pdns-backend-lua-4.1.2-lp150.3.3.1 4>$  Ap[/=„4'MpM9|?qgYz}:`T\v;5>K@<Ls iŨJ zPKB8l@zRyd|%]sڋ:&Nx5&] j3hx8R6 FВŜ.'!|ス3XMl:ShCQ  V/nֶYg([gͫrBm6J+> |aM vhv~OzSje 6cde2aa615b9876f08ee2de325c0e5ed7f704ca0c021407880e37e1caaaecfc0f9af0c63724603856aae2b1b6bf06f66f807d1e5[/=„m/Ɓ<%^\Xgkϵqv28 wdIA$)NKnNUޚ+bCk#TGg&XqJG)vXp>k?k d % : .Rkqx| ~    @(8D9D: DFh GhHh Ih$Xh(Yh4\h\]h`^hqbhci+dieifiliuiviwjhxjlyjpzjjjjkCpdns-backend-lua4.1.2lp150.3.3.1Lua backend for pdnsThe PowerDNS Nameserver is a authoritative-only nameserver. It conforms to contemporary DNS standards documents. This package holds the Lua backend for pdns.[lamb20PopenSUSE Leap 15.0openSUSEGPL-2.0-onlyhttp://bugs.opensuse.orgProductivity/Networking/DNS/Servershttp://www.powerdns.com/linuxx86_64P[2a9cd3ccffbedd3fa338ae08368877167af0e944dba5916bac8f5e9df5cc055drootrootpdns-4.1.2-lp150.3.3.1.src.rpmlibluabackend.so()(64bit)pdns-backend-luapdns-backend-lua(x86-64)@@@@@@@@@@@@@@    libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.4)(64bit)libgcc_s.so.1()(64bit)libgcc_s.so.1(GCC_3.0)(64bit)liblua5.3.so.5()(64bit)libstdc++.so.6()(64bit)libstdc++.so.6(CXXABI_1.3)(64bit)libstdc++.so.6(CXXABI_1.3.9)(64bit)libstdc++.so.6(GLIBCXX_3.4)(64bit)libstdc++.so.6(GLIBCXX_3.4.11)(64bit)libstdc++.so.6(GLIBCXX_3.4.21)(64bit)libstdc++.so.6(GLIBCXX_3.4.9)(64bit)pdnsrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)4.1.23.0.4-14.6.0-14.0-15.2-14.14.1ZZZЛZZZ@Z@YeYY5Y}@YMYMXDX@X~@Xx@Xx@XN@WW@WJVV8UUv@U>$U8TPTи@Tи@Tи@Tto@Ta@T_W@TR(@TO@TO@TO@T+T+T+T+T+T*@T)IT)IS˯@S@S@SP@R{P-P@Pd?O.@OOOOU@O8@NNNLK#@K#@KJ.Nkbabioch@suse.commrueckert@suse.deadam.majer@suse.demichael@stroeder.comadam.majer@suse.demrueckert@suse.deadam.majer@suse.dejengelh@inai.deadam.majer@suse.devcizek@suse.comwr@rosenauer.orgmichael@stroeder.commichael@stroeder.commrueckert@suse.deadam.majer@suse.demichael@stroeder.comadam.majer@suse.deadam.majer@suse.dedimstar@opensuse.orgmichael@stroeder.commrueckert@suse.demichael@stroeder.commichael@stroeder.commichael@stroeder.commichael@stroeder.commichael@stroeder.commrueckert@suse.demichael@stroeder.commrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demichael@stroeder.comLed michael@stroeder.commrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.decrrodriguez@opensuse.orgcrrodriguez@opensuse.orgp.drouand@gmail.commrueckert@suse.demrueckert@suse.demrueckert@suse.dejamesp@vicidial.commrueckert@suse.dedimstar@opensuse.orgidonmez@suse.commrueckert@suse.demrueckert@suse.demrueckert@suse.demrueckert@suse.demhrusecky@suse.czcoolo@suse.comcoolo@suse.commhrusecky@suse.czmhrusecky@suse.czmrueckert@suse.demrueckert@suse.demrueckert@suse.decoolo@novell.com- Update to 4.1.2 - Improvements * API: increase serial after dnssec related updates * Auth: lower ‘packet too short’ loglevel * Make check-zone error on rows that have content but shouldn’t * Auth: avoid an isane amount of new backend connections during an axfr * Report unparseable data in stoul invalid_argument exception * Backport: recheck serial when axfr is done * Backport: add tcp support for alias - Bug Fixes * Auth: allocate new statements after reconnecting to postgresql * Auth-bindbackend: only compare ips in ismaster() (Kees Monshouwer) * Rather than crash, sheepishly report no file/linenum * Document undocumented config vars * Backport #6276 (auth 4.1.x): prevent cname + other data with dnsupdate - misc * Move includes around to avoid boost L conflict * Backport: update edns option code list * Auth: link dnspcap2protobuf against librt when needed * Fix a warning on botan >= 2.5.0 * Auth 4.1.x: unbreak build * Dnsreplay: bail out on a too small outgoing buffer (CVE-2018-1046 bsc#1092540)- add patch for upstream issue #6228 https://patch-diff.githubusercontent.com/raw/PowerDNS/pdns/pull/6370.patch- geoip not available on SLE15 but protobuf support is available.- Update to version 4.1.1: bug-fix only release, with fixes to the LDAP and MySQL backends, the pdnsutil tool, and PDNS internals- Update to version 4.1.0: + Recursor passthrough removal. Migration plans for users of recursor passthrough are in documentation and available at, https://doc.powerdns.com/authoritative/guides/recursion.html + Improved performance: 4x speedup in some scenarios + Crypto API: DNSSEC fully configurable via RESTful API + Database: enhanced reconnection logic solving problems associated with idle disonnection from database servers. + Documentation improvements + Support for TCP Fast Open + Removed deprecated SOA-EDIT values: INCEPTION and INCEPTION-WEEK - pkgconfig(krb5) is now always required for building LDAP backend - pdns-4.0.4_mysql-schema-mariadb.patch: removed, upstreamed- package schema files in ldap subpackage- Update to version 4.0.5: + fixes CVE-2017-15091: Missing check on API operations + Bindbackend: do not corrupt data supplied by other backends in getAllDomains + For create-slave-zone, actually add all slaves, and not only first n times + Check return value for all getTSIGKey calls. + Publish inactive KSK/CSK as CDNSKEY/CDS + Treat requestor’s payload size lower than 512 as equal to 512 + Correctly purge entries from the caches after a transfer + LuaWrapper: Allow embedded NULs in strings received from Lua + Stubresolver: Use only recursor setting if given + mydnsbackend: Add getAllDomains + LuaJIT 2.1: Lua fallback functionality no longer uses Lua namespace + gpgsql: make statement names actually unique + API: prevent sending nameservers list and zone-level NS in rrsets- Ensure descriptions are neutral. Remove ineffective --with-pic. - Do not ignore errors from useradd. - Trim idempotent %if..%endif around %package.- Added pdns.keyring linked from https://dnsdist.org/install.html- Don't BuildRequire Botan 1.x which will be dropped (bsc#1055322) * upstream support for Botan was dropped in favor of OpenSSL, see https://blog.powerdns.com/2016/07/11/powerdns-authoritative-server-4-0-0-released- This makes the schema fit storage requirements of various mysql/mariadb versions. pdns-4.0.4_mysql-schema-mariadb.patch - preset uid and gid in configuration- fixed use of pdns_protobuf- update to 4.0.4 - fixes ed25519 signer. This signer hashed the message before signing, resulting in unverifiable signatures. - send a notification to all slave servers after every dnsupdate for complete list of changes, see https://blog.powerdns.com/2017/06/23/powerdns-authoritative-server-4-0-4-released/- added pdns-4.0.3_allow_dacoverride_in_capset.patch: Adding CAP_DAC_OVERRIDE to fix startup problems with sqlite3 backend- use individual libboost-*-devel packages instead of boost-devel- update to 4.0.3 which obsoletes b854d9f.diff- b854d9f.diff: revert upstream change that caused a regression with multiple-backends- update to 4.0.2: The following security issues were fixed: - 2016-02: Crafted queries can cause abnormal CPU usage (CVE-2016-7068, boo#1018326) - 2016-03: Denial of service via the web server (CVE-2016-7072, boo#1018327) - 2016-04: Insufficient validation of TSIG signatures (CVE-2016-7073, CVE-2016-7074, boo#1018328) - 2016-05: Crafted zone record can cause a denial of service (CVE-2016-2120, boo#1018329) For complete changelog, see https://doc.powerdns.com/md/changelog/#powerdns-authoritative-server-402- BuildRequire pkgconfig(libsystemd) instead of pkgconfig(libsystemd-daemon): these libs were merged in systemd 209 times. The build system is capable of finding either one.- update to 4.0.1 Bug fixes - #4126 Wait for the connection to the carbon server to be established - #4206 Don't try to deallocate empty PG statements - #4245 Send the correct response when queried for an NSEC directly (Kees Monshouwer) - #4252 Don't include bind files if length <= 2 or > sizeof(filename) - #4255 Catch runtime_error when parsing a broken MNAME Improvements - #4044 Make DNSPacket return a ComboAddress for local and remote (Aki Tuomi) - #4056 OpenSSL 1.1.0 support (Christian Hofstaedtler) - #4169 Fix typos in a logmessage and exception (Christian Hofsteadtler) - #4183 pdnsutil: Remove checking of ctime and always diff the changes (Hannu Ylitalo) - #4192 dnsreplay: Only add Client Subnet stamp when asked - #4250 Use toLogString() for ringAccount (Kees Monshouwer) Additions - #4133 Add limits to the size of received {A,I}XFR (CVE-2016-6172) - #4142 Add used filedescriptor statistic (Kees Monshouwer)- update to 4.0.0 https://blog.powerdns.com/2016/07/11/powerdns-authoritative-server-4-0-0-released/ https://blog.powerdns.com/2016/07/11/welcome-to-powerdns-4-0-0/ - packaging changes: - remotebackend split out now - enabled experimental_gss_tsig support - enabled protobuf based stats support - no more xdb and lmdb backend - added odbc backend where supported - drop pdns-3.4.0-no_date_time.patch: replaced with - -enable-reproducible- update to 3.4.9 * use OpenSSL for ECDSA signing where available * allow common signing key * Add a disable-syslog setting * fix SOA caching with multiple backends * whitespace-related zone parsing fixes [ticket #3568] * bindbackend: fix, set domain in list()- update to 3.4.8 * Use AC_SEARCH_LIBS (Ruben Kerkhof) * Check for inet_aton in libresolv (Ruben Kerkhof) * Remove hardcoded -lresolv, -lnsl and -lsocket (Ruben Kerkhof) * pdnssec: don't check disabled records (Pieter Lexis) * pdnssec: check all records (including disabled ones) only in verbose mode (Kees Monshouwer) * traling dot in DNAME content (Kees Monshouwer) * Fix luabackend compilation on FreeBSD i386 (RvdE) * silence g++ 6.0 warnings and error (Kees Monshouwer) * add gcc 5.3 and 6.0 support to boost.m4 (Kees Monshouwer)- update to 3.4.7 Bug fixes: * Ignore invalid/empty TKEY and TSIG records (Christian Hofstaedtler) * Don't reply to truncated queries (Christian Hofstaedtler) * don't log out-of-zone ents during AXFR in (Kees Monshouwer) * Prevent XSS by escaping user input. Thanks to Pierre Jaury and Damien Cauquil at Sysdream for pointing this out. * Handle NULL and boolean properly in gPGSql (Aki Tuomi) * Improve negative caching (Kees Monshouwer) * Do not divide timeout twice (Aki Tuomi) * Correctly sort records with a priority. Improvements: * Direct query answers and correct zone-rectification in the GeoIP backend (Aki Tuomi) * Use token names to identify PKCS#11 keys (Aki Tuomi) * Fix typo in an error message (Arjen Zonneveld) * limit NSEC3 iterations in bindbackend (Kees Monshouwer) * Initialize minbody (Aki Tuomi) New features: * OPENPGPKEY record-type (James Cloos and Kees Monshouwer) * add global soa-edit settings (Kees Monshouwer)- update to 3.4.6 [boo#943078] CVE-2015-5230 Bug fixes: * Avoid superfluous backend recycling * Removal of dnsdist from the authoritative server distribution * Add EDNS unknown version handling and tests EDNS unknown version handling Improvements: * Update YaHTTP to v0.1.7 * Make trailing/leading spaces stand out in pdnssec check_zone * GCC 5.2 support and sync boost.m4 macro with upstream * Log answer packets only if log-dns-details is enabled- update to 3.4.5 Bug fixes: * be careful reading empty lines in our config parser and prevent integer overflow. * prevent crash after --list-modules (Ruben Kerkhof) * Limit the maximum length of a qname Improvements: * Support /etc/default for our debian/ubuntu packages (Aki Tuomi) * Our Boost check doesn't recognize gcc 5.1 yet (Ruben Kerkhof) * Various PKCS#11 fixes and improvements (Aki Tuomi) * Several fixes for building on OpenBSD (Florian Obser) * Fix several issues found by Coverity (Aki Tuomi) * Look for mbedtls before polarssl (Ruben Kerkhof) * Detect Lua on OpenBSD (Ruben Kerkhof) * Let pkg-config determine botan dependency libs (Ruben Kerkhof) * kill some further mallocs and add note to remind us not to add them back * Move remotebackend-unix test socket to testsdir (Aki Tuomi) * Defer launch of coprocess until first question (Aki Tuomi) * pdnssec: check for glue and delegations in parent zones (Kees Monshouwer)- no longer ship dnsdist here, we will ship a new package based on the snapshots from http://dnsdist.org/- update to 3.4.4 with a fix for CVE-2015-1868 (boo# 927569) Bug fixes: - commit ac3ae09: fix rectify-(all)-zones for mixed case domain names - commit 2dea55e, commit 032d565, commit 55f2dbf: fix CVE-2015-1868 - commit 21cdbe5: Blocking IO in busy-wait for remote backend (Wieger Opmeer) - commit cc7b2ac: fix double dot for root MX/SRV in bind slave zone files (Kees Monshouwer) - commit c40307b: Properly lock lmdb database, fixes ticket #1954 (Aki Tuomi) - commit 662e76d: Fix segfault in zone2lmdb (Ruben Kerkhof) New Features: - commit 5ae212e: pdnssec: warn for insecure wildcards in opt-out zones - commits cd3f21c, 8b582f6, 0b7e766, f743af9, dcde3c8 and f12fcf7: TKEY record type (Aki Tuomi) - commits 0fda1d9, 3dd139d, ba146ce, 25109e2, c011a01, 0600350, fc96b5e, 4414468, c163d41, f52c7f6, 8d56a31, 7821417, ea62bd9, c5ababd, 91c8351 and 073ac49: Many PKCS#11 improvements (Aki Tuomi) - commits 6f0d4f1 and 5eb33cb: Introduce xfrBlobNoSpaces and use them for TSIG (Aki Tuomi) Improvements: - commit e4f48ab: allow "pdnssec set-nsec3 ZONE" for insecure zones; this saves on one rectify when securing a NSEC3 zone - commits cce95b9, e2e9243 and e82da97: Improvements to the config-file parsing (Aki Tuomi) - commit 2180e21: postgresql check should not touch LDFLAGS (Ruben Kerkhof) - commit 0481021: Log error when remote cannot do AXFR (Aki Tuomi) - commit 1ecc3a5: Speed improvements when AXFR is disabled (Christian Hofstaedtler) - commits 1f7334e and b17799a: NSEC3 and related RRSIGS are not part of the dnstree (Kees Monshouwer) - commits dd943dd and 58c4834: Change ifdef to check for __GLIBC__ instead of __linux__ to prevent errors with other libc's (James Taylor) - commit c929d50: Try to raise open files before dropping privileges (Aki Tuomi) - commit 69fd3dc: Add newline to carbon error message on auth (Aki Tuomi) - commit 3064f80: Make sure we send servfail on error (Aki Tuomi) - commit b004529: Ship lmdb-example.pl in tarball (Ruben Kerkhof) - commit 9e6b24f: Allocate TCP buffer dynamically, decreasing stack usage - commit 267fdde: throw if getSOA gets non-SOA record- update to 3.4.3 Bug fixes: - [commit ceb49ce] pdns_control: exit 1 on unknown command (Ruben Kerkhof) - [commit 1406891]: evaluate KSK ZSK pairs per algorithm (Kees Monshouwer) - [commit 3ca050f]: always set di.notified_serial in getAllDomains (Kees Monshouwer) - [commit d9d09e1]: pdns_control: don't open socket in /tmp (Ruben Kerkhof) New features: - [commit 2f67952]: Limit who can send us AXFR notify queries (Ruben Kerkhof) Improvements: - [commit d7bec64]: respond REFUSED instead of NOERROR for "unknown zone" situations - [commit ebeb9d7]: Check for Lua 5.3 (Ruben Kerkhof) - [commit d09931d]: Check compiler for relro support instead of linker (Ruben Kerkhof) - [commit c4b0d0c]: Replace PacketHandler with UeberBackend where possible (Christian Hofstaedtler) - [commit 5a85152]: PacketHandler: Share UeberBackend with DNSSECKeeper (Christian Hofstaedtler) - [commit 97bd444]: fix building with GCC 5 Experimental API changes (Christian Hofstaedtler): - [commit ca44706]: API: move shared DomainInfo reader into it's own function - [commit 102602f]: API: allow writing to domains.account field - [commit d82f632]: API: read and expose domain account field - [commit 2b06977]: API: be more strict when parsing record contents - [commit 2f72b7c]: API: Reject unknown types (TYPE0) - [commit d82f632]: API: read and expose domain account field- set $LD for now. this fixes the configure check for relro,now.- remove custom PIE handling. upstream does it for us now.- update to 3.4.2 This is a performance and bugfix update to 3.4.1 and any earlier version. For high traffic setups, including those using DNSSEC, upgrading to 3.4.2 may show tremendous performance increases. A list of changes since 3.4.1 follows. Please see the full clickable changelog at https://doc.powerdns.com/md/changelog/#powerdns-authoritative-server-342 - move man pages to section 1 to follow upstream change- disable botan and geoip on SLE_12 because of missing dependencies.- Fixed broken _localstatedir- fix bashisms in pre script- update to version 3.4.1 Changes since 3.4.0: * commit dcd6524, commit a8750a5, commit 7dc86bf, commit 2fda71f: PowerDNS now polls the security status of a release at startup and periodically. More detail on this feature, and how to turn it off, can be found in Section 2, “Security polling”. * commit 5fe6dc0: API: Replace HTTP Basic auth with static key in custom header (X-API-Key) * commit 4a95ab4: Use transaction for pdnssec increase-serial * commit 6e82a23: Don't empty ordername during pdnssec increase-serial * commit 535f4e3: honor SOA-EDIT while considering "empty IXFR" fallback, fixes ticket 1835. This fixes slaving of signed zones to IXFR-aware slaves like NSD or BIND.- only enable geoip backend on distros newer than 12.3 before the package lacks the pkg-config file and there is no fallback to finding geoip without it.- fix permissions of the home directory- enable some backends that we had forgotten: - pipe (main package) - random (main package) - geoip (new subpackage) - new BR: yaml-cpp-devel and GeoIP-devel- enable sqlite3 support also on sle11- also drop asciidoc and ragel buildrequires: - asciidoc seems unused - ragel is only needed when we patch pdns/dnslabeltext.rl- drop xmlto buildrequires- only enable pkcs11 and zeromq support on distros newer than 11.1/SLE11- convert all conditionals in the spec file to bcond_with(out)- update to version 3.4.0 upgrade notes: http://doc.powerdns.com/html/from3.3.1to3.4.0.html This is a performance, feature, bugfix and conformity update to 3.3.1 and any earlier version. It contains a huge amount of work by various contributors, to whom we are very grateful. For all the details see http://doc.powerdns.com/html/changelog.html#changelog-auth-3.4.0 - use system polarssl on 13.2 and newer new buildrequires polarssl-devel >= 1.1 - enable lmdb backend on 13.2 and newer (new subpackage) new buildrequires: lmdb-devel - enable zeromq backend (new subpackage) new buildrequires: zeromq-devel - enable pkcs11 support new buildrequires: pkgconfig(p11-kit-1) - drop docbook tools from buildrequires - no longer extend the libdir with the pkg_name, configure does that automatically now. - drop remotebackend-http again. it got removed. - refreshed the date/time patch: new name: pdns-3.4.0-no_date_time.patch - drop pdns-3.2_polarssl.patch: no longer needed. the intree copy is integrated into the normal build system. - package newly provided sql files in each subpackage.- fix build in distros that do not have %_tmpfilesdir macro.- Use lua-devel, current versions now support lua 5.2 - Use /run/pdns as _localstatedir in distros with systemd this also requires using --with-socketdir even when no systemd otherwise the path is overriden by the build system. - pdns-no-date-time.patch : Do not use __DATE__ or __TIME__ in source code and/or build system to make build-compare happy.- Use systemd instead of sysvinit for openSUSE > 12.2 - Remove redundant %clean section- forgot to remove the --enable-tools at the top.- only enable the tools on distros newer than sle 11: the boost version seems to be too old.- update to version 3.3.1 Update notes http://doc.powerdns.com/html/from3.3to3.3.1.html - direct-dnskey is no longer experimental, thanks Kees Monshouwer & co for extensive testing (commit e4b36a4). - Handle signals during poll (commit 5dde2c6). - commit 7538e56: Fix zone2{sql,json} exit codes - commit 7593c40: geobackend: fix possible nullptr deref - commit 3506cc6: gpsqlbackend: don't append empty dbname=/user= values to connect string - gpgsql queries were simplified through the use of casting (commit 9a6e39c). - commit a7aa9be: Replace hardcoded make with variable - commit e4fe901: make sure to run PKG_PROG_PKG_CONFIG before the first PKG_* usage - commit 29bf169: fix hmac-md5 TSIG key lookup - commit c4e348b: fix 64+ character TSIG keys - commit 00a7b25: Fix comparison between signed and unsigned by using uint32_t for inception on INCEPTION-EPOCH - commit d3f6432: fix building on os x 10.9, thanks Martijn Bakker. - We now allow building against Lua 5.2 (commit bef3000, commit 2bdd03b, commit 88d9e99). - commit fa1f845: autodetect MySQL 5.5+ connection charset - When misconfigured using 'right' timezones, a bug in (g)libc gmtime breaks our signatures. Fixed in commit e4faf74 by Kees Monshouwer by implementing our own gmtime_r. - When sending SERVFAIL due to a CNAME loop, don't uselessly include the CNAMEs (commit dfd1b82). - Build fixes for platforms with 'weird' types (like s390/s390x): commit c669f7c (details), commit 07b904e and commit 2400764. - Support for += syntax for options, commit 98dd325 and others. - commit f8f29f4: nproxy: Add missing chdir("/") after chroot() - commit 2e6e9ad: fix for "missing" libmysqlclient on RHEL/CentOS based systems - pdnssec check-zone improvements in commit 5205892, commit edb255f, commit 0dde9d0, commit 07ee700, commit 79a3091, commit 08f3452, commit bcf9daf, commit c9a3dd7, commit 6ebfd08, commit fd53bd0, commit 7eaa83a, commit e319467, , - NSEC/NSEC3 fixes in commit 3191709, commit f75293f, commit cd30e94, commit 74baf86, commit 1fa8b2b - The webserver could crash when the ring buffers were resized, fixed in commit 3dfb45f. - commit 213ec4a: add constraints for name to pg schema - commit f104427: make domainmetadata queries case insensitive - commit 78fc378: no label compression for name in TSIG records - commit 15d6ffb: pdnssec now outputs ZSK DNSKEY records if experimental-direct-dnskey support is enabled (renamed to direct-dnskey before release!) - commit ad67d0e: drop cryptopp from static build as libcryptopp.a is broken on Debian 7, which is what we build on - commit 7632dd8: support polarssl 1.3 externally. - Remotebackend was fully updated in various commits. - commit 82def39: SOA-EDIT: fix INCEPTION-INCREMENT handling - commit a3a546c: add innodb-read-committed option to gmysql settings. - commit 9c56e16: actually notice timeout during AXFR retrieve, thanks hkraal - pass V=1 to make calls so we actually see the compiler cmdlines - enable http support for remotebackend. new buildrequires: curl-devel - prepare lmdb backend for 13.2 and newer - remove pdns-3.1_lib_lua.patch, solved differently upstream. - enabled tools building - removed custom hack to build pdns tools- update to version 3.3 This a stability, bugfix and conformity update to 3.2. It improves interoperability with various validators, either through bugfixes or by catering to their needs beyond the specifications. Please follow the upgrate notes on http://doc.powerdns.com/html/from3.2to3.3.html - Removed dnsreplay and ChangeLog as it was removed in the source - Added pdnssec and zone2ldap man pages- update to version 3.2 This is a stability and conformity update to 3.1. It mostly makes our DNSSEC implementation more robust, and improves interoperability with various validators. 3.2 has received very extensive testing on a lot of edge cases, verifying output both against common validators and compared against other authoritative servers. Please follow the upgrate notes on http://doc.powerdns.com/from3.1to3.2.html For the details see: http://rtfm.powerdns.com/changelog.html#changelog-auth-3-2 - dropped qsqlite backend. dropped upstream dropped the sqlite2 support. - fixed building of the sqlite3 backend. - use system botan if possible. - refreshed polarssl patch old name: pdns-3.0.rc1_polarssl.patch new name: pdns-3.2_polarssl.patch- Fix useradd invocation: -o is useless without -u and newer versions of pwdutils/shadowutils fail on this now.- Fix the SLES check so we correctly use sqlite3 for newer distros- set license to GPLv2 Only (bnc#762986)- update to 3.1 Warning: Version 3.1 of the PowerDNS Authoritative Server is a major upgrade if you are coming from 2.9.x. There are also some important changes if you are coming from 3.0. Please refer to Section 1, “From PowerDNS Authoritative Server 2.9.x to 3.0” and Section 2, “From PowerDNS Authoritative Server 3.0 to 3.1” for important information on correct and stable operation, as well as notes on performance and memory use. For the details see: http://rtfm.powerdns.com/changelog.html#changelog-auth-3-1 - added pdns-3.1_lib_lua.patch: instead of using an hardcoded -llua5.1 use the LUA_LIBS variable. - refreshed pdns-3.0.rc1_polarssl.patch - added 2 new subpackages: pdns-backend-mydns pdns-backend-lua (new dependency 5.2 > lua >= 5.1)- use %{_sysconfdir}/init.d/ instead of %{_initddir} to fix build on older distros- update to 3.0.1 This is 3.0 + the fix for CVE-2012-0206 Warning: Version 3.0 of the PowerDNS Authoritative Server is a major upgrade. Please refer to Section 1, “From PowerDNS Authoritative Server 2.9.x to 3.0” for important information on correct and stable operation, as well as notes on performance and memory use. For the details see: http://rtfm.powerdns.com/changelog.html#changelog-auth-3-0-1 - build all binaries with as PIE (bnc#743152)- fixed lua dependency (fixed build on Factory)- patch license to follow spdx.org standard- add libtool as buildrequire to avoid implicit dependency- fixed build on factory- update to 3.0 * main feature is DNSSEC support * for full changelog see http://doc.powerdns.com/changelog.html#changelog-auth-3-0- create /var/run/pdns directory in the init script and package it as ghost.- fix feature guards- add pdns-2.9.22_missing_includes.patch: add missing includes- fix build with gcc 4.4lamb20 15272560494.1.2-lp150.3.3.14.1.2-lp150.3.3.1libluabackend.so/usr/lib64/pdns/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.opensuse.org/openSUSE:Maintenance:8182/openSUSE_Leap_15.0_Update/8ab723f96d5e55a2dc8000e848bf09ec-pdns.openSUSE_Leap_15.0_Updatecpioxz5x86_64-suse-linuxELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=965394145f95bc90d9339368241abc8fa35e4cdd, strippedPRRRRR RR R R R RRRR)cbE+eutf-8cfcb2215e1cad0fab25df73c924ced33656b0a3b56e2f5ad8482387267a21b10? 7zXZ !t/[|] crv9uoP3}*:e0= =5S6:8l~7_Cq06lC Qnh*ne8$i\e11Z(b:T+ 2tsqyx8֋_D_"wa~c=$-ڐG`wqRl{< +vC,.5P-Ht%7'4RHfmKU ?fpSs'2`9+Wbd;pjiTӂ}d,4X4B+v9à]FֶဤGa~VJ5 1>RR0uUW |ﭳz%/ixwna +]Vu{5aQj|OۄlZl!n'ā|"j18?jJR=_l%^9=XLۺ㵑zVT>M;=1xQ6Ai-`[֧}ԯN< \F I"avx5y|lqE㜢 ZXe­,Ib(pebA CF1NJ `1.õیHÈ~~SI{Qg!Di.'/bM^q"nh@lL3=~ >Jxub26Gbh5\>Ijq;HY޲9&4[2nj 0[-/rRȀQ~3@8d5X0 GQ,lZ`$A{6z؝vE3z>)i`Ȝ$ X mbVo|ΦF/Dk _W &px 04YΫe6j/ ba366_ސƌ>Xdoyj~xw|dN k^0?V}'$AhoM J^jRڭ8;YnÂK_xg= 6[#vކbN=` А-Io50 HIܘ ㋟P0\>V"{bhqb*T$7o=]ĕsмȃ-E}eRx<=b:^S}D^H/@W< cLLCڦQGTQ*~գװp㳣QGa_P 3Dݵ9~]hx}Vv(=P$#dMb<+z^m;k/=z1W@6X\a*P_ZijK{ii̇@xaQs%8Z5ԢKF#5X7@![cU iע>K_ȑ8AEn '{n5uH4vw9 4A^Bw;3<|6_~H:۪tV.4I~TÚ-%DŽEKtL{Y`9]x+È[ӅT葄j?&de4uvEˑe` N |lip/A)d;x)O]Ȑ@l,:b\ Fp_6Oq Gs=ܪVIDn}?)cc=h5j7oS0/V3aF+Ǐa2+]9GSD~V?;#z =$r++(׹PhխKKH52f^SW>bg)A-'+]>&8=$'β~6JޯZyK{P-ivoykShvz>}6gKXQ#I6*П[OIӎbŃvEuvG=XD0ߒή>*g Ytʉ1Q<3b/˨N6O$;BDy#^GkzۮÅ_k"8 ѝ:!gf[aM˲G L}hQjIzB5qCoeG+G0)+KM3҂z̑Od;ʸ:#gSn&CyJJzoIuQ%JfW Pz>`B D/X4`YiȨ;*8B<\ڋF bڷ1)LBlUmzi==zTb)O0A+E1K&_Y&8| s=37LgW|u!6c1J.FP 7 x:teSjʟl~' Zpu̠zOJ.ȝޱ $dw`Џq)9a;RIß 邚Viǖ_*E~TLܗВ?aW;r佽4Մ(ǬС Rn3g?b,}ʎzW*ٍzIWRTBC«O¦*,\)Qҍ'Y/, $)P 8'Ѭ& 647ู4 pE׏'cw>i&ҘFew o\\wO2EwY D"# ]!1 M|O5NwIRXx(ڞ)J6]Dl| Txv*XDw3{ܹvk if~%Gl,${w=  qupj ԭ Xj^ [դE@k(Ze=3~^[{' |PCf%Γ=VWÙ?nLeN7Aإ7H[5^%lTmtό ԆLW`ҳ(Y",Kb,Pie]m&9^ޑBEףåL.HݛFob"E,>4 C' XéˢuͩaN!8CR0&l?XjmJ- 9GdSO|;q˾R#*retcoq@H&@E(6Sį))Ypʖ@gGzfd" (egXڝ,d]'g e?Lo4-%;y霦eark] ++dL Rɦd f^W64cFW‡YμY1 R^IQ4ۨ]8I@L`r\$ 8ŝDx(<$Y_\MϭfӻlYG#܏bq!|Tjavi[Ƣ7C~BZ$A~(SÈdۺs^iYWuoZe a-zJy Iœ/;fy (SāQx'~v*ZFkB@4XxB.G E'd_~;ybq$i x/"A !,#I("2;~Z}op>37ț1:hT3Υ}<$N H̗Lۯyگ:{̃7 ;ʮtM>a5^8*2CO7Jpk$?KV,TseP-[uw?z2qoͷ„Nڍ/IxZz)K5Wl7ȣܣwC"QQ7Pfەr?#QnB}po'$e2bXw4}'q⿫yb!xq=!*1K׭a!t{]G(PN2G%5`*`nGӑc_F$2llux5ޥ)t?_EfMK}IJQLNn-)Pw3%-OȩnnQol=c*i iʈ2І˾ 9r.eSM@q+{0u.yGG?[c4l3Mh"P)!9l D0[p``&P7f%rŵ(oufY&h:6 `/{܅ Lq$ft#h bcstv|Y!nJQRLik57 qROUddqJASn[wTGӢ1Rg ՞'p7Xd#5+^*@}Q;{u@=@S.KunЇ'c~)a|:Eݪ.1s \zLlm;f KFTUc Nvp|皤X7߯W:L\s`lmO̍MDG2as5z -fex!.ASB<#T0pcaC' oHL4~ uX[zNwmh}’q,a c wɹq11(?nvH([g(գQ\Ur'=?m!dzmmISȎ}edDB^֖=d!ǯ2\ dvJD֨g!OǮuf^jԎԤhLGAs.Ո/BH '_P&Ѱآ'a1_Nz!*p xP]q~`[0;P ֖ +FNXg+*ZLInt0`<y%[4_p^fo#9.nHN+$64TTD*2!GDm' s5?|V3m *̂+4'w(r6F7EkW25빑+26E)c ڢJq/M<6#T{E\ԙ6 )~_IaaJ'؝Z=> 1gm&`MmNlPo!aZei:1]0F%s rj<_e/ĞW.ͺh'ty,|Wm]1cȬUE" Y9Zv;Cf؅Ura' _ցXDgm1,}"dӶ b=#Q"ZM!FՊ9L%HҴs\w/o+hdŊ/6AJכKM8u fejw#}r Q;q ?pV@4>²,t?U3d E?"&f, X] -Z,Em-d.6i'tCgB4*8p&KfJXh;Pcp2}aGh.>d'">e8䂩ǐo - +rh#d;'G WXtǚ>Ҧ!L [dUh˕.,m\SF@@@D^'FQsbk:YS8IUimv7ѐcMi9S%bT^2:g@ v3f0sP2%oi'wy7-p#N_ jdDsRɯ]ĺE덒J{/%9"8Ed@Bqk#=u0%N\Q}2Aw=oiU" c[-ؾ;&dyeFgAtT>D9ưN}%ZAځ4h=Ss7Xr|Ze}r $hH'hWkdB}uB2&<+$S{ Nj$]7HL,s؁r(8n-wk] [KbG0(洏ٿ0Hwa{ȥQߛMX8.8VI_~su0- (;4O*)j扡c2,C([ջ!6MΥE5ٚXE#"k1DJђ?_,gɟH[5|`r8мӆ'T@hbm~mݟG,/ڗ4IԊ*!.-9rSk}WlĴNvyEN9le!kܓhzTepDqzcp rOWW+jWtw'毑[Ν,lZGGc",QS-Aƚ2԰S>L *ԣs0X1' :J.}UO|3MFJVRTXEdlbʠTkέl%upm|҈ǸM3Fc ~)["_*OӝZ#@V `|A%tv!$Ky z,p0 O,t~낋nӇ. SPF[-z|ao)<Ҳ:X7.>vY ̗~-̱R,'ML|ډidU7iaz 鎖$:ANFs&฾ݚ1~*~[Fp%qMi_`mD>QNFFR#|@,آàiy~tߍz qu1J1'J8 SOm;$wɉ(`ja+8:ypq>b+FA ůZJ|̟㗇Д.%,_g]z˷$SNK0ϗ-V εN ]WWOw@ RwTD1 #[q۷U!@#Ek-D3h='G8V_ HG ܤug|p~*im4NvV&N*Wd;rv%+U[8&? ]/KVG_U7yj|NciGj'>(B .<rq~mzߊ݃ީ?Te/|GBNu!Jk=a 'c4Ͳ Il~Mn!yFL5r6m !?40R:hAt붋Yče =& !sz;/X&̟2K#LCBF 3 qܡB$"|ТVJ:(SLt*v3?L9 Eľ{]鍊eMZpʲ4z ^}Ar"\I)o1nEc%;rcb$>_V4e+%w 9ئTao0#pFj 9EUʃ=a>fBgDdNz{Y嵮-@b:ʺʶ)z:ʌn87 *6cY'%*Y FNgzx?rMh4<ǝv]{ =A;Au,MM'Gr&ychiR}|@GT]Zz~(#sUϼxBlY 9[ ITDp)LEO.C1aތ19!#a⫊1 ~2FAs 4FNpDD?qOi5jv%iîxUt"w=4 W9'r| ><+=\<@ TW8uZKi;:ܨ MJ))B!j08Q{F(FtS-;lvp?=f|:}9xoD)W-YΑ j2C-9vy,)t6l4'$; /o;JmD>J ";xP{L~+!˿K``"cHϿkIA{UI,z,D(d)Liz5b+^VcW}ɩbI"'hP}XOU2E.neE)u}?] "<'8E!Y]Z0f<g"Ůk4rsJ.N"*($&-+<"t3gt-_02F=) ^ch4'`"W6"YqͼJy^j;L؟4CC%IDsPk & PKpЖTQϾC"@4"ߩ(gNT\Pi?4*#t Y"-, *͂`+,'RVz{D-icR*iJbFb\%9b YIdN5 "X?mpgsΎ>6յwӠwt^IvH*RU+@Mqy% ڍ^xMP %mh|8I6x4rL* .$>E<Fz1S$ʒ>:! 'AOŊcMGx'ctMu Jgc[ ڨѩY\{p\~9/ByJ|jz11~ǎHuFm~R/9yXS䩯6t"U9Nژ%6+p"X/A'3Yk9=gnh(|i*}RLmDŽ2н7hGNP(=vRUNqsV#%z,̱f V'%dĞ=&@ L!2iաӜwS~x3+tG;bLn-Q.޾y$xQ8Z+(dYo3ȧ8rjEO8!%PM[\oNیai>ؐUܶL< e<a;f^yO8fG$Q7]JCOaQ\_nZa)ѮPΣ 7 Ѣ,7 P8-&58,_DŽraI a/?F(EyQ8oͣf\N)\pdbv|7#ea@1ޏ69P#Mecÿ 6̮ofij!ﮨO_6w6S 1,PBS \>]5$[3*[35E~}׭!X_dD/ _;lXH|/9jy+^Y^R4~*@+SQ1);368;0 v.hZXLMBLb6,VΏ~\JB'<"id ыvQ3;͡] P(A5h*??>[M2vBVRl sGDLk9SKs6ꕦԝ]~P0y$`Gᅥ}j^l>VmS3IFΛdBWl&jPYT8wSH &(=?q$56~R0'= .lEvJw>l@*Roܶh9fkj7ЪѐSuСL,̩iYb;ؽ' B"JVdFid7^WTam|HD~䭋=Ge$?bZlWVGB.wNbz_!?H X֎FɁI恘Ol1`/^kZJKqU mvOȄ_e8-{ǩ RӡE}]6La5Zݗu  bŧ1H%Upe.]UiW^YUPL"i$L߼kcQg9H`c2f9i:^@2;5mM pj8-:7rje}'zԩ14k`ڊ^sÚO> \'Cv<(2i?UQs#|mpHzG}?\r-qE8Wjd -c-U xRkBbVuwg9*%[yExՏ)]]#"0OoR̻>L Fqy5Ac p:Hr%6+*3[BlOI&PPvpk#-Iy((scM7˥6I(Mq. bF߁a_٪UP`u#u,m00>%Ppkљk{a̿e7{iZzͬj 6hFMDm5-8>ѯđ1Yy^b{ kQ-$"oNb0]3I\3qey"!K9rD[ۧ*8(2`BT~ٸ|k&\A~hXyűbZ؍"i_Xn4xđD+M dlĬ-Aw)σ 9oRů|-aѤgj(9hFM٦qJluZ;1 ub_R9惝,D09H1oԓ $~>B6(1u+N9#Սkn9Hmb zjJtf(:!?䛜L%5ί4}]iKY"t5k5` B XsQ? 0dѧiª7}Q@Ta*聧sB#8NG"K6(fFUϲE8V~'0Wi=iiʳ\S'1^!;l*^)S>t ~O1槩gEz2 U|$7{9gYlB-2%n55Ho9*'-sg[POx%R.qikB ?Mv{6ćT5|Si6! ~5gT,KB8Y -ŊB`F4rkQfR ! ( &l瑛deZ"UAXM^' [xFIA¡0y]]] ۫i*h?ELo1LƎdRJoY.H2#/v*UTmlk 418s[Q`u `[XyO]C>n"%jS6 h{m4JOBEr E>h?qx3DkwC%Y8&X/7|⿜+xhZ g!X!җ[-o 4g7i!_k~Y: 5|p'?=ue|dX9e:ܷ &/8 .JVhB5EQ3`O @e3=Tr:&sO⼗_ﳪ* `_U"@r2Ѱ mDvb.NJ:EW%I+O\(yy(x@+ImmLHKRU#ʁ P,.]<؍N$G!hNJbb#.c$Bt @ 3ޜ=3ʜM(`ytWtO! QLc="xa9NgɜYzY Gݑz[?i:A\Tn`kU]V_ssŦ](`K!ЯtФN+<ΑhcqyW468͆~mE*QrݧgP #7Xsh!DH_ޫƸ(,*c~ܡ:ؾ \tU+/?7*f%[pzewm1Wpw?1%RNu-1]]АsUv} $Ӏ33uR"WojzX^k+]/uZs]u:B(ʚ[RK:DrdwJ]*4ogBK]d)|c2J[T~|yR{U"3}?L(Nz.sb6Td4.Ry4H, Cd2)Aa7{leu#5y.ג^ik=v"JdH4ikҔT<=4w䚦0cME v;Ȉ-=3`XU[}kJo4J"DLȖ5!p:)IcoDUӭs"'ų6Ti%lUƾ{<կr?)Gvm.bXKŕ8$iJ4?AT-`F\fKƱ*|p$\ q P^A),ƒ/q[.\3K$/ǀ#X}/>v`=&w덄:EBζ.&2],7LwEYlR}]0G߷GR%ʬtрDd,ҍjq ];M4X4L{w=ʦA# qRcaB0*ƒ̰Uo1E-?a auY9'^S?rlUdJy2f泒V9 [ծޖu+2C/7HL';l4Dw` Ȁ!iM}k*#\񝦏Q%OO# #}=maRx_J}4:GEDLik_q 3Dag=.7pt<<)z2O:[`3]V+œvM9mTdW@jZ|=1:$wS}&x_BS@Aͷ:G,J׍$6g?3#2cX)Iݟ5-PyF^'ړ3^9G 0I Ogz^3Lrdy3J"7>_E0[[] -!|t:l xe1'$'&$weRީQT^o 4d[%WamzL6J#/Q)t:L^d^O9&#uHpX:&afn"wq_Y dd݆gQCN癴~4P8qLti&qn ~WWe?8'ưT³2J1i\6|h_m~<{P})f2a"EŬ. ,\ 9)tI Cq2HDD:TiйIS@>b1 -r`ethZg Teۖ<$ ܥG @'CEE*HIǮ u\5c%f.|\r!3I-.;+sTk^"k@+po)rk1>t11/ C迄Kr gr9PN]3o~LR2_Vl*m8ai7Nc65~>ɇ.q?ȽՙԌp`4Ӗ~8YCg[WeaiһkMs>ʬ"1NՄi]:: aPkxta6!Љ:R!K;cՒiv)R>+ H9 \Jh58 7f͂i=Ífޫ &63qk{w|ynk D 3b %G8 fpՇ{V^S)6PW|f q5~)$UP4Y$?jg0SJzPN ]/¨JFΧWtg}t9`0jraq!6\Ե*ei㱪`#axDS/|)sjB hȟ:LL7QjtIm:rN@̏dJ_L8^; .Wu:6a I2ZEc Md~=%+_/'#OqGwE^7r ![o1 !e,g/ +}E:jQTfde-wh`34!x2ݔ߭S&Uѝ*GHri u*Z5E6',6:]ҢSk0="QТG28FAfAO Ia(<`b#-ѯնLEEdzn* #iinCr9="1zH+nIoap>tE-mQٖ#5l/h! $P9F)+}-Ix\a "̾)myf6r-W`js*TYNA>S 5Ӄz.C趾SFzE)(|xĿ=쬜5h IL32Լ&*zdM8\kҸN6ZX4~)n<*&ڌQ ʶyK$ln+ӎNLzsRlwkW=I#VK Ax)Y)%s%ڒe=bCaZBn+~jgQ@%r#(F@ٲdaQ<9ϸdWh;Վcut=~+2͞DOE(kؖ~0UOM,~\b/WS eINѵ`Rf!kN'uyQﯰR PqE Nen* iRcYzث{𕌱(@3q/ X,;p@" .2=d6:agNX]>~b||<;WMf,$g kT:]-AV :bܡO$gZ/sX rWz0RMvA9&;Wqƕ>̌Fot-6 ࢭ.~;Sc!HXu;yNmO81.aslßK#ݖk%G(BL {S^FuEuP6+(rm'ӿ,ز⾔%Wß&$. [n!'w{?O.z420jVo/ts 5$6 z42MbJ̫*t1\K˹o1䦀լuE4 x IͷPRBHG!F;yƎkVnQ ax[/9v`Yfku_1^OR8\T9b21H&Goԑ "p-[v[Cf:IX!$+d.m K~3z LZ׋"-v^/V1B;y <ހ0&U` nQxda22>!lv^D+Dy:M/_ ;iQ' PҚS"yu5LZ g|ill5NuU\ 9<_S. ^ ?ȐY &0NԳ%Ey;h>pZ: d)_!VLg[SgY Ls2li!^!H$+?Ja,%b7pIӘuփa(gl-rXReo'QkbH-eQeU_.tJT=_ EBP8 Dr=8H@ͫpؠ\'̶ZnJ?8C.x1Q!w :Caz [\-DTC I-stE?2g Qβ-/Q:㘠?rd'{-">if3{L왫/JI3Xڠ; /G7r nH0.sigYu|ɩ{"|-E)u]{7a&HzOz]cJ]^jBٛcT Co< I[O#v4?CQgQ eOlDS 4#T m16.IY6؞HO/Ǟwr#qp8,!2)m6<L"|d+,|} N;iggRxe yì>PégcVwv!Dp0*ˏ@xĮOyPl ROV'Yda5K/e6:$_pSC⾔5.XYbXn`Nai_kڗ_L7i>i7]{SǀڝUi@JR04Ps3 RJm)B])ļVrRCRJbƠ}tD AV6G,m)XmyGVE7/v/](⩶C0{|tx"l1S<Ћ#x[ z)՘Ɔebk: !B(>\Ba9 jihAh`-ՠ^Y{?g9x\h|-[\x{7׽,ʂ?@J;fMXC0\nBGҢ̂8vŹM~f6B+NûxM[{RgɲU oŒ̪?>V(;J x?6fQK?ez` KRN}=<,$ )0[{GA;9( PL$>`8Ě5G2, 4tUAoՠhz8Z'Bqf0wfl*iv]MCQ C0QBDvֺ}˛+&t| 2g/s}0*0'GJ~i(UQQ 6lɏYGbatVa!{=h-0cZXb#l4} [R۪(H^CR䚛=jg`kM"t*oӣe_c}!Db+O03yZ#=0()1H-ą:XzLr F%?4JEDWvL k9R>uuוjX1'V .1䪟ATIf`f1UJ##}L!HŮ?Jd3kwx2LJdpDŽ~aȆՄ3Mg㺮`DJ$Lo%: ԮkbW/36&~<(>&ff"D/_{SLe)x bǝ6=J}7ZbcvjA\pnK|NP8Rr8c.#ūiF9RDZ+~!5ŚV90b z Ǽ<'=1.΀t6;w Y}m٦5գ9@%%+]vUDm ː"ۑ>1q"泸4"o$(Z7bBEPt>"Ov Gˏ ) 2[oJ+*T<#lOr<jDs磯?!3D5- E˔KqeSI8ތ4./}]mϘo4ڳuo5 )X ѱ+\Ŷ7U':fg`;Nڲ?jfmp`w6Q6 _2Oݤq1Sݼ>%_}UiݯѰ00] /O$HPM]H Vjl`DBޘ}\o1AH2O-XYST* yu|Mn*8ԾQ_E|'^yP2ކ: C3iPFAt(q5>oAOsN܁]4X7siVFI<).޳Ǟzd[t<jI߯kE)T+>(25א LMp,8Lj{"j[no\?2 MD5a VjܳWJrF6sqֶ\#ҖF)g^) vIG@=E:w5"SJD%CNEo878,!:0S+dXTcO1pvNREf_W@]PEVgi>ZGB_c/ DIŘ.5ňuH"Vc mCg93j \ΦRqZ \医&F6n ή?x"NK5ERۘE =yq t%]lW nG0_!IҴ(W?ZEFpFW"([u%N.`x݆]U J0P$A*TF2RU@T@)w$D4 _9dT*ċFY`ꖉ5τifw>Ϗu>_Sm{ f2H_r#enYa#x ,4N;Xhףqjc˓m. ?yNx/{2;JuF\E [ɧaH|p;T&v -Nll +XTfK]IH_A?L_Ky7<0ͰfgXDmc6T.2iCC܇ӅiLH聏ڔzpb^(IGTK&a>3 $.D؂C nhQNXrx$nB5  cV,&!$E5Nߤ⣥T - 8b ,I21`Lq}_0%3z``L ;`?2GUJ3/4QTpRj4HNr#jc77`fTdN9~rsVqZ!]($Nڈ !!=8JƔOhZxyOWI,a?p"$׃j##Y_!OSK)|};qa:б̲BU3@Q)=g)='P9/缠>^@BOp]SSm+zW&y"}<(,/r95|I+'Cި$ &fhfFa\fO}x *TII$4BSE%C Lצ ipNwzN]:H>cyCAsnvqXx`+ Ӓ7cӤ 6T(f%s8 ~/~:Ó.˔gȰ, )g@B Kld6o"gG}Q@-5o1Vz^n%і1bc~dwuTn7X‘tŇT@ qEPOI]+,S23.@)b"[6bBqu_A;5vuw,妳&OW9G+'sTE8t;-8 Mg!ҏ fbDx VI-oz{.␣`鼽ZX-1-VdG?!)L~fQN|P)#V"$Q SE܄[=v/ʪlJqg>UeZ\eIil4t𔹭Y=Q`Sȁ-Yr%s kTZnꗨo^|&8\B`;-9aWNޣ~T@+풶q)hZJOyqg',~$Vf Vq{i^&YT+J,;U8V^]rO%h?XPUO `=Ȉgc"-C>Kown_ 3@O8āƕ=q(mLJ[uGvpM4.hMwa\o-=8{,KkeX;'XQ/P{>:-=&qx\_EP\7X 4@iC:@`Bb]#GZjXM|M q"jCXcҵHRېhCDݣ}DEFvn ̧訔^KclF]5ϐO$X`%M*/WLQJl( yOSaOVo߹N< @򞴬9 [OX>p׆51!~3ZP[ܸn[BgYb&J<>:N*uvPcU֝5n廯W 6OICgX8v?# - @KVY] /7Q 3 "V`[񬉂OΥ5a %DxG8Fxff7+r8ĵ@ͨwV"bbvX5}Q;T>.'|VAK?Hk wt$ DgoxW'lAKQIrL>P6NȾm70\4=X aDTgs`G RkA!l<Q9FȼQƯ-~8ӒFLڸFPv!Z-"I'iPOݧ햒Ǣ T+֦${q;k3Y 3R_)Ui6&T"87ҧ`|'7H{,)Q{C)sX}G4Aőrhjr=bZ!kRw4lr+fC&hJOԡjk1|ʉLۏ'㊃R&Ѡݑ*x H=nyX!sAMlD=ܖQQ )uP5t?sW.g2'Zzc9~gy#&P;{A}}A,N'%O_@7aK+$!cc: `v ڈ`mJd9v @89&͉^A'YPF?Q)}c+8o񉇢Pbue8j5'D7M=/a/pzߟ0aj8 LJZ)3_ʒ!2i*ë [T7g5Cti nGA[hJVwTՇ>caCzD׹hdJ4%`(K6%w<m!PɲoDotCLr*a.(pL -Oel^h;tosC,Zk <ī3P ћEnxܯW,yVYr1dv=f-8vezPaO|V h u((=(gPI#`djLK=^;"Ppi} mJacÆ8` hNwV,9'Xc+$!Lӵzr^8{FT NU[ k} 4aZ=G7Ox`[de1^31'^jӖV&PUk6FQNC5:VVBH$/Qa_/칻R42G;D2zw WRnq\&s)*7O"[1hŵq?gs+TM FNIFDf9ƒI4s\_ZvR'oQCt-we0)ӂpyy IAi9z1Z֦)6CVj-mx~2-;~(\Yp;tyջN}Q]cwdNO;H׳ݒnd%s4;ߩݝlޖn3dOYTM_zl{9rЍ :"UL)5ϹUY9VƂ4M])&jsi0)4mQgBZN/6_ntx3J#c[{VEwY_"q&+8+_3(foz#3Cw {O# E~O4"6ǛߩG:Ƿ<OBפgT݋X!9T(=SD'j[UrN{7ݚ8g&@?g_29j?qo IOԠ, h5k2o17p|(:薎nM4{=ow6ڝ=32;b[$t`xRZ1+c@Z3^0Q#tbP~,?|ȓw Lg{QQ_PjqJ;wdFO̴".iW գ6A]"L2Bc SkJ(Du:J3 v &}** Iσ{VQ|ev{8/(i7@=o27)g WN rcƤ_!Pؔq!WW=Xj™X&VLaYhJVʂGE/#?;Y~Խbޗ;?H/<g,\fB颋D:y+{$ oBGa}_XYyP^YN7dqch`("XGس\נ7YIlU~u)Y2G?]E!ڊ`(szdIk[NA8$Pй9c >y(2a FEy2]/bnWk>/=^57ށc 2NpJ)u5uEe|[ V^6^,OM2P%HPJ]Ptm!B~lHqTl%VpUr9GEUVs!^ULAF6zχH;B+gFs[F ]?qv`2C6ߺ'tAHͣ&t>aPLh^'hT'ԧ=M7`u#üZ?NU=ȩsP!˷;qiX\``1ٰ{5%^9q'iɑjj(p] Գ8|Xp8)^T/ࢹp]jg⥭ZsTSPhbIO^)^ʴ8(Eսv%Zz)|!~~:]#{iZK}pC?~^IML=03 ?*IiK{!TzZʰ % QڤPЎV 49N4ȱP9ThBN(>%_ETGe27H&ā> ;vhs.gM3_ɩ㪘 !K՞Wz!x1+24]Δ KIg c4Pn:\YAf:&dl 653Z9bDe,ltqfWavA?@GR#/2B0$Sb4{f+!` |{9|v+^[۸mEEê\bnuqJ.NZ]'ތ1 pX^qHq,Sm(qIO~œ"%@$≮^WvgK݃0/m{tYC@dl @Br  G6HQ OwLI aܪhQL7 AkJ# 1Ý*^0J5O #9ҹVZh{bxﴝ%r`" XGglϴde5 1?XJ76ﮘKdp2A"DĞ|$4:Huei\{?US k."s횭|; xou:瞒9YtQiԿx@"<[O/&ߑ/$0J|Z>ń-#f?|,YwKXܰ<.`9ImPyS>ȆnXpZtV =Ok%f-*8 <pN/&Ł?,$,ՉL.:~0Θ^~8zåDrmd|YxC8OD cQeucmf+RFkogknxHZ,r#wr s5P&* X3T,7aL`ZtQ޺ wh; ˖Ԑ>Wz uӃBKV{~uP֣SkkYH p7k1-# Өѿq1R{w At`Hϟ&}9"՛\&ҰsyXdE[ XL1!ݠ r P9_<5ėF=![ }o H`]h 57 hA,˵oa &#ʃGrS.5xpR1B)5t[lQt*%QDz!W{m|N dx!YlWM,(U{g~3#SPUӭ0[q(5mEaƈO&f٣!`" UckSCl^8\COٻW&+GKS'YxCTqTtGtp`))L^!yTC Hg+5G׶ մvmQ)2Y+佅υIi3,exe-(&徒Zu ѫ}M9{GZ?!94L#}_ C3_ג i 8Z Mݮs 9EEmCNXq* &ZEٸ8#&jyli|(UR~X>LqiݹlC# @@LE /;\Spz15}W4](P}%'$S}zI]>T #\#Pns\w಄hy&#rO}R?m RE9iMUЮr_J ͢N,8O:|CW"UM3 i-CnQAindDMqgVϗԯmLQr:Cr}4c)ПJeɪDϜmii=0b[DK>mq&J2ɵ loH[w_r9f|P][{4ŮLȺuM `˜>:#a ]v)RW'ႂoʛv3n8E'ϖqxH$Uci"fD>AFA P[ *cF,YU~I== KD\ ^ YTup4.CɴacE] @6vR=(=(QѶ;'lz_CM጖<\c%vT z:V4f#MmK5Nݸp}ʼn {Ihz¼=r~w޸)Z|э&9BWEf[7Y}EHАRERjeqHOo]"DMl ^KG/$fo9`zyI&)L;Ϙ8>>wlg#;9}}ƗLP6 UݖdAv5q_ZdDn蛺H}-#-S.y[ﱯ9l~r{3U_G~ج72#1f/ܛZMb lL0h..[ezp4ɩ<$oBGʝŬPCbuy(M%CyBzpr簒 b ͵7 I'2oH>Y)bGi{pjS`>+Ii[)]h)B'CO1p4ɔCaGd7~ijQ] ͹Do5t9eTX:a/G4[ Rf.P T7RS*kF{!d'^*m`Ijg4D*(9Ż"WXޕNZUṵɰ%UDt}*-DN ƹ$QKOmuCez ;,:̲VGEe:R- ϡCDn [ <4k*)"OZ+3N8q?u!8u6rÁ G.z-%qveVMj4E.9s9fP1etMUC0+{ 4L.o"&K0_gԅ덊ps}2uНz ܌o@j^]&ׯNMY_: