sssd-ad-1.14.2-2.fc23$>Ǖ9E~e*V4>C؊?zd   4 (<Z`h     2PlHH H   ( 8 9:AGѠHѸIXY\]^]bdefltuv(wքx֜yִV !$,PltCsssd-ad1.14.22.fc23The AD back end of the SSSDProvides the Active Directory back end that the SSSD can utilize to fetch identity data from and authenticate against an Active Directory server.XPKrbuildvm-08.phx2.fedoraproject.org 4Fedora ProjectFedora ProjectGPLv3+Fedora ProjectApplications/Systemhttp://fedorahosted.org/sssd/linuxi686qpK)9FA큤XPK6XPK6XPKnXŭXPKXPK2b7f248660562f978211a7e9a43958a763cb9c87ad95c98a3a172450c4ea61e8562b2f1b0e33e4d369861359dd7a005434a962964857ebf7543ae48b2ef3119c8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b9030fb2c791a01e49ba81bdcb59641c80e6f09198afbf78d77d0a08f1742c305b7dc99c55524140bd8a43bee20add03b8c653ba46f702eda7116a0530fb0a480085rootrootrootrootrootrootrootrootrootrootrootrootsssd-1.14.2-2.fc23.src.rpmlibsss_ad.sosssd-adsssd-ad(x86-32)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@    @libbasicobjects.so.0libc.so.6libc.so.6(GLIBC_2.0)libc.so.6(GLIBC_2.1.3)libc.so.6(GLIBC_2.2)libc.so.6(GLIBC_2.3)libc.so.6(GLIBC_2.3.4)libc.so.6(GLIBC_2.4)libcollection.so.4libcom_err.so.2libdbus-1.so.3libdhash.so.1libdhash.so.1(DHASH_0.4.3)libdl.so.2libglib-2.0.so.0libini_config.so.5libini_config.so.5(INI_CONFIG_1.1.0)libk5crypto.so.3libkeyutils.so.1libkrb5.so.3liblber-2.4.so.2libldap-2.4.so.2libldb.so.1libldb.so.1(LDB_0.9.10)libndr-krb5pac.so.0libndr-krb5pac.so.0(NDR_KRB5PAC_0.0.1)libndr-nbt.so.0libndr-nbt.so.0(NDR_NBT_0.0.1)libndr.so.0libndr.so.0(NDR_0.0.1)libnspr4.solibnss3.solibnssutil3.solibpcre.so.1libplc4.solibplds4.solibpopt.so.0libpopt.so.0(LIBPOPT_0)libpthread.so.0libpthread.so.0(GLIBC_2.0)libref_array.so.1librt.so.1libsamba-util.so.0libsasl2.so.3libselinux.so.1libsmbclient.so.0libsmbclient.so.0(SMBCLIENT_0.1.0)libsmime3.solibssl3.solibsss_cert.solibsss_child.solibsss_crypt.solibsss_debug.solibsss_idmap.so.0libsss_idmap.so.0(SSS_IDMAP_0.4)libsss_krb5_common.solibsss_ldap_common.solibsss_util.solibsystemd.so.0libtalloc.so.2libtalloc.so.2(TALLOC_2.0.2)libtdb.so.1libtevent.so.0libtevent.so.0(TEVENT_0.9.9)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)sssd-commonsssd-common-pacsssd-krb5-common3.0.4-14.6.0-14.0-15.2-11.14.2-2.fc231.14.2-2.fc231.14.2-2.fc23sssd1.10.0-8.beta24.13.0-rc1XOXWW@WWW5W@W@V3VVvV%@VqR@VO @V$@V @V @UUpU|@U4@UUUU@UzUzUzUL@UL@U.RU@TTT@T~T8TܕT@T@TTTq@T@T@Tp@TA@TuTto@TG@TD@TT @S0SS@S.SP@S @Sg@SrS!@SkqSkqSG@SFSCS!SSRRpRpR^R[RSRNREs@RD!R@R@RNQB@Q@QQQکQQQo@Q)@Q@QQ@Q@QbQbQV@Q'@QQQQnQZ@QU@Q0@QQQ@Q@QQ @QQh@PP@P@P@Pz@Pz@PqnPl(PaPaPS@PH@PDPM>M2@MMzMx@Mj - 1.14.2-2Lukas Slebodnik - 1.14.2-1Lukas Slebodnik - 1.14.1-3Lukas Slebodnik - 1.14.1-2Lukas Slebodnik - 1.14.1-1Lukas Slebodnik - 1.13.3-4Lukas Slebodnik - 1.13.4-3Lukas Slebodnik - 1.13.4-2Lukas Slebodnik - 1.13.4-1Lukas Slebodnik - 1.13.3-6Lukas Slebodnik - 1.13.3-5Lukas Slebodnik - 1.13.3-3Lukas Slebodnik - 1.13.3-2Lukas Slebodnik - 1.13.3-1Lukas Slebodnik - 1.13.2-1Lukas Slebodnik - 1.13.1-3Lukas Slebodnik - 1.13.1-2Lukas Slebodnik - 1.13.1-1Jakub Hrozek - 1.13.0-7Lukas Slebodnik - 1.13.0-6Lukas Slebodnik - 1.13.0-5Lukas Slebodnik - 1.13.0-4Lukas Slebodnik - 1.13.0-3Lukas Slebodnik - 1.13.0-2.alphaLukas Slebodnik - 1.13.0-1.alphaFedora Release Engineering - 1.12.5-4Lukas Slebodnik - 1.12.5-3Lukas Slebodnik - 1.12.5-2Lukas Slebodnik - 1.12.5-1Lukas Slebodnik - 1.12.4-8Lukas Slebodnik - 1.12.4-7Lukas Slebodnik - 1.12.4-6Lukas Slebodnik - 1.12.4-5Jakub Hrozek - 1.12.4-4Jakub Hrozek - 1.12.4-3Lukas Slebodnik - 1.12.4-2Lukas Slebodnik - 1.12.4-1Lukas Slebodnik - 1.12.3-7Lukas Slebodnik - 1.12.3-6Jakub Hrozek - 1.12.3-5Lukas Slebodnik - 1.12.3-4Lukas Slebodnik - 1.12.3-3Lukas Slebodnik - 1.12.3-2Lukas Slebodnik - 1.12.3-1Lukas Slebodnik - 1.12.2-8Sumit Bose - 1.12.2-7Lukas Slebodnik - 1.12.2-6Jakub Hrozek - 1.12.2-5Jakub Hrozek - 1.12.2-4Jakub Hrozek - 1.12.2-3Jakub Hrozek - 1.12.2-2Jakub Hrozek - 1.12.2-1Jakub Hrozek - 1.12.1-2Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.0-7Fedora Release Engineering - 1.12.0-6Stephen Gallagher 1.12.0-5Jakub Hrozek - 1.12.0-1Fedora Release Engineering - 1.12.0-4.beta2Jakub Hrozek - 1.12.0-1.beta2Jakub Hrozek - 1.12.0-2.beta1Jakub Hrozek - 1.12.0-1.beta1Jakub Hrozek - 1.11.5.1-4Stephen Gallagher - 1.11.5.1-3Stephen Gallagher - 1.11.5.1-2Jakub Hrozek - 1.11.5.1-1Stephen Gallagher 1.11.5-2Jakub Hrozek - 1.11.5-1Sumit Bose - 1.11.4-3Jakub Hrozek - 1.11.4-2Jakub Hrozek - 1.11.4-1Jakub Hrozek - 1.11.3-2Jakub Hrozek - 1.11.3-1Jakub Hrozek - 1.11.2-1Sumit Bose - 1.11.1-5Sumit Bose - 1.11.1-4Jakub Hrozek - 1.11.1-3Jakub Hrozek - 1.11.1-2Jakub Hrozek - 1.11.1-1Jakub Hrozek - 1.11.0-3Jakub Hrozek - 1.11.0-2Jakub Hrozek - 1.11.0-1Jakub Hrozek - 1.11.0-0.4.beta2Fedora Release Engineering - 1.11.0-0.3.beta2Jakub Hrozek - 1.11.0.2beta2Jakub Hrozek - 1.11.0.1beta2Jakub Hrozek - 1.10.1-1Jakub Hrozek - 1.10.0-17Stephen Gallagher - 1.10.0-16Stephen Gallagher - 1.10.0-15Stephen Gallagher - 1.10.0-14Jakub Hrozek - 1.10.0-13Dan Horák - 1.10.0-12.beta2Jakub Hrozek - 1.10.0-11.beta2Jakub Hrozek - 1.10.0-10.beta2Jakub Hrozek - 1.10.0-9.beta2Jakub Hrozek - 1.10.0-8.beta1Jakub Hrozek - 1.10.0-8.beta2Jakub Hrozek - 1.10.0-7.beta1Jakub Hrozek - 1.10.0-6.beta1Jakub Hrozek - 1.10.0-5.beta1Jakub Hrozek - 1.10.0-4.beta1Jakub Hrozek - 1.10.0-3.beta1Jakub Hrozek - 1.10.0-2.alpha1Jakub Hrozek - 1.10.0-1.alpha1Jakub Hrozek - 1.9.5-10Stephen Gallagher - 1.9.4-9Jakub Hrozek - 1.9.4-8Jakub Hrozek - 1.9.4-7Jakub Hrozek - 1.9.4-6Jakub Hrozek - 1.9.4-5Jakub Hrozek - 1.9.4-4Jakub Hrozek - 1.9.4-3Jakub Hrozek - 1.9.4-2Jakub Hrozek - 1.9.4-1Jakub Hrozek - 1.9.3-1Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-23Jakub Hrozek - 1.9.0-22.rc1Jakub Hrozek - 1.9.0-21.beta7Jakub Hrozek - 1.9.0-20.beta6Jakub Hrozek - 1.9.0-19.beta6Jakub Hrozek - 1.9.0-18.beta6Jakub Hrozek - 1.9.0-17.beta6Jakub Hrozek - 1.9.0-16.beta6Jakub Hrozek - 1.9.0-14.beta6Jakub Hrozek - 1.9.0-13.beta6Fedora Release Engineering - 1.9.0-13.beta5Jakub Hrozek - 1.9.0-12.beta5Stephen Gallagher - 1.9.0-11.beta4Jakub Hrozek - 1.9.0-10.beta4Jakub Hrozek - 1.9.0-9.beta4Stephen Gallagher - 1.9.0-8.beta3Stephen Gallagher - 1.9.0-7.beta2Stephen Gallagher - 1.9.0-6.beta2Stephen Gallagher - 1.9.0-5.beta2Stephen Gallagher - 1.9.0-4.beta1Stephen Gallagher - 1.9.0-3.beta1Stephen Gallagher - 1.9.0-2.beta1Stephen Gallagher - 1.9.0-1.beta1Stephen Gallagher - 1.8.3-11Stephen Gallagher - 1.8.2-10Stephen Gallagher - 1.8.1-9Stephen Gallagher - 1.8.1-8Stephen Gallagher - 1.8.1-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5.beta3Stephen Gallagher - 1.8.0-4.beta3Petr Pisar - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-1.beta2Stephen Gallagher - 1.8.0-1.beta1Stephen Gallagher - 1.7.0-5Stephen Gallagher - 1.7.0-4Stephen Gallagher - 1.7.0-3Fedora Release Engineering - 1.7.0-2Stephen Gallagher - 1.7.0-1Stephen Gallagher - 1.6.4-1Stephen Gallagher - 1.6.3-5Stephen Gallagher - 1.6.3-4Jakub Hrozek - 1.6.3-3Stephen Gallagher - 1.6.3-2Stephen Gallagher - 1.6.3-1Fedora Release Engineering - 1.6.2-5Stephen Gallagher - 1.6.2-4Stephen Gallagher - 1.6.2-3Stephen Gallagher - 1.6.2-2Stephen Gallagher - 1.6.2-1Stephen Gallagher - 1.6.1-1Stephen Gallagher - 1.6.0-2Stephen Gallagher - 1.6.0-1Stephen Gallagher - 1.5.11-2Stephen Gallagher - 1.5.10-1Stephen Gallagher - 1.5.9-1Stephen Gallagher - 1.5.8-1Stephen Gallagher - 1.5.7-3Stephen Gallagher - 1.5.7-2Stephen Gallagher - 1.5.7-1Stephen Gallagher - 1.5.6.1-1Stephen Gallagher - 1.5.6-1Stephen Gallagher - 1.5.5-5Stephen Gallagher - 1.5.5-4Stephen Gallagher - 1.5.5-3Stephen Gallagher - 1.5.5-2Stephen Gallagher - 1.5.5-1Stephen Gallagher - 1.5.4-1Stephen Gallagher - 1.5.3-2Stephen Gallagher - 1.5.3-1Stephen Gallagher - 1.5.2-1Simo Sorce - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Fedora Release Engineering - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.4.1-3Stephen Gallagher - 1.4.1-2Stephen Gallagher - 1.4.1-1Stephen Gallagher - 1.4.0-2Stephen Gallagher - 1.4.0-1Stephen Gallagher - 1.3.0-35Stephen Gallagher - 1.3.0-34Stephen Gallagher - 1.3.0-33Stephen Gallagher - 1.3.0-32Stephen Gallagher - 1.3.0-31Stephen Gallagher - 1.3.0-30David Malcolm - 1.2.91-21Stephen Gallagher - 1.2.91-20Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Resolves: rhbz#1369130 - nss_sss should not link against libpthread - Resolves: rhbz#1392916 - sssd failes to start after update - Resolves: rhbz#1398789 - SELinux is preventing sssd from 'write' accesses on the directory /etc/sssd- New upstream release 1.14.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.2- Fix regression with krb5_map_user - Resolves: rhbz#1375552 - krb5_map_user doesn't seem effective anymore - Resolves: rhbz#1349286 - authconfig fails with SSSDConfig.NoDomainError: default if nonexistent domain is mentioned- Backport important patches from upstream 1.14.2 prerelease - Resolves: upstream #3154 - sssd exits if clock is adjusted backwards after boot - Resolves: upstream #3163 - resolving IPA nested user group is broken in 1.14- New upstream release 1.14.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.1- Additional upstream fixes- Resolves: rhbz#1335639 - [abrt] sssd-dbus: ldb_msg_find_element(): sssd_ifp killed by SIGSEGV- Resolves: rhbz#1328108 - Protocol error with FreeIPA on CentOS 6- New upstream release 1.13.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.4- Resolves: rhbz#1276868 - Sudo PAM Login should support multiple password prompts (e.g. Password + Token) - Resolves: rhbz#1313041 - ssh with sssd proxy fails with "Connection closed by remote host" if locale not available- Resolves: rhbz#1310664 - [RFE] IPA: resolve external group memberships of IPA groups during getgrnam and getgrgid - Resolves: rhbz#1301303 - sss_obfuscate: SyntaxError: Missing parentheses in call to 'print'- Additional upstream fixes- Resolves: rhbz#1256849 - SUDO: Support the IPA schema- New upstream release 1.13.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.3- New upstream release 1.13.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.2- python-sssdconfig: Fix parssing sssd.conf without config_file_version - Resolves: upstream #2837 - REGRESSION: ipa-client-automout failed- Fix few segfaults - Resolves: upstream #2811 - PAM responder crashed if user was not set - Resolves: upstream #2810 - sssd_be crashed in ipa_srv_ad_acct_lookup_step- New upstream release 1.13.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.1- Backport patches for upstream bugs #2652, #2700, #2772, #2717- Fix OTP bug - Resolves: upstream #2729 - Do not send SSS_OTP if both factors were entered separately- Backport upstream patches required by FreeIPA 4.2.1- Fix ipa-migration bug - Resolves: upstream #2719 - IPA: returned unknown dp error code with disabled migration mode- New upstream release 1.13.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0- Unify return type of list_active_domains for python{2,3}- New upstream release 1.13 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0alpha- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- Fix libwbclient alternatives- Backport important patches from upstream 1.13 prerelease- New upstream release 1.12.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.5- Backport important patches from upstream 1.13 prerelease - Resolves: rhbz#1060325 - Does sssd-ad use the most suitable attribute for group name - Resolves: upstream #2335 - Investigate using the krb5 responder for driving the PAM conversation with OTPs - Enable cmocka tests for secondary architectures- Backport patches from upstream 1.12.5 prerelease - contains many fixes- Fix slow login with ipa and SELinux - Resolves: upstream #2624 - Only set the selinux context if the context differs from the local one- Fix regressions with ipa and SELinux - Resolves: upstream #2587 - With empty ipaselinuxusermapdefault security context on client is staff_u- Also relax libldb Requires - Remove --enable-ldb-version-check- Relax libldb BuildRequires to be greater-or-equal- Add support for python3 bindings - Add requirement to python3 or python3 bindings - Resolves: rhbz#1014594 - sssd: Support Python 3- New upstream release 1.12.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.4- Backport patches with Python3 support from upstream- Fix double free in monitor - Resolves: rhbz#1186887 [abrt] sssd-common: talloc_abort(): sssd killed by SIGABRT- Rebuild for new libldb- Decrease priority of sssd-libwbclient 20 -> 5 - It should be lower than priority of samba veriosn of libwbclient. - https://bugzilla.redhat.com/show_bug.cgi?id=1175511#c18- Apply a number of patches from upstream to fix issues found 1.12.3 - Resolves: rhbz#1176373 - dyndns_iface does not accept multiple interfaces, or isn't documented to be able to - Resolves: rhbz#988068 - getpwnam_r fails for non-existing users when sssd is not running - Resolves: upstream #2557 authentication failure with user from AD- Resolves: rhbz#1164156 - libsss_simpleifp should pull sssd-dbus - Resolves: rhbz#1179379 - gzip: stdin: file size changed while zipping when rotating logfile- New upstream release 1.12.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.3 - Fix spelling errors in description (fedpkg lint)- Rebuild for libldb 1.1.19- Resolves: rhbz#1175511 - sssd-libwbclient conflicts with Samba's and causes crash in wbinfo - in addition to the patch libwbclient.so is filtered out of the Provides list of the package- Fix regressions and bugs in sssd upstream 1.12.2 - https://fedorahosted.org/sssd/ticket/{id} - Regressions: #2471, #2475, #2483, #2487, #2529, #2535 - Bugs: #2287, #2445- Rebuild for libldb 1.1.18- Fix typo in libwbclient-devel %preun- Use alternatives for libwbclient- Backport several patches from upstream. - Fix a potential crash against old (pre-4.0) IPA servers- New upstream release 1.12.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.2- Resolves: rhbz#1139962 - Fedora 21, FreeIPA 4.0.2: sssd does not find user private group from server- New upstream release 1.12.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.1- Do not crash on resolving a group SID in IPA server mode- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Fix release version for upgrades- New upstream release 1.12.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- New upstream release 1.12 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta2- Fix tests on big-endian - Fix previous changelog entry- New upstream release 1.12 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta1- Rebuild against new ding-libs- Make LDB dependency a strict equivalency- Rebuild against new libldb- New upstream release 1.11.5.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5.1- Fix bug in generation of systemd unit file- New upstream release 1.11.5 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5- Handle new error code for IPA password migration- Include couple of patches from upstream 1.11 branch- New upstream release 1.11.4 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.4- Handle OTP response from FreeIPA server gracefully- New upstream release 1.11.3 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.3- New upstream release 1.11.2 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.2- Fix potential crash with external groups in trusted IPA-AD setup- Add plugin for cifs-utils - Resolves: rhbz#998544- Fix failover from Global Catalog to LDAP in case GC is not available- Remove the ability to create public ccachedir (#1015089)- New upstream release 1.11.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.1- Fix multicast checks in the SSSD - Resolves: rhbz#1007475 - The multicast check is wrong in the sudo source code getting the host info- Backport simplification of ccache management from 1.11.1 - Resolves: rhbz#1010553 - sssd setting KRB5CCNAME=(null) on login- New upstream release 1.11.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0- Resolves: #967012 - [abrt] sssd-1.9.5-1.fc18: sss_mmap_cache_gr_invalidate_gid: Process /usr/libexec/sssd/sssd_nss was killed by signal 11 (SIGSEGV) - Resolves: #996214 - sssd proxy_child segfault- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild- Resolves: #906427 - Do not use %{_lib} in specfile for the nss and pam libraries- New upstream release 1.11 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0beta2- New upstream release 1.10.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.1- sssd-tools should require sssd-common, not sssd- Move sssd_pac to the sssd-ipa and sssd-ad subpackages - Trim out RHEL5-specific macros since we don't build on RHEL 5 - Trim out macros for Fedora older than F18 - Update libldb requirement to 1.1.16 - Trim RPM changelog down to the last year- Move sssd_pac to the sssd-krb5 subpackage- Fix Obsoletes: to account for dist tag - Convert post and pre scripts to run on the sssd-common subpackage - Remove old conversion from SYSV- New upstream release 1.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0- the cmocka toolkit exists only on selected arches- Apply a number of patches from upstream to fix issues found post-beta, in particular: -- segfault with a high DEBUG level -- Fix IPA password migration (upstream #1873) -- Fix fail over when retrying SRV resolution (upstream #1886)- Only BuildRequire libcmocka on Fedora- Fix typo in Requires that prevented an upgrade (#973916) - Use a hardcoded version in Conflicts, not less-than-current- Enable hardened build for RHEL7- New upstream release 1.10 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta2 - BuildRequire libcmocka-devel in order to run all upstream tests during build - BuildRequire libnl3 instead of libnl1 - No longer BuildRequire initscripts, we no longer use /sbin/service - Remove explicit krb5-libs >= 1.10 requires; this platform doensn't carry any older krb5-libs version- Apply a couple of patches from upstream git that resolve crashes when ID mapping object was not initialized properly but needed later- Resolves: rhbz#961357 - Missing dyndns_update entry in sssd.conf during realm join - Resolves: rhbz#961278 - Login failure: Enterprise Principal enabled by default for AD Provider - Resolves: rhbz#961251 - sssd does not create user's krb5 ccache dir/file parent directory when logging in- BuildRequire recent libini_config to ensure consistent behaviour- Explicitly Require libini_config >= 1.0.0.1 to work around a SONAME bug in ding-libs - Fix SSH integration with fully-qualified domains - Add the ability to dynamically discover the NetBIOS name- New upstream release 1.10 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta1- Add a patch to fix krb5 ccache creation issue with krb5 1.11- New upstream release 1.10 alpha1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0alpha1- Add a patch to fix krb5 unit tests- Split internal helper libraries into a shared object - Significantly reduce disk-space usage- Fix the Kerberos password expiration warning (#912223)- Do not write out dots in the domain-realm mapping file (#905650)- Include upstream patch to build with krb5-1.11- Rebuild against new libldb- Fix build with new automake versions- Recreate Kerberos ccache directory if it's missing - Resolves: rhbz#853558 - [sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir does not exist- Fix changelog dates to make F19 rpmbuild happy- New upstream release 1.9.4- New upstream release 1.9.3- Resolve groups from AD correctly- Check the validity of naming context- Move the sss_cache tool to the main package- Include the 1.9.2 tarball- New upstream release 1.9.2- New upstream release 1.9.1- require the latest libldb- Use mcpath insted of mcachepath macro to be consistent with upsteam spec file- New upstream release 1.9.0- New upstream release 1.9.0 rc1- New upstream release 1.9.0 beta7 - obsoletes patches #1-#3- Rebuild against libldb 1.12- Rebuild against libldb 1.11- Change the default ccache location to DIR:/run/user/${UID}/krb5cc and patch man page accordingly - Resolves: rhbz#851304- Rebuild against libldb 1.10- Only create the SELinux login file if there are SELinux mappings on the IPA server- Don't discard HBAC rule processing result if SELinux is on Resolves: rhbz#846792 (CVE-2012-3462)- New upstream release 1.9.0 beta 6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta6 - A new option, override_shell was added. If this option is set, all users managed by SSSD will have their shell set to its value. - Fixes for the support for setting default SELinux user context from FreeIPA. - Fixed a regression introduced in beta 5 that broke LDAP SASL binds - The SSSD supports the concept of a Primary Server and a Back Up Server in failover - A new command-line tool sss_seed is available to help prime the cache with a user record when deploying a new machine - SSSD is now able to discover and save the domain-realm mappings between an IPA server and a trusted Active Directory server. - Packaging changes to fix ldconfig usage in subpackages (#843995) - Rebuild against libldb 1.1.9- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- New upstream release 1.9.0 beta 5 - Obsoletes the patch for missing DP_OPTION_TERMINATOR in AD provider options - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta5 - Many fixes for the support for setting default SELinux user context from FreeIPA, most notably fixed the specificity evaluation - Fixed an incorrect default in the krb5_canonicalize option of the AD provider which was preventing password change operation - The shadowLastChange attribute value is now correctly updated with the number of days since the Epoch, not seconds- Fix broken ARM build - Add missing DP_OPTION_TERMINATOR in AD provider options- Own several directories create during make install (#839782)- New upstream release 1.9.0 beta 4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta4 - Add a new AD provider to improve integration with Active Directory 2008 R2 or later servers - SUDO integration was completely rewritten. The new implementation works with multiple domains and uses an improved refresh mechanism to download only the necessary rules - The IPA authentication provider now supports subdomains - Fixed regression for setups that were setting default_tkt_enctypes manually by reverting a previous workaround.- New upstream release 1.9.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta3 - Add a new PAC responder for dealing with cross-realm Kerberos trusts - Terminate idle connections to the NSS and PAM responders- Switch unicode library from libunistring to Glib - Drop unnecessary explicit Requires on keyutils - Guarantee that versioned Requires include the correct architecture- Fix accidental disabling of the DIR cache support- New upstream release 1.9.0 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta2 - Add support for the Kerberos DIR cache for storing multiple TGTs automatically - Major performance enhancement when storing large groups in the cache - Major performance enhancement when performing initgroups() against Active Directory - SSSDConfig data file default locations can now be set during configure for easier packaging- Fix regression in endianness patch- Rebuild SSSD against ding-libs 0.3.0beta1 - Fix endianness bug in service map protocol- Fix several regressions since 1.5.x - Ensure that the RPM creates the /var/lib/sss/mc directory - Add support for Netscape password warning expiration control - Rebuild against libldb 1.1.6- New upstream release 1.9.0 beta 1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta1 - Add native support for autofs to the IPA provider - Support for ID-mapping when connecting to Active Directory - Support for handling very large (> 1500 users) groups in Active Directory - Support for sub-domains (will be used for dealing with trust relationships) - Add a new fast in-memory cache to speed up lookups of cached data on repeated requests- New upstream release 1.8.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.3 - Numerous manpage and translation updates - LDAP: Handle situations where the RootDSE isn't available anonymously - LDAP: Fix regression for users using non-standard LDAP attributes for user information- New upstream release 1.8.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.2 - Several fixes to case-insensitive domain functions - Fix for GSSAPI binds when the keytab contains unrelated principals - Fixed several segfaults - Workarounds added for LDAP servers with unreadable RootDSE - SSH knownhostproxy will no longer enter an infinite loop preventing login - The provided SYSV init script now starts SSSD earlier at startup and stops it later during shutdown - Assorted minor fixes for issues discovered by static analysis tools- Don't duplicate libsss_autofs.so in two packages - Set explicit package contents instead of globbing- Fix uninitialized value bug causing crashes throughout the code - Resolves: rhbz#804783 - [abrt] Segfault during LDAP 'services' lookup- New upstream release 1.8.1 - Resolve issue where we could enter an infinite loop trying to connect to an auth server - Fix serious issue with complex (3+ levels) nested groups - Fix netgroup support for case-insensitivity and aliases - Fix serious issue with lookup bundling resulting in requests never completing - IPA provider will now check the value of nsAccountLock during pam_acct_mgmt in addition to pam_authenticate - Fix several regressions in the proxy provider - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#799031 - --debug option for sss_debuglevel doesn't work- New upstream release 1.8.0 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental) - Include the IPA AutoFS provider - Fixed several memory-corruption bugs - Fixed a regression in group enumeration since 1.7.0 - Fixed a regression in the proxy provider - Resolves: rhbz#741981 - Separate Cache Timeouts for SSSD - Resolves: rhbz#797968 - sssd_be: The requested tar get is not configured is logged at each login - Resolves: rhbz#754114 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - Resolves: rhbz#786957 - sssd and kerberos should change the default location for create the Credential Cashes to /run/usr/USERNAME/krb5cc- Change default kerberos credential cache location to /run/user/- New upstream release 1.8.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta3 - Fixed a regression in group enumeration since 1.7.0 - Fixed several memory-corruption bugs - Finalized the ABI for the autofs support - Fixed a regression in the proxy provider- Rebuild against PCRE 8.30- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta2 - Fix two minor manpage bugs - Include the IPA AutoFS provider- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta1 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental)- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - fix netgroups and sudo as well- Fixes a serious memory hierarchy bug causing unpredictable behavior in the LDAP provider.- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- New upstream release 1.7.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.7.0 - Support for case-insensitive domains - Support for multiple search bases in the LDAP provider - Support for the native FreeIPA netgroup implementation - Reliability improvements to the process monitor - New DEBUG facility with more consistent log levels - New tool to change debug log levels without restarting SSSD - SSSD will now disconnect from LDAP server when idle - FreeIPA HBAC rules can choose to ignore srchost options for significant performance gains - Assorted performance improvements in the LDAP provider- New upstream release 1.6.4 - Rolls up previous patches applied to the 1.6.3 tarball - Fixes a rare issue causing crashes in the failover logic - Fixes an issue where SSSD would return the wrong PAM error code for users that it does not recognize.- Rebuild against libldb 1.1.4- Resolves: rhbz#753639 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758425 - LDAP failover not working if server refuses connections- Rebuild for libldb 1.1.3- Resolves: rhbz#752495 - Crash when apply settings- New upstream release 1.6.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.3 - Fixes a major cache performance issue introduced in 1.6.2 - Fixes a potential infinite-loop with certain LDAP layouts- Rebuilt for glibc bug#747377- Change selinux policy requirement to Conflicts: with the old version, rather than Requires: the supported version.- Add explicit requirement on selinux-policy version to address new SBUS symlinks.- Remove %files reference to sss_debuglevel copied from wrong upstreeam spec file.- Improved handling of users and groups with multi-valued name attributes (aliases) - Performance enhancements Initgroups on RFC2307bis/FreeIPA HBAC rule processing - Improved process-hang detection and restarting - Enabled the midpoint cache refresh by default (fewer cache misses on commonly-used entries) - Cleaned up the example configuration - New tool to change debug level on the fly- New upstream release 1.6.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.1 - Fixes a serious issue with LDAP connections when the communication is dropped (e.g. VPN disconnection, waking from sleep) - SSSD is now less strict when dealing with users/groups with multiple names when a definitive primary name cannot be determined - The LDAP provider will no longer attempt to canonicalize by default when using SASL. An option to re-enable this has been provided. - Fixes for non-standard LDAP attribute names (e.g. those used by Active Directory) - Three HBAC regressions have been fixed. - Fix for an infinite loop in the deref code- Build with _hardened_build macro- New upstream release 1.6.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.0 - Add host access control support for LDAP (similar to pam_host_attr) - Finer-grained control on principals used with Kerberos (such as for FAST or - validation) - Added a new tool sss_cache to allow selective expiring of cached entries - Added support for LDAP DEREF and ASQ controls - Added access control features for Novell Directory Server - FreeIPA dynamic DNS update now checks first to see if an update is needed - Complete rewrite of the HBAC library - New libraries: libipa_hbac and libipa_hbac-python- New upstream release 1.5.11 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.11 - Fix a serious regression that prevented SSSD from working with ldaps:// URIs - IPA Provider: Fix a bug with dynamic DNS that resulted in the wrong IPv6 - address being saved to the AAAA record- New upstream release 1.5.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.10 - Fixed a regression introduced in 1.5.9 that could result in blocking calls - to LDAP- New upstream release 1.5.9 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.9 - Support for overriding home directory, shell and primary GID locally - Properly honor TTL values from SRV record lookups - Support non-POSIX groups in nested group chains (for RFC2307bis LDAP - servers) - Properly escape IPv6 addresses in the failover code - Do not crash if inotify fails (e.g. resource exhaustion) - Don't add multiple TGT renewal callbacks (too many log messages)- New upstream release 1.5.8 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.8 - Support for the LDAP paging control - Support for multiple DNS servers for name resolution - Fixes for several group membership bugs - Fixes for rare crash bugs- Resolves: rhbz#706740 - Orphaned links on rc0.d-rc6.d - Make sure to properly convert to systemd if upgrading from newer - updates for Fedora 14- Fix segfault in TGT renewal- Resolves: rhbz#700891 - CVE-2011-1758 sssd: automatic TGT renewal overwrites - cached password with predicatable filename- Re-add manpage translations- New upstream release 1.5.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.6 - Fixed a serious memory leak in the memberOf plugin - Fixed a regression with the negative cache that caused it to be essentially - nonfunctional - Fixed an issue where the user's full name would sometimes be removed from - the cache - Fixed an issue with password changes in the kerberos provider not working - with kpasswd- Resolves: rhbz#697057 - kpasswd fails when using sssd and - kadmin server != kdc server - Upgrades from SysV should now maintain enabled/disabled status- Fix %postun- Fix systemd conversion. Upgrades from SysV to systemd weren't properly - enabling the systemd service. - Fix a serious memory leak in the memberOf plugin - Fix an issue where the user's full name would sometimes be removed - from the cache- Install systemd unit file instead of sysv init script- New upstream release 1.5.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.5 - Fixes for several crash bugs - LDAP group lookups will no longer abort if there is a zero-length member - attribute - Add automatic fallback to 'cn' if the 'gecos' attribute does not exist- New upstream release 1.5.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.4 - Fixes for Active Directory when not all users and groups have POSIX attributes - Fixes for handling users and groups that have name aliases (aliases are ignored) - Fix group memberships after initgroups in the IPA provider- Resolves: rhbz#683267 - sssd 1.5.1-9 breaks AD authentication- New upstream release 1.5.3 - Support for libldb >= 1.0.0- New upstream release 1.5.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.2 - Fixes for support of FreeIPA v2 - Fixes for failover if DNS entries change - Improved sss_obfuscate tool with better interactive mode - Fix several crash bugs - Don't attempt to use START_TLS over SSL. Some LDAP servers can't handle this - Delete users from the local cache if initgroups calls return 'no such user' - (previously only worked for getpwnam/getpwuid) - Use new Transifex.net translations - Better support for automatic TGT renewal (now survives restart) - Netgroup fixes- Rebuild sssd against libldb 1.0.2 so the memberof module loads again. - Related: rhbz#677425- Resolves: rhbz#677768 - name service caches names, so id command shows - recently deleted users- Ensure that SSSD builds against libldb-1.0.0 on F15 and later - Remove .la for memberOf- Fix memberOf install path- Add support for libldb 1.0.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix nested group member filter sanitization for RFC2307bis - Put translated tool manpages into the sssd-tools subpackage- Restore Requires: cyrus-sasl-gssapi as it is not auto-detected during - rpmbuild- New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options -Assorted bugfixes- CVE-2010-4341 - DoS in sssd PAM responder can prevent logins- New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Solve a shutdown race-condition that sometimes left processes running - Resolves: rhbz#606887 - SSSD stops on upgrade- Log startup errors to the syslog - Allow cache cleanup to be disabled in sssd.conf- New upstream release 1.4.1 - Add support for netgroups to the proxy provider - Fixes a minor bug with UIDs/GIDs >= 2^31 - Fixes a segfault in the kerberos provider - Fixes a segfault in the NSS responder if a data provider crashes - Correctly use sdap_netgroup_search_base- Fix incorrect tarball URL- New upstream release 1.4.0 - Added support for netgroups to the LDAP provider - Performance improvements made to group processing of RFC2307 LDAP servers - Fixed nested group issues with RFC2307bis LDAP servers without a memberOf plugin - Build-system improvements to support Gentoo - Split out several libraries into the ding-libs tarball - Manpage reviewed and updated- Fix pre and post script requirements- Resolves: rhbz#606887 - sssd stops on upgrade- Resolves: rhbz#626205 - Unable to unlock screen- Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it- Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib- Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate - against LDAP- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- New upstream version 1.2.91 (1.3.0rc1) - Improved LDAP failover - Synchronous sysdb API (provides performance enhancements) - Better online reconnection detection- New stable upstream version 1.2.1 - Resolves: rhbz#595529 - spec file should eschew %define in favor of - %global - Resolves: rhbz#593644 - Empty list of simple_allow_users causes sssd service - to fail while restart. - Resolves: rhbz#599026 - Makefile typo causes SSSD not to use the kernel - keyring - Resolves: rhbz#599724 - sssd is broken on Rawhide- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code)uk1.14.2-2.fc231.14.2-2.fc23libsss_ad.sogpo_childsssd-adCOPYINGsssd-ad.5.gzsssd-ad.5.gz/usr/lib/sssd//usr/libexec/sssd//usr/share/doc//usr/share/doc/sssd-ad//usr/share/man/man5//usr/share/man/uk/man5/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -m32 -march=i686 -mtune=atom -fasynchronous-unwind-tablesdrpmxz2i686-redhat-linux-gnuELF 32-bit LSB shared object, Intel 80386, version 1 (SYSV), dynamically linked, BuildID[sha1]=24e73303554f1869a122cfaa19b3b78a373a3d22, strippedELF 32-bit LSB shared object, Intel 80386, version 1 (SYSV), dynamically linked, interpreter /lib/ld-linux.so.2, for GNU/Linux 2.6.32, BuildID[sha1]=2fbe77070adeb7b1dfc61a4be98d0ebfb9b9e66e, strippeddirectoryASCII texttroff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)troff or preprocessor input, UTF-8 Unicode text, with very long lines (gzip compressed data, max compression, from Unix)??PRR'RR?RRRRRRRR RRR1R3R0R/RR R#R"RR&R R;R4R:R7RR RRR R5RRCR%R RRݽze`8Y_ 6 Ѐ*[iŴ ]:!5)I9R 4$bZ w|bc~ut P6dZ'wHt=DL"ڤFPW#eyR%J5Jposc>2=FA8+`XFKO k2AգKA%a\%K0A@OFOoZyI=gxs(O.ϔCi{·;Q&JUwx ~t lK֍hq8n81Eʹ+ ubI⋕m>AH;JUP3Okoop5gXOx@i@έ6u=p%9z :mIOlYIb] üŎ h`!=Eԣ.Y zRj+t vTm}`# $8v be#Zj pHzB,xZ gG4a}c"mrė?Z P5mO$4g=Gj 2 JPBC[:sALMVz|I{KLpaL X![9|uzEYqV-n۳uUM,T ӝZ^Z`OΉAud/V<߃ye_'J7"\H9쐭pbt m :g!:馠 5ع0jTJ?7-ELDqf?q"O`^5uXGIa*.('COՄJQՌ 1}BSe^ IJΕ[N`>&wȼP_oFԗ僢Q=],~\Cُ=5Vk'TSF(}T[^c~}Xc-mVE*-[b}wu92_}GsL | >\Rnϻ^I-oE3;be<z(PFZi{ [ H{BVȐHϛnJۜ f G1Pn<YCv߮M`_J5py|;1këxlp1ְNlϠv]ߦ a$;KՎq~&DKٺ66#C,HQ BJ若y4] srE92'rC.Y/fDb^7wM FE1_G;Xl5:>7d|Saz/r/_9$cVp,*'>dhP#Uʘ pE%ÏyqT={tP. ?5-S7rq&'渌?/}e~݀t7"d%1/8iJXƟU7Jǘ4jHnV- ptƧ4&AUFq[DP5 @<1:2ioW)h=LgPS*CJI/T1!eWʹLK%#e2 >"}_LkP[YvX5Q(nH`C*x4jݵVR~3[>;ʀ5h.mnj 0?Mo8eƤ ZUW-v{*S+@K_>kqЊiwF|/<{l*: B?(nq2u`?%7<V&+`ZgF/d k:k {T_#g!HZHz4 __|``Z]~ h 3'9@>2|,ɆL񢿮YMeO(=0hV}Ҷu:/%zTo #pe(0T4A-=^@_o%G-ixVKol6d BۋtH%<-r1N +_l{9r"Wz- y)?tR$}&c%فؿ k}hWQpnX&VҶט&>:6ͽNΆɬ/! S~8sٞp Qշ8gfP龮%!pBI8GG~Լ[PYEiX'қmSE.sqIѤl#im _UTʯaR!#'+e%d  $<\k!m ;Xmjw#ܱβ[dq),+Uhb C~]_d 8>:JMY0AF-@6=0SϘf0p$I+g#Øbza-Bh`TKta@5p}Tx'JsDLiLZ^[]'gCR/B{@^Uy:W|.$6An {Q5j09h7HRr5RRSqnGDb_Bo_qeK8oA'0uU,,z&sxNG&HM{\Pߒ2{봅BOAr꛰ @ 'swo_,g zyr9wF`C; Yf |Xw rc@ S3W STS0L$PR :ntHc~.O0:N)QkJw޴nv ?W~}N#S3YF4t.#z(0Y#lEY[wַڣ5ıu fEmy 't.; L,؛C6g #1Y}}sl\#ֲ,K<#,XbHUs uH$A]x%0*TͮP/:=cxrC GE \~}'|Q2P`L hzzjH6qg@>yZ?pcnȀcMr2EYbفSn@_S%GzF4;>G\`1 )&OJΌ&4*5m YQ4EIa=p`Fz60xwۛvJ.iw&:2LԖ.`},c.;{Y5c~^/t'q)glzVH*1G+UAE`m"->\3@z?BY6MJZ@-J cB2SM8kQ Z_=#iaQ?0s:|,Ff=AMV"T35o8&\eELKaC(n'(b M~ձ`;t)͡hU?cPr31$|}]StZGH2_Ijf U"ᐋp%~z?m&(؛; i {fuRBp=!\DudvF1̬Ep9gLލG.R%HיG3*x< %F *8>\V5,"nM\nA'@53n l+o v4T6yf٠rFЦ0/z&\녽2@FS~DnRqyP^l$=s̹٩τEY,653U|p^f}o_ =RU#~eMDE j:5wENM7#8weR kܽp"rPykH9ٞF3"0`|3 uC ^xҪ:: ]7OQWBA* :[6pgK.9m}51 o$02AR86b{scZs] ;"x=AbtndFpձvb-uF`AHozuo/-떐.ƱʀIi'5>ZwvwgIa3ȭ=sE]:&@?B<3) qWQ*u5Sr7?_|;'qqwi +jQF#QPxYV?6Xv'${-_lZb'UB$=ɹ٣4i_8΅+}\_g}WJ]󥥖Σ'%7J6cLGN'<'|WPCV5Priu>cK7[=I?SpP]_}hYW|^b fsf9RJjJB .Ym(pAvA^* #Le ʕ\?_.5.>s=„&xERܻ繭$_e:Ok,Ak":}BZ?0~сfjnGY˧E/ .[KVp i.:F#Tqw)~8Mʒ?-VK *Rݾ%Rb^w4 4 cu6-P\xi"*l8>$Tj .DW.)&u"@gfx0_d>k0TS[U͈jO&Ie :{2BL8N^2O^/jdW=s%) HJ?믨3)Ws(\/(!vd{ 㑌y5TtaԣY(y8*[\ZX/tځ@Ga:K6v=1$l<><&xA]k rGQ)J݌Ȫ-/gv$H#2u@f!(txaw"_zd1'Ӻf%XfkM;<ʯxAJ&Vhۑ ~1&J70_$E Ӟ=3aETt bLCN;:\y?%ptEHxHcs2QKwƬm7wǴGes B \E7!#~[r."~I>Y$U@ diCg@Sgv IՁSaP"hsz퉒fC{wob )8 nB_~Y!2nkjk qÉ)8Ĝ<@maWt9z1!Q5= 76TBF;tr_"JEЉm+GeC8S1bSkz@P(9F;ɷb؋4bTcO0t}Ua Kw(t&kXVfT፣X挂NP#PsVxDjrk>o0e5Mx!B*-es{O`)4[rdK;~5[8HGEaub Z,<~jV!3eS`[K}a{fkkyKѹ S/Өi֊pX$FiA9A`F7IB/@-jǘF5Dde9.ZZ;;޸+y씥e-aQ:a}aH +Ȍb~A$R~{mj58!L9,#U.þŷ+v=3vC} !qaRRHJה$g_jﷹ]8@393hL{#Y1 InϲP 7%w.:PcJ&XkeAbsL\).&ՖpmKʶG)JY,qgSiԤ#UM7Tիy n,޻Sx'Y^"ýa``h羒DfhcNO%y 2J4DUS92~_gG6z<( ]7W{2`lFeɊ$Z8- CMH`\ `My$xu Ah[1nagsIbG7[I7XG4ݧ栆 g0dNR7+}0z CvǟVm44\?H]j>+7w@9C&L삏h'+mA\Lx<̢bm",Vk2f2h#uYϹNVilYns|Pƶ0#xyڂhC&_$c8l $ 7nIm*zJCJ@F nm mSRU(M8#2~ tf@te#)7DeHJDUrgԦt5/4@6w)8j*욓C̋)=^p(zZi| 1=!̙*rX],۱amhuTL&?d@B)eY^lX .4Us ʧt~q xݘ{ =hWb?;o1j:'sRϟ2&}lub</mL7,H9bWZ_x<'K ^;-&*$1<|R#wϲr1^]rÅNRM*_Rk3#f}"TE4ؿkc-u-PWʦjK{԰e@ሡ (*CfI4g!LM ^F1 $/&r_ujF4,4oMX}gK[z4"e'IE?脚maۿR}oE @cěy\KC7oߕ}O7zƑ[Q5!/} 0r=ɃzG82P4rOZXzfu$\|8yO.zAy8cqӣW{TP(ͽ (ɓ*v*pI~BfEZy]x2ڑ=m&?ZAJ@=l $w!2oX4gVQ/^Oku Y/nʐٌXoF˜8n\)`ԫoJ:D0nfKcJ >;'UڀqXzo#L.B 4wAxs%D|udFN=CԻM8!I}>Oh*AB)sʄV`cl!~3&>TLˑ(v, -wtkXo ͷx|cJ0lwwFʳ!ワLyL[=+ESkN4ĦN\ 'fcǙA H/eo ѵja Y(h7_ W9MںOuGXH'sɅpB,f#PO]=b#d(0`$v{4 zgцAЌb$tzCC@3SuŤ݆*!ɃdaZ}{2,2J* V3kpߴwF[eSˏ }b2|krK0TW2U/clQ_*x*# M)юVG3 W4KL.*zZ%̘6]y嚦$)PsuS_ %;՘fvJIs L#M.b0;RxSIdcoϷ T!S yCu*j @"Xow/{ $r-Q32Y^Aovp %"o1y\{$4H RX=O8wS !8ItqEt;JCs f\Ae܇_ѓE8{=訋dUSOCHZ9#oM"=0rAUPC@ow *'ZKdҀ hB](+p֕ ߰kRWUE)[X!ĄC±T݇kþyD[ >xDwa4XLmuilUiLb2ƭW1Hp6Kl̖c 6O0|]c!;t]rf^5NF5U&'Bu_ژfK(rԣ;?PTNV=+hԢ~zLG[ߪ*qFiޑB=ކ0(u)溱b6IVZ.?*@ӷD  i⼄ᴣ:(aH ٸ,4 E2z{xV~ iA~LꊄJ}75>cEbF[CI.r Th:O"~*6zK@E '`?VG6O Y:VyΚeAY:W4AeYMLˬ>n&9@%^x@7TZ$Le3r7hڗ` Fiϩ+4Am=_LPjLol7XPGj= zYQt+tP{3uo] N=) )v4BzjAz !˴{볿j i }H!É΂g0T̐RvieHuu帺}=^|Lw 4(ϛL&T+XtqծaɑXFN`@ݪٲ80Lo[ 7Wt EkKh=Yt ar[A_oRos@' k%-~ƧtlVdo)Z_ʽOg$ >S.;{f|g/` bt{P sndӏ4Yhƅ ^]NHz|+zC)"ۈXTH.Sdvv8$愃S#^)@gTH*ťI2AŬ0\,5פU͕C+D^$":cg<-N$# a(#uW2zqۿ戀Tðu^D %kj>΀ {j` |{M#EU[ܪg_xN]$HqEf$ب/\z؏X"1nis WryᩥVY Xs~U6Ub$ @4 5l=n JD0Aa9PډfՐ9z2uʊ~,8iFWq`hs`<3B "byn<`x}ڋʫS4Tq1~#GELvd'1!PAKW/ZޔF?q5.:4t_~yfHZKC;!@w /C hnЂ) \fۮo*AJ[z@*2jCQ~^a%Op^mhsg)B"j=a ҺPK핯l@P=10SZn`3iv t1I Ɵ3cǦ)m.9qM)Oku UF T%0hcO^L6!%Η>N"{RQ@Y?`>2-[$.́,+ҵn_mrX͇%攥njˢJe[e\ )gk0뤐?g@u.U1Q#}FTT"\W{ҽi'-ʼc&CcSIfÕI[y_gg9I6x5& /P%P+S)G9KQvD#UFE w"4e2K;Ghntҟ$M lUٵZ3~e7@EW0Ͼ?V4y/"*[6eŅZez q}hvi-']Չp1x['DF7dk*1ϺQxDN9Ɇ+\>& -A,k?l(77y2nDUC}|*| ȭ*NpgyHR?jK<& B{3'BG^JWx'MX _7rّh(IDQ˕ȗxk= XVM0 Ay.b ؅8̷iJCdkIv9EН,Po_}/c 6UToʘJ sMc%yGhrJ?cɘ8 ye i+dN~jD{XUD^saNj /I>Uu'ϗKO`}&xh+.'".R]-%`9/n#>H41'g0K(Lˀ+L;K5ox'2T0Ǽ&uұ~t9# K\b`qjٌ(x˕<KAdKb x'qySYwTp0扂j.4C^u{1-#C+qq/-VŘIt/3U@w~U~6wecc'`Ts@murCKu?Jk|A|0);UQݢT$rFTG1i 'ljOz%i"r :@ f8/OVuN/3bYߛwZ=9}h qTO[wQ%J\1WN{Wv@Y鎍}9l8Fy{s#9>T?bFPysjAi{|Ru޵"Nz|y`q: 3Tu6hH;v 6n=JlɚsÀ[ "ŠmQ938.JskV`ƢmRoeJŞʳ#S >ċ(QE/xySc@K/F~ |P0GMzdse\8CKOf(:#[/X POa5g4}<(iީk>D"@QF.e}۽7kZ|UOefLmL#5}"?{SHox̞ gk9ƭ[M4T1]J@F~YF@7߸f#!9Df|5gm'XnPq9aeDE #> W!ʴh.oe݀O9^cW*wnz<&B@BqmvQy!ľDtNՙ-`~ڄ=HRʼnGlfSJ<8 ߻/K5ŒepqQ=Zm]|+' jfoq+p??E|иVrJQhSU(<>-'.xqƼPID}[4K^Yyk%ғ*/v+O1%V;𲀔wbeFEZbs,9yW㍍nĥ~btLߦ~xQ5lձ3e#xse- =^5(ccm|5SԵ,]*v[$S9@O]M[*K+%Am3=VA[Y){0}tp9<찀A`=Pn–!Яg,8@pD#w뫁&z"]e?DyṛO}ԹbZK(`^A\!yhdPDUjL @]A '@FuחR[J!HUn[dh<kz ziQa^ԢX (ny־8\L]U9pnQMno?DITdyĩFQzf +9.ŃƠ ` 9 P7 JM Q8+Z v@}tƯ1WQ_WWE[K.C?)A[<do;F;ؓA>tw/Cm:d_)6{mYVe5KS3P}{J,NRƖ ]ύ6[Mm}[mcQ=7;3`ZYZc1 Ӎ/]~mgqÇȋiE 8:GMdz|GljT}T`ļ#_B-bHW(4㜃[׻o3MC0]Öc7.4 1fPUIOb)@&E,[]ӳhM~N9X.G\EnJ Tn{lp.ގ7uVjγ@BD0CLA纴*Ҽi.{qT.RP8]$xV3v!Hv%^]W4P'#u݌IѯD9*⯂jtF ?5M$_F,J'9c0w*πs]5&\LJk*;%zˈro8SaB*r"*4׊"zqdg(̹>&RV1Ջwwe6~s>v~V0iiJ)R(6IP:u Lx~oQ:f^j;`$42ġQSVɩ Hƅ[WUWr`\x# f"ЎK]b fYoӥWM5jKgkzĎ2߷L)K ;^}'Kl노 cr7B!yx&#+/Zzƽ,ҧZ_&չ;B/`rDžpL67P'f 7ES2XюVn&*_1<f/7 ^B^4f}+I0Lfee0kDntCvmqIl(v]yB\] ~9M% 8eYŹYw7Gu&0w`Q2QV0\l՗Mydc rzSД[`^[[jB4GuK(s.#Z|pn\>G +bfNF9N!sJX2pv xg%^Fxƭ|U0ĺWDhL2AJlGM{e vvnĔI@N%hz[&ё9 g7bD'`<9ZU I0OC,o!Jf/ q!x6q!G^Qd.VV܃q5o֚TWQ<TloښM &f\9Y0g"I>%m[j@VtGH+/&ˊ >cZx1+hμjAsFsF't!8$+@!!Plm8.z&#Sx0ؒoQs ix`]E7Fs~lL*N)ۖ:rjn OUbh$dM_ @dn9 zy{roB&tau PyK;y@C+â%l()$8*+^=fylbr Y ڵ{ )!뙦o&u'p0;Dj ~,PZ..I(`v=kW^ Fq])Mm8A^r ^AɨDd y)A{/YHP\B1\1AQxC|NKM]`rEora>X^G1oa)2IDQ3JK3j~q iA#>֯®l~LkQ[.uGIا6 l q: bC\THq.)JCGWes'3Ayf) ғ:'qvRΞR.JWVP4T&\V%8>/X\[|@89J,fbcrYu1@osfY?,d  lﶦuVN!PH iE2gvuU\rK^a~SALzJ\}20r:QARƅok WZtZQf}14 j։m0Vš}$zarqS,ؤփnI@&Q9RK{q+uųF;=D4醢 ~$}w@g,͇$T'f/4rIf O## PHOX[ {'?{@ȿ'Ow=!10I:g!ׇpR%V7} >j!u8HpR/ 4N7D5]&B'rG':{S}_5^c)k8S|f0?Cq5E/'[F6E,!wh[c+D(Ō7kːh)쥢YP A< GV%㎛ڈ;IoY¶ "6Z()ʹr]K(NmH@5`5[g1+vS=%⎑ևHTFej9-2+G@&@!x$VGR:x |yls/I>oq&D-M!P1Zc1Ϙ{pޓ3CPoy<=7u(g{ zɞ+>lM=dbZڒ<mHvx@ h% ^К"+Nk9^ %ԺhQToQ, fim1TqtO{Bs6ڐEu,E%>\|.WQ=J }04aX&>v7"}6?Jk)Zk%ݢ^G %Y׃\]WwrUSPOhf4Ou't|ޔ4vqI#h HP|޴+Iet$Щ#(mgB!f0{ A2kw<.^{;-/MӍvZvVOK-PyuWT9?vP۞*)iꊌ[pj柪cAKV"(?D`?4+f Ѩ BƘjX7JV$tr3Գ#֥c2gF!  V@ /bD<;q/QLE5{2_nWAfL}g (i΄H|ƯWjV;:K+Cs,Z!lWsAj>iW*FʫQӕf JHs5@{ BF`KF  >D:@wu"teO%v8#B x5vrJk.Gޓ;gCڂ.]+:~K5]N=buQDW@o|Õ\4*uŁꖐ Q ,Ne4z 7^-oCft;Kپp5r!M2.LШn=(H"?0ħi+ S'Hk{d=C90r.TTS/S~"W0^.4B3iƭ{˚V9}TQjAH[tqH%KjUe)<iRVwl}sS/S.LUK||կ@ۍZ9bƀ3a5z><#20* T>bj$J۵_fhM\[ϰhJFm &ȱe/̼l /ps>L ˚Z8k9ƥ}8b?5h:7$+d(,J ɂXaQ'q״293 T.T{8Ջs,q"Iycbt:T_| ^ӏVg MX'ԏUWnGb l9^NL& Y1_\`K5lB~˙^;kgPne"]% %lCȄ/ރ/mY+;zE*4QpG5.DXzĞ5z-0&EePִ;a]t!R} =z A2)LgqZ1u]l-nL2* _p{ZRE Q&fDOnj!Yu:EUbU}(}; bnL砳_j{^ܘSnMb6E,ٌvԨI=$njŲ)+ZedYm>}I+#ZOe &A$] Q/UgeǠ2 %w ǧl"IPPڒr|oa :9LzPP@j6p>x~<`i$Rmec["yS'op"Ni/7hԲ#4MŽR;4ٔ)]ʣs+?3۵%tH C~EvpἃSç1?]\zm{P r@xEq3\B O2a=a4~S^SfRh@9lU`a - h4^?-38X i#%a035 o'M35NII/9׈c[ȂzC 8PBk,DXxvB{pFQcFΘ=4֟ݣ" n@ZYUg,gLfY*B)5%b(^ђU#LJ/2ڦ,xӂEn~x- Gwü; >0G9C)C#{1i9nZzy^^/tC-Zc.<726^52Ea)7+aIfY7"hԬ9#g&H)ϠMYᝳ+-zi 53S`UQc49ۨ{PfSv<~]'e' &ߑrhlқH|E '"&7X9R8jq1>kuw:FH&0N͟`VBώ1'>U:^?<M^`d)V c>p!"ސW t?YzHĞt9~Ae?γ3Vy(z# R\/6x9-,tB΂L4"92蝬[jl6i9HvMEH<-Z?7+n(U+r9B'(jE״T~GR2KCr[aZ3>G=cjNh o0īˈ z* 2?qm(R"'CpZ#ZE1B82փK;R1e1!t$21vh"Љ} BOWgLO"ZNi^+;"* s Ǐ`'l?~(#tH~H=mK#Nq$ FP|[gjI[^_(8{+;_(:R~#.4K\l@^~̶DNbZrTPTfj[}:UT~6|Y\g!ulmZZ£WR=_28f/{lEI>8Tmhr6P?R`֯Zj UҵxQU`7y0s"˰!쯤j`O܍ZNEz8ܡT Dۗo袍j#S B4yQ oz[TD `8Wvq=CXbb60G f _p%dK=%ӬlJyY!"8yz95/7U@ZDlЈk`tc$oɨN&ڔlӠ煪 U[kwa7ͫ9nPȩjN>@ rhR ͪNQy!+6W@^u_B5'm{(9ԁ7+Zž.xhV?YӷXKQ5H@Ki$6<\N/b1Gs:e=*&Aq67"O1xGwnIWkLE+\@q(pnI_v|#_R"fsS7 =WGMvfQ䚆, y6ɣXXbW43E#@Hxo7CdB^P q[{N:%x؄ELOSI4Hlcx#afT[`(C1.4ḛ;C[2](djCL?!P(u4у%,OHLM~iWTLs=__ Gƪ HKႌPT3c$ulVc&j4g\_!j4TAdUR]'1&^H`VNH961eu6)͈\tܔWIwDGҘUپo&M{N6 mqaY1,t=ebO!T?b:ߜB%NNAT%<OUHiP -g ےAk7ʁ]PWEޫ@(7N9*'8=JDc<7O^6Z B$`" kzD}6MgYx"w 26Gtw Huar_~Pi?ElV:zImH &RK(VL3EELF]oR*g+A3E_#&\꼻>C~5v$*Ҙ-[ek cU*H!( >Ăa: o4Jcr [R)K-3R| ';xk̠?0ppp]:wsO,@c!Akf$BP׼a(RŻWD;ۊA&-w)_*Z%J4bE6 j6FEw##YNϜGFQvu_c4eBR pe]+]u IrUL/+(z6]b b{b둻T)Y]lЋ :w0UۙG[w0jL #FީP6śSB!o)a݈G/:,M3X] M5-M )t+ H[#8&%gYcӥ2: 5~7 Zݯ()b صԱN\LC}uӗYnn-[󠀑)8M;XGIR*|֗_[-#U0n"sY=VA YKq&9-́%k>s_/Vn5t]گĽ"Zj}:ߢ-@8ts (<% x $vI IINj?D,R?lXlWh'#?QPaf`32UaVJ:g0<t=gmdء):XW^BL jF|P^p*?wQ՜RسsoP]k~W^ചPMSXJџڤ\uUclIسH7s@Rz9X!Lf)vX:4Jw9(]X* #L_=HuΰiRZyjbvVBohIj 0÷8HM~"O%dHAGftbv>=囥$7eqVq{\4~N^ӧMNFv ZKy dMB& fm2ٽq \X:p\:9=yG5ppzJ2f &ee{u,iw&Wv]̲a? Nv箱ٸ11IE:nWQ9uXKg EF\wX`L @[CyV5o(s Omvԩ &|, } >͋6Dܦ"%\~#| q˴LX\J'F]e|mba!9l/ίUu/_}T@ekldBy2H-b6^ꢘ]1&jݽuGz6ZKxY7]NYևפdK"R&FjHRJ _p>T';oQ ; XlwNdwzg鬢cejm+_{N_Ca:=?l Px3еH}cN5yzl@~b~vy} QZZTX!9ӸK! &"{"6ppdHݷi6=8d&D-Mgj02[\"3;<諳BUlT*0Z0X%~VK{/V:ЖyQq"3O>zVrD?[CDc X!ɖvUTJOVqΘ.P-0pM x%L|?,؅Oϕ2X+h;Lp``>w?+9$'BY#>n=ƚѕ_FuEY(+,/p9%Б"0+P {f[۷ڈM,9]'1ڧ47Q ;馔}RSb ,i.smCt}h7H-Od"Vƴ{'_R1xDj ~lx)-S‚dex/yA#țvjJ?+i8Dn2#K"s yߡlA7Ge$t I'՝V"u K\k:(sD-mڍ(mR8ulkĀm`^`|#)ΏS* %YSTإ ;>#cPݚ ?e`* ~$zKpfC"~7w&se W0]%|6*EJģL=7@TՑbh)X1OM̜@ȿz2 IT'@۴;jnZ(wEQQ p>$a1*y7ytD8_k9y 6qeBSBBEh-_D^9k;ӏ Di bT~Xt![ᬱilKhAcҞ/õ{ly¬қ в IDe5Lo`3n3hCȲ)bRIgɧXYoGcMnYT<¶W}8YxH)[F`[^zL#$g*mh$ԽS蘜Jpx8QT,A sZ'̭ K,o!`̫ <eִ`#{K">]zN)8<[V];:%_W-De-f 3GӶ3a[m0DN#?b׽bRQJz>qp ][`69S*L'M86mj*%5_ɣĸgѠ f1g>1  |oSX$Ļrgg215)zβ+=pc;=R^&l&LjD8T >WwWZ\RD_!~|ϋ2=YPRj\2#˱dy\|= |B֞k nϥby3= ÝΑZEYAJ(؆+V, #ׁ{ `Ak{"ږ<,+CVΊ3DHZ^ _}Y*zhH$1c/Dn5=[N2@?[5sbɔ j^-ocHr߶Y("V$"o,WaT' Fʝznau7ֱ%̯Ȁ-2,+ \0\τ,UY7GK^EAMGd@RSLKWff;HGjg$iB HjAxht_yWP4kwa(¸3,t+^!%iNJsϕ?}F6H,Du,;)B}Sbo٣uh ]#!kɖ"~h͒\j˻m\ڊMi8ܗ' yI=ͤlL fJFqa7eui^5Ȱ1oJ5E Y%>i+5*QSV& `s(ھ Y#sPc r|s *[V/1Jz"2ԫ0%e_YG;?J8z{/K$zFʐ~F1NպCH=BXKp;,d=yJi GsvD2\*ژo$BEnS Ze}Q2kâjDy b %ga94D~}z7}*TGp̀̋:yJ0 \;,}3r.&#gn1Ndn*?AUm*p[Ⱥi$ϫ0Z[#BcΌԆsג_&o)BzPY畻1Zy< 0_'F9_%XVyHɪaԁc$ua\i -CyKM &]v%x?Hs'L:jrᘠ?X؀~]B7^gj˯̱Es vS/MK6x÷5/tDKZcQ:69, 9lcc+J ~m Cvo+b+dKA*zO~݂6m@4T48Ht Ȋ.5muM/qf0~ݺ,~S6fv/ #o ͹%MoF  VnNH003d8] Å& `#\BW }s]}. ,ᭃ©y9${tKͳ8hIdBMx|n KUYy V~>O9Xقj#.z .NT' &yHH#t]Ql/CM=m0K { V ~|A{+T=NNi" /ʂI%lkM(s3,t(wIERءHlU[*?PLGC|Ȝc {@ s"wTvvm㤱y}&@L2C4Bpa]{7cɣhĴ(B} $Z׶x(txJ8URh0d[#!kwX7I8]`j~fw"}ƻvi-6iI;-dRN/N#[-r]// <P .>lޤZ3> tck+jcnFeL]FZVʈå6hTy-&JSw-@ҧwG/ ~N>ʽK^Nz+m@-Ϫs?> wkʼnGwłʀ,BD0> 6[&ad?u9BTՖurqsȱōqh'RpH=H;_t/(tc7ЯPh'kNu'v^4 % T[)`lm!NȀ>uuJ3^~p~wZ]GX6V':RzATކV~ivӝ"ސqM~,_Ϫ^δ Yx{O5Gk7)ݤ.# *aδxEBvuk~Q\So<5z5a(F^MV's=UG{w('GC2'vq*f"5iC<}n$قMIzTaDHX8 =L %>jlO.4n( N×Ϸ$^*e(C纷kL]P{"P-`N.*twΦ{B[(+沊}?ML+saLլ]>g sQqvn`'Jc"!(g'$RRlRBT>s]yܶ?Nd/k|~ժh5)]{Bceط ">*}YabQ`V{Rɻb\trp.O qcBE#*#o9nY87!G"j/4`_Qv ~Nd.ond.OsĒZgCT߀npΪSؼ~%o-%zϻk`=`^"uriCOV|X*o 0u.{ݜ^t>~)c3_+Uh/ͼZ%7@7y^@EIѼb3_m|J6wd ݬ*nBux*wAaSsPd!M,K DDu2!) ^PLT i Q>`r\ &Yt"Ҧq VʩˣV,NJ5$GCM μ qJ3[66p[_CGneTD~Vyةs" fN[4隐z7xc@ImzLX8؟DA˦NC.SD Y!BL S=We莗^NcMyE߳ 'g+AZ QQҤ:a49%B!UoB? ۄAIMW`&դNkJs" &rPq?7Շ-fa"şn$·$ hދC6 4ZԱ? ]ɉzUk[F0 [iJY׿>W利9 7E֦`shđfqCO'@#\ѨI]SYe*!o9F' jcwM!j| и(O(ٌO0IJYѲ ˆ5 y B, ByԼQ6i^3>Q~Swgz+›An\UWZE3MJ[,W&?v#oY+@o|bȵѽT m|I@WNjc0D $gW֞W0dYFbeOOog=BH`c EjnryxHemfni.'ڟMvu6H1j@\N(BL sHCT1Z+NOZ48Mf ^K0>tPU[uRMfmmyOP8lZxS3*۟:po_*ǣ6K!-K z:D33ep&IՓQ;oO 1:=iw\iLȢ4̪db_ Mlj89Q-@LD'\7 c&r!+^CUk<_$ˆZ3|bj.UY;l}m\`c6?oe"/=' 6 mʾ^Mo;q ^0@M2y}T5>w{o'^KhҎ. lOG+(6>g:ѫZ}՗4G Ѿ0o{}N: H]Lܔ,nEazF/Y;gs±[gF5/0@yb][_%dZ^eB>!䎡|k̊ۅçCAjŠ~C9yGv=u 5I)bvfHdzþ)JR=K%)7PSX!r%ȣ^ez褼[as5V:|Go"#DlK1MeRW~O#/nW.V 9 ƹ0b3i^O';tZYb0Cט7kHpzhf] Q"v0(A/z"L?u=>R_赉iI̬/ƴ( _ v/+Sb= /͕ya% 85}*-jP[(zW^uS[k+ s9GfܥhKk38(zpq(48uϘOir`#dpC$+v;wp ;L ;=L)\7zb)ߓ# <5gӶ1M.cJ+mwYj_w+jߝHEdX?|5h·. IĕTVX[Iݦ9?͠1;ZHuBh^Y@AӴE~8cqJ8x8 ѬLƏA<Z)L3bn ݮ2Wϸ􀘧ZHk?0}ۏ3g@џAXE %亥-Nڼ \4ZNTT;X*-싙9F/sh3JżM~"QSF |ydޫudt5ԛ hTow/ }< @t[ ٸ|Eshw y^=xRk8KP/Ϣ%-YhDA'O+e/T޵_ б #-?Ӿ:Hͪoo׻3㙶‡x ryܴX.7:ɭKQy@ vHd@}d.M1 FؾL!4(V1֣l{gUy1+&w{ -}+KB5L=+FRdBPn![Tg-](`&3f)Cl_7P`R]>Ç S颭YysXZ(bSRL9K%V$9_jplj/8$g+x%OnbrN\|ָM྽{ZSYz;OΏ]`c׋feH+&ף 1BlAtӨd75fUo]Qȼ*Vd鄧ȽG8+k+ypuV&WYz$cjOƔ9D5笷]<X~2hD88S6/À>FJțNPEN|s&NHܦ$0Y_ʟ5ْD!-2R0j1s<=#M-.`dfu.DwY*ZzC<qg\=zc,P%%%"6gO߆ԊA9V˝M=wnON]a-dylSg,KW >! |?vZ1Q7ۨhpBnT'AKL%%BcxN Ž*sT\&C5;@Ytͼe4nhe9VݙL̞{siS2Z.]ACI#oGZa_X vkbpׂkdGcWVAHd2Q?rF7E7k\ M]: >yJ y0:{|Wy4 DkγsX$eG!7|ŒSEIdNju% _T*Ro*EO^.`FHsQt#+o8Is|EtYWUئV([sjV\FNt#Ȇ ߀t_quct'(xi 5{CӖL5ԗP;vX[4=2wn#OBLh`2ug9t:Ŵx&ݐKlv.X8٦>53vSNgF>t"vY{jzqT5ʠ4m>+|6n,=_ZʗqAn9X)RH{􅳬a!hF*,J*wn5oa 8 #*Ɍަg¨Z719e#hmȌ0Ἳbܐ`=Q`!\_0+ite> rҜʷbL%po@[}{bcgȷfnVx KO#ݏvqTgp[A=bT4_5$W0ȫ"g]]HN<j?X]FeA'UNX"\Y$8,h"Tĥ@ό{qS:È {#,4NKG=9i?\foFW3D9s}{DHx LeWgÌ.rǂp|*2P'9wĻ\+x}򰛠 ͓Wʊf1Eʉ:Io&:u=x@WKӜ NjOe46P\'MQ p]P(M 2'k&j>B39YǐDrVH\]C$uf"&*! Il9/L16@=``"S^֑e>w?؃oQ ԀL{Do)+(9H05 H2tf:ZXmq_[~]a-!nܓO .3/rx =47i8kͼœICm\B#]5]l61U#ݖb̺B#>J5@QTbyg`F?\S<&Ƈ*zZ L*[  <|X,(B]{%80|Y.N܁Ah1ko !6Yȫi&3ٵ0)(* Sx5!ƏP#Nx;i8E8yz_h\\GJka b-{v:Ut%8#2ܮg|K[Ve ?{S;.!h$Q5b|{!9jDtCqq8"u%0>6 lK:sClᐷlq]Q*ơ8f/Zk}S+ҟS^RTf5fVReňV49yc/N=G!IQ}K8Qf)OvoP6iAEM,Xm2Sˉ!R1UڄB,j+TJ)U e|4dQ)'yr$xi՗z=Úyk{B7ʾv!{Oy n%'p@DtfjF}F1#0FaTH/l{E)> M8'r-OQLNO[@D?$޶`xKHH*0UVW};Uv4RH&5,@_UY^DY2B l}9vv毜U\賀8ZτwScA/ɡJ !|'V~8[n!#lJzY~2>s|6A2G(T7^^s"řט|d?;GmM`@8Ձuv{YШs-U~m04MYYe(&V*-{ke~;{&$& RTN ,Nt価T>e7 ɹhD↎~Y*W.pdJ4٬{Ij=sK"'*aeYgi%YM҄B6#wZ6 )4V1>J)*vp+PJHaWnh}e[£Η:w3ӝyyP//GZ N O oBc]:Lϲ"`w#[x^9|7IbC~忼C'ٴ+ƶTЃTIije ӭj:N(/՚KM}e|C7vOV#[؀2 $ ҟl| ͗eBl#$I7oWr=$"]4G5#ѫ L#5l1紾En<ؒ&!J%="#s:Pč^GqP`L<)<}ˉɂ|{.ȼRIBaPeFz( ^ T&S;';z [xyEoN=M6I;gu_m;&o.-:ۄ"CQ)?&KG[`(/#U%F2 `:U)T@ >s̭os*"{;5~OCae|=rJr,|m?tӤ{C9huw%2b&qZ#-nϐŌ?O~8G ZfrK;׿2Y8'jS%Hs1($ۧ=Üidta^DMPtNtM+ _%In6j.xaB}F[}N}4kpVP`D'=ă4SO׮cاY]0d-LK nH 'ZD% x,:&m bNqiͭHQؖjxzM?8'aW]Xy HNB<vyF ĵI `Cdž O.ʂqV;%dy5G,n@Xŗ ^M[1ǤTU$:|cIrPᄀ`hSpk7iB2igFS93G~WS{gJ2WA+D`pv(z(sUj >`0Dޭ >s47A[SrVJ^|IU-R|'WL~,S=<%fSAfY.Wgm u~>ƛ6]!S t)c`!&[a]MPn\ wvIc>CV Z&TugRX"8H\c /+L>e2s>np9SLCze4w``,i;!ʇU rfI8yGM]4kԔȚftroW8~im"=,]Qh+CcV(rxk⡣xdA 2h㡁 7H$g :Ia; R~ǀla8la :E⧴}潪vyMEf)_:,)iGt%^18a2d .NKZ,blס2Gu/ؐ# %5 e[S`">o^!5hmjR&ևwI>oYw!,G`j܏ X :W*J6gEV{U0@IhΏpm')>Eu')}cJ9tq֑;faMꤢw3m8"uECN9/$FE"7]. -b|m>P4E1c6{/I30$NRv!i;WF#}x I=|OHTBc+d.]Vu_]7g?$fU,`~Kj!eMo씍U昍H:UxanohI4lY[ƨ2.4vta?BF|.H+TBq(ߗe+\!ܗ=F?ݍ/k"7*B^H1vr0NӺufP AA[.+n"{ÈYxߎuTJ=kݴ b5FNRǕ VjȠ-< hg6oc2gQRKyj ~D[Þ|YPVW@?XhpowЫ( ;NMcMXJd?NduP ^XśsjݯPû % 5lUZ* cwſ23ا3 n p1d^_ ?_C;AjU 0eá ̶C׹l|NfGʌyi^CwӴaϽs@-睕zN؞^"#07GYHl s@n!b..>0 VXz;V>K:n#,!0U:+:T<\(-|m;6`zGl9nTK)dp`Q LPrM@QilfeZ]~+whRu0&;8I_ɭ7IYsb}b%(<oG$$lEm\&% jcj`'͠M62`[8F9aa1`geWf/`1]k!8kCtykN'`6bvlvMeq$ykk53|YQj5#lhʊ/\;U_7U6YH?͉TMcdT<vEVtLb8ր4M7Ɖa8Jh:D\]:Y{_-mȖ,] &neAXĠ}_k /PRW(F^i/ӛ,NP--M! t"ocZ729Pl 0_{#M+&3>lSilZ0mDT?sH pM7 p5i! [J 56%)l&뤲3vC 0&ӁR pXRN7~VY؉ś{ 9ޕ|S6@ao*qQst=[Ъ<}Gu_9Ѥ/[crWģJltT. BWN":/M6IQӔ*#'h\ͻ(<0%,s8ĕX4\n4Z */2+e"lw{M0ZUYY,K Ce&shH m1$v]UЊaAb$5{9>JֿTnJUb]$8{CA|Sq4-cH뛌H|z]抛,KPC9l]?2g{"nv %vjvT3j'[e(3aOm -3÷0I%6'Į> ]=9a{AFVHj^|z:Lxt t$PBC(V8! ]tsaށզp2ڟ7~3cM<\7}w_?dCHc_~#; , :%=VbSN(Hn|{T"ZT_%)g>'&[h"'dn 3e,U}fqfڱ y=/?$%bU%eVSx+T^;N ~.1}D][vn r2 ݑrcB_LLYmESse@:|%58 lPWY)1LrmwN- &Cg.n Eb^z|)KG,^N'6RњXyI% }RqӞsC'i1(#fRH5q3k#yAp"HB鈎lqE϶bNQ"I+mZ0Z0B&\! R|͞V*nCU~fʰӗ)ċ^Ak;Aį0 X&1S8>q0)uMjCtJ $bFGt`7!bp 5ĿIݯc4 돳HGZF W#;2c8ٕuJ2@SѼpXF(~5c`2iwp78`4?-}ڵ2r~|VPt˗ Ģ,l W·k $3|,4֛$;*2p!&{TZ&%jOUGʏ)}G]]ssq&8O;v3xIOlg &m oϑC"#M։hQVl2d)&^>a4aSLQ0K|~ * '$!)ȯ1xu81bVeFNB/I/AF,\g+%mXa2rO0hatEܦ(yԬ2⤬e('Y|洼 1(1euD[Zt@:{+`#ݐ"8xv,>WX{əJ;"٥``%mS7ry`ì3La^hTM-YXBDF9KMN8T$5c]s?@$M`w`ؒ pv!V[Š "ZEU8ˤxb} oHH}+%#Lb؂o`u\2s‚"S4.4%;Gŭ@R%Afai7/#k_qLYU\v|ӲjhV [}% ) EX[􄁕+ Y`$aꚳ}2xe o)w՞tX607Tb0]3Te0 Aw))C8'_;^03K/:[ j9Kr99uっrCfL9C2ZW'ƖOBÔ7@5nhÚ e(,n g+7MҠ"K|5\Vt+Ir RN[YK!ԯ-3% 6Y^qyNRЃtю#`I.hMhm{nt3ެ 7* ke+UzdXV6ݚbR֟2C}Y8 ŀ5>]P'=CHϒ\)dW 1F^#B`"YeŁ1~`=R;p!Gd 3Ю_|0Pl3lvٴ"YGv~X*P4bf~7T9l5aXWU"MFc2ݶ c: `hc0Psf6[_?[РFdXCŜEɬPI&8iP9Xu8 Nwn3{S3]wz *\G ŷ"`ī">`}.:JBQROj7r9λcQ:JkS8#Bv߮w!%M.7f"H}j"CoyÚ˲:Mj;"EnX)_niJ}Rt Π+5:n7:ʂiP/JGCZIVڢwJ1,!k*KVd@o[āx86݉ТP ()^X:b:'%(Vߴy*{$ !C}P$ɜ_QIlœ?jt8:˓ݛ_Ky@.M#:*/nKoK2_3-[GK>Go6=QsmsNݔ \ױr1JyoLzij7F{pc,I"Tq@-xBB~ (];%.xK \xiy4+?t:>iG 3֔/ w8u?8x j S'_gIE4;m:Y)h$P׉aU7ZAʂȺ{ <5Jhs63p˰)E[{ ִFLb^'j[> [,L:[Q~#nN0Hf㪖1d+|4ӂTN~2:qb_8سK0pI*NUU18KB䰲  I6`i龨~jҖoɹ M8RMu2|rX{Ĭ8g((W.` YZ