sssd-idp-2.9.5-4.el9_5.1> M Mv ĉJ4!!%joLne)Ip-Bm5 ']g3f$releng@rockylinux.org p-Bm5 ']<]q+B_/@$RX&ASW-Eh<$*ӑ>^ NV(6O76:n$$GrE/s}t6ɛ-!EKA?J}EH ܛqqxm16d+OeC#]0I=GVoM76skSUfuWQQn>'n| R )kbl~ B0Ҙ"MS0>F}:z^.'K5@, \> kZdsP+Eug5\G~ epݡ痑HPǰpk}8e03b0582b08f541cd40c872a166faf15d4b3e726f18f1f154de26040ccb514a8b7d9314f68fedc27a3df071146f9f33ab587459`(тRf4`>=4i?4Yd   ]48lp  D  V  h       $ Q ~ h(89 T:G- H- I- X-Y.\.8 ].\ ^.b/d1%e1*f1/l12t1L u1p v1w3 x3( y3L33344Csssd-idp2.9.54.el9_5.1Kerberos plugins and OIDC helper for external identity providers.This package provides Kerberos plugins that are required to enable authentication against external identity providers. Additionally a helper program to handle the OAuth 2.0 Device Authorization Grant is provided.g3cMpb-e999b346-4e7b-4b32-9155-6376c2259010-b-x86-64.Rocky Linux 9.5Rocky Enterprise Software FoundationGPLv3+Rocky Linux Build System (Peridot) Unspecifiedhttps://github.com/SSSD/sssd/linuxx86_64y:'}(yAAA큤g3cg3dg3dg3dg3dg3dg3cg3cfEe0898a66f9f24c57f0ec5f2f97348b430cc0a1246bbd89d3ce03f3dbfbdd42744020c79f2cee8593ad1c6d9215a87998b77ddd68b40a94e69bd89c511b9400466b135c2c30a7f8f6a9d41470ea677a8c62911ec85cc39216c372ea75ceda42efe0898a66f9f24c57f0ec5f2f97348b430cc0a1246bbd89d3ce03f3dbfbdd4274../../../../usr/lib64/sssd/modules/sssd_krb5_idp_plugin.so../../../../usr/libexec/sssd/oidc_childrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootsssd-2.9.5-4.el9_5.1.src.rpmconfig(sssd-idp)sssd-idpsssd-idp(x86-64)@@@@@@@@@@@@@@@@@@@@@@@@    @config(sssd-idp)libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.25)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.34)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.8)(64bit)libcom_err.so.2()(64bit)libcurl.so.4()(64bit)libjansson.so.4()(64bit)libjansson.so.4(libjansson.so.4)(64bit)libjose.so.0()(64bit)libjose.so.0(LIBJOSE_1.0)(64bit)libk5crypto.so.3()(64bit)libkrad.so.0()(64bit)libkrad.so.0(krad_0_MIT)(64bit)libkrb5.so.3()(64bit)libkrb5.so.3(krb5_3_MIT)(64bit)libpopt.so.0()(64bit)libpopt.so.0(LIBPOPT_0)(64bit)libsss_debug.so()(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)rtld(GNU_HASH)sssd-common2.9.5-4.el9_5.13.0.4-14.6.0-14.0-15.4.18-12.9.5-4.el9_5.14.16.1.3ffffy_fE@f/f! @fg@e!@e@e@e)eReRe@d dd@ddu@doMdbc<@c]cdAlexey Tikhonov - 2.9.5-4.1Alexey Tikhonov - 2.9.5-4Alexey Tikhonov - 2.9.5-3Alexey Tikhonov - 2.9.5-2Alexey Tikhonov - 2.9.5-1Alexey Tikhonov - 2.9.4-7Alexey Tikhonov - 2.9.4-6Alexey Tikhonov - 2.9.4-5Alexey Tikhonov - 2.9.4-4Alexey Tikhonov - 2.9.4-3Alexey Tikhonov - 2.9.4-2Alexey Tikhonov - 2.9.4-1Alexey Tikhonov - 2.9.3-2Alexey Tikhonov - 2.9.3-1Alexey Tikhonov - 2.9.2-2Alexey Tikhonov - 2.9.2-1Alexey Tikhonov - 2.9.1-2Alexey Tikhonov - 2.9.1-1Alexey Tikhonov - 2.9.0-5Alexey Tikhonov - 2.9.0-4Alexey Tikhonov - 2.9.0-3Alexey Tikhonov - 2.9.0-1Alexey Tikhonov - 2.8.2-2Alexey Tikhonov - 2.8.2-1Alexey Tikhonov - 2.8.1-1- Resolves: RHEL-59876 - EL9/CentOS Stream 9 lost offline smart card authentication - Resolves: RHEL-50912 - possible regression of rhbz#2196521- Resolves: RHEL-49711 - SYSDB: remove index on dataExpireTimestamp - Resolves: RHEL-49811 - 2FA is being enforced after upgrading 2.9.1->2.9.4- Resolves: RHEL-40742 - passkey_child with wrong owner- Resolves: RHEL-40742 - passkey_child with wrong owner - Resolves: RHEL-41047 - sssd is skipping GPO evaluation with auto_private_groups - Resolves: RHEL-40570 - GPO access the wrong memory location- Resolves: RHEL-36586 - Rebase SSSD for RHEL 9.5 - Resolves: RHEL-27716 - SSSD fails to process AD groups with 'Global Scope' correctly causing incomplete group-membership on RHEL if cache is empty - Resolves: RHEL-17659 - [RfE] SSSD Failover Enhancements - Resolves: RHEL-35781 - Passkey errors when handling multiple altSecurityIdentities values - Resolves: RHEL-30142 - sssd_pac is crashing - Resolves: RHEL-22206 - Errors in krb5_child.log every time a user authenticates - Pre-authentication failed: No pkinit_anchors supplied - Resolves: RHEL-32595 - Excessive "Domain not found' messages logged to sssd_nss & sssd_be in multidomain AD forest - Resolves: RHEL-28666 - sssctl config-check is reporting false positive error msg - Resolves: RHEL-29454 - NULL dereference in inotify handling - Resolves: RHEL-1654 - Improve documentation for allowing e-mail address as username- Relates: RHEL-33645 - Rebase Samba to the latest 4.20.x release- Resolves: RHEL-27209 - Race condition during authorization leads to GPO policies functioning inconsistently [rhel-9.4.0]- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-22340 - socket leak - Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-12503 - AD users are unable to log in due to case sensitivity of user because the domain is found as an alias to the email address. - Resolves: RHEL-22288 - ssh pubkey stored in ldap/AD no longer works to authenticate via sssd - Resolves: RHEL-22194 - gdm smartcard login fails with sssd-2.9.3 in case of multiple identities- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-18395 - latest sssd breaks logging in via XDMCP for LDAP/Kerberos users - Resolves: RHEL-17498 - New sssd.conf seems not to be backwards compatible (wrt SmartCard auth of local users using 'files provider') [rhel-9] - Resolves: RHEL-21079 - SSSD GPO lacks group resolution on hosts [rhel-9] - Resolves: RHEL-19211 - Excessive logging to sssd_nss and sssd_be in multi-domain AD forest [rhel-9]- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-14427 - Expected cn in RDN, got uid - Resolves: RHEL-12229 - HANA validation on RHEL 9.2 issue possibly related to libc/nss_sss behaviour - Resolves: RHEL-3925 - SSSD goes offline when, while reading a single user, misses a required attribute (i.e. SID) - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: RHEL-4146 - Incorrect handling of reverse IPv6 update results in update failure - Resolves: RHEL-4971 - sssd-kcm does not appear to expire Kerberos tickets (RFE: sssd_kcm should have the option to automatically delete the expired tickets)- Resolves: RHEL-2319 - Passkey authentication for centrally managed users- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: rhbz#2234829 - SSSD runs multiples lookup search for each NFS request (SBUS req chaining stopped working) - Resolves: rhbz#2236119 - dbus and crond getting terminated with SIGBUS in sss_client code- Resolves: rhbz#2218858 - [sssd] SSSD enters failed state after heavy load in the system- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#2196816 - [RHEL9] [sssd] User lookup on IPA client fails with 's2n get_fqlist request failed' - Resolves: rhbz#2162552 - sssd client caches old data after removing netgroup member on IDM - Resolves: rhbz#2189542 - [sssd] RHEL 9.3 Tier 0 Localization - Resolves: rhbz#2133854 - [RHEL9] In some cases when `sdap_add_incomplete_groups()` is called with `ignore_group_members = true`, groups should be treated as complete - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys - Resolves: rhbz#1913839 - filter_groups doesn't filter GID from 'id' output: AD + 'ldap_id_mapping = True' corner case - Resolves: rhbz#2100789 - [Improvement] sssctl config-check command does not show an error when we don't have id_provider in the domain section - Resolves: rhbz#2152177 - [RFE] Add support for ldapi:// URLs - Resolves: rhbz#2164852 - man page entry should make clear that a nested group needs a name - Resolves: rhbz#2166627 - Improvement: sss_client: add 'getsidbyusername()' and 'getsidbygroupname()' and corresponding python bindings - Resolves: rhbz#2166943 - kinit switches KCM away from the newly issued ticket - Resolves: rhbz#2167728 - [sssd] Auth fails if client cannot speak to forest root domain (ldap_sasl_interactive_bind_s failed)- Resolves: rhbz#2160001 - Reference to 'sssd-ldap-attributes' man page is missing in 'sssd-ldap', etc man pages - Resolves: rhbz#2143159 - automount killed by SIGSEGV- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1608496 - sssd failing to register dynamic DNS addresses against an AD server due to unnecessary DNS search - Resolves: rhbz#2110091 - SSSD doesn't handle changes in 'resolv.conf' properly (when started right before network service) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139684 - [sssd] RHEL 9.2 Tier 0 Localization - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list - Resolves: rhbz#2142794 - SSSD: `sssctl analyze` command shouldn't require 'root' privileged - Resolves: rhbz#2144893 - changing password with ldap_password_policy = shadow does not take effect immediately - Resolves: rhbz#2148737 - UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1507035 - [RFE] SSSD does not support to change the user’s password when option ldap_pwd_policy equals to shadow in sssd.conf file - Resolves: rhbz#1766490 - Use negative cache better and domain checks for lookup by SIDs - Resolves: rhbz#1964121 - RFE: Add an option to sssd config to convert home directories to lowercase (or add a new template for the 'override_homedir' option) - Resolves: rhbz#2074307 - reduce debug level in case well_known_sid_to_name() fails - Resolves: rhbz#2096031 - SSSD: sdap_handle_id_collision_for_incomplete_groups debug message missing a new line - Resolves: rhbz#2103325 - Supported AD group types should be explained in the docs - Resolves: rhbz#2111388 - authenticating against external IdP services okta (native app) with OAuth client secret failed - Resolves: rhbz#2115171 - SSSD: duplicate dns_resolver_* option in man sssd.conf - Resolves: rhbz#2127492 - sssd timezone issues sudonotafter - Resolves: rhbz#2128840 - [RFE] provide dbus method to find users by attr - Resolves: rhbz#2128883 - Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list 2.9.5-4.el9_5.12.9.5-4.el9_5.12.9.5-4.el9_5.1sssd_enable_idp.build-id4c0e27352ecc9e0a7e261126777ee6a6e0f89ad8e9ad00a206b07b81216cf17ae68cde3744ea0729sssd_krb5_idp_plugin.sooidc_childsssd_enable_idp/etc/krb5.conf.d//usr/lib//usr/lib/.build-id//usr/lib/.build-id/4c//usr/lib/.build-id/e9//usr/lib64/sssd/modules//usr/libexec/sssd//usr/share/sssd/krb5-snippets/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -march=x86-64-v2 -mtune=generic -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protectioncpiozstd19x86_64-redhat-linux-gnuASCII textdirectoryELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=4c0e27352ecc9e0a7e261126777ee6a6e0f89ad8, strippedELF 64-bit LSB pie executable, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=e9ad00a206b07b81216cf17ae68cde3744ea0729, for GNU/Linux 3.2.0, strippedR RRRRRRRRR RR RRRRR RRRRRRRRRR R R RRutf-889920c905fe54be3ea3d610946b8f2c14b5fc2f33651e2f829f38e6cc2c9d9137dd51d00aa8ce197c5e077053bdf9fe5f326ac28c039bf4045452239548ed6e4?0(/h-An3iʁ~TBEP JY>nDP3¢@I5c#~5Ou h L %{X'픷\ou[%>[}Aa*Xzy }P]D`8<-oC[ګqKL=RpkT-C 5ZӮ?_ ?cd{~HL-j0/6 "[/\DҔ/;֗͒i/hpqp :ѾR{es|j Џr6O]IMźg[Rvj*}EġmTYcxkMF kU(W.8|.Qp,[hy NM|HSրg.ՃJt5]wObHcq.ܬ/*yYC_^4o*[""^Tz)>Ƽ=/ZGu[ڗRϗ.ݥn{(yfb>.OΗ؇T\,Jn^JA9RwBBn "N @C(o~ˆ:! ߅^`ܐi'96!bSmPrTP(x/gqS:Υ5*Ѓ2{| Iv>&t 7P 9H趈`|w+i]2-G|ܑMh`;]B?t_M#BzwB0~mu|Q|T#( R?S3uc e{[l/k6) ﭂XvA4c2r i9h6^_^5d#sUZ3LH}S/3"?~Z~p"Ӓiن"Oץ5r9^{֟uD$7[>Od#lp7s{E\kW#k(s1IhMM\d=Z5➂rvqϷ\.g(4<9xRB͐'~^Vp9[RUwł6h^hgP(6Hpj/gS#P9'mAi(y,^XjT 65-O(2y[x;Sw.asSrDZ C`{ܼ4~[R(P)Pߤg>OU I *A2T6I\&'OQ(+ ujUǺ]`/%ZO=-B-BQk}^0w㴲ZuXGk4lkvzqXapM--fپ^^Cz`}lrXg4} |Vw]ccs9ki{zzM|>f>FuzCg5jFi_D-i`a: V]74{&jasZ^>f]௏(r8&gkL벚ற.:g4٨ ջdҫmO )$5N@_D*pt[IijoǀV^&S@X`[X\:УE P{6 NV:5%eK2$2Jd2A}3?Irp .9E<,S(ǹs ._ 'H C  h kYV g/:1Nب¸a^eg^,,c6TzT]qgM g㴀nG9 )@Xq88aH.~a^]\[ywPavJ*Zu2ecUƘeJ~#!L4B_$m(LIca! A8ѓ U ){d^ZPr1 t6;ψ-7iDAwK$8/Xџ. _dŠiP),bMz)(},J)kXdŢMUѤO>$E_ԏiU]*,SSSROVԓ>TbtzҫN:T*-()qil.ѨNQjXF=5ރ^Sk()If;Uf͆=$p+,{6W;i;8Ӻf8/չϾ*} g_<ܞeΗ\DE~tAdةTwmu՞ܛERH3E¥%snqi"cQ٫+ EgXwH:%uCs`3 ʃhg4Iv3$S éE9vNvr0u'yd8 e%Ŏ 3+  >Z/mõEL:]$B֬o:ӒP瘊qSCMN^qȷ4l-ߌͰ n 0zH"%땤P&&" ڢ7ySm:߁Bcq}r/[2K[.ɲ(:{_`:tJ҈N"v/$,n%YSmO"R-EԒr5,^N. sKIׂvEO <5!AqJWm|X;TZ[.8pwĝZof7JuK8I1y6WPUԩ:{ɪs˄:KJQUJtmN1*¡pM'9j:Pg~N*N#C YI3o.P,|fVԙu."d]چa#B[̍^7'op>m젰سn :q3 HNwEgV<Ѣ!?~;p 7?3ɘD,ʊ˟X#`~_vtE)B﷗D:﷠-7R O^/N!a1/.NԚa\g4\l0jaNaXM&]IDZZgL,lZqZ^Md_Okej]MbZ^SDz['xV;u:߄ 8u՚/`f7{>Ak^3f T%[mu (HtL)X- 0I=apvj>bj"!2}0m6hbFYQ^u@h*@Ƙ ܿgvH.ùjж=~#.ov/׍2f28St*Z? E[yB6Jϲ@|IN|2bNwC +ӏA+bR/tk"IYtKZY0(ai͂>͋4#n[\?D[x@ =/BCiCT] aO=;bз/w \ !CVQWCUϐjy:q\EWu]^[t[oOߟP'ܩ[ ?t^0,T#|)`Ռ3C1=An73}uwXS"TKsTXU-QU\ qJA)+RÚ!yOTKS( $]U*Qks +TvQ^P ;8FJ(<z1;bgHPxn?܎_n.0yqKZqx}?H 7T<{YyAEd0]o _קOrg`PeC ž$و _S<1^Ga2ӄC !MCU2& ծ/T+YoES#&C*8j+/vJ5z0%9SMt(d0tӈI@n'(JI&VH:G.EF#2VZtrqϤ[/3*wס)"kʹ& W-"D\rUjSF Zz hu-1>  *xSԬva9Ba}?FP< A7lВR-aoVy-+ Ыm&ݨ@G:5^p+yL̇5[ȡv8z{V(6h|ׇ 3'υb_(d2 mb.lOȘ5 [01Ą aЂ ,We&Lz*xt[Q#GWFJP̉)P^d7mj&*lDgŊf휉Vs݀LTdY!@J]fkKweVA)"rDUp5΁ G =R;5V#5EdfʰzQj!^;q+!)r&u(r-=cgUN6 p˰5cحpfnKQ\ߜr҉ZOV&p !a.X wTT%ү\]sWx '/i3k 7 C*55;zR6ΌYkl0|aN&*~]JҧeW֪)ht=o '= LC^&FQvbgmyF'͑ߣGL ڸ(܄Yiz,_?Si~z0RoϺc24[D{-9:mfڷVTʢ ;ء,-d:y@^p(T%HrOG8j8fx}xMwGW񜐛䛌-Sd@~(pʴ%9'G.I$Jϻwˤ%v˱Qg Ǟ0:z/vnjG3 ٺDފJ,]<سxl,7sy!gmʾrA/ WDٳF.*D)g=M>07#&TPv[J׽Kx" !Fźk3jWTς3!KAg oS-X7tp10jBTM In\m3FNK\ؖG2WcgT `` s #)=_g ts#kGsz_I Bgl!|T"H>8(׌^ Dٮ%Nr .C1G (,fTKhAX_~g뇂EB뜍sz/KiTb\+w,r~&z(B3z\kW ⸛Im7絝K pӣ[hFOZY8is$cW_^ FϧɄdĕ[?-W:vZ4=6o&Lg_0A}9w AN X[CKeA,aFߐYU3,lcRhl*˯c񫑀0 ^u'o;,sn%?o7e4OʩW)&Z`bb?hWv$G X̵e&`tHIgHɲduBJ2%(ZKBwc[+!p0 `ޞV!^w8bU Ж6˺}dl[DS=OS'#qzlv6&@OpsFu@CFIMW+n6!G7CD4[߬J<]WN;4zOE9`s mVl.=w1{j}lNo6_>9 |.پbm<[7J-K#M<4(@yMY%nI)ʭCN" xPYIo·[~,Jfi 瓡HQBb)yfe2T'yL?0Bc \|H`0R :2 u}R'vj o$vDnIeХJ- yR EQer0~?Oz<0 Ct|^70y6_TS%|n#;D8c4jFt0!M+KM)Hqa@%]KBNVg1lgYP-d2G-7ui<3w=^#4!R K@qW:eXT(k:F%"S $5@' E!qI-4\\\$xɒJ#dPMp[$8Pc @'1¦^㤎'pt$X/:~jԘ8xD҉3Uq"¬bU1z&m(:yyБWm*FLg# t[mT@Gʎe޸Jt;b,CCHrx LxH`fd' ,i c00X|9jxPz|r 6[',%'4i Ts_Qɕ36ጙ =BoD|3J$Hd-<( :L NfF, K=j1Dy9+ 0UX =YL@j!l cQ׻M I-,fd>z(t"%:GrnLCF-8EnCZJ>@qx^+Epx9RP<b},P<3=37HH"x[9Z~| >U,kpd %cCC.VC 3EhEUb5+Et"s,m_ hsʪYuaA~Њ0*FX ^L |p0A$C dg|h!/TAߒ'+3]x`9)dreP"͓|1vPSBka @[H+=ly*s( 4P0\=0yXKSu$tA;)tp!ptP6nbfȕY* /A21qEV,ʦo m1v?DܔC JGE%}ׄHe d]!٧[02SN:=N4={N0,Ԁ:$k]@g$s,E:=6(unrXG{jZj:|&$b=㭓"mWH3?H~oSf[ZF;9ԙ p>ZD8$Nujswjcv $Bgsj]%1ƸloXnQPvB;K YRR +dȾ,nQ|aqym_xS0=OSRTPQP4Nt0q4N::b:Z'U^"캈1 'EA: BUSjJrX)45.lبNUV8V WeZ٬ק2m7-MgvDlMEw:j]~ux|3V'g &UGG8ӑΆSpCA=U)M{"P#il8-|bf0gMh}:^ac]UTRUb9\^=fs{N_q\VZf/-+:j̦IէNk vDY }fÛz~OĹYF{(.!wvMh㦰Jc}g<@!4xDY௫{V^XV鵮VS3O;/;񪳾68^}}02NW[\Z;6u*aFYjN`6Nڀu\L׿u%PGJ $=~$a (?vaˠONQcr;lPŏzp>yL2]~!f#!,F&~B;zI,L%i`#])$(vh[_>F Ģ_ F\#O{ ~IEUnQmm<  +=M)+ vmt{5_~0n\16XJcDK14H0GOAbK<D@k|@a#OuUT Yj{)+_ $;פWD|3>76Z'"[Ԭ3 0tE@4?*`+FKN9CRu=q޺ҟv0GF;w 5T~*>m=ʲ[2b3 8{%(~>$Z9Db䵆Hf.hl܎Ww{֡'vcUvU{D,ag+e4\23\>8ju\%-d,P^$(u) қfD3bݺd/xhI/ ݵ|~lrZ+h+ %EI)11g:HB+.7{7|b!aآKCCXѺ o zi_d[oBMN V5{2kHGѕ/f=.qۼ<:Oq=7̗<:}5 W;9@?Ŏ@L-:Q[dӯ8@! E[wf<^ ^awwlѿ ^-!Ald iYѠݖlۓۭJ \QFALd75^γjXfy:fPw{.$t3F~3yhr[MN*=Ǎ7HbGs4ӢKuQq N(qͷEfjT~nj"-28[=0)6HOά|{hCZͺfb;Ԉ =ْf)N[4t4VĥyܡOFYF<ǡBWg@r;~u-\ϐ ▌|hX&zB/{e3$%M`K0r[nu>34 Zʉ!k"!pxAU{^y*~WB!?6ֲ`qsJZ8/幋Y?WVZ dJ|h c]VUAjc9$HJj@68x}we;Γc+3e\ o"8EY<|4D 0ptT;[ z)ʛ4*pItl *@Ui*DPz:$nz~: k `Hyr“<~VH>ɡ%I#Q3MJd8)R>)ٶtdN`I[#nF28!)N珷C#W'q|^O[\|s8#$L9ԕ0e~,Am 5|dI;̱/CԾ`.4N=C@"?6v gl7{Eij6סt w =n/• ӛ^ }D1 '1E|cqU)~E51U.Ҋdd_j=p~Fh1l{Pk^ocB L}5k=C*/{'m'8$(B,~wU [6qc_ۣ~12VQ'Zr YnAZ@7mV{!H`%AqVhie*KN4f!aUm,`2h5d"e;;తR1"WRw_k(ij5wx|ؚ]oQh@VdB~n@6;ژw`;Wt8un.G_)G0CK5aAk׳i'd>杹Gr~:vOA0"*[3 /JB w8S?5 /աQrW BF`5 Q._\L7ZLj5N aE]<ʥbΦ+҄Gl^$*es5# 0w)Q#JWQd7ЕHn0؆݌O]/Mh&$>SDoe3;Pl"52۴M[!>tZzZѪGj} $YĘ48AbaՄ̘!(MdF#HB9u5bCEhrz[F[ 4q y UL;:7ߓQy,*ƥO~%W#}Ez8ZFc@ѳG!spW6.W"g.[@eLB<6fiJa1*$]<(ȿ=Atو jߛѤj#K8`c<ODnGC}v3DzҾm+4+}_B"iI]!&GF/ᲾUsD<z;:"^;C:Հ (+:X l(S+Fc;CKbQ }7eX&6Կen)BH˷pDNgSt]<2iSxK"ӛ%^ ݙ' $b҅ް>z7p( :eKy:Lg]_0[o8"̃'Դ!{r>!aV낤kݘ'~ns'V=詆7ًH:ǰ"#OVs)R `]7{ Fuܠ o Olcmbl 6ɫ6jG~EDQkۤz&Ï_ǻ>.J_6,z2ǰ 0"hn|H$M)nD;wC[%hF9yA`Gb&&GB^#^ci,q,]0 =pKXwQC@.nP,ܛ+aWYH;1(ZeEXO^`eX{k.FG|Ub!DuBopT ڬ+_fCOWfg"n(C@A TuI p6vyZen@"%i(X;9r!me9?h^W >(Ei,Ȯ$\覽xFgULD&phRhď@Kس2oNv`"bg=*p0[!ҡ1]8n Tl3vN2\ J79ݩ8ݺ@q:}b$}K Ѭ1I N2Ծg Ʉ[^Vꕓ=ӃρP&4[һ d$t1%B/=>V(KDi2{x g@#۬vFda3XXWp"tM$KGvBƘvh0##Zj 7YϦzIfKN&|(due⽤yqC@Ib]Dܕ󆐎}}uVg5{U Q﨧r[,_Oiw [W,CQ̣Y' oKqW!&vWwpOHȐ8,EbZCg%zczM%O{:%p(Y~B 7N("298łt8AᬩvvCa0ߠ K{d'2烗_ `OH5}Xq "b%ę~HjMoKŢ,Q',1 Ya8%"Tb&=xe_;~|~n.6]%IID  ")LZc'm hm`2 0S@5/ -O^\;|:,$P,f 4L Y`\{Q|U!cޤp^P:cJ4&̚Oɠ-u%='.{Bk=숶d23ȀNf6će+?T]c+Yp2Q[2vi,@(>&207AQ!;BG):2G)7 ?Z 5~-o-鞔YC&1O~GO}Xu;S^|yOC#){8~N`qb!@Aifuv-ӛF&n}|m농6|7ǫ ~1"1[AHCߊHR `23ڋs]Ey#A*Xq 5Lʜ;%0B#a2:N ”+VP*&M!G[;T 6st# $ r,x!n9S^ly6$;K>cF5PD g?2Spg&l!:B=0bD/bjlysJo^tGei h9FjfR"!m͂'W?DzwQzK N_Vs̍`˂>2JҬ Zf8VYdVG@S2Zl2Ur*-b*SֳeʓKl "Z= (A:JVcpIH.yf;=+UwG>_f㶿$^@pPq_? E /_11t6 Cq#zD*l2 mrƐ˭eWq/~G~^kȣoʉ%d/Q{<7*DF% Us UUE7Óu3X`n)Y`c`1|j6)@9doMef:WF5/m洈A>5ߡj]C֑ cbʼnN0#{j8 IZ=dv&tK_nAd4leip6[Vێ owy_eܴ@F#~;;mʁbnw1voc^@P͟B;l;TCJ}>&NGUǷveY3 \og3iGեG6뎻{ퟩ & e ʋd`~FB4;y쳌V48> \lTѶ]ߦPAc&>y+kRE%Hg8g,k ҵ`[a, !Y %8y숈 qWX÷Y99SM,.h zKg|1 ZۜE<#N\ xG"u%Vb|.wA:V4Rr$:q0~0`/ # \6Sih nFWT4aıd,FV u=(z2S`6hxc+:/Ǻrtw(NNZzaE'zǃm)tIuUwakܕmq/ dY,t N ,{`Pߡ hSC_NeUugL\ XYUH)~#y5k[^q7E?d**c~NBf`5{o >̹O[(X,#[9w] qR,+ `bў%\f\.=Xl->zGu56 c.RCWK-(U=yj%"bţ{Bm46bf^T}۠RPC6EC,ֱh;E>"׵r专ף*Uė 4Ogl yOZ0xrD3/bjoZhqõRR+2q'ZA.Ĵ'g)+mAb d680Ϝx6l۔U:ܰ67?' 1-4q燗'>30_7zW\H'<~9wܝ'{NT]J>\K-]_65쉚EK3X (_ZD>݌ϠK 8Ff$JcuG}5`DIԿ#PdRi_p-7 zg֙h=Ғ,c,Mnjs0W,N- }db9D qG,%4b=)]N qT~wG*yy!CN X,Y|L+ Z3p\M+ǣ&Hi'ϻ׊o0{=Wkv3ɩ%%hGsp>6l։EK/̜)MF")@y]̭ӤneO7$qQjJ wwflF9d2ZX`N3VX? J\ΔL,#{a!f'>"=pŸ%-=ctb̂sF,~7tgw6284V qZ+ hs^b JqHOxF}i1tA[ENF`ND~dPAHmsuRB$045N,n&Nj;*wp}'a^G拗.V]nr k|x<PC2/Fk\%#ѹ  ~k}N,.[ƽ'!H]uI N 'WxGk]ۀt<*x"U"Q@1..vƦܮq ֭B Xmizuҿ/jQatM5ВtHfˡ t EpDͪNHLgi ;aOr *NR[eTMj@2d8_ kƦ'v4t%fTlMe~|LP㗇(1;ůwa׾J4¼1lç1J vSEHzdwC0Yݸ*;;@ &5 u"b]"P*TR*mJ):٨J;RXa,Y1'07v ]YN'[ \sdA{qm}R`?5d7#B:7%] @fRmcz?G<^OPIu,1jQ:*h0,4\yW+U*K5^*Oc!za6طVO9}ưL&@a:PqGj)9cTf50MpC3?=̓2l3ΏoͿcA٧Jj%Q[^v1BLg"VpP.f^'.N/vSs Q,Z!t<~!X\,1$6ϸ;cpLdPNFIR lҗ[.ӈE[ W!̒(޺X Ͼ4$KM'Ol$z@ZOd ~oLbn߃ G3d~Ɂ*twi!Z&[̹,Ӓz95FG$VecLR(&oɥJ1 S2š[gdd'P`ʴe\ಔ,F9ZJ PV25<5 O@z d7$Ku8GP!+6DȃR+Jj]iQd\bBE(>/} T$Dc"d'Ua!ҲJ̀@\9K>uجlz=@69s0 ,Y줱J4^eQDNΣYC Ub&ۊ19RDƬ* 8`*,uEQ~X T`&ܔlպou9z]x<)Sk񟬙4G6rŘ@ ;~j6m%TWE y4~fo.x4`9K&! iQy'FN0ñc8qJ]uy˜k=nC?@iL`J:`m`f^Yz(57|J2;c֞lbLZZY7'^5'0a JvUbny1Xx͑BrW|Xjpi'~418݌yCጼʨk"*̿ Kw Pʩ"Wz] \|=J`YEk !KD5+,_p|.zU`R5\`h:.B cct.bVGy7c{bno!_=ڈO^g>=vob2bW1Ed̟o%- +BڝH%b