pdns-backend-ldap-4.1.8-lp151.2.9.1<>,_kQt/=„F:C!!K:zIRv}?J 'ަ c+7Rk7|C;-A4C~NtvTAာE" d'{-a8,QHj[M+Q+XFUÕl')R rE%H|!䅶(1,o( ep>^?]d & < .Rlr|     1Jl H  (28<29 2: `2FXfGXxHXIXXXYX\X]X^YDbYcZ;dZeZfZlZuZvZw\x\y\*z]]]]]Cpdns-backend-ldap4.1.8lp151.2.9.1LDAP backend for pdnsThe PowerDNS Nameserver is a authoritative-only nameserver. It conforms to contemporary DNS standards documents. This package holds the LDAP backend for pdns._kQtlamb58 openSUSE Leap 15.1openSUSEGPL-2.0-onlyhttp://bugs.opensuse.orgProductivity/Networking/DNS/Servershttps://www.powerdns.com/linuxx86_64 i(9%/큤_kQn_kQm_kQ_kQ_kQ043613abe1c99cdadf0ce188b35347fdd8e8dc01973e039b6f8bcb34d1ae6b8e839c5d2add2e9524bbd64c69c44b3a153a310c65fa86676f0977935fa9ec18438ff3bf3f9096115b164f10835aff799914b65f4d651e9fa84f0bbbefde316db994d36c21e56b2096d83db548c399f287966ff082fada65f9a5d1bb72fcd51cf2f67b2ec28e45bd8ee0af5e35fca358e7c6521b81a591803814a20635fb64592arootrootrootrootrootrootrootrootrootrootpdns-4.1.8-lp151.2.9.1.src.rpmlibldapbackend.so()(64bit)pdns-backend-ldappdns-backend-ldap(x86-64)@@@@@@@@@@@@@@@@@@@@@@@@@@@    libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.15)(64bit)libc.so.6(GLIBC_2.16)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libcrypto.so.1.1()(64bit)libcrypto.so.1.1(OPENSSL_1_1_0)(64bit)libgcc_s.so.1()(64bit)libgcc_s.so.1(GCC_3.0)(64bit)libkrb5.so.3()(64bit)libkrb5.so.3(krb5_3_MIT)(64bit)liblber-2.4.so.2()(64bit)libldap_r-2.4.so.2()(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.2.5)(64bit)libstdc++.so.6()(64bit)libstdc++.so.6(CXXABI_1.3)(64bit)libstdc++.so.6(CXXABI_1.3.9)(64bit)libstdc++.so.6(GLIBCXX_3.4)(64bit)libstdc++.so.6(GLIBCXX_3.4.11)(64bit)libstdc++.so.6(GLIBCXX_3.4.14)(64bit)libstdc++.so.6(GLIBCXX_3.4.15)(64bit)libstdc++.so.6(GLIBCXX_3.4.20)(64bit)libstdc++.so.6(GLIBCXX_3.4.21)(64bit)libstdc++.so.6(GLIBCXX_3.4.9)(64bit)pdnsrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)4.1.83.0.4-14.6.0-14.0-15.2-14.14.1_k8^%@^`]A\@\@\@\[[[@ZZZЛZZZ@Z@YeYY5Y}@YMYMXDX@X~@Xx@Xx@XN@WW@WJVV8UUv@U>$U8TPTи@Tи@Tи@Tto@Ta@T_W@TR(@TO@TO@TO@Adam Majer Adam Majer Vítězslav Čížek Adam Majer Michael Ströder Michael Ströder Michael Ströder Dirk Mueller Michael Ströder amajer@suse.commichael@stroeder.comkbabioch@suse.commrueckert@suse.deadam.majer@suse.demichael@stroeder.comadam.majer@suse.demrueckert@suse.deadam.majer@suse.dejengelh@inai.deadam.majer@suse.devcizek@suse.comwr@rosenauer.orgmichael@stroeder.commichael@stroeder.commrueckert@suse.deadam.majer@suse.demichael@stroeder.comadam.majer@suse.deadam.majer@suse.dedimstar@opensuse.orgmichael@stroeder.commrueckert@suse.demichael@stroeder.commichael@stroeder.commichael@stroeder.commichael@stroeder.commichael@stroeder.commrueckert@suse.demichael@stroeder.commrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demichael@stroeder.comLed michael@stroeder.commrueckert@suse.demrueckert@suse.demrueckert@suse.de- CVE-2020-17482.patch: fixed an error that can result in leaking of uninitialised memory through crafted zone records (CVE-2020-17482, bsc#1176535)- pdns_maxmind.patch: backport support for MaxMindDB- Build with libmaxminddb instead of the obsolete GeoIP (bsc#1156196)- CVE-2019-10162.patch: fixes a denial of service but when authorized user to cause the server to exit by inserting a crafted record in a MASTER type zone under their control. (bsc#1138582, CVE-2019-10162) - CVE-2019-10163.patch: fixes a denial of service of slave server when an authorized master server sends large number of NOTIFY messages (bsc#1138582, CVE-2019-10163) - CVE-2019-10203.patch: update postgresql schema to address a possible denial of service by an authorized user by inserting a crafted record in a MASTER type zone under their control. (bsc#1142810, CVE-2019-10203) To fix the issue, run the following command against your PostgreSQL pdns database: ALTER TABLE domains ALTER notified_serial TYPE bigint USING CASE WHEN notified_serial >= 0 THEN notified_serial::bigint END;- Update to 4.1.8 * #7604: Correctly interpret an empty AXFR response to an IXFR query, * #7610: Fix replying from ANY address for non-standard port, * #7609: Fix rectify for ENT records in narrow zones, * #7607: Do not compress the root, * #7608: Fix dot stripping in `setcontent()`, * #7605: Fix invalid SOA record in MySQL which prevented the authoritative server from starting, * #7603: Prevent leak of file descriptor if running out of ports for incoming AXFR, * #7602: Fix API search failed with “Commands out of sync; you can’t run this command now”, * #7509: Plug `mysql_thread_init` memory leak, * #7567: EL6: fix `CXXFLAGS` to build with compiler optimizations.- Update to 4.1.7 with a security fix: * Insufficient validation in the HTTP remote backend (bsc#1129734, CVE-2019-3871)- Update to 4.1.6 * Prevent more than one CNAME/SOA record in the same RRset- adjust buildrequires for mariadb 10.2.x on SLES- Update to 4.1.5 * Improvements - Apply alias scopemask after chasing - Release memory in case of error in the openssl ecdsa constructor - Switch to devtoolset 7 for el6 * Bug Fixes - Crafted zone record can cause a denial of service (bsc#1114157, CVE-2018-10851) - Packet cache pollution via crafted query (bsc#1114169, CVE-2018-14626) - Fix compilation with libressl 2.7.0+ - Actually truncate truncated responses- Update to 4.1.4 - Improvements * #6590: Fix warnings reported by gcc 8.1.0. * #6632, #6844, #6842, #6848: Make the gmysql backend future-proof * #6685, #6686: Initialize some missed qtypes. - Bug Fixes * #6780: Avoid concurrent records/comments iteration from running out of sync. * #6816: Fix a crash in the API when adding records. * #4457, #6691: pdns_control notify: handle slave without renotify properly. * #6736, #6738: Reset the TSIG state between queries. * #6857: Remove SOA-check backoff on incoming notify and fix lock handling. * #6858: Fix an issue where updating a record via DNS-UPDATE in a child zone that also exists in the parent zone, we would incorrectly apply the update to the parent zone. * #6676, #6677: Geoipbackend: check geoip_id_by_addr_gl and geoip_id_by_addr_v6_gl return value. (Aki Tuomi)- Use HTTPS links in .spec file like mentioned in PowerDNS announcements - removed obsolete 6370.patch - Update to 4.1.3 - Improvements * #6239, #6559: pdnsutil: use new domain in b2bmigrate (Aki Tuomi) * #6130: Update copyright years to 2018 (Matt Nordhoff) * #6312, #6545: Lower ‘packet too short’ loglevel - Bug Fixes * #6441, #6614: Restrict creation of OPT and TSIG RRsets * #6228, #6370: Fix handling of user-defined axfr filters return values * #6584, #6585, #6608: Prevent the GeoIP backend from copying NetMaskTrees around, fixes slow-downs in certain configurations (Aki Tuomi) * #6654, #6659: Ensure alias answers over TCP have correct name- Update to 4.1.2 - Improvements * API: increase serial after dnssec related updates * Auth: lower ‘packet too short’ loglevel * Make check-zone error on rows that have content but shouldn’t * Auth: avoid an isane amount of new backend connections during an axfr * Report unparseable data in stoul invalid_argument exception * Backport: recheck serial when axfr is done * Backport: add tcp support for alias - Bug Fixes * Auth: allocate new statements after reconnecting to postgresql * Auth-bindbackend: only compare ips in ismaster() (Kees Monshouwer) * Rather than crash, sheepishly report no file/linenum * Document undocumented config vars * Backport #6276 (auth 4.1.x): prevent cname + other data with dnsupdate - misc * Move includes around to avoid boost L conflict * Backport: update edns option code list * Auth: link dnspcap2protobuf against librt when needed * Fix a warning on botan >= 2.5.0 * Auth 4.1.x: unbreak build * Dnsreplay: bail out on a too small outgoing buffer (CVE-2018-1046 bsc#1092540)- add patch for upstream issue #6228 https://patch-diff.githubusercontent.com/raw/PowerDNS/pdns/pull/6370.patch- geoip not available on SLE15 but protobuf support is available.- Update to version 4.1.1: bug-fix only release, with fixes to the LDAP and MySQL backends, the pdnsutil tool, and PDNS internals- Update to version 4.1.0: + Recursor passthrough removal. Migration plans for users of recursor passthrough are in documentation and available at, https://doc.powerdns.com/authoritative/guides/recursion.html + Improved performance: 4x speedup in some scenarios + Crypto API: DNSSEC fully configurable via RESTful API + Database: enhanced reconnection logic solving problems associated with idle disonnection from database servers. + Documentation improvements + Support for TCP Fast Open + Removed deprecated SOA-EDIT values: INCEPTION and INCEPTION-WEEK - pkgconfig(krb5) is now always required for building LDAP backend - pdns-4.0.4_mysql-schema-mariadb.patch: removed, upstreamed- package schema files in ldap subpackage- Update to version 4.0.5: + fixes CVE-2017-15091: Missing check on API operations + Bindbackend: do not corrupt data supplied by other backends in getAllDomains + For create-slave-zone, actually add all slaves, and not only first n times + Check return value for all getTSIGKey calls. + Publish inactive KSK/CSK as CDNSKEY/CDS + Treat requestor’s payload size lower than 512 as equal to 512 + Correctly purge entries from the caches after a transfer + LuaWrapper: Allow embedded NULs in strings received from Lua + Stubresolver: Use only recursor setting if given + mydnsbackend: Add getAllDomains + LuaJIT 2.1: Lua fallback functionality no longer uses Lua namespace + gpgsql: make statement names actually unique + API: prevent sending nameservers list and zone-level NS in rrsets- Ensure descriptions are neutral. Remove ineffective --with-pic. - Do not ignore errors from useradd. - Trim idempotent %if..%endif around %package.- Added pdns.keyring linked from https://dnsdist.org/install.html- Don't BuildRequire Botan 1.x which will be dropped (bsc#1055322) * upstream support for Botan was dropped in favor of OpenSSL, see https://blog.powerdns.com/2016/07/11/powerdns-authoritative-server-4-0-0-released- This makes the schema fit storage requirements of various mysql/mariadb versions. pdns-4.0.4_mysql-schema-mariadb.patch - preset uid and gid in configuration- fixed use of pdns_protobuf- update to 4.0.4 - fixes ed25519 signer. This signer hashed the message before signing, resulting in unverifiable signatures. - send a notification to all slave servers after every dnsupdate for complete list of changes, see https://blog.powerdns.com/2017/06/23/powerdns-authoritative-server-4-0-4-released/- added pdns-4.0.3_allow_dacoverride_in_capset.patch: Adding CAP_DAC_OVERRIDE to fix startup problems with sqlite3 backend- use individual libboost-*-devel packages instead of boost-devel- update to 4.0.3 which obsoletes b854d9f.diff- b854d9f.diff: revert upstream change that caused a regression with multiple-backends- update to 4.0.2: The following security issues were fixed: - 2016-02: Crafted queries can cause abnormal CPU usage (CVE-2016-7068, boo#1018326) - 2016-03: Denial of service via the web server (CVE-2016-7072, boo#1018327) - 2016-04: Insufficient validation of TSIG signatures (CVE-2016-7073, CVE-2016-7074, boo#1018328) - 2016-05: Crafted zone record can cause a denial of service (CVE-2016-2120, boo#1018329) For complete changelog, see https://doc.powerdns.com/md/changelog/#powerdns-authoritative-server-402- BuildRequire pkgconfig(libsystemd) instead of pkgconfig(libsystemd-daemon): these libs were merged in systemd 209 times. The build system is capable of finding either one.- update to 4.0.1 Bug fixes - #4126 Wait for the connection to the carbon server to be established - #4206 Don't try to deallocate empty PG statements - #4245 Send the correct response when queried for an NSEC directly (Kees Monshouwer) - #4252 Don't include bind files if length <= 2 or > sizeof(filename) - #4255 Catch runtime_error when parsing a broken MNAME Improvements - #4044 Make DNSPacket return a ComboAddress for local and remote (Aki Tuomi) - #4056 OpenSSL 1.1.0 support (Christian Hofstaedtler) - #4169 Fix typos in a logmessage and exception (Christian Hofsteadtler) - #4183 pdnsutil: Remove checking of ctime and always diff the changes (Hannu Ylitalo) - #4192 dnsreplay: Only add Client Subnet stamp when asked - #4250 Use toLogString() for ringAccount (Kees Monshouwer) Additions - #4133 Add limits to the size of received {A,I}XFR (CVE-2016-6172) - #4142 Add used filedescriptor statistic (Kees Monshouwer)- update to 4.0.0 https://blog.powerdns.com/2016/07/11/powerdns-authoritative-server-4-0-0-released/ https://blog.powerdns.com/2016/07/11/welcome-to-powerdns-4-0-0/ - packaging changes: - remotebackend split out now - enabled experimental_gss_tsig support - enabled protobuf based stats support - no more xdb and lmdb backend - added odbc backend where supported - drop pdns-3.4.0-no_date_time.patch: replaced with - -enable-reproducible- update to 3.4.9 * use OpenSSL for ECDSA signing where available * allow common signing key * Add a disable-syslog setting * fix SOA caching with multiple backends * whitespace-related zone parsing fixes [ticket #3568] * bindbackend: fix, set domain in list()- update to 3.4.8 * Use AC_SEARCH_LIBS (Ruben Kerkhof) * Check for inet_aton in libresolv (Ruben Kerkhof) * Remove hardcoded -lresolv, -lnsl and -lsocket (Ruben Kerkhof) * pdnssec: don't check disabled records (Pieter Lexis) * pdnssec: check all records (including disabled ones) only in verbose mode (Kees Monshouwer) * traling dot in DNAME content (Kees Monshouwer) * Fix luabackend compilation on FreeBSD i386 (RvdE) * silence g++ 6.0 warnings and error (Kees Monshouwer) * add gcc 5.3 and 6.0 support to boost.m4 (Kees Monshouwer)- update to 3.4.7 Bug fixes: * Ignore invalid/empty TKEY and TSIG records (Christian Hofstaedtler) * Don't reply to truncated queries (Christian Hofstaedtler) * don't log out-of-zone ents during AXFR in (Kees Monshouwer) * Prevent XSS by escaping user input. Thanks to Pierre Jaury and Damien Cauquil at Sysdream for pointing this out. * Handle NULL and boolean properly in gPGSql (Aki Tuomi) * Improve negative caching (Kees Monshouwer) * Do not divide timeout twice (Aki Tuomi) * Correctly sort records with a priority. Improvements: * Direct query answers and correct zone-rectification in the GeoIP backend (Aki Tuomi) * Use token names to identify PKCS#11 keys (Aki Tuomi) * Fix typo in an error message (Arjen Zonneveld) * limit NSEC3 iterations in bindbackend (Kees Monshouwer) * Initialize minbody (Aki Tuomi) New features: * OPENPGPKEY record-type (James Cloos and Kees Monshouwer) * add global soa-edit settings (Kees Monshouwer)- update to 3.4.6 [boo#943078] CVE-2015-5230 Bug fixes: * Avoid superfluous backend recycling * Removal of dnsdist from the authoritative server distribution * Add EDNS unknown version handling and tests EDNS unknown version handling Improvements: * Update YaHTTP to v0.1.7 * Make trailing/leading spaces stand out in pdnssec check_zone * GCC 5.2 support and sync boost.m4 macro with upstream * Log answer packets only if log-dns-details is enabled- update to 3.4.5 Bug fixes: * be careful reading empty lines in our config parser and prevent integer overflow. * prevent crash after --list-modules (Ruben Kerkhof) * Limit the maximum length of a qname Improvements: * Support /etc/default for our debian/ubuntu packages (Aki Tuomi) * Our Boost check doesn't recognize gcc 5.1 yet (Ruben Kerkhof) * Various PKCS#11 fixes and improvements (Aki Tuomi) * Several fixes for building on OpenBSD (Florian Obser) * Fix several issues found by Coverity (Aki Tuomi) * Look for mbedtls before polarssl (Ruben Kerkhof) * Detect Lua on OpenBSD (Ruben Kerkhof) * Let pkg-config determine botan dependency libs (Ruben Kerkhof) * kill some further mallocs and add note to remind us not to add them back * Move remotebackend-unix test socket to testsdir (Aki Tuomi) * Defer launch of coprocess until first question (Aki Tuomi) * pdnssec: check for glue and delegations in parent zones (Kees Monshouwer)- no longer ship dnsdist here, we will ship a new package based on the snapshots from http://dnsdist.org/- update to 3.4.4 with a fix for CVE-2015-1868 (boo# 927569) Bug fixes: - commit ac3ae09: fix rectify-(all)-zones for mixed case domain names - commit 2dea55e, commit 032d565, commit 55f2dbf: fix CVE-2015-1868 - commit 21cdbe5: Blocking IO in busy-wait for remote backend (Wieger Opmeer) - commit cc7b2ac: fix double dot for root MX/SRV in bind slave zone files (Kees Monshouwer) - commit c40307b: Properly lock lmdb database, fixes ticket #1954 (Aki Tuomi) - commit 662e76d: Fix segfault in zone2lmdb (Ruben Kerkhof) New Features: - commit 5ae212e: pdnssec: warn for insecure wildcards in opt-out zones - commits cd3f21c, 8b582f6, 0b7e766, f743af9, dcde3c8 and f12fcf7: TKEY record type (Aki Tuomi) - commits 0fda1d9, 3dd139d, ba146ce, 25109e2, c011a01, 0600350, fc96b5e, 4414468, c163d41, f52c7f6, 8d56a31, 7821417, ea62bd9, c5ababd, 91c8351 and 073ac49: Many PKCS#11 improvements (Aki Tuomi) - commits 6f0d4f1 and 5eb33cb: Introduce xfrBlobNoSpaces and use them for TSIG (Aki Tuomi) Improvements: - commit e4f48ab: allow "pdnssec set-nsec3 ZONE" for insecure zones; this saves on one rectify when securing a NSEC3 zone - commits cce95b9, e2e9243 and e82da97: Improvements to the config-file parsing (Aki Tuomi) - commit 2180e21: postgresql check should not touch LDFLAGS (Ruben Kerkhof) - commit 0481021: Log error when remote cannot do AXFR (Aki Tuomi) - commit 1ecc3a5: Speed improvements when AXFR is disabled (Christian Hofstaedtler) - commits 1f7334e and b17799a: NSEC3 and related RRSIGS are not part of the dnstree (Kees Monshouwer) - commits dd943dd and 58c4834: Change ifdef to check for __GLIBC__ instead of __linux__ to prevent errors with other libc's (James Taylor) - commit c929d50: Try to raise open files before dropping privileges (Aki Tuomi) - commit 69fd3dc: Add newline to carbon error message on auth (Aki Tuomi) - commit 3064f80: Make sure we send servfail on error (Aki Tuomi) - commit b004529: Ship lmdb-example.pl in tarball (Ruben Kerkhof) - commit 9e6b24f: Allocate TCP buffer dynamically, decreasing stack usage - commit 267fdde: throw if getSOA gets non-SOA record- update to 3.4.3 Bug fixes: - [commit ceb49ce] pdns_control: exit 1 on unknown command (Ruben Kerkhof) - [commit 1406891]: evaluate KSK ZSK pairs per algorithm (Kees Monshouwer) - [commit 3ca050f]: always set di.notified_serial in getAllDomains (Kees Monshouwer) - [commit d9d09e1]: pdns_control: don't open socket in /tmp (Ruben Kerkhof) New features: - [commit 2f67952]: Limit who can send us AXFR notify queries (Ruben Kerkhof) Improvements: - [commit d7bec64]: respond REFUSED instead of NOERROR for "unknown zone" situations - [commit ebeb9d7]: Check for Lua 5.3 (Ruben Kerkhof) - [commit d09931d]: Check compiler for relro support instead of linker (Ruben Kerkhof) - [commit c4b0d0c]: Replace PacketHandler with UeberBackend where possible (Christian Hofstaedtler) - [commit 5a85152]: PacketHandler: Share UeberBackend with DNSSECKeeper (Christian Hofstaedtler) - [commit 97bd444]: fix building with GCC 5 Experimental API changes (Christian Hofstaedtler): - [commit ca44706]: API: move shared DomainInfo reader into it's own function - [commit 102602f]: API: allow writing to domains.account field - [commit d82f632]: API: read and expose domain account field - [commit 2b06977]: API: be more strict when parsing record contents - [commit 2f72b7c]: API: Reject unknown types (TYPE0) - [commit d82f632]: API: read and expose domain account field- set $LD for now. this fixes the configure check for relro,now.- remove custom PIE handling. upstream does it for us now.- update to 3.4.2 This is a performance and bugfix update to 3.4.1 and any earlier version. For high traffic setups, including those using DNSSEC, upgrading to 3.4.2 may show tremendous performance increases. A list of changes since 3.4.1 follows. Please see the full clickable changelog at https://doc.powerdns.com/md/changelog/#powerdns-authoritative-server-342 - move man pages to section 1 to follow upstream change- disable botan and geoip on SLE_12 because of missing dependencies.- Fixed broken _localstatedir- fix bashisms in pre script- update to version 3.4.1 Changes since 3.4.0: * commit dcd6524, commit a8750a5, commit 7dc86bf, commit 2fda71f: PowerDNS now polls the security status of a release at startup and periodically. More detail on this feature, and how to turn it off, can be found in Section 2, “Security polling”. * commit 5fe6dc0: API: Replace HTTP Basic auth with static key in custom header (X-API-Key) * commit 4a95ab4: Use transaction for pdnssec increase-serial * commit 6e82a23: Don't empty ordername during pdnssec increase-serial * commit 535f4e3: honor SOA-EDIT while considering "empty IXFR" fallback, fixes ticket 1835. This fixes slaving of signed zones to IXFR-aware slaves like NSD or BIND.- only enable geoip backend on distros newer than 12.3 before the package lacks the pkg-config file and there is no fallback to finding geoip without it.- fix permissions of the home directory- enable some backends that we had forgotten: - pipe (main package) - random (main package) - geoip (new subpackage) - new BR: yaml-cpp-devel and GeoIP-devellamb58 16008687244.1.8-lp151.2.9.14.1.8-lp151.2.9.1zone2ldaplibldapbackend.sodnsdomain2.schemapdns-domaininfo.schemazone2ldap.1.gz/usr/bin//usr/lib64/pdns//usr/share/doc/packages/pdns//usr/share/man/man1/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.opensuse.org/openSUSE:Maintenance:13121/openSUSE_Leap_15.1_Update/09357eebd4b440097887cd3db35b8206-pdns.openSUSE_Leap_15.1_Updatedrpmxz5x86_64-suse-linuxELF 64-bit LSB shared object, x86-64, version 1 (GNU/Linux), dynamically linked, interpreter /lib64/l, BuildID[sha1]=60447551899a5221b8d62ff7662a1d15b8fe5877, for GNU/Linux 3.2.0, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=ee205cf8e9a70caca3806829d38cd394431c4837, strippedASCII textUTF-8 Unicode texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)R RRRRRRRRRRRRRRRRRRRR RRPR R RRRRRRRRRRRR R RRR MBEJQdt0utf-88cefa0ac8f8b437ebc5ad2b5b6c667632010d01d6843d03fa4042b348f1a8f4d? 7zXZ !t/l`]"k%4960E<$#]! L)-ϯHBZBqbIx:kЉ:+ɔ*y!%Y 0OWzLygTl`ԶV}bv`׊OZvw `GE6{ru1|EHS j Nx0'TigKk:m<;ldбIQѕ\¦Ck8ߎ%p72Wkb zoocj{^ۢM9KŽLPȥǦ#,KQvP'{5g0. u?bcgx96er$&u$ `Ryk:bŝ%glwKA?ߨ]-cq#X @[4i`.wo_2pCjYPBjLؑ@X_\T}wһ> ΖH5W8DkPu5F݅#|!FWWAkvȉh e|xh"NT#W=,w92E ua]A^D0l&곦A:= 8xl114Yu`ӕF2Daq\A8S kahm]bQH9w4~&_[͡91ZXdnA+FmOR^7*jV1{'NgO5ڷ=ht]/( [ 5I!{>cϏ)ܼc0zZCZ}\"+7Y(rjiGK[hFƋw+R=3gBA0A٭'"קY=L`@&P Ym +\+| 5cO2ڀٻ)ϼTl?EkyYgL '_Vpg|_s{e6|Tqnm .8vY2*nMb 1fY"tDS[-2er<}ʃ{YY;M}OdO p /ga٤.b',.=Ƭjek0Eqr~+JMBK1 hG׽b`Gj<ՐE-cixd5P@vX^"]FHEF6[ƛ"bYCB̼5ލB)ݾ!7[(l4#aɊX5hpQm- lWIuQwN{nZ~ #YRfAovd!hy(msp1OްbFSTlY}6Y9_YznI^Vޓ\qByҁ(Gitn(1=b#oSD2a2 &ʓ i\Y7G֪VCQO2ZK _ .WG*_$SCFj˧I A \C/O`{MLSfWKG_Q#1za+kHuCek#ud%}GWB"،hmyPHZY{X-g]ԫ÷6A!6~Wm3@ w&?"BB}gY {Ntr#ӹ,ll,Q|ÅJ ͷ\u']u0Ws{.?O07K'r6\Af`T2?(V;O*~Шъ,ei l'?t|{WB)I}T;$rqk*+T5]`\wmW@RI8XZxbij1 8u}fpU%Tux0:aUUjא\b=,;]-*bǩI>H`nLaw:Lp>jTk\Y]}49!#iOcW9֫%\(bήTߪ+?583*<t8!WV}הPz&CS+u%B4,YV7Ʀp^)3JdVMPE8  3MH4t"qv_qӽ-wwwbd Q([SkdEL)7)#q{i;XΑt vhR^gnʫZ锵in=IgxOS,58-F,wA< 1얻J(DHP0r{?6Lc!aܬYx745 RbۙHoDZYGS6NPc cj/`f@6#tvպl׼O$>o)U`= r9Zd|NCH %*}qf Zi>J8'jp^67UB7-Q5>/~Ln?*!!^d4v%DLY &|^6z6cඎ%zNRKQЫĉ?>.nӀdyNtTLR!l%tL؞%2 rcܹ+ԶI8fX^KƗB"dѠ{W`1z~Te-obZ=򠩁#A|>Ĩ*x\ Zi=mօ1h~(#Y{gV*1W>(1-@a)]}mF^h}[ɪi5@&4X'os<^*l/-%ke\#Аkk;M Z\EZ׸(S}Y {eLYWnphfһQ[tDXK A@9>1Հ5o[Ul9GmHgwo1yƨW*1~dF R3G![Q#J1z  #t*t[8G|L ڥMO8$G A'kwpqbkF68SaUbl1Ta5J]YR ?}U/5OĴԉ9{洗)zE^f~}w2#2U֯[3KJd"k&p#oe$gf'&th*DCZ- Fe s<" |~oI$B [`{VpA+`0,ICE~`mX8nx1jmaRUQpFיPՉ]7 c{#sCIFhXG>BQylsӪP5NdozYa ;#F .Zb0lL9Pm1`Psl0jBlW;iQT\H&@8QO  6JLv4R@l$hzSiO"r)Km,p߶H؋OAf &ɨGT+=]b=n-{a4nEc~}NZ矮׮#d#ѣ(9zܵK) x%rw9i=%h ,Jd>ަJ[2 T_l7Cw[|wuWqy0ת/Z" ˆJ />1MCz1r5gU|=r m*0Zr`GUn":Fqd@m2Q+h}Yu6,s:Xr Z7al"r-j2O F3OO2X:3-?;?mq y͎\44cbpjGW:`r`3#{?iY$@isj2$ W Pq?Nؙ]{}^p8{v+ŚxȘ_T֌Z>3; mo؝%\,%LT[pغYbn2O<e$r/G֠I-2hmn ȅsG{r&EB23d(YU6:Eթ9aO9o#D:&C:$[O$8ӵJ+Ju R VՑš!DRBsv O4Pt.fWQ[s],aUC?lls11_k;ZYhƌ"GV8d& e…d#k>%n4D`!u1]#&Cums(*0=y[*-F* T{ɄZI` q'p8T_߲jq6}IgvnpnrG%y:R~69Aa餞 Yo@.\b[*lcdf6z|ayH6|p%e𒑄 ӡ:$w7e!$8 um;6pk 2u|5bN0t 0f(&TqrT On!th_`eL"d\d~ Ģv |)I9 !^vݎ=NB,=& ,A&N;!,6HPK [lw-5mCʈ:O"_nU ggZ5se~'2&Hb $ꌪ&89Id^J!J5IQj[WM}GQgRo! c_lP:H*+Sl ?^>e]oV$AW)n1Ob[GW{ TN7ɯ=+]_+4F 3EDlqQ4[{6}ۍi|y8<_T×[O'7{#~MZ0e46.lT RIþL0G<}BxGU'e(Ѿ߇1;iBYPo-9֒!*L&b:nH?$ vnJXIL}< ޥv {{a&䧜tV0Q2EF1#0~_ri ]r󒓭S^- ζCChp% #&Z@"j:\cpTfs+ه8 Q6 gH]G-nvV\SQI`k DmWR387z|(%=t gLJ?#uq1vwP%O;LԤ^Kso]/쫇FpXSϙ?8`bkVr:k>ȥCJiٱ\o0.+T덝IeM-묹p[(v=D@7ER?ĉK@Zu3 rrPR Pzؒ>Ial X~}зH 9&Zmi_Y8|zs](-*¶!q>BRP ڱ<=w$= fv]$]q:Lqh^Z (aW} ,7@Zvӣ janJbRXX@ R!XZ aB%yV(IZ ښ-&3 lA5ndtYaxl0WvKkI  3z䛠uwkM?N@bWu4ek/YvSX;% |61-/C.~~6L9=QŢՑ[ڔ'lI5)o&1[}x> bޥnE)v>ಕNWr>jSA?%pOߙB"20.CC mB!b ~nB0GN1*hjp0pCry8颠 >܎5신}^u_a,W,'LTL'+D,{KԨ]g#x ]'CGWF:mEZ4`;k3jGA sLgɌd!EZsݐ 6/hπ<6;W=6,CebQFsΉY 5ejwz+6.2J <ўd`x1U!n&J(CO0dƥi,o! ՝cD4i&<z0O*?hʹ;Ýݭ-몠&'Fu2s, Aw%v.i=7w^ʢ61#kj 'lF`J\Im{ܙ07-QmɈ3;y`q"=Wb=KɊ)s~HPD5ꘇu•x }G|})]e ;HT/v/x*moF{v[rm`YC2V ԱLV`$t^>,QbĂ&7D=mo}lT,0r=ֽZȔ˔yhH=E3Nf;"*V\qߣpD5:)0 kkG(1SP*_wyLvAjc٭7qZZ4,>Щ_ Bk)Q48-PAQT. #glU/rbYhƊ/b.֞1qKӹ~m5߻N聯L%LҌhx!K\co fCnN <v-ĞP_ CIL̟6H;I%be.tK(^ <0vMo1ua+F JW لz~^T'kjb'I|zhNy\ ݐhR2kY"+[6޽XցO4ebSd$_1 (X/k3q:nLXbӠ;e>weӇo|=(X-t$GDG]S FTNJhPibGG>J:%-ת]D[]کxA 6mua]3<B6`ߊ.;chq! ρBptYq뛳ͮ>ѳD|i,e|[ՠSvF0Ǐket`gjaug¶VM~B' M)Zx9kAj'YjI] o2,T I A1*B ;*+oQ@vyځ4uo ~!K<,k=X\Sms]LOmwZhHN`22o1\[ K/2jn2?H%e/!Qb4wcI b0`qgϢHAđIu0̵0+m]Ǎk  -C֞\pp×A\ ҘgG>);3pȾmn>E8(up2;8I"@-JI"P ^?{W)3+͛눵R[zf3"T#d{ d ԸRċ޾-uzh?U9<; ? חgY :"@D"]ɰ N#sҫﮨ3hbrr04,oΧYahIfJ,0xf LxXoW!Ca& a01`Ye>b&,uj(+Z3wa)_}n:^pԇ($>:N0S~!.(׺9Tw2H(xvf Z$l3IRW dg~RZgJnQ-F^3;PZbaOى!D5#y5ij a( ȯ_AomDPR<"y@$I\Fq =v 8]U& vtaؖhaѼ}OZNC#sj㝰L!Od)>O@uETϿC[$# WSAZnD7ā^ld  P}|}560Ah^Ŏ t O]@4@rE,\՟GAd.plI/5&g"gMē"3[bg.tOKeq @OZMjEO4@ʝRj{;zq6{jTdGk]mH3FCVçL|놩!nKlEC=_Ec#04o(MĻIdh{=Zd[Ă_Ua``GH?IJނY s/)OӌL4 b$ 0 蹣LЁ5q8W 8[~uWOIzMJ|Azrtr-mGڤ^v-zzMy;y )LplMaGgNʣa43ӄMJDY ɀek& zHVb1pI07?6jo›n܎8eh>GY˽gߐp>+lC+dN`캮J۳pJk2Lڱe[vjOQdZB!hsL_ ؒv[њ(tQ07EϿouѸ5$XW =w\û7[+Y3, 53<>YLAZ`D̥tĸ֟$k|YǶN2@:-W/BGᷝΟDRT!zq'aI)8>Y7%ɭ [m\l/lA`v#()*SO$ObTH3kRcni#LNla&nH#=VM縈kf3 }7Pw 3}b#fM\2KfQ@X2+{1԰ھu~,D8n!AEik F$D;_*OW !, hA>I63'l}oOaM|~R+8$2u.t۾ oxPL@M 1VRia>vK;UZ,MB-}}1tqd7(ܑLPҘXC&g`_P.vZ K %{Yq)?Tȿ{ϮmY~B`db^Nc&P>-7T;/#]]ON+SMsU8_ j~|ܕ%Ò#lXddbwJz>$NqR"HT٤dP'pD̑3,G1plPw+ɐg6kk?-nţb E6S sɪQ~aHZJ[a^?+:iZF}Pn g^jɳ\='{B%oNc u2VEg>dUzp4:j{\Z~_s ps@ >٩|$M057EmGhXBb1#{ z[v9l#d͇j"RZDuH./l?sc E[L>0+ihŏ~g©w'Ym=ع[f7g4D<JۆC}]3B^M{*wR)اqpoɋ1 ErU#aP#RLT[>8s{ &4.P ^VO`Fb@QCR9g3"( hAX%PqcjtHU#!!incy@/g9Q1>gW~v[d8N" 3x"w;o9kdu,#pok 4I>w]H ?6Fj[ >MU#<͡UkA"U5l=ȈxYxI,|5Uk v0t:AB\3eש(F qp,=X9](YE#Opb6sΝ{gWFvEuC"m'o;euT>L Q,J5s6WnʎdûU?7j yctҖT:kbnK}L( u6t{Po(v6NШ\NtP &:b9i2Ycs,3LLb6P1KRTsh.?Pㄗ"2 $ [v;6rS2DA. !(nېVx7j9p%iKCr[uy.ՌP"YDJcYiHIuf]St ^Z`e0L[;+Zqy ;R;SdVHl;*]"Sr#tA8-bl>4^NRnY۶ t5/Et<K:w| Rp,PeR/y⊝//.E 2nm5#+siΝ:#LNjDfwKs.b:_j~!̂ϛ`g2[/){ZʹAZt0S*Vj=Me26an ȵ+V Xؾw;Z*;þ.oATz1b X,[rG?HVʸ2/]|i MX yVڀ? |w!| >¡l ka $iGk 6W]GBܡZP#ܖ^uItr_@,c8Mm46#51εWe+Î#o\ֹȽQsЏs)?=4XSč+0}W7TU/sq(6hdYok&!&lyogfdpΓXbB+1!!nY?x>"cN%Kݷ-3im3..eNZiyEh ",B $S'6"{ d5#Ks@9i@JE|D;l"Iչg2s'z܂j[Zn0{y{DM GcvE .L%9i}/PgYϳ7@dLJMIiA5Ďb:q)4&Bb F]KXPAX8>" &W}Fz= m4N+$哰eZ:i[$jv]Lqo:>E:^u "$kқXW$I$T=hMx2ϱm-/"*z·&`8C~@/)ƝtCoQ6&SտH,QЧ)X?!0yWꀏiu=.蹶JrN9T[`\0II,9z㙡e}Zѭ?[1>tÇ>` hAYOũ!?2 :Yv_rW1{g;@UsnM*b%zqH'6b|x+θ}4t1OYHeT.nDfNЧV1ui,D'/kKtoJ}CTh{zUWDg-˘Ry%9a-C[샛8?mKloB:AZDCO{<o79W|GrEbInXIU6ZdځGH@ lLŁ.OVƽ3(;jGд9BR.|j^{KĢ %C#f{,ӂW|>GҵٗlAK%W]KyopiAj߳֯Uw:H%w *}/k'asChj yO8K@>=47ިvH "KK:/MFIJo/TІkQşqIB8@!xE`/c_Vص5EL GpO"6.ʇ=R$[>6}*5'. fZF[*ZdQCeri|Qwˆ<iO:VEaOͣP!g˝X^q$?޽4APd0@=aU[wfY0(@ӱ9+|*zR4 MBdؓR9#RQt1恨8d"{2枵O̗o:72ͽ Ǘ2qp߼I iGּBOE8,hE/qmh'BК&Otjp93Ow2/寇nó6@A ynaDW}8ֶ%$,hAYѝ{У1Ko l,D C*aJ#I9Qpv}\f@_fl3NX8;'#]J#t#W.Qћi$>g~ּCdIOb܃.'~1ġḁsRٳn$)~jjzЯ%.k-K>=žj#$(q)ׄ\zՃg`/s‰4XdRB;ߋH&tQNl{AU<uQy^1lqT xT̪A92R}PgЛt K$_t4Vc)#i,;V8OwȾ< v ?;x3d`^̀qf((!lOوvF~Ѿ& 'ҋxNIA';gn2uz1aO N- 81Bؤz.%2pu_4q%Ȋl$~#.Z\)G.%ha\GUW瑝:I\&O=]aSQEDyA6/E*fQXR.?[^1ڿ[^ۍ={K7&@ʾ7Ҁ xnf 8F8§Em4uKqBh}^pl?G7|&qe>^*beIQ#\Mwi7djڒ6<~ڌ8bCOD'Dɉm 4r՘aշ5ii)dK#ןh(:MI]G xxʃ_Rg.q{ifX͌ҷZ2VLϿhf 2[A0$+c7[Ԟ ;z|>o\vD/@ƮO%`fSo=}Q_q:=Wk4>XcT QHw =8eh, #Pk&H.N r.r)y!<"k$ fa D6:| y1΢\B Ќ1811{24_yXLzyH߆w;km:R{y bm};PuzEvV<0V[<u ֞`jp3BmFg|_b 0/&_K뿗R2JA{`㭂k-T)0@ c:O7 ,#S~t78AE0sEހ3%M\ twhYJ"ͪZp,vӠ 3qFoƭFE&诰E_fn|G6R_!ֈ.%:ol3koT'ӄC#3N&;޿\ s OM" pc[>#tn9}4% Fp ųB7GE8Q=bЙohV4K)3b7~i-<_]ؗ98P >!MEo>"+Qi Q*y[C vnkw, &u!vaR0_0>Y 81C<0urxt uQY8]/v#&+dabL`~D&+?b"o)*R@lɕ#p66/X$[c}x29`Պ7 "4\jtHNx.#:WcOk?nyp}0? 06.hk-ŚE"RDtcMj[@여@ kmNAk* [>, #!H\L8J5WMaR9f@a0Zji"+ *UaU@d! e[cG[oA;HψhJt/qp?&U!=g [ϬKQʵチoDc fovsǢP l`D@0mGӧ5"0ս1+XZRW:gj4B;3'u,A]?>A>0U Jgre?QX 'J@jw_rM]ŷUw9 q:19#7dޠSN1=9 SYWPI @t1}LRFWJxS6͵˜&lv$uF(g&ہµ9P\dm 17ꬰYP7|wy1QIu `C 'jUFG$^w 9x뺵r!M# r2i\/LI%pWiVv|V ʙHXɒ:*6jbpH4ο0jX.@i Cv\[PS7S=]٩E:da=]:MI7}X_/DGw 棇44i Yto'V] O ie6Q)LypW}2Uk+mu} =/dz&dH*k` #$ZS[KK{u,sὌݝΦǒAJ?^+sNїag d#~z3Y P 0DmK放̭1 Q'\$b5 Ј֨Lo{_*_i8|,w;=@B65W`oo0 S?5fyt=E՗[ m}8uh=<w$<{rCTGVԽ^wBW$n4A{%2?,/\6fljjcA,5W:. =$$VD~fϵoFlSHR;O 6Y7Hd6t 6Rl8ʝrT)"Q!>Xs?rԳ6}lPaKgsLmS"IG*]B0•!vg%$ddrZ%*W38S:x7S&( Il/I^P\+a{B}mi/xf/xymRng[4trة.z{j+ëZ,Hl?gBWNf_4 ~z"є8nh4JΦa59}W0mOpzХCm{gDy~qT.a*u 2mVlg* $mORj|| yr2b\Z;Ni(t~5ݮ# ŧg|U}1ؽ]O @ZÃM6#BiM]"-0NQ&,v>W4+JRJK@C8َ4²5?{tAt_?ҠA\s^Koq2PCڄ- ֩J_rJQ^iYަv'xJ-`lb =0~VfY\ֲ Zl?͛8=k1)K͑ץމM}*kN( _P1ӚGC5W] wf6U]kxCY ξT+v,bu3NXh`:ԛ"tPP; sB #.~8{u#33c}i=j;i_T:7z=CHگ0}Z|Ƈ4-,HwCUա} f0peh$,_Ԏ(4F,qwd N猨K*/ųD[/O%|ݾ8kEIצ/(vUH֏.T R-5mS=MFLVz%ouoJN$f7[ ##qMmI%a5v&U4 tZ/N*9zEt>O'pFGZRjN^EWJ0Ȼ,!p "ղp7u~=v閇뒾ЏcTc1L&-.{"m Vs)k3P0=MimW6[!>IeLnYd\at g4%@Mg]MR7Ȱky}0`ڲ;DcG&\C'&3sԕ;4 [ėVGlS{ ~vb=mè@@M]k_L.amr}Ff֟(kXSp)_K $,6DQ^Y7Xv3s1a^ Y/|SJ=q8:?pb:@WzRS5M?ޱFXffgc%/xN>VL>uV'/adtbg9K$!@4/acm#, ξsS%ű赯HQKlF *(SY*ܗIߜ 6IL7- Ǒ)w5zU<ǏhܢG"ׯ:VQٖ֞A#P,20@ɇ7Ö3^ki]Z{"q0(eeyyeġ??sZteQH}%rsl 9NVx啸>#H16*bOO;0M"5tj*=QŏX~ͰzkNKg`E@M%xhwMH2hp Xd\O[z Z@(T۪X# %Qn 2/u" L|NֹtgFho (tdP(hȭ,ٌZ:l'a$8qJNzʶ˟-TS,y aK 1u ɛlj"~ `5>>gL ĎBZ o>7j)|nfj"l2ҍ aI7f>yVnK203Ms7x@7-+,_ȗ$/VM8yd֧VK!\1ͩ -柮[ğ`i_,[Lf^eٿZDcj]x'Bԣ!p#rvhBwu SVl-.&.(Ȅϫ d;(YKT;N s=a9AHm,#+U# ?^lZPHQ>CRgZ|  ? {I J2\HMP~$X.EVz y|"ZF{zΫC e]2v=5KkxV6bsA'8æ+XAtQʰT*S*c`˂1a2DVšO!7 i߰v9ZaCcE\ǩƤp6 4qگ77)T[["لY<7.TP9'ۢKGYb+CG/宷}kg$8 n }`g^LE|wӂ!<-[D2'}PS7#MC)Yo^ZK,l"Qp"n= ȯ)ŝ9TФ!-q`h ʿJx9 ֶ1 GAdLH$a`j-^W^BbɆOtJz&Y$WV#j,-(̱؇9ei'y;j>b@B>! ڇș?{ۍLE=k`ZMﺛS@5^ pPug7Dc,E!=q|4]覨{30ʣĽpe{ $V$GV %] EVa3("GڝĜ7MHN<7qrEGc Y6ѺL zK>)`Rt&0x#WyjJbm&db/y-}n@n@©[w9g,C~wv{}AN])º҈gT\h?>V[:d kdU*ynyKPàS}#P=$8 F"j ;!hFk#s X챱C+/>#so,Du1n)mpS/E<p eKoad!caq1Ų3csˮ;Zx }kxۜ=1KdfEx?gX<$c9:1khdi MEaR=s˶ YZ