pdns-backend-ldap-4.1.8-lp151.2.9.1<>,_kQt/=„RBmz4y*X{jש'K6t$֥JLXxVJ@߳a8 oX‡yU͓d /#a+C7ϹFe~_Vn% Ьp9nJ)54{ :vܡ%Oc[=1wG]b Fel=q>^?]d & < .Rlr|     1Jl H  (28<29 2: `2FXfGXxHXIXXXYX\X]X^YDbYcZ;dZeZfZlZuZvZw\x\y\*z]]]]]Cpdns-backend-ldap4.1.8lp151.2.9.1LDAP backend for pdnsThe PowerDNS Nameserver is a authoritative-only nameserver. It conforms to contemporary DNS standards documents. This package holds the LDAP backend for pdns._kQtlamb58 openSUSE Leap 15.1openSUSEGPL-2.0-onlyhttp://bugs.opensuse.orgProductivity/Networking/DNS/Servershttps://www.powerdns.com/linuxx86_64 i(9%/큤_kQn_kQm_kQ_kQ_kQ043613abe1c99cdadf0ce188b35347fdd8e8dc01973e039b6f8bcb34d1ae6b8e839c5d2add2e9524bbd64c69c44b3a153a310c65fa86676f0977935fa9ec18438ff3bf3f9096115b164f10835aff799914b65f4d651e9fa84f0bbbefde316db994d36c21e56b2096d83db548c399f287966ff082fada65f9a5d1bb72fcd51cf2f67b2ec28e45bd8ee0af5e35fca358e7c6521b81a591803814a20635fb64592arootrootrootrootrootrootrootrootrootrootpdns-4.1.8-lp151.2.9.1.src.rpmlibldapbackend.so()(64bit)pdns-backend-ldappdns-backend-ldap(x86-64)@@@@@@@@@@@@@@@@@@@@@@@@@@@    libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.15)(64bit)libc.so.6(GLIBC_2.16)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libcrypto.so.1.1()(64bit)libcrypto.so.1.1(OPENSSL_1_1_0)(64bit)libgcc_s.so.1()(64bit)libgcc_s.so.1(GCC_3.0)(64bit)libkrb5.so.3()(64bit)libkrb5.so.3(krb5_3_MIT)(64bit)liblber-2.4.so.2()(64bit)libldap_r-2.4.so.2()(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.2.5)(64bit)libstdc++.so.6()(64bit)libstdc++.so.6(CXXABI_1.3)(64bit)libstdc++.so.6(CXXABI_1.3.9)(64bit)libstdc++.so.6(GLIBCXX_3.4)(64bit)libstdc++.so.6(GLIBCXX_3.4.11)(64bit)libstdc++.so.6(GLIBCXX_3.4.14)(64bit)libstdc++.so.6(GLIBCXX_3.4.15)(64bit)libstdc++.so.6(GLIBCXX_3.4.20)(64bit)libstdc++.so.6(GLIBCXX_3.4.21)(64bit)libstdc++.so.6(GLIBCXX_3.4.9)(64bit)pdnsrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)4.1.83.0.4-14.6.0-14.0-15.2-14.14.1_k8^%@^`]A\@\@\@\[[[@ZZZЛZZZ@Z@YeYY5Y}@YMYMXDX@X~@Xx@Xx@XN@WW@WJVV8UUv@U>$U8TPTи@Tи@Tи@Tto@Ta@T_W@TR(@TO@TO@TO@Adam Majer Adam Majer Vítězslav Čížek Adam Majer Michael Ströder Michael Ströder Michael Ströder Dirk Mueller Michael Ströder amajer@suse.commichael@stroeder.comkbabioch@suse.commrueckert@suse.deadam.majer@suse.demichael@stroeder.comadam.majer@suse.demrueckert@suse.deadam.majer@suse.dejengelh@inai.deadam.majer@suse.devcizek@suse.comwr@rosenauer.orgmichael@stroeder.commichael@stroeder.commrueckert@suse.deadam.majer@suse.demichael@stroeder.comadam.majer@suse.deadam.majer@suse.dedimstar@opensuse.orgmichael@stroeder.commrueckert@suse.demichael@stroeder.commichael@stroeder.commichael@stroeder.commichael@stroeder.commichael@stroeder.commrueckert@suse.demichael@stroeder.commrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demichael@stroeder.comLed michael@stroeder.commrueckert@suse.demrueckert@suse.demrueckert@suse.de- CVE-2020-17482.patch: fixed an error that can result in leaking of uninitialised memory through crafted zone records (CVE-2020-17482, bsc#1176535)- pdns_maxmind.patch: backport support for MaxMindDB- Build with libmaxminddb instead of the obsolete GeoIP (bsc#1156196)- CVE-2019-10162.patch: fixes a denial of service but when authorized user to cause the server to exit by inserting a crafted record in a MASTER type zone under their control. (bsc#1138582, CVE-2019-10162) - CVE-2019-10163.patch: fixes a denial of service of slave server when an authorized master server sends large number of NOTIFY messages (bsc#1138582, CVE-2019-10163) - CVE-2019-10203.patch: update postgresql schema to address a possible denial of service by an authorized user by inserting a crafted record in a MASTER type zone under their control. (bsc#1142810, CVE-2019-10203) To fix the issue, run the following command against your PostgreSQL pdns database: ALTER TABLE domains ALTER notified_serial TYPE bigint USING CASE WHEN notified_serial >= 0 THEN notified_serial::bigint END;- Update to 4.1.8 * #7604: Correctly interpret an empty AXFR response to an IXFR query, * #7610: Fix replying from ANY address for non-standard port, * #7609: Fix rectify for ENT records in narrow zones, * #7607: Do not compress the root, * #7608: Fix dot stripping in `setcontent()`, * #7605: Fix invalid SOA record in MySQL which prevented the authoritative server from starting, * #7603: Prevent leak of file descriptor if running out of ports for incoming AXFR, * #7602: Fix API search failed with “Commands out of sync; you can’t run this command now”, * #7509: Plug `mysql_thread_init` memory leak, * #7567: EL6: fix `CXXFLAGS` to build with compiler optimizations.- Update to 4.1.7 with a security fix: * Insufficient validation in the HTTP remote backend (bsc#1129734, CVE-2019-3871)- Update to 4.1.6 * Prevent more than one CNAME/SOA record in the same RRset- adjust buildrequires for mariadb 10.2.x on SLES- Update to 4.1.5 * Improvements - Apply alias scopemask after chasing - Release memory in case of error in the openssl ecdsa constructor - Switch to devtoolset 7 for el6 * Bug Fixes - Crafted zone record can cause a denial of service (bsc#1114157, CVE-2018-10851) - Packet cache pollution via crafted query (bsc#1114169, CVE-2018-14626) - Fix compilation with libressl 2.7.0+ - Actually truncate truncated responses- Update to 4.1.4 - Improvements * #6590: Fix warnings reported by gcc 8.1.0. * #6632, #6844, #6842, #6848: Make the gmysql backend future-proof * #6685, #6686: Initialize some missed qtypes. - Bug Fixes * #6780: Avoid concurrent records/comments iteration from running out of sync. * #6816: Fix a crash in the API when adding records. * #4457, #6691: pdns_control notify: handle slave without renotify properly. * #6736, #6738: Reset the TSIG state between queries. * #6857: Remove SOA-check backoff on incoming notify and fix lock handling. * #6858: Fix an issue where updating a record via DNS-UPDATE in a child zone that also exists in the parent zone, we would incorrectly apply the update to the parent zone. * #6676, #6677: Geoipbackend: check geoip_id_by_addr_gl and geoip_id_by_addr_v6_gl return value. (Aki Tuomi)- Use HTTPS links in .spec file like mentioned in PowerDNS announcements - removed obsolete 6370.patch - Update to 4.1.3 - Improvements * #6239, #6559: pdnsutil: use new domain in b2bmigrate (Aki Tuomi) * #6130: Update copyright years to 2018 (Matt Nordhoff) * #6312, #6545: Lower ‘packet too short’ loglevel - Bug Fixes * #6441, #6614: Restrict creation of OPT and TSIG RRsets * #6228, #6370: Fix handling of user-defined axfr filters return values * #6584, #6585, #6608: Prevent the GeoIP backend from copying NetMaskTrees around, fixes slow-downs in certain configurations (Aki Tuomi) * #6654, #6659: Ensure alias answers over TCP have correct name- Update to 4.1.2 - Improvements * API: increase serial after dnssec related updates * Auth: lower ‘packet too short’ loglevel * Make check-zone error on rows that have content but shouldn’t * Auth: avoid an isane amount of new backend connections during an axfr * Report unparseable data in stoul invalid_argument exception * Backport: recheck serial when axfr is done * Backport: add tcp support for alias - Bug Fixes * Auth: allocate new statements after reconnecting to postgresql * Auth-bindbackend: only compare ips in ismaster() (Kees Monshouwer) * Rather than crash, sheepishly report no file/linenum * Document undocumented config vars * Backport #6276 (auth 4.1.x): prevent cname + other data with dnsupdate - misc * Move includes around to avoid boost L conflict * Backport: update edns option code list * Auth: link dnspcap2protobuf against librt when needed * Fix a warning on botan >= 2.5.0 * Auth 4.1.x: unbreak build * Dnsreplay: bail out on a too small outgoing buffer (CVE-2018-1046 bsc#1092540)- add patch for upstream issue #6228 https://patch-diff.githubusercontent.com/raw/PowerDNS/pdns/pull/6370.patch- geoip not available on SLE15 but protobuf support is available.- Update to version 4.1.1: bug-fix only release, with fixes to the LDAP and MySQL backends, the pdnsutil tool, and PDNS internals- Update to version 4.1.0: + Recursor passthrough removal. Migration plans for users of recursor passthrough are in documentation and available at, https://doc.powerdns.com/authoritative/guides/recursion.html + Improved performance: 4x speedup in some scenarios + Crypto API: DNSSEC fully configurable via RESTful API + Database: enhanced reconnection logic solving problems associated with idle disonnection from database servers. + Documentation improvements + Support for TCP Fast Open + Removed deprecated SOA-EDIT values: INCEPTION and INCEPTION-WEEK - pkgconfig(krb5) is now always required for building LDAP backend - pdns-4.0.4_mysql-schema-mariadb.patch: removed, upstreamed- package schema files in ldap subpackage- Update to version 4.0.5: + fixes CVE-2017-15091: Missing check on API operations + Bindbackend: do not corrupt data supplied by other backends in getAllDomains + For create-slave-zone, actually add all slaves, and not only first n times + Check return value for all getTSIGKey calls. + Publish inactive KSK/CSK as CDNSKEY/CDS + Treat requestor’s payload size lower than 512 as equal to 512 + Correctly purge entries from the caches after a transfer + LuaWrapper: Allow embedded NULs in strings received from Lua + Stubresolver: Use only recursor setting if given + mydnsbackend: Add getAllDomains + LuaJIT 2.1: Lua fallback functionality no longer uses Lua namespace + gpgsql: make statement names actually unique + API: prevent sending nameservers list and zone-level NS in rrsets- Ensure descriptions are neutral. Remove ineffective --with-pic. - Do not ignore errors from useradd. - Trim idempotent %if..%endif around %package.- Added pdns.keyring linked from https://dnsdist.org/install.html- Don't BuildRequire Botan 1.x which will be dropped (bsc#1055322) * upstream support for Botan was dropped in favor of OpenSSL, see https://blog.powerdns.com/2016/07/11/powerdns-authoritative-server-4-0-0-released- This makes the schema fit storage requirements of various mysql/mariadb versions. pdns-4.0.4_mysql-schema-mariadb.patch - preset uid and gid in configuration- fixed use of pdns_protobuf- update to 4.0.4 - fixes ed25519 signer. This signer hashed the message before signing, resulting in unverifiable signatures. - send a notification to all slave servers after every dnsupdate for complete list of changes, see https://blog.powerdns.com/2017/06/23/powerdns-authoritative-server-4-0-4-released/- added pdns-4.0.3_allow_dacoverride_in_capset.patch: Adding CAP_DAC_OVERRIDE to fix startup problems with sqlite3 backend- use individual libboost-*-devel packages instead of boost-devel- update to 4.0.3 which obsoletes b854d9f.diff- b854d9f.diff: revert upstream change that caused a regression with multiple-backends- update to 4.0.2: The following security issues were fixed: - 2016-02: Crafted queries can cause abnormal CPU usage (CVE-2016-7068, boo#1018326) - 2016-03: Denial of service via the web server (CVE-2016-7072, boo#1018327) - 2016-04: Insufficient validation of TSIG signatures (CVE-2016-7073, CVE-2016-7074, boo#1018328) - 2016-05: Crafted zone record can cause a denial of service (CVE-2016-2120, boo#1018329) For complete changelog, see https://doc.powerdns.com/md/changelog/#powerdns-authoritative-server-402- BuildRequire pkgconfig(libsystemd) instead of pkgconfig(libsystemd-daemon): these libs were merged in systemd 209 times. The build system is capable of finding either one.- update to 4.0.1 Bug fixes - #4126 Wait for the connection to the carbon server to be established - #4206 Don't try to deallocate empty PG statements - #4245 Send the correct response when queried for an NSEC directly (Kees Monshouwer) - #4252 Don't include bind files if length <= 2 or > sizeof(filename) - #4255 Catch runtime_error when parsing a broken MNAME Improvements - #4044 Make DNSPacket return a ComboAddress for local and remote (Aki Tuomi) - #4056 OpenSSL 1.1.0 support (Christian Hofstaedtler) - #4169 Fix typos in a logmessage and exception (Christian Hofsteadtler) - #4183 pdnsutil: Remove checking of ctime and always diff the changes (Hannu Ylitalo) - #4192 dnsreplay: Only add Client Subnet stamp when asked - #4250 Use toLogString() for ringAccount (Kees Monshouwer) Additions - #4133 Add limits to the size of received {A,I}XFR (CVE-2016-6172) - #4142 Add used filedescriptor statistic (Kees Monshouwer)- update to 4.0.0 https://blog.powerdns.com/2016/07/11/powerdns-authoritative-server-4-0-0-released/ https://blog.powerdns.com/2016/07/11/welcome-to-powerdns-4-0-0/ - packaging changes: - remotebackend split out now - enabled experimental_gss_tsig support - enabled protobuf based stats support - no more xdb and lmdb backend - added odbc backend where supported - drop pdns-3.4.0-no_date_time.patch: replaced with - -enable-reproducible- update to 3.4.9 * use OpenSSL for ECDSA signing where available * allow common signing key * Add a disable-syslog setting * fix SOA caching with multiple backends * whitespace-related zone parsing fixes [ticket #3568] * bindbackend: fix, set domain in list()- update to 3.4.8 * Use AC_SEARCH_LIBS (Ruben Kerkhof) * Check for inet_aton in libresolv (Ruben Kerkhof) * Remove hardcoded -lresolv, -lnsl and -lsocket (Ruben Kerkhof) * pdnssec: don't check disabled records (Pieter Lexis) * pdnssec: check all records (including disabled ones) only in verbose mode (Kees Monshouwer) * traling dot in DNAME content (Kees Monshouwer) * Fix luabackend compilation on FreeBSD i386 (RvdE) * silence g++ 6.0 warnings and error (Kees Monshouwer) * add gcc 5.3 and 6.0 support to boost.m4 (Kees Monshouwer)- update to 3.4.7 Bug fixes: * Ignore invalid/empty TKEY and TSIG records (Christian Hofstaedtler) * Don't reply to truncated queries (Christian Hofstaedtler) * don't log out-of-zone ents during AXFR in (Kees Monshouwer) * Prevent XSS by escaping user input. Thanks to Pierre Jaury and Damien Cauquil at Sysdream for pointing this out. * Handle NULL and boolean properly in gPGSql (Aki Tuomi) * Improve negative caching (Kees Monshouwer) * Do not divide timeout twice (Aki Tuomi) * Correctly sort records with a priority. Improvements: * Direct query answers and correct zone-rectification in the GeoIP backend (Aki Tuomi) * Use token names to identify PKCS#11 keys (Aki Tuomi) * Fix typo in an error message (Arjen Zonneveld) * limit NSEC3 iterations in bindbackend (Kees Monshouwer) * Initialize minbody (Aki Tuomi) New features: * OPENPGPKEY record-type (James Cloos and Kees Monshouwer) * add global soa-edit settings (Kees Monshouwer)- update to 3.4.6 [boo#943078] CVE-2015-5230 Bug fixes: * Avoid superfluous backend recycling * Removal of dnsdist from the authoritative server distribution * Add EDNS unknown version handling and tests EDNS unknown version handling Improvements: * Update YaHTTP to v0.1.7 * Make trailing/leading spaces stand out in pdnssec check_zone * GCC 5.2 support and sync boost.m4 macro with upstream * Log answer packets only if log-dns-details is enabled- update to 3.4.5 Bug fixes: * be careful reading empty lines in our config parser and prevent integer overflow. * prevent crash after --list-modules (Ruben Kerkhof) * Limit the maximum length of a qname Improvements: * Support /etc/default for our debian/ubuntu packages (Aki Tuomi) * Our Boost check doesn't recognize gcc 5.1 yet (Ruben Kerkhof) * Various PKCS#11 fixes and improvements (Aki Tuomi) * Several fixes for building on OpenBSD (Florian Obser) * Fix several issues found by Coverity (Aki Tuomi) * Look for mbedtls before polarssl (Ruben Kerkhof) * Detect Lua on OpenBSD (Ruben Kerkhof) * Let pkg-config determine botan dependency libs (Ruben Kerkhof) * kill some further mallocs and add note to remind us not to add them back * Move remotebackend-unix test socket to testsdir (Aki Tuomi) * Defer launch of coprocess until first question (Aki Tuomi) * pdnssec: check for glue and delegations in parent zones (Kees Monshouwer)- no longer ship dnsdist here, we will ship a new package based on the snapshots from http://dnsdist.org/- update to 3.4.4 with a fix for CVE-2015-1868 (boo# 927569) Bug fixes: - commit ac3ae09: fix rectify-(all)-zones for mixed case domain names - commit 2dea55e, commit 032d565, commit 55f2dbf: fix CVE-2015-1868 - commit 21cdbe5: Blocking IO in busy-wait for remote backend (Wieger Opmeer) - commit cc7b2ac: fix double dot for root MX/SRV in bind slave zone files (Kees Monshouwer) - commit c40307b: Properly lock lmdb database, fixes ticket #1954 (Aki Tuomi) - commit 662e76d: Fix segfault in zone2lmdb (Ruben Kerkhof) New Features: - commit 5ae212e: pdnssec: warn for insecure wildcards in opt-out zones - commits cd3f21c, 8b582f6, 0b7e766, f743af9, dcde3c8 and f12fcf7: TKEY record type (Aki Tuomi) - commits 0fda1d9, 3dd139d, ba146ce, 25109e2, c011a01, 0600350, fc96b5e, 4414468, c163d41, f52c7f6, 8d56a31, 7821417, ea62bd9, c5ababd, 91c8351 and 073ac49: Many PKCS#11 improvements (Aki Tuomi) - commits 6f0d4f1 and 5eb33cb: Introduce xfrBlobNoSpaces and use them for TSIG (Aki Tuomi) Improvements: - commit e4f48ab: allow "pdnssec set-nsec3 ZONE" for insecure zones; this saves on one rectify when securing a NSEC3 zone - commits cce95b9, e2e9243 and e82da97: Improvements to the config-file parsing (Aki Tuomi) - commit 2180e21: postgresql check should not touch LDFLAGS (Ruben Kerkhof) - commit 0481021: Log error when remote cannot do AXFR (Aki Tuomi) - commit 1ecc3a5: Speed improvements when AXFR is disabled (Christian Hofstaedtler) - commits 1f7334e and b17799a: NSEC3 and related RRSIGS are not part of the dnstree (Kees Monshouwer) - commits dd943dd and 58c4834: Change ifdef to check for __GLIBC__ instead of __linux__ to prevent errors with other libc's (James Taylor) - commit c929d50: Try to raise open files before dropping privileges (Aki Tuomi) - commit 69fd3dc: Add newline to carbon error message on auth (Aki Tuomi) - commit 3064f80: Make sure we send servfail on error (Aki Tuomi) - commit b004529: Ship lmdb-example.pl in tarball (Ruben Kerkhof) - commit 9e6b24f: Allocate TCP buffer dynamically, decreasing stack usage - commit 267fdde: throw if getSOA gets non-SOA record- update to 3.4.3 Bug fixes: - [commit ceb49ce] pdns_control: exit 1 on unknown command (Ruben Kerkhof) - [commit 1406891]: evaluate KSK ZSK pairs per algorithm (Kees Monshouwer) - [commit 3ca050f]: always set di.notified_serial in getAllDomains (Kees Monshouwer) - [commit d9d09e1]: pdns_control: don't open socket in /tmp (Ruben Kerkhof) New features: - [commit 2f67952]: Limit who can send us AXFR notify queries (Ruben Kerkhof) Improvements: - [commit d7bec64]: respond REFUSED instead of NOERROR for "unknown zone" situations - [commit ebeb9d7]: Check for Lua 5.3 (Ruben Kerkhof) - [commit d09931d]: Check compiler for relro support instead of linker (Ruben Kerkhof) - [commit c4b0d0c]: Replace PacketHandler with UeberBackend where possible (Christian Hofstaedtler) - [commit 5a85152]: PacketHandler: Share UeberBackend with DNSSECKeeper (Christian Hofstaedtler) - [commit 97bd444]: fix building with GCC 5 Experimental API changes (Christian Hofstaedtler): - [commit ca44706]: API: move shared DomainInfo reader into it's own function - [commit 102602f]: API: allow writing to domains.account field - [commit d82f632]: API: read and expose domain account field - [commit 2b06977]: API: be more strict when parsing record contents - [commit 2f72b7c]: API: Reject unknown types (TYPE0) - [commit d82f632]: API: read and expose domain account field- set $LD for now. this fixes the configure check for relro,now.- remove custom PIE handling. upstream does it for us now.- update to 3.4.2 This is a performance and bugfix update to 3.4.1 and any earlier version. For high traffic setups, including those using DNSSEC, upgrading to 3.4.2 may show tremendous performance increases. A list of changes since 3.4.1 follows. Please see the full clickable changelog at https://doc.powerdns.com/md/changelog/#powerdns-authoritative-server-342 - move man pages to section 1 to follow upstream change- disable botan and geoip on SLE_12 because of missing dependencies.- Fixed broken _localstatedir- fix bashisms in pre script- update to version 3.4.1 Changes since 3.4.0: * commit dcd6524, commit a8750a5, commit 7dc86bf, commit 2fda71f: PowerDNS now polls the security status of a release at startup and periodically. More detail on this feature, and how to turn it off, can be found in Section 2, “Security polling”. * commit 5fe6dc0: API: Replace HTTP Basic auth with static key in custom header (X-API-Key) * commit 4a95ab4: Use transaction for pdnssec increase-serial * commit 6e82a23: Don't empty ordername during pdnssec increase-serial * commit 535f4e3: honor SOA-EDIT while considering "empty IXFR" fallback, fixes ticket 1835. This fixes slaving of signed zones to IXFR-aware slaves like NSD or BIND.- only enable geoip backend on distros newer than 12.3 before the package lacks the pkg-config file and there is no fallback to finding geoip without it.- fix permissions of the home directory- enable some backends that we had forgotten: - pipe (main package) - random (main package) - geoip (new subpackage) - new BR: yaml-cpp-devel and GeoIP-devellamb58 16008687244.1.8-lp151.2.9.14.1.8-lp151.2.9.1zone2ldaplibldapbackend.sodnsdomain2.schemapdns-domaininfo.schemazone2ldap.1.gz/usr/bin//usr/lib64/pdns//usr/share/doc/packages/pdns//usr/share/man/man1/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.opensuse.org/openSUSE:Maintenance:13121/openSUSE_Leap_15.1_Update/09357eebd4b440097887cd3db35b8206-pdns.openSUSE_Leap_15.1_Updatedrpmxz5x86_64-suse-linuxELF 64-bit LSB shared object, x86-64, version 1 (GNU/Linux), dynamically linked, interpreter /lib64/l, BuildID[sha1]=60447551899a5221b8d62ff7662a1d15b8fe5877, for GNU/Linux 3.2.0, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=ee205cf8e9a70caca3806829d38cd394431c4837, strippedASCII textUTF-8 Unicode texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)R RRRRRRRRRRRRRRRRRRRR RRPR R RRRRRRRRRRRR R RRR MBEJQdt0utf-88cefa0ac8f8b437ebc5ad2b5b6c667632010d01d6843d03fa4042b348f1a8f4d? 7zXZ !t/d]"k%60E<$#]! L)-Ϯ͍زc*a#P A!;ųA%QG$wO]Y)ffWKݞ~9GWa꾧*2=t"+5E6`19_%Qu8|r5r~|ѺRΑ5c+x5"lL0n)r&!vE4#lv܌L&N޽ּER7ܥ>vЅ%(c/MNl1s8d6_x >q"eXrE6 Ony/"jK-+MvAH.)#䕍J:j -FZQtB蛭Ŋr:rJf8R&js?1'bvH[ZQ8xtE;D%D5TҪ3B&:B)z63bAElſY|2 pR$*^<yd-Z'YqeNwKG 'xZUeQ TlsfEʄ hOѾ.x@J375-/R\u$u dQx=N*ڦLf ϜV{:R<蜕<#9~4;!UXwge_-'& $Fww wbzxߙj7x8 E YC?JMs؍*FփQInBJ 䄚G sz ק|g_JHM}#4rTq6r$^ Ֆj&e/ *z rK!RP`Ho %}i8"YmMގ:?74}i ~νJoAI$íx9<ڀkU=2.}Rw]>1%\CՇ|~WE^= UG*A .Y-^ЬA>g)u j$Yوk:,^< ,O dd C-?m:= (n"NnܐڛTIk quUk&ƨE\qcU~P* {K$OKc7AL~Py .EKe dw mH;DKsRV5w;GwPO`[W;ϵIIޤp* ;K |n0[pЂ;1Yo(ht{eU=eËzBGar_Z /ʫ9F[L9I~u#ܨ=* ی &8^2 jn`:Z4[CH1vܔh/6I xm0YQooS r9GuIG¬Ur[K8,Mk|Xb'O7W~/Wbz_MsU,0|`.@104tNT'#}\oYWeV~܏s-z.M823Mқ P6`D?>IAH+Cܞ[|莛~Ò#HxOVn#L8t ӗny.KXe!r8:u֑DL&"s"HA׊&B!͵ Y,olyu`S.'WꆿJhG\PÏ^[ŦrpG"U6uB 8Z 5`;dm30=&IK g9h8e%{,ܝP-*TIK2z{0BJ}WXG>-E e'M5a&AMU4QDӚ(OIgijVYiUoK%>{S5)z߆. W9/jg> @/@<,4o? V+~]DϺd 4 7JVlM=LMKɔn+Hip{}/Hs)b Y#!9UUC9a/^X1XJr0I4m6 ;ߺfsճ. By Bxb ޣU&mqL1M<P)qvCn"9N\>sTpX;̻h (]~w֞IL@.sS I_dV@SŻrϕA ?icT?NtZVTVxU"D9Ip֔|>lWl6(Wݵ $|[NnV+ڂqf\5cՍ4Vt yg-hUj'#tMH3' g< ADHϳ"pGit0,7>pjTLǴAIa_ɨy-W%3k~iHkeab}dRv̭ɫ|RjZjXpUDe9G J>[zLwk%'t FgxʷxtQ! lW #"Cp0:V=s-Od1cB1cZFkdGX*4.Е}.hhɭ+DWnDG A75YN8W/At|x{D\g՟ivX»0%P pa81SJ:bGDfb܇9Rd P QOͳvA*$y]J<so}Qu gف{&3CNFRlrѨU1ݹ;u҇t޷EzJ%G~.-%HK? -VR{y~YuY^'x>f'cO$v k>E}/ **axijZHp`~/oNYKq1d<rf+!ݤWN!Ae\wN9ȮDGX+By' |׍:m 6Iw3ɀחbٵ5w]: e.>\T\ç2GG:U/rY,,{ߢ@{B`jT“s+]|Vg q uHtآX!ؼ5. 0J!zKےHN`,L>F82Sm9\ּϖ*f:o6wۤn&k`vb 3 aŎP 4 Q?|0nھBK_mȅ`Pע|a[PBc,;.ֻ&y%ӇvlN)U[Gg?V:QvO ݞSX_8͎}ZGEf5b_Va`Xײ} >a.Й F~5IXY$sg62O$8I`\cS㠻LSWu$m5ԥڡUr\/A7Rq5M6U]ʟ!2E4DXޫ~eɯ$v^R}I$A34>M 3K?e`#ԗ,Ώe<I6\lU2J0'~"[bЗcW%U_~b[ZC6 vBJD !< ;kK;冰X1}u. DoFyD.'-6o^aD'W-7T 6 cw!|24Wl2 ('1yM~PJ[w;uuW.Ql=G&A/$;M_ G*>ՒYODglB)IpdzʞP 8v|ẃXhE.21[A$yR.,\q%j#! Hg9L8Tf ^^ST^d7 &C"9Fk{b2EێV|ej=eKv zԐ<'` 1~gu]@h{pjP<"eF;&nLtEz:vƵ,g&TZ4Y!<~ǾOPs©]7-Q}N}}ÃFyYix!;\U*[y ͧt(pQȸcMCwtE/!։?>] 'e=("i:xÕ&P>BrY$fl;Q.}+*V7n]ytU2Ns:Zo 5gTipthL?FJ Mmo #eއLjki_1Kx<{w*P%Q/>TĒ:sG`,`5V&g;oE'ɳȚ">ç5HUZkWvZy?,%' R'q/)/3^T׀.C!JNo ;]OD3C;L3DxVP@P%7suI0ZJ<(vx"ӍBRAuDŽpl?MqyRJC!ڌB8: ]+ >n0r EX<=!F^V>݁GvDY 0ɐn Ls(ꂋBz}b\ o~se7>yu$ 9}UK_m"_wR'x֢fb")?<*rʘҬjSǸȍܾ.:z@e`'-6Z%\ =Zѧ RQi7fp]8b{d[w"7D%_h%L( Х5pa1EnS5CZݿ5 *pX9kזz,T@2gӍ\iR텞[ellKF3fXi&k^|1LBa@%AgWT̆c@[D7OGPaY?4̿5ݜWD}$H{i$LȤRَ;ү8).XuI.6$nTtJŜITm j~ ^aԺ{뛬iǓsѻ)c>7&(}=Qt~-@7#]8Ժ(ZŽ1#2Td6x0wxHq" - XE6Q6_s\xph/K]G: ISm S"=j?26ĢZhMJLxYv8jR\ -ta eQwSJYM 'ЊVTLM]NA܋Ψ9bFS0[P~^A w[|^_wQC[.{uBz 1dkBA_\rĮd Z{ =eo-U"jf 8:*hHr2NS'+ X^D*+*ƚyj(m(k]o@R ʽVR]O>D&/Da|7r/uq&ތ6 +7 Wl$̴N,lyIx.J\;.6NIW KE׀n n R{\%4HL8+z<;!],gEd*c@`OCv rtv C/}X/4NvӋ#!j$T0eʞ^7#66q$Z2"rU+8 ~y= mDe{(ޠcL]SYJ`5VD bIžQ7gYG͝cnT!:88#egf~o%9;uգc OD9Ɲ:ЗL;t:ېT5h3e@Yfz11R7˶s"W<@$ jԙzz8ʅ= ٺ#BT6):d=U{Mh!/f(U'Djc%i0 זM?X>.8 Q7{'(8| MKk,{ LRv/fѠs![3oeY"wk,lW'gE}ڈmt%Fw 4*8Tn9+THE|=W3odX$*@ejD`Ƈbdea_4f:7I]Qn y% SNt0x9T0/]]U3Fݟ8P0afͺdM7uբ% R vZ'_'dl>S2bh .o\9)R~ m_`Lts_iPL[qq_C?paScrX~ k]uV_Mx b%!-9K3s"ThX98!-!~&a?p۽5msWMhD^. =ƹ3g!v+'8& ~7?Y`B?ƂJpe?RֵS{UkmFO%\SEt 8q)OK;1>vws<CcT:,K$Bx u&р} k_MX{|C G0e .F'pڂ:#;,LX/7!F6Y'~!I4" l3 XBA'yAfT\?\&],7GƗ& d$8zts 󋼘$Nwefo-yV [d0%ɐrr,pL^Vhy5:Wzԇ9`u1:{ΕuS/:<PAHPhzXՖN Y& \VfZ9$#QĿȉWE{;A!!H-nq5ȿGc OVS=ܾ.}k֒΢*>B!=[h݁M׬4|av / gjWdG/v3%F褍?HэB&=cУ?PiAD^Vzi6A/&wisb׻d焓=EZ?{Ϩ2w`*YR|>FQwlosokQe(36-j#] )3K)2~Ƨj,dߠשlrsvzM_UUu?W2A^Jq$=h:r) oҪHҰh1Jɦ M*o"z;%UC7i_O1>A} !i5lI׼Z:QJ.d Yz\[-* l t wGOp ^ENorGBTڦv+ tYӻ@(2?Rj s[d3~,6=:vo3,pޥ*ow&Dn&0( O+z'diHʼȆVA[ax[Z3cOO`9w624F |뼂fÍ`Ǖ Eŵb][DyȽjK ZbU]V:J#EMІ 㳪67 >cccfzaj u9PI4譬FDRuKp|V;axZM/1dBVMxT2*6b729UÆMWJ`:` Z9 ̅s#}PJ BaRcH.aALO_d :^3v hxrMsc)}$d8 3iG$Ә ࡍxF 'm NMHy@ 1/k+7WAUerV5$sca`} J{ W2&ۻ.7_G_8͏ Row:~NW zmY@ZۈfnBjiaxb]j~JR1,"crUSi| ;iF..|] ƫYeA%M>XgAZ`oc  _z:ΉUd wvd? ܥNFmS|wbBP% ˧( q/aIl,M⩀NRjB_!;v$&#̧ d~s\4 0ֺㇰјCu0o3>H5jdp726YpO]/kLX9-75UU!IH< 8ctlTrz'2{qk1ƣ}P?{|0z^C7lDtZKsbߝ9=f;-Cj =΂_7~5V y{IC,6.U`r7lt25DvgN@;:tZZ?oi[$ϼgM'8B\D|LPQGPv@>$L"fu;C$#P?U 8k̏-шI56QEw-blPڈQ47=?a­Ovst XTjK>-: 'SلkFR8I*<J G Ya3ni<Å, nJT"Ժ[ϭp[,=gg]kv*C$p=bHƷt}+"b'ID9nr#a%1$60M!h,T&.~|TkDKh1BLx boaCC{QlK!8M4PTkYO3\Q"BPʨym ʔ!W8[]=޼ʢ08_y@WǝKnhH NmP`NkϻԷ⇹b`Je+jG$d??Nc(yWp~/t7 YVu3b ܠQg_)=YJ '>j[>d|Caj[.mm5@gJ[#dg1Y]K鷯BLv#b@?ݮN<^>O]xD\\v-v4@3|bަ*WH-磚;v?5le-tૄT(?UoaXyܒCJԒŝ *ΘJ$ qqcf$EiY4ZMDІZ`bhuqR> ٘ ]T$tD06\`n&0)EٝX ȦG|O߮7aV| v OgLuu"Kz~Y=2]XPA5_LC%D+Ư@YPwd|{&yZ?Q@yGʼnQlƊ3χ❔ Ɔ7D-(McŵXXJ]a{ Kgwf;ɍ78'- 4BߟM %[7+dܭqlmBIn%SW-x*ə0鷴5TomDp,LqKxF *x7"Q"/ }Įo@ZT xSd.ٵ=g_C;I;6&]!4tgWm4n:؝~T>vYo,=Spƚ"'Hç5">`݊Z~a[^aj?sBß+%O/L݀s>B;( ab6c (bf%Іu N7vA`7E[/"Z$-U9$(H`MΰPqRl:Xwu6Hm33rΛW++pyv W3xۚ6 I J7!vI y)VW)tH:eN>݃ Ή1u~<=2 ].VRW es沸&a%*A8vvd_:sLk)I 8hlU $ZÙQKfǤL2I<`ỲX+ט/{>XpгI؜*tfx#[ޫErw" RGj h0;iL,҆#Wt.ƂOǞ'Ed +%:z"ܠg,.,w`֌(ѻ'g'ќW')9ZR4,GŮizuL,俪<{˳uy2@2"%)33>]z=f0srTp 9,[ TS-wG 쭞F ^IS`I!軂mXf3 Af.L $WVMy6JZV ,BS0iޑoc*a'+Ŋy1WBxp(-mVB;@D CT`a{IY0i4B]Lf)M b˗*5hؚۣ9Dy+LxQn)|j`Ol.BoyJ11=Ҫtph[aؾK䢾og( OW7m!"QUeG8x`|Z:㟬>7;fPcC q1ÜHdh_1sMTBزg޻usc9YrW wY=~&jpsfvd_4"=fl$Bu{ kߨ{lqx'bq肟rtn$誣 S&@nZ0{tY2T֫iBdgs@rhuHep7y[H8&*(V%ru5kd^wTt1pNgi .T➺shyCi!}QF\YsGg Em}3nݯ،ˢX]6)V`@;Rӈ,D9ہA W a>ta{q_NɈE6̥;lV~b0QOMn̗ `CL0ʵlG+0fwnRTKsOAD쓮=aɜ?2R5eLto+ n #:>z"H՚m=\Ъ~ 4C,]U]]ϓ~kRyy_ɖ!cmrHtuv);:A/+!YD;<7 cY:Rya8"ѧ[7)q;iDc.!>Ჹ9ڞo<}r2x7 ]Έ E󐕥ُp|S?ɱ-B^W[LWQB >)S/K9vAӜk?cڀj;/.s;1اă֖~)xl i6c.x೤'yپ{RY16g.Qyy< 5O)P 9 :c1<+]*:}y&%:Ā0-[aO篎! F53J37[Ek9+&#x A3 ]u;' ! g1 ƒSYhO)~4Bx(0 -N*^UnF"rStqM%05% q=faRR:EE5ڱ Ռ\T&ԓRvx N "wh.;r4ħ DӲk:qBOT2@E%ɴrvK8Da %`9Rt}VtQPfp\~4}g5DV<>8dV q,sz1= sI]jA}qbz| NK "W|CC++}OdC"<2Q+2]ȸ) }>rV`~%gTxuZ7SY!pW)iu*dTv4;;*EϜb}N.4sh~v"(| L*3ĭh%}Ν.qnHnht;ts!`i[&k7'a%ט5JMϣ 5}G~8F.q:aaϨKV%5;O׭jѤacqlU:'r?3,wdcowJ7L %핐5L)c"bBhZ73TgşiUŃ1I#Ggz5e3tz7rN"b BZ2Ri[O _ɞ,; sg #734OhJ":tLX \3,W7Rԣ}XXE<`t+<$É, lD ڜn-V~=udx|D6"/$QȯrlPܦJ;}o)o7֑hLR>R#)Še^]LAv<|(O|A{M6bp:C4KB9cx2oy:/x,UĶt]L|t2ž/sPo=y@81–`sc;f^SJPQtgB>qxC&O.$o?rETp|zN:^ +ǽX}x=.1;1*izv} `E]x=e_>ͱ>қ29Tl#O]YZYu9('TE |I~qg.>T'e~]17S<==}TR7 R`8x]tMm*&T\O0i${0w}lCFp ^"zka6`c-\i4'K o}Xi!0ehf3mlf4}6&5zL!(|%y f>$Wxw5ˌѾO,^dD@>R3Xǂ ѡ+ROB4^CsE-$T옧ŁsFEA8-;wlQou<cS*\RU Ѵ a]S2օ^!+ 5%?GvTEWFA9Zk^3G9ω%xe?n޾A8Aj,FStd!zfVebӶEI7p*b>·P _~h䘖8j?V ؉tt钡s70f!W!5&jr^kC Iu烹D[F5ٖѪ,FD¨&C:|Vc나}Δ}Lpa9Ysw\woy/Ruj奎969TBvWur ?'5tcgd&WqROQĩi]#rK~㬷QђZ4KiwZHR o^hBs߰jij dYPraxPOb_{T@#- P+6$e~#WwmVTnWWsleh[6ZCH|ލC3Sb3ⵜ D RNZ֙bn >['ל M frW*[z&\!#jvs >̕2kHc%y:c!LK w҆z ˜26J`bw(>-ص6Uhox1ڤ`jQ]_2 #y'^ׇM2v_"iWkRX`oO R:]1V{I68/BƐ{د}am5_ʇv+>)&%x-gƣP,Yf١kFգxs /RB{\{ _ӘPpcsVQ'HWߕ35bq;F/wSq2'0!`i)1CUP3–ZCЍ.Ih3< ht+kv6XGqNk^S2=o_Ng߅85#") 9_;׺r]iBw"FQ3~gkw WW|! 7kc#mm޾pÊ ۏnb~aMյHg\8[. \xDs'v[MDK{O*RaUh Lrɚ};OƅvF)=*5`½);{Vbt9Ig7YuHaN_P (".T ;qeH`y_71s"mx4,#R5fSAMu^~8up2F N/Tp(xm:B\S$ fvkPy9d!}Hl3^)}Fpj> vC7;2U̗#ޞP6z!#䤲Q_%.saIs?%0ضAA}د\0j1O@ܿAv! qd#V!w r˰ݽ#w1B5a3c0RE#fMpH7^> Gp F{Z#2ծ)"Q wU߂ɊК xc[u62GĥkwX{W2R BoK.Ψ+;&I=F;ќ]R6)hDz/:Zb.afR_<ͻjRN/ʁQp>[ʣBEWO@00o":ʨs&f^Mx2]K+!_'&q r#3,o7<XY:@4'2'lo,&\~fB"ќ+f&fP -^#C ֻ`0K Zu< Zn1pImYb\ 0%ߎ = 4].5:޻5"t%Tȝ!hbgӡ8z F_Z\*u@d.j&c@7_о yFޟl𘳹(رtZ <㖓 >/T/aֳ= 7^X#.FZŏP)GxSR[q x/@ɇW΁k5dt!j\:]yϮq-rHjP/ϐDJsΆf!a=Yr`/diu. OtHJ^ʈ$msN;ӟ:"}OtJZu{/u∵zB^4ok2u9e-8=tt=Q1*~ H'&bPɡT i >ln߼u!NE]˄GdCq|E,|]TŶzpT~Nk/Y|ndFѯ!c[f shl2/rGp!+Ċ* kͪ+15_*C 4P$]KՋ[ ֨PUGrh~r`(vKs?=q"A3l[D+gd NEa1Tgx#(RsZ/ˠMMC-1b"f΁B+R&AŎ{rA[S=ӴFȁTQdDi^p&'[&o0 LC53;k=M|scmXAO*şD`/d y1f ¤SR=Eگ{UøٖNѓ)t)D` u[s |8vQV?Mbcu}c ZC>YZ9)νKK_|Xu#V 3n3T3|GInCwʧ&p2nlfP!Xwp9dع1$ IziVm$k`:3N&jN+ݹEvi$쌗sّ>i$;3WY[=x{W-}I]qޔy<:|KBQjN ,;'uF( GoV} %҄](V&JZvbb-faS76[YkX16oQ*c8C:ܶض:q҉ WF<;:lm;IamFB4CW8E=-H)By]w~1X+D[ B,/egx`rFxc9,.@[譭+d"Nr<7mqnrYHhAeR|m+`} x8 l3 Qs~g4qƤTh:#xPBYf=cDTmaWi߱a%Ghw>u[1kTJǚ߭*-^uw`^1$0#x6G5vL>Rç 4GQRk9߭a#ʹ`{$)% 22\^➄tjMAm>]=ܫcRIqv@☛xr2n )7T?fv8#zdDQ\Pɒ^TVh ejx.~Ce ~#?H/$ykXIߏ>>F򏲟O,ᅂ(ꓶ0LuB2GoUL|>_sQ?Z:ͻ]>)ZoP{t5яj J"a,N >lLc>H 0zAQK~02؂2;oa_څI||ae!4}+ߊ"e E}ޟ%\DyU"tRܞ'1 m0dv}pj|ƛaT{êp\ ¶Og9CYG''E\@&.ŪsSfӣBO$f'{D-+su!9X$\Ec54?ן$N(!jŵY'DI n[@;m9agC`,lQLt*2͵u͸<}gn]}R q gHHKxXwJ`5*̿B!C8WD|fI%S~c J_b uj 8<sm[_tOb:#h IcPO_0"PncGSD*B8qmXŮm8Y1y7PZØT5HocWSUAQ\-\ѪsK"+Nbk,DҷwYل\~\( CojX~h# "Nvܬ`goN҃,'l>c6C7s(/nE 2)\k {G/5OqAzoqv& ˠj`7FP;@ ̳t!?^G b:R;Uf#R^D 8+ K|p %[Xoɪ+]iX!q"U拒ժG-?8,؍$1rߣ_Ngڝꀫ k0>?Wq1.OZ!Ǩ;ƗE^Iwb KHWy ƅt켙9Fݣ;'`NiwHzAg{v3zlzdNK~٣~k@stX!A 9M#'q!E֝[o8FvpL7qY=̴G zum!ӠjC"I090}JXcbr:,\ޝB(A[OmuJ.u:?puS{ QI;8;DZ!Z⤣OOb4XDd4%; w2ȪsgCß0vӇ6xcʜa 8!wPa;rk _Pq]fUa,B>'> (WCwן%b Hpg<:_`;PqlfpRݎXIO&ZK Jμ2_ 3]x,㏁j@($ ayqlx_㻨 6QfUKOGyӁjkA, c rA맹$F:M=F,$lX@F³$Zs. G}CPT9̫'hBCkjC34FIL҉1C=& ej2Geu UdrT٭ֵ " k\7@%W9q/'%fV$MQ5@[Z64ȩ0|N,h6(/TN2P*iR&h4`@(4~vD(}rdg6.\{8&*eFx,G'ݞsQlAzhY/F񰗈׉[T~7%J-Z9ycd)RI"/^ETFSSsZ6yx|_p_)rM/ 5F<# B݅{zȧE݃}ey'ԊB6b~{u3 %YJвݓ](ӱ^ݴ#mʲ{C0_ 6hs#^o(Y0z/uoUIRj}!٘uA "p*>Ly/[+29 x`1YՠUz4Y9ǘ Β63RuY;S kBխU5/nALA:U\f@h=IU"R̈́YEmqUQ'EYow?it@'W$s$oLCZٗhDV0),uV{O‡9c<>enSQWVF,*w{%9bw{{_fcm󣭵  %miP(7K^ v"HE.2`c[E{ֶGEItk'{,;Z~tJvl:v7t;11a]E`>&?{jr7Sz@Z*0Pv4kx3%y*FH Ȗ(~hNb_?FdB變Xܩ < lt2>dCOAbZ#爼@ ^x0pgfO1lQz)6dcF4/3e&!iXSAsw7gG:nHK$4R nOŹCQz|MLK,ys)-bsT_LY\`nMBsN&=:}R}tjg$n!jhz晀dM;Ӹ{*vSߛc`y _bb :NQV ۅh'6rvbCMƨ11RL澘l2\ +3=w)ZGbdDq.4ם !>_m\YԓMdoq+=X;ִo}q&V QEWD\uϡqܠL#LUC(;m'pq[Cx;N;FΞHL[؉s~+kD'}|{sg>O[wt9~5pZ wdQjn)YhAяe`8˛kQ1A;_8f\taB ާ_ h-0mf3F$ΖM v U+]6ouvU؊B ǘH:E|eڋnD*8:)۾ MGؼW"*Zt QBݓfEyUemJ讬 ӱVu;Wݒ'q`-;hpXB<_ G`ȂHf_XPmE_2iJ2˜HIn jf*;\CC4Zqxk; +t)kS'(t|jnA aLj^}T"x?93<]|:)sCѿQ7+5)d(^8Ї/2IQ$,x})B ͅ45ֿ%|j5ǂ4D e ME #V;zF'D >ABϵTc+^Z@ҢQGC%֨c x >dt D@#PHҶH16buBE/ܔM=Bp\6V&49oEぷQqs&+Zǥs~&{ʎf9_ (BGPL@6\ ‡Ao *+]:첄#}/Lb'v=NYH {hҥZPM06$#MMPUaj1^ } Ma=2JKVz(ӭe]ua. i:XHOBBvzP&lLeyWWXU/NL@ #A1 J2f_2%og1yw.nNTS#TT'~?瀃dzMe3k v[N H!swlZ.c /hs3ɧ55)qDhhKl>3Rv3'~+"C݇WE?S#5 c@PGhƂZk~P=h#C?};F_FzBj$ iiW'aL_{Ѷigo3OCƴmdBgBn9R;k JHy<,y7z0`b0# Wx~9|\h2nՇJB*=+1?148n\M=ȩ@)ѳ_H|2._3EHXQcarWk ܲ%b+atb=Ej+`A¿ |AR#MD()itE#ߏ^*A cXzG+YF5cJA^ M 1HL0KW׹UX'2wC0U٤*SNA_phon,t;E5G)\9ⷚVTB<՟{ߓu+i&Y.MaEw<'׶RtNH. )"e٠uʕI՚600@ =M\;$YW@̱ _yE>r2#['Si nqNpu(73ENqMؽgL+x03]Ғ^BЛԖr.Y>UQV_;'؁YQnǎi9CQ%B4 ]c($>HEUP?ii1Dcl~UܲxU"REYRμ-a{vd=" Ll׭܌HЙ!s #$)=Jj^Vkɺ%s:׳h'xaLRF2"ş3xiG!iPJ6 8?,FYPtX Aj/Z ցM֕vn:Dg 6rUl%DYqYmL_Y W/|U 1BT` Ml yE:'b7VjK$$jZ~5kcعeb$7d54;-` ssJctP"kZ@a޲TagXX?|*v m{o6[JQs}Bl黀G\ IuO W?ޕ|̊\ዘ0UK$Y5gOmN)3!8 gkͲNY;T s jSխS:a5qo2=`y`˧fכ}yۥ%@vɮ# (I+ɽ ȖjJ$ |tV㾿5SxsF^es210Qujhݭ|(4_ #}x)cu[J{>(kTӋK~ jí*[5@`}_Y@G8{~dfX\gY Psh%l&'$NEu8q\rK3`͓*|A5_/v|NZc/{y]'5<-k-}3.bF4v|jkga4YISf6&' E~>2 P-Ez1f͎FywRFys3lǩh6 7]1BH ~6l}?s#Td)V-A<77s9I|7˂7 0g0Eų/;vުx%L VȣHZ]ٌ*SY$@yFsQؿֵP!YI6'DaLueQ'|>| &A GZ>I桯T$XN! @!:25f6flJa81U#aF%#}I Z@'fqZ2>') =hyM-Mhm{ 61I_-xJ<=e}Q2Qglsm MAß|x* vt>Tyu4U1kB"`3U4fCL~,91R|X;.NZj Ed:]!a_:fy osMՍa8mPZ~GtTu8X/O"nʄ=BC]劅!5NF(X7{ޗ`8%'${ۮj00DQ#yuTU"6$ƛ81(+AcwH84#:CI݆nx28Z+eIp?Q%)EO^,MF~'$(%-<8Y?iŻ߆(6h C:7oYakoc3 z5yIHU',4̈́[Q2?mw1\w< (|84`&ii~.%AEQN|Sp:Kn27lP] c2]:X &l]3*GHEhw9[\r;Fn bcYmEC51QY(+>+ULȂ+[*}O$澀l5!5jKLaͶsT[5V,8רL5לx*2q0E C!Kpⅲw/oB5 \y2hE7Ӆ<:Sk`=b Ru/V6T={> 0cừfP*Rf,^b0)gXCJL?aAځ4>ê@P^ا:DH0z.논fc /&^zc7fo HIsJR*1(4Ju]匇 0;.,092 0Z;d Kc ;.rpcY|*䶕Ȼ{2E;gՎ!2D5 Uʤ|`Mr3(>)H~CYD F@"z6ˆ}܂WqȒfvPkhgǴ"RQZ .W|idp-nɞd:2vHoNar%??ћ?_sڛg%6~;/=[+(3*(jg }[X3ր͔XBѰlH뚭||пV:)xRfFꁈ.IN:NJCXIaRҋR//2âgðCn\ӶNϮSkX!yUc2> }-i0<(B EYXr{$|O[ &)!C3RO2XhK I-u[`(XK8+fQ` b+G+ځݝ Ės=ak&s,Sr F$mhZ TAG2#g0&ɯ ɩ_Ix4=.d zƞmesR 3?{=3<>5L _W77V6X3’K jZj7C9ڊ^ )AyMmt'aˤov?\j&B0uoPpn @PJ [Z g!"\ۥI\a?bh,sL˃lc %XCv%Դ1Re@"z+zPcO@oP}9TR|R?>z2┡7=.7LOl"8%p1oDGsgKnM@xz+^\SMKaEZ l|pzQ^%R/&#'#Ǣ$=}۵] *E /}l{_fkzwt8Y*U~0,kl V7ѷ{ "*cufQkvap|-zuScS@۠paP'9 ~,EmwF?u`X@=MIFm>ʮx >oS= |J5Mo+tK-crat Q{5gM\FL3;@ ٬ODsh`l$Bb'14$M }?ڼB,,mǮ,G 0+Cr,DN ,eeC:;Mal֓ U[4ygh܂!T aZHϯIqd!dqز>CX ='\.Kx>La7*ݕ VJ\X)a: e ر%Ɍ0W| y)hMkn` pREy>iB4ZtXszU!6/bx-!::2i]=ġSJyUJ^!R)*<x?]~H-/#*칓IY?O \ Paȉn'Z8DI3AwbT[aT]wYl'D<hU7~T=G^|Q p24FG1ԔiK+E 4P/98 }αG4=8Tz)y;6k\%m;bF~^%|7:k5OW?* jǠ8D 8Hm?)weХgR~sOP]:rImŬV'(7C޿t$ ?؏0 {RDIdAg( {R(nmGXMHRfb[3I$`k"7CN&^ 3¸Q?by0C<0Na1򛨚R' &[KQlE5\O57u;x%Nt ){g?B];g/hL iD&c[=~eH-Ϋ!&pG3?A`^'& gh2*\~~jpR4Рހ>,o'm\6z\nS z۪N Q8'o% Z{xti=Þ垯j{f] YzN䞟>8﵎=ڡm3fK 6%)dcESd U AU~k!Y'laIM쫼4z@N~I~7uɶ\ ͩgmA.7U,cyky׿r$ݖim<X,=O\?vZ9ZI6=Gq "ɫ5E w0RA&]+ے;^\l>9΂#Nx?^%8FH6cHPa%.z2-TԀA1}hS.|;R~\ :گlSqߍ+yY-R,*L㽼"ț|c `wvƳ$ۣ?NZB8'ޟ|W1E8S ÇAMR(5pQ~'qmIlb*,̍=a'Ra r̨ԱkRl!IoHkrRpy˂RPԟ*niHn;SC=|tU/u38V׹K/G˪WT'HtڌsUC;Hk<1ϱJ֑^J #v|DF7)Qƣ]`F؂QJ5O&Ke`/f#uvܱ~v`>dGu߿moC]vsD!c +twvhN0֘շ">1 ]B䒐yRc@(}LEnO*+Mm>G b k[vE`1MpȦ@"\[&G &I[NwhE4101hgW1TTp${Ξީa*1 #Tp*hz[Y4xEhk\EUPe`|IBaPX{ z+u$UNCȈAuAkm}󂙅>W9X|>3;磓Is{K̰>"Bu?=oFW?;;"Yߓ(Ztcg%ڠ-4-Hچ*+C.e<:19n[emZa"*EjNєX :`S@h̴ bMnk$$D{e՟@f:]*C81.;8nT4kONrgdŇ$( btS݌F,EYʏiB"j2>"D4✞NZF`w̝$m$VDTC0B"t# MH,9BTވMQ7!.:No&T-2ǽw{ض$}uw~@~7KU}7p(snO?NXK!5F4&6bd5iB0 M 2$-ĒDz|m C? >侤|enηvlٜ% Y>gBY mL6E4״ۜ/`D ho@robe154=$l_ 0s=𿰜BG7v|sZ@ǎng%1eQ]XY;a.V[8<C}R:Tk(:t09p,DMOn ]yO޸ڡDWͮJ{:haz AOMne:B 9;%dlRJL:PSLBXnF;(ZΡ8VZ .Qژm5,+`RjD$ ZM“3slJM Li_a9qDx+[hO(k9'g+ng!nkr,%ӰVd 3_f|N'iI!Ƃe\-S**AGdi\ICM5OuQ:? Oxv;h 5'n̕*\6bDpV!O[\g \նEW.7B䟠X*\PS20xOQ*/2"uP$@~;A3b$4m*ȴ\OCzQwgDAgtpR rs:+}~MEy;Rn1؈eRיAeWI2Z- 2ӕPml ..0*.ŜMoar$A֝"_"R{4ʔ0Я8O:F%+a"c٪>F<7s(}))NC#Qkjh=g ZgBRܗAxm# (Oג,|5>ޭUrLoYEw,+] {YU:K-zO%&¨yJ$1QTz/"+g$+svY, =IU+c3*r8 ~k;;xl~:}t6 rR ūЁ|[{,uzD5 %u9kz) 3_|ż,ġE"FtG"MWz<m}HVk_V*c@SZ,e8^gB3y%x&蓑\e}czq?(BG!20:;xu <-ؐ,GH"G=2FQI78f*)t},BDgRdz%Hÿ4lbZo8Kg),t"!u4 K 0PSB 㒧EHOIW |; ?drh8wG b{-;)y)C8$E8{B9g|9Lfu?7CVԑWm*.]5ZH *k; 2^7#J$ꥎeBCoD"'34j{JY:?n3nQN6@z1eG m-->(bVѢȢ.)Y$9V" 31BЕ!~gۿŇ2YSR.!MLF}lFux=k RȘ,zʵ’v%ߦ} >qy{UV!@~U.* ?+jjg%n*)na|tT!;?'rܿp++m<iBL4v^HJImj rst?1‹p¤֖]5aI/)]c3{ TD'`cmkt$BE}s嶏KNLFpVjތ<~nF,JB!o({\iA{Ɋ7wfޜ%GVC ۿ4@ePyH-j2<75V12EHe,M+B固?y^ixa[*%t0w/.wqɠssSVKJ) VL튐kú2|-S%$r«=n8Šx.!єA8se{w羓K&].f%!_ +8Gz DFlj(ihy*'JUX 5 lcʁ^QMYGj\Ë>S[ӫszO 3D%ś絤R ,06*w#{Q'܈t&Ap<{L4 v[o 4óJl̞'*]:6S #t[&)+QnWnAJ2=c+1TڭU7xU{xeiNh_Xt7N@e (C%Z\O񝆤pݼ)vZkf&Bϻ@!(^ &H^޵yoc1olR  xtم YZ