY&1=ZZ_9 6]-:d135.5WkoF_q~htG "rCIijlƈJ!g虡UsJ` X gqeO#*R%eƒ,u"]j9|eJPr֬(VXjSQ-VyV< CgaRA+JK~#K[82YxcZZӬZ*H$ qF\ 6,2z@Rңc8 cg³LɌaqM;/`jJJS« ϭsZI̪|@ r>wKMh>MwA7$e#Ke Y} x~<&^bA9=͗ќfb-|!YJ/Tv!)mģDaUY RDn: ]8a`6(;Cˋvu>)ΦQ ]YDiiڤyyl7 dzIt5\3GU5 x6j~VA80/<ݎ.Upk&x$"1ZWyT.At޹ɹ*7jϖt-ۏYӛOsURq!!MaPV84Z3 X{SvH/(zO/G5FZi~d!qʣX"bGWjC D\O+-jQiԻ G+VZ 4;FCޟ"Wi+N8t3/:'H]>96r"Z"ea{h$QOi` jr`McGm7#P 0g L{XTh;`PtWi' V9K[~圇Ιټ*gk|Gh>m],`f:<;sC ~M! pޒzeH}dihOUS_i@,Ӫ&xD\1P(J#k]sihˬ]+|yVBС4R(e@@rF 7 li*ĹID1GKc= 2D˟epӐe@ae$hﭦ=0Ïat&\a&=l>mW` ZR Njoۂǰ ,{ҾO(!&#/_6 h>ҵ"ro'6'̚"b?ڢdڐS˿׫BZ3Dc*V(6^K O3t%.w~y @aIvONJ|լQSu <_ nx]5yaϛ\~^ci(V{͉g+jIiasx$4s.1vnĸyhR*sz=`VJTɦ38u(GØȍHNam4&E@]ߑ"e^źӞJN ~u4nY 3VaE1J~sY=1go7茗NQ݇킒F \xh 8w/EM(w ґ []cs2a^~ӮDU+8};:B#oQ_q7!4ćUIk‰gJ pѡ2i}$!Za!3= Ǝjwtߎ9(gc4F<),AA5J eBe 0dM r႒x?aW^}tPKsr҇C̈́J3F$-Ũ+x KiEpd1bk|u-"y%