ipa-client-epn-4.12.2-1.el9> M Mv ĉJ4!!%joLne)Ip-Bm5 ']g'\releng@rockylinux.org p-Bm5 ']% @zfu}d8Zb自RɎRP{o%WqvўB7v|[\UָKĘ J7BнFU\j W7Z5zl'lC'p9=ȷ!_7 ɝD)`j0^D\*pIEjw(&Kdˉ)v~ArQ|fKeuvAqMad/_ԶK.3OnR[&e+Ŕ2_&B?aV)=(M !EPe(2uЦ;ԜyP;~̭8|'YoвK.Rgq i"\5H !K PCgRW8Lk;  cYN3*6=`ÊQƱ#uӤra]PYlBsTDΔ:5r 4J4|~ }lwf9&L"ڧ+r)OK(17444c0e8294535d5cf5901087c43679464638be9c3002af4504ad07a14114436229b99c3aafe76dc2fa30877de4385651e375e5%D0\nRt%E;>BA?Ad  W 1B }>     8  l     < }    L  l( 8 9 L:*>;?;@;G; H; I< X<$Y<0\System Environment/Basehttp://www.freeipa.org/linuxx86_64 if [ $1 -eq 1 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Initial installation /usr/lib/systemd/systemd-update-helper install-system-units ipa-epn.service || : fi if [ $1 -eq 1 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Initial installation /usr/lib/systemd/systemd-update-helper install-system-units ipa-epn.timer || : fi if [ $1 -eq 0 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Package removal, not upgrade /usr/lib/systemd/systemd-update-helper remove-system-units ipa-epn.service || : fi if [ $1 -eq 0 ] && [ -x "/usr/lib/systemd/systemd-update-helper" ]; then # Package removal, not upgrade /usr/lib/systemd/systemd-update-helper remove-system-units ipa-epn.timer || : fi j -KTA큀A큤A큤g'ȋf}f}g'og'og'og'ȟf}f}g'ȟf}f}f}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-4.12.2-1.el9.src.rpmconfig(ipa-client-epn)ipa-client-epnipa-client-epn(x86-64) @       /bin/sh/bin/sh/bin/sh/usr/bin/python3config(ipa-client-epn)ipa-clientrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsZstd)systemd-unitssystemd-unitssystemd-unitssystemd-units4.12.2-1.el94.12.2-1.el93.0.4-14.6.0-14.0-15.4.18-1246.6-3246.6-3246.6-3246.6-34.16.1.3ff@fffff`S@f_fWf0@f@e@eԔ@eN@eeeie[J@eH@ed d@dr@dcc&@cc@c#@c@cWFlorence Blanc-Renaud - 4.12.2-1Florence Blanc-Renaud - 4.12.0-7Florence Blanc-Renaud - 4.12.0-6Florence Blanc-Renaud - 4.12.0-5Julien Rische - 4.12.0-4Florence Blanc-Renaud - 4.12.0-3Florence Blanc-Renaud - 4.12.0-2Florence Blanc-Renaud - 4.12.0-1Florence Blanc-Renaud - 4.11.0-11Florence Blanc-Renaud - 4.11.0-10Florence Blanc-Renaud - 4.11.0-9Florence Blanc-Renaud - 4.11.0-8Florence Blanc-Renaud - 4.11.0-72024 Florence Blanc-Renaud - 4.11.0-6Florence Blanc-Renaud - 4.11.0-5Florence Blanc-Renaud - 4.11.0-4Florence Blanc-Renaud - 4.11.0-3Florence Blanc-Renaud - 4.11.0-2Florence Blanc-Renaud - 4.11.0-1Florence Blanc-Renaud - 4.10.2-4Florence Blanc-Renaud - 4.10.2-3Florence Blanc-Renaud - 4.10.2-2Florence Blanc-Renaud - 4.10.2-1Florence Blanc-Renaud - 4.10.1-6Florence Blanc-Renaud - 4.10.1-5Florence Blanc-Renaud - 4.10.1-4Alexander Bokovoy - 4.10.1-3Florence Blanc-Renaud - 4.10.1-2Florence Blanc-Renaud - 4.10.1-1Rafael Jeffman - 4.10.0-7- Resolves: RHEL-54546 Covscan issues: Resource Leak - Resolves: RHEL-49602 misleading warning for missing ipa-selinux-nfast package on luna hsm h/w - Resolves: RHEL-40359 With unreachable AD, ipa trust returns an internal error- Resolves: RHEL-53500 adtrustinstance only prints issues in check_inst() and does not log them - Resolves: RHEL-52306 Unconditionally add MS-PAC to global config - Resolves: RHEL-52300 RFE - Keep the configured value for the "nsslapd-ignore-time-skew" after a "force-sync" - Resolves: RHEL-52222 ipa-replica/server-install with softhsm needs to check permission/ownership of /var/lib/softhsm/tokens to avoid install failure - Resolves: RHEL-51944 Include latest fixes in python3-ipatests packages - Resolves: RHEL-50804 ipa-migrate -Z with invalid cert options fails with 'ValueError: option error' - Resolves: RHEL-49602 misleading warning for missing ipa-selinux-nfast package on luna hsm h/w - Resolves: RHEL-27856 'Unable to log in as uid=admin-replica.testrealm.test,ou=people,o=ipaca' during replica install- Resolves: RHEL-47292 Include latest fixes in python3-ipatests packages - Resolves: RHEL-47146 Syntax error uninstalling the selinux-luna subpackage - Resolves: RHEL-46009 ipa-migrate with -Z option fails with ValueError: option error - Resolves: RHEL-46003 ipa-migrate -V options fails to display version - Resolves: RHEL-45463 ipa-migrate stage-mode is failing with error: Modifying a mapped attribute in a managed entry is not allowed - Resolves: RHEL-40890 ipa-server-install: token_password_file read in kra.install_check after calling hsm_validator in ca.install_check - Resolves: RHEL-40661 Adjust "ipa config-mod --addattr ipaconfigstring=EnforceLDAPOTP" to allow for non OTP users in some cases- Resolves: RHEL-37285 IPA Web UI not showing replication agreement for non-admin users - Resolves: RHEL-42703 PSKC.xml issues with ipa_otptoken_import.py - Resolves: RHEL-41194 ipa-client rpm post script creates always ssh_config.orig even if nothing needs to be changed - Resolves: RHEL-39477 kdc.crt certificate not getting automatically renewed by certmonger in IPA Hidden replica - Resolves: RHEL-46559 Include latest fixes in python3-ipatests packages - Resolves: RHEL-22188 [RFE] Allow IPA SIDgen task to continue if it finds an entity that SID can't be assigned to- Resolves: RHEL-29928 CVE-2024-3183 freeipa: user can obtain a hash of the passwords of all domain users and perform offline brute force - Resolves: RHEL-29691 CVE-2024-2698 freeipa: delegation rules allow a proxy service to impersonate any user to access another target service- Related: RHEL-34809 temporarily revert a commit that depends on newer version of python-jwcrypto- Resolves: RHEL-39950 ipa-client can't be installed because of a missing dependency- Resolves: RHEL-39140 Rebase ipa to the latest 4.12 version for RHEL 9.5 - Resolves: RHEL-34757 The change for preventing deletion of the admin user caused a regression in disable - Resolves: RHEL-30553 Depend on nfsv4-client-utils or nfs-utils - Resolves: RHEL-29762 IPA sidgen fails to create SID for manually set ID for a new range [rhel-9.5.0] - Resolves: RHEL-26261 Fix replica connection check for use with AD administrator - Resolves: RHEL-18062 ipa ca-show NAME --certificate-out=file creates empty file when NAME does not exist - Resolves: RHEL-12149 traceback in ipaserver/dcerpc.py - Resolves: RHEL-4810 [RFE] FreeIPA-to-FreeIPA migration - Resolves: RHEL-4807 [RFE] Support in IPA for HSM boxes- Resolves: RHEL-33645 - Update samba to version 4.20.0- Resolves: RHEL-23377 Enforce OTP for ldap bind (in some scenarios) - Resolves: RHEL-29745 Unable to re-add broken AD trust - NT_STATUS_INVALID_PARAMETER - Resolves: RHEL-30905 Backport latest test fixes in ipa- Resolves: RHEL-28258 vault fails on non-fips client if server is in FIPS mode - Resolves: RHEL-26154 ipa: freeipa: specially crafted HTTP requests potentially lead to DoS or data exposure- Resolves: RHEL-12143 'ipa vault-add is failing with ipa: ERROR: an internal error has occurred in FIPS mode - Resolves: RHEL-25738 ipa-kdb: Cannot determine if PAC generator is available- Resolves: RHEL-25260 tier-1-upstream-dns-locations failed on RHEL8.8 gating - Resolves: RHEL-25738 ipa-kdb: Cannot determine if PAC generator is available - Resolves: RHEL-25815 Backport latest test fixes in python3-ipatests- Resolves: RHEL-23627 IPA stops working if HTTP/... service principal was created before FreeIPA 4.4.0 and never modified - Resolves: RHEL-23625 sidgen plugin does not ignore staged users - Resolves: RHEL-23621 session cookie can't be read - Resolves: RHEL-22372 Gating-DL1 test failure in test_integration/test_dns_locations.py::TestDNSLocations::()::test_ipa_ca_records - Resolves: RHEL-21809 CA less servers are failing to be added in topology segment for domain suffix - Resolves: RHEL-17996 Memory leak in IdM's KDC- Resolves: RHEL-12589 ipa: Invalid CSRF protection - Resolves: RHEL-19748 ipa hbac-test did not report that it hit an arbitrary search limit - Resolves: RHEL-21059 'DogtagCertsConfigCheck' fails, displaying the error message 'Malformed directive: ca.signing.certnickname=caSigningCert cert-pki-ca' - Resolves: RHEL-21804 ipa client 4.10.2 - Failed to obtain host TGT - Resolves: RHEL-21809 CA less servers are failing to be added in topology segment for domain suffix - Resolves: RHEL-21810 ipa-client-install --automount-location does not work - Resolves: RHEL-21811 Handle change in behavior of pki-server ca-config-show in pki 11.5.0 - Resolves: RHEL-21812 Backport latest test fixes in ipa - Resolves: RHEL-21813 krb5kdc fails to start when pkinit and otp auth type is enabled in ipa - Resolves: RHEL-21815 IPA 389ds plugins need to have better logging and tracing - Resolves: RHEL-21937 Make sure a default NetBIOS name is set if not passed in by ADTrust instance constructor- Resolves: RHEL-16985 Handle samba 4.19 changes in samba.security.dom_sid()- Resolves: RHEL-14428 healthcheck reports nsslapd-accesslog-logbuffering is set to 'off'- Resolves: RHEL-14292 Backport latest test fixes in python3-ipatests - Resolves: RHEL-15443 Server install: failure to install with externally signed CA because of timezone issue - Resolves: RHEL-15444 Minimum length parameter in pwpolicy cannot be removed with empty string - Resolves: RHEL-14842 Upstream xmlrpc tests are failing in RHEL9.4- Resolves: RHEL-11652 Rebase ipa to latest 4.11.x version for RHEL 9.4- Resolves: rhbz#2231847 RHEL 8.8 & 9.2 fails to create AD trust with STIG applied - Resolves: rhbz#2232056 Include latest test fixes in python3-ipatests- Resolves: rhbz#2229712 Delete operation protection for admin user - Resolves: rhbz#2227831 Interrupt request processing in ipadb_fill_info3() if connection to 389ds is lost - Resolves: rhbz#2227784 libipa_otp_lasttoken plugin memory leak - Resolves: rhbz#2224570 Improved error messages are needed when attempting to add a non-existing idp to a user - Resolves: rhbz#2230251 Backport latest test fixes to python3-ipatests- Resolves: rhbz#2192969 Better handling of the command line and web UI cert search and/or list features - Resolves: rhbz#2214933 Uninstalling of the IPA server is encountering a failure during the unconfiguration of the CA (Unconfiguring CA) - Resolves: rhbz#2216114 After updating the RHEL from 8.7 to 8.8, IPA services fails to start - Resolves: rhbz#2216549 Upgrade to 4.9.10-6.0.1 fails: attributes are managed by topology plugin - Resolves: rhbz#2216611 Backport latest test fixes in python3-ipatests - Resolves: rhbz#2216872 User authentication failing on OTP validation using multiple tokens, succeeds with password only- Resolves: rhbz#2196426 [Rebase] Rebase ipa to latest 4.10.x release for RHEL 9.3 - Resolves: rhbz#2192969 Better handling of the command line and web UI cert search and/or list features - Resolves: rhbz#2192625 Better catch of the IPA web UI event "IPA Error 4301:CertificateOperationError", and IPA httpd error CertificateOperationError - Resolves: rhbz#2188567 IPA client Kerberos configuration incompatible with java - Resolves: rhbz#2182683 Tolerate absence of PAC ticket signature depending of domain and servers capabilities [rhel-9] - Resolves: rhbz#2180914 Sequence processing failures for group_add using server context - Resolves: rhbz#2165880 Add RBCD support to IPA - Resolves: rhbz#2160399 get_ranges - [file ipa_sidgen_common.c, line 276]: Failed to convert LDAP entry to range struct- Resolves: rhbz#2169632 Backport latest test fixes in python3-ipatests- Resolves: rhbz#2162656 Passwordless (GSSAPI) SSH not working for subdomain - Resolves: rhbz#2166326 Removing the last DNS type for ipa-ca does not work - Resolves: rhbz#2167473 RFE - Add a warning note about possible performance impact of the Auto Member rebuild task - Resolves: rhbz#2168244 requestsearchtimelimit=0 doesn't seems to be work with ipa-acme-manage pruning command- Resolves: rhbz#2161284 'ERROR Could not remove /tmp/tmpbkw6hawo.ipabkp' can be seen prior to 'ipa-client-install' command was successful - Resolves: rhbz#2164403 ipa-trust-add with --range-type=ipa-ad-trust-posix fails while creating an ID range - Resolves: rhbz#2162677 RFE: Implement support for PKI certificate and request pruning - Resolves: rhbz#2167312 - Backport latest test fixes in python3-ipatests- Rebuild against krb5 1.20.1 ABI - Resolves: rhbz#2155425- Resolves: rhbz#2148887 MemberManager with groups fails - Resolves: rhbz#2150335 idm:client is missing dependency on krb5-pkinit- Resolves: rhbz#2141315 [Rebase] Rebase ipa to latest 4.10.x release for RHEL 9.2 - Resolves: rhbz#2094673 ipa-client-install should just use system wide CA store and do not specify TLS_CACERT in ldap.conf - Resolves: rhbz#2117167 After leapp upgrade on ipa-client ipa-server package installation failed. (`REQ_FULL_WITH_MEMBERS` returns object from wrong domain) - Resolves: rhbz#2127833 Password Policy Grace login limit allows invalid maximum value - Resolves: rhbz#2143224 [RFE] add certificate support to ipa-client instead of one time password - Resolves: rhbz#2144736 vault interoperability with older RHEL systems is broken - Resolves: rhbz#2148258 ipa-client-install does not maintain server affinity during installation - Resolves: rhbz#2148379 Add warning for empty targetattr when creating ACI with RBAC - Resolves: rhbz#2148380 OTP token sync always returns OK even with random numbers - Resolves: rhbz#2148381 Deprecated feature idnssoaserial in IdM appears when creating reverse dns zones - Resolves: rhbz#2148382 Introduction of URI records for kerberos breaks location functionality- Resolves: rhbz#2124547 Attempt to log in as "root" user with admin's password in Web UI does not properly fail - Resolves: rhbz#2137555 Attempt to log in as "root" user with admin's password in Web UI does not properly fail [rhel-9.1.0.z]/bin/sh/bin/sh/bin/sh 4.12.2-1.el94.12.2-1.el94.12.2-1.el9 epnepn.confexpire_msg.templateipa-epn.serviceipa-epn.timeripa-epnipa-client-epnContributors.txtREADME.mdipa-client-epnCOPYINGipa-epn.1.gzepn.conf.5.gz/etc/ipa//etc/ipa/epn//usr/lib/systemd/system//usr/sbin//usr/share/doc//usr/share/doc/ipa-client-epn//usr/share/licenses//usr/share/licenses/ipa-client-epn//usr/share/man/man1//usr/share/man/man5/-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -march=x86-64-v2 -mtune=generic -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protectioncpiozstd19x86_64-redhat-linux-gnudirectoryASCII textPython script, ASCII text executableUTF-8 Unicode texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)Rutf-86c83922f2d3a1173d68df0818e575718b42c4d731c333c4a5c6ffb350bead4983d338e2971807d0b502586f77fdbfd93db93391a476dea9a7b7af279c9fe9047?(/h#U0LkVUUU X`aO{/{{N#Rfb;--I9Je5j=?Bg ;0_ GFj6`\8$/QjӡJx'oN2w1q'_E{m=vXLP;]tXƇ}7/r"0+-J>m#TXI @֩偬 4զKx@ QxPiO98.Y(4* " ڙ8ͺ 3!ȅ wc]m q}„gMAu*3v& Hsq@@2VDB#T@* # +@v䉟 'r"'D#P*AN*t:zʋ{Jq*GaT7bЍS9|8i)S}~ًޚc(k;]?uͧ}`EԯCη}gmmo8zKV U9vqT+q)Hva-nQSTx@yG*+:yp`ے&+Llt RJHF')@o ~GNY BWlq#˖ʬ jSa?JWLFQNϮo('F! JF|)7 %cNڶqKޝt焅%7 =jS)BO#.zrNHF0w?'>+M?uԇͅIBN*xG A\BN5<(4 X ."xR( .Ee+  ,Z@PM)U>׼#)bP1XiV;`mCt4H . ^{ DJv[m4zF *>t!D BTU\jC!IX$ J^gAQ"Qq9 J~"G>wvT!S;K*m'vrӐ+" cβsέq&#vjf=@e3D 2;{>z@xpdrݤϠėW/dպ9wHs}Jչfޢ N#vZHHה r)v]G-Hn5RbٍIT_ov$Ln'sz9ipdH*i$xw7n(pKuڹH +bBP0!H+kU#tݗߙRaDD(>>t@]E\Fpf2+LLdtl\4! p|h.q` Sgt|d˜TOPv4ł! LO Yk!?f(O{U4CJ=(ڠDcϿq|l,kn  c*,qIsaB (XEŷT3hݶGG%Q8 Z 2.ӬrᾄNTlqWmSX !oM0 Wa3QRf Uݤ+~*O:sg;nbN\> [5]/c&9[{]mpxldpsކ|ZC1`,kD| 3( 롟jr yڷj ]grsX7DbHHey(SKZ}xT)qePم}שI9H9z%i:SuW=)j;JO[|B‘N~F*G;]g^7Be:f$XX;זAvK>=r!3yO[h6fӏH @6Hx]@D}LL3PXeP1QGfב@H2?BB޾s$I oybul53\g' Hu  r iG!0YyP @&3P9n;M6N}^\NMk&S;Zc #ߜRؽ2cӂ r1/o^TWϚxWX,zi O'dr-qa>_IbM9X{mB'VDGfz-qR5_٤jf|ɌmDDkKł=ܝKXzPwxp*ڧ=.O-DzKFsmN1;v P!}1m̈aכpxQ"tJDDFL923&ɢӝ""W*2 ec#¡FyV.-vt;&ߡz8Y}Bѵ!&ȌʨJ{,-Y7Qͺu 뗧9r` {ubp rqd>8rH v@0p s%G#Sog ֕j֡RybBtb? d9e-7:.428jmT&ҚjfFs@ H<0IQNhCKah@ HUc`!8FC [ׯ8v //4[>Cv"*M}`*9&XDહX+l-S\%^g@Ll==ߓ~l}Ѯ &.W*)&@.0S~< Na@$z6Z?) iS// J0:fƬFI(f3<Ȣ7Y0@G$L kG4V&f%H:힊4Ւ~'"EbS:-쐯b9P%'ȷRM; gjmVOo=BX`g`4,\O6NqGvd~8eYe m^,Aһuqډ_\x%ͼÕ:WvG&H snp"ЉmܴoӢ,E;oҏ #VT)Y/z :2qSŹ -$Yw'FU"f 9\x.]Am[:x\>1B~Yy f[Uh=+mOrrbv]adW@)+.?5[?)IbRBf@D؁:F_I_ы(Dcޠz3e• W߶aA@Aۙd ,kŠ㈽T7Qzƾ ,ku%83;jh89D3a[zdzFvs** ^6KOʣ{P /W^Ӻ;\hdCM'Cx֌bb{1*GX6dtyxY.R~}{DV\/!*DRU -L[Tqb`UtT-:O)/Ƃ<%sIY] .pŝJv?'\NJ*@`P}Utt@y0n7jlhGS둜8s&-#Pfsm-h{LFGv;oe鸜?wTȜe4}%n1[dO;>[Ok5j> C"QV(st_^ʳd?DꕠɶAIkc>*yDԁ,As^fv @7 WYo 0hp N1MT eb1c8Z:s@D!y)Y,.?%2qRI25)# %)^h:<\r!TD}qzc26 @J>W, !C l(sm^"9>`o9b@ׯ@KHA8k[L] ܚ~~Qbo߽k%rUzb1 c'B77([y|J4: n:+~$5JJ#9nRn?X4hΐKlv)Q?cCR5"F7]μf4ѺGgmoeI@Hysϫ@*bmǃ#!:|4w ^8\r4gNJQ *&[AUӰ鲛U9kkUAᆞշI!u!B`,{q;))U6RRE?L0%>Håd޸hH?DP^xJzx <4 fp P~Go2N°hmSr粌-V>ggw #f ^e}DtT\"3\,L139cEE г`@cuqhxJeޗϬIm3 (<¯Be62û>0 Ҙ +8wwb;$qܚC_ss4=0W+E;[$4Ku$^~ͱ)~LYF4;mӅު I~:pfT9X^og`{hDg'IZXb@b7AuWmc`kjx ܈DZJ] fF+CE 몜teqA z Q^-W,A! .a@7]CV6a@hQ_RLo~v8Z@=z]< "~%`~Z)j̤`#c= L!ơo3ZD_.^~ma/L-nwcÅC[ZEěCˇ\O圴5;JZJOPlVz5FpLMyWu \uњ@한1rzoE#ݨaٹ`Tn ڣbN%38)w;m@9Yw]Ȭ ^/f.R1Hi 9Q\s+_2&oQ>|]H,[fŽw<2KK-Xe3&[ xM"4Rg#Կ)-nqh%´4R ?4k辔&l,utD&N\#_~8-5)-LnO +4ihc8mCE(;XO"ڱb8nc @(2T+)`I3RD* ëZ  E%f~8nYuq'){A%`/i_`F<+Z=c4.*/UƲcꇀ}Ri }皨mj)A m$*QJlnMe*ŴP#& q4<L=E +;QLrwn2m{]:Bb : p@uYT\Hj~ w+sz™pr熎dVH  YDkZTUü.VL"Rgu, |M$W;MW%pD,pJ'MqR2eRhCs@ jLV@%TL=1I\ƴ/Bh{Ցغq^eZ[=w */qw`QDᤓ|!-NK *rX[S:’i0Й0@]OP(CMW_gDAr@WW_umjbΏEJ1Ay DG[0̠ʶ W4!O&FYU8Fu}k9u܅tb/f_É: :x9ߡkUŁrlU)=MQVN|dwޕTL'?$b%P,b09&@'3uf6Fϻ-޵ioi ^<#1pO攍9PhtHe?ӧvWܨà*S(BVnIQ=6y+JCWQqfu?ч{%O?(>9Y;;!hK|) "x? |QVAKV&biAѣy4uhbYX64F߃Rtf $4YQl8>\'kn?u.weDLYj'@uy;ǟN='3Y+cs(]Bic<;"::"ou5xK8R#݂9baMtHI;Hc`00.wDNԺ 35`@$zkK*?,^_k[ǶlZk+TB;@`jiYDZn՞c&r9]ZW&.Nz1+ꮈL{ɴMݱu8pc o"XP`nck"֚tC0@Ppd2‚LR6UFPX澔@O77l BH+t$ex6}4XٽosM5$vQG[e>j:lC9pG10kR$h3azloǃ`,+_ҩ \=$ r ɛrOveFҿjʞ)zS(ZAO-k9&ݛ$~2-Lp  IU9[ҝjJh.;6noHb[lJ0њqa? .bxfjC%2$q\0\˕1zZ%gf^ 9"ղP yP#Jz[ Z#B!+G2MXm<c\tj+˿ݥ  aQUm*PNg𸩊b]Iq "Ň?2 I" xN44DV6d[\zTck3L嚁f/%`VoXӅ5I?RxȭMLRHIK6Z|oOjk+  Oj`9LWvbߢ xAA0NllC` dvXBUG|Onaҙ+6g((E[DI4ɒ\*Em}6KH+l=ieDu7,bj$ $ua>gIVP Î@H8#Jd1л&p->LEOܼ_5?Ct5S&6BBclٖ (ZIYTb1㬦S5ERNz>E⧕]<( #_bJ]7K1et51#ѼȼXɽC%?gH Y knuPH!<5Zh߱+2t~>72g@0(V*7F[Xp^2z$ҤuHaQW%PP+t#KŪB<P,ӆ@ 5DEʨP6Yp=`5= q=eQU{63r2,& .vچrP4.Oja1j)S*|&,rjÌXI6?噙Bmk%F6Txc_rLUft@/ɢ`ݥ;Cxi,tWV&ӔD%͝}neyhxTQz.Eyv燴 & )?z!h1#r{ӵ5߾&pfXߘϗWF l[M˕A/2=ף^N#9F_?]TcSaYJŠ܊B5'Q-H=6!)+\7 0S&%8LV H]LoΆO2lٱ9!ٙ/OIq$~!"MH+a)L#``}kUꈏ'6Q,Nb%W] JHŸuwx+]51;Eōw#& 5 TȠLZtV(m,ao buw© qC P-`,(h^L@YIxz#a>̷5 (_96]Aa`!RcW0Cl"9}mRQ- 21ú]wKHɯbzĭ_ iN cX,%2<'9>Z `h辡l4MH(D1a,9'ʼn61$ }G9b'*W_7罦IdZ"2w(T'0>)S&jv@HDE[l(c/I˝6'Y@/Q ,}6԰s!#MUI5sayDj%Z/ vB'9:QH/҂`}`msMDr n  .Sᕸ4T!(WĮ:О ~(&0V)ֆCd[]PmE^<:w28,ZN ~omp=&k3ݧ[\ai%qv-BE" W_T:G? ֣f0::O `y!`$lelPz]֭@}W+`'J9O:qKb^p`-УkJbg<,O _Qt2#[I*3Y.u/1] 0᠉ROi ?16F{㚿b`TIA&%6A`kto7,ѣgMK S"T@֥ڧ lHUe(.aK$S~8p s¨?~q>[;vxX$]ZWy~Sf ck΍=U uu,珁,!ym(M?P/Aɪ2)S.$bfr8Mueu pdg{JQWs@#I]0RuZQhYUBj#!4~}9m ZQ%LZt,jz8T+=T=#^S?rM!b߹}>kATuT>qꚮ;Շ$w9>خ$ nHY[]i×%LH8ma\9s ,3[u]5HagjfW N~~?W7oE6az62ﭿWˏa};T}lsǡͮ7ˉ'G\ZY!a](О% hbɅ6/[uH}|blNʥ)|:>;N&ٔ%b" 7R\~WjDf|fe1u4*EU Pʅ=h}$t+HG`I։ƨee]2pi& Xrq'HG|#,aYC\&s@ j<2-'F6sqѵ: v&rXUmK}-hT8i81@!Fo t,yҸvG.b$A$ MSoFBF RuƇ b HgÞ5*y6͹mp9!t C@7ޛCɰo*1B,8$k+Kow=aQ^O}Щp m$bMyҘTJh䈕JBh ]zf["S#hw}Nbaj-FN50ƒBӢP@AZ.}I@0:*=![2妰 4ٹ:ѢjP8e NEƂD }@=LXP}R:12#['RLgb< 2܎)i3>9sc0Vݘ'v?4M#a)dm̙4ж(*ZiSVAMd~ o-E.I }:Yם*11YɘuDS), IFCHHASADVIIISdwll eawsopimbsolutecivilurATNews at bhit ettsafmsteos "cofu<'sbriefa.>o>:Alsoncronicapepl,art e:>SOLUTELY;`sw'.el;c'Typ Of mbea GUI"boxgeeoy)"F ngsaray,Lesseread,philosophy/why--lgpc54211.gzXmo8_1}hlw87uZ%a9uQe*I.3d˹ݷ Pyy2K#DNHJ!U,NG׺:zy]]B^M(`!/*K#2HIV'n'FuFK'I9yZ,'Y8B)gN|f,P=F)0i+$RIE`gk7>VHᄃr Y8ֹb8v`6AZi_>u{Nx>R¨.~y6wD^W(!NGwn⒠U81o2 ڝ61yvjoq:?Y|ds|;r2d~Dcrs3_%HfA'` q"@tw 05S 2t&dE?W}S\v[my+ QC*.}VwIP[@3HwboolZk-[" #Q(Kvoʤ :CoXy6SRI-W\1 VCGdեDp2)]|G @DM|B؊#kꝷOZ,?M *uԌ2Uf_9 䗼hC+^H%vR|<*1zGm'TȵeqvmCHVYNv51:[El!#hq,iM@/P[ol>ڿ¶]C&:a@&DnaM\0oKQ88TW !i3/` q򠍈C7MUܱ+ޱt ~T2grmr%<:U fz&Vj77whTJݴn~;Zbz/AzzDVH`Z]YHWk4r%`ODޏiTFk{$&oT/ܔ=G"iʟue@ڼjrjH1<_$ 1/jxq9<{M;Ju:?/~O!vxCW^A7tY7?βҪp_ ·W'[9,酷Wx0e^|R‰9iŇB sj+-t@":OۚUgG@I(1K/[P.o\ِ_L.GOfg4פ14-;itμ+gqeem)^oU= C);lש^2Qi8;h~@dqߧSzs.O5l{h ;/[Oq/ߍKL؉{N&MsZFxKY&1=ZZ_9 6]-:d1b35.5WkoF_q~htG "rCIijlƈJ!g虡UsJ` X gqeO#*R%eƒ,u"]j9|eJPr֬(VXjSQ-VyV< CgaRA+JK~#K[82YxcZZӬZ*H$ qF\ 6,2z@Rңc8 cg³LɌaqM;/`jJJS« ϭsZI̪|@ r>wKMh>MwA7$e#Ke Y} x~<&^bA9=͗ќfb-|!YJ/Tv!)mģDaUY RDn: ]8a`6(;Cˋvu>)ΦQ ]YDiiڤyyl7 dzIt5\3GU5 x6j~VA80/<ݎ.Upk&x$"1ZWyT.At޹ɹ*7jϖt-ۏYӛOsURq!!MaPV84Z3 X{SvH/(zO/G5FZi~d!qʣX"bGWjC D\O+-jQiԻ G+VZ 4;FCޟ"Wi+N8t3/:'H]>96r"Z"ea{h$QOi` jr`McGm7#P 0g L{XTh;`PtWi' V9K[~圇Ιټ*gk|Gh>m],`f:<;sC ~M! pޒzeH}dihOUS_i@,Ӫ&xD\1P(J#k]sihˬ]+|yVBС4R(e@@rF 7 li*ĹID1GKc= 2D˟epӐe@ae$hﭦ=0Ïat&\a&=l>mW` ZR Njoۂǰ ,{ҾO(!&#/_6 h>ҵ"ro'6'̚"b?ڢdڐS˿׫BZ3Dc*V(6^K O3t%.w~y @aIvONJ|լQSu <_ nx]5yaϛ\~^ci(V{͉g+jIiasx$4s.1vnĸyhR*sz=`VJTɦ38u(GØȍHNam4&E@]ߑ"e^źӞJN ~u4nY 3VaE1J~sY=1go7茗NQ݇킒F \xh 8w/EM(w ґ []cs2a^~ӮDU+8};:B#oQ_q7!4ćUIk‰gJ pѡ2i}$!Za!3= Ǝjwtߎ9(gvىCWlcN܎DDNaIW/ Rʑ(>ar4̎-gtAF4m^Q9-sa6FJ06s۫)D*,:7GEؾ-Ox.f _E2k/y}Ppb&1[VcKUÖŢs-Yd-Wfg%MiRZ2C-p(si-("Ey鑐K`ؒ ߕ-p[ͤ8ѻy\Gzbt730L64M &3C핣7. &9yECJ>:Mq=!rb4LXN pc_ Vձxx!lҶC@3TA樼b Uv4xF$D>QmA(xBY5B8n$UKF !-e\pM1< `@~=$T*<NU6]`$a4;` TĮt67?/m$,.L O"`3?t/4bl ޔK3 CTXHȈrӢ>"<T,