libdnssec8-3.0.4-bp153.1.48 >  A `!M@eeewcuv\q4RBZ>ˣ.W>qйQ;Py`/p&R<(d{OüȢR\"hqP.;4>t(Hxz#RcG8$ 5vZRN^g2ohu#e!A m0YLpU2:n401bb27918338faf9a0c6d72b72e222c7bc6584cb3c6416bce4223c01b383742a0197907fbd53b01d5e824c5fa822286515eb9a6b(`!M@eeeThP{a\lTִ sL* NAA;sqme_i/dsRֲWgzL=pH(Z@02 m_qC:ƫ2 Ejϡ:i3-Õ~:MGҴ>H_b(èfmxazYz 1Sϭ6V%YUP\Q51&aN1v=Bz S!bN鸵.G.]`D>p@a?ad   B !2JPX` d h p   D(G8P,9,: e,>]@]F]G^ H^I^X^ Y^,\^P]^X^^zb^c_,d_e_f_l_u_v_w`Lx`Ty`\z````aClibdnssec83.0.4bp153.1.48Shared library from knot: libdnssecKnot DNS is a high-performance authoritative DNS server implementation. This package holds the shared library libdnssec from knot.`lamb58C SUSE Linux Enterprise 15 SP3openSUSEGPL-3.0+https://bugs.opensuse.orgSystem/Librarieshttp://www.knot-dns.cz/linuxx86_64C ``2b61582cb6161350192130e128309ea94af9bdbaef54b570edf73d8c7eea44f3libdnssec.so.8.0.0rootrootrootrootknot-3.0.4-bp153.1.48.src.rpmlibdnssec.so.8()(64bit)libdnssec8libdnssec8(x86-64)@@@@@@@@@@@@@@@@@    /sbin/ldconfig/sbin/ldconfiglibc.so.6()(64bit)libc.so.6(GLIBC_2.10)(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.25)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.8)(64bit)libgnutls.so.30()(64bit)libgnutls.so.30(GNUTLS_3_4)(64bit)libgnutls.so.30(GNUTLS_3_6_0)(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.2.5)(64bit)libpthread.so.0(GLIBC_2.3.2)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.1`_@____^@@^@@^@@^@]\HW@\3?@\*[@[@[ݍ[IZ@Z@ZWQYYYXWDB@W1@VwV@V@V@V@VTQ@VCU6@U6@U@U&iU&iTTq@T@T@Tk4Michal Hrusecky Michal Hrusecky pgajdos@suse.comMichal Hrusecky Marcus Rueckert Marcus Rueckert Michal Hrusecky Michal Hrusecky Michal Hrusecky Michal Hrusecky pgajdos@suse.comMarcus Rueckert Marcus Rueckert Petr Gajdos Marcus Rueckert Marcus Rueckert Marcus Rueckert mrueckert@suse.dekbabioch@suse.commrueckert@suse.dei@marguerite.sumrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.detchvatal@suse.comondrej@sury.orgondrej@sury.orgpgajdos@suse.com- version update to 3.0.4, see: https://www.knot-dns.cz/2021-01-20-version-304.html- add incompatibility warning about 1.6.X version when updateing - rename back to knot- version update to 3.0.3- version update to 2.9.7, see: https://www.knot-dns.cz/2020-08-31-version-296.html https://www.knot-dns.cz/2020-10-09-version-297.html - obsolete only pre-2.0 version- remove rosedb conditional as lmdb is required in general now- replace conflicts with Provides/Obsoletes- fix dependency: python-Sphinx -> python3-Sphinx- use upstream example config file with correct syntax- version update to 2.9.5 - Bugfixes - Old ZSK can be withdrawn too early during a ZSK rollover if maximum zone TTL is computed automatically - Server responds SERVFAIL to ANY queries on empty non-terminal nodes - Improvements - Also module onlinesign returns minimized responses to ANY queries - Linking against libcap-ng can be disabled via a configure option- version update to 2.9.4 see NEWS- version update to 2.9.2 see NEWS- update to 2.7.6 - Improvements - Zone status also shows when the zone load is scheduled - Server workers status also shows background workers utilization - Default control timeout for knotc was increased to 10 seconds - Pkg-config files contain auxiliary variable with library filename - Bugfixes - Configuration commit or server reload can drop some pending zone events - Nonempty zone journal is created even though it's disabled [#635] - Zone is completely re-signed during empty dynamic update processing - Server can crash when storing a big zone difference to the journal - Failed to link on FreeBSD 12 with Clang- update to 2.7.5 - Features: - Keymgr supports NSEC3 salt handling - Improvements: - Zone history in journal is dropped apon AXFR-like zone update - Libdnssec is no longer linked against libm #628 - Libdnssec is explicitly linked against libpthread if PKCS #11 enabled #629 - Better support for libknot packaging in Python - Manually generated KSK is 'ready' by default - Kdig supports '+timeout' as an alias for '+time' - Kdig supports '+nocomments' option - Kdig no longer prints empty lines between retries - Kdig returns failure if operations not successfully resolved [#632] - Fixed repeating of the 'KSK submission, waiting for confirmation' log - Various improvements in documentation, Dockerfile, and tests - Bugfixes: - Knotc fails to unset huge configuration section - Kjournalprint sometimes fails to display zone journal content - Improper timing of ZSK removal during ZSK rollover - Missing UTC time zone indication in the 'iso' keymgr list output - A race condition in the online signing module- update to 2.7.4 Features: - -------- - Added SNI configuration for TLS in kdig (Thanks to Alexander Schultz) Improvements: - ------------ - Added warning log when DNSSEC events not successfully scheduled - New semantic check on timer values in keymgr - DS query no longer asks other addresses if got a negative answer - Reintroduced 'rollover' configuration option for CDS/CDNSKEY publication - Extended logging for zone loading - Various documentation improvements Bugfixes: - -------- - Failed to import module configuration #613 - Improper Cflags value in libknot.pc if built with embedded LMDB #615 - IXFR doesn't fall back to AXFR if malformed reply - DNSSEC events not correctly scheduled for empty zone updates - During algorithm rollover old keys get removed before DS TTL expires #617 - Maximum zone's RRSIG TTL not considered during algorithm rollover #620- seems we no longer need jansson- limit geoip support to opensuse- update to 2.7.3 - Features: - New queryacl module for query access control - Configurable answer rrset rotation #612 - Configurable NSEC bitmap in online signing - Improvements: - Better error logging for KASP DB operations #601 - Some documentation improvements - Bugfixes: - Keymgr "list" output doesn't show key size for ECDSA algorithms #602 - Failed to link statically with embedded LMDB - Configuration commit causes zone reload for all zones - The statistics module overlooks TSIG record in a request - Improper processing of an AXFR-style-IXFR response consisting of one-record messages - Race condition in online signing during key rollover #600 - Server can crash if geoip module is enabled in the geo mode - changes from 2.7.2 - Improvements: - Keymgr list command displays also key size - Kjournalprint displays total occupied size in the debug mode - Server doesn't stop if failed to load a shared module from the module directory - Libraries libcap-ng, pthread, and dl are linked selectively if needed - Bugfixes: - Sometimes incorrect result from dnssec_nsec_bitmap_contains (libdnssec) - Server can crash when loading zone file difference and zone-in-journal is set - Incorrect treatment of specific queries in the module RRL - Failed to link module Cookies as a shared library - changes from 2.7.1 - Improvements: - Added zone wire size information to zone loading log message - Added debug log message for each unsuccessful remote address operation - Various improvements for packaging - Bugfixes: - Incompatible handling of RRSIG TTL value when creating a DNS message - Incorrect RRSIG TTL value in zone differences and knotc zone operation outputs - Default configure prefix is ignored - changes from 2.7.0 - Features: - New DNS Cookies module and related '+cookie' kdig option - New module for response tailoring according to client's subnet or geographic location - General EDNS Client Subnet support in the server - OSS-Fuzz integration (Thanks to Jonathan Foote) - New '+ednsopt' kdig option (Thanks to Jan Včelák) - Online Signing support for automatic key rollover - Non-normal file (e.g. pipe) loading support in zscanner #542 - Automatic SOA serial incrementation if non-empty zone difference - New zone file load option for ignoring zone file's SOA serial - New build-time option for alternative malloc specification - Structured logging for DNSSEC key submission event - Empty QNAME support in kdig - Improvements: - Various library and server optimizations - Reduced memory consumption of outgoing IXFR processing - Linux capabilities use overhaul #546 (Thanks to Robert Edmonds) - Online Signing properly signs delegations and CNAME records - CDS/CDNSKEY rrset is signed with KSK instead of ZSK - DNSSEC-related records are ignored when loading zone difference with signing enabled - Minimum allowed RSA key length was increased to 1024 - Bugfixes: - Possible uninitialized address buffer use in zscanner - Possible index overflow during multiline record parsing in zscanner - kdig +tls sometimes consumes 100 % CPU #561 - Single-Type Signing doesn't work with single ZSK key #566 - Zone not flushed after re-signing during zone load #594 - Server crashes when committing empty zone transaction - Incoming IXFR with on-slave signing sometimes leads to memory corruption #595 - Compatibility: - Removed obsolete RRL configuration - Removed obsolete module names 'mod-online-sign' and 'mod-synth-record' - Removed obsolete 'ixfr-from-differences' configuration option - Removed old journal migration - Removed module rosedb - changes from 2.6.9 - Improvements: - Added zone wire size to zone loading log message - Added debug log message for each unsuccessful remote address operation - Bugfixes: - Zone not flushed after re-signing during zone load #594 - Server crashes when committing empty zone transaction - Incoming IXFR with on-slave signing sometimes leads to memory corruption #595 - packaging changes: - enabled geoip module: new BR: pkgconfig(libmaxminddb) - enabled cookies module - enabled queryacl module- update to 2.6.8 - Features: - New 'import-pkcs11' command in keymgr - Improvements: - Unixtime serial policy mimics Bind – increment if lower #593 - Bugfixes: - Creeping memory consuption upon server reload #584 - Kdig incorrectly detects QNAME if 'notify' is a prefix - Server crashes when zone sign fails #587 - CSK->KZSK rollover retires CSK early #588 - Server crashes when zone expires during outgoing multi-message transfer - Kjournalprint doesn't convert zone name argument to lower-case - Cannot switch to a previously used ksk-shared dnssec policy [#589] - update to 2.6.7 - Features: - Added 'dateserial' (YYYYMMDDnn) serial policy configuration (Thanks to Wolfgang Jung) - Improvements: - Trailing data indication from the packet parser (libknot) - Better configuration check for a problematical option combination - Bugfixes: - Incomplete configuration option item name check - Possible buffer overflow in 'knot_dname_to_str' (libknot) - Module dnsproxy doesn't preserve letter case of QNAME - Module dnsproxy duplicates OPT and TSIG in the non-fallback mode- Update to 2.6.6 - Features: - New EDNS option counters in the statistics module - New '+orphan' filter for the 'zone-purge' operation - Improvements: - Reduced memory consuption of disabled statistics metrics - Some spelling fixes (Thanks to Daniel Kahn Gillmor) - Server no longer fails to start if MODULE_DIR doesn't exist - Configuration include doesn't fail if empty wildcard match - Added a configuration check for a problematical option combination - Bugfixes: - NSEC3 chain not re-created when SOA minimum TTL changed - Failed to start server if no template is configured - Possibly incorrect SOA serial upon changed zone reload with DNSSEC signing - Inaccurate outgoing zone transfer size in the log message - Invalid dname compression if empty question section - Missing EDNS in EMALF responses- update to 2.6.5 - Features: - New 'zone-notify' command in knotc - Kdig uses '@server' as a hostname for TLS authenticaion if '+tls-ca' is set - Improvements: - Better heap memory trimming for zone operations - Added proper polling for TLS operations in kdig - Configuration export uses stdout as a default output - Simplified detection of atomic operations - Added '--disable-modules' configure option - Small documentation updates - Bugfixes: - Zone retransfer doesn't work well if more masters configured - Kdig can leak or double free memory in corner cases - Inconsistent error outputs from dynamic configuration operations- update to 2.6.4 see /usr/share/doc/packages/knot2/NEWS- fix tmpfiles scriptlet- package /var/lib/knot - run tmpfiles scriptlet during install- update to 2.5.3 see /usr/share/doc/packages/knot2/NEWS - use libidn2 on TW and 42.3 - following modules stay static: - dnsproxy - onlinesign - moved modules to shared building: - dnstap - noudp - rosedb - rrl - stats - synthrecord - whoami- update to 2.4.1 see /usr/share/doc/packages/knot2/NEWS- update to 2.2.1 - Bugfixes: - Fix separate logging of server and zone events - Fix concurrent zone file flushing with many zones - Fix possible server crash with empty hostname on OpenWRT - Fix control timeout parsing in knotc - Fix "Environment maxreaders limit reached" error in knotc - Don't apply journal changes on modified zone file - Remove broken LTO option from configure script - Enable multiple zone names completion in interactive knotc - Set the TC flag in a response if a glue doesn't fit the response - Disallow server reload when there is an active configuration transaction - Improvements: - Distinguish unavailable zones from zones with zero serial in log messages - Log warning and error messages to standard error output in all utilities - Document tested PKCS #11 devices - Extended Python configuration interface- update to 2.2.0 - Bugfixes: - Fix build dependencies on FreeBSD - Fix query/response message type setting in dnstap module - Fix remote address retrieval from dnstap capture in kdig - Fix global modules execution for queries hitting existing zones - Fix execution of semantic checks after an IXFR transfer - Fix PKCS#11 support detection at build time - Fix kdig failure when the first AXFR message contains just the SOA record - Exclude non-authoritative types from NSEC/NSEC3 bitmap at a delegation - Mark PKCS#11 generated keys as sensitive (required by Luna SA) - Fix error when removing the only zone from the server - Don't abort knotc transaction when some check fails - Features: - URI and CAA resource record types support - RRL client address based white list - knotc interactive mode - Improvements: - Consistent IXFR error messages - Various fixes for better compatibility with PKCS#11 devices - Various keymgr user interface improvements - Better zone event scheduler performance with many zones - New server control interface - kdig uses local resolver if resolv.conf is empty - new BR libedit-devel for the interactive mode- update to 2.1.1 - Bugfixes: - DNSSEC: Allow import of duplicate private key into the KASP - DNSSEC: Avoid duplicate NSEC for Wildcard No Data answer - Fix server crash when an incomming transfer is in progress and reload is issued - Fix socket polling when configured with many interfaces and threads - Fix compilation against Nettle 3.2 - Improvements: - Select correct source address for UDP messages recieved on ANY address - Extend documentation of knotc commands - drop knot-2.1.0_pkcs11_check.patch- enable libcap-ng- fix configure check for pkcs11 support: adds knot-2.1.0_pkcs11_check.patch- fix soversions- update to 2.1.0 - Features: - Per-thread UDP socket binding using SO_REUSEPORT on Linux - Support for dynamic configuration database - DNSSEC: Support for cryptographic tokens via PKCS #11 interface - DNSSEC: Experimental support for online signing - Improvements: - Support for zone file name patterns - Configurable location of zone timer database - Non-blocking network operations and better timeout handling - Caching of Critical configuration values for better performance - Logging of ACL failures - RRL: Add rate-limit-slip zero support to drop all responses - RRL: Document behavior for different rate-limit-slip options - kdig: Warning instead of error on TSIG validation failure - Cleanup of support libraries interfaces (libknot, libzscanner, libdnssec) - Remove possibly insecure server control over a network socket - Remove implementation limit for the number of network interfaces - Bugfixes: - synth-record module: Fix application of default configuration options - TSIG: Allow compressed TSIG name when forwarding DDNS updates - Schedule zone bootstrap after slave zone fails to load from disk - avoid activating the intree copy of lmdb- update to 2.0.2 - Out-of-bound read in packet parser for malformed NAPTR records (LibFuzzer)- split out shared libraries, knot-resolver uses some of them and atm we are forced to install the whole knot2 package.- lmdb seems no longer optional- create a new branch for knot 2.x starting with 2.0.1 - Bugfixes: - Do not reload expired zones on 'knotc reload' and server startup - Fix rare race-condition in event scheduling causing delayed event execution - Fix skipping of non-authoritative nodes in NSEC proofs - Fix TC flag setting in RRL slipped answers - Disable domain name compression for root label - Log via journald only when running under systemd - Fix CNAME following when quering for NSEC RR type - Fix refreshing of DNSSEC signatures for zone keys - Fix binding an unavailable IPv6 address on Linux (IP_FREEBIND) - Fix infinite loop in knotc zonestatus and memstats - Fix memory leak in configuration on server shutdown - Fix broken dnsproxy module - Fix DNSSEC KASP timestamps parsing in strict POSIX environment - fix multi value parsing on big-endian - Adapt to Nettle 3 API break causing base64 decoding failures on big-endian - Features: - Add 'keymgr zone key ds' to show key's DS record - Add 'keymgr tsig generate' to generate TSIG keys - Add query module scoping to process either all queries or zone queries only - Add support for file name globbing in config file includes - Add 'request-edns-option' config option to add custom EDNS0 option into server initiated queries - Improvements: - Send minimal responses (remove NS from Authority section for NOERROR) - Update persistent timers only on shutdown for better performance - Allow change of RR TTL over DDNS - Documentation fixes, updates, and improvements in formatting - Install yparser and zscanner header files - Improve lookup of libsystemd build dependencies - Fix compilation warnings in endian conversion functions on OpenBSD - changes in knot 2.0.0 - Bugfixes: - Fix lost NOTIFY message if received during zone transfer - Disable fast zone parser when compiled in Clang (workaround for Clang bug) - kdig: Record correct dnstap SocketProtocol when retrying over TCP - kdig: Hide TSIG section with +noall - Do not set AA flag for AXFR/IXFR queries - Features: - DNSSEC: separate library, switch to GnuTLS, new utilities - DNSSEC: basic KASP support (generate initial keys, ZSK rollover) - Configuration: New text format in YAML, binary store in LMDB - Zone parser: Split long TXT/SPF strings into multiple strings - kdig: Add generic dump style option (+generic) - Try all master servers in multi-master environment - Improved remotes and ACLs (multiple addresses, multiple keys) - Basic support for zone file patterns (%s to substitute zone name) - Disable zone file synchronization by setting 'zonefile_sync' to '-1' - knsupdate: Add input prompt in interactive mode and 'quit' command - knsupdate: Allow TSIG algorithm specification in interactive prompt - Improvements: - Zone dump: Do not write class for SOA record (unified with other RR types) - Zone dump: Do not write master server address into the zone file - Documentation: Manual pages are included in HTML and PDF - drop patches which are included upstream: 0001-loosen-openssl-dependency.patch 0002-make-configure.ac-compatible-with-old-tools.patch - also drop all buildrequires just needed for autoreconf - new buildrequires: pkgconfig(gnutls) >= 3 pkgconfig(nettle) pkgconfig(jansson) - create devel subpackage - enable rosedb and bash completion- local state dir should be just /var- enable dnstap support for factory and newer: - new BR: protobuf-c and libfstrm-devel - prepared lto support but not enabled yet, still need to find out which distros support it- update to 1.6.3 - Performance drop for NSEC-signed zones - Proper handling of TCP short-writes - Out-of-bound read in zone parser for long domain names in origin (AFL fuzzer) - Out-of-bound read in packet parser for TSIG RR without RDATA (AFL fuzzer) - Out-of-bound read in packet parser for malformed NAPTR RR (AFL fuzzer) - CDS and CDNSKEY support in zone parser - Add defaults for TCP config options into documentation - Detailed error message if zone reload fails - refreshed patches to apply cleanly again: 0002-make-configure.ac-compatible-with-old-tools.patch- update to 1.6.2 - Limiting number of parallel TCP clients (max-tcp-clients config option) - Ignore refresh and transfer events on non-slave zones - Compilation with Dnstap support on FreeBSD - Possible file descriptor leak when terminating inactive TCP clients - refreshed patches to apply cleanly again: 0002-make-configure.ac-compatible-with-old-tools.patch - moved autoreconf -fi to %build so it wont be tried in quilt setup or similar tools - move up the %if case for systemd in for the preun scriptlet to avoid warning about empty scripts on non systemd distributions. - used xz tarball: new buildrequires xz- Add deps on the docu packages to regen documentation - Enable systemd integration fully - Add dep on libidn - Cleanup with spec-cleaner- Only require lmdb-devel on (Open)SUSE 13.2 and higher- Updated to 1.6.1 Bugfixes: - Journal file would sometimes outgrow its set limit - Fixed incompatibility with OpenSSL 0.9.8 - Proper handling when machine hostname cannot be retreived Features: - Support for DNSSEC Single Type Signing Scheme - Compile with lmdb-devel to add support for persistent timers- Updated to 1.6.0 Bugfixes: - Fix zone expiration when AXFR/IXFR is being refused by master - Fix forced zone refresh on slave (knotc refresh -f) - Persistent timers database opening after privileges has been dropped - DNSSEC: RFC compliant processing of letter case in RDATA domain names - EDNS: Return minimal error response for queries with unsupported version - EDNS: Fix interpretation of Extended RCODE Improvements: - Maximal size of persistent timers database increased from 10 MB to 100 MB - Added logging of persistent timers database errors Features: - Persistent timers for slave zones (expire, refresh, and flush)/sbin/ldconfig/sbin/ldconfiglamb58 16213281173.0.4-bp153.1.483.0.4-bp153.1.48libdnssec.so.8libdnssec.so.8.0.0/usr/lib64/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protectionobs://build.opensuse.org/openSUSE:Backports:SLE-15-SP3/standard/884836b1a4afb40fb5c10fb259e90026-knotcpioxz5x86_64-suse-linuxELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=6d8e1e58cff98cce47173127dac71f9c5b8209d6, not strippedPRRRRRRR RR RR R RRR RR C3cutf-8713149d826da419994d36c4db7b01aea8537ddb8a8ab98cce97be7e9872197cd?7zXZ !t/D~] cr$x#z㒀?#0_: Д'R\5 }W eo+XUڦw 20'nP(ݕM>j_f9M΀K:cB`]y>4( db2WZɜ,Az`Oʔj6r{sDAU;l5jGWŬQx GEAHؾCEHjXyAs#īN&_aKuKѼ+t @wɞ@gxN´Q>H9YG8^fePhة8罖If7t%2D{wi. T@P|HwgVME в_v|MX%5xa6 5קu$GXx-nB!xQN_@o #=4$žݙUlpp W~!x_I 0S"A+|DXL7E}YM~P-؜gCIXVu+2@rm* @)dBq/ eS!3B@̔PzZD.]EFTۗflgdB/ɜHFoSo5ři뗫7!Ս}*όI+qOI)?LF+nrdnAe#$xsz26NJ*͕'frW3ϣ{6xN8D=]$M Bc,0=֞N%Kր=TLW_↌323 (57Up OY;0 `ٱb\Ii>1>bFO}8"48Q-kӶgtdlGN{eJC4CMl)KR._}ݜRY!( IE+^A(_ZTu:"p#KEָt$KDmS?g|cFg8[یS}(0[~h- |8ɏEHEjlz1Ae$Xy .uS~ccIV͵s⨞-3|{kB.@6l VKfc< Il(G4ɾ[BMWAQ¬&_ h+,< [Q?)_S{BL8𸟾LY=_{*Yu.S/=qZ[ڳ@qp) oئ%gaK<NZ3mׄXXxoY@ReQ!yXa6Pja..PwJ&_8pP'Pp!/exk3R*\ޞ02h -oq 39ZEF-׻A%ʻ.b0Y|=_㜾*xrK.a۲A,|~_iTcRI6Ezj6.Ƕk%YGɄC|dzV\;M'-5m#Ft!m;IeݮaF[$鋅<2xm)|*DAxZ%|.eXf;?`lpO2<ƀ BD<"ʰzb 42j84҄5Ow4 0Ĵ9#8*"Jh\ ݄zsxj P7˼qn=&н3ĸV2օp꼹9m𢕣&7# 2T): o4]<.Hr 1j)POߞK쓸)Ӽ$u a n P_|>y1 b?YJe;̵p RI+TkvR6rnywM6/r'c2!1HZ6m);<ŰL5#ed*6Wl8켪V\6 P xeC[>0_/(];B${~8h`ۘ Glm\WklC]+]O`68Vli`05,@B ic1Wx@}eւb0WXL|{H{Vi]w>˔05~Gf槷"8}Wq箚s_Q|lXf5V+6ϖ~Q_$.ے+.rDW 1Fsw^}IDJ(>ÄvX\P"6K™F~eL7ӴY =I,XڅxF:CQp5ߕ)xT~j%8G#Ud#ZZdJJ }R ?F- lFJjfE]0It="|;dd4| 'zI~ H|Էtz8|,c[}읨nuiI3ynK3*0R~2:W|qmiZ`a`K7P+6zAoi+ܼSh3fPAXBֽX!_+p˅9Vf$Ez"<U{x>K஽͆ +. |{,pG+2Jx-H^d^YpteoK$Um@Fٷ_UepA/y6F{F=SGf74w@g3v#G @Zn!f*R )boꬺ0-H"<4#1+..4w;<,ҍ5+oQ)kxFtxjSQq HU4{FI,ٙ `ap>Dt}g"Q̇T l͔`'/ I0y05W"$⸫Τ;(rlxBrI%QP r!:0 Pő*DVURbv."/K߷ñs+V/Ӕ=ھԻTGƻ9]nĩ xWmv~k2畋s0:{ϴCis w] 0t?7wa~WHHkGѥT5UlYQvLRi~wNTK|vSף: V:\i:Ku$Þ.̀)Y|nzYD$/{3Q>oLIߢ ߅|Q&Gs J(l bGLn֑tj"}O4X42c ]uaӐvOˆgSy轾/kDYVj25I3`DEsnA.CjOR.ϳr wlJIqp{<5kPZXpcÐdҝc4XOMYj$m (n_G̤z{d#6,bo-bMh9s3\yW8›=͈E)sD>=J YW  f"C6 D4WG݁UupRK\~3{DrFR+*5H%"SK %hH"ӷ-}?uͺfn8]/]A8Gy> cg:#`Yc̜IAY-w|H9 i*זrꅿ|\ <\ 2}'xji ._Egʌ5ndM|~̲GSsP|u0[ 4ҷ͌ (!ǧ`͚ٝ:*sR٘CTٻ='8@$f%_NΟ2lU;C;@6B}# $:| zN^`엕'@iq(w@%q8O#^U-geWν>_[|YQ13|,fS5++C+XЀQzuAz\NVui ˋ]=(C]!N8 y~C.﮵:zNw8(So@:? hsrlH< [7OD!?9:@zRTHAEx1O ] LllSԴ132Aǫ^? IKm0O߹ 8'𴉢^1cVXbGjG GRݬhz4ee+#\}iCh6i(. ¼`H3E <:^-U8sjS][[#Zm5Ehi{dPgC1Srd>J\@Yef_k 0`:ؚ*/QumiwQ.h}'}~,LDYgL -xLW0ǠPfwn,ѱ>#bYA-[ 0a5x)9q;ʱ)Ԣa'kۍ Y[ӔyIy͇ۣ }moH/W|r*\.欉`cWW(NCj-m@(,JPBQ-ZKɶ=E ټxf A4jҽjksćԔLF_+"\T1DR `H! #|z,vTN91`H۳n M{QbrU?ӗObRRy>?cM56gp?;S!|>0Qf/Lȕ~B>24@CT)G5 )`@6F$> H y91;GplDhl\fVxqΪv΢̲~~Mi?8%wkP_qAyq&ȗXpX .&P_']m1 ;7"OMulQto Btk$mw0DBIX8Cu"&?B(2\<łL.9>Ŝk6pA@⵹!foJ"@U?~~(3?Ed}>P@2XyhgfpXiUk^*:}D#云" $k=?5| !LE-y9EΠPJJ'.w 2; ǭfu:/y4}CsKBn6IAPD-@MXN!%^eFWNwt."l/YbWdB%D2+mNC5퓠'"{6wvx)xfc~cFv)3M>ښ0G4 ~<$^ \ܐIRrO)wٞ1n}33bohr\."ޅp"./vD+͐&EN U#ҧ4sfvK\M2flY/At*jm.@0~<|W,Ջ/^'w0l3Nxi^g7~"ujPO`gߢK'"R;q6ۡT +dPjOٕ1>s[% bs!ߧ0rŻ ټJ-?77Ij{p<1"[2I.sNlKp? 5"PIn.<D@DT=uC)I<TĬ: ́{*wluѩ+k312OD9hlV *LSa"`n:P-LG,f;xې=a \Vŋ.꫶*ɠօaa8xL„ Qv}Ԍk+ ?QX }~>rj̾@gbc'QY<.g ~ea!3VS-bq *<}T_A.orXJU轔ĎXdo/T*@+%X(rbל"m1Tk}}18Հ=R<+T/ufiY]0 0PؑWnӣX2rX d­]|޶Lq.orUYűapwםsoIxe!6Ό|O3 >8} A@T &ƽ" D? ,{bH)UR⻌N8cľ "9˧e|yQ$osR\JG2X=py!{Y~es-x`{L!XxD0:OAZh_ IDTybXl*!`Lޙl.v8Ι~mvC9A>7q#CCѧ-tʦw 4Ӈ CϫS-[0_R|8GUIXGF>e X#ARYx8=mRh| 9Tj!)XۜyǰaA@$m1$eڤ3ZV5\Ƒ Bzw :%6-¬VR7*l WNA?a}^(oE.4!K@v/}tX<L.lyNc#6s.W\nu,co=ۀ8S\ fBW#q1!KT(sv44ba$ ׏MOK9v1w}POFv rᎁ5LԒ 7$-'G0/FΈh ^cz7 t=7yh M}icsOm8A )E^~͛X:e$ˬʛ41ۜ*\?OY4 <74mݷkmt5W ,y݇OA#@IJrz. `K1JcAԎ Τ_=u:O{h\@ (o)91Xt6B~ ىS'kd姨52o~`׋[Z#y;d ]| ŀԿ&J\lcҎ!lOB[]iC(/0C6CXE >v8#ވ(M5%Ŀ:NdlЪp!iĤ|Vf];?.0+1؋4GV<-3Y92Y/S%;fGM߫ `-|Hxeheʉ>3.J$MhA8L׿8DRXj8e\*Oԧh3h\_NϳLn/mb,a\|%WvǓ7= bv>x@VZD}K 4j_A˞rf[zEFf{ L>aIۈb)™Tj[` Wej9 HFETWi>KKh(˩15;nُT%̯}YW&Vu!Švzl}ANۭ(npv,MB_?VDx3*| >އqa6M(uir|glA(DAבA42{^5 tk\x64h!Dna1hpPA&weD wGLf**Y$mp_ڳ:7;WyQO-H+0V|9c^n|7/ /TpT1Fz|b٤ܪG{CQ`ƇkCBO3^sQtu'?MTeLqF Bla7H= sP{C*P$^_ؼ'Cgf:{4ǭZ:o;u w.߈jG  2߄DHNA " rqMcrzr*<}_ ^4d.̝.sTuffL|[BQN@N$$BsI.^ČFhf̎?dY:Jus@j`ϊ`h.46lHi ԂU)"!G߁?k_Vm뱔$U:~*,?]`%ei'r?>/DV4ӎ 70 X"S fTx3_Txh&]nL~yO?T%Rխvِg,7 ^"듰%)T}{4qS4-,g\ZaX,(>N-68к,ko.DE%@+D/X#gėje^.S*#ׅd^5;O^AF#JnKʠQ`B/uJk9UkwKPOِ`ži\qER%$j?9>OZ_aڋ@bxm[<j+M}LIEiNn)1,g,1_Niֲ.PCBԧ?^!p]:T>Sn3$Y'h)81i:`7c[l P<{KB[=hv({[ ޷\a00vlpqnlb¼<`P:DhJ@_R &Cnfq>;rv ˼2 }z^5dE ;GF|7Hkd- ի\8vZh .V15j&+E|SF^.FV 'a-NU+fLA!Cl KMNB,4g|9.t4(־vK($*gpZK)=qT=bG آZF񤡅oK=Ln 592yT(Zlc~PT(3fC3$l͜~نdnBB'Ւ\5]T!aj؊Xx5H/~շxx|JIK+H` \4ZC2P~d<Xl~[f{ҴX#.D4?A'qlP5a- @3؃}dBc 'uٌ𣰺̕;GBE#ّ13"E.7-Y^۟Q+EuH,ˢdlOv׌x n^j6Ih^s,(C+mV&FT[ rTWmbsxM3 *QbO VޭH$h6CZ}~}$W`ʘ^5@_25a 0]lQPd8/z;aKT_nCjiF';L<'[=R]f2p \W̤m42C̠;ǒ\:7j0|q i%%ؿЅGDIZ.bNbH &oBU4bs2Um@V7F7~va ~\&Yݩ(l&\6pfJdCx7C>ph<ȡ UT1ܖtwO kWh1?&y{Yn \'l2 lf w ,<TK'Ƣ!/.5Gb_h*;h$řgVq}R&t=U̯#z5We?#m - &m["@O,hW C\*@VwJjCSwwp2d,[?Ͻ+fϖJ.$چjxo989c՗Z)_ʙ1"GPo#y9"p˨ 7ME5ՑMYd\N]0rh:L}}Lt]<)O ax#sQQvҮK 9|.ӂ ƌFe gh awT=Am;"m쯉f玹0Q4ͤr#b!W13|@:f׻XVN/)q  x>"x(Vӣm1S>0 #FqK Z8TL27)ڭJ*YZuocv|+ӜѱJ,.,. Jp$>X>g}d 2ѡ~!2(n4(gR?.ō8" WՆ(¼_񘓇\L#w_ LK)j :thGI+񸱏k(h<ۍ/ u=+4f:d 7T|ۄ_eZk]2&RjGC 8CU &'' *%=i&#Y#8$Wc53 n ZN@,3|Uqr:T*j.t> db`DlINF_oj=~p\f@|X]J<3Sa VY`Ya܆out? _Y R/þq~xIqvH:I2֨j$* \{5 mcad?i&,X<CeeeIM E|VlsQgiNrd}TwQ괲ڈ{֭m')"g.ˆQcTdA˹+SA`nUzMvҜ`[X+: 2f4WI_AY{pu:6:lwG>6Btl+J3_/qU ΅d OYQ0&[))RC9H|I#qD7% kSoZU?Dk>`/&e|[sivÞ5˩䈍"~o6[%|Z6p3Q"Y]55;;cNy:WSh3TU2;MUp:]\?9H^f`e'̤O풩~v6}׫ Iv0 = (Kw Zj n%3&(*A 9p~Kx6;0_w7TBU?܈yXhez1& n+ uVnC!xDq]cѬN-c.nTϩМi!K|RW̬gƖ;KLn~̳. R}u[sX$0)IR626)̔Ye(v4L6kz--B)/!n-eG9!OUT8k^iP|ƃ|9RH~){ rWRdO ;qH?њ9.FIj%~aʯ!xtk@/:R ]D~wBr79w)J(m*>u M~7urHmq6=N裃qul%Kvu k ~ #ITqO-kb)*x$A@a斴/z&0+C{J6#8؅ ,SXPJHD61g:;?YPp+oLgI1ʘ@$,ʾo}Z9ӪhJUEM9jkHrKA.[z-.]9'8:Eq,< ΃#*}7&3_ӕQشx808P!LJ SABV'O5tI EhHu6@ sTSfؖ4-5YJDق3R^v 1pU &),|ԉ~7QF]w@|PKGuclN/ ɼ1xcIGY<䵰!4u15&:WI|f-h3=ѝga̳9yddIAV'u}D#]Ts3wM$<*fݡġ7|p".\0*aʅá5nɾLTCѓs`^K倒Z#g Яbµ;y0ΗK^Ƶ};if׀Y  )[4\JAQg|yXz m9naPT8Y|3q?lEDിQ#EX,0Cԥի|K$nx2uӌF&V)1f]+]w|(^O|9DŽ4x%Ycb CY) Cb.b傪 Q Bb7❷pMaF r1if&wݥa ?Yf A7tFv}2WsUE{A87O.$[7%FevqAtȮ*|W?8w eE˯dbwv3ʕ׏>idFE=?4Noꉍ)a.䰶>D/PN` ҄+CYq}&brE)~,r4n6I6Q0U4pl8p<7H$eIǑ:ۣZZߓ:VeѷL?8qdC2ux,)RG ^@"@yXWW(ހLAN!^U[R.Z]KԸH ^$)Ј co;h Ǟ\dxV/ed\ڝ{ ST[Kl-VP` jڅffܱ,EH2yHraTVI<˫mH4xk3C $[7=*ِxp7([d"R +cVw~iq>_@,n>^ Ox6G| :*M}Ma-n{"/bvIU FprEv (-c72ϫ-dF '=jK WbĩsuO6);:)HMf1)70_!J7 y3@ksK"!`yˤl+oz"Ԛf59>hJ}2[5k(@0 X:`~|=(Ƃ' eshv)L;ЄZmM[f'! L۞u`[?%(Cf'߱(~nT;Q6#~![<Bǥ ZDf@n Ndif4QcErv?֤)_Fb ?v{m_I&(6h,G͂#gyZ\t4,Rhxg~׆FukX%(=@)O"L军^=)jt_&q[̳TQ[t%|Ԉ㊼HN-9MbY%)?yxce_[.aƅ:#F;Pq#wJX)g+l򒚊%@S3Ӛ(E6A}=xpM)O#RJ0E#D=9B~؎[Ŧo=?|>LNRN[-e:vA㸔6;8I^L H˃zէk%S8!z`!7dCC3Aݭ>43R |;ntaw(ssQO [^sMP;螉 MuJ.>6DBEդz쥹oc{RwxM0Zߠdk ky̡!3l{_( &\` r`*U; >PƢ$_7e(a3e'¥K <)~ jdU ]5&m\uC _r[z Q#OdÚ`%KkxE5zA ho[9$)sbɯiH3f)>¨Τβ>faM\jB-13h.hJ%HLdkCwS@@UEr<}(l\/(gɤe %PPSm3A#$} ˌ5e,>BR9y1@e_tDZcFm{VE5lYێ(%}ݙD޺*-,S~@`鴙\ğ7Z #[NQ1h2a{PmhiH|DFvsS!䐳!!/ϵ]esx!#6}XDytizW^q~>*m9+(O%Zh;J.  1e+|AZSAlœ#ߨs!G"!5-Yc>+"}UInu v, eW1^^+ݫ~SЫclbaM 2V2dQaD `{15r2d' E4L3|9 5%ղZ^ڟ@^ר+5ؙ8hv܅ 'qn11+ǐ ,Re;L$zXw_ HdexĿI Fz?vfvJ[`Sr.gE1pKCr_?z]Hk#d6XƸo{p (LQ^4TЫ16$g%)@z7~Ls@?ۘ2غq寋XS0lQ(%[t?g2'SK<id+5#d (m|_OIs'Xoq$4)]"QuF+{MZL|ߪۍ0 XZw^پeB}r!zj;* 9Ȍ.  D P.v|7~sƛ<Й+prBaSO 739:F&ͺ0I v,,ow*v00vQZM\&=H6 .)SdĪQ elz./Td6E* G*^ʇΫ:, dbXcs9S@ ̱ܖb%&M>x 7kuP:P~lST/wW9G lf(K16 k is |ƛ2k#vCʋ^{~A&kn\f]\Rfdž:vp8iݾ aञC*}]!2JI'L$.ЇuD)Q1t>Zl0@0OYU q^Sifk]$˙ɁKxխ0 $}L@hYݮ  ?= 3E^_l YtKڀ)}ϸw3eǺՉ(t\/md,J8bӡm.w(RXDg}T|^x@RfK痵^.k Ld=Iz:׫R5kGf1pؠQg LD={iP[gԀ)ٜJ4JDثap2DR"/Z_Ґv4]ӯ Rxh-)Fx3FvʷR($阿  y=!ĺ|z^֧Nt_/_9);pεI{&pdB>"G8Juʲ@usuʘi ݼ35:2|H:Q#ˀٿybp!HkaT!>8|E&b^ 2H=G%Btg n?`Pd1>+w@OeгYc.fj,f *驭TL ^h!|(-Ԟ[ ?8,TP g MB:SPnR0o!Y2}4 MsAl`=zzA9Hڣ֖1n/ӈ9{ ,U0Ǎ(2#=&lY`gKI͝)-r\*#B\Tā=%n373ϒ-qˌ왕KDbA9P =`6y!C.Cg bR:J, Rg,qHu a+j7" }t2):R%WWmIfxRfC+0pRSÙ,-dWd,"[ɗ_Mפݟ9uk,Oޙ\_x+9R#]aCWnYAGˁ.|8Q,D{T6;D9VZ_*a) > T ZF Zr>ѧMD:RT^-ym ю ԁ-(3&p jd]j֛-deI9k!_q8eb#=VZ.']Ai)Vt u۾_S3ęX 6?MnG vV$0L&iE}@ݑAOW7#I }755=.zdJO b$uB"L, 18$2 ﵎(l&8kÍ,{m1oӱW#U,z3b2mu_3ٺ1H)8`\3\X"ّ$!;D] Wʐ&Kohqw%"g09g{b``zP2,Y8A#YQ\$x2|hvk)i>"C.5A@ÖK2X@B2J(;?+WJF2sqUgsfb׬dזL(ϦïDEeAתf,P?}Ҷ>*̻ |25BUBzdԋH Njm)]#d&w!95ZmАq#6{ +4$ˏנd#9K{*k?`eh* }"h,i .X o*36z5 U i4)#EcZ8"}Eпjnҏ#3]dT$ d6[/Ÿ"`Y I0=m@iYޚgZ7;GJC:*+FԯWaQB;I0B|?rjyx7$z:$*\Mb]IE-FG>+ QRyGW{0eb 8QΜ!e <ؗ Q Ltd#㬬h\Ipf`\4'7BwLM_ʥN!aR-ZTt~}H#P6_S_g8 QS(JC2ĦX~ rt(N:IS+o@E{av'/4 Sn.V}6"Sc& :A >CUfwitvmGe X9I kݒ''nF'On,H\/5,x[̍C:b)01پBCYh̫y9Wed 6<~zư@ fayNQIVk[?3ӿ k$ 2t:c/y:2wf*Hߕ$ ù |7[X24jmW|&x`/RfuAJhU]]Y8 %Ԕc"œ6h)qQ1?=+H:܁9Z9>T!ıvQ*ݚ.öYQwL4";s1)PlB+rҧoF~^rŽ88D碻n$߷\"ǃol[ڽJonVy2]!j)B]]ޖK RlK@y2M`DqA,rc bI}`" 3;Y%3)cL|XB>d֠:mjɸǖ&~zRJ=m]a4ft.2}'haqJ*++1tu_)h>Os[5h昲 ma=z,tH7Qe*mrK4E2埸,hT_6gâHDf?-[YjY5cX@h4!X;̮ JP| z c^ 2+} iYtK$ I0sz_6`Kgu)e Žx++0Dٝf,L曽C;1|ZZq a1=lxT"·YLͬ~pJ9[Cr3cżTB2&9D`5g^}DgS8iִ>4=gkM{t|Bخ MHCώ4ȧbpuebAL%~Eڴ3sI$SyI s2o p틵)K9קy=~^mORz3yjfN׌%DM6OCsV(A> GesZ2jf'Arٙl=\tG dASU1H:t٢PO0c XNq|I;rɔSSJ*~CylC"QZtU~'KjzZN>5IY4FEZ9Ro3 7 LZXsP]yN [l7fsjG'H؂}I:$9ڰZ F46~޹3HUJ}/hJ_$+xOgKR}d%ρaa^=اI`Ba0%M[-6e Ŗl"UI$I9ί[VIqhV hvZ h ;k'*؛z4Gx,~W T$C{U9e\N?UǺQo*y`_74lG;ky&Ѐy͜ e"U :Wє_)v'3yoZHnE{BA+,'Z6Y(5mᤝPqaA&a$`TM1yR[a!?={:,x2AX\Br |q(ghXTdk%g_231' |z}:6 fOyy`I`e' dN%%d=9x!Kj-l['pZWW[E4ΥC#1d_7Z7F;-h}R M5c%vn{ e2ucRL0y,}{v[ ol9{zNqiCk0DAB"{ +Yo Oe4#[gYSV 3jkxE F[H<:n/ bc0CdRCw[!^{6Ԃ4(cUEC~+q w(Caܕ߬|\7cQR|Z:ONWD?c,a%fl7+g^bC"ʽ(J2U IzWޝHs76rW;ҿE EJ1nH9HU3UN0pzCXlT՟8Y`ֿ0 fk7+sA+c%i,!4j2˵9as / m;ͦ;3{9/Sdr:w2rp%xRY ,se9xhb*I)]n膴_+'uNIEP`g:u8Mӑ&δvp$-+xj84nL0^#_HN7no\gW:cC?Pёaf!1w'cymh#8!{rCRMyfR+=xНw%F~}jS}M 1D4h}_Wּݒ)AJ/ztZJkIQv? OSEvZu\z :0!̐P+?K*Gu1%w4'fbzf]4pUrQlcM7kR]@jg -č@$ab{7.k`nOYQ &$Bcւ "|"8P R;;Uq"\d1^P/XF^ܺ"A2JUOX U Θԫ2qHa{z26}vE =Cm$x0;v7jܕ;``jY9(xSeg+Y5n8Wb}ΓLD׏N)Zѯ(MkP}6t,*sVA2,!և?#nM1ރ(Qv ~ l;(Lw򍸼 ōNJ)eVG;{i)TMZ-#TȘ"5&l͢y ! 䛨l&ɴ`Ăo:@*_-xAnc2BG,;nH9B ϔq}#u׷ŤŠ7Yoe#3W rq"ΨH&hb`ɏ,1MqxdެD|`#x.bcHsPKBF]`mrȷ+ +_f D7>a  8"5e)b By5R]@x{ J|N05u F#߻UI~&X0 Ml`6o*!3mx@5Uzdv ( 6,5[h=)9}tQ%ZΕ5SX}W\DŽ4A+5c˺m/`Φĩ0s?np,2 >;>::pb,!w{ǁ.ïԃ0˾$]ߥ{ *(F (k4nʱ4,t'fPcbX>oi"|r.8DhEɻ;s# sT@ntzKŘy涥lYuŽ6jΐl?`d?q 1 m se/YKZJt f,xb,-VXetec..|AfWO6tvٹ? ?k?iT7lG2l.~_)ASe)UQQ*n{63aM%>,<~JVT?ߒxƘK`{=7$fi1H$$7gx[$edC_^ŷ8$LD!F6/ᇟ }%*g<+ӊ_Z#=oD.t^Ll s8"Q؜~<[brp6ubܤbB6V7Շ$k`{|͹O)"KhoNb9 eJ^tH>5Dn&3%x[UGkq;"vK1fK4Pwv,-u_o ** x1::4 aP7zےJVz^N|zYx<4F1ut_3oԼU5Tf])#cc(}/M}增._L/o3CpzUρ46ޛ%4;0uF.\K'dOJ h~K\ Ds-/2䒤gyկo/7d]E Y#|Œ@4AU*ܰ1{_ؿ[n2UHZ ވ- H,iRi$IHaJ- d8j&bOo8 Dܻ=@W`*d%3%мv>bp}]mOv-$4tXsI\ظqq:{Bȓ*2"z/ijB"Psd&ϑZl ^k caݙd k7͌;SO.֚q*]1$::Iv: >5J= o=N4XC;ꝶ6au<.*7uO1,hRYFpޅoWn N/3oXVC#+PŠ#6!O ռ{Eg̷2ߺ ަ-b} :*Q?F˗UI01qeWQ k*v#q-wdN%ޥzl5)5Cl*pf[c4#s}֟+ `Ai%2;,𗴥P0!8jk&-.YGzXӷjN1cPm®-01ocdf[K֌`U,syr&]b_4R7k3 xr-hZZղHB9~s*<^?=mX1="s_aI0%׈|ca upgTGN_ lGJ07?Kjptӈ]Ew?Zô|j>]~f3S,^ ГwGT^K͌L:+rPSOqNntkYj, 5kvRʆAkh)3X=`zy58Y~7!S}XY RoxtšYVz]s"`Nn]JuW$]MXEJCZ=<g}ĩ0Ğ#萪P#*`tGkfmop{935fqN Ԏ:g{3[~0@SXۅ0qFDn) m?aRuJx<\KV9S Td7Ha664ֻlƸrLEx@鸯kYUiZ0+lOxH[O6辰\˺T OfQ7]̾rnӋ/ ci|RBbס"RVż[1Ys*]/j {A>]M"`bDqh@ Wj.BV1KԾ]**Z@gL>tq]ֽ*xdgEm}l&MK ;3&10LVZ71/oX>vݯQ̺ˡN۔qc(H|~,3PnQG Y~"3#k&=D7J z,-/íN 8BϷ TbN:c.lR87l䌻Wv8P`΄[*:q婡RYJ"^ F G&HGP nNz W lTDqm`IWO5?}Eqs؆]0;}[PfȰ@;}R+CQ\;S^P BP[YIp:mDxKSэձuhbiXҡ7l:Î$7we NvESaU?\ iRp)H;>8|lեx48I!'JZboaP[9'9]:BM (GfZbpD]#GeY :JK0D&wR6Rj۵Ʊ8YjS#7SHrt8q,4dզND:0viv )Nxt7.jԲ`X6Nh__[V;kˌ. rŊbIXٿ" }5T8(BÌәrB*\QچP:ƔzQbi>J 3n@atT?K׿U]\:/G.9~&Me4\(P|c7 ny8,7Խ>@tF7怚c֦RJ܏zU#+fveIl: r{4 oSd%kJ8^H \I ;YEN[&0}= g3Q&Uih՞|+ wx|O>asH8S Nd;jgUr4f$hC7)Ѧi"p/Ezѓory}r)4jӼ7ir6$b:e@5 KT+?YECƎtwEأW10u2yC"3Nl.O]T;s[Clrƙүh.Zx{QVU N_G$-רBbq֚S5$.Y#aYK2I/쀱Vz!oɾ#7=Av:m wlby Ӵp$1C^h~مmsPt-N #38]uj|MtZ`;ϩ*+ZJ6*,AἯlXdEcƴ9Pa.mM Q9ٗCjwV8:^ǁ:B%d@yda21ᱣtW~zG)$|Vz4fO)U0V*xO0|!*K#I.6krDs`: _ekޤOض$~ A,0-lQ(^kGꫂࠉ/Ϊ^'+9NΘ4NhIG1ܿXԺD"CPgg q78%706XwQp_EfօlBSB@,|`݇b}ʪeo Ƀ.QV=_P D_/ڳۗ/H%@H`Ѧ %;<5<,0 ,|J0F*/)V%3~v 㮠?oPz|^vv+3vRk/]~T1?qr %W"D٣fءo1|w].'v Ǻ7lu2 =g2=I)~ {eVX0eH]"c)((( tw5tmЁUp\_S#D x;rAaF =P3G62Q$N~06lw}o#~ʈc"7o<[cxd|4헫EΗ/AsPg7\y]DnUa{n {_0i/rt5n[`G+t0=G-~&Xk=^Sj)"a } :r/a(H &ǭ•ľJ 4Hd+p:rݲi)oͿ+ed/a4/sΞXJh]Ik٢zqg//]PSn3Vd"l^UP yƴ&I:B;I}J4 fdV!wVB8I9aTЯ􀲶xU,H d:G=cPd6K-9,tamV=v'=koHm3TǏ,hADj9: x$SgI`XAbc_<ОW=YL@NUʇ貋_[I"|&%G#tLW#?M*h]EꎥɪV_?&ν`A#=e[SgΨ!1Um-HlOYsΗUr-k _+E-YG :mXu @te&γUiF&X,0<w{rS1  pZ]jf=:{₧/ϼȅ%׽Sy8nV_P{~?-|.*XנG%6^.w2xT Ȯ=H.OzF[O+EAUV[񿏮ES@k#%l<%{=HG moe3Nk3MLH4:ohR+$A#c@y @N=ˠ|t'v~U6ab}zώ2N(wZV: ˧ =trWHpC}7CyHXMτ- (z9BK;a=rr/H]` 'ٮwC3Tn/z j@weuJY v":U̙_VH^2 zzX"] ^WLcɳ. * EdE*V&,@ V><7dؿvPqD)j. i z#6"n{4kx>1Cc`Dލ}ڵǧmij ™ɳv)k{ <6,5 G25-M b0xXe(u՜secT"d|U =KDXzkpjb|ٻ#S@$43jXfw ,U(vwmr V&1鷈6uۋy#o?F/Y1~|7%.⤻ȲlNGq%Q+K.A> ӌ|ٜ"Ȟ(]Gyb"?p9JA~nFETsU=Oն?Qm;+\kO gC$a ('$s,=As""N"9 ᒡ!q7Jb H/Gԡüӑ>#Uٿ("#OL!$ØFh9|phU.3S9?x=g;5ִ#KuhwQWfIgu̷Hnu`ɕTOÏjuٙbDCm1kZm갭5)Ua em^'E񊕊n 襺aEEp>ڲ@Jf!3fXyςN-I9˻C H|.?b (s絗rakaJL~߃7Dg^rwUWt~&#]uWV!ϷDY6+1t>p&72d,o|~ uCis%0_J4m+]\쿌E؋IX:ܰTߨDJk(T'Fn&i+\1$ 'BfAz0}biǂ4Bѱ0aa0mF.2ҝI;ߕZ dIV((\S:/ðwK$|pmÅ;0.hd6 F5Q\WKWm3-*FpO;!=gu89lu/ʣ$nyFqNAvEc=((^&iڐ 6',wYBƖwuݏ8fUjh }R2TxCF;9K|ʭ ϧ#%B|>F9MJUt7CHGG3c0pM!ў QfzԮ 'U)7H}=n>?5 ާ2oQ2$:cl@tm/!slv7fݬHl=QD-Wpg;'T5^s:Y@mŐyhܓ>b"R5N'}=E/y#“B̉ӷ|Ҫ}a#UU#v| [n#wvFZL Q+= :+ -ѭɒy7`DRv ejYp$jP@xDsLRO&Dk߭_L\ xn,p(6?&W|(kbߏGUnr1)]R]1:[{sV>,q|zPd3l_3[$ю&p6phO p/OFT—}Lϙ|R_F_y|r8"ǟ Ic?tޔ]Α=f3˖B}wRæ=!N~ض=xeQz9p]&1#"S&;$4^_E7JL߫ʅFByإǍ># Arǯ$ I- :ʻLǴoJ=pjWM'*&Fje;G]V~ ˿.wZht+hs;\"O|5]Z(~UM aFl)EerL9ė*/ o@ZPS5nTљH[TO޳x?{͸EbG8&1ӯ֎1Cy:P%h/`Ym:S \$n"D4;ԵMjbé ڗ7G3P¡eа*&#B `|RSĶh^VZ2(2!phq;l7,^ .`VvHUU]e>&FHT7` bè< `D5P It3M]ܯN09F ]_ Z "g8Gxkr:\ȀJ-=ٺaƄDO0xn6^kdkIAX?ch,:㿆~S Kfk _H2oⓛkֺ̠oP(\-Z&ߦx.v"<=/'rR1IuWҀ(9b 0j$wb#TmsX 8c:hed4W}T_V{g4XSJ;ygap.U 2S5ӎ92#T*+6h}"mx[㖛ˏs0Rj 0&譢K"Uy"(=H? Zm0{x=uʮ̷֮)z>t1 ckCJvZ3Tq%}L9,*]!Qn@IuJbdLm=?_x@ V$yRUgz: 5Ye:ư"چ?m968&>z(xhi͟-.i|M-m?M ,vA• p1%u_6U8x)0M;b˼k]nYp@nIN(#}t)S < @lԀ>EԟOT-FLNLc(}Y \k8rE7s0 aE//7dQ_̈+0/]\K\;& (".r%;lBB9nmo>X*P뀃O:"h!sUQ]e.5:xB64vFup!U"_D+~\9$оȁ2M]#bxZ(c Th/sg%љ[p k'7gNz(m71-¥bP>Ik*R!KF5,#Dg 35NYUg$=k&1FPvL}v#KqAt_G&ד&o|{K̺! -77*H`/#O3I!f`+d7T9LBzId u:#t5ub4I?KfXm*o&ZTjIi:+- 2IGR ؙǁqV0Zvb| asOq*x$haOz> t!ǒ{2Ɠxz{x4rxXW =R*@KWv(бLHWҡ݉_%7liS:jOqn2[K*i2Ao@;nծu0 wr^'W]_PF>e>X%8ohԀ~s P(K -uGomV6j0f )YW;F> ]eY զ*E l|DfJ>0ߞ(Ni?gi]myX_H+|s[Ss壚}Y4)_rW!Z]@dY񬡳 D2Bw?ш,i zl1'W-Üe͍#} jPMa.r,Ǚg̗2=~-@ DkW?$&j:W$ko. 5H|HʪF'>q+wmn^ֻ#,IB,bd/kAR檟_R3D,D1F_W)TKkSFide0,%$Um4`,7zEˉ؂eK1ЧpDd.! z ؜Z]sb`@7313H a@R)6ZKue\պXHoW!::`IxdՄ+^S&Q|"̒t2  "ːEc"NqWt3j\ayx*@&gkںnUq,&sb6Bguښ9m9TE4Fn͹T8T'CSqx=9cC:-=ii g? X4qv"tݙzYt"Xab CШ!ŭ24=fԏj!C~d,/g=J_ZԓdL+Jˆ+m}ψ&궣36 ΃aU1b[ tM@9ڦC?' "m#T?sp6!j5tQ0@_ѷ?l=su V:WP⸡Fw>V&j^[Gz~Je _&K(_2rv'nx:YouN0"q}:;49sNꓡ~ `+oO[8=# f-_q@ |Qij$)5*?tlf\dqXep|2U#HXVpf5哋L@  bV)]ܦ"NnO߲J/.6u8 J^[jq^Psǿx M#2_ܿ)}:yÎIN!jB| A7)9Wkk?_>IUnb"+t[[=hўF}' s#間cz 9/ +Yl(HhίY6AaK^ṪL 87;ȫF^eYSkv+v: &hϽ׈ߞ EʶwE?oBē-wz"vuhPCehhң>HSR.H5{ I?qRit٩ -/5UvLj1OlR#Xܶwd5 jj3lhݲ>=}|M߳ IRm\Zy!;R\9j}?>ݑ}-d0V;XnbrYCH%sH#>Pǎ5Qr%km>I5X (u.BK'TXT;USwFC^YzO*4kڅGyg/cI@˙ 2q.xD]V&{ Y2􋪆u@ jet֩Oox|-BV/T[,|&-|Wwr.tO qEBTQs.uFL !nHs*ҮPp2'Ӛ~4g°^pfk7Mo6B&wJB4~jƛ3PJWmlY-?$4=X, ^=eЂ7 -u@nF62ⷘ%)FÁ`}eW gTw,;"Ṇv6,XHߋP؊4&rK[)q]_Wא'ьAl\0X@M}$|460Jwv*Tޝ[Pxkݺ3i;@Ia֙; oܮ)_f|<4mA['@']-s"!iH[Ԡu9QI 7 /E Z0|o\utJ#cykBz^kȰ,H6Mq۳oM_[[?cZ[:6eKEN892#l0)@%Yů #ʝLY) %e=Ӎb^e(Fyd9qhdwƜ!"e˳z&x #3Bcq$.-QpfbL\-Eb;uO!?KqqIMf,4N~oŸ@Ox{ 0O=OsG)KNjDN}ڠq Ϯ/^[2KyٝbAֵg*BHh/\>BL@itIV"d29!mWО$',M|XA AGBN bG'm}_]x?.2ʷ9F?MYqG $rA甛U@";ssAEoxdoЍKW7 +?ܧd̪&q1Yh'ݯDdHkqX܈Kmdh\7uCAv뻏)W%u  iێtkߤ~u,T1jdjZT+EA?qBx͔Ogj|-EcgY86$#Sէǟ>E ;':q9K=&r?&4_DVh99$QյF;?Aᕵw}~ԇaAfKZYcȺj KbD1;2"Ic '\_<c"}5ͼ?A>Z$7uN„lF(a_k&5ExsQ^جZ+lהD ,2O18yAFF)kZ>n"I}N;-gT^a"H>ii=p>ٔsQ`G:;I$uݼpV zCCfNl&xx񠼌~<;(dmx fs^8m_SZPwџk gY>रZs%I L bLK D;RG+ \F%FD,52un-$ڨ1Ry$K=үz#;#(sFJ_fn?H2% 9Ֆn m&Wͮxިpz5hS Xm[g%p]K@h{Ɖ(Rrv0\9EUyhD:x) VI<>23:x"ʐw^_5VFS>oFdwÎ1>?^E1nnşBз8D ɔY+$]J9P\x5Y,m@*_c!b@tFrֆ$[yZQAy2p`L3$ul57%wwǪea1b'A3OGti&޸~>m!DVFL5F 0e :̛0ARI{MhdNYCyTl>fAۙmUMp~4EĶ=]O/` FOle0*Q۸l>d:%B;;+1ݢ!@aq~\ ߍObJSf}{GW9R^Q`Jھv&0uta?(]*Hݾ9R}N %98*DYesQ B ΦYn#qXTu5);z%zZ W/\/CK k}OB^kLX7dmΙwn eg7or7hf!|'ʂ6#jO2voa1ltL`AoS(!%F=C>EzrHJ ̗l!r밚y:UqV]#$4ww5&" \ e]{/g}[x+u`ziW -,ʆw&M=:6G&w (X/‰׿1'Nζ+7Je;ov8l9zv UZ`6ۛ[RpoG_X*Jb""Iw4n:NBkp [r?op'hbI6]Wk!'KCw߇;kJ}X!WA=统(#nݎwg$Uĭ)a?QEӻMLiɐYrL@{#UlM(gqjd؉}FZj6_{cT'VP5@pFy]0^`@B)x Jv5l1r f,ۗE_FGs8]L`؍dXd7 4Gdq$r,;ZҫFkcT.Ud3+ [%mXi~>[ʰ㯋_!UZ nL0qNSel [B!Xͤ0ls{5e$a7\,,W1 uR$&V(B m4ӫəvۮ imAU\ԌkJ}\۝\mni"և]7`2Á)w IXzB[?~hZG &3^i؉|=jFJe!NTsEOBzaݭNn:8b?R:u:p+_ N^^s/;!q?rN~^0i|ig2f%&(a1'J#a[{j _hRi$ (P?R6kuw%Eo'>뇈)|x ࠟތJ&;?ffJXW"Kyf}Y4ֿ)=9A=;hN\ϽYI6xE6&Hz;TB1\R1`WuMflJfd^}„I9Tu Բi'-&?=୮9B9CN +yN6cOh}QWa9n􎳶"4倭LS׸%ɲ,KDwIM}:\S^Lz1L@(P&[Nޟљ: j,#XʻtÀ0TC렘?E͋g ^Cq*2Ң u"#2biD(ZWƂwo쭔N+&Eዸ0V4 `iGHs ZNԨVZ WjK@)3 aB.iNgo/4ՙZkHf #iզ .=\*/ >ޖ{خi#3O+>(wȎ,PUW}%J갩ndč |KY~&C`˛VP X~xٖ%̉ MQ  YZ