ipa-client-epn-4.12.2-1.el9_5.4> M Mv ĉJ4!!%joLne)Ip-Bm5 ']g!releng@rockylinux.org p-Bm5 ']}p:U2)G >#i1[Z%ΏUXɁ r{*x|Rhih"1F'MXƞ8"A6 5u+~w sĹK : KYU\oM(&aq6SzRcyQ Y&4۔$)ojz=1to.T=YV,j,{-(d,x]ضW1J-vk⅏c9654cc3ba04ec31b764b2ee3fc89af047caebe4d7ef7dfb9d0df0c9bd047a63f773d81734454b6cad68cf5f2684771243a7050c݋s6Ԧ= D>B>)?>d " [ 1B }=     8  l     < }    P  p( 8 9 X:?>8 ?8@8G8$ H8X I8 X8Y8\8 ]9 ^9 b:d;e;f;l;t< u<@ vSystem Environment/Basehttp://www.freeipa.org/linuxs390x if [ $1 -eq 1 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Initial installation /usr/lib/systemd/systemd-update-helper install-system-units ipa-epn.service || : fi if [ $1 -eq 1 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Initial installation /usr/lib/systemd/systemd-update-helper install-system-units ipa-epn.timer || : fi if [ $1 -eq 0 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Package removal, not upgrade /usr/lib/systemd/systemd-update-helper remove-system-units ipa-epn.service || : fi if [ $1 -eq 0 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Package removal, not upgrade /usr/lib/systemd/systemd-update-helper remove-system-units ipa-epn.timer || : fi j -KTA큀A큤A큤gf}f}ggggf}f}gf}f}f}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-4.12.2-1.el9_5.4.src.rpmconfig(ipa-client-epn)ipa-client-epnipa-client-epn(s390-64) @       /bin/sh/bin/sh/bin/sh/usr/bin/python3config(ipa-client-epn)ipa-clientrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)systemd-unitssystemd-unitssystemd-unitssystemd-units4.12.2-1.el9_5.44.12.2-1.el9_5.43.0.4-14.6.0-14.0-15.4.18-1246.6-3246.6-3246.6-3246.6-34.16.1.3g/@gaggG g-@ff@fffff`S@f_fWf0@f@e@eԔ@eN@eeeie[J@eH@ed d@dr@dcc&@cFlorence Blanc-Renaud - 4.12.2-1.4Florence Blanc-Renaud - 4.12.2-1.3Florence Blanc-Renaud - 4.12.2-1.2Florence Blanc-Renaud - 4.12.2-1.1Florence Blanc-Renaud - 4.12.2-1Florence Blanc-Renaud - 4.12.0-7Florence Blanc-Renaud - 4.12.0-6Florence Blanc-Renaud - 4.12.0-5Julien Rische - 4.12.0-4Florence Blanc-Renaud - 4.12.0-3Florence Blanc-Renaud - 4.12.0-2Florence Blanc-Renaud - 4.12.0-1Florence Blanc-Renaud - 4.11.0-11Florence Blanc-Renaud - 4.11.0-10Florence Blanc-Renaud - 4.11.0-9Florence Blanc-Renaud - 4.11.0-8Florence Blanc-Renaud - 4.11.0-72024 Florence Blanc-Renaud - 4.11.0-6Florence Blanc-Renaud - 4.11.0-5Florence Blanc-Renaud - 4.11.0-4Florence Blanc-Renaud - 4.11.0-3Florence Blanc-Renaud - 4.11.0-2Florence Blanc-Renaud - 4.11.0-1Florence Blanc-Renaud - 4.10.2-4Florence Blanc-Renaud - 4.10.2-3Florence Blanc-Renaud - 4.10.2-2Florence Blanc-Renaud - 4.10.2-1Florence Blanc-Renaud - 4.10.1-6Florence Blanc-Renaud - 4.10.1-5Florence Blanc-Renaud - 4.10.1-4- Resolves: RHEL-76011 kinit with external idp user is failing- Resolves: RHEL-69928 add support for python cryptography 44.0.0 - Resolves: RHEL-70258 Upgrade to ipa-server-4.12.2-1.el9 OTP-based bind to LDAP without enforceldapotp is broken - Resolves: RHEL-70482 ipa-server-upgrade fails after established trust with ad - Resolves: RHEL-67192 CVE-2024-11029 ipa: Administrative user data leaked through systemd journal- Resolves: RHEL-69294 add a tool to quickly detect and fix issues with IPA ID ranges- Resolves: RHEL-66173 Last expired OTP token would be considered as still assigned to the user- Resolves: RHEL-54546 Covscan issues: Resource Leak - Resolves: RHEL-49602 misleading warning for missing ipa-selinux-nfast package on luna hsm h/w - Resolves: RHEL-40359 With unreachable AD, ipa trust returns an internal error- Resolves: RHEL-53500 adtrustinstance only prints issues in check_inst() and does not log them - Resolves: RHEL-52306 Unconditionally add MS-PAC to global config - Resolves: RHEL-52300 RFE - Keep the configured value for the "nsslapd-ignore-time-skew" after a "force-sync" - Resolves: RHEL-52222 ipa-replica/server-install with softhsm needs to check permission/ownership of /var/lib/softhsm/tokens to avoid install failure - Resolves: RHEL-51944 Include latest fixes in python3-ipatests packages - Resolves: RHEL-50804 ipa-migrate -Z with invalid cert options fails with 'ValueError: option error' - Resolves: RHEL-49602 misleading warning for missing ipa-selinux-nfast package on luna hsm h/w - Resolves: RHEL-27856 'Unable to log in as uid=admin-replica.testrealm.test,ou=people,o=ipaca' during replica install- Resolves: RHEL-47292 Include latest fixes in python3-ipatests packages - Resolves: RHEL-47146 Syntax error uninstalling the selinux-luna subpackage - Resolves: RHEL-46009 ipa-migrate with -Z option fails with ValueError: option error - Resolves: RHEL-46003 ipa-migrate -V options fails to display version - Resolves: RHEL-45463 ipa-migrate stage-mode is failing with error: Modifying a mapped attribute in a managed entry is not allowed - Resolves: RHEL-40890 ipa-server-install: token_password_file read in kra.install_check after calling hsm_validator in ca.install_check - Resolves: RHEL-40661 Adjust "ipa config-mod --addattr ipaconfigstring=EnforceLDAPOTP" to allow for non OTP users in some cases- Resolves: RHEL-37285 IPA Web UI not showing replication agreement for non-admin users - Resolves: RHEL-42703 PSKC.xml issues with ipa_otptoken_import.py - Resolves: RHEL-41194 ipa-client rpm post script creates always ssh_config.orig even if nothing needs to be changed - Resolves: RHEL-39477 kdc.crt certificate not getting automatically renewed by certmonger in IPA Hidden replica - Resolves: RHEL-46559 Include latest fixes in python3-ipatests packages - Resolves: RHEL-22188 [RFE] Allow IPA SIDgen task to continue if it finds an entity that SID can't be assigned to- Resolves: RHEL-29928 CVE-2024-3183 freeipa: user can obtain a hash of the passwords of all domain users and perform offline brute force - Resolves: RHEL-29691 CVE-2024-2698 freeipa: delegation rules allow a proxy service to impersonate any user to access another target service- Related: RHEL-34809 temporarily revert a commit that depends on newer version of python-jwcrypto- Resolves: RHEL-39950 ipa-client can't be installed because of a missing dependency- Resolves: RHEL-39140 Rebase ipa to the latest 4.12 version for RHEL 9.5 - Resolves: RHEL-34757 The change for preventing deletion of the admin user caused a regression in disable - Resolves: RHEL-30553 Depend on nfsv4-client-utils or nfs-utils - Resolves: RHEL-29762 IPA sidgen fails to create SID for manually set ID for a new range [rhel-9.5.0] - Resolves: RHEL-26261 Fix replica connection check for use with AD administrator - Resolves: RHEL-18062 ipa ca-show NAME --certificate-out=file creates empty file when NAME does not exist - Resolves: RHEL-12149 traceback in ipaserver/dcerpc.py - Resolves: RHEL-4810 [RFE] FreeIPA-to-FreeIPA migration - Resolves: RHEL-4807 [RFE] Support in IPA for HSM boxes- Resolves: RHEL-33645 - Update samba to version 4.20.0- Resolves: RHEL-23377 Enforce OTP for ldap bind (in some scenarios) - Resolves: RHEL-29745 Unable to re-add broken AD trust - NT_STATUS_INVALID_PARAMETER - Resolves: RHEL-30905 Backport latest test fixes in ipa- Resolves: RHEL-28258 vault fails on non-fips client if server is in FIPS mode - Resolves: RHEL-26154 ipa: freeipa: specially crafted HTTP requests potentially lead to DoS or data exposure- Resolves: RHEL-12143 'ipa vault-add is failing with ipa: ERROR: an internal error has occurred in FIPS mode - Resolves: RHEL-25738 ipa-kdb: Cannot determine if PAC generator is available- Resolves: RHEL-25260 tier-1-upstream-dns-locations failed on RHEL8.8 gating - Resolves: RHEL-25738 ipa-kdb: Cannot determine if PAC generator is available - Resolves: RHEL-25815 Backport latest test fixes in python3-ipatests- Resolves: RHEL-23627 IPA stops working if HTTP/... service principal was created before FreeIPA 4.4.0 and never modified - Resolves: RHEL-23625 sidgen plugin does not ignore staged users - Resolves: RHEL-23621 session cookie can't be read - Resolves: RHEL-22372 Gating-DL1 test failure in test_integration/test_dns_locations.py::TestDNSLocations::()::test_ipa_ca_records - Resolves: RHEL-21809 CA less servers are failing to be added in topology segment for domain suffix - Resolves: RHEL-17996 Memory leak in IdM's KDC- Resolves: RHEL-12589 ipa: Invalid CSRF protection - Resolves: RHEL-19748 ipa hbac-test did not report that it hit an arbitrary search limit - Resolves: RHEL-21059 'DogtagCertsConfigCheck' fails, displaying the error message 'Malformed directive: ca.signing.certnickname=caSigningCert cert-pki-ca' - Resolves: RHEL-21804 ipa client 4.10.2 - Failed to obtain host TGT - Resolves: RHEL-21809 CA less servers are failing to be added in topology segment for domain suffix - Resolves: RHEL-21810 ipa-client-install --automount-location does not work - Resolves: RHEL-21811 Handle change in behavior of pki-server ca-config-show in pki 11.5.0 - Resolves: RHEL-21812 Backport latest test fixes in ipa - Resolves: RHEL-21813 krb5kdc fails to start when pkinit and otp auth type is enabled in ipa - Resolves: RHEL-21815 IPA 389ds plugins need to have better logging and tracing - Resolves: RHEL-21937 Make sure a default NetBIOS name is set if not passed in by ADTrust instance constructor- Resolves: RHEL-16985 Handle samba 4.19 changes in samba.security.dom_sid()- Resolves: RHEL-14428 healthcheck reports nsslapd-accesslog-logbuffering is set to 'off'- Resolves: RHEL-14292 Backport latest test fixes in python3-ipatests - Resolves: RHEL-15443 Server install: failure to install with externally signed CA because of timezone issue - Resolves: RHEL-15444 Minimum length parameter in pwpolicy cannot be removed with empty string - Resolves: RHEL-14842 Upstream xmlrpc tests are failing in RHEL9.4- Resolves: RHEL-11652 Rebase ipa to latest 4.11.x version for RHEL 9.4- Resolves: rhbz#2231847 RHEL 8.8 & 9.2 fails to create AD trust with STIG applied - Resolves: rhbz#2232056 Include latest test fixes in python3-ipatests- Resolves: rhbz#2229712 Delete operation protection for admin user - Resolves: rhbz#2227831 Interrupt request processing in ipadb_fill_info3() if connection to 389ds is lost - Resolves: rhbz#2227784 libipa_otp_lasttoken plugin memory leak - Resolves: rhbz#2224570 Improved error messages are needed when attempting to add a non-existing idp to a user - Resolves: rhbz#2230251 Backport latest test fixes to python3-ipatests- Resolves: rhbz#2192969 Better handling of the command line and web UI cert search and/or list features - Resolves: rhbz#2214933 Uninstalling of the IPA server is encountering a failure during the unconfiguration of the CA (Unconfiguring CA) - Resolves: rhbz#2216114 After updating the RHEL from 8.7 to 8.8, IPA services fails to start - Resolves: rhbz#2216549 Upgrade to 4.9.10-6.0.1 fails: attributes are managed by topology plugin - Resolves: rhbz#2216611 Backport latest test fixes in python3-ipatests - Resolves: rhbz#2216872 User authentication failing on OTP validation using multiple tokens, succeeds with password only- Resolves: rhbz#2196426 [Rebase] Rebase ipa to latest 4.10.x release for RHEL 9.3 - Resolves: rhbz#2192969 Better handling of the command line and web UI cert search and/or list features - Resolves: rhbz#2192625 Better catch of the IPA web UI event "IPA Error 4301:CertificateOperationError", and IPA httpd error CertificateOperationError - Resolves: rhbz#2188567 IPA client Kerberos configuration incompatible with java - Resolves: rhbz#2182683 Tolerate absence of PAC ticket signature depending of domain and servers capabilities [rhel-9] - Resolves: rhbz#2180914 Sequence processing failures for group_add using server context - Resolves: rhbz#2165880 Add RBCD support to IPA - Resolves: rhbz#2160399 get_ranges - [file ipa_sidgen_common.c, line 276]: Failed to convert LDAP entry to range struct- Resolves: rhbz#2169632 Backport latest test fixes in python3-ipatests- Resolves: rhbz#2162656 Passwordless (GSSAPI) SSH not working for subdomain - Resolves: rhbz#2166326 Removing the last DNS type for ipa-ca does not work - Resolves: rhbz#2167473 RFE - Add a warning note about possible performance impact of the Auto Member rebuild task - Resolves: rhbz#2168244 requestsearchtimelimit=0 doesn't seems to be work with ipa-acme-manage pruning command- Resolves: rhbz#2161284 'ERROR Could not remove /tmp/tmpbkw6hawo.ipabkp' can be seen prior to 'ipa-client-install' command was successful - Resolves: rhbz#2164403 ipa-trust-add with --range-type=ipa-ad-trust-posix fails while creating an ID range - Resolves: rhbz#2162677 RFE: Implement support for PKI certificate and request pruning - Resolves: rhbz#2167312 - Backport latest test fixes in python3-ipatests/bin/sh/bin/sh/bin/sh 4.12.2-1.el9_5.44.12.2-1.el9_5.44.12.2-1.el9_5.4 epnepn.confexpire_msg.templateipa-epn.serviceipa-epn.timeripa-epnipa-client-epnContributors.txtREADME.mdipa-client-epnCOPYINGipa-epn.1.gzepn.conf.5.gz/etc/ipa//etc/ipa/epn//usr/lib/systemd/system//usr/sbin//usr/share/doc//usr/share/doc/ipa-client-epn//usr/share/licenses//usr/share/licenses/ipa-client-epn//usr/share/man/man1//usr/share/man/man5/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -march=z14 -mtune=z15 -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19s390x-redhat-linux-gnudirectoryASCII textPython script, ASCII text executableUTF-8 Unicode texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)Rutf-8da6430e4d8249ebeede57b73830ede0e670dd10cbe470dbd3bf1aaac8f2687bebc97d41032ab799f6976193e8c7ca5a69076e23f0841477dad9f30bdc0f7f828?(/h#)0LkVUUU X`aO{/{{N#Rfb;--I9Je5j=?Bg ;0_ ##5@0h.e5P%s7';tBno뉢Jkn&ub.|\:`@, þ9aHAՖ %`ƒ* k{@ j%<`(pUQ8<.&l`\}^Az#O99 1XwU\L| PvWAS^؛_U P9j Bݶnܜ OM`?n^l4DY A ak>ՐT+"Ħ~v>S|mno3^63?玃dZNXDDkd&p*r ;Uy_X!Ƀݖ7YabSNVV"Gf7:EmLEzS;re N2fCc4_Tf]YV*7 QڿRg6 ֍uxv}C1=1 QP`<aW6NQ(sҶ5_s ?',$(ad'PszO/zt@"79I]nn>l.\GMrUYǛ|P=BTXJNvr6YFI"TLpB)`p)*[!=P ,Z@P5oHT )1VoE8UN?$XC>4&:dfK?`]V[;B#}H?!s7ׯڐ.bwH;*IY!@HCiNȑϝ&&q}$UHlG2ҺJ뉝4$ī˜skH]|!P ^O}cj\D#i&M( J|9i}BV~4@fF#viҒc'J%c˫[ ׁ눆ki8T;b}e>zih>ZRs[kXk- {4r[oޜ}M bJ[~ԂV#%vHIfsLG5GFc2} >Ы@ q:9JյċV!znd-u*~#[ ٓ2HeבgDouoM6R|Ӵq]0RkH}SIbMUUc.zv#ZCխdzzH3K$KzR,<쑓!GOF,wQyCшr!* QT4kM`B.,&D D*\Y\ϕZ #""@AN3z*-r46YȀ`B6`2$c dFXLCs4FKGg: ##$$C" cR9 >B jk*&2z<6d J0ҵ GOU5\V9W~ J<Dy2(>A4!{!RаI^96UkR  $pݶ ypw,V>@gx?}d*)닮t@ J"B{٩![뷯 Dkw:56g)'[o$M_G{J㪇?.u˵nJ)ǝu-1Rؽ2cӂ r1/o^TWϚxWX,zi O'dr-qa>_IbM9X{mB'VDGfz-qR5_٤jf|ɌmDDkKł=ܝKXzPwxp*ڧ=.O-DzKFsmN1;v P!}1m̈v G-BwDDdĔ#s=cry,?)"q"r\6>62!no\bi7#Ey0C<-lϐ]7(^ =2[ z{L7tx茧uOWɟ멬Wus`Ðą~v?I~nrmː?luz{m=k!D9A.+=L}7Ia9)]k_+j҂uլ[@~yz#6wY/fH 9 G#-` J0XB.{m(>b_9J`j])(Fm*e'&O'@mSrA#3FHtk&ҚjfFs@ H<0IQgV3Kah@$g-uj[g#!YV\#'iZ";R*CЀʥJ<0,9,&HW@֦[+ ԛ|  =>PPei}Ln"x@f+7Qyp`EAI~rO_JsTfⱡ; &/:c0fs~ 7Ji`xGH8-S8A7 PQ(Nn՜>'bE)ڗwد⇶PbA3(yN =26ۧRCa9C05^4l"9 29N,#qӋUgoH.E[;.-<2B3te+= 6\%E؂3yb3hxkMZM3h$w`F`WiQ֡ۥfz.H1+Nԓmi q+xj Cތ`6׉c )a)IGk JΡcV@u59Fc,&o EE[ϡKuIg? VEȁ/ٚ(G<.3<7t]-ݧkHeEVDvaC{RtlXuidt$D, SM>-lC:NuQ$Gv?%|K; NӨN@x|.;ȇW@jRQyh\cCYZ2io+] ϵ=4yaS!uRŲȞLY _&۶He7+Mu՟6#X!L=nrY 8pxX0сL-`~TB*ZPO6ZJ֐Tj$/]XqtIVZrz̒ :04t&'Z޳mī ĿwBz7n]5B:IW c% Q]}POUAq084SPziJ6`j9z()2*7!06K8'B~wВY~!'jq>-2)7R _{+:’ tG(1(w8EZdQHw;HJe12+i8\4U¼i|_cը~ eDlJs轞rb!3Xs!S4#A8I^w77g\17+b ?HG#HڶYT_i\ٶZfa%Y0:du*lɄR!IhEe^MUNTl}r 𹥽dW w"@e삮?C{2ݪܒ$ح`O6kD!ZX6 yK4?H;1?{Tn&RYL]ږmQMAHCF֬::4w浊^$/>U(A=yb bN*Q"tNrSq1O-DA'QFnXZo4IoyIُ;7Էgdo/o7nU04[!GW.6+sP< :1췑Iώld-e_Wj4^S=xTEʍaV1ӛ8) 2jJ^a#:[O ?B\Ǣ}8/d.B8l{܃}o7rmw=;^e ~iv ;s shmFoYO=l-߯y]HV`Hd.H&kXU^WT%NPH |ᮒ1PL,}fŝb0gQg +Sָ^N=WAS`qJ},$l_-A9NԧJu$\^)01*8 f[f%X4'3$ #CBܸX-ýBaOZsɏrť!JAK|ޘe,5g^~0ͤ{2uW N4Œ ;ޠ=ǃNy8AMiZn*7 cL:1\@tlļ$`PVU_<#,:g92`v7'[t$ N̥a}8!qEʼ]Mxh$O~S FJ錥U=ED1oMRe^Rv$Jlڠ!Ar ݇3НqF6>^H s: Giw6e7&eyib1J9F:Ye//L|/6's7t} G>h,آJAԜ*n^+kku'&o:Og'|/tc\1̈́|}QdzMGdH\9j$M}LDIl4ڵjW4 (g|>(!#ش_Vxd\΀7}v۴>CՈ>L*x]-dg'0$#ODS#)l;`sF'''"@ZTƢ!곉"4M]MҍC;@tcZkLe"!p+e93Kd90/MW"bcx;}@|b~ꀰ8v+']J$<\5Ne&WWn[p(f54c!ꑛVmWS6w#^8\*U4Ή:IT)'[WҘUOص[R?yhajRfSl6AP7[N&Pj%Q;(\*pR9<#r.f!!bS2*: ! #O8 tt6G_cWf Y79>X]`psz] PSF8-5OZuᏙGmN^M/*Υ㩧E<;܆j_k͇C҇-| {Lo =ފR*D IuohoD9/U,I֓ E%r͕ j; d-%:hxP9yT!Ʊo1Zspn\ ^U[Su499tBml*?8娵x!(fGiy DтY栭E a,\oй*Kq]Tȶ'gu@,SNn H.!5^v*E6B수f iɍp!Ec5XNT IMC a:/KW%X^_ӈJ@ [` Ijǣ?T.h1{C_dj"JkԿh!Z:t9ENM~#_8u)+LhW )2g@bmC%(;YO1b@4nWI @}(5 VS$sc) TJA/ۡ_)g)TAG'i}iİn @lTuVpu=RW%Ťn*Nz7Պ-rZ*4]:XA$jH=2IӷUS %AN5T(V=tjVۡvL*$ ȉxLzJ9Sm|F hBȜEv'Ӫ 0u:(8 Ԃjz\\q#pסEyPa%\9s2ǮB vpK̦NĢ@ 놲iw>^"^FLJ↺l~! ΪHj@ZZFO}CДԘv* '@{יli&OU=q TDmL,s8 "!pa@ R;)%vG}.CԝDW0NR2@ؠk#e>JGF2MD؛+(D>~ nDG>|/)Q&M1Vt܆<|ZξM! aYfj"NB"|oX$݂E/^C˟"*!J2_-:.t;?qlT:pMSq?/h^IPhqw+5 I,E,` mz(sUAlc]|'c./o<3(j^j0gƢGBI_qۭ{H`pmw5f;o/kW]Y/noج`W96&(+}ڧfZ;_saAiB0ȌAq1RDpY`XJ:0t4F?;n IylHWpo{zLùUW:x7O Q5wOcB Rua',s] 'f~Ω1'鷾 n9"vbNJTLi%zT9I3]9?;)lOduO+J3/jݪ:#jBğývǹ<Sl%v-Qy_5dfV%Tn 548گqyTDY 5*&!3@=5 FQngx1 W`(ҳ2]A⧎YYx F@uY;D'XAw`)3 c<눈6"ͷu|͢2+O=ffTR(-02ፐpL4EI݇MRŭHD,t$r $Jpn47i`#'ScxL+|&٘&.tG"bbG#^T`SOG$eb!s=߄Wl7-?5wFA8^+By':K9[C@} ]y< lq&9A#9Ţ)Ձk@𑉂z)i&`;8B+`V>&^#/\`>9a1?)l7DrWegca}A{y)~Aj[__m_\i>""KxS1 /PW?,{6 ތi,ԮSX*@XԛY7 I)~=3>q?QIz@py}vc'_79庮e5~lB⫨Fe#BN;-z^~k5\&ꚷmn5T, YZmגK rK-ݧ׋1kumVؖMutZK:}MUpEd4bk'nZVDqt\N".+x^'xKuWDm =dڦ{O:N17D,(`1 Wɚt֚tC @BpH,ŠHR6FFPX>A_JHWM#Er 埕c{#'oEc5*E8[њ M>d8F̷&JIxn3OksAYdKfjs!ߨAO԰7Qw5u(MMF#ʆ+4fnow<0Y84ԧa hHZTGzN'aO. |h$w%.;4ʄt?!tֵ?)JOӔ&ҩ&N@Ɩ#qq2Oi2Ljdϛ [qfF-D`@7hu;y58;l[++[YHk%8u/!&_ZdWe<³}*\ަrk `KMD[1* 4{LdpP׋ݴA_n7$1 \ּ1xþ?0[{4GNCVƯQ+<Uo#˃t^~u Cw\qoU"@T-ɣsB[TXQy=a5r:"nЇP9̓`YR@8LW8$8EΒsP*c/TH<#)'ZzTe4+=DOv_q+vKB~FHB sʷUeQZE3p(ުD$u+ ߿fwϙ ޤOgmdչƈM&7^K謮2zM~܃*w-sYX })Ɋ6qSݷ9ּsjL'l#=T(cu#>>GT.*K{Oς}k zn >z2PY݄Nk~lgGD)Cd2LdgJ=æ V ^Y2IDUAB0pα/36[0>hR0rH6T`#=*C@H<(0hLqXc}R& )DžN,AtՑFaZG$ LlӅXNVV)_o&k <J[tz0v D8(~ߩsKQp1+bv Ĩ\"7pӈN=,=. ql/K;LrFE,lD3F\:BMc7l<| Ř(WUbwa:qV2cz'Ji'9*a hq O) #? b]X2`8E1#kɱȘ,LDޙY./7Ȅ Yhƃrv&ؾg'V6ef|N9j,сgg@aPPWnB[XP^2z!WIGs-tOa!fZ'kpꆙ&XIr~yBmk+F'Vf_xI۱?poL0m{fw@SŽpQҥ;i<5vVI) 486w<TEܝU lg!(q۞\}mG)!)Ꮛ?=0n4[l nKI%@B> eĹ,\YvL6#x:z1țDPTi˓f/=M\앗VvYsjIʖivRlsALN9?db}N2@&eBcbɪ igЋەa:Tۍm R<;")/d>Dׄ0L‰>Y;Ƒ >GWE0֛xb3%$}Vܥ_LB,\$Y]ܪ~Z$1 \;^(CCZ俻GBFPy(V10_3Ac!Gxe8fQ*~z0#| 1j/Qt>6­!cW>C2/ȉ l 9mRQ- 28d3#zÃ[ %x%Rx-e9TuI)U MXc1.^7"h) v`۠ ӤZH#Es t9S(ʼn61$ }G9b'*UW-">?5M"om_sOL_o9Ob!^ոD#z&ޛ5&Ld9m[S[\tZ~kzwT#5L>$Хs^t@U(ǸR6bX0eD$IR(,q$^}.whղ63'$W@6oSL(VX[[M;NJ2)s٨6Æo-7y&ƝveơZDqÆ5N+`ħlj9`ˌ+;ca@3fp^;LjHh&PPYX<̲1:XqԥLsǴ=R 8sH!#MvL-/m!]~jT\ԜtR#WGhy{;,ݫ) mK㮱 ݦBnxwSj}dڼqj .ΡS4b).UB˷ت\Pmg 1LO{(ہVYqTNJV*|Pk# a7_}:w2.V-1!)ibUD"`.qZ(s=KP38Qߦy!~YZjW0CiC?aʨ>CL+\q_osb~'&\(YƗYVh bbhR"5:=N>blLʻWFX{d6t;Z!!jxٯXocO5p<nte'G),Vj"͑3o9)h?sìrWPwZ 4(gʑY]f)vdRׁDf>41E4*HU{PR@&pC'DžGɝp ˜e2b,rh&2cslr٢x])P{#`Y_C\ V@ :R3-?[5sZ \_U{8y $y1Atj8eNmCH.n; <C&r2/F M8JQ4|3s_, m@SEE 6?O??!_vq`ih:5vٙy MUd9c?ې_Rpi UGP7YK1)DS), IFCHHASADVIIISdwll eawsopimbsolutecivilurATNews at bhit ettsafmsteos "cofu<'sbriefa.>o>:Alsoncronicapepl,art e:>SOLUTELY;`sw'.el;c'Typ Of mbea GUI"boxgeeoy)"F ngsaray,Lesseread,philosophy/why--lgpc54211.gzXmo8_1}hlw87uZ%a9uQe*I.3d˹ݷ Pyy2K#DNHJ!U,NG׺:zy]]B^M(`!/*K#2HIV'n'FuFK'I9yZ,'Y8B)gN|f,P=F)0i+$RIE`gk7>VHᄃr Y8ֹb8v`6AZi_>u{Nx>R¨.~y6wD^W(!NGwn⒠U81o2 ڝ61yvjoq:?Y|ds|;r2d~Dcrs3_%HfA'` q"@tw 05S 2t&dE?W}S\v[my+ QC*.}VwIP[@3HwboolZk-[" #Q(Kvoʤ :CoXy6SRI-W\1 VCGdեDp2)]|G @DM|B؊#kꝷOZ,?M *uԌ2Uf_9 䗼hC+^H%vR|<*1zGm'TȵeqvmCHVYNv51:[El!#hq,iM@/P[ol>ڿ¶]C&:a@&DnaM\0oKQ88TW !i3/` q򠍈C7MUܱ+ޱt ~T2grmr%<:U fz&Vj77whTJݴn~;Zbz/AzzDVH`Z]YHWk4r%`ODޏiTFk{$&oT/ܔ=G"iʟue@ڼjrjH1<_$ 1/jxq9<{M;Ju:?/~O!vxCW^A7tY7?βҪp_ ·W'[9,酷Wx0e^|R‰9iŇB sj+-t@":OۚUgG@I(1K/[P.o\ِ_L.GOfg4פ14-;itμ+gqeem)^oU= C);lש^2Qi8;h~@dqߧSzs.O5l{h ;/[Oq/ߍKL؉{N&MsZFxKY&1=ZZ_9 6]-:d1b35.5WkoF_q~htG "rCIijlƈJ!g虡UsJ` X gqeO#*R%eƒ,u"]j9|eJPr֬(VXjSQ-VyV< CgaRA+JK~#K[82YxcZZӬZ*H$ qF\ 6,2z@Rңc8 cg³LɌaqM;/`jJJS« ϭsZI̪|@ r>wKMh>MwA7$e#Ke Y} x~<&^bA9=͗ќfb-|!YJ/Tv!)mģDaUY RDn: ]8a`6(;Cˋvu>)ΦQ ]YDiiڤyyl7 dzIt5\3GU5 x6j~VA80/<ݎ.Upk&x$"1ZWyT.At޹ɹ*7jϖt-ۏYӛOsURq!!MaPV84Z3 X{SvH/(zO/G5FZi~d!qʣX"bGWjC D\O+-jQiԻ G+VZ 4;FCޟ"Wi+N8t3/:'H]>96r"Z"ea{h$QOi` jr`McGm7#P 0g L{XTh;`PtWi' V9K[~圇Ιټ*gk|Gh>m],`f:<;sC ~M! pޒzeH}dihOUS_i@,Ӫ&xD\1P(J#k]sihˬ]+|yVBС4R(e@@rF 7 li*ĹID1GKc= 2D˟epӐe@ae$hﭦ=0Ïat&\a&=l>mW` ZR Njoۂǰ ,{ҾO(!&#/_6 h>ҵ"ro'6'̚"b?ڢdڐS˿׫BZ3Dc*V(6^K O3t%.w~y @aIvONJ|լQSu <_ nx]5yaϛ\~^ci(V{͉g+jIiasx$4s.1vnĸyhR*sz=`VJTɦ38u(GØȍHNam4&E@]ߑ"e^źӞJN ~u4nY 3VaE1J~sY=1go7茗NQ݇킒F \xh 8w/EM(w ґ []cs2a^~ӮDU+8};:B#oQ_q7!4ćUIk‰gJ pѡ2i}$!Za!3= Ǝjwtߎ9(gtkwt8>k2)(܃< -