sssd-dbus-1.11.7-5.fc20$>A}GwyeKLcN>90? d   : ,@^dl     6Tp-X-s-(89 :2G`HxIXY\]^Fbdefltuv wLxdy|(Csssd-dbus1.11.75.fc20The D-Bus responder of the SSSDProvides the D-Bus responder of the SSSD, called the InfoPipe, that allows the information from the SSSD to be transmitted over the system bus.Tsbuildvm-24.phx2.fedoraproject.orgFedora ProjectFedora ProjectGPLv3+Fedora ProjectApplications/Systemhttp://fedorahosted.org/sssd/linuxi686D__K큤A큤TrTrTrTsT1Tr7a2f1b528fa9e570030b979be80ebd03eb917c041e9c824587e4de825832a08df9de36294941a9f3849fa8690af9c6c08ffbdbcc0f413f5ca41e867483fc509e7d82e0aaad654e3d442c54dfd4b38f6225125e86ee446132882e4c115e9fc2fe8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b903cefeea4d134b139b6dea27f8528497515f9fd3c9f27704b89738d90acad94e50rootrootrootrootrootrootrootrootrootrootrootrootsssd-1.11.7-5.fc20.src.rpmsssd-dbussssd-dbus(x86-32)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@   @ libc.so.6libc.so.6(GLIBC_2.0)libc.so.6(GLIBC_2.1)libc.so.6(GLIBC_2.1.3)libc.so.6(GLIBC_2.2)libc.so.6(GLIBC_2.3.4)libc.so.6(GLIBC_2.4)libcollection.so.2libdbus-1.so.3libdhash.so.1libdl.so.2libglib-2.0.so.0libini_config.so.3liblber-2.4.so.2libldap-2.4.so.2libldb.so.1libldb.so.1(LDB_0.9.10)libnspr4.solibnss3.solibnssutil3.solibpcre.so.1libplc4.solibplds4.solibpopt.so.0libpopt.so.0(LIBPOPT_0)libpthread.so.0libpthread.so.0(GLIBC_2.0)libsmime3.solibssl3.solibsss_child.solibsss_crypt.solibsss_debug.solibsss_util.solibtalloc.so.2libtalloc.so.2(TALLOC_2.0.2)libtdb.so.1libtdb.so.1(TDB_1.2.1)libtevent.so.0libtevent.so.0(TEVENT_0.9.9)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rtld(GNU_HASH)sssd-commonrpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-11.11.7-5.fc205.2-14.11.3T T@T$T$TwT Sh@Sh@SG@SCS!SSRRpRpR^R[RSRNREs@RD!R@R@RNQB@Q@QQQکQQQo@Q)@Q@QQ@Q@QbQbQV@Q'@QQQQnQZ@QU@Q0@QQQ@Q@QQ @QQh@PP@P@P@Pz@Pz@PqnPl(PaPaPS@PH@PDPM>M2@MMzMx@Mj - 1.11.1-5Jakub Hrozek - 1.11.7-4Jakub Hrozek - 1.11.7-3Jakub Hrozek - 1.11.7-2Jakub Hrozek - 1.11.7-1Jakub Hrozek - 1.11.6-3Jakub Hrozek - 1.11.6-2Jakub Hrozek - 1.11.6-1Jakub Hrozek - 1.11.5.1-1Jakub Hrozek - 1.11.5-1Sumit Bose - 1.11.4-3Jakub Hrozek - 1.11.4-2Jakub Hrozek - 1.11.4-1Jakub Hrozek - 1.11.3-2Jakub Hrozek - 1.11.3-1Jakub Hrozek - 1.11.2-1Sumit Bose - 1.11.1-5Sumit Bose - 1.11.1-4Jakub Hrozek - 1.11.1-3Jakub Hrozek - 1.11.1-2Jakub Hrozek - 1.11.1-1Jakub Hrozek - 1.11.0-3Jakub Hrozek - 1.11.0-2Jakub Hrozek - 1.11.0-1Jakub Hrozek - 1.11.0-0.4.beta2Fedora Release Engineering - 1.11.0-0.3.beta2Jakub Hrozek - 1.11.0.2beta2Jakub Hrozek - 1.11.0.1beta2Jakub Hrozek - 1.10.1-1Jakub Hrozek - 1.10.0-17Stephen Gallagher - 1.10.0-16Stephen Gallagher - 1.10.0-15Stephen Gallagher - 1.10.0-14Jakub Hrozek - 1.10.0-13Dan Horák - 1.10.0-12.beta2Jakub Hrozek - 1.10.0-11.beta2Jakub Hrozek - 1.10.0-10.beta2Jakub Hrozek - 1.10.0-9.beta2Jakub Hrozek - 1.10.0-8.beta1Jakub Hrozek - 1.10.0-8.beta2Jakub Hrozek - 1.10.0-7.beta1Jakub Hrozek - 1.10.0-6.beta1Jakub Hrozek - 1.10.0-5.beta1Jakub Hrozek - 1.10.0-4.beta1Jakub Hrozek - 1.10.0-3.beta1Jakub Hrozek - 1.10.0-2.alpha1Jakub Hrozek - 1.10.0-1.alpha1Jakub Hrozek - 1.9.5-10Stephen Gallagher - 1.9.4-9Jakub Hrozek - 1.9.4-8Jakub Hrozek - 1.9.4-7Jakub Hrozek - 1.9.4-6Jakub Hrozek - 1.9.4-5Jakub Hrozek - 1.9.4-4Jakub Hrozek - 1.9.4-3Jakub Hrozek - 1.9.4-2Jakub Hrozek - 1.9.4-1Jakub Hrozek - 1.9.3-1Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-23Jakub Hrozek - 1.9.0-22.rc1Jakub Hrozek - 1.9.0-21.beta7Jakub Hrozek - 1.9.0-20.beta6Jakub Hrozek - 1.9.0-19.beta6Jakub Hrozek - 1.9.0-18.beta6Jakub Hrozek - 1.9.0-17.beta6Jakub Hrozek - 1.9.0-16.beta6Jakub Hrozek - 1.9.0-14.beta6Jakub Hrozek - 1.9.0-13.beta6Fedora Release Engineering - 1.9.0-13.beta5Jakub Hrozek - 1.9.0-12.beta5Stephen Gallagher - 1.9.0-11.beta4Jakub Hrozek - 1.9.0-10.beta4Jakub Hrozek - 1.9.0-9.beta4Stephen Gallagher - 1.9.0-8.beta3Stephen Gallagher - 1.9.0-7.beta2Stephen Gallagher - 1.9.0-6.beta2Stephen Gallagher - 1.9.0-5.beta2Stephen Gallagher - 1.9.0-4.beta1Stephen Gallagher - 1.9.0-3.beta1Stephen Gallagher - 1.9.0-2.beta1Stephen Gallagher - 1.9.0-1.beta1Stephen Gallagher - 1.8.3-11Stephen Gallagher - 1.8.2-10Stephen Gallagher - 1.8.1-9Stephen Gallagher - 1.8.1-8Stephen Gallagher - 1.8.1-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5.beta3Stephen Gallagher - 1.8.0-4.beta3Petr Pisar - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-1.beta2Stephen Gallagher - 1.8.0-1.beta1Stephen Gallagher - 1.7.0-5Stephen Gallagher - 1.7.0-4Stephen Gallagher - 1.7.0-3Fedora Release Engineering - 1.7.0-2Stephen Gallagher - 1.7.0-1Stephen Gallagher - 1.6.4-1Stephen Gallagher - 1.6.3-5Stephen Gallagher - 1.6.3-4Jakub Hrozek - 1.6.3-3Stephen Gallagher - 1.6.3-2Stephen Gallagher - 1.6.3-1Fedora Release Engineering - 1.6.2-5Stephen Gallagher - 1.6.2-4Stephen Gallagher - 1.6.2-3Stephen Gallagher - 1.6.2-2Stephen Gallagher - 1.6.2-1Stephen Gallagher - 1.6.1-1Stephen Gallagher - 1.6.0-2Stephen Gallagher - 1.6.0-1Stephen Gallagher - 1.5.11-2Stephen Gallagher - 1.5.10-1Stephen Gallagher - 1.5.9-1Stephen Gallagher - 1.5.8-1Stephen Gallagher - 1.5.7-3Stephen Gallagher - 1.5.7-2Stephen Gallagher - 1.5.7-1Stephen Gallagher - 1.5.6.1-1Stephen Gallagher - 1.5.6-1Stephen Gallagher - 1.5.5-5Stephen Gallagher - 1.5.5-4Stephen Gallagher - 1.5.5-3Stephen Gallagher - 1.5.5-2Stephen Gallagher - 1.5.5-1Stephen Gallagher - 1.5.4-1Stephen Gallagher - 1.5.3-2Stephen Gallagher - 1.5.3-1Stephen Gallagher - 1.5.2-1Simo Sorce - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Fedora Release Engineering - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.4.1-3Stephen Gallagher - 1.4.1-2Stephen Gallagher - 1.4.1-1Stephen Gallagher - 1.4.0-2Stephen Gallagher - 1.4.0-1Stephen Gallagher - 1.3.0-35Stephen Gallagher - 1.3.0-34Stephen Gallagher - 1.3.0-33Stephen Gallagher - 1.3.0-32Stephen Gallagher - 1.3.0-31Stephen Gallagher - 1.3.0-30David Malcolm - 1.2.91-21Stephen Gallagher - 1.2.91-20Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- sssd_be crashes in nested LDAP code in case of ldap error - Resolves: rhbz#1126557- Backport an upstream patch to ignore PAC verification failures- Fix a sysdb lookup error that resulted in IFP not returning subdomain users- update the libldb requirement to 1.1.17, which is required by Samba- New upstream release 1.11.7 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.7- Start before systemd-user-sessions.service and nss-user-lookup.target- Do not crash on resolving group SIDs in IPA server mode- New upstream release 1.11.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.6- New upstream release 1.11.5.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5.1- New upstream release 1.11.5 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5- Handle new error code for IPA password migration- Include couple of patches from upstream 1.11 branch- New upstream release 1.11.4 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.4- Handle OTP response from FreeIPA server gracefully- New upstream release 1.11.3 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.3- New upstream release 1.11.2 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.2- Fix potential crash with external groups in trusted IPA-AD setup- Add plugin for cifs-utils - Resolves: rhbz#998544- Fix failover from Global Catalog to LDAP in case GC is not available- Remove the ability to create public ccachedir (#1015089)- New upstream release 1.11.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.1- Fix multicast checks in the SSSD - Resolves: rhbz#1007475 - The multicast check is wrong in the sudo source code getting the host info- Backport simplification of ccache management from 1.11.1 - Resolves: rhbz#1010553 - sssd setting KRB5CCNAME=(null) on login- New upstream release 1.11.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0- Resolves: #967012 - [abrt] sssd-1.9.5-1.fc18: sss_mmap_cache_gr_invalidate_gid: Process /usr/libexec/sssd/sssd_nss was killed by signal 11 (SIGSEGV) - Resolves: #996214 - sssd proxy_child segfault- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild- Resolves: #906427 - Do not use lib in specfile for the nss and pam libraries- New upstream release 1.11 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0beta2- New upstream release 1.10.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.1- sssd-tools should require sssd-common, not sssd- Move sssd_pac to the sssd-ipa and sssd-ad subpackages - Trim out RHEL5-specific macros since we don't build on RHEL 5 - Trim out macros for Fedora older than F18 - Update libldb requirement to 1.1.16 - Trim RPM changelog down to the last year- Move sssd_pac to the sssd-krb5 subpackage- Fix Obsoletes: to account for dist tag - Convert post and pre scripts to run on the sssd-common subpackage - Remove old conversion from SYSV- New upstream release 1.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0- the cmocka toolkit exists only on selected arches- Apply a number of patches from upstream to fix issues found post-beta, in particular: -- segfault with a high DEBUG level -- Fix IPA password migration (upstream #1873) -- Fix fail over when retrying SRV resolution (upstream #1886)- Only BuildRequire libcmocka on Fedora- Fix typo in Requires that prevented an upgrade (#973916) - Use a hardcoded version in Conflicts, not less-than-current- Enable hardened build for RHEL7- New upstream release 1.10 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta2 - BuildRequire libcmocka-devel in order to run all upstream tests during build - BuildRequire libnl3 instead of libnl1 - No longer BuildRequire initscripts, we no longer use /sbin/service - Remove explicit krb5-libs >= 1.10 requires; this platform doensn't carry any older krb5-libs version- Apply a couple of patches from upstream git that resolve crashes when ID mapping object was not initialized properly but needed later- Resolves: rhbz#961357 - Missing dyndns_update entry in sssd.conf during realm join - Resolves: rhbz#961278 - Login failure: Enterprise Principal enabled by default for AD Provider - Resolves: rhbz#961251 - sssd does not create user's krb5 ccache dir/file parent directory when logging in- BuildRequire recent libini_config to ensure consistent behaviour- Explicitly Require libini_config >= 1.0.0.1 to work around a SONAME bug in ding-libs - Fix SSH integration with fully-qualified domains - Add the ability to dynamically discover the NetBIOS name- New upstream release 1.10 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta1- Add a patch to fix krb5 ccache creation issue with krb5 1.11- New upstream release 1.10 alpha1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0alpha1- Add a patch to fix krb5 unit tests- Split internal helper libraries into a shared object - Significantly reduce disk-space usage- Fix the Kerberos password expiration warning (#912223)- Do not write out dots in the domain-realm mapping file (#905650)- Include upstream patch to build with krb5-1.11- Rebuild against new libldb- Fix build with new automake versions- Recreate Kerberos ccache directory if it's missing - Resolves: rhbz#853558 - [sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir does not exist- Fix changelog dates to make F19 rpmbuild happy- New upstream release 1.9.4- New upstream release 1.9.3- Resolve groups from AD correctly- Check the validity of naming context- Move the sss_cache tool to the main package- Include the 1.9.2 tarball- New upstream release 1.9.2- New upstream release 1.9.1- require the latest libldb- Use mcpath insted of mcachepath macro to be consistent with upsteam spec file- New upstream release 1.9.0- New upstream release 1.9.0 rc1- New upstream release 1.9.0 beta7 - obsoletes patches #1-#3- Rebuild against libldb 1.12- Rebuild against libldb 1.11- Change the default ccache location to DIR:/run/user/${UID}/krb5cc and patch man page accordingly - Resolves: rhbz#851304- Rebuild against libldb 1.10- Only create the SELinux login file if there are SELinux mappings on the IPA server- Don't discard HBAC rule processing result if SELinux is on Resolves: rhbz#846792 (CVE-2012-3462)- New upstream release 1.9.0 beta 6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta6 - A new option, override_shell was added. If this option is set, all users managed by SSSD will have their shell set to its value. - Fixes for the support for setting default SELinux user context from FreeIPA. - Fixed a regression introduced in beta 5 that broke LDAP SASL binds - The SSSD supports the concept of a Primary Server and a Back Up Server in failover - A new command-line tool sss_seed is available to help prime the cache with a user record when deploying a new machine - SSSD is now able to discover and save the domain-realm mappings between an IPA server and a trusted Active Directory server. - Packaging changes to fix ldconfig usage in subpackages (#843995) - Rebuild against libldb 1.1.9- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- New upstream release 1.9.0 beta 5 - Obsoletes the patch for missing DP_OPTION_TERMINATOR in AD provider options - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta5 - Many fixes for the support for setting default SELinux user context from FreeIPA, most notably fixed the specificity evaluation - Fixed an incorrect default in the krb5_canonicalize option of the AD provider which was preventing password change operation - The shadowLastChange attribute value is now correctly updated with the number of days since the Epoch, not seconds- Fix broken ARM build - Add missing DP_OPTION_TERMINATOR in AD provider options- Own several directories create during make install (#839782)- New upstream release 1.9.0 beta 4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta4 - Add a new AD provider to improve integration with Active Directory 2008 R2 or later servers - SUDO integration was completely rewritten. The new implementation works with multiple domains and uses an improved refresh mechanism to download only the necessary rules - The IPA authentication provider now supports subdomains - Fixed regression for setups that were setting default_tkt_enctypes manually by reverting a previous workaround.- New upstream release 1.9.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta3 - Add a new PAC responder for dealing with cross-realm Kerberos trusts - Terminate idle connections to the NSS and PAM responders- Switch unicode library from libunistring to Glib - Drop unnecessary explicit Requires on keyutils - Guarantee that versioned Requires include the correct architecture- Fix accidental disabling of the DIR cache support- New upstream release 1.9.0 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta2 - Add support for the Kerberos DIR cache for storing multiple TGTs automatically - Major performance enhancement when storing large groups in the cache - Major performance enhancement when performing initgroups() against Active Directory - SSSDConfig data file default locations can now be set during configure for easier packaging- Fix regression in endianness patch- Rebuild SSSD against ding-libs 0.3.0beta1 - Fix endianness bug in service map protocol- Fix several regressions since 1.5.x - Ensure that the RPM creates the /var/lib/sss/mc directory - Add support for Netscape password warning expiration control - Rebuild against libldb 1.1.6- New upstream release 1.9.0 beta 1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta1 - Add native support for autofs to the IPA provider - Support for ID-mapping when connecting to Active Directory - Support for handling very large (> 1500 users) groups in Active Directory - Support for sub-domains (will be used for dealing with trust relationships) - Add a new fast in-memory cache to speed up lookups of cached data on repeated requests- New upstream release 1.8.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.3 - Numerous manpage and translation updates - LDAP: Handle situations where the RootDSE isn't available anonymously - LDAP: Fix regression for users using non-standard LDAP attributes for user information- New upstream release 1.8.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.2 - Several fixes to case-insensitive domain functions - Fix for GSSAPI binds when the keytab contains unrelated principals - Fixed several segfaults - Workarounds added for LDAP servers with unreadable RootDSE - SSH knownhostproxy will no longer enter an infinite loop preventing login - The provided SYSV init script now starts SSSD earlier at startup and stops it later during shutdown - Assorted minor fixes for issues discovered by static analysis tools- Don't duplicate libsss_autofs.so in two packages - Set explicit package contents instead of globbing- Fix uninitialized value bug causing crashes throughout the code - Resolves: rhbz#804783 - [abrt] Segfault during LDAP 'services' lookup- New upstream release 1.8.1 - Resolve issue where we could enter an infinite loop trying to connect to an auth server - Fix serious issue with complex (3+ levels) nested groups - Fix netgroup support for case-insensitivity and aliases - Fix serious issue with lookup bundling resulting in requests never completing - IPA provider will now check the value of nsAccountLock during pam_acct_mgmt in addition to pam_authenticate - Fix several regressions in the proxy provider - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#799031 - --debug option for sss_debuglevel doesn't work- New upstream release 1.8.0 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental) - Include the IPA AutoFS provider - Fixed several memory-corruption bugs - Fixed a regression in group enumeration since 1.7.0 - Fixed a regression in the proxy provider - Resolves: rhbz#741981 - Separate Cache Timeouts for SSSD - Resolves: rhbz#797968 - sssd_be: The requested tar get is not configured is logged at each login - Resolves: rhbz#754114 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - Resolves: rhbz#786957 - sssd and kerberos should change the default location for create the Credential Cashes to /run/usr/USERNAME/krb5cc- Change default kerberos credential cache location to /run/user/- New upstream release 1.8.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta3 - Fixed a regression in group enumeration since 1.7.0 - Fixed several memory-corruption bugs - Finalized the ABI for the autofs support - Fixed a regression in the proxy provider- Rebuild against PCRE 8.30- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta2 - Fix two minor manpage bugs - Include the IPA AutoFS provider- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta1 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental)- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - fix netgroups and sudo as well- Fixes a serious memory hierarchy bug causing unpredictable behavior in the LDAP provider.- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- New upstream release 1.7.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.7.0 - Support for case-insensitive domains - Support for multiple search bases in the LDAP provider - Support for the native FreeIPA netgroup implementation - Reliability improvements to the process monitor - New DEBUG facility with more consistent log levels - New tool to change debug log levels without restarting SSSD - SSSD will now disconnect from LDAP server when idle - FreeIPA HBAC rules can choose to ignore srchost options for significant performance gains - Assorted performance improvements in the LDAP provider- New upstream release 1.6.4 - Rolls up previous patches applied to the 1.6.3 tarball - Fixes a rare issue causing crashes in the failover logic - Fixes an issue where SSSD would return the wrong PAM error code for users that it does not recognize.- Rebuild against libldb 1.1.4- Resolves: rhbz#753639 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758425 - LDAP failover not working if server refuses connections- Rebuild for libldb 1.1.3- Resolves: rhbz#752495 - Crash when apply settings- New upstream release 1.6.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.3 - Fixes a major cache performance issue introduced in 1.6.2 - Fixes a potential infinite-loop with certain LDAP layouts- Rebuilt for glibc bug#747377- Change selinux policy requirement to Conflicts: with the old version, rather than Requires: the supported version.- Add explicit requirement on selinux-policy version to address new SBUS symlinks.- Remove %files reference to sss_debuglevel copied from wrong upstreeam spec file.- Improved handling of users and groups with multi-valued name attributes (aliases) - Performance enhancements Initgroups on RFC2307bis/FreeIPA HBAC rule processing - Improved process-hang detection and restarting - Enabled the midpoint cache refresh by default (fewer cache misses on commonly-used entries) - Cleaned up the example configuration - New tool to change debug level on the fly- New upstream release 1.6.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.1 - Fixes a serious issue with LDAP connections when the communication is dropped (e.g. VPN disconnection, waking from sleep) - SSSD is now less strict when dealing with users/groups with multiple names when a definitive primary name cannot be determined - The LDAP provider will no longer attempt to canonicalize by default when using SASL. An option to re-enable this has been provided. - Fixes for non-standard LDAP attribute names (e.g. those used by Active Directory) - Three HBAC regressions have been fixed. - Fix for an infinite loop in the deref code- Build with _hardened_build macro- New upstream release 1.6.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.0 - Add host access control support for LDAP (similar to pam_host_attr) - Finer-grained control on principals used with Kerberos (such as for FAST or - validation) - Added a new tool sss_cache to allow selective expiring of cached entries - Added support for LDAP DEREF and ASQ controls - Added access control features for Novell Directory Server - FreeIPA dynamic DNS update now checks first to see if an update is needed - Complete rewrite of the HBAC library - New libraries: libipa_hbac and libipa_hbac-python- New upstream release 1.5.11 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.11 - Fix a serious regression that prevented SSSD from working with ldaps:// URIs - IPA Provider: Fix a bug with dynamic DNS that resulted in the wrong IPv6 - address being saved to the AAAA record- New upstream release 1.5.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.10 - Fixed a regression introduced in 1.5.9 that could result in blocking calls - to LDAP- New upstream release 1.5.9 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.9 - Support for overriding home directory, shell and primary GID locally - Properly honor TTL values from SRV record lookups - Support non-POSIX groups in nested group chains (for RFC2307bis LDAP - servers) - Properly escape IPv6 addresses in the failover code - Do not crash if inotify fails (e.g. resource exhaustion) - Don't add multiple TGT renewal callbacks (too many log messages)- New upstream release 1.5.8 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.8 - Support for the LDAP paging control - Support for multiple DNS servers for name resolution - Fixes for several group membership bugs - Fixes for rare crash bugs- Resolves: rhbz#706740 - Orphaned links on rc0.d-rc6.d - Make sure to properly convert to systemd if upgrading from newer - updates for Fedora 14- Fix segfault in TGT renewal- Resolves: rhbz#700891 - CVE-2011-1758 sssd: automatic TGT renewal overwrites - cached password with predicatable filename- Re-add manpage translations- New upstream release 1.5.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.6 - Fixed a serious memory leak in the memberOf plugin - Fixed a regression with the negative cache that caused it to be essentially - nonfunctional - Fixed an issue where the user's full name would sometimes be removed from - the cache - Fixed an issue with password changes in the kerberos provider not working - with kpasswd- Resolves: rhbz#697057 - kpasswd fails when using sssd and - kadmin server != kdc server - Upgrades from SysV should now maintain enabled/disabled status- Fix %postun- Fix systemd conversion. Upgrades from SysV to systemd weren't properly - enabling the systemd service. - Fix a serious memory leak in the memberOf plugin - Fix an issue where the user's full name would sometimes be removed - from the cache- Install systemd unit file instead of sysv init script- New upstream release 1.5.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.5 - Fixes for several crash bugs - LDAP group lookups will no longer abort if there is a zero-length member - attribute - Add automatic fallback to 'cn' if the 'gecos' attribute does not exist- New upstream release 1.5.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.4 - Fixes for Active Directory when not all users and groups have POSIX attributes - Fixes for handling users and groups that have name aliases (aliases are ignored) - Fix group memberships after initgroups in the IPA provider- Resolves: rhbz#683267 - sssd 1.5.1-9 breaks AD authentication- New upstream release 1.5.3 - Support for libldb >= 1.0.0- New upstream release 1.5.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.2 - Fixes for support of FreeIPA v2 - Fixes for failover if DNS entries change - Improved sss_obfuscate tool with better interactive mode - Fix several crash bugs - Don't attempt to use START_TLS over SSL. Some LDAP servers can't handle this - Delete users from the local cache if initgroups calls return 'no such user' - (previously only worked for getpwnam/getpwuid) - Use new Transifex.net translations - Better support for automatic TGT renewal (now survives restart) - Netgroup fixes- Rebuild sssd against libldb 1.0.2 so the memberof module loads again. - Related: rhbz#677425- Resolves: rhbz#677768 - name service caches names, so id command shows - recently deleted users- Ensure that SSSD builds against libldb-1.0.0 on F15 and later - Remove .la for memberOf- Fix memberOf install path- Add support for libldb 1.0.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix nested group member filter sanitization for RFC2307bis - Put translated tool manpages into the sssd-tools subpackage- Restore Requires: cyrus-sasl-gssapi as it is not auto-detected during - rpmbuild- New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options -Assorted bugfixes- CVE-2010-4341 - DoS in sssd PAM responder can prevent logins- New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Solve a shutdown race-condition that sometimes left processes running - Resolves: rhbz#606887 - SSSD stops on upgrade- Log startup errors to the syslog - Allow cache cleanup to be disabled in sssd.conf- New upstream release 1.4.1 - Add support for netgroups to the proxy provider - Fixes a minor bug with UIDs/GIDs >= 2^31 - Fixes a segfault in the kerberos provider - Fixes a segfault in the NSS responder if a data provider crashes - Correctly use sdap_netgroup_search_base- Fix incorrect tarball URL- New upstream release 1.4.0 - Added support for netgroups to the LDAP provider - Performance improvements made to group processing of RFC2307 LDAP servers - Fixed nested group issues with RFC2307bis LDAP servers without a memberOf plugin - Build-system improvements to support Gentoo - Split out several libraries into the ding-libs tarball - Manpage reviewed and updated- Fix pre and post script requirements- Resolves: rhbz#606887 - sssd stops on upgrade- Resolves: rhbz#626205 - Unable to unlock screen- Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it- Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib- Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate - against LDAP- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- New upstream version 1.2.91 (1.3.0rc1) - Improved LDAP failover - Synchronous sysdb API (provides performance enhancements) - Better online reconnection detection- New stable upstream version 1.2.1 - Resolves: rhbz#595529 - spec file should eschew %define in favor of - %global - Resolves: rhbz#593644 - Empty list of simple_allow_users causes sssd service - to fail while restart. - Resolves: rhbz#599026 - Makefile typo causes SSSD not to use the kernel - keyring - Resolves: rhbz#599724 - sssd is broken on Rawhide- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code)1.11.7-5.fc201.11.7-5.fc20org.freedesktop.sssd.infopipe.confsssd_ifporg.freedesktop.sssd.infopipe.servicesssd-dbusCOPYINGsssd-ifp.5.gz/etc/dbus-1/system.d//usr/libexec/sssd//usr/share/dbus-1/system-services//usr/share/doc//usr/share/doc/sssd-dbus//usr/share/man/man5/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -m32 -march=i686 -mtune=atom -fasynchronous-unwind-tablesdrpmxz2i686-redhat-linux-gnuXML document textELF 32-bit LSB shared object, Intel 80386, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.32, BuildID[sha1]=5639dbbcff923aeac1fe48f26910615d93b1d40e, strippedASCII textdirectorytroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)(RR"R$RR&RRRRRRRR R%R!RRRRR RR R RR#R RRRRRRRRRRRR RR*?p7zXZ !PH6l]"k%j{}{&-~O~M=!Z_e~B יޣϳ.SwlcO ]eSm4FG MEW'Fi#z_FnJg/"9jt35?%d]f%մc`H'0RJjѩc:xC:pV;HOĝmz@S:Qy2E@,5*_n1v'9aMnzI&6%CP"Y\7"5)WlVnGfeJ_~%?|tLhPy5.i#U,n\aD'wnԥQ$s_?Yk٤@Z]`QfMLe_Uj$aVrD$?LXoLUO*sxOBGB҈E{2?h>b8= ir 0Z4A啷<hpr_[I|| $w9;+ ]Nf%QAz_H3M.V9*{x`S\p9:TNZj7jc%x,M9?Xmk\+b_mϷ-FGǢ>K-nuo౔Q `M( Q_coeaZ?كe)3j#[63p*ud}" w[) < +(t AU,sij K:v#.T"I-UX/ ?wQbxVkHEnK_ -)#k/0;!WN[+tK}:CM[}Jу#''x2s)UDR_$k!_&zlf+*=1Q׳0hH3M*`N2xpB $'n}Ey )pjY2- /Kh1کb.%A!|h-WD$Y6drSy*D=0m%5$EH; _lUjbE6:Lˍ_陯t*oʜKх`ymHN/OMn$+d X͸hBЙRwAXlsIWC+*p阱 pMBi;ˆw kɨ4 O+3[pAw+'=KjM"`ǒ* 3--L? cРˊ_IOF1&̸*X/Jw4a</1 uꞋ>s:/k$Y^yg4KhpޡݬNqH bV>^[ [LSTquΥO;͞3PYi$ts{Ma{\n{C[Гbmw_wCI;Bۉn-z>g/@-PnEs:-.{wyW/[ɳX6iLYXg'˙&5Fz:~['p'_l84wcCmA=pu.^S21^{@-P_>L?#o;6SIqֹo5&_BΪ .P:E IW ^so5 oi;+ N EA&y4M!M-&WH0LK 5z7)#'Tma׻m!?6\ /6$ 9h$_v;'SZ@q"=CKpJÓɛݰ䘋h7n:u*Ij_ * QcSvKi_gMQ!QjG'g#e,X(& nj_YQ)L1(l"CL ѶKΡ1g 윀gd:w)1ygƂF ['DbVU@* <P|Ш Y+$&^={^0[f%4]hvr'CHldz~ARWի[y\Γhj$; n5. 8,rؙg<^&’}jL<USdB,V$f}@%}.J %td7X̓c"$GͧJhd셺*D?Mpp0fR1QgbҝiÕ #i~N$ m he%ˊb$["_#-8^n:3$_^d`s5 .?^eth )b͒_[Jxꁤi (h?ǬhZ3/G ;".7מ/Ӑ {JQMrH6LCZzm3dۄj0vp:׏`dE]Ϯu%ݓPYV*j!4A) d[Qt+X|ԣi]$ADұM"0F^K O4?]uAx}J?;-M]iJyZxN=etfhUl5AY+L'y>OJS[dm=V8='LjFmZ|)助NL\Y+c(a@> ?2Iѱ [Y:9>1'?O̬,1ۙ;*DH,nưZ_ _#j|c .׬dGfKix1`"R^PHh+nբ.X_|]WEKDbQ,a5*Vv2xH|?vۑC *TYE>Ѐсlۉў|5`Do(E>tsc3um1e]dzxsS{yzͿ$9+oL~E=HRJ)|Nza)K993ђK=Ў;2 %IȃtJzbBϽSlv7#~:@,fyJ:/C(:W G*n`qGd.MFѐ9@Rhy=oV!*~Dx(( O(n z5:DB\toHg+%IQ!RՍU+c @8 #gugW괥EB6X%͈BdS 7."e6S||zO-GL;KSz,[w8mvr y ҈ۢ$;u&5Q͕&]@ԏ![ ? r|H!'HU/āt 5*RÖYa/ 76XQ>xtXɓtDqv>g4L,u 0⑪NtRtak'2q*>arsV$@uW5!%,PuRiT[r!$KӖ Z!wrt \,ͺ]ڒXW1OmL1Oq)H-[UFi}>~:[d8Vɦ׶v'gp`rdIV}.Lb= Ue2[욎h8K5b5ZH?*\Dzj)"S{lxhf$ŸvOCeug*9{ ~(rPNy#eiےo0ׁ}#"+~SAWW6#>,YQ{sl+*Uߴl; |Ej:~qc!2A 2\d$) Zc.KW60;]3U o<$|m$o=`*;+sԆZH@X3F&?O@5M; S&%2 m0ȼ2 c@Ցs HEב$,";!jUm^{(1Yv Nŋ H\~$&-M1_^Nm>^쿔kK7*9%d˪#.^dOꖋ"m'T>jKhCDr&^'.R۷Y~ .~?j'%,?oێ k W&$->\κݓ"M }3^][ѝ-G_%KT{:ĵ:+l5Ѥ-\W@ mvRę4Byg"Y,CMA&Ѻ>}?#XXz\&kc}I[B Gή g-UEAgSK,'Hm)S-W63G0Z7)4: U,N@f$]֝2^^\ɍ 3ff٧JDU!ݶNG<# uX~0&0G$5i` ʐ-gDdרA +zI PC#h"Gz|=OtnW@QE 2 lҝktj37NjNg lX;ۧ@A $ -sOYlSGq)փUu?(";Gt|\UP6 㗲%bƋ \ vQU0NI}17_=OM,'yc2Ir<^[OLqVf”PXR7+ D6Z%F߮peΪhA *t/g5PXE1ď!?aBrJQ]D2')+рQ+U 3&,L$+3V HԐ!1⇸[MA3|(n pud~l28kZut7ciRvݾYТ/cr/Fb비ʧg(CwV_H!I7ÇAvAʼ#5?D 9˟?_ueѷhy0}t'9Gr['#'t^61g]1F+h+䂡#gE%IҞ0mU۟Ft{̣VG/D, @a,JCSqpKhlF Ƙd" H2vGxg㙡XmS҄$QpUZ, RWnh;UAl?=QSkO5{wBVo-ЫX-'5,=Ox~]ڣ~oS&M${isاwө "TUv&tFT0x t DIJ>[:—ő$kI{(_,#f:mgt;yVߛ,?;F6L7OwP2.3ׂ@A7>,=P'a;,4&N֐{ SP*ľ,>|5 ]V6<~mѬv#í;՟o,O@d=RDX`^DSзq)N%`= nPeai|C(;;3pn"7g$sAF.b@Gh"ť$ 3N.%a(tUZ̺P/R:*wKV! G^>^.t{i鐹&htQi+H h(MP*/G‘>Qe\ױ:Z [B)wah <_& &Q{S:$%\$Ct@YN#_Lx{bZx DZJA(DA(~M"^)P|okfuH;|Gr !pE :yWHc ;&[;br)^L':&_W}p>uLS+7HsO~R2ly`L[^QU}F?ܲ+#'Hi$atg3K5/),=~TtYc &ʷQ0fwy:ٴ`fXu"ĒLVY/oK\-2 `ܐ(]ްhWWgjҦ%*DB;X'W'N<:(`A%Hh'S b} c~2J=\mƂ"<)ݿ) 6 >Z|>6뭾$>B1&I+Z4xu⓵t't(y3Tjy dy|}V ŋKS+YW@Tw[Uuj a7´d<˖DW1{؉>v #s=MoޙV^jQm쯶zcKFgEwcyf!CMZ;# 8:68 -%@ )J}u\Kg ~:SXQu5gQs19i;9(SyᚋZ\l_hr.OQ.9q +y eLc,Dwϵ6"QT(|~*Fv/wזlvҢdr.*g(d𼌺aP"]*o~ߗܻrezR+,"2݁nG:;|vK9*KHi~\6yTRƇ9S$%/.7E8͡C'q<إ:r]Zq&ӧ=@WϣL~#J8h ׃pa!N'_y W)F5)h$4g-X̠8#2A'f_sK/ٵ֏iN'dl7=w@ε HB^R?PźW0:?u.,S X ;z8 yylX2)ZڪI&rP  <{!+ D`0 ߠ= D2Zq 6-ت4#!B[8F4}_[6nբgA1ȴ֎:j;c{*A'2Ntct Dmֵ5 y&;O$iƤh>3[g.q#PN$jin{| CyE9k3;unC,ިTNPObAK-*b#q~hQUz.cMcext!oXP8"nvү]C^VTB$V*' .{_MiH-͛$Ӽ"8vУV֎{?:!9PH>d9 pp\0+~(L a! E&hw|StnqzbK*uyl fbWL <lC.Jj-f/ByeXTFI'!Aɂ0LEǛ{OJ5$mysCl'` BVfOTqF3~G oNCE࿷D5;^\;Nxq.˗|GsÆWCg~G]'E4_HqھPMH([>71C D|)䁎 7h깥,NFgFQq,j9YbMw7'bqbǼ0ֺ{Àt"AP=a+gSg^pQkjVk ]ڪC ?<Xig<@7HwbGw}WtFOlA6;,_p{ĚdCEpܝ;8<ޝ6՗ ~@x:sbQ}3 ghd76.wpxD~o:4I\`4U\jEWH pQ{Gk"DIpNFr&‏/7fԍPra?2]RG&hg1is/[s9cm˦d̡mf"M`o~4vH!L7@Qe2gO%鳏lv$Q3uZ pv&"mՓ󮳶x9IzL=g(;CQo<[4(i(RfēG0htG3Tpw~xpgGlJ-hgƳY&"dSHq.TFŁvO"^yުAS(1H"^4\XVEo.AWc_JgLk WLK-Q[ءz rG~W &/cU?jmvQk;_pW5o=I4ș5 RJ51w.U$aIf ,ɹj6H}'4+zG$J34^A"qh*.`ȥ4zʼlP \JD_RLӯEBSoF!iS9:pFRW,BcĨY+t VղQ.i(o!h2p&8Q`a3F lLnjzq, lE(S4V(ktb[EkNlnLϿyAi܌$ $Qd 6*A 4)NcNj} aSO%> {ѴQ>V9:}'(ғIhUSXGmVFD~Ll\cw 4 ա&OݫuScW0N{ạOZdyoK(#|eb@* |Q&d@` {o@Yd H X{J*ݝ7ӟj5ҢQ°5܌J?e=&pPvwD^Sߨܩu9zIm\^R O? E|% /g*R1;іeznmR`HP9(uF\@<.~6.p@,yzY_tg5lEE~;m"_0n-TȷiM@eXIVb!Lf5u$vMg>6'Rp :\nehEl~s f, ;ň"}wg(6עu`,i™aK::n?԰*cz2!Y#ew;u28tVE=V nCne3lUWT9<fݷ ?Ǟ`rq=L9}0_/.bwn3;4`&NDuk1RP.[z +o05 '$Pb4~*>~&+§m˝a.Džc(5v.BA" mAgxTC^b 3ݮӴݰJшMW 5} si0;7xzQww7S`~(5R+2K% e|2:ENqd/6"…M$=6lB$yJ)Ef'C]wy64M bzE늏; T\2cQeWq.{|/@6ǩb#eK]!㐟#k1B ~Y r&|4ܔ2ogf8 ' I"ӫ®](h%eHT'/iGq 1,3Lp%Vʈ_ܥЎO}m9;Lļܖɟoג\܏~9<&i1`dv*%qÃ,xJ#(`Y)FpAY y$Bqֺres qK{o.c}/BNQ`t>n'V~c[F6-f\s9fÏ(|օ=q%EdHڍR@XpIW&lZb@4G▉dW9\}+SnS T?\uAGbj'L$n"eeݛ w}I*W[G0N<}0y ^U^ ^־Api\L I|*Sk8(f L'8 =$G''daR١߮ed)2Χ@Kh@aoJY}Owm-~SmrZV NTgeecS_36R-.8i,7T!4|dSS}Ak;bOq޽i>&JƖ<JXBpAYW n9tnrI8vA#;7;E< gB6 aw6}r&ϥjAsnO VY_RX'3&c^>kT*r[TS$]Fo }TlkjA8NS0ު4mՀ}6` =)YB|2QNvOCO-s\-cmZ\ɟ2_+tq}}о|r(=ìϹǽbQ&xT'Px_@| b&QxUe؉셄xkQ1 tF+ }mӊYb88%MtjBf3P*IW26Ih#dcaOW{x4m@Q%,L\^Y4DVܴ]:\+1Gc$C 1|-DPIOӹhK |hsqoU D7x,`rs"j5#-GdAŧL˳Q9]+] :u5cD,#dtɌM@^TVe0cQdV F3 [L38}#|y/nu/ ų 5ēhJ{%<) uƮI竟G*U  {>"RI"cTTeG"^إ*2UpÚo?i=7dx-Ol6i4.DPgm?#G7HLa"p : oN4\x!=ћ,W2[dm;s \5X̊@iDd>o?Uq gH0'75 d[2yK玖ֺ|˲,P"ӴGPb_MsQ^.-PƄv@(PFZHT3]9c)X=8 =~?քh N")Ŀ-%9EI;U ]4 S3HHi@1S\(FѱQ5 -8?qr"ECA 353Յ3>Ky"-:I1F,upmN02jLkYp_'OibbKcQM8N naXeխ*'}%AD(& ~]]Vhӵ_c mǜ.0酥waߊ_T09'lY|;zYGV3 ŭnDV}߫8;i茙?VbntOGc>^!2]Y Ӕb!IhG2qYXB`Rci.ZA;@k|,:>:)o|>ɴ,ZoRP ][FXllqݱW$JWŰ54㷮R]!.[)S\^6 }H6J:9ّdo}"3Y«2 =#}SVP'X -u咔Kd>ٗkW^* dz> -s\q|ƿn<$Qb5  u|LIY!QXD:H\Di|,8BKђ|k8&U@_)'Z՛;׍klj涖.Oq$6]|W/VS,krWSg!d)}Z?Q?DE`5jE6(\TMkq=A)ᡄKETژU&(@qpk7g\fUxhiޚ)FBOqǒ%fL Ky}SVX~5ӻ*=j_4ٔYyn%8d`()гEޒi@VpA[$^}Q8TjXb^նQ)kC86bM,%VLʋjhw#WZ2fřfs*VTy DQeQ<BZ?희S>ןb6 =is MPlTe@W)ꟶB?v *iMoX,}2G- Icq-*ѓx(2Y9Wz>v^kJcoJ!]j|=XNx)RD$WZL:g_?QkH[OuqfF .jBb+J1Q,8xx7ޫ4M!Eёrn%D-n6zʆ|_TOjC q3%HqQz2i `Ƒ0UhjXTݧ$(8l0IPuC>>QApC~jµc{WC>N# lt,i/r,@ h* JT{ϝ$@T$M~ h`)͊Nѣ8uSPS i_=kڦR[p5}`yRX)!7.݌yY|mzXƋsj|ցa҃{+ъ8gsX#p)dKP(DxېWb< {x7Z2iڔ,BDVtz>>9>c"mc.0 ՟!Y WT5y]o" ҦW0CG|)s;M%QB/6P*tx/ ^uP0~v.hN4UmcQ~P~Z* A(Co\"^mf["StuǴ (t8/m_3`xm/Č`W:ϝ.'hA"f 0r|*˭0ǛLgyˍNt^ x]TVX \'UY߱ R; G]72^b Væ-Rٸ+n.oc+)B:ϊ ZX!.p(OFVH( M;t.:aН/XҫFp$gp eaNEo?ppS7I^VꀼYj$JF?R 4r=17p~,[Vz}B툜d,qm|O]a"neVr52a8MiAzVOa@`[YGmN]i;7ri U^rcԮ4ک_WSx_v*6RqlO[JI;[\Hh~5tK0Ypr>Ho /ÎOCa:)nd'u?$b 'CKꗂMl9ag~6oɕpk Kkjnu;vt) #ŁŮX hfa>xU}I ]X|r_kbޞ" dl ^r#z Uふt|P Z'x>AU:UoJ/_Ďd"[&>_cշ9Y0fXLqtXΥ( `p7h'c8ęRW /S0͒y_* ߒq Xhܱ̠tIGZDޟ K^)w$T왣=r3kHg&Gt'nFXLҚ89X0Z5%e`"hwE^aף5_cQ/uŸzUtG+K-#TeVHhId&0EkS8@J)](YhSC#;?[yBuɥc% ێpNC4_?kحg6 /k|TgՔ`Lm k ;_Ij6 ٯl'1L3|RcoxqJ]6,L"t|qk% ;dlh?] z̔A`Rk@~1ק]}Qixt> )fDO) 19Pvnj:/B1.]fA-ʋQm.ٞU^Jc^XJ_,_#DT]gP;`;.~I`&32w>kO09;S=u` E4T[ /#-4&xqTQ!ҖʾPRaWTMlleQ}+H"R*,MI!@vbv|3ZNEŶb R 6 U\\`^;xnS hlt5pn^A1=wn{{( ٿ>d“֫f?'jo¦GFn ~1^ȣ͢#w(d D䪣-K9(4)2C5v[t-@ Dn_ޡ`|٘8)ha:# ~lF . B *Ƕ8PB^6L:LJ2UqO26Z|=2@3_WŊ})a/)Z5o]k'aQՖb2ƺ`qUQB D:ӸkTl׌p/ ,*M #: s:Rγ2gѪk/E k  UHY4^$(cgw0'MUHyؙY*eu8žYUi>gVύFCNZ0mEm5ֆ6s[R-n^c 'Jc'OՂh ]ćb xRca둓|zB7[bvz5F2-NI䌹aJ,d &v+E_Uoڻ<1Ȣ1` 7EBAƽә7췦 Z `m%_=9TWK3)X [5wKFG'9:2A\QҞ;yС|)PYG wI-x+29UvQ鱩y(E~v3s.쬳!'CL V-}/*+m ~WG[oC 1w T9UX?Qb_D*m/uT>OZScbK7z͒v lb]wK592.3y2q0M4"RyNhxK;XM 7l/j.A|a/Q}ձN6>k2Ogu|e04o@ӳTB3yGm*gU`Kl~^NC*SritjD0e: &5`]IE~{?ѶaIJLpŐ/+2b L /<ۈ(SNA L7e}O3~Mu c҇8aN Q!Ioԍ:bl-90c $"K?|JJ1QQlFmFo( rV~B=W1#"i; ֿ4 Vi00ץ^39l9ZC=i-bq$.(,Xccm-+Ɯ]"ml)M]zWۃH4̤+DX,>i/}dR1kT+*kw#S#fqE"Pa) dָ&)(T J AUwbёm+i'_YNy<5ZuJD'}{EQ gm\Pe/)AY)J.Wcz+&(ѥ}aLCjr`*!2`cT7LCA&XYd #c청s_>*(9ܨ@-XFWUQbZۯ+J{W#8aۮL!6c㕼q;DwE`w f=k SG,e—v"piFd< @y46<H^ŷx *LxR??$cUW|W}kM{(Qd51%F)8^Ɇ4x)vWN蜷i VȬSe&TWtR}f1d9e9Sl#:S-3fBŒ 3DHyh(-WiqFӱ?7[7 )o|pn]B࡯p.2_?.)!͆2K$2vuE-~ C,/}_Ŏf''PKhýL,J"0JV8 ցPQT-d=|eG}HƗn_ZbG{HSp_u%[zA"Lv-)7ؠ$竖 pT#)fZUɫ)f|>†,k2i+Zjr* <*wh]*9xW:N&!d)^tWl35&"r-hّ+t?pc-ik/ͬ'V~Ma{EJ _omV7ɦ@Od'LүIjNeFQ1zbU/RoKrr:|ij U0 J֯-feJ*3Vz(mK&59d,9qa2g[ Q!pٙ:tu!i2]äw$A%ٺZۛ"?YD8[azEGmok8umDRm8M`bep ft͉94bv PM»puˍzZb"}qAqb ْ)TJIYH9%A_'`5v9A)TF5pPG`mȻv59Ƴ-RM(h>[U>**zsשiԧsx<2(X #C[m8t($}‚NW9y|(0E&Uw.Q~^-:nO';|_[y쯐q (ڨ1頻m HUȫP-j)Qézj{{3J :w DJ_ Ԅ:HUE-\xD{Z gtPRWs@p!.`?9Y~d8?A7˂RwѰ\n2@YpJb^YR D[ Uqu;? Lros,+tQprV+ŚđJnFKuy;eLy@pmq"HEz"v>w贠-]^t^~K#if^AR?|Ò{*/iIǣ)3')U+p-*Xج , = tv$VD5yr "M1t ,IS,o}C ,_;"P\,j{?0(HJS-GVr6 `^tzhTS2 [*P#O\xIBX|L[`v%iܹ5Eſ5|!+#yLطdv7r#&d2Ѡf\oaoBuʪR۪RGi^M( 5|4 Q}.UY -@Ҧ:WVU`Wr) NcOIkt 8Bh~ƌG JY}2ܚ;ʷo68]K>&!nH%;㥝̼Fu.WGP7H:M`*eRD/ٯ yiDrV|q[b/mϚqgll[g>>Q+ir>Ĥ^hKǔ8aK>Ꙉó !{52&)p&A1m`g 7nH/jD_=;`!FE#RR][ [ `[D/!"`Y>+cIN7@UҘb,\FKltEU!*cv+7v5DZ>p]힮Ϳ'H X?flԔƯ9[TEL" xj:=aŌCvt--$g)c m۳̘ҿRzzsR2Ur)4zwؓv+ΐf.7l;ijÙ9#J="3#1ɤU7}dN$i_BkR)dA\sJUiTŀwf8$/ؐ yyT G6Oߗ w%]!S,乒4!Ai~ #|T4XEnN [Sv 2`5QP 1*)Um^1NI){ q:%/x)2~)2=dy5 9X4rY|m-,pZs>n 9fg4@eYObe2!ÄpPyǭB)wMYg^32p뭿?FvLLJ@Pyj̠ˈ>4Dq."v\yk/ua@Νdg#׊}|4gm d/ ^䇿P؁&B4HR E(l G9#H'>p8@tAJʚqcje9E KA}ĈՉ5$s vξ6S Ep 0E=Z?Aq@8W-XqDm(cA943_ R:=n.0YEnAeF 2"(WPc"[;I4t}1~tD*(r֟@V3I[BxlА!Lp0y<Y)c[ 3&C^@.]YyEO?Vp}çMV@Uv\]g,&ų%@︦" z#Ck0Z{J3ͅytkwG9f'*{z.rk ٚۘRb%ʃƂ_]s;/ f]ƅ-}nbL,Ҩ*F;q4ʘ"η54G5Y?Œ!f/eB PnzUydf&&%&rDr8,ՂavmDY:jKZKuQYU@)l?`1O%Njf6~0%-9Kx|ZenuzBi#W *rJ( % ЄH %cM該? vT0T()_#j> '{>>nαcbO?LO0sܽхLrRR)ga*^BJFZΨFu0bl1'XT5 u?G o\L{]6so wYmS 2ꌹlL[ˡ | entthx)pwޠ;Tr]pOC]첡ye&pZ}x4\*K΂70pOPokiUM Jb}CSS`ږHrv-i}O%iirA}qx[p]R`Rӳn}~w- /+" @ax&Hɤ@fOkpk 6ƢQ[AERNYxwHf7Rp"`Y^),SLSMם6[S3y*#J_ń,[hjy &{U"B9;Mx1+xQGUeqSN]UuYRB n1}ێr|;"V ŗ1hu@z qP\PHXX wq GR] ]a=vrT.]hz^l3\(XKyĊ&i fb<[w'Q xVi+h+^H$,h] >_ KCB Zӛ[0^AJqIAdeǏk-u<-o2,D /ϦK+ JzOa>&EU!)y' ZB*r+dpWP q2΢=vD#IuTz¬EOQ |1fϴ!ɩpL)/OBGG2(H9gorjw} ơ,>m`lCND\x>4 (uC\k>ԧI raL\t\bI>75wC)&zltimD fpP6׳7/߼f72%-;k\nx!ėfGi(M63yr) !D@dwrJLu*`EEſ'BdgAVx{KyDIK]@q *K+,") %Pq{Xdu%h g"6ZggZ[ŀ׏]#Gn}h۶Y'իkұL+|.WO)'-зlT~ћ |ZrͫE~vH0}{s"83G-j&I2/q~eLj̧IE Em@KMLP85uAm[鄗rZwҖh 'u~CS"|){ VXM_MkpSAs**xl>pӪ+GCG̾VŠ3gARtLq~@^tTDf2B8`fE;GNisy$&]ݛrݷa2D:0Zc 0 UMN\kH6n]{8bF2~tAVr\6J.E_OL_; 8 1Ipߦ;TgGM?K$ԂiP;nT B>y.ݺz^a^w CRlS=e0mF}%/a/us;IowJ]g ٗ!V,nq$Z/}NWe YSgׯ5!d+ÿA*-m~an;KS>9Kb"`,?.GQ0p('V񐴼2Q+ B4 d.NWZ=Z;rIB.49?ڦfMrmѢ>&5=))@HG;}Od s%M ]BDs9Mɣ_{b)Ye򓖚UkjBR@?>mKj~O/ZR~q 6Mp28ZAOs?K?LXM\}ދ<6B=yeGF:GxtZ:8Y9g\^rIs8?{#nڧptf;rW 1^m͎'Lbeܶ%TIk}Қ(M;ؑ_@GQI@9'ywN'_4և!&%tī2y*ncojm%Lۑ.c+Ax:Ngm/>aL<$Rxh#)-Pˡ0Axȯvvsi]b` 5YmԚ>RR?(vI\'tQ Z d c$lO?mN{tq 0bz9ĮfلEe:kXFGjnˣ.Q%ѷte@,/!L:$U]- a{ 5>8pt / hbdftGu.[NK %RmPD*|j / } fw]Cm!7N.F[*Kde@b$;!NT}j!dd*ּ:#kӸ?k7oA.P0alG+u[R hjmh벧j%F#.t hwhhU:C+xR!!&A҄d]-eAsSY>|$ޣ'zȺ(?͞JOe }an4i-ÿ-2smAP"EgN_NIX"Uk> sEO ̸p g0H& t%xh+=nA̙ B%}uf2Nݝ2qlg-:X7cӼ{,6%Q?<}uu)q˖"D&r?G nQ$zZ_%`؃iy:(-jn{&V'=E?hE(vS4P6iGwd;rYLxUS9j 35?>ksȈR``oqwޢĀr2]jTpI4(s9(L=IԆ6{~tBCH~&C`es SYSA t|21,-ϹiKn@wk`lK 1p bzHcIC4WRh፯\,6Zi a=L-b޺lQWC:W-+%܎8r}fߔwЉo6?_ !"C6Փql-D{pN<[$\Kg4 5TP D;X9!7 s i魬opxW, O^|z^Jp7ʦ#(ێTؑ VDٴ=^D@!Gazwã{%*WL1dC;J<ܰ>sNt8G,n:1Ǫ:i~NS0^O+H?:L+p`1g9D@*P۬U]!3Z]Ӫ֯12DP%%A}TH\sh*oQ6  ǫ~4}zil]#2Pe|]9eD5]hB]-!7ZԎرY-Qɓjv$xQDAمȄ! d1\Q vټCkӀP4|HDa4=-`' t' M6c^PWT2DVVF0ݬi#L2֜Qp`V5^S^֫rD[up+j}[Ђj6&F=h~ 4TG7]_(=}1n9}LKMMgHK˱%l|3B[@KNrB7ISC'x?Ƥc5-[<[`o]~L+2TX|cqnbd{-t7dџ J]A2ҽ}y#N)eUIn!-(⮘ `8| ljy50 [+ ea43y C+B4G/< )hܻJe U3{ߜ`]Yx,,eK2j e*d(?VO[/_ n2U[e*I98buOS4~zE)G 2E.ey0RxkE4n<:zuYZe6DASȖ_Zp 5܌B}KB),pJa}n$Û~27* T3f] FCს *Y)WHwL|[_dTZrĠ*|+CѐRJ#_N' "浞˽z mۚaVK6 ci/,4ڟz8n@J]2/+xE*Өu@*uny'"FSUu50Ӄ߉k'-?qE4. 8/ꁌ*RK(Hw:VKSnDw%Pĉ.g|dLIӗ/R)r/[=p:D'[)p||Whx~1]ڙ¨4\p+daل{ e57nueʵf*8?V|ol7+Ohyl;Ydml4fEQhgLlt@k֠ XFb쓓EG!ʈEki:BH>o'ԗeNI;_oZuwbߔU Vq\g% ={ 6^#1 ͏cm}.zKDsacSC}TK`QBѢG@jWͬ&b It(?.Dz_B !']v6!2-awNoq7Wv1D29V? ڥ ֦C g`7S;|cTDB7=A? %5"̋厃K C8-#v̽GKnҜ&#F+/⛍aXysRAAKI53c~]9ATӧai$d1Us?ZAcJFڷsV=^x[Cu5"~ݢ _#A&.) Tw?586XA#0oPo Z&a)6nRH$ۨ(X:=5\^[G_raj-;ѳgѺ?~?p UW1O\RCI;%? aexChkk8v@1RX'4 6Yڒфij=~GF#rge`;Hcn!v7 \!*CQ`]t*Fs7K#qNHo4Ǫ\ww>.Y^/9] 䞠l[aؘhPم輠oqN ZnLZQID>kJ8>t%jzfK)IQV'6&\fKvĄy Ѩ_;(\tsM zMk/5[w6c3ZeoNB5,|o ` kY:"M (>{z'`@havx65$A4%eD(j13J1 ؅#v2n]'Gۖ}2U:BiK 0tN=FyKuuy>Tħx\.[uZ.H4d;^߫(X T6yq ~gk[e?TcSUuD6Z&QF z:J1˲q:iAJ_-XK1+ ͧ;/g̊ %z~ ʗrK-ZkB&C#}dg1<s*.ȸϔut>&hhm1Uc?Oe:83uBo$ו}ٛ+)#U/&7uKsu8drvEKy b=w1n2d9d~S]k@|}^;ȎwT9jYƁB΃*?ߜ ڿ~2[DҨ1SXa B>04Ob'~)Vns7xRdNBD1&‚87$xS8^rgeJsb:@3G>T e6dH.3v~ۆv3<2 ëte(tT.VJͫNC6S[ Y 9bqgKY\v+Qfyy}Y/mlVAX},yL(\V,%p%pd˵f {'I?eתqK `c0o5+B8fO'uAAN>N_e_yAj&$μwY}) 1:`NrMAw;s%i<'[qU: ƭp ۇ{thFCoSᩆ6.D镋>}A?\1^#Qe?v.fșۮD06R>p:8фWiP˟K0 )%8SgzjWf`Vf裆?鲢X %`jEM GVˬr΄!~/mnpRu)jnCl Lx-/!f@GH`<htх_q3 +*p !d:1`Ubדžc=u؋\(|g`b5ksa3wrLI/f@vz"R|ɍlAZ[Mgv.W-Ԗ_sؓ]Jw 2"(!%WTbAyiٓeVYS+!VB6U2f*9hH2LD⽍+nkX{ /htzc8ñ7C3gu(Au)fVeg{Kזt叅4HOM$"?vNؠ%RuHM*Sb ༠H GgD -ߘD<"KKB܉z GLzl!m:ME`njH!SM,ZҔa衬f&GbF/? qV APb$Q(ʏ>@`OSoJфOR{vBK ``.鵑N6ڦ>G(A,F QveX(=urwqe`lQ0aY ?~ o'*KL\fZv":EyȋRTbt~S4mɭ>Ū-"<j[*ޯÅ顧q5/jUMC5̪S:3 RlTMmKgOfFf^:훱 gs4'3z#_5cIffקABhefQdcInat]< p^X>]!S!D8ѻ7ZhJ`2=7RWD1KpQ/$+_p^n'_JeWɍPBbI C'F4;~;OI zAɃ`Τc|{Phh*މ6 l%.Bm$R.0lS~'f͢郂Ъ 8Qi}k5܃̼k  ̃]l #7ϳv+n _w^r*"{DDZ2'U Vn@8!klj#0AZ=0O$yxUuE{\9ݲ^|)R..qTY0j/n򃉇D`̇/{MWi7HjK.΁) "bͷ4FϧK%NDcهWMinNl8U&}z{i e<1dEnJSvbrXL nWd$z$z1G* <"k6dq1R!D^s8_vދGq@ (;wt,H%NG>!Q*M= )QL.PF<H"jsØc[ |[ػ?c ŒC&p;/gǫ;MEmrzT6 \1])Bj,/'ҔgI+?< GJ!XYUG$ ,BbǪɗB|;+ Th·_P*)niK)iPX U|]C3Bh}3AB1/__/gX!|8 9 )8& #@LiMbtDL}F'*)Wu<,ܐ0> k9i6QA^ܙ!C6ڐks9K5ڥr(ސP3IP.볜 >v#[|Aݦ1TՑgP%ŔŞ2' JQ츂2KP;jA6)Jt<>~|ßʒF1AJˤ $4EI]]{qN{[HPaѶ YZ