vsftpd-3.0.2-28.1<>,[d~/=„57mg "==sCtiڋH@'Σ*Xvg]MBW)VaẃG<0'lTFHA,|H2hB:Ņ|tu3nei^-`/^~RhKs `O9\4w ,X"2HeT{ݠOyĵnݱi 'U}u ^>Bl?ld   B$H a 77 R7 7 7 S7 7p777(!?(!w8!89"`8:&8=^>_?_ @_F_G_07H` 7I`7Xa Ya0\aT7]b07^dMbfcgdh&eh+fh0lh2uhD7vi wj7xkd7yl@ zltCvsftpd3.0.228.1Very Secure FTP Daemon - Written from ScratchVsftpd is an FTP server, or daemon. The "vs" stands for Very Secure. Obviously this is not a guarantee, but the entire codebase was written with security in mind, and carefully designed to be resilient to attack. Recent evidence suggests that vsftpd is also extremely fast (and this is before any explicit performance tuning!). In tests against wu-ftpd, vsftpd was always faster, supporting over twice as many users in some tests.[d~wildcard3openSUSE Leap 42.3openSUSESUSE-GPL-2.0-with-openssl-exceptionhttp://bugs.opensuse.orgProductivity/Networking/Ftp/Servershttps://security.appspot.com/vsftpd.htmllinuxx86_64getent passwd ftpsecure >/dev/null || useradd -r -g nogroup -s /bin/false -c "Secure FTP User" -d /var/lib/empty ftpsecure 2> /dev/null test -n "$FIRST_ARG" || FIRST_ARG="$1" # disable migration if initial install under systemd [ -d /var/lib/systemd/migrated ] || mkdir -p /var/lib/systemd/migrated || : if [ "$FIRST_ARG" -eq 1 ]; then for service in vsftpd.service vsftpd.socket ; do sysv_service="${service%.*}" touch "/var/lib/systemd/migrated/$sysv_service" || : done else for service in vsftpd.service vsftpd.socket ; do # The tag file might have been left by a preceding # update (see bsc#1059627) rm -f "/run/rpm-vsftpd-update-$service-new-in-upgrade" if [ ! -e "/usr/lib/systemd/system/$service" ]; then touch "/run/rpm-vsftpd-update-$service-new-in-upgrade" fi done for service in vsftpd.service vsftpd.socket ; do sysv_service="${service%.*}" if [ -e /var/lib/systemd/migrated/$sysv_service ]; then continue fi if [ ! -x /usr/sbin/systemd-sysv-convert ]; then continue fi /usr/sbin/systemd-sysv-convert --save $sysv_service || : done fi test -n "$FIRST_ARG" || FIRST_ARG="$1" [ -d /var/lib/systemd/migrated ] || mkdir -p /var/lib/systemd/migrated || : if [ "$YAST_IS_RUNNING" != "instsys" -a -x /usr/bin/systemctl ]; then /usr/bin/systemctl daemon-reload || : fi if [ "$FIRST_ARG" -eq 1 ]; then if [ -x /usr/bin/systemctl ]; then /usr/bin/systemctl preset vsftpd.service vsftpd.socket || : fi elif [ "$FIRST_ARG" -gt 1 ]; then for service in vsftpd.service vsftpd.socket ; do if [ ! -e "/run/rpm-vsftpd-update-$service-new-in-upgrade" ]; then continue fi rm -f "/run/rpm-vsftpd-update-$service-new-in-upgrade" if [ ! -x /usr/bin/systemctl ]; then continue fi /usr/bin/systemctl preset "$service" || : done for service in vsftpd.service vsftpd.socket ; do sysv_service=${service%.*} if [ -e /var/lib/systemd/migrated/$sysv_service ]; then continue fi if [ ! -x /usr/sbin/systemd-sysv-convert ]; then continue fi /usr/sbin/systemd-sysv-convert --apply $sysv_service || : touch /var/lib/systemd/migrated/$sysv_service || : done fi test -n "$FIRST_ARG" || FIRST_ARG="$1" if [ "$FIRST_ARG" -eq 0 -a -x /usr/bin/systemctl ]; then # Package removal, not upgrade /usr/bin/systemctl --no-reload disable vsftpd.service vsftpd.socket || : ( test "$YAST_IS_RUNNING" = instsys && exit 0 test -f /etc/sysconfig/services -a \ -z "$DISABLE_STOP_ON_REMOVAL" && . /etc/sysconfig/services test "$DISABLE_STOP_ON_REMOVAL" = yes -o \ "$DISABLE_STOP_ON_REMOVAL" = 1 && exit 0 /usr/bin/systemctl stop vsftpd.service vsftpd.socket ) || : fi test -n "$FIRST_ARG" || FIRST_ARG="$1" if [ "$FIRST_ARG" -ge 1 ]; then # Package upgrade, not uninstall if [ -x /usr/bin/systemctl ]; then /usr/bin/systemctl daemon-reload || : ( test "$YAST_IS_RUNNING" = instsys && exit 0 test -f /etc/sysconfig/services -a \ -z "$DISABLE_RESTART_ON_UPDATE" && . /etc/sysconfig/services test "$DISABLE_RESTART_ON_UPDATE" = yes -o \ "$DISABLE_RESTART_ON_UPDATE" = 1 && exit 0 /usr/bin/systemctl try-restart vsftpd.service vsftpd.socket ) || : fi else # package uninstall for service in vsftpd.service vsftpd.socket ; do sysv_service="${service%.*}" rm -f "/var/lib/systemd/migrated/$sysv_service" || : done if [ -x /usr/bin/systemctl ]; then /usr/bin/systemctl daemon-reload || : fi fi9nJhq@p6Gp5/pe28Q$p}6)+ 񁤁A큤AA큤A큤A큤A큤A큤A큤A큤A큤[d~[d~[d~[d~[d~[d~[d~[d~[d~[d~[d~GǿOrGPXFGGGGGGGGGGGGGG[d~GGG[d~GGNGPXF[d~GGǿJ`iJ`hGGGGGǿO|G[d~[d~[d~[d~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-3.0.2-28.1.src.rpmconfig(vsftpd)ftp-servervsftpdvsftpd(x86-64) @@@@@@@@@@@@@   /bin/sh/bin/sh/bin/sh/bin/sh/usr/sbin/useraddconfig(vsftpd)libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.15)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.7)(64bit)libcap.so.2()(64bit)libcrypto.so.1.0.0()(64bit)libpam.so.0()(64bit)libpam.so.0(LIBPAM_1.0)(64bit)libssl.so.1.0.0()(64bit)logrotaterpmlib(CompressedFileNames)rpmlib(PayloadFilesHavePrefix)systemdsystemdsystemdsystemdrpmlib(PayloadIsLzma)3.0.2-28.13.0.4-14.0-14.4.6-14.11.2[4[+@Z@Y4X-X~@X @V3V3V@VaUJ@U0U!#U@U@U@U@T!T@TeS@S,S,S,SFSFS;S;S:@RJ@Ra@Q{Q]k@QU@Q/FQ/FPpPpP5@P7lOD@O OC@O;@Nm@NNσ@N{#@MgL@La?@KK @Ka|@KV@psimons@suse.compsimons@suse.compsimons@suse.compsimons@suse.compsimons@suse.compsimons@suse.compsimons@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comjcejka@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comdimstar@opensuse.orgjmatejek@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.commvyskocil@suse.commvyskocil@suse.comcrrodriguez@opensuse.orgmvyskocil@suse.commvyskocil@suse.comlnussel@suse.demvyskocil@suse.comsbrabec@suse.czdimstar@opensuse.orgmvyskocil@suse.commvyskocil@suse.czbrian@aljex.commvyskocil@suse.czmvyskocil@suse.czmvyskocil@suse.czandreas.stieger@gmx.decrrodriguez@opensuse.orgcrrodriguez@opensuse.orgmvyskocil@suse.czcrrodriguez@opensuse.orgcristian.rodriguez@opensuse.orgcristian.rodriguez@opensuse.orgcristian.rodriguez@opensuse.orgmseben@novell.commseben@novell.comcoolo@novell.com- Extend "vsftpd-3.0.3-address_space_limit.patch" to mention the new 'address_space_limit' option in the installed vsftpd.conf(5) man page. [bsc#1075060]- Apply "vsftpd-support-dsa-only-setups.patch" to disable the problematic default setting for rsa_cert_file. Upstream initializes that value to "/usr/share/ssl/certs/vsftpd.pem" and vsftpd won't start up if that file does not exist (or if it does not contain an RSA certificate). Therefore, users who copy a DSA certificate into that location or properly configure a DSA certificate via dsa_cert_file without explicitly disabling the RSA certificate won't be able to start vsftpd. [bsc#975538]- Don't start/stop parameterized systemd units in pre/post actions. These units cannot be used without an explicit parameter and attempts to do so lead to a confusing "failed to try-restart" error message. [bsc#1093179, bsc#1010177]- Add "vsftpd-die-with-session.patch" to fix a bug in vsftpd that would cause SSL protocol errors, aborting the connection, whenever system errors occurred that were supposed to be non-fatal. [bsc#1044292] - Add "vsftpd-seccomp-getrandom.patch" to fix a seccomp failure that used to occur in FIPS mode when SSL is enabled. [bsc#1052900] - Add "vsftpd-append-seek-pipe.patch" to allow the FTP server to append to a file system pipe. [bsc#1048427] - Add "vsftpd-3.0.3-address_space_limit.patch" to create the new configuration option "address_space_limit", which determines the memory limit vsftpd configures for its own process (given in bytes). The previously hard-coded limit (100 MB) may not be sufficient for vsftpd servers running with certain PAM modules enabled, and in such cases administrators may wish to raise the limit to match their system's requirements. [bsc#1042137]- Add "vsftpd-mdtm-in-utc.patch" to fix interoperability issue with various ftp clients that arose when vsftpd is configured with option "use_localtime=YES". Basically, it's fine to use local time stamps in directory listings, but responding to MDTM commands with any time zone other than UTC directly violates RFC3659 and leads FTP clients to misinterpret the file's time stamp. [bsc#1024961]- Fix several issues related to SSL/TLS support [bsc#1021387]: * vsftpd-enable-sendto-for-prelogin-syslog.patch allows sendto() to be called from check_limits(), which is necessary for vsftpd to write to the system log. * vsftpd-openlog-force.patch fixes a logic error in the way the force option for syslog's openlog() call was handled. * vsftpd-seccomp-ssl.patch allows stat() to be called, which is required during SSL initialization by RAND_load_file(). * vsftpd-seccomp-wait4.patch allows wait4() to be called so that the broker can wait for its child processes.- Add vsftpd-3.0.2-fix-chown-uploads.patch to fix a bug in vsftpd where files uploaded by an anonymous user could not be chown()ed to the desired UID as specified in the daemon's configuration file. [bnc#996370]- Fix hang when using seccomp and syslog bnc#971784: * vsftpd-seccomp-syslog.patch- Fix user creation to not report error when user alredy exist bnc#972169- Fix bnc#970982 hanging on pam_exec in pam.d * Add patch vsftpd-3.0.2-wnohang.patch- Fix memory leaks in ls.c bnc#968138 * Add patch vsftpd-ls-memleak.patch * Update patch vsftpd-path-normalize.patch - Fix wildcard ? matching bnc#969411 * Update patch vsftpd-2.3.4-sqb.patch- Fix logrotate script to not fail when vsftpd is not running, bnc#935279- Fix hide_file option wrt bnc#927612: * vsftpd-path-normalize.patch- bnc#925963 stat is sometimes run on wrong path and results with ENOENT, ensure we sent both dir+file to filter verification: * vsftpd-path-normalize.patch- Update patch bit more for sanity checks. Done by rsassu@suse.de: * vsftpd-path-normalize.patch- Add back patch attempting to fix bnc#900326 bnc#915522 and bnc#922538: * vsftpd-path-normalize.patch- Reset filter patch to match fedora, my work will be restarted in one-off patch to make the changes stand out. Add rest of RH filtering patches: * vsftpd-2.2.0-wildchar.patch * vsftpd-2.3.4-sqb.patch * vsftpd-2.1.0-filter.patch- Work on the filter patch and split out the normalisation of the path to separate str function, currently commented out so I avoid huge diffing. * vsftpd-2.1.0-filter.patch- Add service calls for other unit files too - Udate filter patch to work as expected: * vsftpd-2.1.0-filter.patch- Try to fix deny_file parsing to do more what is expected. Taken from fedora. bnc#900326 bnc#915522 CVE-2015-1419 * vsftpd-2.1.0-filter.patch- No longer perform gpg validation; osc source_validator does it implicit: + Drop gpg-offline BuildRequires. + No longer execute gpg_verify.- force using fork() instead of clone() on s390 - fixes bnc#890469 * vsftpd-3.0.2-s390.patch- Cleanup with spec-cleaner - Remove conditions about init files as we do not build for < 12.1 anyway. - Update the README.SUSE file to describe more the listen option.- Add socket service for vsftpd to avoid the need for xinetd here.- Add comment about listen variables for xinetd configuration. Fixes bnc#872221. - Add default configuration as arg to xinetd started vsftpd. - Updated patch: * vsftpd-2.0.4-xinetd.diff- Move the enabling of timeofday and alarm one level deeper to be sure it is whitelisted everytime. Also should possibly fix bnc#872215. - Updated patch: * vsftpd-enable-gettimeofday-sec.patch- Remove forking from service type as it hangs in endless loop.- Fix warning about dangling symlink on rcvsftpd from rpmlint and remove also clean section while at it.- Add patch to allow gettimeofday and alarm calls with seccomp enabled. bnc#870122 - Added patch: * vsftpd-enable-gettimeofday-sec.patch- Specify that the service type is forking- changed license to SUSE-GPL-2.0-with-openssl-exception * suggested by legal team- add allow_root_squashed_chroot option to enable chroot on nsf mounted with squash_root option (fate#311051) * vsftpd-root-squashed-chroot.patch- build with OPENSSL_NO_SSL_INTERN this hides internal struct members or functions that if changed in future openssl versions will break the ABI of the calling applications.- add vsftpd-enable-dev-log-sendto.patch (bnc#812406#c1) * this enabled a sendto on /dev/log socket when syslog is enabled - provide more verbose explanation about isolate_network and seccomp_sanbox in config file template - don't install init file on openSUSE 13.1+ - drop a build support for SL 10 and older- add vsftpd-drop-newpid-from-clone.patch (bnc#786024#c38) * drop CLONE_NEWPID from clone to enable audit system - add vsftpd-enable-fcntl-f_setfl.patch (bnc#812406) * unconditionally enable F_SETFL patch - might be safe to do- add isolate_network and seccomp_sandbox options to template to make them easier to find (bnc#786024)- add vsftpd-allow-dev-log-socket.patch (bnc#786024) * whitelist /dev/log related socket syscall- Verify GPG signature.- Fix useradd invocation: -o is useless without -u and newer versions of pwdutils/shadowutils fail on this now.- update to 3.0.2 (bnc#786024) * Fix some seccomp related build errors on certain CentOS and Debian versions. * Seccomp filter sandbox: missing munmap() -- oops. Did you know that qsort() opens and maps /proc/meminfo but only for larger item counts? * Seccomp filter sandbox: deny socket() gracefully for text_userdb_names. * Fix various NULL crashes with nonsensical config settings. Noted by Tianyin Xu . * Force cast to unsigned char in is* char functions. * Fix harmless integer issues in strlist.c. * Started on a (possibly ill-advised?) crusade to compile cleanly with Wconversion. Decided to suspend the effort half-way through. * One more seccomp policy fix: mremap (denied). * Support STOU with no filename, uses a STOU. prefix.- make seccomp sandbox enabled by default * dropped vsftpd-3.0.0-turn-seccomp-sandbox-off.patch- fix building on 11.4 x86_64 and lower * fix where, when, & how __USE_GNU gets #defined * make seccomp optional and disable it on 10.3 and lower- update to upstream 3.0.0: * Make listen mode the default. * Fix missing "const" in ssl.c * Add seccompsandbox.c to support a seccomp filter sandbox; works against Ubuntu 12.04 ABI. * Rearrange ftppolicy.c a bit so the syscall list is easily comparable with seccompsandbox.c * Rename deprecated "sandbox" to "ptrace_sandbox". * Add a few more state checks to the privileged helper processes. * Add tunable "seccomp_sandbox", default on. * Use hardened build flags. * Retry creating a PASV socket upon port reuse race between bind() and listen(), patch from Ralph Wuerthner . * Don't die() if recv() indicates a closed remote connection. Problem report on a Windows client from Herbert van den Bergh, . * Add new config setting "allow_writeable_chroot" to help people in a bit of a spot with the v2.3.5 defensive change. Only applies to non-anonymous. * Remove a couple of fixed things from BUGS. * strlen() trunction fix -- no particular impact. * Apply some tidyups from mmoufid@yorku.ca. * Fix delete_failed_uploads if there is a timeout. Report from Alejandro Hernández Hdez . * Fix other data channel bugs such as failure to log failure upon timeout. * Use exit codes a bit more consistently. * Fix bad interaction between SSL and trans_chunk_size. * Redo data timeout to fire properly for SSL sessions. * Redo idle timeout to fire properly for SSL sessions. * Make sure PROT_EXEC isn't allowed, thanks to Will Drewry for noticing. * Use 10 minutes as a max linger time just in case an alarm gets lost. * Change PR_SET_NO_NEW_PRIVS define, from Kees Cook. * Add AES128-SHA to default SSL cipher suites for FileZilla compatibility. Unfortunately the default vsftpd SSL confiuration still doesn't fully work with FileZilla, because FileZilla has a data connection security problem: no client certificate presentation and no session reuse. At least the error message is now very clear. * Add restart_syscall to seccomp policy. Triggers reliably if you strace whilst a data transfer is in progress. * Fix delete_failed_uploads for anonymous sessions. * Don't listen for urgent data if the control connection is SSL, due to possible protocol synchronization issues. - SUSE specific changes: * turn off the listen mode (listen=NO) by default and change README.SUSE * merge new hardended flags for build and linking * fix the wrong Type=forking from systemd service file * turn off the seccomp_sandbox off by default as SUSE kernel does not support it (yet)- follow Systemd Packaging guidelines http://en.opensuse.org/openSUSE:Systemd_packaging_guidelines - add $local_fs and $remote_fs to init script- use the original tarball, because the bz2 repacking madness disables gpg --verify - revert a part oc changes utf converting- update to upstream 2.3.5: * Try and force glibc to cache zoneinfo files in an attempt to work around glibc parsing vulnerability. Thanks to Kingcope. * Only report CHMOD in SITE HELP if it's enabled. Thanks to Martin Schwenke . * Some simple fixes and cleanups from Thorsten Brehm . * Only advertise "AUTH SSL" if one of SSLv2, SSLv3 is enabled. Thanks to steve willing . * Handle connect() failures properly. Thanks to Takayuki Nagata . * Add stronger checks for the configuration error of running with a writeable root directory inside a chroot(). This may bite people who carelessly turned on chroot_local_user but such is life. - convert .changes file to unicode - refresh vsftpd-2.0.4-conf.diff to vsftpd-2.3.5-conf.patch - name patches explicitly without macro as per recommendations - remove INSTALL file from binary package - update license to GPL-2.0+ - mark /etc/sysconfig/SuSEfirewall2/services/vsftpd as config file- fis copy/paste error in previous change- Add systemd unit- fix bnc#713588 - bogus logrotate config for vsftpd call /sbin/killproc -HUP /usr/sbin/vsftpd like init script - change the url and service file to the new location at security.appspot.com/vsftpd- Update to 2.3.4 - Avoid consuming excessive CPU when matching filenames to patterns. Thanks to Maksymilian Arciemowicz . - Some bugfixes from Raphaël Rigo -- good bugs but no apparent security impact.- Update to version 2.3.2 - Fix silly regression re: log files being overwritten from the start. - Rename a few file-open functions to make it clearer what they do- Update to 2.3.0 - Add extremely simply HTTP support. It's very experimental, ignorant of HTTP protocol and headers, and likely has all sorts of other issues. The use case it might satisfy is if you need to serve simple static unathenticated content with large levels of paranoia. - Fix port_promiscuous breakage. - Minor FAQ update. - Use a larger address space limit if using text_userdb_names=YES - Always use CLONE_NEWNET if possible when in HTTP mode. - Change REST + STOR so that it's possible to overwrite part of file without truncating it. - Boot the session if we see a USER where encryption was required. May prevent the transmission of plaintext passwords by buggy clients. - Fix failure to transmit a large ASCII file over SSL, if it contains \n -> \r\n fixups.- $remote_fs --> network-remotefs- updated to version 2.2.2 * Change "File receive OK." to "Transfer complete." to placate some broken clients. Thanks Holger Kiehl . * Fix erroneous "child died" upon FTP client connect, when under load. Awesome thanks to Holger Kiehl for running diagnostic tests on his live server. * Boot the session if an overly long line is encountered. - see Changelog file for changes in 2.1.0, 2.1.1, 2.1.2 and 2.2.0 releases - deprecated use-ipv6-scope-id.patch,libcap2-fix.diff,write_race.patch nowarn.patch- added use-ipv6-scope-id.patch to fix connection issues with ipv6-link local address (bnc#574366)- fix typo in the package description - and remove authors/bin/sh/bin/sh/bin/sh/bin/shwildcard3 1533312542  !"#$%&'()*+,-./012345673.0.2-28.13.0.2-28.13.0.2-28.1  vsftpdvsftpdvsftpdvsftpd.confvsftpdvsftpd.servicevsftpd.socketvsftpd@.servicercvsftpdvsftpdvsftpdAUDITBUGSCOPYINGChangelogEXAMPLEINTERNET_SITEREADMEvsftpd.confvsftpd.xinetdINTERNET_SITE_NOINETDREADMEvsftpd.confPER_IP_CONFIGREADMEhosts.allowREADMEVIRTUAL_HOSTSREADMEVIRTUAL_USERSREADMElogins.txtvsftpd.confvsftpd.pamVIRTUAL_USERS_2READMEFAQLICENSEREADMEREADME.SUSEREADME.securityREWARDSECURITYDESIGNIMPLEMENTATIONOVERVIEWTRUSTSIZESPEEDTODOTUNINGemptyvsftpd.conf.5.gzvsftpd.8.gzvsftpd.xml/etc/logrotate.d//etc/pam.d//etc/sysconfig/SuSEfirewall2.d/services//etc//etc/xinetd.d//usr/lib/systemd/system//usr/sbin//usr/share/doc/packages//usr/share/doc/packages/vsftpd//usr/share/doc/packages/vsftpd/EXAMPLE//usr/share/doc/packages/vsftpd/EXAMPLE/INTERNET_SITE//usr/share/doc/packages/vsftpd/EXAMPLE/INTERNET_SITE_NOINETD//usr/share/doc/packages/vsftpd/EXAMPLE/PER_IP_CONFIG//usr/share/doc/packages/vsftpd/EXAMPLE/VIRTUAL_HOSTS//usr/share/doc/packages/vsftpd/EXAMPLE/VIRTUAL_USERS//usr/share/doc/packages/vsftpd/EXAMPLE/VIRTUAL_USERS_2//usr/share/doc/packages/vsftpd/SECURITY//usr/share//usr/share/man/man5//usr/share/man/man8//usr/share/omc/svcinfo.d/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.opensuse.org/openSUSE:Maintenance:8540/openSUSE_Leap_42.3_Update/8ebdbf0b6c8eec693e6afc5f9a7be07f-vsftpd.openSUSE_Leap_42.3_Updatedrpmlzma5x86_64-suse-linuxASCII textELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.0.0, BuildID[sha1]=2215a7755c03c02afa7743279aae0ba81fcb62f5, strippeddirectoryC source, ISO-8859 texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)XML document text RR RRR R R R RRRRRh4GgFuHVϯFNnwq`[:QǟaV.|Y ^Q4ixl.̣L_DB8>HFKBfVW7gUõ/}X{4+#(vD7[6$h1dOIȯqQThm^ }_eI*. H~?`upD/ke{"q2ƻEGqxOH$;>zK:.b#@Yp>Ǩ "mWxdkZŗ˧6KH)8Q.{If](MK$H^^m 4Ml8aB7K7< :}Gx EیӠꯪ,=ȵWo@jT_~b1o] mO |7u꘷0_j߿. 2Br.Ge$.lOӽ?9Uq/Z9`6F0ӵZ_Ti m #.AMsOEFY%=g^bZ~Vvs 2PɖƇ%Wohbu"žZ@V8Ml֩óF,9{n&'0֟,>/o9.촀5ۇvDB94V^2G2\!矯`:1>]jF~A6@ק^q4؃i[U|e!9\ސP7ͫpQJES .sizeD#P \7BuC'x_8-*m('.<22mYIjM _nQ;6t ցuu{R%6ϭ]>| a%gi5q*Ƀ~.Pwv8OӸ;|vԶ uM:J}ʆ+ÓT+.$@WQLXN4H>6`[ObQuO⪧ֵ8a{Nyu=8tM?m; [;[uۄ]1 79CR_Ak3DkG"}ҷ1Qީ$쉠& d)å J!c=X}\갑Zd˫y$c)J [%7JH4PYcN_XE`9-f†gy#S7UecK9Z Sw^0nHJk؝' (Mz9!n{',/bPp?YֻҩjHs ҙ^i0waGn,mیA@E2M5^:%í#!G! z.sH*J:98SN3TGgIcOK(4hNh{)Jɼ_g"?h^3hkY. 02 2 <O5$6$)NILPk t (pYN"C4ghau:DJHi4%hb\ ~,O}"=cS5Qd(/w]=14$ّjeB+P'p2 ^| 932wk<&@C"^?ް7p ׳kcswF9NכO=A;Fy`l7){E 5CHQ!W;6}BQ2JtY)&J?q@hl|Fjs+u6.u#lyO{MW<{hV_e`+Ap֦5S(EfE k {Ƈggc6w;t"VR#R]'ָ"bZ`'!~r}HSX+?ؘckW}px,jh'>Pg0`߼\"}HM3Ȕҝdks zk[`/_(9+ZԈ@5%J ;2:ACh$.&\rӺJwM:aޗ0:~**N|~262@z`靥h(. N4ÐQ>=*Qyǂ}vhIUw-?%5bM!γf,&+fGl'+9  r4;H\g-Jj~9eƞDٖd {|^}XA# qͭ)R@ߐ˯(}P[:#Ox54Ad] +xOn闢<ɒ/eJyR>`&x^vt_ؑgt~7ݔXѭJ+u-2{Ij Idx89Ճ^eX6wWxdxsw:w /@s_!r3pPSJ>qT/z(D < p"ߞ~*š :8-ZkYp$U<ws;Y3Ag{ώ7SP@hX"I#G)|h r'e @1ZFvGt_.xr0wqi!Q@5J2paEmzo*3KXL4[NZ7?NwH xnA^ L3|97o GE }tyz b僰YW/G( 5pderiҁ:uysZv-E.Dr\cU3D`m .: /-?SƭL9 m#LgHC2i.sy^Cf\ʥ{Qx,+[M9$ pn^lËEwRӻk6S~ eFrktD_Cs`rL@g !ݰC~/m S?ړZ1%kĪsgb BTLAAlcaKow%UmOu{b^z ==qRM|Џw^;C>nwWHEBD$tձR&"o#¹TtSJW.xO;E*gB(eHuNZ"*ѓ 3 ~b`uӕV.RL[8̝-[p$ߞ$cmLXgV Cr5˜;w0SI Ú\g 3uf/o]q Œ5.*W NĘ1 Πh[|iE#G HO\h`豯Ef#~ώlDžg&0Nֽ:4`R}4nrg9l}% 5CUܐj|mx<ӹVLwu| <~o5%m.;{2ܝmᏀ2ߩy,pe6^8WIxC숱;yl1zfY. 'I''cPk- UJ~6.?T'6?Dy+:ʤҒLtV3xkr⪙)}΁""cXV("oXr j_Z3v𩰉 |㕧ww9' Cei@R߳y=BdBAwC8V :C,2&4h0lQ*.?8*dD*ud:&S; vٝlch+&k'dJbIKbYe+Q2#夦9Bh[=e,Ya@y'2桬';14.r1Th w{Dy}~<@Mak (a2Vס1H˨/m[&7xEz׊|)x]^ێ"7=a_Y?e]n.W?0jrΉa,%.-v'm>$l fsCB"jg]d+fhw@ϗo5ԍ48hByЌz:!hd+/u$(Es>=%"⯆i*3{i4 zQZ'?Q8HVp͑*aѢ3gh2P$L_cZ`[R ﭞm%hSm)@7Ezyzcdޖb܅_:0}nF+䍯S%Rΰ jc+[) Nz07zOUNEEtJž:8& x1ƒR43oyb BM10"}V0ۤK;?IH?4 T7·v6]vP0&X'BJ<{M8/`(?itUO̻}I Ϳ<'h M )3z`UYh;D bXkQm˫[\HFl(ei:Ȳ~.ȷe/r=qV6 3Fd,JkOs`m w}PF+Y7ʍNB 31bdcǰ[7գx+3oܪ:^n(._D7z'#c[D%9\U WVca}1GAg_ +b`PL {l.c8Sqm=Nu3vVVZduQN]+N(k-Kxm+^KE\ީn=R߱d"5J;?!-b ueANixT0`&a/hqb3z7&wnƺvF7f=:us1y8-ڢ~8 wpJ񀛉(HJPBa8sD"c_UE7,BI;.?d0XgUc_.re<1as8Us t MmDQ$VXIs N8HAx¹ cjS;z~Iĺ-\{ikcQ`+ТWdl]G 4xYkxcfW@ ݦEgl)V$Jn$4ļGۯ!0rbi1҄/Uk!;@jlo]:鴉L_l]x@9.l7_ y熠,x@GHL>(i&(ƒC~}K06\D f3g{:~!m~.P(6p|^Xp/)Ts wdfha{=Z@:ԢɜǏT+# aP]E3$CԤESر%쯇>ȯԜv'H`lsqܠy?S9^KxK[YKW!!?`qv2sg\/5G;a2xͪ|%PPZ ٿ]/Qc9\yTm e,"F }%m]r$ޔx,RҦQ^]@A>l_Ew!̈'yKu\h3Sax+:ÒBޚ,F'9J0v9pGeT\p ~@J4rIV(vhn$$3d&Us].,?/*:o4&ץe6f۱U9Azk #nن?D%;i0GhM +Ʀٚ_GZs3{L> ɔO]p-;!+ӥS%G_HNqt0׽[d{WQҙ2;P0{@9<[@7ofwI9. A=7ЯzWqiOUKT#9p#Cq)$(<)P;xSuU~"%x4qjA.fUֻ+tN "`7/c+3̂#G {J{Ewazdp=Y&|#Tv-"x`r wfެޜĴLr6IhFClh)a(u9l`RFK.̾萦 sV:b5`!7J\r>MW< jRv$,sp`,g=6R".9 *9C?4~*%_: )R( .y>eu{Ǫej6TK@k*-#0i `1TFnSY}o׋ u)[lPеuTօHfK \Mdzf͗/I!!K}o6"SE6pƤ*O5:n`͂{s7|}`vN/R?IJiqqu.^VaTMuש=kTL @a 6 pL&u4q9h#Y5k$ƿg gTs,]r~wO וxjgmg@!b"S'9=Z,Uo|dC@LX:%fF_LȇFK-Ԕ`E> [ _yRj,ed-o!ԩ4p֤ Y݊j$uCyF ܬzF~D(`" T$Z Rh>?"B2U.e}B -N]kqlo2B&tS!}5̬Xa1?XaP[h,F3uvB(Tceʎ~TL":\ : UrOPSG͟-և:ΕdAY۪o,̨RZ;MSBYANRr3n^ V< s)pEf0&9`j}Yn gh {(][ ?3 ; A ք[zCyǴ>VcptwT^2ktHm&rhm\,A9ҹ/]|kվ$fd|95JJo/5McE2 i NmFYջ"9g{6Vg,J[?7nSQhXA(kZ\g0Y)jS􉫻CVXek4)u$'906ɭq8A ,x5cK8aQXm)Tp*9KHQsbaolzJuK$5'CXqtc`~0io'M.}j{v>X| wB|gq9N`{t&)OJr!>T6t20|k 7=p=I`+ yؗ _w<8]_ݥgW`.Jg19rH 1AH&p>$[m~n$c QUBh;֟k'$e 7:vF8 )qX ]hV,sA6eH8$tu.1GZ>lqXBk%#jQ=Ьae~$f1().aH-.N3,vހ(>ՠNCDu5g녂U\jW.J<!GІkxp4Eo'7 N@Q):6ImL 3+ Pp^PִdJ.qqJ:LLl;l _R|  +/ϱ S{5rHj pTQaꍵ KF;^ >H9GwT[UVG _QX*z!kV7*O6r{ĥ|T+/JIPs\INI]7튲 ĺh VY. Y,*t0 4> q76̜% TG.m#1p`]J}dK۵9XQ5GwQٌG5}Ul YJv+j q2#D%%)(V-6U% c +W/(oʂrPʤn yFFgs#9C2+ |lQ]U$ X @$irXx}7W&]CMǨ/Qw/ G֊Sԃn>El`}>_谆߈7<`R{Y.kKAtgIvMtl|鷆6 6Җt"1Tƛ3Vݜȷ {7Tm(~SLD8}>p0t4*j^7E=1V[S+ Q!iUyF~d:Le'm.5o{:v+)mMS/&q2`\62X'5s5*W4 cȻQy)R̍+f~*x9o)@{9E~sbZ=Χ>n_=~tJ,f`mTM]aPG; mk!截wk)Erk^o+&:{ gg \S,IIԊ*:ЄFDjWGhO 9 ~Xhq/BȗFՙN_F'黖npg edlT"}N:'| iV*JȯZݛh7P33=" dE#(((q'SտįH)/%{}yWȦۼIM2QM>S>tHlH:1q7Hl+oW+qMفȔm?m˒=2j?Aն58c1 EuZG̊϶owTC+a9=G(Ȑ4vVmdåJXheYNzUq\Qy )D6zeW3V%>#SO]W'<;"KX`ӱ}.zZv #?Y)D*sntRqh{z/mEói雴&<aowgн#\5x\Rw('\x'H BPڢIڂyٿ &)ɝ2j78S;E}!Vx ]Fѽ 7K7ڦۥNtڟsg/Τ槺3 d( 'M8b{(+".ԼKU=eGJod2ʪsx MZoǮ>ܦV=A*: 3B" ie}DugqFΰĪ!#[qV];sGCQmsz{pdrX#:}!aE.tf>/kHQiOJW`sbe0~"x0u@FW|PH # GVĜvUXfۖ8] H8emʇ iJkneG R9;Ե+o5tvcV~e^^s+n {4_E9i>5XI6GISz:~NJN?n-[*kjĕ{GE-^ 7FАQmz\]Y[;q]Ī>ktYfI5ctBlItͣs+Mγ9w@m#tyL@U`B>7e}:ږ|( ZB<(47u?qJTc 1ʆ/WY'2ڝ ڽoRt/cͺ# t*`ASeڻ\VwKUYiL\5v@ǛC` j-n3woZ.c|rEĨ o I re}!23*R"vP}%*Fhf[2&ƃ}"5F| klV(Ύ uDҷ4{00̝Ԁtԫ:tʏ ?Jm79IH]wY1f'Z}ƨԼզԃ3+9[Df*i=,rzU]Dafsh"oE97Ӫ$=*9~nh*͓'j#dJZֿguBy$ {3d_{:ZU-j\JW(ы:/yӜ$u.?Q䉊@tEi_>AX*s*G#s5f̓ (t 6V9 MQr% eʀQ`;̊5a$z=-Ij.iZ}xp#^EɔKr>_?ea s.Q_Xe .kٔTT SbuO> ەy,`<DF䣑º'qaGkj ~MQЗsa6eD:'-<.QC&8 qu!mo1m0$}Kj4|LWt6eᖁ+ d^cm)anD'to<7v!CS>'@:GhDyA:!q:.Wou;ӓ:kÜc8F1:|3ud?ı8\*|#V\ju,}+kH5ܤq){ɁAg `9v>ݴDaMx L7$xtuy?e 7b]w XdءS''0P=HYս>O-U%vTD;,;+ Hm1!]&}CA& 6~eQwMoB>9?;Ȯ7d[Z -Ƃʻ)Ao(ޗdQ֊?Cr&yMvuȷD;W=qhis>"X;"9 #i@s+j3⤐ҡ;/TQs/ة9\nX'T& i>^O<{nw_O;пQPJÊfbSOMj/=IlR LY ^)9QwI}cKp6DКRiWӉ,78̫ ]'t(\%V{eoI1֊(?`q$bo$/ rdf2wWh ;/ 滍+` x@NČd8})d Dƍ  n2./cH LoL),+D&\ђgll^Mgl!p\|a3 7U!V.-wN"[P`aȐd{dy&vB8 `j/rHws_j:9W̫fn'PR9G;P}\܆$:=].\Ù6'KW0a E)L5z2C&4?JrK8~do~['Q?dCtj7 y­G*`Mp:_S3yV5x/tk1tBPIqsbadHε4TI^=,*US]wA r+@-MB,1kfb7FrWEO` }* K\p[_Ah\|C]LSjʠ WNN(D'XHv==FW fR zK+YxsGLw&ɮ-ݦ"+R1:A<&%BܙBcD(6)4j448^bRJB|UV vgۋ1>`u,#5_r[&W//r !7 ڜ2bOe N楠h^~eTk[;dÐ e,L7-K#Z&p%"FYE ԸHQ_{ވ9GkA1ф,֌`]xp&Zs%sFysQf=)=DǸMu HR7J "ʱy3>)cwd)&%WIwE+ ᤀY#v2Oӎ<׫oHr[xJBxuA=˜Y2ʻ{}G5lSQߑYXصBtRws;]hU A8X]Jb*j X`4]"$kb,^}y a!!/ ^fm}DȲQCaez;` 4--5PZ Cؚl1bu5Dhfy2J,쩊z(ي'j(F<`08LÇmBJuwVzu&KQOQr7c4& O`.e+9rcy,|_?X+GhՇ':IQtڋs_oH9s?6  nKZt8mSU|*l3==\*Dw[cG̈_$Y aI5l9"kOXhpв/x=맞"58ިm1[i~O>@z\hSnFh@^Bcv Ɣ}w\.5xrw/ځc""$DlNUl<]:,% p0O0Hԓ7"l_&$}w)͆+a/*b,/qpԥ`.ȷuh\S}ZJ/l7ԁtJP+璑oBpB\"2lBeׁ;Ŝٟ@?7FEqT?Jk^ g,Ilnk\<ѕV/ˆ(ʦPh)?s.Os! $ZIfKNTS]:pEmHdws8gv8]VĆ+1rex}XVNJ sm/sPE&抲SALexҗcAywBz^Iw˔Ս*6'Y)rväU ?:NSC ;R֝'ȐdQdBV:^P6'8]cd[tC[;Rߍ;#;^9ưGprZR]:DuooCIX{e3hgGb[mUr4FŐafvC.wͱ宁3}>b\OmaO0#(HϚ -Ŀ:^4/3Yj1&iuIj;9SRK(hbŹ☈C&Id薖zȠL%8Z;ק0b&>qj qfhmafP|g `^=/څ ˁ[OP^" T(Jodӡ-"a05˽B?-&K%2) Nӯ⻬/Pu G)VjDuNgHɆJkw7܂NflY΀Iz `I^cPɬH_7Vf?VYGft?-wXp+tJLh" vܨ0)7Z+E e^XH8UYsr~ns j@3B)&hyO` 3~ͳ<|5!L:y\\}xJrWP 2ڸdEcZ6\62#2lH:c_#798/N@1Q%_*;[7b "H3W#igѶ5#MUO-p":)2:\i_)ɮ2V` G m\n4UzfGu'[G^:g|o l.lT,B,mO!LBpqemK*"6B 5 Nޫ+40Rf:d3n z;bbDMAR#;E]Ż:zpSʺǡ)W5@ F=?]uFHD ~ }g`cGn5bXiBn&q"kb<}dB02iO$N/ ->vA:HCirp;o}9\H۴͔@fw,^NҘǎ"_E$XRnh^-`SL*o2+U+BYmޱXO-F8.W(,& }2V֎c-.I(q紻N "p F?WMWK0U_>p3 g܌bDpiI*{ul++ =@B=P~]Tos`T3|zJoh6QάuL<5T;hil]YT"R0+gB0Ee1)35H!fŀ hjܲQ g+."P <|QdwC_xyPo{_A+UCrȓ%g =I%?~(Ym`W.{gq_uTX>6C 6 ,)=%6?- H8ǜsX8y/{..)[x0/S\(m)ΆG:%d4[l/<|IŏF~n UQ!#1{=^U` Y4oks~ANޕү<]:ʊnv8CƒiAӵ!it?Jb0|j[,~~'=Nfܚ4hq<%%ΗI ˖ŖƑ` O:2̂iCs- \Tzp:gԹťH~?1A8O5>u⧾mܼ~US}/ɔ§Ѿa\Aa;Ń sCr'->36=4BJa*iN|] k?YB[[8=3kVDPGf1r7+OtZys{=zB[9ܵ _W}vq'^@]X9erԜev70̑Xۻء$ /Iӽm__%Tz-\j!%Ȓ -YbCmgsBoe~?  δ $3߾I(&%1"CDCX7R'!XfS!﹊ZDN6[_*yS ;1 I_;ٰV(wl~g9J7` (mVbbqB$l._MWVU 9_8us8p`1Tf?I8k-+Cȝ\;T`xսd]N&8/Mղ@Peŷ"]z~o 8- T٥\4hhx'>uò4vIip5/B0CZm2ǒ2 ;H{3OhA Pf'5`ZjKfܘVL<.ֽ." aK2\&,i_kI>Ē,w:0r:v7 qkKs3SW]Iu&j &;`}[K K sXӧ&!˒E(߉8qޚ"k"QQUy *˱aIV&>ToGl؉)^ŅimSrvڊFnL@uFj_SzzKߍm^|AT܄;*Fĕ3BVoI۩g/_FSUhI=N7Y@.ߣ1>,M14hd`ё0QJ{mU=K]]NaMJ݃;!V!yD@\x1l"mEX".ȸo*GxN4 M]~Y!@e5(x %ю] !Xe?f@d"aG}60;}AzʶaO.)FUZ aVU_\V <>+9 H{6`79b,S6\BuiIEXov .:"sO[88zUx8xVX'%^m^fp|]QDQ~j?N(z\WAm-iUeZKe@@,~mt&f}1ݑr{tv]Y3M\MsI}=7#*uu5f,ɛd%xK-ipXEbT{ur0W #P"=W}.bG̃+XЀ$Dᅲ/i9Tmg 괈lkDJi@>sZ9zﱫ嫳ȩ&H,ɪ(;CpCA°ނ>Qdi 66G]j(OHoV!=e&_@7ϗ{/K5ŠU a!p}n2Ġ|vYT 0Ty3{e^ ZNy8jcmɣ2OV![{IRWhݑ] c6ly/64{\%vSZp&BUDS<+,R-nD&HDRohɭ۴8I*9q+nod}z K@=./ %vݫZQ̉xiH3p!guzriH:u9Y|*ʎ4A'* ϗCKg;" }o Q󗙣v,M yڀ}yg\L9S_O)W۵&6~/-:@}a@F18HD=/  뚿|UvC7/5G̚ zͶ#q!u=.Z W?Ywe|I[IUvOs$x9cٽ#H2:;$.ts]h Wj2!$  Ed|[nZHS:%C`7rY fnl/絭-^Ӥ3l4og>cٚJ!sXTP3Sp6ݪWE'XV6RU/nu]]pvh4 Xp o@'붷a?'e'rf0kw5}o !!g|.ĉPI kD tڼAkJNBFժ䨂џ~ z>4D&+ pnuP#+C*L9|N HڈFMrOM j4b ,+FB|D[2[lZg}lCBK7%{բǤi^$T1TdHkb7̲~滚lyrr4i4`LK̭0D>j6Cz|  l1C)PmAm=%@FT\% Rv<-W?"?J 5N8i_úȳ;J'\Yf! |~[7UE\&*OZܪY~LW܈La,-p1+wX΁0vB 1|!jBbHKxWُ@r2-߽F9o@SD}Q!@8XtQ̦0P࢞OA L <9 :axD!C mP_@f+HϹX8xrr?tXv _/ !Ϥr}9K#/hk}R[GK`Wdv|`%Gv/&p]&<Hh;1^gwL7-_(7U^@X7yk50itg acG?k;WGZNjQ,ۣa:e*ܡ#WAGELEh#~V _'4P-^I̾Dh46_WgR,|F|ߊ#Mx?vMՄܿKLȆ.x8 M<wiǶ8AJ#F;zf͉Ca$aP ʭx{ #NVr!tyF'5!30`|"@cHkm-5Dwm w{U_o^kx,0{E.eBEvgy4)Qun-:8xtJ5nV?ҧRr{8\lHzX"|kC^ %tD[&NX. 5+2GMAbaBp@TZ [/nиM[ ȳr:僡Y@k;nH/9/-pEOvh ޲TXE[w=DP{x;K{;oZ2wX[.`N,L dGu18@zZ>f7:NY|OQݷxT ,?tO4]N$WѰO|6&\ǫ 4G{ኔr(EX3d؀ CG{a̻}چu*LkwE {;AmaiWNa,&/z,լJqԀT,yM/?6Fib(g%g#;H{"ɬj9,\g{3o$jÆܹmPjuCV 6GB/ QI؈jUiӉXPtc)Bj-dMhiq49GYb^{q O( jE{Ɖ|I b RP#'C?)mg{x15Rfo!.ZT{fo'h_ !][I6$/zbH yih#mgw#Dkp{.pg_H_C]Zq&)fC"ԗJo=>'u`Lɳp gR7D|aˠ+lbͨ'.}!ʄie\,:["|oͻ!jvЖ?y҇~^b=j*CEѪLIpɟq.o|3*mGL5RdxV F(\n ;[߳JD1:L]刕rC}\8(@"Gp{5 )gP}׏jG'u/}dkck6v0x iUA8tFZ:!f|#k_F)~G]·IǾugäjD 'ʎuvآh$EX,u2؉x)4@i9xyӫ3T> xAU!xF@UuRnzMQД{:v]a2z]ԄH15ߥE@8Z:KioFק<;C@y iQT% &ܶ2E8g*Xl$smʰ U'*A ߧ`nԕi,nðx~}H.]惁IT}HROXpx69!ߚiSD$|M {@Jyt#[P{qv._[9N|yf~Y8qfUt dc;)\ P!+B #,kE9zhux+<4I{=hY %.r=_b?4]]l&(% 4thy0fN1g]٘mĭA?ևo nO@i7 ԒgOy YWdӣcdf%j{cDwa _iMve);>Ô