cifs-utils-6.5-lp150.1.7 >  A Zɸ/=„b>\ pze2*M]Zoi^Gjyz ba->Io9e89c31edf677029ec28cd19152c0349bcedbdf5afbb78566e7fb66e579626c30e56a8997f9afc5363c990ba376da423ca5081d6 Zɸ/=„ފ>~=a$gָA>K f,L!`S/t\hM&\t,!s}x6v!b.$nFl"M6S"m^i6s%+,hު׍twY|{'Xy{:-Ŵb49nz5%9՟=S ~ Q`G *a nWλgb髆#GinEIny35biz]">pA?d   ` .Z`h  (   xh (  O( 8 9:BxFGHIXXpYZ[\]^S b *c d 4e 9f <l >u Pv wxHy9zCcifs-utils6.5lp150.1.7Utilities for doing and managing mounts of the Linux CIFS filesystemThe cifs-utils package consist of utilities for doing and managing mounts of the Linux CIFS filesystem.Y@cloud104nopenSUSE Leap 15.0openSUSEGPL-3.0+https://bugs.opensuse.orgSystem/Filesystemshttp://www.samba.org/linux-cifs/cifs-utils/linuxx86_64 24HI80H0'8x >,2AA큤A큤AA큤ZZZZZZZZZZZZZZZZTOZZZZZZZ39bd0c7870bd738ef48ff0b1c828a058ce1ebfee1780e74059f3350edfc6dc5386a0c2e5c684bea4e872ce3bfbb58d531cd9ac835063676db0991989d28960ef256d533c3f0d19d7c21b2c6950e60ec48de7004bdea245180bf57355859022f19ea0a1dc6ad2693721c03b2b03e28308f67688e3c518827b8cbfd8003d830f481ec040d125d615482472375a171bfe53a8cac9439d3a4a56a1aa8c8e684ae27af057d7ae4f1ef70487710b79b211e9e264af720924500cbb297d4a169e00672990b265131a91ff9eb6f306f8d6d5fd3d9be8d7bd6deaab69c097d703c10ac98d1b1be0d5d54343fdb80e9faaeda405ba09ce86b203ce67559276fb97165318ca53cd92845cd29ff53632dbd86b031dac756634ebc4e607bd2a4ce8cf47b3501a0e700d632950eb84707ee01acb467eb0878acbcce3acc45760517ca1734922b3c8c176de7ae71fccd44eb450ecb09889b9b28780835f8f1761d068a39b84b0fb386b12de9e7cc3fefb0b8e4ae1f334127a41e99bf5b4182d68ef661323c6353647f0036c62e4c795e9a942b1f5ce6b94601a76ecf4fbc1690ea77a7df8d7bb3968b580a1f429abb58866b1775bdb52ac4806b750206359797057c221ce395a53681715653d9debae125c266cbae9499e6d4c72da2998f4de7d550ae1bef9aa61c3eb504cbd79dab7b4a9c40a94eb5233b826dd4d76b38daf9aaa636a3ddfe5d6ae4be6a1af3d4c92e609341ab05ec86dfdbd65bff3474d2274250ad19b0f33c6/usr/lib64/cifs-utils/idmapwb.so@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootcifs-utils-6.5-lp150.1.7.src.rpmcifs-mountcifs-utilscifs-utils(x86-64)config(cifs-utils)@@@@@@@@@@@@@@@@@@@@    config(cifs-utils)keyutilslibc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.8)(64bit)libcap-ng.so.0()(64bit)libdl.so.2()(64bit)libdl.so.2(GLIBC_2.2.5)(64bit)libkeyutils.so.1()(64bit)libkeyutils.so.1(KEYUTILS_0.3)(64bit)libkeyutils.so.1(KEYUTILS_1.0)(64bit)libkrb5.so.3()(64bit)libkrb5.so.3(krb5_3_MIT)(64bit)libtalloc.so.2()(64bit)libtalloc.so.2(TALLOC_2.0.2)(64bit)libwbclient.so.0()(64bit)libwbclient.so.0(WBCLIENT_0.9)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)6.5-lp150.1.73.0.4-14.6.0-14.0-15.2-14.14.1Y@XX@V@V@UpUmT~@TO@TO@T;T;T@S<@S;@S@SkqS*@RUE@RSQJ@Q,Q& @PP@P@P"TO/@O/@OȮOȮOȮO]@O OO@O@O@O@O@O@O@O/O*zO))@N@Nl@NtN@Mv@M0:L!LV@L4l@Kj@K]K @K\K\KKKP@K[KKKK@K@KK~}@KqN@KqN@KqN@KqN@KoKoKn@Kn@Kl@KjK^@KUKLd@KG@KEKEKD{@K=K;@K/c@K*@K'z@K@K@K@K?K?KK@KmK3@JJJ@JJJJ`@J@JH@JJ JjJ0@J@JJJ@JJ JzJzJt.@JmJ_@J\s@JT@JT@JMJL@JI@JCfJB@JB@J@J;}J:,@J8J7@J7@J2C@J2C@J,@J'@J'@J'@J+@JMJp@IIIo@Io@IԨIW@IW@III@IV@Iaaptel@suse.comaaptel@suse.comaaptel@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.combwiedemann@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comddiss@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comro@suse.delmuelle@suse.comlmuelle@suse.comlmuelle@suse.commmeister@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comcrrodriguez@opensuse.orglmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comlmuelle@suse.comdlovasko@suse.comlmuelle@suse.delmuelle@suse.decoolo@suse.comcoolo@suse.comjengelh@medozas.desjayaraman@suse.desjayaraman@suse.delmuelle@suse.detoganm@opensuse.orgsjayaraman@suse.desjayaraman@suse.desjayaraman@suse.delmuelle@suse.desjayaraman@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.desjayaraman@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.derhafer@novell.comhhetter@novell.comlmuelle@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.deboyang@suse.deboyang@suse.dejmcdonough@suse.delmuelle@suse.deboyang@suse.deboyang@suse.delmuelle@suse.derhafer@novell.comlmuelle@suse.delmuelle@suse.delmuelle@suse.deboyang@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.delars@samba.orgjmcdonough@suse.desjayaraman@suse.dejengelh@medozas.delmuelle@suse.delmuelle@suse.delmuelle@suse.deboyang@suse.delmuelle@suse.dejmcdonough@suse.dejmcdonough@suse.delmuelle@suse.delmuelle@suse.deboyang@suse.delmuelle@suse.delmuelle@suse.deboyang@suse.delmuelle@suse.delmuelle@suse.deboyang@suse.dejmcdonough@suse.delmuelle@suse.dejmcdonough@suse.dejmcdonough@suse.dejmcdonough@suse.deboyang@suse.dechris@computersalat.delmuelle@suse.delmuelle@suse.delmuelle@suse.deboyang@suse.deboyang@suse.deboyang@suse.dehhetter@suse.delmuelle@suse.delmuelle@suse.deboyang@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.dejmcdonough@suse.delmuelle@suse.delmuelle@suse.dejmcdonough@suse.desbrabec@suse.czlmuelle@suse.delmuelle@suse.dejmcdonough@suse.delmuelle@suse.deboyang@suse.deboyang@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.desjayaraman@suse.desjayaraman@suse.desjayaraman@suse.dejmcdonough@suse.dejmcdonough@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.dejmcdonough@suse.delmuelle@suse.dejmcdonough@suse.dejmcdonough@suse.dejmcdonough@suse.delmuelle@suse.delmuelle@suse.delmuelle@suse.dero@suse.de- Document SMB3+ and new seal option; (fate#322075). + add patch 0001-manpage-correct-typos-and-spelling-mistakes.patch + add patch 0002-mount.cifs-document-SMBv3.1.1-and-new-seal-option.patch- Get rid of init script on everything based off SLE12+ (bsc#1025471).- Use https urls.- Don't ignore libldb, libtalloc, libtevent, and samba-client-libs at build time; (bsc#966174).- Update to cifs-utils 6.5. + mount.cifs: ignore x- mount options + minor build fixes; obsoletes include_paths.h_for__PATH_MOUNTED.patch + minor manpage fix- Ignore samba-client-libs at build-time on post-22 Fedora systems.- Add include_paths.h_for__PATH_MOUNTED.patch- Use rccifs -> service symlink for proper status (bnc#908023).- Remove dependency on gpg-offline as signature checking is implemented in the source validator.- Add README.cifstab.migration to document the cifstab removal; (bnc#902947).- Fix broken rccifs symbolic link.- Remove dead code associated with cifstab file which is no longer used.- Remove mkinitrd files and spec file logic. Dracut offers cifs support via the corresponding module; (bnc#893575).- Remove cifstab file; obsoleted by the more generic cifs credentials feature.- Update to cifs-utils 6.4. + allow PAM directory to be configurable - Make_the_PAM_security_directory_configurable_at_compile_time.patch + better determination of default keytab file + better cifscreds error handling + uppercase devicename when retrying mount- BuildIgnore libldb, libtevent, and samba4-libs to prevent a package conflict on CentOS, Fedora, and RHEL systems.- use _rundir macro- Update to cifs-utils 6.3. + fixes for various bugs turned up by Coverity + clean unused cruft out of upcall binary + add new pam_cifscreds PAM module for establishing NTLM creds on login which BuildRequires the pam-devel package - Make the PAM security directory configurable at compile time; (bso#10513). + Make_the_PAM_security_directory_configurable_at_compile_time.patch- Verify source tar ball gpg signature.- Update to cifs-utils 6.2. + setcifsacl can now work without a plugin + systemd-ask-password is found using $PATH now + cifs.upcall now works with KEYRING: credcaches - Update to cifs-utils 6.1. + minor bugfixes + allow cifs.upcall to use dedicated keytab - Update to cifs-utils 6.0. + minor bugfixes and documentation updates + support for NFS-style device names removed- Added url as source. Please see http://en.opensuse.org/SourceUrls- Add cifstab named configuration file to post-12.2 systems; (bnc#804822); (bnc#821889). - Really use of the existing cifs init script; (bnc#697218).- Remove superfluous restart or stop of the cifs service; (bnc#804822).- Set parsed_info->got_user when a cred file supplies a username; (bnc#800018).- Update to cifs-utils 5.9. + new plugin architecture for the ID mapping tools + DOMAIN\username@password format for username= arguments is removed + full RELRO (vs. partial) is now enabled on all binaries- Version 5.8 * NFS-style device names are being deprecated in 6.0. * Many bugs in cifs.idmap, getcifsacl and setcifsacl have been fixed.- Update to cifs-utils 5.6. + -Werror has been removed by default from CFLAGS + PIE and RELRO are enabled by default at build time + better integration with systemd by allowing the use of /bin/systemd-ask-password if available + better checks and warnings from cifscreds when used in environments that do not have a session keyring - No longer initialize oldfsgid inside acquire_mountpoint() of mount.cifs.c as - Werror got removed.- mount.cifs: initialize oldfsgid to surpress a warning while building for RHEL 4 or CentOS 5.- mount.cifs: set rc to 0 in libcap toggle_dac_capability- BuildRequire libwbclient-devel for CentOS, Fedora, and RHEL builds too.- Do not call autoreconf while build.- BuildIgnore libtalloc to prevent a package conflict on Fedora systems.- BuildRequire libtalloc-devel unconditionally.- Update to cifs-utils 5.5. + mount.cifs: don't pass credentials= option to the kernel + doc: update mailing list + mount.cifs: don't send a mandatory ver= option to the kernel + mount.cifs: remove smb2 multicall binary code + doc: remove old XML sources for mount.cifs.8 and cifs.upcall.8 + mount.cifs: unused variables- BuildRequire libtalloc2-devel instead of libtalloc-devel for post 12.1 systems.- Don't package get-, setcifsacl, and cifs.idmap for Mandriva pre-201100.- Don't care at all what the real uid is when we call toggle_dac_capability().- Make use of the stored return code in toggle_dac_capability() of mount.cifs.- Declare krb5_auth_con_set_req_cksumtype if the prototype does not exist. - Initialize bkupuid and bkupgid.- BuildRequire pkg-config for post-10.2 systems and else pkgconfig.- mount.cifs: fix up some -D_FORTIFY_SOURCE=2 warnings- Update to cifs-utils 5.4. + the "rootsbindir" can now be specified at configure time + mount.cifs now supports the -s option by passing "sloppy" to the kernel in the options string + cifs.upcall now properly respects the domain_realm section in krb5.conf + unprivileged users can no longer mount onto dirs into which they can't chdir (fixes CVE-2012-1586)- Added position independent flags to compilation and linking (-fpie/-pie); (bnc#743133).- BuildRequire autoconf to avoid implicit dependency for post-11.4 systems. - BuildRequire keyutils-devel for post-10.2 systems. - BuildRequire libcap-ng-devel for post-11.2 systems. - BuildRequire libwbclient-devel for post-10.2 systems. - BuildRequire samba-winbind-devel for CentOS, Fedora, and RHEL systems. - Add getcifsacl, setcifsacl, cifs.idmap, and cifs.upcall binaries and man pages to the filelist.- Update to cifs-utils 5.3. + admins can now tell cifs.upcall to use an alternate krb5.conf file + on remount, mount.cifs no longer adds a duplicate mtab entry + the cifscreds utility has seen a major overhaul to allow for multiuser mounts without krb5 auth - Update to cifs-utils 5.2. + cifs.idmap can now map uid/gid to SID in addition to the other way around + getcifsacl/setcifsacl are now installed by default in /usr/bin instead of /usr/sbin. The manpages are now in section 1. + cifs.upcall has a new scheme for picking the SPN on krb5 mounts. The hostname is now always lowercased. If we fail to get a ticket using an unqualified name, it now attempts to guess the domain name. + A lot of manpage updates, additions and corrections - Update to cifs-utils 5.1. + fix for a minor security issue that can corrupt the mtab + new getcifsacl/setcifsacl tools that allow you to fetch and set raw Windows ACLs via an xattr. + a lot of manpage patches - Update to cifs-utils 5.0. + mount.cifs always uses the original device string to ensure that umounts by unprivileged users are not problematic + there is a new cifs.idmap program for handling idmapping upcalls + a lot of manpage patches- remove call to suse_update_config (very old work around)- add automake as buildrequire to avoid implicit dependency- Remove redundant tags/sections from specfile- modify cifs init script to use /var/run instead of /var/lock/subsys for state file; (bnc#697218).- Update to cifs-utils 4.9. + mount.cifs: don't try to alter mtab if it's a symlink. + mount.cifs: fix possible use of uninitialized variable. + mount.cifs: reacquire CAP_DAC_READ_SEARCH before calling mount(2). + mount.cifs: fix handling of scopeid in resolve_host. - Update to cifs-utils 4.8.1. + fix mis-generated autoconf files. - Update to cifs-utils 4.8. + mount.cifs: manpage: add entry for "actimeo" option. + cifs-utils: rewrite hardcoded paths in manpages. + cifs-utils: fixes for manpage pathname replacement scheme. + cifs.upcall: fix memory and call krb5_auth_con_free(). + cifs.upcall: use krb5_auth_con_set_req_cksumtype() and pass a GSSAPI checksum; (bso#7890). + manpage: change port option description. + cifs.upcall: add 'l' to getopt_long string. + cifs.upcall: fix crash when trying to free uninitialized var. + cifs.upcall: consolidate find_krb5_cc calls. + cifs.upcall: clean up key description decoding routine. + cifs.upcall: add keytab support for unattended mounts. + mount.cifs: add cruid= mount option. - Update to cifs-utils 4.7. + manpage: add mount.cifs manpage entry for "multiuser" option. + mount.cifs: reinstate ip= as an override for address resolution. + mount.cifs: use monotonic time for timeouts. + cifs-utils: infrastructure for stashing passwords in keyring. + cifs-utils: moving resolve_host into separate file.- Move the cifs init script nfs dependencies from Required to Should.- corrected #bnc 641513 by adding /sbin/mkinitrd_setup in %postun.- Update to cifs-utils 4.6. + adds documentation for the fsc option. + mount.cifs deals with the _netdev, mand, and nomand options correctly now. + changes how mount.cifs handles the MS_MANDLOCK flag. + makes cifs.upcall prefer the creduid= upcall option to uid=- mount.cifs: fix parsing of "cred=" option; (bnc#618877); (bnc#620856); (bnc#621525); (bnc#623763); (bnc#627243).- Update to cifs-utils 4.5. + strip leading delimiter off of prefixpath option in mount.cifs. + remove magic number for max_username in parse_options. + turn into a multicall binary for smb2. + fix uninitialized variable in cred parsing error path. + cleanup mount.cifs option parsing.- BuildRequire libkeyutils-devel on Mandriva systems.- Update to cifs-utils 4.4. + fix a segfault that could occur when parsing the address list. + fix autoconf/automake problem that could cause compilation to fail. + acquire required capabilities before a couple of operations. + ensure passwords are not left in memory. + cleanup of credential file parsing.- automake: don't use @foo@ constructs in Makefile.am.- autoconf: define CAPNG_LDADD even when it's not set.- Update to cifs-utils 4.3. + credential files accept parameter names consistent with mount options. + some problems with linking are fixed. + libcap-ng is used if it's available. + the capability bounding set is zeroed out for greater security. + CAP_DAC_OVERRIDE is only enabled when updating the mtab.- Update to cifs-utils 4.2. + significant overhaul of mount.cifs to make it setuid root safe. + mount.cifs now does privilege separation. + re-enable mount.cifs setuid usage. + make mount.cifs use libcap if available to prune its capability set. + guard mount.cifs against signals by unprivileged users. + mount.cifs is more careful about signal handling during mtab updates. + cifs.upcall fixes to make it work with the heimdal kerberos implementation.- Update to cif-utils 4.1. + fix ver= option passed to the kernel + fix error handling when duplicating options string + make check_mountpoint a noop for non-legacy builds + remove uuid option + remove bogus rsize/wsize options + check for NULL addr pointer before handling scopeid- Add %version dependency to Provides and Obsoletes.- Update to cif-utils 4.0. - Create cifs-utils package which is independent from Samba.- Update to 3.5.1. + Fix security flaw on Linux platforms if built with libcap support allowing file system access even when permissions should have denied it; CVE-2010-0728; (bso#7222).- Fixed libldb.so link in libldb-devel.- Fix argc handling in net_share, making the command "net share" work again; (bso#7203); (bnc#584253).- Update to 3.5.0. + Fix duplicate sam and unix accounts; (bso#7145). + Keep the the correct negotiate_flags on the cli->dc structure; (bso#7160). + Avoid calling cli_alloc_mid twice in cli_smb_req_iov_send; (bso#7166). + Fix 'net ads dns' usage calls; (bso#7181). + Fix uninitialized variable in wkssvc_enumerateusers; (bso#7182).- Update to 3.4.6. + Change parameter "wide links" to default to "no"; it's also incompatible with "unix extensions"; (bso#7104); (bnc#577868). + Fix printing with 64 bit clients (bso#6888). + Fix core dump on 64 bit Linux (bso#7063). + Fix failing of smbd to respond to a read or a write caused by Linux asynchronous IO (aio) (bso#7067). + Fix string buffer overflow causing heap corruption in smbd (bso#7096). + Fix bogus ip address in SWAT; (bso#5885). + Fix vfs_full_audit; (bso#6557). + Use the first "uid" value; (bso#6157). + Fix large paged search with DirX LDAP servers; (bso#6981). + Fix crash bug in 'cifs.upcall'; (bso#6868). + Add cross option to samba_cv_linux_getgrouplist_ok; (bso#7047). + Fix DFS on AIX (maybe others); (bso#7052). + Fix pdb_search crash as non-root user; (bso#7068). + Fix unlocking of accounts from ldap; (bso#7072). + Fix vfs_expand_msdfs; (bso#7081). + Fix results of 'smbclient -L' with a large browse list; (bso#7098). + Normalize "Changing password for" msg IDs and STRs; (bso#7102). + Fix malformed require_membership_of_sid; (bso#7106). + Fix reading of large browselist; (bso#7122). + "mangling method = hash" can crash storing a name containing a '.'; (bso#7154). + Valgrind Conditional jump or move depends on uninitialised value(s) error when "mangling method = hash"; (bso#7155). + Fix listing of printjobs in Windows 7; (bso#7130). + Spoolss getprinterdriver2 level 101 marshalling is bad; (bso#7136). + Make idmap cache persistent for "ldapsam:trusted". + Also fill the memcache with sid<->id mappings in ldapsam_sid_to_id() not only the persistent idmap cache. + Shortcut uid_to_sid when "ldapsam:trusted = yes". + Make pdb_copy_sam_account also copy the group sid. + Shortcut gid_to_sid when "ldapsam:trusted = yes". + Speed up pdb_get_group_sid(). + Try to build the full unix_pw structure with ldapsam:trusted support. + Optimize ldapsam_alias_memberships() and cache ldap searches.- Update to 3.5.0rc3. + Change parameter "wide links" to default to "no"; it's also incompatible with "unix extensions"; (bso#7104); (bnc#577868). + Fix vfs_full_audit; (bso#6557). + Fix crash bug in 'cifs.upcall'; (bso#6868). + Fix duplicate initializer in the rmdir module; (bso#6876). + Fix printing with 64 bit clients; (bso#6888). + Add cross option to samba_cv_linux_getgrouplist_ok; (bso#7047). + Fix core dump on Ubuntu 8.04 64 bit; (bso#7063). + Fix failing of smbd to respond to a read or a write caused by Linux asynchronous IO (aio); (bso#7067). + Fix 'smbget' error status; (bso#7069). + Fix build of 'smbfilter'; (bso#7071). + Fix unlocking of accounts from ldap; (bso#7072). + Cliconnect gets realm wrong with trusted domains; (bso#7079). + Fix vfs_expand_msdfs; (bso#7081). + Fix storing of create time on directories in an EA in new create time code; (bso#7084). + Fix an early release of the global lock that can cause data corruption in libtdb; (bso#7085). + Fix string buffer overflow causing heap corruption in smbd; (bso#7096). + Fix results of 'smbclient -L' with a large browse list; (bso#7098). + Normalize "Changing password for" msg IDs and STRs; (bso#7102). + Fix malformed require_membership_of_sid; (bso#7106). + Add pdb_ldap performance fixes; (bso#7116). + Change ldap filter to what really was intended; (bso#7116). + Add new "nmbd bind explicit broadcast" parameter; (bso#7118). + Fix nmbd problems with socket address; (bso#7118). + Support large browselist; (bso#7119). + Fix reading of large browselist; (bso#7122). + Fix listing of printjobs in Windows 7; (bso#7130). + Owner of file not available with Kerberos; (bso#7139). + Fix IPv4/IPv6 problems; (bso#7140). + Fix get_acl_blob in the acl_tdb VFS module; (bso#7148). + "mangling method = hash" can crash storing a name containing a '.'; (bso#7154). + Valgrind Conditional jump or move depends on uninitialised value(s) error when "mangling method = hash"; (bso#7155). + Fix some wrong newlines in de translation strings.- Take extra care that a mount point of mount.cifs isn't changed during mount and don't allow it to be run as setuid root program; CVE-2010-0787; (bso#6853); (bnc#550002).- Check in mount.cifs for invalid characters in device name and mountpoint; CVE-2010-0547; (brc#562156); (bnc#577925).- Don't invalidate cache for uninitialized domains; (bnc#538923).- Signals are processed twice in child; (bnc#538923).- Allow forced pw change even with min pw age; (bnc#561894).- Change parameter "wide links" to default to "no"; it's also incompatible with "unix extensions"; (bso#7104); (bnc#577868).- Fix enumerate domain local groups for primary domain; (bnc#573813).- Fix malformed require_membership_of_sid; (bnc#525123); (bso#7106).- Normalize "Changing password for" msg IDs and STRs; (bnc#499233).- Build libtevent and libldb and put them into separate subpackages.- Update to 3.5.0rc2. + The Using Samba HTML book has been removed. + 'net', 'smbclient' and libsmbclient can use logon credentials cached by Winbind; (bso#7062). + New vfs_scannedonly module has been added; (bso#7028). + Check password history before increasing "badPasswordCount"; (bso#4347). + Fix changing of ACLs on writable file with "dos filemode=yes"; (bso#5202). + Restore Samba 3.0.x behavior and use the first "uid" value in pdb_ldap; (bso#6157). + Fix deletion of an object whose parent folder does not have delete rights fails even if the delete right is set on the object in vfs_acl_xattr and vfs_acl_tdb; (bso#6876). + Fix large paged search with DirX LDAP servers; (bso#6981). + Fix a segfault in winbindd_dual_ccache_ntlm_auth(); (bso#7027). + Disable sanity check in NetShareEnum for better compatibility with Windows; (bso#7029). + Fix SMBrmdir error message when deleting a directory fails; (bso#7033). + Fix segfault in vfs_cap; (bso#7034). + Fix 'net rpc getsid' in hardened Windows environments; (bso#7036). + Fix a Winbind segfault in "trusted_domains"; (bso#7037). + Complete and improve some German translation of 'net'; (bso#7039). + Fix compile error with WITH_DNS_UPDATE. Update .po files; (bso#7039). + Fix crash bug in libsmbclient; (bso#7043). + Fix bad (non memory copying) interfaces in smbc_setXXXX calls; (bso#7045). + Fix libsmbclient crash against OpenSolaris CIFS server; (bso#7046). + Lock down some srvsvc calls according to what w2k3 seems to do.- Update to 3.4.5. + Fix memory leak in smbd (bug #7020). + Fix changing of ACLs on writable files with "dos filemode=yes" (bug #5202). + BUG 6642: Fix opening the quota magic file. + BUG 6919: Fix remote quota management. + BUG 7034: Fix internal error caused by vfs_cap. + BUG 7036: Fix 'net rpc getsid' in hardened Windows environments. + BUG 7043: Fix crash bug in "SMBC_parse_path". + BUG 7045: Fix bad (non memory copying) interfaces in smbc_setXXXX calls. + BUG 7046: Fix a crash in libsmbclient used against the OpenSolaris CIFS server.- Free unused memory after a packet got processed; (bso#7020).- Add timeout to rpc call to prevent infinite loop when network is down; (bnc#538923).- Update to 3.5.0rc1. + BUG 6837: Fix "Too many open files" when trying to access large number of files with Windows 7. + BUG 6939: Fix long filenames when "mangling method" is set to "hash". + BUG 6991: Create symbol links to shared libraries. + BUG 6992: make test for getgrouplist cacheable. + BUG 7014: Fix Winbind crash when retrieving empty group members. + BUG 7020: Fix smbd using 2G memory. + Ensure dos_mode can return FILE_ATTRIBUTE_NORMAL, then filter the returned attributes by protocol level. + Vector correctly through reply_openerror() (which uses the same logic). + Fix bugs with the full Windows ACL support. + Add a few missing gettext calls to the 'net' command. + Fix up a share type translation and translate some more strings in 'net'. + Allow to call "pdbedit -N description -u user" without specifiyng "-r". + Add spoolss_DriverInfo7. + Fix rpcclient after setprinter IDL fixes. + Use generated krb5.conf in 'net ads testjoin'. + Add some German translations for the 'net' command. + Update mount.cifs man page with nounix option. + Fix _samr_GetAliasMembership for results with 0 rids. + Fix an error case in cli_negprot. + Add a lower-cost alternative to wbinfo -t: wbinfo --ping-dc. + Restore correct timeouts for SMB requests. + Fix a 64-bit error in libsmb. + Replace IS_DOMAIN_OFFLINE by a function in Winbind. + Simplify/cleanup Winbind code. + Fix write behind memory block in libtalloc. + Fix result check for getaddrinfo(). + Add tsocket_address_bsd_sockaddr() and tsocket_address_bsd_from_sockaddr() to tsocket. + Always set tdb->tracefd to -1 to be safe on goto fail in libtdb. + Add TDB_DISALLOW_NESTING and make TDB_ALLOW_NESTING the default behavior. + Fix standalone 'make installdocs'. + Output %p as unsigned in snprintf replacement. + New attempt at TDB transaction nesting allow/disallow. + Remove swig stuff from libtdb. + Reset tdb->fd to -1 in tdb_close() in libtdb. + Change the way mksysms work in libtalloc. + Also build and install tdb manpages from standalone tdb. + Fix infinite loop in NCACN_IP_TCP as there is no timeout. + Make winbindd_cache.c aware of domain offline to avoid unnecessary backend query. + List trusted domains from wcache when domain is offline.- Update to 3.4.4. + Fix interdomain trust relationships with Win2008R2 (bug #6697). + Fix Winbind crashes when queried from nss (bug #6889). + Fix Winbind crash when retrieving empty group members (bug #7014). + Fix "UID range full" error in Winbind (bug #6901). + Fix multiple LDAP servers in "idmap backend" and "idmap alloc backend" (bug #6910). + BUG 4832: Fix iconv checks. + BUG 6338: Do not always display "none" in 'net rpc trustdom list'. + BUG 6851: Add pdbedit --kickoff-time/-K to set the user's kickoff time. + BUG 6828: Fix infinite timeout when byte lock held outside of samba. + BUG 6837: Fix "Too many open files" message when trying to access a large number of files with Windows 7. + BUG 6841: Fix "map acl inherit = yes". + BUG 6850: Fix shadow copy display on Windows 7. + BUG 6867: Fix listing of directories with a lot of files. + BUG 6868: Support building with Heimdal we well as with MIT. + BUG 6875: Fix DOS attributes on OS/2 clients. + BUG 6880: Fix listing of workgroup servers in libsmbclient. + BUG 6898: Samba duplicates file content on appending. + BUG 6918: Fix krb5 build problem on Ubuntu karmic. + BUG 6929: Fix build with recent heimdal. + BUG 6939: Fix long filenames with "mangling method = hash". + BUG 6967: Fix 'net ads join' with OU. + BUG 6981: Fix paged search with DirX LDAP server. + BUG 6982: Remove erroneous out of memory error path in lookup_sid. + BUG 6997: Fix _samr_GetAliasMembership for results with 0 rids. + BUG 7005: Fix "mangle method = hash" truncates files with dot "." character. + Fix the build of the winbind krb5 locator plugin. + Fix enumprinter key client and server.- Readjust the _libdir/cups/backend/smb sym link only on uninstall of the samba-krb-printing package; (bnc#568603).- Add BuildRequires to fam-devel; (bnc#564260).- Prevent winbind crash; (bso#7014); (bnc#566119).- Fix processing of open modes in POSIX open; (bnc#530683).- Add baselibs.conf as a source.- Update to 3.5.0pre2. + BUG 2350: Add LDAP Alias Dereferencing support. + BUG 6288: SWAT adds a second share when changing parameters of an existing share. + BUG 6435: Fix minor memory corruption. + BUG 6710: Only install the cifs.upcall man page if CIFSUPCALL_PROGS was set while configure. + BUG 6802: A created folder does not properly inherit permissions from parent in vfs_acl_xattr. + BUG 6837: "Too many open files" when trying to access large number of files from Windows 7. + BUG 6860: Fix shared library build on QNX. + BUG 6879: Fix crash in Winbind. + BUG 6929: Fix build with recent heimdal. + BUG 6938 : No hook exists to check creation rights when using acl_xattr module. + BUG 6967: Prevent glibc error on 'net ads join'. + Fix vfs_acl_xattr which was failing to call the NEXT connect function. + Restructure the ACL code. + Refactor reply_rmdir to use handle based code. + Fix the build when no external talloc and tdb are installed. + Fix detection of CTDB headers on systems without system-libtalloc. + Fix several printing issues. + Fix the build on Mac OS X 10.6.2. + Fix net and rpcclient after setprinterdataex changes. + Add full support for level 8 printer drivers. + Add more spoolss architectures to IDL. + Fix enumprinter key client and server. + Fix crash in EnumPrinterDataEx. + Prefer posix_fallocate for doing "strict allocate". + Restore "fake directory create times" as a share parameter. + Fix explicit stat64 support. + Add support for NetWkstaGetInfo 101 and 102. + Add rpcclient wkssvc_enumerateusers. + De-deprecate "write cache size" to prevent its removal without a proper alternative. + Allow more than 1000 users in BUILTIN\Users. + Complete support for NetWkstaGetInfo/NetWkstaEnumUsers. + Fix the build of the example VFS modules. + Fix crash in free_file_list(). + Give the user a chance to change password when password will expire soon.- Store the smbfs service state if enabled and restore it for cifs while upgrade on post-11.2 systems.- Prevent cifstab from being overwritten while upgrade on post-11.2 systems.- Give the user a chance to change password when password will expire soon; (FATE#302414).- Rename smbfs init script to cifs for post-11.2 systems.- Allow Windows 7 to connection to samba domain controllers and member servers; (bnc#551811); (bso#6099); (bso#6100); (bso#6680).- Error on joining windows domain (invalid pointer); (bso#6967); (bnc#553622).- Add PreReq /usr/sbin/groupadd to the winbind package; (bnc#559165). - Simplify the winbind package %pre script and suppress stdout only.- Update to 3.5.0pre1 + Add support for full Windows timestamp resolution. + Experimental implementation of SMB2. + Add encryption support for connections to a CUPS server. + Major windbind asynchronous refactoring. - Remove using_samba from the doc package. - Increase major version of libtalloc to 2.- Fix kerberos refresh chain; (bnc#546162); (bso#6872).- Hardlink duplicate files on post-11.1 systems.- Add BuildArch noarch to samba-doc on post-11.1 systems.- Use full 16byte session key in make_user_info_netlogon_interactive(); (bnc#551811).- Update to 3.4.3. + Fix trust relationships to windows 2008 (2008 r2) (bug #6711). + Fix file corruption using smbclient with NT4 server (bug #6606). + Fix Windows 7 share access (which defaults to NTLMv2) (bug #6680). + BUG 4675: mount.cifs: Do not attempt to update /etc/mtab if it is a symbolic link. + BUG 6529: Offline files conflict with Vista and Office 2003. + BUG 6532: Fix domain enumeration if master browser has space in name. + BUG 6606: Fix file corruption using smbclient with NT4 server. + BUG 6690: Fix wrong error check in profile. + BUG 6703: Allow smbstatus as non-root. + BUG 6704: Fix syntax error in avahi configure test. + BUG 6707: Fix an occasional segfault in config file parsing. + BUG 6710: Adjust regex to match variable names including underscores. + BUG 6711: Fix trust relationships to windows 2008 (2008 r2). + BUG 6726: SIVAL should have been an SVAL. + BUG 6728: BSD needs sys/sysctl.h included to build properly. + BUG 6731: Fix reading beyond the end of a named stream in xattr_streams. + BUG 6735: Don't overwrite password in pam_winbind, subsequent pam modules might use the old password and new password. + BUG 6764: Fix timeval calculation. + BUG 6765: Add a "hidden" parameter "share:fake_fscaps". + BUG 6769: Fix symlink unlink. + BUG 6772: Allow outstanding_aio_calls to be decremented. + BUG 6774: smbd crashes if "aio write behind" is set. + BUG 6776: Fix core dump caused by running overlapping Byte Lock test. + BUG 6781: Fix renaming subfolders in Explorer view. + BUG 6791: Fix linking order in cifs.upcall. + BUG 6793: Fix Winbind crash with "INTERNAL ERROR: Signal 6". + BUG 6793: Fix segfault in winbindd_pam_auth. + BUG 6796: Deleting an event context on shutdown can cause smbd to crash. + BUG 6797: Fix a memleak in libwbclient. + BUG 6804: Fix hpux compiler issue. + BUG 6805: Correctly handle aio_error() and errno. + BUG 6807: Fix a segfault in "net rpc trustdom list" for long domain names. + BUG 6810: Add support for finding alternate credcaches to cifs.upcall. + BUG 6811: Fix reference to freed memory in pam_winbind. + BUG 6815: Fix Windows 2008 R2 SPNEGO negTokenTarg parsing failure. + BUG 6824: Fix avahi activation. + BUG 6826: Don't fail authentication when one or some group of require-membership-of is invalid. + BUG 6828: Fix infinite timeout when byte lock held outside of Samba. + BUG 6829: Fix displaying of multibyte characters in smbclient. + BUG 6840: Fix crash in pam_winbind. + Fix an uninitialized variable. + Only ever handle one event after a select call. + Conditional install of the cifs.upcall man page. + Fix warning occuring when building the manpages.- Let smbclient show special characters properly; (bso#6829); (bnc#544204).- Don't fail authentication when one or some group of require-membership-of is invalid; (bnc#525123); (bso#6826).- Allow winbind to ignore certain domains; (bnc#539506).- Update to 3.4.2. + Fix unresolved home path; CVE-2009-2813; (bso#6763); (bnc#539517). + Fix potential denial of service; CVE-2009-2906; (bso#6768); (bnc#543115). + Fix potential mount.cifs password leaks; CVE-2009-2948; (bnc#542150).- Fix potential denial of service; CVE-2009-2906; (bnc#543115).- Fix potential mount.cifs password leaks; CVE-2009-2948; (bnc#542150).- Fix unresolved home path; CVE-2009-2813; (bnc#539517).- Don't overwrite password in pam_winbind; (bnc#515444).- mods for winbind (when used with squid - ntlm_auth) o winbind adds group 'winbind' o permission 0750,root,winbind LOCKDIR/winbindd_privileged- Merge two fixes from 3.2.8 and 3.3.1. + Adjust regex to match variable names including underscores. + Conditional install of the cifs.upcall man page.- Remove supplements from baselibs.conf while %clean for pre-11.1 systems; (bnc#520579).- Update to 3.4.1. + Fix authentication on member servers without Winbind (bug #6650). + Nautilus fails to copy files from an SMB share (bug #6649). + Fix connections of Win98 clients (bug #6551). + Fix interdomain trusts with Windows 2008 R2 DCs (bug #6697). + Fix Winbind authentication issue (bug #6646). + BUG 5879: Update LDAP schema for Netscape DS 5. + BUG 5886: Fix password change propagation with ldapsam. + BUG 6105: Make linking of cifs.upcall and rpcclient --as-needed safe. + BUG 6222: Default to DRSUAPI replication for net rpc vampire keytab. + BUG 6437: Make open_udp_socket() IPv6 clean. + BUG 6496: MS-DFS cannot follow multibyte char link name in libsmbclient. + BUG 6506: Smbd server doesn't set EAs when a file is overwritten in NT_TRANSACT_CREATE. + BUG 6532: Fix the build with external talloc. + BUG 6538: Cancel all locks that are made before the first failure. + BUG 6560: Fix lookupname. + BUG 6564: SetPrinter fails (panics) as non root. + BUG 6568: Fix _spoolss_GetPrintProcessorDirectory() implementation. + BUG 6585: Fix unqualified "net join". + BUG 6593: Correctly implement SMB_INFO_STANDARD setfileinfo. + BUG 6601: Avoid global fd limits. + BUG 6607: Fix crash bug in spoolss_addprinterex_level_2. + BUG 6611: Fix a valgrind error in chain_reply. + BUG 6615: Fix browsing of DFS when using kerberos in libsmbclient. + BUG 6627: Raise the timeout for lsa_Lookup*() calls from 10 to 35 seconds. + BUG 6650: Fix authentication on member servers without Winbind. + BUG 6651: Fix smbd SIGSEGV when breaking oplocks. + BUG 6655: Fix 'smbcontrol smbd ping'. + BUG 6620: Fix a bug in renames of directories. + BUG 6664: Fix truncation of the session key. + BUG 6673: Fix 'smbpasswd' with "unix password sync = yes". + BUG 6680: Fix authentication failure from Windows 7 when domain joined. + BUG 6688: Fix crash in 'net usershare list'. + BUG 6693: Check we read off the complete event from inotify. + BUG 6700: Use dns domain name when needing to guess server principal.- Update to 3.2.14. + Fix SAMR access checks (e.g. bugs #6089 and #6112). + Fix 'force user' (bug #6291). + Improve Win7 support (bug #6099). + Fix posix ACLs when setting an ACL without explicit ACE for the owner (bug #2346). + BUG 6387: Fix Winbind crash when multiple IDmappings exist in the LDAP directory. + BUG 6509: Use gid (not uid) cache in fetch_gid_from_cache(). + BUG 6628: 'smbpasswd -a' uses algorithmic rid base with 'passdb backend = tdbsam'. + BUG 6089: Fix SAMR access checks. + BUG 6112: Fix SAMR access checks. + BUG 6279: Fix Winbind crash. + BUG 6291: Fix 'force user'. + BUG 6099: Try to fix domain join of Win7 Beta. + BUG 6386: Groupdb mapping fix. + BUG 6421: Fix POSIX read-only open on read-only shares. + BUG 6476: Fix more smbd-zombies in memory. + BUG 6488: acl_group_override() call in posix acls references an uninitialized variable. + BUG 6504: Fix SAMR server for Winbind access. + BUG 6520: Fix time stamps. + BUG 6301: Fix samr_ConnectVersion enum which is 32bit not 16bit. + BUG 6340: Don't segfault when cleartext trustdom pwd could not be retrieved. + BUG 6372: Fix usermanager only displaying 1024 groups and aliases. + BUG 6465: Fix enum_aliasmem in ldb branch. + BUG 6484: Fix searching for users while adding them to groups via Windows usermanager. + BUG 2346: Fix posix ACLs when setting an ACL without explicit ACE for the owner. + BUG 6526: Let parent_dirname() correctly return toplevel filenames. + BUG 6627: Raise the timeout for lsa_Lookup*() calls from 10 to 35 seconds. + BUG 5798: Preserve CFLAGS info in configure. + BUG 6382: Case insensitive access to DFS links broken. + BUG 6481: Don't require "Modify property" perms to unjoin. + BUG 6628: 'smbpasswd -a' uses algorithmic rid base with 'passdb backend = tdbsam'. + BUG 6560: Lookupname failed, cannot find domain when attempt to change password. + Prevent creation of keys containing the '/' character. + Fix join of Windows 7 RC to a Samba3 DC. + Fix bug in processing of open modes in POSIX open. + Fix the negotiate flags. + Protect netlogon_creds_server_step() against NULL creds. + Also handle DirX return codes. + Fix a crash bug if we timeout in net rpc trustdom list. + Add '--request-timeout' option to 'net'. + Fix a race condition in Winbind leading to a panic. + Add workaround for MS KB932762. + 5945: Fix out of memory error with Winbind idmap. + Avoid duplicate ACEs. + Fix profile ACLs in some corner cases. + Zero an uninitialized array.- Unable to browse DFS when using kerberos in libsmbclient; (bnc#528271); (bso#6615).- check in .po files for pam_winbind; (bnc#499233); (bso#6602).- Add ntp and network-remotefs as Should-Start dependency to the winbind init script; (bnc#515629).- Update to 3.0.36. + Fix Winbind crash on 'getent group' (bug #5906). + Excel save operation corrupts file ACLs (bug #4308). + Prevent segmentation fault on joining a very long domain name. + BUG 4308: Excel save operation corrupts file ACLs. + BUG 4370: Clean-up entries in /etc/mtab after unmount. + BUG 4640: Fix guest mounts in mount-cifs. + BUG 5906: Fix Winbind crash on 'getent group'. + BUG 6066: netinet/ip.h present but cannot be compiled on Solaris. + BUG 6099: In order to allow Win7 to connect to a Samba NT style. + BUG 6279: Fix Winbind crash. PDC we set the flags before we know if it's an error or not. + BUG 6085: Fix build of vfs_default. + BUG 6098: When the DNS server is invalid, the ads_find_dc() does not work correctly. + Fix logic error in try_chown. + Correctly use chroot(). + Fix bug in processing of open modes in POSIX open. + Don't install the cifs.upcall binary twice. + Fix mount.cifs handling of -V option. + Prevent segmentation fault on joining a very long domain name. + Don't try and delete a default ACL from a file. + Add workaround for MS KB932762. + Add fakemount (-f) and nomtab (-n) flags to mount.cifs. + Fix a crash during name resolution when log level >= 10 and libc segfaults if printf is passed NULL for a "%s" arg.- Use a conditional suse_version macro in front of the SUSE_ASNEEDED export.- lookupname failed, cannot find domain when attempt to change password; (bnc#520645); (bso#6560).- Don't link with --as-needed flag on post-11.1 systems.- Stop the smbfs service if an interface goes down; (bnc#517768).- Disable build of static libraries on post-11.1 systems; (bnc#509945).- Fix missing zlibs for cifs.upcall and test_shlibs.- Update to 3.4.0. + BUG 6431: Local groups from 3.0 setups no longer found. + BUG 6459: Fix build of pam_smbpass on some distributions. + BUG 6481: 'net ads leave' needs to try account deletion, NetUnjoinDomain not. + BUG 6497: Fix calling of 'test' in configure. + BUG 6498: Add workaround for MS KB932762. + BUG 6499: Fix building of pam_smbpass. + BUG 6509: Use gid (not uid) cache in fetch_gid_from_cache(). + BUG 6512: Fix support for enumerating user forms. + BUG 6514: Improve error message in 'net' when smb.conf is not available. + BUG 6520: Fix time stamps when "unix extensions = yes". + BUG 6521: Fix building tevent_ntstatus without config.h. + BUG 6526: Fix notifies in the share root directory. + BUG 6531: Fix pid file name.- Package /etc/samba/smbpasswd as %ghost on post-11.1 systems.- Fix net ads leave; (bnc#511695).- Supplement pam-32bit/pam-64bit in baselibs.conf (bnc#354164). - Supplement glibc-32bit/glibc-64bit in baselibs.conf (bnc#354164).- Update to 3.2.13, 3.3.6. + In Samba 3.2.0 to 3.2.12 (inclusive), the smbclient commands dealing with file names treat user input as a format string to asprintf. With a maliciously crafted file name smbclient can be made to execute code triggered by the server; CVE-2009-1886; (bnc#513360); (bso#6478).- Update to 3.0.35. + In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a data value can potentially affect access control when "dos filemode" is set to "yes"; CVE-2009-1888; (bnc#515479).- Uninitialized read of a data value; CVE-2009-1888 (bnc#515479).- Update to 3.4.0rc1. + BUG 4699: Remove pidfile on clean shutdown. + BUG 5456: Fix "net ads testjoin". + BUG 6081: Make it possible to change machine account sids. + BUG 6253: Use correct value for password expiry calculation in pam_winbind. + BUG 6297: Owner of sticky directory cannot delete files created by others. + BUG 6305: Correctly prompt for a password when a username was given. + BUG 6328: Add support for multiple rights to "net sam rights grant/revoke". + BUG 6333: Consolidate create/delete account paths in pdbedit. + BUG 6449: 'net rap user add' crashes without -C option. + BUG 6451: net/libnetapi user rename using wrong access bits. + BUG 6458: Fix uninitialized variable in local_password_change(). + BUG 6465: Fix enumeration of empty aliases. + BUG 6476: Fix smbd-zombies in memory when using [x]inetd. + BUG 6487: Add missing DFS call in trans2 mkdir call. + BUG 6488: acl_group_override() call in posix acls references an uninitialized variable. + Improve pam_winbind documentation. - Install a vendor copy of samba-common.dhcp as dhcpcd-hook-samba-functions.- Samba 3.2.0 - 3.2.12 smbclient commands dealing with file names treat user input as a format string to asprintf; CVE-2009-1886; (bnc#513360).- Fix a bad memleak in vfs_full_audit; (bnc#510035).- Update to 3.3.5. + Fix SAMR and LSA checks (bug #6089, #6289) + Fix posix acls when setting an ACL without explicit ACE for the owner (bug #2346). + Fix joining of Win7 into Samba domain (bug #6099). + Fix joining of Win2000 SP4 clients (bug #6301). + BUG 2346: Fix posix acls when setting an ACL without explicit ACE for the owner. + BUG 5832: Fix build on RHEL when ccache is not available. + BUG 5853: Add keyutils-devel to build requires to fix build on RHEL. + BUG 5897: Fix shutdown script example in the smb.conf manpage. + BUG 6089: Revert the extra SAMR and LSA checks. + BUG 6099: Fix joining of Win7 into Samba domain. + BUG 6157: Fix handling of multi-value attribute "uid". + BUG 6289: Revert the extra SAMR and LSA checks. + BUG 6297: Owner of sticky directory cannot delete files created by others. + BUG 6301: Fix joining of Win2000 SP4 clients. + BUG 6309: Support remote unjoining of Windows 2003 or greater. + BUG 6315: smbd crashes doing vfs_full_audit on IPC$ close event. + BUG 6320: Handle registry config source in file_list. + BUG 6330: Fix DFS on AIX. + BUG 6336: Fix 'net groupmap set' segfault. + BUG 6361: Make --rcfile work in smbget. + BUG 6365: Re-Add the "dropbox" functionality with -wx rights on a directory. + BUG 6372: Fix usermanager only displaying 1024 groups and aliases. + BUG 6382: Fix case insensitive access to DFS links. + BUG 6415: Filter out of range mappings in default idmap config in idmap_tdb. + BUG 6416: Filter out of range mappings in default idmap config in idmap_tdb2. + BUG 6417: Filter out of range mappings in default idmap config in idmap_ldap. + BUG 6441: Fix the compile with --enable-dnssd. + BUG 6449: 'net rap user add' crashes without -C option. + BUG 6465: Fix enumeration of empty aliases (ldb backend). + Prevent infinite include nesting. + Mark registry shares without path unavailable. + Also handle DirX return codes. + Fix Coverity ID 897. + Do not crash in ctdbd_traverse if ctdbd is not around. + Fix a race condition in winbind leading to a panic. + Some man pam_winbind improvements. + Zero an uninitialized array.- Update to 3.2.12. + Fix SAMR and LSA checks (bug #6089, #6289) + Fix posix acls when setting an ACL without explicit ACE for the owner (bug #2346). + Fix "force user" (bug #6291). + Fix Winbind crash (bug #6279). + Fix joining of Win7 into Samba domain (bug #6099). + BUG 2346: Fix posix acls when setting an ACL without explicit ACE for the owner. + BUG 5798: CFLAGS info lost in configure. + BUG 5832: Fix build on RHEL when ccache is not available. + BUG 5835: Add keyutils-devel to build requires. + BUG 5945: Fix out of memory error with Winbind idmap. + BUG 6089: Revert the extra SAMR and LSA checks. + BUG 6099: Fix joining of Win7 into Samba domain. + BUG 6279: Fix Winbind crash. + BUG 6289: Revert the extra SAMR and LSA checks. + BUG 6291: Fix "force user". + BUG 6301: Fix samr_ConnectVersion enum which is 32bit not 16bit. + BUG 6372: Fix usermanager only displaying 1024 groups and aliases. + BUG 6386: Groupdb mapping fix. + BUG 6382: Fix case insensitive access to DFS links. + BUG 6465: Fix enumeration of empty aliases (ldb backend). + Prevent creation of keys containing the '/' character. + Fix bug in processing of open modes in POSIX open. + Protect netlogon_creds_server_step() against NULL creds. + Also handle DirX return codes. + Fix a race condition in winbind leading to a panic. + Fix a crash bug if we timeout in net rpc trustdom list. + Fix profile acls in some corner cases.- Default with passdb backend to smbpasswd for SUSE products older than 11.2.- Explicitly use 'tdbsam' as passdb backend in the default smb.conf file.- Update to 3.4.0pre2. + The default passdb backend has been changed to 'tdbsam'! + Samba4 and Samba3 sources are included in the tarball. + Changed the way smbd handles untrusted domain names given during user authentication. + Various fixes including printer change notificiation for Samba spoolss print servers. + The remaining hand-marshalled DCE/RPC services (ntsvcs, svcctl, eventlog and spoolss) were replaced by autogenerated code based on PIDL. + Samba3 and Samba4 do now share a common tevent library. + The code has been cleaned up and the major basic interfaces are shared with Samba4 now. + An asynchronous API has been added. + Made parameter syntax of the net command more consistent. + BUG 2346: Fix posix ACLs when setting an ACL without explicit ACE for the owner. + BUG 4271: testparm should not print includes. + BUG 4831: Don't call openlog() or closelog() from pam_smbpass. + BUG 5681: Do not limit the number of network interfaces. + BUG 5859: Fix renaming of samr objects failed due to samr setuserinfo access checks. + BUG 6099: Fix NETLOGON credential chain. + BUG 6136: New AFS syscall conventions. + BUG 6157: Fix handling of multi-value attribute "uid". + BUG 6253: Use correct value for password expiry calculation. + BUG 6291: Fix 'force user'. + BUG 6292: Update config.guess from gnu.org. + BUG 6302: Give the VFS a chance to read from 0-byte files. + BUG 6309: Support remote unjoining of Windows 2003 or greater. + BUG 6313: ldapsam_update_sam_account() crashes while doing talloc_free on malloced memory. + BUG 6315: Fix smbd crashes when doing vfs_full_audit on IPC$ close event. + BUG 6320: Handle registry config source in file_list. + BUG 6330: Fix DFS on AIX. + BUG 6336: Fix segfault in 'net groupmap set'. + BUG 6340: Don't segfault when cleartext trustdom pwd could not be retrieved. + BUG 6357: Use Samba default command line arguments in 'net'. + BUG 6359: smbclient -L does not list workgroup for hosts with both IPv4 and IPv6 addresses + BUG 6361: Make --rcfile work in smbget. + BUG 6371: Unsuccessful 'net conf setparm' leaves empty share. + BUG 6372: usermanager only displaying 1024 groups and aliases. + BUG 6387: Fix a crash bug in idmap_ldap_unixids_to_sids. + BUG 6415: Filter out of range mappings in default idmap config (idmap_tdb). + BUG 6416: Filter out of range mappings in default idmap config (idmap_tdb2). + BUG 6417: Filter out of range mappings in default idmap config (idmap_ldap). + Change the way smbd handles untrusted domain names given during user authentication. + Replace the hand-marshalled DCE/RPC services ntsvcs, svcctl, eventlog and spoolss by autogenerated code based on PIDL. + Fix several printing issues and improve support for printer change notificiations. + Add 'net eventlog'. + Add asynchronous API. + Make Samba3 and Samba4 share a tevent library. + Add two new parameters to control how we verify kerberos tickets. + Add 'net rpc service' subcommands 'create' and 'delete'. + Fix the core of the SAMR access functions. + Fix SAMR server for winbindd access. + Add dbwrap_tool - a tdb tool that is CTDB-aware. + Hide "config backend" from swat. + Fix linking with --disable-shared-libs. + Fix issue with missing entries when enumerating directories. + Map NULL domains to our global sam name. + Fix driver upload for Xerox 4110 PS printer driver. + Add "net dom renamecomputer" to rename machines in a domain. + Inspect the correct computername string before enabling/disabling the change button in netdomjoin-gui. + Fix join prompt dialog test in netdomjoin-gui. + Only gray out labels when not root and not connecting to remote machines (netdomjoin-gui). + Allow to switch between workgroups/domains with the same name (netdomjoin-gui). + Add NetShutdownInit and NetShutdownAbort. + Fix samr access checks. + Add a security model to LSA. + Also handle DirX return codes. + Do not crash in ctdbd_traverse if ctdbd is not around. + Fix Coverity ID 897. + Fix a race condition in vfs_aio_fork with gpfs share modes. + Fix bug disclosed by lock8 torture test. + Fix a race condition in winbind leading to a panic. + Detect tight loop in tdb_find(). + Fix chained sesssetupAndX/tconn messages. + Fix strict locking with chained reads. + Fix two bugs in sendfile. + Fix memory leak. + Fix file descriptor leak. + Fallback to the legacy sid_to_(uid|gid) instead of returning NULL. + Always allocate memory in dptr_ReadDirName. + Fix 'net' crash during domain join. + Zero an uninitialized array. + Allow child processes to exit gracefully if we are out of fds.- Enable cifs.upcall on versions newer than SUSE 10.0.- Add BuildRequires to keyutils-devel.- Remove redundant Requires to keyutils-libs for cifs-mount.- Detect tight loop in tdb_find(); (bnc#450974).- Fix lp printing with kerberos; (bnc#476913).- Add BuildRequires to ctdb-devel for systems newer than SUSE 10.0 and all other build targets.- Update to 3.4.0pre1. + Samba4 and Samba3 sources are included in the tarball + Changed the way smbd handles untrusted domain names given during user authentication. + Various fixes including printer change notificiation for Samba spoolss print servers. + The remaining hand-marshalled DCE/RPC services (ntsvcs, svcctl, eventlog and spoolss) were replaced by autogenerated code based on PIDL. + Samba3 and Samba4 do now share a common tevent library. + The code has been cleaned up and the major basic interfaces are shared with Samba4 now. + An asynchronous API has been added. + Change the way smbd handles untrusted domain names given during user authentication. + Replace the hand-marshalled DCE/RPC services ntsvcs, svcctl, eventlog and spoolss by autogenerated code based on PIDL. + Fix several printing issues and improve support for printer change notificiations. + Add 'net eventlog'. + Add asynchronous API. + Make Samba3 and Samba4 share a tevent library. + Add two new parameters to control how we verify kerberos tickets. + Add 'net rpc service' subcommands 'create' and 'delete'. + Make merged build possible. + Move common libraries to the shared lib/ directory.- Update to 3.3.4. + Fix domain logins for WinXP clients pre SP3 (bug #6263). + Fix samr_OpenDomain access checks (bug #6089). + Fix usrmgr.exe creating a user (bug #6243). + BUG 6089: Fix samr_OpenDomain access checks. + BUG 6254: Fix IPv6 PUT/GET errors to an SMB server (3.3) with "msdfs root" set to "yes". + BUG 6279: Fix Winbind crash. + BUG 5329: Add "net rpc service delete/create". + BUG 6238: Make sure wbcLogoffUserParams are properly initialized before freed. + BUG 6263: Fix domain logins for WinXP clients pre SP3. + BUG 6286: Call init function for builtin idmap modules before probing for them as shared modules. + BUG 6243: Fix usrmgr.exe creating a user. + net conf: Save share name as given, not as lower case only. + Prevent creation of registry keys containing the '/' character. + Allow pdbedit to change a user rid/sid. + When doing a cli_ulogoff don't invalidate the cnum, invalidate the vuid. + Don't access a freed structure when logging off and re-using a vuid. + Try to to fix password_expired flag handling. + Make sure to grey out change fields in the netdomjoin-gui when not running as root. + Don't look up local user for remote changes, even when root. + Use procid_str in debug messages for better cluster-debuggability. + Use cluster-aware procid_is_me instead of comparing pids. + Fix smbd crash for close_on_completion. + Fix a memleak in an unlikely error path in change_notify_create(). + Do not use the file system GET_REAL_FILENAME for mangled names. + Fix a crash bug if we timeout in net rpc trustdom list. + Add '--request-timeout' option to net. + In net_conf_import, start a transaction when importing a single share. + Fix writing of roaming profiles with "profile acls" set to "yes".- Update to 3.2.11. + Fix domain logins for WinXP clients pre SP3 (bug #6263). + Fix samr_OpenDomain access checks (bug #6089). + Fix smbd crash for close_on_completion. + BUG 6089: Fix samr_OpenDomain access checks. + BUG 6205: Correct sample smb.conf share configuration. + BUG 6254: Fix IPv6 PUT/GET errors to an SMB server (3.3) with "msdfs root" set to "yes". + BUG 6263: Fix domain logins for WinXP clients pre SP3. + Allow pdbedit to change a user rid/sid. + When doing a cli_ulogoff don't invalidate the cnum, invalidate the vuid. + Fix resume command typo for "printing = vlp". + Fix smbd crash for close_on_completion. + Fix a memleak in an unlikely error path in change_notify_create(). + Don't look up local user for remote changes, even when root.- Don't lookup local user for remote password changes; (bnc#493507).- Update to 3.3.3. + Migrating from 3.0.x to 3.3.x can fail to update passdb.tdb correctly (bug #6195). + Fix serving of files with colons to CIFS/VFS client (bug #6196). + Fix "map readonly" (bug #6186). + BUG 6195: Don't let smbd child processes panic. + Add backend_requires_messaging() method to libsmbconf. + Add methods is_writeable() and wrapper smbconf_is_writeable() to libsmbconf. + Fall back to file backend when no valid backend was found. + Fix a memleak in dbwrap_rbt. + Provide transaction_start|commit|cancel fns for the registry tdb. + Speed up "net conf drop". + Speed up "net conf import". + Add transactions to the libsmbconf API. + Reduce memory usage of "net conf import". + Registry cleanup. + Fix handling of SAMBA_VERSION_VENDOR_PATCH. + Fix build of pam_winbind.so with static linking. + Tidy up some convert_string_internal error cases. + BUG 6224: nmbd waits 5 minutes at startup before checking if it needs to run elections. + Allow DFS client paths to work when POSIX pathnames have been selected. + Try and fix the build farm RAW-STREAMS errors. + Ensure files starting with multiple dots are hidden. + BUG 6102: NetQueryDisplayInformation could return wrong information. + BUG 6193: Avoid messing with sync_context in libnet_samsync_delta(). + Fix notify_printer_status_byname. + Fix Coverity IDs 722, 762, 774, 775, 776. + Fix build on old Heimdal based systems. + Fix compile warning. + Use parentheses in if condition to make negation clear. + Add dirsort module. + BUG 6147: Fix detection of the GNU ld version. + BUG 6097: Fix smbd segfault. + BUG 6130: Don't crash in winbindd_rpc lookup_groupmem() on unmapped members. + BUG 6139: Add missing whitespace in mount.cifs error message. + Fix a malloc/talloc mismatch when cli_initialise() fails. + Fix a valgrind error. + Speed up "net conf list". + Add sorted subkey cache. + Use StrCaseCmp in the dirsort module. + Document the dirsort module. + Disable dns_sd by default. + Add avahi detection to configure. + Add event avahi binding. + Use avahi to register _smb._tcp in smbd. + Fix two memleaks in the encryption code. + Fix a scary "fill_share_mode_lock failed" message. + BUG 6228: Fix SMBC_open_ctx failure due to path resolve failure doesn't set errno. + Don't use reserved words in smbconftort. + Fix smb signing for fragmented trans/trans2/nttrans requests. + Parse_packet can return NULL which is then dereferenced in match_mailslot_name. + Format the header check for netinet/ip.h more nicely. + Missing break in conversion function prevents tdb password database update.- Update to 3.2.10. + BUG #6195: Don't let smbd child processes panic.- BUG 6195: Fix crash on passdb conversion.- Update to 3.2.9. + BUG 5920: The length of the memcpy was calculated wrong. + BUG 6097: Fix smbd segfault. + BUG 6098: Fix ads_find_dc() with "security = domain" when the DNS server is invalid. + BUG 6099: Samba returns incurrate capabilities list. + BUG 6100: Implement _netr_LogonGetCapabilities() with NT_STATUS_NOT_IMPLEMENTED. + BUG 6102: NetQueryDisplayInformation could return wrong information. + BUG 6130: Fix crash in winbindd_rpc lookup_groupmem() on unmapped members. + BUG 6133: Cannot delete non-ACL files on NFSv4 ACL filesystem. + BUG 6161: smbclient corrupts source path in tar mode. + BUG 6193: Avoid messing with sync_context in fetch_database_to_ldif(). + BUG 6196: Unable to serve files with colons to Linux CIFS/VFS client. + BUG 6224: nmbd waits 5 minutes before checking to run elections. + BUG 6228: Fix SMBC_open_ctx failure when path failure doesn't set errno. + Numerous Coverity fixes + Fix double free caused by incorrect talloc_steal usage. + Backport delete semantics of alternate data streams on a file truncate. + Allow set attributes on a stream fnum to redirect to the base filename. + Fix use of streams modules with CIFSFS client. + Fix more POSIX path lstat calls. + Allow DFS client paths to work with POSIX pathnames. + Ensure files starting with multiple dots are hidden. + Fix guest auth when Winbind is running. + Fix memleak in get_remote_printer_publishing_data(). + cifs mount fix for handling -V parameter. + Fix guest mounts. + Clean-up entries in /etc/mtab after unmount. + Add fakemount (-f) and nomtab (-n) flags to mount.cifs. + Enable total anonymization in vfs_smb_traffic_analyzer. + Don't try and delete a default ACL from a file. + Fix remotely adding a share via MMC. + Fix resume handle for _samr_EnumDomainGroups. + Fix a buffer handling bug when adding lots of registry keys. + Fix a O(n^2) algorithm in regdb_fetch_keys(). + Fix a valgrind error / segfault in dns_register_smbd(). + Don't log NDR_PRINT_DEBUG at level 0, this always ends up in syslog. + Fix a malloc/talloc mismatch when cli_initialise() fails. + Fix two memleaks in the encryption code. + Fix "fill_share_mode_lock failed" message. + Add S-1-22-X-Y sids to the local token. + Fix smb signing for fragmented trans/trans2/nttrans requests. + Don't miss an absolute pathname as a kerberos keytab path. + Have nmbd check all available interfaces for WINS before failing. + Initialize the id_map status in idmap_ldap to avoid surprise.- Obsolete change from 2008-03-05 by removing the needless examples cleanup.- Update to 3.3.2. + Fix "force group" (bug #6155). + Fix saving of files on Samba share using MS Office 2007 (bug #6160). + Fix guest authentication in setups with "security = share" and "guest ok = yes" when Winbind is running. + Fix corruptions of source path in tar mode of smbclient (bug #6161). + BUG 6082: Fix renaming and deleting of directories using Windows clients. + BUG 6154: Make ZFS honor admin users. + BUG 6155: Fix "force group". + BUG 6160: Fix saving of files on Samba share using MS Office 2007. + BUG 6161: Fix corruptions of source path in tar mode of smbclient. + Fix some NetBSD warnings. + Fix bug in processing of open modes in POSIX open. + Fix use of streams modules with CIFSFS client. + Ensure ACL modules work with POSIX paths. + Use fsp->posix_open in preference if we have it. + Fix more POSIX path lstat calls. + Fix a bug in message handling for the change notify code. + Fix guest authentication in setups with "security = share" and "guest ok = yes" when Winbind is running. + BUG 4640: Fix guest mounts in mount.cifs. + Fix displaying the version string properly when no other parameters passed in in mount.cifs. + Prefer gssapi header files from subdirectory. + BUG 6176: winbindd -n should disable the winbind idmap cache. + Add a vfs_preopen module to hide fs latencies. + Don't log NDR_PRINT_DEBUG at level 0, this always ends up in syslog. + Fix a valgrind error / segfault in dns_register_smbd(). + Fix build on SLES8. + Decremented by 1 for ntcancel requests. + Fix creation of core files. + Fix first mapping of uids/gids in Winbind. + Initialize the id_map status in idmap_ldap to avoid surprise. + Fix initialization of idmap status.- Only call '%find_lang pam_winbind' in the samba spec file, not samba-doc.- Ignore return value from subshell to fix build.cifs-mountcloud104 1493294400 6.56.5-lp150.1.76.5-lp150.1.76.5-lp150.1.76.5 cifs-utilsidmap-pluginrequest-key.dcifs.idmap.confcifs.spnego.confsambacifsmount.cifscifscredsgetcifsaclsetcifsaclcifs-utilsidmapwb.socifs.idmapcifs.upcallcifs-utilsREADME.cifstab.migrationcifscreds.1.gzgetcifsacl.1.gzsetcifsacl.1.gzcifs.idmap.8.gzcifs.upcall.8.gzidmapwb.8.gzmount.cifs.8.gz/etc//etc/cifs-utils//etc/request-key.d//run//sbin//usr/bin//usr/lib64//usr/lib64/cifs-utils//usr/sbin//usr/share/doc/packages//usr/share/doc/packages/cifs-utils//usr/share/man/man1//usr/share/man/man8/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.opensuse.org/openSUSE:Leap:15.0/standard/ede894f56b1308b3ab19cb6dc1c93ebd-cifs-utilscpioxz5x86_64-suse-linux  directoryASCII textemptyELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=fe62ab4174fb2b2e83d0179df6488e756f8d937b, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=deb2db1c99ea67bbcdbf3e9c111f1413a6d40734, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=edb0ba9963f6458a40a821950900450b096e82ff, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=e974a96594b6c62ae89aec18e9b3fc45763481b1, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=f5093c2771331ac3a4b614ea90cd2cbbfc77815d, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=ea4e766028ba913cdf3048fafac9710c0369efa8, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=b94b0caaceb9e6ea02b50a91e11c3f1d81e65201, strippedtroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)troff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix) $-  RR RRRRRR RRRRRRR RR RRRRR RR RRRRR RRRRRRRR RRRRRR R RRRRRRRRRRR RR]o7nOutf-858df0d02f0efb1a26f023dd2c1f0e267bb21cda245bf08986290427ff5a57ee1?7zXZ !t/] crt:bLL ~'hsIW[앉uTV!L-o"~uZ5"]WKZnathė@tL O~z>x,qCؑtn={%]&L aMh=BtRzuƫ:ϡiM#X]Y6H %/FOxEkg9Gsi}%ȑWOX +^r:ZI$ WH3FN]#r9eV<#%LzX X)Ƿ[0"XT@M% !4d[_Xh=]?MXdp{0FѲ\b+Iw8G[ܒN{׌v7 -_@y K2JGD|r>L]Q}{?E9:˨-߃\$AVB|w糌|jfVض^Q 8<$XRԴ;?2b8%-!VpPG#~=|VeG< ?3"zƜud,"Rr*% rCX6aJJj~THcB{هETeAh@;?#]0S`7\~PtbuÔZ2O{v0}g2N+ݿ柸Pzm=yMД)' Ծ8V< \WUR3z|2a4yFIFe7*+>u](юET^U"Z}Йi8~k0wtB`SϾO;KÁ璿47Jtwjۑo3)_|7V*k !*'ȥmwE:KQ?^og_;`@RM:'>Ns1 (C-{ dQ흀V*%z)x=!oҟr \a,r sFM:Jn!A-_Ĉ{oۅwᵷW\x깹\JMK#+) >I*̅߶!4n֐("Stlb'k#[ˇ0"%t`#äxLE) oÇcuV+7?%˜U )DQDₑQv4AOkbRk=M˚2FיȱrLWn%.}o*R!޴"M>teSIhY\ $Ϧ`kP)nr\e Y3[LTe@o$)\TYuVmu'J&m .=v9.sꕞOSXD5<3E'ݿfHK&mZ0TVtIgFQ[Qy7, N.D싪>Ġ 5rl? dr'5Lߪ?SQCyE#s êuQ GUe i:*tc3]jqG(!<~#Y sx`eGxI z7,to 7BᏚG}gوΈmnϳּ%;gUɶZ4' )Q\ͷT9|X!\!7E/q/ftÃK"!WXmI^U!]uu/w>[nTńru> ZOl`rgf6{Q|kx"7 >A}D-P춖LYd;w4dJ7 e nrAbB]|`" FUQ 9ŗ),MfV|+n'5c[~'{G*%x?qz/VL᦮P3+()Opcqk<,=SYgV]9:ڗgp(by"Uhmw?7֋3#o+q#ӎ[+S<3aU*ZD+:K-*ˊ<#CeCoJcnvg#^OxT'WiȠ{9?,z hW#|q)k5)wO)?j7Q^A++/#aP,zzSZb5;ؤndT;W5yS[Oy1rS* 8w0|Iz5 :\W gMP n _pT,:ݳc9Cp_bŨ믝nfZuq\bFg7; *z[ `SEiz2UNcPz-w[51&u(KlNGz ɯ ]^kQ%zaa F.t(]Jzu#S/E0v30|%nOIpqr'ØNrR(}蛴 ^.]3|ezﴉ@Gڄ y3.Qɱ)8=ZzlMA ')қa _ Д;F:͚65 mVY;p>Ҥl`=%T]."ݟKJF,UUMM0Tf UhU\RH6ۅk-`@{f^Lt'XN'%sEaayc^]p)]ۜwHFw~wL05R4W}aV@Y@!GYƽo%/Xa o8-\Aoa3a풩`͋_͇Hy[ZV6\3!W,8grO*eMymwb:^ɭ)L4G4X˱y6]}BcJ81B=?Q\lїY¥DQ|_* z&#'.-,¤)mOá7G; y$\yy?:&h[AXA;xet GIL2AyG5fq͹e@2\._fdހ`0N0\4.:7XqFFoA͖גhLJʄdRK+qkk;u$- .I'+%E_|![JpD{АRC5G-<*K55ȏ*8SG>g S*0ÀRoI $,1 G j ƙ0i vWK%sǗuP?72u컱N%DVm'=٭.4LNЮiw|LY?M .[%2\lѹˇ8dg +D$~Z. {p(&wOJv.t7Q!5OlYu*6rpqMǛ} /jU=YɌcշ=W w]YEo7/0*O++ UacK9I&} :!u2eV ~g ]Eݩ$ 'B't}>G7ɤ?EICpfqVwFN⸸F˂%)V,uҫ:2Fbà]Frg?0}%ـWe[(`ʰX&ȩ=U񌠃%iD m r` UBGs:T5_>ܵ TU]\f9>ݱUؑ,\pbsVk`ߨQLlc}^'k=uA"3EIdGc]T>G7HaVnD⤁I]cJ1krVS8QN!dVGʨKɊh)x Vw/ u`r > |mY U+ƿ^AK3gNХcg_qz+0Yxq^+9]W$|zI>\LIZ+Iw!?B 2,Q(QA+4&?B{I{ERL^^YbXcf$4AǖU%bwVl9y.w pj~N~f\sac!huBa`ךU*P6 Y˿1e5K&Tu 塎㳊? ΰ}sg"˹"h/$ڇ%~. i<ʥnfh߉8y=LXr5~G:'|[Y?aF3ՁƒJQyS_CV]" Dj|@YLQ_JhjHal!}?sDdT^Da}U{RJ[ EěѲͶN~1cC]>u -l; >{x豸T]PtNKҮYL v[1Y05JEZ P cLC W0٧8,yT;a_aRF*NNjۮ߯ʙ-~ێ'x 0vE#D9ߏeנ^e˗eŠJ$ρu 6φEA5)P>IgyiL+V*^Rc"IC3:Z\zi۴9 JI&D}n(tO;b *~Kjkw vCBTjfđ8!leS(g9αl15>L2Z:˕JC5%^3vr#kXK: *]WD\4M~]"NrD#.\puK 5ۊwA᧒ۄ.wC?ϯ,!F af>˛WJz?J?nt\ZirIÖ6U2+'rDڹD%۔h}[hi Uue<6/xq5Kd%Jl`2Ṹ!`GptXt\qu6?s3k#eTD پt0uVJ .`1CXߴ^YrUDp_Js+uPL&3\@Zn ~ jiqj4 VN}]~r)OxRtgÔl@*s:{˘}.#55=$@x@Ax8o!~^6G5? SO>|_&[JJd ]T³&lN6|SG B?Hjk2Q>u@CnӢˌR-EcBriH`T~/uP;a.gw,hS[Rͳ5E |'q9r K92"f!EI*TY1DL*)Nq{5D6tOM& &o4"%3ߟ.5'I` AKcng<8?>1m%o04|XS8_.5TH^|@oHI,/6؆q"K̨֩ohTe,68Ui"S;49I JqJ ]G n^){4CK4`uAQ~Lc4ZoӗRg. Uv5U?}kN5f17dXDAAEW=GtAע S]?O-Q>}̷yHBOLunZmXĤVٛDb4X!>Cpi*#=+,p@*ٖpe"1^5?Upm('d'bp.GÌpE4(Y@wXXƉEI2>R."aS+a/02Y Ƚ+0\ yݏ?葸!I~ S*Yo؍pA{}j9+W)zy`d-A@}}v>wS4B!-I$քq+\}5Gy`Eu)%#_#|X N`²ء{m,Ѱ&+՟ocqEaшE=&<Uc%S pV.m4e$ORlV;0](/fr f?w nkL.eLN4lGR˞R佣?I]}"tظ8/ᒥ%x9qʦU73+*83h >*&0ѸIA^n-1w>p1KUv^^i`8zgBjrYa,J5/շ4iB1Dl׈R6`lx搈cY<W%J{>kY{-O7uNټ sZrU~.1jDd\,CMě˝\8`8i0`E~sW$^^> ~JulvI02(޼MsKuHɸGuT]+J6C%˶W-Dž%f 8RG'\ue4U]?usg1D8 P؛k3֋_ lc:ypNGm3nA߱ksx`QOK3@-QHę EԮH^*o$ HEZ/[=diQw&쳕at$\Ǩkk9^4$]V aUZ`~A_;iJJ^n&g楏r=m*'+lWWobb/^H5xi۽oΨ5P}@n֯E5)@T0:1.Sw4- )xVfN}#Fg-Igti+Ӎ%ER-*ߒBo ny ;M * $R'*Xҍۇ$k\ARuq~%6%I$#^ V#f= ` zs4>^%h,Nۡ!,e༞{Bq[%ӥf;Rt_!4pCT%Ga@D4\ X 1߅Pdu3 pAD)S%H*Vfp7 I]RlLp͖5g2GFv8gDSEꙺ*\$u&h!^&r&0(&3Z 2-e]c뽗ETe=} 9[y߃u9Z$*0; SضqP2lf<7=$7uE}Lv.j `[@T>{S$z9G5}y#(< AtGyjVf`羑 ƦNHP Wt6ojI7Mnp/I|x# ή#u@03&qĖ>?RP~0U 9xL`bɂ /v-,^R4v(Xq4|rau#Qv3paTY=DFU' XV,+Б'@:ppղ$ֺ byRş+z.a) ^cMo3ɋ)%wNLעV˒k?b+6 +B藻RS&]W}~eYT,Y_=%اIUw:\N(.-Eƈiv!Efa0lcr4)"ֈCDs7M&a%924=N:iͳS_蹀B%DfVq$ Kds@~R{kMT+X["/~:}&gfůLLbƭlSdRg/  ,(ǡHRj476p(P"`~ Ԗ^hab[22`!dκjj\_&kA?N]2'̄vNb Eh)G]vNZ.ٍ}>c(>ĤR,S/'#U sD"Y.]Z:sP!9M=eVr|;]mM3aα[nc>37:T\,/SsF!9,?m/a 3ԟ$xl; j㞮{p itUuPX r+L'9_A~LTx0F}>XjcƸ;(l; gaKՙ+CYٛOVY$Mچ[a9Z~;3eh_t[r9F-I{S;ӭR*-b'PlTL87޿R 먓*(7ࢅ}<5gP2 ڦȸf$$l Y[Vuŷ5k"KQ]6<Ƣhp5*bss'TLnuX"hӷ[c@Snd (սһFGyԼoن|-qC`R7Jte= d{a GʝԿBxs&蟊 GI\UO<n7n~vѴ1L35 "A#Wm\`؁u6 [ 4npүT`{SCUcIZߝ`rP&3mS@\v39C" 2mL 2Q<*Sq&[cQB~Fov}8(%E;xg6Qhl4 \i+"k1#~|X$ӓD)g]l,4pnM_rx²q(ᨤ1Lۼ"xY);רO󐑈Ɉ Wq Sf>?(pK6y iplX1~&@|^ g+LBa^}t;U0(j6_ UUDrEoY Z':T}@͹Լ2S6Y@´lbX-dxE+#fIRM4,$łfYU>Ȯd(J)>EoW S;uz-\0h'.s Kbܮ\zlĜ)H7LcӘhufyP=y|l7FO?>4+~pcnSExAY y1mTh>c@D38~;̑RF=Z>Dol KeUGˇ8?Rm_.]6jQ?48e 7gVX>>19w,YpJ2^f6p6jd Q@뇯xr(_xhX1/N?7B;cnb8(E8z/ϐ ޏգ4/_´3ho$,|v b d ,_pG u\5v\zg͹n7yea溤XXzo 'MS C/23'ztQqW= B::]_ S8u[{C#_Ν)fYM(QMQwTpZGɂNd ޅ~Xf19&5vX W t8d#JXczGzWoң:̴mhAg|u2 e!)!#¾M,1K]Dg7yAA?Ts`MV۾瓊@ 9}Dzz6ys)q.4{vmyuSTou[Te8_TrX,ߤw8h6OQX4Rqv;XbEl ^i&J;"'_9N? II!b$}9ڧ9̈́.XdW-0t~'iPtnN-MZ5z)ncO2\ h0s)u&RP%`f,q P(hcK j,hDؾ^bD˷t=ű V߂anz-QWIz2N+Ww<{F~U *")ToDا^-Gh bF(eju]9+yF5l;{f|މ-ph&dywY%ykimq^BHN+$ O |o Beff)SkmY<ࠎqBzI`r3di1?W>rㅚ1eor#2|g% ,߳~MS2Gkrz#Ym.Q&U\C9 PH F d<}0mV&(Cz=kxL{(2>ڞHMNu<2[U-"Eth4ߧ_ qDO\|!`#@AX0`=']z=l|isIi:ݎeT Zu(#X-)z1&Dd@m&LPNe_OJLi SRxTWH^PƋRϥ +'8@7?]--PhL%?dт.l6D7HB,4*=9x#ԯ'߽[B4Vd /Ejυci7O3 |YEu+ƺNz2({.jc.X09J_E`CfŇ>n oWB<0`/z0-.n~)bvM# `s9$QC#iD _wUzlǸ>rcr0~Cl)zV+k/ ij&җzK?VIݲ3Kw ::|Tӽ(9UȤQ:|D9߈dbn"I^S]^tcIAwD_x+N<9D6iMZڑ!MXGc 3W; BRIUqmG_jkvټk>/poc_Jޥ:>˲GVmihl5]KyLjY`Xb &ژGnlqeϸos-Zښ>v.{ f[|KEԝu>6x3~YR9U-A Ieӣ^7R_+ VA'eip&iպra ⓖS[CYw{b蠀{?/ؔ%MH^\ˈٛ }m(-rK UrJ(ڈ{sR<`"مs. ݣ־T-T؉>^~JK]WFYfxe#`gY}Ѿwzx"VIum[.ql i\e_IJn;w,!ٖ?n?"&~<N,} Z~xLQ%w4RzQ@ȁSzcrk.gKV-tl xd69;DL5fake$MБSȱoe2&/׽"0&'xgz겡ښ$@(xv*76:=9#*uӑ,u<(2!56 xH#Y9U)uq6CD̷[I/W0GRhk3.3 G%9}br?s3[ >IQ ua N׶z /e ER/ce7<ԥ̇WGbd4EiM *sX.e2)t,Cry+B~٥]4aps6H(> )=$̈IZEӓ7 ƍ$8'.GꦟQO:O;lY0!zE;Bןd$j12bKM[s , !L+j!g?ݭ: ~.=cO(1p/品̀[u5=HTN/5onRmWQZ ֺrx-f<M)hm۶q Q"좖e+'Y˧MeӨwJA; +Mvb]5rq~ӇWe/?tڶOS; `M ~&`"+3u}8{O>_3\])jeYcz۱-k#/E @-xhE(D[,?&Kr G+Z5Qlr9hu3y\Ww%1 dfрPamD?Fk:cuE]sVvyt uG2Vj@ ` jT7HH(w}~/?Vӹpt]¹\%U;- iIhX/'G1P8Aaoj1ċ`]C|,$ȩCgE[Be[}k[ ẉp/wN)P)lb#~Q [P[H99CCt?Q3{sTo,,& u/ ̳WJvߚ-Loa:yCsc8wd?lQ'/-M&dJeoڗXoͨ!c^Z 6fƺ~$ ~6(3{-x!V+ ʹԴ0;,Ԥ!ntfo]wΦ.8{aK #b`e9=-:҈B&N+(a7ǤT@j5u|ޥ/f;B??Cٍ3JL={ݍGMB^L*~wl̺Hb b ,*׶x6~9gP]囉!b bl|,@»8JCB?C;V1.)Zҕl&Ď6]d]}B#ۖqY ʨQCJY: /,Q,?7&Kޒv>:8r\y{dNT٪^W K~MLT|)ebm2%xcX<JClz©ӻӠ%,+i$6:oCV?/ʼk;V կؾPn63ͳZ_dDvmwK6$]O#L%v( .@mRL{=Vf'I#`&wshB6Ϻ{:F8 e=p2B%q X L_nzvj}kK!tɂ+}J>ˤaEG/R —)K?=B@'Q,r#V`S-bNPNvXiwxpY-nΏL]|dR-qxXRN" Upn%\5߳Ul44[(n{W#xyy,1ױet~"41]KM( ?[EuGQ2=Prpq$r#P@,7; D&JB1푈)׫(}"[Pj" 9O3{R`Z̵!RN!OC .+te*썓*-GƤvaO~0T9LwvAԣh4XkPe'gUMMnH11Oyԉ~FuWdB)SWdjdb ֲ!B4f{IJo Qv#`:% #m_mjYWxVBDz$Z Lסּ|nTDP/+i8[ kw2w1ػ")T 6d|~#q됈д ePrnҔXz@]ibGd&@/hB>Wr4|϶qJ=p- |f]ޯz) =g ]|} `K\K7[= j_ ڣ*$KόZVp, ;KIOn3$ӫney)wl)т& Ef@쨊 )_~*SjZz#kTS\S',|+0Ǩ=}"<2r2T̻Ph`. {h $d{Lg|ٔT.@xEr oT0'ҚZxV)MkI9l_vͳ]P"k6c3uf$|pq[f4їʗa% ŘdTGߧztcYĿy/d}Q䎔V6z9g Q0 Vdg5 K&j?>3|)wmfrܜ;Qvf=ꢣ+OH֠ю} cj )ݤh M_ ;.αtSçH??T 45fy,^I$*PuB^^T ge>qax7Gp{]<+N-ҫ}Q&7]CDNX@XМ B^~ :"rcy0 <~ ߖJ[*@,++clȎCZ\(c:QvIT ?wK-j)L. =2as#aۚRMJL[TpnA!&xiiC]c i; ?N5~.`; Y/O* HfE쥂VN*b(!K1I禎#~IՐlJc~:;&t>w =!Pu%wJ0+[ƹvZ`> 1}}bi{-P|˫$[ u0bqؐ˅0UzH=lbM^9 t'Ȓ yjR7}6˨ފh6_V/N͕ݘ3+ŨணmKTUnE ɝ.iIJ08LJ;x}`vFpwK}m72x5&K@dfq/}p<}6'ϱeUJV &7Wzrnψo@8O@!L=^IN|?Zv|V=v{ • @2ిHd2Hڰ?=3F^m pr=ջ$yJ2:7o|P1\uY'$晗q}hnfßlԧ9e՛1jUO. a%ga,17H$D 1a8w@8y}Y+s@:8BK [jw,kfr Oڝy^{ *X{$߃|'BW7±h/;?pi),.N$>OGFk3\207Qz3Cz}W޸b gq|w1 i73}6K#ν5DT $kbκ`Ԉ$f`c?vpMqEf[YŬ4\y˧!<fZJ3Ӊ<kܑR`zh>J+;ݸ3O&G|J\َ"~#:sԑ^#:S 8h`xu r-"p3KN*Vd: 8[DMʄrKt<7K=!&8QqEy=<Sz}_xqUaSmWdriیcLQ/wWn[ a m ;#-Aq͸C0Y+_}%%(AEKVt=kF:({ӕTcjO?y2THEeK!fU~5w&Qq7 pV+IcwCy[ _BDP &E9KƁ0]Lsx\ fȺk7 Aغ"%**Oܿ*icSvO948F*D܄/^M7Kᕬ*L4uAbƄ-)%-s\2"٣GS ULMZ-C*H h[ e r{WyNE='e[y53 ]ܛqBYpbHg?AlSs;7Y7],(MIH!#<1^KnFI*ej.V }]x3cҕ]=mJL\OK9+.9̢2:*mK$oIE\}]n!X*I#ֆ` <;9#vMuRQӐtn.02 I5dzCbw{Sŷ]7iuߒ9&_Wr$momաM=Sj3P(T'qhxyxD>.y+mJU*zr˛M3w55"XU߆/t>Ć&J|\>wQ5SHL%] :eb`T:z쒂(`Rdx9tǦkRlm:ϙQhI$F\f_z>Ʃ~&Ϳ}6TcϤF$F;tl7q^?TUbK *3•{m4մ} ɜ ={TS0x@Tӄ ўB8Z?u)XwW48tqߗ6 LCkhMqu˥_H.N~#`4CQ(Vuu/^'%se+D vio)@ o= #\Qtq폙o: ë$QBgX?Y(b&'ϬjL w>9 LʐPL F qANpX ##$&٪Zg'־((A@Ȳ~ p?Ua(zJ:txd᷽!zwc=lp"~m40)b#b@T749 -u~dC./F?ie A'.)!֞;H;+.q dMu ZMIhmĸ:(B^Ļ"IUNګ_-19,# ~.Oв8cwU:>߲n ^1<Јsr))XtL%fSa}rnc+hDI`c8&G9;aZkI$a$OiC``(o'ĢĞ_F͎q3L{328Z%JmrO9H*U0yn\.cκLS+6,b=ʿkiL3#v)dKC5ɰ{Nh"4i0xE;l4VXrqCea&zB k;DߵծdFLXЊQȯ=KܭOZ-uԵ`1X!ŝ;xO ǚ&3rL#ܵȇ*:!;Mk-CSײP?,*[_ETSC"g'k[< ae &RWȦI e?"Ye'QoDҍ0=0ۺ ?xe6e'11b%`5n+IB0*Up3m1(vGm#t?1&IP<Զ/ 0QYRD%$%;cW6KC/uQβ>cX.g^nR=a.{1Y1xscT?i^>OlNhҢTe%t$܋Kp]¼#`h߽xg)H!xa-~Ê1; 8JPD.}Fqvޛ/ב.t/CSH0}ъ|;cJsF?'+ m#^g>L .Jގڈ0?f(՞ܩ14pnݲûr6ߘęI]u9~}܁~$r~p:;z ﱼ9%gQXL{&tp? A3euS8]'H'7O6 JvcB-/cxH{P0yot~Л\&z!-;tYz yV](Ix.AaG>}sk8=<">8HeQuQƣזqYw){69"#Jgu#N.9 M|ĠUO d;." N8e56PwuJ F[쇪kޚud#ʄ5эO]qIAurwM-\ӅD6~u40)I~O VjyRλ\; ̌CvWkL[;=GGvb1m쿉`lUϖL^W,)?2e(vxCxбdxF 09ztzﻜPK2}ʖm X71>@g\ֹa5栿im^g}jk#;lqAì|K:ݿŁ_3n-')7 1=e"gFc1xᄚV #swF1G5 v }<Ēm q(AR,.3+ju9P|czq'=*\ RRC4a*r8Y5e;0¥v%f0D/|`=R7FSh7R]'\naN6'TOЉRbd҅ Kne%a01HaH|b2ti-,uJ^~1ijyNl+ڴg}ۂtSUIY0P@GZ!Xb?Sq:lysר1y/0 T(Oe(1~uBUpGW(R/]f7rwv7c_Kk}KB$jxBVR( ).C*.@`k3$7?>{uRSh`UԔ*E?5#̥dtjVK_OI oW[DǫHgzwD>z\p{g YQbub&7f*%왮?\Y$M]m%?'xRW}Y$(&J2YӲp?nؾfz6Y,^fԆ1Yk=3;I700"|;wc~s?yqj9?ДYbz0!"(WQuZ7˨X_ljU9 ܻQdAJkЃYT_:݅lqky ?9kty{H:Q.(&GݰY픪yu4W,e[Tbv)"w7tG=,ss{gA&nK{q[G.Ũvȟc8:lp^lӖcU>0~eϦ`-B5w shm7Y B ij%M"pr6]*^`[ KѺ $%(D p3EC)]B-' AyS}bJ?fATZ CDtw‹vc2WL9!pӚ+V=> *ÿsM!#6n dRY=[ ,jK̐FDЯuQ,|/t^xmtIddEnmO=maUcpRZ< cuxQ$kh980%XO˶ "TuPS͇9pH5s`Pڡou:Q]m#6 0!3TE 3qEuv=E *\5遦 _|q c9֠Ei{t>7xًZM%cn j#6Ωk{l&DSD*اtɹ)uI%Tx(1L&0SU++s^[( L1#@Tu(, mY\\ٯFXdK )AjN!NŽY@Qbߕ/qTT>/FIX9]-prxǘ2}D"#PBH7j(v;o7,Zsk(4X5_TC;o%j ėruHvɶWūva[Vܝ_]L*c46R`{dSu G.ZoA57,O~PXQgpFy Omw;11sw׳{=~k$xWkTYiN~Znz@>7&zpcBk5 =^f]̑v /cD ?`F U? ΧiҡTw$P:7,٤f]Q;`Z@=.zAhH_* dȐw~K'JqϢ_v/ ExyVD|iǺ,]lH 3?F-@z^㊚/֮X|0B"8_m) ]k#A+9ʐP=bTfuzv4-%oATX -ۤAKU|=ueGlRDfU)Ч +eUGf>$pj*Z4~ӷzNV[P0:ë6 4zX<фbEurMf3(2†"t]Q0}3 In&!x$ y#af? r;Wa .mODPSvcکjiWmFrmra4kB~Զj*xuVzᵤL$tBu~!ZGT9Add:񫆮||[,4iL7YFg:{͐;YH~޳}G\EDAu>5in{BR~J` --ܒH؟dêktY g7ğ.wq~'mS3hFߏFK\)8 }ɭW1 Uֽ%~MBgLBEf}ٖ~y(^zz6ӊ t 3qbͱǹOl/Z6ŦI^[oQ (ҥ6ZOD Q,eY@ St}r[Tl Ta?NS 8M&еO[::>G0VS<Q\ytz$ؾft9ЌA!_7}R"[2/A7˓Qى.Fdr΁%p}Đ,_lZu-3R2P,_i׬,CAVyUG\c=CQE@I,8h0yVNKd3^o(PxPAa8|ۇmĠ vv.vi0|Ӟ$B𒮵VP[\M J4=8?g4涠ER\[Q`Bb du*?[ΒdH#; *s*q ¼3޺9U?%sx\K9`WEB N3Ժ`MF,/l3^zXV5U@c-и'Fk98`;j8nr:O 5֏w3|[' Ho6zi`ԻֱmTT|=l.Ihʧ _%&:MX' }ė_St=ܙa8g 9΄ԙ^v 1 !2C)p8pr'V2 ljYUJn(c&^]R1ONl|˼%B2MIuHx7dB81D(_$W1;U52oxȺD=O*l<Ӆ-s}fÚ0f>6\@eZW_쯄K7-LyTp, QP4I ] fڀ!FIxy /xp7T³PU+(oJnb`"2qV>Gz/Lo?6^rkޅnGs+̶BYo)a" Nψ+<+iU&4B{c!9K޿=\˧.]M)aLzǐ4EWۂ͌A*dU5ZJ!=hN6Jxг(qOv@6 01{a[[RQEI0ı{)ZYco%4_o~H+ fē]MRS>r˗bx"1&]0nAc=!X>6hІC DE>Ѐ/`(ﭘdi6O%Y|%7Zsb5R8Vš̏e: 5G ?j )| ]Plf`[Տ#!pw:FjTl O3܍>T+ƿurF??f9BH{MO齙<̏# ˣ47 ps 2u]18/ ( ];U2 l8qYn9z:VJ~0fs\gҵ؈}Ѻ>0`dB6LD?wbGVnj7a=>t H)&{7ht]\j8LDZk]F-iUX̗ {42NW|Br+(kCe4 ,3tAɇ{07> BQa0yhα#нR("}dh %KkxҾ?{O aWa;gN (c~8fT:< wyw>܊ 3*51=;6AÔ9$su \ TW1SEM[6X}Zqis2FI1Ȧ_!ow{!ESEQѕt9C{GMS.eo7@skbS~I-lF(SqõlTw P|%ee:q(dH,ڍ"[ZOˁBB%z?r%^LQ]<,Jyo=:᥅f:`t6nIVYay޴>0Q+.D\S*)o甇e;lwh:YI_,w;}g$~SS3(4sb! lG6ԕWڻ 'K*D |OntE"YpCE$86~is; tVcda Z}up]@0%7m;|O{CqTڨ''7h ֏S=r;Ʋy+qԐ1kkp_.1&)~QU Uh$'$<6nIY[yȡiF8LJʂ|3g# tL݁w%|e'UDAcᣧG`U8@mMݾ6ҡ//^]S=9I^=H24Bs$#vz!CF}0)urGIks Lh| Qؓ[{ߧG ?A_*B {ͩɦ,f3T,SN!LljmatG!Ls;[խ-E~v䧒V*Q\v-[h%KܢRwWlBk ;#M!zct0+F.eJ~-k1/X^ iA(Fn}+6L PQ '=ziy`%3/ NTY/զv5*NV| GWaxaN.Q|d8/_.2{R2DѝH #r8,#|h[=QPVf^N1#-!#!d3vEֶ?!jtBv*XڙD= !y3ŤBaq5PON&焢1?Z 2ُ@bRfcMƖk#=I;A~g"5g䅽zcƾӴi0(յ3!,7vS0֠t[¸nK9ȏ05C zW([*y!-I~R#7 |*~3s8 XŀZ Z:&P4A1p}CD@DВ2-: $=*nu _i0]:3JezYKIDiS[QO%_gT#jdžj~C_Fi±OkqSWf*-!@7@rSPB]^)B>.FFYpL='V:f:^-i~apktKZ=9F(' ˻ WA^wvV] T~OF $qZ"n@ʚU{G&_(M0xEȚM})n?쫂#M=M"!M`vM%}wZ m!^xrq7D2 |#ٔlQbH"%5? | ᪴6=?F`kߙ7ҝd6p{I,_Vl]0!3i mQSv?V&Biu5{P#>BűPë$X5>"ɯ8oュ;t;K)Gt3C$a)pr['Sn"$h#~ z)Vg@g2Q=^xiEƥTqJƏ2IF.eꝧ(f^L~MrA-te"Y \k.>CQGZNm)i#\xOD crAMl6QJ *+wD.>c,2&~^K ?`DJ^x6~ukA](A8/^S? ʥ> 5A4={rE`݁oR :엷"+.rm~o딓*ٻ=AZ:6L8N,ԝw7iE@e%;ĝրUf%lkf-pVؐRڅB!Pt{&%dM[xF Spڷo?Wٲ~.:* a= д`,)TPp-((n0Y&a\j]q(J}!js|D}C\)dM4z~:Hȫ'my?at>5'-5 T/f gZnB^[|nF2tҳ"b!SD5eU$:oMHu׺[-)b/ `ED5( R Ο턎Vu!  tF77XRAFPKY<'7<_5|/^EyCIF.:hz K2SJ=TNhnp*Z"،G& eUp&α &X6KnnUv&qS2WpyV?V^ ޳0ag7oi=rfb\XL.u= #z;Am*VS,W.+~9}N7D}P I5Y shZph2A7$٪d4!P~ ^Դ{Z5ަm2RzABi@|3*@Ic2W٧x^zdja2ѪOqX(>A=il;,aJ5~ū^h+  ,l^هa&]EiC9hu(q6zl<̼ÎOB01K Y fFSj%"oFmFPilƓd@_"'D·Uӧ}xWPjS4 3.?K 3}yZHV 0Ns TyصI [uފ_)+uDgE2AdZ>s8֚@:IZsWe)mmrϭi?!2GH&UD0F %wOW UOQŸ 6v7VXrUb"I+"66^vf#״]ÛcƐR4he=q̗'rfe~7ں1{,v4-޷Ql2_\ek{Dw/d0&t"bQ)RҞ;ξc*P -6g)W%XQDi3Uw^d,VqF'e}a,rͮ#0gbn)}a_jM }] :U\}J|nyݩ8{l2VmN&!Q2k& ,4I  J*L Cex}02Y%&#v'eCUէn XN ac`<"'=*++%bwB}I5 槩V#R嫞)<,S,zYhRj_I4ȞCMr/fdo%%M75.^ލx+R:d9.ćJle4OziF0eujees\kB.d]O꺖=/Rʥ B326UlBDkSφG7M/xj⏙aS"`?Hfv< =K+Z#KB/D݂wZ?%Q Rأ)gq2E?R!tZiz~]rJDII;Y\Dª}@` tWex ;z**Y`,s\\h)paZˢ未Hl?ÀUD8V=(W&c1;1qI:6'1 QGqA+wI0 JSV+sI/%\iUKRr4а8'lX֘p*.A(HC\|Hw]gac%~> Ve\Moq*$bS26yq, U6E G4S!Wt\:Nr8WӦ57S$8%44'׀=&[zGdVWIc}YiOEң+ɨ6-d''MwgBm{ԝq{ C<1*R5IbJ0Q1l2+_ai, NGb8#lkUe'^;kLsX-ڝȯ)Ltz+*P{|=$E+s6VJ`;8xr}~] tٸDji~dTוK%թo?+`"@!,0JN\Txrm6<"sq<1I>S32Su>47}zk8W5 lRFY΄pxVcU ~z(bÙ6(_)gq%: $v =w V*Y)$^*?)8}-E)c%MY1t@ئ\l2:MaqS:%2s9EG%6>5nN9]5ĪYbuj[jyMI(@,G0af83"=9KI֔nF}O+|;dSc^':@ftf5VzY+,.})<: E˹^(|')dvTdv}i:=Ay&[C13>6T|>.MsjNhڻo -b `ʒ\ܸg͇ Jvj7^<1Iyȣ"c3{::} kj]gJ:ڵIپ)Qq d!CLh;{p %t^ERSFKW71FѶr:<`AhNO`Q\:m6q\WT&5F4|ι ȐFjmߣHAtE&R ^1Z>[>ާӋAT/YYˏcKg*̺M懜갏^|'@7d-ݵ3ܫqNjVD 7jm_MAXp9/Ze N);Maab:S7߾^9eFQ"mG96`;b~ԢCkuz \> V5 C^\7_i\WC$m z[c r)TJrbVXV#%uyHܹcKN ]vCqv m` $b٣`IoE>=SrFDbWH\QRn6 \։yp Rl5Zj'c|ǸGЃ5byrf \\SgUknzwJ-=7p֪Z+pϗ:XU))n a4txq8]w(m.|ڲ=Sj{>_ktC]1^ +vGrQ:[B&׭@T_s?#F9V{C = " Nux%9˚,YxщHkp t5tٛ+K%4'AIݶ8dM'WREBh ZW~1 ]K-c|@Җki۲_ (V%é1O)` 1!r?M'3~_Rr36.6AfƞKSA0*If[+kMZ[R\:=~IFRV#}zYѭs׆]YpSQupp|'>tؤ`pVN: iN^'HP"'x0g 2i_pGN&JԊ3p :#Nx7Q]A{WȽJ%+3#4B(Ls"LeC({࿪^n*7FUx&{W:B#e C8["4c̱ DJYPQ~8\l cX ƮNzxLm'^EƤJN\$=MR0U&5 l`7vԣFWW|s都61FnQ*5P"jdL, 3!(YU=Km?qΩXS,پL?<+}BT鄈x?n[NK]-HTCNɽtu+G'_@?.ؒiMK[̋sP TXS"Bvٖ Ld'|zfPG%ZXԻ۠#U;YMe'^6+"៬J1bֻAY5>ڎw)Q>9'Z_.ŝnSBݙ! DXt3XYؕquw0ef#W&AnK|-ѧ6:.ʉ\hvY#U;4^I/ Q"X$z8&~B8TY"-ZM/V%FVΜ2o&D6cs6XDɤp*ĨE'+.qAp?cUu'"-[Քwܲ6HbC6A݀皌x { Eۤ,P[8:v ePVRl]l4q1> h"GanghKejMR_nD 0^Šy=> :BO#RvlJp>^ӛ㈈| 5!=4qoTǪ.1`v|,U(եZuM̃A2F"z nvîx|9ݧ`w t{b3Մrk R6AްۄJt~"sz TdI!x;Zw.IFsc:(x@Tfl3/Z_.#]2L_zr8D2`?Ÿvu`a(f+Kx^ڔj[ ]N,%#Wg23+RPA8`1!3LPN>%15=}` NddT+66b4{t'>H׹OEbĎ/8 # biճXp!\MY/{GتOp%`'Pd7xQꁧLؖ9 mFZrۙ'ibQ{_+eyXCx~¼C.4xӂ& iq\Í⚒I=ٞ^US[M5^srw. wLTHF2>:x fv Z.Y` ؂c^mUIc/(1lzDT/gHѷio @R{Оq+nqo.9@)W+i "~ye8w'+m" 4z&j-$!F4֕T-ɤY1t=zXpKIv}b6` ^ӹ\!S{@hػW@,J=Ϋ(^NSU iW{eXo*=ܠ}]82hJa%h.Ie .C=zTw -&Z\}5Pfy_ t!^z줓vaびEFC*uBH<ݡ3Jܽ$ԯ]EOpWO.Z2zqveLH[-4`諮`z "'!ΩG5\k.=uK>8ޡhe6/NiO?gZS)[XJqa7Z)v*R LNP1 7+8t4`_UCKĉ뻁ir~ $ӨZ!QPfF XO H b( ҳ %i_U#}5Ɩt9෩gJ;k9LB)W[b v5m#`DfީJrJXFPHf5¯b%76|(ڼQQr Ge?E:΢ZVLȁ鏊XdGZy-ea d=}j% !;KMiH7;tԉp-8*憃:83]!Te`it>y *Qg\r0}6Fa;8PY ltDTt<1?;AL7,r Pǃrk[w2lزyGRWH #K E2"qy:nELdՊЫ];I[!}ᠤa}i*ha!85q欼-N&=T:6a*r BhL|D <寧+8&1'rKޜ*C0uKxBD|Fl9kb`qs zAbQ[ϱ]7B!&ÊO%NSgL݌5a['ʾFH_{ZB".ayٓ]q7?,mVfxU-X҇Law uQ%-QQ|9*lPPD*q_<ҽh Z ӗdf9ŏ~{i6 wɯLyUhO)( YS9c)A*u(ڒ8*VT= K3Q{]flcAߞ/\tr P*4 n_QEG t݄ռ-ҰWea"l`D 2+!rIuֽׄj=#Ci0R(3a;%Aȫ5b(+/JaLxK=?7f'~4B74ͩ9YuBKE~ECތ!2!u:[[0N3oq>I8BlחE,(Tr񑻴 B:qnȪ NN |s'^D"hty m3`Vҧ1nCZ] ꖛfh^ZK>6Lƹ#ZzV~{pWz C_TdP8E{*PJdSi7lHub!7;3ZooAXۡ_Ƞ;Th1D^]MkicFุ&S4n4ox'gJ|mWg#X o3 ܛ 0ɅM^7X=Cv[y)m롳-tmwqPC*laz)chZj ON{t,}dp"rMrJ\F?l K+1- vsK 5dگ߻綼tk>iSD( z%NM(A quu U*rIkPY`R<^݂8 @- &*3@>7/&<օ(J_afe<T^.EFri5ER2!U,zh7`iot$b%NiH;JǤE X秞Ы"ck6qlߙSr֔>FvG'V.e1~-zWVDž'US\Ρ!$ZDVDW]Z_ Gy v.4uhT]줺Ҙ e@/ӽ*9˙ԓWF kI;PS:]ϥSZr4T I>| \٥$[GUGbJ όS5^)dsl +aSy rS*='s JD9 F -|ˡGs> MuG"<е6,`:L]ǭ+"Ko) cj8ϜZU(h;T3@e*1򴐅ƝfQ8E::_Em.T=#eDTk=ӊ!+贳]s{%b7w0ɿزjI]m@NPXH^ a,nzg؅uVZ;`(wm6+8ihl- *򲉰XU~üٌzɊ~W G|h.htUAӟ~"\͵R3i Z!V@Lq7^sH١g]mVbgb._PПn8EMr4;Vzf$sƎ{ih>5h6<4$!Clt֑_\x8bV (=e)k)!gmX儆^C}FYxJ}]jH'<0$̓ݥe?W[ QaUdw9,I --3H yۇR,g{azz퇹_eoj|?R1R_wEʗhy$\6$e=g"`K^/ NfyVS[/` e*35v?y<#W$,[CzAN^5N*Xˉe,юN0"x*Ӕ( h"wvpm/=5wSZf a%*ɐOq$hI.c&t]Grv( jy~ޝDM0ze)CsbD"YsD߼> %. {nvyl*Vv=x=cm$;5yW!*gw~8 庬$|]2P]r$&PioAW`Ok̃^ukB%yIdc,q€5[ kA4XmË{BZĒ泃9>m!;%1ٖјt`~qw+vA7enD@ b} _#X}Is୸ d4`SȈj%X[;x)N[e ɟO>D{6MX`bhzH x-_ /.@GTp_oUBsw錿s&&DI(d̶a7$ CsԳ O7XtZ8] qMKh"šYDswxݘ+Ics NBQa Fp^ර5!Ź! dHh7$ yFE x:3ٹ8 Uiy^љؖ7C:[Ͽcqz2]H-m) ?~GvIP-SVeb|nޛi ^Y5 o$ZxJ>Gfh48ǰeB=5iT]Ɠ c9_kT=yyx"ݜ#֥z%h Kܰ} TD,cog/EOH g.c*L}@=gRLPiKCjs *SY1׌q9@5kY0L.DԒsE3A7?nX=n4yȉDc$*qԅ7o/f7Ro1ʡBdQ-WxѶftBW>¨#.i%T[4{e g2䧏TvObkşb@[|=8r8"r-Δf1ӎU[ 3 6Oj2j\ yP&;n4eШ]T|M89lC܇~eMh 'M?JFkc+'68*8>5W{[8j?tfl)փHh2f` ֟9 tj툀$&rHMRf➪ڦEs)yzz2Y=w!sFf5 U%txTh JUl9^si ȝltƎUnaS۳Y% ۸7QY Jxw 6POc+PM+ M94jKHBNU&jA2ڶu IY>VcQ7ԥ5/6v$ut'EEu%y گ\UXuH%%Rv)I+uQ%:C?].*]Hvi_ffز%R47ď>2l]Z"%+\JYǀgvFN|)QQj}a`F`k\pE}m1Յ Aw(^HzfIg:` XrfQ#$Y`t/km¸$6a`s两. AY-R6YkrZ5'׃>/\ }\Юlt6GR|Aā+,u/`-x:F gZ37T*}+ 'Se D2 ua|B A$.YS qR۟bG#㚵 Aoh dm㣂{7K鍫ޑ ߈<A# {ݕ!PDvCp9aD+3]@#LVT4j@ 1PJO qJ.>PjTdj?"F+ ehQtJ/K̺XJLњE)l*dcMLܹa=׉ 20cN /uU.q$ IrF3cTKDՄeЌlS_}VLNMxvo/TNPT?jȜOYQzAgoL Z:]qlwH&H!Zy@>eiT1OP" t t h@!RDd -.4* G_4`5 NAj΢<JwFҋ^޲q|ِ{LV(G~rSZN]o)df#2-N|ķ(~>VU&տ5 &6wz a(ksni`m*$kd:+"'>MMz|B`NV%4 #=,T= p *c@?{UW, bf_;{ 1mVm=`i3Ņ>J3Ѽvz'D&ӝn&-֣E5Zf&زYzƯR.#U)z\C=N3 .zFzCj8%tuܜc=P.kD"&7oc`U2-|;.pتXyi٩P&T !PEU&ʼXUz:0QҩI{̹)' eIn3 c)xf*cSd] nq|p-t> Weq353SOs ,+P0-O%xt"8bPqβ7P^ hG irqsJDdw`,l;!0c0i8˦(MXAO [xtuiFmyzJ%{CnsBڻ@Kp\}]+:-kxa=٣c@:= %ϖz_zAYB4 -I"#lt idYdΉͶSXp4TQT=䃳^h,7?vE·R3sev{MЪ9x(pVh{` s` $xE{ErT~Ғڧ,[ 1i\><\PwH _e-lP?h#NN:ߐ۸w=\z59Y0c!?kEnz;[Hq_;l7)1dZos˖]z jDM32vWNeHH,;fv/o~\bBr\ =λ+dʊޛxntERƩ~fׇZkİX{(ZN͟LK( @ꋊkty)tH~wHS6+K&Jr-flߟ2O|&L8İ~NRb_. ZUio+Cӑ@R}!@1Ԣ#l2޺6Idgvٙ}l2 pYjV>$p %RTd%sgy'wRK^iPG:hp/x Krhx`F[yo+~Z7G|]Q6 rHwRǏͰ[ԧd҂87@5Һ$Q=6q_^&, P$X+xwV>W`9^3,*x׵ U4zB_AÆ i XmŐx`]H,I~œf(B@ =qr8*zO8IpS,h ON2kO Z~ XfMQ1$m&ߝ΅ ӉcH%V(c(+Jz:?ߔn-!%.iL+hl znsaFxF33yb=e:BL6F4/Y/}~x>> r1 m߽,<qbRG"G1 0$n*c2xD`payA8*55\T=T<ԟ&bF&SQS˕EypJ6Ix l[9kC~;c8bҧ fkc︪`2ރcqpixVؿK8= $u|/HV{qve:0bÅj-}h:fڜJwO;"m7҄8_n^V[.\S(Ts? oƺ`5; Dޑ݈.Az.k悀Gڧ[w_%R(, 4YP@4&D\DT1g&_>R(gJ~EPyف|S[i?<|l:Ohʅq.h۫N̐)E#Z2*2{$;Fb""[ Jtv-0u1Ro?"Eg/}c n 5X[){ifxMw;9Q{J5՚2~X݋ө G|L BI -uC풲UOѻHQ΂(tI ̀ .( ԦKoק4FH?&DR eR9(pDv ۄ( M^1A7N*0;(=#ܕٛ\m6xj~e2:Hdcf?hl{̳ 4rS(GN*s} i?-фR0YV^Ql39sTJE|};+\"eؒ%տaPA ڵ;]whvAhnAU;~\X8Xv^eP2e\1l, T)Gd@͸ΦK{xй|1찔RjXzcdFB g5CtśE Ro>)v*V_YBƬ%YeܟеT߷4.X)=wD(N'`wYzR{R» t p77k~+C=+aͳہ<</X4*hЬa)~1*iۘx.R_4q渻$|u⛩YldlJV;1kP0۟%za<NGfb-~˗,ܵW0G s޲1e&aV/ &3i^\$ǯUţ0Sm~ xa* $rS'eI q/XIrAM%>H|j-y|]sti+Na\viVc콹OMi 4n*}>L<?ˈ.I2' |5Soe4%t79sMYʻÈrkL[.~Bi%=8s|AHe_ U+hCbH_ ocabtàuQْE˨]mXmN׸ ]lᕷKpt%fP\D3 ?%]3,u̬B̼Cc{gKth_*$.dLqO3X3u-Es6œ8aFes@Pw8n&i!3q!(0b !$c5x: 5'5_V1KDyIU9nRgT㔃b!ʋ uWeRr\p?VNт1ZW Ŀ_2eWeWLgUEAzrU 22۶ъ#N2<\\m,ϊPY\t ƳuPS*(n訜,rzO+ cb25]S8vs8A|Ct֮Pl0W rTB֞cWIKC^"pVbLN@8"$-8*f Kp 6bVq,6zAzZM17 yz>4djvp92Oљnʧ˯ꟕÊ6ٴ;:Zjҍ ;m+ȶv>xы钦@|oБ➊zdZe>AE Q),v䋑a];n$Oݒȁs׈'z^+")Lmr٠T[x.chDr 2PA%31QȗebP7 */y1~?xW>OZk#18NZ 'UDPUE TG/CGb7ZlZ.b/pHV¦եs@tvx+ l;ъQ6(dirFSL{oq;cj-45D2Kg"p̐[܀ ٙ@2ia{kx,~ ܳT`Wq~qv&V?N$x˓u&Eȍ -pugb8I1;L)R+"@o09B"Ib9L4fs*b}>S1; ZohoJzJYf}) ,4o s[{ o'qPq$t%}j0I;1+TJ|Ys M"6EK lԼ%;8d]y׈t&͹:iNl[e3$Pύ.x :x܈wng-o/!RE..E^A럡E;H `s4a**P79t]P8[] {?yYKG:(# ZOo`bZ~CB})`=c+7{rS|9a3Nin)$ q.:vAg Mx_R !lQ#/ /eLK6 _;ӊ9crJ;Y~5XS928Cf4K$</GP'9/Xch/6,m1o\2n)&4b$8?[tG9ڭppPMWA`#8 q$H o<̺9񫷵aOBB;ml~y;Ƥrz'r&a,Xy|h\%*SSvu֑U*Kq#d}}׸߿@-$&I7fcn>'&GAiO=|/_vij;U}x G0VǫUZ>OB)lpૉ{vzv(-v1gm@{P5>irlaBrIqs6;A9j'Ψ`x)]h O8D[<$\Cby_m1ovFftFGtrJ#D.#@Vgvr^3W$BZE7ww}T]c1APD U!Z%a`8:}hfdE[c>\58PZXFYZEp+(ߤ̦q]jgkfD,sd-qu/*cś:|~u<5> 43i!?X, rX#.?g}dEfdo'$y>A*bgC*ypgM$=Ekx3br(ŵbrfnmp X^Zb_3<_'>'i{mAFI9b**k GC]'OOh#rjX^^+%"!'ʑR~V6hAӦkz8AyR;.ƒך$,{YtCr&f;10J|_`sDTN"*p2O8ɉDUd.|bԹ<>2Xv=Vihh P#ET7.1u\r,h oFI=ի$("7kx}Z6c)&Kf;E6`3ɅQ2T R ̂="$}]ĉ'Fvy"[&dO}_X.iNJXDvy2ڔsd5F'J!?ߜ|:lw0S};{ INTom֟Q8[ex}\M4$#:m!w,[bq2MSǽ[9w3JAU ";hy)j'uAƹH}anXtQķ qJ@mI`]LESUI{ S< /O`\E[Gd: 3oF.ZSq*[?۸]e8t W? ˗tj%uh{ƖowB$s6[ +3,VH퉤%bB]̑RqSȕ3F1{gkHUpĬHg_x&-+Rc#MSqt{1%>s"ʣ`J[9$+Hg66kٌ̡ ^e-S_Bck^ Nq_ 3 CofE?}ahfg1k%ʊҙyUY2Ro'm'1| bPU{>o'N@ ^^D6nuÊ F7K=6!~Tÿ@e$ oq5˵kIf)ɾ{ՎC=ֶ ¡$# S50a OI%2uƫѪQ_;DVCZW&)%%>.Gh8/:*ĎDPZhAvEJkg_g` O&KM9vG_ bn0Yk/!do _ ?r[ӀrFRt+RRTnހY~lC΀ZPߛ(3s*$ '; S'$nm*u];OE(w"oW"$أ6' ɱ>%[CnK[~ȼ;kQwM|lh~Lݰ}<䜉ldzb}Bq- fH|ZT&.s-NGN<[I!c"F z(tȘy-Lh6وSZZQ" p\ D` %y*4nk^u1 <\ E#Lo}N⣛S1:؃E/r#TL܅awCpuaJ[ǩ9Rʠk@x-uY=3ƈ^N) [#W OĉU e&)x%V I͝:%pzmq2B_er$~4_'TaP!΀eY̖1`=C2)-Mjr` =ۮAgej,p`;+{[¨;6vΗD%:Adx< Z:rEdΟ!nگ6PV?62-s\rd!e^ ]?;|R9iC)V0VDےr+q(EwѴ6&g4#p-G/On#Um3ʬ)"3vcyZxlze,kE ],5\ mAU2Փ|7E4d$"x %E}50 8$@9J!n`*ZMs X*7fϗ[/M8տO% rTNn1luDQIJ14E&>bs9 O15\Ԭ5cR ]DmauF>XVY,! m heXAΚbUaG hDm2òck?{L Dk ONbޙ^ $~ |m|3>WuLu(cXůJL״ԥ$w3N_RhMWY_'_6rlA"[1No'˱3 U Ȥ̈́i=̀lU?f~AXK[hwWFOm}U"⍿-ObEk˒%ڏ]bU62Dż< ?>Szc#Akbz]倻{T q9y %It|BJFeˢ/{CFম3cD},*ͳdǔ`2w|Yؚ!oG"Pf'~EJtŧ4nwuQuBX+XQ.f}|qq^~G}Y(0b MK/+;ZH׭|ⵉPUKt{]up伓$Px,G f\qӳwXJf/^rܥnuɩXG txau1cՙj<;AiV: FE YZ