openssh-common-8.4p1-150300.3.18.2 >  A dKp9|kgP\0_BD7vH1qg__K};mSNeDV.0SQ])NlN?Gm-]̸Ɛrl{*+ҕTBZ«c8$kG;IԻ ſ;*?3xɘ>Gq{ K;FܘR$;0*6r RȽ\e^6s!,&㊕|TʢnghCN y+t}pA?d % E2G ]y    `  PD q   ( 8 [9 [:[FG4HtIXY\ ]L^ bcZdefluv<wx y` zCopenssh-common8.4p1150300.3.18.2SSH (Secure Shell) common filesSSH (Secure Shell) is a program for logging into and executing commands on a remote machine. It replaces rsh (rlogin and rsh) and provides secure encrypted communication between two untrusted hosts over an insecure network. xorg-x11 (X Window System) connections and arbitrary TCP/IP ports can also be forwarded over the secure channel. This package contains common files for the Secure Shell server and clients.dKwmourvedreSUSE Linux Enterprise 15SUSE LLC BSD-2-Clause AND MIThttps://www.suse.com/Productivity/Networking/SSHhttps://www.openssh.com/linuxppc64le* pvFcV   (;X/ A큀A큤A큤$$dKqdKqdKsdKv_p>M_pBO_p>M_p>MdKdKdK_p>MdKv_p>MdKqdKq26c7ce984ad1554faa013243ef9b80a3333926157c361f7b338112a128e72fb99143ca0e95a00c6e917553eaacf58a2720241712bb01beb3b0208461ad63671d7ce5ace3ef0c9859b1bce11f16b55764918098df7c252fedc0af0ac1cc19cf7a2c0c7a320c31e48e26761ae1e4f85144a94d47efdff025e4bcb77cc71c725233e316829db4e08ef17fc6d3b0c20a992de0f936043a28fbcf8840e28247ab0827310f98f3e5a5369da093f879fc9a6f077c1ecf94040727550cdfa8c030a2d36e175e7c8c2ca49c904598b82c36f255b536b5d2b63999998332e935e478338397c083708e66964338b54096eac464ad4c7f7291c55078129382b4904d05e68f36ee6e37bc6c078178f6ee03ecd5bfb0648d85ae13ea6ae68f8ec2bae112370cec2945b0ca20d85ac65eaae6679c396f49e6bec98b70bc5826ebb60bee0c14b17473d0db766229670c7b4e1ec5e6baed54977a0694a565e7cc878c45ee834045d7cd5e134c51537135f0a4f8ab3e659ab57c787c2d41d78124efb7be5c78c59b02472535860809c60b66bba4f9679622ec00d4da3b190ac86ee3655ab780cf0162rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootopenssh-8.4p1-150300.3.18.2.src.rpmconfig(openssh-common)openssh-commonopenssh-common(ppc-64)@@@@@@@@@@@@@    config(openssh-common)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.25)(64bit)libc.so.6(GLIBC_2.26)(64bit)libcrypto.so.1.1()(64bit)libcrypto.so.1.1(OPENSSL_1_1_0)(64bit)libcrypto.so.1.1(OPENSSL_1_1_1d)(64bit)libdl.so.2()(64bit)libdl.so.2(GLIBC_2.17)(64bit)libresolv.so.2()(64bit)libresolv.so.2(GLIBC_2.17)(64bit)libselinux.so.1()(64bit)libz.so.1()(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)8.4p1-150300.3.18.23.0.4-14.6.0-14.0-15.2-1nonfreesshopenssh-fipsopenssh-fips8.4p1-150300.3.18.28.4p1-150300.3.18.24.14.3d&@b@bbaA@a@`` ` @` @` @`x@`x@_I@_@_@_@_@_~@_m_m_cO_Z@^3^Ӝ@^Y^K^B@]|@]X]W]c@]c@]c@]@]Z@]5@\@\@\@\M\w@\v{\j@\eX@\eX@\N\J@\I\I\?\8@\-@\[@[ٙ@[ͻ[@[@[@[$@[$@[@[@[[[0@[Z@Z@Zľ@ZZqZhu@Z]@ZX@ZWQZ@Y|Y@X}@W@WW@WV@WL+@WH6W#LW@VT@T@vliaskovitis@suse.comvliaskovitis@suse.comvliaskovitis@suse.comhpj@suse.comhpj@suse.comhpj@suse.comhpj@suse.comhpj@suse.comhpj@suse.comhpj@suse.comkukuk@suse.comdmueller@suse.comhpj@suse.comkukuk@suse.comhpj@suse.comhpj@suse.comhpj@suse.comhpj@suse.comdimstar@opensuse.orgfbui@suse.comjengelh@inai.dehpj@suse.comhpj@suse.comandreas.stieger@gmx.delnussel@suse.defvogt@suse.comhpj@suse.comhpj@suse.comcrrodriguez@opensuse.orghpj@suse.comhpj@suse.comhpj@suse.comhpj@suse.comhpj@suse.comkukuk@suse.defabian@ritter-vogt.devcizek@suse.comvcizek@suse.comvcizek@suse.comvcizek@suse.comvcizek@suse.comvcizek@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.comtchvatal@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.compmonrealgonzalez@suse.comvcizek@suse.comcrrodriguez@opensuse.orgpmonrealgonzalez@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comtchvatal@suse.comschwab@suse.detchvatal@suse.comastieger@suse.compcerny@suse.comdimstar@opensuse.orgpcerny@suse.comkukuk@suse.depcerny@suse.compcerny@suse.compcerny@suse.comdimstar@opensuse.orgpcerny@suse.compcerny@suse.comrbrown@suse.comjsegitz@suse.compcerny@suse.comcrrodriguez@opensuse.orgpcerny@suse.compcerny@suse.commeissner@suse.compcerny@suse.compcerny@suse.compcerny@suse.compcerny@suse.comkukuk@suse.comastieger@suse.commeissner@suse.comledest@gmail.com- Revert addition of openssh-dbus.sh, openssh-dbus.csh, openssh-dbus.fish: This caused invalid and irrelevant environment assignments (bsc#1207014).- Add openssh-dbus.sh, openssh-dbus.csh, openssh-dbus.fish: Make ssh connections update their dbus environment (bsc#1179465).- Add openssh-do-not-send-empty-message.patch: Prevent empty messages from being sent. This avoids a superfluous new line (bsc#1192439).- Add openssh-CVE-2021-28041-agent-double-free.patch (bsc#1183137, CVE-2021-28041), from upstream.- Add openssh-bsc1190975-CVE-2021-41617-authorizedkeyscommand.patch (bsc#1190975, CVE-2021-41617), backported from upstream by Ali Abdallah.- Add openssh-7.6p1-audit_race_condition.patch, fixing sshd termination of multichannel sessions with non-root users (error on 'mm_request_receive_expect') (bsc#1115550, bsc#1174162).- Add openssh-fix-ssh-copy-id.patch, which fixes breakage introduced in 8.4p1 (bsc#1181311).- Improve robustness of sshd init detection when upgrading from a pre-systemd distribution.- Add openssh-reenable-dh-group14-sha1-default.patch, which adds diffie-hellman-group14-sha1 key exchange back to the default list (bsc#1180958). This is needed for backwards compatibility with older platforms.- Make sure sshd is enabled correctly when upgrading from a pre-systemd distribution (bsc#1180083).- sysusers-sshd.conf: use sysusers.d configuration file to create sshd user (avoid hard dependency on shadow).- update to 8.4p1: Security ======== * ssh-agent(1): restrict ssh-agent from signing web challenges for FIDO/U2F keys. * ssh-keygen(1): Enable FIDO 2.1 credProtect extension when generating a FIDO resident key. * ssh(1), ssh-keygen(1): support for FIDO keys that require a PIN for each use. These keys may be generated using ssh-keygen using a new "verify-required" option. When a PIN-required key is used, the user will be prompted for a PIN to complete the signature operation. New Features - ----------- * sshd(8): authorized_keys now supports a new "verify-required" option to require FIDO signatures assert that the token verified that the user was present before making the signature. The FIDO protocol supports multiple methods for user-verification, but currently OpenSSH only supports PIN verification. * sshd(8), ssh-keygen(1): add support for verifying FIDO webauthn signatures. Webauthn is a standard for using FIDO keys in web browsers. These signatures are a slightly different format to plain FIDO signatures and thus require explicit support. * ssh(1): allow some keywords to expand shell-style ${ENV} environment variables. The supported keywords are CertificateFile, ControlPath, IdentityAgent and IdentityFile, plus LocalForward and RemoteForward when used for Unix domain socket paths. bz#3140 * ssh(1), ssh-agent(1): allow some additional control over the use of ssh-askpass via a new $SSH_ASKPASS_REQUIRE environment variable, including forcibly enabling and disabling its use. bz#69 * ssh(1): allow ssh_config(5)'s AddKeysToAgent keyword accept a time limit for keys in addition to its current flag options. Time- limited keys will automatically be removed from ssh-agent after their expiry time has passed. * scp(1), sftp(1): allow the -A flag to explicitly enable agent forwarding in scp and sftp. The default remains to not forward an agent, even when ssh_config enables it. * ssh(1): add a '%k' TOKEN that expands to the effective HostKey of the destination. This allows, e.g., keeping host keys in individual files using "UserKnownHostsFile ~/.ssh/known_hosts.d/%k". bz#1654 * ssh(1): add %-TOKEN, environment variable and tilde expansion to the UserKnownHostsFile directive, allowing the path to be completed by the configuration (e.g. bz#1654) * ssh-keygen(1): allow "ssh-add -d -" to read keys to be deleted from stdin. bz#3180 * sshd(8): improve logging for MaxStartups connection throttling. sshd will now log when it starts and stops throttling and periodically while in this state. bz#3055 Bugfixes - ------- * ssh(1), ssh-keygen(1): better support for multiple attached FIDO tokens. In cases where OpenSSH cannot unambiguously determine which token to direct a request to, the user is now required to select a token by touching it. In cases of operations that require a PIN to be verified, this avoids sending the wrong PIN to the wrong token and incrementing the token's PIN failure counter (tokens effectively erase their keys after too many PIN failures). * sshd(8): fix Include before Match in sshd_config; bz#3122 * ssh(1): close stdin/out/error when forking after authentication completes ("ssh -f ...") bz#3137 * ssh(1), sshd(8): limit the amount of channel input data buffered, avoiding peers that advertise large windows but are slow to read from causing high memory consumption. * ssh-agent(1): handle multiple requests sent in a single write() to the agent. * sshd(8): allow sshd_config longer than 256k * sshd(8): avoid spurious "Unable to load host key" message when sshd load a private key but no public counterpart * ssh(1): prefer the default hostkey algorithm list whenever we have a hostkey that matches its best-preference algorithm. * sshd(1): when ordering the hostkey algorithms to request from a server, prefer certificate types if the known_hosts files contain a key marked as a @cert-authority; bz#3157 * ssh(1): perform host key fingerprint comparisons for the "Are you sure you want to continue connecting (yes/no/[fingerprint])?" prompt with case sensitivity. * sshd(8): ensure that address/masklen mismatches in sshd_config yield fatal errors at daemon start time rather than later when they are evaluated. * ssh-keygen(1): ensure that certificate extensions are lexically sorted. Previously if the user specified a custom extension then the everything would be in order except the custom ones. bz#3198 * ssh(1): also compare username when checking for JumpHost loops. bz#3057 * ssh-keygen(1): preserve group/world read permission on known_hosts files across runs of "ssh-keygen -Rf /path". The old behaviour was to remove all rights for group/other. bz#3146 * ssh-keygen(1): Mention the [-a rounds] flag in the ssh-keygen manual page and usage(). * sshd(8): explicitly construct path to ~/.ssh/rc rather than relying on it being relative to the current directory, so that it can still be found if the shell startup changes its directory. bz#3185 * sshd(8): when redirecting sshd's log output to a file, undo this redirection after the session child process is forked(). Fixes missing log messages when using this feature under some circumstances. * sshd(8): start ClientAliveInterval bookkeeping before first pass through select() loop; fixed theoretical case where busy sshd may ignore timeouts from client. * ssh(1): only reset the ServerAliveInterval check when we receive traffic from the server and ignore traffic from a port forwarding client, preventing a client from keeping a connection alive when it should be terminated. bz#2265 * ssh-keygen(1): avoid spurious error message when ssh-keygen creates files outside ~/.ssh * sftp-client(1): fix off-by-one error that caused sftp downloads to make one more concurrent request that desired. This prevented using sftp(1) in unpipelined request/response mode, which is useful when debugging. bz#3054 * ssh(1), sshd(8): handle EINTR in waitfd() and timeout_connect() helpers. bz#3071 * ssh(1), ssh-keygen(1): defer creation of ~/.ssh until we attempt to write to it so we don't leave an empty .ssh directory when it's not needed. bz#3156 * ssh(1), sshd(8): fix multiplier when parsing time specifications when handling seconds after other units. bz#3171- Update openssh-8.1p1-audit.patch (bsc#1180501). This fixes occasional crashes on connection termination caused by accessing freed memory.- Support /usr/etc/pam.d- Fix build breakage caused by missing security key objects: + Modify openssh-7.7p1-cavstest-ctr.patch. + Modify openssh-7.7p1-cavstest-kdf.patch. + Add openssh-link-with-sk.patch.- Add openssh-fips-ensure-approved-moduli.patch (bsc#1177939). This ensures only approved DH parameters are used in FIPS mode.- Add openssh-8.1p1-ed25519-use-openssl-rng.patch (bsc#1173799). This uses OpenSSL's RAND_bytes() directly instead of the internal ChaCha20-based implementation to obtain random bytes for Ed25519 curve computations. This is required for FIPS compliance.- Work around %service_add_post disabling sshd on upgrade with package name change (bsc#1177039).- Fix fillup-template usage: + %post server needs to reference ssh (not sshd), which matches the sysconfig.ssh file name the package ships. + %post client does not need any fillup_ calls, as there is no client-relevant sysconfig file present. The naming of the sysconfig file (ssh instead of sshd) is unfortunate.- Use of DISABLE_RESTART_ON_UPDATE is deprecated. Replace it with %service_del_postun_without_restart- Move some Requires to the right subpackage. - Avoid ">&" bashism in %post. - Upgrade some old specfile constructs/macros and drop unnecessary %{?systemd_*}. - Trim descriptions and straighten out the grammar.- Split openssh package into openssh, openssh-common, openssh-server and openssh-clients. This allows for the ssh clients to be installed without the server component (bsc#1176434).- Version update to 8.3p1: = Potentially-incompatible changes * sftp(1): reject an argument of "-1" in the same way as ssh(1) and scp(1) do instead of accepting and silently ignoring it. = New features * sshd(8): make IgnoreRhosts a tri-state option: "yes" to ignore rhosts/shosts, "no" allow rhosts/shosts or (new) "shosts-only" to allow .shosts files but not .rhosts. * sshd(8): allow the IgnoreRhosts directive to appear anywhere in a sshd_config, not just before any Match blocks. * ssh(1): add %TOKEN percent expansion for the LocalFoward and RemoteForward keywords when used for Unix domain socket forwarding. * all: allow loading public keys from the unencrypted envelope of a private key file if no corresponding public key file is present. * ssh(1), sshd(8): prefer to use chacha20 from libcrypto where possible instead of the (slower) portable C implementation included in OpenSSH. * ssh-keygen(1): add ability to dump the contents of a binary key revocation list via "ssh-keygen -lQf /path". - Additional changes from 8.2p1 release: = Potentially-incompatible changes * ssh(1), sshd(8), ssh-keygen(1): this release removes the "ssh-rsa" (RSA/SHA1) algorithm from those accepted for certificate signatures (i.e. the client and server CASignatureAlgorithms option) and will use the rsa-sha2-512 signature algorithm by default when the ssh-keygen(1) CA signs new certificates. * ssh(1), sshd(8): this release removes diffie-hellman-group14-sha1 from the default key exchange proposal for both the client and server. * ssh-keygen(1): the command-line options related to the generation and screening of safe prime numbers used by the diffie-hellman-group-exchange-* key exchange algorithms have changed. Most options have been folded under the -O flag. * sshd(8): the sshd listener process title visible to ps(1) has changed to include information about the number of connections that are currently attempting authentication and the limits configured by MaxStartups. * ssh-sk-helper(8): this is a new binary. It is used by the FIDO/U2F support to provide address-space isolation for token middleware libraries (including the internal one). It needs to be installed in the expected path, typically under /usr/libexec or similar. = New features * This release adds support for FIDO/U2F hardware authenticators to OpenSSH. U2F/FIDO are open standards for inexpensive two-factor authentication hardware that are widely used for website authentication. In OpenSSH FIDO devices are supported by new public key types "ecdsa-sk" and "ed25519-sk", along with corresponding certificate types. * sshd(8): add an Include sshd_config keyword that allows including additional configuration files via glob(3) patterns. * ssh(1)/sshd(8): make the LE (low effort) DSCP code point available via the IPQoS directive. * ssh(1): when AddKeysToAgent=yes is set and the key contains no comment, add the key to the agent with the key's path as the comment. * ssh-keygen(1), ssh-agent(1): expose PKCS#11 key labels and X.509 subjects as key comments, rather than simply listing the PKCS#11 provider library path. * ssh-keygen(1): allow PEM export of DSA and ECDSA keys. * ssh(1), sshd(8): make zlib compile-time optional, available via the Makefile.inc ZLIB flag on OpenBSD or via the --with-zlib configure option for OpenSSH portable. * sshd(8): when clients get denied by MaxStartups, send a notification prior to the SSH2 protocol banner according to RFC4253 section 4.2. * ssh(1), ssh-agent(1): when invoking the $SSH_ASKPASS prompt program, pass a hint to the program to describe the type of desired prompt. The possible values are "confirm" (indicating that a yes/no confirmation dialog with no text entry should be shown), "none" (to indicate an informational message only), or blank for the original ssh-askpass behaviour of requesting a password/phrase. * ssh(1): allow forwarding a different agent socket to the path specified by $SSH_AUTH_SOCK, by extending the existing ForwardAgent option to accepting an explicit path or the name of an environment variable in addition to yes/no. * ssh-keygen(1): add a new signature operations "find-principals" to look up the principal associated with a signature from an allowed- signers file. * sshd(8): expose the number of currently-authenticating connections along with the MaxStartups limit in the process title visible to "ps". - Rebased patches: * openssh-7.7p1-cavstest-ctr.patch * openssh-7.7p1-cavstest-kdf.patch * openssh-7.7p1-fips.patch * openssh-7.7p1-fips_checks.patch * openssh-7.7p1-ldap.patch * openssh-7.7p1-no_fork-no_pid_file.patch * openssh-7.7p1-sftp_print_diagnostic_messages.patch * openssh-8.0p1-gssapi-keyex.patch * openssh-8.1p1-audit.patch * openssh-8.1p1-seccomp-clock_nanosleep.patch - Removed openssh-7.7p1-seed-prng.patch (bsc#1165158).- add upstream signing key to actually verify source signature- Don't recommend xauth to avoid pulling in X.- Add patches to fix the sandbox blocking glibc on 32bit platforms (boo#1164061): * openssh-8.1p1-seccomp-clock_nanosleep_time64.patch * openssh-8.1p1-seccomp-clock_gettime64.patch- Add openssh-8.1p1-use-openssl-kdf.patch (jsc#SLE-9443). This performs key derivation using OpenSSL's SSHKDF facility, which allows OpenSSH to benefit from the former's FIPS certification status.- Make sure ssh-keygen runs if SSHD_AUTO_KEYGEN variable is unset or contains an unrecognized value (bsc#1157176).- Add openssh-8.1p1-seccomp-clock_nanosleep.patch, allow clock_nanosleep glibc master implements multiple functions using that syscall making the privsep sandbox kill the preauth process.- Update openssh-7.7p1-audit.patch to fix crash (bsc#1152730). Fix by Enzo Matsumiya (ematsumiya@suse.com). This was integrated in a separate code stream merged with the Oct. 10 update; the patch was also rebased and renamed to openssh-8.1p1-audit.patch.- Add openssh-7.9p1-keygen-preserve-perms.patch (bsc#1150574). This attempts to preserve the permissions of any existing known_hosts file when modified by ssh-keygen (for instance, with -R). - Added openssh-7.9p1-revert-new-qos-defaults.patch, which reverts an upstream commit that caused compatibility issues with other software (bsc#1136402).- Run 'ssh-keygen -A' on startup only if SSHD_AUTO_KEYGEN="yes" in /etc/sysconfig/ssh. This is set to "yes" by default, but can be changed by the system administrator (bsc#1139089).- Add openssh-7.9p1-keygen-preserve-perms.patch (bsc#1150574). This attempts to preserve the permissions of any existing known_hosts file when modified by ssh-keygen (for instance, with -R).- Version update to 8.1p1: * ssh-keygen(1): when acting as a CA and signing certificates with an RSA key, default to using the rsa-sha2-512 signature algorithm. Certificates signed by RSA keys will therefore be incompatible with OpenSSH versions prior to 7.2 unless the default is overridden (using "ssh-keygen -t ssh-rsa -s ..."). * ssh(1): Allow %n to be expanded in ProxyCommand strings * ssh(1), sshd(8): Allow prepending a list of algorithms to the default set by starting the list with the '^' character, E.g. "HostKeyAlgorithms ^ssh-ed25519" * ssh-keygen(1): add an experimental lightweight signature and verification ability. Signatures may be made using regular ssh keys held on disk or stored in a ssh-agent and verified against an authorized_keys-like list of allowed keys. Signatures embed a namespace that prevents confusion and attacks between different usage domains (e.g. files vs email). * ssh-keygen(1): print key comment when extracting public key from a private key. * ssh-keygen(1): accept the verbose flag when searching for host keys in known hosts (i.e. "ssh-keygen -vF host") to print the matching host's random-art signature too. * All: support PKCS8 as an optional format for storage of private keys to disk. The OpenSSH native key format remains the default, but PKCS8 is a superior format to PEM if interoperability with non-OpenSSH software is required, as it may use a less insecure key derivation function than PEM's. - Additional changes from 8.0p1 release: * scp(1): Add "-T" flag to disable client-side filtering of server file list. * sshd(8): Remove support for obsolete "host/port" syntax. * ssh(1), ssh-agent(1), ssh-add(1): Add support for ECDSA keys in PKCS#11 tokens. * ssh(1), sshd(8): Add experimental quantum-computing resistant key exchange method, based on a combination of Streamlined NTRU Prime 4591^761 and X25519. * ssh-keygen(1): Increase the default RSA key size to 3072 bits, following NIST Special Publication 800-57's guidance for a 128-bit equivalent symmetric security level. * ssh(1): Allow "PKCS11Provider=none" to override later instances of the PKCS11Provider directive in ssh_config, * sshd(8): Add a log message for situations where a connection is dropped for attempting to run a command but a sshd_config ForceCommand=internal-sftp restriction is in effect. * ssh(1): When prompting whether to record a new host key, accept the key fingerprint as a synonym for "yes". This allows the user to paste a fingerprint obtained out of band at the prompt and have the client do the comparison for you. * ssh-keygen(1): When signing multiple certificates on a single command-line invocation, allow automatically incrementing the certificate serial number. * scp(1), sftp(1): Accept -J option as an alias to ProxyJump on the scp and sftp command-lines. * ssh-agent(1), ssh-pkcs11-helper(8), ssh-add(1): Accept "-v" command-line flags to increase the verbosity of output; pass verbose flags though to subprocesses, such as ssh-pkcs11-helper started from ssh-agent. * ssh-add(1): Add a "-T" option to allowing testing whether keys in an agent are usable by performing a signature and a verification. * sftp-server(8): Add a "lsetstat@openssh.com" protocol extension that replicates the functionality of the existing SSH2_FXP_SETSTAT operation but does not follow symlinks. * sftp(1): Add "-h" flag to chown/chgrp/chmod commands to request they do not follow symlinks. * sshd(8): Expose $SSH_CONNECTION in the PAM environment. This makes the connection 4-tuple available to PAM modules that wish to use it in decision-making. * sshd(8): Add a ssh_config "Match final" predicate Matches in same pass as "Match canonical" but doesn't require hostname canonicalisation be enabled. * sftp(1): Support a prefix of '@' to suppress echo of sftp batch commands. * ssh-keygen(1): When printing certificate contents using "ssh-keygen -Lf /path/certificate", include the algorithm that the CA used to sign the cert. - Rebased patches: * openssh-7.7p1-IPv6_X_forwarding.patch * openssh-7.7p1-X_forward_with_disabled_ipv6.patch * openssh-7.7p1-cavstest-ctr.patch * openssh-7.7p1-cavstest-kdf.patch * openssh-7.7p1-disable_openssl_abi_check.patch * openssh-7.7p1-fips.patch * openssh-7.7p1-fips_checks.patch * openssh-7.7p1-hostname_changes_when_forwarding_X.patch * openssh-7.7p1-ldap.patch * openssh-7.7p1-seed-prng.patch * openssh-7.7p1-sftp_force_permissions.patch * openssh-7.7p1-sftp_print_diagnostic_messages.patch * openssh-8.0p1-gssapi-keyex.patch (formerly openssh-7.7p1-gssapi_key_exchange.patch) * openssh-8.1p1-audit.patch (formerly openssh-7.7p1-audit.patch) - Removed patches (integrated upstream): * 0001-upstream-Fix-two-race-conditions-in-sshd-relating-to.patch * openssh-7.7p1-seccomp_ioctl_s390_EP11.patch * openssh-7.9p1-CVE-2018-20685.patch * openssh-7.9p1-brace-expansion.patch * openssh-CVE-2019-6109-force-progressmeter-update.patch * openssh-CVE-2019-6109-sanitize-scp-filenames.patch * openssh-CVE-2019-6111-scp-client-wildcard.patch - Removed patches (obsolete): * openssh-openssl-1_0_0-compatibility.patch- don't install SuSEfirewall2 service on Factory, since SuSEfirewall2 has been replaced by firewalld, see [1]. [1]: https://lists.opensuse.org/opensuse-factory/2019-01/msg00490.html- ssh-askpass: Try a fallback if the other option is not available- Fix a crash with GSSAPI key exchange (bsc#1136104) * modify openssh-7.7p1-gssapi_key_exchange.patch- Fix a double free() in the KDF CAVS testing tool (bsc#1065237) * modify openssh-7.7p1-cavstest-kdf.patch- Minor clean-up of the fips patches, modified openssh-7.7p1-fips.patch openssh-7.7p1-fips_checks.patch- Fix two race conditions in sshd relating to SIGHUP (bsc#1119183) * 0001-upstream-Fix-two-race-conditions-in-sshd-relating-to.patch- Correctly filter out non-compliant algorithms when in FIPS mode (bsc#1126397) * A hunk was applied to a wrong place due to a patch fuzz when the fips patch was being ported to openssh 7.9p1 - update openssh-7.7p1-fips.patch- Remove the "KexDHMin" config keyword (bsc#1127180) It used to allow lowering of the minimal allowed DH group size, which was increased to 2048 by upstream in the light of the Logjam attack. The code was broken since the upgrade to 7.6p1, but nobody noticed. As apparently no one needs the functionality any more, let's drop the patch. It's still possible to use the fixed 1024-bit diffie-hellman-group1-sha1 key exchange method when working with legacy systems. - drop openssh-7.7p1-disable_short_DH_parameters.patch - updated patches: openssh-7.7p1-fips.patch openssh-7.7p1-fips_checks.patch openssh-7.7p1-gssapi_key_exchange.patch- Handle brace expansion in scp when checking that filenames sent by the server side match what the client requested [bsc#1125687] * openssh-7.9p1-brace-expansion.patch- Updated security fixes: * [bsc#1121816, CVE-2019-6109] Sanitize scp filenames via snmprintf and have progressmeter force an update at the beginning and end of each transfer. Added patches: - openssh-CVE-2019-6109-sanitize-scp-filenames.patch - openssh-CVE-2019-6109-force-progressmeter-update.patch * [bsc#1121821, CVE-2019-6111] Check in scp client that filenames sent during remote->local directory copies satisfy the wildcard specified by the user. Added patch: - openssh-CVE-2019-6111-scp-client-wildcard.patch * Removed openssh-7.9p1-scp-name-validator.patch- Change the askpass wrapper to not use x11 interface: * by default we use the -gnome UI (which is gtk3 only, no gnome dep) * if desktop is KDE/LxQt we use ksshaskpass- Remove old conditionals- Move ssh-ldap* man pages into openssh-helpers [bsc#1051531]- Allow root login by default [bsc#1118114, bsc#1121196] * Added/updated previous patch openssh-7.7p1-allow_root_password_login.patch * Mention the change in README.SUSE- Added SLE conditionals in the spec files: * Keep gtk2-devel in openssh-askpass-gnome in SLE * Keep krb5-mini-devel in SLE - Removed obsolete configure options: * SSH protocol 1 --with-ssh1 * Smart card --with-opensc - Cleaned spec file with spec-cleaner- Security fix: * [bsc#1121816, CVE-2019-6109] scp client spoofing via object name * [bsc#1121818, CVE-2019-6110] scp client spoofing via stderr * [bsc#1121821, CVE-2019-6111] scp client missing received object name validation * Added patch openssh-7.9p1-scp-name-validator.patch- Security fix: [bsc#1121571, CVE-2018-20685] * The scp client allows remote SSH servers to bypass intended access restrictions * Added patch openssh-7.9p1-CVE-2018-20685.patch- Added compatibility with SuSEfirewall2 [bsc#1118044]- Update the firewall rules in Tumbleweed- Fix build with openssl < 1.1.0 * add openssh-openssl-1_0_0-compatibility.patch- openssh-7.7p1-audit.patch: fix sshd fatal error in mm_answer_keyverify: buffer error: incomplete message [bnc#1114008]- Version update to 7.9p1 * ssh(1), sshd(8): the setting of the new CASignatureAlgorithms option (see below) bans the use of DSA keys as certificate authorities. * sshd(8): the authentication success/failure log message has changed format slightly. It now includes the certificate fingerprint (previously it included only key ID and CA key fingerprint). * ssh(1), sshd(8): allow most port numbers to be specified using service names from getservbyname(3) (typically /etc/services). * sshd(8): support signalling sessions via the SSH protocol. A limited subset of signals is supported and only for login or command sessions (i.e. not subsystems) that were not subject to a forced command via authorized_keys or sshd_config. bz#1424 * ssh(1): support "ssh -Q sig" to list supported signature options. Also "ssh -Q help" to show the full set of supported queries. * ssh(1), sshd(8): add a CASignatureAlgorithms option for the client and server configs to allow control over which signature formats are allowed for CAs to sign certificates. For example, this allows banning CAs that sign certificates using the RSA-SHA1 signature algorithm. * sshd(8), ssh-keygen(1): allow key revocation lists (KRLs) to revoke keys specified by SHA256 hash. * ssh-keygen(1): allow creation of key revocation lists directly from base64-encoded SHA256 fingerprints. This supports revoking keys using only the information contained in sshd(8) authentication log messages. - Removed obsolete configuration option --with-tcp-wrappers, and - -with-opensc for s390 and s390x. - Removed patch merged upstream * openssh-7.7p1-openssl_1.1.0.patch - Refreshed patches * openssh-7.7p1-audit.patch * openssh-7.7p1-disable_short_DH_parameters.patch * openssh-7.7p1-fips.patch * openssh-7.7p1-gssapi_key_exchange.patch * openssh-7.7p1-seccomp_ipc_flock.patch * openssh-7.7p1-cavstest-ctr.patch * openssh-7.7p1-ldap.patch- Mention upstream bugs on multiple local patches - Adjust service to not spam restart and reload only on fails- Update openssh-7.7p1-sftp_force_permissions.patch from the upstream bug, and mention the bug in the spec- Drop patch openssh-7.7p1-allow_root_password_login.patch * There is no reason to set less secure default value, if users need the behaviour they can still set it up themselves - Drop patch openssh-7.7p1-blocksigalrm.patch * We had a bug way in past about this but it was never reproduced or even confirmed in the ticket, thus rather drop the patch- Disable ssh1 protocol support as neither RH or Debian enable this protocol by default anymore either.- Remove the mention of the SLE12 in the README.SUSE - Install firewall rules only when really needed ( ::1) before they are matched against known_hosts. bz#2763 * ssh(1): Don't accept junk after "yes" or "no" responses to hostkey prompts. bz#2803 * sftp(1): Have sftp print a warning about shell cleanliness when decoding the first packet fails, which is usually caused by shells polluting stdout of non-interactive startups. bz#2800 * ssh(1)/sshd(8): Switch timers in packet code from using wall-clock time to monotonic time, allowing the packet layer to better function over a clock step and avoiding possible integer overflows during steps. * Numerous manual page fixes and improvements.- Use TIRPC on suse_version >= 1500: sunrpc is deprecated and should be replaced by TIRPC.- additional rebased patches (bsc#1080779) * auditing support * LDAP integration * various distribution tweaks from SLE12 (X forwarding over IPv6, sftp forced permissions and verbose batch mode)- Use %license instead of %doc [bsc#1082318]- add OpenSSL 1.0 to 1.1 shim to remove dependency on old OpenSSL (update tracker: bsc#1080779)- Add missing crypto hardware enablement patches for IBM mainframes (FATE#323902)- add missing part of systemd integration (unit type)- BuildRequire pkgconfig(libsystemd) instead of systemd-devel: allow the scheduler to pick systemd-mini flavors to get build going.- Replace forgotten references to /var/adm/fillup-templates with new %_fillupdir macro (boo#1069468) - tighten configuration access rights- Update to vanilla 7.6p1 Most important changes (more details below): * complete removal of the ancient SSHv1 protocol * sshd(8) cannot run without privilege separation * removal of suport for arcfourm blowfish and CAST ciphers and RIPE-MD160 HMAC * refuse RSA keys shorter than 1024 bits Distilled upstream log: - OpenSSH 7.3 - --- Security * sshd(8): Mitigate a potential denial-of-service attack against the system's crypt(3) function via sshd(8). An attacker could send very long passwords that would cause excessive CPU use in crypt(3). sshd(8) now refuses to accept password authentication requests of length greater than 1024 characters. Independently reported by Tomas Kuthan (Oracle), Andres Rojas and Javier Nieto. * sshd(8): Mitigate timing differences in password authentication that could be used to discern valid from invalid account names when long passwords were sent and particular password hashing algorithms are in use on the server. CVE-2016-6210, reported by EddieEzra.Harari at verint.com * ssh(1), sshd(8): Fix observable timing weakness in the CBC padding oracle countermeasures. Reported by Jean Paul Degabriele, Kenny Paterson, Torben Hansen and Martin Albrecht. Note that CBC ciphers are disabled by default and only included for legacy compatibility. * ssh(1), sshd(8): Improve operation ordering of MAC verification for Encrypt-then-MAC (EtM) mode transport MAC algorithms to verify the MAC before decrypting any ciphertext. This removes the possibility of timing differences leaking facts about the plaintext, though no such leakage has been observed. Reported by Jean Paul Degabriele, Kenny Paterson, Torben Hansen and Martin Albrecht. * sshd(8): (portable only) Ignore PAM environment vars when UseLogin=yes. If PAM is configured to read user-specified environment variables and UseLogin=yes in sshd_config, then a hostile local user may attack /bin/login via LD_PRELOAD or similar environment variables set via PAM. CVE-2015-8325, found by Shayan Sadigh. - --- New Features * ssh(1): Add a ProxyJump option and corresponding -J command-line flag to allow simplified indirection through a one or more SSH bastions or "jump hosts". * ssh(1): Add an IdentityAgent option to allow specifying specific agent sockets instead of accepting one from the environment. * ssh(1): Allow ExitOnForwardFailure and ClearAllForwardings to be optionally overridden when using ssh -W. bz#2577 * ssh(1), sshd(8): Implement support for the IUTF8 terminal mode as per draft-sgtatham-secsh-iutf8-00. * ssh(1), sshd(8): Add support for additional fixed Diffie-Hellman 2K, 4K and 8K groups from draft-ietf-curdle-ssh-kex-sha2-03. * ssh-keygen(1), ssh(1), sshd(8): support SHA256 and SHA512 RSA signatures in certificates; * ssh(1): Add an Include directive for ssh_config(5) files. * ssh(1): Permit UTF-8 characters in pre-authentication banners sent from the server. bz#2058 - --- Bugfixes * ssh(1), sshd(8): Reduce the syslog level of some relatively common protocol events from LOG_CRIT. bz#2585 * sshd(8): Refuse AuthenticationMethods="" in configurations and accept AuthenticationMethods=any for the default behaviour of not requiring multiple authentication. bz#2398 * sshd(8): Remove obsolete and misleading "POSSIBLE BREAK-IN ATTEMPT!" message when forward and reverse DNS don't match. bz#2585 * ssh(1): Close ControlPersist background process stderr except in debug mode or when logging to syslog. bz#1988 * misc: Make PROTOCOL description for direct-streamlocal@openssh.com channel open messages match deployed code. bz#2529 * ssh(1): Deduplicate LocalForward and RemoteForward entries to fix failures when both ExitOnForwardFailure and hostname canonicalisation are enabled. bz#2562 * sshd(8): Remove fallback from moduli to obsolete "primes" file that was deprecated in 2001. bz#2559. * sshd_config(5): Correct description of UseDNS: it affects ssh hostname processing for authorized_keys, not known_hosts; bz#2554 * ssh(1): Fix authentication using lone certificate keys in an agent without corresponding private keys on the filesystem. bz#2550 * sshd(8): Send ClientAliveInterval pings when a time-based RekeyLimit is set; previously keepalive packets were not being sent. bz#2252 - --- Portability * ssh(1), sshd(8): Fix compilation by automatically disabling ciphers not supported by OpenSSL. bz#2466 * misc: Fix compilation failures on some versions of AIX's compiler related to the definition of the VA_COPY macro. bz#2589 * sshd(8): Whitelist more architectures to enable the seccomp-bpf sandbox. bz#2590 * ssh-agent(1), sftp-server(8): Disable process tracing on Solaris using setpflags(__PROC_PROTECT, ...). bz#2584 * sshd(8): On Solaris, don't call Solaris setproject() with UsePAM=yes it's PAM's responsibility. bz#2425 - OpenSSH 7.4 - --- Potentially-incompatible changes * ssh(1): Remove 3des-cbc from the client's default proposal. 64-bit block ciphers are not safe in 2016 and we don't want to wait until attacks like SWEET32 are extended to SSH. As 3des-cbc was the only mandatory cipher in the SSH RFCs, this may cause problems connecting to older devices using the default configuration, but it's highly likely that such devices already need explicit configuration for key exchange and hostkey algorithms already anyway. * sshd(8): Remove support for pre-authentication compression. Doing compression early in the protocol probably seemed reasonable in the 1990s, but today it's clearly a bad idea in terms of both cryptography (cf. multiple compression oracle attacks in TLS) and attack surface. Pre-auth compression support has been disabled by default for >10 years. Support remains in the client. * ssh-agent will refuse to load PKCS#11 modules outside a whitelist of trusted paths by default. The path whitelist may be specified at run-time. * sshd(8): When a forced-command appears in both a certificate and an authorized keys/principals command= restriction, sshd will now refuse to accept the certificate unless they are identical. The previous (documented) behaviour of having the certificate forced-command override the other could be a bit confusing and error-prone. * sshd(8): Remove the UseLogin configuration directive and support for having /bin/login manage login sessions. - --- Security * ssh-agent(1): Will now refuse to load PKCS#11 modules from paths outside a trusted whitelist (run-time configurable). Requests to load modules could be passed via agent forwarding and an attacker could attempt to load a hostile PKCS#11 module across the forwarded agent channel: PKCS#11 modules are shared libraries, so this would result in code execution on the system running the ssh-agent if the attacker has control of the forwarded agent-socket (on the host running the sshd server) and the ability to write to the filesystem of the host running ssh-agent (usually the host running the ssh client). Reported by Jann Horn of Project Zero. * sshd(8): When privilege separation is disabled, forwarded Unix- domain sockets would be created by sshd(8) with the privileges of 'root' instead of the authenticated user. This release refuses Unix-domain socket forwarding when privilege separation is disabled (Privilege separation has been enabled by default for 14 years). Reported by Jann Horn of Project Zero. * sshd(8): Avoid theoretical leak of host private key material to privilege-separated child processes via realloc() when reading keys. No such leak was observed in practice for normal-sized keys, nor does a leak to the child processes directly expose key material to unprivileged users. Reported by Jann Horn of Project Zero. * sshd(8): The shared memory manager used by pre-authentication compression support had a bounds checks that could be elided by some optimising compilers. Additionally, this memory manager was incorrectly accessible when pre-authentication compression was disabled. This could potentially allow attacks against the privileged monitor process from the sandboxed privilege-separation process (a compromise of the latter would be required first). This release removes support for pre-authentication compression from sshd(8). Reported by Guido Vranken using the Stack unstable optimisation identification tool (http://css.csail.mit.edu/stack/) * sshd(8): Fix denial-of-service condition where an attacker who sends multiple KEXINIT messages may consume up to 128MB per connection. Reported by Shi Lei of Gear Team, Qihoo 360. * sshd(8): Validate address ranges for AllowUser and DenyUsers directives at configuration load time and refuse to accept invalid ones. It was previously possible to specify invalid CIDR address ranges (e.g. user@127.1.2.3/55) and these would always match, possibly resulting in granting access where it was not intended. Reported by Laurence Parry. - --- New Features * ssh(1): Add a proxy multiplexing mode to ssh(1) inspired by the version in PuTTY by Simon Tatham. This allows a multiplexing client to communicate with the master process using a subset of the SSH packet and channels protocol over a Unix-domain socket, with the main process acting as a proxy that translates channel IDs, etc. This allows multiplexing mode to run on systems that lack file- descriptor passing (used by current multiplexing code) and potentially, in conjunction with Unix-domain socket forwarding, with the client and multiplexing master process on different machines. Multiplexing proxy mode may be invoked using "ssh -O proxy ..." * sshd(8): Add a sshd_config DisableForwarding option that disables X11, agent, TCP, tunnel and Unix domain socket forwarding, as well as anything else we might implement in the future. Like the 'restrict' authorized_keys flag, this is intended to be a simple and future-proof way of restricting an account. * sshd(8), ssh(1): Support the "curve25519-sha256" key exchange method. This is identical to the currently-supported method named "curve25519-sha256@libssh.org". * sshd(8): Improve handling of SIGHUP by checking to see if sshd is already daemonised at startup and skipping the call to daemon(3) if it is. This ensures that a SIGHUP restart of sshd(8) will retain the same process-ID as the initial execution. sshd(8) will also now unlink the PidFile prior to SIGHUP restart and re-create it after a successful restart, rather than leaving a stale file in the case of a configuration error. bz#2641 * sshd(8): Allow ClientAliveInterval and ClientAliveCountMax directives to appear in sshd_config Match blocks. * sshd(8): Add %-escapes to AuthorizedPrincipalsCommand to match those supported by AuthorizedKeysCommand (key, key type, fingerprint, etc.) and a few more to provide access to the contents of the certificate being offered. * Added regression tests for string matching, address matching and string sanitisation functions. * Improved the key exchange fuzzer harness. - --- Bugfixes * ssh(1): Allow IdentityFile to successfully load and use certificates that have no corresponding bare public key. bz#2617 certificate id_rsa-cert.pub (and no id_rsa.pub). * ssh(1): Fix public key authentication when multiple authentication is in use and publickey is not just the first method attempted. bz#2642 * regress: Allow the PuTTY interop tests to run unattended. bz#2639 * ssh-agent(1), ssh(1): improve reporting when attempting to load keys from PKCS#11 tokens with fewer useless log messages and more detail in debug messages. bz#2610 * ssh(1): When tearing down ControlMaster connections, don't pollute stderr when LogLevel=quiet. * sftp(1): On ^Z wait for underlying ssh(1) to suspend before suspending sftp(1) to ensure that ssh(1) restores the terminal mode correctly if suspended during a password prompt. * ssh(1): Avoid busy-wait when ssh(1) is suspended during a password prompt. * ssh(1), sshd(8): Correctly report errors during sending of ext- info messages. * sshd(8): fix NULL-deref crash if sshd(8) received an out-of- sequence NEWKEYS message. * sshd(8): Correct list of supported signature algorithms sent in the server-sig-algs extension. bz#2547 * sshd(8): Fix sending ext_info message if privsep is disabled. * sshd(8): more strictly enforce the expected ordering of privilege separation monitor calls used for authentication and allow them only when their respective authentication methods are enabled in the configuration * sshd(8): Fix uninitialised optlen in getsockopt() call; harmless on Unix/BSD but potentially crashy on Cygwin. * Fix false positive reports caused by explicit_bzero(3) not being recognised as a memory initialiser when compiled with - fsanitize-memory. * sshd_config(5): Use 2001:db8::/32, the official IPv6 subnet for configuration examples. - --- Portability * On environments configured with Turkish locales, fall back to the C/POSIX locale to avoid errors in configuration parsing caused by that locale's unique handling of the letters 'i' and 'I'. bz#2643 * sftp-server(8), ssh-agent(1): Deny ptrace on OS X using ptrace(PT_DENY_ATTACH, ..) * ssh(1), sshd(8): Unbreak AES-CTR ciphers on old (~0.9.8) OpenSSL. * Fix compilation for libcrypto compiled without RIPEMD160 support. * contrib: Add a gnome-ssh-askpass3 with GTK+3 support. bz#2640 * sshd(8): Improve PRNG reseeding across privilege separation and force libcrypto to obtain a high-quality seed before chroot or sandboxing. * All: Explicitly test for broken strnvis. NetBSD added an strnvis and unfortunately made it incompatible with the existing one in OpenBSD and Linux's libbsd (the former having existed for over ten years). Try to detect this mess, and assume the only safe option if we're cross compiling. - OpenSSH 7.5 - --- Potentially-incompatible changes * This release deprecates the sshd_config UsePrivilegeSeparation option, thereby making privilege separation mandatory. Privilege separation has been on by default for almost 15 years and sandboxing has been on by default for almost the last five. * The format of several log messages emitted by the packet code has changed to include additional information about the user and their authentication state. Software that monitors ssh/sshd logs may need to account for these changes. For example: Connection closed by user x 1.1.1.1 port 1234 [preauth] Connection closed by authenticating user x 10.1.1.1 port 1234 [preauth] Connection closed by invalid user x 1.1.1.1 port 1234 [preauth] Affected messages include connection closure, timeout, remote disconnection, negotiation failure and some other fatal messages generated by the packet code. * [Portable OpenSSH only] This version removes support for building against OpenSSL versions prior to 1.0.1. OpenSSL stopped supporting versions prior to 1.0.1 over 12 months ago (i.e. they no longer receive fixes for security bugs). - --- Security * ssh(1), sshd(8): Fix weakness in CBC padding oracle countermeasures that allowed a variant of the attack fixed in OpenSSH 7.3 to proceed. Note that the OpenSSH client disables CBC ciphers by default, sshd offers them as lowest-preference options and will remove them by default entriely in the next release. Reported by Jean Paul Degabriele, Kenny Paterson, Martin Albrecht and Torben Hansen of Royal Holloway, University of London. * sftp-client(1): [portable OpenSSH only] On Cygwin, a client making a recursive file transfer could be maniuplated by a hostile server to perform a path-traversal attack. creating or modifying files outside of the intended target directory. Reported by Jann Horn of Google Project Zero. - --- New Features * ssh(1), sshd(8): Support "=-" syntax to easily remove methods from algorithm lists, e.g. Ciphers=-*cbc. bz#2671 - --- Bugfixes * sshd(1): Fix NULL dereference crash when key exchange start messages are sent out of sequence. * ssh(1), sshd(8): Allow form-feed characters to appear in configuration files. * sshd(8): Fix regression in OpenSSH 7.4 support for the server-sig-algs extension, where SHA2 RSA signature methods were not being correctly advertised. bz#2680 * ssh(1), ssh-keygen(1): Fix a number of case-sensitivity bugs in known_hosts processing. bz#2591 bz#2685 * ssh(1): Allow ssh to use certificates accompanied by a private key file but no corresponding plain *.pub public key. bz#2617 * ssh(1): When updating hostkeys using the UpdateHostKeys option, accept RSA keys if HostkeyAlgorithms contains any RSA keytype. Previously, ssh could ignore RSA keys when only the ssh-rsa-sha2-* methods were enabled in HostkeyAlgorithms and not the old ssh-rsa method. bz#2650 * ssh(1): Detect and report excessively long configuration file lines. bz#2651 * Merge a number of fixes found by Coverity and reported via Redhat and FreeBSD. Includes fixes for some memory and file descriptor leaks in error paths. bz#2687 * ssh-keyscan(1): Correctly hash hosts with a port number. bz#2692 * ssh(1), sshd(8): When logging long messages to stderr, don't truncate "\r\n" if the length of the message exceeds the buffer. bz#2688 * ssh(1): Fully quote [host]:port in generated ProxyJump/-J command- line; avoid confusion over IPv6 addresses and shells that treat square bracket characters specially. * ssh-keygen(1): Fix corruption of known_hosts when running "ssh-keygen -H" on a known_hosts containing already-hashed entries. * Fix various fallout and sharp edges caused by removing SSH protocol 1 support from the server, including the server banner string being incorrectly terminated with only \n (instead of \r\n), confusing error messages from ssh-keyscan bz#2583 and a segfault in sshd if protocol v.1 was enabled for the client and sshd_config contained references to legacy keys bz#2686. * ssh(1), sshd(8): Free fd_set on connection timeout. bz#2683 * sshd(8): Fix Unix domain socket forwarding for root (regression in OpenSSH 7.4). * sftp(1): Fix division by zero crash in "df" output when server returns zero total filesystem blocks/inodes. * ssh(1), ssh-add(1), ssh-keygen(1), sshd(8): Translate OpenSSL errors encountered during key loading to more meaningful error codes. bz#2522 bz#2523 * ssh-keygen(1): Sanitise escape sequences in key comments sent to printf but preserve valid UTF-8 when the locale supports it; bz#2520 * ssh(1), sshd(8): Return reason for port forwarding failures where feasible rather than always "administratively prohibited". bz#2674 * sshd(8): Fix deadlock when AuthorizedKeysCommand or AuthorizedPrincipalsCommand produces a lot of output and a key is matched early. bz#2655 * Regression tests: several reliability fixes. bz#2654 bz#2658 bz#2659 * ssh(1): Fix typo in ~C error message for bad port forward cancellation. bz#2672 * ssh(1): Show a useful error message when included config files can't be opened; bz#2653 * sshd(8): Make sshd set GSSAPIStrictAcceptorCheck=yes as the manual page (previously incorrectly) advertised. bz#2637 * sshd_config(5): Repair accidentally-deleted mention of %k token in AuthorizedKeysCommand; bz#2656 * sshd(8): Remove vestiges of previously removed LOGIN_PROGRAM; bz#2665 * ssh-agent(1): Relax PKCS#11 whitelist to include libexec and common 32-bit compatibility library directories. * sftp-client(1): Fix non-exploitable integer overflow in SSH2_FXP_NAME response handling. * ssh-agent(1): Fix regression in 7.4 of deleting PKCS#11-hosted keys. It was not possible to delete them except by specifying their full physical path. bz#2682 - --- Portability * sshd(8): Avoid sandbox errors for Linux S390 systems using an ICA crypto coprocessor. * sshd(8): Fix non-exploitable weakness in seccomp-bpf sandbox arg inspection. * ssh(1): Fix X11 forwarding on OSX where X11 was being started by launchd. bz#2341 * ssh-keygen(1), ssh(1), sftp(1): Fix output truncation for various that contain non-printable characters where the codeset in use is ASCII. * build: Fix builds that attempt to link a kerberised libldns. bz#2603 * build: Fix compilation problems caused by unconditionally defining _XOPEN_SOURCE in wide character detection. * sshd(8): Fix sandbox violations for clock_gettime VSDO syscall fallback on some Linux/X32 kernels. bz#2142 - OpenSSH 7.6 - --- Potentially-incompatible changes This release includes a number of changes that may affect existing configurations: * ssh(1): delete SSH protocol version 1 support, associated configuration options and documentation. * ssh(1)/sshd(8): remove support for the hmac-ripemd160 MAC. * ssh(1)/sshd(8): remove support for the arcfour, blowfish and CAST ciphers. * Refuse RSA keys <1024 bits in length and improve reporting for keys that do not meet this requirement. * ssh(1): do not offer CBC ciphers by default. - --- Security * sftp-server(8): in read-only mode, sftp-server was incorrectly permitting creation of zero-length files. Reported by Michal Zalewski. - --- New Features * ssh(1): add RemoteCommand option to specify a command in the ssh config file instead of giving it on the client's command line. This allows the configuration file to specify the command that will be executed on the remote host. * sshd(8): add ExposeAuthInfo option that enables writing details of the authentication methods used (including public keys where applicable) to a file that is exposed via a $SSH_USER_AUTH environment variable in the subsequent session. * ssh(1): add support for reverse dynamic forwarding. In this mode, ssh will act as a SOCKS4/5 proxy and forward connections to destinations requested by the remote SOCKS client. This mode is requested using extended syntax for the - R and RemoteForward options and, because it is implemented solely at the client, does not require the server be updated to be supported. * sshd(8): allow LogLevel directive in sshd_config Match blocks; bz#2717 * ssh-keygen(1): allow inclusion of arbitrary string or flag certificate extensions and critical options. * ssh-keygen(1): allow ssh-keygen to use a key held in ssh-agent as a CA when signing certificates. bz#2377 * ssh(1)/sshd(8): allow IPQoS=none in ssh/sshd to not set an explicit ToS/DSCP value and just use the operating system default. * ssh-add(1): added -q option to make ssh-add quiet on success. * ssh(1): expand the StrictHostKeyChecking option with two new settings. The first "accept-new" will automatically accept hitherto-unseen keys but will refuse connections for changed or invalid hostkeys. This is a safer subset of the current behaviour of StrictHostKeyChecking=no. The second setting "off", is a synonym for the current behaviour of StrictHostKeyChecking=no: accept new host keys, and continue connection for hosts with incorrect hostkeys. A future release will change the meaning of StrictHostKeyChecking=no to the behaviour of "accept-new". bz#2400 * ssh(1): add SyslogFacility option to ssh(1) matching the equivalent option in sshd(8). bz#2705 - --- Bugfixes * ssh(1): use HostKeyAlias if specified instead of hostname for matching host certificate principal names; bz#2728 * sftp(1): implement sorting for globbed ls; bz#2649 * ssh(1): add a user@host prefix to client's "Permission denied" messages, useful in particular when using "stacked" connections (e.g. ssh -J) where it's not clear which host is denying. bz#2720 * ssh(1): accept unknown EXT_INFO extension values that contain \0 characters. These are legal, but would previously cause fatal connection errors if received. * ssh(1)/sshd(8): repair compression statistics printed at connection exit * sftp(1): print '?' instead of incorrect link count (that the protocol doesn't provide) for remote listings. bz#2710 * ssh(1): return failure rather than fatal() for more cases during session multiplexing negotiations. Causes the session to fall back to a non-mux connection if they occur. bz#2707 * ssh(1): mention that the server may send debug messages to explain public key authentication problems under some circumstances; bz#2709 * Translate OpenSSL error codes to better report incorrect passphrase errors when loading private keys; bz#2699 * sshd(8): adjust compatibility patterns for WinSCP to correctly identify versions that implement only the legacy DH group exchange scheme. bz#2748 * ssh(1): print the "Killed by signal 1" message only at LogLevel verbose so that it is not shown at the default level; prevents it from appearing during ssh -J and equivalent ProxyCommand configs. bz#1906, bz#2744 * ssh-keygen(1): when generating all hostkeys (ssh-keygen -A), clobber existing keys if they exist but are zero length. zero-length keys could previously be made if ssh-keygen failed or was interrupted part way through generating them. bz#2561 * ssh(1): fix pledge(2) violation in the escape sequence "~&" used to place the current session in the background. * ssh-keyscan(1): avoid double-close() on file descriptors; bz#2734 * sshd(8): avoid reliance on shared use of pointers shared between monitor and child sshd processes. bz#2704 * sshd_config(8): document available AuthenticationMethods; bz#2453 * ssh(1): avoid truncation in some login prompts; bz#2768 * sshd(8): Fix various compilations failures, inc bz#2767 * ssh(1): make "--" before the hostname terminate argument processing after the hostname too. * ssh-keygen(1): switch from aes256-cbc to aes256-ctr for encrypting new-style private keys. Fixes problems related to private key handling for no-OpenSSL builds. bz#2754 * ssh(1): warn and do not attempt to use keys when the public and private halves do not match. bz#2737 * sftp(1): don't print verbose error message when ssh disconnects from under sftp. bz#2750 * sshd(8): fix keepalive scheduling problem: activity on a forwarded port from preventing the keepalive from being sent; bz#2756 * sshd(8): when started without root privileges, don't require the privilege separation user or path to exist. Makes running the regression tests easier without touching the filesystem. * Make integrity.sh regression tests more robust against timeouts. bz#2658 * ssh(1)/sshd(8): correctness fix for channels implementation: accept channel IDs greater than 0x7FFFFFFF. - --- Portability * sshd(9): drop two more privileges in the Solaris sandbox: PRIV_DAX_ACCESS and PRIV_SYS_IB_INFO; bz#2723 * sshd(8): expose list of completed authentication methods to PAM via the SSH_AUTH_INFO_0 PAM environment variable. bz#2408 * ssh(1)/sshd(8): fix several problems in the tun/tap forwarding code, mostly to do with host/network byte order confusion. bz#2735 * Add --with-cflags-after and --with-ldflags-after configure flags to allow setting CFLAGS/LDFLAGS after configure has completed. These are useful for setting sanitiser/fuzzing options that may interfere with configure's operation. * sshd(8): avoid Linux seccomp violations on ppc64le over the socketcall syscall. * Fix use of ldns when using ldns-config; bz#2697 * configure: set cache variables when cross-compiling. The cross- compiling fallback message was saying it assumed the test passed, but it wasn't actually set the cache variables and this would cause later tests to fail. * Add clang libFuzzer harnesses for public key parsing and signature verification. - packaging: * moving patches into a separate archive * first round of rebased patches: [-X11_trusted_forwarding] [-allow_root_password_login] [-blocksigalrm] [-cavstest-ctr] [-cavstest-kdf] [-disable_short_DH_parameters] [-eal3] [-enable_PAM_by_default] [-fips] [-fips_checks] [-gssapi_key_exchange] [-hostname_changes_when_forwarding_X] [-lastlog] [-missing_headers] [-pam_check_locks] [-pts_names_formatting] [-remove_xauth_cookies_on_exit] [-seccomp_geteuid] [-seccomp_getuid] [-seccomp_stat] [-seed-prng] [-send_locale] [-systemd-notify] * not rebased (obsoleted) patches (so far): [-additional_seccomp_archs] [-allow_DSS_by_default] [-default_protocol] [-dont_use_pthreads_in_PAM] [-eal3_obsolete] [-gssapimitm] [-saveargv-fix] * obviously removing all standalone patch files: [openssh-7.2p2-allow_root_password_login.patch] [openssh-7.2p2-allow_DSS_by_default.patch] [openssh-7.2p2-X11_trusted_forwarding.patch] [openssh-7.2p2-lastlog.patch] [openssh-7.2p2-enable_PAM_by_default.patch] [openssh-7.2p2-dont_use_pthreads_in_PAM.patch] [openssh-7.2p2-eal3.patch] [openssh-7.2p2-blocksigalrm.patch] [openssh-7.2p2-send_locale.patch] [openssh-7.2p2-hostname_changes_when_forwarding_X.patch] [openssh-7.2p2-remove_xauth_cookies_on_exit.patch] [openssh-7.2p2-pts_names_formatting.patch] [openssh-7.2p2-pam_check_locks.patch] [openssh-7.2p2-disable_short_DH_parameters.patch] [openssh-7.2p2-seccomp_getuid.patch] [openssh-7.2p2-seccomp_geteuid.patch] [openssh-7.2p2-seccomp_stat.patch] [openssh-7.2p2-additional_seccomp_archs.patch] [openssh-7.2p2-fips.patch] [openssh-7.2p2-cavstest-ctr.patch] [openssh-7.2p2-cavstest-kdf.patch] [openssh-7.2p2-seed-prng.patch] [openssh-7.2p2-gssapi_key_exchange.patch] [openssh-7.2p2-audit.patch] [openssh-7.2p2-audit_fixes.patch] [openssh-7.2p2-audit_seed_prng.patch] [openssh-7.2p2-login_options.patch] [openssh-7.2p2-disable_openssl_abi_check.patch] [openssh-7.2p2-no_fork-no_pid_file.patch] [openssh-7.2p2-host_ident.patch] [openssh-7.2p2-sftp_homechroot.patch] [openssh-7.2p2-sftp_force_permissions.patch] [openssh-7.2p2-X_forward_with_disabled_ipv6.patch] [openssh-7.2p2-ldap.patch] [openssh-7.2p2-IPv6_X_forwarding.patch] [openssh-7.2p2-ignore_PAM_with_UseLogin.patch] [openssh-7.2p2-prevent_timing_user_enumeration.patch] [openssh-7.2p2-limit_password_length.patch] [openssh-7.2p2-keep_slogin.patch] [openssh-7.2p2-kex_resource_depletion.patch] [openssh-7.2p2-verify_CIDR_address_ranges.patch] [openssh-7.2p2-restrict_pkcs11-modules.patch] [openssh-7.2p2-prevent_private_key_leakage.patch] [openssh-7.2p2-secure_unix_sockets_forwarding.patch] [openssh-7.2p2-ssh_case_insensitive_host_matching.patch] [openssh-7.2p2-disable_preauth_compression.patch] [openssh-7.2p2-s390_hw_crypto_syscalls.patch] [openssh-7.2p2-s390_OpenSSL-ibmpkcs11_syscalls.patch]- Replace references to /var/adm/fillup-templates with new %_fillupdir macro (boo#1069468)- sshd_config is has now permissions 0600 in secure mode- Fix preauth seccomp separation on mainframes (bsc#1016709) [openssh-7.2p2-s390_hw_crypto_syscalls.patch] [openssh-7.2p2-s390_OpenSSL-ibmpkcs11_syscalls.patch] - enable case-insensitive hostname matching (bsc#1017099) [openssh-7.2p2-ssh_case_insensitive_host_matching.patch] - add CAVS tests [openssh-7.2p2-cavstest-ctr.patch] [openssh-7.2p2-cavstest-kdf.patch] - Adding missing pieces for user matching (bsc#1021626) - Properly verify CIDR masks in configuration (bsc#1005893) [openssh-7.2p2-verify_CIDR_address_ranges.patch] - Remove pre-auth compression support from the server to prevent possible cryptographic attacks. (CVE-2016-10012, bsc#1016370) [openssh-7.2p2-disable_preauth_compression.patch] - limit directories for loading PKCS11 modules (CVE-2016-10009, bsc#1016366) [openssh-7.2p2-restrict_pkcs11-modules.patch] - Prevent possible leaks of host private keys to low-privilege process handling authentication (CVE-2016-10011, bsc#1016369) [openssh-7.2p2-prevent_private_key_leakage.patch] - Do not allow unix socket forwarding when running without privilege separation (CVE-2016-10010, bsc#1016368) [openssh-7.2p2-secure_unix_sockets_forwarding.patch] - prevent resource depletion during key exchange (bsc#1005480, CVE-2016-8858) [openssh-7.2p2-kex_resource_depletion.patch] - fix suggested command for removing conflicting server keys from the known_hosts file (bsc#1006221) - enable geteuid{,32} syscalls on mainframes, since it may be called from libica/ibmica on machines with hardware crypto accelerator (bsc#1004258) [openssh-7.2p2-seccomp_geteuid.patch] - fix regression of (bsc#823710) [openssh-7.2p2-audit_fixes.patch] - add slogin (removed upstreams) [openssh-7.2p2-keep_slogin.patch] - require OpenSSL < 1.1 where that one is a default- sshd.service: Set TasksMax=infinity, as there should be no limit on the amount of tasks sshd can run.- remaining patches that were still missing since the update to 7.2p2 (FATE#319675): - allow X forwarding over IPv4 when IPv6 sockets is not available [openssh-7.2p2-X_forward_with_disabled_ipv6.patch] - do not write PID file when not daemonizing [openssh-7.2p2-no_fork-no_pid_file.patch] - use correct options when invoking login [openssh-7.2p2-login_options.patch] - helper application for retrieving users' public keys from an LDAP server [openssh-7.2p2-ldap.patch] - allow forcing permissions over sftp [openssh-7.2p2-sftp_force_permissions.patch] - do not perform run-time checks for OpenSSL API/ABI change [openssh-7.2p2-disable_openssl_abi_check.patch] - suggest commands for cleaning known hosts file [openssh-7.2p2-host_ident.patch] - sftp home chroot patch [openssh-7.2p2-sftp_homechroot.patch] - ssh sessions auditing [openssh-7.2p2-audit.patch] - enable seccomp sandbox on additional architectures [openssh-7.2p2-additional_seccomp_archs.patch] - fix forwarding with IPv6 addresses in DISPLAY (bnc#847710) [openssh-7.2p2-IPv6_X_forwarding.patch] - ignore PAM environment when using login (bsc#975865, CVE-2015-8325) [openssh-7.2p2-ignore_PAM_with_UseLogin.patch] - limit accepted password length (prevents possible DoS) (bsc#992533, CVE-2016-6515) [openssh-7.2p2-limit_password_length.patch] - Prevent user enumeration through the timing of password processing (bsc#989363, CVE-2016-6210) [openssh-7.2p2-prevent_timing_user_enumeration.patch] - Add auditing for PRNG re-seeding [openssh-7.2p2-audit_seed_prng.patch]- FIPS compatibility (no selfchecks, only crypto restrictions) [openssh-7.2p2-fips.patch] - PRNG re-seeding [openssh-7.2p2-seed-prng.patch] - preliminary version of GSSAPI KEX [openssh-7.2p2-gssapi_key_exchange.patch]- added gpg signature- enable support for SSHv1 protocol and discourage its usage (bsc#983307) - enable DSA by default for backward compatibility and discourage its usage (bsc#983784) [openssh-7.2p2-allow_DSS_by_default.patch]- enable trusted X11 forwarding by default [openssh-7.2p2-X11_trusted_forwarding.patch] - set UID for lastlog properly [openssh-7.2p2-lastlog.patch] - enable use of PAM by default [openssh-7.2p2-enable_PAM_by_default.patch] - copy command line arguments properly [openssh-7.2p2-saveargv-fix.patch] - do not use pthreads in PAM code [openssh-7.2p2-dont_use_pthreads_in_PAM.patch] - fix paths in documentation [openssh-7.2p2-eal3.patch] - prevent race consitions triggered by SIGALRM [openssh-7.2p2-blocksigalrm.patch] - do send and accept locale environment variables by default [openssh-7.2p2-send_locale.patch] - handle hostnames changes during X forwarding [openssh-7.2p2-hostname_changes_when_forwarding_X.patch] - try to remove xauth cookies on exit [openssh-7.2p2-remove_xauth_cookies_on_exit.patch] - properly format pts names for ?tmp? log files [openssh-7.2p2-pts_names_formatting.patch] - check locked accounts when using PAM [openssh-7.2p2-pam_check_locks.patch] - chenge default PermitRootLogin to 'yes' to prevent unwanted surprises on updates from older versions. See README.SUSE for details [openssh-7.2p2-allow_root_password_login.patch] - Disable DH parameters under 2048 bits by default and allow lowering the limit back to the RFC 4419 specified minimum through an option (bsc#932483, bsc#948902) [openssh-7.2p2-disable_short_DH_parameters.patch] - Add getuid() and stat() syscalls to the seccomp filter (bsc#912436) [openssh-7.2p2-seccomp_getuid.patch, openssh-7.2p2-seccomp_stat.patch]- upgrade to 7.2p2 upstream package without any SUSE patches Distilled upstream log: - OpenSSH 6.7 Potentially-incompatible changes: * sshd(8): The default set of ciphers and MACs has been altered to remove unsafe algorithms. In particular, CBC ciphers and arcfour* are disabled by default. The full set of algorithms remains available if configured explicitly via the Ciphers and MACs sshd_config options. * sshd(8): Support for tcpwrappers/libwrap has been removed. * OpenSSH 6.5 and 6.6 have a bug that causes ~0.2% of connections using the curve25519-sha256@libssh.org KEX exchange method to fail when connecting with something that implements the specification correctly. OpenSSH 6.7 disables this KEX method when speaking to one of the affected versions. New Features: * ssh(1), sshd(8): Add support for Unix domain socket forwarding. A remote TCP port may be forwarded to a local Unix domain socket and vice versa or both ends may be a Unix domain socket. * ssh(1), ssh-keygen(1): Add support for SSHFP DNS records for ED25519 key types. * sftp(1): Allow resumption of interrupted uploads. * ssh(1): When rekeying, skip file/DNS lookups of the hostkey if it is the same as the one sent during initial key exchange * sshd(8): Allow explicit ::1 and 127.0.0.1 forwarding bind addresses when GatewayPorts=no; allows client to choose address family * sshd(8): Add a sshd_config PermitUserRC option to control whether ~/.ssh/rc is executed, mirroring the no-user-rc authorized_keys option * ssh(1): Add a %C escape sequence for LocalCommand and ControlPath that expands to a unique identifer based on a hash of the tuple of (local host, remote user, hostname, port). Helps avoid exceeding miserly pathname limits for Unix domain sockets in multiplexing control paths * sshd(8): Make the "Too many authentication failures" message include the user, source address, port and protocol in a format similar to the authentication success / failure messages Bugfixes: * sshd(8): Fix remote forwarding with the same listen port but different listen address. * ssh(1): Fix inverted test that caused PKCS#11 keys that were explicitly listed in ssh_config or on the commandline not to be preferred. * ssh-keygen(1): Fix bug in KRL generation: multiple consecutive revoked certificate serial number ranges could be serialised to an invalid format. Readers of a broken KRL caused by this bug will fail closed, so no should-have-been-revoked key will be accepted. * ssh(1): Reflect stdio-forward ("ssh -W host:port ...") failures in exit status. Previously we were always returning 0 * ssh(1), ssh-keygen(1): Make Ed25519 keys' title fit properly in the randomart border * ssh-agent(1): Only cleanup agent socket in the main agent process and not in any subprocesses it may have started (e.g. forked askpass). Fixes agent sockets being zapped when askpass processes fatal() * ssh-add(1): Make stdout line-buffered; saves partial output getting lost when ssh-add fatal()s part-way through (e.g. when listing keys from an agent that supports key types that ssh-add doesn't) * ssh-keygen(1): When hashing or removing hosts, don't choke on @revoked markers and don't remove @cert-authority markers * ssh(1): Don't fatal when hostname canonicalisation fails and a ProxyCommand is in use; continue and allow the ProxyCommand to connect anyway (e.g. to a host with a name outside the DNS behind a bastion) * scp(1): When copying local->remote fails during read, don't send uninitialised heap to the remote end. * sftp(1): Fix fatal "el_insertstr failed" errors when tab-completing filenames with a single quote char somewhere in the string * ssh-keyscan(1): Scan for Ed25519 keys by default. * ssh(1): When using VerifyHostKeyDNS with a DNSSEC resolver, down-convert any certificate keys to plain keys and attempt SSHFP resolution. Prevents a server from skipping SSHFP lookup and forcing a new-hostkey dialog by offering only certificate keys. - OpenSSH 6.8 Potentially-incompatible changes: * sshd(8): UseDNS now defaults to 'no'. Configurations that match against the client host name (via sshd_config or authorized_keys) may need to re-enable it or convert to matching against addresses. New Features: * Add FingerprintHash option to ssh(1) and sshd(8), and equivalent command-line flags to the other tools to control algorithm used for key fingerprints. The default changes from MD5 to SHA256 and format from hex to base64. Fingerprints now have the hash algorithm prepended. An example of the new format: SHA256:mVPwvezndPv/ARoIadVY98vAC0g+P/5633yTC4d/wXE Please note that visual host keys will also be different. * ssh(1), sshd(8): Experimental host key rotation support. Add a protocol extension for a server to inform a client of all its available host keys after authentication has completed. The client may record the keys in known_hosts, allowing it to upgrade to better host key algorithms and a server to gracefully rotate its keys. The client side of this is controlled by a UpdateHostkeys config option (default off). * ssh(1): Add a ssh_config HostbasedKeyType option to control which host public key types are tried during host-based authentication. * ssh(1), sshd(8): fix connection-killing host key mismatch errors when sshd offers multiple ECDSA keys of different lengths. * ssh(1): when host name canonicalisation is enabled, try to parse host names as addresses before looking them up for canonicalisation. fixes bz#2074 and avoiding needless DNS lookups in some cases. * ssh-keygen(1), sshd(8): Key Revocation Lists (KRLs) no longer require OpenSSH to be compiled with OpenSSL support. * ssh(1), ssh-keysign(8): Make ed25519 keys work for host based authentication. * sshd(8): SSH protocol v.1 workaround for the Meyer, et al, Bleichenbacher Side Channel Attack. Fake up a bignum key before RSA decryption. * sshd(8): Remember which public keys have been used for authentication and refuse to accept previously-used keys. This allows AuthenticationMethods=publickey,publickey to require that users authenticate using two _different_ public keys. * sshd(8): add sshd_config HostbasedAcceptedKeyTypes and PubkeyAcceptedKeyTypes options to allow sshd to control what public key types will be accepted. Currently defaults to all. * sshd(8): Don't count partial authentication success as a failure against MaxAuthTries. * ssh(1): Add RevokedHostKeys option for the client to allow text-file or KRL-based revocation of host keys. * ssh-keygen(1), sshd(8): Permit KRLs that revoke certificates by serial number or key ID without scoping to a particular CA. * ssh(1): Add a "Match canonical" criteria that allows ssh_config Match blocks to trigger only in the second config pass. * ssh(1): Add a -G option to ssh that causes it to parse its configuration and dump the result to stdout, similar to "sshd -T". * ssh(1): Allow Match criteria to be negated. E.g. "Match !host". * The regression test suite has been extended to cover more OpenSSH features. The unit tests have been expanded and now cover key exchange. Bugfixes: * ssh-keyscan(1): ssh-keyscan has been made much more robust again servers that hang or violate the SSH protocol. * ssh(1), ssh-keygen(1): Fix regression: Key path names were being lost as comment fields. * ssh(1): Allow ssh_config Port options set in the second config parse phase to be applied (they were being ignored). * ssh(1): Tweak config re-parsing with host canonicalisation - make the second pass through the config files always run when host name canonicalisation is enabled (and not whenever the host name changes) * ssh(1): Fix passing of wildcard forward bind addresses when connection multiplexing is in use * ssh-keygen(1): Fix broken private key conversion from non-OpenSSH formats. * ssh-keygen(1): Fix KRL generation bug when multiple CAs are in use. * Various fixes to manual pages - OpenSSH 6.9 Security: * ssh(1): when forwarding X11 connections with ForwardX11Trusted=no, connections made after ForwardX11Timeout expired could be permitted and no longer subject to XSECURITY restrictions because of an ineffective timeout check in ssh(1) coupled with "fail open" behaviour in the X11 server when clients attempted connections with expired credentials. This problem was reported by Jann Horn. * ssh-agent(1): fix weakness of agent locking (ssh-add -x) to password guessing by implementing an increasing failure delay, storing a salted hash of the password rather than the password itself and using a timing-safe comparison function for verifying unlock attempts. This problem was reported by Ryan Castellucci. New Features: * ssh(1), sshd(8): promote chacha20-poly1305@openssh.com to be the default cipher * sshd(8): support admin-specified arguments to AuthorizedKeysCommand * sshd(8): add AuthorizedPrincipalsCommand that allows retrieving authorized principals information from a subprocess rather than a file. * ssh(1), ssh-add(1): support PKCS#11 devices with external PIN entry devices * sshd(8): allow GSSAPI host credential check to be relaxed for multihomed hosts via GSSAPIStrictAcceptorCheck option * ssh-keygen(1): support "ssh-keygen -lF hostname" to search known_hosts and print key hashes rather than full keys. * ssh-agent(1): add -D flag to leave ssh-agent in foreground without enabling debug mode Bugfixes: * ssh(1), sshd(8): deprecate legacy SSH2_MSG_KEX_DH_GEX_REQUEST_OLD message and do not try to use it against some 3rd-party SSH implementations that use it (older PuTTY, WinSCP). * Many fixes for problems caused by compile-time deactivation of SSH1 support (including bz#2369) * ssh(1), sshd(8): cap DH-GEX group size at 4Kbits for Cisco implementations as some would fail when attempting to use group sizes >4K * ssh(1): fix out-of-bound read in EscapeChar configuration option parsing * sshd(8): fix application of PermitTunnel, LoginGraceTime, AuthenticationMethods and StreamLocalBindMask options in Match blocks * ssh(1), sshd(8): improve disconnection message on TCP reset; bz#2257 * ssh(1): remove failed remote forwards established by muliplexing from the list of active forwards * sshd(8): make parsing of authorized_keys "environment=" options independent of PermitUserEnv being enabled * sshd(8): fix post-auth crash with permitopen=none * ssh(1), ssh-add(1), ssh-keygen(1): allow new-format private keys to be encrypted with AEAD ciphers * ssh(1): allow ListenAddress, Port and AddressFamily configuration options to appear in any order * sshd(8): check for and reject missing arguments for VersionAddendum and ForceCommand * ssh(1), sshd(8): don't treat unknown certificate extensions as fatal * ssh-keygen(1): make stdout and stderr output consistent * ssh(1): mention missing DISPLAY environment in debug log when X11 forwarding requested * sshd(8): correctly record login when UseLogin is set * sshd(8): Add some missing options to sshd -T output and fix output of VersionAddendum and HostCertificate. bz#2346 * Document and improve consistency of options that accept a "none" argument" TrustedUserCAKeys, RevokedKeys (bz#2382), AuthorizedPrincipalsFile (bz#2288) * ssh(1): include remote username in debug output * sshd(8): avoid compatibility problem with some versions of Tera Term, which would crash when they received the hostkeys notification message (hostkeys-00@openssh.com) * sshd(8): mention ssh-keygen -E as useful when comparing legacy MD5 host key fingerprints * ssh(1): clarify pseudo-terminal request behaviour and use make manual language consistent * ssh(1): document that the TERM environment variable is not subject to SendEnv and AcceptEnv - OpenSSH 7.0: This focuses primarily on deprecating weak, legacy and/or unsafe cryptography. Security: * sshd(8): OpenSSH 6.8 and 6.9 incorrectly set TTYs to be world- writable. Local attackers may be able to write arbitrary messages to logged-in users, including terminal escape sequences. Reported by Nikolay Edigaryev. * sshd(8): Portable OpenSSH only: Fixed a privilege separation weakness related to PAM support. Attackers who could successfully compromise the pre-authentication process for remote code execution and who had valid credentials on the host could impersonate other users. Reported by Moritz Jodeit. * sshd(8): Portable OpenSSH only: Fixed a use-after-free bug related to PAM support that was reachable by attackers who could compromise the pre-authentication process for remote code execution. Also reported by Moritz Jodeit. * sshd(8): fix circumvention of MaxAuthTries using keyboard- interactive authentication. By specifying a long, repeating keyboard-interactive "devices" string, an attacker could request the same authentication method be tried thousands of times in a single pass. The LoginGraceTime timeout in sshd(8) and any authentication failure delays implemented by the authentication mechanism itself were still applied. Found by Kingcope. Potentially-incompatible Changes: * Support for the legacy SSH version 1 protocol is disabled by default at compile time. * Support for the 1024-bit diffie-hellman-group1-sha1 key exchange is disabled by default at run-time. It may be re-enabled using the instructions in README.legacy or http://www.openssh.com/legacy.html * Support for ssh-dss, ssh-dss-cert-* host and user keys is disabled by default at run-time. These may be re-enabled using the instructions at http://www.openssh.com/legacy.html * Support for the legacy v00 cert format has been removed. * The default for the sshd_config(5) PermitRootLogin option has changed from "yes" to "prohibit-password". * PermitRootLogin=without-password/prohibit-password now bans all interactive authentication methods, allowing only public-key, hostbased and GSSAPI authentication (previously it permitted keyboard-interactive and password-less authentication if those were enabled). New Features: * ssh_config(5): add PubkeyAcceptedKeyTypes option to control which public key types are available for user authentication. * sshd_config(5): add HostKeyAlgorithms option to control which public key types are offered for host authentications. * ssh(1), sshd(8): extend Ciphers, MACs, KexAlgorithms, HostKeyAlgorithms, PubkeyAcceptedKeyTypes and HostbasedKeyTypes options to allow appending to the default set of algorithms instead of replacing it. Options may now be prefixed with a '+' to append to the default, e.g. "HostKeyAlgorithms=+ssh-dss". * sshd_config(5): PermitRootLogin now accepts an argument of 'prohibit-password' as a less-ambiguous synonym of 'without- password'. Bugfixes: * ssh(1), sshd(8): add compatability workarounds for Cisco and more PuTTY versions. * Fix some omissions and errors in the PROTOCOL and PROTOCOL.mux documentation relating to Unix domain socket forwarding * ssh(1): Improve the ssh(1) manual page to include a better description of Unix domain socket forwarding * ssh(1), ssh-agent(1): skip uninitialised PKCS#11 slots, fixing failures to load keys when they are present. * ssh(1), ssh-agent(1): do not ignore PKCS#11 hosted keys that wth empty CKA_ID * sshd(8): clarify documentation for UseDNS option - OpenSSH 7.1: Security: * sshd(8): OpenSSH 7.0 contained a logic error in PermitRootLogin= prohibit-password/without-password that could, depending on compile-time configuration, permit password authentication to root while preventing other forms of authentication. This problem was reported by Mantas Mikulenas. Bugfixes: * ssh(1), sshd(8): add compatability workarounds for FuTTY * ssh(1), sshd(8): refine compatability workarounds for WinSCP * Fix a number of memory faults (double-free, free of uninitialised memory, etc) in ssh(1) and ssh-keygen(1). Reported by Mateusz Kocielski. - OpenSSH 7.1p2: * SECURITY: ssh(1): The OpenSSH client code between 5.4 and 7.1 contains experimential support for resuming SSH-connections (roaming). The matching server code has never been shipped, but the client code was enabled by default and could be tricked by a malicious server into leaking client memory to the server, including private client user keys. The authentication of the server host key prevents exploitation by a man-in-the-middle, so this information leak is restricted to connections to malicious or compromised servers. MITIGATION: For OpenSSH >= 5.4 the vulnerable code in the client can be completely disabled by adding 'UseRoaming no' to the gobal ssh_config(5) file, or to user configuration in ~/.ssh/config, or by passing -oUseRoaming=no on the command line. PATCH: See below for a patch to disable this feature (Disabling Roaming in the Source Code). This problem was reported by the Qualys Security Advisory team. * SECURITY: Eliminate the fallback from untrusted X11-forwarding to trusted forwarding for cases when the X server disables the SECURITY extension. Reported by Thomas Hoger. * SECURITY: Fix an out of-bound read access in the packet handling code. Reported by Ben Hawkes. * PROTOCOL: Correctly interpret the 'first_kex_follows' option during the intial key exchange. Reported by Matt Johnston. * Further use of explicit_bzero has been added in various buffer handling code paths to guard against compilers aggressively doing dead-store removal. Potentially-incompatible changes: * This release disables a number of legacy cryptographic algorithms by default in ssh: + Several ciphers blowfish-cbc, cast128-cbc, all arcfour variants and the rijndael-cbc aliases for AES. + MD5-based and truncated HMAC algorithms. - OpenSSH 7.2: Security: * ssh(1), sshd(8): remove unfinished and unused roaming code (was already forcibly disabled in OpenSSH 7.1p2). * ssh(1): eliminate fallback from untrusted X11 forwarding to trusted forwarding when the X server disables the SECURITY extension. * ssh(1), sshd(8): increase the minimum modulus size supported for diffie-hellman-group-exchange to 2048 bits. * sshd(8): pre-auth sandboxing is now enabled by default (previous releases enabled it for new installations via sshd_config). New Features: * all: add support for RSA signatures using SHA-256/512 hash algorithms based on draft-rsa-dsa-sha2-256-03.txt and draft-ssh-ext-info-04.txt. * ssh(1): Add an AddKeysToAgent client option which can be set to 'yes', 'no', 'ask', or 'confirm', and defaults to 'no'. When enabled, a private key that is used during authentication will be added to ssh-agent if it is running (with confirmation enabled if set to 'confirm'). * sshd(8): add a new authorized_keys option "restrict" that includes all current and future key restrictions (no-*-forwarding, etc.). Also add permissive versions of the existing restrictions, e.g. "no-pty" -> "pty". This simplifies the task of setting up restricted keys and ensures they are maximally-restricted, regardless of any permissions we might implement in the future. * ssh(1): add ssh_config CertificateFile option to explicitly list certificates. bz#2436 * ssh-keygen(1): allow ssh-keygen to change the key comment for all supported formats. * ssh-keygen(1): allow fingerprinting from standard input, e.g. "ssh-keygen -lf -" * ssh-keygen(1): allow fingerprinting multiple public keys in a file, e.g. "ssh-keygen -lf ~/.ssh/authorized_keys" bz#1319 * sshd(8): support "none" as an argument for sshd_config Foreground and ChrootDirectory. Useful inside Match blocks to override a global default. bz#2486 * ssh-keygen(1): support multiple certificates (one per line) and reading from standard input (using "-f -") for "ssh-keygen -L" * ssh-keyscan(1): add "ssh-keyscan -c ..." flag to allow fetching certificates instead of plain keys. * ssh(1): better handle anchored FQDNs (e.g. 'cvs.openbsd.org') in hostname canonicalisation - treat them as already canonical and remove the trailing '.' before matching ssh_config. Bugfixes: * sftp(1): existing destination directories should not terminate recursive uploads (regression in openssh 6.8) * ssh(1), sshd(8): correctly send back SSH2_MSG_UNIMPLEMENTED replies to unexpected messages during key exchange. * ssh(1): refuse attempts to set ConnectionAttempts=0, which does not make sense and would cause ssh to print an uninitialised stack variable. * ssh(1): fix errors when attempting to connect to scoped IPv6 addresses with hostname canonicalisation enabled. * sshd_config(5): list a couple more options usable in Match blocks. * sshd(8): fix "PubkeyAcceptedKeyTypes +..." inside a Match block. * ssh(1): expand tilde characters in filenames passed to -i options before checking whether or not the identity file exists. Avoids confusion for cases where shell doesn't expand (e.g. "-i ~/file" vs. "-i~/file"). * ssh(1): do not prepend "exec" to the shell command run by "Match exec" in a config file, which could cause some commands to fail in certain environments. * ssh-keyscan(1): fix output for multiple hosts/addrs on one line when host hashing or a non standard port is in use * sshd(8): skip "Could not chdir to home directory" message when ChrootDirectory is active. * ssh(1): include PubkeyAcceptedKeyTypes in ssh -G config dump. * sshd(8): avoid changing TunnelForwarding device flags if they are already what is needed; makes it possible to use tun/tap networking as non-root user if device permissions and interface flags are pre-established * ssh(1), sshd(8): RekeyLimits could be exceeded by one packet. * ssh(1): fix multiplexing master failure to notice client exit. * ssh(1), ssh-agent(1): avoid fatal() for PKCS11 tokens that present empty key IDs. * sshd(8): avoid printf of NULL argument. * ssh(1), sshd(8): allow RekeyLimits larger than 4GB. * ssh-keygen(1): sshd(8): fix several bugs in (unused) KRL signature support. * ssh(1), sshd(8): fix connections with peers that use the key exchange guess feature of the protocol. * sshd(8): include remote port number in log messages. * ssh(1): don't try to load SSHv1 private key when compiled without SSHv1 support. * ssh-agent(1), ssh(1): fix incorrect error messages during key loading and signing errors. * ssh-keygen(1): don't leave empty temporary files when performing known_hosts file edits when known_hosts doesn't exist. * sshd(8): correct packet format for tcpip-forward replies for requests that don't allocate a port * ssh(1), sshd(8): fix possible hang on closed output. * ssh(1): expand %i in ControlPath to UID. * ssh(1), sshd(8): fix return type of openssh_RSA_verify. * ssh(1), sshd(8): fix some option parsing memory leaks. * ssh(1): add a some debug output before DNS resolution; it's a place where ssh could previously silently stall in cases of unresponsive DNS servers. * ssh(1): remove spurious newline in visual hostkey. * ssh(1): fix printing (ssh -G ...) of HostKeyAlgorithms=+... * ssh(1): fix expansion of HostkeyAlgorithms=+... Documentation: * ssh_config(5), sshd_config(5): update default algorithm lists to match current reality. * ssh(1): mention -Q key-plain and -Q key-cert query options. * sshd_config(8): more clearly describe what AuthorizedKeysFile=none does. * ssh_config(5): better document ExitOnForwardFailure. * sshd(5): mention internal DH-GEX fallback groups in manual. * sshd_config(5): better description for MaxSessions option. Portability: * sshd(8): fix multiple authentication using S/Key. - OpenSSH 7.2p2: Security: * sshd(8): sanitise X11 authentication credentials to avoid xauth command injection when X11Forwarding is enabled. (removing patches from previous version: * CVE-2016-0777_CVE-2016-0778.patch * openssh-6.6p1-X11-forwarding.patch * openssh-6.6p1-X_forward_with_disabled_ipv6.patch * openssh-6.6p1-audit1-remove_duplicit_audit.patch * openssh-6.6p1-audit2-better_audit_of_user_actions.patch * openssh-6.6p1-audit3-key_auth_usage-fips.patch * openssh-6.6p1-audit3-key_auth_usage.patch * openssh-6.6p1-audit4-kex_results-fips.patch * openssh-6.6p1-audit4-kex_results.patch * openssh-6.6p1-audit5-session_key_destruction.patch * openssh-6.6p1-audit6-server_key_destruction.patch * openssh-6.6p1-audit7-libaudit_compat.patch * openssh-6.6p1-audit8-libaudit_dns_timeouts.patch * openssh-6.6p1-blocksigalrm.patch * openssh-6.6p1-curve25519-6.6.1p1.patch * openssh-6.6p1-default-protocol.patch * openssh-6.6p1-disable-openssl-abi-check.patch * openssh-6.6p1-eal3.patch * openssh-6.6p1-fingerprint_hash.patch * openssh-6.6p1-fips-checks.patch * openssh-6.6p1-fips.patch * openssh-6.6p1-gssapi_key_exchange.patch * openssh-6.6p1-gssapimitm.patch * openssh-6.6p1-host_ident.patch * openssh-6.6p1-key-converter.patch * openssh-6.6p1-lastlog.patch * openssh-6.6p1-ldap.patch * openssh-6.6p1-login_options.patch * openssh-6.6p1-no_fork-no_pid_file.patch * openssh-6.6p1-pam-check-locks.patch * openssh-6.6p1-pam-fix2.patch * openssh-6.6p1-pam-fix3.patch * openssh-6.6p1-pts.patch * openssh-6.6p1-saveargv-fix.patch * openssh-6.6p1-seccomp_getuid.patch * openssh-6.6p1-seccomp_stat.patch * openssh-6.6p1-seed-prng.patch * openssh-6.6p1-send_locale.patch * openssh-6.6p1-sftp_force_permissions.patch * openssh-6.6p1-sftp_homechroot.patch * openssh-6.6p1-xauth.patch * openssh-6.6p1-xauthlocalhostname.patch)- update seccomp sandbox that broke after OpenSSL update (bsc#912436, bsc#977812) [openssh-6.6p1-seccomp_stat.patch]- openssh-6.6p1-ldap.patch: replace TRUE/FALSE with 1/0, since this defines did come via an indirect header inclusion and are not everywhere defined.- CVE-2016-0777, bsc#961642, CVE-2016-0778, bsc#961645 Add CVE-2016-0777_CVE-2016-0778.patch to disable the roaming code to prevent information leak and buffer overflow- gpg signature and keyring added. pub 3200R/6D920D30 2013-12-10 [expires: 2021-01-01] uid Damien Miller sub 3200R/672A1105 2013-12-10 [expires: 2021-01-01]- fix bashisms in sshd.init scriptmourvedre 1682692215 8.4p1-150300.3.18.28.4p1-150300.3.18.28.4p1-150300.3.18.2sshmodulissh-keygenopenssh-commonCREDITSChangeLogOVERVIEWREADMEREADME.FIPSREADME.SUSEREADME.kerberosTODOopenssh-commonLICENCEssh-keygen.1.gzmoduli.5.gz/etc//etc/ssh//usr/bin//usr/share/doc/packages//usr/share/doc/packages/openssh-common//usr/share/licenses//usr/share/licenses/openssh-common//usr/share/man/man1//usr/share/man/man5/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:28808/SUSE_SLE-15-SP3_Update/4d4d6ec909fdf4abbe9daf4bdcf7632e-openssh.SUSE_SLE-15-SP3_Updatecpioxz5ppc64le-suse-linuxdirectoryASCII text, with very long linesELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (SYSV), dynamically linked, interpreter /lib64/ld64.so.2, BuildID[sha1]=97219fa6bf95edba3e783a4424a6cddb81eb8528, for GNU/Linux 3.10.0, strippedUTF-8 Unicode textUTF-8 Unicode text, with very long linesASCII texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix) R R RRRRRRRR R R R4epa^~5KÆutf-8b0c9fdd48550ab57796a6753ad782decd33985f505d0b49429b58d61e124c5d2?7zXZ !t/J] crt:bLL 2;p59¡yO[(j`ZxhѓVhƞL #kKebd` ??.'Za.h* &ɂb*Nktxf{ Wv@Җ9uAg9FNꂑV-ʰ/HM>F^/b\¦|b6+o)Sv%ULc(yR 2&)^ F"1r3J(+5SF?'pzHMRf ~ 2NK &Xvn)brWJu#g<ІBoajUNY9_t8W a=]݊ YapŤ lh^,)(. t2Ɏ.u 9"&%JWkVKH;H SX&gqGǦN3/1]IC:i~ Xfˋ`>m _,m=,"+!h9efr} Rn0UB˘ƟɍޯT n5 ,+X-4JGuVG e!KF 9:M5TtT;Kz*f#τs)'ril ESߞru+Wf܈.@ZޫaK :qr8 /9GxÛƺfԂTZ.QEv MH-Ǡn {L BÌ1'CRiQr1{X{y᪖˱"VfFiG@ZR|ք;]ݚR:15tKr%[߈^xpԌ[t.dޥ&c@LEa"|_mDn?; X=Ndn+*6e*CTҲ:\ŕЌ@PD"1 #V(d*W!~''L+>B`懹dxmwTs&+ZɈ-bl@ek}QK^}(&G z(R;ړ J.OZ_$޺ĝoeQOX4 53̋d 6_Y.کurua| ;a}M\_4[Uę}~I+fFɠ^`ǟަ~J0|>@n`I}"@vjrirf؞lîv}gjFe}Uj_"{up`>b}:a谸_ID=ԐYt!xv|Ɔ{F "mm @ 9} aޫiUT2OXR@M4Xj*.zg`5FٹɈ^V[R!FRoϦKz -IDἽ"_eB#W &SH gQ m虹aM 5[&ϡ1!NN?`h09ȇ<8vaDٍQN1_">i_H'GFn,Cl=06${{[9o$qժ}]2 +dU dR#``_[{ ,ȥuw:d(@F ܟDZ:W/RuE-WJ4Xx^.b EwՌA,H.  b)wEضpC;H, +V?hE7]mW&̆ɂ\PJQ4Ի젌YSv〸< -ec8}KuHGP|J|nar\t{o Ձꦧ RqjoUZKg4|o]4(9wc6^Џ&z_B '׬&g(7PQx!ִq S^: P"3(q`ó؜4IsG[OQ G8JYz6+Οf_Ϩh*7e?-V!bXD`|SB4x$<%jB`[C?cm "J&~ 阑~Vd ;a{(rC(<)߫ڬ)?8v_˝V Q|ĵ^kg01TX?iQsue5PYm!C;-ɟzvnn|x25&0"OO)Ckg[V@U)+A&.-T%.:z@C'y}b&[N9A۟.{hEir U1D d<.>:bn>]'}$?k]ks'Y- >UvCfB (#y=ѼɃmϥ,۟&Uj\FS2J7?CAl w{s2U = FiV8 [ HdEѨc"(p؂:WrX:% rr6[f"]aRx[I#XBk&z}.1#L gJIGDy›22Swk?JVϴj{AфĿ0(13܉k)޾>,2CIx1z> I2gA[A#&_2։@;1ۇ/^XZB}Rhîޝ.2'w' 0o%b`ٮi*K|[L#F]u#SV3%J P]׷=Z*fi~_Eƾ #zm3U>AD9 +n:s $ExGpa 4G*l9إ?={Ool |YgIY=ݖzƝ~3"u|#ޞQ;h[9^~8p)o_Iy}{vzA?O- y1lQc LM;{Q u.rw]C+9:tEo3ZǛ_K\#%RDj@~i){8Ś>=N# |XSSjI|H.,2~d3,HHFOT\NO΋{gI+,jw&!Niӭ:IXJ+L#0 ƨ xgؐurc>ҟIKXI !.7esWv[{|_+24t%:0*L],ԋu ϾsqWQqa /m ;8]&%U{uh ]|\LlSF5Ͽj uWX9#DQ(o}cqևƛR],a/%A66le u:⥹X3vϤWФXb@ۋ=zt5mXzË!c%oZs89 PlDG`8*VrAj8-:l@.:gy;a_kn=Qbl Y1%e1wbsCVbFܖ PDU8~.J2`')&).%Zpt 2קT@Yq ɿXM 59 gΨVpC^2%g 7#Y>9n-nE?MVV&qaqM5}K뢋\.%}Q ,}/3韴<4Zb:uat ]Gd6c 3>S1XVߪLd ; Fݣ! 09 iS˘_MBBT vP ~D o. 0{(y&-k՚Z::7qj l?+QV9tRyħ-X5fITZh ASrf(GLe(+`m 3z5{.+Uy:Uq:D-D}f]/ӳg?5M3=)?)'F!@&*=nSZm'K?3niMxAˤ~a\@/1]nȏ7^aX3vzFe'4bcPy{H:> U'8<{XvQS5^VpOi@_I>-)ZD#` t~3HK<>?<4M6ܕt;ծ1~FdWO13<2Jb^<:,0 Om!06G %%ÖQ*$OVELQtE#2oct*^F)ə!*; ]b>$Jj炾m׊ۍV3! ·π0ٛ1& Ytcgk'Or;,̂ԃ@>^1!IhTCu??B^oI@5+v!4έr/7kɐ磊wr/bzUd!boTB dQr?8J SuDeqvE-NpldR'z^/cxd-ЗWO'i۳1Um, ?VTMʗU$b?}utO_=`DK̚û,S$xzEEgJJ lSc2{Z![zxaÁcpɒg+w4FkHbq! fuzY>hq I|zAΘ#L\|jJ\iS}9KD!κ0ctz.@?9Iė]ՎP*E ټZT`g%)Ç'T^?JR#Y6O}R*x X{(}*ix/`GZQ!.=v?a#x$Sh+Tσ pƋx *){ރs,iČIb 4mxn !/.OifPې b M@%j,q Kv^y ITEcr=,[W4FF/jUhe(p1-TmQdawKE ߩj ֌tǖ?O:Ze|63:ȃx! -١CjE/.f9 *n{ud`w/F+xL -WJQq(㫲\ ẢӵK{lv6=c.1!@O5<i+yO)P -3=ظi}H`*CL'`/__br+ t8$.VĎh`x*|qFp=Hcc-1vZQuB]&(YalĬ(ʑv2C8[k]K- K۹x_iB'D"| >lpyq%S6k?cQ$h]?INn xɷNuҼtYsz :ShY#7>*y!oNP^ EdoZEn$3uPS-4R.CBi[[C}FES)]݉%D@! p7' '24pYǪ5j0+ bdKqI@}Y4}ܫXC|:;dK{Vę@ ,P>c}_rْ"כ  ڈtAk"Tcg|W VgNx#&[_Ra CXBhD^L͐!dzceHo fx>?.vW>O۞M8?vϚFlBlh_*dUʦ,Sj[|`<[Ϛ4*%WbM >6؊a7 bD6 KAk݉s橆O8H y, rëc|W<哽Xd*yzɿ"\H@pE{Gۨ9*M0D>[0s ˯$Ħ Kԫ17=5[\f@f@#q4J# Yq'H?,4evg7-8 Gpil:EkuSRjgYnʿ;%@vőgtcЅXf,ʹ=t|>)vҞǿPq% \[`w䴘Lȸ7iqqb7qwOUdCM(-Li;[꒔Q;9|C8S?Igdb'Z&&N.jK^Y^+Bsr1GޑHTo A9sB(nNM| p ɳr.$7/4CuDZv͇qʎ+:,zr .Yc ) ]:l.~0-3Qr1hS:Ihyh8ʆ[CM + n=oor@pA[v=ZB7ݛD\ȴ*LJ<%@]}3lA^ i59Hˍ,^5.07E7ے%i6n'O^cʍo)vVGLU|ބS5Ilz<}AzHƀ}P)q/sCT XN1E1 ^\2n=jASij!fAC N}KsmbES*_}eg{q*j,{wK|$!Z6_HUv#ԁ!{qx]DGhV |`(.By4A}͑ 'D5mD9L|-^3\p]؂{TLNuSUS ȍ 7ŋ`w,:sxGseF!sr#[\j ^a`\y"R$騪0iM(˜|!^-]4@7 `D6ibs'r-8؟k6aIWm{hÎߣ*WМ.DYl-O:xOשBEȖCc.?V;ыJre .MmVC) ghC */kü"]p@n[g:rW_ilgLtlT[蜖^H T([ryW]C>cfi܇PXD>GQy( fXM/NҞȷl:ˀ[}ZVnM(7Ӟk4xLJGʷ1v&sDt.ãJe(( C̶gJkD\}gOS0:~T׊ƎQ>bL3^4C$z Tx: 4g!AiH4hAi*'B6Ѓ'ZѾTޭZ/,96։ uBp>DNZwdh#w<ȉPV>*BITesnzAxUQ) lVٱ(6dI"][WҀ ɐp}/zR޲TUtQIT2CjѴ=B!H) kecD\ f}#/nڠ⠜A:/b`>9u5lĄ6'}֬lїBQBi©[Fd{&뤳p*A.,d_/$D?<:Ԟ0N,_»fsvX(}gzRyfVߓi5mlGG R#EAjĦB(認 ܵ~@3&P4y L3 *; j/`@t#JXK'\@aƥ(>#G:QIIv@YM<~*7b!ȁCYw&gmP20לNUBloPP/EK?) LAmMFC-$ШCR m}ªg󇳉,G<36y5\hAU苀 F?l:5œuʧKo L}J6qAk,oM1 !wA&, 7&v₁MH1f _pa&jr&)vɵ.*(#.c6Tk˒WxP\~Y2 ֖ O o)YiENQa)wg%$`N!${Ǥ>xGF z؎#Dݘt.PݵdC9c݄S5^MwhqFzhA5yu~ /a.B3v#㰮nV+ `hZ#&Eq˖.s{>*p]1*U3ܹ=ƭ1[9>nbitXeT9}Ab0٪B<ٟ_X3. j(?8J>D[5Ps19ZZ9։ӧNEiӐO*i_yxxZ΢YV=2`_1UK6֢ƱE7alH@2㛁Vv=3VZ k69N\2O~*L?SQ ނHdK?2Rc%߫N:hcpjCMBH1Kī=t`t:% A^N`;: %'/ϩ4khnVafK ttTy`5||(3w'$KyRɀh#]tWU' 6#$Q  d'Ԣϴwؘ{lIp<$dOH߳ꣻ+nuh;uh}d-pV2lD~?bI}ߓ@I4 d'~e\E3@MM}<׼1RuLjQNIH_@F)c9-냌d˿ioCM{?n ֢ Cs7#]1r<0^\ltim9 $"r~%ɑ盔b >k2YjgNj}?t 9JLe (W /Ts?lt+_>ϕ+p1Fc H]?[ˁrE *VTÅKݶ/,x^+(еYGeЉNp>;4֚刺04P  *>#^Ҥ4C`Wt\&nIuA ۛtTjss}iyםW*%y7%tUGHvF#H>9l,| >; @IX˃!T eMW>WhҪ. HXJh4-]%ǀهK[0=K }# 0: ҹ4L?>3XL^1mRslxbфLBJA n=H:dd.3^8ΛhgLb, kC6)~OM1SLyYBJy7ӈ #kf0`T[/(n 7!]_Htmd- ,v/3JA:8'*JGfz7O L sLUK.r8 :AD6'1'tRм~ _ihuw\Mm߻ v`a-N6`=)Ÿ[{w B}rl>WZ5O`d`㨫g:VM*57烿KmFR!ꢢF0Z&_[u:q_Yq x-ӞHGJl GƸX}0.Mm|1]G>qc7x>Z.]퓗+&„VAJe;x{>;]D]g5b)鿻YRRA0!Լ)14sp/f@&Ū%:^p0*mF{Vq"Ҥ]/Yi ;R,d)C&F ' G46U*D,)7q*` \lQ) ОiuH[M6qDbp_aLL]Xj|JD⾖AY(bR,5ƕ_ ,[(4%U0I XJ_?$ ^#nѕ)Dw,J)Q-qսKJ(fUgr`KUQMh"•N2hƪ/R1FZ%| )?в#gm (cw ӉAT9$|#D'@< \E12)+39'cD CbvDm@˱;Ebvx hiof%L[ܜj!ͥ{q;Q..SogJћ w  s/liϝ(xBTe]chC PR2'1>~oͳXD0kĘ#Ts/Ρ䯒:IS<ōO7qF6zCTA9_Qox))f@c|N@!5Reu6 }l!8"DŽ) 2cޚk P 7у!UB%{{ZCRm9HCMӅHËhۀfw88B g c~\OÑ{J6f#6TVBe 鏃Hovu kqV(P]DM$ʎzˎ`ա7t@dMy||3 OQa8,2;%ɋy;5}=m]_ (MeUR?$2A~>ӣ"z)FЌ5vISbFw[K?%SYբjzgutD63݊$|߾*[AEs̍-VnDOɏ+Ucb %RRuSBN`bg/WLPѡ`uglەƢ͐F: fľl@5mGWث**H$2{p%*V`rĐ)M?(GǗX9 #GaX[2Y1ǑbxpϚCL^9l2xƑQe^(.ízzheC 3P9eGL kA/ΣMCNT־Z4m.W)ieuJrf)\C֏-ji'c9^6S$&]Yִ]ޙ9 eS- (lҫ{g%uGGUgͽ~;Jqa{S)9Q+:Oͯz۫;%c*EV3 ^tdO=^BZJoVPhicm^c6 #NT SAH;ݡ~9:4E vXZoUd][gSB[΂GEa3` /FS9+&*8/U]K ѱw m0Lnd~܁8Zk^t|c t4(εqxc^9$I&i%L(K@o ,:&(GTެÛ,3o͋?˸&ABUm[ɠSqT_>H9(Þkg)X!XbfZ=aٓF|  7/Gҩ} u tt%&͈`|A'Uo+,N>l܅Oq@V%- ?靳Cg9_? 1P%UB~BMM)߿aT]pցw% LD Rևau>^/Iگ9ܲKA*D3# iUz/>߮vITp3J6P sN!b(⚄=$|\/&< \Kzhܹǔ+M%}HOs[/Csê.d_~¢4b4{tJ$WAуbjXŽז(q()&WզGQP :Tq3!ҥ﹣lF@PM4A(f \y91f26DGfC4G "+'% A/LtJ\T*O{@:8. xl`uv3ᨕ`EDdVhKySʍ.-kp94BOp7ܴCghpn?0tvz*nyX6nj-ITs@(֥ᄇQ~<6uN,Tcgİ1O]lnWu< ;ybGCc沕_ySe ^/N" \l9thv6)Z&$?/}11?5Y_4x_%xק'@RI-srb(%Qe M)+L:GSqTKpTq $L1TQfp*8[6:m n8 zuJseilkL?Ļ#ZeF,o>O?A'`PMx(?\2R[9Bm>/}nu~;dKά7mRtz5(u]Uɀ"[*ʰ.9Ȝw-+@F 82nmOkJn9wB`sN Yr;X#QƠ9=fQShX1"Ue8}gMA5u??#>\w& N}nòj,(|뀝П%ޢ%%:Ռ[]~Y2b,;pQ6/<^`u97 :i)[>+Pd }EdWQTj8@RKQkRJTl%N'wWuvA֩zt\zS"IVlwE) 6\3ZYAF~9C[AMy9rZt68a0a?j0 O1Ubd1ǾOJ$ܒ-9(Ŗ{RSg@yۃ+B4 L߮CI_j af}hb] 23Ş]*kY3}+VUYf5`n\˙~j 붚iӭr[>zs(Fy@GpA=ūl4T[Av3gMk;)RCuP})UhiWLQq讦̷Pp(M#hV@KTvVm9why0i]xȅ j?!^61d20ykB/@Hj'1W ./[@Ĕ V^cgA,],9X8^Yq`_37j;2/띂Bf#ܠ.k4҄K 'r߭VdGBgfƒQl>AnHp$a RgxءC_:apF=K.akEíc#CǗw)t/#_|@*O2ÎQɾ&>s9 T% %Ņ$JAa5 ާZ yJDa'W nw7zۮN@WHNLCq8zvQwr'4ys:QU8~3UfM\JioJ {ZO0])X$u ՖG;_8f Vĉr~Za^ڼC]jR͇p0ncNV$ɠ3JbdZhKi;jx吣׳y  (|jzzIһG#s/ɤٍxa(<рdU[c)LB֕5%>8hl=X=\"X |.V-"P*A4Ht@HanY0EҷT}s8}m j&7.?e*~GD,HzɯN)L2>uBy᛭B7>q)Gr[Lh)E3L&8]uŔ?XdqBp<=ݿkޚ*^ݫhdE;{fqG@oDn1{;e?#$6(lfg=*,hkbװƹigxczމs]׷Eo/ mrw[RvawCB]E0妧x.WԆ4+drBQVɃ66ZDLf_"]gLjF¡V͋ }F" hm KfMbLi^n$F S53@ʧ3q̻xgΜ$-Q%YK^VOCœ*;2tېc$`eyzV7UJ|\xaDʪkP 8 sy4ЪE?#R0S$g6-!G|k.(GP2 g,ZR:۞ADV."e⑇eirF`DnvXfI.e &8UX&rqA&ot c1u#95è=i 5ewgp`6,OwJ/ʆQU-* .7m5ʖp=ɼhlJV_-C`bUd;heApaya#?OXCl/\1rC1ix__>?{v9/㮷/A,Y _ _bhJwtAjF{gR? o̕c~|;Wr \|CuW"wOarygO!G6Y8'^ڃ?h)ʼnXwR Ȕ'Ea7x<~ et2؆F*,^~Z4("R:y)mܠUv,[*"et"":Ll2bts;S!r&_s1[Z-!j=STyˀauuI.+lk&+"|Y]f}Ain;F8V޳1CpW֟@ᘰ2OB&[ső]HYnKo!:7O `k߃{ʍ<w.X0,[Jz OQ'Ԃ1 èKH]N8-yK|OLr9%&+=+As~kpzN[w:MT@tzhw(7Uef2Yy =(4ցSSIjxiOX~N0b8};5Ģt ju.&δpu?-_  FzpY'Qo}L].i:z&QqRU3o-ひdnX<4F0] Zg(jG+\d6ETC #liE 㿑ԗ/MuwEZDV8/))p|.*_޼;ditB'v2*O]8"FQrbGIf {jR*-g2F54f ,$L;K;}jc"b `Ja7jFDhw*Տ;e)\k'D{{+IR\^A=Jse zruT ՅxG5{uX#C BS Qy`k[/Ԉ,H1"S؀Lf-T7-|ObPmff$474'dLvr`hU- 5|s.jbjdh> gjSQS=֕վԽ4mL}9 >Cs PʆM I\3h Ao AB/xlp.pX$.*pHZ1A̘=8j#~A=.{ܐҏEQEg7ӒR&:G^Ra<.RZ|P=  ~GdJh %+st2SLtnjy}N]VL!{ST[d2Tp \dh4LFӻClA LMQt7%\ѡf;npry &@ˑyVVEܾH Ǣ(}FFL-Ā@tR&:/fy)_: [i;Kk;"00L١o9b+)pڃ(QXh#xlJI)N>L+FޤT'A=zf0^ƕaF$&޶H%5E_RWgt L(JŚupxZ)#hд+ގkrGe=LG$-PXT5/(, Etyw 0x2?$,@gwџ  ݀D-= D)ZMlr_݋ 5)KWD @ jd6&u @"2Ef[$ \m"՚LhO(hxF#cly/eԮɿ?8x($u^_'w}Q%DUa%;hX_ NUo~Zg 2tlAd4ry'D4^40 5B|v=YnƹF$ <0||۸6x5Dmou~^s;Vl&l=2խh ײX;)%dUe!^?>.ֱfx ihxrϧ9HH6_?Sa\k?j>*Pz.LA9QzC6{"ɗY"Dzm'BRgBtYo #R#9}Arꊅ{/@āY %@(hI8풴wYO-= `ZgdnU[D<溫^ܳ˱a\&Ʌlȗ!Iy^mIJȭ+0:ynIK9< )Gxzg2B]fHobz?}mkm5}9v2L آPߝz(eRcR3TXQ4]-n﹛Ryjpt4w;E~" j̘D@3HDJjv!:|WWI)K ]d#>z$xfiM|c7$Gآ 7HN,-DnbqM>rkgvӶK}2KrNH̀ݭDq2 3ujvQeŮ (@/c͑69V1t̞3d/r]3>NDYGJkeտ@8`I3+~R"t9}Wͥ XC/:'ۨY9ud5~}uk K'AJiu峇@9=$J,K{~l4X˼(ĂxMZft?} .58/·t3Ydv ,f1G9Rr\x+qB%B7#snPr=(`qa\ںY9mV㏒7|$fj^Qz\ZIJAw3v4bL3/ ~bԕ'9u4VEH z>ٴ<ÛM[OYYġh}JѶaJT$\1]D&ZHB T U-my-,q(:l $eb OO =]{O9"R2jt|ᣝy լMv[QCV^\+xkQЄ,۰cot?R룈[HH9nQDP6@!rr~:鈼 g&;}էdRSg2H *s/,_IISGWC )p]"n& @X @ɴAYQA ,T n%^%kj@'o`RP3#]މd5Uҿw²rpɗ0k" cEX<K (b2YrHO"ru7uSP#D.@>lB~KPFG^E wF;nxp:1Mh4MSoJzf1fb*W Sa'j_{2VĚE/#y:XPE~)2aMOG !YݷXMۤ0 k^#x)XƷ\.v1H6G#C3Iq͗ZgTy}\Ak s^ZT50<{lUiw#$[Lߘ -_L HvN%/fmoՃ'V\Q!*2 9M].#)M{޲~\@%LL3 ґq;xkubiԋ{SImb4=3 rOJ:ꉏebUB .Y_<EV:xl'Ժ4OCֱa#f^nKQ #'J7e4htm^`CM,'\q`8!V7"cbb vXls"Jg1"Ss=m̢>tmJb u\ɳSyIJ+Jok բ> :POJjf.%B#a$kߎ!AO@Wrxr?{G&Dgc!r&'ĸؼNULP O q:WB2c-O\,`P Pe!9~rꦥǒi /XxEȜCS(Yro/4]yp\}/iEԲH`KP%ъ2qR吏NiVK7}vCxr*ΟF}Oyvi$?ARDpJ eD֫>(Xy[*3mKH<,#8Z?iקnaƼ$~\m=ÔAX :D!fAQbim/)^Y܋ h U ۷fMD6H'iFIoF%(2~u#&a@W^ᇏ &Ϝ|C&Lpphyhٍt=ֳO͗yŜQ,5syELnWj4Da7oKJ3 hhhJ%TlS>?ėӚWtJ }҃g1}\,_^wS7y\`BՋ8G`jZx֔G&AXʍ>]!Mׯd1-'L5.{^ª\\,ѴVN|a#U;ˑm-ρ'm֥ wUfTGГgpV;jӻ0zeٸ8K'Dl2}57az:2zP,BaJwu&dƽ!kUտAFAJfްyjFaT>%֨S2˫ھf@|=kTszSH6uO忱a:Ȏd~x5vP-@]E*x`.{E*O;ers9@.Cv)쭓i>G=b!A8'!ԃ>[H>>{PtnӲCz4+%ư<dvr/%Qmb¯$mm:aS`ezԱ&JR.ύCgfO&y*IċJ-`(D/\?U' ^3A!W}iñ0@1qtU;[iFkz|A{wgi 4}P44& ẳxaM߰EO eѤSZ_r@R6]nL3SqQ+v{HvQHub'5 0jm7ͷ?V /vO o!L +Ӏ~*KՃ?} Mݮ>NĈ)L^Z6zȅYOV"0E5۳ϧZ^9~p҆s+O`,/>i!HW'89NԆ]NCtԼ dϫnyK&[kql8Ij4aa,A4v,eYȕ gv(9}ph1ib'/]KLa!а?E8sVdjK R>;Wja쩜ù ^ʦ\l&inyq^ĘFo38\}-kIu3S\xS&WT5f-õX([PT-kP]/w>Wm&]:K\X+7^TF4 GI&X ~0XVZLkG"N;ڟ=dƘW.3X$g'\@ҢRZ4 \KZmMAl!*"A¬{iW[a*M=-yN04oE+SJw")e_Qrjęzm({脹_W = )!rCДM; ۖ5A _hxx # OI&Ucx)Ҟ{erf{khs!l~3jRrW$) 50 n>۬X쏛 *Eh%~qU[ jꩡ`"#%(r/(5"i )Fj4)N)5φts"goA,=9wdA~t{@Ӡ,cI,U&B1fptB0A>}3l IlΣOeK7 pH=a<$sQ4R'+_ͩnd?Grń0Jgឺ!7] s[o/xiM$b#e,IH1&y~~vU L\Lx;9za~i)/>Ѻ'F'#Rs&3lW\Kw}RVC4mzu\\ vsf| vO Xȯ]:ǓW[sh*R_.An2NAvšTvUKBv@yAz't8.DqjnDq7H]1(0hWO KN:,(tUl/ k>3R Xw8'rM`+,\೙r\%EHr/" Vm M&:ia` UDylݿƔUaE.7kY`ef8;:QQΦ}K8=Ilav?Z,guVؾC*HVʶ ?Ç8 (S'1d5p|un0玒(G9-}Ю3s܏ ? FRVr\À\ml+`ղ̇ re=hi*gOrNsD/I#Uh[ph1j ^*ʃ3`(hә%GAYD%<`aj(cHhU'PL~L,DD3xjČCq?FٱW3 fɢ$MsN]s^>&WLFaxbo{ 1Q̆d}=~`L#a3Y}1k5Zdp<P.>y`,,8v!,SaoEv61-_ ` IH٫ MdQx !(0VXkV.R} $MJ$0ݮvFvM޹'~BQ -pƚ}En_ [^~'<7yU7 .[[oQ{:UnՌPYDD#X[\<}MnA0pG$œ3!cE(V. YVS %Z Cq\6jWE};>'a 膫lvъ3,*ȝuCZbr,԰ sIԇZ<#*-ê쬷$7V›Ա(^zюjn T#Np!v^+ƤNc)eIbtSl˾o0gIlOd>_>eÜ=z}bpQ޸!(*5`O }&t8CSAcS5J%5C@3gs4SpH+d"]C8S+qh0WAGД wt}`nϐv㙮b%)֣*4Zϳrv͵zAfWL3#J&1έ %KqBd@iK5M>4pS[ Njsj( Qa`sۏxߑ9KFsBfm@rH'RBR_BXEv.KOЕ'kqhnZ DlT W.@IX&0aQ~EJ ě-7<[Z^" I? -Dfޢ{Y!.bǕ"u [ì>"AsKbʖ#u[ٜFKr#=y-P{h5NپHJ\%RAltިd:&G%Иv4w4{":.oFs>Z%)3JkT3E '5 R)q.LJpv"3ewo}ىHǙ7߰ Јa[h-Ә)*hX6RxD)&Mwz- =#Z ,`&܀)-6U Hs^Eʗ#2%MȊ : vΎ8n>i!y F1|=t%=/ͼK;˶&lNyރ"Xbׇ /h4)(TIJangɠQö] {STkj.*T*"uFsmvtcܨo%l^ ڨVS@ MxI;ѵMIH}XYewefzޟwm.ڗ޷Y>yV+d2iR\sH]ЋOK$ f4ajCW|KpEg $?U0ZKPox^5(,,Ө<:"VzX%_/&9# ^iVbکKڼKVG=&k( UiСx㻲}g(ȠNr{T E<ϙc4Rn;Z@Q/$y ܥl^͖oJ,P2@9 zTB~SHL2A,+tj1/V5#ÕwWc"lkk*~g ?3E.Qˊ|zN7%񎛕[\)c&ڂ^as4"\Zx ?q/ r%FD4XǓ=.x}&~k_};% H9Q*kv 3ZN.fј !]8{=eHy2wk䘕u;ߢ_Kmp!_3e]|EUX+*vr܀L)r^CŘ#|u8@7o88yf~u{0aoqm͍>^,Fjf(\؛>$H 8}:-"M55*lL3ib1LvDB+!OP$*ѯJ^L3 sY(@`փO0-`p`o-)R;BGa>wk[D%e0`qmGSF^0=/}[8*l111o1.*6 G/ 畃dMmXkQXa[Z @]&?Dɤȯ2LЀM--1bv YJ]YoR4Qr)UNE 78`yMaϺ*_߱R뤸{; -6-7~Ǭ LaŮ8gݺjZt"~uŋ(ҏa2tAn{>@9{I}<` , QZyWQ^NGV˨zo`+M$ |)\!6Wi[NO̳_-$ˍU?JSz6fC{I/(;Xag<(sQNRO<\ȼ~~N+AoNynwTL0k7uT?NIt"?P0[ь(=;GoWNGRB>eO]#zp\CP5XW9l=m((`սD/= s+VRt.85adZ PF|Pc%<>)Wx6D+s5\AO=km:MvW/).W[8<:JŸ./HeBbbquO ,zRȞ5#D$7Nii~$avd"dqq(](ė$wpc&(wk,]"АjBԳD)uDA&yLNLsj IC0BMQ{p[:,~ L4L,w֪WNF6:nTb>-q0~/NiƲt!H87}J|cQR kl=r-ȃ{+2\6țlFX)d|k.58BVN5&$7{A5v KHC4 C5H9^\AL+g*T-ʩ }Q3#~z[꼇N5Jŧ>"R^RLvv^DÝYvOrBbU$uBygL qܯ:c1Zom{ 'C"n 昹nŪzmlBT`Du_n(WMLfn4 y4KKmsӟ#hsK58@3-7f7KqZ3% I0,")v%^2m zM`EUhg).%I;ܜm-sF9 3 2BXG`nK7'RH'6#{,u[;>[u(3?W/8KW{lv]M83qӪSҿ$"J @{N )}v:'2PHe.t6B&B?ٵ6 ppbw XÊPk$2+?yy }7hc)C>V_uB}Ϙkc1z khɨgvt,qz=B!+,%/⸂ǬvD(0w"A N- GF\Rm ͆ Hq{H˻3K$gGŘz!;'ف꿣 z:1ekV&Jz= @5C t4YN ai _ ULIfnĉ Y K)FA5go*ҥeq)J=7 V i,1JoV>0O%qfjˎ:Aeo>Oi#?KzG.︵m kXwx|aExד~(q6"ͥxM:ۄkDZpţ\ɺ?bCH+Hg%Eʫ/(P"w3,ag2b{ېs6f2i* %ʘ&nKF_~78jQ6L'P&^\>lrGFc QQ ?k ;\ʉt H#n*ΆW˓]_rPJ{}}/V VI[:;-!dٝE "B{fuOXkbU +7DbʾRpuGD@(0oB><fVN|n]V=/۴Ȯ |ՃL!Gj- p"ީN<arEHYaҒU z0i `1Xq}:A %XclOUc=~Tyd1+dNs$QQl*A(dCyFYAP &ZVj-*feE%|opKq( M7bvUDQ[*e z f+&59Pvv({k$g7Pqx! +-W9r abXn{$~ # ?&{-F&@,U#qkQh.ۓ5ǢLH|{lGv*Ut?P#l $tPh[x~QT7&Dʖvk-e63S>5fi/,sFJ#]*;{m% <ڐZ0ɍc.ՆЍb-[oX'#<1ѱ _"K;ޛ[fӋ+( 9^˗4P.*˜QvKGiăt`Llu6~K  !/š䮝0I~wsg|Vr)o?)ln雗}/`x63׸K /FSo.bOF(5~'~+$i'+4aD DW?b,XqrlS )gM$j 7t9_J<S;.!lH%LGTC'V5woX5{#ңk?ў̇!PY6`)w.0 gjuކkmmJ ˄i/e^K;# {0'n9ܪBw%.x :999:Ǹ^:43#QK(>*xam#7 sSˆ‘iOV@efc\[{(AH=(nwfC{a bBpO7kJ8Q9>GQ);9>E KPLw1Tȷ-w(GY+g 5M*?K5y{4p|io]-:Ҝee2k_3Q+(< ^'o:Xңr;'hmKjp!#2x;/I709:g]"K]%( ԦygD 0DO/Pf )6E\ c?~\g[Nh/7{ZO-U1暂jG] aUސ܌ŅP!9+k\UyxwGUܓ}4Ƈ,މS[(u‘[;&aj&͊4{;V5qp|3d>";З"#Q3c!>3Yʵ8n>Hv垂[; tMe0@aNX6FVdM^Fyfg;oY y U)Ę.8.MR)PpkR#W#8w gףsc[ [Vؔ%uɒ䥡`: ( 䑻qQ!dۙki(68dէxX3]KBG?X0$I> Tg+#:.didF^Gs ?{Z|2gAXa{#WL)O WiIu]2U)ŧX{qB۟E*^w40F?$y !l}yc9WHF-A]i~KRN]1 V[iX0.XET'>-)ui6 O-$L{QVJ]ٵ_j.0>dw]w|Nj"jA,|6'ƃEa찴%!Q@@9b5→MיG<j}%hv8m@Q#lo(7Pϭ](϶K[}1'VͳPQσo@NkTh< MD͊"` Xu ]_15Iυ=dJ~tO`{_2TB,q.f :p.ណ`@~_իZ;Q5q:8SO2qK@t!c^ѵ::| 5[X#L2Hrӗr9;2͊A@c Q&hRZvhfX1 ?-]\%}eTU} H7d.O705[ !93c Q%-9"NbWVD{'<۷'gkxC]bfa->wUZlGK( Нc +/cy̡A嶐$![Yhy > @sz"3$w}~8WHL1?>a#6BIPfYX/L <[n뉧.Y$Mݿ @ֶLr[V@VDߥ#٩ eݎS#a/sz8/q {&iQE4S5r:pSyg!N҇I}S%aٶj/GaZdC7aZ8BB2.5䑻)md [׷uGX8nz,}r=S)']g#rHi,%IU)T6l{hZ2_o%CAGɓKNљ)KR;Hj,F5qaWd`a9̙6| we<Ԝ 8jSh!kf(Dͱ)ER2olX]7dziT "@\⺪:sM,鰬@Qi [(T'J$ v?x7>VnA -փn=`9JI* N{f*A}Xj?0DdSDGS0R,%  ^ȣ|{k>n(d'\ HXQ'A64\e4&BЯQf/Us_cM&fh?+^OFjH?.1G†+RRT,7Y(V" /nyej 8T~C Cz'fs.G \[Rf^+)g)msBK7э'=l5,vKd?`Άg.U 8Pͦ!yc# (?:agF/\'&( ImF7YS!|A Ӛ῏w'7+Gwɼ{W!|bt[U&V6H=%7n';ʣ xlsIXT4&ʢt7,b =D ˍTFwd`Ē Ǟ̏Ï"({֒&{qAt7_" f}s iqv A#֪)vacJ=45b^c=x)^ e@) xl34=T1<+eo{K/O)<&:' [D g{f4 ;?]aL_u#a#:7ނ E@&712Cr F,¸g[5'Lxbv`$ωyz+uքzJ˴灊K+m-rci@TMFM*>zPT;=sY2'=d$|3,tqcTYï |Q1Y9㳞sHee>_c?{ZA;XMizcM =kr˞/AU<@wRԊ CYCeAI6 %ju ߡOp2Sy?u"Ą0*C}{쌑LB,;?h%.Y.[@B(ko4a(ܫ(8dg{v`>H)1*Z?9|eozv ,\WMBI|츔ӑLonFZ d:RkxmL+YF焂5)oTJ5Se|āpvWս C;n \Smh2\@"vD|et ys$O1(cM`.tf&#AW{E(JͨUGPWyQް; fDE=XyzbZaQWf 7Qɖkɚe4h]#&(3P_j>ZLʞ&rZ4*y8Zϙ3لAfh+Nf*K%=7PE#7! (Ǻ4YSN"ZQraiw5h5qh13&aRiAhVXsv+tzjxde#Xk_Akf)};f6p[2ԃ>NI,U@Dd: !oe.hx-, a!Ղ /4ODVy6m~\)$iׇ' *4B@HsL: `d9j z>:]Fnrii)m26K%O:RO,%lEڎO3dž0hlP '<]"uWwrQ1H#~ܦ\a%weu?@ݕ0Y\  R (Q{ N 5V zNp89C"n*=ӳv 4e.[3jU*ҟ*f"Wc hq0vݍ3AW 0ILPп't2=2ԣtmudiܣu"#JXkaGg"I#v=fr&*np .` BL sA{Ow9a6p'+NJP&GISlKBoq[zB1o`z֚{l|DH=0맜V5 hL@ d> ^~R7M$MQe=@vVk8Tw yZ:4iB!G8d(=xV>/_3ٲ fwgSya?EGwF`!čWURUrpS[ߢ#Rz~PGgŭ124(FA7f#}pgW :YϷ!ծn9 R'pI 9Hݎwyz ~벴QOs@3\옏&9[8s {T(ö48 eY-%$ O sSrA +c@yHQշ. L@ "Bfߊ0Rނ@1C t lȕlf*qߗO]j2̚1f1-ՏP̜g A;٧a0h *{s/idˆvq}iy|aoS*EOo)1 Xz>58sE7[>KOjuln.66 #bUfЗDRm^ $Jq1&x+=wS"A !mȩ9Ñq9LS?]Yre41km{jL{$fWyؚgQn:csAR:NS#CrxWjw Oe[C$% ͤVwSanb!wH/ UY? /D61389=p +t$W?DyP>ףuC}@Tdf #qR6% `iU?1g;%> Js|(ڄ_'E+<=ޠ0;p7Pr@_!qxzFN|:q L+o涞v*շ1[g*d9A Yd~զM]?o$nUlCh"-p\@Z[Iz3oM@@&Z*KY([O̝7x7pj%㭚Ύ83u/e:L6qjU%>0_M.;l)}|n{_b<:zIē@y=Up@Xx~q8\&@ag$ս>VlqoݶĉuH>EJfsod DDŏ 'XNT.Pպ[bA:=vwp侈d r V2 \{M_L3&ѠiDz6Hd}:TN4<&xL0v:f]\wٗMVk4|VXxu˷py(ەͼakYQ(?j&aKW)> aRd HdnTNl302)_\MG_g'gR!X"uXc1}榡^Yib|Y3v 9P8@^Qs~UvL\Md{Vn^ N`6<< ?ǫx.V[ qWR0>5󅫸=F~o+)1=ոceکJfԫnZĊR AК 'iR70_4!4fua%;mj(zRigG5.f[aӀ!(*eՋHp{c%gJPeV܉J.=->| ؠջXp^J0R +T g\gRfUɟO1-NTOJ^t!Ƒ23ΐGqpPKc8MØ  § ƈH-I)+=^ M\\,tqwJ/J\#D5s ;kTj Y(X2!y!跻%yٱMrCMKsiBxhR`nV<6I of5 >%uj1q& JΒhxscJ7i֮FoSJo61X*39paH¤-Ħmp/M+ /3+Ou^ť/̜f2M  j9x_oD7}v>=E4 bU(+$ w7u%I7kqы\CD )>Tt-6<[U$$lk ~إOib2p `y9%;lo_ťa4q[iԩ:Dtdy:K5"d3+G Ni`֯OԳ/o$@>'BT"guUpμzJRrNKzrNRC,ME`&+as~#AdzA2WD?|>qCL2)Gn0r9aNC:0!1n^p^ÏUC4Tм|8^'wXH헃݉0rl=/, PH44 azLV(ۢFi;s\`0oQ,ݥa4̿66|A\GQMQ>9FAl]@9V0)O}oY5H}U7v!xi{ 99صsrѣ\0Dq N\jI)+GJ"H\W gӒ)/ҭ9'8z5%QgViLPg"$acF,CE`SKT-fcJ`*2q\XYA@a :P-Ҙ ]OW / hֆ;EvrT&#"Iח"?5fO/FV~/-&>RZ$='=nJJ'&軳фW^48F Ѹ}ֺ5H #J! ogJi_1*3UB: ĥ('4'ŨяQ54-3dId r)/=kUdyoS` K+wTkȚZq^NٱٽFS-;;!T6XY.ʔ8a}{nC>Z7 9g5Gi%e'me>87"eIBTz#۔\M~{HsH=1 9OѾ}bG?w⊃ed|D_2l,}COٝX~4C_x%>}* Tܳ\P?{7]Ƭ[pjA^PELX?"2mNiv==i<9޸ux%}5wD_D]ۉo*+,pN 5߿rC <`ȼxE.7/FL[//uoW&9Q $ݟ]>%yl~0]>ER{5x!?*uKG+?b$S2:{%ԵrN1#2dT*ݑzKtܒ]4i^|[ M:(6]d"]RG ]s hd}jY{#{d7ܾN/67z+yAg2R/S^QX "Ƀ X~oL^[>~s }߱7LRlk ܰ99刞 d<>LWCn-b!W$!e)8onZI ?8Fg8KV1eKY Hʼnnm^dj6,JX(N󳼥QqrM=۳; edY)[[ѠHib.*4h8 = 6ԫOV43<}sBQ5v0@_ 8\mPxe"3hz-"4e_)|f-Yٮم}\xS~kӠ^xљ}F sG{7|oD4 Fjt0f`3ppS_@6/AZBKvt:Tfr jx1k?LXty<^cȿ(M܏|܅!5cR;/~ $k|G3D8ha4#yk Fc [OU`ՠ !}x ad6@M Q4U,PsdOTۧ/?"(1#I, ]h @mAٛGM#DŽ8uY"١!zo)|\n# B`yC+xQ->ϫfq1Lok.mփ&@HXikKv^RJɅ>7Y _Y1,4Kv:|1 nܹe;YMfduMؾ/' \km%m, (FQ5<8vdRߥNjȐ敖HdHO£Jxjޓ2 YQP%wr2i4u ˺F$wE N5"/V;yu%niѩ!))[Zj,RJKܪ;)35=qZ}wt=[߫U^nE$R1/& Pֽc.ǻ% !૘؜y/Csu~SVp#6uwy:UR(2 X-c{nnev]9\xWӨEaT Uxe&40 x}~gƍX)&*6ʼn~[[6|]1_M[Ejh.9ؠ_4vRC[}VVo yS}[ Hg) Dh*CR4,FgmQ.y1>m]KUCTnbD$'>c,wHW( >/LD*8Xl4m\ypܓS(mTCIf>}E?&![t/h+kW1AgKBEΌqRC|vI׷ꬵtgA^]Dٛp/IPa~Nݖs&RI=sЮ:D Bt7h?;'1(>ds)"JOjEbk&aRׄLۑe$~pP0ydĤ\S!<2WIS!dք=9L3V?&_ jQqISYçhg䔆$F{^B=( ed`"fgBi(eR|(RN#ġ p!cE 1YИm '{ {OMAx*9dP5n K/dtj8]JTN:63t3W6cZאMAFKz,UAi!eynW@{]&.TaHvRO{Lwa0ֹ\g6ԴC] '>`q<"LbYE%f M]<)g[IĤMb {٨U.ݸ(kBuQPNy0HkG߮qH(\{ ʝ wnj͋i\uC79t֏.H[ 'V;d]J- ˚ ݧcEڛ "jӅ"';EF//Ѽō5 Bq먬Ŭo~ PAvLeX2)k@l V@= ;s!Y Ӳ Sԁ%- 2;"ᓲC=FbϚ7z 05B.^']}(]s9!9%d^ }BrWʱ> 0 s7B|xc*@zr5G+dO:$D9ȭJ ^ WZ~bʱoP idЦN 6i 2O'o*gV>)O5km'x)cѧBBNf>oGM#/*s3%U׷[ D1z,譱7nscgl]tL`eoæUJ(%E)ZZ\ vRXmB/Zl#xLdnU=H-$b/I(%H}n#ob c}4TS_dGM`dzbfi ,xGE*l"8KPcH7m"J2zBc~ghtAaFB<<l+Tp?j-!$'Z  /.b'pl4~j2-AW"S rZ̨I )̴78a' Ch/xn>͔@65l>;m 1KHyE-fm@N~Ejw=(31 c"T5`*i8&{ hYAL]z_?t5Z:vFD+/k@瘰D(]hTv!VO)>=ҹs0x{OfMj"qij|1 4͑%tHQC3F/aaɊJc #7 |ּz=n Nm8|=wSI,w5͊xPTobGŒZr@V]@8(FA9Nt~-F:u +ǥhkNHy v{ 1)X̏^Juv2K\U[Uȣ>6Vk6jQnqBɤ^d{UiVshO %@(dF+,Z%\ 1L#SjThl~ cY}/l+A| ]6B|16rAEv/g`l`[3D 03ڏkmՕ84L:@&Gܰn%5Aw͞5:OJlWGϨ:Pqm.A\RV.́ k6.)'O-0E!j`ڑc'f_l>CjS7_Y[ X\_y3)T]m2gkݕQXc+4y)ys^`;#nhugϯ+L. zF.covЏw(0r 7& ó~ÓKլ˚ĠGhS{TqpZpg_kҊVIdiYH1Jw̧5tD;_i~."y4?_}ӌ-5֘#aQ6Gh>Wr+ Ȟ?i94nZ0uW{k;8-he_S8iObfh[RړowӶd '&=X|x9l>_#$p #΢F4 ǥ2 d0A-oĮ"(OЧt `u ~KG1*1D?(%fC7r0sK$'(Ò$]#\9S RG>wW(yOmݑ`du+fD"ݺxSdQxGMA)Jj$Cj,aS|nOj| pTU1%qߎXw }F'߁mgGBݭxWF}"". *K-eӻSH)."K~CwHĩrނⴆsrpg>%KnB*6u4:Hk~n d-PMnaBr+JR3nyT愼ERCPmC 5seX*)泩[QH-2iMb2^Y^#)fR[=sیp ߧ5avft2tx?[潹%Zq~3z Zn*=]Lƹ=|SggyXw_ݶ4BE'\;,C׃(zf^ @r+hNu2H6}A9&Z}NLᙉ? $?Al<~8XQ.-aN]i0`?' I)cU}‡a$֩SJHfDf.@k 9B.<:X@VbuL1FcD1uAOH̚bcgD,iiI?DrszZ`P_cO/6m6,8h 8cnN!KW{^$#7vy!Uph 7} I KW2F.Ǯ#*epv饚Ɣ9T#wǒY{ÝZC!mIb/5d<ޑJIɲ9\ Ź] A`*ogqg2w3T - 1JE%NMm0+ejSQrLF4ln_kwDl?ڣ1؆HVZCR:-tq-t> /勉+OpQiA?EBbvDr5^sL8&"ևRn1ֈ:ŁԒ뫖:g6>`j?EÏ>sz0RGg?iR\UX#W%6/eʵ?`W$|@Cm|vDgI{216a1Dt+-{A+b/"+Za[_x(3 ?^.tkRf2opbnuPkȫ4 -ÜzP߾Zք3L+ܵʌq1FB~nb173/K)ZAb슭6P;7x K3^-a%^OXH[^MNyonewũ1`&ϔ%ힳ᳝/N!q~,m?#0 >:u;僖zB;.n݅*9pF\QLSJ#57NBE:y>_v,u' /RAdm3I; yd}dN_xλ&xJVrt.`{NTYv9 (}!Jͷ#㏰Y6ivAm0ȄZ$m0~yΆFuNMe+Ƈ\B/N&;/o!y' (fD+kz] bѣr]Tqy"4Ga##`觗_RXYEۧ+(`S6c4Hb0U@_uH;榌;v S꼠 =یjmx8 [u3mv#]Nrt. lB\6HwL">{ WS@8@ۙ!ˏ5V La(nCxV15U!D)5 EfofttLSfrstEv,\fm08+f@U>ԅ)n0f 3xіtUf\wi+E>jd){l\Ղ^c5jYsaQ%]g;B~ 5.k]' O;jiCG>oU 8UD Œc:i} ++h>EUGݓa>D7Mxe>dPM'T8B=w8oe-~r?ddg[RpxDs{{˲&$NYuZFkB[y q'J{A M ͖Ni,`R&bՃNDByyiqe.kؾቮ;u5bTRZ6 ø4/<l`'Yp)Fe 5x6w*n<;ϝ~NpPb!BWFm Ŋ.c)Dcx{b\BBQ9n:ju"?Pz/ݬD7H?E˾PHl߰M-fk 0_gͲ&bBءw{иiY3$ZsRV({j*2a. e"7rH_My#"kP.GL'y 92V1>^@fQU\rQLSKcXEdB 4СfɽE93lj4^[ aŷ;/Z);gCO/se$PJ9y] G,`~2e@^2\n$'e9$ ɤ*)Kш;(:IGےwGHK늲~v&|lwU soHV/$ S1 /m@QͲjRr'- Q|o}Ѳ>ږ*I}R />4@o3bk!ט[NG2@õٶؑS٢<wv3G-t'H8dlL*n|ߗ iXG?Ԥ?' +=UW]=}I:+}Z S]..ɏ59VC=un1'Tvָ Rte|LaU2% Yr!KS͂/Fb2,ޫl8i"qxғZYc4Z)_9UF>ϋ ]="Q_Jf?ƙFwlIXVlSٮSq\' >'yl10e:WdnO6Q[43;Nϔ-RaN* z|i~-0n^`'ynM~l<='h9r4(i+Ϊ!hOne As2!`1h-;XOe 0ʾ?3Ym=LC Na[XиIm*yv]qobƙ๖]<{#vrH2aGł"B*Z$ܝ yy]M*qh5K[*ɩ^ԔغGv9B ]-a'au(&! D*b Kg⓫r2K:rUe~O9>K4K*3֢;B&aUu6f5WķQH2z[חW2$91fcJ`![X=Plu$:'{+{G7g< w\;%o庶p{mXBMʅ fl]>ZVբ0A eVGNj0[xL_˩ Ğ:}!T &}*zSw<e5d,x/ථ\کNh23 r_91aiDH)ǂ'2r=>cܤf&+,_$@i)+_ Pz cI}lIpJ0ѫWfa/jW;d,Ou74z( ̴hU^aUlLQ#gdg>\œ'*;0#UTKCx)OgҺ.+Үr(6uz@@A ;@; %E\-ӹKP= |K~6FH5Xc8*f۴`*_5ؑs[՟h3cQ):0YY3PBk@,|Jt_ ޗ4rИc4sP܆sړX~y (~")t+gKVwuQ)u˫!I$[Ht^DQcEk T'Io{ ./kvߕgfbƼ=z>H*Ӄ Ϡ GUQLUqk貭[ k[oK2?g?\ 8"@FnYPƊC2roYRVQTj!dv jMWm=~y n<, PO;S`\`26vTO 菸57f\`|"w)ŭv *&R=bib{Uc|N eXk %ĿV:*G'ćw^o(hGԵ~A @ 8N_oZG%f ي;IXu$kңE:UłU:P^x,A݇o)E4M߬*h<0,z*ţm'XM.n˟%'`լ=~.3Z 3HFbI 7:Jܯ|ͤ r[B\B,lGKsB\Yx *Lٛ/}z{Wl޻>}̓*)Q`4L |N$n@uXƈΜ']/`$ 9jQ{N])H.hQX*?,()fЍx[%u ,*hۿsE=0n[/n{>鋘hkz!dD6ʼI[n:tfd3&ߌ`T$ipޡUIA/dk'yend&tѮ=٥Y (ZB)]S~:r]`bqx9cS2sYП v/d:ҽ&\ۦIz} ;.3eW ]?X/J" #t"W1"ngX%-B1Ϲ>iCfFQEOP7"CǦ3۱AFM*U[% PU> @^K3rgC&/:Tȫ<ڂSQ/ª20b+JӁ ̑~ex;ut)E*<X1C৔=UrX aχx5 .(,yL&!ve9VX^za䫂;sE2O##+jc1R_Xڻ{TŅ5rmzd٬]3MwPl`]m KDb٦yߏ2 KNhQٓ@a0Z+*){-8R|C[+*qcun U%tgSk">i@SOZw`}LB$q!y od}VZ:kN%뛆\x+F ~1S:rVy>UoNǬFDuTH $_e%l%WD=,q:Zn.稶#W0Y{8HW+xIIwf;g1’Xb>W+i BpYӝNH)wuK?ڌT뚛.yq25)b.^r+eTE!*<{9a(a}imH̋J^rY ^* {NJL!m|2lĊr:TOi^LFGHU\Mvjg旐G7xFM#$'*wm=N ݠ/hhy^z *2j#Rϔ/tt$FtC^6I˘PzB!.YO(Ob@[cj~3C?a NZO)BW1{?H y)aRpM}rZ~y_p5>΅p,w-o~KcrnMR̩K5𴎮JmOr514/P ҦeZky^zH^DߍhRֱEVrWN MGZG"L֎ĜJ& Ca7 [i U)!bb)2IQ@пCX!sahswiT@FXhլ64[%BFȖFЕG2K?p7A~6ː&BY*H^JG3 _u>UOn/& f=|QnU`=4)PHƯĕ*,SnDM+3݋j8PC&\GLsv:,lS9X3 ,_\ jq'Ma64(8>@(3ubr_NEk :ya?9Iɜ=uYl{ziNaUT2iɣ[' ~J3F[NN^w` K2t{I{tuS9r\0 ?W܏uKWӍޑ4vNyMy%H5.4-DOaG:qbuiYy%xgՖzfߥ(/ȁbcC t]k^3SFlE6#\F20f{МI0i|tyǵ,h)kDs-oJcJ/*q GPQ*ͅCvy=+1srNR!c`6^E$R̺r1> v@1@X_ c+g@F[bFXOkV RR_F[}rI]{8 CqfEΨGA Z֜șh+27s 3LS6Mrjljz[?Dh =m$"ǪrE_U+mg6b!/DVo4:a/kEnzgɈPqJ\2@[ڒ%A̋]5닡/*<^ŭFL-yʐ_ Ϡ7p3N_a6DM( \>6sU Y0n Azȸ{3e<,JfK;?Yl_ 1 ؅ev&޴x+5ru(,"*-bK&nZ/\S$B^SAO/E`.3L+Oywo6QW[j k<*5N%|&M_#E%FMV5<ϥ2#4U'!,Zq J"TG$[ƕ\|CmcmHZuvj2]“`NPs{ 7 /!2%bED"[dJv_^<6I+[8~C*%XxS 1cdlìRozxFoS$>3Gs ,1ƧEZS_:Ԡᱷ[$AXyt\ډ'o8H+l~(@ +G":q8pie4s܌LCJrcgPuf/^\~=5o)Dؖ{vڜ݇vvy jLX׾簐uDl;c7qx?>S5?g)⫆dH}}Z cYW?0)=nBƕc`?mSqѼ3%^zL1hV=Gb`@x&VdIwGpJo'@ȭ}%%80mS'olCy6Birùp{YҚ]'rF6 =7i _ C$7-'j0ο=NkF/)C\YR-h$uyC2ƪbݼ ^ZM^.Chh2>|m=d.=DEW$FN&?DkI\ <1t)[V;VE2]7bNt7=c#]ҤCaurmGUg|pǰJ#T+9W8YтJ3_c}LϿجҁ ED`搨Oh?D:=uH缎aƇ#ԈL)r]+ӻZgx.^]>(3l^KaQ&nλN\jX&]RRuaVko&f/8B.HnWM8zO ;Ӱoa ]љ ySp>-) ԁ5zC;R~rt#^_tDrht:ٶ%-=a?h*/baHiz֝}Ȑ&m#m^]QH?LNRTLQ,a& io(˪.`֔[/HBYPV 9mӸ(*wt#GFzNcTna0KGF_ ˏW<֏`oY:T,{G)H3R\e>}2a"A FUtjԮLc=x<wx,~7w$c\fN$|(\7" קF^ՉHeHBf_pڝ͏Z'NU4*կ=2Wq֩?VJi`"4} ' r޷'4K_{}E'K 6; ]a+~N|?GUB5+SEPoG/4;U:V0#/eAkw]pf#뿰4EcuFnORy4_/[6EPάqp?8%4n+yOf's%%: ّ ZspZ9AݷDƨ J3i{\ 9U`R<;R l*1)=0!:5V97;\6ٔϗ~i&aJM5m [ f=?fԟғm+w9W짷ײY?ֶe^"8٫gPr89FAbBmlG ; S'-Wnڄ.>{/$GYDإ˫m[kݯq6ݲywMf9ARVnu8%p!soP}".kdY!*%)v&NϕTyIL@uG$,'3WMyU^Owi= Lt' *1Igvk| s'nskm/y80MĢ;3~E%wP3˝3sۈCwys#%nύǸ;ߜ^`]gWR?0>d M|eQl#Ҙ G#AQ4gK!_-lKTgZiAjO0 A|~H^w}޹ʎqǙ'ʁ~V1O4V7PkoQ *#X!%d@!HAH 9HŁ˹{]?syӽӑ.tYtnقuN<J͙-kpm? h` iya#$e< T]7G>Gd7a7#ZR~!~zx6 O8;όAs\SskEp@Ք m!A)Q! Ak'\Z#`UCgEVyZ2HEӛT, +9h5 Zo~1|p:vG\.~zB;ml&Mp ZUGـk%r| 〥 37g ]'o ׯ"ry2p ("|qkW)FbrQ|EVBh~f4 pʛk^St#cDK\UI-Q>WezAx xn20$xMD} f0h.fyif;n^^0 +(N c9Ŋ EW)kIEŵ!Yt!OW]TOrp`z䠣/T)NQ9*n3vl/ zcQwJC 5#! F N,X:Kn4jb t{j2#e<}za#2踉SlXOQeRdN3, m9îiP&݊\͒l>Ls;!Q;dJ<3QYoHJ B[\؋aU kejzF\@r%(+[RqMd@h$Iz%b!& gx j7dH)n6/ro]g4|`!RpM+7 P # ǂn7ci̖O iiGKk_{|񭬺q\ }J>mf8eQ"DZg%th|laKg$) rJ7>%3#@1eP:>Kl`E%|a-ٵ580s)*vNJ$g;Bk(6@C@+尅/GI1T"`ڋq\6l X |>_C [ c(+ _ t?.؛DX?)cؽ|7}NxpW˄č'|׊0VO`RG)I]ם* ќ&36o#YkNU(XoV|6m~c=)wC4 Ō&*7>:5n؞"j4/  aUY>],SkҴ'Xܹ,يh.Ƨ43> ;4Ǔ^d'л&2g))Gl^rpҸ4WAֈ?wteI)UR PQ=hnۜ 1U+囹r)U'0(JinEB["Jqg oRdRbO7?xD[_\8Nfk)k9!>3q}޲ؘnǐU 7. L ^j!zM|/ 1'W}+4ƶN(!f+&#Iob0J6(DJ4LX|k(Q[Ū矨oj6gGpI*EӔ\mgg|.LUyF $JQ n iԩXDΔTp.*,PeU<0J3\,ςR8j|}EƄfM" |[eIEߗ#k=OcFhUNn9 !woڑ.Y9{E22MZP) 5^ɢ@ޯGf~+xd=#Ym]r IV6'eC?]: P3 t,gafC!/☀ &C(,\^9clGDKoF'X#i:ID|"" *bw?$ݦaOy 7vH"~z^!b댜D9;߮7c2Xq c;J<-u[ Wf}GZH(Y {tO T.o[gb{c  u] @X1&/:Lsp%/RVa<8pcyi*:]$Ofg8̴ \wXE d^q McW$*h4e <6à{p ?NYZDEs Q/ Wu܆5t `V_ 3s<}Ǖ$ũ9+2Z8zmci ֢Ţ0::@%7/rr}V$:f*1maדdnoY 0psסsG {v5&n*iˌgԲ (sbB>ZeXA E^%/#Rއڛ ܹ4Wl v @Y%^Ȁv$ԏ!+6C1ys:`P- ?F;TunD~^yK-!RXrPƛ~Iкw 2-.S胃18>`j}9yY!*|ؑyӸd! AQF:6!7qrQd٨.rHM빿t?/qxJMPNp05|ywdOUߟ(I&5e۝%?s׼(yv$n)SH%kӱ4 YDh(04@B .vOJ͇m̘DZiUk١9W,Qn]t% VZI}W('!UQxcvbv˻[ f_}UtKWFs@鎄;ٱm_yܢ8S#E-p-\R@z7O.g=)Otj>eijc+h 4^t5WrZSx@]5konx.בC]2_zLuwm|.U6oA vd K.O GdG.Oq;t, thka-SFjep-R#IͬXUviۖ!9BS oD]TI?XѢ!}dzߒzZɐ3=ȵ/<7ZN +֐QgٳR $o auu0zɣs0kF嬻 g]8`e'')*siPq\j:yUO"`No J_eu˶E)&TW[o "heg޶Z&dc:TPH>$l*5LU 4\WFZ=}OvQ.׿eWEESk-5NPuk2'BD7ɞx8edCR%'1JIb9yHZQU0qc+i;J#`mܜ|є}7 :^ '_.)~*c<0Tv;i X0"^d42eaD"D%w"?vX;ߖZ^4 E\P q Ɓ|_!LG}wKyxjW5%9~_ႴV^\r(fHr-4|@AG{0zDTy09}*iP&^m^gZCH ,u.ߕ3M4IG[-#aԓG)@^F_֊ x$~&/C^?jf/ܝ]rb1~Djb$EA8RZi H>^zs&\~=ŤR~tj=_JL7?2) g^M _NO+H)dTq zpnM|ISu`~gU궯.7B,nQI& d=UĤY&E#$z.g&[bwOmL(ǻK:Gʼn"ld][.@nҊS|,#dFjK"B#T?e. Z]jSIU|6B.i>syh.`N5pcq^DvjԱת!k$ ‚($.Ք,8[ ; 'X"jFEvj} XA_ʼnpޭRcUA jq5KYp٘Yhdѹ>k !-[gq9=0I|z_^r"O؟cR4+~;Z  G[5Zo{- O5`? Ut!-^ذXDΦ@=L&gs1ٳzY騥pEY*®l۱ ..y'jDaiABCx},[<@2+S>u/&[52V3T~C4@n1_ʌB@JifKz)ڽ([l'$H3Q8c>Ud]֕4?Z&S\51a-1hP8 \AqyRkP ZHsoEL N3v %/SM]L ;#s4sca3@c>ψ:l) 1H>9ZWQNv!](>wfdRf7X3M/*,[v|'rʺvo~9Ⱓ_dm'wcMD,sWOtlKJ7,֫AGXP# <6Ig͎,X@[wX PLŁ퉭9lI<3 tT~*V? Hr 7:A{q@$Xh/Tzh=HWw (؄'ڑ)ٹopMGrqS FupUI%;ėA񘜑)٨d!q?GPKkFײQR卜H P}CuGϓlhBᐋ)2IoRwmi7COۭkI+$έ'R}O}Rz@>~9=zY:*C& (oL ĶHVK:L# ;/`de^yC?Ks A´TYN1'܅S2k?Bۓ\3DkZv||,vُk6n֣HkkN;2ڌ`s1̛l_6hyo\+w\3簓i $b/.C9C-*yׁNj5O' E;~('#?zQ%du}_J/bb3]"ֽŶя-YʿYZ_P5Y nb\*͂mOřUޕz0a]s/H&'^=D,aBƵaS{ 5FE(;FB>.IB rC]hG_i|B deB"2jd[`~G>n>Bbj8c~:Z J[]FĎ~ $#76Jlbr !oRƇyN:wF?5N ;$-?}=}4UDID99͖EPXZ-ZD?o],|gB8sGroP[*$lr*dBfk{[+-?Fl o%Z#莍igb'24¼ՐB)PWtl%p)c?Q̿n_nCc튵qgOUx]j?L*RyIכ^f2xk#W WxBj.Wܼ8Fq0)ibJBWBjw|QߩRGz|UK@S:GTcˬcsZv4W&hHJ|֓;Q?y9dZX#S)Ht5݅60e:ŸظhmLS Œ" GoG| E:;x/ )"L#"l6t곖jG"\zR>awe uRvʼ&cCh[ 2Hqmk'|u_B,57ۢ&oN dD~xNJ֍cy@ Rrmy(JݜVu0uq;6d>5B-BNшT= ~_J,ͅl(6b}wD\=jSU:,T q+q*SD͞YvBVٴ"Tw+KI1N%nj=lb Jwrdy+QElp‡$-1u}k )]1mR@A OzPdjN}="0F~*Ρ p3OnO yuhCvz ݕ.v/=ҷbvL-z+IiT3[\9JNeћ#H0z5Z3Gjuﺱ:&Ԛ+<ЀǙՄ7k'FQ\<(=d`] !:; q.lN=hΟv9r4:ħ7F.<*d%?Rsn'%ճZ0ͿxWX lGf!a e:'p1ExC͛wS %wHɤڦ֨(Bto+RNn"opZI5[<&msz\=WSQOJcϡ}%q|ď@taH UJo dSb>,d%~m=y`L%?!FEZCp-3eGOrNe xR5.3޸8׶qj=<\FlXEkL%Gc0#]vc-8$.V>4A %.9h]9T7auFTh(!ȭƮ#h]iR9X%!U#f١IQC8S$M H zdtX݌cmp3,Yџez k zދy(&OZ`Vehّ;ȵgm{r1Y$@B 1zWr >]d^ɮ)t@|>%‚I-C>ߺl% uƟ72-.>2nY4lÍKNqpTHW5n<ˎ,xYZ9x1BxɞT:Ȋ(έ6eR4\7/ W YdD^dM&eFÌ*w(hY"pWWqpwPXaZvQ[>nA _ U n*s>dpvF~ڙ2=N ѻ$ѥ-N vCkq|.Jlu*Anz-COC|xJإ69KERo#{Gq͞~è[6$`8r[af*FF v ,;%Rt@z xh7k6{CE=Ok=UL ;* YxzUmН y'3#T4(BIV^0{-HoUP4 2Yue,KZe◴ѫئ=žLR AѰVNdgpfA@B"ڃ䰅RG/QfS&t%~ӫ5?VpFecG"k8Y7(Ctk'!GVYEނ5\Hz=9 ݈.' q8E]< o:~BqRQ3n^˯}l=03)QFB]VIeɾ*աߩyl]|{!Pv9qO̕Ai=qTT7 ڑy38@)Z::bbf&RJɳ:㣽8W="xuS(sQ&þ<+\vRF {N2 ^U"'L.̈́g?!ZJuߚJ5-PydЄ<ٲ6.Vόmk5n;(ѼH$#F۹5v;{GWv>sOs7!]҆Hgg|jf2^yZ*Im' tDaF05y,Uʗ}Zan$ >b.% kBs2MlDa=`d' {XyEo"!AVK.IΏ~85e-n@\wcf:$]w8{Mߘs!q-t55u@yA]A峣ЙSЅlu!7LnY~:3]KR-?=(˕* w;7\/)P6,?qkT6T4 %hDo+;̨WϴxԑS6m6#25w428u):~~8_ȃj&n|Gэ +kwҿuI${`dl]< oa Ƥrh4ue }gh+\NRfK4'}C5r *tkbjq;YUc}K(6yۣqJ>2Ss4h:%jA.x; QԴ+j}pJN![q 1|7-gkt~5bfK{0t+.0'g-v9 IT>nW%IzMUhy6:Ֆ $ ,Mi2F]$-~W ^W3l+έaЇ%e<-o %8=М+ޟR/S᧱Z(L I>/#$YAYYIR:MN%"ے\N3?\L rk(СQ2Nm|t@}Xz@y&ꙟg}s,ѡt @%WlA& ˡ5!ٚ˛6z;s& //*jZxix׹bmh$8LASX+vipLãbA Y:S$zuTMH$0/`T2;k.AR6onDdr[K.JT{ՇG,Ĺ5k?V"1sqsT% oTS Dz4: >IE2l`%U@I,bJ?KbRfs+|)hlLujMyQ,#$<-fHZi؃W4FIgt\~ڊHDkGݞILUR1BE?Sr`h.D̃ "8#\kqT`: D˳f<Ϭ2.bݨ/ ebչ"T{je9+4SLj @+7V6כ ϫC{*Nd]HdzCeQt-CD1vw y#.QDnCDu{?eIjwOיf̬D^.:X#@(aRtQ/ݓ}hd=uC4JNX<-fhEzn<U,a}A0O}6@'iDx]ı+]Kb,plnS`’hYk*PC360GfΑŃ؏KwS ׂQro@ PVC䍉CKUs,KK:!IkG|/X<<(5Q55\I@bm@ts6rP.Vߛ,>sxP*ܥc~W#1 zw;>4Бnf}9D]ZLSL$$񜞠k|v;>d >&;5[-*^S_sj.P0\&!i7k>hql@@X&. Dc2ChT"Ԛ^tU ȵcyD(Y)]:ēA+([8<[rD a#\?`RRe'U30-MbKAJZ^щxKAl)Xah1<:١>yP]O3%~EQҨ 1νL[C}OZӷ5ZPl?:E Jz ֲ/<1)x- kwXn:(^J14v5P^@ň ˓]"mlu/}$lm|PCT`?Hgn"^ǫw>pS~~| N E}363mR,Qy#P;tEtw0i{oNW(LeubQp077=^n.d-҃/?I9ΒlIǫ=H6|0" .Ҝ0hb4-* DM-[}f[?)@cj~ 2[+v 1WtN^Tbs: ݾs69Pκ1_ -N]_2v8O~# 穆^ޔ@zƤ"i]t{s}yj{! 'vdC ֕0?ԓAB^~Xq YBRhn} wkfq`BvWq:ȹ#Ry!Q@3b\yIs|G'77K"ORg J8Z׶n$5l4УU՛mK-&a5dPČYfGs_6tWܕwǁnǛW-.B}+q f0bC2z%f{ʈ% >T'%zԯ뚃4a韨VI($NZ#nRprf;Q7 ` X ;4j'rNl<]y)07M`> %bK,V^o  Gtoش2\OvY5$.hY<-ѝh+QMO 9` FXZowBHzXSS} ^f-4{jO⽇Wq*B+O쫦;+Ǒ5di &5.qZIVX%(YEB%vW%Ķ&gan~]-Q7 k&^/!Q䘓kz-$ .N<"V@pM QXe$b`YvW^6Qb'!f(M~o۔t>M%Cm]A27ZZGPzeRj)XY-Q궞fgvt[kwodMsn7w񖀦@5B^r(%D:l af(U%.e?ièiFuN|bc>5gлӡ9Tͳ )f:Yo4{#"}xC E"q$#FMcJ @FdʫgkU֥!Vr ` 2!\?/[=1@B \H>y_.n3.BՖOx@[P8[H Ǘe}tNF.7W"Ysw>Aem$kqZR _+EA4v7Ax2.evh tWΓd4曝 P\f zgbH4Zmf$d1@e*rk9%өCl*ʕPg@[=g$n~cH:=6zƼ*jj[( RDfF߭IٚP3fć>*CROgZU/<$znN%xhB53VG2sGuDZWcʏKȌ0JC͢R_?(ϐKoyRG-[8's6 X@besAf4v_]>!tUzotcܕüsyQz_su%ҹFV|~ S%>3jblrqءzיXClD:uqODo7D?ļݖ S[PRe>c4i}0]=*H b{|/逢3f0м5/K? ^ z3mò*<ޡwǍ=E9/."n9ȂmƊIs06DapcEu5r#-3PVAȅ8 ,  J%mH0$U%f)sH>&gC[Eii6kWG)9Fv p\֕!ɬMVZsdފA I􅖕$eu>6L7Gghlny:ϯ̻);)]w$*JX\gX,yfefU"gcXY];;S'RUjֺe@']uZ^. z։ ճsA`h@p(#87axu&Xő؀+]4nEgnt9+ ;oʂ@JB1" "MpN7P5k.Rq']PD  TLF!JeAG=*FM:Kp[48K3lZЦ)1s"37yڼU^/+t_.ٜ1%lQ-Gjl8$<}EônNj-ZfQq`/$"m8q>*=!Eṅ@@QJ8=,ՀFbP,AÚRK]>%BZ`y7Pg٤8yPp!Q,쀚W;Ce.\}zʽo^oX^ڨ5}MGN4}f2"'hEtXC+ "8t@AOWvמEA0=I"`p[3=E3nJekOJ^rqt`6|[47*c 5%pצ#5wa3'='RTA SѐpzUly*|ż]u59z}d׵Z> u6l0W̷%V;fyQak vm.|r6:c#4[eV]Blِm"T>U M^^ҊD$cnݠ_Z~Bwek8$b(V3EgĴpԆt_cBXf-W*ZH?Oh2T<R|B#wMv6M7,+0-Sy`Y/6"FZE.Nہ2T# Lh1S]/EwI.!%U=!FG![o'{Py19UP]GXJa q%IJ#U5ܷuLod#8vT #{Q%(ZVt19^ռ2K>1p91]?Q]~Mo=y)y;h%`|Rvt=#g0/8~w9 SHU =s1eV n5e|rPz[%ŀ UuTjjG+EFVnM3E)` Ucm2>Ŵ*ePExLh_y]cvLQnM3'e^\ϙZTɻK м&m5v4ƅy"#)lIAq!L Liv\벽dՐ+VAH0`w TŚUk7j&ݜY$=49qwR=6 q掔JS Y_[{g3JJGu]ԩ~-V%]vW:Wc=?<j@GQ'V)rF{2ʑc}xU# iY7`Śȩ@:c {2E0p`4, wRJrwR’]Ju\<|e@^D\oxK|YFHJ7j`ңO[s|>o&IɮgwiSKS1I"tޕ}`!R fZUS) L'k5G9eј$U{e`Ob8g,任PvQޠx& yv?Jp⬜:،%`Łm&QQQ|aǒmk̍pFr3d1ײDIîB>M ]7O\}b ]Wbv7%FY D}$fjX*B*F_+ t0ۨeq4MJr,.u㼅p0!p__y4hSLƄW2k^hU{]Xdhy.B4 ܚ?] ^m ~xΩ`.eR S }c}G# K 1Rv^d `?B9mMK׭O2cvf‡N㖒kgK[Gr'ZWZKV@35R NL$D}xxdt7It*[GÚhp+WHi2.x5Jw(ltrȭ R t: !K!-P?ƤX3S7TeɌޟRAu;q=o:L!1n5athAYPL'ΑCJ ..c1rI~p$1/p(XI)XO~~{rvn q?Gȸވ\!pd־ Cg%\l)٪阯cܳ_q;Ŷ%nU4fƇ LJ+xu>K[%IpsK L-`~=G>X hha.p%Ot##*BЬX#vru}@ Z KV-#БȀ0[A$0\2 (Yc7ǀK|_ XpHԨw#mngREn</Ht[\& %YRvǧL(c e-n1QZ6bWuZGplqmه=/jeL* ]&iN&Lw2is, pm L)4Y7]z) j?w[QA{坊'0{Ȅ3]ұw,`"5}w,h-;I9ehMBہb= ~gBv1Xqcʳ:>$]vןpp}H |N?f-\  '#i+ p?d*11DBM8rN1DQ:3(I0k) NlZGǨ=v'VOhHո@>T#[ D5t!Rn3d+J@z?8o_ CCsCĎÛ1u ɇ6:D!Tn:(.;=2,M.ab5y$?)Y9( ]wmcwzQ+i(ZvJv 'lv;V=[͚I#kh[pu@pdfאzk›#X]J)km Mce[*'{)Dn/8^QBW 4 4\O wDϴjoG&F"uK֍2|:E,[^8,nQJOIviXR}̀1r{m]Yp&t$󔘪'XE{TMRZTeуbsƲ㾢otιrLE&eɫt#_ Èdl(+=5=ˢyKO\f2lV0fXLtv \=QcFKbױmZEXөJ^?jR- (ЛDs+yXsRet J[HZY^Ce?ep%su#'cygMgDK,Y  {:@2FƧŦLP'\ ڧJ8= Y %5w .0{3]h29@ct߰[PTWO6}q=CzN35oeEF"S4~"8DeTIUh1.E-ψK-rf'SiQU SY]N(8=6>.1gJ2c2_^{\`y7&ꚭL[8 !L&OD\KMQCř,4ٳl1Fku`E 1fKm*RQla #T飫C?&N!A|DzwXoqaљkZk,2[,+OX+iV>{`Z2uSUiCCxO7qlN0yr.XbB'>STfjMwȿ7F(Ŭ0q+W|s~VP[} \9|jL.&WK SZB˽U#p9 q ؇l $L`J0$۽ܡ\aZ+-9t2]VjdІ'nƹ9̀FLsdh*P;nScm1ifY30NL[:[^ى F3I^SYƥX]棿{\A\m1/Bei`/g07s&P*d7h*,@QHW,|Д .kNuq7,Bw_{F} @:7=\p+& ݏj#ef\J $ h+h`ʤZlog"h3Pk{@fwb#1Z3`+8~5(nHD#`L$TքuriR` |Mq0MeFn cOB&&~:mUf}H;JP"WMBwet1(9gwS^Rܡckswt%T MQtE6æ$]^¶eZi Yd,)) x-Y"ĻFcQb9i {[Bq 57BuwJSqw45"P]G ܩG"Gs*(Nrtt^Z"i30yf|zWԛ/OJLJ-k⬪}Ec8ȶΩzYit9hs>n+8WaTnDwg;"QqؕXCV0sǫ n P~8zn=h#3:;𸩡StABm9Gx .S%X]7w*}~6gG]ۢX7dDϦiS/6e0İxQn)T=|粘!YBJjp'`Rr0:BEqF%0xrQ4@޳r]w+r: X SVs8=)WEKयn;V0Zl@D@}:yM\pu<xApG*u'XfٵNlߛ~u흌ifTfȜ?*:ѦI9nXhr囔 ms>{l{$&F;f_585>` H%%~c2Z=x zjTT+Shaԛ%e) Pͪ gM7 o77b~D68l<#<PB+u!pwj%ҷ6c1ȜS\qC*. VF%2jrSR I@};M?_b yi@GU tx伎 .~my馊џ2v25u5Hw&B`fEy;%7J%i-xaiˊk$JZ-V@LX3&):|Re6J'̪)HYf:e 9;fq:LFq$%D^q3w>rJrTG.DhaW輷|C >m[0)Q'aB/'T_2߳]jH9NK n8V^@LPERseh?@6ї9" d?쀸 5_D}0>4s:uR.G ZB4۩6,@3r8Ss`j }OsKi\C*=Sp4,M4$fiNKf%g~Z%}]JxwK=WRteV|\ \QTNX̀a@\2MmrPɗi\7}r̃NC}pƪO-Cy3Q@`W1\>-_KA'wF5PI͟9>Ni]| Yc;XXkn>{ l 1 ߾sq›3^AUUg %Q-2߄*I79y;A%%UyV>dVQnA&_c5x9oɈ~_}N EA?`53m`Ei5#揠'){|H?Es~1*Yj%,]ySQۛujP{.M<&|M*yz{r{VMz,qQGMcիcc ε4uD@,H #NPo) izkJ7M.}7|r25z~\q1+x9h5&?c B+K(f7<PEqNh+{^IEku9(0?+x']{|'d~nvZ7%Xػ׌Vir I9?luaPV4=Q>ABu+Y C:ඣmHO}gCHcMՄaW!hds*$lD)'fR"DQNKY3j 㚴c0o0ѭ(Cɏg`z۾^L]ucGrŋ< MϢL0 @ (zܟCq\Һww ã|_'tB}N) {y2PME=u8OkN鿉y WqG!~u8qv;Bբ4k"J抱\[dT>Ju"=޻gV{^t*@[+r 2)lҚLaP#Ѕ:-K4)Ev+(1W$" $yT2"%D^q~].^ > m&4SO/FnbIpç\%N{>~LS$f; ]#R lO>K꙱ uah"w՗"̶3ǃU,]/i$7B7+_]'、`!Y2:f V<b~m !%Zv8wǪ\1BXeM?vFK b:"ݦAc@Di2W.ULN  6ra] >=9, Lf/ -V_mF{9"!sxx^ʁ1Rd'qoklS%n7 58 [n0RO75l!ge8j8Mu`X[B5R!IcNRBy@ZGJ"|Ák4Ek u.mK ɍv|w.OE||hiH#ђiwTMsi quJX2E`lK}px5|g%SLB*훝\eJnO_+5oEvG!/n of{o4t#=y5(p{w"FlLvi=nB(bBԞ`&eUrj&GQq Tc8\#NCZ-ZLKЩv20ē𛇞L |#Bw7E+p AWG>YS=zG[xOBQ#Nq}~l @^7hQ !Ӷ2. '=faL +꺜Ej$= !Fb^f#G\ފŎ xŔ/LeHRlá.iD;\6[@3SumHWaQ\:GFj`8e\vuiF/7}6d#\6SC+Q7k {A5%?$: {&QR"cײ W԰$CU:mrltCw)9ɢt,!k`&s[?GpPZ-<^CP_'+5QNzΌxZg  ~)vsj-xyͶm'6AP~'4}RfRC26oYA)8ɚQYޥpT񄭾+MM6穊ݫjg_$iiEkӯϖ+B3 Rdu|JPHEj P@TЛƄ%t[g|F|]AqH]*xo RkWSZ-A80M.p(UrO퍴1/˚)+mӅ9k]6 /SOLaYH:1YF nd$K38-1Ch+cU//IzwUbxXg, E1kb[FrH2oQ᳾ғIn "jsxC=X}6a53 ˎr7g)F5tyg܊03̭zK_A,YWK͘dzʮy9\Ӫ"da4!sbEh3̫r=,#)!P=oe˫u e)+c;6ќ81BOjTp{dPzP%~}og]*) b iӟt/>H cTHX!^m]@ ~Ê^Gz=ZhOR\xCRU$"]d{ #ҍȌXh3@''+3Oh}ȢFy#$c 4f'Zh*0qyq{zf`~ |۫c]-2g_w\TI %e% Ⴛ~7'I~F,T-IzwMdVXb'M* *B Eō?˒]*-"s7TȺ&^6F4pm{"^)pQk<.qe%[c,!A|0:xZvyxOBiAq!u6ռy?q $a߉7uv853J%PWѮMe{ nxW(Rpig ?R (m*Ml[^mbor +nZ4m,lQi=u9& su+8NR FA/YHQ:2iՍH֦a@MJ= QTf`ma#z~0 <{`@@_Pic F7BX2kGB.ьDe [嵵NU PYPH?):m_!%0\mld|-$# '7t+Q+ГևΚ@Q"kU xX3qò?HoO=ӛ4 I?֣8x*I15K]e5|l!pk^W ɻ's*Bg~>,4.EII ]["F0toݣ #:Nfze/io"U\7N}^X Xη?wb?G <%Emǯq^~DE9MRkNx(Gj-7 s_Sq<P^GP3paw+[0^.]<|"g=-_;[W-<{haUh<;7qiQ{g?|m߭R!:VϏ`K: 5h\dAi7 xc*sHީ;ܨCbab"j1Vm[Rjh7/lR9@OR o=tTE!!Ž!7H}SQGO"+f͒!P~bl_R@_7Тm򪪄S+&F,mLp׮AI^Rm3;c# "y/| M%cJ7X#PM.VNqlrݳ}yح>xV1"hl/AڝNvL\a+Gx\`SnR=״hI[w/,"y?AH]q $"ձ1tPc,@ K@\#8I(^#*;X sj|!끌Ij(BkkqpGtiy6a#0MixwG_p-șy#`} #"!憕s>`d伮ql2]G%HA wB*u77r#5$ZE)鄡zrfDќF<`:DOdO_YAL#杧2=b@*} lY}tM~.ݞAFmЏ(D T~HO)(ɖbB^?~$+p!M䓋 ⊽Fn]V<Ȕ:Ul؈D3y;AK4D\$jTmNעE ~o4,YA8o"{AW-!*tCǚo$%.;;=Sh"-.'BtN͈#ѩ2ρm?%fntEr)!'4(+&_/[52yD*. [/wUI>pj#Puhγ9̭&B h]{je1ڬ1,"PW$F0 {׳CMs0L{$ԶowΡ.m|=ERR(| h=o؁Qbz緞 ;1iyb;T3g,ܲ&k7i}PTN_WȒUϵ⳺)Oa{2_em,]wVw9g~ˮ+>}b"eGn @ګo'e`F-Z$}]uW9s~.x8[Qe?A+vB` 5{Q9Q s@Jf>l -YD]Xzjdmw{MzS9̋׻e݇Ä ^m ޳#$h "GS~Ȧ5!ҤwFwh{#Z K7Nh-Sst+'KtƀF`U2yCšjY-G1\l8q+g=QT:ޮpBə, N0`r,sL|j7\8$MZ"~2ӛ)^i@-+{+46t@ e? Pv|݌,%N(씖V4:^zq|ʇߡvGd#[y)^Hl'.$spvٹ.~3mBe@.Rc+q& a.]rSkݺTv ;8m[;&gU+N7wJRF 0@[sB]nqΩщ ^aN!\$ }7ljK.Ղa K4Vˋ!C:*7-煉4huNe|'AX E~z2N.1DmŽ`]vJ^;;mk')Ws)9dXN3gZپs[PQ7{ڀLC%?9fvfC 5nCp HceNSkdb!*祧Pqx&@eك_u|ȳYBP1f:k.TO7]Pn+['|Mb.( Kl{bhZ`J@wYN&M'OZ3t"R*ʳBsVc(;6zQSkHqN-YF:NE9B1iaVwš抁6CvCZjj"`)HPXSn?#knD8 vIlXMI|3f.9O7bluqťkhY Tˢt% c5G.$:1V@.K4iyIv.xU' ^!cd*>AeJU:D> p|yVJM|>Wm{7~A%:\*=ꢡpkZij.vgǣ]GOwȀ|}Yv8]6ZRINظ9V p\WV2@59jpHZ(u"б S"ڽGzQ-"2wn`둜<@ }|(*\Swd{@ۤa]da:në; (wYn#T(B& qXq[ }Ʒ::#ՅKu~I>1v.H|8k=y0c[^@weq[=E/a+APPa4~%1+@k|XU5e0$?vo0lCֹC۵&><">HIGeECIc9]4cbtkGifnB"bx UX5I3UC3Q\ߨ~7c,nzWN(g]O85)h!2&a`, `_(4W#ѾYZ`GϜx&$j?z22u̒s%^4LKnYVQ47vob$vbGJ)gn[0+΁5낯-CpĹU}dπT'X=9hwq$1gylpϮG}jN"R~50n(~9g$Bs1f!"MCJ`VwDQSt^7m4iL"]"wf,~檹plf+<ѧT>jQpHf,1ع7]@#̚x?_HD*3 $4r-,5=`1P~#ߕu@3KikA-S[*NT6 ǙN3MLCwV3OahNBlUO0\JaU,f؂57gnag]^&*rl`LZ}w(E$Y/l% k1HmfqA6:=U?Fr"~oPB|hz4^l"sۘ햖p/%'S1ۆj)oiuQ31\"Kk.095KyBb!=N~ n٦tz躸ޟ _46Xnh L {%GziSdZ29gy PM@,%!aRBOa|(֙,X~S^ΜޚhQjE 7\̽2LQ? V͎&.LgR\)MX"!eʣ=`x7R*3]5Šc2u ټi'Fؙ`dVgZY 0bѺx%#Њh0.c6LՔ\@13TY]^if)- hg+ʯ5OAn9_8JJEWt8XLA?m*O+= _·r"&vBi(Ga:ȃ4 KA"Ytd"Re0 aN7#㇜b+ 6~/l2pa x,O6Xḅ5}ȺT *&Ʊ3!y<;*]bX m-K䟍/@ؖb]sܯwK s7cyqw:Fo1\0с^ˆPFܕ JWəujqiT^y&'4/~^rܱhvXV̰ȁ0U>ǵi=t _)B빔[s-E]v\m ܓe!-Yld++Idus )o={sCpAbLd3V> F$|I DIbcO5^k'EqbtiAʄUHT}"aRDO}k8Ѓ"*lK?@ۨA< 4cp뙝垳s m bp&ZSB'w3VCqUP |9y Gn&SΧrGHS/JG$sh@,ggeߪG;~8JxX ޢq0T7/p^*7MsoŽqZ.ns?L`nQSُ:;r=f$6=ڌ,?PmDz.Q%++~LB/#QٿV+-iBٴDcC9&(bjgu#W6 "BO7&8]Nk3r/nK ?~B;ט<8*T5W_qa;ԅK@WCpXc.ٸbנo+j?ĆmJT7V@v cH3M&G:_j+bXPt[t/ Wa?FmJ`VU'|? !T J=stW||0ZS1vmQ|;#;oGQF(c9-qu(621ՠ|ل)1<׆ejP 54γou95j/ %WehG?#Lv؏-IF e*)Vs?jm$r0DdLL"XwzI7>L"sw;;U4-dHToHWZߖʣ=OO>w6ޔH]9![_O8)y~] EZ]1Ra35wG+82U7uC\[0Bo"y})oK`*-9|z4gᎄfհlEyedgĥ /M O!Gy41d0H߯=n+ll/0 ~yDS˶M@Y6(;70'z3s" x^o?@AJSZu)m* Dǜ+-,mGdaQKҭ|sS3FtrI^d<D s0}UF;mk}Z}`f:5"zKH*eNIj+#=_2-.%E\ϟ ޔji}G?NҎõ?Uȿ 1rوmdx5s;[hMF\(.@jDȥ +ߘrm@XpjuRHP3]_P<Ķ~B[|5**;دc!h]TܨcqNIa~V;3bPj%6oR ʅ(ZNkh IS θ+{(S_XZّP:׊9%!ܶUCk^r(\Z}`P 2uT$~n]aQ͡ ~^iVkѴQvs"zZ_)!{Bkbew(ݮv>a#LV W?B WQla3hRdүT95x6|;;Cܢx@[`:(he unc~K&@60M0w}08SqMЛf5~86]-F/Yb|cBo7#@k톲]׈4bb>jZ&%_FyB zƺCx=. K84U,m>(?G\Z{D{>pX[jnߙ\clz#L .xH!6:{JUYJ~}rTe!wɞfgASм2^ ȄeOwj3BGW-D E"tWX)dΈ3ס5ldk ԃW*Bo7؀d߻[Zh+1-R9|2K0?vB@RA>MpJkJq`bx4 If| "VKyn шm6Pby 5D}b G2ֈR_^駃U 3VnG5´Dt$V7",vy"U)TфvWYZoi6E6q7l㉬wu!o ¨M-Yۄ05bz?Gr?{|}#v~·>0X4E:D >E5&A+${(`O^zRKK54\gRn{ĩQ ]?."wlg"N7R! "#4XVtST,T;lgY΋un $^@^Ow/zY\5ޖ>__ʼn<GIEsR.&Elt9K>W@#'=7 B9r#Tͤ~(mpF1fSwC<̅tQ糟uwdezϸ"Ma鱝  &z枮,9 AJ E1 |BVO:֚ 29Q:tn8dXXVõHvFPػfoR:vx1N.Ū?!LN㯾-752UZg}4LH:ԻH)NL=ȱ10w>`6? Ox4,ebBFXRJd4-G^^xIF;  |ng(&kQ,9ԏzNDqp@^E1e֒gfpEbe : A T|cJF]nCƵb{n::TUU%R}~،onzG=d3 @s\Z|Z>7 Fg!rB1)9[?0/$}g.ezNjH{nIVpཟŭ=i+ju:p964[Gɧq4x*b2ZUr~" Vq˽9RZW2a< yY[Q&5q;a]"u8@PyONg-B7q : р'J~ ȀJNdV}ơ,Y 1,5xLrKxZZq*MjRap~ZFlNΠ`;PBw[ MOz6ZŗCx*#.FA52 ~4oGBV@f뜔@IpX㪴]5 OO=ôiیK8 t2s{W~~jڒ 6 qjcFlfqNzj> LxG+12xzA[g\"~UtVV}jcp3~S!t1PnFLg?#Be{b[ 2_x'٧]ػ's=gH:3N|[t釞,Ŋa}|č?; < lw@0S[~b!kԏ[ {gǰRً-+:NA&z |fB^< XQw _8FbZ|*8MO:s^cD@Ag\>MeKtU*#[LX9~]8d8-wa> %M _|5YhnWY@*\r]1e% CbWJ.Y"wx?j=86h#x79Ӯyw}/q̠MP dm `ߘ[ȸǘ{P^HUKrG ^MJZPɪZ#8#oq2V$Z+J^W7EW@ׅ΄xpzd|(b HFu3v^\8(,< '5]Cs7ݽER.R)G9j=k]H/U:2t'KB k.{-}.۩fHfK';4/1̧sSD`G&\=i -JIpy6ط.&TLHO9{B +ϑNZBYZPk?dK\IiIȗSp%\P0ZD|LH:43e,-E&9u˞hF< )d^rZe:dD?>1uĜ.@&GvSYC1a n12@/E;%Q.evs2&-Q?Sutǖ3ccK!j}͑` gcF.. .ƹrw^:EtulqOX"D'4|wƍܢ bV7w4A1Kd}n:TAȬݎwgc"B~ $5d'/Az_o޷0G4d3l~ 5%򯭇?d2p.6;m.4ܲ…NGmčLuK@%L):YK2 }noΉŒb+;M*Bbިfl? ~K{=Y*I/rN j1wTEP! e `B !AҔ"Sw6vlPP#7hu"a'D ʯyv}#˚Jl򞝉ŸvoA<iX9AVB=f͛J\ۑk 6P:gVcjv[rNeѤ+F HwCʉ 4aP z.A> KQ3mWڠNRlhSO?>n%`g )Ϲ{W`Gl֮:=5XIJ$4w_IDg̒!Մ#} ui|SWGcC$/k ɟ!F(j>k*wV :-K CkEW@da a:{#BbXP#fJǺqu2__[!DOp?C(:AKL7*u8D3 k==Q1ɦi6R1#+WTP{@a[oMV;llW7فMĞR$}n-zpZL8P-7mHeU)rUIv|'*}T7ñ"tnפؾ+ŭ$8q8 ) >A~<"3Ӿ0.d7Ovت;)rT} fd̰D۠]ޫ̚4*mzF'E]hMk&n2zؘO g z׼j(EG Nc;Y: ZT=V jv{kJ g;ڕO3"l`Xf)0$C}^nj_Ioؒ \}8Y 'R䠤Zjv$=eг_J!RN&eJHB_yk'½H9N@ίxfjέ 7kGq.h{,gR wz LgBkKKtʲbA 9'Zvp侍uI#]. _ bh(%OL2~Y],x@ U 1k7\BfkՕKz]ӓk_YU6|H4[ԴD4B<s*t Ͳ=/۳Ol;|"Lo;dig ,΍b6,+cXnn0*/v+Sl:$ |']]=%MVN_aaQ%i&~6>z塑S4RLeP&<˙TGx2,}<|8ۉ1}v@fKB?F4QHÅj.W< D`EV·,2]CrC;xX~`eM:>̽qOֿG60! DPeBgQ'$ "{AféOL@.LҏkcCbR֢Y?P)܄Qsm$ x`8ɶ2jyA.<}խ<6l;7I&wKRJH#CkY>UAFa0$ VxPV jXQLϪ=0Ka9 DbUfg&2_Nt]VXTw:!)_c0Z3$4wh_:11q ;=o%rno;F("b];4m /)ju>:`MI@&'A̸>Wы(o@WhT|dC^og;E5Y`_LqŠr{ V~ܹ 7p8 xu2QB"lr^C頓aPUZ fĘ)ɚ'«X ֞흏괇/F߀!jGe7I`zESҘ(|ܧyT^a~Vgl4I bb$fR4t =TG8J \$j=u0$ȁi#q:Qod64Fz"ӹҙM>x|#,CQ"v(.Ӭn !5ͣ_<D3Gc; M9+N.zmb:Pn\ I4s^#'zO0 +&4Iw[o^Wͷk'uD&oI/6a(W w!L U+BLYX=eTO_BqJp8GBv\\ix$WS`!>V}Y&T='w|2w6ry{+;m` eюݻE)7(ۮRlj~izC]K(DK+FXRfC瀽[ 7LX3HqfWlhIdjk tH\Y׾"-nm+nko_@4L51;) ǟdQT mts2~CNX!3ܦgZAQመ #K͉B0GJJW*(Iu?+诰%#E0uog[n5W{}75ph*>w{Qwu[S;SP[g1l~.Tm (bp|dC[iOqvTxgBeyjkF\x7&xwNRż>1^+x(?WpVW!YI +[41 v @3gGMWZZA}[塪Z7_xe[^$zߞIMF BeE ;0N=Gv97LυT|BP(y*WE9"q;]UoTa/Y'Dˌ\6 7V!]"Y|gE O4 NEbi|CGlZc2LOS{&bo ^بۨy<+IJL 浨OYŇ] I $8%r0' 2Hv6mr|,_q.хJ00:W=7,9~-JIc /DcʂÖP4\_9FT6Æɛ0 *ݽ }RbF;ZL q67SySη=^˞/Z՞RlhԚ}qSKcorZ~-i9k g @Ãm0)5^_\gac6ܙsP7f͏VibתehIG?z_蹟ZJ: _\ tHaz葖/_6;(Dy4V5~Z!<=[RiD#A*Rq ^4Qg :7S_ ń) 7+cAIrO Ĩ?MWT5|'KtR05@}H.)0HA@&U604dTGxf^˯O$3Q>'tN$%g=%Cɇ̭`iKVzY'N?BُӚdQ&>ɥ*bh.x2e)@ZI/JO‹!Al#/ާ X(i:*ˎlV+:ϗQ؟c:#Q*9 $[ʵF+V#}$UF,c{$ c @B;9kVDSZ-ܯQDx++(_t0n?! @5kVefY]Gk AF:`̣}oqR㡞ܨX*>_RxFx&G\HB5{K8:ex=++w PZi'no2<41Xc-SeLG1UV a(`AO"Qzɚix[HM穩Q \yLU ; @rl#"1K a?>5mtjS\WCJ&x>N8I\Yn;6['`PiXQ=90\-wE*,zԩ՘BJC@R.HWC~4><w!{ǕкٵLF3WjzP/)V'%3ȶJ G9 j:ؒ;bn?(LRu(agsPR9%d:C_~Fa7q\pE, 5!;(~ɸWG+,Kh T/y_ :: h-"s36!ݜ5Y72L6\j3N?^HY}v%0gYY%4M@ӪDu@(Al_Y7K8m L>Pݻ.rͥvA"DErVHf}DqA I7G I{bV>*9Svhk]N5%RHÏt~Ꮷ_J-ZK <{B\i3-Wҗ/GZw "H3gRe.z"%^02lK lDd%`E Z~3=Veޕ/rLd}|`]{<ۃ߷r`! /z  R P&~ֲd@R'zEXQ0_i5I4̡1e \aKʮ RY5[1Y0FSY8Y(U{-V웉{G|${/sitυ:^?`FN+o.۵ĝzS}µ J.ɠ[hX^eyY;X.׀&a|9( o4zU3"g`dxݘ?<w=Fk:>pYlp:w7.RH|̮a~>k5]B3 htz>R3:Qr.L@< C P|WhnxV}>rH@ET⚝5*&[_s;%^\;`D}f!B ۤ>(IKZhHfPH㸯=~L<8c{%mnzam&=gZԾ6]=1AhmH=TAhVD=`(._8o3B=A)Z 9J@8)M;f $#0 mE415zWZ 5kNN,,03Y?,WdrB".?z;11C$1)p{ n@Edo O5E#"*&s*^V %^oѤ%G`˜y}cU.A0*V.S%u4ӜteAUKK#-#ָ`E<dbaiT^_3DñHu3~o9J GXZT5InMY5 Rs+:&Z8=vƱ0TeA/8WPc㚦=R"_3~&/x?4oBT,ޔX"QZ l<9!'>u!& hs]^"_^x09Ψɮ_G[5#B":!}Fc, 3z} ]i\Qs:,Ƈ+umGgMT&A'Mr KdlTΑQmNTԁ'R qECWYDWЦGx#O"BsUGlvR@AQP_HU7`}7z0kux_[8ƄAamNST%hZ2Ah&2#FWJd^-t:ul\^jk^PǟJA;pgtUF+dvm3%i2طhDZ#z$:ބlR45Q{ xZC[ݛҩ(^A%>X!]ʒ@|((@! ]'}4ӟWٖT6x*oRf%ޞ9ÖD4g[PR#LqNvd+*DHJUN֖7f7cD#%< ވW:ūX+Ӧ@t"@ٿjgtPx껖^yi]ᗰ|B mXQ>Z=t`,Ez_hxHՉSAqӣ: ΩYn6n${7(g/(8\}@ǿ#yHaHZ7?eྺ}y~?訦%ٲ L?<> zRroiwJ8 ;69ᦦkFl!Q%,  dT\ht)ZoѪ:ѣOm咊NkFڕ yFQl#T뚚K8]7W ,\Kp-4uC6D~6T@MH˨AKuՂ' ɦ?*M/f1PaG.so{W=p:0RRN=1S8bN]wr"2ZI.UJK*TXzb?L<|E:'N[+aXzOK|@ɋ*̳P\a%87ojXNgxUE?8U[]:oCvC;c*Y mW$р+^/7C $=̃j> ۨjGo \[Et J񬁐\wʍP['SƒtRK_4݌kG#:_4앾 [xcbR#)4 aޜw8%bB^25n2Lx5sR 5#,%"x W:nC.3ųJz'-Cw,$ٸ`:CLJil؆+h W#~T_l5.79[.S7[ ).m<1 &Ltu- Lx]j2;!(DoKޣ=cVu2NvvYlq)inFD+B,SXZvn9ws@C+ =lKTvunu HtP(fld ?#[Xv 1Gaߠ:.(MO>nD9adqrBPSDz{4;Y/?@}u̽dR$@06`TbFRozmʽ[hdok(1YRtR31EA|7=rN@߰Ws7#9.2p*062&c~'}c )zf` q㧵Yc.=;􉞓w㘾:M8"b|pJhGjRZWG~lNDW'K/ƃlSSܰklk I^'^j2o霹?I bbWvXcB;=z !Jtj<7|8XKntKX*-yi=OU]yWXIъҡdp7TکH ڈ=V~#lςxӫka ;wvYy,*Rqyg&&5#K\^p#%$nj 0U04-pg[>8,Vψ8y\Ȫ}N|n;u[U:@Y?1醼T?N?ct,k9j br8?tVjSn;%]eN{MOGCŪc9}! z/!d]q7ؼ{Hdг8&WBk"bh$0t|`S <+?́+Bp#§K^PN DqGt".w.ZladUL? }g.r{Tqm,$F1MҒ:>[BrOt a6f9]hGS!яYL P:(O?vkрiH^h|crp+ `Yʼô>lCjX(h5 iIIPk+}0KB2dZ~znJ?iI~x- :RJ /{~`?/0J?/֗=؝ߟa?jl:ЧaXOnAv *s0Ht E1PO4K߽2f+P) -JHޡERt^c-z9dq<q=mch<-JP Ie硅 2LXPͨ\tcju NAL1مS' KH+T[: z'j${ ߬'!>ew{Gy!E)J6I~+ⴑթxJ/2&'dBzXWY]Nj+p^$|/k6N/qn5^xgĘCxD RJV {51صf5 PP\=sInxѰ'q߾`43X~Z .%HT#-!R fX:#5賍FKnP OMۊ ׼fv MF!gmc<=# FFBjaSy'Y +?MTJ1۲Q!C9?!4ow ND-WL57t_v_' pjV`(h>uѢ1j~Zεb9@ژ=VZpt"@ҕž6q3[͂tL\yR΋GW-5Bꊶ=oێ;sSFl$h@eδⱉQ^,=2ߊaD+Vmv̫ gB_WO, ?";S ZΦ+)5pM,R-jA pfOܟu!]4eҧQ8$A Zje=zb*:,^,o,7` PADW{}KJywNW=5Mi4OdxPw)BY|Ʊ: tx6$X.^ړT65or}^$^wQ:9yisŴ2Q4x^`X'9bA|˜\qmUII1qP0"cy(zy ffLVn3:g QZ26mοz* ZCI'5!?Át H?:tln>mк&3 zC.ȾWѲ|4/V܈ ^68nf(N8%YbS/^u7@K-bƝڹ!=* WԥcV|'ϒՔW.))ư.`4(VW/#B0^$rJr>-j{x˗Q93)0 aT w}+YVWWux(O^Ͱ@ L:yQ6LSjG; ,;2xoѓLc/>fʸ+zCфh+x )@>gCP.9[#AK<}G8E7=DI Ř% ?.Nzsvo^Y G7Ny?␟] ;'Xtg ^fdRVЦ<ƆT3rdb Rh`Ч;Qvx/z&Ml$t#=iVGEcrԀp^h?Y/U^ϗGteX_xҭ0' EEo^d"$PV]حZᕢ@Isr R3IpQ69vqYH!˵JٷIX,?ZVX#9"i eOOƉ{e'bT'"׾!`KD#h*NE9r`bnc&فvMސOR2[ۚ^a%Fu8*tLY~`&ْz%8i=|jgW^y[7*. ⫍(@IEw] 8 sCXI@:XtT[Br49CO<jšTH9n a/ۺ~lN`:X>0Lo,4~|?aJ %sɑlX2;r/P 3ai#NFjj+ƜdDIjauPPdןW¶D N!48vEܑ@ZaH=2V`MP41m7g+m,%ԇϐqZ洒qewi9x2k2siKfXL>A?}o_oƞ Tu{@zћZ!"Gp>)82Ņ.ekAN{:+^(e4MfLQ~X8 ^B=F.F>PS$FC( գ'0:ssksUz6eKumuE;yQz{Ra]ڗQ\c f)AțxT۷jlfRMb&pCх]u$2N_uM* eѠ>KqJfy'qr c./+QsoB@&H G2 _b[d[7z<˜YHAĿ#Sϝ _Fqm.t =-3o ;+YnJpr [@H.-`Cw2d?Vָ@A?f8na#KYkQcvRȺ?GXI㉱aU^[+qّRM&l*R-8F^#i~4;[r *gb> (d!{qZ#˾pb{TIRV/2֜"#zW#~#ݮ(C=WC?BT-\Ɣ/#k+n=$Ʃ r|/x.Cxvd)[71 &lV#]=9PFRm~?,9+Do!vkLmW;MO,Ez:,hASkߕԞbKzObòB- !M2)!I%!9}шMH|q! ƫOPМ2諶\Y M3oϰ`kSS/o3Lr{$Wsc6GACVB5pNX1Z\oWe6wpCR~Ŧ>9b'~^v;l¬،Qɡ)Ay+,A^{&!6*bC"[m:;?8z2%_b_^ ;ef藲O+*jEV Ҁ+MBA̭/N MɼF18]I=Y2@5ʏWfZRM@Kl.3RZ/Gfx8M=ISۨ/Ї:SR41Cs= q"D t>8 -4};8FFb8YNgɕ?pPfWCi̾^#$O+C3SiaLz\r+'bٌY*q@c:inbޅ/jͫ]jCJK$6zEnL@a 6=*f@"g4C c Ƨ {Ӣ_s;uk#4,Y(7BTw)^H6կ8Cb@VxVqN9eN#[+Fz8q,t RDlZfnc8͙MHqJW dA:7nJvtc+dZK+d xw` mijkM\"xDh 5I9'o_KﯭZ5}co/4WHvX.D.> Kp:5 KH\|s.В?PV2К+&[`wU;`JR>}ys P^bM̫fARmc°WnY';{AZo]92嚴Ȉ*k(ݢUCի^rY!IZKWG-Y[jf;FaA\e6C(ߖUBCX9E=af&Y=T|#o+ pLK"-Mgn_wa{EG_fp!HBD6ea% 061&n3Ƈ!`ѾI!sfBރΛkDcgɊ}.wol3͸JQVV&KxY.3ՒhxdJ!i}${Xܿ.~*+ж>^d=%H$+f-/+S4gaI?#Aa~Ro\MZߌ'R0)3=oT0%%ӿgma}[R։TdmE"p'Ćx9xW֠${/HA'V UŽmEL&C x%4n7E j?3 :e*r-3 |!Ċ ?1@~ov&"# JmMuDv? _d&.8GQ&Rа[ADe~ h!%tI./qRm0-b4]gl4|IVr^}>2-f?NaCS">e? U=ق2Zـ -p8w| 2cDIe% 8o2!J[2w m'qPǻ9*_|3UxE (7Ol",(7/KIzϩ4P[D[-~==T + hodiVjp g"')w|f'R·:iA3liQ1+K%qv̻^K@D}f (oU'g[ڇ,g$m"͘`P/Z#<Zu - U,QuE/  %ԙzbDR_C(-a* z Dš.VA ^(<Pw݅ )[}U u.V߇bh=ݠTzhFڣ*Y;$-vmAn>=g\~S[g ySx[:ݡOqѦF9W!w'% _WvS7fҪsizd/׼ʵ9-Z5F*EY|FxϘT% E{*=E?ڹPǮHH9f` YQ1?ݦ?s:lm2B彤10Wt۫/5DԺo+ի:i[svv:djFi>%%3xC]X:ರiN. L"_ >\zK$$)_j¢AF 9P(&=F@wG-]1e6x&GkAHF4(?)\v!8*<_ Q  "S=_H$K6n3![as>ذ[t)[qI^N/;)P;0^=QQF$xhkNZ!差[K0ϭ%^p|QjHx0Zlpm} W19+]yy NtʍTn[݄7z-˯[9Տ֫53zgbQuC0 ;_7sN&^[UC?S>XUSfo500>>{9U #뭈l^Q 1 >t >bg "fX\A{Q ۍۙ5*y Md n̥5W]V5gaJnP)D ,Fqf!.)2Ձsk5}l`"ر)5YPo.gWkg̫pM&s1|mFvZX.biCGrN{z*tAǯA'خ3|/u:cЉ夛',b2V?4gQ՟%*ɒe| G(vqfAnGy_nc=9σՔdRQXxq[]l~ڏy Xy7>~&'* RCM,f1jt6b2|s5-&חeg#R3\Ia_SWH-E$eK۫Xު%-'Z f{TYymq;&>ڼY4M"DJUT)=T *߇}Pm;ed +k}/JEmlI|4`L|Gp,5#]t^t&R1*'l%mg] &1 Vޯm S,I-{A?a-P'.p%_)k#aIT(pX}߇4#q)fS0pNv-{x'fYu` Xֿt>T]@TFW?X]JyNsꑫPǿwJkyv> p 93!IV= !kK[6FW%ilcȮgs2,~ol%]rq~x% Qe2Mm&Ϧn6Ye?ϏXvnm}LW"_QA1٘Q:x"^}=!DKX' !EkJ ˴awaAYi)}K2Ni=ةݲ0eDU5&n?!V8-^Px0 ;A$&/NtYe )4?| TeI+.IL3gpH* P P)A(;tlkX\Ǥc5lq&ɝo ?Zg՞ ~#IY{BfK󇼞qWUY7UY4%0I^h}ILߺ捄{SJUG;l;-tc ] uɺvHUtnm 3.Qc ʒwD:/iZ*,7A04`=cզu~%k{gH0 c2?( N2e76$Hދǯ=ҿ;nq2lWN\QB mtYEτ[$Ju5RT Iͦk0ߞ ;SVJiZ&q@f/rPTQ/p)W ]&C7]SR͹ſ( Tʴ;75( b1X]V1xgu%[X{ 0H@X!<{?W!ŦeA]qSTc |*̮/wXݩ|^3K;NNΟ%\Eޜ4ysL=DgNHAƫbURL6i Lfp0^Yp` 8 DS!0`WVB{;_FM) =fgۥɣ,K!|FBUǸL$uU%e4fp& 7;< A3Cҽy Q!G^my#$-F=S!Ii/{9q^ Q%8Ȉrp {5u8AX]1$M7 6JM!Oa7רF 4hY=EVSODtH5ȤڏB՞?.At&1kg!$OYYyV`>kg'S99ӌ<ygaj]Fo|~E$ WrⳍrVVK9 `c%@`樵;POj<;jwc S욓Qh#1U=i-wEgVg_#-#G-ͩ NRMBYBq䁿jw&<;}zf]o$m 5j4n]j7v]IdxQd;?"Pu7)k(O9X̣.b9N>g+gL+Biߑ߄bf6cæIgLZ6+9 Р"ȧ| [\J3>lw]ۢ6'o Bd&[U;g0r9͢Z;i >cI>v7|FM. u>;? ⵃ-*,5$^ynWFWVdW2:-(kmmO -jac7?:|d#Jճ d0f2̖t ~NXd$N :+-!t{;=:e}|"iT?ۃo-A{1v̎V2r;^PscݬXax iB;.K*]&|T+͙='ă 'լrC|Z~p~#iJ9D$S ^9gSg2]Wqq6pĠEH0__>9\TD61W z^L%]“4 &)ڴۚS"ncǐ%qH ĻCii&&,kI+$1Tܾ~N. (%gl݅;)Q{uy=2c[>1ܰw{8 mޘ:t![]JmLH=?g1)gLBj;M܆ p&6Ēa8%ى4}޿pQy DC vRRƆ wnfM"T.)%-_~gJҷ8ISTɢR 6&[(JX+JB E2w_ћ,;:uQG+ahqo~}w|%ޖT!:x z#g9"{L+,?3Zx$ 9~IeG#u[w%UBy]:쨖N{'*BB3 <枥nX5n'("V<^O؎)}:~XXj:=KQXᗥUOS}ΒpE2 9PSU X=%R:;P'Q,6r͔D@ʼn/ T>,mf6OWF܈QOjʶBa%Yfu_'uNka*[&D`~ ?U6=+G1[cTgRsOy%y),vq}+W!VwG)rv7꽉zmb) ]*3Df= j󤴲nJS];AYg=OjcFo{Q; 1ePKeU` H;:b$s~@_S-H#Mr3,6k\QQdO'Lثe0?NJ123 զ&Wwy_r-@P _rObd9hdaPCoQ\XΞRlW&L]=| z)"pY?gM/!4Z4Z"eF)]8ay>;GyR*$ëXD|7|v#) f+TI9Z_9gF} `{(J߳pƀ/>qۀ,~C`* iLe o Tٖ04|` C529!VPW8歮&"ydžp/nm]$DQފc%TC$T#eҝpRxB }uuehyw[ f{L>!3 Ob<Ʊ Y.Нk$rV/o9/CgVdgY q; uS:~_2Ƈݯ]Bqjq1?W;BFB} Fj+ _j4m!zٵpz}l3'lZ|ƢyLo&m"Ԋh }R4S`Wh&o&188`PpEF۱pbi0%|hT>bS,Exuv 4&l- ĺ<8rт5rvRM `|LxT=O>#pzfl@QYk ?A$z$ن0?Favn$7eWOfpl`rv3wsʓP+M/&&; znM6|nҐdR3]"ؾM0mg\'R,֭1dlbYY:6T0pn}w \1+}Z3OA`qcߩYr^ %B5FG68j"fJe~o).J!ЇݸRQ"{ {U;'; 5>6hf́bC-;;Зf͍>!EkL{֔ :6q/jHi~vzW^:s<AڝCfTh/G)mo<>f^c&gx'cfZeR-LBg 3cM!eR񿀱486jT)͝|J_:4I#֥_p= 9,ޱٜԑ*.kmb2WA[j*E,̝ࣴ^q*;"]Pk S2+?r,|+r!D.&G&ŖP+Z nYKtby ̷5!R0q7;R`ȿ4MDnQCm ?C dISCԟ$UDk 1S+ZJ3զ؀\n#?Z8j8|!rLȤwe[T=`.y:7T 53AXc"̓ ,죏@ tC[ |yD%M-tR7S6N0Jz;$%o~=' [_ZOؕpy0V }k0f~Ɛ`SN%|kى ؒ 4?C:GLo gd&- 8I icpaJ:3,ؿlPF]-X9c#-Ⱦb\W#-eT gL :s3~`5 u_ĺC--n^hw2^kѿV$Qk @g -̉7VE)s~~v-gX) ڻdnIxk  skS%osLmâwTr^c #E!B`ǾǸۏs:$Y}9̛^qB>︄9d‡ #IgUIW&Isi.Tad /kϙڢ 9,[P8e&<";C:{}n<ҐW|z "!B[u:f?Ӫbq4J-jZWC2*LC켹O~dFa{έP <ˣ?2g蔖S{lwy&P gՅ7`1kFPB$ G==[sBk[N;9l %M5U9G=.4@=JDt:*瑱չfֹAe)׽´ڴ: dd+as H*O_o@PnZ"}֗Zݿq'weʒTC$%B48]b=UNE'G0kX})ܤJ,Qr_lXI(x0t4=\+om3# s5dtXkX>+C۾29DˮCOpY9 k˺%]cJ)wBVѴv%J2ImK;ƏN=ZbcӚZg$ܐAv,G찮o-on$zrDV%1*mw *uF]iˇxOWEgi/X ihvN)"%6Ӟ @_dM}}eaJZSEηB]Lr#۔UlC91jT'Eeq2("hel{ I%-=_nfy4&Q[;Yru=N9)Ҭڱc[q"2ʉ-DENBVOoqb8W6Eo^@%&[uGvxIϒyQ9O {8 Q\w Xwh{jط`1oA  yag8 m5l;@B`aㅍ lwt8&r d+yl+=OJywnrԓGĒm]^3pFDB]|<+֢Gư?1rb{C(ZCG8P '=(5 J0x+v5+<KLZd+ܨL5T{3*F+6^,ܥ(OlVdXmFg/p\(C{n9kC!:ADQ6/0Xvq56i0:shzg7վD `J/ôwU~=q%ZN.'05% Ѓtf2SHSxG#gs]*jv:iev*g VKjًNd {0crVo"N"`D=v? տ悡jbY,5ekoAO#TaN@b??@k0GsNoig 312vuדęSy 4E֬'X!7g{gCpK4j4jT]yRz)E*6_Hff35^B T@aɷ*olb=K,#T㱒JwB=[Vh.O.kwZOԉҞu wn6ǝioGvTjO&&5%al 21bO͏$_/#x/-h=VDzz)Ki4YWvpDV0 F$!2&C/knzzC4-N[Q/!Gִ053m.$ 47ɉOƂdΊ'\Gp$޼ZJȵosx  C~-xTg7Mـa. _4Tܳ;~8. bPjY6.x9qPi֝.\:Вåƍp2& -sa>DwAz$QQK&sNEȁ{&m>QSOM0 M~uiMSNdgGBF|K@hYy^{B#pxQ-E]Zi4E2ކYkz-j=3WO_ǎP(T _(3Ôֲh\- h EC2gxD li V>/ 5,n(e+ ^R;H1vV}l4y閑 %BSѴͼzr\1GY KvUẼrJmbK ZxmDyqO#x7Pb]UX`-d 6LE{T$MP5ߑݨ`M|RITf R-d{[hMnl|DA97qK6ʩՐm1d4 Zo"#҅e{؛x5WR̜⠡]j DttAxW:{e 3487}oGĄe "^ ]2//3rWTyK ǹډUo8ntTf5"&HI`LVTL>gmW.΋ۋz?l;=Q5iD]_=lM;5\'|rhJ(Kݻ`1,BIM<,$}_zvn{帗Ϭ8̯㍆ }Tlqv1aj)YER,06H{vWO\/0L͟+$VBrqW(Bl^?#viȶ_v+42ctaA;X%b (t]bBO^wc\$-B_V{ف}i[h/gt a3j5\'6;,obQV+$/n7V;p>۶ԉ;5CSx@ʌk\Yr{elO#i`@܁!l "AHH>(7u}`f\g‘SM&?Hd "tor{3yʭ1'}+2F W殌i+[;&4yAc>「ăr8{PGˈ ;ڑ~xa~Z4&PUWZoA V5sY-rxP\4 7*?}3mzdMm6W:m|]j0RlփL.6 92gǭ[LCAV;Ø)nDβj̢@ 5ѝ4(|ܝ:g"m#x Q A;0jbfUYŴT6ĉaT$lk3 !{BlDhtiAGN ^MDD_k~G7LqQǬO*OQ_[dl3y(\1) \UKT%0qvxW,S轜@kKV,ЉdM_b"}c({YyuR\M7dOHz:"tm;+MFꚓˁ tQvoIgg4I珢uYv9hk/}dOŋi8j-sBqGCز+֓8.v q̳.`3T!u ^RhHy2Y `J@g]/pdzE> X e6R |8k15. w v"i bQeKa.0v ,s7.ۏzν*AvgzWqG-v(ڊf7~'يIu+>3 , =J=te]ַR&Ѿ0.ěce !Jt):@lFh&c )= o2oZluu{d3UGxP U:Y#do6{XlvQc]e 2gTeLJC + %<Q$ H+\_5 =L%V)&Ir"f`Js斬B!M|sׄ•'bwLyCiْ77`%ޜ9CM=HՔy=SM22]iɩLf<rByc{z(l.[>qڷ2NֿRVgen\0Z'p^ YH }BMas ` iayC$FE Ykgn -ܓѮ YTR Ey٠ϔ1aqf6k4w ~1dSP:U{.@% U˸1҉ԌtYx_+J$$UӰg<liHN5IT{6k;J7Vv@^2DLeSJ%H{ k3掛n6̫B7 V(Xt!wቄ],OS+DmH㹡]fgFva);\0!i.V!۰(hM= FHVZ :f4xő؜ԝx7B'CTAC^TUOzEKA=Bue9 1aFSz/X˓E_|߿Hw䟄5CyKNgպl?2}\)!Íy G+X[܉\!)m |Ƥ\&'GdŚ. ),`|n#=2#8)M1!v@EoyΝV>ѷ쫜nX`3~lb^?qb#ID jژѝ`BzqnEx[a1D_0?t9 G&p"AۑQ ?)/dO9 0b1Wija 5;Ec \[Ͻd;8%E :CbvNo)|;F H2d=iX yE@{jd8f<ٶD!nJUd{jGYm/ctdvPr{gLSWrq1;B)\F֤?&k-_-I2Y'cX ,@m%_g?.NFd_""YprD+wٵ ]SoGiRz mNK*Wxf}*{xE`4S1:O 2 J9WaԜKOIzMl:XJD|z`>(nƨzks;.Y#KXJ DHrdTG57G1;> LC-iΝsX. =۝zY'.wT _pbhFd1hpb岊@M`_*6Y&x}2vfV~(ޗوOVcmѓQV<կyAmU ߭ǒ^>k>ҋUAhj N A'ѕ*>K j$V>,*ԣXugd =&5$`ѧmD=T 3)] u>KNKv*nH3wu&~|y]9^_dZ0 Ю834Б{K|Tb%Z}"{M`ВͦnM\30:|IbO~ ~V6i>bnX?i@ dWv7lk/+ŒWIϟP>)0` ['` nlOVg{Q SeN-, ' nM5JΖsxvILUR7w6^$ٲXO%W|?oZtE|FAr]W}7|, Yj! z^ [RzB'dUSC7UGf/RE%b/Y@7af ʁ$*Uj,7ز MGQJeD-c)+$L4jkA B4UVupφt"UW|#*`6Ճ8,"M3'/fY<ԠoMSF5P,"*=s3+t/oMJ 1ۿiBd)at1|YE[ڧ8~-/vV[b'ƴMƬrv{(Ey[Tumܗtp?\r澜_K;JԵl}!V+" bxkK, hV3h7Ed!:~ ~r]sJ"t?p9yBt~(Ӡ736]3jl1Ğ&@ lkB/X,}Q]4W*i`RB}FHIZϤ Ѫn'6|゚t,! /?PfT25)]j%4t͑G/|MݞR=,{1l}j7H& .UZGyC"ȕ9_Y?"+*^ w,.ot6@ֲ$ԞI\V<3 81czJ*1>GA cq_h/nøH‰Axoe=1E0h+,IdDYU<} k6^>WŒv(~d&kӈ]J ucC1IR,Dy[< щ@i>mnQoHNU9Sݣݹ FK% :=lhbo<5Gr2E|3(Dž_ml7㨓Nl=BfﯶA>(\X뜴}nvU=%;Uo@{u횗 Eqn,jVrnO^y0jqw&\:XX(8Y. k/aY#a"mިH.1q*d% b}ዬUQ@i'iJhtIIi6pj*}OF^͕(aFgiq4e{1+J xJo>{+%7(*8jp__WZ5uL,z8cB΃wgl쪎IN`www*@QpT~}RׯN TJ5 =£|ƴ8z@񳋇Ij*=JFɳ`ea ֠8sN+~uMs*YgfGJ8{ȕi h(6;‡d- Tj!m [@K[$ $0+yYmp@1~8nnɝM $F t(a.dX<$(?U`^@ azO*4[КK(Z)E}h^U'2A<'AL.ҥ/0նNm[M ӊLGWL4z/BR136[?4ԝgqtniW;9w'|K5F3㖊57E*-\{5H6[ 3 dEK6scL*KTFrz7rkh&<۹kGhjϧ:7m:K(A9ė ~X>IS9S{hQ&񡌾~UI*B<[A˄RN9R_lb .U Må[f[bǔ3r?4W=;l+ѠdnBaq[&-CtiP8 2Si7q/Onܹ=%4Wz}TPs'k2!yЇI݄Ҭ,S3uDڎW<Q46.Tr~Ka yӕt5Y ]ǣ-h\]%+PmukͅZfy%K%;N1m uã)g;7Wˁ5vyWRuM6:SgǾǤF>ki4e@e[B6z.D/:ecekCoPך4r)gnj9uaPb7pq$K5Ur 7R32XYR!Yka& 綵"? N|NEPϮg5#1&LU>؅ jB>sҷ#w]FϮճs :gH5hv%t\ͫ [+.mUlC<-B[o K~>E7S| l=rS.J1Q[Zٗ2 l.]F Բo5g#4h eerzϷ5OU\&mcLnhވ.s9cf!Z )cgYl;HV{šGf,9a FKREx5mCOmIF͢. ϋv/\s:_ep$ss/&²fEg#T%k{Ax5ڭ_ 67Y`^!DE(uECӕضʣ=&Ql׎2HosfWY1bm)퐦Eo/٣֨#vJ;f`ֺO2o$@Sxz{ULD\}4y'i8y}ɹ]%#h(yW~Mi{Vx|™T&Ci_v'Cz > A ' "-~/-D_-o\ˡ7s>LIF*s&NzPwbF5oIDmm/*LԶڒ㺾1E6O*GbZ/Aіb슐̙+s's3NNչOU@&2ӵފ]PFΕu8 -s_c70 oYBFi[ߨn$C0< "&9I #ES.lmH|g=Yu:Y9t+m*]/3 £8?D)SJ)v8PSj$6sݺ܍W9CROzHsEUN=ݣ2[-jrj(K]!yB G1M:g42hΊLʹPdS?0WȮ"iN2ʎUhl̃ {xe'fJ8%Ӯǰ!`"x\'z?SR#ggK1qKSx y;Ug*}^j,zVZǒ>ڽ6sORnSLD@E hGh4SN:J2S !ՠzJQpn];i= zO4շQWG>ZogIVn';˚>Jey(`C ΰ^%]lѓ =ood|5-c&/$F7xF't}0'I$EZߋ\:ضښ ꙇb$" R ;2Y$D <? }kJeS. y&±7#Hm*ej6r^&} \E]ZU/(Jy}s6]O4LMysķ5q瓈md$ɔ* *B 6͘ZZk-G߷0(rՍô!0g+7M6c&Sd9p϶<B[:>TLڝƗݣ7Hͨjewh{_c]H'/evƪYn^)&\ŴV'bM!vIh /b2xhT^AĿ@.?B埾t|äB'jf!6T}ol}ocw3χݴzuͷ0X^gP\+D'+ W2\oAH, +Bp>JqVc6j7<8զ^NUxA? ?iAN/t8y)}R۝Ftwk\,_֨ c|s_ڝ0\[d[zpu +ݙ`\oʓnƞU\p-L.);3}®г_yD߶{ -*l_*Lݔm^Q~,͒nsB6!alostJ -3"菇t]ŤTqL^;'rb$Ӑ 9 |3䶩T - AyY ̯'1".fv7Ujٞu 0M MAZj$u T|R\6XEf۷]Dn?/e '#ǪU]QYu X1%PcMN)As)2MXO]MQ)ȥVbiȏldcY>,=Ij.Gje\6|gx8| <;0i0iZPc3b^Mru"?{k*&zɆ3it𽭼S`?wAY/++FS<.B{> )A$ 9K3^/\\t7 ҬxMkx~rBv_I:bΜ'd i*̻, qҽQi{L_>/Ob2u}_qMAc+GR'sΊyn@Scs"BϠK-%*ǚg~cDUUPck{-WJ_t9:gtmh2~f tKԙ]s~ 'rl}9w$à(7;CF+żPbU[d2!.)U,RJe6h#I8据ܸPٴ08cjbUa8Q~vl%׮>ek]nKʿ(aD%4V; OLX01%(ϩx r4;:IOG%gtۍ a҄J|G XR)] ӎMx%5RՉF ڵdXU es ]'X40܂:#%b;%(?HQx$qbg\ZpAaec{F&lf= pP1al5QQ=-U2XНuffK{j6^vy3cRJ!kL@8lh9K=qj(yO.aÖE8KHUs?UA~~r,m4"ʳ`<-͕ϕw'G7 lSNe<*;PWdI戵?fGe`%®Aj'Y:p 93_tPZВ% VooNyQ=-%ؿi#&% : bQҀu}<Yh 'JA3&gGxB{Llc[jtG2KONOԧ@3tZ/ kի !t,bՅL!NcbqHWms*$y1N2&,/]R DT53ItQȧ֍S5C|vl 8 ưඔLRG6BtU󐎿Tӿ-YzXwSQJ?~`z%I8CY0 tjě 8J-tdǀKXkKԓa>R8&n"O'Tgu$VeunsZW ۜga5: #]_ӂL/+% ÈD-AW{a1HLɤN\H(FuS ㎪ʧI^cZbJ{cC;oצ }!<P[iERt]z6=y9 xymkpgǚm"Oz۫^mǝ[(s1m;GM>bCDquX^S 8QCz![5]saxW% hK QG .j 쿼\|%m>R*?V5DfkD,,C$.TO e!jh=?H^Bd$`V@si{EBzCdVݖsLHC{4 ZnltP+Œ 6A+Fi+[ͻ'{ KK12y`+i"a05poTF7[^mvyߛf8.WP.:5 noa@K$I⥏L5ǿ?`61G3cjK? [KTTva:d|t$,0Y|S6y>楡U젢~͌Mk݀y9x{u(Tbg C ȅ^%be`QUWÝ֘XrQ*AR_ "yd:.t=1 & JBy0}5a} %B *ËqL3;, wZ~l<)Ib=@qk~79&#cK{zEa}WeunV:Dgv Hj\/sEJ~-`y65X9ՋB^Ztda"9Xİ~ďGp bwcr\dž=€^&rX1 u~"3f5->%$B7DN&n4(ܶջ+-r8@*Hh0577L K/OXJt ^`qM]FTG/ ]<.IXpȅB_<;w)#S57ȍ(E])F?_D{2d98.;3!B8 bu#I?i j,\k*&%(A0=9&0#[0K -b#.޻ \6?1+<\$M,شlRvGtn+6HЧ.(S _9AoZTV.3P{+Bf"4 FtT Aڄ?RNιu~|BE8lT6C ^֚Ch nzP7R p'`g,=Qhhi;ϲHI`B'SOyoXTR,"okHnA[Ε[/uꡓ*J)`ghY,x\否{E 1G0ygoX,kf*{h!r`2+ʎ~ 4?hS$GB,pɡIY]~a%dwQhr/O-Hu `ɜ <$v->{ Jh)jO5B: 帹 Tf)ugU]7zsތ\2[C42Vʠ)CpOnq[mXq~ͱ K\F P*ԶOp9z= B²lb8q<#$H-_1QvV4` I -h}>w;.ٺͨjAF~V`9$g;]%a >8CwP`~])z9'*IXwfgJfW9"խ!Y';ݹʉDѮ)Y,{ "lB 6ުxڠJ4%:V.!UN1BjzXҼV;r] D!P\#kyw#, v9 T,L<@˃qI+j!r`L'6/dOğՑ\گƫzza%Cp;EuƄ}{mmZv9zJ\5vS& OBu!ٷ1]d,~׾5~ T~KwB-P=k5 wLuG(a,_ rfiQ%*ב8$ƒ1~Q#c% 6ך^ JwghB} }&& Dg{>#_lʷP\(O# A-'TxeU3¿BNf *\OOUЕly6$'i"} ]2V̒/rHpzA,vt? NiϓST|Э`gpҨI1{\OMvVg e!,v$UA r4!aYtf,*}{kQ3 d䖡8n-36Q#dDl)HxS$!^iE?Z4ʚ<0Eqi0` -4rCJ XNH5'i9b? H8[lwLJ-`gB$ n|W Z1@By*dK2 F>`~]3_IRߖP jH̞͇ )tN0<;Њ2A,V♩0-9. wr{dL.|[O m}Cv6be1(+)Ck%(ǫ6RpCc§d(h[YLUu=Ci~l,">DvQ;#6 4[n@S_p=_!H{ 8Xz_adzsG,xw`Q˥)_DI~k#o0D_=~Fě˩o&@\VhVu>p߯3Ee7Cr:|׋ᣯl&bb9a׉Sd \{T(wL;zB|K-SY}Dnv&cz*Å"\B8>*]' PQ ZiVۣ KCnpˏU"'kH<ǶI d_˩IeuL &:RubðՈǀ>%obo\ȳnAØTjV[3@⥩M1ҠlNlMGQ:K# |4܃04ucOD |mϣb4EPQ\%xn1BZ=^3ZCo>m졶=杷e TDT^ɒ;%~ Й肿_;_p(~r.31d)u ͠ybGgtcbKXNUU [R&F79 N_|x\Ӵ ƚ] 'GyO շvz춓egO*!.sC^{ .櫭ONkkxsS|j;a43a3l55^YTX%"ز'*fe#\Bv-Qzł'M6 (#2#ġtp&I0}ޑ6HX5͢;f [ C-6bgM\v7+T:^Tſoju)-h A ͢)\rj8RN "WYv)yMvE$ v9,%,Ϸ9u]؎#yCr|}T¢ޫ;fu8MWl9q,BƟޫ:J04Iqt?FO?"۞D(,۸;~rp3V=LD 6CԖ邤tsȒ3}|gB^4FUb[bq4mY Ne.[6~^.ϴ&%4 > HԊI(fR6߀#P؅jeoiF=jL%P5`jZ9a(U!ljyo{|9$؜vEM3@")v1yݓbaYQ)- @,M4 ~SKR77µ؞OaI-H1TG6u=yL22X2#mTLn:Α #5VQLnvtEƕ5i-pTON'#9DAGǹ4oT.N>7~10ubJ1YI]2!vM +ϪH I^K@Le,;ƓAPy yvr8+."l͑pw_-W3DXv`gfJgBՀ\$Wd\,[?wa,7`P&u4F!^dLI Dx bU7Ã&i1 Lq[k K~ +01U[$WjSB< `Q)C~C~ 7: @=ӏc)~gS=F/mgdL;js \ `lt{fx&1v#"O˅K;ȥLG>lfpTɸOkq:"s+`2:GџWsN670Aݾcy1׍$Ǹ-RbacX$[$j4͒9RgZ]%`%qGRJ^?(c@l7hX8KW % 묠><Ж%t~Fu.;7*28,6Kul}VMԦ<ϧޠKS;` NxLbn^bT'7uZm5[냓$[8&"4f6&h܃&͕/c1I{4}h!:䡏`3 DD]H:4D!_//#p*o}0 Hu Jk&e$. HI~Hj4U')X~ A$[fu(AKON UtSF$Sh~Y@mA lv 59~p{_SE_hȾwB,ĽTLLUe;\E~v^UUa5MuqDIx\ "Z1|HIgЈ+e+ةy)g$뫐qzԍ{ZC N+ԻCpE(N܍[<* ;g9WK`w oE^t#d'Cȫe)0PvK3QaāN&iƪ,CHAۮvS273Kst} /S86Zj'gUwo OX7,"m@ZS(:J#TmO-Eb-zzڃ,q'*أi' #UzX髀dk皡aX)?#tJb~u$Yf"УIf eh5|5;@3$xVfu$b9[sD2SalZ!,bڠ`BU' Ls,'i(u`ŭwXX) Dmuy7qwR̉R1sOeie ]Q5;/_fF TD/̃[G[L GLrm#nox ?`1^ PdKzkO1 LU-f:e@|kהAgqڌSe9?yD.2E +}q^t]pжMnէZ+4n[9..)&HYbGWɨ5ҿ03&I)^Qd$HoC^@^fWVqnE2ֱ!4 fa(Msݩg>fIK C-E'ޒtp@YA>{\zJȡx++Ʀ "<6q$.1Wφauc1O K"m<3}c:d&"-P3|4/T=4da&MJ?~ᧉLa& x [g{x4T-7/;ܵC|PZe;$}0#φ=BFxDT!5trp$+KW&<8VR`c:zQUn=sGYii&qI(%fyoR灏vtnMx1">@m?R;k#9A5]|7YH=P٫n\Θ[I * OhռPvƴ+\7pe{< !R۱DdHJfHP/'ƦRüA`sZ}t!-Hy},0+.{~m^҇mbR8D9F%0'Ҕ"ea#_l4B%ҕ0 %fL[sK.NbeFPbB+/i\g?༡XBu+I+!5B7NM5˝URDfH22α|"R-Zf9 #ʇ~Pگ.2cS?6Sԍzu eB4$!]]Z 48 4gM_|T1-av9LJh"R+{.>+1B7;Ran&Hh0CT2Ꮯ-rY4$_G֦%_Rq;ak3^ `<> {N 4@9'%mv9 p4gu=S9W> !xb%y SO}4SxNc FfM,yxF cʏ7GeRx[fܯY:BmDoO}WP3`1LC+%-aYE#!S(?&y8 an ?^;凧=SnEN)T2Jxg]E$C ƾ)k% Gc;_WHPpCW/a0[cWZYE#π$B)790-^bU98?TK@}0*0+B5Du;Z&im ;L̒ Q|rJ3uͦCT{XYZO=*S/YZQ$K":׼ÕzάIaI\ R\\0wo;8?C!-KaKJߌ+[a R;NOK)@0BW ,g*k5UGk{2,M'FkZ_K*rdO`]:Ae8|e' Z~,NVDzu,lٕMf5Qȫ2UsP^{_#h^& .'tv$ E*uH] %1Td.W,ӽ ,?ӎa/s Xh"û?rį#u- 41sٸ8=F# s&"i[ ބwnp*(eg& T:gœ,B 5Y&#e?id9$ZJ||=4!JA֘!MZè#KȐίr{QDl)V!?)!t}_B<oR ꓟix"GA ;!9X/l͒^iAk_draw Hb`@R*MQsbP̅.܇t>gFyfG0z\+R a,h$'ٱ]ͱiܥ07ĕEJzޭ_5ke].sƸXx4,Z=&B Ad X ֮ReGLY LS"qF U;~Pfa^1en!oh xlkp} ɞ#nVʆY-`Z|c ^Aog\ϯ;\(L}Nնf=p2{D6豜 mMV݈n>mZ KI~z!%GEGcF^rT_ap*~,7;FU_LbUppq bWU?^u֢ҖQ.t܈lFuH=\aN@ϒ,%IM$JZ h|+# d4h\>+f!T <)y{6DYtFBx ֟A{xtUX>WATH,e)kS>z""Y14(BRrS \zp{0`}'lįK:HVCbSHaghnxZ#FQO,xBd:M#|[mLxjWN}Hfâd%ZPIgub <`}yzH,2qSYyfrSKzTąF2d:Q>)' s9\XGH_AFB q]rn;^vy"xƶѤ$+Ŋ.{~d*j7]ǃ{aGs9psaO ^C],Ak@eS ωb:F٧1S7d)kg}Cvc٪͵xw!۝]P5v^h%5NQA,WE;橣YhyHHĢŵ$?  y!,^ II,I,$@r,uK+ꯧF)]֝ iAO x7[scz]x5a;9O^-݌̮%j׃skaqHfE^=GDn,"ǡd^v;#/x/(]^Lt$ =9d`EAxq%ǪvdͯJ!:!"+v_FPDž#mSb=I~()*K[&VU)@l=مXS;mVi膧oxZ3f t F3)pj>(ڗ_/i^ff,_W3RfH.ܽ:53nعps"^AKu F9r'#39( A'MaZ@!Y j/[zaJ)T;r'E]E@]M[o}wVL՝N *>)n@ʵxHf7 (,wRp(gy' f]{pdص4j!<'G^u;)I8kD:0s[OF}]vDp߄Y`Y3t-EzӠbL:W\D3JhV\|`>Ue7sn؊! x;ĒQdaOC7 "X*?UdNJU|6ׯ[aO*UIr%"$s4HM(F zࢠN1Jb?7< Mr%/YAwcO.mW/rEKN8ONܒ,;]C) hFYE!:}ldatAuUIЩYR6hv~݄“.xj-}e:dsES>+X8ZYrqn[EE#׊z`Q'"8Rf6&(Nqakrz߅v4d{z X1R:cxn~pˑ'b XRI'55Z~biDt+Qodx ,᳛p䨅ɛy[p\"_ds2pȒ YqL8} q|h,4{>tZi7r܂KDLLnElm˻N`iT\fBX.'h>Jf>a U%Y:.*L NO)K7)6FFcgYŏ>T| -[bhqzek*0G)PBX}҈yQ< O< 4;?X`Ќ@ƒ՘=榹 |}s~;B2:drr a::dJ #‡ n)H/Pj(V05Yܘ`0PV5CSE'uFk3ۇ Jb٨拤9_1 07./rٟcFS diW#yE4?$Ԡ:5π^9ЍG9&媸3yR_>QoQ\=4*Z&MW>-vDR(61JJĕGiބ6m=W; <^N۸}Tuݜ3=r*  'esz#($3$]FCؕ>HJ,FdH"<"haB~hzq}g\ˁeڡnPla}aQF$'Ft݊f|zr=H5zG5BkWAvsWj-B !q÷1,*:`7(4D. gڔhY.326BT=}AlPn z\we򄠉<(: ~AN'(Ph г+fn*)&hD]GT$`WHh}B-e MQk[u!eLq 2[\.jБqnḵr^ AT26 $Z;~(a ab.zչ Cd5ۙWav쿺6PAp#S -Z ,Ϫvrg2dbuCwll}Oj=J/qy'f a"{oFh]η.J1apzĦ#sؚvۀ7HXZIi/s陬\ȳH.b2:Bgy}VwgF봙` SV !B??.R<858qGoDJ) Bgf.k�WD FЗ{]Qӣ4,~ w(LoBAbc3 kbJnrk\96_]߶Y?u3 B w3SJL@QY_+dɕHеH.-| sW Pu0PUl jP`Hzf4 ꋥC>DJ@.;KJ _;ޗb4a{ Ti io⢼d!y&JM}LG_numhi[Z4ss2=>Bl*{#Pppфڶ2>NdiHw![oACۇYq0$LF Qoe,3fui9>F„;vOEM58uNu iia C6n8qEy(n0@* ~MXp7~h]pHT-]s7.=tP7#EA®{7<UT1EgD,]{fm?H(Nࣵx|ժs' 7YR1k?xsظ zHKh1YXPC[k|3mv4cf󝋁,&+bG~lVH2+o'󾙓-"誁yg#8 3iRJ*aJ0IhٓTo'0w:2'=eqL/= ŭHq:(Q$!1$"^ 1/ғR@ n`)#I\ʴK\_P!*[()ΗSaw[:4>ˆlē]Ư*YU 0./@Pkߛzh%bՊ6*yp&V%sf%oDwpwqld5teJB |Nh_NlC=RD 3ӽ/bCZϝ+dk$}l|X6 <8L?KRMƙp*5z&W}ßP<⩜qWEkn=X\D#iKl0\1MpF&/kLDEi0?hш}Kp1B07 :"Х 2^Jx  f "Vfe\N{JeKvS O{*l,j)hhйw_ ήiAcS @pFijG$Bl}jD%.WtO.kL ˹y=Owncڇ0 3Un9 wEIJ`T了胘 H=(x3$Kac #Ͱϸ0,om e'ןWݡsc.8 le2b{ })Z& ,%eE#./ë gKii)WL4":ٻ$*Aܠpo.fzS 55Qy'|Y@oh]q*o9(>33vRJ.f ]pvNZϳ w-_45^iZ:[${>aO{#cJi[%y|턱|Vk?%>wǦKwl9?;ڳ 4%(bgҜs',7,jo~ Lf[,2 Jy_flC%@>hVA}VCiJKT5o{ݑRE]2ąB^>tգ^"0bx RH]1o1|:ȢĈTӓ$=H jaTcBiO EjD= kW{psɈl+_oҘm8kyM3$}nhٖzW=L4 єLxdMRf |ٻ5fџoGbtnKEDSzY#E`q44m7Bt ;)*XhjJz R?:M1ک PSɴ`Qel-lލaB{SbA-`+0BW)L{V(suv"5\RC,K;o c (%Bay/۱ wsv]%ٷ9F ri]Me)7͂o3[8+C̉U~ e:MT moZG9S“dnof9pn#4bN,z,Fk)c KXXK5 %kQd v&R[#e 70^(+Oغ3ޖVd ɇ' ^'פ@vDleR %_Z&IA>wgz{A>yz"+oĀ8.$25FU JI97MA?(ZT\wi"~Cɒ3cD R53--u: ٯ/eIj7tu`lQ%o)9 O%^'0$|/ޤ@S) ҅0teWcG^L51)=ӥ- =l- 5OьuqǼK Xbdʄ``BS:}\2H H0shdc[f4^e%Ћvz~? rC= T3F=jPm\ MmvxK[P"&zpJ7aJі ,L@t>5.1_j͊1Yʚ 384d FL>@,%}z_REz-h~*1mUY/źdmW >-֝[6PA/uVDl*#bKw' 5഍w@HAAbR1~]B%M5ud ?3M@vv=^M]Mpof_-k W^T0p(~q}S6(aۖ $g  _u)t~Y< "gݡK+]pC=e`qmI^.Hhz 4+yR^N_ͬ~Bcx쵼q`O_5Fwkk& Ҫu;n:|^{)zPDj.rJ0i26n͓PN:k%# dkRmnF?mIb}\\}?z /e&L%qpq^cxyóe:}Z$5^7Y.V(o돰kџޏcwoxdCыmMwiT! ȓɹn0L՛bQqpA)NP`/ͻ,b6E@\t(U1vɭ3 G͖[(E`!<׵a[I-'!rXC a|?c$iS Q}˚v3^Ewq*ә/kbczRv>AȉdLw`)cI= ?F7&Hi::P01 .*Z aA+Wksrgp 8 җ#aF3LbP,$ !8yĊv >] `D[R$ V4{]HN"uӪJwr-=e|z ],=Ⅳ/p횓(<=a wLRQuHeT 5}J5vv͹CeTᠺd?+: ̊a79Ž-89ٴȠ׉7J?]AfH^O !V͆%W.T`@-O>88"o$A!7ilĬբ IݕO;HXr md Aޭ@(Hx-_#+thiK'1$4}A\/ Al2I:t{:Kxnȕ"śmMw@2,` td0 U*UoGr(:;EXJ~8ͱ-e~pOպ.z9yW Z-!XS.'»Ⱦ:vx+)^-}_i}фk>*ڹh&M\I%yvnOK5)gO>$U׻icE)Ku>22ZP6 hd';>(U:{1wr%̬(9rA!/aЭGnCCC6ưܤ1]B$^t&~oh8&#d?ͳPl\ Xm}flt}yrh$&dt5dGQAªOh 21Ĕe8c]p+f^ ҥ x{斏O\%~E2D6_碪sCD(\%mw郯ըM5b"}wL`?`].{k@=B5vS*Zg0ylv9la{pO.Z SU^_  io't)v+^#ctt@2rU[o)ETۯP+lGlu$7fq ;"C)^1o]$@$T޹9dDmc95y,t&$y:-{zG0$p=fW K=:*0IN$~AΎ@bxn`ϱҵ  +&ZN@At" yš]况]Ḵ7@׵Jkϲؿ}D[_HgOEpgZM% E{s*<)Mɚa:ch?ziY~3EzLWwo tB^E)ZJ ϨID,khG+r+QJ-!Y6o==JYj*@r{Ou!.[r-lw({S\'WŽL(bk-lj>Wy%wȄ-5D%ؾp̢U(NA'~[f`r^Ffd3Wǀl/ϓ/P&?uu #o%GU:$^H0I%#6vqҶ; PcC'C>j6 f-gsm*wAh*@~v@Gޝjtg&|eñ!Ӱ/V΃D^PFi.ҥJ_X8j(Kwx#Fy)QdZxҽCT9{CF1ٿ{:3. Wq*7ӽGX9̳ Z0nGDUwy~T|p yz79 ;3Ay*zb*q^ eBfۓ?NX>}z.D'g̰ Ly..eAGԖ!OIHOAx(2m k2E ZM[Gf* z{C;oV!x#J;*cv!GW{Gc׮3`Vp,5b o#i:v eQHîp5=a}]yJhHJ9I/$[rY "3qW cȈF#՟x$j]QLJ$:Q^.M,q%9=.QGm~ .Ij1 ՑJRM`,oKZ7!؅!RD.ТOHSaE.R4pμk!*ym Y- cOVf,hWUa}ǒHN9o)Y+Zl2%^Nh97݀$ lY۴YJ.QEC4xt`CoAӻS7kEMh& V<:|#Bق'dɟbEeLDlGl5z[bwIΝ0ÃiyȲm`FA Ycoj^7Y94E]2]9'C#J"wuZ>| %+櫞|L|jD;v[uO<^N, +E\[1׋RiDoGW>^S4c 2lCobIJ!A˷nfFVDOzoUbJ45Ojj~ZQapӕ VRlc[ *,Si\ Ϲ5ݓ˔(kwUtԜpa`| &?Eg8ʞj<`wU Rhy0loOr g[ ckW[-ꐎ#6uLt Ըt\7IG mk6úG[Sz.{=8 dJOPMP'8%5˵m?9X{ԓ8K8}“Lڊ7RәNo?3pm8j_9Gc R,~FM_/[741(K](o]eKerBvI)S[>-LԜI* FZ2SNZ8?[Qgj%~Kr.v>pUάv2W^zi5uJ xp#ҸNtՋ ޑYVyM ܔkL X/Usڶ +BɅ =`q?N}"P^wQ)IpM?C nv-[S:dxf/jOdR c 1< O-w~whșZ|:o I_C5vFML'@'>b!AT4nZJHޏP< I@+yԌG9YS`tuCdlIL_O iC؍43m5 г^dʼn-E\A*f#Z{&zJU-psJRICo?$ʕ|zd`Yt\Эi}ocwQ(~Լ#pHBBf]6#M{;!gPFeh\eqLLDvML;#_V6Ygg"\${4M?I-K/q8u$o[۝iG)ЍEHw2!XVX&D-prBmT̼T7m8/s~;v:|GXp-G6@܅zCa3<` ЯUQ.==/eERa8LZ޲RKKv|։^pfV!695AwX 3N( #7[sch .b%ia]QtAx&pG+wZy}.Ee-|(Д/x&|D'DFQ[p( ޤx5ey#۲E@YTP)ZcƱi9UH~^ A%D杫oXF4Åv _"?j4JMk[~'eDz;*Nm eBj KG!M{E(s.mA(^6qM0{{埏LB[3`f<| N $v]g(̄^aɄ^kֽ368 0B\_Ut`'tcϥ1Ϯ/un_FiEzZ@D`&+G]9 Qߦ=ϐ񍼻k{sW$H 0@D]o,ҹGA?ǖ? XrGhp)|-jJbc Fdlo!+d& &AF zS=A[SiƒץknSM.ٷ?)b@ҭRpQS2?V&nSWs1VWqY];&r s|mçTTQ6_"26N{>p} _r.4w7< r.d7vxН/vVSa tFs(^wœgدNQ醵E*#e:`pg=ٷ=NYN*(h/?L` `K.F~ \\  kۥ:R,17Ҭv+ =o&瑍^I_e#ŵDB%Qg̢ؓfj.#L^`#/x-tO1 S1'A!duQ -A]\l ҷTz dR8)NS L&BPBvZU"(m岘)w8tv"߂K#:sO2c|?qY $;Q),ٟa1P#ߕMІAg/RBEcpD/*T˼I oCuJ k&Nx5-j|3/8}7lF(scY"Q!e"p(mJ-݃~YvL dʽ(^`>+^XM59|;?~144W85!'D`Ɏ-}yLmKQ)}V>3ō @Y"E{V/iNcQn\-UM*MXGv|'B!gԹsQQȇ Õ8ک =oӲ#w8[.ٹgG4|G6z!ȗo*'agER!-g*84}#똧b~ e2zB=ϸR ɟz( Clܲ)M,ICkMhP%,aAn*\1e]5J=VQM6}&6.ʑwJw?LLb=`KGei<6>NDetpNNu~[1DvhRѹ%^sS֩X?}%CT9ߒRz?=o}-K72u:Ne<0bkmfŰ;z^kfpL 9Pѯ.u MjF0E5e4ë^bb&HY=/ŋ9l`b*eH/,O7i |䏐,ys^Uڏ#0RtecFz9\XeT]lg&NT<!Dtճ`f/#e&F+փ@kITQl/q7*]U:+ K41)9]{0BSg](_{k _ +{ 0}// g>\eؽLl(,ƐNn0Yи`DD>[ 3=ܕmGC)$o=^h~|A^;"sVU9F}фZVa 1U\W%*ܢ6&d2[:A+%soGlD']=sJW+꯵;9N {'_Fj0mkB1ڦmaM:E-&.f932Z21/Fk%彪Tšm\S J@Eb%Q?byN݇e8&YO!T'[LhB~g1lmB] h=&0s u]v;J~^h%pqyUrd9bcB)mάMm·'^z4zrZdñ^Bjsx9qDU[Q0$[A$5ljs߄~uFǂ7hNԿ+LG{c%jfܡM'h2h'I0۰@fi&(*zpa9Š6;@VPcT=^]>@_:&j1$B:z3ѶzjtЏ%;49c=}^XêK+ƩA# ?>uVfТMiJo4cO)o3zoT8LbUXY7'k0x^t5 %ٻ[ɨ ŏ_%S&lk(a+Ncܲ,44E a\gypc4/eBTygd˭Xhs$s>0Dt He<|=%ե4i/Bji;83,wq ;\"ի Djނ?9Ōh㥳Fv]ZQ]!UJǪHvAfU؞1qԿy/{ڣ' '@Ïƛ-b;SFy, LǜJ=]V&w%LKJ@JjȄufa3ia8. D=?CP6) GkFD$? @fBk4g({ m)r Vҵ+\@bݣU縛N7@o⣣@&{Z^}fWf[萎uAQvUK1T4ߕBttJMJѓyt.W,ըGk^LOWAt64 0tAs", BAa M\ 4N!'.Ǡ{ri9\;B.SjnG<+`Meje5z[X΋,MTRy֖ 1ňvݔb!hq^:m6V+nۄ:7s+vCg6E4#Y8ey02V}/kq" X A~ذD?σZXL'U+#EqZ`f|?/ʴͻ%Xme`0'eW"$a xC5uS9reK )su$}+gjyD&l0QzڴNe}׻$pxA,}'7 =EJ SQΦr; BS Avٷfb>hDCgclY9E&T9Rjaԑrw4IVFSjaOw bZ]OϿ^ si\3@-%A'K[ 1hpѽgaS T6S67i0Cjhԕc9AfC*`z.-k?=̭Jw"|Xl#vU 5Nc.{kPDdY٤uzhAXǩ:m {ÀC9X9r!$mAW1haF+G=Y bO'^޵t犵B 6-ݧ9)uVVU=?U@^"#wC(;&eE7 ߆8h&_B,PсEY|u89ZeAoJ#xm><)84[2 Z}:~z7Qݮ*$QzBeOlHKҧ fH9Z}[sLU5e -Ui,!P|ֳW_x۠R%|_=SQJ{9^ j}+RB,tSbQsJYn wL?p}-$`P.h+d$0LGZm`7#[B~>1rVy`(\GŴrRm_0Z0iA򚯅&H{Ю2*ΒDƒc4Q:jKe? ݶçhί>]Cp~r1x 925!.xdcK,CۯʌYEX񩦵Un?(7CQ"3 %o% [z`kP(}T8Qǔ=o@̮Z! ¡g.7=;r&2NlI\{D 79/sNlJ,ߕk[#^:N,IK8Kg2Lhg0 'uI=ȏ M tqlRaй 'BQ_m^.!LL=0$\6` J|cGi5~TBNTUJ}:NPLۑgx7S?|\*::R%G04^Xx~7#B(mP_-AՆ# }?+^(AΧńj{.pXV2dsCZF0r@~ 4]0cĘ8T>z}2̚:inRT+[ mt>gCuYwau-6QJy>PĂtA%j`8j!OSƑK4{uɕv%,eTrWr2 b,΀+v%@ {y42B6^#ebyy!_7Ebr2 )6PwV^$XjHEs:ʆ]X~%cڀd @&amh"%iQ+TyK-{E!(AMҸOGֈƺC͖9fқb ū{%gR %eI~Vy^[|nsK#p|r#k_j OaǏwN=juhOzgona\ )@kGjcD?pa윣.B-4Te\lMN|xYĈ׬T/mvBR ]4E R4M-+_Rkr"< KmN nOk cbxTAԖ3_ ZuPSH5<:aV1:{yfl8d@ *;^[D:J3 ө)us4!S*G}HblF0Cg![l1SD٧韚[xǿ.Bz{Kw W DЃ[aD;LYpWV:l42r@U \_$ep&\JA!JyKc.õpP: W$uNw{-f8kћ 9M~f6FciRu؄P)NM Y !3R;o DG] ҝ )Vj-Yq!b)].rL= 9xzNq(4XyNA&#}e5D*ELV;yq=6kr#Jy.@JvEp-O?OS O'`4>$e^5v,,.8k6sn7/5R2ў; I|oJWB D+ \LAڷ[()J#$dEHih 5s=0JU*S*}83`2Zua3k(R+1W,ZfafmN:J5\K$RI("F7 /SN [< $=g ͠oj`+nl"ZL/578냛w{." {j6vl@qWie2SW]gp"4JMn Z϶-@!n2+8y(IO?V(ZjܟfWTFW`o9/XB%WA+{L"%cs-2!+l8u$ta< G#)?Xq^/bEQ4DN+'VUӑ ؿ㋘YD ſ'pUď4hfU*mnוЫsݷ(J!YbfM[Ut Qx]Nh3IiGގ~r]n!ݔTAI'Y csbi#iQ/mܵx@3瀪CCeG yS9H߯WA]uM5ayY&(ɀvFm_kV)8Sanw݅63 ?oA'XwT - OҼ/`jjGh;2|H; piXZTE& ~k 5Flh1eqe.PfCV2>?o=_Gv|+^a+lA8ulP({`]%Sh?+ ",3\qc ,23A7Rjۏoj}$کVw*ހua."_q~Mgc<~y[2X4?]mu8AlInEWE0|؇+НWnw^~A j/ιOo& ե̀l0ej۵{p0N'Nvh_s-$w6/;r\D8a_`ڡ j ~x`+fb[7ȨQUKQ$:=ϵ仮 r췻D %x w(Q~_3`:VpX'0]Ǜ鼳v]QfDK'rѱ#B=6VsQ&6>Q|/"-ѵ֮jxb1ig`tpQ7-cSX)T,dR {i"Je7}@ܛps71 Zq@*Ko7oFkDkf YV"C"WIgn]k4aIcS B9KpRچyI{[h>ځCkjJ-PLPNٟ@w«'e++hg# +C 8?Ibst%R !/P)pF'`qڊ wƙw`g$hJ'7׊~(Tbjdm9]oFE>+yV_FTM#rXF» z4-Ýeo4 L0`?_g0/+%ğzZl`4Qr`{G)Jikq砜  {-$$~}|fVM -|Rj7nf~85LlW]51/_NA~8~JU' ӽڅoaC >l ;lmDsKUdcU.@#[T|jEOuΙ6i⫂yJ3z2 l Pᚿb9"r74g5.E$`~9nAq*#o`>נ{ԧ&:[BDtm* X 3 d=ۭntIs>D2\;,0"}>jK&Ld8]R%гWZF^y֗uXCG,?#"&fvo& eC׉X"vXF՟qpU ¤DK v荽l Uꂭ0m❍Q`jLoȕz}mUjxB7X:pqtwr<)/F{RVp o-͡% PZ@:Bׄ<њɘ<?:YA7>>[G̓BT\ CјƔDJtn|x1Ow\=^oalw7mEeh!o|DAg,2 rWĻİI"w;@8FJ>T@=-+ \ԻشkP£4PHw(Ġs(ܑVp;[,b&&/6Cc|4.qg(cr> g;/9f0k}.0y Vp-cHÐz 6 A;dɛyjrm7^g_oS9u/ _MB ZG/1Ȏȩ0)P !뱅XܦH8sJ*p7۩g iM YgK=0\v]";ѱc uttw9TBޞCZJ 3N 9 Kxl0%@^Zzݩ?(^%#. Z:_H̹Lχ_}|oXh7ɖd9Z&wz#x;/.hFd+=qE\k? 뿢{7҉^o"." `5h툳N8EڇkdLV=5VYۺ̴;^M٣w?qX7#=%Lt3!j~O&fV GWD+bB{0 d e̼F:K%=?_@H }&6׭sz L-{,sdF5ӷAsI6ܤgr >'n4m'Z.c9uJ1{vЌ_#<׺ ]+p;fTLjCH۳ FAoW{w 6O;2j֏3}RYnRm/MA&8v 幓7 hրycD\.mvݭ&&Q w#@AEƢY~sonen8(M/>īx[vՀc¯-qCIc\vf!tz)VL}4_D8/(.BF [BX+ί˸^rŹ]h0hXbxr 1ǯ:O3 (P`cn"nR/|Z]1A.7xI+cMaWMOLii)T?j1o&zD~P82<06\Y> fVo}a[C3:B=A#vMD{> jew:\&0U$zvdnu?.Th Sy(G:;Ju%4WGY-M mJ ͐m|URQ:ԑd@1}نT|'ٞ&  rxԄu:y:{qL_Pj$Q=2e9Ads{ط Zug엢Ih3q?p#͕)a 1~裁'P^)QYBiuTdZ0™8pq TMˋ~Tics^‹W,QeFh*!(ץieF.*mI4R}=D@cB\YI*YUN|faJ>N%Szs*Q }dw`u\^UʩLKMs~2xFsrߤb9YK΀B1Excp÷3BXN,0_]nU_IQmEtp8;} K/]5ECtFz]6,rv5zrU/SD M7^Ɗ?KЀ-᠂X;q5ܒfbgjAy\;W9XԗsMO^~ȿ#B ]w4(e/%xt1 'z< L8^֠wLF3a83c>:[) %ڴoOq3?]o|2 2,4Ri'|8&<`\|p0W?UڇNW5}J$g'摜lHpT_ mŖY~GԞͷaMƒ3ɡxVPLK,cXKnhGCYnUwdTKq`K(]81?*?=&ƚooƵY_MuT |`>CjhB?f4}Z߾3imd'д a r [9ߏfZ:YiCa3hMR7QuONեm첚t1m: 7!YjCƈ"/ϡ`!6QZu˳$ !@1!a esy+LLxۺZ]䖿Pc05O F}J#`:RD|u+mݝa0Etg6?C^ߧiϑZƄF߲z@{T:-j?0m_˥G7n>:Q+]$@ϤEnwi~ET}g`?ul+*rjVpjTtkAS4R"-|iNQ4>BCi!mܟeBj(gChdwY䦪 V'Ěk|]`S0ߴ5$"HqJkŘO.68}xxD#?嚖ϰY~b\$;knO}RyA%nTJW<>ڊe|],ML>̂yh@Fju=6t= Ch¾fS9 @at;@LB,5.D&2HۡbShzc,f!Tг{:Q뤘آ,#[6/!HbjV( b‚sCzfOr2JMdbzy:qomW|/&يh\1lQ9s\mxYL^󼚼F@r#z?R 0H3{u/Sj!Կ>#0ΐ܆w G'z߃2+w2᭿f.& la *W+nFm-<|ܴ9pWKTFm#$}oHel8{&?9D%[ MrL.I &dWZ 9tRva(c?>;kHd-N'T}QmτOPFRn 6 9lL&G9= w9rm xsF_,beJ#U]Xž|e!Iv!xvAUQQfXGd"|2"]ak>s+S ##?©qX z˼?嶮œz  X5'ݩ+sҁlՆK0cAR2Sv6RnZ& #8jr09Ź-;pS⽁D6)Al口9Iy$#2x+,M^V:;bwc {GRGmü¾Iǧ\_MNdr쳹gOcN#'=iÝܓV`HN{tDcprMG-T+zbޤ`C;@뫐⑋8y+^;薘~ Pݺ8y`}]nR9_=?J2P+|y (NB,V}=24$(36h6Ӓ|B/mD1e'*9  {p+VIRhTi\uK{~df8F}RnPPɴBEyKIRJB95@ 4RAmud'Uׄqێ.ܠFfe!<((VYgP'^wƽ/4 %Rۿ7PϖF|nF޳+?Lh*G79 nlȋp OFp7RB8MmR>Ys[j*K}K+Yi6 'Mja>^nrDqҥ}& {vkwcsLA PN݁ApAH6ukVtYy[:zc_`,49n^Vc4 .t`0Wi˴DqTY}3Y]-) oqx3Oq N) T \dRl^>Jw_zA&\sA"u3|r͆{P׏72\D fo<` K WT5uH]Ƈ\v!I~ N53-/p4-NC)\VKq|j,h [/k[_[i :91&vdߜc<7P03Z s\@F4Νg^|/gEca#1sNfg?qvN85)}B fU3,4V2M~uzNٸ{=yl{4LSl Z*Z_'NmYw`Ҧhk{qa\*DvHYϪ *8^RuVF=܆E)`Qnܕr=5],BEy-/faO^|ܻN؁ ֣èiŽ/ot6H4ؗ:JИ7t;ZLزfY 1zvR 6dℏ`T2B PS?s>=χ+w 3ٳ ƒ&Ŋe0'.O{_?'3RoQ̿ϬD@CK`I!~7T#HZDn;.X}dC5MaDP,3j/`Kf?(:sˆ䨾ΠtC6/j96O}+Y&ڪ;\鎊GAھ8 0ta09=NƨHD Jo,Op^`.cƗ}nv3-㠐`"NSMtwe!AAA|ddm*\0+Nxor]f]NK HwHFP4|;ς]5F.g| =2 ۧ-N}0U}P<}p$)i 䭆WN\ oC\JiB#م4mUØ;3Qn͓T0 C<~4&g= |&¯2 {<$r0$_/0 + ўU>nly+3{6[]5R a^l1X}u@3hoAG cJ:HnjޠzzIsڦH*ѐ V'?m?+]:c/.G[w/k>:\/3寕'JN|%Kg! ܱ}{N \mvE~.`.bȄsyO 3t/dJYLV}E*P+I4Ni%.Id\H" x$3_yd"[pFہ"׷u 5lo(a=İ4_|QA" 6o&Ԛ>H^ԦHAI:'S{:m/Vsmn-}igSկàLS k8/<4鱑=w[7, s^`nAvJenD(ÆW R) c'9 j|1@mqTϟx"sȵpK.HǾ'^GvSȠ+R5-8h08葊,U;[4א|D}flFDJEɎOIL wt %eƿ9#M*&d87.k],im,%RbsG%ȉ$]Ԉ\)(g86m& Θ&E)(+Ss} y^A,7+JLȖrdϺ;6"NLOƥK=((iS[8<' N76ҹ< 'Dظ*6qg4/{UGh%Y0ѸK|svPư !GfZ4*PN&%j)vI!@glڬi Fλ&2t#>!JE]^}Ѓd@"7ފS sQX)qV 7$SZK[hVM6oJ*lmZs4?CFOխ*nDA nRLOZDc<0 F[dyRX7 Ց\SqXQh'$N0Kro!.<[bm+ . ˒c(54uȵt@҃,@[ '.SUs>~@BԐvVྔY78lWTE]5Ge-jr334pN+vi1ќs;+T-6.w,=X`>`A#˪21BPzϫ}Tavt2U"uRܜҌ[4y2=`|8w Zv&t< gi!%(Q0g2K!OpWY_nr<ҶU_(Ade՛ռѺO4Kŕ݀ eLyrȎI>/Bm +L׺w}xoX'N@rA"&b5Ȅt.SܐF ʍB<Úwx[X/lΥMnI1FDđ YL5cv:Fҋkl7w7E)4D~xVOXF#m=K=N}Y zaIvf>o<;Ƒ-DoW0LcsU4 }8L8Th(hfr 5#ȜXQ\l%O5+N$7h>9=ʋm|g值ɮ؃yYm!ZF\HL9'2nuo7M٘a Y^@lS@ (xꥒjJp]dSTma9.hξEK&y/rX5L]sB+Hr8td;f`w¡~GNJdgn~EJ2gyG ;xޯmg"(64oÞ丫 _f2 ц GMs[+GJiK"GՉ^_pc^<,_vVef&dte"(|'< VlЦjj,+|GzJ,2UeJˈMIA_J*Mh fƂM<.%縿vZ8DM%SOXL&2KX9ss;!)^B%|r6=hRtKvilѽJ9Zju)i[:Zgń+Y7i'2Lrn./@Ê=+q:W-q"/0IQZK`2(`= uE2MШQQeCGɝd& =~bm >X%f w:c 8&>z+l&֚SXĚ|fh<fz2i'yBmkIύ 'J~PMr3t*8Qgz@^\iVSl,b:oZ의v7 tlpVS8%`8mZ@)k;q#XRƐ3q/}y[/B4Df<$N+שCmaQ/}}1Z;eMƓS*S&t{Mn| ƗQx?Zқ77%(( K%sHtN"ML=[*F7 e]M#"$CgG܌)5ɄLrIv f@i56ŚUxUрhefNJsm>$0R>=鵢ķ-B@?,aKA^v.5_&f|Duٚwu~d|!1}6)4y~GxJcN\f#9 s/|MֵАoդfW},V&KU` g&%+YuV{=dg"ɠٺ(:NkVԦJ^:a8.N볌z QG86رkȦ 4l C]!9 Ӥml3ult Kqx3jeIoqV'˸Ȥ9`1 d\<>7eƆ2ӯ&T>Bc* J?ҎxH PڎAउGn/au|wf6cTY')Ź~߶(Պ'7"W黬Q wÒdY IrfbA# <N$ho\H;=xo2^8.(Qjl@- &U"XW]Cgz(&!N βV DNU!;n˭PYX;!M^M[5)(#N($ LO>ᵿuQMfr҈ʥnveC? iR=cz`m+TV9q3T0,j$.3-rW~ +Jw>>܃-͏޶ ]aqCTզӼvji\i 'ߝD=vj!-I&} 6G9O*"u,p~?7ӻ%%^#tܖka UK OiT&;t U_kp^ @V5󪑻Ź3X3[ FkӺ*H*Fђ2?դxq1Ecw@/L6|7QH[z2|RM*#j([ }͗.^[;ۏ Ï5Ff4sLN0O`AW=8[&溎{`s]2d׷  };*%$ XF@mU&zd`&hAB~a*,݁ *p %Pfg.-˜U,f& \du%"Dءi1;0 $@#q~p..||ׇ3TޯdO蕊؂ȯGv#;'*k̔-LbA&ߦ泅7SUCGanShGJBJ$ILax~h KEuUv?/k+w`n0:uo9|Rn$#R_ `~uyE=ԾWĬWϝ L}絤Վ9btO7'8=ٓkX֋NRy{<5vTtaX5X fcCڐʰ0.hb (xy90p| |q,_!.Pxف7tt&a9W lj\RӃXKTYraj eYRRn׽ *h\s-EJ]8ε.PZwlFr]58;j CQwBoMSz; HgJ ;8NlC1Z7g[Nډ5XJaL~4U:pj|.8i 9NѽI.akiXj|it trjd7Rd.ojc[FK }&2i*50uպ)otfB/mp}x̻ 73݂=G9C^\nUk\r2o갼ĚՔ se?NݫIN_zljgAJrs?1] Sxwi" @o,/~xd!?56j#FxȲFM6Ael;lYڶLx0y;$oNؤwӵ"*Tݣ}d+9q^W#/ Nࡗ#y!iFs=GSz糕pz: p0K4o&ߕ}nCw+Kk /QP 7v;]o d]9Q'jޥk . n}bv#["̷SK; '{XLv^wWk_9]xåj2((s hd,N;Rauஶ.D[EWNg&Py%5$Y"ATrQY;{tӞ r!GC 62NXOǙj_=#Պ/]x{`"C*\1fqgv{?O^ V ΌUʮqA~ţv^ \V<(qv)]Ux^ !s7mIЙ<3ѢH#3hJ~*w5*E1*7^Dn8VĴ3k~E[P$XmBwEܰ}7cv@^G6yEĻ>w~9N|.uLN- \ZB:Tj3;gWr5KЁQtV :ϘapP8GΏԲ&pIe);r!v֡onF_. Q傟סisI-c]T8fu,{}͡6="qpWPjӀdtolmܩI~,$aH+O6#M}!8"$scǽ-bV_4QA}(di4Zǧ$v߱ Ȇ C027Bk?֋pO!XEܲ [k>v{"(0 OXqjFeK*C$}N + "`lK֏AzʼnL.UѺʫ8@NS޸Y gn+?iX'])v+3(0 ݯ8mV#| xN.ÜAF"U d;мz/e h@\q{M-?ԥ؍:Ziۉ&5z#m)ZS%V|#=΂ɎX{&C9Ӣb¢k Is)?8#$h$1,l R\9˸L$եKHI|9}<#EQ\Y#o_c _-k2qYj8bWN]rAwV±N Ǚe魝 _8bljEo v+)nv5޺r&xwoz<|  A xx%+Vea)Z2C,C)jU!zX t>= fm~D<=p4aW;uZ'fdk=zx[-#KIՊf3#'iOh5Ϧr)<҉|Rۺ=y8hx E`tH\(޳dn肋4<ث٢0lU@_G̭:im2kQ!u"1f >kMM~FvKY,IU!71`]K)EQ\$`_1tu$|AI"XI,\ 蠮| 4U@eK>|DQ1ۈQj u8y5r.2;j$d:ߘxsk U}UW͍ΈZ`9tb Kpt-faǘxSrC0ǡ*P/}9a %bzF;/S#ᏂqhfG{2WeI½fŌ{ xj&-I>x<!mR#zl|;g 0TEEaM GU mATbK& y2xVpj"`vi` +UM8NSb:EhLN7h$~}1I V&qhl6hYؿES=<; e22^nA}K )4co"b/;'/CsZڲs T>1pL -ޒ;R!.[?dmFщTvEyזs=UɊqQ^\OX3&M`w%<4aԈ~T:~>Y-OΔ:ǒd-۞ʢ(ww-4-2pAYҼnmq|UrH WKOI6("Cz1PcV3'xYzf۫q^CӢ.?кݑ3eքDf)vW}֐tO $pٖ"f 6n`]x4G*Kp1E#;W(Fmg-²c3Kf G yu7@^mJb_'59uLj0u%$JM*kkseo*BޓsE0:\ehZɲֈ $t ,ݶAM!Rc}H]㈅X(0gf 1 Ͻo"K+*̜[i^TU202[, ț6ΞmNYMZ3j{hIeIiգ^U8rXO2G-Bb lZ);iv)>0@(,mӭavQJLʳMԛrx5Wmi^WڛcpL=v|"=!UCQDi޻^1?*1RvlS6(TEH1;e;i?ta~?MvDlâF3FQ( w AWQE"t Xb׷686zLPeNވg߭羉rBݦ`&]٣,~Ą?rL+R'y#x٩xI}uŇ ciܮ|h yj@i!ufA`iaWJ"g6Bֹ+5mܟh.rL0z / Pv^+͞Fy쩏_$1!{=y1a3;|H!Ij%oHu oK-]fIz5ž&  wA/__b}A:v 8#O>ZA?c g|4pJX tBrFS BQc[Q̳n*7 V?[~۞ Y|ژwv#s1ŒL2x(^c}:FD]9Le>57a1z^gqBh*\L>kSRMf.',p.ECy&sS#LZߖ񬡔PUkZ6iݥ>ɟldj)zLHwO4xѰ~^jBdHk5 f3Ʃ_ D;Yq7dmMP{O'*vC+%)kw>{xa L]XR<0c*D_J'c4DQBd@G;8KtJzثZ(Ƴ @Gvh8G;|-"P I*f$Y5jN-$";ZxQA*[, th||rJ,eC]=ghkօBS5Yj'󃯌WI9u3 pOˋ6XE,Z7N-#wyO0kB_`"ܭw2HԀ#ric K&6^WhN|B&f/`S}/tkV bG=J|YWRT{OzּdM<2"o/w>C>T G٫O[mx(<L25  ]S(mPFb`[, kQz ဒ\ 01|Y,pH -JwV K.2tb6jF8ZM/LtQ:5'(2˖c574 FUN͆A jTbu- 6asS&ePg4ΰR?6Q Kb)u 6O@8 "-jK`JNB9qo'|,z;Pz;iZ~p _T8aĬ+얙Ǒ>@)ܵ=,c[MZ= $m$- 4hB2K*xN2Kޜ\/44hhŌ;,PDYXdΜy!LVxg &I|7Iq#XT7t&]Ga{;o?/enCJ G3~ڼ ەE-NR ,1 4n]pF,v lH\뉖R5-.Y,2ҕ0n>ƺ\z :-OL2(]U4[3ݕ8)ױaO:T·\AJ1͡ yu`Aߒh5/)[3A~@NOc9B5N(ψؓXQ._(4 jh!xPqg%8,rrJ N]c_,z "tg,HXYRi?DpX'' D~+̑՚ȁF}QgoQzY!l;+#WԞ^#DÃo`QEY!IO6g*[+ZOla*^Tk7>ƒ*0 UUxTo å!\K 9糩,3FTr`, i`b$KsLo#, `Np7[)mʢԩ7pvm+*`C?lWc+j CP ^voYŐϏEna6aoq1+[1w d r<«~790X<]Wو4𨴜 LY1cQT7@o<+`\CzDq/7 (y+z䑍7h]|i*߀p:#3oDNи~d<{^KKh,g s-KWB}eP(d6x/4f+Z6^0@NA~L bK3~| ZhwwޱP6nqOu.4i郚CgZZOk'fH0 ,h#~ATASJ'lc#<$5KUՉRg&/gvoCH!l7ʛl?KqPVA킾gL'Ԫ_+ ,KRo(,5HC\*WTA[T$+-oq{8qdpk$2jHWr^7JI)NC*T -ზ'Hn;--'&꿈W+5sWlϡ;z#^ i93Yw!HPD9:lwx|Jp^P%:()DhƋkلdwZjvjŋ[nfZJMqb˙m<GZ=!m=ۙ+9XJWaw`s+ 1 ڣ@lZ!aoj{55 R)ycWA&VY2 ?+RA!0g4MwD%GIuu13?_Ł.'癩MC |boo rSEM%cS :/2 XYg&(e<ϐIޒI5kI߅89,勭O`kV9wE7ٸ2F|;$!^%%7'>Ѕ vY͆MU[ڶ+D yBo4Wxr4FO`6I>NS`  0- 2~X"W4B|M\ǫMG~ZL1@qu ӅcfL,Sl ōc2n/n'^P3^5&aZ)xqDB cPxe^s A):`^=+ B,6]FțDڥt" LO|~zC|Cq^fgKF,A|44V&YW6vWuBZM;]38X?, ͒BF!w hpZ1 oh&\dOZiIyWZ;5)dO5-[lXICY~FDؽq[?˜r74G`O{Iƫx9kxħUY%f[l6>+ٓv#JO3V,E.}L7 ^>^y'*&˝`[0?57Y~B)UkwDl+̹*,,ǢhtU9&4oVU0۴nZ {&\?G>yXMvianqvu٣#ѢDyLWtt0{=hy^egp׉=g[e< y[2MFp ֲc1Lrh:9Y&W-al׮&;,ec)qț!=k;7fM{X`<=!Y^f:2w7(<n H[n{ ,BPx˄!b|~ )o6A"=&mf\RydpRw&0Wcvx=浦%;SH1ؽ|Ds}{]5/N36Gow%b$OsӖUIt-vs1Mdh+lJ3׮\9X2>yV5qq#עjZ$0+[\ְI4DiC̃jK%CnPi (Dn$(KN<.M094{2G%mXCc!Ϫeʮ# QJաY ~j·6h .ZYe^3Ʒ3J2_HVhzbﭬD i\Dbw Y'ȷS w<{? njռ=R=^N`cW|xQ:醬&oj1Gl=jUBvMHӅfDO?-[ ~uNfJi[ח9Jo_X)dz sUȰdf\o  S/L$A"%I(& 0%,?(w~_? T'||Nf81~8&K0~S̩=RQ:[D!F6QZECEC鵉v͝/.|Vr/MB{QY=i8|WQ; ^$Vmj\x*rnsVXhhWχߨ2P@F:Iq1ލ4Z~^Wz#b'}<9J{.c]i.*e|s?TRJтF$ gfY tDzjk h3K|\6ڙI4Ԁ|h%dIӍ2bo|`s7 N5nȝ܃p.޶a$ 0׃>vD!_M X(d 3Ab̵B1+jPg-(!U$m XtPc*$om{~P3]G;Gj#鋍 ֐;*C;>"\9hx=؜" sy3xcuΊwA@_)|D<+ؖ)~EYK=ERi F?D>h`u5=on'^GhτŜ4ވݎ~LӰ(-Ndօ<U`qw 8ƴjTB !ή9dPhsy.44@2΅2R tփr{1?Ц/F~~S\(T#FBRK8(HFc Gƒ|-E s<xΡ̰a`i]xŽPRϒ>2b~gP7ctGеD=7,J7K0#_ S׀=^mdz¸Ve4+SU^m^ױr.2 x# zFtbIBiJb+"#P[C1?N\K| #`C4 ]?gV|z+ | H=<,L#ì2&t0Eb-/ G8x0~Ao.G6:1NԒt:Rk$;׊~.1Mq\a\:yQ@?SpM FfIg‹,πQ<'X:!ȚZzNmpaE31E=*Lg~I۝p-:1OH׭}2_S>0ziqNX㊇\E/iuEmt[2غKF٭4YEӭ' x}[.x,+"DٙhNF3e/#&U#xd/6H s>Y!KG_aPO`(rb/ӧS#\2-[zPo`k~8W臜0irڶHk#sz+'A;Ef$U0vpu15UD\#5:yFl)>4hwZvb=r|j9|Z΢R^sokTGIuoca$刞G1PЇOqGK!D /#>eK:c1via9U%_͈J \&*hC{domYP%Y^~)ſq22r83ζ+)7-yf tƱ4^^3?pHrvSv>ה'kV:9YBcj2{ԠS.Z1 dn9:YG9:!8K7zʮr1FAo-CMˉ:Ae ؀<]h2͸ [w$!F-.\b =&Xskw}ncD5!n__F_[f?q(H5ȅJ3tE#@`u}#77<2<7pEU!6ڡ3 `ZՎvԮA-DۨS>gC -q/kuxHHg!zͩ"q˜4kJaJ6, MSFR*LwsUXpgUg> ̧ :B3ui[{sO=̎W\є5*wa+2~0\&XTR 똧+(ZqQ實we^ RS:̣5l5FO.rU|Pҫ6O'VF[0, ĭvC\1⾼z5(YQ)"~UEp5Mr~@x_NjtJ##?^Sb!][Wc b(XUSY RToVRYv~}@?h}8Ny{ǻDXC>ge`ƨ1@ UdXg0fW;FN%qC7q\²;t˖L8ibvv" C1{hHT78{ԭ+&Z .͜;Ȁ/-!  k d$ܨLJ o PִU%7}M,UbSyBda{xVFiJ1 3/t931&qV_W(Bjh<}>DgL>n Zy,.+d H2>{gSťbvI5UdqՎ@~+ԁs8"-2ij# 7rP6:h5^"HNb 4~ލRnز8} my[)Qo(!>RbUU #*Ys{&~ͬ06N*^L&c /ƚF@PF7Y>dШVx~WP!UjUrz1c}: R2̐cf D˶z8{k/F,OZZL6Dm[t &~Nwgc}l6U{cSsVcL3K)R5#JK- h j, (W0aFP HstE31ZNr@UJB 6QΦ;YIVD~\y|>T>(t rX$G+Q/3tF F KM+{LFo!|!juZ܃M;R?֫B5=Xid?lK1ITb61ʛ>ćf `(p:Rq;WQ|Lܜ@8Tt@>9uI> `ӦZU<Ks25ͤǙvbbҚ!^CXlB\)o|l>ү@:t~lP o+H{)>ʻ<[˼(R9| /$ܦ|P"P.cf)ۃ@*˛Yq~<כWEPSև5 Ӳq -{XPM%{8#?B״ ?׮ưYspk۸t>,FFk^հu`zv5.Wo5"' k *y4^Ҭ6OU ͬq.⧇qyI1ږF@jN>l k Sbص 9hʶ0C^yZ ZsnNjpӪ<܅Qɗ}sV;xThs+LQNIύ)8C@YD(H횄c6BX84oNKTe  ˀ 5uB\&dpbS)Ą-G~UrcP4'[ ,H?pN mx_օ߉ }.fJVi.@^,+;] o6'綹.-|<סTcs lw"^նoic`;-`j( ,*Z k=CwH>KUh-ZL{-#};(}L<;U֨nǒ@IBBܤ T/{z]*6~qk>k℥|/x}Hs m =2Ts}'NLhIu$-А1ԖcwRf7=>3I~O0MLN>)& 7& 5?Ii)$bK-i`4i-8NN#5JᄙbcS)D2g|Am%L$hUb17L4 Jaׅb&UU'HuuN3Q/iDtZ|VX4,-@sq3ݒ8a6 6d5>&EB-P 8Q:CKV;;6j T$vnk n b:4'MJvuvJc.Y0&W-)>.7Govh`t{{7)tJUwx2q&iE̗yrm0z˕ |!A/G\T+x$ "hUsAG=OArB.y7g8PW<`1-,CAqIId #' pjWh!Ÿ\3*yA\Ҫi{ +~Z}nV=b0&KD 9sZӎ@i~L|+t4 ˳iVL!vNN[͘rSxa⟶ynYv%;'I pr#B"8@`_ĀMf N$j+ԏgz h+`z/&F#%t֛mgxyȑrCǣju9`Oe6}P8 6DTn档!I;#kb+Bmx+ *NA"1(HQfCRFI| c,Xk&{[H(̂2&rmY /.3rSߙ⊉|j)ib4 󯫫~#mH5E>Ά3eTM==.&S (nDGK/&sTF5ڴuY_8s،w"Fa&6Z/rއ`FXZ&evna*82f̓DWIe$RuYOff9mLW$xv9 zpzwK+nKI6`O7Y}aOBmc[Rwi݃H2[us+G*vX.$;,sF{"MvF0zOo#hwƪD?9rJbp_7.f7tdnkίݓTmA$wɋQePߨRUy{U%J?qGm0ʠ; '52o|OQ> 姬F!p$ߪg^ 1M$njXv$yCd"ʏ4\w\Cێ 'UqZy.zDi`pCYAkMD|5T;fS۱SJ[>;{r#qᔅ}r3-Aez]=La(U,jmV%'*פwfsHbv/ ?5MlM$W;8,KU.6{TN*}&k^Ls֝ғ#xzsi[U|f?MxxG:,Y#_運nW@J0&☶&J!s&QlR}usWOsL"0 V/!?ɶ ټ NP%x^J1R OOhA/Di%KyR([]d< = [N9mĸLP}p۳0 G9*$;% sA;v#lC2v5TU/;DRt7]9 "UTjl2m82xWYd ilR~%·Yy9!YBKdGf-%v]GMN)!a挆k Z}M0S5L Py8[* S/K'~(?cxhBm>=z5&. Z_<_ hL=bnfI&TR*vՖ30cȨ~TZ_MqL1GF]a¿e<uFt3T=Mg rKgs<+>(ߌW>XiAȃH)K(pi 'r˓ Ya>bgҸ߆+k $M uZHu-˕59{$&`h$34}˹sz-ZzնWY=.- tŗ4,GVcy6THSLC:A~ծx>.nCr>1.=bFXrN3еOrlP E'%Wd̄OBz4_bg95lgGPê"5wSl I,-vZ2UO o3+,L"*?ObPW9^Ӡ P%0"wĩYȼM\Eַ.y`җhxw*~ㅘl i":}}ݮ6c_!d8BxDyXҀɯM5ꥧ< Ųgg˦R"Rm5A@WxpT^8 Oae[>Eq-=C ;c7\묏pkevXт)σVSvDw!|zH]'P _DcXg. (3˿!iV ?9qJfxPX̮BRNTF r ~87{ʙ!uᜌm e~~mG~TK"[,yjRY1~a6lkW e2 ̓YsKgENY24Kcp=:NEũZ=bbL 塯34epha?Ʈ@-;^#@fJ z6eӰPoyB]_^?[+J ,CڢS}Z] b-fMb=rMmGn4 Z]Ƚ4Ь%_`#BR M svX{=Xo9YdNͧP؉DKalFOQyxpJW7=nrrҾ/Fl`Ӭa+r kr)oلt rO_mnl'Ыr; `'9! /Љ͓ǗdJx<ɉ!m-B H[Iב>&ј7TT3M%b)]:lA,f6\%>ʻkPI;֛ ڲ{ݓ˱W Cx 1,yI=aus4~ɠ?С5g@V ,MXC g5].褎4V?Ķ%@AAB\{˪*bŁQxLj_=Tx:yո`]d!eXJYU lti]FC+@NJ~ZFΟBw4=xi2Iw!C3>.4< 'z-k浼k l o˜ ְ!A(~c̮u(zra U|3{g%kz2*Xd.Sﳛ8,gn:P3 /#esxi=TbLS엝!4W,{B'yH1SlĀLT/Փk1+Ȳ鬳K%_@gF*ab<;6vYbu IUت9k_ڔD# (v mzVP3y@3PqRZk{D2%)z"$cv #m˓ޥ&=QDk+CEHKs-ngwOH& s썒N˅3v RCo9|y'T.&_ P˼[kS&鸈"(qfLhK_cr1hF&AQT%NJDG@˚hYx}pwи99$G%/s62H2AizڅEYlto:ݯ]~:d"Q{s!e:ͱ7:OX M!^5{N|9C!{y,VC,?&]4gㆨ yu"_m= QW6l@Bw.$6!ZXz 1& ~:E҄fwN)~Ī>GsU'+a$7^ }T5R1q2,XHuFT `EnAdu-iі %g~77~ ! WDc(澸XqN pN|mV}}T$ܸq@5WhĖUH~rK Yo_ӧz>_ˏүh(vFue NHr _S9:1%a/IQz-ŦX3 2Nz126IlJ @iWg' }C|-S J,t0CK>* 8zGCʜk-VBa 'iHuPTwr ĽkOSؽ < Ri*12!&t83ЙfQHf"a}\?i߃V#j`D[֎.j;}"h|d(:IY\i]p%j'+r1_oIOŏ d >dR ~t:5/ՐsS}p^{$, ~JC<Ʉ/%LM3|t`v,6My8dQav7]6H]N0olQڧz°vOl**נ71bQlA'}X a53^!`Dra?d]RUJCjt^9f19%9Fq 6Dm5es2M*F)@F'V۩MFVEUV3-̞nq c׷\8mw44=O([RcXTdXw(p{`bhpu堑h_,cxz:{syedj 5]Zygb-%ch[?*/; ﺥAHwGKJ7`~9*3#E^䌧’5W}<[ )x&`h¸K,/dB {'\p ^tfi£W&߅%Mp)kA:rB*Xei,DSÜ)[81gzolf`liF<17H:CU\ Jd5,6!ԚߪUǿTwZT 5 ~s=tt\w+^6Fքԟ }>;4Ֆ8 ЮcOrL 7F鵥Hg٩LKVkvĪ `rF^{HmpՒ2aR+*Edf 8+YO̔X؋=]RQH7*]gbZZnQ9hg׵Vp -OA0TiE=ܑ[*jX<XgŃ r ZE1/?E7}V[xTk'i+f?|Ǡ^q`)^&дg/P5Q1ަm7UК8JZ`:eɾ~z2yCU}kY ؜8Kqq ,~rEs~揸ۢ/bI0%'njƶyy` S6TbP0yBTV6I7y*Sɘē.~gK/th3ìҿ@L/L==^Q+Mh@|"|]n ;%"P+e/Ip%(s?KՆr*DHaHPQ i-xz{z{;}X04 :U}Cs+(sNZx\f@ C?+prP Ee9TKrt jROz*2ۥ^A.Pmk[ASFb $𜇨-JQ"+>b_cnvFmi,7v"2AH橥ּ -/#ʩ2ޭ; lSBGJPRD S$s$I?MQʖ"AkFfJ|x8i +@˧'})Y5wɏIJ5fLGF LDNLeNgbc1©O1,w|ȫjՏ25Chɭ#Ev['WT46Ykۋ/uʐ5awpt1;h)N5HXo3zvp8 E2F N$` _"&o URS"|/)&|#ed´Ψ,g(888* 4%"YWAp17ǽ $&X0p1pΚÆMIlp-AeͰuesڲ2/IM5!ZӸ9ω9(3U% 3cx#:vE9 ;rRtHJUWƧ]eiڍtKǬv( 4[.2^R22h2a9"2gM_Jȣ_o0穦IGi2Sf푋G^em _Hy/x.-Ldcx]bTѴ?o<3`yaq=5ǜK]qs%89˓!R6DVFt^_)z ˁ)ӂy\p5aΜ8-AX CMZ xs1ʝu,a UEB'-k$#J s:`OUd޸"`^3!l+_&i7l6CVNY)!4PND:{:}k:J MSmC CNn"< ,w*Y B AY'#*ͪse+^ <.hx0L- ]ݹ L+[q*Hp"6Ĭ$[D%)ڂOE~d:zd{:<K.t=-EEb /:K#ARu={^K,]7)eV:eP/)j>thYN4^| 4SC7Xb'.8!$SHEY !׭#;5Uws sڞ[һN^} DHàL7#+-j6ή1;}20ըO \4Y|>m.TRuI &`"vkk._/O|6J~*~iwCE(L3o7:# /G!P\^ecþӳ>mt%/ˎe|ԥkr9v+fź%ܪk ^Ԅ[B$VO5(!h@U(Rངśɭtƶ4+&gs ssB"y3h:X%/j'VЕ30i6㢟t^LcS _n8 :&ǚ{ G~)E"ڲg zt u=zS~&SL[H[3׷(nbC3.D)s(f8 G\f(+p]T$K_l ~!\sTRwf"!=3f*l8lh q䞄93J6A;9sf\ZĹ%9ZR/G>$i 3JKS4S}D+*n`ǨQi'r3E b2/۪+eQYrq| MEz6WM7 dYgįS:P:IjDa\ao aN'h)!'9m;MACq B8NZwYl vdfI'ЂW&՚ʯ:O^$PBBnD;Ի?W?Rg\}Vw\O(BVB螆n e\1/ =}s~]X fra׏B:k)QEn>ڃ0 *Em&6(6fwa 4k@k 7 r3j&.j4ȉEzPDɻxQ r[s)wJhɱCE!:x Syddؐt XzU= ǡ^tbmE 0yDLzqavRe8]uO_?F3nhE7peҍTFׂQ@ٌ%;DZTa1_cN%eGswYvg _wg eZB߄r2 iW) derA"*WMz;Z 4!IDzsw-ɛj2:P(]T%& ^_ wʻ软h^qW_4e.<سSŅ(RNCh0嗔x&q~n"K0fxaw~J7{5kF7,Vgtd(_4zfLvVMLI}BA㝞|lyKȵ.޾ދn"~徱:r?#bOT:R)rMM']gB)w04? nڪy0yw:ۘJlpK@\]n*o_'>6?>$\q1~DCY~ ܅Q mOcjNT4xk Y]kN\_Ip-`(-S$<s'@hϏO2zbsdnL-7 @+"a._xh2Ox;m B][^W Ƅ:Z˸x?Au!ou1~w^9Vjx#O"rE̋71E`?X"W] tlo\K b1*|4$Y.VԠv(PqD >NĽǨ;lXL9Lcj 8<7KHT Rm TUVѰP+x-uM4ɵcفdZse^6lm=ApETe". 2n~qPSǜY&vû<"PytJ]j Ҵ1z$k핮DX @Y4exvr!zLco9UkUv1iieڻe*.$Csw fLg#e [/(EX>TA3#bU2qS~*kl2^կZH) N)Xba,/pe1`<*V}hf/гޝzc/+U:qn~.y@opZ~ ҝA C`wvwNuaBju8VqNݤnX\Ra gW 7KD35eti$b_45W#1swimtZ72\e,PWj `U`/(n+_n6)P$QOMKɇCQIS$pTaJâψ9e ߼nO|t)5::0:}e_ْHXy!aFAF0F^puI5]7dmTm^:amrl`h ȼUKr8I8F{Q$eC[ڶ߱ApUZRsH*$Ձ@v+SH0< l\"An˅7|I R~՟j{.?5K",ӤQxYO`\ab/ Ⱦ@堁M/2D2MktLw5zrĨ;PĶ?/qK~:VˏB4isMx"^>%+vvVxalӋ 1^faT!yVՂ' +0I"Jgv ʑOل5DM/vQ^z(ds*`H"DD_rKݜ)s̭I$'#jmBWB;~ "lݴ^YB+Z@Ưu%p(qdt%k kUۛq+W_%_j dтx%Lj.7[x;CԣAl# "ve*$ޞds C}LYՙpR1u_xl8KhAy̘F!*Z}A1c:Z_?Tؖ$Yfބ-{>lyׇak-9:kpVTL^qFpwb':pE$C+j-Zh PI%DșrLz=m G)i?~,)GV/ɑ @Ɔ9sO+k7FSO[_[a?$;~d=vXg^살cnc~Iڔjitt 7+KNüQmd\H`}"Z nY~.^ \1[.ú;9-.jk#Ǵt^ZޒB 93c=vv3,~$3v͸cC'Q bsLJ2/8E~Le6+"\/Q^z՞7JWJ缚\whىOWJ>&c‘~:* ]9VAfސ=MvciR-uq~oc_ܙMfy<(><냤鿳.,˳JOoUHUDL'Oa< 0˛D4F?J9LKxlE}|! cRQZ 1)H`#Asp3)Kv],D;6CR(ɺŝ3$T\Br- gډ?z'7 ~isHPp~(MX*DǀEu >ATq~ hobUjSZl7Gxxϻڼq]?w[i%׼YkN`zVNgTbcU=X1Aw@ոo'M bȗRѹn+W RvZ.6#Էb+z5VpH+SRk&g^Ւ5QfʼqWD ow50 y[/\8O:wdXAi\%|r(Ӧ17U7lo Ŏ'^xE9ʄC(!.svTX1FtlMZp .DvAI<:7 3rJ?Ay TYZ܉Н)B\ 5@+ ,}o@%N_n-󭫂M8i'*o^*%|^AM<=9DŽ] ^`48梃prT嶄o0! 5vJȬZϔj 8'=WJatv}Cn*U3zU›O^p͏KVBIt݈7cvGUNEI=ĺ-6!wm PuNH"M;lg2-F8@|5X7Au'Y=&^9k+Iouҡ .qCJ9%Np<%Ή5Ř,0cIy\K0B4! j  H#dBNV+ޢ|m9O+F a'>i[ӭ Hn\rOKgX:C\)7hdA1ҫ.dZ= MV+捇+)@s/,je"FTD5GCh6qy&]`:|QխDYhZoU6BڙUe')<w':7e ZKt8tothXWMNtF9;y1V/Tهzy_Zۉ]x">b0}}f]"(g|+VrUbm@#/~ Jm|2W٧7h]<i ҚyUpߐD(;^a mS#3M_#ρ]5YTdrA%xEY v԰rP⹅o'oыm;?p_ۇԑ^[*TY.{Lǥb?0iKYTo9\ p̅ pYk9>e ˀ`GUm۩f+GaU+'TY^Ǽx=w}Ukx]=jݑ7ۯOިkG8dxi,E bps(ïܓuf+)0w"B FH!* LJV!X;IȂFCX]PSW>AN4븕xч`6TvO$(G4B_H:EOg &%'nEKk7Q_]hP)wzJ`ZP2qTU-|$3ky,J6N;ڗ)whәo xt|>N-"Uh";seoҚܖ1gٝ3nÞH0F '_.6_M/ʁ(A7)I[%] Jmy)}X 넋u*^_?Hvs9ЌU$M\L&PB~£5Dl"l5i$8*pxzovεl6!'|շneS*CM7Єp/@s{ಖ ^~gյ8h` <Nn6 Da)F^_-df-nV cFxzYXR9 uU;&{) )57aTb`=L3>2&ڈHJC CE|aAql*"lleY .Z,`KF ,@7gK|}jm={IV*|v^D>Q 'm 雎92mkm|'}:A8Xh1}w_q|uj}Q[vXƗyǩ#:IcqR^qXˈrbKXo;z#N2!0י}qi9Pǟ)c)X<! n?= ٰ\!pfAժU.s*e_?8Efu˷fc sgsa LJ"E9Y)T&lqLO @88.a'n5p()4+V_ĜeDa㝙ǵΌ8ZasD$큨6| ܍@9^9IiiS C"]H):A.=I{pTP> Ha=W6dh3slKzBe- \Ԓ6j4rٟf:QwoSc_3Ƣ[ǷcMa-j:7Kڰ -KpC8G:P& yy=Վb.v,2WGi%.FuoUɖM7{NLүwf_3ppC@8; [%^v_lgmBkXRBOeH)ރ~kꆵH]wU{mèfBpDҶɛc- '!"|gdۊefǘPާ;/a<ա#z2QeUW-fBR-"үrXke"U?O[; 5n8 %Grkˁ iqʙN"ݞz&T)&qn#*fFf9'h5n"iY:QQ̕lEWΰNvҼbtGGGݕ*rXoÕ=ڔQmay5(y}z/.]aSPuI, AH1xc! ʩO%ٳgO(&5<lv?MyM\4͛ߑzk"='jˇGvC&XH9CE=;~MvGAikj=0ysZrVI0Yj,ip`yVFfZ)1 ZTJq:,+4dnԌH:|֪k?ʳ[3ZkM;ɗVi9y޽ 3~ް4n#M AVۜt2* f=17*}mÞ"Knɦ #Y=ж,w.I1'BJFëf&C",ny`SL#$nPT~!ç*a/2 sA[$,Eo᷸u JL"<פ^vb $5&¦@*6V*D%Y-llp^͕%Ӱ__N@ =}5`pm&2 A^AYJ lƣ5u10YƏ3t?q951$s'kRu*oA2lbhFgGVgEB>G!ډ1Sva; 8M8ě'4{L@>9_ Q |@` $<~slg*xL1K}MYIi U&bC.51mex뫽+ޖ-'JE4FՒ@(o?ٴ}h؏qL:6A, aѕUSHtCgz .p=.ռtaSex`G*J15wU.R"5@7$tG_dP\ M8lxsTT4-;oV f]OWf.7=,?:1\(Zu{z-Ld Уyb ڳ>c1.#gȉݫ-V@H="D%<\V|U/rݿZFgEwPNj(:4ΖR $QdP/ $L9"@ĊQOGehxN~o l' ٦86\Hρ:y>n)bD7%s#^ykn<#]VT E$ yMݙ~*Gm=Usެ>ԩvbRKZC$g ,f˃rUK,_IkgSA El恤Ӷp%;{lNMW'b뚍35(#w r:ˉe:ꡀY&gة0y"{L:UɪŅhUFaybU|NVxm LhqN!vG0|Kv~z7NzM/[^_pmb;n}+KcW~=->\v/}(nkO0M/0?u_X=2Pq.u j$0oYF5劳tZ〄LxlN& Z.RhM^-PRl`)9DfKf$Lw!gX wm$?5c7A?,6X i-ŸeAjP|}ww>@Bn!\OXbvk72q㯊Cvn\ xiHǐ.R6 q26<?|b &I pE 0ZzoeB˜*Y"~ph@Mb0V!3RT˾nJ,tp9{X N]ԃ[C-}hpsյvD|"?ԽĦb 80~y t#cLc|flɡ"+y' R_g( N40#E0|\ɭmV-IM{;^۸5:V`Vsǖ7mwAippjV {uNm0ij,݄5R$Լ$՗j]6_ %#)ݛh,["j-p"yQ>55̰fZEg8[gKU8GS5DI,-x ODޜձt|+(o},bOZw^h&bfLS$s},y[d5DGwU+{aܣy.17$E{$ʿv[+o6hG!^T*e 3@;=&# Mv,~,l{,]ė`V':n[M/#򘽌ҁ?.3m?&Aض[wЗ564`) a)8p~e;&i3"9;HiيP=M$tX0$JŘmWV1KW7|KcS=$kOȣO1_sn\ ڻX{ 2RZn?YKu7ꦜ]s*"؅X};^5 ^ Q3}U͕H),7w@^h$t<6ah@Wb\3 D|5zD=ݒ*F31YPιzHb ~&DEs*Oj;q+%C^Eh߭iL.yrR: rON2V#3pVl@W X[["Y|p0E%V Vje0~PlߠÂ51pѪ\Z3q%|jKH.(-$ƺ |@+ԃG5ɣȬJZdž1# CĤW\߸!(6V?%ZU$);)Xs$J|jFϾ@9^a;#e1LJ}Jyt%J&@(1D9p3<db/rRiFCJVf& Cg'Ou17z'p2V@[Oؽ(??%MUY,խ ʀIh!+ub=Y| Q7Ոu[6}jbIF,j3mLP'0e.5L֜(cuC|EkANI .v^l'0!BBx ֠9=k-an@yP%Cw -zz^P0j*PQsڟ\|p "(f G8:j^?w4mLyZkRH -gb(2xe1=+fn>3#oZ_ΓJNTUì]DCスz{1ԡZOq/Aߢ $];L܇CYKCFWMUK{0/F ^iRF%돺Ǿ1ޅ"~~褯_IȒ?e@>`p΢F,^0~/!å7lJ4OvzPC`Ԣa2z5ȎGq)f} e߳Jd+V< nVTV|$ b68&-XN}J [bE~6f7 51Ko Mו`[]K?i/V_m&8ti FQ"O<7H=" y^+!frܹk6c3i2Sq GJa/;ivz<;%bfPyn'^as sϪ!3FsT#ѷYbڑ=ҦCcLq gAbw5lo>;3,8Ku+JDlACˤė~w<͎aGm1 Qi]vf)@BmkI /<:`T-a{7H:Vb,!1=+ՂG.&/?3vʛ5XƂӹWܦ\ (@:HӇ-ӺpHۄըq k!.`F} %6qWk@IA| 9"|s(Ki|igԉ?H .(6hPGܝ_R@G$-YAZd̚C5|;9Nw̦G$PhQ(S$_'J+L2[R-x7B,z f{iK{s-V|Ai} i+G86){ik>;d: S9RN)$"gP%E'0txzs+ 7-K)c ސ)]=Gl*nqcDZuיm=Հ{7#Tb>v~umF4^Yg ,bkY-0qjp5jaR0DJ:U+7i[4reB7BAPx'>Y3RB[(O!*?]fQhD>ϖ\cG%#I}R)Q D .צµ Jx\dAN$aۖk ]E$D: E$q1-*T k(Źnk:,`VqT1˼n*԰qgAAFOB@9P,nkuΟp>}`w='Zd$d rBwjW)TXFVleâ ʟg? SBB+.r!n>XiFW#z,Fx7rz4񥗍 ,aɊFeTQ|\<mV&owj:SI98oqn }m?Չ>g`({ϕ!5@ }S,k<ΙMA 9DRbvDB KEҔu(2%t4Q 'j3+ ZpR:nJFY4D k S˄]/,']أED;B_cyKwYVxlگwua鷨ft 4GR`3]=L=Pn . WY GV%3?*0io?Zrt^GӪnV;=cV:Lr2>l tEPWEهG6*MEak!ۭMA앱[uE;;e/B`4} I<oa>W8zKiQKQ6@D9vo~8C4*ZB-vE C:_`I4Ļ.Oe!'cPԾX` y8m!ҘZi^ w+3H#G :{6GK FH?tm(IL}dy1.UBfmA55n)/|bndl`\Aim|ǔ*U(Ÿ_,1G8 zZKPl4Xlzlb>_Loqstɦ҂C Gc{yR!4?-ܞ J|Lr"Ж.Τ,zcGx>?( D,.c pÎ m9^|Bza@ȗ`0pkF,)X,J72"V\S>ʇ.e॔-w5Ro{^`m"LG }(ȫo Dd2[z Ӑڹ+y;ÈGo"uF~F#[KQХmLV8{ 1[?cqhe݆;jJ76, PHnڑިGoyt*$qҺ\90"w/BgE_9tnJFsYP=dnv" RvMOS]n#1C4H(0X"3-\&F~4;>#ʗ1Um,`afc*ol;բYYQY_ڟ&n<;h~ֈkS/t6_{[|.։<;ZZi {EoHtqØрߘhQGǻJ9oٶK5@r,DtVn`Co,WL.3lJ< ^^;"o ^dp.5owQwt$VߍM5-S^U=[) 0 -?#%;MbePE(DfY'Jlj얜 4_|wa; 9&c,c0Î=A5Զ"h|420YO)- :/Q=hsZӵR|Ulbf{K1]N{5m]o &Y陌DH.)i $'0WU6GHJHba{BcMmTNﳣFjVij}NcgxN[+09Cr`1T"G[ڼ53O@en[6;Mū (nߗx,]q k דS8eus ;Njy]j1DrA;+6s QAjW@t bMWY瑦r xXK$`~N6 ΣRG#NqWF2U Yvc֨[Yd󕙶oLl`$ Aᑯ5$HoU-idk+< PZNWh\F4R_m iGuyaq^xp׈h)rےm[ыIR#킉.5BiW S|4 N?v4Ǎ~NdxN^z> bWov!𱟺H="z$UJ9EELrpH(ȑ㤐VUڭWGx跇_$*PݱE--#%.+fw(z`>NMaQi\ %IƲ(Z59wQZ xLEPgҹX 4LZQvYJEhhCGnӳ|l W/`1SQ7[ ^ԖOr}-ZE)c&u(u-=F* k׏(r_:p(kwo՚4yO!j6iM6oO~h5N°+m2 g+ U5Ǚ丈>*D_J'bgwy|0j̹L@|\ݱpG6"bիVp˹7\$B?6ҏd4$*`dJz 7u(?RcTA,}➜ZJ\N?Nkl>FW$Q˂&4td8p8stkZ_rI, ^nԝIE %gh#P z3+bb7@Yս%  *SZ2\ Vx*k8lqhDjra>DҚ=v&@DŵxڇnEM)xGa|Ėw&+B}a=~AcCT ˣ^~CK#,$;5bwUK ǰU\ţxI!t  b[VMi Ʒd3}#k%?HS/eXw'[j\U)iVّkH龍E1x1=î) ¢ŽzA؃S=DXR;eSDZqfo$P*Lqg#Pܔ#|resCz8Cn"&;Lۡ)xTs\.o2/"9ͻsOydr_jZF7O#OT1@^C5* |}0 i#tTNYAa)d<.KܸRttKq)/\w-F#wH6c|^4KU22_0=WWeo.lҨk$zb@ Dò%pœ'M3Q5Ӻ.3)FYӴdɧmw^FиnKnc+h{K2?0܈?ǀfy%ֿPl1Gu*`ŀ,|Ġ: Ę|3mww:sp&v(\[z J&d̉ͰV=m9K$Z_t;9S&V||`p i{ 1Z;X1~=.6LX+޹K\dU2P~,+Eg>E63 R(O)Wc`Xr(Ulpi+)W_g2[OQZ;`c0,EY f6kUնU.n]͛Pצ4RKrQIX<}֗YR3䧉44 Aoּ KMUѢUt?]v Gp3ni?qpG+K|Ĉ{d}nµTP2 ,DCBWD :NOy+ҝ=g]8L+ #MWq%{U^i>ԐYx8Upo\]6I 5FRYchԻzSiZSz1r`bb&-<̀>A*h{e|bb3YSk>Kڭ@9$i++a=&k:])/6P*"_@ƳK=g#`Wj=\/u4BUFN鏨9ۤayh( ^ Ii/Ss^KiNF@ [K_R.U^vG ,nIQj#DqG\P 'JE鏰 ͑N-W8;lF!X?rmDMQ=RFԏ!MœyR%\TBp^F-҄;cr.?`:y\4lHӅH.L6 ܺ=]h9`nVu%es䓝''X9R5&ϤW>/*ELy[g"#2耼0ue23ŗj-Elߓ ]p4`g`BVN"Cd7{PڜS4LEr?-4c׾wO=*{]8R<s &{?{KͣuI' sX"qD[ǒm"h׷CboA[Z%(fRiFB8s{ަb .ed)ڽqatuR_m q,m)Y{ط*V<%9Fn# i&eZ3okJ,ô΄:!fƷChDWe*XKp\E"T1vE\,R d=-Ae @5=\HAN(ͣTKPLѫHrm3tfG{iزbu1 RԟoxY7x/4~I߂Qx7voXX._閼s|fIS z{")QccZJUİ. s6J1 Y,}t@vP=j')@0M$Fr'z }@~•`ɷ`h/%nzNwC%DiB 8Ί?NLRkHixL4G$ L#ܰ Lb}p fm@6'9M: YQ6QGQ4Z+0lVh-PpۼGknN#J$-q \Fs ܆E?tXTw++Gnlx90PןNNCP-/!Ĥ" hVYl]ciKhJjVjJҟMz8n 9ˢ*]=kNΩUT;MJFGKS iNVZW r)poſmhOaL w>ry?|9aAY5RP4˖pX=gٷk0ϕg{u*v[JqdU{-MG WŽ[ЎtVUQ+#m=?gsejck<= o!B`WE8 Բ pL/z)}y]N͏4^ 9!LJ]OdD܆Sx;tB)*~\gԢl1hJinPGnje<\yZ~CyI6`l(g*ul+ Țvqj86$XuwzziѝrȪ5tmCǞtQyu\EhlD= d&ǟfuS_R]Mڮ #ϏU7LFcA #:/o=-nxަ# ֙4UA|)V4{ ͣdۥzz26]E\߲\1}b3ŏd^Nf#`)ʩ~v f|ukbx2`KTO} k!(P[ER73KcLpouH?[NbrXUE{{ۭ\B(bI_";P6Lm=u#f&\xr{޸`? 9ܓ(n$pjQEa1j XXey#1|p. [Sv Ns=}eP֌9ϥZi2Ϣ~`+Gw3]?Ku:~%q#7T/LGJ$6c2\XHgߺ|+It 5l^.B2F[L|?gNܲƬ/VU2_X:L;a= W)8m%$qe?} ޻6 EQ"<g$+8ǁ}+vc@"d[?Uˎ h4ޑ*X0TQe]3MiN~ehCD~ݲ54}6X=Ͷ:ד268`6_^k׮:2akҼL"t4c,8ɟΡ#6m`IwcTwkf+]+C Rg9sК&s8+X-@|:]tJi>cZ~3+ru(ًbG{ϔKjT9 fap3ѩ6 ښЪ*hB(k\Oz@7`@r[XZ4{vCƣ"_%1EyIoJR#y oxuDI7djA-A@jt^q<Kj3>-+6vazлFjOy?eW*X1Y:UdĠNEryt]0;@\f04p֛.hcZiK {yϻY5޲6$[`Y]ehh#Y:=.1UO!4I"I|(ۦIZj~o[ 7L9Hh \ӎ\ Ⱥ2 R_9x1e]M݃ -,dKw憿nտnC:N9^)ܹ++ÄK*@"!xn?4%vȭp PZ@j5зbǙxdk Z'BD",YOМ+Ns"=r('ktfjaXu'q=_1> p'4Q) e]XSXtZ-J6oC3E>d'@tq{HhcRw7F`v)5,EB4PKדh-9?|D^8 9%zX~ 2Ec`p U!23m@XFTTJO2C3/D(ИG,+6MP%/0.UpBwlp&rM'TTU ̫:Kͽke/w֓#xgYR|Qq=S &UOlfnjuơre?;]&`R'Il 75KmRPXKjR+t,+obF_1:@Ys*hl~9s~ /xB@ Wղ1U6A7 Lf[ώɅR$m!Ky|H?%N;7c]?/S0^+ށHthTƏh%u4A?x(yO_.KRF+j; ȣԘ'Hnv0+,DtЖt3=8JE(L#~ј[48DBi,$u>r0Y%!kt",=ċ1 OiL(0\]̂n#I1,Jo ;;!'@776aN] R]18͐Oiij.77Ť/n0n>qYCj/sbbgyfC9%oCC867d\yDDۂ't\{gߠ3CpEX눰IZJ?EcV[*b\X ? Ln%}JסVJ!) Q#tcO 6QEw!fkG(d+vMUiۑA:59ONB8 t=IQIoU|'lwJoVO1ud8Auv1]bx"& NYevq>evN#t(;#;kdSY4an[!]%#^*r\5o- ٯs;kK2D>vqMEK>Oܾ,HaIYdi>%_ ҹOo!!TׁZqKc٫ea4o;;'aU}}n4!R (南ǀJ sOΚE&=HΡ;x}:UNB8̍> [!TW \>-2X|2FNZ`B~QӰ g?N&S2# zf CR%Ёt83PQbIH.DN;ʬ-UmȨhQ18= !f׏uv;&產fbIҾVGdl9C%m|<Xs[ [꤮ޭ:)H< rvb>ZbT}QoWL!\P̳aҾVT #!\U 0dc x^gUvlrKv98Ccu>SV][P2M aUd|c\l(T{͗Ivv "Q {MxdBjn{~1Kr"ܛ=!ԯ x]xjtTw]СҌ#Dk}~&+0Uv|g4xd$k}ܛm7.<'#U4i?Nݧ6&~mil'ൃ±JvhNo+N$UprA}}z1`X_i 0U V/ M&BP*V{!WR $r@ڙN|g,$H_ Nwe$`We m4" Ũ} Lh>|(nbDu%a8g>fq L@mgE;,:&݄ECTiG"L4-k s1 ෹ ݘmuBh)0oaOP'?QczžmUȑrBuN鄛 bzoKfus{nL<>+q fŸYQ^ g'di'"Gk3SMZJ4ݻ 3LǁEMSXLG5U?bψ'zb=z\f p!XC^p{DW#$qVԈ` ƒ \ґ}Q*bdB))ڮrPq7."꿒b;D×ݳ}YYZUua %ƻ^nO阃1~BJ6U) 3XX 7tC 2hثdB *T08KmzSøeoe1Hl)Eyw>&h3(5Uu^@nfbVC~._LScl3&xW!)l:]2D}ZUxX0=?JԴg! ;{(;Aké!kέ['!ӜeVs4m4= >Essh )lM\C 'žD5V2tѫc"9pu&+kp131_pjgz^>|yȔSY|*0Y Iʅue쯞"́vcvFƜ>#?$Nؖ!a- @6Whhzb4T]JI:BnPgqKZI]͞G. xζC|3.jog۬/v9~҉ FZf~0nIsr4c82I: \xD)&^z]"@,2ƫъŪWeoB:ORqFI gaL<4u4VߓK'Qk5JL^qTgM0( ݫۆR%> 1 f_b( 8<3i,8&6thQ[-.=kechdw={wLJ c߲\6{wK^DAݾUV-(r5OxjE!%ɛ-0NW͌!h^طn':~C}??猆 ʁ,^XjKl;+JLHǤH5Lu>'uq5n2X 0=Oe #@"gs*:4v̸I^U5#t?="kX*.: 1F[3Vnbwcj o({xy46Lo\I!Qh;KNU=`z:D'w-NPULw bm5btnfMKq8"D&f'< ZzZntvz?o< Zc٥Ѡt5dIV~lX:՜uuFͩ1S \|q'"{d8֥)fp&u&;rYAY%_}梢ق&^wH>tWdaO$/4 Úp*JpO$X?5u竚r؆^y:7@v|wՂ$ܩZw>X[m!Kϛܘ34Q+Pu;'cyɋs#%׫_:.et& ra{cY2XgQ) *Ϯf6^ RS}35 <UX|䜲lE 0ت8;s{k ?i^Θ"j b9]To~Q&O*5LmB!=MwP]El×&]H &oFM2&"R-膢Y QC>LHoӊCmU#,! sVwӋ+U"vY٫iNuG_/xAwO2ڿrIfN%CBcuvuif</&~f![nyl%WFD0pHSɴjK⣞OK5\x0*͑yXDԡ^oH8lC6gWT6(Rd8T>R HqLFؙ#W*}sc 0jǒVx nr_BgM xsC|D]0&ǸF!tPXQ0 7S(8Xt[qCx >5-"Ve兖\8[S/SF I(XƦ%IE:]L4*em~Yd[S-NeJ1.hxM| ıTD sd WBh;a-FY7SWjSm%ka;zߎQ6I1@Z~*ZJ#&#>L3ڳd9csb}obq-f61G~cP^TU=j\qNr,0g ײzWkh.u d U:RJ M-]DaF_[v t@[ bnԃLtkO|3N(/JωS 7~?[=7;1,`ups䇩깬8g />BK>HY{sjVq,K On|5rndbJ_ ӛ[B0kob>GE eV)PKHMCo)'!۴{ҬbN|Щ[@.qɬh^)4\}f픴{kVM(9@7i^U:C$gx -a;Cy($ LMqT0I}H%|ա$w! Fq|*fGA~7cK}%QOpy43b9Ғ v͎uUc+`m,lk)"7wBxkP>oBlg՜JbivtY?bjsJ¦25.54؍_ j ӮiMrHC!#i8gɥmt>+㖉/a78e~LmNYtLw C,56+0Zr[t yjx,u^~O(c _ګv%Tj^x^ ]::!os b:e7xe.?O M0Y4}@nD,VU )X0V.\:pqτstLyiZ"Pbq~L҃- L J3sJH1garw8YK5Y#GvK7-P 1('}ymzd0vAG+#<LfwgA9a]wiHO@dvM@(J/T"7Pg1+QuF/)Xaz!`E_G5_^AbTJa#qb"kJz O|ȲL#G&TDtf؎8Go3?sޝ$A/>br;:aj8>ot` 8vCfဢI& ;t]k _q(R/B ~^uo)0O߷‘#ҙůx ,t`Jgy6B b}3sMʶ~R-4wuF?f yFݺEkoFCOHdUz/MOpU;t=UU1fN7I1k(򣲘$b%3@l##"a 0]qrʫboTw[^~EUDV:A8 3ė!œ|Ba=|Y~zC^(\s\6A:jʎ\#+p8959q:HWw?aq߉r¨fGV#*ˆ+Đ?L F*Ґ|,{Xp[^d)QEh6@urUw ݑTY*ڗtfcL ?cv0W-#D 1rsEj$ I遢Uc YT/"r_;^il9JOLldrmKd(CG-]Dgٚ 8 ]|Dl綻wU u1^qB3VrZ"]źp =em ?d;TWrĹ|OT!tgj֊{Eo/;o(`*n$ tYO<͵tm!7scbљuӅEB_:B<' 8P5"NEѨ~w'Ua &Dc,̑ |) -A>]Xa<9P a|H#Da_(WNv!9UNՇ֮#&BB7#SeRZNNbJHcAv?'}nIm%|$;a1QՆh_c`3nh5<ʞ/o_7r597\B*&~#{ĖcqJ?KZW σde)H5\ЯېC;^O jm@Dۇ8ݛq/ F_JfU ر/|Qfqd=4XǭP%aNvgpXNX畛4;1ڝѱ!<.}#~Iȇ1ʗXrTld,x¶Zo-}tGq\7$+r=mwn4t_Ww=Kx[kn@ HI4ܧo;P˜jh_62z/r$r.]FVx0BuUBihk/g} J $II=Pe38z[e(Q'; eNō1cLE5Ӻ20ɰ:U}mį#aA2@l 7N&h A;߇4$:@ء+S/| f0qR(rm%Rb]E`:tUʢ/OȨ񊪼Ngɩy9m%y22͚pFIԇ]^b{샺5)&Utͮ4kQ_ SIZ]jG~9}10:Te}G]LX^C鲙˅-rƢY.gH}tTLY@1xwix8ʸV/.ۊqu uċi1l:cϘjY|0JM#Lju6 BXL*~ji?_Q NLn5H#2f< .g=2ȸ>o= ~-6w:6^bNպ!-BT6`٘@Xβ );] Wo0GT nl._o|C|\&ȬplqMiȉ}vĕKx77霱 t=H=2tR\9dzF.6< dŠV_Y9U Q2fGeʝbT1˂ +{Fʀ0ۼ:IɆ0Z4^2wNܗhgC2w0GW7yS5>?dV|s Ht%vGD?趦Vc,w4g ?-9K24ß2瀤ۯMb+~&N(^QhQNJL+wm0 Fߝ#sOztⴽ1baμtzę nsd+l( j[AZ_)|Ы Xȧ6e r3,0d!g4d1E}gk p@%&EjZcM!LiZ eZɁԫXqzŬ.dȎ^#S.d[Wbŵ%MZ |[zYzț=DL5SdlAfuU )0՜a6b;YM |( += $GK i@WڞfşB3'y j_g崳)rLvyLyܚT.D5GD<eP*+4?<CREm0`BE˱<6x _hg/w׿`4#KACʏO.O;KCh Yf<2.+dOJ3/7-0&B`θI<" Y il;4͘#&zT,ݷL65CV8ytL$YȳVk!GqH?F9x<Ś/R@{4}Ki(Fu$.:nѪ̚/FkOF쮲V4="tgtYya$n?iu![G,rFrN`@DLڇ}R v 2)cP ;uKjLƪrĮ'P/* SAt@?)l$Qmۮ&ͺ {}tZ "<9TjcH埀, v.Jat2]oޙʜVX L0VNAAAo:!hL>XVផ9Gi*8հ1R@4e;y9~X5͑0-$jo/h5Ij$~Q%g3>@7gT4|]6K° U~-q.m;列wO[ʂ]6j, dF]VcrL?\̓ʿM|uDaVbzKrC!n2wkJf4@ ª9HY4 _C3>$|dg٬4܃b@ J{xݝ-=1s! lmOKZ8A${/b5>"Uю,xA$aqrt巪hfw͈UQ}W[ty.9.3yU7@?_U yV[E=A@GtC(XAMMDN?`ZCWJ`~T b@u%E19{@}IpN]$bE!Hj(={!<sBsHV@5FUO;~#貃<[M{lwgF;fS`/gblZN|=:U{#Jzj\!CǼ@"_; jRKC-fZ X]pMB. P:3xi{`p{8Y‹n0T}r#J* VސĀ6Ig#s{jinEUN8l(mhDO 7bS]g Vo@ꯊk.>tOHqO(G; e}MVA/F)ړ#{XNFἒUgE'BJa ":k:Bi=>? @ū.׮?{HKI.}pU*,,gm)-hȺd z%K5y¤ Fx,O}0{B8 +ֆtЯy!t*B31% %oqs+gWz.*KLv*J˕)2ץd%S"hk./Dm9En2BѣHrN!&kCQMin&ǯZOCՊ':cw@KRŷcvB?lތG^NG g,%==sesxMB6 `;"1ټ]@Mp,(S~FIsӊ[h;FBo`uw#E jx=@,rNPǘp&[z}3%p+$к T bs tD 2eqږ`ao,pAdG)\"U( !tv/&w OeWA]<\~53y=3V  h[XwqwX_;~XpR.<1삅:XMtwB {i:ʲK䡻)vKy'x&WȤTĮ{RȖ 3{dDlrO*'(ǃ F96;~!Ӳvѫ%p3 Ml`^9D{头LŷaY*U,F,#s}ܓ9@JY !dA[GOc.Q,ZFM[N>J,<g R l"64iNo JF?%F#'Y"ɲW?iR;" >;S9opܘp&MCaTȳ?*|f椼(! :C>֭pNGPUT: zռnncu 8qW>lUޡ9d1$7ε(L &NP}Sb`*@|PJHra^} L(җ H[g}cw='@-GeT2OҒS''@)w-NvpJы܌wOEvFXPN~v%td6`VZm^6PWTC>!ִTe뚀'sа>ڝH=,2cߕTh?'K=792]kh 1ețSԔ+ xHunL6`[BVAp/)hiXd-эqnlcBxyFt E^f8̛lfVv!4Pj`-3OίS"3ncu>Ey~r;0+iEۮyQ?sN us lkg}PtFM,?,Rdv]Pm2yy\:!;[aOyArd 1hƈ@[@HAKrߕhC*n)Wu =NCj-*4 8dd[}fTI*uZNz^gn9M*dB/;LǓ'{ID27(f!Qs̲MX‘?hCIvHܣ=@ Z,xSf% w޾3qY|]3_w^N|-X ~U6K ]]a'JqȨnpk7&V S.nR@b.w1gGRS}U[lW)n\= >N4M_9:PHC$TM3s?=,zhcd >Gڣbp|h(kM)j)u|M වjw&빤ӥM҃YT30Ѣ'!n;> M^f;#b,G_iց.l-f"TrҪA"?}Wx;".Ne_/h1Arʆ]Ys5 o%]B-7HO)0JΒvC_~x7S "d(ġi)W^ S^!w/z᫷N˜aY؆ 'Wٮ?:_]"ͪ;:׭QǣA+D|e:Bב Z>*9gl cp՟ 8~K P]ڣS}.wȳ;7h2pI=Lj^G3-wGSMj,Pod *$Ypw{)ف'γB&B}b<-o3sK78 UZ"tF\̗BE>-Yj-]m!hbSAh{quۑgf8vk|$Ti1yX#֚Ǭ< M+: ā:-d[Ԃ>2 E%%rYa8sYӾV>uq%E9kN4Cz$'ȂH*.]?^$=OC?0ef|DvcH( LmB #ҿ2L"sMltOMZ@|4EfVƸJYl@DܘYj_OEYכЧ>B5M]aꚛ; ~خ^x'uYAGs7jYOMU{ s'?)!auR½R ; bz'\ ѻ^_|Gex@uxS⶜ko#:8x@qG;6Pkaň_hsn1]#]liVƵ|sɯD#pE^=8Be8 T1w,=\I MV8"r!ס۔_ "q}d(s͂ &7J8r =辬.{; G74Ucw*<^|L)s--ہ~ğ '8q23 1NĜk6R(E7(u[GqRv.Keh+|6 B\oEr 7} qM-w-ʶݔ^Cz,L[D a8uA@ZQ+נgb;9Vֈ~x P9P#/?-!=pT m*- S8)9ٴXo{J,7{Q $zupu 103%Im4N64  5Jt?w(be-!?4bJd|I~Boq% YwLQvQC4SyXsԪiItE@E2.zQ7O$SiJK`lJipNR|k1!#Fn*]3:ǞpyxZ\<ͫ\kuo%Tv3h#lMj0TѺ4mitf0oJ0uQ>j D!FYbŜ[HUFʄ_W|;-2CI<=TUb0wܐ>3j $edcwB;fԢ jܵ3IIP UB Hzb,Ww>0F;>!9-u߶re| (aA_O tnSJgb NZ;uQ[,kCq}mhQkEjG8 i7Z9 / Sy(|a0h1j`_&zYRAW4V#ǫu_% p#gk9o!Th&A*QK=Z<(!DFKC`E{"+$pmyqu&FS3.>BFX)T:aB:"# DF|51c{ZIYpԱU0>0~g-zY_w(ֹ-8v?ɶ4@F@a Xz1֋1nA[+FxƋYSW&ELxVmۙ|LoKS)ΦAttG'>w2]8d=o '_{P {Yc#HY_ ␕X9O6D`s P Ui(\Ufdֳma `E4ZgȒR 0. DZ#|A)1lǟ}_l& z-3Y:JP-u Yͣ=n^Ue3oFx5{U?gUuWֻ3w| NMN9ؔzq6EsF(4q^lam")$D Z=< u$:7A Plpk@k.N]@%uOiθ %0cv X&]¤舸x Dz77mqA^KZzn_v[4:s <<"2:j}L?Ya0>rd-Y]W;mɦ UŠnYvZ +$GULoָ&Bˁ|u:CC7Di azj*S-%MA7Vn"H`^D`$S{jPLCi_ %VC%8<unǰ2!W)-xBY d\c$RDTWm>?Ǻ[p3rwVkTJ5H-_%NN#Fzr@6`NоqkwE߶Pާ n]Nss[TL\fMm<8ݨ61_9({Iavȴ*ܥ3%j{rlPZLѠj{Ǔ:71u8Ovp:r+1&5;@dNRk V1*r) bWcL2G)|8MoFhg.R$F%NgQ57494ާq+oA q =' ȗ<^ڲ;æ}%2ijdڳqޙ`vDKBQDa3JlLP= -C8Eߤ;GV7`$(7u *MFI ezROBONy %WFpX>"FTHͣpEOEDp1K-B_ʏQsë`i<`f@ҩɤJ4|A>7DLYbɫB ![W qI PRC 61.G$@zKHqRS_ Kor |ݳK\H{ LFofc8.N^|.' RGv@x?OA{YBW/>I*?J5yǗݱ}D6xe(=:~Yx'i1^LH8X\M7;8oYi=#<„5T2+:َ#{8D@"L%A8>,kX+}>3,\4-`AS'*OR8{|y4G4Lz۷0)Bs_YlC S fiCzB 4J]cLTjHFA{O(z%=txZŜ\hZB&q&2|g'x͠Y{f&Qn'7:HԶ;8W0묧i < <+ޢg3VwIe>HesOR{):|;1jk{_}EϏS`8REJB[Y+ CoB[ڲG0S7ܗLAu>DYSs6ZGȽ*_޷~+W({F&q=B?[׷ɃqX;`fYagjM獭iDBI,),@KlW\ؤ-{I> <&}ĩ=z %3l8k=v苀]))uݝkGs3Yi&qݭhKX8h sw%:.nq>[|Bcѽ#,@ȴϥZG)&ppm7.}yO>H]"zXArbB.[ڐ+f[g7/isi_[&Ҁu0YH\nK"Lo?iUF^rfW>f' r#m,i%&UE9y]#V9PƐF3:LE1W QTLqP>:<`= ,6ݟV5'sjΣ_x۾5eWdlƃy^bOw ^Ӂ 4LYފ]lɰq'+Yco!U+ MnfQPd5$}^(k.N",M37 k`~=P̏wMS{`&fr6 Pl&I%"BOScC/HCbw#Gp/鲚q"߹$S| ,vu%Es"ek4^CwF3٬TR_e7ĸ;aC 3|[J+;>/TғTZDp 2<<۔("/`Fp|C4d bz` r%7i1Z7y I*UL" \p&#"`#fIz-3aGnղS ޹7{1Mf>'D?|aGHs3k8[e8ǂ]mG{Ӄ E!OzOUSOi}G >/t㾢7uVbNQ{jNgK `bx~MqXT2UEt_AhVѠue[c3pQv44GPl&LͷZz EP:s͠VY+jc - bwuZU%J.ܴuM3K0z9󿿺!|&xsHj\EŇ~ *Fܯ'Ke2l\!!( v<? pjE6#W]kn&;&q 2(Dž7I .vHTrmFT[IU-ԋɐL?UM#TMݑ/*uc :Ӿ窦T zM" 9G'm9b55Y#C<Ԋ GQg% V*'z%AZZ[Ex'({p1]}6J@kϒ<+ mQG=E`o -PM3dKo=ZZ*}Ցs j48:Xj!eU`Sz%n2F|k6:uJx9֎~ֻW#lVx#|䯯q\%;MSϙ56?O)()em I|h18nǽ'=8v&SQAja aU<̫8erЈS2D'65߁:∝N%`mp.xݾAX̽El&fk(u[`%$F`] ^gyӾ #ϖg#,NeJ'a=H&RdF)6vA"AI&6PRZ$eE0*":3 cpl2m'8wGiM>w҈,º/u=~Zb.:`J/<:VlWuʬ>[MCT$3ğ uDKL-Ƃ|y<'9OllLpߢfD|F{^2͒7{;1E!IAYMU)W>8_ bCwH jĨX9EQ~;.4 :ljw9{3=uBB~ QeZ ҅cf.vH7KwM?ύ J8 L"__H{2"' ;/6aF5" {T]-wtk9C4:Uu)JUK?"+6Ѱ9NDj]i`Ek!, 'wD6ܬk wV+hjWc/\ub.>[AE YǴYSܟfXj 7q";$#A9E'Op 1Z?gtպ9=%4;"  CT^FZ"HTůJjS JcFځN6 00y/ZK4[ަS[ bWh78 ~r`ss:l0mrJ OTh($6b"sV9H#Ϡa}853׼_N䔆ɂQ *ܗI!qa7Q PhYg'J!f@1TR-@0Nei/N 3 cKg+_׆K\2): YpT#Z~ByibBk$vRw >i*&Tɝ뚥wQJg BĮ5B!HR+F &./-PN4 7>D&=FiR;DTⒿ{ 4U1#ap1jUY,!-ny(8aKn~&#-;إXWzI+) eid$$6 E@Q5UZz*qwLjk@5/@}䖃}rJDuFM)50T);ڧvk + "p)T e<40n7T &@QK\Lp= ~%L*˘}ybaΰuDXfRXu&?+S]Z uh6#mtxф}ɓlcRf3@I*`s4zd.&!\~>}'z&C+5fC0 1\/*Ӥj#ZC!%7x5=Ƿ6dGFY&1" ]$Y!qcގ* $AHC@tkQ)܍;x5| RR:N95to H$2cs,4`!Uvx:pkZ=ȶZ+֍@Au)S*  8Bk$?I&n4Y4㗬\[4nQ!xY,7O( olQ4kMAXpSR ͣdA˧7v1[`Q3]~F>Ռ9؞S֍s%}R 2ϝ޴&_ 5B$^T2Y"{9 y"AhIP6^2P[\`DEIZ+kg|xh]sj‡{U,'1ǕJIݯsI5Cszx5[JM{ TxL84y}gq~L2!/CY<ՓATS24V'>߱޿+|bK̑jK(^xFFLb,΃@B2 |?m)Zlgr$銭(ä;1K(ў^.vD3!]zYj݄;vp\Tst ^i>{iGЗQx}EOi ߔ3W9ițjRy8ђ%`πXOq F2GqG5pP7{*;;qhӋp{#{pj &oWN Rl'UJo#C 65xaįk^J/X op)/62 xEyy{g\b^qCT8W݈=0H#)=U+tTw}I@CIS0K?(Rh xz_cީ1}ɧ4-I[pwFz267>]|6><b؝EOnsCW)$s6To?@n-l@v;gGӵ+ y" 0_d9 fzգ>=ְ6]ŶJ~et`d- ⷃ, *ȷ/  U1bm$w*)z5npVzng24D@+^`^؟EFУ?fI,!MSQMII%Y^EN^F f%ؾ(|ӚZ|t̯z|Jahk u?g!lGGu@zI(Mξ\q.G<,l*v1Ÿ(q@ƦRhu~?~[&"{YlUt/ZqIx{*G}k>=~$/sH\ZGs/,*'v`'uD1$p#fPQהRDp-E,FD *Q9~( 䄅q( (Uz@ Umiup~IGTbS &#sE].{>616Zv5]~RE1cD1?|HZG7X(F?Jt(*"ret|VqUBps4xt;-z<{x'ɢPRMQ^߭ M|DR'piQ ncl9w>HN΀OO2/k=[ԣYhPK3;qRoty O"*O @>drPԪզHʹO]ηvdgB(V2a S':vc썲{8dn"r>'H MoP~F(]wZ{%?!Ϥ{2‚^S4>T(%lP%b_Mgjh Ʃ&4힕ᶺ#! /jp/Spi+%20o99ՔJ\ g_@HA ,r 59nrnya6#VGwm0apT;_O/ Gd^A8ltjOzHWA"w1 #,m9ptHc:x@m Bj2X5p>+eɿZԞl[,H_Ds 8 -\p-Ĺz];V2ܱt퐙4|xp}2Sc@,XRh\qaxTOFxt!t$vq_ˈԓ4YJ5o-H_"|gP ܱbJ(SQ`䋾E=B\%V`/Zd*SI@p| q.I\< ȡοM8GӛF$5{!:L[X54d66JX+q۪9[>$kzH#@509,4uvˆ_A+lV 'jV}ŹzٵS[O >?,d$׳ho$tbd[Tkcrv"$(/9h}Y{PMo!Rt~lqR1)tʡ3ʔ:?gZBa%&E i0@⽩898֐ !h؇3i]eF k"?0.:~4 ِy5ܧs9^dg]vEekeBw66.-Ѱqbl6`(R$vx'bq.q9@۟?a{~ӥ}[&Mp.hӷDK@V% yuaD`ۼ0:׼*Y xg"GiVZ O9I+`o_eΊJM?ϑ42m}\-.};"1\m._֌A=m B X0{ie=x4 8do| [kсlDf{Du[ZuŖG*9c}J+ڴVzK^B_[X Hxc 0f7FnOρdZ:mMpϥM2}zlzʠZeIl B1wFWf&>} *sqNd-wmEd kB7X,b*?rsU@A첍)$o5ȫ)C.-oA:849򐒉"~>)pQ" 0[=3| Jz5/24;dTyyz)ĉ{ŏ1TXO@ <4:37ng|Xi_]%Π,WP-cѪ/%TLi??oOۜ`8Y.TTyF )vB>:RӧѹѬ`|4\&rx'MrzrXɇ gNW@ 4xd=_G9CKWOsa1SZM"4{D*LFJp'X_m ~e,J4Fl0*>#8Tt'DkQ0p~2Mk*"3ξU.ɡ)}滑o)'J@y+ }D8Nmo5Jd8VXɂ6 w^Thm쎑 sӍ.^<$m^-nr tfݘd#h`Ń :2Tb`tD6s" CBtjg2+Ak g>(Vܜ~7 U5dNӅL\E{ 0ި;yz. nMdNͬw}ڇ@ oqY) xfXsck>~#ƤOI%PéDZ\e#+ aBS7O!u~طRsqWZ4O4v(g xF֒- XfPĎbwPN{fiK&?[+DfGqf{S@x?RJe&5i=Ŝ^b q0Z [խR1Ɠ,Zl6f1J2&&()Gt!NwY=b@RH}sOB }8} B,vzp@cfPZW8f foaݖʥc|N_Ԟ:v#(3+Mn[=ܛmǹ&@=tTȡ=*|)⅊`WbUӌ-)5e6r r M9(MC%|$e89EF{r0]Ya<NFG$k2tV(Q NW)u¼Iy7Hy&E(c@T03y~ J}w4Inx;5Q%OM}Ϧg|wQ|jx㟐۽U` TbܤI!Wݬ1Lz=3s^Sh;O51Ji$tDlFH8Ue!o߬/>\+V=W,wy`/}L_wBO!_c<ɗ,.*Sɤ,:sH]oD",/]Ag!JP0}-~ PڷFI3:d6q'J\"FbUOZU 8JAAO& @ z0:` (3W.Ý'!MfcΤWO~d,mDHJ{Hi7DV9KB("϶ZT5{@qa?^o Wg" 1Дoɫ,AsR[cZ]Vt3s 5cG.)Y5W](dܓCʟa3g 4Td3eѵƦc(< %YG c'a+UU S_Lg)(4l("nԽh}p7d1m@rED*hrUZ‹ƿ աѶ }fc3&7LTO 4]iHыd56VN 9p[Z@< >cq$D0GN{V* 4p?ѕ?0dTɞ/$)PiUY{nj_@?9q@V0ebq{G.QXDVz >G0)8R۬J?]Jt'i3Pd^ ?;ʧΤakC>2U\|Bꕄ/)ӗI_qyO"om u3 6qI$uYzP{utB~n&&:bH-_-Y&Cݞ͂rtKURǃT#hn0{IVHQ޹?{$`vv_Raԛg@?h# EPZ=~#*m@tn>ۂW`SwhO8] >?pP[CRmVmV _d4b@:mm ˨Ӊuk,k­-KOXo +U]vB/H&xy'*>duO pfP/W$OwLK"[6AVUXb[ꯇ,|< [C>.B/A_X jerg/fָ7dԳlJ3(egd 8XzRHVIuNSm̽/[57zUQjxOL |rɮ{VOk,5ZKVQ>7OWO|(dNEX搛a&Emqq&ғƽ oT^@}pLwyIBIsSP+BThh.AfCp$'=N,q˜Sa#GJ\ȞN-I=d5c~㵛7b$9ىb!X?]p]˦4;;$ibݢO]/0U@yq.VlQ=A(lx]TD錉,wBHh1 ?_XÝpijt3KLn|5>*%$< Ly zU" u.w@NNs}k@KĮSJp\C<0bljk/ ӵcn}9j Z*3Q3(2bYTP@6[͉UCTp%p'mQic;e $.G䤀\;bcV$A <'g9g*13 wWVB&w"*dWuDjq~XYռVV8 f!#o t)Đ27;+Cb=꺴#پޏ]ۗ-Ra(3_ۧ`6Ft5sx9 <=J^ؕԛ(AM;ZZi_iݽ)Xڴ‡Kл` ,dsq7[S n;U U5~$_Ŧ9ZaQ@ ?|QL)!XwѭeJj1CU%I0U ,dje*AG=F"f#y>\fK+:hUzU lZG4JQr:*gMy !˨ՂA%u8Ձ41YgXZ5 "V"<'`>%' +.7iVyVcY`_& $]m>ua|5#qmpx C,bULE k>V(P':~@HE&Q>h,;GݿXғ~7N>=Im^y 8)\P^ k{QS8k?(uVjmEnx 2n$M3%chT3X?'S}%B^B 9VY#z{nV6؂pml[K[I&f#9+j0!|%]/bu\ AoCgZ1Rԥ;:0nԞ$USS>c\,lMwW 9%2`.g`!{fxXTH`C9/=fABu{^jߑ uMF" + ;b̞ $2F*_=ISOHZm!exĻIrg>q2rjJ[/5rХS3[rxг˜R,D2 h.r}j=KzC@*]0lɹ(?MI 1.V: >eǾusU7KƱ&3I'Z2n1_ˆbh?j>9aCw=‹d* R̴A0$W,r>'r{*Hڷ+PvQ}thzg/ӱ k=K(_BRh$vntIġFQ#lzc8 WpDܜCcf9ϸHλO5\26Mع}گc|-.R Ǒqn4!budù|v^ YUT Tٯt2Ww1qVq$P @U`WvE࿨)^ }:'%uG 1vf|Pr&) NoNr٦\Qwp37E6$,RݍJ<;Zb 3'/6d+ںʐ"27ٚow(5J먻`vFq}qx:5>̄r4U hWKGEFΡڻf d8& ?u—IZlQ71,c#)z*܉{' 6)*vU,B`,ޗ}J=ߙSV﷍_NY2E7';kL( 7/m j/R}?~tbIUJٽ9WfZ 'tBV=/X% %vMǾ04rMV b9}`I5Ks61cH!ϙF57t'෨H/-CrN&Ē)M\EtJSzq't-NHoQdoW[, <T_t v>* kPY9`i>5K>QQ _D!; cV)I]f6W cb;0HhEçn2I6-T%HwMz#"_nNGYg v=51^(}&ډ4nSjؖȔ%NI"-S!q[X(mvh8$-(^{KB&8( G8PVF4vz ҈hM'6r6< q0MtVz?3_n f:&7x ^v2 /h=I2GӦ kYUFץ1bZgQ_ T8{u0@`3%ԯ]Baө]C.VbߛZ0r[d}czO<(NLٓjkQvmcMk1m6<:b'`—`IS a0kNQUgm#/4 OG 6㦦htKqc:dDuP}lЍ/KTTm: ).&k[Lցl}=ނdaEFƝQZMRҟak̭Vw`uRgNݒo)DR UP; !q1<]usdK0;]Dpe2 XzIϑ]ȲmfL B ^U$ >ɸZ=1{/o y=_̳&]n0Tz@#EOs9 iz (ABDü%2kW\iWT)Um\.ix(B }71 .Э ?srHCmļXUwe'qύSc.+AmL@&f:UJE& !ȍ焣ygd#PyA0'tPNr(~N~0b(g bfņՒ$MRĠ!- suA_2[?AS .TU}ktچ2mOy5,Aؠa3꫙c^ìFߧJ~.<fOGk\h$@T#$}|Iy]& KuP% U$ &%AGe&}MW)7Lg2{#ѠpaVJ!mHn GNI?*7JS<薈\>C7}5^np{ s^z2= ";ϯF͠^M[<>z*L =(d,yHDb_1sL9z3ߐ!t K~]JYւg uAktB6.Ov{+`m^͛ c<'ȑ'ͳ₷LJ^aTRSr> uïbW?S3*`j+.~MYbB;؋l] E:Aw3>y3qK|oiv۠~pw#|؊0]'?Ruuª0t~om}/ژWx ;Ǭ0x]8,4݅3~2~`@CY5ڻW ֯,X'ǧFc^2"hu[rfk!Āʢ%Y >g멏$w͌Zxj,V٬p,uج u_˯i2w%TOvjsC@&gJė,43u d$Q'.o ukdm ~}Y99(d~?/[G#daye%sg'!Y Xʶ%oy Gآwx%pv(/IUI9l:/%Q4i<BY DyQ;IU%dD6V$Zc|(t W{ # }f 1(iJSVM*Zm?&3tTdDFkl_a9XE 6u"u]c1]C1ow8%0G9Xb|U'XS!TPV5oJN*2P}EYQ/fhVNOe*U7 ~`uPo*N+h-uUuڧar_TGr8U:`sz ,T8̀s\D[u•~jSGSޏߡ4sO ?5( Ӛ !˛FUYk_UtVluv A,btW*nqDZGWUsF^OEd)BDz=zuUgQ90K.__('@5# ^^0XA&г8kjROdJCSU=vh;c rA(ZSsyCwM+3G:u]r66'_u5MB4َ҅3F wkCUt%CoY"}i3Ot@G6ekv/c%(4 W{".QP(}chS-ܧcscMNAୋkðU'C\Cy E,b″+uhFխiC K~7b|,iO5F%s%m 4~ZR|S86pVD`33$!drQD\疁\z 'ſK k߃, t[ҾP}5j(^,c*u{_WQ֭Go^X?]^TzNu&`O#U6;2*6—>}` FEEҽp~ԳƁf!'iVWA$,+q]7% eQ@(D;CM{3*ϕ~;' $vZ֧'8ȯ߸%jn'{hW=-K5WHBkI0}-bW6:Sib#a'NtC#3ֶlz3%VקjP`Lv̗J kaB@>i}%9cxxSՕr[`2>MeWZ9/e!昴nTVuteR~ca.>ʊ4BF_¹d 4-ZYLOh&t RYadLO b= l^RԌM !h"p$Q3Zpl^mvP Mg iu$'VeG!QxIg 6ì͂yS.%ԋM$bi{7u*O8ξ A+ +TaMy `ԇ]+N{v`ԕfcX@hpz98 |E85.z:_xcl&O >܎)|}9hgKӿ_7>ܵ-YΥ] w`St䫪P[s{JKO%kN2tW\0rʰto$7b_CI*X+ńR`pp:&1ayniKCӶL#@_1bk6w!-G7a{oUU9ݕ,. R1;/#|^|AeF?So9d{ĸЯKkƺIqWg 3]X(t)qبKZ4iFve@[ c: A'xPՊ|SUEgJɸ}UARC5?;巚<7 H_)Hi-&H*F@5i FJd~Vxgv&o]MEQlD}hp<͘/Ao" b 9 cAE% -H9 ń1s% A]4ַ<{Cc ͐7Kb+] U 3Dfkhi585mx"=PsXiPΡKۨ#Nox =Fx* ISǡ#]{ 'a DHiܑ€d&|pIC_J!+R,ZA0wZ.돢ح6X^TRv.oLH~Cx5{I[(ʙȀz邬,O=pB;"hn)D Boj9qYB,0ٗ)'O |T#&RSVfӹE$@ iȣ4 3Uzd '6U> mAVYM4 ^/k @ {{93#Y]aa.Ù%[Y^a׊#4]N2hz Rc3KĨJt7$2ӈ03V&l;{d72G=xz>BL $m;. H׳*)Z!1$aʐ?0gş?AڶTjЬ`xWg=g4WLR _[hiVBoUŻOLASe'j6H A(8_vF*aP@M^6J] CY2u. Lc'b48%k&t_C3,(eRK]˧G&0L[q~ ǐKWcRKkIΗy3uR18c8Êuk{Ֆ,`PV qg?R~4a,,yA^P|lL[~Ђ/=5b2ힷ^ x(zG6IMC|w 04*l˯YGuJDU^FoeP, ^f @x D~ŨD l='at1qb.[MaH|m0 C9|f`kьAO>vYj04Z\ZoXYr8Sz` ᕴA@~FK}a6k:1FGO4I)js(n-v){qYh\ZUek͓NncYqĴuAdȆÿu_?Jv´q.Š-Y`pLu뀠aUPcV)'/g&$Sҕ7R!nԙ+KJ;s $ ;&Ûh_q!Tk@m>UBEERY#-[l4[EE?n9t;Ϭ߷ou6)cooZYb`ؠps=PrH 4v_FL,*eA+ g:1ocJ}n%MʃX I&rkM$Zr7+xO!P{Fqo M=y,3Vm|>fN/Y^ #OsdtpW@|QX Zn+LA__2K"@eC Y2дA+!08AC$*Nrdƒ/1o2Vg;Ď . 2ƛNpp #}Ы8FH^$=GM1<c)ڸ bP ` '`dXI[h$4?ց7wTU |q9q6w_\^Ĵα׋6L;RYO|`|^aK; Wc:$ v$eR1WTYDQ#a2nW8z )A_[D|E~l }+ʓָ.:;&Ϗ>d*Ddev [:U5M@^~LY [r1Ϛ!l><\#KAS8ɞ"'Uu^#(2kdbU.HaЏ F8lݓsQ=C%ϫeY]=-MdAO!hv+Փ剣:b`N/L頝t0CgD~_w79^o"@JNI7x8#p8Ĝq^!P9r$8}q@ɗH˰: F{޸TVAJA W;?89tϨJTLY6ه"aw\Nzڙ*"`kR&Ψtf](*xq8e2 >ڙ.;7)q1dW(=ˊ$ мӽìraN'yf Ȃ4/ծ_^OWkI264f뵍7l@"mONϚ '6S*BJ1*ʾQ{zAbQtJqt0t}q~F-޽Cq׿/嚇 H@!LHY%{]< "K9…3xS0i$e#[k8Ic(~=k!fI{kFbĵ A}:}㗊Xxg1\;2+Ǫ} w8=XQ@Ty"4%"g;ibң{XLx&"Ba_ GEgy6~e4;M-iCwǯt5^Ř6k } 8.KL~iFZ1vrS?L*eKXSA"k!hwz3nZ=K0C]!D ) Nq|Q}=&b|#qw5'c[-surCC uVzUʟVWAȀQ8'̻MD#mh1 1m0$sߩJ7a ,9zI8}Yz[ ȁ+M'v@[y$볳.c>W%NO>$9R[yͽ%-R.{ b] _)L?Bݬ-3πo_LӠг$埚RTI D g!0{vMo zs9[">tuXj攸~0lU/#'("mB'LG6XH<DE/UKupo{P*U{^q)Y.i c^݄334_'vy9fgS( jRpEDlJef z<3~dΓ#Ʃz-+M0'm_z)@-NxxXEK=ǘɉJHPl mtLqpԾ@ˬͦtgs''0cVF [86CV1~->#~@E jq". b.{9LSxE-AKRdq?]%|@,\E>3TzID5+$b8 >:pP͹@T%}s[?奙JڰW5^ʵit;ścἭ͂Pa6"_A ?Pހ$F݅ ,l);XPֽ6+Mw%4=R2?bE/{hF5ǂLܫmS%'uEAs1׎(Oi_hlFB;[?޴kR ҮQD}y܎<:88oBq%"[aujb`ˉ21%V9‘E L.ffA7J?sZ`VY7tܜeez|I O7^k!s&$:29μ M1 R DjT^QШ:q1yB}WKuP9V! r=W6bE B{ >Nz[1&; 8n9mgӉD:]}˰S"8?6mEAmзVqL7AkB aڇ( '.QG (-XOc<ʇ p"5S6&d;г)~7duA-\ޅp EIѯql+UIh̏Wh 3}8Fÿ́ԑ=p$YDIC}r);y;Af)_koN1϶-1[ i #N]h;QY3f;";u"43'?O3]|m-yP:Fj-t}]+Z6q4%ws=6:!Վ3Loj|ݛ<2(u8 \჌:` E*HH% G4+EBQgvBIsKƖo T(pBL&rVLY2cPNT,}2v~ZÄ\)Ľ8hBðL<;b40bg{!(= 4ugUB%mIUu Ac5M ^ӁEn3xZ ECVh.FUn9%{nMx.'}nhԴkTPS.DRŞ |qOGoޓ.r7IpHI4"3#JJs`PqM>nizޡ {E kV!-xScTiP OȜ+`5[ rYxGSgZ  ץ;$>UXeP#|)8-wIzsO{tazNIGK1JBPƽѼsP*>eQ4}vJUI7-i;S> -D=]]P#yF<!+g0ǦlּܼM&Cm%w'~ Zݡe?3-!: hVлGΪ8y ^]ꪡhK抺 OJSQrf齪Fc#5Q3Bx ~&%Чfq?'92A^Jt78d2l#C0AT5M(oedJZŷ#'g=q#dv>fK3?ള(Rg6U8zSYt% X7~zU1IceKS nC֨`߰lVWd'BtL$ybR{` .?ݚ@eݬFdNފ0D'QxsiggE.׌CA{)|oPmf߯噍x`Î ~~ J@ۉ"$,iNjn [  /GЧy%<l A03\ z]̕\`j9n.Fp F"*. +F)h^[|f!XJʹZXeyeTEy Ns]f/V65r~Jiaqh,(x6Q!'_␑IxwědGW0`;1'7~y P(-^\|*kY7\BXGJUE=ә _*KtR2Qi\W&*]E|`ѵ DaM;ip"skmT;Q ӿ<ԇ7sIHv_Y*2).J֯u2)s-?zAN:'6yUʴ"v6v<Ԑ8VvcȻ$1wH&$7({;!;,(rJ\2K|BĽnDyh4%\ _GcfHd?9 8f^gd/D㩁ܳd; o]>VP\2To CW BH 8;% IKBxhȻ$_촔nH(#~)t PQ1/(z=7R 663F]."9{<{S%aLF=O5͝q@ XehCMo#Mj-#GkY 2W]`lZ_*y:hͥZ|vFeJ|#\*05Bj-qX`$*[>X8H$a +zHnsPEyl:%o HsOd 8-!s{F '-Ǒ]0jA[ zt[%Sta&|CbWM>aŘ i ؕr.,Kjmf:{g]Ie6j$'B}vivҼ GWԪlHF2AA; nvI%n.`6cwl%z~͜p: K6]2tk ExUwNhgĆ̇a^ ڇgNўs i7ma9C"hOk\v7i~f|R\\@?0 oL(e8 [hX@ȫ, a 4gKi8iHZ{Cy8^enX̴kM*Gf߳q1Mll<ٕ-J5m^]LJ-t`īS (]ުUUcv je&nd7 5PܾMࠝ~y6M|;Z֋ish`ņ%WVG|#BZ \vF /SamDce VX,C?ѤwTk鹓{_'C7x{=Há1*[~4yPřW@S7 8"g"@ Yt@ &-Pi7j5ȉ.#tpĭ]'ji~w9v>k;r5M-\U}S IE7 ^+8Qb[2:0;.Qebz6 1X^^=Ir]AE1ׁH@ &0I:>EO[.h OEm48OƠ @h):(;oޯ$Fzצ{u~Y^zcgR`UֺSR Ddآ-[ S|$ 6)e:Te󽎬c~t[k.;KVW긌]b=jga50_}̙Lȵ=DŖvt%l)UqJ30_~"^z)ѹ?Ux*9dK4X07C&LqNc6&/4<xoam>DNsW:s=-X<`(i!s@ms0\Tu*"sľjMyҺyה_iKư(.s|sc4Rjb h+( ?A )bTAM7s wetFdpBtn's/yqs5yX/F/!;, k?މӬ%XC0p 1g"M]#s2摐Sqiq9Kz =3G (t7 CTs6)hCwfQ/" ?s>,'yNDM;Dp&sXr z%#1`"b2KF6aB(k#gP3A$[/k4cnV|JA ?2Mumobki,B Hb+_`]He"ްQC UrLM$CSEIYl1*3 ]Ҷj}}G+]pnCt~#^~= ;A`DW&eu+%Nќ4 ->7heGc!vtm~%(խ{^vvв7.FE/W~9IͲ;<E2u3XZJUG$<8?k;?0g/Pb]X(B.(ۀV>&HAF^5'`e -by|ux^ E=8U.{$~Εj0#dϕ\)n季9cT; LՑGҠ'FPL:]#אj BsY8,g>ojUȞqd ۮ>p $jPJk\n>cB7Td0/|dL)H7ĖRf /G Jxd˩0/Oxˍ7jdg<=3W6 AaH󙷕ϯgxD4nʶǂQ#ox d[y%(x@c Qr,#)PA6Ӡ=ye&C >M3v&ʽZ|ڤVaյ>六yEvm{+Ѯ=uU|$)|MFc\oz+N+aڰwoAK5Yٗc[&d6 ip w6J9zpzхְo?iC\>AO0@]#Ch*|׈޵MgYT YB˔wVԑb].rqµ>L-K2xӠY4ag~r3~,SۼiI敢rK6ԌR@06cXש~;wOn'FZD[KSVrdF͞D'Sž(W@b]h?3b)VPѰkl]@1$ړ\+{{2NX C+<*miP}Fݱq˦X}em<>Z8dM#wlkTawڰH};n$ZɝGLTM!ϵ l2 I6\bf9\G.)%X/ZL)D7wloXp-bҪa)-HYZz{$E׃?>V] /{^pi-+wnJdKm*!>S;o2gx܈+a5mOs!ضwQ)0랅(IB'D&*ȭ}jE@#Z𗯸s5q[|!e9μe4EoEvİL:*Hf:/ގhx/C'W]'^-  I@^a^6ay9^G_RZc-h u>?ګ c"zsC/V>"DYy~df&\uv+O&|QaCoq\/aCҭYho, v,߲aڢ! >Y+ߓIR*HAWs%0f^IGm[]m4M]͛/ZZ @x[vӼS+!&$W'׷߼E:.% ؒ% ᔧ%AR#9 ˘ah RAga']k ~2$.Y)Q@$Tݱ[u"G3% /^MxFV OA7,9vY(&rP2UǹvFPU Fj_$~ ,$ƺ_ ѷY2AxB Ï9X K(T Q%vX26Y-$Bj:rK(=CښO $R#5~_?Qnab:,r=K}E‰k[5DXpƲSӏlQ8o1Foh\VL+8H_8:9zo-os, vE gTWѬǃ߈9frT`Deظ2"9=UN_f s2=%,ܽxVQP mv}AB>U뻎}܃7{LF@B&F2*0 0J(MI0 ´S9t x-G pw:t4./@W exO0.:YŶ1vȭJp7(az9^a7pb3\ U@9)^g^YaM0kx"hˎA돧j1[y+Na1MfQl7p vdoŸ(cCaȩ) \lV8J-W'u=75U8 .3,Dr|-#?'gd0O58i/ctM1@εOQ5:/4l8!ߌuI{{v#ޚ\(Xcb O}ٴRBw=oc("8qeu =2מb[@)JP>C/Y-V?y7i0sEL.CraQق@|7޾ig@ 2nflXiо(`Y?xݾ(ƈUګGL iv rl_z[b=șB?[9hVx>*a"$/$+v<}YD[4PXaSKdDvmR b޳+ԇT/ Ԣ\yZ#'Gg{45М|vJ UU18Xm$Y^^K  ߶mC~G Se<*JQ7Z5<PFG8ߕZCPv]!$ 1$+s6w3`bB"Ǒ{|ޚgrlzOH7S}zhRsS%%wҙ30OƬf_~9]ɳ:{ў< 1#JywI]%@U@GVyqSs,m}YsQ»~ѳ+ Z-M_/zAˠ2KCc'1@S 7=mklnw3Qvsu-\`Y?3csɹ 4c¶ ʎW m*ңw^Ӄx&q~ma)[zZIʒ` ;V4tw*!?v ꫤ?#Ƒ}У6?J+X+"{NxYH; Xuq5rU}a`/8E\r`?asDht1#T) r#9CJwˎ:X.or "iA(+.1}y#{&z}6!AA#8Q !XI} {'u +mqͨy#\\Hԏ[x~^cCyo)8-mb^|!=\ԡ%:#}%|85jq 8a g0;nt(nLLR7c ^GX)O.:|ItyNV C +}0tkf`j )Hào[onHfZb/}w *yĺr9;5K] =xXia`50&Տ|RX<,Q8#?,ҚO/N>KSSSPkHÍӍPTWIԷPiIvg$↡"4;t^.a!/:bG<9_k4nYY Jn]q(w^n΋~ -e4(WmRFZo~,#֭Hn+%Z8ጂP`U|n_R,^d9wx2Ok)ZyyeL0Dg;}u/Thp!]:CԵ[Rwx*P-Л$O7EnUBmQ@B?f-}>ֱE0RW!c|L<񖵞d B6͢q"MӐ08ފda3fsoI g%(ŏPSOA! 4N8B] ee`ǟǿM%78a0V^? Hv(6$ܵ|o}zݪ y4{NrpoxT86sYZ(;phihF*/$NȗtqpzPЁfV&bF^LzǕ[KSB5'SԈQF`2 HR2#468rR8\CXuveR?":NpC=C.GiIuG7rAg52+X:&%!GJy?;dqDmBG"L$<(./(dIj,<~K@;7FVdG!JJeM* YMm s<3^Tqlgp-W*dT[2z"ҙ_!5[m歧v,gy;Sfꉰ*+IO鶿F~rנIjы~7\j00% QIblVl'`>όᵍSYur,EKxPjb\ϰfbS T*' ;exRN'H2åIɞב gqFHe2&Bb 9xد-o`Lɰu*u@vdlz? |"'7PA\^QWAΎca zuFu&VV~^jͫ~A/v(fq"${I t*ZQbNiO>>d |ŷ^4ȸ>כqz2LY.vkUzOקm;L~?`'88"1"w+C4K"rNZlܑ(6N ;%4z4Tac}B G-xsӄ|KCM_%&"& /ui|mM&~=S ]H2@;#/CIAuwuO`8AUR!eYTiaFg6Y|s$߭e+u}^B.!aLO790H\ =瀰ar?9t= bL, _T Ct:&*~ |( 8D?sYD}.NRg)%'-Txd8檿hI$^ZUX% FjɈrI7G uV|/8YIW֜-2wަ-~U{7b*MRCc ˏ3rWͭ$Pd J_86mT*.Lbg^'s`Wr6@(j>rV8G0R4ttRwRӿ~*N6D]xKv$ggovw2 ;!w:&"&;$Qd4P׻1*d( Ĭs[KәZJRz#Xg2p")W@mAvGNeG!x>\+ACk{N#GN;F@=P[vEZXȩ i˃$i0} i5Ь5G7*,>fms^o61!io2% Н;-|a*kZokgK}fGջ*=N ᨩl^JRj%hz,oRa=bRl H7f]$rypMeVN6,P BGPW*nC-!ij M o Bf_^%I&ÓC7N w+IlDϺϛ.r>H7)ccDTC%(eCǰe%t_6$݀}Kr%bIVR#+FPK8{Q\ߟ,Džm:XE2P!GiCi`ہJ*ڨAWMȵ1b9jpf]8T#4DH֓a1Lz 8y<&Lٰ곪U9ietW9Vk3bwCt4q4|FfBeZ 42 RUt3A`Y`uu-n}|G2g[g5drx$5uvefԿ(@%i?./ hV.Ƙ 8r&Xѿ*t)7,h=ȹ>gSμ0Uad*€K4a$7q &!LV}?9L(gJ\UpG]ԦDLSko\D15 l8qZ _1;3f:/+X _/ORb81@S"v ;[}ȅ`6zuUDĔ'^d- ˢ3^kPkʥ.r&ɩΆDDVW>H% j(+72ez[1p:_=2D h Z@x Tx=°HCⷎcx 柋p) 1ȑw@ =lL˷Ax! 5\Dz !q_~\dRKw/RYǃV 3Hqk ʨFR}:M KDrl.ѥ'Fnޗ`Bn̿!HCb[\ wVؼoW-9oBE:[1@w:Oy,) ڊʰvidھ{ nf9Z(BfIu]p=ڥ?E#p*H#$ϰ s[A ~UJPX"!e%3DIlg)HCD]68nDYQ - ӌ`cHP'pJ}tǠ[$%RP'~IhPSH$th!ը:#Ё@K莲d33D܊-wcn'gMfoN,.A .^ @}oK)0Wwӕ/b"/*ߛ. @ka N#"ۂ3 +Yfs ΝFay`"RlѡJnmƤi̝/KA\pد/wɀm?4y#K Tؖ2v…BE\Ty86Ey7x,+v֐@MH=omlE5k wA)7.ӛ#͔ZΠ3؁’7Jflu$zDG./c}#l4V]޲.mVm-e*EѣOU!t?dD=kXYhRz+n'X6/LÛ=nx   0|Ӱia69S$AS[q^b7l׸Uoe-*jke 0.x✞[BUL]mTvp;UR#D|I*Dk T}rm 6D!ĠںI H,TYVCEK 1hm6n_ʇ:eqY;HqtHgLbF]D40qRk~k[ghm%>XFb@tlʛdY{@tY,MGv_/_XuW9uEFAAr(t=d k!!VƇ];;ݷkA)xk"S)DbA̫ 6s:ne{4fFԵG%8R%('b>kBZNuyB o$Mi.z%룖v#ܹ뗜D-rHvʨ7P}pE7Uok kA7羦Ƶ% o7Dۼ\b6wԐ$q@(GBgl=^E(y M3Vis$ϫU=ƍG. jXZZ/|%W]vb5!$\l'u)m k1j r6z(ts }m"`~;9s{2eax!QWU_VbJxū;(J~m5'>L%J5lf;,(S*%D8ZȱP3Z?V{tICN U{a@!@>4IAeި'8P@2.>,ꙌteW!fO&j-s)@Ȥ.P<Ft0LAR.{x.Kj8N 6{gOo4<܊뚩^X}9#]T1;F>a[c%Gԩ>k" ݅'ȃBh>2}X@ow'9)aLiqh>̻K 1qg`rYi ,n3VW%aH ƊRLֱ/Tl)z15Z%$$ՒpVp hJ҂ y GUCн9lcҷ%$&mST pt ${ J9j5׆O%vYfYx01|(≚mx.x'29 JfC!oX˶qGǚ0p-v;[\ wS^\) 9uE 80F__/P /wبT _E{$t:)#CLdsx٦$GmI}G;KJ%O;BJ6 }ˆzgv[r[FY6-0B9Oyv0$b˧JPhCc֏g]!GA", s5l 8)Da>V JM0y澓~pſt3IMPHF g} P^{5LЀh'Zkw9_f(S>Ѧ k"+]-/Bʫ0noR̵ͳg`qT= 2D㩘Z=Z<37sk Dқ  ^$Am &骹*<䄁 v&@-~y\z} xL-|;.L;@gHc&/̣ )9شXja9'$&Iqvٯ#fX;2 Rde0D_ΡE ƞeNJoog<p2{S[;~*M<$'Ja)4>Ɲz6qh^a}(>j4M9F6EfK%_%lZhLv#˸iZ͒$tG]o}).wÁ*16S{T&ROjo!μ\U{vxҾ })D/^ LS",85^YFru&ݗ. 6EʌAqGNw4CafpJWk[I |;eE˼JljW;58B7΍HjJ+ԋm<8fOR܋EJLz}[6>ꕄM-z@oW}Al1g1FcE+a`eSn+z8v.82j2$_GWNH I$d R;Y Rl,3@sb y2VFw:2ʟSLè(R_E `*!p^e%) vJ|:čPIOmOܚ-k` Iy~* 4 gRU)5eڧ[I2r  ٪%mj>#%o;zHˆ>靎Qwʰf 5$߮,?TSno(vqyfҞ85%C)1Hou{?a82K#$n,5p?>騬/OKjW>IU;eP;B$w!06@KyzKٰl< @daw:뗼7(rv՟8,rٿ{{N橡 ݽ KGΌӎ:Rg3Ⱦ.H`%3iٺU7b]t5@YAt"GV94 ⽀QNgѰiE14~\>QemZBZmq73 fА{g6 }UUڐZ=΋);HQ# n̋v[dS.%67 tVXo8˜eTJö[L/>1EU3x:D%օ^RH,2Td>~4YXvf/nVn-)wZ}CD+E6#F 1?nJ"Y׽xxm^!Fz ּ}U(ݮK2NN;G7h+ɔa@,hfBepdTz^@zUqdP4HLD3?)ˣ  EWc~Xj¸Ds:!t|?{Yt)IpDavek^>#2&wNҴ  4r;΁~o^Jqpi- :L:4yj1cڋk N&/Bj',S~(֩LΚfv7 _> yn I>!i.w.;&~*$$Եw;YmXdY%*@9t ӘTbo*>s%v$8 i۫%)Ь![j@zEr=bLg4%m$ǡOSS/2MjXUPl1/ ]=O㪧XӾ¿`8s}kW-7A?jشeqD^ j;6Tf}b;@L1h/WotĮmQ1% hE^LG1j& <%DuzuπVpS1 id<;9XY;]uFC&;yđv m2Af5BfunK89Q\l \/ыl ν|q,F9Ɋ߱}tb=x;>9bރt?KKhdCdmSq\3pi+հt!3OLWdG훃UN|{Zf h̥*.xvRN {=>ʅT?T͸Bm.C.^ .Z-c{X+F] *xB.R,@|v@]/AN3+K-PZ\Է*h/IdzGE#-Eec7` ڶxej6eT\y>H@zymCzpOz~z ©3ߍ+LנGN6%@n:Lɷ/}(T\ ͬ^}' KZGq<ũk%bl#SJMxmgbAq=:[iÁVx)-%o ֹΎ~d-ZMu:Asq91OZ$ŴBҭq[G)(4 -!_h 񹽱ȩw|_q߾u˄iqGĵYg@r3N3ZJ_k;]K噍,X[7( M`aC\ڡ , YM@'''x,&"8QaF%&SJ3W`o 8l!B4 gd űp.&C&g޹53h4gT i=2h.XLՅcci󓖛*{,"H ,&qV2Ƈ*I0A94we5IZ +~|͔3;qvmgB)\ȗh{K87 {RqGADMr˵:][U55;aONljV27Q&:<*,5蔎aR+Elп H} [>3(F%A-f%d]a4k'g@Q0S%z?qAufc>)SO$QVY`((1f!uƍ~-b j4ݧy"~Ь*wB~T(f'JmkN8.>OqēUQ,4\vnmM]>yC,Z-mC^&'ʩ>bvgtY$MzKH ɝiED=뗓I˜Hҵ_ u`3KbnZ4pa"6ۿV͗廯̓=u&fQ҄Ј U/`rՆ N)Ԡ̖bYFxq?bK`3wU#1˿Xy.{ڣ'k:Za~^4 @baOG^j#ڈi8~gC'iL)g9كDv/07٢HNIM-Y4 B=nG,io%E[s4pgF?@z؁!T1#J{ڢH{ y6D/| EO R[G$h%HMA߀ IKFyhRpVa#i=o2IRdCBMFFQ-VR\m?ܒqP<'C%pRNRP&7R37! 2+h!{~Nu],`%8Գ22\PxoMf975L1͟紫ў W4[rt=1~]Oq'9&'WEFWdgmíf2'c5%>fR(#୘CɑpֶO',ۇ Uw ӯZ*{doBeFcy0\ xJBP>L*sݞ`J2WtK$`oX'}rX.TvL!?6Er ?ֵ$ʎhZ?>dK1]UZod^._zCI@g|W( mT?d_tD .w[&:Fa}o#C[kQƵ!N 3/Ta0Gzm1=u|oS4 %4)A+e=65OR"QG,˓q 9qZmLՅR^Z D߉=Z[A-33"!6u -?"7!G"rB%Eѳ29oJ`(Wzbm@n>ZIu |T"|Ok(:([+ډ/*gQy]^~!bit-;rX,"І:{1s4_7in'7e דa ؂ t~@ pOuml2(8Fk(^~.epIԾ4DZ-㸶$Ocj#HcP# YȾ#I7 GzX![~tV׫Y&x6?ƈMG3JɺSKXH6T;ca˰w,ѻPA ?^&zˋUJkx#bm7&bІzGZO<ׯw&S0oУ$i ͕R(.‘^W4+vrj82Ps=4e2굓7/a-et2BVEdVq8vq57T+B)B3=+*ڨVm G/ (dZao ߄0ZIDwc/&?})= L+)_Ǝ^CUԟv3H hP7X/d1Vj!N7vZ }O9rUʣxJ#c"dq.ZOe v<$2TBaM[%8[z\C>46\Z=(+X `z :3GV"az,$A0l~c$x7g*syLfr@L]C5q$GNc#N[ 5"E(i=WeVg0鲐ƩT%)^@ę%6!Q;sl6Yes1&47k*t "ip_,lײ6G aB,)tq@wg[ۇdKop›?̈́y*y7]Ah Z?A&UTuv8V;*T6a`"TA95O? v|HdEKs]榷zR ԞlG&KgS"/c!Ů/oYYi6;k^O|jKWWz+<Q靋 3*0GǴKUZak;\4 A̠@[22[s&6Ұ|-ȱRCj #Luk%XP腹!t`P5gHM,%A4˽X=F$?N}t[}[)^{}͂-y&@P1N)n1J ؔ8=PFTըI؀`ZCs`&Bs͢4*< C'Q-nˉo5 + oG"-WQjwk_dQSrXYzM7*L[ǧ"4;$GmaS*i̥N~C$M~鉷PNr!P9E H&j 15x U^=TpP,UFa)G.^S%`c"ʆ'f^kVH~vʋ>7nwJ`E.9c>D2#5 9R|% Ga7*h4PR]Ŗu;H'z9`׈5<^>( gn ,IZE~(%yvLQEs >8„~ }|Z1y%"FP?O:%ؼA+ёp;;m@>h@ۨ}J)sO9oW\Y:u 8_InUCTAepC]8XcۼާVmhJJJ@>%\Smb^`0iםws8->J#C?ӌ}U< RNP>ymp6$N'ӝiyq59DxF2(V:觴=)e66VVQ791 {} ԏ{zA.^:w1<;Xc[}JD>l^9ЭPR ѝ#!K+i( yc9F !iea]*q7yZؤF7"Cyulbi gekg @'QLcp~?j 6{~)& ԋ nH[4 ȔwBc=f rTrhF+{tQ\NxF?CWl!#Hٵθ6*[i; 5nT p1\!| u3Tx/^IXc/sߋ {mBOq /nރv e[NeW< >"o㵭SYhUJ {_)D/݃gG>oFڈiDhQOxyb0茆zsYN\Bz=gtlg/0h?:Z=ybA02d9De2؇9zT,*1ȥT@]T ro}=s 4OgZ ZjZp`Y7V1$ KrmrB~@gP}]d|lݥT/a'@ PwuՍgTy¦&CfsBn.̽vJ]Cͬwp H :#ghgs. Q7X <|g&[{B>SVs8?,HXJ LOk FVε|dFbz^c=h_m^wOKX7T ^M q:O|z'΍ i6UmVP2G鳸K̭|fBb7hZ a!֫ݡjqoBFA*b7a;]ba([E6dDֻbwVףPn^0r"/E5cXpNc'f~lY.:m OHxߓFM|*ԓ-Aj qAK0:옳 f~tfoL=*uDZ=ec!myUtD) J4̯-ɂm@;MpP&)4Xr*Py1hC ڸq)cAji#rP$ON 9qG[?"PsR)îȼ\GL'nj1F429 㺼B{wmCZASmg)4f8+;PrPGk="z0F>^i_|{'K(I,T9 A/aѿPIxCtCԑyrJFCiG.1L\gیۧlͧ"*Wh^gD'NU?s'97YTp;Ev7|*Me}J}*Ka)Nƣv$VV;Ѭe#+m/wf/̅xe+]ӡ5>Į#cNOT:$W Jx 5J$5 \,=c`'豲*S80-ygfiL-Nĩ `ڟEFID~4+icwQ41ςyЈB\?HvLI[`f%TGN_L'ﬔW dMJxĽiČ1`"88her'̝\ _+x„&A|5kf'.R:2(Z!+b9YgK> ׹h'Ap'z祝 e/SQƸ@+~ 4 |4r5ZaSy:*EႬÂzyҬ\ƐO;X̓/޾ry(Mɲ($ttZ셃[rvNCnRqlc{B? ە|gBY %ܜgW.tjhc @ֱcuFVq7R;m < /챙 E+9~PNN`]MTPMVota]+,fTu]qװ~uQ/x:=X\x 4t^LN>JP+QѻZz6#;B-.ΕpTbb`Ts.V2{Zʾ[?}:EQ/ o! ʹ样/c]8`'^Zt A>)kFYܧK+ٺl.gUi(f뭈j]5+xci*Qb"vtߣ&g nSp9ˀhK20w$/fq@r\F-4J)LV20ZM%/K%RP T^yD4R;yC ,oóZP k rԶx>#0FCz"jSJ_b5F̼oB!r"T{"G_B V~%j[+#;ilpj0Pֲz|1TO_whֹ>[iJD J@{8< ^˛퓒vz0Qb'Q~gH+@.4$$r8N[BX@3 RǜtӟjE*L T(қ ?zNx'Ц!ERFZ+5{U?3M.[95*~."cE1‘sk Rֻk )C'zi=g:;̾Ģ>, +p<Jgd  (‰ߞe"S}u*uã;G|23%+a:| wroB9i'u zs koLѱO1 pf*͛ghfr" xGl&;[ޠr[\Uqj:94O«הhoЅ}>T \5>0ǫ]!hA0T 7ķZR'| ;(g1]ueDZuȨrg&<]W$=UX'"CśR^T2qQ( $c/ʕm0{V(`8 ``WofPU+8O[JאӂOHԁ&= ԀђU'MLQ׮evnr3mulۂD4"/qy>[ۺHy!m0[?&`%:ӕ.8V|l$xsbhIrBǖ8z+Ex0p J&b[f.kq_$@$c[]`߄[{fC Pڀ0)ֹx `a*2Fa/}#/m *kp7\?ֹ.'Kp|Hon9qmMzrNjDξdܕ)*tyťWS9Q~n[g0OZSɢ9h7 跲PtVW`? .A#n5WXki{} %1lX> yy^ E9m^'YEEn&fhQw@DO2Do[0Ժr5Y;P.2l?"V4-rHsb^D"TWu L@u~T x I<A*e䟌5qMM YW<ڢg*xX=[x ɄDd'5P/]5m8\jxjgn3VGLxDa\C`U^r>p%$xH׆i&QV*̓a)kul>T8+@ %wgC@}6U5huy=r% 1Jo^qSCHZ9a݊,f͏iչA-(a ;(a-V؋dBϫ0< 3p:?E(&CcX:nI607. l?+FGw+5Te6߳'j a:`|ռH ,k*#+%HpT6sGZyu+})|љ VӬXVA f`+زI녃{b}'oNb b1s cl+߆P}YˉEwxƖsV΁;n-06$[[޿0 owv?%ڄd2 z^Qi[ Z*|>Xі=LRD UMWT%lDo5i2zPq$x뼧};)M(X cvZکH g!#\cd6h!JbY!)~1њ#st/,WOI$Awu:L qNsWU^2HyxJdH]+$Or bR:kf~.Z(*BN,nleo ;946uc47w[s+(-bvHɮȘ7 :c!rs"Q=l -~/+Cl\B׉ls9礮ZˀG{dQϓu4TE/g5boF0;wJF66Ͽ%8[腃&:BHnbZ.<ũ8BFsRby\x۸t_ h:,5C:@B5vɸ?߾FesuE2|7Xv)кcy9؇~9,Nt?]VKǤ"BTok&鉅dF(Ҹ'!S !JE"&[? :ߍGM25 ZC6K,Ȝ{x"쾃!?&>#Yʋ5r}#dvXhamNZ;#/ohd5'AfږVpc/y+jqԣ?y4mDѸqN@H,?LR:Q>ruW 6GX0"4nLM5}0t$<|)|ZFLlJ' ]Py)&xFnU$aRԊLMv~:pb+џKʪ@ P"RxٶwݮnĴ4<{RXL门d J~):ĐXҫH%J [ DGh>0\> eH+x6=ش@S;35݂O$#AT^B[ӫ' ^ LBڳyvЙIJӨ#82-n"W6<7"""z2h{Hmw٢͌z^ [*wmp%il+[lHZ b{JqP*3\ qiđ}$Wo% T{:%tBvgGrm 0Ā$fP$7 gc%.$cMI&=|Bv&)IEXL-Odp+Db3dYurRÁr'aV:jXҎbf<o׎µPa5JP/uLsqoSQ=| vqlY#tH۽|B4ܡ ]*y9A(gubԀێzaR9a\clI3UHy GRng P^ms < ؗ`KqQ=y šɠ QgpOE[yP}e(*Nц|-I=UUU%v2ɦ(:,DBwm POuv}H|Kem92cpXS|Momk%-|ե-\,^Y3\o-P!d̥ =nˊfF<:d;{EWD>eVQG%pĖqeq6ŬfV 8L'ѥ &3+ %9y{ų+@L22])DA冇r5)ċI#`I7>$rPv K%P`8=v@[R/rC$=.?*5Ig.'U`}EwxXC;pJ1 C5oGw. &",9,/%X2 °Ho(`ăK0`򯋬@ r3->.h(70s|[9s(T((2;Nc9`"hOw%]&; H*?G%H 4 Z1W̦rLK*NޞR,_|!曾Z+ .wL}+~ë|c.QelW~3ϲٙDQpu9i̒7g}v6DX*wez@J?I aԎ)."0xa/քVRpWsi%3Y Qyog"tH*nvfVvRs$0c@\+/ɋ0 ZBP+ՃnXAz`weY^u ]he8LdY:^%/I7vF 'kd52n[Jx.FhA2dxNL* )M<)%#H ҈#T RkBo"BGZƙ4DJ1ɩV3b\8T-[5ccگ|.ݴp=u@5f91Zrw9&y<JNX4@A~|"1'7 .ҎfչWrrjXAʝŐ3 qZw[%9y]UHE˼vq5wH p+mF7O0i~T+:Z0Z5eCS .~y "XF{ :i^yΟA/zpd3OnPȟ7 &J"+챹+zI\N -9jN'h )JX'mЈ* J(;y!q6NE5|ä=Xyzׄ55Ch]Ř:MghR8--~&%/!v?*㿏r 6aԝc{':)͇݋vV5t, ątTgy`99kTګ?aN NSL#=.-JzLņW8D%tfgI=nukf}7.|k:]Dw=+a.v}¼n`'4E3~4ߏ}A݅ r9T<]-J>EG +j4ɜ}E4E !~ 5N(0h%({SʞW(Q䓁 pǒɸ@d4;#VFrәc:A#7p<ja:WXɻ]FA은[JSMr($TZƒ_vԬ Md 5FP˪O@ׄ:3i_bUV0 *ur\<l2rf2F+yuIc2ȖqN5Ls zr8͵+*u".{WZPЅk%ΆSNqeRn}5 ,0 4,j^t~3T/3$I/NfO!g}XGf烰Lw3+3XZgOFwǣm(I_=1}7SbeQ.hF?6|y273 >ߦ k&">T!̐j}Ǭy8إ/l!kC5wq5_1=8*k h&~ $n9|lÞPx-F^O!-O0W ŘӲH}DmPERbهT}E% at-\hk6٨AVV~biԆӰr+?!26U Xpv5dWp:m:x!7EΎKS71~is!RfY"!yC=H~帅V!XFaBS1*qC5Ӵe$WPe˰>S2~Yo.6469Q2Ǵ8 Ӡ4G¶B3uǛ_M7%k54 u^aiwSu3SL&(Ioydmć xYd 0$0P+^u]o2/:.% D*cz0.Mݔh3MJj6缄",T%>,7([&xekUW@5q+)Pľ v`:qustLՀeGų{渌r Mk^.ָ] +:)|,C' :idTl͔Ϳ絏5ǐYikWnN$ౕGQrɞ@o4~HUE_ Zǥn vpk(J1r<RRi],hA N˷ڕi6DMK*،ɾգ$#~ +ױ sn .S}%!jPִ] nIC'SiwU0z|4/G_u|X""=/ӮܧvB k! {yICNt=/s{IeTjXW&)7tJ>Ҭ0l/ER5=u#=3%)IyB@dT9)+o+%xBMgZJۖaK~doQo+ Bn{&!Bk¶}r] Nk~Jl2 0]&JǼ퓷-Zi2<+sSܝE\i`yе'U78SVsPG2)h}32RFuDCBh Zf'֥%ZA "EקỘ@ocxȽtVәع;Se{LkΩd'8O,kT5ZG**P J$~)yqp$:`_X @VAXFJl]m6&wun~gMU!\pQe-w-Kfņۗ _&H 8ohP5Xz& H##LXQROU>)GzZ)4*tT-JU6}U"Bkަ(2Zwsv˻D/* *]5]`HP&f[`O8ټ "\*U.qU"p|$[d%0_W$mQԱ%*P*ՍseADOSNi-6_+?2ӻWO;ù@/ZiGDJݼ`8i"01ɘj7J+;\GTyujރx;S!uPx3劦M+U$:.wl}`z+86"?:NJG4@ D'GGcXI./9Zu`M?&?&gÙ!Zwx];V,oAI'!2q1zDmyYQ:\!DC_b@m6{ؑxq.$*=Qs̿=+3@35LLt^מʔXxx?4r3Mͷ`f?Ց阜x@O GcD R:wzH8n&2}\]lkNQ=Z&$*sM}߹@܎Q/ֽt,Kߥ+;2Kq9*d uZH ;|r'hW y,͏BDU7Jgl6뛀__)ouf5p+F9kn_ӕ{GQa䶹A@tv~7s k%棼z*[T<+fZ>-oWCvbTo+3\Γa.q8fӸ=n>oA|e94^>4 OԴiyLZĔ׼V]zJfvloM4bQ9CZ{?_e$dolYޢ_[HI{NcWA3a"$aǶ oy">RS?,n`U J$CQijwGPiJ- 7N-o`aDy +5nm~̝>^NZvDr&D}R6 MJ$3Z-/l^e7ЃɰffL)Zl@ hei.[X#--hhkKmoTX<7g+nS~'hap B8j5 18LSS5"اRiȃDJݘlK$+OӲ ]Fwrpnд^MƱlf$,,۹c-e"DtXIQLtZ۱gsgظu85[s;B}A3FԨ3 4FHΈsO~+H>ޤCj{ؾL7`$sr:7}IwLE3SEpNKOviXbK.dBL}}YJ&_f\AUV!NЂ8mIWYK߮1)MrzBf%3<zN, U˫31#*N0%E+>c\8y\avX{*5qT1⌴laqJ 2uu#\"d+DUE=8+8Tټ9 ր_ƛzA}惢QnIB^W_[8PTj !}-;OTo}h.f𛇸OQ/>?+ .FH ,+&`VtH-^x'})e\F_#`2:fR'ÐIrdox?!<>6|k;W0eT'2j$n9~C~aglܹ@O8@Igma,m"6פ]UTf/hnOhkS9O"vzc_I) Hyrɪ5pz| Th$79HK%Du=ܦ V%ꑞ` BʬlJ5aD7Um> uFݮ @`,L!y|A>_wpc Y~Fn": ׎MHؠ)C;\h&@E92d47/, 8k3'V<I<#t~4T<9Gɖv#U>c[..ώqyTD4$)1Axn9ӂ8*X#ibջ 6YuΔ4 zuoφF{T]ch Hl,!O}[~[OccOӱQFb {z0)M߇=\n)+VE lubwLD}l2FhE—Ixa&Yw2ZLvn-S&Ә 8YjFI~b+,b.L6>=[tɾ13~Of ^(}]/f,,ysMИm}j+658A%O>a(NVWPR0sJy(6 ޚO~|!ioAsiH2|q9-sF1^ɡacD%A}kHw!Cd؏ɵ%@JՌFaȌSn&căҨ6ם%=aI7)Vih?d^vEH%r+߆Zm#G)r_pRc,mf-X,S2+4q56:='.Ti]nJhtbi` aȠU]̀V+R樆O;`[sb"rE=6?44b5O"?ZL25>b ɿeh ӸB$k7t"A.$6&(WLjNn"ϖY43Ga>nu fdhGLZ+]rA[y)?_tD4L)&ݸ>/|aTl};>QQMԁX{LH@O jW_E,=ߨquWoT<$Ym1X>D/{ZEU ܹ(x;:6lI87Mk`}.`(ڳeYLj{$yv[PC=N) ڐ30? &A. Scr 9bgfԛx~Y 6vNMXl֍W(HvdU'@>] 'bi"Fi5U;4 ١a}nۥYE ]G;0q[:*IJxA{k~Y#<a%ӵR~P]}|kLvbU* &jg=4rL&}onv4pWv|_ |fRX' ~$5b݇Gs O\#aɞ/EΊatrOU(os@Z]Y}4 ,KDW8ȒLvӽ($m<Ł[_ҖG۹?Wc LYqXjr!tdL_rLen5ͯ*(L "0ԅR Cem`vޫh jl&\I iq< 1-۶8%+ Fbf=RV6ZFZ2}ޓ-f?%DFd23wNpcoL(^Y<s5VR{Fj b]oh·ʆdNAbB8/Nޞ'K떁=sM$ӷEm B*[?MW9qFvZP^0/xjZ!k(Ly4xEdzI+)5تQb? AB%(T >FDäpnLh7ʒMOe!],ə <˱U/if)GEv|Krm'xClJ3*"\ CA[^{F:Կ"3z6PaJ $V>6l0 >Gn F@,'h8{l'E-EvJ7'4¾CPMXZfnZY"ei_㎐D0ǥy$Ic^y6bx@祛7ǞOυU(!LxՑ>d7Z!lOFo;]@׎-˶bZ Ud!=w;>pV;:"F7N+sǁf۷h;$bUx@@Y~%>,BvLS(؊h"F?ER28k,|J.uK c{ |e°^Ī1Eaze6C .ndJNd1LXv9a}?=rj_m8X`71&`!E#F.*|ަBrtcǮy7F,{Fq_w9!w)%3j"(&9RA6^l(Tp> E0'bL3op1}|Ri ǻ@⡻p=HI*vp&^TjcFne*!c󹕛to=~ _`78~JI͒Đ{.6;/%%'bh5$}mQ62۶yN7[U8$1*߮E4'\>7},ɞSl* o_eZ? ky ¯LZ|j&< 70W_ުމ$-7#EJf,?9jd.(lQ+GQmC1Lq ,)H )>]YMaVmQ\|p/:H" $#zџwm/袃l,Us̗TrU\]֖>`+ V:y(qOʲv| /ypO(!yk7xemY#:O.C~>hEݰR8{xp-%'y x"