ipa-client-epn-4.12.2-1.el9_5.2> M Mv ĉJ4!!%joLne)Ip-Bm5 ']gbWreleng@rockylinux.org p-Bm5 ']n-AK:=!N$bJ03AH&44̢X':au `\G[ȳ_?/h+(%,bc3Z"@p?+jLӪT?t5~ Q}:14!=x*AyIe+N"va1G2&^;]ϧ,%<~ΪyZҹn"nw?*ȸ^d5b1b3fdc9bcce99e986923efc0a0b7f299e71105b3cad1c565ffe7b74db1728f32086269ec2899ee9d10efba62204ffe5b6be68yo:dz#5)x)>B==?=-d " [ 1B }=     8  l     < }    P  p( 8 9 X:<>7?7&@7.G78 H7l I7 X7Y7\7 ]8$ ^8 b9d:e:f;l;t; u;T v;w<0 xSystem Environment/Basehttp://www.freeipa.org/linuxs390x if [ $1 -eq 1 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Initial installation /usr/lib/systemd/systemd-update-helper install-system-units ipa-epn.service || : fi if [ $1 -eq 1 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Initial installation /usr/lib/systemd/systemd-update-helper install-system-units ipa-epn.timer || : fi if [ $1 -eq 0 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Package removal, not upgrade /usr/lib/systemd/systemd-update-helper remove-system-units ipa-epn.service || : fi if [ $1 -eq 0 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Package removal, not upgrade /usr/lib/systemd/systemd-update-helper remove-system-units ipa-epn.timer || : fi j -KTA큀A큤A큤gbW"f}f}gbVgbVgbVgbW=f}f}gbW>f}f}f}06a73f15562686516c984dd9fe61689c5268ff1c5a13e69f8b347afef41b3277655a34c4f7afc8084048deb045c6ff06ae5d6eed4f3491174e890c9302733c6845b2acef21fa8b80c06c1daeedf59e02f279130efdfe5314b848cb7bd2bf5225c3281d4a12837772dd1b5d28f206ceaa7e994ea40e5811b15f14f7113d188f53e881641247f4bd3ee198464a4863ef77075e5ca0a0c7922a4058bb85f6bbe5396973ec491c6ab5421b3e5e4812d066eeae13ea7edd814467d6ef0941dca759759b55177234392b4193c554acefd31077eea460ac4497f31b48e28b001a7250fe8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b903bb1a828d4e734320b57e576a3ed45c068d5422e3553e33b129e82d6ba63d52b0de4381a0e13a357440108495b56c58ed640a9f036cae73eb724404954f4a5c62rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootipa-4.12.2-1.el9_5.2.src.rpmconfig(ipa-client-epn)ipa-client-epnipa-client-epn(s390-64) @       /bin/sh/bin/sh/bin/sh/usr/bin/python3config(ipa-client-epn)ipa-clientrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)systemd-unitssystemd-unitssystemd-unitssystemd-units4.12.2-1.el9_5.24.12.2-1.el9_5.23.0.4-14.6.0-14.0-15.4.18-1246.6-3246.6-3246.6-3246.6-34.16.1.3gG g-@ff@fffff`S@f_fWf0@f@e@eԔ@eN@eeeie[J@eH@ed d@dr@dcc&@cc@c#@Florence Blanc-Renaud - 4.12.2-1.2Florence Blanc-Renaud - 4.12.2-1.1Florence Blanc-Renaud - 4.12.2-1Florence Blanc-Renaud - 4.12.0-7Florence Blanc-Renaud - 4.12.0-6Florence Blanc-Renaud - 4.12.0-5Julien Rische - 4.12.0-4Florence Blanc-Renaud - 4.12.0-3Florence Blanc-Renaud - 4.12.0-2Florence Blanc-Renaud - 4.12.0-1Florence Blanc-Renaud - 4.11.0-11Florence Blanc-Renaud - 4.11.0-10Florence Blanc-Renaud - 4.11.0-9Florence Blanc-Renaud - 4.11.0-8Florence Blanc-Renaud - 4.11.0-72024 Florence Blanc-Renaud - 4.11.0-6Florence Blanc-Renaud - 4.11.0-5Florence Blanc-Renaud - 4.11.0-4Florence Blanc-Renaud - 4.11.0-3Florence Blanc-Renaud - 4.11.0-2Florence Blanc-Renaud - 4.11.0-1Florence Blanc-Renaud - 4.10.2-4Florence Blanc-Renaud - 4.10.2-3Florence Blanc-Renaud - 4.10.2-2Florence Blanc-Renaud - 4.10.2-1Florence Blanc-Renaud - 4.10.1-6Florence Blanc-Renaud - 4.10.1-5Florence Blanc-Renaud - 4.10.1-4Alexander Bokovoy - 4.10.1-3Florence Blanc-Renaud - 4.10.1-2- Resolves: RHEL-69294 add a tool to quickly detect and fix issues with IPA ID ranges- Resolves: RHEL-66173 Last expired OTP token would be considered as still assigned to the user- Resolves: RHEL-54546 Covscan issues: Resource Leak - Resolves: RHEL-49602 misleading warning for missing ipa-selinux-nfast package on luna hsm h/w - Resolves: RHEL-40359 With unreachable AD, ipa trust returns an internal error- Resolves: RHEL-53500 adtrustinstance only prints issues in check_inst() and does not log them - Resolves: RHEL-52306 Unconditionally add MS-PAC to global config - Resolves: RHEL-52300 RFE - Keep the configured value for the "nsslapd-ignore-time-skew" after a "force-sync" - Resolves: RHEL-52222 ipa-replica/server-install with softhsm needs to check permission/ownership of /var/lib/softhsm/tokens to avoid install failure - Resolves: RHEL-51944 Include latest fixes in python3-ipatests packages - Resolves: RHEL-50804 ipa-migrate -Z with invalid cert options fails with 'ValueError: option error' - Resolves: RHEL-49602 misleading warning for missing ipa-selinux-nfast package on luna hsm h/w - Resolves: RHEL-27856 'Unable to log in as uid=admin-replica.testrealm.test,ou=people,o=ipaca' during replica install- Resolves: RHEL-47292 Include latest fixes in python3-ipatests packages - Resolves: RHEL-47146 Syntax error uninstalling the selinux-luna subpackage - Resolves: RHEL-46009 ipa-migrate with -Z option fails with ValueError: option error - Resolves: RHEL-46003 ipa-migrate -V options fails to display version - Resolves: RHEL-45463 ipa-migrate stage-mode is failing with error: Modifying a mapped attribute in a managed entry is not allowed - Resolves: RHEL-40890 ipa-server-install: token_password_file read in kra.install_check after calling hsm_validator in ca.install_check - Resolves: RHEL-40661 Adjust "ipa config-mod --addattr ipaconfigstring=EnforceLDAPOTP" to allow for non OTP users in some cases- Resolves: RHEL-37285 IPA Web UI not showing replication agreement for non-admin users - Resolves: RHEL-42703 PSKC.xml issues with ipa_otptoken_import.py - Resolves: RHEL-41194 ipa-client rpm post script creates always ssh_config.orig even if nothing needs to be changed - Resolves: RHEL-39477 kdc.crt certificate not getting automatically renewed by certmonger in IPA Hidden replica - Resolves: RHEL-46559 Include latest fixes in python3-ipatests packages - Resolves: RHEL-22188 [RFE] Allow IPA SIDgen task to continue if it finds an entity that SID can't be assigned to- Resolves: RHEL-29928 CVE-2024-3183 freeipa: user can obtain a hash of the passwords of all domain users and perform offline brute force - Resolves: RHEL-29691 CVE-2024-2698 freeipa: delegation rules allow a proxy service to impersonate any user to access another target service- Related: RHEL-34809 temporarily revert a commit that depends on newer version of python-jwcrypto- Resolves: RHEL-39950 ipa-client can't be installed because of a missing dependency- Resolves: RHEL-39140 Rebase ipa to the latest 4.12 version for RHEL 9.5 - Resolves: RHEL-34757 The change for preventing deletion of the admin user caused a regression in disable - Resolves: RHEL-30553 Depend on nfsv4-client-utils or nfs-utils - Resolves: RHEL-29762 IPA sidgen fails to create SID for manually set ID for a new range [rhel-9.5.0] - Resolves: RHEL-26261 Fix replica connection check for use with AD administrator - Resolves: RHEL-18062 ipa ca-show NAME --certificate-out=file creates empty file when NAME does not exist - Resolves: RHEL-12149 traceback in ipaserver/dcerpc.py - Resolves: RHEL-4810 [RFE] FreeIPA-to-FreeIPA migration - Resolves: RHEL-4807 [RFE] Support in IPA for HSM boxes- Resolves: RHEL-33645 - Update samba to version 4.20.0- Resolves: RHEL-23377 Enforce OTP for ldap bind (in some scenarios) - Resolves: RHEL-29745 Unable to re-add broken AD trust - NT_STATUS_INVALID_PARAMETER - Resolves: RHEL-30905 Backport latest test fixes in ipa- Resolves: RHEL-28258 vault fails on non-fips client if server is in FIPS mode - Resolves: RHEL-26154 ipa: freeipa: specially crafted HTTP requests potentially lead to DoS or data exposure- Resolves: RHEL-12143 'ipa vault-add is failing with ipa: ERROR: an internal error has occurred in FIPS mode - Resolves: RHEL-25738 ipa-kdb: Cannot determine if PAC generator is available- Resolves: RHEL-25260 tier-1-upstream-dns-locations failed on RHEL8.8 gating - Resolves: RHEL-25738 ipa-kdb: Cannot determine if PAC generator is available - Resolves: RHEL-25815 Backport latest test fixes in python3-ipatests- Resolves: RHEL-23627 IPA stops working if HTTP/... service principal was created before FreeIPA 4.4.0 and never modified - Resolves: RHEL-23625 sidgen plugin does not ignore staged users - Resolves: RHEL-23621 session cookie can't be read - Resolves: RHEL-22372 Gating-DL1 test failure in test_integration/test_dns_locations.py::TestDNSLocations::()::test_ipa_ca_records - Resolves: RHEL-21809 CA less servers are failing to be added in topology segment for domain suffix - Resolves: RHEL-17996 Memory leak in IdM's KDC- Resolves: RHEL-12589 ipa: Invalid CSRF protection - Resolves: RHEL-19748 ipa hbac-test did not report that it hit an arbitrary search limit - Resolves: RHEL-21059 'DogtagCertsConfigCheck' fails, displaying the error message 'Malformed directive: ca.signing.certnickname=caSigningCert cert-pki-ca' - Resolves: RHEL-21804 ipa client 4.10.2 - Failed to obtain host TGT - Resolves: RHEL-21809 CA less servers are failing to be added in topology segment for domain suffix - Resolves: RHEL-21810 ipa-client-install --automount-location does not work - Resolves: RHEL-21811 Handle change in behavior of pki-server ca-config-show in pki 11.5.0 - Resolves: RHEL-21812 Backport latest test fixes in ipa - Resolves: RHEL-21813 krb5kdc fails to start when pkinit and otp auth type is enabled in ipa - Resolves: RHEL-21815 IPA 389ds plugins need to have better logging and tracing - Resolves: RHEL-21937 Make sure a default NetBIOS name is set if not passed in by ADTrust instance constructor- Resolves: RHEL-16985 Handle samba 4.19 changes in samba.security.dom_sid()- Resolves: RHEL-14428 healthcheck reports nsslapd-accesslog-logbuffering is set to 'off'- Resolves: RHEL-14292 Backport latest test fixes in python3-ipatests - Resolves: RHEL-15443 Server install: failure to install with externally signed CA because of timezone issue - Resolves: RHEL-15444 Minimum length parameter in pwpolicy cannot be removed with empty string - Resolves: RHEL-14842 Upstream xmlrpc tests are failing in RHEL9.4- Resolves: RHEL-11652 Rebase ipa to latest 4.11.x version for RHEL 9.4- Resolves: rhbz#2231847 RHEL 8.8 & 9.2 fails to create AD trust with STIG applied - Resolves: rhbz#2232056 Include latest test fixes in python3-ipatests- Resolves: rhbz#2229712 Delete operation protection for admin user - Resolves: rhbz#2227831 Interrupt request processing in ipadb_fill_info3() if connection to 389ds is lost - Resolves: rhbz#2227784 libipa_otp_lasttoken plugin memory leak - Resolves: rhbz#2224570 Improved error messages are needed when attempting to add a non-existing idp to a user - Resolves: rhbz#2230251 Backport latest test fixes to python3-ipatests- Resolves: rhbz#2192969 Better handling of the command line and web UI cert search and/or list features - Resolves: rhbz#2214933 Uninstalling of the IPA server is encountering a failure during the unconfiguration of the CA (Unconfiguring CA) - Resolves: rhbz#2216114 After updating the RHEL from 8.7 to 8.8, IPA services fails to start - Resolves: rhbz#2216549 Upgrade to 4.9.10-6.0.1 fails: attributes are managed by topology plugin - Resolves: rhbz#2216611 Backport latest test fixes in python3-ipatests - Resolves: rhbz#2216872 User authentication failing on OTP validation using multiple tokens, succeeds with password only- Resolves: rhbz#2196426 [Rebase] Rebase ipa to latest 4.10.x release for RHEL 9.3 - Resolves: rhbz#2192969 Better handling of the command line and web UI cert search and/or list features - Resolves: rhbz#2192625 Better catch of the IPA web UI event "IPA Error 4301:CertificateOperationError", and IPA httpd error CertificateOperationError - Resolves: rhbz#2188567 IPA client Kerberos configuration incompatible with java - Resolves: rhbz#2182683 Tolerate absence of PAC ticket signature depending of domain and servers capabilities [rhel-9] - Resolves: rhbz#2180914 Sequence processing failures for group_add using server context - Resolves: rhbz#2165880 Add RBCD support to IPA - Resolves: rhbz#2160399 get_ranges - [file ipa_sidgen_common.c, line 276]: Failed to convert LDAP entry to range struct- Resolves: rhbz#2169632 Backport latest test fixes in python3-ipatests- Resolves: rhbz#2162656 Passwordless (GSSAPI) SSH not working for subdomain - Resolves: rhbz#2166326 Removing the last DNS type for ipa-ca does not work - Resolves: rhbz#2167473 RFE - Add a warning note about possible performance impact of the Auto Member rebuild task - Resolves: rhbz#2168244 requestsearchtimelimit=0 doesn't seems to be work with ipa-acme-manage pruning command- Resolves: rhbz#2161284 'ERROR Could not remove /tmp/tmpbkw6hawo.ipabkp' can be seen prior to 'ipa-client-install' command was successful - Resolves: rhbz#2164403 ipa-trust-add with --range-type=ipa-ad-trust-posix fails while creating an ID range - Resolves: rhbz#2162677 RFE: Implement support for PKI certificate and request pruning - Resolves: rhbz#2167312 - Backport latest test fixes in python3-ipatests- Rebuild against krb5 1.20.1 ABI - Resolves: rhbz#2155425- Resolves: rhbz#2148887 MemberManager with groups fails - Resolves: rhbz#2150335 idm:client is missing dependency on krb5-pkinit/bin/sh/bin/sh/bin/sh 4.12.2-1.el9_5.24.12.2-1.el9_5.24.12.2-1.el9_5.2 epnepn.confexpire_msg.templateipa-epn.serviceipa-epn.timeripa-epnipa-client-epnContributors.txtREADME.mdipa-client-epnCOPYINGipa-epn.1.gzepn.conf.5.gz/etc/ipa//etc/ipa/epn//usr/lib/systemd/system//usr/sbin//usr/share/doc//usr/share/doc/ipa-client-epn//usr/share/licenses//usr/share/licenses/ipa-client-epn//usr/share/man/man1//usr/share/man/man5/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -march=z14 -mtune=z15 -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19s390x-redhat-linux-gnudirectoryASCII textPython script, ASCII text executableUTF-8 Unicode texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)Rutf-8c0dfe4b5aab384e3d57242536c5abd9bd730fbc6df879357cae1016a4b658e9ffc701ee1c2d6624cf525d104662718a8dc755abd391fcac0c4438c23d2a3c9fb?(/h\# /Lk4d99rRFkRf;--=(\Y=jT_t 5TwϽ3k <*QɐVO-/NᝒOޔlrH(fҩۍojJv*u݊mx`4d>, #ľ)aH8I$/ "':Rqm: \iՄ+-|)y 0@L਀X8&kg`8 DDfR#h9hL`~/ DS&_?%D.:@뾮0Fy50&I@D+D^8˺&| "t`dH}ц@s/R!%*Rd9fP+62JOO?ybwFm.gaP7fЍs9|(J)Uͅ~;#)5MZMwo5y\b[Y?}*~mf~[oI .9<#)Rv]4E MQ pl6 N?q:nbBeQ7zjաn+ޝ ѩ'/hU#O.|QW`AFrg3oֆa ]X(w&$mQjdib-'_m2ɘ-|'c)Q1lO%[1Ի~)JC=/$9O+ "r')N?uͅJӛBN(븓G #1d0jDyQ.*$4 ŃA|I5EP+$z):yN=$`QC>4*zdau@n{F)Oʭv:Ag:OzP.oߵnbsP]#5>tӜo0R55U"OĦV;dO]NCD,{;"orjk&߳*h!fPIx~M{~ZwF\_ΫZ_ȫugoMs}(+N7HTWߊB>=] 4Y]jqb fȮ?-Ė8#xw{s5ː?l R}!V+9umObGRnw6T_3 ɁҎ`R )mu+_iD{hB"$`ryKr( {O;7q0 e"0u*@(LadZ ! 0I3Fz.7ZNpn2)C&5  GSd%5r`(Q`ht\h4 qaH.'\);`AmmpbńU&guj[ȟ &͒ZI]IJ/e9_7wێ%)\Hd@kET@q0X.$"0`ʅ}ՑnOCc@ %᯽PaP˽V[Y]i']O-z?E co Dzsj1eOn^|dtuSӬNjPk+؏^'t||ھB U[yA7I.ȍʷQrqhh$3PGVXIY'r 0$x7&wCuԼ=rقk:+`6LtI S1+zBbF*SGJ_Z5ůߏGuv;Z" Fbn*dN5&U Xճq rص[K1`h@6 ( D^m[ch ޕvR2(O}?a|^Cj)nkBuq;|_&wVIbO Xԅztj['E^).\5G2YcH huL Nr*7je \\)*SLU#œ㶕tZG1c]v$S;+[FĔ+v+p+ g2`yQV 1I[cZ(SPI2}G`n"X-1$TAp+mJ+uQ5\lϘ1XhmTGwj#l7x㊟BqXk2}[;VJ$;2lSucW@n Uf/B"+ R9,{^3KnK)RL2\IGnBp0˦C6yX[7ˣ5ypc<-l uޏB}~`[{X]Gign=7Aj.ir-?(s]Q yaI""~#(_1՞v4E%!;YSᾇ؋-9+#Iog]B~25\Ps% }}2Q%$ȜjdQc:r֭g jd|= }BJH46ipdpT49A$DX(,i["׿B~?cP')r" u00Ҷi|1m24FҚujFs@ H82M d)H4fAfCaٹ+)g0-"[/E*p몥j:t<|(a|WEQsw[oNzIzwyO4*+z=t|E2ކRu|j;`aғ|9k(hU43awV+pvMlyS>bAF3CÑ3!7S2RS7)VSVtlm3Y$Ľ| δ[_,M@ћSL1yN:*iY&+A|D]pdj| 5| 7 ǻ J/z^1ݺE/f@>W{^UwlJޘeϪZ"3U:*!2rn,޶)l2۸[4ȥ[5x`[(۾&zn%?хu0+*nfU7e57#a)dZp]BDM>r&\ڌ巄ZA'46>dR/(b&p9Nz;.De1iC\`'D9 v L绸 v١} 9\dd#bWV"nɤC&dÊ %-$C mH1Id\p<'aуj2hYbVb`ߤۃ]Fd!e>TՆƄX;M[bj2f&9P ~}bYTQhl[%{()rb+okf1m3E!v&H9(Z *G T˻RlE*(ZCT|%'EdqU-/\SS13&rpF_L=_a쟙]prV~M+1Ztd&H&DdܕUP,Bx{lRIUij"঴齇H 2/n$ַ^RZJ?.9'k!N+ϐ q;2>Hj]Cb?ȣ":Gq3Q(ٜWb"'΃!_&jlXJۮb_N_Kkĸ*4U]xʿY>-LeD fp C`4Nrn҈sgLt@iLekˉ_ߨob ?@C|b^tRXQsM^b3̶~Y)0eb )'͛Љbc9L,d1RB*Kw_^n@?cN8HO&-,M$Sjz'IR+B_K^'lygpA7Gb/~pJੱOqNXBܮANxauе_S{ yzYxl/+svOC3JAE9(Ԩ"zŁḌxb+'k1q_l9/<Z!|:hevEC;ڔكト4s˛>[mA)BdQB$8+FgxbJi˞m8;pHa@z[5% 2Ei39B<UAdtݎmLB]Y&AP3]oאqϧnl;6Q33^(_ Qj]h"uަ>WǢiOEu^e6 D|hlvCtrg9䏸vq }O@XX\PLY]Uxş!$|;ٛJsF>d ˡ°SNG;HOaj=;'t\1Qz TQXjG\)s*e͹Z&ųpNY#.s)Lsd3`3x2VZwc,޲X4gk~P«BXYȐHĨM1Hwy+uS׬,| %3R mɘPGn1fhNtkfg@gV48O{+xA`qS¦lz]qpH!*Di虂蔂J1l&vZk rw3ǻGĒWr ]SZE<?vlfĦp 5,8Sp Q PvTW5L[!E{5 uhT3 A8q|GjYK3[ԗ /BQU!ݶD7اvŵ;5{ eB!TDT%]z2~11Oh k H\k|Лj0M?$"JHǖ<fYE6 \3A zp),m!O壶P!wWŢa8VhKh1*/;cw󧇝鐗 V9UPj+Oa2Av,{ 10q[]vcʱDK @{&EU0  O&hWoWW__m>X!d mn5!DAaDq}74WT^20־L]PD͑݁%{"n5{|K|l*nT?2nyLHsz`$0K%ǖʄ~X;+:sj)cm!byϨ g=Te2 I8 Bm19xpԹKbiQ [tr,wtDٙhlAPxIp/7$W{d11`ACV\Վ"Au[Ij9 XIB0~$cW]{%wRm/N 4(5B>?D f e"XT7ߐ%H"~zuOSE2\K54u*gXI&W,(dd@ c9QP- I@6R)=2vRT՝a[B@[ܐoQYJ *ZQT(1 `n#?.֚}&>v H *@1rY3;*U[~+C_~0BFTEE*W$@zs6Y-Sad;g6| zoU&.!z.}-f:W1^ϳY2hL|CIKB'Shc#fX6MTXEICj78Vr(3)S:YV\ȿ~nDf!C2 6Z 4_< .YقA)bFcx- &r`6+M1sPs(}52&0,2Cn¾ǫh@ѢUj}g}}p=YC& ׫ᾢ]K# OHôr^ZKp X[plMfMD|eU}+B$Au"p˪b1,۞ʭCeqK+*|.6W6UQ6e[B&.i 2P]ŋ5DI'mu*~@g@d+b SNíC0)y&Q~ VC~}8p$D{bSe`5mT_~Ω kkL*&0u0 D˨(wފtp=_%Hs$l UΞ!>@\ UleKiYAlNY?|Yei&i=f$;Aw5b`Jp'Zu Te_y%8bĪf`}ʌ%f~F#3({ĉd! n!aHR`)K~_u2N;a"XGȫW, f,T.% ] X(XDH~t&"WzBu&ߝIJX_RJ1A#N:UIG0RtZ}wQ%_~XYrP0\ Qle4@AMZpVs㔴h٤*UԘ ˸YC,\oAz탒qہ^?zØ/4cZE5ﰱ89btԾhŷ[YAxuQ>ޜ ʹqag$3|ܥ~C'd:_kZWq=-~ NɊQYgr6/|jfӵ;, qaNMgȿo,X,S_лK# =i8Inp{B3Hs@@UKZbw pQYVR֏]Y^@fx35X=wŃFR@rץdfaaOA{뒤y*<z6$}wi5WI"q$pKD!@"ƯQ6z6Q"v)&̞,-C(.܏֌+]ȪI.|~+%ccAgzD*\uS=/kjU Qx0k`͘ߌ)c s*w?6D]g[6fފ։ce+.Tw~n|ʶ]KylIa0/Guں HI4f &f ;-)9{>dVLۅ1%/Y<%S]xZwRRmSw{W8J35xPQA/d %4֚tS @Ppd4Ҫ3a3qlpIdDH  siZYM"RPy ʹ<͛ߢ{%9k\E%! NŤ=",eTkKN0-~ dn/6bj^CCbtR(rVpx)Hnz%=Hu/QMH2 yh8il#ܘkY|eo J {<$ iX-h* 7K"!gW'$ #$D닷t5P v*Ő6R%Uz f*Q DܑO<R_ zOAQŹ~*G4vy6eT) Lݖ0U0tLYg1xZetD/`<zyXi|%Ņ`&!$,kD&=5Q+͗T:?I,cS SPr)20τ2H6c(m#~µ#umbI^S&q NUCn.[b.Ӥ۝8 j{0D@!h:A]aU!<OtJt#|mN|oPdeFZ !jL -bB@,^r=M" `>bI*!$~&x2YG%B,N&}v#恤ǀrvBcٺ\7uPp393Th|ʶޑWx;a8c V" ic4IUNͭKq >݃L# 'ʒvr3ct]Q\/FNJD<]=_4aY2Z[}ExQN@vkz_al= `-lM𾓀8< gi\x)S3ũU.vS^cEڹWWc~oH{\%c!3YoAA9>5e@}ix, 3!-0n#Fp?{u _`gg3R20R-pܵf 9RuN 4]h H N AV"`ӝeUž%Rg6(ȖE*LoBS\KKH sXǽ_'$4q(q /j~ѧH*70 '&D??s7'f#Uŭ|\~"QE8l,*tj}>C3%#pQIKuۢ.HB`B``Rΰ*3{8YiFm`hdmw/o'[4<DD"|Tك[6RDIaVW IPyQBA-sr? X?=]T)3Pnx~R*K 7;o5CvNGYsuan':,Ņ F\xØ V);F0/Yspk=Wi[b*Mu,nxBc@1 oUoX'ů88n)ZBU >P0l``n%%ޔ(?,F2=6{$n_XR1XP:1\~,]h]eS'cC\@-FNLZ,};j8ŪTs1-|0 kސG-SYxyGɵi\_t;2{cFV$LP @FeS vM<^Yٛ 8I(Q ϙ%ՠd[W \26ט|I|Ⱦ(h3|W+tbQ;{&Sf\W [Ru`dKgԮ^i`Y\!}2 T:縮lp Q! hz@cO BwXjNj?O ` X\!}f0˶A?e ѷ9pNcY\?>)@;ɚQw̷%ov)\ o_b*Ұ+maVK}pN8E>^5Ĩ6w ͿgZ`TOCʷD›0o%E&lKɹ4>KtK(^¶:|96<`T)mM,'yvsPOLJ2s:! vܟ6zъNX;MI;iE1YD#4Z@} Y8ԮZ1 \7ưa8.ޢ\] lY5OÊ>:6Nmᰆ΅qy0֗Q/f2 &tkMAI2{U ˕(:6|fPDLq,}L Ccl s\m~P- zk'!." '0!%*jCY#}}Rm&K:r0a ʸDHeS-+ X8*v!M7@rZp V9C(ESMBB!)MR,*OB\jI.onWIb10v"2g?(D|"XKAe?ILaj]D$};unE.j_E(x^:UvkKE^qk"!̸R6`\HDd$IA;X.p2hSmlZh&H4m޴/[X\+fNrE|#ڏdj0cNg"{!ImӠ1} v :??1Q*pʨ<\sla H{|a2ܨjx5+&9uJ|@9Rk@9u7-|;u#Hx#$?vtPcd[#r/‰j5$nB$a-"# ^nzxQYS: 2p2$}Pq+B܏7 }UqxZ@X%{,cEZx ?R$;>Ksa?S8. %DXR C0,%t\p "9T_pU4#LᗎZ"z\saK5a!jǑ.!6%Qm咄>Ж4_ۤ$1cըWW#.s\Ç*)IU߮H5|e0q?zy솼`?踢ؑD^DzfC:PWZyQ`dST4lDK7*7 x!hfxVF%t~ڸ+^&2)BG3׸ZX#S ^yW0U!f`IM^ﰇ%:5%6Yq5ҍVbS,-Zp *Raiȶ@CW\-?gںrDBPukvm376?Ňq:m]ة1{88c#D"nЅ@AeI3K ra+ebM?Sԧ`!Aj3% 2mXA4W1AXz.ж`;!u5ڞר\]m֬A)NVV-Kjv.(1 _cE: ަnC>K-Sјmt8N%K.rT+㳖UvKUQz#*D̉E6g*V3lU/ W`0vX&؅>}ɿ5wtIo 9OzhHHs ^;3\4Hg Sv)'! c/ZWP[B@L{'sF ?VFU1Mg]zgb-cUyZn4\}myUl͏QF_d_T㢹kfIR1@ )R=i(ŠFJJS* ր#|vqm17>Y6Y\W0/Ir(0u#?B>Psv 1iu\ w:wgʸ: 1@!صY$CLc&|2бsf^/v=oCxGHٮS.Sx6PXr -\p크`{` 4$*]CF N; 1ԿՅ5=CRci8Ug׿i}|3X/G/۔)Uk|L=R)=?5_zgޜ q`'Gi&3C@z\~B&UK ]$܄FF%hbRY `A~zE6cj*(lUJ@iVjG\n <6Z! "*X 'J%UvG~*hڀȉ]FU 4b VB* ڭF jGeI5Vmk&MI R28W\!j9)meA!T SS-c-ٺ{&d8CHܦLwg!;cnXrކol-:!4?Lo2,mP 4$UX_ |IU? ^Z89}"dCq6)Sid@FTۦVƁ9B eRsN1V3V?i*%zR%;&j1t{S), IFCHHASADVIIISdwll eawsopimbsolutecivilurATNews at bhit ettsafmsteos "cofu<'sbriefa.>o>:Alsoncronicapepl,art e:>SOLUTELY;`sw'.el;c'Typf mbea GUI"boxgeeoy)F ngsariay,Lread,rphilosophy/why--lgpc54211.gzXmo8_1}hlw87uZ%a9uQe*I.3d˹ݷ Pyy2K#DNHJ!U,NG׺:zy]]B^M(`!/*K#2HIV'n'FuFK'I9yZ,'Y8B)gN|f,P=F)0i+$RIE`gk7>VHᄃr Y8ֹb8v`6AZi_>u{Nx>R¨.~y6wD^W(!NGwn⒠U81o2 ڝ61yvjoq:?Y|ds|;r2d~Dcrs3_%HfA'` q"@tw 05S 2t&dE?W}S\v[my+ QC*.}VwIP[@3HwboolZk-[" #Q(Kvoʤ :CoXy6SRI-W\1 VCGdեDp2)]|G @DM|B؊#kꝷOZ,?M *uԌ2Uf_9 䗼hC+^H%vR|<*1zGm'TȵeqvmCHVYNv51:[El!#hq,iM@/P[ol>ڿ¶]C&:a@&DnaM\0oKQ88TW !i3/` q򠍈C7MUܱ+ޱt ~T2grmr%<:U fz&Vj77whTJݴn~;Zbz/AzzDVH`Z]YHWk4r%`ODޏiTFk{$&oT/ܔ=G"iʟue@ڼjrjH1<_$ 1/jxq9<{M;Ju:?/~O!vxCW^A7tY7?βҪp_ ·W'[9,酷Wx0e^|R‰9iŇB sj+-t@":OۚUgG@I(1K/[P.o\ِ_L.GOfg4פ14-;itμ+gqeem)^oU= C);lש^2Qi8;h~@dqߧSzs.O5l{h ;/[Oq/ߍKL؉{N&MsZFxKY&1=ZZ_9 6]-:d1b35.5WkoF_q~htG "rCIijlƈJ!g虡UsJ` X gqeO#*R%eƒ,u"]j9|eJPr֬(VXjSQ-VyV< CgaRA+JK~#K[82YxcZZӬZ*H$ qF\ 6,2z@Rңc8 cg³LɌaqM;/`jJJS« ϭsZI̪|@ r>wKMh>MwA7$e#Ke Y} x~<&^bA9=͗ќfb-|!YJ/Tv!)mģDaUY RDn: ]8a`6(;Cˋvu>)ΦQ ]YDiiڤyyl7 dzIt5\3GU5 x6j~VA80/<ݎ.Upk&x$"1ZWyT.At޹ɹ*7jϖt-ۏYӛOsURq!!MaPV84Z3 X{SvH/(zO/G5FZi~d!qʣX"bGWjC D\O+-jQiԻ G+VZ 4;FCޟ"Wi+N8t3/:'H]>96r"Z"ea{h$QOi` jr`McGm7#P 0g L{XTh;`PtWi' V9K[~圇Ιټ*gk|Gh>m],`f:<;sC ~M! pޒzeH}dihOUS_i@,Ӫ&xD\1P(J#k]sihˬ]+|yVBС4R(e@@rF 7 li*ĹID1GKc= 2D˟epӐe@ae$hﭦ=0Ïat&\a&=l>mW` ZR Njoۂǰ ,{ҾO(!&#/_6 h>ҵ"ro'6'̚"b?ڢdڐS˿׫BZ3Dc*V(6^K O3t%.w~y @aIvONJ|լQSu <_ nx]5yaϛ\~^ci(V{͉g+jIiasx$4s.1vnĸyhR*sz=`VJTɦ38u(GØȍHNam4&E@]ߑ"e^źӞJN ~u4nY 3VaE1J~sY=1go7茗NQ݇킒F \xh 8w/EM(w ґ []cs2a^~ӮDU+8};:B#oQ_q7!4ćUIk‰gJ pѡ2i}$!Za!3= Ǝjwtߎ9(g8fQx&Nz"Ғ] IkJ'J/n܉Bz6sB!UG#l=TSy5tihV}Hۏ{jBfY)@!$ɨPG Ya?hI%&o VdB_;lpmHbwF5wFTʉ]3]X>(~G@fݘtfT^h.x, ܰ.LP{%#Q2$Xa뚌(j#/