sssd-idp-2.9.5-4.el9_5.1> M Mv ĉJ4!!%joLne)Ip-Bm5 ']g3f)releng@rockylinux.org p-Bm5 ']]$~s+A*̒?O\}ng/nu̒.=3?3d   ]48hl|   @  R  d        M z \E(89 : G-\ H- I- X-Y-\- ]. ^.b/Zd0e0f0l0t0 u1 v1,w2 x2 y23P3T3Z33Csssd-idp2.9.54.el9_5.1Kerberos plugins and OIDC helper for external identity providers.This package provides Kerberos plugins that are required to enable authentication against external identity providers. Additionally a helper program to handle the OAuth 2.0 Device Authorization Grant is provided.g3cpb-c6f38e83-dab8-4168-8f84-a38b4f3fa084-b-s390x Rocky Linux 9.5Rocky Enterprise Software FoundationGPLv3+Rocky Linux Build System (Peridot) Unspecifiedhttps://github.com/SSSD/sssd/linuxs390xy:'l yAAA큤g3eg3eg3eg3eg3eg3eg3eg3efEe0898a66f9f24c57f0ec5f2f97348b430cc0a1246bbd89d3ce03f3dbfbdd4274684b662b467f9de357c61e023ddfd5b1a89d409b26d798fc7f6e0ff06e424efad584dedfb2a20e934c8bc96e912f8f5d6f7a552333a949d84c44c1f2d7c86b05e0898a66f9f24c57f0ec5f2f97348b430cc0a1246bbd89d3ce03f3dbfbdd4274../../../../usr/lib64/sssd/modules/sssd_krb5_idp_plugin.so../../../../usr/libexec/sssd/oidc_childrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.9.5-4.el9_5.1.src.rpmconfig(sssd-idp)sssd-idpsssd-idp(s390-64)@@@@@@@@@@@@@@@@@@@@@@    @config(sssd-idp)libc.so.6()(64bit)libc.so.6(GLIBC_2.2)(64bit)libc.so.6(GLIBC_2.25)(64bit)libc.so.6(GLIBC_2.34)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.8)(64bit)libcom_err.so.2()(64bit)libcurl.so.4()(64bit)libjansson.so.4()(64bit)libjansson.so.4(libjansson.so.4)(64bit)libjose.so.0()(64bit)libjose.so.0(LIBJOSE_1.0)(64bit)libk5crypto.so.3()(64bit)libkrad.so.0()(64bit)libkrad.so.0(krad_0_MIT)(64bit)libkrb5.so.3()(64bit)libkrb5.so.3(krb5_3_MIT)(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libsss_debug.so()(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)rtld(GNU_HASH)sssd-common2.9.5-4.el9_5.13.0.4-14.6.0-14.0-15.4.18-12.9.5-4.el9_5.14.16.1.3ffffy_fE@f/f! @fg@e!@e@e@e)eReRe@d dd@ddu@doMdbc<@c]cdAlexey Tikhonov - 2.9.5-4.1Alexey Tikhonov - 2.9.5-4Alexey Tikhonov - 2.9.5-3Alexey Tikhonov - 2.9.5-2Alexey Tikhonov - 2.9.5-1Alexey Tikhonov - 2.9.4-7Alexey Tikhonov - 2.9.4-6Alexey Tikhonov - 2.9.4-5Alexey Tikhonov - 2.9.4-4Alexey Tikhonov - 2.9.4-3Alexey Tikhonov - 2.9.4-2Alexey Tikhonov - 2.9.4-1Alexey Tikhonov - 2.9.3-2Alexey Tikhonov - 2.9.3-1Alexey Tikhonov - 2.9.2-2Alexey Tikhonov - 2.9.2-1Alexey Tikhonov - 2.9.1-2Alexey Tikhonov - 2.9.1-1Alexey Tikhonov - 2.9.0-5Alexey Tikhonov - 2.9.0-4Alexey Tikhonov - 2.9.0-3Alexey Tikhonov - 2.9.0-1Alexey Tikhonov - 2.8.2-2Alexey Tikhonov - 2.8.2-1Alexey Tikhonov - 2.8.1-1- Resolves: RHEL-59876 - EL9/CentOS Stream 9 lost offline smart card authentication - Resolves: RHEL-50912 - possible regression of rhbz#2196521- Resolves: RHEL-49711 - SYSDB: remove index on dataExpireTimestamp - Resolves: RHEL-49811 - 2FA is being enforced after upgrading 2.9.1->2.9.4- Resolves: RHEL-40742 - passkey_child with wrong owner- Resolves: RHEL-40742 - passkey_child with wrong owner - Resolves: RHEL-41047 - sssd is skipping GPO evaluation with auto_private_groups - Resolves: RHEL-40570 - GPO access the wrong memory location- Resolves: RHEL-36586 - Rebase SSSD for RHEL 9.5 - Resolves: RHEL-27716 - SSSD fails to process AD groups with 'Global Scope' correctly causing incomplete group-membership on RHEL if cache is empty - Resolves: RHEL-17659 - [RfE] SSSD Failover Enhancements - Resolves: RHEL-35781 - Passkey errors when handling multiple altSecurityIdentities values - Resolves: RHEL-30142 - sssd_pac is crashing - Resolves: RHEL-22206 - Errors in krb5_child.log every time a user authenticates - Pre-authentication failed: No pkinit_anchors supplied - Resolves: RHEL-32595 - Excessive "Domain not found' messages logged to sssd_nss & sssd_be in multidomain AD forest - Resolves: RHEL-28666 - sssctl config-check is reporting false positive error msg - Resolves: RHEL-29454 - NULL dereference in inotify handling - Resolves: RHEL-1654 - Improve documentation for allowing e-mail address as username- Relates: RHEL-33645 - Rebase Samba to the latest 4.20.x release- Resolves: RHEL-27209 - Race condition during authorization leads to GPO policies functioning inconsistently [rhel-9.4.0]- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-22340 - socket leak - Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-12503 - AD users are unable to log in due to case sensitivity of user because the domain is found as an alias to the email address. - Resolves: RHEL-22288 - ssh pubkey stored in ldap/AD no longer works to authenticate via sssd - Resolves: RHEL-22194 - gdm smartcard login fails with sssd-2.9.3 in case of multiple identities- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-18395 - latest sssd breaks logging in via XDMCP for LDAP/Kerberos users - Resolves: RHEL-17498 - New sssd.conf seems not to be backwards compatible (wrt SmartCard auth of local users using 'files provider') [rhel-9] - Resolves: RHEL-21079 - SSSD GPO lacks group resolution on hosts [rhel-9] - Resolves: RHEL-19211 - Excessive logging to sssd_nss and sssd_be in multi-domain AD forest [rhel-9]- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-14427 - Expected cn in RDN, got uid - Resolves: RHEL-12229 - HANA validation on RHEL 9.2 issue possibly related to libc/nss_sss behaviour - Resolves: RHEL-3925 - SSSD goes offline when, while reading a single user, misses a required attribute (i.e. SID) - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: RHEL-4146 - Incorrect handling of reverse IPv6 update results in update failure - Resolves: RHEL-4971 - sssd-kcm does not appear to expire Kerberos tickets (RFE: sssd_kcm should have the option to automatically delete the expired tickets)- Resolves: RHEL-2319 - Passkey authentication for centrally managed users- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: rhbz#2234829 - SSSD runs multiples lookup search for each NFS request (SBUS req chaining stopped working) - Resolves: rhbz#2236119 - dbus and crond getting terminated with SIGBUS in sss_client code- Resolves: rhbz#2218858 - [sssd] SSSD enters failed state after heavy load in the system- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#2196816 - [RHEL9] [sssd] User lookup on IPA client fails with 's2n get_fqlist request failed' - Resolves: rhbz#2162552 - sssd client caches old data after removing netgroup member on IDM - Resolves: rhbz#2189542 - [sssd] RHEL 9.3 Tier 0 Localization - Resolves: rhbz#2133854 - [RHEL9] In some cases when `sdap_add_incomplete_groups()` is called with `ignore_group_members = true`, groups should be treated as complete - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys - Resolves: rhbz#1913839 - filter_groups doesn't filter GID from 'id' output: AD + 'ldap_id_mapping = True' corner case - Resolves: rhbz#2100789 - [Improvement] sssctl config-check command does not show an error when we don't have id_provider in the domain section - Resolves: rhbz#2152177 - [RFE] Add support for ldapi:// URLs - Resolves: rhbz#2164852 - man page entry should make clear that a nested group needs a name - Resolves: rhbz#2166627 - Improvement: sss_client: add 'getsidbyusername()' and 'getsidbygroupname()' and corresponding python bindings - Resolves: rhbz#2166943 - kinit switches KCM away from the newly issued ticket - Resolves: rhbz#2167728 - [sssd] Auth fails if client cannot speak to forest root domain (ldap_sasl_interactive_bind_s failed)- Resolves: rhbz#2160001 - Reference to 'sssd-ldap-attributes' man page is missing in 'sssd-ldap', etc man pages - Resolves: rhbz#2143159 - automount killed by SIGSEGV- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1608496 - sssd failing to register dynamic DNS addresses against an AD server due to unnecessary DNS search - Resolves: rhbz#2110091 - SSSD doesn't handle changes in 'resolv.conf' properly (when started right before network service) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139684 - [sssd] RHEL 9.2 Tier 0 Localization - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list - Resolves: rhbz#2142794 - SSSD: `sssctl analyze` command shouldn't require 'root' privileged - Resolves: rhbz#2144893 - changing password with ldap_password_policy = shadow does not take effect immediately - Resolves: rhbz#2148737 - UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1507035 - [RFE] SSSD does not support to change the user’s password when option ldap_pwd_policy equals to shadow in sssd.conf file - Resolves: rhbz#1766490 - Use negative cache better and domain checks for lookup by SIDs - Resolves: rhbz#1964121 - RFE: Add an option to sssd config to convert home directories to lowercase (or add a new template for the 'override_homedir' option) - Resolves: rhbz#2074307 - reduce debug level in case well_known_sid_to_name() fails - Resolves: rhbz#2096031 - SSSD: sdap_handle_id_collision_for_incomplete_groups debug message missing a new line - Resolves: rhbz#2103325 - Supported AD group types should be explained in the docs - Resolves: rhbz#2111388 - authenticating against external IdP services okta (native app) with OAuth client secret failed - Resolves: rhbz#2115171 - SSSD: duplicate dns_resolver_* option in man sssd.conf - Resolves: rhbz#2127492 - sssd timezone issues sudonotafter - Resolves: rhbz#2128840 - [RFE] provide dbus method to find users by attr - Resolves: rhbz#2128883 - Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list 2.9.5-4.el9_5.12.9.5-4.el9_5.12.9.5-4.el9_5.1sssd_enable_idp.build-idb69d7e8618f41da7d57f0d8e55c68b8f6bfeca15d53afa9611f05bdc0bb453f5044f7262c309008csssd_krb5_idp_plugin.sooidc_childsssd_enable_idp/etc/krb5.conf.d//usr/lib//usr/lib/.build-id//usr/lib/.build-id/b6//usr/lib/.build-id/d5//usr/lib64/sssd/modules//usr/libexec/sssd//usr/share/sssd/krb5-snippets/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -march=z14 -mtune=z15 -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19s390x-redhat-linux-gnuASCII textdirectoryELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=b69d7e8618f41da7d57f0d8e55c68b8f6bfeca15, strippedELF 64-bit MSB pie executable, IBM S/390, version 1 (SYSV), dynamically linked, interpreter /lib/ld64.so.1, BuildID[sha1]=d53afa9611f05bdc0bb453f5044f7262c309008c, for GNU/Linux 3.2.0, stripped R RRRRRRR RRR RRR RRRRRR RRRRR R RRRutf-8e286911444bdcaf0bf77e50a9ac406a2a75836d308a93db4b0b8ca93532b798bd6a8c2f60aa7c86f48269248a3c40277a2c70e08d9ded4e55b1da30e2f3579bd?0(/hG j{C]KrZ YZP:mYy tB!!GL } M1 E| Yio|DE:a:D"J$Obmd%&\87d+Ǘs^uR8M؜!8gAED/aXUaLǿd1B<}d'&`$?dM{&W!̓0ŋ'D\+Idp!%;Y ""(g0Fq6Qآi'>IAzu3=ل::$! K2AN?% ̷6Sy:V51QrZ*N?A1Ntզת;7Q!JOi?ѧ.2:**gözx?++C 6T9O_ͧwJe7gR$lS g(<ٿ8+ӼJuԜ>Kz`Ăf(v(6G!btɗ7K:VI wxSS'?_*o%P](lpb;\ۋS(s)1!= u»'R~F,Y݉m$5!QaTFWݵ{I Ĝ|QK^DY˔Ht|^oB|gJ7 j{Nbn[O)<}=T;(z[>o|¢y"LF`I+"5[?6y,y1Y@% lzڐƜ}<{>/{s@Q^H ϨWuFhX&5NFKcaB<q #|zًGi&q)# \i S<ؕM"Ӡ (' j;6 "eجRf6G$;WuK"L"&xM 2~^'^~8[(y*)syc~*8p'N +bR^\ǣkP`<!p 0(q6<2镒?ڄBz8n6tr>W^ m:r9o]]M7^]nn+ͫYhya\N/VV{mY u^v(>ح7?_Z-k;ݴZ,V;疥յܺb.btt.8 riZ_ؾvtoO>;W[xuXջY7(qְ[W^ZV[Bklz>Y`nnչ]mzՆuzup} :W6<7vA/[[[' ދRS`0X ^ܾqZrr:ptnuYͭg3 wѷcٛU8As1ww{p^8&&AVm}x'l6ExGѝ x߻UcsmFҘ]+6=nݫVf{Vnge}xn/,ga> fpY{z7kgY^GbwS&&E?ѫ\c##BiT1,R԰EEnPDҒ^g0YSGKXi=m9c o<|qb{9SRU6A54i֨$P&RF%*Yʈ,tLI?>|٦nAav!mH2d^J "XyfcJi!z/VM@  ԹidJta|\`FD?!fH<.h̠5 q(" 2*cH5UBւ*DxTZ߄,$pB4JT#֜Q^ ڠlmyQ6 5Fk#d2Y>3vd бag~ա1pbGLPS-uq) /<+8-{bxx2-ȑ᪣B$]9cfRb tyX搧;ĪC*B 4 rDm9Qy"-ϲ0/iӀ06O3 |Uݛifn ^{z`\ֻgx \jgS=֖0MmZu0V?^ò~a>Gb".Xocw}= ޯ15, ׎ kjwswژ=[Bror_U.8-MØل2-WzP_EO;GM&շ?.٫NPUش!/&dMNK]KRppdJA]EyHgP E0 7U iofӹ$Ǜ 7t3#~^|jzG^Yu#f \B0 :&U XO{BH9:@Q7w&d|GTYӧTS1$;>97- sg۬۬h-f ?a7;wN-5F4OD,2Cl5(*3Hdz)[޿6^} )" hZA8 7H$xt)(ǪeԞ9ЭRib(sVO@nTӰw6A((`EGn`(egXNw\ > `فzș6rJųٲ\kx8tOiz}َg΂|KsۏK4f% rVIh? Xsr ?K\cA=692HU4m: UeXVx.rk^Xs) c6Ra{Y=cw ]{鑼fD:X.7cZr}T6Ke9^fy:vt8U~Kd`@| rg-bft뼕I&M0δu+rD%,4:X.,`6/Os*LB4UZ"3Uz`zge6qs)PGHDEOn}~~Vn%)^Gn(DrD\hiƥC-˲@wU'Hb3tR9mV#PMC1 K^Jǩ '<׺1m B+Ns=ڋrA,OrPq }4%A;7Hf; FWu$i@ c򁔋2:@G+d(hU ϹP J JzuGXbK!Yd@o.Hߩ a(-,xB=H;`-ƖG%/S feɌ;! 'M\?)!W{i\FGR]8K%(IaЬ@ 1;,lÄ+ D8@* nXa`'E I)k/BY7]bԎ>#f:mz<1+{H4]MS%PbW~aJQhfտrqrp:EP6c>r q"b7ŀ_rP;{L[JwQv-k?eKyRd{G4l, tm8<\]0(Y2\jeō@Fb_&ӖGEJәS8$.qŒ&Q \ <:QrdN*"*9iحGg\%.gb5.V4U/-0ʡQ$4BF:ʪ=ۼs8Iͼ{E1d>dY11?Tj|7q8l㽒+q;H#WQ1EI$ o#2&`LǟNA\!1e0E':,kЅpLw~,qYXǶê2rL.S`HEiZ(E*bZC@yLސEHb4$vt0"rw$`Ὀ:L?*Z ,q 'ɁφʸXOv][A4gRj2?Kjr:"Y?KzgMQt:q'k7ќ R(l. >RJ'?x\7Ǣ%>oJSc8^~PPt2,˻wɪ;pYc:Ne. #pUl#o6O@?^2~I ':dֻ21BϚ*asQ㬒mξi :\LI6gweM_Xﯲ;`hcR1<:6kq =97~x>O7Z71QH&FErZw<d\^07 E( n^b`Vh%Dt6xVٶDq-(\BuFUr4\*@,(pVn)ۇJGol _}xN; J!*"u'Jyfb&>2!O\r|3ۡg"JۜTLB`"JDuvv@_󴙵i( A/ٜsrq]VT#і4UFPy(џ^> 'jA"(pLGτ)_u\-ޒl},8R4,zgG:E3< 8v>zQ^gf!w*wNcb<H%=6}fOc^pa41倜2檎Wh4N^w[s9m8#?'gЉ'sz6'۳>ysdzzЊVGo#јqeyƣy!-m4l -ꄵ hYsk \bu^UՆ}߂?xa0 7wTjaFad_5nWBxqZ+ .v۷^ajv߾w {v`ε+ukun5|Gu׹&ܮڭo]Q夤OAk:@v|!QcޔR~[j 8N80178koՑdp>dI8^(, Ľ'p,Omb8[NNN&e`skû׫傱5 ~{{^].}t0+C6Rgx[ b 1}hAЯdwNC7H,dEpH- i1YL).RRia31ː{=|#~x08Pys@Djpm"XPgJ'n>\x5L y V#.jѶ flžC6hU  J; bCIjbT8&X868C6hlW!,h貵4E s%.O ,4Sa,FJ]+CL9BnX80⌢KW.7)a߀؝!f~Ύ4JQ` ho&2W?=dg<0Aao`389vè*PS& -B8ĪH@6G#6{5FZ!#ƧsicOh\E$"*7hxؕ&bh1%V5 (]LhXtM` Y!%m^>hNS+N&ޔ49st>¼2fa ڦ+޳#)a~`˅!*1pmpp|Xzyd TazB85BzH|^%]!}XU #9! ;ǔ$!jxPqP78b 1z˶JDNr RJIʐ ZaKЎ}'pԍX]St6Eb|pĎC'FwH F@ڑlT˵Y Ob́C@x UY&=`N4 $ݗ)7=Q4i8agڜ ,g !0wL$~ )<31q8R\SRбơ1 9 SSC5D Y?3dbE+Ja:V)zP/6 (v*/E x$ff`D\HMx. )[n,D0B3['5Qj (@q$KKB_fvLabjB n@@>.3#@ A4 t0Lh#ɜ41P:k1C L%g'l)+훟bԐ#hg `G! BPބ'Z8ig#fL#{Z TSdoa{`( (/82"(a-Ҥ(n\V(;&azo [ ~ʂ$W-K0 \,!',Hbpղt,HbpղfA%dI Z,Hbpղ UZ2̂$W-Kr/WfFc\ Ø }Ƹ`IA@X!0 <9c,>M42e̜1&CK{IThCYq~LpV}K{R2x>1<G n0xF 0R4.u^@ 2< 9_@RS\2ePREhX/nO_@KńH=T W?S'^{Ub~i)Itrν́`ھro^uss}zOt{zzG===zeMM`gٺ;%w-X }?W +R0*`pT+`SaaZ8v/uahӋ饃mĆv˝ˠݳnךŅw99 {\wt{_-L^3| cizx_v޹gk8aJu-Wci4]/֟acaY}+ͮeXO:ӓ~XSoWn{b৚~ct6<o]}÷S8b߹ YݯWW>SYS_훜~iv k ^rp8kv߰~8쫳]~6nWwKˠ!zu2}LkS66wקQS]޻X=uvn컠`ӷV-k\dG}cw} k-_/UYQ(l@LW,`a!H_uH..)=f0 !41y܈Ϛ[Ebɿ |af-@pTO&NNEqSNOy5nLAKQ:=mfCpseSU-1?I|ADP#6/{Xi3/Y.RkQC͛44Ԩ".C@ 900ؑ!PO1o>cR?\¤ ;N]|ҁ5Ivxn$]h t% M #DڊDE\#(O9dkj#<4 8s]8ꥭ !- ;Eg<.F Epa@HRN}veJ!iO@Wxj |QKUΊh0M_2WSG6Z%FN A1x )C#Bw$26fMXSA:uƑLirɱoY Q?V}^zLG 7؛#܋}^X5Q OyiߧFrT6Nv;GdUR 3IAm٬ k8 MQ$ !@  sX]~ kgZǻLZ*cŬ*6EJ)+MeN<CiC.T zRQG1jh|!Φ4E-z+T4/CR-L*H,WjLOxط4CwF,ډ "ű-R(E:n: aJ2b:\iD[u)G)Ɉoa~Lp03XÈ=ņhiNBb ,mhnɖvG#V:n\:Sz̔Os".b&>H8cp9P_/]jXʅ[Ѯ5II1Pd!xU e/ɧck͛g(zmq4<>5 k|\v8kS?R9MB2.#[7ǫ9;v-Z ~L9;Jhoګܬ[X L!gKաDYĝمfvtKˈ팄mlƤvusSJ_"7y2+~|b֛0nq[E^ \Sns8R{"[Qdm Cm7Ɯt"v61(ZXgSfLD0a9]vS0K%9 J6XhNc.b1j6 ?݄K:0<&IV#{U nXz˽f 5R+r@9 &8ɲ^ @.F.HmImZZ8f\|TV3ʿX?DӖaQD=\Gőv[|#w@Җ <\PzSTy7FݢzмН0;Y@AD#)!\+SQhL [:yr@H5թp&q:?){!Ѽט2xllsH{?\WHs \BoNTf#(%'WCO(W!bRښ$jlQd}\]>Uj;>l9J%U;V>QU(>Z7Чe[):@`(b:xQe$D_!|Rf=Ohs}ugNVn$~۳C` }EpO|7ٮphpdazqGkcs@[PZ֜ Qܣ}@ rꑘe1Ů jR9WxJ`U%p%U"5 T BpP=1ѳNm \:yFc!MS# [ )T 'oq:U{S6V~[. c!ʂQ qp`.\8EUڑG@}Fu z^kE`BLsBʟ2{bwd: IӠl\&/  `sؒKa$xBe %nnGt.D=GNFpu@ CzcTs-ƂqG݊ؼy,A"t-蜖D _iuKUħr ~J9=]H,:--[/eEQHy|{.O͝) ;lV"$9Ge/=* 갎u+4wx 0tb슺R@ф%[Z!.X~v3: -%A=ME~_坓K!zaն!Ô!^vHK3"ߊ8{)Qjmآc+pB>iz׶-Wݦ̓QK=;&]wB+R9:8lbln;;>-%ܚltkMlIJRPts^)u6-,("%VJsTݽ^]Mn7-oOw#u<pYqc#N?_TZ+77n%4;[@r;|VG EN̷"F)X~e!_,Ġgl@0CimϛXS(Yk {U']Ina\Ԉ3j,jWLˆz;q.fCɹkrI u4,sVv}׭Z3v`]n޴w@bhټM~6t z#pGgDT*X/E*RЄ7*I-Ѧp3E  RvqkK {ɰw/.t0i)" bBN!˃L6aޘN%j7E>ykVwD [:h#`ᎻoP_fNN/ճa?"Q5;jEN|s #+0N#= vFq-.Bgt+Z➹8YN8Øvހ'/K3ao =hb FS;, ?' iς<ޔ~NRId-*@o; 8?:t o@x'w_xsu톕d~a[׷=h7Jk Yt8hql1(9}mu򥸷LٍLDcqHoǙGI;VX̠ o9bt{ǒMχ1!^B=zUjԯv SɲɿMwOj8@r^KWտ䓋ɍ>ܥz TlH:=׊|3}v2|cSQa&lEF!lGJOnF ֩p8U;@*<P8z[Jl4c|Ev`ÙSo e@/VQfƮNHXkˣ~dc_ܦKq$I7YD L 1~g#?M''&԰amWRL<>ɤQpt}D }x?bm@:sP'uԫ_U7oѕw"5GԳf=7/ߵ3&~DXr^ 7\kir[Ʋ^%|8 ]e{r#E)HXG:j|uqԧW/~*Te(맹5Epq^{yIуJtv2(Ri/*NbSw^}2,"Ca8~.\.╌fP) pf{=(/^XnJ.5|$`p\vϢ53\P[Y{W |+CǘBkչz,,K&AtI}[$i7'+rh^xu0F?9bw*Oeg&>dWO~L _cqla t\toߏi}>doiUCq A $?藠'8|ͳQC8`~mA}"㐤LEm\R{`lXgG4y'M7AۙħjszY@ aZ,J㊅<v;E~>'hZscQ$ KtgW|bvX^Co̓e &!-qlk*`MR'k MҮ_:G7W:ـƯȃHm/SDlTƌEH{gW9-~zOZ;%:Z lp^ʵ?W/`'Ju֬JZY-h@lzT𥳐:m BY4X&\ _#w2=tRYkл2W,>JQfy";V)ElŤO\7sn>2!)X b!;KƗc,Yq1UDZC:QJцZB}D -(C5P&jԡmhPF -B5C&huhDB?/"9tJWApz.:gB*wi#̹d_bz]L\I$34X^J]Mu==ap_' au$*"V9'}{ˠHڱ>JMkд~u% ڕo&Z|=$iZOz6g~ߋm|eeZDYȤOZuީ+Qlp% Ww0>^V6+h>};ŵMدf@qFAf!qOnh꠭O043h6Uj+TX=yT(v7QOZln ) ӰlMo vd /Z0U .mUr<yޣz:}>؂T&)QII" n֭]|%&s+Gq/)cwޝ1d'd(Af;}" PN)2.xecPXǪB!pbKdKkfT 9l{9 do0`࿨(>0շTrKrfݺk -tO#J7է)|C EqЫy SxA=9d>`L0?3߆0H,UXV@IEnc3|ŝ=zM=4t8<"TX,Μ9- `iEO|yDt6}N-ʛoAW抡F2L1?=t;u3+ZN `͸eq\ȿ%\}PExs|GHR2%-O3,V?0&lM.Gn HE;_ܟ5>M|zS}D8},XM}ۢ^< srnsR0a+Jl.SWL|0>‚9y v|JwnޜUe2- D e$qJ"J jpt>s2!LηR8,m>wXau}{-e#Xq~h&8 u# A+, # \=iV93}kDks)%Q0gW^|r<!ͳ_ɹZ:R-C#yiHv6a&o^%1 {/"hHٻ4uhT}K_w6QǸjN%VnsZZ/YءM +s& :O7Lc;YesXPP^<kq+|C ?bgTsPK~$E$Oqt~0g]߇{4n|~>"bp/NM>`ͩV(Ko{?'snFI9I%kOGʰcyQ u~<灐_sowu 3"WC׆AOCK2" G=)ýμ<&\S4"ѐ4ڳ nl\nL3ƫ1#kbgņp5C+Mot!t8[/_m˓KG SKtB-%DJknYIp r*xdJRϕϼSa3I(zLi|蘋''ŰZ֕948q/`y0Hr\ 's'VhvìN8/.>Lκ _&M~f5W;ҫ,97fhbFQ9*C1Z-kM Q*v{, G* bѝn! FFGބo!gJՙrlNy]zV4}$ Xg"F+'Ui!b`ʗ` EuHkSMY"]^rGZ5qx̜YAc˚دbm{~Q[znPeݛ2:M]ㆻ!U 85Kbb9SUiz?kL#tocdwm5u|Au2fm9~ẍ4w `- 5`1aţDۂJ:dFSGKM.Hte"}̅wbv7lUk jkhA dlq9FX?vʅ\Go ͕%okFڅD[.(^q[3AT}pr,+iv)fܢw !"™ Í'.7Q/Jy>FHͥUR, 3 E׎B?(kE>a;aʙbBm{Fa丒?25ebH8E#5.$4A1~ML',"CژxN"R`?R-G-^؁ ϡAt`H}5-i'/XL0>˻/*K+\fT0۫ŀuUr4G(CFv3~+ma--S81*h'pԄ|M D Zvc}#!7ki AUtVtŻ9%S}/AINuKҫe(^&Z`KË=;='dQਖ਼*+0\w!8e=6ڕ CPe ~Ku?"8eR !N? $ȣSmMt ^*3Ɋ7F'@T2>1RBM=(ud{K's2G-1o?r0n %y*!܀_Sbow u4o08?m3&A#JCqx8۝m:TNշy(Iw.W2~^x~Gt٬FlMS\Jrk4 >8R(?X5bb8;w/V߫g9Z-7ݘp&''k,;KZYi*))0mA9>7/(?ѣ8 ?\YH֘-8|%` %z"A1D@uxc sbyjj@M7=7tq=j_"6J(Mʸq'toQ]wf3iG l]m!b:0OO.SD?#q;"їJ{bMaWc) 1GGyr+^\UhiN bX m܆r^!nzZ5pt$C/azE,EعpW!+l8Rێ6(/*-3%Wb&uIxhTLp>]eijoDQG}H]%\X +I=K>%SJtjY 37x AD"|bM%L^+/H<8K?'RJRuiɋ"Ha@/ ^?bDS x*im#Q!"̛f@V{feUЀILCsM?I 0}%} uZ|O:2B*UI"̹d_bz] ޞ [I:Vڴ_\EԔ< Э_UWC3O{}EJw6tYqf:UjŷIn= :eNMC,\F/L&MVg~P}.l1){^A O ]ĘOg-/JXS71"s@U*2bndƩS&9@O:PFbN|z#'_Eڐ6" 1]M6y0eUY&Ey>L2$ g'.IS)Mj9-εxk/,]tK RtA=NR<,>|Hర4"/1>:Ûhz zu['rb|Ms: d״-x f'=]bm"Vg%\34%JHQV~tgW P_z SGujְq1!k {@⚧26J4gν)bBY=$P"ܢWMk+o(7tf;sߊ0ϼ(/iܯ KCV#P6ܻݸhP$;]"bS>hRma+BZ+a4[^{!Zvb P{n~ vur\iў7&_fszW"o 1Yy,U`+]7