sssd-krb5-common-1.15.2-5.fc25$> BG!nмZ>=^?Nd ! \% 4Hekt    u |$( 89 h:@GՈH՜IհXոY\]^.bֈdׁe׆f׉l׋tרu׼vw|xِy٤(DHCsssd-krb5-common1.15.25.fc25SSSD helpers needed for Kerberos and GSSAPI authenticationProvides helper processes that the LDAP and Kerberos back ends can use for Kerberos user or host authentication.Y.buildvm-armv7-11.arm.fedoraproject.orgFedora ProjectFedora ProjectGPLv3+Fedora ProjectApplications/Systemhttps://pagure.io/SSSD/sssd/linuxarmv7hl#\KA큤AY.Y.Y.XqY.9ea3cabc9c25b12485702d1e4085acd2b51be267926ba437770682b3dbaceaba0c16f64477ec4ec4be1aea368f3afc26d26e489f20a56779f17856c94886895a8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b903rootrootrootrootrootrootrootrootrootrootsssd-1.15.2-5.fc25.src.rpmsssd-krb5-commonsssd-krb5-common(armv7hl-32)@@@@@@@@@@@@@@@@@@@@    @cyrus-sasl-gssapi(armv7hl-32)ld-linux-armhf.so.3ld-linux-armhf.so.3(GLIBC_2.4)libc.so.6libc.so.6(GLIBC_2.4)libcom_err.so.2libdhash.so.1libdhash.so.1(DHASH_0.4.3)libgcc_s.so.1libgcc_s.so.1(GCC_3.5)libk5crypto.so.3libkrb5.so.3libkrb5.so.3(krb5_3_MIT)libpcre.so.1libpopt.so.0libpopt.so.0(LIBPOPT_0)libsss_debug.solibsystemd.so.0libsystemd.so.0(LIBSYSTEMD_209)libtalloc.so.2libtalloc.so.2(TALLOC_2.0.2)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)rtld(GNU_HASH)sssd-common3.0.4-14.6.0-14.0-15.2-11.15.2-5.fc25sssd1.10.0-8.beta24.13.0.1Y.@Y@X-X~@XO@X6@XOXXWW@WWW@WWv[@Wi,@W5W@W@V3VVVvV%@VqR@VO @V<@V/g@V$@V @V @UpU|@U4@UUUU@UzUzUzUL@UL@U.RU@TTT@T~T8TܕT@T@TTTq@T@T@Tp@TA@TuTto@TG@TD@TT @S0SS@S.SP@S @Sg@SrS!@SkqSkqSG@SFSCS!SSRRpRpR^R[RSRNREs@RD!R@R@RNQB@Q@QQQکQQQo@Q)@Q@QQ@Q@QbQbQV@Q'@QQQQnQZ@QU@Q0@QQQ@Q@QQ @QQh@PP@P@P@Pz@Pz@PqnPl(PaPaPS@PH@PDPM>M2@MMzMx@Mj - 1.15.2-5Lukas Slebodnik - 1.15.2-3Lukas Slebodnik - 1.15.2-2Lukas Slebodnik - 1.15.2-1Lukas Slebodnik - 1.15.1-1Lukas Slebodnik - 1.15.0-1Lukas Slebodnik - 1.14.2-2Lukas Slebodnik - 1.14.2-1Lukas Slebodnik - 1.14.1-4Lukas Slebodnik - 1.14.1-3Lukas Slebodnik - 1.14.1-2Lukas Slebodnik - 1.14.1-1Stephen Gallagher - 1.14.0-5Fedora Release Engineering - 1.14.0-4Lukas Slebodnik - 1.14.0-3Lukas Slebodnik - 1.14.0-2.betaLukas Slebodnik - 1.14.0-1.alphaLukas Slebodnik - 1.13.4-3Lukas Slebodnik - 1.13.4-2Lukas Slebodnik - 1.13.4-1Lukas Slebodnik - 1.13.3-6Lukas Slebodnik - 1.13.3-5Fedora Release Engineering - 1.13.3-4Lukas Slebodnik - 1.13.3-3Lukas Slebodnik - 1.13.3-2Lukas Slebodnik - 1.13.3-1Lukas Slebodnik - 1.13.2-1Robert Kuska - 1.13.1-5Lukas Slebodnik - 1.13.1-4Lukas Slebodnik - 1.13.1-3Lukas Slebodnik - 1.13.1-2Lukas Slebodnik - 1.13.1-1Lukas Slebodnik - 1.13.0-6Lukas Slebodnik - 1.13.0-5Lukas Slebodnik - 1.13.0-4Lukas Slebodnik - 1.13.0-3Lukas Slebodnik - 1.13.0-2.alphaLukas Slebodnik - 1.13.0-1.alphaFedora Release Engineering - 1.12.5-4Lukas Slebodnik - 1.12.5-3Lukas Slebodnik - 1.12.5-2Lukas Slebodnik - 1.12.5-1Lukas Slebodnik - 1.12.4-8Lukas Slebodnik - 1.12.4-7Lukas Slebodnik - 1.12.4-6Lukas Slebodnik - 1.12.4-5Jakub Hrozek - 1.12.4-4Jakub Hrozek - 1.12.4-3Lukas Slebodnik - 1.12.4-2Lukas Slebodnik - 1.12.4-1Lukas Slebodnik - 1.12.3-7Lukas Slebodnik - 1.12.3-6Jakub Hrozek - 1.12.3-5Lukas Slebodnik - 1.12.3-4Lukas Slebodnik - 1.12.3-3Lukas Slebodnik - 1.12.3-2Lukas Slebodnik - 1.12.3-1Lukas Slebodnik - 1.12.2-8Sumit Bose - 1.12.2-7Lukas Slebodnik - 1.12.2-6Jakub Hrozek - 1.12.2-5Jakub Hrozek - 1.12.2-4Jakub Hrozek - 1.12.2-3Jakub Hrozek - 1.12.2-2Jakub Hrozek - 1.12.2-1Jakub Hrozek - 1.12.1-2Jakub Hrozek - 1.12.1-1Jakub Hrozek - 1.12.0-7Fedora Release Engineering - 1.12.0-6Stephen Gallagher 1.12.0-5Jakub Hrozek - 1.12.0-1Fedora Release Engineering - 1.12.0-4.beta2Jakub Hrozek - 1.12.0-1.beta2Jakub Hrozek - 1.12.0-2.beta1Jakub Hrozek - 1.12.0-1.beta1Jakub Hrozek - 1.11.5.1-4Stephen Gallagher - 1.11.5.1-3Stephen Gallagher - 1.11.5.1-2Jakub Hrozek - 1.11.5.1-1Stephen Gallagher 1.11.5-2Jakub Hrozek - 1.11.5-1Sumit Bose - 1.11.4-3Jakub Hrozek - 1.11.4-2Jakub Hrozek - 1.11.4-1Jakub Hrozek - 1.11.3-2Jakub Hrozek - 1.11.3-1Jakub Hrozek - 1.11.2-1Sumit Bose - 1.11.1-5Sumit Bose - 1.11.1-4Jakub Hrozek - 1.11.1-3Jakub Hrozek - 1.11.1-2Jakub Hrozek - 1.11.1-1Jakub Hrozek - 1.11.0-3Jakub Hrozek - 1.11.0-2Jakub Hrozek - 1.11.0-1Jakub Hrozek - 1.11.0-0.4.beta2Fedora Release Engineering - 1.11.0-0.3.beta2Jakub Hrozek - 1.11.0.2beta2Jakub Hrozek - 1.11.0.1beta2Jakub Hrozek - 1.10.1-1Jakub Hrozek - 1.10.0-17Stephen Gallagher - 1.10.0-16Stephen Gallagher - 1.10.0-15Stephen Gallagher - 1.10.0-14Jakub Hrozek - 1.10.0-13Dan Horák - 1.10.0-12.beta2Jakub Hrozek - 1.10.0-11.beta2Jakub Hrozek - 1.10.0-10.beta2Jakub Hrozek - 1.10.0-9.beta2Jakub Hrozek - 1.10.0-8.beta1Jakub Hrozek - 1.10.0-8.beta2Jakub Hrozek - 1.10.0-7.beta1Jakub Hrozek - 1.10.0-6.beta1Jakub Hrozek - 1.10.0-5.beta1Jakub Hrozek - 1.10.0-4.beta1Jakub Hrozek - 1.10.0-3.beta1Jakub Hrozek - 1.10.0-2.alpha1Jakub Hrozek - 1.10.0-1.alpha1Jakub Hrozek - 1.9.5-10Stephen Gallagher - 1.9.4-9Jakub Hrozek - 1.9.4-8Jakub Hrozek - 1.9.4-7Jakub Hrozek - 1.9.4-6Jakub Hrozek - 1.9.4-5Jakub Hrozek - 1.9.4-4Jakub Hrozek - 1.9.4-3Jakub Hrozek - 1.9.4-2Jakub Hrozek - 1.9.4-1Jakub Hrozek - 1.9.3-1Jakub Hrozek - 1.9.2-5Jakub Hrozek - 1.9.2-4Jakub Hrozek - 1.9.2-3Jakub Hrozek - 1.9.2-2Jakub Hrozek - 1.9.2-1Jakub Hrozek - 1.9.1-1Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-24Jakub Hrozek - 1.9.0-23Jakub Hrozek - 1.9.0-22.rc1Jakub Hrozek - 1.9.0-21.beta7Jakub Hrozek - 1.9.0-20.beta6Jakub Hrozek - 1.9.0-19.beta6Jakub Hrozek - 1.9.0-18.beta6Jakub Hrozek - 1.9.0-17.beta6Jakub Hrozek - 1.9.0-16.beta6Jakub Hrozek - 1.9.0-14.beta6Jakub Hrozek - 1.9.0-13.beta6Fedora Release Engineering - 1.9.0-13.beta5Jakub Hrozek - 1.9.0-12.beta5Stephen Gallagher - 1.9.0-11.beta4Jakub Hrozek - 1.9.0-10.beta4Jakub Hrozek - 1.9.0-9.beta4Stephen Gallagher - 1.9.0-8.beta3Stephen Gallagher - 1.9.0-7.beta2Stephen Gallagher - 1.9.0-6.beta2Stephen Gallagher - 1.9.0-5.beta2Stephen Gallagher - 1.9.0-4.beta1Stephen Gallagher - 1.9.0-3.beta1Stephen Gallagher - 1.9.0-2.beta1Stephen Gallagher - 1.9.0-1.beta1Stephen Gallagher - 1.8.3-11Stephen Gallagher - 1.8.2-10Stephen Gallagher - 1.8.1-9Stephen Gallagher - 1.8.1-8Stephen Gallagher - 1.8.1-7Stephen Gallagher - 1.8.0-6Stephen Gallagher - 1.8.0-5.beta3Stephen Gallagher - 1.8.0-4.beta3Petr Pisar - 1.8.0-3.beta2Stephen Gallagher - 1.8.0-1.beta2Stephen Gallagher - 1.8.0-1.beta1Stephen Gallagher - 1.7.0-5Stephen Gallagher - 1.7.0-4Stephen Gallagher - 1.7.0-3Fedora Release Engineering - 1.7.0-2Stephen Gallagher - 1.7.0-1Stephen Gallagher - 1.6.4-1Stephen Gallagher - 1.6.3-5Stephen Gallagher - 1.6.3-4Jakub Hrozek - 1.6.3-3Stephen Gallagher - 1.6.3-2Stephen Gallagher - 1.6.3-1Fedora Release Engineering - 1.6.2-5Stephen Gallagher - 1.6.2-4Stephen Gallagher - 1.6.2-3Stephen Gallagher - 1.6.2-2Stephen Gallagher - 1.6.2-1Stephen Gallagher - 1.6.1-1Stephen Gallagher - 1.6.0-2Stephen Gallagher - 1.6.0-1Stephen Gallagher - 1.5.11-2Stephen Gallagher - 1.5.10-1Stephen Gallagher - 1.5.9-1Stephen Gallagher - 1.5.8-1Stephen Gallagher - 1.5.7-3Stephen Gallagher - 1.5.7-2Stephen Gallagher - 1.5.7-1Stephen Gallagher - 1.5.6.1-1Stephen Gallagher - 1.5.6-1Stephen Gallagher - 1.5.5-5Stephen Gallagher - 1.5.5-4Stephen Gallagher - 1.5.5-3Stephen Gallagher - 1.5.5-2Stephen Gallagher - 1.5.5-1Stephen Gallagher - 1.5.4-1Stephen Gallagher - 1.5.3-2Stephen Gallagher - 1.5.3-1Stephen Gallagher - 1.5.2-1Simo Sorce - 1.5.1-9Stephen Gallagher - 1.5.1-8Stephen Gallagher - 1.5.1-7Stephen Gallagher - 1.5.1-6Stephen Gallagher - 1.5.1-5Fedora Release Engineering - 1.5.1-4Stephen Gallagher - 1.5.1-3Stephen Gallagher - 1.5.1-2Stephen Gallagher - 1.5.1-1Stephen Gallagher - 1.5.0-2Stephen Gallagher - 1.5.0-1Stephen Gallagher - 1.4.1-3Stephen Gallagher - 1.4.1-2Stephen Gallagher - 1.4.1-1Stephen Gallagher - 1.4.0-2Stephen Gallagher - 1.4.0-1Stephen Gallagher - 1.3.0-35Stephen Gallagher - 1.3.0-34Stephen Gallagher - 1.3.0-33Stephen Gallagher - 1.3.0-32Stephen Gallagher - 1.3.0-31Stephen Gallagher - 1.3.0-30David Malcolm - 1.2.91-21Stephen Gallagher - 1.2.91-20Stephen Gallagher - 1.2.1-15Stephen Gallagher - 1.2.0-12Stephen Gallagher - 1.1.92-11Stephen Gallagher - 1.1.91-10Simo Sorce - 1.1.1-3Stephen Gallagher - 1.1.1-1Stephen Gallagher - 1.1.0-2Stephen Gallagher - 1.1.0-1.pre20100317git0ea7f19Stephen Gallagehr - 1.0.5-2Stephen Gallagher - 1.0.5-1Stephen Gallagher - 1.0.4-1Stephen Gallagher - 1.0.3-1Stephen Gallagher - 1.0.2-1Stephen Gallagher - 1.0.1-1Stephen Gallagher - 1.0.0-2Stephen Gallagher - 1.0.0-1Stephen Gallagher - 0.99.1-1Stephen Gallagher - 0.99.0-1Stephen Gallagher - 0.7.1-1Stephen Gallagher - 0.7.0-2Stephen Gallagher - 0.7.0-1Stephen Gallagher - 0.6.1-2Stephen Gallagher - 0.6.1-1Stephen Gallagher - 0.6.0-1Sumit Bose - 0.6.0-0Simo Sorce - 0.5.0-0Jakub Hrozek - 0.4.1-4Fedora Release Engineering - 0.4.1-3Simo Sorce - 0.4.1-2Simo Sorce - 0.4.1-1Simo Sorce - 0.4.1-0Simo Sorce - 0.3.2-2Jakub Hrozek - 0.3.2-1Simo Sorce - 0.3.1-2Simo Sorce - 0.3.1-1Simo Sorce - 0.3.0-2Simo Sorce - 0.3.0-1Simo Sorce - 0.2.1-1Simo Sorce - 0.2.0-1Jakub Hrozek - 0.1.0-5.20090309git691c9b3Jakub Hrozek - 0.1.0-4Sumit Bose - 0.1.0-3Jakub Hrozek - 0.1.0-2Stephen Gallagher - 0.1.0-1- Resolves upstream#3382 - SSSD should use memberOf, not originalMemberOf to evaluate group membership for HBAC rules- Resolves: rhbz#1445680 - Properly fall back to local Smartcard authentication - Resolves: rhbz#1437199 - sssd-nfs-idmap-1.15.2-1.fc25.x86_64 conflicts with file from package sssd-common-1.15.1-1.fc25.x86_64 - Resolves: rhbz#1063278 - sss_ssh_knownhostsproxy doesn't fall back to ipv4- Backport few upstrem fixes from master - Resolves: upstream#3297 Fix issue with IPA + SELinux in containers - Resolves: upstream#3360 Do not leak selinux context on clients destruction- New upstream release 1.15.2 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_2.html- New upstream release 1.15.1 - https://docs.pagure.org/SSSD.sssd/users/relnotes/notes_1_15_1.html- New upstream release 1.15.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.15.0- Resolves: rhbz#1369130 - nss_sss should not link against libpthread - Resolves: rhbz#1392916 - sssd failes to start after update - Resolves: rhbz#1398789 - SELinux is preventing sssd from 'write' accesses on the directory /etc/sssd- New upstream release 1.14.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.2- libwbclient-sssd: update interface to version 0.13- Fix regression with krb5_map_user - Resolves: rhbz#1375552 - krb5_map_user doesn't seem effective anymore - Resolves: rhbz#1349286 - authconfig fails with SSSDConfig.NoDomainError: default if nonexistent domain is mentioned- Backport important patches from upstream 1.14.2 prerelease - Resolves: upstream #3154 - sssd exits if clock is adjusted backwards after boot - Resolves: upstream #3163 - resolving IPA nested user group is broken in 1.14- New upstream release 1.14.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.1- Add workaround patch for RHBZ #1366403- https://fedoraproject.org/wiki/Changes/Automatic_Provides_for_Python_RPM_Packages- New upstream release 1.14.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0- New upstream release 1.14 beta - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0beta- New upstream release 1.14 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.14.0alpha- Resolves: rhbz#1335639 - [abrt] sssd-dbus: ldb_msg_find_element(): sssd_ifp killed by SIGSEGV- Resolves: rhbz#1328108 - Protocol error with FreeIPA on CentOS 6- New upstream release 1.13.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.4- Resolves: rhbz#1276868 - Sudo PAM Login should support multiple password prompts (e.g. Password + Token) - Resolves: rhbz#1313041 - ssh with sssd proxy fails with "Connection closed by remote host" if locale not available- Resolves: rhbz#1310664 - [RFE] IPA: resolve external group memberships of IPA groups during getgrnam and getgrgid - Resolves: rhbz#1301303 - sss_obfuscate: SyntaxError: Missing parentheses in call to 'print'- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild- Additional upstream fixes- Resolves: rhbz#1256849 - SUDO: Support the IPA schema- New upstream release 1.13.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.3- New upstream release 1.13.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.2- Rebuilt for Python3.5 rebuild- Fix building pac responder with the krb5-1.14- python-sssdconfig: Fix parssing sssd.conf without config_file_version - Resolves: upstream #2837 - REGRESSION: ipa-client-automout failed- Fix few segfaults - Resolves: upstream #2811 - PAM responder crashed if user was not set - Resolves: upstream #2810 - sssd_be crashed in ipa_srv_ad_acct_lookup_step- New upstream release 1.13.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.1- Fix OTP bug - Resolves: upstream #2729 - Do not send SSS_OTP if both factors were entered separately- Backport upstream patches required by FreeIPA 4.2.1- Fix ipa-migration bug - Resolves: upstream #2719 - IPA: returned unknown dp error code with disabled migration mode- New upstream release 1.13.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0- Unify return type of list_active_domains for python{2,3}- New upstream release 1.13 alpha - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.13.0alpha- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild- Fix libwbclient alternatives- Backport important patches from upstream 1.13 prerelease- New upstream release 1.12.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.5- Backport important patches from upstream 1.13 prerelease - Resolves: rhbz#1060325 - Does sssd-ad use the most suitable attribute for group name - Resolves: upstream #2335 - Investigate using the krb5 responder for driving the PAM conversation with OTPs - Enable cmocka tests for secondary architectures- Backport patches from upstream 1.12.5 prerelease - contains many fixes- Fix slow login with ipa and SELinux - Resolves: upstream #2624 - Only set the selinux context if the context differs from the local one- Fix regressions with ipa and SELinux - Resolves: upstream #2587 - With empty ipaselinuxusermapdefault security context on client is staff_u- Also relax libldb Requires - Remove --enable-ldb-version-check- Relax libldb BuildRequires to be greater-or-equal- Add support for python3 bindings - Add requirement to python3 or python3 bindings - Resolves: rhbz#1014594 - sssd: Support Python 3- New upstream release 1.12.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.4- Backport patches with Python3 support from upstream- Fix double free in monitor - Resolves: rhbz#1186887 [abrt] sssd-common: talloc_abort(): sssd killed by SIGABRT- Rebuild for new libldb- Decrease priority of sssd-libwbclient 20 -> 5 - It should be lower than priority of samba veriosn of libwbclient. - https://bugzilla.redhat.com/show_bug.cgi?id=1175511#c18- Apply a number of patches from upstream to fix issues found 1.12.3 - Resolves: rhbz#1176373 - dyndns_iface does not accept multiple interfaces, or isn't documented to be able to - Resolves: rhbz#988068 - getpwnam_r fails for non-existing users when sssd is not running - Resolves: upstream #2557 authentication failure with user from AD- Resolves: rhbz#1164156 - libsss_simpleifp should pull sssd-dbus - Resolves: rhbz#1179379 - gzip: stdin: file size changed while zipping when rotating logfile- New upstream release 1.12.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.3 - Fix spelling errors in description (fedpkg lint)- Rebuild for libldb 1.1.19- Resolves: rhbz#1175511 - sssd-libwbclient conflicts with Samba's and causes crash in wbinfo - in addition to the patch libwbclient.so is filtered out of the Provides list of the package- Fix regressions and bugs in sssd upstream 1.12.2 - https://fedorahosted.org/sssd/ticket/{id} - Regressions: #2471, #2475, #2483, #2487, #2529, #2535 - Bugs: #2287, #2445- Rebuild for libldb 1.1.18- Fix typo in libwbclient-devel %preun- Use alternatives for libwbclient- Backport several patches from upstream. - Fix a potential crash against old (pre-4.0) IPA servers- New upstream release 1.12.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.2- Resolves: rhbz#1139962 - Fedora 21, FreeIPA 4.0.2: sssd does not find user private group from server- New upstream release 1.12.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.1- Do not crash on resolving a group SID in IPA server mode- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild- Fix release version for upgrades- New upstream release 1.12.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild- New upstream release 1.12 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta2- Fix tests on big-endian - Fix previous changelog entry- New upstream release 1.12 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.12.0beta1- Rebuild against new ding-libs- Make LDB dependency a strict equivalency- Rebuild against new libldb- New upstream release 1.11.5.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5.1- Fix bug in generation of systemd unit file- New upstream release 1.11.5 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.5- Handle new error code for IPA password migration- Include couple of patches from upstream 1.11 branch- New upstream release 1.11.4 - Remove upstreamed patch - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.4- Handle OTP response from FreeIPA server gracefully- New upstream release 1.11.3 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.3- New upstream release 1.11.2 - Remove upstreamed patches - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.2- Fix potential crash with external groups in trusted IPA-AD setup- Add plugin for cifs-utils - Resolves: rhbz#998544- Fix failover from Global Catalog to LDAP in case GC is not available- Remove the ability to create public ccachedir (#1015089)- New upstream release 1.11.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.1- Fix multicast checks in the SSSD - Resolves: rhbz#1007475 - The multicast check is wrong in the sudo source code getting the host info- Backport simplification of ccache management from 1.11.1 - Resolves: rhbz#1010553 - sssd setting KRB5CCNAME=(null) on login- New upstream release 1.11.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0- Resolves: #967012 - [abrt] sssd-1.9.5-1.fc18: sss_mmap_cache_gr_invalidate_gid: Process /usr/libexec/sssd/sssd_nss was killed by signal 11 (SIGSEGV) - Resolves: #996214 - sssd proxy_child segfault- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild- Resolves: #906427 - Do not use %{_lib} in specfile for the nss and pam libraries- New upstream release 1.11 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.11.0beta2- New upstream release 1.10.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.1- sssd-tools should require sssd-common, not sssd- Move sssd_pac to the sssd-ipa and sssd-ad subpackages - Trim out RHEL5-specific macros since we don't build on RHEL 5 - Trim out macros for Fedora older than F18 - Update libldb requirement to 1.1.16 - Trim RPM changelog down to the last year- Move sssd_pac to the sssd-krb5 subpackage- Fix Obsoletes: to account for dist tag - Convert post and pre scripts to run on the sssd-common subpackage - Remove old conversion from SYSV- New upstream release 1.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0- the cmocka toolkit exists only on selected arches- Apply a number of patches from upstream to fix issues found post-beta, in particular: -- segfault with a high DEBUG level -- Fix IPA password migration (upstream #1873) -- Fix fail over when retrying SRV resolution (upstream #1886)- Only BuildRequire libcmocka on Fedora- Fix typo in Requires that prevented an upgrade (#973916) - Use a hardcoded version in Conflicts, not less-than-current- Enable hardened build for RHEL7- New upstream release 1.10 beta2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta2 - BuildRequire libcmocka-devel in order to run all upstream tests during build - BuildRequire libnl3 instead of libnl1 - No longer BuildRequire initscripts, we no longer use /sbin/service - Remove explicit krb5-libs >= 1.10 requires; this platform doensn't carry any older krb5-libs version- Apply a couple of patches from upstream git that resolve crashes when ID mapping object was not initialized properly but needed later- Resolves: rhbz#961357 - Missing dyndns_update entry in sssd.conf during realm join - Resolves: rhbz#961278 - Login failure: Enterprise Principal enabled by default for AD Provider - Resolves: rhbz#961251 - sssd does not create user's krb5 ccache dir/file parent directory when logging in- BuildRequire recent libini_config to ensure consistent behaviour- Explicitly Require libini_config >= 1.0.0.1 to work around a SONAME bug in ding-libs - Fix SSH integration with fully-qualified domains - Add the ability to dynamically discover the NetBIOS name- New upstream release 1.10 beta1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0beta1- Add a patch to fix krb5 ccache creation issue with krb5 1.11- New upstream release 1.10 alpha1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.10.0alpha1- Add a patch to fix krb5 unit tests- Split internal helper libraries into a shared object - Significantly reduce disk-space usage- Fix the Kerberos password expiration warning (#912223)- Do not write out dots in the domain-realm mapping file (#905650)- Include upstream patch to build with krb5-1.11- Rebuild against new libldb- Fix build with new automake versions- Recreate Kerberos ccache directory if it's missing - Resolves: rhbz#853558 - [sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir does not exist- Fix changelog dates to make F19 rpmbuild happy- New upstream release 1.9.4- New upstream release 1.9.3- Resolve groups from AD correctly- Check the validity of naming context- Move the sss_cache tool to the main package- Include the 1.9.2 tarball- New upstream release 1.9.2- New upstream release 1.9.1- require the latest libldb- Use mcpath insted of mcachepath macro to be consistent with upsteam spec file- New upstream release 1.9.0- New upstream release 1.9.0 rc1- New upstream release 1.9.0 beta7 - obsoletes patches #1-#3- Rebuild against libldb 1.12- Rebuild against libldb 1.11- Change the default ccache location to DIR:/run/user/${UID}/krb5cc and patch man page accordingly - Resolves: rhbz#851304- Rebuild against libldb 1.10- Only create the SELinux login file if there are SELinux mappings on the IPA server- Don't discard HBAC rule processing result if SELinux is on Resolves: rhbz#846792 (CVE-2012-3462)- New upstream release 1.9.0 beta 6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta6 - A new option, override_shell was added. If this option is set, all users managed by SSSD will have their shell set to its value. - Fixes for the support for setting default SELinux user context from FreeIPA. - Fixed a regression introduced in beta 5 that broke LDAP SASL binds - The SSSD supports the concept of a Primary Server and a Back Up Server in failover - A new command-line tool sss_seed is available to help prime the cache with a user record when deploying a new machine - SSSD is now able to discover and save the domain-realm mappings between an IPA server and a trusted Active Directory server. - Packaging changes to fix ldconfig usage in subpackages (#843995) - Rebuild against libldb 1.1.9- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild- New upstream release 1.9.0 beta 5 - Obsoletes the patch for missing DP_OPTION_TERMINATOR in AD provider options - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta5 - Many fixes for the support for setting default SELinux user context from FreeIPA, most notably fixed the specificity evaluation - Fixed an incorrect default in the krb5_canonicalize option of the AD provider which was preventing password change operation - The shadowLastChange attribute value is now correctly updated with the number of days since the Epoch, not seconds- Fix broken ARM build - Add missing DP_OPTION_TERMINATOR in AD provider options- Own several directories create during make install (#839782)- New upstream release 1.9.0 beta 4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta4 - Add a new AD provider to improve integration with Active Directory 2008 R2 or later servers - SUDO integration was completely rewritten. The new implementation works with multiple domains and uses an improved refresh mechanism to download only the necessary rules - The IPA authentication provider now supports subdomains - Fixed regression for setups that were setting default_tkt_enctypes manually by reverting a previous workaround.- New upstream release 1.9.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta3 - Add a new PAC responder for dealing with cross-realm Kerberos trusts - Terminate idle connections to the NSS and PAM responders- Switch unicode library from libunistring to Glib - Drop unnecessary explicit Requires on keyutils - Guarantee that versioned Requires include the correct architecture- Fix accidental disabling of the DIR cache support- New upstream release 1.9.0 beta 2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta2 - Add support for the Kerberos DIR cache for storing multiple TGTs automatically - Major performance enhancement when storing large groups in the cache - Major performance enhancement when performing initgroups() against Active Directory - SSSDConfig data file default locations can now be set during configure for easier packaging- Fix regression in endianness patch- Rebuild SSSD against ding-libs 0.3.0beta1 - Fix endianness bug in service map protocol- Fix several regressions since 1.5.x - Ensure that the RPM creates the /var/lib/sss/mc directory - Add support for Netscape password warning expiration control - Rebuild against libldb 1.1.6- New upstream release 1.9.0 beta 1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.9.0beta1 - Add native support for autofs to the IPA provider - Support for ID-mapping when connecting to Active Directory - Support for handling very large (> 1500 users) groups in Active Directory - Support for sub-domains (will be used for dealing with trust relationships) - Add a new fast in-memory cache to speed up lookups of cached data on repeated requests- New upstream release 1.8.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.3 - Numerous manpage and translation updates - LDAP: Handle situations where the RootDSE isn't available anonymously - LDAP: Fix regression for users using non-standard LDAP attributes for user information- New upstream release 1.8.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.2 - Several fixes to case-insensitive domain functions - Fix for GSSAPI binds when the keytab contains unrelated principals - Fixed several segfaults - Workarounds added for LDAP servers with unreadable RootDSE - SSH knownhostproxy will no longer enter an infinite loop preventing login - The provided SYSV init script now starts SSSD earlier at startup and stops it later during shutdown - Assorted minor fixes for issues discovered by static analysis tools- Don't duplicate libsss_autofs.so in two packages - Set explicit package contents instead of globbing- Fix uninitialized value bug causing crashes throughout the code - Resolves: rhbz#804783 - [abrt] Segfault during LDAP 'services' lookup- New upstream release 1.8.1 - Resolve issue where we could enter an infinite loop trying to connect to an auth server - Fix serious issue with complex (3+ levels) nested groups - Fix netgroup support for case-insensitivity and aliases - Fix serious issue with lookup bundling resulting in requests never completing - IPA provider will now check the value of nsAccountLock during pam_acct_mgmt in addition to pam_authenticate - Fix several regressions in the proxy provider - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#799031 - --debug option for sss_debuglevel doesn't work- New upstream release 1.8.0 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental) - Include the IPA AutoFS provider - Fixed several memory-corruption bugs - Fixed a regression in group enumeration since 1.7.0 - Fixed a regression in the proxy provider - Resolves: rhbz#741981 - Separate Cache Timeouts for SSSD - Resolves: rhbz#797968 - sssd_be: The requested tar get is not configured is logged at each login - Resolves: rhbz#754114 - [abrt] sssd-1.6.3-1.fc16: ping_check: Process /usr/sbin/sssd was killed by signal 11 (SIGSEGV) - Resolves: rhbz#743133 - Performance regression with Kerberos authentication against AD - Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - Resolves: rhbz#786957 - sssd and kerberos should change the default location for create the Credential Cashes to /run/usr/USERNAME/krb5cc- Change default kerberos credential cache location to /run/user/- New upstream release 1.8.0 beta 3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta3 - Fixed a regression in group enumeration since 1.7.0 - Fixed several memory-corruption bugs - Finalized the ABI for the autofs support - Fixed a regression in the proxy provider- Rebuild against PCRE 8.30- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta2 - Fix two minor manpage bugs - Include the IPA AutoFS provider- New upstream release - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.8.0beta1 - Support for the service map in NSS - Support for setting default SELinux user context from FreeIPA - Support for retrieving SSH user and host keys from LDAP (Experimental) - Support for caching autofs LDAP requests (Experimental) - Support for caching SUDO rules (Experimental)- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features - fix netgroups and sudo as well- Fixes a serious memory hierarchy bug causing unpredictable behavior in the LDAP provider.- Resolves: rhbz#773706 - SSSD fails during autodetection of search bases for new LDAP features- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild- New upstream release 1.7.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.7.0 - Support for case-insensitive domains - Support for multiple search bases in the LDAP provider - Support for the native FreeIPA netgroup implementation - Reliability improvements to the process monitor - New DEBUG facility with more consistent log levels - New tool to change debug log levels without restarting SSSD - SSSD will now disconnect from LDAP server when idle - FreeIPA HBAC rules can choose to ignore srchost options for significant performance gains - Assorted performance improvements in the LDAP provider- New upstream release 1.6.4 - Rolls up previous patches applied to the 1.6.3 tarball - Fixes a rare issue causing crashes in the failover logic - Fixes an issue where SSSD would return the wrong PAM error code for users that it does not recognize.- Rebuild against libldb 1.1.4- Resolves: rhbz#753639 - sssd_nss crashes when passed invalid UTF-8 for the username in getpwnam() - Resolves: rhbz#758425 - LDAP failover not working if server refuses connections- Rebuild for libldb 1.1.3- Resolves: rhbz#752495 - Crash when apply settings- New upstream release 1.6.3 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.3 - Fixes a major cache performance issue introduced in 1.6.2 - Fixes a potential infinite-loop with certain LDAP layouts- Rebuilt for glibc bug#747377- Change selinux policy requirement to Conflicts: with the old version, rather than Requires: the supported version.- Add explicit requirement on selinux-policy version to address new SBUS symlinks.- Remove %files reference to sss_debuglevel copied from wrong upstreeam spec file.- Improved handling of users and groups with multi-valued name attributes (aliases) - Performance enhancements Initgroups on RFC2307bis/FreeIPA HBAC rule processing - Improved process-hang detection and restarting - Enabled the midpoint cache refresh by default (fewer cache misses on commonly-used entries) - Cleaned up the example configuration - New tool to change debug level on the fly- New upstream release 1.6.1 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.1 - Fixes a serious issue with LDAP connections when the communication is dropped (e.g. VPN disconnection, waking from sleep) - SSSD is now less strict when dealing with users/groups with multiple names when a definitive primary name cannot be determined - The LDAP provider will no longer attempt to canonicalize by default when using SASL. An option to re-enable this has been provided. - Fixes for non-standard LDAP attribute names (e.g. those used by Active Directory) - Three HBAC regressions have been fixed. - Fix for an infinite loop in the deref code- Build with _hardened_build macro- New upstream release 1.6.0 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.6.0 - Add host access control support for LDAP (similar to pam_host_attr) - Finer-grained control on principals used with Kerberos (such as for FAST or - validation) - Added a new tool sss_cache to allow selective expiring of cached entries - Added support for LDAP DEREF and ASQ controls - Added access control features for Novell Directory Server - FreeIPA dynamic DNS update now checks first to see if an update is needed - Complete rewrite of the HBAC library - New libraries: libipa_hbac and libipa_hbac-python- New upstream release 1.5.11 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.11 - Fix a serious regression that prevented SSSD from working with ldaps:// URIs - IPA Provider: Fix a bug with dynamic DNS that resulted in the wrong IPv6 - address being saved to the AAAA record- New upstream release 1.5.10 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.10 - Fixed a regression introduced in 1.5.9 that could result in blocking calls - to LDAP- New upstream release 1.5.9 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.9 - Support for overriding home directory, shell and primary GID locally - Properly honor TTL values from SRV record lookups - Support non-POSIX groups in nested group chains (for RFC2307bis LDAP - servers) - Properly escape IPv6 addresses in the failover code - Do not crash if inotify fails (e.g. resource exhaustion) - Don't add multiple TGT renewal callbacks (too many log messages)- New upstream release 1.5.8 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.8 - Support for the LDAP paging control - Support for multiple DNS servers for name resolution - Fixes for several group membership bugs - Fixes for rare crash bugs- Resolves: rhbz#706740 - Orphaned links on rc0.d-rc6.d - Make sure to properly convert to systemd if upgrading from newer - updates for Fedora 14- Fix segfault in TGT renewal- Resolves: rhbz#700891 - CVE-2011-1758 sssd: automatic TGT renewal overwrites - cached password with predicatable filename- Re-add manpage translations- New upstream release 1.5.6 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.6 - Fixed a serious memory leak in the memberOf plugin - Fixed a regression with the negative cache that caused it to be essentially - nonfunctional - Fixed an issue where the user's full name would sometimes be removed from - the cache - Fixed an issue with password changes in the kerberos provider not working - with kpasswd- Resolves: rhbz#697057 - kpasswd fails when using sssd and - kadmin server != kdc server - Upgrades from SysV should now maintain enabled/disabled status- Fix %postun- Fix systemd conversion. Upgrades from SysV to systemd weren't properly - enabling the systemd service. - Fix a serious memory leak in the memberOf plugin - Fix an issue where the user's full name would sometimes be removed - from the cache- Install systemd unit file instead of sysv init script- New upstream release 1.5.5 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.5 - Fixes for several crash bugs - LDAP group lookups will no longer abort if there is a zero-length member - attribute - Add automatic fallback to 'cn' if the 'gecos' attribute does not exist- New upstream release 1.5.4 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.4 - Fixes for Active Directory when not all users and groups have POSIX attributes - Fixes for handling users and groups that have name aliases (aliases are ignored) - Fix group memberships after initgroups in the IPA provider- Resolves: rhbz#683267 - sssd 1.5.1-9 breaks AD authentication- New upstream release 1.5.3 - Support for libldb >= 1.0.0- New upstream release 1.5.2 - https://fedorahosted.org/sssd/wiki/Releases/Notes-1.5.2 - Fixes for support of FreeIPA v2 - Fixes for failover if DNS entries change - Improved sss_obfuscate tool with better interactive mode - Fix several crash bugs - Don't attempt to use START_TLS over SSL. Some LDAP servers can't handle this - Delete users from the local cache if initgroups calls return 'no such user' - (previously only worked for getpwnam/getpwuid) - Use new Transifex.net translations - Better support for automatic TGT renewal (now survives restart) - Netgroup fixes- Rebuild sssd against libldb 1.0.2 so the memberof module loads again. - Related: rhbz#677425- Resolves: rhbz#677768 - name service caches names, so id command shows - recently deleted users- Ensure that SSSD builds against libldb-1.0.0 on F15 and later - Remove .la for memberOf- Fix memberOf install path- Add support for libldb 1.0.0- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild- Fix nested group member filter sanitization for RFC2307bis - Put translated tool manpages into the sssd-tools subpackage- Restore Requires: cyrus-sasl-gssapi as it is not auto-detected during - rpmbuild- New upstream release 1.5.1 - Addresses CVE-2010-4341 - DoS in sssd PAM responder can prevent logins - Vast performance improvements when enumerate = true - All PAM actions will now perform a forced initgroups lookup instead of just - a user information lookup - This guarantees that all group information is available to other - providers, such as the simple provider. - For backwards-compatibility, DNS lookups will also fall back to trying the - SSSD domain name as a DNS discovery domain. - Support for more password expiration policies in LDAP - 389 Directory Server - FreeIPA - ActiveDirectory - Support for ldap_tls_{cert,key,cipher_suite} config options -Assorted bugfixes- CVE-2010-4341 - DoS in sssd PAM responder can prevent logins- New upstream release 1.5.0 - Fixed issues with LDAP search filters that needed to be escaped - Add Kerberos FAST support on platforms that support it - Reduced verbosity of PAM_TEXT_INFO messages for cached credentials - Added a Kerberos access provider to honor .k5login - Addressed several thread-safety issues in the sss_client code - Improved support for delayed online Kerberos auth - Significantly reduced time between connecting to the network/VPN and - acquiring a TGT - Added feature for automatic Kerberos ticket renewal - Provides the kerberos ticket for long-lived processes or cron jobs - even when the user logs out - Added several new features to the LDAP access provider - Support for 'shadow' access control - Support for authorizedService access control - Ability to mix-and-match LDAP access control features - Added an option for a separate password-change LDAP server for those - platforms where LDAP referrals are not supported - Added support for manpage translations- Solve a shutdown race-condition that sometimes left processes running - Resolves: rhbz#606887 - SSSD stops on upgrade- Log startup errors to the syslog - Allow cache cleanup to be disabled in sssd.conf- New upstream release 1.4.1 - Add support for netgroups to the proxy provider - Fixes a minor bug with UIDs/GIDs >= 2^31 - Fixes a segfault in the kerberos provider - Fixes a segfault in the NSS responder if a data provider crashes - Correctly use sdap_netgroup_search_base- Fix incorrect tarball URL- New upstream release 1.4.0 - Added support for netgroups to the LDAP provider - Performance improvements made to group processing of RFC2307 LDAP servers - Fixed nested group issues with RFC2307bis LDAP servers without a memberOf plugin - Build-system improvements to support Gentoo - Split out several libraries into the ding-libs tarball - Manpage reviewed and updated- Fix pre and post script requirements- Resolves: rhbz#606887 - sssd stops on upgrade- Resolves: rhbz#626205 - Unable to unlock screen- Resolves: rhbz#637955 - libini_config-devel needs libcollection-devel but - doesn't require it- Resolves: rhbz#632615 - the krb5 locator plugin isn't packaged for multilib- Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate - against LDAP- Rebuilt for https://fedoraproject.org/wiki/Features/Python_2.7/MassRebuild- New upstream version 1.2.91 (1.3.0rc1) - Improved LDAP failover - Synchronous sysdb API (provides performance enhancements) - Better online reconnection detection- New stable upstream version 1.2.1 - Resolves: rhbz#595529 - spec file should eschew %define in favor of - %global - Resolves: rhbz#593644 - Empty list of simple_allow_users causes sssd service - to fail while restart. - Resolves: rhbz#599026 - Makefile typo causes SSSD not to use the kernel - keyring - Resolves: rhbz#599724 - sssd is broken on Rawhide- New stable upstream version 1.2.0 - Support ServiceGroups for FreeIPA v2 HBAC rules - Fix long-standing issue with auth_provider = proxy - Better logging for TLS issues in LDAP- New LDAP access provider allows for filtering user access by LDAP attribute - Reduced default timeout for detecting offline status with LDAP - GSSAPI ticket lifetime made configurable - Better offline->online transition support in Kerberos- Release new upstream version 1.1.91 - Enhancements when using SSSD with FreeIPA v2 - Support for deferred kinit - Support for DNS SRV records for failover- Bump up release number to avoid library sub-packages version issues with previous releases.- New upstream release 1.1.1 - Fixed the IPA provider (which was segfaulting at start) - Fixed a bug in the SSSDConfig API causing some options to revert to - their defaults - This impacted the Authconfig UI - Ensure that SASL binds to LDAP auto-retry when interrupted by a signal- Release SSSD 1.1.0 final - Fix two potential segfaults - Fix memory leak in monitor - Better error message for unusable confdb- Release candidate for SSSD 1.1 - Add simple access provider - Create subpackages for libcollection, libini_config, libdhash and librefarray - Support IPv6 - Support LDAP referrals - Fix cache issues - Better feedback from PAM when offline- Rebuild against new libtevent- Fix licenses in sources and on RPMs- Fix regression on 64-bit platforms- Fixes link error on platforms that do not do implicit linking - Fixes double-free segfault in PAM - Fixes double-free error in async resolver - Fixes support for TCP-based DNS lookups in async resolver - Fixes memory alignment issues on ARM processors - Manpage fixes- Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online - Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests - Several segfault bugfixes- Fix CVE-2010-0014- Patch SSSDConfig API to address - https://bugzilla.redhat.com/show_bug.cgi?id=549482- New upstream stable release 1.0.0- New upstream bugfix release 0.99.1- New upstream release 0.99.0- Fix segfault in sssd_pam when cache_credentials was enabled - Update the sample configuration - Fix upgrade issues caused by data provider service removal- Fix upgrade issues from old (pre-0.5.0) releases of SSSD- New upstream release 0.7.0- Fix missing file permissions for sssd-clients- Add SSSDConfig API - Update polish translation for 0.6.0 - Fix long timeout on ldap operation - Make dp requests more robust- Ensure that the configuration upgrade script always writes the config file with 0600 permissions - Eliminate an infinite loop in group enumerations- New upstream release 0.6.0- New upstream release 0.5.0- Fix for CVE-2009-2410 - Native SSSD users with no password set could log in without a password. (Patch by Stephen Gallagher)- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- Fix a couple of segfaults that may happen on reload- add missing configure check that broke stopping the daemon - also fix default config to add a missing required option- latest upstream release. - also add a patch that fixes debugging output (potential segfault)- release out of the official 0.3.2 tarball- bugfix release 0.3.2 - includes previous release patches - change permissions of the /etc/sssd/sssd.conf to 0600- Add last minute bug fixes, found in testing the package- Version 0.3.1 - includes previous release patches- Try to fix build adding automake as an explicit BuildRequire - Add also a couple of last minute patches from upstream- Version 0.3.0 - Provides file based configuration and lots of improvements- Version 0.2.1- Version 0.2.0- package git snapshot- fixed items found during review - added initscript- added sss_client- Small cleanup and fixes in the spec file- Initial release (based on version 0.1.0 upstream code)1.15.2-5.fc251.15.2-5.fc25krb5_childldap_childsssd-krb5-commonCOPYINGkrb5.include.d/usr/libexec/sssd//usr/share/doc//usr/share/doc/sssd-krb5-common//var/lib/sss/pubconf/-O2 -g -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -march=armv7-a -mfpu=vfpv3-d16 -mfloat-abi=harddrpmxz2armv7hl-redhat-linux-gnueabiELF 32-bit LSB shared object, ARM, EABI5 version 1 (SYSV), dynamically linked, interpreter /lib/ld-linux-armhf.so.3, for GNU/Linux 3.2.0, BuildID[sha1]=c5439584f765e832926d3361c16cae3314cf3ad4, strippedELF 32-bit LSB shared object, ARM, EABI5 version 1 (SYSV), dynamically linked, interpreter /lib/ld-linux-armhf.so.3, for GNU/Linux 3.2.0, BuildID[sha1]=535d2c1fb25e02f8f5e4c8198e4e3a0225f6e264, strippeddirectoryASCII textRRRRR RRR RRRRR R RR RRRRRRRRRR RR RRRRRR R RRRRRutf-8?07zXZ !#,]"k%}}`ʛ`c䆨r.{y%F Wh^h={?nn~JlrRˇS%D(^^ ւe3/elETvH P[kj .7{‰IޝY+uSCHmv jpPP=e^JY,iu!cY4V?KfX1&<N@c]"(ļu~bȏ*J3ʩFnl[OhgUh!eh( *1]I=/DkQִJk<#lJ)Cf ZY1Ua.*eowf%qŕ.Wq=x!A%J o(IqU섋yV!dyO7i?N?ʸkukdL/8x.CX .Pee%c6V/"!%\&+Ck :AmWH}{{xZ Yº;DǚYTGm38𬪕Ջ w5%GҖ=^آ/No#r?X],'9?WKaDFR4JS/~y}%Ɯӑ߱jN_ x ȱc8 ncO;d :nJ3ɆHd=jDS2OF̥qkas}E}S),]!!blIIßY7^~P)0]NwfY@EXH^sR 3,AW`eeu63X@z6\ 4lDo` uh)A^. a31w'keKhV^GҦe@BU.4#Ĺ/eiiו/ %۔ W{2&S~YmfFHtb8tDVDz[. U͖!`9$] /'*@-M=$]]txq&P7ȕYy*JE{E}pPn/b9l.Õ)PnPimɱsdȂ+~a ]5a>S@@ةyJ0Ԕ|>uOq2WGX}!Sk "Z]m 6$.~$ vdD$Ց=_;LT&1P4+ d@g?h`akkkm o[sa%09&Pzu`ߍ`75ogjfO|]+[Dج!,#d{|EtVc1ѮN0_kl =O[WkwE~x~"ώPp9>wXNP R0+tX~H;W򧅞`?haO3c%a(")v v` ?;uz]-Пz{҄|<2*jY0^r7HgB%Lk/ //Yۦ- Mr꓆Z8vmafvk{` S6&n)_5TE4 X-SAjoȭGp* ВY76Cp.J}Z:x[zAF&)Eb|h'-r]PLfNVN&H {sC^>^zpLaF Ę/(S(Ĺ3hOC*%@q̖Sq{|B*Mk`YJ9ؚXh6dJi,z*p]>&S;>/8Ra鹩۹&Irc(‘bC@q6,i[%ErRq,3eE {pV\t׏A==Ox:oMH%7ܐU(ۦ&1AY]1F[ruW cMElee2ӒP,1kؐ;dU%@rC'JڱJ1a.L ݣbV[ZTcǸgzo|AVN-JnfO8APZ0q>7dpd(wXk*'+{ec=v@4- j;KXsV{#'a|q{ 4eMR9]b=#)'+e)\%#ے'`XT'FCgV 9@!}AF;{.F&cI\ϻb7U ȠoB >g*0X w7`ٻ+mȧ09iZFۛg[O^t1aj'6HIz;bx%(ByiːҤ4p0Vw8m8 Z Ə7@՘-R<:8In .nK:~ j 9Ƕ=M#?!֗m¿aR`Oa{L׋؝ x8tВL Q_2K~>tNYY r9. RZکźG I0ٕw|:N{y*RbtrdX6W)CdxOp*ʵ*n}?A!qyIpUyʀԓ9\0B>Q,4ܞeRɄ+%`6u21U25F.WN늁*L kF1Һin~_Dw-[qkG/N`^[G^S>x_r$w6K^Yn~Uq&n-'< g[25,o٥gWMqn\ 7GrOut+= gOߞ:Q*$>DlnCNorǮ0d𰙿AѯjK xZ73Wի!Ҋ:1;+9R;eLv |AM9'.*zx@piiA;p7&L--=VqX}O)^-a@z]#+]fBH;+-'ſ%u#HSih9ZQPvWҽ8 'e 1T\`{2mb J>] 5}Mۦ tUES6:K3>;-d,Guä{Y ~< $ FpMu~C*$i8nq'I?5YWVǷtizmDhmVp9,rIb}/k2_k_XHs .:e0|#% K 1~}r<ܘEY %`$XS*ThHمk0)E}3 ƨ$[!.񸧊>kE)O˶hYDj3f@3BvP47"yS}1`%^ge^CZ]Urb8]]-Ji5}YGzZI&zՙ?" =T\KEhR(^ag3}%4"잼{:޷ۍα) ͶdAڃ4!^GIg#Q^)9 "CqRv@@m–鈈pjՃaa} ]L"2G#no؈l "ābuO͢A=c4Wa-K7Q]J'cE7KCgnxӍd|NcRL:!ޅ*ʹ7b'umgqyB&\8l|_%:ުj>gȵXB6Ą!o`3;Qk? zM*dnj’$:hE? P/ٙ-p1ֳbfD q:uT٠Qi_:-RX7`ɳXzU236q؋&{*?Uc<~ߴ sCvC0J˞N%%3T=}jfe;e7.p'M -(qidrA/ϲSP׀9#?xIRL1pxO~C;ʹ`kc^Tifs $v zaPaĮ@X]\4~)1G<-9+WaG[0t5s㏦?!"2!&en kR@|v1'cD/'lNRwfO_jRP^187cȼqy mX!|خ|YS/()JLjz!@'oe2wU]+ ր/1i4vv3Pi3(GP~_dZӛ; wvd7J(1Am@_Iq'Ul K\Kib/7|D٩r]7Y߭,|C/]y S#zj1~tI%Me/ѨA0^:LGu٧UPȩ0,bAK->m"VV#SiՐ1j~~q&Cx-Z 09,8mPnrN&go ϏӍvn4>B7yM ׉l,.F!jcrL&% s9i y:sl3WV*or&80jUl fSTM':$9CԯǙEu7x8f zN6$i7,?Lg 4>oT 6S޾WY31H9Sٽ"D>hI3R_l)ڌ/+M<4--n-( {B~*i<1tbi;~uMw̍q<7Rm<1*~TL]C|ǪEnO^_ ;H3'e7R2bs8fAI`m7lL dC9zH:.s;esLc9CfٸPc:2̻ďw/(d+T"o{ßE߬K[#z#{l$=jw6l< 4+SY3"Xĕ!._> be2$UǍ$|R8 5Dm9 *d_{N|or2{c&,n=s-ZRDC݉qevD/orl!0ݱc\+ ÒUa>37Pҳ^u%]S;}4ul=Sq_F$_֭u7y6 )NE3;sҘi0=ꪷ0hB;L,5d.=x,wn(s*תC'jSv A859G^(c4Nylbͻj{ZX x5G# >~>솖cڱ",P*٩NQ){.>6O5Æ,Z}sftPfNC@N]2< .{͇Y]s6c)ρ> _[ǃ4m玟Go*Q $]䪫a^w?}T&St[pVv kunI hI!2}=gLMm_~,nzCz?őK("NǴ G군<"E l [P@1I @ 2%LM7cR,5e3fBr}>W؇%BԢNiD l)U.={iɟM l}\/AKYOcC8Y :S4e{w(:@nH.#8OU=0ab ",Ac PWK-I"*!=_PDl:F &41b@X&}7-)ϖȪI-}C_iZ󰉷1p3SatTF;~>'ÕPZ2i* $ݡE֑X6ht ee/T&'&e`:LA:^iRNvq|"LݎTݿIiDrx sq>$I,#8iR~cs''>?So|_GJRI]/շ'Fi(e2z`/cIN_pq9#d,,AU_g$P~!Р- oX ["̃v..&tz+ X"3]$pӽ]SY@P z&2#At+]'Z:J,="W$@Ke2L zMoˮ0<ĘF ԗ Ȧ* f_2ƶf f7 $xPv-n3Edm_g/(aĉo_p=[ID>x9^ D9I[E5f3$3Lz|+VLj ԅ,2꓄f@>qv(z zQh# DQMZQ, h,^V$ 7ԯS=s>RyPX$1.=KuV|k\ 3tݗ>zyؙo Kl$٨ Ȇ㎣: A3·dݳ+wK۩bG06gf^bPJ$Rp1ŢP6)cA. %lVty8pp7և<-wYp'ӻXgcNVBtf:P)PsF!T$B?>犭^֊/SP?Y+p62 Gf9N8Ds>p@]S嵊76݈[.?-dlb`;*a~:/C߹Dmm3b!%W/CWf,*Sսd,1)/ Q㖵c}, Q]?P, ~'4a yu[R^*GO>9fm1c(!a4Xj1]>#]&}z?qu@(owҖMd#(CQs="hh^5Qiˠq9?DN܅GZBaCm(~U. HȒDp4; BTUiCjMci!; -v$ݮ*^"jLyH~R~6xTXŋQ"s`UւA)BPE9zYdq!`Ǟ$TY 0Fလ/cPtOtߒ8g'E(Q8ntNj3?Aójҝ ۴~֫fAR)=cE=R6ٽ".3Rdφ ڐGP M% ČWOmy l{hTxn%TH>BWFٲ7rl7ވK3HC,b>&FYLf0F+Z2>Y* c+eX1?|)- ZkJr)lLrmV81D(TPLG'jаˠ:Dvru/_nп`t<ӎ͜I%~-lGL?9<{y[r hz؛YpܙNx\hE6nKLSSzT kGNIp_HS%qѨ;E=F%@,Ng 5` J"p))WjCp#^dc&hq.pr[SIzZEt>b-~ k!YES'7 ƧP^M [\1~2=@:_=:/{ma5ҡBWFW3cm%;ޜ[< Dj ^cra'6)r@~k=W/OO/s.=Lt-DǦ!f2w{`b=~Ol8g 3KDΟ˄}pȣ#ȊFt&E=$lyaLqdr)B... ۃ"}J20q.87* Qm:Pb`ub?]x@@[@JMEUq + eBErUg1DA9ydjKZIM *WdfuX`\85vlٌmdΧdUb0 %WϢ\>xo6D6\<i 5\Z_k7'V:Nqs #0:ɠzf~jt/q h8/m8fҒ41@_9έ¨C6A[8eTN|lKba (BwrpuYT CmcA# /YP3z)} Z|W4 O t޽N$jRq/ C0E̹4;MlY)![b vmVBFI_CT;~0#<<{gr:QgO͓ (x˩ ,kX.']תޞ ƵZ #zxg\AfIϔˎ=*WkA֒f \Ly51Ҷ\.8zQVCdnp'<|NP)!ͧÞh!/f+2JwR$z8 +P]L݇p%% QlK%qv#>~pyg>~2ݭ7Ƌ]iڔ|TvᏈ3mId,#X}pc`{~#[vƎ4@W;[_vUi#Զ9-3} }&HKqhv&}s"[Pl6iy:QRplɚi|B>J}U${&ܾ-X ʔS ԼV( Aůmzϑw-Y~|L0uf8eiZhcch|ra§|lr3(g5RK 1!'Chd$LMOs%႔ֵ ct$ZYI^sM w^~tqv'\">V$)rPmsdGŦXño? 5cfj rbѿIsFp̫w!DL1+Hh25Sa[TBLg}#Hјم5闦_;}da@iinWBɬ859Ǚt1] XѺA+֎pcdDv]ٖ!e-|AT2v>ejڂf4JtgٰSC'_m@"𥊴>x4Oe(J,ܫy6zڻLLHOT-ޫE !ؒQŖGHL8\#LbbnH|RPsĩDZXtmė$^vdF|n,bP&OO{[ NzԕK&yç.r ~8ngiTتP 靐y*4d5f8A6AQ?Ъke)UJn-%=7Iu[8ݢ  ̜R)m2sKUȋdfMXmڀ&R>^L%Z"<(wBx}rdٛ*XCe96qOKDŽrl:2+KkG!ہ뚡mT>pϾaeة6 )*B~֗:qlB_Jd(.1ٹ)gXG#??@Lo) |) ֎.۩S>=?[ n~&Xdz/ V {شωwӝxFUq]Y?ƊlR %,w$|jѴFσ端aĝi_C kdj!ݫ * )6VXh3Xh.p7H_BGY/w|%QQ#i+nMWX0[+xɁI2p7_æZnnP0;1k7Wֿt_;\]k$-uEH 9FH#ӓ+adA?=mяJFR z't4n}+ҝ5/VB$͌7gH0Z%7f )RX岨赱!bGTȋYZuЏ7@i14U1v.'ddWyIA򉀬p"?Je#v6/݋4Ό5MP6^b[ 2{lNvn>ri)K î}HF&nڜ>Ⱦ5¢SGg}66fP{r&B˟,hסWۘs&*gbwmTl% ?j/M ^3eo6D*aT]p!̾tFH_1p2Hm2O W2T S ؍+< fR=Hj|ͽROII=BJMqX[VSVИX^u՛Lj"ByuvjS]ޘ]Ii4!1f|4-rrndW9E@!Ȼ1;eAKd<|d\9,*'8D"z-Cw-` 74 c_(-!>NI .&U( f7.=:}ʊdLfc2fJ&L=>Y?&0S΂iԙ> i:XbiWTAjZc]$3E/V% ZQimH¹zER|P`1GM306w=7ĶYbI=" =j]Zy]Og\ڹE8PGamԳнlZvggn8 >y-T9 \v vz?E g&P;^E M/F`:KL 86?bFOoԷT?)*@IMR_ܬH:싹B:%EF^[-v jb)iMg+k )]g$E᛹~;i O""(EI"E++ ZjDL5/,k4=gް^H5z&KasjdNYxHԁ4%Rd]j9%HZ&1q:u>vmeir CɌ,Ђ]w'dtwBkiͣYvLG7$+ 2>Vc8w.|c+%A.7~L0մR~Q`amG]㼇8I"1.i:g_%v8-:1G"'4G-QoLˇ7=.2a[d.δHcX*Cߧ58Mޑ{[Vi菢Q "6uK3dG m7SYȪgz_8vlԺT#L{GF)wFVp-3zDPT5aN6K 4DDU& rCt|9:,HHFGI6N-X#6;v!ݡC3X!xwuV`h0Xt|:*/y; 5of/SD D*]XwXnIv/r|.GS4 y -Ixq3্ j62Ӏ["C*sբ9Ro+,Nfu"ws61WA\~%p̽/5lTs3Ȼ&;64A:` p]irjr{$x𕉆qMVG7Qsɚ2~cJ7R*+ڜŖ5qb4a[NFiٻ=a|ʩ)<,`'h/zTM4P gkk/a ݼ*ݴ`MoB-1?;=]YD |^%aXB>p*..ٿ?X0<];0?Rky!{H,!6Ȕ AZ{ .8mU ṵoL  +azm3#f&ϭ[JJN 9!޾c^?/4Ţô=Mj[06ow ]oPbRVkwgӟo v?oeqlnc۷AI']X| :Hwhk m _Q<*M׀VV(i}$tގ"Wƣfz?Yue-%(zRMHuڃ#H"57kK_m(;L)Htě҇lH+8Wc%g6%Xg[D":y(ԅ%o!4~Wh.|"?,~ P/@v7tߐլB(25W٭艵1y(%98a ZsՉ!f\ws+`@lDͭ-t8E'56zR! c PzVYfGQ>Hͩ`ce=Na4e/Rj$1Zc*i4O%>aDcw4;5ρow` IZ&gwNSꬮۉݝBe(ARcUS\g5; 0դ:t"]-F+&AP.˓'G8MG"BU֐שrƼ]yu $ !39}GJ4%VqoޮEGA4c8d*VcPvB t4qN5t?&sID jC;&>"TZ|-b@'+ME=Op`243ܙ KCX"JMaѐ߮XD(3PlWeaGl06c>P'?RsM93iU׼6ƤMWtE n@Y6(h18}a*6qNT(?ef:J .W=^2kPQ=dx(@k0cF` TԎdƜgDZUsFM,74 Xū 8&y 8`6O7FHxk>"(v)1+Z~ȎNDn#EqĔ}K2 u YpV+7Dtԩ*ftHT.h`JI@sFSKg~7'qZy~ފ%шP0r1zg?.8=Ҧ┴8_O̖W+E kkf"$X=\4kPJ6m9@p*=ҔBp є}|w V )wb}8*T"TۥDo@팵|?*1Gߪ׫bDQ4Fǹ7~8ω/ڬmf/~sA8k{_AjHn-cc=!yHc-Y}*ꐌaQ$dq:F} ~Ɗ[^"N#uID?Oˇ6Z2T(@6VOGYͦHkSH`nZ%6O7DcI>A4!(c7?[Vo<I).;H<@uyr؏Z'ڽ֮.oU~u:&ŔoT@XD.KzN(IwQ&MW{3m(n=h,Yx%SF-d+ݷs4qUZ}+=:n eqim!Cß؃ڢފ ԛdVg7GK/ejڻzʶs I/_pFX2x, };Sn,!Җ=0dG^%`!Ejr*hउ9㹃'sFɫsVgVq~{iEZ-{U_Xw%Z٢Ծ 6'6DJ}Ȕ;n@#f*;D8|' /|H HAxG$&t^wMۡF_csdJB2+4$m `nLu#G|/=pQ^1*t8*m!{4zFAX[*<1tЦ4Ȥ}TLÍI$-RHGAQ6+#-/)Nߝ9 EDTn5`OE\{JŒLQQ! WE'eX."Cz\GO'$PH .SJ l xCϸ5Q|bڊ|Zsӌ%a|]ٽU/TMlY<G#y;@3 NǏ! 2[oMYXAŖNƠG<ׇF01kh APBeG JveO,QsX\ʎKsu$-,WiRcS yd3.*-?^g5l6w\Z vͣDUÅYmCz8?ݢ+/'` H&?-W74jDPUPM)A|ROњOd,]f{.G04ދB Vp~(cY0KvGٿ*ğ0߈7Fe0&daUiwG5+:b'€ E&D0r ؟]z?d3-RԷ(K`%[=݋%[5@ hY#_պ|\.ʯlyO6lwۻZlJ˱NrEсb]ˆS-Qa $H*z h T %^%cT wuf/HVYg,K~x)/6f"Q'\,+fXig8yڎ-"AN$%0CݏP@{q1wN`׋EM j½1Q7dqW{biMgϽ!scNI)Z ɗstR,M [ke*E? Ύ diJo jM+ YX Ll:UQ}#_%`.؀u/Cl+b: OepWt/ 7)`18YNS8?Y6x@:n:阂K+Ƥ/OF%3F%1R:K eG`8ǻn֨G+aKt #s*oYCLaN޾>CaRm:r=QbJ\>L.# H XCpdZ8a0G >:M$ j|͚ ZJ',4 Ŧqd{#5 b I:o-5!#@;>zӟKhI.=hm?9@09RJyW@2B0O?!{'N 7:Jт^̗8+s^!Ƶ2!PJV2^wk͖B8pYz&(#]iy[PjUOV_l42qzPԻqT̋[ЏBK̆j>:ćm!Bڨ\U'2+m}_4q`C~5R_A.9Ů+9$w|,)dѻ)bnW}&ISM8*7K6O{ؐ&b8NB虦=C+VFU|5 Nh d ĕ}< & uIo1WD z%`{\<9t+*m;zԭqH煌0+i| Oi#F)Ee?~}ЅЍҸ-N$2Hax.1L]Xۦgy]; {?s:N[ͳi/kFQoޭ\LEV#_Ex֚LJBw-e<ؠ_bD|+alww+~;Qq愎}pטY) M{Zt-XKGrԏcUbKM)9Xn{i/Bp@ٿ)珈C#RM}("&el`y%Ws.$NIw/ǎR+{C$c;0u"Rj=Vwak}'ƨTr? teb3L\X;cP@=.2ݏ}Ԗ&F:\$mZnF/::-ew;mJG\ DY.RN̶!ʃw ,O>bC, 4O(|wG13(B kmD~׻WH[T&tAKb5HKq~՞AZ]%}- Oa6EL*?/58n} 3ٵd'km^K'ѡE^ :%vd(!ǦXȹpw#Jl

[&톆 rh+i P^% K6EMMVƙj!Z2d0ж*I,H "fLv(l[U7ܴa0F":V76)b( +wX,L"P@/a='׈"n mc>]q$eyܗ-\鏵,(i,#v"W ]4>^pHK"P 3K}>l%(]AUɥW(@#?r[3~MwXO+ho?K'^dq4AGMP R#}E(fe!mM [͐~Sh=.:@/l &x]wRoJi425j-x)P1oCdޙ Sz܃Umic0"wNpߝKɥP 4>+lKsfePg DWsrRS*y3iVHT +Y$s0vOx![e@/t -q[049 Y)Ə=I LmTŖaN/~?ۜ~᧳Źb&~NirH(gq$\Z4Q.E1C[s_qDl7Bf1%|s? M0"[L<\-~ޖ M~z)E>|2΀@tZЖ%f8x ?mTֻA _$rXAYfG,CI% `VLn,'1*6Zr|j^LrK'8!/*˹ umK;]9)۠Å&ci`ԵpIҼK!WS誁ok6{>9K>wg]%|(@:qip4EN^hLMv"CmTa|$7LxuH9W OB|cQԤ1z%&ov3 zu [l`ѦJ=/[]Z Zi-2G|EΞ_RTP) NVhr9A(3-a˳Q_PsPA 1_'Aan<>!Ҏ^<^ [ڊ4jVIըS{/^HH 1NP Q}UܡOS" N0-]a.*(@q RoPCagũ4 hl΄&;R>b xoݚ1`wy=*x^͔EZBJ*[X5v>S`6f,-/߅VM9n}p=ZOC |]ΪK6噀R"hqmD>)#g_2U1I뽠1՜lƋBs%X)p~4̟:0?x7Z2@Q= uZ֭kt>$5M`6NLM YaUtyHl/4٘*_I,} 8 a=\g i~ێTdUeTȩ[$A.db$1]84͜$z |+IVbC 2F!>F8nW}͚R cYFZP.4~^p~p͊.&/?w)(+=Hq1X#%RI;nk (#9W +B:ZA Q-lxRt'ͽpE1P+[]6"5֍mXʯcz"rɜ[ >, "Cbso9 ףI,M)j2N7[x#LwMԨN \yܓ (%{wٿί#NfD~ٜU.av3Ȧ#lzI#Bol)k}ˢ4c3ut` pf;u)s%i)&5K"LU\H/H|fkIvV~'2N%X0taSl]tXħW!O˫[ +ld`U (O=nǺE߷*=ZD15  j/arT]$┅0rS+3 5J`"M#T"ym:7>J«b<7x/rA66Jv<>i{@yn5C}ޝ~H;9|NH#Ue Vk5*psX{7:%.a'< ?0ZH0 -8)FWxv:m(w"E 5ۡK(5u" kr([q? 9;7gRm!Tgy(\]n7Oڸh\E\*x[uP꺢ae#>vJ}dg WGNY#2A:^&K*&|J\%EJ+]se–&#!GZDsÎeڷ9&(M9#5v?h"?rGÑ6:܌:kݜs9=G֦L6F6כTjSdIȔa*\r0>u'6kq0{4)Ca3r?bADB0b+(ʣOfH>uFuAhOSr]\ݖ[ xmlSzIhi|3.A4~ʸR(v9xe}JEM96iCf0|ALo}5ɱVyӬpQalHZ2.f.Ҿ/cZ0-OmCE(2dpHPpKkCgI:N' ,2ϢTkbC`LϘ {ǖLR^̛G^c;鄎fA;uǧxnFfA ٠=1Ӵ46Gnh,C[G4g2 ]GVWB+(}5ܘ7?ɚ.A[!D). ⺆3"@lޗz'h=e +mMwmvfJ_}K4plxL%c$ttlfMqJժ^EڐY>:"ټh 9N5n^ZnRs'5(Xu'YJ8e%J\Emqfq]28p^=xc][|&=j"&n(,D5Trg7|>[W; fݦM1X-~΃3 B8tR/8+v=OH"Bw7uSMHٌFٷQrly X2_a'~)mj()K-7LqBs¦y{/ɿlN !1&<`F7% o=\mВDn1iwaW 9f06mE⨓sY0b  s(M!AiXl;f+Zo@w_gHZO cN^Iы50xapDhuClr=6<qwXT 9~s ijۧW Nvwا=6s%ɬaH7U}Z6M zTda5 { cƶn = cPZdL5lӓZ=HvPj.Gs5R˲;8O9j1&Acb ijm^!5xSE oioBo_5O tx'RfYg~TlYzؙv2 q0"2EHن{8ՉFƊEŏ(1+Gpn؜o6%.,v_\琴4YtK2]4G5$\stLж;o%U"R.9!8c% qϽMzN6l?b@WɆ٧(R1@CGK&H Ђ{b8>P5̠v<,,ᎳiUcſa89G6KyPĥ֯I߆|m]Fg葻JTr:$ɒd\MMTrxg܍n{#cPl&1eh3Ȫ-j|7Go@+17 8FY= Z"xw_1twml/ߜ0Lf1fc#ub Mq-θUM4goP -#EDT0`r{3+#mg[}O p#ޒw$ʅVka2%|8!a'U'E ng`YG2-:o։S'gR@h4S}{ /j6i"r39 2:Z?<BdjcOe-*:ҰcכH\5!1޿j_+j"XRSS?GiVra/i^Q`>@`sS1˓)Ы,Xh5=6˟4!+uL~EfY]]ts˴;o5J,U& JJG^ϳm^R-s~>2T!vbnֈBA2)&rpQoE]V;ڵ-eŦIP|$8dV? ? ReM\eu]tA;(i@^S" .R77iXʪ=Rb*u Y[M9-GIxAE +W^(8=ymh6he/dxn0NۓP  ?LÕ-\Y.@tRn$qk~4'kWR83)fLJ8u3JܚJD)`{CwN~{(ͭ|߮E5 xK?).,fnr)6fXIύ;'ׄ3]o-J7TٮA!i.J#knR#95Y:D{e6貫YEa<+ʹ)U_ nsuNn53eR)kdlhvI_>~E2eV}.H1d'X .`civsekOtːWa7o}|uNTB M̐.kǧ@۲9;81*CL8<6z^㮽Qn 7|EӟOt,Fv򌢘!urn0TS$=[oqkLw7.Dݙ"dXxhխ`B5q=ڏs?4Xs ]J̭trj63oBݲrqvK.TJ ` hIPά߂8s(-/5ЖW !Bc 6/L'h a|I,aqZ+ZKVRWr8}d] /S"%pJR?'O̬LL0c )ղPLA$rrZ6*yC`C.?WWMv WY6>̯EZ+w)M\"FqdӮ{LaxK+ KE^GN"A/},@&-rTmIbM6`Onᐭ&rMr${w߂DNu SذUľo'ZA7fc[>iaa.EG-̬qdZJ/c&v`[/5T3Z 7WFz#LB jA@\#ko=!Ϩ*rE@{/Nw"kےAS ! ҵ%; -tV=,B@!w^lk;vRQ#^iA%Ib! !N^a#Kmz[2&.̢#߷?H QkrGR'n״Kќ*wR :fe!MV~*ʶVE{sfȶac!Z^PB s/72AXQD9Hu.PXqm9I#n>SS'Jq}vA UNڳ] y ވ*a|ϽtE>:-J&_xw(@3M)jAD/=85wNf)ٛꖠ]Pp7of\`CA, J4A3¼qG=\F=]'zL2\{z363[YŮ5g09pCNxaxNGVU[U5kx5One}%#"!diưBDO#Řp};CdbOͬ _SN:ssG6->Eur#Hob2wAQ3FZb|ߊ0[,1 N/;д'eCѷ$eu0!@9Y1]@<%b&W׬3m>RkiMu%y{ &r-*>$ yþ~5 F"jqO|:[S޽j\#R~풿/7wS)ll6<:E*ϴ@&$%{<`RX ұ &wO~"멿Q/ -`^%Na5B'5 ĕbnS{PETvkZ`7O>TY-] |Udv1pLk~(j"B`1J?Vy$o;h]$-j@h%A9TSml13Q\LJl/CQz9^f> NYCsw3搶-5p+|R##3^xB(o,#}"VuX_RgudaR!K6*_Vcw ,83HYyn=f %-kZZ+i8|B;"g>1c5hĚ57kaH H{THՌAwEH(&Md~񃺏~,䷱~4}arѺ} Ȯ•_xW(aXs0pm;ЇN[{ 6TV' E+}C[%Hܜ̌gP\a/,[=YwS d܋Ѣp_oj.C_ 3f=3Qrۑ s|AQmEVftMΜm#sÄDueQcjr>ȋ so,IMfѿs-O=r\04 ^^ [#3;VgTUE%"N-|xVH ;&ݯC3#+W5vΈ;B jQwhœe: yIŚҳ͍Or1[YRµy/t&o!sEV~|KlLx罘m 430`Q@(Vn8[yPo#D[C è3 w|Ϻ.\/3]TGIFduEGs?054o` Z!(_\ hO;DS"8xJئPsxMsmzapuQz%DID/R/-D.7S_WU)˥w9 pOLDyMrdA{~qʨSSRP ZT0mXSW|Bo쨈 7fg4B;RL48B*1gQZ]K>ӧ),PjMZt#^DW8 7mpq"הje-s r8ThQK0-5 rװ eFle~xϖb\u_*d/rniXl6h)f$p }uyGL搔xJ$[tsWק-udD?t)I4ye#Ԯ Q 0̥:p$f*&S=M5rv][#P?MU+"{`vX 4s_2+3tpʕA]I֥6\>(mawZkF'f( 8wȲLF*A7oQHOImk=lnG+є.7V}=u|=F0cQ?c@ cھ#QvqNj(8B $Oz,/bX Z h" +5 hMad̵hM r0+]QFURF\&HzޜDTK7ޯMrA!GSBv3ɞSA_9H989"ZC8!9ZEE<FI%cb7U/ Qd9_ilob{mDׁܯ9Ь3!2fa4AmzTCfܝar?s\m-;5MExϑ䖵at#4ncWYv=N hHg-?6{Va 4N$W:JJDh'DlW&8&66D [%wғzl̉8ԪӀ5u8&G6$)lj˒\ u垳sfq=)W| xzlreh`k:DJĶJ2)/dGKcXקXc8IZau %.,ܒT){1̒[8&";\Tc,|;=DJӕڍ'x^#hO)-^w.[vEJuo+>d>M)IV~o#2j=Uk?2+]#H/W4o&y02.y!~D$7rN֛. X8yGQCCx^Dl^^$̀8!HS IUQթ_Q͚q"]?X QDD 'sW*j4-M*MyR"/>?26)ХtJgzG 0dl52?!wod v6h.]B|Y%cT;EB"x c 9rюJѠ޲<i)v#ҍfb, {K3qrb.Fc >1E]At-MσBR~KF7$#*n; ^gzc9z4^k^-9~9S.#4V].e\cR=%ܻ40c+ؒw[ݖůJÍms\ )]*I>=vq :Ac)맞)_b 3ӭ%yYu603rd>'H&%\X9çTIy.^07, Ԁ P)Kyw`` ? R0ȓ@ntΏ./9\KsAf?1\.bRt@y%6uxWDa>KUn Y n,QZsLd$ h]) wߔCU`( Y7z\Vx~U ёb]eN=hN:ݰ$1.wUc]sJ=3t#fyg6&d?B,ebޫFlNJc ̗M|wm?o3@.]g1! nڣERArsG}Z}IX{pu#kLulş2^KQ zߴN_2&\J' HEWѱ+C&FII,tQSZK0` x Eݬwo]D-dB_;"76 }c(Qd!L>]zK3CJj=$b%WVTrΰ ^iw '<IqE_V^cˣNi'ut_}z 9 v|p2pLgwBHedRJ8fwϠzk9@w5fun}KvǙsi8 ܸ*=H8ڍoIϵ>fe1$<j~{_&SE=Fk:?vD좼Hܲ,pʌGKx!S) Z潇=V$|VMA;'7.<(_~5)v݆ztNClSD|Fm"hk}#R^V# ԬL;G7Ͳ002E}nkxЏLRճږ-lF+G>k9Cׁx7 nk`U tܢꆡ@YcJ1u*X"ܝG2ϟ1W-Tqg?> qj@Fh}뎝l;cR$3Kxڭ:",|@ِɓ oqɎל2a\ `pU2R9p1q"gsQ!XYXW6!)jz.<{vPjT̘C>'lX,E1~xgYk6BN[Z!(lcfF$S}pQ2%s x jDyUfqB׀<P 3 qy } 5UY Ќ ܫgMiWnqu>6tߔG@eގ} 6#.,)[&+[SbʙL4܁RVͩ@+hȰ]Yy5~۠%_ܤ8QqV)A%2ڰ_Rz =G"tťR[%P{H%Bygn=̢Jږdѯ Fn5Gy)Y/9]t$e/GjBى_&yz]_\($ãi6IMbKKQ]*1V[B~Y1 +a!@g, 5" 9be Rex% 0+gQn> cNk97 {IV|aڟX9C"[s_SPÿg՞/L&Hج5]VF_%FV3 E])2[ͰHraK凪D;vy2T74`L.+ގ-NAUZՕqVOO*Xt7w |do̅^_y? yn$/FiruARTVG0G?A8j}W;ҕzr4Tk){/P,?*A g]Q0W{OHpDz#1z8s,,r3jy dy{P MDFm\أ%)E&êe僛hS +V }3SKVv{ywD+o.!M}\"MJ6FLa~ r+RfQ?Q\\\t3(ۋe:vg-P=&dZnZWThQ?+_J1M&7:}ήё .wQ*<SO҄(l^Y/zA'4醪 UD:$A$ݔnU&`9QaM\7IqP~QF``u:%|JOuyEiJt>޸󔠸6-H6g>,Dz{ V^wޗ{-,@18˳)AӧgteWFOL/3AՅk8L혈8O̩O!RnB[ޖ#z/P+_~gcId H,&PY-4/2x"samHOV߻ c[ ;ъ5-٣axyseyỶDVHDd=/; nPAΐAƔ$L*ĭP߅f@.Msfj)+ggK9l+anȇQm>(qHU+iB ]QV-M;D;͕-wtB-{ EYyqծP[oN̶*g2ePIюod 0vxU[#\QEHvΈk(W7{lV*/eKƫC[/~EO?6mWLN5 +3Xcf}yE` ]+?Au'p qn)=.FhX$ARvT"YԂ&-AO\3j4#wZj E:V8 7},áY%ߙhCoژɢ,#ø:7u[7-f^͔۸^7] UvTΘy'2w_I,Pvti7υ(P_\d@ 3`P)Zr%Xhu,^Kf&W\@qo6#`fHEsA K^ɖ.EZ=᠒z-?[f4)Si龤7nH5Dw)-pR-X T?iN)`/ n."hf,Zg#!@fY]Y#cvjGPln7xBƭ>K=eB7m]D8ߺ#95ad5aXbZΒ p5a2}l:u<0 yѣmΎ:fӍZv; B)4Ϊmc7ܫSAw'rO٣L':Cs.ZD͛!U]v<ά灪%WBSH5R78@Xl>Iŧq_Њ7(}RAp cx_^cnzO1'*%>]rc}87gX%K_èЦ)Ü*BO',1p%ISiE2mJ{7;z`vo~ay^16iʰ8`%MґIb4WnK$۸O:\}A0k b/IqԻ@m+#&y`S67RP1&N<. v} +W!9M]"aG! rI(o]ghL )nCFSY8LxH;V{GN.XG Yt RNQ;O}6]6CaPz$T8+j fat">_%8d"OF#psdS̈!BԡU|{DXhFL?X mX# !"B"/iD"Hm*iP^[8uAdoa'NC*" 1 jˑAS-)Y<Zɡ$s *e!)͂}]z[NWpnf}a\VRrb[w5'z ƾ3(y]5 ehdR!NߜZϥ<;e r}5OVwi 6(e%QC qbr̐ub i&Sq+3@0s^;w|zd4y %xӁxۢx.ara}(ѣniH:I`fV+ nmikvIx2>e)+5pǠ2T \vv*;cE7y!řy_?ay͓ޮ&g_nrkk㭁]~e5I𚅞SNi \w*Y%jW Y"h)C7To{i͕Mbyy؂83$ګ,!3:&{cxtjźH%Bs!˒nrvUB*?!'&D}p~D“B6 :yu`fxz'DSک+Llf7 b1/Wp(2e&ɼގ,xyj-v~Yt%D}-vkL}_=.i/+GADZ҅vM Q\@*N5f~s;z{zk=0>/ڕ 8\ܘ)S.C$]fV:>cdMADp"7x<ƒWԩ[kfLiLVT$(ѢeH.N}ةa):ȅdO]4bNA܊W͊Ϗ yy* UD q=FtLy^P6Hrk Q*WXMl,~tPn{Tp|&]&P׍>n/bILVB9F&E!%M%MN!Q0Wr3JNG2QSds %S) :NoFxĽj+ WPn@mF#2r舀UްY@n&7%,ؕyZRAw~`-z +|K !H&4)=追颍W CB4[~?_ i+0eq$ѤbAe[rB> i8D3-)\xrZ~8-Vcup8`WL<`Ee'En#uE?ظE~i{ h=-_0,DZV{ j#>e4]@('. @d_dP2miH*os0OnR{ǯM}4ª!I>KVZiݼЗ#Uvq`*LI2Jcy"'08 7׶x @,m~im5EK:`Z[0+WߨrD,Q5:Æ}TL ]vh)Sv'0X?|dmUsY#/[RkcG&W/(mܫВ0up**_﹘kBX">ȃBLY$ssv?eք:x4?-i6ᘰE9Xɣ7o +!=tw;(n-lSw+Ł=<r+QB;C'}z6/oہmWhW=nNWu@gG~ +~"27R5m|R_)bЕ:`%];t{(8r! k<'z 3Ls `kp>U~o,G&JkU#hy6cN2> xU-PAVCD5UF;`v_ͼ˄x3anti Md$3~85/ic$*dYBW׎졐ʙΫ/253#Q=@T[:#<:DopC ul6k5i+@3 Yה_Z^yl])`' t'8S_Ǐ42VLS+tOK1aϼá" R=nH+\' kc }˭g읬P.;V⎀+HzUʓUFcBa\he1txnxAjv[C*NG\n}y[D^e4j?}`Hm$.ʘ! B6* L}+G;f?ek; `Memhv"j" n=4=K924 {`ʵd;杬ӾB,mg4?̋<50[D9Y2Agb3EY f/>WLHlRmȷ<%۳*vBP XEC 4>L鵮CǥpRJ=h=|U6"swTjt'>%W T;Lн mRD~~n LH) 47@3󊚘)GZ|9fO]*k^0FXjx(}Ks1˼\MXE {;FuD,bF SZ^)YִĎoaV{f*שRIx;I1SvŔpvP"D2bC)kA?AC&cXw#K?Km6a$rÂ'3.Ft{` p2Rũ@n1yydX0xcJ8sOi|lj Ofg pT ؈G}^6 zjj?$+e/T܎:c\at`E4QA bg ǀغ8+X)A$:)el^ 엸lHmIӕ {YTzH h.(Ԛj.Ag)CdllDH3iNz, {r,M$P:F!ꈡ5?6CěE{w]w=o@%xhiB?fC: 2C/.=,(w{uG`W1dK{'ԫyA[M HE܏oD3QGDWa?mI]~N^[?c}dɐ$ѝA(b&" )AӔ?vXlLE>f]-ֹW}Rm%n ]/a-1nMb $hw9*vL< |4AK-v8/G(PA{FV*k hK/mݖg=ݗ !xB:I32Mt? V v@6W1{N4ȫvX7bpxC=Q2)0jN|IӤWE@WVcZi:_\$\AGI 09Xdj N(,v v۲2g|&mIw%Q1rDɔ"\&QNSAC$IJ3o$𱨟 I? at% G^ʴ H6;rDC)UozC@L\ڇ!iNaHv2z*1M1}C!(p]ƕO,}3 .oν)LrltyS|>T8 KPVm"eRgP \IѯQS4[=t&H-i!WmI83ψлPk z1BsoUP+ lI9\bk=_zVF]< ڿOb4j-=lw{#ɕi| pdnDݑXTw yGd WDa?:_)~1^/{QGf;|r9o8@fgu殴Wy&tFxlĚYZFdUcO! Ȍzfwh*!ƶ1>s?շn:_o_/b٥^~r`c yK}# īlo(,w )AH4oans@2We߄|KxVSEĎ%%:y_1;4shSVz]tm1+ -9"C:q eVC$# 3urmwLVk]@y@$ DUb4 +Ώ616FecU&لOܽJ(O+R,)*i $ xN}]-B0]/̹Y= `4:ګ"jSreSDWQ%o UGS~1ƣUEEz4V+m&Nz!! .ܽ٦<lk9u.A]KZ@ԇ#4sE X<ѶZӎO&=,3}ݔ/N%>Jɹ@qoπͭJc~f dРdC‡|&qt33DVP/!YG"W}F)vtj t?{U#9z51w4O|UOG'KR̡ʬя緒SFp6a]1!U$>y%O-ZR$2 hrHmήL?&T : !9OHy:- Lnv&`6/v -FtEwk>$ "+fғPc+L {ܔ)X W?9:b %+Sv>P#!`dߎx}b`W/#q|O9Omhy2J$dx8/,+?yƾ0 s-˯PO4-&Y!gDi?m WœzV,cOjǜK{Fඦ圑O8K3勶jMQKsG;fJ_B:_R$y#g=8;FыRh`Xn" >ܧs}ol&>՟%JZNQV٫ 'ڜm>(6"=C=[7))C>]3>"4:6z͡u~AQaF1 klPOo_W x[QkJG9@-I 6y "@L OZ&^`k쐖kdƠ ɻƯP̟DfU*A5$Q&Y,D[wLG0&GJn!pϮ\@|.ׂ]I1{O3MAH|];E*փZ~RDXE5c9IRnb"cz0UtkŹ<ԂV +{7WXgIKkœeWܧUL<Cܜ PN虷-lUD塊`z^Î@E^Ffe:%]*)Z Z")+^ @_]JxA#'Uy?-?h>@6ncke:5!̆n,߃Iۯx|!I-wHj0KV^jy t1#-Ku4^r.pep[o*.Q\/keAAd~ǔ`_B?-sC{ 'ֈ^ߌ DkjiMol^s<ZeT&)p9=?q8x(G"C1c#Q'}l[Ci> *]-? I- 1頿+t9 n0o}HљUX{BJ]nN2f0((e"$ܫ(/'9˓v=rϏL)+w\ʥgmSdrߚc!qKhX{Ow{8fY]3^SL0\ uj/uV}F.@NIM뛖(EB_k: &WR)05GX%8},MjEe r. *^˰52&:adzYmpaJ՟Ami u!ai dH^׶&?@ b7V%&l[hig{1}Ն3r UYUZe;J7[G% JlV3k;:n?}UfTY{FN/YC] -[;(@%!eʼnsIbuis+YbuJq9`hفT ah?´\U]†Li0h^ݗŔ}MEÇ࠷î =;t7DKwB}퐛\1h\-~2*; 6LPߣ? [)"-yg%ݝe(`m`L 2*$6P=M] 2ʳ[ |I1][ǚzNgkPZjӉnf6WBQbYǛ`8/# z`=>TvМ^cܝXcoJVoGjV/[g5p!'i/ WM'BK/EYM6q .HG0ςB>pa%1s4U0)8 n=}c?/v%n,iRfmxEFWUUu1 l.NFڙvGܐ2{= څ<\ŶzT0)4fw;GɎzF&F%*f ;\-#Tor T95BHBd~>0`VC8_}iH䱂_S JUdxAy5mJi@KJb3a h_}ܻA[xe eWgRP̛KnLn꺉 m8,>4'!X#7ff49 2i_ Gj!uĥZ/X07~qI"V}nRZzľ]OÏ>4NWcuG"B<G =݆₌uaG4:m; kF+?Ww#3,in훰ut+bKxw {*$LcPWM֐ٿI;?fߏ p0EƷr3)4kmnRz M(tQ$7Np9Ksx qazr$Ĭh2ׯ5#~,O ;4',0oi R(ϜJA `li웲EF[-~VkN T{<#԰A0kWkÉﮉ['EWICętRIBoY>^D<:pUbIbwy~_!K0%Rg:#VF.jl_z^ ,iQy@Lij3gd&,xL=# C7tYdf t[-t1YZ,2 x|Թ {hJ\h=WK]“')~!Jq%Uli8guTFgW Z&cW `~RS9[e>DM^u K>W5!|#' nZZiQD4cP;q%Nqq@F:0rM%{(|k΢\_A_lW5 6$yԚ1Vk}yt"j#Ԯ/57aGtpGH4>ͽfu#Yʃm֮@zfccĖ3Oq onBu[uuʭyY`qv{710:-9at~r^g 7OeAn;)lS/ 3.Vy4 |f"[>KB|t, 18- "$| Z`,f4ۄ;m<˺FҿF,ب%$|:'NF,Y(/H$_jKjK{} i;H{djPWj1 rd#,ZDo9WKvH]  B|(895QX:I$g9X2_:= O 2sij(J <݉+L Zkt|g_qIh!.㲖dUdYk,Qd#9eg\4:bnI2]m6Dk ;CQ:&tXB0?*p< ^ ́]cl &$aD\L O Y֥[%sjJ8nǘ'\.5dyad֜{WA]J#V_{2+X ZϬgI-i~(8vx'vxE2b]A0~M\#N".CRҰ'a*[W`,?difO6r|f܍h. _hQ!Se댡L1fQ 7'gI؀YltHTdr%6E`EO0<& jr[W7gn$rvO.>y7*|t#e j7=^gn[n#;K>&r1ّ, Τ.DNU= 8)SkJ#C,G y:Wef4Wm \*ab~}K_q<)z$3'#hͬ- QLi͠P{4xSՒrc[fK7A03Zvq^@o}aC zOo.d(7oɑOTxȓla5Xt,N_q9GL=T= X'9]x˦F t!@)ܝܼasF-.AB=!pـ#Wgѐ7QI?yn?5c|UEy@?`]1hؖ %..wv0JSK@=66Qv^T<.mo/~ڨn *_`N*hcn+CHk~R묅%,$+Cw%p#3?wy|4X`4`ξ<5X|Yg<`9m\3$5nX滵pl=E~{|>Rɶ>~S\Uʲ v}?T:T3 F98WMdvɯ0\|fӗE6[zUUuPBgtuOv/.C@gp*>AUҎ\2A2?_ܚ@t"6fm,.0 /?.KUiu g;PIdF:Y>@O#kB (Qjcispoh{lZR/fĵ<`D>=ϛ֚.,0%+Cy>$Iem~@WWGQ  N+LǖxT 1tz#vqdv8=][IJIXy<~4x9q!iG M}T݆Si~'i߃Nh*) #AW`AG=|N4D]X[BX0+ Hܺ5I_9ҲTо]uøeP&>9tRڎ(vE8*R''JMCD5y4*d{NGH%r=1y!㰏N&Qi1ve"h$ʶb',n0YfժkeN"L-2κ_˦|O%Om#z: A|,q$ &.+V;j$CPn) G x|fچfB~BS88{X[$p'[i]ȣ!F1k}4_2Hpx'-&s&չj~0r`S"7 !Ls= Aڎfsé<%"E)/jSbl 1;ڄyMCjrUVrRᏴ*V)ϰ4㩘2111(EхA 'qlӐ`w'`Z7"ZH V_)F:\R"p;v>tC}*]htd (d}̃X:cMyD ?%VlBbk/ RDB1A3Ge"7 A sy\Ζkph&+lK?Nlwqw{\m10L4 +qSpV#ݞ)Les bph`Kj٘O!uo-0Za7RԻo}^vub؄jjYQ^N d80a9d.=[%q* QAYe .M#+?2+,(zF!/1Rb|<;Bch$b}<1J\)g0:Cae$̖y{,xwqzc 5.0\l9qCUv ]OS-IډM#8ꇛ6*S+N29c!4ܤ skS2Ѿ4J(s.aꥷWӈC.t*skC r{7垿]_,Fs.-of{|)MJe\vVl}g =-AoEo•S0f q}z%S{SY2ᲈC=˗ZPe{>EZ@ Q(1E`_*9Dczi[MAUu$3k>IP{P˱3l>Y6wlZzv}AZZDߝ#%O7pSV[=#N,G猪p$oN9e;1]Vf Hc_p(z] OkkZiӈMVE 'L9a}]v a=Bຯl=H^cmthI<[ElU2=!FUur6waU#k 0X8w45}H\3rD;@\Far})Qfil^~Յ`)bs$sizHNX|3'gA `ު~ނA^"#e!қ%^NSSg: %f.,n O:s"v# ^=BNU\V9uF-t4/DsP@̊ΩʻŬFQw;I`5Y~M&Վ  vՑ;;3g h$3Ϛ(dU~`dQWhP..O\dp6s5rA-y4D_OpeQ$Fzo,ękj`?u_[=i26 `d桨ڗ?gԕ0t& OMoű.1%5K J! ?HA׉vG!-2ٵ#Y|zWyΤ?g3}M9pI4}Tom#lQwoO㌉)*1nUSk}z/!إnTl[< r] ZK̙ٞr x:2s?{73%$լ64B /HZc2CC!q/~;e0B*0lϲ~jXNZ׳ b ˏk_tWwEQ~R"S}B NPu'Y/9[IxdȰ<^^d6dX>As[k/UFݽ\#kB~λuW\zKw/f<ش~hҟDf %@iȣ0:rYP ?r` jq2.lNޖkċD/׮?o6y:ϑp?04SG)I8q5̠L|^_sK~i;us(TŠ5)b z /뭊ͼ&,JDR56i +]E).띷r7gL4^h\.O3N\1S/Wҥz >;LPOS>*vdIJY-jY&bP_N]xk+Xk3]4\5{Եf'SvKCkDVq0ldܖ+-'%ŝVZBiW'+/؎hNgs녚;_z.O+IM#+)T/Y4.[H@:}787B%c{'RYז+Q<w:M./cXpcc`b_ޛlrfıщD>'0>ڇ wŒZ{ oJZ@RY&Tx` ԍbK .bY|{,~8RwЯc@?ڑD | }y6SrkQSx:qH$<Ƅ>y9vh9A?7K#i0 3I@UlUcIg"(F]o٠F[Դup#ohrU(.&TdFH-ONp Mm,TyxԣBsz~T!\}8Ξ{Ǐ{=PUX?B:\QN~q́E>Bݤ;e5!yM]4 KNHʗ/ϑꌢBaJ1WnF?5v/!3O ܺ[8 $W[n&5&VoBNd"I.~sKrn+`W5?( zlfkNOu<p@RH@+i/$$j$<#mxD(hY~#hǫ䣂kq%N'^oVzIImwkC71fR3Qu^oR$ƤBAԬNOŢW354v`ຣD'/0 %Cٖ=%jJ(vD}ƏZ 8^_EU%gKf.X)v*l'5%kӔ !c&i:9,оP?c/I^=Z7 >*ɳ2EjvF+"X0<(k@b.u85 `ΌfجxTES"  -J#jw& 1.W?5˵ԎPye0^ST?$MI AWaZ='>K×S A)˷2k?M'T>s8!Z~L=W,!W (rfg~iG wߴ lw6,0edD)U' 6 Zfbг #ojס;]N|a %wX(qt )0TJ| ؅N9s]JR B̶r4| ]o2+}]&^ⴍdI3Cv?DƤJڳ<۲n;IEkSE sɀ>KCͳe=?9߱[7^fR4@aF" ;-67Xa<|\5487H /|'ޯ9$si N|aj<\-C(g-[M}G; G6f)yh_bz̤rcR l;rj=vYyių b:U;qfy~&ϴbBͰc#EI|8aju6%Zdl4NbwFnS=t5d_d>qè肦bqw*:Xukx+៸my*̏E\"+v8O.Mo}Nsvb<逈%3_,,R-S}pk.g)wl=*8]p˄d)Cuetҳ} ~#L#I-dZ(SOPB;#(#̇f=!L1LH"/'< Ղ?^89$&!DrR1=NsZȜ:)`Y pGVFu?VwRkqI\"7}Z[>>7 ܦ9V)u7ed򮲺l^z[2d k F_رO]ڷ],!ZpPet 3M6oZ]?SU237RD22aFֳ4q|YiM]0I ACșQl(hYH#Ё8| Z3X0} Z;f Ĵql0wRL1!Hg 4/ 0R85(z;,DRzxct.!AWN%b3<> Tp}Cd=ob] clC9Đ=AXp2BȱL5YBN@oXlz]GMpqaJ#C cMVWd٘+WUdCFj/IRzBF;pdkt3/K1ՌΉYg6[zBg.;U5bȥ"飻F򹴯9KVM1,zLA#~I>RJ ZR>6i:L msr; ^ƬtX_oyt;>S;JK^m7 (UDIǶ,NR2ׁ쾔o[ U#'![{yCqd=yT M8+e_LݢŹ.9Wx6bݷ*Ss`gyzC_ d2*6&jAo.>n .^c3BDv`Sw=JtNԠy!7ȃnnk$ ⤯-$'?q@es/ΫWQ|*.~&UYųYR$[i@R)uc 붙unL?cg}uUJcItTnx%"V~4e.Z[s_zH=Dn)ؗ%xUR;X #U ajZH%YrxpW">vh ._QΣF 6}w[jYu*%+'5.2EP!|"S^#00K YAh>hꫬc._ ChM4ޤj$MJ5lԀ̂ #؉ńG]g5TmzzPc/+qe=ScL><mIײ$pOkUAR6!M<鞲m>gOp7z%zl'%Xt3d#W; 7Ҵw?gmN㘠D1SXZ9笻Y27~*\QQ qf$FON:=RcԇNtj[޳3d6ܐ[7D{YqƯ0|o`k8达F\kn,1䦁z} 3gUl1>SymX^ fL7:Mװrc3i-3gmnXTL;hkRW_Iu趫"9ﭠ:kmGb'=Qv7{Je5J38鑫-A>)n MO"tʐ kV,Ke/JAZn #vE`Xny,*)ﰂc آ9 c_g zDV t0?[|܅뱺#$nŮ?7Q^9Iolajx#EچP}Y`=`Zf{9ZՋkXQ%Eh`, Q>n hedI)Q2{dG'G3Mb06x*Quzo0SFvxA?%ZjΘީdQp$ݷkjxbHi,'?8+[~LڣFc,xfGa-1H8oA*C{=8zulL]zrxWb* \r #˔_20d_Pv1nc0J-Wb3ʋ-3y*9U`#?u{m}e-͝%;҉J'up~XWOAw#{0+>DU w=90HC_MH2@J'8tq(i4B[n4LȭjHU[~e5шϡRՋ~r1>jWW(bjڅL{+Tje<7Fk8 /h6yžJp@ tM u6`] 2gս~4sa#CW+(G\IUWŤ[N [ra}ei{f=51}yx' ?sHqk"^sCTji?Ag"↟ƔM=Ij%Ru"YPur(F15NJRVg_Y(Ul\k hCƶ@:m_f`ZZȾpz_} 9Q{IWdž5OJ0\t> yeT c?S ŰAwڕ[q|Se}l%l$s*D @u^^AAAoYj<ʮd=}TG9!+ZF!v")–)mH#@1Ȧ9}}%"ڏgdo;V: 2㢕0 h ];"qY>LgˀLܽ}s} azSUߎҬb1 s3Sf cDyt8mpm g@t +1?bC Hj*1FՓ4>N\v Iɇ3ҚUـl(*[i͒dm:sBU9&kiI@缢##(*1uZ6#{O({.eA~)# x !(JVh/م٘EFI6P:/8uWiooYZM;x $Qkgn$%CF mK #W/oJ^xMo"Tc`%y9NPմ*sL`V0 Gܐfe S#:"] =Ozor &$ט啩ɕ"?N{.?F[uFթ]nOd#MuC69DS˂h,s)eWk( Ř_ oIBZ0mctnc`}:2$2Gzc]ƨ%]0)O{Lv]eF~pu.{Bz? KUq?=D*{ap/̀k80|V"ضlP#z4{8CH:$*:+4a-~z-bQ[v$ ^koSEs-Dذ錬%3l.[Y+owd.k87/=Zmyur¹b`Qz?loJ-R՜&YB/hav>z뿔^chUv5"j=${Q*C݀EF3TS\ר=ht:6 &6E wsc9k.ᓷ'oL#wjfi15IDp4-Ih:qOLHHhL~H`a?b#8ha޻ǯ2:*^HQQޟYv VU9R^YƋGxw,<* 8kt90=zS110 (Þ+yI%ע fg@*z7CJèk GD޶>usOlLKmLk{'0NʺEDcK׍XYh*( 95e1xB |?(LJVvts|S#YO6;a_u?Cpe|h_r\͜mYT,0Dz0} $R=^&d8ڪ6T(zgq#|pa}Jiآs! Lپ>m8pr 5i'ZZt|Tvd"||,Pq.ib"+|,3 soʓ3Zn 5;$*%F`Kp֬ ) 7