pdns-backend-ldap-4.1.8-bp151.3.9.2<>,X_lL!M@eee58oְUl/(Ir k+AA5Z?B⿋C=@O <"nS8XG!z_ Mq~tH-;>]?]xd & < # <`z      $=Vx@Z(829d2: 2FWGWHWIXXXYX\XD]XX^XbXcYdZGeZLfZOlZQuZdvZxw\hx\|y\"z]](],]2]tCpdns-backend-ldap4.1.8bp151.3.9.2LDAP backend for pdnsThe PowerDNS Nameserver is a authoritative-only nameserver. It conforms to contemporary DNS standards documents. This package holds the LDAP backend for pdns._lLobs-power8-05D#SUSE Linux Enterprise 15openSUSEGPL-2.0-onlyhttp://bugs.opensuse.orgProductivity/Networking/DNS/Servershttps://www.powerdns.com/linuxppc64le @ %/큤_lB_lB_l_l_l130502024281d08d8f574453164ca962a98ce004ec37c74b9c31372c95b87f8c0435acca87772cd209394e9fd96ce607edbca403a64af5cd660c7c1b8d282e608ff3bf3f9096115b164f10835aff799914b65f4d651e9fa84f0bbbefde316db994d36c21e56b2096d83db548c399f287966ff082fada65f9a5d1bb72fcd51cf2f67b2ec28e45bd8ee0af5e35fca358e7c6521b81a591803814a20635fb64592arootrootrootrootrootrootrootrootrootrootpdns-4.1.8-bp151.3.9.2.src.rpmlibldapbackend.so()(64bit)pdns-backend-ldappdns-backend-ldap(ppc-64)@@@@@@@@@@@@@@@@@@@@@@    libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libcrypto.so.1.1()(64bit)libcrypto.so.1.1(OPENSSL_1_1_0)(64bit)libgcc_s.so.1()(64bit)libgcc_s.so.1(GCC_3.0)(64bit)libkrb5.so.3()(64bit)libkrb5.so.3(krb5_3_MIT)(64bit)liblber-2.4.so.2()(64bit)libldap_r-2.4.so.2()(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.17)(64bit)libstdc++.so.6()(64bit)libstdc++.so.6(CXXABI_1.3)(64bit)libstdc++.so.6(CXXABI_1.3.9)(64bit)libstdc++.so.6(GLIBCXX_3.4)(64bit)libstdc++.so.6(GLIBCXX_3.4.11)(64bit)libstdc++.so.6(GLIBCXX_3.4.14)(64bit)libstdc++.so.6(GLIBCXX_3.4.15)(64bit)libstdc++.so.6(GLIBCXX_3.4.20)(64bit)libstdc++.so.6(GLIBCXX_3.4.21)(64bit)libstdc++.so.6(GLIBCXX_3.4.9)(64bit)pdnsrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)4.1.83.0.4-14.6.0-14.0-15.2-14.14.1_k8^%@^`]A\@\@\@\[[[@ZZZЛZZZ@Z@YeYY5Y}@YMYMXDX@X~@Xx@Xx@XN@WW@WJVV8UUv@U>$U8TPTи@Tи@Tи@Tto@Ta@T_W@TR(@TO@TO@TO@Adam Majer Adam Majer Vítězslav Čížek Adam Majer Michael Ströder Michael Ströder Michael Ströder Dirk Mueller Michael Ströder amajer@suse.commichael@stroeder.comkbabioch@suse.commrueckert@suse.deadam.majer@suse.demichael@stroeder.comadam.majer@suse.demrueckert@suse.deadam.majer@suse.dejengelh@inai.deadam.majer@suse.devcizek@suse.comwr@rosenauer.orgmichael@stroeder.commichael@stroeder.commrueckert@suse.deadam.majer@suse.demichael@stroeder.comadam.majer@suse.deadam.majer@suse.dedimstar@opensuse.orgmichael@stroeder.commrueckert@suse.demichael@stroeder.commichael@stroeder.commichael@stroeder.commichael@stroeder.commichael@stroeder.commrueckert@suse.demichael@stroeder.commrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demichael@stroeder.comLed michael@stroeder.commrueckert@suse.demrueckert@suse.demrueckert@suse.de- CVE-2020-17482.patch: fixed an error that can result in leaking of uninitialised memory through crafted zone records (CVE-2020-17482, bsc#1176535)- pdns_maxmind.patch: backport support for MaxMindDB- Build with libmaxminddb instead of the obsolete GeoIP (bsc#1156196)- CVE-2019-10162.patch: fixes a denial of service but when authorized user to cause the server to exit by inserting a crafted record in a MASTER type zone under their control. (bsc#1138582, CVE-2019-10162) - CVE-2019-10163.patch: fixes a denial of service of slave server when an authorized master server sends large number of NOTIFY messages (bsc#1138582, CVE-2019-10163) - CVE-2019-10203.patch: update postgresql schema to address a possible denial of service by an authorized user by inserting a crafted record in a MASTER type zone under their control. (bsc#1142810, CVE-2019-10203) To fix the issue, run the following command against your PostgreSQL pdns database: ALTER TABLE domains ALTER notified_serial TYPE bigint USING CASE WHEN notified_serial >= 0 THEN notified_serial::bigint END;- Update to 4.1.8 * #7604: Correctly interpret an empty AXFR response to an IXFR query, * #7610: Fix replying from ANY address for non-standard port, * #7609: Fix rectify for ENT records in narrow zones, * #7607: Do not compress the root, * #7608: Fix dot stripping in `setcontent()`, * #7605: Fix invalid SOA record in MySQL which prevented the authoritative server from starting, * #7603: Prevent leak of file descriptor if running out of ports for incoming AXFR, * #7602: Fix API search failed with “Commands out of sync; you can’t run this command now”, * #7509: Plug `mysql_thread_init` memory leak, * #7567: EL6: fix `CXXFLAGS` to build with compiler optimizations.- Update to 4.1.7 with a security fix: * Insufficient validation in the HTTP remote backend (bsc#1129734, CVE-2019-3871)- Update to 4.1.6 * Prevent more than one CNAME/SOA record in the same RRset- adjust buildrequires for mariadb 10.2.x on SLES- Update to 4.1.5 * Improvements - Apply alias scopemask after chasing - Release memory in case of error in the openssl ecdsa constructor - Switch to devtoolset 7 for el6 * Bug Fixes - Crafted zone record can cause a denial of service (bsc#1114157, CVE-2018-10851) - Packet cache pollution via crafted query (bsc#1114169, CVE-2018-14626) - Fix compilation with libressl 2.7.0+ - Actually truncate truncated responses- Update to 4.1.4 - Improvements * #6590: Fix warnings reported by gcc 8.1.0. * #6632, #6844, #6842, #6848: Make the gmysql backend future-proof * #6685, #6686: Initialize some missed qtypes. - Bug Fixes * #6780: Avoid concurrent records/comments iteration from running out of sync. * #6816: Fix a crash in the API when adding records. * #4457, #6691: pdns_control notify: handle slave without renotify properly. * #6736, #6738: Reset the TSIG state between queries. * #6857: Remove SOA-check backoff on incoming notify and fix lock handling. * #6858: Fix an issue where updating a record via DNS-UPDATE in a child zone that also exists in the parent zone, we would incorrectly apply the update to the parent zone. * #6676, #6677: Geoipbackend: check geoip_id_by_addr_gl and geoip_id_by_addr_v6_gl return value. (Aki Tuomi)- Use HTTPS links in .spec file like mentioned in PowerDNS announcements - removed obsolete 6370.patch - Update to 4.1.3 - Improvements * #6239, #6559: pdnsutil: use new domain in b2bmigrate (Aki Tuomi) * #6130: Update copyright years to 2018 (Matt Nordhoff) * #6312, #6545: Lower ‘packet too short’ loglevel - Bug Fixes * #6441, #6614: Restrict creation of OPT and TSIG RRsets * #6228, #6370: Fix handling of user-defined axfr filters return values * #6584, #6585, #6608: Prevent the GeoIP backend from copying NetMaskTrees around, fixes slow-downs in certain configurations (Aki Tuomi) * #6654, #6659: Ensure alias answers over TCP have correct name- Update to 4.1.2 - Improvements * API: increase serial after dnssec related updates * Auth: lower ‘packet too short’ loglevel * Make check-zone error on rows that have content but shouldn’t * Auth: avoid an isane amount of new backend connections during an axfr * Report unparseable data in stoul invalid_argument exception * Backport: recheck serial when axfr is done * Backport: add tcp support for alias - Bug Fixes * Auth: allocate new statements after reconnecting to postgresql * Auth-bindbackend: only compare ips in ismaster() (Kees Monshouwer) * Rather than crash, sheepishly report no file/linenum * Document undocumented config vars * Backport #6276 (auth 4.1.x): prevent cname + other data with dnsupdate - misc * Move includes around to avoid boost L conflict * Backport: update edns option code list * Auth: link dnspcap2protobuf against librt when needed * Fix a warning on botan >= 2.5.0 * Auth 4.1.x: unbreak build * Dnsreplay: bail out on a too small outgoing buffer (CVE-2018-1046 bsc#1092540)- add patch for upstream issue #6228 https://patch-diff.githubusercontent.com/raw/PowerDNS/pdns/pull/6370.patch- geoip not available on SLE15 but protobuf support is available.- Update to version 4.1.1: bug-fix only release, with fixes to the LDAP and MySQL backends, the pdnsutil tool, and PDNS internals- Update to version 4.1.0: + Recursor passthrough removal. Migration plans for users of recursor passthrough are in documentation and available at, https://doc.powerdns.com/authoritative/guides/recursion.html + Improved performance: 4x speedup in some scenarios + Crypto API: DNSSEC fully configurable via RESTful API + Database: enhanced reconnection logic solving problems associated with idle disonnection from database servers. + Documentation improvements + Support for TCP Fast Open + Removed deprecated SOA-EDIT values: INCEPTION and INCEPTION-WEEK - pkgconfig(krb5) is now always required for building LDAP backend - pdns-4.0.4_mysql-schema-mariadb.patch: removed, upstreamed- package schema files in ldap subpackage- Update to version 4.0.5: + fixes CVE-2017-15091: Missing check on API operations + Bindbackend: do not corrupt data supplied by other backends in getAllDomains + For create-slave-zone, actually add all slaves, and not only first n times + Check return value for all getTSIGKey calls. + Publish inactive KSK/CSK as CDNSKEY/CDS + Treat requestor’s payload size lower than 512 as equal to 512 + Correctly purge entries from the caches after a transfer + LuaWrapper: Allow embedded NULs in strings received from Lua + Stubresolver: Use only recursor setting if given + mydnsbackend: Add getAllDomains + LuaJIT 2.1: Lua fallback functionality no longer uses Lua namespace + gpgsql: make statement names actually unique + API: prevent sending nameservers list and zone-level NS in rrsets- Ensure descriptions are neutral. Remove ineffective --with-pic. - Do not ignore errors from useradd. - Trim idempotent %if..%endif around %package.- Added pdns.keyring linked from https://dnsdist.org/install.html- Don't BuildRequire Botan 1.x which will be dropped (bsc#1055322) * upstream support for Botan was dropped in favor of OpenSSL, see https://blog.powerdns.com/2016/07/11/powerdns-authoritative-server-4-0-0-released- This makes the schema fit storage requirements of various mysql/mariadb versions. pdns-4.0.4_mysql-schema-mariadb.patch - preset uid and gid in configuration- fixed use of pdns_protobuf- update to 4.0.4 - fixes ed25519 signer. This signer hashed the message before signing, resulting in unverifiable signatures. - send a notification to all slave servers after every dnsupdate for complete list of changes, see https://blog.powerdns.com/2017/06/23/powerdns-authoritative-server-4-0-4-released/- added pdns-4.0.3_allow_dacoverride_in_capset.patch: Adding CAP_DAC_OVERRIDE to fix startup problems with sqlite3 backend- use individual libboost-*-devel packages instead of boost-devel- update to 4.0.3 which obsoletes b854d9f.diff- b854d9f.diff: revert upstream change that caused a regression with multiple-backends- update to 4.0.2: The following security issues were fixed: - 2016-02: Crafted queries can cause abnormal CPU usage (CVE-2016-7068, boo#1018326) - 2016-03: Denial of service via the web server (CVE-2016-7072, boo#1018327) - 2016-04: Insufficient validation of TSIG signatures (CVE-2016-7073, CVE-2016-7074, boo#1018328) - 2016-05: Crafted zone record can cause a denial of service (CVE-2016-2120, boo#1018329) For complete changelog, see https://doc.powerdns.com/md/changelog/#powerdns-authoritative-server-402- BuildRequire pkgconfig(libsystemd) instead of pkgconfig(libsystemd-daemon): these libs were merged in systemd 209 times. The build system is capable of finding either one.- update to 4.0.1 Bug fixes - #4126 Wait for the connection to the carbon server to be established - #4206 Don't try to deallocate empty PG statements - #4245 Send the correct response when queried for an NSEC directly (Kees Monshouwer) - #4252 Don't include bind files if length <= 2 or > sizeof(filename) - #4255 Catch runtime_error when parsing a broken MNAME Improvements - #4044 Make DNSPacket return a ComboAddress for local and remote (Aki Tuomi) - #4056 OpenSSL 1.1.0 support (Christian Hofstaedtler) - #4169 Fix typos in a logmessage and exception (Christian Hofsteadtler) - #4183 pdnsutil: Remove checking of ctime and always diff the changes (Hannu Ylitalo) - #4192 dnsreplay: Only add Client Subnet stamp when asked - #4250 Use toLogString() for ringAccount (Kees Monshouwer) Additions - #4133 Add limits to the size of received {A,I}XFR (CVE-2016-6172) - #4142 Add used filedescriptor statistic (Kees Monshouwer)- update to 4.0.0 https://blog.powerdns.com/2016/07/11/powerdns-authoritative-server-4-0-0-released/ https://blog.powerdns.com/2016/07/11/welcome-to-powerdns-4-0-0/ - packaging changes: - remotebackend split out now - enabled experimental_gss_tsig support - enabled protobuf based stats support - no more xdb and lmdb backend - added odbc backend where supported - drop pdns-3.4.0-no_date_time.patch: replaced with - -enable-reproducible- update to 3.4.9 * use OpenSSL for ECDSA signing where available * allow common signing key * Add a disable-syslog setting * fix SOA caching with multiple backends * whitespace-related zone parsing fixes [ticket #3568] * bindbackend: fix, set domain in list()- update to 3.4.8 * Use AC_SEARCH_LIBS (Ruben Kerkhof) * Check for inet_aton in libresolv (Ruben Kerkhof) * Remove hardcoded -lresolv, -lnsl and -lsocket (Ruben Kerkhof) * pdnssec: don't check disabled records (Pieter Lexis) * pdnssec: check all records (including disabled ones) only in verbose mode (Kees Monshouwer) * traling dot in DNAME content (Kees Monshouwer) * Fix luabackend compilation on FreeBSD i386 (RvdE) * silence g++ 6.0 warnings and error (Kees Monshouwer) * add gcc 5.3 and 6.0 support to boost.m4 (Kees Monshouwer)- update to 3.4.7 Bug fixes: * Ignore invalid/empty TKEY and TSIG records (Christian Hofstaedtler) * Don't reply to truncated queries (Christian Hofstaedtler) * don't log out-of-zone ents during AXFR in (Kees Monshouwer) * Prevent XSS by escaping user input. Thanks to Pierre Jaury and Damien Cauquil at Sysdream for pointing this out. * Handle NULL and boolean properly in gPGSql (Aki Tuomi) * Improve negative caching (Kees Monshouwer) * Do not divide timeout twice (Aki Tuomi) * Correctly sort records with a priority. Improvements: * Direct query answers and correct zone-rectification in the GeoIP backend (Aki Tuomi) * Use token names to identify PKCS#11 keys (Aki Tuomi) * Fix typo in an error message (Arjen Zonneveld) * limit NSEC3 iterations in bindbackend (Kees Monshouwer) * Initialize minbody (Aki Tuomi) New features: * OPENPGPKEY record-type (James Cloos and Kees Monshouwer) * add global soa-edit settings (Kees Monshouwer)- update to 3.4.6 [boo#943078] CVE-2015-5230 Bug fixes: * Avoid superfluous backend recycling * Removal of dnsdist from the authoritative server distribution * Add EDNS unknown version handling and tests EDNS unknown version handling Improvements: * Update YaHTTP to v0.1.7 * Make trailing/leading spaces stand out in pdnssec check_zone * GCC 5.2 support and sync boost.m4 macro with upstream * Log answer packets only if log-dns-details is enabled- update to 3.4.5 Bug fixes: * be careful reading empty lines in our config parser and prevent integer overflow. * prevent crash after --list-modules (Ruben Kerkhof) * Limit the maximum length of a qname Improvements: * Support /etc/default for our debian/ubuntu packages (Aki Tuomi) * Our Boost check doesn't recognize gcc 5.1 yet (Ruben Kerkhof) * Various PKCS#11 fixes and improvements (Aki Tuomi) * Several fixes for building on OpenBSD (Florian Obser) * Fix several issues found by Coverity (Aki Tuomi) * Look for mbedtls before polarssl (Ruben Kerkhof) * Detect Lua on OpenBSD (Ruben Kerkhof) * Let pkg-config determine botan dependency libs (Ruben Kerkhof) * kill some further mallocs and add note to remind us not to add them back * Move remotebackend-unix test socket to testsdir (Aki Tuomi) * Defer launch of coprocess until first question (Aki Tuomi) * pdnssec: check for glue and delegations in parent zones (Kees Monshouwer)- no longer ship dnsdist here, we will ship a new package based on the snapshots from http://dnsdist.org/- update to 3.4.4 with a fix for CVE-2015-1868 (boo# 927569) Bug fixes: - commit ac3ae09: fix rectify-(all)-zones for mixed case domain names - commit 2dea55e, commit 032d565, commit 55f2dbf: fix CVE-2015-1868 - commit 21cdbe5: Blocking IO in busy-wait for remote backend (Wieger Opmeer) - commit cc7b2ac: fix double dot for root MX/SRV in bind slave zone files (Kees Monshouwer) - commit c40307b: Properly lock lmdb database, fixes ticket #1954 (Aki Tuomi) - commit 662e76d: Fix segfault in zone2lmdb (Ruben Kerkhof) New Features: - commit 5ae212e: pdnssec: warn for insecure wildcards in opt-out zones - commits cd3f21c, 8b582f6, 0b7e766, f743af9, dcde3c8 and f12fcf7: TKEY record type (Aki Tuomi) - commits 0fda1d9, 3dd139d, ba146ce, 25109e2, c011a01, 0600350, fc96b5e, 4414468, c163d41, f52c7f6, 8d56a31, 7821417, ea62bd9, c5ababd, 91c8351 and 073ac49: Many PKCS#11 improvements (Aki Tuomi) - commits 6f0d4f1 and 5eb33cb: Introduce xfrBlobNoSpaces and use them for TSIG (Aki Tuomi) Improvements: - commit e4f48ab: allow "pdnssec set-nsec3 ZONE" for insecure zones; this saves on one rectify when securing a NSEC3 zone - commits cce95b9, e2e9243 and e82da97: Improvements to the config-file parsing (Aki Tuomi) - commit 2180e21: postgresql check should not touch LDFLAGS (Ruben Kerkhof) - commit 0481021: Log error when remote cannot do AXFR (Aki Tuomi) - commit 1ecc3a5: Speed improvements when AXFR is disabled (Christian Hofstaedtler) - commits 1f7334e and b17799a: NSEC3 and related RRSIGS are not part of the dnstree (Kees Monshouwer) - commits dd943dd and 58c4834: Change ifdef to check for __GLIBC__ instead of __linux__ to prevent errors with other libc's (James Taylor) - commit c929d50: Try to raise open files before dropping privileges (Aki Tuomi) - commit 69fd3dc: Add newline to carbon error message on auth (Aki Tuomi) - commit 3064f80: Make sure we send servfail on error (Aki Tuomi) - commit b004529: Ship lmdb-example.pl in tarball (Ruben Kerkhof) - commit 9e6b24f: Allocate TCP buffer dynamically, decreasing stack usage - commit 267fdde: throw if getSOA gets non-SOA record- update to 3.4.3 Bug fixes: - [commit ceb49ce] pdns_control: exit 1 on unknown command (Ruben Kerkhof) - [commit 1406891]: evaluate KSK ZSK pairs per algorithm (Kees Monshouwer) - [commit 3ca050f]: always set di.notified_serial in getAllDomains (Kees Monshouwer) - [commit d9d09e1]: pdns_control: don't open socket in /tmp (Ruben Kerkhof) New features: - [commit 2f67952]: Limit who can send us AXFR notify queries (Ruben Kerkhof) Improvements: - [commit d7bec64]: respond REFUSED instead of NOERROR for "unknown zone" situations - [commit ebeb9d7]: Check for Lua 5.3 (Ruben Kerkhof) - [commit d09931d]: Check compiler for relro support instead of linker (Ruben Kerkhof) - [commit c4b0d0c]: Replace PacketHandler with UeberBackend where possible (Christian Hofstaedtler) - [commit 5a85152]: PacketHandler: Share UeberBackend with DNSSECKeeper (Christian Hofstaedtler) - [commit 97bd444]: fix building with GCC 5 Experimental API changes (Christian Hofstaedtler): - [commit ca44706]: API: move shared DomainInfo reader into it's own function - [commit 102602f]: API: allow writing to domains.account field - [commit d82f632]: API: read and expose domain account field - [commit 2b06977]: API: be more strict when parsing record contents - [commit 2f72b7c]: API: Reject unknown types (TYPE0) - [commit d82f632]: API: read and expose domain account field- set $LD for now. this fixes the configure check for relro,now.- remove custom PIE handling. upstream does it for us now.- update to 3.4.2 This is a performance and bugfix update to 3.4.1 and any earlier version. For high traffic setups, including those using DNSSEC, upgrading to 3.4.2 may show tremendous performance increases. A list of changes since 3.4.1 follows. Please see the full clickable changelog at https://doc.powerdns.com/md/changelog/#powerdns-authoritative-server-342 - move man pages to section 1 to follow upstream change- disable botan and geoip on SLE_12 because of missing dependencies.- Fixed broken _localstatedir- fix bashisms in pre script- update to version 3.4.1 Changes since 3.4.0: * commit dcd6524, commit a8750a5, commit 7dc86bf, commit 2fda71f: PowerDNS now polls the security status of a release at startup and periodically. More detail on this feature, and how to turn it off, can be found in Section 2, “Security polling”. * commit 5fe6dc0: API: Replace HTTP Basic auth with static key in custom header (X-API-Key) * commit 4a95ab4: Use transaction for pdnssec increase-serial * commit 6e82a23: Don't empty ordername during pdnssec increase-serial * commit 535f4e3: honor SOA-EDIT while considering "empty IXFR" fallback, fixes ticket 1835. This fixes slaving of signed zones to IXFR-aware slaves like NSD or BIND.- only enable geoip backend on distros newer than 12.3 before the package lacks the pkg-config file and there is no fallback to finding geoip without it.- fix permissions of the home directory- enable some backends that we had forgotten: - pipe (main package) - random (main package) - geoip (new subpackage) - new BR: yaml-cpp-devel and GeoIP-develobs-power8-05 16009521404.1.8-bp151.3.9.24.1.8-bp151.3.9.2zone2ldaplibldapbackend.sodnsdomain2.schemapdns-domaininfo.schemazone2ldap.1.gz/usr/bin//usr/lib64/pdns//usr/share/doc/packages/pdns//usr/share/man/man1/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.opensuse.org/openSUSE:Maintenance:13121/openSUSE_Backports_SLE-15-SP1_Update/800bb5e90984cb5e1dd903a4d61773d3-pdns.openSUSE_Backports_SLE-15-SP1_Updatedrpmxz5ppc64le-suse-linuxELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (GNU/Linux), dynamically linked, interpreter /lib64/l, BuildID[sha1]=6eeda6d5ed26e6745fe69819383172234c4b438e, for GNU/Linux 3.10.0, strippedELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, BuildID[sha1]=bcd476a1fafaee70b2dd64b5ce2a2c61a36d23f3, strippedASCII textUTF-8 Unicode texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)RR RRRRRRR RRRRRR RR RPRRRRRRR RRR RRR RRELyTutf-89060bc66dcb9a704defb459b1f349715f2f1022b549f4673bd772109a090cfb4? 7zXZ !t/]"k%4960E<$#]! L)- 7׊`)Y'0y KE63)^?y|G嗌bW<;T9 4|~Iamt Vva7]VU? Y4hp,d\M@n S17q/]r۠Nѽr~SXD FuΝ B>Gf`×xhv'B.<⩂v[rݕiwz_?(-ckGp,)~^nܜe+xŌPwg"j]>u ʟ+ µʩ&oo .jr}L+dn u?V<ٔsf-0%*s kwഌx>p,"XX,B593%D$ ̻¤oQTMvSE{d`n2-%:>$|ŸځL+9 wX0?{: XKnJ;T[|[841U^[`<>﫾BAL>! ̼/`l;};LWZ>@$ipAɡ[8b+}qSX]S:>%EHJs9$Rk=#bs*eȞZՋb]JE͸K`t uT/N3U~x }IˈQ/e1M302ǡ] O yWNV4FHO fk;ZĤIlC,ҞKzqN+<bS̢7[J0H Jb6,L.VO .: 3~-jӁJo-B]QOͲXAs|iԢod4LQ#d %ZgNǛk//%ϊV S|e!G(Y&$09WRJ &Q\⑤@S֨u "0\=8apFϿufZ@9Utϡ%Vq1-oʇQ0ocbVe,+f~`jw+7BR2=Ɯ89 [JՈ/w{ <{U-vxۚ1&uˀUl `s{Bp6/ ,o{ ]Lu$cgQyF}ES׃6*,WSpX[bXܠZgW$ w@bwldꛢP6G蘀Vv6?o(3M}ma=ġhGM{: :ܨB"E~y 0%8U(l>M)ZsWs1 E_" /!M`]. gâѬjnSblZPȊXQ~3̬,z7 xNV(=UV)l- hQhfd M /LXY I|mmyO6}2:y;a٣5LL41P餂[BOG=n՗ѳ ^n&Ajlx.vuU}ϽM"QNI;@ڻ~ z@ JPߟ)x}bU_ܛ/ۀ=uSv _SdH_8_K ݟyˡ'f K&llKLvQ5y=6pq]mQ( 爫GvJ;<=;wۛA3SIlQhZ/9 UQKz Z.+JZ \9:.)9مDsN.ZfiVVKhכ"7㓧V{iK8i3&k@;;j՜╼Pef{kZ:Ի:_'%%Sޅy A}t}kQА_'Xdb{y57PԮnHlҗr tia$j>Av_9\ƑU IT&ghg{ꩵP)(A3?# L&e_u]8I/ 9T/(J}KL{@i?K3zk_.~ .?^ԅSc)ðwhk¯ﯜo h4+8%ElW J%^jI-ZCsIH`$UqPt &xxGmPHdMǴmȶfJ-7달Qd5Zr5fpbT&g!9Q'kۅk)5-f>om/(*#ـ.k7$4缁>۵o\MV^_`۔Yf"9Dll1ÇL2[f;<,6?lȿB1OA!0*%4 I!Av~y%DW5 m暄"M3ݲ Xmp=1ʪ8CtSzrOg Md|/`a2j Զ.i}zn`0'( >L+ /0nX gru2EUsezѤWiHPL8^IHFVQoe[[?W֨gOC?vGqqHј; YwXX'85>CiixMJq78JzM"HT>t AmZuP&oy6N,yt"BZ&w0BZ >΀>LƸ%L٦!g}]d(RbQ'}=(\&cJB|'·૲6: ͡YKr7< 5ַ P2=|^϶" ۾L9҆ <ޘu>1e9#6 IDǔU ATn*Υ[)yoAYAUyJtB!NF-RwI_ ;t6gJF΀,%! +`(ӿ| ~bcF~GD*YϡI/ Ba$/"$WIK@+@.=*%_cQ98lOo[lb݀+`ik(&[b)j"HZW?ڀJԷuw'oݿm;o fas.KmleS'IbTLNU 8mVG ^+ LMqK`Xصݿ?\u C3 G揩h2Oaw8t5ZZ6ΔќBC1/TN$L _R@a׈kv$\օ| ;4A6?hRk1ۮ7DSܠ:5.B$z.]c\tmOh~^x*}ߺelX/U5Zh;FXy(Y3w(: hB4q&z? stxnVŸ_0GB\`ը̑4!F40Ҡ&gY?zK(ͱ{r4%nN$`sNZȋ03a] RSX~X˘i!@g oR gcÊc xE1I$ڕ(& Ԅ_YS<>ai^^mEf(E5=U F,بYM?7(gP Q۵`H.Nc kAFCk$8$I? e+#g7OTfb}VdqM`>XD'0A3BJGbv&`Y#2o[oC19-6K!}YA.6c/u! vט 1.!xz0qF\n*6K6Pc*k3y %L-@*zM &[ÕV=O9j!?ש3<%C",/؝ꥢ>ߌG ǐJװ~^"["paNl9IlAI):6nUxhF;fة8l:B?vU0C}ƀH9'1.ѪJ7ަHJ_ %r[|_b6p*}0reሼ(7[;#{&gH0*Am|¿AyY&9SB݁N-JR Db2': 5! ^nF*G}J䙉ˆ_9%苤bPl8 t2aXwo׸\z\,t+3w+j TCf-Qx[XDy2S+Şy-/Sls{&?J5kp}ף=DL~do Z*֞ &2>]cZ`R;=}fq-‘%WB"'סȧ6Rbۺ2ep~z"|ӿ YGQ\_ ΄1 UsBy]?W6Q}?@1HPC"pN?^M>Q P]_y"7կ+!Νi5a\nap[y•WQ򭹯\њ gю?Nrn|*7Zb#ssݛE%Ғ ~-V:勭p2Hbn 9DUJ0OFZϸcpa71ƀ"0$lؐSEKӜ_ߘ=ʁ q MB]C$6n5ݓBEުeuA^=ʤYy0TAMNu AΖ֞JāeΨћ+@8ctC/`- %>=uI'-~6èL}MN|P:NL0xL">ZЧ"ywa&(V3h!41tCN!h'6ay⯯@ yԖX@,X_zPO 3nw,cD M&Y5!Fg"Ц(jѤVĊZd[pɸ+ǥzj/\{H oj+n,3ϙzhD VZcF|pD߀:FPk~HVévUպ7dK]QK k$G? eӦ5cptd x9Q:sݔ lBRVgXﷹ(QatzmQ~H Ÿk]e:Gūœq9+N }/`POD16SINO&De+廼NN["QFj.ӰY z'm2* }'T9z=t$'T- -| eO#>um 3Ύ'F̮~R }3(:rSpPX3@B̜ %3i*1k c:bƀ:'ZuFT>I氅VS:QI cvc>⮐r^s?'FvNE/y >(qU4' Ab1 sq&uda0M!VM/7w/<M@%;jQW;klkLqֈ8|WWn9ǛQYw][l~N ͈`6A[Uxqr75|ٲ1dT )͉;8ُQ%}YGWa&R_BSA Aԡ_ۉ~ fn~U|iߦ߇I%L1jy[rO&,S'nhZ :$>ҌJ16e>zR4e$Y! ӟ1R;޷OWNF="tQ.TP8ܮ1 ߻V(T)C]>>M/6L:5v/}'M 5 Mwԕ4JtTPFV Jo; y|5[j:|]'C:挨{P;xU[=49܃bғFNjPO-w{L½v&S7#u);@{_bj%U]CZ;Z~Q968*2[rMn+ F~, {%CRh/$iszPEy5~}Z#/W@oMn5k?Tr~.`usx4َzixK@0yo@McH<"Ł#v=8zF fCŢ 6cԊW@t 'm5d3^&`o|`|T7:_8̥;¢wl9U""$ȓNws5_舷`omo60wb'@l8쏥dy9` W-j*ꖟHV#!;j=خphȼ "k Ba&I Ngo魫W4RAđWʓtX-<d &RuPpL&Dk,a&kǜ]jY $W6rUfFFRڪ$pܮPlU1~Hڮ6Mq}g:CD> rf ýkzD>3ʉ 8!SDD1}2,Gx 0b(Ӄ.4 %ư\ToٷGU Fݻdy{q|@stz{m ]G_vGJ'H*bcO&-#d\1䢞Fx"QCQOZ'6Lʟ2t8/Ca gi?t 7 1ImV?⹻El h}$B R_"i\ :~ \ǵ p&cfၰ HZ~$vYwp qY?~9= Rke}Y} fo$1$y[eY< Supi'0:@hp?Mq"lyN껄 ^ WTC45z:e{n8g2:;#$)8\ jRadbOXFS /܆D#:e~ǿNWցHئ7ܭ,o(yqָZ&D>I#̊ʖ4Ԭ;۠a^&)%j%`9kʢOhszH)6`߼mCETU.%wm!n\CpP Q| ,?h=q'OAީ!Ӝ_0K)>N%@3!K0UP}EO׽sc@}U$B]`l*'飵-Sk.,Nφ+y{#=Ae@>FE5|Z=_MSGo*~iS6@K^(GStvs "z6f@WE7 +_is?9j@aYyr1(xf.jG96N]0;̀+(ZQW&K煔IA)48}ÀlKq+Te{cteJ;AH'FJj◚F,ܪ ",}r$fcƳFM +sxTe2Pth;lV tP~coHL8 )*m~g!9NK |L_Vn (tIا7EW,s)t<'/m';d nXM0E(oVza;;qqw&3M(;0"D/A5KsS|К* n҅{'bTgӀO -2;-sw&X'J ؇GmDKY*qd+}nP3XtXxq;ɻ񌠚l ,+],Py֮vs2@}~*ٙd^VcS"Tpd?<;!⹐D2},# L; -~keklnY xcʝ,1)N~_SV/&і^6 iH~bi@9:IUC8[k](gl2PfrsDrR\Zד5Ǭ#~+,nۋ񈮉ǹAbДzwaZ*|UX;cW,w *`Ǣ2ÑGD2%$dCQ>wU9i.KmydJ:cLA'ߋn77)̑DɈ'kY<& .NBSʭAPJoa `uZd?_q)́׿_A])+G'6Kz|v?N& uLu0E),+3ُB _\##-K+[OT}>L*trE+76OcDݣf^ -2\Cod=ڡZb2#Z~\%a01̀Y|y\"/v'.cid'X G3w7lfCXMB*JVp 6 ki۽V|mWr#KS0lƪf&_~ۂ}3L p# bP` d'/'W'iTqQi+%݆,|ŹNL0B/fG%U&ӞJ55  Pqu.Be(P&Y{#tЍP a7{=!d"Yag2ؿ["s<?#zLeNaTɃq` ZX ܪw!VgxVt3SU&3i-ZV`o"ǑM D?RV8C} Vɩa<O?7u@?W`wY,h0 $YPt^[p %'ar`"MQBN(ppqi)cFP"9 -϶oET2MeX%P(Oxz z&\ 8=o]RG-<b8i쾫gn,0 z^-"; jE1\KьmNPw7D,rþ8 .a*Psp*r5{qviXn7?y>~m_(%#vtFX1(ʵvt ߆M&Ϫ2 3cd> -(9ǩ͵%޹jQ-y5Oٸh _t(#k%!6a 87A0#,i1irIVf 2sjK =K}.#΁ z/RnWv < ,[ oKq%<P$5L|Ϙ%c2j!?T:}5WoF>ېQG okvUϾ'S`P佽!dK3NFn`._ڕ5 :r&259r< Z.OWMHY"u''8—#TC/`('iFl,b$ rpvy9?div-`& t S5TwϬO|mU&AI,T!_fֆ5).l8_SqVS(%+d]H4^ǗG|Ok5P ua;wPP3$@R,շL6IQ&M8%y[,7VI[-Ra#Y2(6!lZ'\#i$V_Ku[ h@bxҽ^P[o. Aq%iJ\Y*DM1Ox=}& /m$}Z%?bpgfDOm'3DC=9/;$Y,@,-f=2Bh'LXD򒉸 aţ^O U3`q  J: vn~`cS,on'758^Ҩ8,Qq.XaaM5vJ%se(88'{o?}RƲ[K@2t|`?ak,qROnj#u Ɍv܉-U5׳$!N%'im Ӊ$D<DDY ˥UAXU94E;qK֛Śtl+gYrW/7E6tjv ,2Zinm'-l_ԴUd%f@)*"&( _|B#5eegQ j9!b tJ(#3Ԃ"kj'+2eF>mK%20 &58-bߓC[D|)vS; wc 3$6Z(4.@ieHw)C`'zqۨ,u: }ŘpJ$'-#%`di4@2[w.$QI"(hKͥ6ne5H8BSX/~Hv_W͝k _w Wwҽv&x9/}W:&Qe%.zHvYmCqb5 3wa#8Md^um"{fڌgB ;83U&R"QgDކGy1dwpyrO ~7˻D^O xI.7*\Z}:𴄸( ÇxL\jv9Ќ?sհ@#<h|m2X&g!+W;1w54j/p|j ;"3:|h C`:(0`y>iG4B7>2Ugq:mWxۥQ]ef5W:7?bAF>w >@40hwC s&9,⦺4<Bxƕb.$/_ ۷⡬CFY5i('{omzx0!KÁmrys Gi{Xk=s! ܨ8:]Evp=|rY:AxNb [GAH*1cһv4XH# K|mԨ+۹FG%$n~HE!9 -?oLg}6Hb"u]qdSm-dD|d}-39.HAdj8_mNև_'v3;McDwt |,z5--yrRxp`Vܡu S^s>r\RàvU @ؕK=C6uj!-0 DX[];<(zJ q>:2eDA[&FK|xCV[Of#-^`g<tЛha!+;}m@K4gCnA^ cAS5g!J$ 0ubnYiJ,SSЏ^LAY_M!T@fezL};yePQvz偕2"d#Ej;2ke-#66{cF^Oj@ eA7OdT/C,N{M*g ,4 q5]r|E4["QƫSN?s"N;=Ѩ'dxvɚ_ B6C˦;wФ6#pimJ67>w{ˊLʋaxl! GҖ]@WuCudb]2ҸT8JѪǞ\uhh?.̓2TJ? JO}\ hL+cJy\<^MԣE#FOǟLW~C Na!"BnI>@ D3t:vȀ**?ݼ 91 0&='+Zy-Ro&jmvn1pHE#Z ז&ݛކn4K b{D]?P!QwA":mT6EjDГ-^b\B{=.Ưl }?kwq)aAÀ>>CLSŞ(0{x"D Ito? Ng]G97Kc)&em[.|2 Y&!ctUZpōڄR+rR~ikGu˃M(Fim J(kP. C@cH%s(9o[)lB^cg0%J/}3(B5$;X^eGD, p!#`WaGL cdP V30a8tO_&|Kp$lJ4 @"%65<*̔(Ϫ"JB3g(*R-D )22M/RD~C7(pa6)${(eST/1T,[z#bxޑEKh_mfYo=8 9m&{E*|o{>5S:3})n'XĆ\a}UA aJ)Gƪk{ٞ~ɲ FôoqoN: ) {þ=1Q6kl4l%xӨuZ{JeH+'6Th$`A`1Vx;# -z͞:4wit~e~w8EUgo >Tڽط:Ԓ NJ'ۖ\oÓWڲZ q N)%zl= dbo X0ccSmY|U[8kfD1[6RcܳmY{YYQǁAjIfy:(8:8CnCH#-MƴrNډjPF%:bT"TR.&_=l¡dD&bnk [ 8 WTu33H& AuO&Ѱ?fsh_1Uռ{$Y35u fʤ̅ L8**sB/N\ޱGP1ڵvqE%,M;yQ+5]u ܼ^$:e~v{/RyuƑuOŷ@G= B01ѩ?0prDFi-|s=jԜXtWh[WD!gpD>Л-wƔҶ{5R~2 " teY6/KwCif7''JcDD¼F OʟPJ;X(d-\l4Te1Rx:j'ק(o2L̃þ}zd4zq5D)ivi[F-B'wsdNf_k e|Q>hJ;ڦ؁yZOC X!Ә` " Q"_YaVXcGE)$!6{M@Vk&p|ݚeV߹CKNS }]hO3=HHk4uUM4"vn+];]<3kL޸st^8bkV(uV"JP MFYpRIW;;>IL N7-8t3`;f֪3u)*VWcc$ 3dC+|3l鮋YK|A9 Hn]MCv=kލYE<,7E#a%r,բُzVt֙'$ Ȥͩ}d#j,H2" { lȔժ.U cuW"8sՊ`*(+)!'AA$OӉ OXJn;X M|6hQҿu =z=ʫ"`$B9ʏ\nS}*XWNl `0^2JhqnO 封zًGrrjg܍ (g4GVDbW3y>r 7fM)p&L~šײBU0r  HdaD}_v06FbdUBxb/୦Ra~lVf=sȡڐZ(LD8 Gef 7"$6Ua6sUb5V+iΔ(|~8({&*cioYga3:ja/kbgLOoߨqOb !]]6߭Y^޺*"nAqͶ{cq1-GꓠykU;껫́d T{E|MIn{ @M4ҭ?a%F@r42}Y#AJ)"Y=kXl8`r2u4?:0}8POFt<+˿q+,:@L79*3c,#ꊮYPV568?^99 9POq7ʗ֞0F Y<֮Ƶ Z,P\wYQ"O%o喢vuI@N%? -9ഭT6]P]/1c/s` Akގ$ة%˸a .:.S0sReJBF/qS?ypɗz`*u:=YVDmzvB,v^#B)ȐZaq:Pf)Of!yy|śm0l\"qY,l|͝eO&-]%ά :~9ְs+,sCA56mhƔ*E'k,UC(ْ69d'F0xiCѢH@zsi0>!rLj!MYe6˚flXȀD/EoPt@!:aB"V&g^fɄeL>A8OE`yw"2>J6$k E): .{Bw]"I}Z l1,HUkMտ%btMMr*'|V1 =:љ -)8OGYwN&!66\g>?L$BYٖY Pߏ Ȟ$IN?yP)lu _)L_\։cuL@;xrkV$apLܼ]C7@V^p^Kb1 =nD-fu_$ŏ4|R=نd'~ R6o8'n.Ѷ튝*͖R{y8$CŴ9 >u'dyeG _~N;i[a`H?~Êٞź ᗝʆν-:#6[9$)3) lPMNC#lܡ2z =j_ƙsa-蕿w . 0î9D6%}bdN wmgy~cF2ՊH_\=_K@뤊L_; y'map듐>PƮ sa/?4,䇯/Rs42ސ )SPѱ΋>)gJє ʅϵq=,h=|aMc`Sܬu|XgkBQY7À~ҤkchB"46/k0-zAm9zk,?P^~o Fs}mk%+ x߼ 5f$E)@m.0A;<{ku?;VU\ӈ$z;{̨X~or.xmCklg.ɂM`پ7aS"%K֧$VZyӋ,-蓊 m6_]Aժ> PezﵸQ-+Z P\'ܟt O k4`E?0nݧ0OYYn>m;@YZ7+byY}Y1Ax:~e\1i͸FIVH`ny!hQaXcO]WlYۮn$2wv""s⭩b}:Irv mGb=V6doQ9b0E1lT>{3SDž wp'\P^4pوE pv4/8S˓Ma_ B'~k|dƦ}ۙN U»3lm(*xf*!x:UP'*?#FOӛ~ ǡ#bDػ>4He2?[0x]Pwʰl[J€ޓ[1MM;KJLm]lS%?!ocLo/]C!M:,<{H RVo4``rDb0jݸG")pRjvk/&_^,z|+FYñ`Wy-2fy 6C ; @R"[Vh+Xԡ^'A&_ԲA$xR3jW*/@A#v[f-"y7f&6-ɋmLF/ȁ `T_d{Q9ҺPԭwGv>=XhHYzޫWO!wTc]iαݷޣ/&{`9IWw+dx=5ӫ:nC%vokZXdj{MKCCgCo( V.7=pILZshoYv* CIIG }1#5cdٌwy-.埖/h 0QO{zcU3e7X>KfqrZ,(QMCc*I>ૺvH,tJ惈ce<R6o3ξe ~{cM@#kozݏ(~\%=<YkD7[p1#;$D*Tm5P贡j\!VIڭ~z8) 7q e:8nmSQOk&%[y$QjmVI3GNY'Dr7ΉjSӼ]Eo7:5Ad]Y.M l.@s;N,BϜG oLl ƨ=3Zu+܂<"9v4b*1qڽ>Y{k2^ыVիRS4`7́M1U!ÇC`͙}21_] `J=ᢴ@^NIŐ#oh)<Ř! mf(ɿ^ mh^O)abKgkIڦzF+ʤ9 ʐ-"$VG?wTS <Z-h51٦CyB3(G( `>{\x̍j34 QiF)Ӵ&]rRjA8{M`w^OWҝ+c*|NZ'7| B7hy]J෾ݙB*Ymagz2-d.6:HH򡄡CLj5dbY9Du j aμ}{¨y$!h]֭kZad3/Rѵ`~#:d8| uChtTI}u3f)& Ft5`">}H@SRKRw:J-Xg p!D$vW6l5֠H-ٽ'fk> z>X^RPMֳщ!&RasnLv?Ŋ iT˿&9|ei;3`2elڀx.Q+Zb̨?zĸv  Zg53?ٿj C吻v\d-߶gDVP@0]l-[fk;]w)a}FyKV7A[Û1,)k ոmmKCnѶC~c'{\ kaf1*G(Ug1b~X]$/PҎcq-"#d :'#n±8#`JɑǺ@HϺP.kxAġP&qd$k:AG5Lx4 LOu_40զp<40?i(kE< ,Ig'1D 9wѝ$?P^(?gLj !C9d"),Zx5 /@FnT@Дzu]GL~?=Pd4s{4U5^rtR"SU5Ey60lټR\Q#ս%}~0Uѡ4U 8HCH޼ꖞGp{b&w8WK>BPYAͣCx.`;y#m8 NCU '{%kqk6p1 #RePax lV[xN&V2 ta_UNh2;2tŕe| f؜@U>l܄vCOni `[oI0f~E/#0m˷6zzqɺSE5at|hqjmVW:&rXKo籼 ֏ zYl*{lЋB`h(P+H&!z>=1,HQփnjE#.PÃnзΩUm-?u6Nփ(.Yt0Z2c4Q4ok1 x$c®QKe`6Fe>ΤԿH&1$'C{gVOЃ򼦏v YMt 5ފy^F۸H!1E;dj ~ߐ]V/2c)֊-s ';JLe4m2/_KLS6>xk^1p߿ ţɖ`9=?faFYUUH|yU2l3 Ӷ P?,uO M!"(ќz{H;+,-:G B]>h R>7l G"xV}$/$ mq^-(5OKtE6'A&o ǐN٦Q]mǪ@ChU%?@W^ֺ~]) x{ Կ'χG s}w#Mz s\IT´/aDYh:V ZX!(͚vB2-0Lhigj>EaDg&sv$w֔i?C08"tt4PewqіC"'W/2P#x;~^@sE;#"V4ւ,k4FJ*$':=ƪtzם U&%a̒X,-"{ĩX^'34Req'ӌL^Ԯ:[nc2F 1DOЖxub$>onIx{D-2qcQx!smvdb= j^ 䝳S11>8{=(ղ>@c,6H(`ח^Gմ'P^PjZ "3d*[$oΛa+Mg;I̛.OKs֎jp4=q!CU BXLƔ! z~ it`QDW){ljv._EyaƕޙA5UV`9xr}ɝ!98OoPsq6E ɨC6`#,ENVmV}`x%9YUNֶR;FaeMV@zAM~f*s:ԗ qRP.1T]; 'fefU/7U.mulŸ`dJ'_[/| 2dAo ~"W_IF(5$+D,ʉw//;5Ʌfǝm  i#`דV:M]o-RCf5aȅԋd$cYcP-I&.\MB!d@Xh(`Fa+}bRvS3i 瞱. .\#j?+ #RTWƻM$]FIrt ]thZ .:$ &h_ P #o!\s]t' fWH? j֏C]-aS{]5Y#Aswk (hqyglHh4RhҿhwTGu$Lv̮EL*DCHSwI_y{I {>f])Nm1'p@kXb=>&1M+[O U,7X@w,z5mfKFnuڜt}VYεѤs/p^"P%v1fتckX$ wY@^Ҍ+=܊%dIDdCnL[.jG|?Aċ߶Tӻ"jCfɩNs+}uր{W) eVi`H|jt*DRP@*yjK <DP!K#Q7jΓ8VY6N4t~F@Χ,a2?"WIB|2s6t؈O52@rtmM4y(GB\D ƍ֭亣݊_v-C14SHju.keB:[/+zKp1}H7'&L]C<ԍni|jRHy8n\m*؁QoOgPM!oNA.Hl beֺ/#5}cRށEY[4-%Z~=^h`Duֵ,4pZ8XZlkU(n2I7A8x̉N1GR([a9kR2e58V8ƕZsɳ%H`͎ۋKm%$>vf{h|HӋ'0W b DJe0_0 ir.UgQyeLp͓.Bd0Gf~&3=TP-Dg曛ȇg0rΙ{+⁠ΌuQnI#@V8JYy㇥H'm]# bK^߫3ˏ^(>KX)f mt,5{FӟA|*O@3 XNlZ(໣]VcO tܢ,$vvubXtxA_j9!5zI uw|2} =vMu+]g v&@J-1 K`7*L@{RU=QiSScJS66+ZG^Y{A9nSVELwّtIrU_NOjixm?뛽hUFPJ 򂝁l#[x<V$OEs: _k5QUZ3{ $%;\-7?jIbts%֐GҢb [E0!^ki}}ITmN?)CMDހd{.qњJ+R>nrw$%.w?v&VFj`gnFVָ\/L(*+mfv g΄2.Yv :^;:(L`Lm|9z;Yі`t4'6A-Ffb~۹<,[M9$Nl{O|~hE>?R8tp iIL5zLKԣO-0H[&,LM t!1"b' A:pLG8 ;g(.D1Բ ʃ! Nu9_`fޒ9`4Ov5!:?t(.?@-$̬:H]:ˑAdžuKKH`0F2i9.e!N ;Ƥ aYI箧B2sUn^ K+;E*W8eN6ϙ 7s1b˶ym*i@ͤNj(˰J$N} 9ˣg+# I]s?(?hbLcxHq2gNM m^ݥwpcZC*wRw1hS_!ٍ L+KM=M).0Dil:$SD"^S.}gzBL<2pM4e ҹþ/6B)5mSZ*;(NBp;޹Ya:Fp@o`HL?f*ѓPl6XS,Av& arxK% X}f?Od&jHSmX+\A遬! z/!4U7L[ -!m.0)B#r3E0'!S={!/-e[RN3Sd?rBebS5746j9ma.֬ z4cd_B΄_%GFYzs)OAUQmaCT22ȥRL Cnot߹j*%^_v7)öo)RLtkgA:̭C_RZRj)Z%.y)+WGYs ߶yz& AWH0 3Y(A1{#31ހJ6Xk&8S3@ :O@ 30=sW$jHnvp) kq|Cyf,nn[:ܝaL7UVֹk{ުu ':0K^;?׊.=d4Ddi&L5H 5.yGqB)^>:v(]ӓ]we^\EXb \a#}!5F$+$Gj4Kqw]YgKv:- }I9,mE|9u" 'S ubb~Atpfِo]mpM[O]q v/`)d"LpM|.r_ ۏg\ҞHɭG[lVO`DGֆs< %Վ {L?t0@ތU{TP@ nQuD'ˣLԠo<̀)o*F'mEC(O6U]z'Q}K` =#4'trk@΃gѡ_Y!H v;iI1̄asKY0k)`NZi I4hll7 +pFKVwy:Dk"^jңOmZ Q4'h{2!6>;CY٢3~5}{ U{eױ אyN'ɬ֎׉%wv :es͡3iEβ'4\쒡Rʍݖr=ԭN_Y$%M5 RwB: o 8)ߡ|ED8%u!HuEsgшV`/v-yrnc-UY^^2 ?[znp 1 GvKCRU64{iRat]8E -QZh' [~Lm ϶TaËʴ~+ɫ-j:zl%ԶNd RN,T&5LUlr{WGC#f% ;$!\8s!3@@?uT">Ϩz g3 E`,{_꟞sb"qU٢~f~=^_RۖRRZ0`鵢VVRBeOgdprGܻ -^$Èk~L} Yt7ˊ܇Kڟ.U5Bbm< K !j|Eo6N`Z ٬Lشc VxXO x %vL=p n&ofoJ oI1!XJ䨫b, QIՅN#3"_h h-m 2Vt ~W8%0FM-]J>7Xuuk@6^Ԍ->1 WcXr~i*oGf/ 1Բ'!Z%c0'sK?8OpKFisp\zd086tMTip3oC_Go5'szdfL aj:O&l6v\0(ݿ9iio=Ԟؼl,(rlV:j2\myn_cJI}бol!kWGYY[D-C9@t1L %)H#-KN[m$4z*<.LZ{<@wOHW@dZSV;f$&wkDzesE8e6vj`ilύcW(=MôY)|[;z MڎĕjE2P`ThH#ˏ=o:٠88lj2/@䓪:2g;JV$kRE&I| ^SQڂ# 0 f^N`d+ ̎Q" *Cď-̫d1( xU!KހX68m\dag~ U^fY[7ܣ%b9}3 /$&Z3eZ_[UY8 e&,[C-PS !J-Hի"Ux)G gƷcdC!D5%A {K<kȅ@*шo7l}PvgW8,Enh,,b7r8k-{C +y3,2ȁsD`Ur  L`>54(㯂#+!R`Yo5>to*ɖ]]L!v ?k}b"7ei #}H(Usa `,T%ˇE_>#̩HQK7W{0MUbǓSNj L)s(r#2C`m* 0.;&e1*x 36ѢN[Wo&ʵLaxSNX_Lbj_£NxmJ)~* 65qIݱdJBnmjKM?u~"9mQ'4}( eNH=߂VY6ɚ=\}XRCG"W#V 4P7zm&Ρ bsg#wAo4^^Ir=oj1crMμxo>b]aH+ބtf2\G109P#u:RO|e4oMmz݅m_vM zO9;ϖCƩ7$I-t^W2*̉j& 6[} v[؊?ުĉ˸gmdJ[[aWq̝X[zf6Ā@%6 õ۽TZpvbqS߂.+k sF̘Ɉ P9BZA9E.2'g>rr]k-mC \.#)kjC-luMćfqO"H:(h]q*Kˎ,]mBLUy2z̠_utZ6i~`=$Ԙra\ޘ"nVQ+eY"O )( {,Y7[8j T3CwDAFQ; hR=Լ &TَOXxwȣA>9HbHkmxoV2Q; #^qb*fSJ=1@A\߬X&[V aP6]qtZ,ū*W=9A{vMi`ky(U %|M/CbEy # 1fMpf=RƠ[^mVp响|d8fZ9Y 97b rGXBɖ.FVP^W+U-G52RW 4\$G]g}pҢ*^s>BcXO2C1(=v"F:]ߕLfmaL*-Q\>\dIDϺqh3dVrF_]AQvacֵ$'`d}OKWI%Iu+;k΀Gx)tz}.@P'ɧgj0[A`“Eב0252.\ϔUA1՚7O5]w07 )+^,]XUXXX 52ׁz 2I#M0Pn C!jaq6 84 YZ