libdnssec8-3.0.4-bp153.1.48 >  A `!M@eee5ğ]~bN|+vd6mBĵ@c)eg:#̌6;nwp{ywKG׉1ݵawx8*Ñr|+>3ijjkXn$'jZ( }~p_yS6I7uOO/H|pn oI\º+'yU)RluqfXD8rYҼTG>h`)j53ac035c0c1f9d3fea415cab3f0872f9fb1563fcc743c864f6dd6af12dd1d969d4f583258cffbf562520e5cc2856b084853924c8"L`!M@eeeqm6!b>(췩 9Xi x|t.f%6q}޿V1 jÍzz,4dO:X~.0).p@`?`d   B  %6NT\d h l t  H(8 ,9,: !,>]@]F]G]H]I]X]Y]\^ ]^^^6b^Bc^d_Ne_Sf_Vl_Xu_lv_tw` x`y`z`\`l`p`v`Clibdnssec83.0.4bp153.1.48Shared library from knot: libdnssecKnot DNS is a high-performance authoritative DNS server implementation. This package holds the shared library libdnssec from knot.`s390zp21(SUSE Linux Enterprise 15 SP3openSUSEGPL-3.0+https://bugs.opensuse.orgSystem/Librarieshttp://www.knot-dns.cz/linuxs390x(``dd21d34a3113ff9657b31311d0d59cee339a8e6b176c114dcda1faca36088045libdnssec.so.8.0.0rootrootrootrootknot-3.0.4-bp153.1.48.src.rpmlibdnssec.so.8()(64bit)libdnssec8libdnssec8(s390-64)@@@@@@@@@@@@@@@    /sbin/ldconfig/sbin/ldconfiglibc.so.6()(64bit)libc.so.6(GLIBC_2.10)(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.2)(64bit)libc.so.6(GLIBC_2.25)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.3)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.8)(64bit)libgnutls.so.30()(64bit)libgnutls.so.30(GNUTLS_3_4)(64bit)libgnutls.so.30(GNUTLS_3_6_0)(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.2)(64bit)libpthread.so.0(GLIBC_2.3.2)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.1`_@____^@@^@@^@@^@]\HW@\3?@\*[@[@[ݍ[IZ@Z@ZWQYYYXWDB@W1@VwV@V@V@V@VTQ@VCU6@U6@U@U&iU&iTTq@T@T@Tk4Michal Hrusecky Michal Hrusecky pgajdos@suse.comMichal Hrusecky Marcus Rueckert Marcus Rueckert Michal Hrusecky Michal Hrusecky Michal Hrusecky Michal Hrusecky pgajdos@suse.comMarcus Rueckert Marcus Rueckert Petr Gajdos Marcus Rueckert Marcus Rueckert Marcus Rueckert mrueckert@suse.dekbabioch@suse.commrueckert@suse.dei@marguerite.sumrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.detchvatal@suse.comondrej@sury.orgondrej@sury.orgpgajdos@suse.com- version update to 3.0.4, see: https://www.knot-dns.cz/2021-01-20-version-304.html- add incompatibility warning about 1.6.X version when updateing - rename back to knot- version update to 3.0.3- version update to 2.9.7, see: https://www.knot-dns.cz/2020-08-31-version-296.html https://www.knot-dns.cz/2020-10-09-version-297.html - obsolete only pre-2.0 version- remove rosedb conditional as lmdb is required in general now- replace conflicts with Provides/Obsoletes- fix dependency: python-Sphinx -> python3-Sphinx- use upstream example config file with correct syntax- version update to 2.9.5 - Bugfixes - Old ZSK can be withdrawn too early during a ZSK rollover if maximum zone TTL is computed automatically - Server responds SERVFAIL to ANY queries on empty non-terminal nodes - Improvements - Also module onlinesign returns minimized responses to ANY queries - Linking against libcap-ng can be disabled via a configure option- version update to 2.9.4 see NEWS- version update to 2.9.2 see NEWS- update to 2.7.6 - Improvements - Zone status also shows when the zone load is scheduled - Server workers status also shows background workers utilization - Default control timeout for knotc was increased to 10 seconds - Pkg-config files contain auxiliary variable with library filename - Bugfixes - Configuration commit or server reload can drop some pending zone events - Nonempty zone journal is created even though it's disabled [#635] - Zone is completely re-signed during empty dynamic update processing - Server can crash when storing a big zone difference to the journal - Failed to link on FreeBSD 12 with Clang- update to 2.7.5 - Features: - Keymgr supports NSEC3 salt handling - Improvements: - Zone history in journal is dropped apon AXFR-like zone update - Libdnssec is no longer linked against libm #628 - Libdnssec is explicitly linked against libpthread if PKCS #11 enabled #629 - Better support for libknot packaging in Python - Manually generated KSK is 'ready' by default - Kdig supports '+timeout' as an alias for '+time' - Kdig supports '+nocomments' option - Kdig no longer prints empty lines between retries - Kdig returns failure if operations not successfully resolved [#632] - Fixed repeating of the 'KSK submission, waiting for confirmation' log - Various improvements in documentation, Dockerfile, and tests - Bugfixes: - Knotc fails to unset huge configuration section - Kjournalprint sometimes fails to display zone journal content - Improper timing of ZSK removal during ZSK rollover - Missing UTC time zone indication in the 'iso' keymgr list output - A race condition in the online signing module- update to 2.7.4 Features: - -------- - Added SNI configuration for TLS in kdig (Thanks to Alexander Schultz) Improvements: - ------------ - Added warning log when DNSSEC events not successfully scheduled - New semantic check on timer values in keymgr - DS query no longer asks other addresses if got a negative answer - Reintroduced 'rollover' configuration option for CDS/CDNSKEY publication - Extended logging for zone loading - Various documentation improvements Bugfixes: - -------- - Failed to import module configuration #613 - Improper Cflags value in libknot.pc if built with embedded LMDB #615 - IXFR doesn't fall back to AXFR if malformed reply - DNSSEC events not correctly scheduled for empty zone updates - During algorithm rollover old keys get removed before DS TTL expires #617 - Maximum zone's RRSIG TTL not considered during algorithm rollover #620- seems we no longer need jansson- limit geoip support to opensuse- update to 2.7.3 - Features: - New queryacl module for query access control - Configurable answer rrset rotation #612 - Configurable NSEC bitmap in online signing - Improvements: - Better error logging for KASP DB operations #601 - Some documentation improvements - Bugfixes: - Keymgr "list" output doesn't show key size for ECDSA algorithms #602 - Failed to link statically with embedded LMDB - Configuration commit causes zone reload for all zones - The statistics module overlooks TSIG record in a request - Improper processing of an AXFR-style-IXFR response consisting of one-record messages - Race condition in online signing during key rollover #600 - Server can crash if geoip module is enabled in the geo mode - changes from 2.7.2 - Improvements: - Keymgr list command displays also key size - Kjournalprint displays total occupied size in the debug mode - Server doesn't stop if failed to load a shared module from the module directory - Libraries libcap-ng, pthread, and dl are linked selectively if needed - Bugfixes: - Sometimes incorrect result from dnssec_nsec_bitmap_contains (libdnssec) - Server can crash when loading zone file difference and zone-in-journal is set - Incorrect treatment of specific queries in the module RRL - Failed to link module Cookies as a shared library - changes from 2.7.1 - Improvements: - Added zone wire size information to zone loading log message - Added debug log message for each unsuccessful remote address operation - Various improvements for packaging - Bugfixes: - Incompatible handling of RRSIG TTL value when creating a DNS message - Incorrect RRSIG TTL value in zone differences and knotc zone operation outputs - Default configure prefix is ignored - changes from 2.7.0 - Features: - New DNS Cookies module and related '+cookie' kdig option - New module for response tailoring according to client's subnet or geographic location - General EDNS Client Subnet support in the server - OSS-Fuzz integration (Thanks to Jonathan Foote) - New '+ednsopt' kdig option (Thanks to Jan Včelák) - Online Signing support for automatic key rollover - Non-normal file (e.g. pipe) loading support in zscanner #542 - Automatic SOA serial incrementation if non-empty zone difference - New zone file load option for ignoring zone file's SOA serial - New build-time option for alternative malloc specification - Structured logging for DNSSEC key submission event - Empty QNAME support in kdig - Improvements: - Various library and server optimizations - Reduced memory consumption of outgoing IXFR processing - Linux capabilities use overhaul #546 (Thanks to Robert Edmonds) - Online Signing properly signs delegations and CNAME records - CDS/CDNSKEY rrset is signed with KSK instead of ZSK - DNSSEC-related records are ignored when loading zone difference with signing enabled - Minimum allowed RSA key length was increased to 1024 - Bugfixes: - Possible uninitialized address buffer use in zscanner - Possible index overflow during multiline record parsing in zscanner - kdig +tls sometimes consumes 100 % CPU #561 - Single-Type Signing doesn't work with single ZSK key #566 - Zone not flushed after re-signing during zone load #594 - Server crashes when committing empty zone transaction - Incoming IXFR with on-slave signing sometimes leads to memory corruption #595 - Compatibility: - Removed obsolete RRL configuration - Removed obsolete module names 'mod-online-sign' and 'mod-synth-record' - Removed obsolete 'ixfr-from-differences' configuration option - Removed old journal migration - Removed module rosedb - changes from 2.6.9 - Improvements: - Added zone wire size to zone loading log message - Added debug log message for each unsuccessful remote address operation - Bugfixes: - Zone not flushed after re-signing during zone load #594 - Server crashes when committing empty zone transaction - Incoming IXFR with on-slave signing sometimes leads to memory corruption #595 - packaging changes: - enabled geoip module: new BR: pkgconfig(libmaxminddb) - enabled cookies module - enabled queryacl module- update to 2.6.8 - Features: - New 'import-pkcs11' command in keymgr - Improvements: - Unixtime serial policy mimics Bind – increment if lower #593 - Bugfixes: - Creeping memory consuption upon server reload #584 - Kdig incorrectly detects QNAME if 'notify' is a prefix - Server crashes when zone sign fails #587 - CSK->KZSK rollover retires CSK early #588 - Server crashes when zone expires during outgoing multi-message transfer - Kjournalprint doesn't convert zone name argument to lower-case - Cannot switch to a previously used ksk-shared dnssec policy [#589] - update to 2.6.7 - Features: - Added 'dateserial' (YYYYMMDDnn) serial policy configuration (Thanks to Wolfgang Jung) - Improvements: - Trailing data indication from the packet parser (libknot) - Better configuration check for a problematical option combination - Bugfixes: - Incomplete configuration option item name check - Possible buffer overflow in 'knot_dname_to_str' (libknot) - Module dnsproxy doesn't preserve letter case of QNAME - Module dnsproxy duplicates OPT and TSIG in the non-fallback mode- Update to 2.6.6 - Features: - New EDNS option counters in the statistics module - New '+orphan' filter for the 'zone-purge' operation - Improvements: - Reduced memory consuption of disabled statistics metrics - Some spelling fixes (Thanks to Daniel Kahn Gillmor) - Server no longer fails to start if MODULE_DIR doesn't exist - Configuration include doesn't fail if empty wildcard match - Added a configuration check for a problematical option combination - Bugfixes: - NSEC3 chain not re-created when SOA minimum TTL changed - Failed to start server if no template is configured - Possibly incorrect SOA serial upon changed zone reload with DNSSEC signing - Inaccurate outgoing zone transfer size in the log message - Invalid dname compression if empty question section - Missing EDNS in EMALF responses- update to 2.6.5 - Features: - New 'zone-notify' command in knotc - Kdig uses '@server' as a hostname for TLS authenticaion if '+tls-ca' is set - Improvements: - Better heap memory trimming for zone operations - Added proper polling for TLS operations in kdig - Configuration export uses stdout as a default output - Simplified detection of atomic operations - Added '--disable-modules' configure option - Small documentation updates - Bugfixes: - Zone retransfer doesn't work well if more masters configured - Kdig can leak or double free memory in corner cases - Inconsistent error outputs from dynamic configuration operations- update to 2.6.4 see /usr/share/doc/packages/knot2/NEWS- fix tmpfiles scriptlet- package /var/lib/knot - run tmpfiles scriptlet during install- update to 2.5.3 see /usr/share/doc/packages/knot2/NEWS - use libidn2 on TW and 42.3 - following modules stay static: - dnsproxy - onlinesign - moved modules to shared building: - dnstap - noudp - rosedb - rrl - stats - synthrecord - whoami- update to 2.4.1 see /usr/share/doc/packages/knot2/NEWS- update to 2.2.1 - Bugfixes: - Fix separate logging of server and zone events - Fix concurrent zone file flushing with many zones - Fix possible server crash with empty hostname on OpenWRT - Fix control timeout parsing in knotc - Fix "Environment maxreaders limit reached" error in knotc - Don't apply journal changes on modified zone file - Remove broken LTO option from configure script - Enable multiple zone names completion in interactive knotc - Set the TC flag in a response if a glue doesn't fit the response - Disallow server reload when there is an active configuration transaction - Improvements: - Distinguish unavailable zones from zones with zero serial in log messages - Log warning and error messages to standard error output in all utilities - Document tested PKCS #11 devices - Extended Python configuration interface- update to 2.2.0 - Bugfixes: - Fix build dependencies on FreeBSD - Fix query/response message type setting in dnstap module - Fix remote address retrieval from dnstap capture in kdig - Fix global modules execution for queries hitting existing zones - Fix execution of semantic checks after an IXFR transfer - Fix PKCS#11 support detection at build time - Fix kdig failure when the first AXFR message contains just the SOA record - Exclude non-authoritative types from NSEC/NSEC3 bitmap at a delegation - Mark PKCS#11 generated keys as sensitive (required by Luna SA) - Fix error when removing the only zone from the server - Don't abort knotc transaction when some check fails - Features: - URI and CAA resource record types support - RRL client address based white list - knotc interactive mode - Improvements: - Consistent IXFR error messages - Various fixes for better compatibility with PKCS#11 devices - Various keymgr user interface improvements - Better zone event scheduler performance with many zones - New server control interface - kdig uses local resolver if resolv.conf is empty - new BR libedit-devel for the interactive mode- update to 2.1.1 - Bugfixes: - DNSSEC: Allow import of duplicate private key into the KASP - DNSSEC: Avoid duplicate NSEC for Wildcard No Data answer - Fix server crash when an incomming transfer is in progress and reload is issued - Fix socket polling when configured with many interfaces and threads - Fix compilation against Nettle 3.2 - Improvements: - Select correct source address for UDP messages recieved on ANY address - Extend documentation of knotc commands - drop knot-2.1.0_pkcs11_check.patch- enable libcap-ng- fix configure check for pkcs11 support: adds knot-2.1.0_pkcs11_check.patch- fix soversions- update to 2.1.0 - Features: - Per-thread UDP socket binding using SO_REUSEPORT on Linux - Support for dynamic configuration database - DNSSEC: Support for cryptographic tokens via PKCS #11 interface - DNSSEC: Experimental support for online signing - Improvements: - Support for zone file name patterns - Configurable location of zone timer database - Non-blocking network operations and better timeout handling - Caching of Critical configuration values for better performance - Logging of ACL failures - RRL: Add rate-limit-slip zero support to drop all responses - RRL: Document behavior for different rate-limit-slip options - kdig: Warning instead of error on TSIG validation failure - Cleanup of support libraries interfaces (libknot, libzscanner, libdnssec) - Remove possibly insecure server control over a network socket - Remove implementation limit for the number of network interfaces - Bugfixes: - synth-record module: Fix application of default configuration options - TSIG: Allow compressed TSIG name when forwarding DDNS updates - Schedule zone bootstrap after slave zone fails to load from disk - avoid activating the intree copy of lmdb- update to 2.0.2 - Out-of-bound read in packet parser for malformed NAPTR records (LibFuzzer)- split out shared libraries, knot-resolver uses some of them and atm we are forced to install the whole knot2 package.- lmdb seems no longer optional- create a new branch for knot 2.x starting with 2.0.1 - Bugfixes: - Do not reload expired zones on 'knotc reload' and server startup - Fix rare race-condition in event scheduling causing delayed event execution - Fix skipping of non-authoritative nodes in NSEC proofs - Fix TC flag setting in RRL slipped answers - Disable domain name compression for root label - Log via journald only when running under systemd - Fix CNAME following when quering for NSEC RR type - Fix refreshing of DNSSEC signatures for zone keys - Fix binding an unavailable IPv6 address on Linux (IP_FREEBIND) - Fix infinite loop in knotc zonestatus and memstats - Fix memory leak in configuration on server shutdown - Fix broken dnsproxy module - Fix DNSSEC KASP timestamps parsing in strict POSIX environment - fix multi value parsing on big-endian - Adapt to Nettle 3 API break causing base64 decoding failures on big-endian - Features: - Add 'keymgr zone key ds' to show key's DS record - Add 'keymgr tsig generate' to generate TSIG keys - Add query module scoping to process either all queries or zone queries only - Add support for file name globbing in config file includes - Add 'request-edns-option' config option to add custom EDNS0 option into server initiated queries - Improvements: - Send minimal responses (remove NS from Authority section for NOERROR) - Update persistent timers only on shutdown for better performance - Allow change of RR TTL over DDNS - Documentation fixes, updates, and improvements in formatting - Install yparser and zscanner header files - Improve lookup of libsystemd build dependencies - Fix compilation warnings in endian conversion functions on OpenBSD - changes in knot 2.0.0 - Bugfixes: - Fix lost NOTIFY message if received during zone transfer - Disable fast zone parser when compiled in Clang (workaround for Clang bug) - kdig: Record correct dnstap SocketProtocol when retrying over TCP - kdig: Hide TSIG section with +noall - Do not set AA flag for AXFR/IXFR queries - Features: - DNSSEC: separate library, switch to GnuTLS, new utilities - DNSSEC: basic KASP support (generate initial keys, ZSK rollover) - Configuration: New text format in YAML, binary store in LMDB - Zone parser: Split long TXT/SPF strings into multiple strings - kdig: Add generic dump style option (+generic) - Try all master servers in multi-master environment - Improved remotes and ACLs (multiple addresses, multiple keys) - Basic support for zone file patterns (%s to substitute zone name) - Disable zone file synchronization by setting 'zonefile_sync' to '-1' - knsupdate: Add input prompt in interactive mode and 'quit' command - knsupdate: Allow TSIG algorithm specification in interactive prompt - Improvements: - Zone dump: Do not write class for SOA record (unified with other RR types) - Zone dump: Do not write master server address into the zone file - Documentation: Manual pages are included in HTML and PDF - drop patches which are included upstream: 0001-loosen-openssl-dependency.patch 0002-make-configure.ac-compatible-with-old-tools.patch - also drop all buildrequires just needed for autoreconf - new buildrequires: pkgconfig(gnutls) >= 3 pkgconfig(nettle) pkgconfig(jansson) - create devel subpackage - enable rosedb and bash completion- local state dir should be just /var- enable dnstap support for factory and newer: - new BR: protobuf-c and libfstrm-devel - prepared lto support but not enabled yet, still need to find out which distros support it- update to 1.6.3 - Performance drop for NSEC-signed zones - Proper handling of TCP short-writes - Out-of-bound read in zone parser for long domain names in origin (AFL fuzzer) - Out-of-bound read in packet parser for TSIG RR without RDATA (AFL fuzzer) - Out-of-bound read in packet parser for malformed NAPTR RR (AFL fuzzer) - CDS and CDNSKEY support in zone parser - Add defaults for TCP config options into documentation - Detailed error message if zone reload fails - refreshed patches to apply cleanly again: 0002-make-configure.ac-compatible-with-old-tools.patch- update to 1.6.2 - Limiting number of parallel TCP clients (max-tcp-clients config option) - Ignore refresh and transfer events on non-slave zones - Compilation with Dnstap support on FreeBSD - Possible file descriptor leak when terminating inactive TCP clients - refreshed patches to apply cleanly again: 0002-make-configure.ac-compatible-with-old-tools.patch - moved autoreconf -fi to %build so it wont be tried in quilt setup or similar tools - move up the %if case for systemd in for the preun scriptlet to avoid warning about empty scripts on non systemd distributions. - used xz tarball: new buildrequires xz- Add deps on the docu packages to regen documentation - Enable systemd integration fully - Add dep on libidn - Cleanup with spec-cleaner- Only require lmdb-devel on (Open)SUSE 13.2 and higher- Updated to 1.6.1 Bugfixes: - Journal file would sometimes outgrow its set limit - Fixed incompatibility with OpenSSL 0.9.8 - Proper handling when machine hostname cannot be retreived Features: - Support for DNSSEC Single Type Signing Scheme - Compile with lmdb-devel to add support for persistent timers- Updated to 1.6.0 Bugfixes: - Fix zone expiration when AXFR/IXFR is being refused by master - Fix forced zone refresh on slave (knotc refresh -f) - Persistent timers database opening after privileges has been dropped - DNSSEC: RFC compliant processing of letter case in RDATA domain names - EDNS: Return minimal error response for queries with unsupported version - EDNS: Fix interpretation of Extended RCODE Improvements: - Maximal size of persistent timers database increased from 10 MB to 100 MB - Added logging of persistent timers database errors Features: - Persistent timers for slave zones (expire, refresh, and flush)/sbin/ldconfig/sbin/ldconfigs390zp21 16214202213.0.4-bp153.1.483.0.4-bp153.1.48libdnssec.so.8libdnssec.so.8.0.0/usr/lib64/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protectionobs://build.opensuse.org/openSUSE:Backports:SLE-15-SP3/standard/884836b1a4afb40fb5c10fb259e90026-knotcpioxz5s390x-suse-linuxELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, BuildID[sha1]=41a2a0168002ff724ba3d24ae692ca66e7040ec6, not strippedPR R RR RR RRRRRRR RRIu5%Mdnutf-8010eccfeaace8bff04cec8a79a88484d1704a4fd6f8be5c617d9a2594abe9eb4?7zXZ !t/ӽ] cr$x#R}PAəFf|r=|{j[c>ցT03R<8c`u5oL}}$^+}ap‰(~XJensu_?s.B҅#<SM?#itc>vL%$̱n:sl9ǣ#xBx gaԴѯ`N$AL7|T,Ɣ6$gVª1/Uln o} mO.p4?VnJ6?*{"S,p\e.DX83Go?쁓ê(y_ q7ɠ_Q&B߿M7 xz$QXi|aGOJ8,],o݃<֩ ^΁En3-V8bVhKuike-6tCUtą&~۠oS`/-[s5쎣Bߨ S<.8ȂK 5.6^tI E؋-vVeuv wf+0|Lf; T د/]ʞl|ll ѽܴ4Z(ss !Jb0hQ0xgkS6_2+KDnjr^VyBsC{CMe^؄ज़a⚩l}į>J8c,?u agLN o,mO #iq´rĖE Z)>M,3rrAq 4LQ6"^ʹIL䄑@$|SPe ;I)0ZW}n@1ߡ5Ɛ-~G^Y&[]Co#,'] 9ZЎxV(ͳ k{ b$*"j`? 0>2? ! Hv_D*ifizs7J0hNGTrSnҾPQ,b;HxB y<9iQSS7>4 _:Jt>mlzڹCs-~Ntn`v`)4}}-j+Ȉ| 7Y>.',+/uC D'( I4hݐ]#\؀'`[} Yx2h%%I|+$Lr'O0l F:~՛ei)V#VO夯mvF0*/pȶ B\|d_Тzʭ6}]ϵѨ7Q Er$#J`1+|G:˪DYr 1=4"Ias(Y6s_+^ek-oV^Q?LY?#N=>Pmsүr1.qx7QfA[~SGO.Da7t%kez.EՙO^ƙ'8[y$$ Yv>6r&*-ɋW-3CH$PM F%IO'u.&4%w`-yNVa#WFj'L 6O(qSS8F*sx/G/9fLH\fg4 O/󕉸B 2Aws30:d OAwq Y}˫1׽g*kSPo(aw0[fL ҝ-ݦwɌY6[1Xt܉feWu+ u,,Y "ĺ< 9zmJQ.5?S1#9DINI ײfD۷}tp+]=`M} TG*5q!9B }H8tfZ[~!Zxͯم<" =0E(́gTΧ v0bY=[%^1SM~ԏAgvvVYՑxv}OYO^gh,^G-=_] ;[p1w_ho-3`L](ӟ^fky;u xL{?֤ -SSE=ywku81K9(Iz*HRM¾1p,o|ڛ*KbUm8T, C@:\!Pz[&6ǖHN6.0 7dVU'xqJ2Zv⫽.k0PH,id)]~>sK rxn*GuTPswbp!J&\7$p (lxޚ`~&z5:orgQ*SCuc0(F5p MR ~]aEq,R#h5 Ȣd$!Uuw!Ak@g|얗NJ݀b1ǭT,FEM Q/o55^6wc$Shnv4Ta xl ?S:h㚠ܓG-tesybcaOl\µWV>XeD"*y/ =^A|DDvx^di_,W(Q "}#[(|jVfǬҌ:}[ԗ4u|[i68nQ)'rhAK`]k}x:0@dZ=.d4D )Ҽn|A]6mH,)юX@y Y&L=aߖ b}H@[ʺub2}^BeZ#K:Є=#$U &'%Yܼ>=wyCF:+OJ,1TKJ oVrB`7Hsmafw>IFHeXB5.a.WqBm hgf;l-ic8 @I0P7`*Өd*uEHX-t؆k>7d1/ID0ee)c/*+sJ7z"O}#!0'VyGur1?g>`aUioI0(w$eB/~3P*Y(+,=R/@0#624'EP?( xn^jv]'ͳ[?v2.`tx{+vKhO;?3 }۞Q䫷Q5e;_ s*ncy|۴| 0 dAF#4ZbܹgQRdW =igdEJ&Q=AtӦ5N*3Np.+9'k9< |# u| pbb|@/_`>b`0lR%`]SKK#A"yk8  .}6B]=%t&\[MKp*O."qnW-ق:bC֘\+%r䶏 aZRZ\r>GA/Hй*j= pa8؀W$ՕoᠣŸ6~;V9ۙ)fil^u23=C EA>W%΃o/f0n٘O[e j_m@X!9',|>6Z F}+,hbL>c:_N[xphzYIzڅ xL4`> @|l '̌ce.1]ނh5U1 3WހM3iH(IN[dx(f.d7:!Szѽ<" 1W6Ȝ5 7v^9 8w1`٪NM]]ғMPS;ZWVl:K8 +, . =77Sׯ+-JW͆'.x0UsMԘC@NR`8aLC2 }FbWk~>mS[s?0Β&$"1wXV6A˅VG""^zQȠao66m|d`-DHcݵ6a~wͯɠ!\`̐ӓ'5)i9H//Cr@)6`rdAhVh{C9?46BR] DUY0jw3鸚);۾>C^Ú61{ }=ƳFؓbPQH pC((sB.BK[Yo1?o "- 1i̬* ӟvxe4l-aٸ{NT:{&*W]d`cF#e 3  ~BJ嫁ln>aӚTY`YlO1v}`ˍ-ȑ9{(g*3pwuMX£M~j?@ˑ ʼ$} 8Wk,_Z6M<~P }=̲Ø++ 2dj>IгihaC?P(Xzpح8yO }AIe2|%8N ݶ! #S LBpʶ)8m]mHC/Juv#ƞ{["5l9ڇ3BxTfGWsa @j{2|xO }U\!<7ٌ_hAK_BI'{b|CMSmXAGavL iḄ/HBQ YM`4 g.w3ƝG* P^X.ݎ>ȝ|g~,fX[8ף@cxoIn 3lO!_&I=+\%?1^@K{Hq΀wOlvEL4*H)iˎ`]ڟ:!x>y dz/;˦PYm﷼5ks]0zyN'c{ *X;"$&eT+%mԞiԁ+ގ:L-f R-G1H MicWXnဨLRf}(ܙIy8~3(|`TB̖g@ɫF6a3Mխ?aTJewԭyW֏N3g?M#A?L:%\,Ec{[fR3FJ"T,1H1Cշ~SiPTIF9{LPL-[kaD :2=oW;i|P[J>į1C\+X?uReZtt}ꮜC(~ӹOB51NrPޯ>g8-ߥvsW*ꂞlrс`2<_%9\/,JleҪ&a-lNEi=>r@w@͂*#?3D*rެCND^4ͷ})c1M̞.oJt$m"Jj}f܀ը/sI{EX_uqwXxۖWƸ1,\9 w߬ǠY!z9 tU])-C2Ϗp2ٛWއcV9C` PkD1W(e,͜u_tDMPY_$e .HNtjBAv rQEذT I fhڱxIɪ/8{z<˳tsLaapⱻ&}dA T!46Xi7O1X_;[(c[PѐVz.nIߜ }Jx я?O4(#5cw[7EΐLqR;M=Y:`E V܅%oRJfln͝|UMt9ǑFZEw,>y|&EueI4Gy_B+޸u+-"z (I1bɈio/,4ey_ź+6-2/%NAjs#`Eb^)ЇπPГ2g|$|,;sM؃i|֔fC:# 2T9޿?j C+._ouܲK)ia.0UA^Wmi ʄv=V T aNϡ:ͺxR+|gS=K [ B~iR1&q+u~62& B)R=?3_Jxqt 瘆,p?:C7jc m+f05BFzKcu: zM7ޡ.6T|Bl&cdɁWfBNi ǯXn ΢ׅt; Y%&yQQEZ ,jm[}38pVEzWe 5[1{'-NnÅg#5W~.7X!.LŽĝ8HS&뺡GIeh*cN_h R:ي̉ Z+S qHf _.T^Nb(F=tZnr/R%|/qAbsVG4@&5 #au)} ҎTK8!FPjw h&|ɬCTyi+c(t4QF? lzB Ɇ\&&KbLON񙴁+\LĶz6vV{~z9Nc5`FmL(}$-1_hJ[oH Zr+oCHvSgm2ͯVZE-ƔCstqV%n~5\R%@ǀHmʜ9S_jX%^w :wI9*8SN}P7Y>˖\5R ш,:Ϡ8S%|#ǚι<{}ĭer,Cڶ!w^&Bij |εؙHmh+RlAcY::|#~8Ō?W/]Em%ZG,Y He !ϑmXfDn nP[fS,Ηfx^c|v+!b0}{E^sס5tI)?}&pix$Y{ #xXbLe[erbOSH(o^kU Ogix3fg;PM{(prZz՝G̺\US N`6#(@na\{bEpL!*`2 v hhccDɽ^AB(,,޺hոphQ@Av -6q\2#.#nQ@yeax`py~ HYܖL^"hi/*ŏb _mt!x90#?ϱ=;wFSu6B%*eJ>%H;Yj N9OYuۄo@IԅS^H'r1=d;=C/m{i\]׵o ɝT q!i#$r,).U3L vX㎲LA )Ażv4$/_Zؓ`sSQ;'*6 V)7`\H /)Ò $rs@ l==#_/hǵ'^\V]B,+MluIK݇#w،^H/Y^7 /`i2tIǞqvA3,',IߵӜo9-*|K`m`W2Hbt7ğű_i.l"ٗkKEPtD U]Teŀݽ{n"|>[h=SNjmԕ̣Hf{mҝկr(dY3A+?wб?CO6u&zy6| ΰ_:'Z%gSLQDŽ;D(4HR I t J#P$ !j]@rUu:!i^ H7uvx`W‰&OC׉dJ8G\JB/h+rDE6!I9}_ w Yg">-qG~h>q73b|~yT=pLA7vTJShZ1!KgTu"ۚ‚S>&rt,'xs< H|c# 2d,wcә Mu,qwY8@d Pt`7a3/_ţxa3=nƩ05T~ET?`]e&e}xg;pXRYN҇IJڒZ(Π| w{*T1ex_ 7&m0h7jF)YF=_ތʴawt=gs^`# ngƪyXF! t2NAپ&qvcd]Rnw#JK0Rm̞o7I%*cZv]i~^jl e& Sbb۶ͱ ^eoa='{~9ʐq )9MޙNm(ZۀiEWxIerSФ4䊋VS195Y&1ԧ.p.,W?]gǘy\/ӣeD}_O:/0ȡrRϦ+hB{ޒz@uc6U'FҊQ.#j6CM]:^c)-7\_#X!MWT]ІC| ~'fiZ:ERK /G\ZO~(KAjy_~HuR J8WLѤk0*2>벲]v2[BնWh? WjHF̆!FNBl93[q:4ER)s n;&yMP 4zv8HbGfZ3Gx^-:LR_攤 P %\Ulk67SBZ+?z֦ŸK R'͡v 2E#;Wpp z~H6Kl7ΘWwOSuN?_(KΔN$*Jeit&?ymPu&"B[;!&w) B-R U]sAi[ƌ6yPWx2+2i0U*Nq.CH!sфhp/8ȂC&ȑKb˪TڤEÆa?m,W%&%]L`X4/7+cm"=^1ٓN&_dc= y=jJkN¢[" B 2@5W2iK([H;M 5}ddo{kv/}$z[vxGUT9&Hԋ_$;ܻK/'A>1l{y9ҒH./&8o2]7(2Yim?/c=}5-凙c88 cQY!Nsngq4}7EW 88 V\*& h¦dz־iӓpX\-4T"a"D93Y4?lzCc{戤GB= <9].ۡc ŝWܼx*x &Dh2!͗v_⃛[+H7#w3ss4lQ8Aa32Â/?v*WC@㗐'딦>fڽvL((Ӑ15ycMP$wfm-X*]u7VI~VFD[ER}hc2ݺ!|g x> v`Z,٢N p%`0_wna}P7EňT&)\ *%3M /O턣/n}!b-t- H0NR5% xEw :r4-Ү]pz *M$`G++u;a3 䑩&VVʞmke600a-]VR]pM{ rQfnMHƅSQ3R='u '$<>,YN(DLyONTK/dG2mFa1У=,RofF^@.oн1)ݐPr'ՠ8l801JTRG{aۊ:ꌜL'_{Po3}vap,#ehc'!16{u$l V a$O*,]&9Lm{݅h!XN?Dž5 bnd}Ͳpe`Ůw$΄ Xck A ߇/'X=gs3=ӕ~| ~A"i+lWrBʈ$%z2iN񓋮GP=HjM5nv.y*OM)_HO$&~4:ԭ꡹K <~jfnpjU6t39LPuoyj=ל#]bc];Ѭ8[+hCT#H Pt .)~ 'Sy}񻜰ˡ܌ZS\SNL:2f\Kfv㸷KXX%p;D;\PGرz\쓈ք}7C4e d-x@I̒Ե;8z<ӦO ZJB;}̈IYo'/mJ7 a*;ԖNef側?K\ 5v G9ns{{!OLUX^rG '!\wp1QHk`x!G?kGPc68d\EN*_US2}W'ZEŁA\ |Wo&r˫3+r)ΰ+ [A:)p)!LLÅҸ IZ(e:2Vg D%G Er?6w![WI;#.GzKj}l[YoDsy,|_Hals:-`薛ml,nRlZ!mBxs,K3䈡&MJ*K`W2e-DZy CvȄS f(,L(74N;vSo} /-{2/}b=f!.9P#&a°˄rAֵRUPUkQFP1y@o}zzN: ;[#h`Dzh^l|<&^NCoDv+ވJΟB6I7Qiy ^at >*-~^HS+MJ\g<¹WƸ贲㟳Z}q^;YXeMbpc7g}U96!u3G)އ?&qߴpAq]m_KM(raORr*$N*װ\f6qlTcmlMy R@Mr MNI'NAVu2ָxGyNEPфei%^&÷-̅is/992@@eMRcS#z4.Gpn-`-*#!vWtn֞XE30N7%p p:@|6K{S'aNjo3ۚ>L+(Ý o+p}7{.pQU|pI []|TCDe.M7+IOdk+:DtZtRx,O<̕nVev珩e*sc koȄx ,fܗetm—bd&ΨFE}%Ze֕/jʄdI@HZþvG{o15m .~S攏#⒰7!Bndȁʽ{@Ia ( :[@# c`Y^JTC7c"XmLOYY94K'vt+3RZ3Q{m2Q*bV `>E+'^R!Yf"l{'~~e>{wDeD 4ѓU% Xda?Vu ' ^k)YM~=$!+D6y/SԼ³.P68>?[SV7icNSK$r D1|ی ?~uFβfޚ0a5Wֆϵ1ygB`٥ '8#]DmI]27XH~$]w|λ)l$qʟ.o{ow3܎P(q0YKY|_Bⷹk ,3"%:@9p~)ACPj9Xb1,k-cΑ\PX,L&?̓uZyJ@Ν_#ܒBPA4AN6U(y͔bX<(X"EYߒAMN[7`O*lc<ֱWh`,ҝ~JmZ\*6-|&;(ڊuJ}`EtBsw(, .y\Vֺf[N;aVFSŐbf1 LUl"#U=rpq0"Ǎ*5cz޿=pӦ6oZQIu~}l yP pϳZV4!yq9Ů*~26,(a³IB1<73Jzbc\ fY6uWƵC-D2|X@,X }ӧ%m| ):reyfe44ϕ\پВqbs (wgq(#DMFYB:<`< x5k 2~'`l LT)Hm!<+ 3@ &f >~uGn)ܼYŷߵ+xvQWÿ8::#Ui>OEMKJte[Ïݓyt!Um:M\A/@&[O ͚XwVP5%| 㠓C J q.fk0AգO3vqNM6zmܹ42Vg=*ZSFWvޯ!%f#P=˄T>T*A\K1>=R=;^ )q{Z^G(I(5%h$ٔQ 0ٰ^yhWҰ#!Ő".!|5rg+*o̔mϭ겝- r\N+ l>e3G9-e37EHy_ jM2k-7",QnIs]|d|4AY a)>=fwN|Ӻ I&uK򂜟.aCR9X#Ȯ)1<(v8bSJlmavo!IFh ^T71ֱ{{)WwN>MT:[;B67BZ,*/Ѹ$Uƺi^2ègeDd`p 4 MZhW\>Zw{sKa X+Yb#/@P$a"i[ێ=i EuZjٰc>v) U :<"q"⓮ZEugnxtw><[@/{QhL"4 t=CŸWٔ;Dq[moQ? 7·+\=<\œL{ xJ"rp{fcAl[n ΍l]S|)6) M?xteDΐ E.T($hg[YWB{;u Ah[ WVaxLؖ7z6d"D3i!g-vwS-}.mtx?F嚒6=,2L\$iFSW}%S0V1{Ʀ޵ή[k5l_|⇣9 ~abZ"]{v_*.oF@%}9Y*(q!G9bsYh"qB?"eb`&d1Bu7Bֻy;\88 Pj{4/bUHk5["MֱY|9<7&fu6O,-s](*W3qJC~EE\5*qcG5jffx 8W:jڨ)o 0-B4&KEʲI%6UxR4sgpmHQ]l~`L2td`)X{3? q3^~RCXL@`F֩ Ce~t{6"b袷m|=5q͑(u#gS0_ao8Bid#'AOj^}}eG"K9\E!Rc"Y%q EհO6c(r9Fi[#n 'kqL1J>y\/>%Ҹ )nSCNWPŲ;aY'߈Oa \S4<6r q-dA%kh u}4׵PEB |Wvjo2$|"N)}4\b[G 4է?-{fZg8\9c`$"{5@d:QXN5#J5FS1w*/͊;i ~ߖ nq@b7%7ryz> 3 B%=]p^p6;:3>-iemHa06w"{!E7Զ;C'H3su)} FJi\[4!\,iلžࡄ'_UԬPuˎlSPqJËPbED1cnIw WѐM7~HPm#?<{lL5B\.fNE Bcs%k # YCL"0=fNp`KV5KBK R /֍i<5%68092dy_9~8iBALlę5I;;Oj ^Dו-3⇖M ouړI>%k+=v^usZOtKzCCtRٻ#dE >[ntRU!R%,S%q7?K>IxpkGLW#XB -ȊV\> ~o".-KĒ[-jB,G{afYC bԑr5_R_*yE*Hܗ۩@3$JCAH%<jC 'J0YyTh GkF2iؾT~Wut0i=MoopזY0ŪYLym 3 4?mR嘂1<Źv7ȑcM; N? Udd1Iw2/lsܣ4/fH ?l‘Fxsx8a,B&QEOڄdla5s[xs 5y3D gu.-2yPCZ`u=5CFVIt NBXᕇB兴A:E35 "E8z$8ƁXTRݥV0dhtA2c};iHvяڕ7 >*7W1{lɕԮ0l:/N/B̥pJRH33 p$& qyC3٢ث#M]by7b݆ݍ[*<ЫD_}kw ۝Рb66Lw/\IV;[/=o Gtt۽pg KpZ{ ջ6ϟkJ|&>dteAo$g ƢLnI2RW`]k.PO7%~$#w,9#7xH u'^PLj> xasU<kp vimyJXћ`qC˥] `V~F) Sz gBV Nd; V7L?^BRKmi&Ԏvc:$եG9zA_ vsq3a ڔMJp,7yu[wdr2'M] )yx oU8qF^;0 p|ٞK]yidJ@?nsꏋ ]B`чd'+fQk BQ-xzZwe- f<毄vmMx:By[9@1lB>ɕyH1a9(֪I Odu4:s0ZdTZ.;v/ڦ)g@l[⯉V~ևs~x~RGC3\N !f[G.[\7}8 F!mkצ)UrwiyFUEvF6.Dk[r>acNj$&O2q ,ůRRfNp/*  uW=cx%WpZ0|a8fIfs>[8S`%N-b8; HFކ=v+Mۡ a<(SXa8.(/s(<5 bRC5}Z|jQ䯄>'Y#dbmUkՉ89ZUY}1ptGLR]%r 908WE`'}!_Kz-~gVHZ9SJ *0gGG䔖8izp\aBW!4/S~PjM+Ru~S"o. ] rqC7C<+-Xu争o @v P L[&9S Xˤ'pkaAO3mFÇq[@ϧ mi?P$j$R|Lm -=[aRƞBJY X?t2.)y͊QDl8、X& z},ةi4$Y~-C KrJAOm{Ob&_]r;d@`xqb c!9[~Wp* ZUfRKmLgO$j>}9ꋈF9P8 "j09LZ:=m]A nY]ġb4\dܮlƹ̄ D@A;vUUIʐvqRsLC8 F=uOה(-[C@0hWh-axW\C5# <1H, nP"%c$J(-X:{d"?MJB^}@%/kO/^0 V68<)QP}8NqyuM<)Ӭ ν46 =;]eQTuY{%t qu2KHLQ B<)RnzWV^3|=GP^kqQ5N.xG)2e4x2x#_Ҋfb?AID]L gs =rbqE nb=.\V(6wR|v.3ACIdX;[ ş0-5)WDߺ9)tGm˅3 \TƌPf\!4P h",ضSCZ w`{^pgSVUUZ; \<nObc%ͻS~eOlFixq |ZWw[coӑVR9@L&жD \P5ij5!Vөm9&ĝzآQDqFɝ<@,l͋yJJsֲ|5}&Vq * =Qpqk$EU[T֤3CݎLzC5:Ȥߣ7k30q#M6|4o'mR-R>~s/Y3&AAiA^BӜq9 JYqUTv92`Vn$v|9 [A,X-|j#:C;|5UujWrU$$R}&[tȄM3!&dz~3hP ezGqاiG0ZŞ FU*sv~[DXRa:ιm]kC55'3,~,y3u!Ƨ&$oTWw<í /YrV&9Gv0aj>tV$m:c: GdIq5G@P+V ,*AQʡX:k`Cc8L+q#Ū%.MxS9OH qƟ , RnFbo7'' 0'yͳ[<#SVj{[_CӾ$-\;Su%ǞNW4.1?[U$:Tހ ǘmR6IC"й8Pzdjis@8; AGt vHu={5ꭣ<7dS*ooRDoKB‘|[/kBmx*GrΨǡ?2ۗ0l 2h猦 p-] D+LaHϞMR&o=*p~Y44}m&A|hG\rWj=G*DNV|fS)}ͻE(39<3,*Mޔtw?j:c|/"jL!Eүō)WGiMq;i.>) l/#,0G6PKF`GbRW{>D^Y-3'>YQ^c9Q@x[6KS+bBޕm)A} b -Ҟ\?4"o.cˣAo+`V26J!e9VR+W9-5AU\4^p++UٔM?$D_^zZ,-c}.G| _H/>dupvl=Re:@D-=> D8@N;^mM_J֞IVLY}n'n g/kPB&?)9TYx.Au$WpS la¾E1 V6nf6dQeX|aai[^lPjSpDSC4(p65w >^'}1tHM:G@9jvAY}9 _ &ofopB-΍aipq}o6Վj>?BU0Lp2}B'vQ!Aꮋqfes9ROq#;@e?R7W@,aі)#_|BaRN 3ɑ"7AoJsٴaJ‘dZaJR81Lőؼ>:5@8M0@#Zx'mAʉEXeN f$XJxжmn 02avbwgRyeg&$ }@*<]?c32:S"LqCk{[CBK0_2F2Q6$ڞO7d=or w>ΕY(M!frW{$BzE!Yt] 8`V q ߯6jק} f˔ӹ^؜5cV;Ԙ0#%u;u}ioPP\N!e=F/+ Bҿ\;|BY좇ogh+8_InhjϿ4,~wfK*1$gbm(.4 Z*%i0]vՈN9k-X$.> (A?.ZJ`<;u$^@YݒT'!uN4tW2wA ( ` }C8 Ԡ'l)C3 jv rNDYI29BÊA) g,1EXkpOyѐJClg @mø9ԾҤDeǰ?O eڣR[)P7Lz c3'Xlj1puPBYy&O^XWbђ-'Uzluc<)!.M'Njq2RV2'* Z.zxd̝f5L>rU81.Ddk|%]z&"N]Ԇkiڮ}-_.зO~] CpeKDtzpi΋lx"1LKk &UQX!Sq~Zj/XB؞oqz #qt0j3Nix6P$谡tb5y^wQ ~;v C(!m9DmF\X9y|Fk#&mHD՟饢qngQ }zjW|فp%uyHG]:0c$XKڮz2GՉZ Dsxk!éy*}fCIG^ΰV<ϊ$4z <^0~Rۻ*6hٚZk!0Ӆ:Zʯlf+ 1mZmV8AH7OCs%(hW%3r+29rTX2J%2F̽`Mą fSޙ`!]`ٲ>7ILM.(=-e E&vGaH)+_ErП𘀑hϗ (N(mQ(ziv=X[gabx"Mêh,:ue[H 6kw _\TBdQĎ7Ql+ ֛4 r;?%= ZG(c tOUKxE Ŵ @5c"  Ҩz~3 xl'Jr e/b8u. Ž00ii]!pP:g}eڿSYhmkvii1.+҂bD˔c~Hǟqaf9n` j:0,rKTW_iu1tTv!SWjiR)AZO+uaUp "#߹0_JK 'v?P PgvPdmX3C$ԯm}Ǝ#?hl8W?/k*i'0GpLaK^++ٗ똱MD[ T V r}/EK30˿4)>~œk%h d'9,55_4?r7)@˕1Q*!ҡ?!=iSA_i1l9UIm R)x=R7=|.ߚ4wopWƹnNzZ_b;|bi£9d}y^\qnH{ %B~A>7i_b>Қf*|:C(@Tv,Y ~ ;{~Swwa1oL<; щ>Xӣs@Re[qiF+uӡԁO7sjGYAimY,B,FZTٓ5aD GαTef+ДjQ?RQ-(_=|<^4>0O\^01`It6̼1eF釰jgZ ѵXw[,)SB(!"*Swe\_Tseb d\qt331c桡YCHK񸺽+1ؼvF;ZBt!(<0zB7e=/@. %|)wɩ \ .Ts\[ 6^JfD68 KӋ6@+idD=Dg rYED(mw 5@NِNe1M3œ9t>!@~1Pu2!>^eq9i)HARWOCYS$>#s`O)=[MkJyݼ񩇸6JFLJ BkXTJӈqJ8 _]{=U1L2Uܮ{]̪GvHX) ɉk enҮR96kU940_4,@Jb3xLr{;|M!([`B:hFx?Ŋz]1d >VWH0k)=4O f~ W\wG0oz/ތޑJ!a*psVdUHu%Eb7 Q i>T9H ]k3Op {ltcOI WS()Uxyr~Չ4.din4Hʖ`Q u/,'AHžeB}ֹSPƧE`2^ IuVo$:<<68 =S/Io#>/ 'k#C ʀiQ:ȏsfcZ&7J.|dE61+8f24x{@R zS?¦!y'%LBX"ٸLT pM*D19wf ?} shlT!T]:lZSm7i;2D l5e8[y?5ɛsJ:~UL]s0v%j+_)p h/pd [f7^sTu]ʳ(5?󌽮}0!]-\ " IvA0/I};)r8ldI`Y&kOI:0\#jv}52Frh1.6Tr@3x۞.OeTaHFG%<cSL:QO ri& IN)_1M$<3Zo=C+co\>_2ߏ 6p2SU4|>Ye;U-_h|=_9%xH-%''-}Vu"8J= WĨ;l>P T\J9te嘡&X_^9D3az%vSICH+"lsz'T&1:zL7RJ0Ȇ7ct=\B{2 dw5mh\WJmC'fyHFskYҝ'SNF=^ȶx̋ē~ݸ<A7#Z^ue&׾L;~+n0R[EOϝ֢χ EP6qO]FxR/kkE~ Vy"+H ¤9d>XJ2;Nk\5p$EUUI"N:+8>tF-𘚧<]?$rMĪbPZG%CҟX=jT_Uz[޲c!U0V>`1y<|IVS/~.8b#{.+^mrvY'|:.8<6_E83FrY q d'dk+#&ytMMIRk (B4LD,= NHyzv7V&GrC_$7aHӥ#*tGmc /BoȖ<' >Λ_եhbAhO|>I: a^ r!qVfsK$,{?.,馟iOI"q}T?|Nl6ąxb 8ŁuKQ:"'wz J'/ur:KC}#gqE'Ti'PD@%ik`'\.}^}k\X>"'/1Je| 9Yeށ{E^C#`uʍ|i1cBԨLb;Pn rGI 8oRȴ̯L¨W_y57{0zUK6Y;FD `BAqm 5ϫ A-_,\ /ڎ+=ι*G/gU%%Ҹ+v<:*_s8<䛌P$j(A`F8?`ʙsHҁ`G,}mfw @KZNHiJu8o|Y K+ը@=5^rL_Ԍ{bW7KOO<'Sq9wny^+[~9%%gs q镙w=JwhlÖ2)൩UQemL~ [[U>Qɤr=H~vLHzػr#2hyϠkJZfQN}?SU ^C.{C,qh BB8əOu-w@G7ž$Ry-J@ip|xYKՃUK(a :SZ$FzXUw/f=+Oħ:Rj~UjC.Lݞ{l8Md2po/DX1r9msQpqխ4(@Xhj?y3RžNSW&mLi'lضtpw⏕*]x d/JmfA|QВn&YrX/ze ?49MZ?M"kא@ O$VW".1bT< e95/()_8z.x sh0ԹѶ%/ԃ=+m'ی# wCPr}?:h)V8`%ې܀X, U5( =4,F*XkpKW{|IsMu";,K(U%=m]DRY"-:sYt +D[JG"[d>:6Zca7n3lUuصm[ yț AfOJMs)yD ^!^)+De΁~,Ao6| o{R u"FڌT+DF<}[ `T.*9|±i F;Pr6:(~c |,-j?2N^$:_6XÈn*@͈4T5ȴ0X ^ԗ@5᷶Hz!USds8^я;Jd 2ly]AOǨPE=F>/0. xwG[ԕbK֙pfCn%%0p2ԼǷy,{GB6*|PV .rjxh@IAzAD>ĉK뢼wnς~#u=}|C(im'nF5`ak5dmf9R88;*F Nzީ#QO 8=Y{DM?_NPQE D fnP}GHXx}7S{ fǔQFٮ"r%w/?{S%N>J ]9?074Ys^~8;pڎ1(a l!F#t\4$NP?Յl݆{YCfdfBuziӧf--.RV0P\p 3vߐh X (`=/CBv^}V8).GʝmLu9rjL/(&}ce8i6ha=W[ǑQ$3;j6($CN8Fĭ@yH\K}x\,2d`-V=}!~ +I2]0F}eWeX]k,H n:#fSC”h^>-Q<׍3v=o7C'&VMW"{ePk 0-Wn>8"cqmhag o&%//5Yw& !| byX`ׂW3Za-匒ӷ(^{ID.;ٶ[WЉ *PC.t۵̞ Ԃ+)!$sbEhq_xunU\wdo$䴡W/DmO+g'7Va;ʱ '1?To6<4*>ҀL8zp+tLG<5O^-~ZםNȴPwzaӛˉِV{Z3߬έwʺu,/7e:LEӈ]vTG8B~ȅ'Ͱs~(?,HXz&̫&j x6?櫜 ey9 z{eb\T @'bӒv߀ !`apʋW*pf'^X$Z>YvLk:Jf|6bJ|(B+]<>lѯl'AU{I ۘlꃩLExYm6fZ/ǐy9|D&{*TRޞhH ĩ;W*d .nd'ELu{41h1&#|FHD`aaixfvnyr &ʞeZ?Т5RD uN Lv|úk#eV0}iJuCm78DFj%( ?,Y:uu (&YݓcElc{j9ٶ݈Y\Dq-qn=xRj<+|%{PVƬ?1,YW!LjS JG}uY^rw9~PƐX؋DLaycz%sX\:iZũJ)( * NZu&\=K@ ҉YBS U6RjX`(|AC. 6/C/BLA+Ȣ9pT[WpK!Q]ԋYm1<,J9{|%K3@XI8s(x]OK:{]C۪d}yI+2.jg[ݲv6t q OMnݟ`~T)JN+M;X)TC``m*sr1kxׂu냟mR`)1C5 %oѸSNtjC8-]cU€^C.ޚHy+N; 8nLj8\Z|o6@ %?PʇFO(` c=nǿ /*n؝*לh՜QEZ9Ip ?h1]u_% RA &UkEiw#IRhJշe`=p׾6WDI`C4s^aœ,{ZĤ]7*jJ&OQ؆Tr5پ6ٴ1(zurQaCq$-s]@̖"_܄0) B[9枾iƐMͶ7&SLx4%:#mZؕb3LrKdnp6SU 3ࣟrRyL NM0Ӕdz XV(Q#PƇ9^Ni&։Xc#!Ia8fHTC' %T¸:*G@7&q"u1oզ5nr;(s m zFs"u;*>fq;#LT _R"+PHz 0y0 0o#Vc$bK>/.׽tH /žR*Fnl,ZY\66Ԑ_8)tVX,_PP,QgI9Iu[dR/Aų8_YP g;&ЊҒ/V cj*sQjS)Egk}WqV(`i 2[YEuE!J_W0$&>k3Vd"7*aŦ4>M(ަJtB`ke>D+)&'Rq;u`|2iGbNwy7 }Mxw:Oa2ӫ`[~jŚLfQ/^9z]% +!RaZ:JAw^ b\kݑej|VQD T_Z.ߤ* %GT<` z?aٷ\dɧMο|8/c^ z~/N/)e ?J.ڲ"Ԙ)s O2o;n9#){ e|XBߜjkboʺGlerZ]#'Ȓ2CjbFX3H:[eޗ"$p El;NNuap愴v{'![@2W#;0d1*7tf 厴=zF/V>kel yC;)ґkoj3'/w@t8C.❫]yA̹'n.iJtg{ZHHF x2Zdcm9>Hqߵ-j&4=W|+@1CI(Q2oHєF ѨA,%s%KoɃ53Х̾mA --Ǵb5$(RWYzL# U+#1GY(p2oG)"8豥ƆHs%FM=Z]W&0"[DrN/VƲ)7Z 1_3!*T1+-Z ?g~'Li}VKzOʣU1 Lԟ$;):Pf2OVXRW0iQغQ'Oay h0h-[6mvQ?v#'RY%tú]4("vAJ{DUAJ׹K3@Ұ6à <%Z3E]~vok4->NC1_:ik;!iﳛ#͕%E^ٺ Ŏc׸iIY6r#_RFRݐ/W/~wN ~%X#N`#ab1굌j3*X)TXZ{d&nk}AW6~n(Y:CO7ئ&8DZVvw2vMbjh*D?N1,k t=<ռɱĠ,XV^SيN˪iV2!U$$,#:K}R.~˾\2A+4mDGӂnnc'l6RqܳQ,ХԜQq_\ȗʏF$YR ]/"cΓ;cAȚEz^fF^uMI<tRq7^(H(c(F |w9ni'X|7[;znX߆*u4LF,zV\q?A-MG.}>BwT٧+8b\SzkцO ?lGo  ozy;+yāmX55#HQ^7VD>WFfՌB]= ϘpafktdqɶŮh)xCL$EvKŭLuse DV-ĈM!$bAd> 5m GtF&. QlDzya;KGA:wZo],MiNU>ϭ4ECMh2n2.WNq}kD2%ΐnh-Dtb9<"\o\0ϨPp%4Ԗ+es2r>kd-I.rzP"m/ASO_3(T:ыD|b}%  T3W! _xNCUg5@8)n= B3PE:Uc@(ݝAVP=+nz)?j~ %G=m:R7喏 ):nbD^ ^kS~'ł՜7Fys h5T) `d4 P9frh2I ),!?%Kuc{jvg(Iݽ5R@fUbΰ!CaI%̥"(})% Rp @ Rn P.!R-D{Ftt^%ӎquA2U)]v+nt`ZL 3}J4̳CڮoՑԏ]Vp56w`v$&;0+%z #f7ZED.KJ*A53W}js%Lq *Z@ =K^wnݫؼ|?@t=avn||ԍwԚYLC!ofoz4( Ye^ bs zչ&G(ZYy%J8L]ϊ`;<A@hl>(?RzjJ.4!"A+%+pi[ jXa nv},9 Fn%5Zei!ckG¯ 'h͈)2 ~}?.uzՄ§ܶ/KF3'([xO5>hIt|џygV7w'-hUh96sĂg6Hp(\N3y3 jTiVg6qpuY'fi3LǿH]θ @.RDfPJ ,M0V?hC7MwJ4\{5k[[j.La\6 C[1 %oWy8"w[EYAZY/g=jٗ`E5R}W 3x 7mOwڄgg3:9,}b*㧔|4 K\ηzAuW $=KZ 'wں< 򿱠=28 (c:|o{\vo,EeJfNUA!.EJ#zAlF}eeԙɻG/BK-J'56@evODh`7bVOs;5j5p+?6?Zn'opXF=ع Q?'{1;iGrOw8PA:?FG8~Pa(OKYĻ ўAإ"ʻH({KUEjfa ?0$ElQi +Y98ŠZ$tįupXȧ6;g4s +'OazTݵ4v 鞼(Ht$!T 7m$זmj&M>4<8}0A)f$"}E,1:{_<~NR`VtiA]&Gsώa=q-#Ӳ1PO+G 4JjcyQ3R=nd&-{)!j9(ydS&rC%Y kl+ے`{/HLd(?.le*]lxg)X3^4^)v.\qXl%-&%̥z$Zϙ"1..U dt\%$EcM=Gc%  `ڸRkŜ[u;A5 Q@^F%8/;N 8G>Nq+SՕNEITPCg)@0m3N,#q_ ]Ŧ(sqɱO}״꜔*c#78"2%`D;;KҾY里ZӯAzMgY2M^($))!@y/!6P r>?BZY8ޤ§PPt}aUqQ~9%j iU>G/ҷ7iB8"+J8uDO6c"|W]-qÇR fci.XS12k׍XZ"׸/Pbb"/ެCfrtFܡ 8HP1%6SKb<~'f6Jʛ(-sd "^0np^W^k?nzfe,Z#?rv]GI/@8OjIx"A(R,GJRee= e {T@t1Z`d^ a[i ` Y&rnsFA[#` .#Ee#o6V_l4mѦxͦe}3:UCGDBK"8A~߆l I,2;?NF/{ Tdchٓ(PajW(mW):$Po24Iuͫ~ͷKuN}[=޳Ms?zbV;J<>b?$%meDV `c_[-ׯz{} %)ʬ_"[*osgkl=mJ} 0{k&H-Ӆ= %rf!=Ͳi`X<\`nK;r`R'\)z͏η:Ztr~Vi" xU+cD$ 4.l' &M{fL/7? HA9?ˢ O3sፙ} ~ MȐp|.?vV[GdFTB!k2To&?&E$_Kp I4b!S)m 䪆NKy9SIE[Uc.*/k l6qS(_|y`Gy(d0x \9,b8r- =>VߑLhC3䰡Smm9:Ɠ;ӵ&M{9"y@&+ LZ%^YJq{k zնVAUN0HG(2J#*Tu}e2|q/!qDΦ+KB 1Σ{k ޕ0L1VwZgAPqD-A8 "koEDL5 Np%^ƫG:.Nll8?Xԥ ' YZ