openldap2-contrib-2.4.44-18.1>t  DH`pY8/=„IKd wUSy6x׃a/Oj!v Nrm**rڈіmHd8}GX.=A\au.L6pg\}ecSMϥ\f]GfBڕ7[UԬXWTU'B$ft1 @6M5im(48FHLZ@?2݆g,{[aU1LYg?S’h_{(-;>肄C}Ol0c817f3b11a083851c6e327722e78c72e82db83fUȉY8/=„ǁɪy-㗛d9=hk[V:Ct; UL-ej5Z^YAnGk"[6$7EBR%G᪇Uˍ7 6 Av+n`-mFq#[_qS?5NT`SODl s)_:dyꭥ=?h~&#Ƀ4K 5bN}Ɉow 0_/pncd6}-Yy4Ɓ'4vmift9|>:?d  9  #H`fp, , x, , , l, , , , ` , 0 , ' (J8TS9S:SF%G<,H,I,XY(\X,],^@bUcdpeufzl|u,v@ wh,x,y<zCopenldap2-contrib2.4.4418.1OpenLDAP Contrib ModulesVarious overlays found in contrib/: allop allowed Generates attributes indicating access rights autogroup cloak denyop lastbind writes last bind timestamp to entry noopsrch handles no-op search control nops pw-sha2 generates/validates SHA-2 password hashes pw-pbkdf2 generates/validates PBKDF2 password hashes smbk5pwd generates Samba3 password hashes (heimdal krb disabled)Y cloud121kopenSUSE Leap 42.3openSUSEOLDAP-2.8http://bugs.opensuse.orgProductivity/Networking/LDAP/Servershttp://www.openldap.orglinuxx86_64p(~9p)w(h)(i (h(~Y(;x큤큤큤큤큤큤큤큤큤큤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.so.0.0.0allop.so.0.0.0allowed.so.0.0.0allowed.so.0.0.0autogroup.so.0.0.0autogroup.so.0.0.0cloak.so.0.0.0cloak.so.0.0.0denyop.so.0.0.0denyop.so.0.0.0lastbind.so.0.0.0lastbind.so.0.0.0noopsrch.so.0.0.0noopsrch.so.0.0.0nops.so.0.0.0nops.so.0.0.0pw-pbkdf2.so.0.0.0pw-pbkdf2.so.0.0.0pw-sha2.so.0.0.0pw-sha2.so.0.0.0smbk5pwd.so.0.0.0smbk5pwd.so.0.0.0rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootopenldap2-2.4.44-18.1.src.rpmallop.so.0()(64bit)allowed.so.0()(64bit)autogroup.so.0()(64bit)cloak.so.0()(64bit)denyop.so.0()(64bit)lastbind.so.0()(64bit)libtool(/usr/lib64/openldap/allop.la)libtool(/usr/lib64/openldap/allowed.la)libtool(/usr/lib64/openldap/autogroup.la)libtool(/usr/lib64/openldap/cloak.la)libtool(/usr/lib64/openldap/denyop.la)libtool(/usr/lib64/openldap/lastbind.la)libtool(/usr/lib64/openldap/noopsrch.la)libtool(/usr/lib64/openldap/nops.la)libtool(/usr/lib64/openldap/pw-pbkdf2.la)libtool(/usr/lib64/openldap/pw-sha2.la)libtool(/usr/lib64/openldap/smbk5pwd.la)noopsrch.so.0()(64bit)nops.so.0()(64bit)openldap2-contribopenldap2-contrib(x86-64)pw-pbkdf2.so.0()(64bit)pw-sha2.so.0()(64bit)smbk5pwd.so.0()(64bit)@@@@@@   libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libcrypto.so.1.0.0()(64bit)liblber-2.4.so.2()(64bit)libldap_r-2.4.so.2()(64bit)openldap2rpmlib(CompressedFileNames)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsLzma)2.4.443.0.4-14.0-14.4.6-14.11.2YWk@WbW;VVɦVŲ@VŲ@V@V@V@V@Vf@V^@V\:@V@V @U4@T@TuT:m@T @T=@T@Si@S@Sr @SW@SK@S@Rb@RRSRSQ@QP<@P|@P*P{@P{@P}L@OOD@OU@OKp@NU@NؽNσ@NS@NMMc@MY@MGM6@M$]@L,@L@Lp@L*@LvW@LI@L,@L,@K@KK@KrKv@KEK KJ@J@J JJ\s@JHJCfJ67IA@IIÅ@hguo@suse.comjengelh@inai.dehguo@suse.comhguo@suse.comhguo@suse.comjengelh@inai.dehguo@suse.comlmuelle@suse.comhguo@suse.commpluskal@suse.commichael@stroeder.comhguo@suse.commichael@stroeder.comhguo@suse.comhguo@suse.comhguo@suse.comhguo@suse.comhguo@suse.comrguenther@suse.comjengelh@inai.dejengelh@inai.detchvatal@suse.comvarkoly@suse.comro@suse.deckornacker@suse.comckornacker@suse.comcoolo@suse.comdmueller@suse.comckornacker@suse.comro@suse.devarkoly@suse.comvarkoly@suse.commatz@suse.devarkoly@suse.comjengelh@inai.dejengelh@inai.dero@suse.derhafer@suse.comrhafer@suse.comcoolo@suse.comcoolo@suse.comrhafer@suse.derhafer@suse.derhafer@suse.derhafer@suse.decfarrell@suse.comrhafer@suse.decoolo@suse.comrhafer@suse.derhafer@suse.derhafer@suse.derhafer@suse.derhafer@suse.derhafer@suse.derhafer@suse.derhafer@novell.comrhafer@novell.comrhafer@novell.comcristian.rodriguez@opensuse.orgrhafer@novell.comrhafer@novell.comrhafer@novell.comrhafer@novell.comrhafer@novell.comrhafer@novell.comadrian@suse.derhafer@novell.comrhafer@novell.comrguenther@suse.derhafer@novell.comrhafer@novell.comrhafer@novell.comcoolo@novell.comrhafer@novell.comrhafer@novell.comrhafer@novell.comrhafer@novell.comrhafer@novell.comrhafer@novell.comrhafer@novell.comrhafer@novell.comrhafer@suse.derhafer@suse.de- Catch up with patches applied to the package on SLES. * Introduce patch 0012-use-system-wide-cert-dir-by-default.patch to let OpenLDAP read system wide certificate directory by default and avoid hiding the error if user specified CA location cannot be read (bsc#1009470). * Fix CVE-2017-9287: openldap2: Double free vulnerability with patch 0015-Fix-double-free-of-search-base-with-page-size-0.patch (bsc#1041764) * Fix an uninitialised variable that causes startup failure with patch 0016-ITS-8631-Initialize-sal.patch (bsc#1037396) * Fix a regression in handling of non-blocking connection with new patch from Alex Novak (bsc#1031702): 0017-retain-non-blocking-status-on-socket.patch- Test for user/group existence before trying to add them. Summary spello update.- Move schema files into tarball addonschema.tar.gz: ldapns.ldif ldapns.schema rfc2307bis.ldif rfc2307bis.schema yast.ldif yast.schema - Package previously missing schema files in LDIF format: amavisd-new.ldif dhcp.ldif dlz.ldif dnszone.ldif samba3.ldif sudo.ldif suse-mailserver.ldif (bsc#984691) - Fix a minor issue in schema2ldif script that led to missing attribute in the generated LDIF.- Enable build flag LDAP_USE_NON_BLOCKING_TLS to fix bsc#978408.- Move ldap.conf into libldap-data package, per convention.- Move ldap.conf out of shlib package again, they are not allowed there for obvious reasons (conflict with future package).- Build password strength enforcer as an implementation of ppolicy password checker, introducing: ppolicy-check-password-1.2.tar.gz ppolicy-check-password.Makefile ppolicy-check-password.conf ppolicy-check-password.5 0200-Fix-incorrect-calculation-of-consecutive-number-of-c.patch (Implements fate#319461)- Remove redundant -n openldap2- package name prefix.- Remove openldap2-client.spec and openldap2-client.changes openldap2.spec now builds client utilities and libraries. Thus pre_checkin.sh is removed. - Move ldap.conf and its manual page from openldap2-client package to libldap-2_4-2 package, which is more appropriate. - Use RPM_OPT_FLAGS in build flags. - Macros dealing with old/unsupported distributions are removed. - Remove 0002-slapd.conf.dif and install improved slapd.conf from new source file slapd.conf. - Install slapd.conf.olctemplate to assist in preparing slapd.d for OLC. - Be explicit in sysconfig that by default openldap will use static file configuration. - Add the following schemas in LDIF format: * rfc2307bis.ldif * ldapns.ldif * yast.ldif - Other minor clean-ups in the spec file.- Use optflags when building- Upgrade to upstream 2.4.44 release with accumulated bug fixes. - Specify source with FTP URL - Removed obsolete 0012-openldap-re24-its8336.patch- Relabel patch 0011-Enforce-minimum-DH-size-of-1024.patch into 0010-Enforce-minimum-DH-size-of-1024.patch- Upgrade to upstream 2.4.43 release with accumulated bug fixes. - Still build on SLES12 - Loadable backend and overlay modules are now installed into arch-specific path %{_libdir}/openldap - All backends and overlays as modules for smaller memory footprint on memory constrained systems - Added extra package for back-sock - Consequent use of %{_rundir} everywhere - Rely on upstream ./configure script instead of any other macro foo - Dropped linking with libwrap - Dropped 0004-libldap-use-gethostbyname_r.dif because this work-around for nss_ldap is obsolete - New sub-package openldap2-contrib with selected contrib/ overlays - Replaced addonschema.tar.gz with separate schema sources - Updated ldapns.schema from recent slapo-nssov source tree - Added symbolic link to slapd executable in /usr/sbin/ - Added more complex example configuration file /etc/openldap/slapd.conf.example - Set OPENLDAP_START_LDAPI="yes" in /etc/sysconfig/openldap - Set OPENLDAP_REGISTER_SLP="no" in /etc/sysconfig/openldap - Added patch for OpenLDAP ITS#7796 to avoid excessive "not index" logging: 0011-openldap-re24-its7796.patch - Replaced openldap-rc.tgz with single source files - Added soft dependency (Recommends) to cyrus-sasl - Added soft dependency (Recommends) to cyrus-sasl-devel to openldap2-devel - Added patch for OpenLDAP ITS#8336 (assert in liblmdb): 0012-openldap-re24-its8336.patch - Remove obsolete patch 0001-build-adjustments.dif- Introduce patch 0010-Revert-Revert-ITS-8240-remove-obsolete-assert.patch to fix CVE-2015-6908. (bsc#945582) - Introduce patch 0011-Enforce-minimum-DH-size-of-1024.patch to address weak DH size vulnerability (bsc#937766)- Introduce patch 0009-Fix-ldap-host-lookup-ipv6.patch to fix an issue with unresponsive LDAP host lookups in IPv6 environment. (bsc#955210)- Remove OpenLDAP 2.3 code and patches from build source. Compatibility libraries for OpenLDAP 2.3 are built in package: compat-libldap-2_3-0 Removed source files: openldap-2.3.37-liblber-length-decoding.dif openldap-2.3.37-libldap-ntlm.diff openldap-2.3.37-libldap-ssl.dif openldap-2.3.37-libldap-sasl-max-buff-size.dif openldap-2.3.37-libldap-tls_chkhost-its6239.dif openldap-2.3.37-libldap-gethostbyname_r.dif openldap-2.3.37-libldap-suid.diff openldap-2.3.37.dif openldap-2.3.37-libldap-ld_defconn-ldap_free_connection.dif openldap-2.3.37-libldap-ldapi_url.dif openldap-2.3.37.tgz openldap-2.3.37-libldap-utf8-ADcanonical.dif README.update check-build.sh- Upgrade to upstream 2.4.42 release with accumulated bug fixes.- Upgrade to upstream 2.4.41 release with accumulcated bug fixes and stability improvements. * Add patch 0008-In-monitor-backend-do-not-return-Connection0-entries.patch * Remove already applied patch 0008-ITS-7723-fix-reference-counting.patch * Remove already applied patch 0009-gcc5.patch (Implements fate#319301)- Add 0009-gcc5.patch to pass -P to the preprocessor in configure checks for Berkeley DB version- binutils is required for "strings" utility invocation in %pre [bnc#904028] - Remove SLE10 definitions- Use %_smp_mflags for parallel build- Add baselibs.conf to sources list- Do not bypass output of useradd and groupadd- sanitize release line in specfile- segfault on certain queries with rwm overlay (bnc#846389) 0008-ITS-7723-fix-reference-counting.patch- enable systemd slapd service if SysV ldap was enabled (bnc#881476)- use %_rundir if available, otherwise /var/run- move systemd requires to server package- Fix systemd service installation- use configure macro also for building the 2.3.37 version- Remove PidFile from service definition - Update to 2.4.39 * Fixed libldap MozNSS crash (ITS#7783) * Fixed libldap memory leak with SASL (ITS#7757) * Fixed libldap assert in parse_passwdpolicy_control (ITS#7759) * Fixed libldap shortcut NULL RDNs (ITS#7762) * Fixed libldap deref to use correct control * Fixed liblmdb keysizes with mdb_update_key (ITS#7756) * Fixed slapd cn=config olcDbConfig modification (ITS#7750) * Fixed slapd-bdb/hdb to bail out of search if config is paused (ITS#7761) * Fixed slapd-bdb/hdb indexing issue with derived attributes (ITS#7778) * Fixed slapd-mdb to bail out of search if config is paused (ITS#7761) * Fixed slapd-mdb indexing issue with derived attributes (ITS#7778) * Fixed slapd-perl to bail out of search if config is paused (ITS#7761) * Fixed slapd-sql to bail out of search if config is paused (ITS#7761) * Fixed slapo-constraint handling of softadd/softdel (ITS#7773) * Fixed slapo-syncprov assert with findbase (ITS#7749) * Build Environment Test suite: Use $(MAKE) for tests (ITS#7753) * Documentation admin24 fix TLSDHParamFile to be correct (ITS#7684)- Add systemd style service definition - FATE#315028 remove memory limit for slapd - FATE#315415: LDAP compat packages required for older SLES versions For this reson following patches were applied: openldap-2.3.37-libldap-suid.diff openldap-2.3.37-libldap-ldapi_url.dif openldap-2.3.37-libldap-ntlm.diff openldap-2.3.37-libldap-gethostbyname_r.dif openldap-2.3.37-libldap-sasl-max-buff-size.dif openldap-2.3.37-libldap-utf8-ADcanonical.dif openldap-2.3.37-liblber-length-decoding.dif openldap-2.3.37-libldap-ld_defconn-ldap_free_connection.dif openldap-2.3.37-libldap-tls_chkhost-its6239.dif openldap-2.3.37-libldap-ssl.dif- Make /etc/sasl2 owned by openldap2.- Update to 2.4.38 * Fixed liblmdb nordahead flag (ITS#7734) * Fixed liblmdb to check cursor index before cursor_del (ITS#7733) * Fixed liblmdb wasted space on split (ITS#7589) * Fixed slapd for certs with a NULL issuerDN (ITS#7746) * Fixed slapd cn=config with empty nested includes (ITS#7739) * Fixed slapd syncrepl memory leak with delta-sync MMR (ITS#7735) * Fixed slapd-bdb/hdb to stop processing on dn not found (ITS#7741) * Fixed slapd-bdb/hdb with indexed ANDed filters (ITS#7743) * Fixed slapd-mdb to stop processing on dn not found (ITS#7741) * Fixed slapd-mdb dangling reader (ITS#7662) * Fixed slapd-mdb matching rule for OlcDbEnvFlags (ITS#7737) * Fixed slapd-mdb with indexed ANDed filters (ITS#7743) * Fixed slapd-meta from blocking other threads (ITS#7740) * Fixed slapo-syncprov assert with findbase (ITS#7749) Changes in 2.4.37 * Added liblmdb nordahead environment flag (ITS#7725) * Fixed client tools CLDAP with IPv6 (ITS#7695) * Fixed libldap CLDAP with IPv6 (ITS#7695) * Fixed libldap lock ordering with abandon op (ITS#7712) * Fixed liblmdb segfault with mdb_cursor_del (ITS#7718) * Fixed liblmdb when converting to writemap (ITS#7715) * Fixed liblmdb assert on MDB_NEXT with delete (ITS#7722) * Fixed liblmdb wasted space on split (ITS#7589) * Fixed slapd cn=config with olcTLSProtocolMin (ITS#7685) * Fixed slapd-bdb/hdb optimize index updates (ITS#7329) * Fixed slapd-ldap chaining with cn=config (ITS#7381, ITS#7434) * Fixed slapd-ldap chaning with controls (ITS#7687) * Fixed slapd-mdb optimize index updates (ITS#7329) * Fixed slapd-meta chaining with cn=config (ITS#7381, ITS#7434) * Fixed slapo-constraint to no-op on nonexistent entries (ITS#7692) * Fixed slapo-dds assert on startup (ITS#7699) * Fixed slapo-memberof to not replicate internal ops (ITS#7710) * Fixed slapo-refint to not replicate internal ops (ITS#7710) Changes in 2.4.36 * Added back-meta target filter patterns (ITS#7609) * Added liblmdb mdb_txn_env to API (ITS#7660) * Fixed libldap CLDAP with uninit'd memory (ITS#7582) * Fixed libldap with UDP (ITS#7583) * Fixed libldap OpenSSL TLS versions (ITS#7645) * Fixed liblmdb MDB_PREV behavior (ITS#7556) * Fixed liblmdb transaction issues (ITS#7515) * Fixed liblmdb mdb_drop overflow page return (ITS#7561) * Fixed liblmdb nested split (ITS#7592) * Fixed liblmdb overflow page behavior (ITS#7620) * Fixed liblmdb race condition with read and write txns (ITS#7635) * Fixed liblmdb mdb_del behavior with MDB_DUPSORT and mdb_del (ITS#7658) * Fixed slapd cn=config with unknown schema elements (ITS#7608) * Fixed slapd cn=config with loglevel 0 (ITS#7611) * Fixed slapd slapi filterlist free behavior (ITS#7636) * Fixed slapd slapi control free behavior (ITS#7641) * Fixed slapd schema countryString as directoryString (ITS#7659) * Fixed slapd schema telephoneNumber as directoryString (ITS#7659) * Fixed slapd-bdb/hdb to wait for read locks in tool mode (ITS#6365) * Fixed slapd-mdb behavior with alias dereferencing (ITS#7577 ) * Fixed slapd-mdb modrdn and base-scoped searches (ITS#7604) * Fixed slapd-mdb refcount behavior (ITS#7628) * Fixed slapd-meta binding flag is set (ITS#7524) * Fixed slapd-meta with minimal config (ITS#7581) * Fixed slapd-meta missing results messages (ITS#7591) * Added slapd-meta TCP keepalive support (ITS#7513) * Fixed slapo-sssvlv double free (ITS#7588) * Fixed slaptest to list -Q option (ITS#7568) Changes in 2.4.35 * Fixed liblmdb mdb_cursor_put with MDB_MULTIPLE (ITS#7551) * Fixed liblmdb page rebalance (ITS#7536) * Fixed liblmdb missing parens (ITS#7377) * Fixed liblmdb mdb_cursor_del crash (ITS#7553) * Fixed slapd syncrepl updateCookie status (ITS#7531) * Fixed slapd connection logging (ITS#7543) * Fixed slapd segfault on modify (ITS#7542, ITS#7432) * Fixed slapd-mdb to reject undefined attrs (ITS#7540) * Fixed slapo-pcache with +/- attrsets (ITS#7552) Changes in 2.4.34 * Fixed libldap connections with EINTR (ITS#7476) * Fixed libldap lineno overflow in ldif_read_record (ITS#7497) * Fixed liblmdb mdb_env_open flag handling (ITS#7453) * Fixed liblmdb mdb_midl_sort array optimization (ITS#7432) * Fixed liblmdb freelist with large entries (ITS#7455) * Fixed liblmdb to check for filled dirty page list (ITS#7491) * Fixed liblmdb to validate data limits (ITS#7485) * Fixed liblmdb mdb_update_key for large keys (ITS#7505) * Fixed ldapmodify to not core dump with invalid LDIF (ITS#7477) * Fixed slapd syncrepl for old entries in MMR setup (ITS#7427) * Fixed slapd signedness for index_substr_any_* (ITS#7449) * Fixed slapd enforce SLAPD_MAX_DAEMON_THREADS (ITS#7450) * Fixed slapd mutex in send_ldap_ber (ITS#6164) * Added slapd-ldap onerr option (ITS#7492) * Added slapd-ldap keepalive support (ITS#7501) * Fixed slapd-ldif with empty dir (ITS#7451) * Fixed slapd-mdb to reopen attr DBs after env reopen (ITS#7416) * Fixed slapd-mdb handling of missing entries (ITS#7483,7496) * Fixed slapd-mdb environment flag setting (ITS#7452) * Fixed slapd-mdb with sub db slapcat (ITS#7469) * Fixed slapd-mdb to correctly work with toolthreads > 2 (ITS#7488,ITS#7527) * Fixed slapd-mdb subtree search speed (ITS#7473) * Fixed slapd-meta conversion to cn=config (ITS#7525) * Fixed slapd-meta segfault when modifying olcDbUri (ITS#7526) * Fixed slapd-sql back-config support (ITS#7499) * Fixed slapo-constraint handle uri and restrict correctly (ITS#7418) * Fixed slapo-constraint with multi-master replication (ITS#7426) * Fixed slapo-constraint segfault (ITS#7431) * Fixed slapo-deref control initialization (ITS#7436) * Fixed slapo-deref control exposure (ITS#7445) * Fixed slapo-memberof with internal ops (ITS#7487) * Fixed slapo-pcache matching rules for config db (ITS#7459) * Fixed slapo-rwm modrdn cleanup (ITS#7414) * Fixed slapo-sssvlv maxperconn parameter (ITS#7484)- For now, avoid automatic use of libdb-6_0 by explicitly selecting libdb-4_8 as BuildRequire.- Put static libs into openldap2-devel-static and relieve openldap2-devel of static-only deps- fix check-build.sh for kernel > 3.0- Fixed initscript to avoid endless loop when no configuration is present in /etc/openldap/slapd.d/ (bnc#767464) - cleaned up SLES10 buildrequires and dependencies - removed support for building on SLES9, didn't work anyway anymore - Don't buildrequire krb5-mini on Distributions where it does not exist- enabled mdb backend - Update to 2.4.33 * Added slapd-meta cn=config support * Fixed slapd alock handling on Windows (ITS#7361) * Fixed slapd acl handling with zero-length values (ITS#7350) * Fixed slapd syncprov to not reference ops inside a lock (ITS#7172) * Fixed slapd delta-syncrepl MMR with large attribute values (ITS#7354) * Fixed slapd slapd_rw_destroy function (ITS#7390) * Fixed slapd-ldap idassert bind handling (ITS#7403) * Fixed slapo-constraint with multiple modifications (ITS#7168) Changes in 2.4.32: * Added slappasswd loadable module support (ITS#7284) * Fixed tools to not clobber SASL_NOCANON (ITS#7271) * Fixed libldap function declarations (ITS#7293) * Fixed libldap double free (ITS#7270) * Fixed libldap debug level setting (ITS#7290) * Fixed libldap gettime() regression (ITS#6262) * Fixed libldap sasl handling (ITS#7118, ITS#7133) * Fixed libldap to correctly free socket with TLS (ITS#7241) * Fixed slapd config index renumbering (ITS#6987) * Fixed slapd duplicate error response (ITS#7076) * Fixed slapd parsing of PermissiveModify control (ITS#7298) * Fixed slapd-bdb/hdb cache hang under high load (ITS#7222) * Fixed slapd-bdb/hdb alias checking (ITS#7303) * Fixed slapd-bdb/hdb olcDbConfig changes work immediately (ITS#7338) * Fixed slapd-ldap to encode user DN during password change (ITS#7319) * Fixed slapd-ldap assertion when proxying to MS AD (ITS#6851) * Fixed slapd-ldap monitoring (ITS#7182, ITS#7225) * Fixed slapd-perl panic (ITS#7325) * Fixed slapo-accesslog memory leaks with sync replication (ITS#7292) * Fixed slapo-syncprov memory leaks with sync replication (ITS#7292)- add explicit buildrequire on groff - needed to build manuals- buildrequire krb5-mini in openldap2-client to avoid cycle - move Summary out of the %if as prepare_spec is confused about the license otherwise- update to 2.4.31 * Added slapo-accesslog support for reqEntryUUID (ITS#6656) * Fixed libldap IPv6 URL detection (ITS#7194) * Fixed libldap rebinding on failed connection (ITS#7207) * Fixed slapd listener initialization (ITS#7233) * Fixed slapd cn=config with olcTLSVerifyClient (ITS#7197) * Fixed slapd delta-syncrepl fallback on non-leaf error (ITS#7195) * Fixed slapd to reject MMR setups with bad serverID setting (ITS#7200) * Fixed slapd approxIndexer key generation (ITS#7203) * Fixed slapd modification of olcSuffix (ITS#7205) * Fixed slapd schema validation with missing definitions (ITS#7224) * Fixed slapd syncrepl -c with supplied CSN values (ITS#7245) * Fixed slapd-bdb/hdb idlcache with only one element (ITS#7231) * Fixed slapo-accesslog deadlock with non-logged write ops (ITS#7088) * Fixed slapo-syncprov sessionlog check (ITS#7218) * Fixed slapo-syncprov entry leak (ITS#7234) * Fixed slapo-syncprov startup initialization (ITS#7235)- Disabled testsuite for now. Causes problems in the buildserivce- Update to 2.4.30 * Fixed libldap socket polling for writes (ITS#7167) * Fixed liblutil string modifications (ITS#7174) * Fixed slapd crash when attrsOnly is true (ITS#7143) * Fixed slapd syncrepl delete handling (ITS#7052,ITS#7162) * Fixed slapo-pcache time-to-refesh handling (ITS#7178) * Fixed slapo-syncprov loop detection (ITS#6024)- Update to 2.4.29 * Fixed slapd cn=config modification of first schema element (ITS#7098) * Fixed slapd operation reuse (ITS#7107) * Fixed slapd blocked writers to not interfere with pool pause (ITS#7115) * Fixed slapd connection loop connindex usage (ITS#7131) * Fixed slapd double mutex unlock via connection_done (ITS#7125) * Fixed slapd check order in connection_write (ITS#7113) * Fixed slapd slapadd to exit on failure (ITS#7142) * Fixed slapd syncrepl reference to freed memory (ITS#7127,ITS#7132) * Fixed slapd syncrepl to ignore some errors on delete (ITS#7052) * Fixed slapd syncrepl to handle missing oldRDN (ITS#7144) * Fixed slapd-monitor compare op to update cached entry (ITS#7123) * Fixed slapo-syncprov with already abandoned operation (ITS#7150) - Included patches from RE24 branch: * only poll sockets for write as needed (ITS#7167, bnc#749082) * sycnrepl Fixes (ITS#7162)- license update: OLDAP-2.8 SPDX format (http://www.spdx.org/licenses)- Update to 2.4.28 * Fixed back-mdb out of order slapadd (ITS#7090) changes in OpenLDAP 2.4.27 Release (2011/11/24): * Added slapd delta-syncrepl MMR (ITS#6734,ITS#7029,ITS#7031) * Fixed ldapmodify crash with LDIF controls (ITS#7039) * Fixed ldapsearch to honor timeout and timelimit (ITS#7009) * Fixed libldap endless looping (ITS#7035) * Fixed libldap TLS to not check hostname when using 'allow' (ITS#7014) * Fixed slapadd common code into slapcommon (ITS#6737) * Fixed slapd backend connection initialization (ITS#6993) * Fixed slapd frontend DB parsing in cn=config (ITS#7016) * Fixed slapd hang with {numbered} overlay insertion (ITS#7030) * Fixed slapd inet_ntop usage (ITS#6925) * Fixed slapd cn=config deletion of bitmasks (ITS#7083) * Fixed slapd cn=config modify replace/delete crash (ITS#7065) * Fixed slapd schema UTF8StringNormalize with 0 length values (ITS#7059) * Fixed slapd with dynamic acls for cn=config (ITS#7066) * Fixed slapd response callbacks (ITS#6059,ITS#7062) * Fixed slapd no_connection warnings with ldapi (ITS#6548,ITS#7092) * Fixed slapd return code processing (ITS#7060) * Fixed slapd sl_malloc various issues (ITS#6437) * Fixed slapd startup behavior (ITS#6848) * Fixed slapd syncrepl crash with non-replicated ops (ITS#6892) * Fixed slapd syncrepl with modrdn (ITS#7000,ITS#6472) * Fixed slapd syncrepl timeout when using refreshAndPersist (ITS#6999) * Fixed slapd syncrepl deletes need a non-empty CSN (ITS#7052) * Fixed slapd syncrepl glue for empty suffix (ITS#7037) * Fixed slapd results cleanup (ITS#6763,ITS#7053) * Fixed slapd validation of args for TLSCertificateFile (ITS#7012) * Fixed slapd-bdb/hdb to build entry DN based on parent DN (ITS#5326) * Fixed slapd-hdb with zero-length entries (ITS#7073) * Fixed slapd-hdb duplicate entries in subtree IDL cache (ITS#6983) * Fixed slapo-pcache response cleanup (ITS#6981) * Fixed slapo-ppolicy pwdAllowUserChange behavior (ITS#7021) * Fixed slapo-sssvlv issue with greaterThanorEqual (ITS#6985) * Fixed slapo-sssvlv to only return requested attrs (ITS#7061) * Fixed slapo-syncprov DSA attribute filtering for Persist mode (ITS#7019) * Fixed slapo-syncprov when consumer has newer state of our SID (ITS#7040) * Fixed slapo-syncprov crash (ITS#7025) * Added missing LDIF form of schema files (ITS#7063)- add libtool as buildrequire to avoid implicit dependency- ACL changes to the config database only got active after slapd restart in certain cases (bnc#716895, ITS#7066). - Adjusted default DB_CONFIG to increase max values for locks and lock objects (bnc#719803) - Fix UTF8StringNormalize overrun on zero-length string (bnc#724201, ITS#7059)- Update to 2.4.26 * Added libldap LDAP_OPT_X_TLS_PACKAGE (ITS#6969) * Fixed libldap descriptor leak (ITS#6929) * Fixed libldap socket leak (ITS#6930) * Fixed libldap get option crash (ITS#6931) * Fixed libldap lockup (ITS#6898) * Fixed libldap ASYNC TLS setup (ITS#6828) * Fixed libldap with missing \n terminations (ITS#6947) * Fixed tools double free (ITS#6946) * Fixed tools verbose output (ITS#6977) * Fixed ldapmodify SEGV on invalid LDIF (ITS#6978) * Added slapd extra_attrs database option (ITS#6513) * Fixed slapd asserts (ITS#6932) * Fixed slapd configfile param on windows (ITS#6933) * Fixed slapd config with global chaining (ITS#6843) * Fixed slapd uninitialized variables (ITS#6935) * Fixed slapd config objectclass is readonly (ITS#6963) * Fixed slapd entry response with control (ITS#6899) * Fixed slapd with unknown attrs (ITS#6819) * Fixed slapd normalization of schema RDN (ITS#6967) * Fixed slapd operations cache to 10 op limit (ITS#6944) * Fixed slapd syncrepl crash with non-replicated ops (ITS#6892) * Fixed slapd-bdb/hdb with sparse index ranges (ITS#6961) * Fixed back-ldap ppolicy updates (ITS#6711) * Fixed back-ldap with id-assert (ITS#6817) * Fixed various slapo-pcache issues (ITS#6823, ITS#6950, ITS#6951, ITS#6953, ITS#6954) * Fixed slapo-pcache database corruption (ITS#6831) * Fixed slapo-syncprov with replicated subtrees (ITS#6872) - backported delete support for child entries of overlays from master (bnc#704398)- Updated to 2.4.25, important changes: * Fixed ldapsearch pagedresults loop (ITS#6755) * Fixed tools for incompatible args (ITS#6849) * Fixed libldap MozNSS crash (ITS#6863) * Fixed slapd add objectclasses in order (ITS#6837) * Added slapd ordering for uidNumber and gidNumber (ITS#6852) * Fixed slapd segfault when adding values out of order (ITS#6858) * Fixed slapd sortval handling (ITS#6845) * Fixed slapd-bdb with slapadd/index quick option (ITS#6853) * Fixed slapd-ldap chain cn=config support (ITS#6837) * Fixed slapd-ldap chain with slapd.conf (ITS#6857) * Fixed slapd-meta deadlock (ITS#6846) * Fixed slapo-sssvlv with multiple requests (ITS#6850) * Fixed contrib/lastbind install rules (ITS#6238) * Fixed contrib/cloak install rules (ITS#6877)- Surpress gcc warnings about extra format string arguments for 2.3.x built as well.- Updated to 2.4.24, important changes: * Added libldap_r,libldap formal concurrency API (ITS#6625,ITS#5421) * Added slapadd attribute value checking (ITS#6592) * Added slapcat continue mode for problematic DBs (ITS#6482) * Added slapd syncrepl suffixmassage support (ITS#6781) * Fixed liblber to not close invalid sockets (ITS#6585) * Fixed libldap referral chasing (ITS#6602) * Fixed libldap leak when chasing referrals (ITS#6744) * Fixed slapd acl parsing overflow (ITS#6611) * Fixed slapd acl when resuming parsing (ITS#6804) * Fixed slapd default config acls with overlays (ITS#6822) * Fixed slapd config leak with olcDbDirectory (ITS#6634) * Fixed slapd when first acl is value dependent (ITS#6693) * Fixed slapd-bdb slapadd -q with glued dbs (ITS#6794) * Fixed slapo-ppolicy don't update opattrs on consumers (ITS#6608) * Fixed slapo-ppolicy to allow userPassword deletion (ITS#6620) * Fixed slapo-syncprov to send error if consumer is newer (ITS#6606) * Fixed slapo-syncprov filter race condition (ITS#6708) * Fixed slapo-syncprov active mod race (ITS#6709) * Fixed slapo-syncprov to refresh if context is dirty (ITS#6710) * Fixed slapo-syncprov CSN updates to all replicas (ITS#6718) * Fixed slapo-syncprov sessionlog ordering (ITS#6716) * Fixed slapo-syncprov sessionlog with adds (ITS#6503) * Fixed slapo-syncprov mutex (ITS#6438) * Fixed slapo-syncprov mincsn check with MMR (ITS#6717) * Fixed slapo-syncprov control leak (ITS#6795) * Fixed slapo-syncprov error codes (ITS#6812) * For a comprehensive list of changes please consult the CHANGES file - removed unneeded openSUSE 11.0 specifc patch- slapadd -q could crash for glued bdb/hdb databases- Install the correct schema2ldif script (bnc#665530)- Fixed quotation in init-script to avoid errors when calling it from within /etc/openldap/slapd.d/cn=config/ (bnc#660492).- Surpress gcc warnings about extra format string arguments. - Split-off openldap2-doc (noarch) package (Admin Guide and IDs) - Backported -VVV commandline switch for slapd from HEAD (to list enabled static overlays) - Build all overlays except syncprov and ppolicy as dynamic modules (Fixes bnc#648479, FATE#307837) - Added README.dynamic-overlays to point out some details about dynamic overlays - simplified pie-compile patch and adjusted it to work with dynamic overlays- Handle the libdb-4_5 -> libdb-4_8 Version update by opening the Databases with DB_RECOVER if a version mismatch is detected.- Do not include Build date and time in binaries, this avoids build-compare failures and unhelpful rebuilds/republishes- Don't build 2.3 slapcat anymore for 11.3 and newer. We switch to 2.4 long ago. - Removed automatic 2.3->2.4 migration in %post - moved back-sql examples to make rpmlint happy- Fix listener URIs in init script to make SLP registration work again (bnc#620389)- Fixed RPM Group and Summary Tags (bnc#624980)- Updated to 2.4.23: * Fixed libldap to return server's error code (ITS#6569) * Fixed libldap memleaks (ITS#6568) * Fixed liblutil off-by-one with delta (ITS#6541) * Fixed slapd acls with glued databases (ITS#6468) * Fixed slapd syncrepl rid logging (ITS#6533) * Fixed slapd modrdn handling of invalid values (bnc#612430, ITS#6570) * Fixed slapd-bdb hasSubordinates computation (ITS#6549) * Fixed slapd-bdb to use memcpy instead for strcpy (ITS#6474) * Fixed slapd-bdb entry cache delete failure (ITS#6577) * Fixed slapd-ldap to return control responses (ITS#6530) * Fixed slapo-ppolicy to use Debug (ITS#6566) * Fixed slapo-refint to zero out freed DN vals (ITS#6572) * Fixed slapo-rwm to use Debug (ITS#6566) * Fixed slapo-sssvlv to use Debug (ITS#6566) * Fixed slapo-syncprov lost deletes in refresh phase (bnc#606294, ITS#6555) * Fixed slapo-valsort to use Debug (ITS#6566) * Fixed contrib/nssov network.c missing patch (ITS#6562) - New subpackage openldap2-back-sql. Contains the SQL backend module plus some documentation (bnc#395719) - generate Patches from git tree (resulted in all patches being renamed) - installing binaries without stripping them is done by setting the STRIP enviroment variable instead for patching the Makefile now - Fixed a bug in the syncprov overlay which could lead to not replicate delete Operations (ITS#6555, bnc#606294) - BuildRequires cleanup- LDAP clients could crash the server by submitting a specially crafted LDAP ModRDN operation. (bnc#612430, ITS#6570) - Delete Operations happening during the "Refresh" phase of "refreshAndPersist" replication failed to replicate under certain circumstances (bnc#606294, ITS#6555)- Create /var/run/slapd on demand. /var/run might be mounted on tmpfs.- fix build dependency cycle for -client package with openslp- Fixed quotation in sed expression to escape ldapi path in init script- Removed obsolete hunk from openldap2.dif - Remove ldap.conf patch to use saner default for Certificate verification (bnc#575146)- Add fix for stricter fortification checks of GCC 4.5.- Updated to 2.4.21: * Fixed liblutil for negative microsecond offsets (ITS#6405) * Fixed slapd global settings to work without restart (ITS#6428) * Fixed slapd looping with SSL/TLS connections (ITS#6412) * Fixed slapd syncrepl freeing tasks from queue (ITS#6413) * Fixed slapd syncrepl parsing of tls defaults (ITS#6419) * Fixed slapd syncrepl uninitialized variables (ITS#6425) * Fixed slapd-config Adds with Abstract classes (ITS#6408) * Fixed slapo-dynlist behavior with simple filters (ITS#6421) * Fixed slapd-ldif access outside database directory (ITS#6414) * Fixed slapo-translucent with back-null (ITS#6403) * Fixed slapo-unique criteria checking (ITS#6270) - removed some obsolete RPM dependencies - Added missing tags to init script to silence rpmlint warnings- Fixed an issue in back-config's objectclass inheritence code that could cause the server to fail to start or to spin in an endless loop (bnc#558059,ITS#6408) - default the tls_reqcert parameter of a syncrepl config to "demand" as documented even if other tls_ options are absent (bnc#558397, ITS#6319) - apply changes to the global size and timelimits to all database that don't specify limits themself. (bnc#562184, ITS#6428)- Update to 2.4.20 (fate#306593), most important fixes since 2.4.19 * Fixed liblber embedded NUL values in BerValues (ITS#6353) * Fixed libldap sasl buffer sizing (ITS#6327,ITS#6334) * Fixed libldap uninitialized return value (ITS#6355) * Fixed libldap unlimited timeout (ITS#6388) * Added slapd handling of hex server IDs (ITS#6297) * Fixed slapd checks of str2filter (ITS#6391) * Fixed slapd configArgs initialization (ITS#6363) * Fixed slapd db_open with connection_fake_init (ITS#6381) * Fixed slapd with embedded \0 in bervals (ITS#6378,ITS#6379) * Fixed slapd inclusion of ac/unistd.h (ITS#6342) * Fixed slapd sl_free to better reclaim memory (ITS#6380) * Fixed slapd syncrepl deletes in MirrorMode (ITS#6368) * Fixed slapd syncrepl to use correct SID (ITS#6367) * Fixed slapd tls_accept to retry in certain cases (ITS#6304) * Fixed slapd-bdb/hdb cache corruption (ITS#6341) * Fixed slapd-bdb/hdb entry cache (ITS#6360) * Fixed slapo-syncprov checkpoint conversion (ITS#6370) * Fixed slapo-syncprov deadlock (ITS#6335) * Fixed slapo-syncprov out of order changes (ITS#6346) - Added switch to enable/disable testsuite (%run_test_suite)- updated patches to apply with fuzz=0- Added schema2ldif tool to openldap2-client subpackage (bnc#541819)- Changed permissions on /var/run/slapd to a saner default for ldapi:/// (bnc#536729)- libldap's check of the hostname against the TLS Certificate's CN Attribute did not handle possible NUL bytes in the CN correctly and was vulnerable against attacks with spoofed Certificates. (bnc#537143, ITS#6239)- Update to 2.4.17. Most important changes: * Fixed liblber to use ber_strnlen (ITS#6080) * Fixed libldap openssl digest initialization (ITS#6192) * Fixed libldap tls NULL error messages (ITS#6079) * Added slapd sasl auxprop support (ITS#6147) * Added slapd schema checking tool (ITS#6150) * Added slapd writetimeout keyword (ITS#5836) * Fixed slapd abandon/cancel handling for some ops (ITS#6157) * Fixed slapd access setstyle to expand (ITS#6179) * Fixed slapd assert with closing connections (ITS#6111) * Fixed slapd bind race condition (ITS#6189) * Fixed slapd cert validation (ITS#6098) * Fixed slapd connection_destroy assert (ITS#6089) * Fixed slapd csn normalization (ITS#6195) * Fixed slapd errno handling (ITS#6037) * Fixed slapd hung writers (ITS#5836) * Fixed slapd ldapi issues (ITS#6056) * Fixed slapd normalization of updated schema attributes (ITS#5540) * Fixed slapd olcLimits handling (ITS#6159) * Fixed slapd olcLogLevel with hex levels (ITS#6162) * Fixed slapd sending cancelled operations results (ITS#6103) * Fixed slapd slapi_entry_has_children (ITS#6132) * Fixed slapd sockets usage on windows (ITS#6039) * Fixed slapd some abandon and cancel race conditions (ITS#6104) * Fixed slapd tls context after changes (ITS#6135) * Fixed slapd-bdb/hdb adjust dncachesize if too low (ITS#6176) * Fixed slapd-bdb/hdb crashes during delete (ITS#6177) * Fixed slapd-bdb/hdb multiple olcIndex for same attr (ITS#6196) * Fixed slapd-hdb freeing of already freed entries (ITS#6074) * Fixed slapd-hdb entryinfo cleanup (ITS#6088) * Fixed slapd-hdb dncache lockups (ITS#6095) * Fixed slapd-ldap deadlock with non-responsive TLS URIs (ITS#6167) * Fixed slapo-ppolicy to honor pwdLockout (ITS#6168) * Fixed slapo-ppolicy to return check modules error message (ITS#6082) * Added slapo-rwm rwm-drop-unrequested-attrs config option (ITS#6057) * Fixed slapo-rwm dn passing (ITS#6070) * Fixed slapo-rwm entry free/release (ITS#6058, ITS#6081) * Fixed tools returning ldif errors (ITS#5892) - Backported fix for failing back-monitor test from HEAD - re-enabled some formerly disabled tests from the testsuite- Fixed Summary/Description for -client subpackage- Improved connection check in init script (bnc#510295)- Fixed complilation with newer glibc (2.3.X release needs GNU_SOURCE defined as well in getpeerid.c)- gcc 4.4 fixes- Update to 2.4.16. Most important fixes: * Fixed libldap segfault in checking cert/DN (ITS#5976) * Fixed libldap peer cert double free (ITS#5849) * Fixed libldap referral chasing (ITS#5980) * Fixed slapd backglue with empty DBs (ITS#5986) * Fixed slapd ctxcsn race condition (ITS#6001) * Fixed slapd debug message (ITS#6027) * Fixed slapd redundant module loading (ITS#6030) * Fixed slapd schema_init freed value (ITS#6036) * Fixed slapd syncrepl newCookie sync messages (ITS#5972) * Fixed slapd syncrepl hang during shutdown (ITS#6011) * Fixed slapd syncrepl too many MMR messages (ITS#6020) * Fixed slapd syncrepl skipped entries with MMR (ITS#5988) * Fixed slapd-bdb/hdb cachesize handling (ITS#5860) * Fixed slapd-bdb/hdb with slapcat with empty dn (ITS#6006) * Fixed slapd-bdb/hdb with NULL transactions (ITS#6012) * Fixed slapd-ldap incorrect referral handling (ITS#6003,ITS#5916) * Fixed slapd-ldap/meta with broken AD results (ITS#5977) * Fixed slapd-ldap/meta with invalid attrs again (ITS#5959) * Fixed slapo-accesslog interaction with ppolicy (ITS#5979) * Fixed slapo-dynlist conversion to cn=config (ITS#6002) * Fixed various slapo-syncprov issues (ITS#5972, ITS#6020, ITS#5985, ITS#5999, ITS#5973, ITS#6045, ITS#6024, ITS#5988) - Fix building on older openSUSE releases- Update to 2.4.15. Most important changes: * Fixed slapd bconfig conversion again (ITS#5346) * Fixed slapd behavior with superior objectClasses again (ITS#5517) * Fixed slapd RFC4512 behavior with same attr in RDN (ITS#5968) * Fixed slapd corrupt contextCSN (ITS#5947) * Fixed slapd syncrepl order to match on add/delete (ITS#5954) * Fixed slapd adding rdn with other values (ITS#5965) * Fixed slapd-bdb/hdb behavior with unallocatable shm (ITS#5956) * Fixed slapd-ldap/meta with entries with invalid attrs (ITS#5959) * Fixed slapo-pcache caching invalid entries (ITS#5927) * Fixed slapo-syncprov csn updates (ITS#5969) * Added libldap option to disable SASL host canonicalization (ITS#5812) * Fixed libldap chasing multiple referrals (ITS#5853) * Fixed libldap setuid usage with .ldaprc (ITS#4750) * Fixed libldap deref handling (ITS#5768) * Fixed libldap NULL pointer deref (ITS#5934) * Fixed libldap peer cert memory leak (ITS#5849) * Fixed libldap intermediate response behavior (ITS#5896) * Fixed libldap IPv6 address handling (ITS#5937) * Fixed libldap_r deref building (ITS#5768) * Fixed libldap_r slapd lockup when paused during shutdown (ITS#5841) * Fixed slapd acl checks on ADD (ITS#4556,ITS#5723) * Fixed slapd acl application to newly created backends (ITS#5572) * Fixed slapd bconfig to return error codes (ITS#5867) * Fixed slapd bconfig encoding incorrectly (ITS#5897) * Fixed slapd bconfig dangling pointers (ITS#5924) * Fixed slapd epoll handling (ITS#5886) * Fixed slapd glue with MMR (ITS#5925) * Fixed slapd listener comparison (ITS#5613) * Fixed various syncrepl issues (ITS#5809,ITS#5850, ITS#5843, ITS#5866, ITS#5901, ITS#5881, ITS#5935, ITS#5710, ITS#5781, ITS#5809, ITS#5798, ITS#5826) * Fixed slapd-bdb/hdb dncachesize handling (ITS#5860) * Fixed slapd-bdb/hdb trickle task usage (ITS#5864) * Fixed slapd-hdb idlcache with empty suffix (ITS#5859)cloud121 1502141705  !"#$%&'()*+,2.4.44-18.12.4.44-18.1allop.laallop.soallop.so.0allop.so.0.0.0allowed.laallowed.soallowed.so.0allowed.so.0.0.0autogroup.laautogroup.soautogroup.so.0autogroup.so.0.0.0cloak.lacloak.socloak.so.0cloak.so.0.0.0denyop.ladenyop.sodenyop.so.0denyop.so.0.0.0lastbind.lalastbind.solastbind.so.0lastbind.so.0.0.0noopsrch.lanoopsrch.sonoopsrch.so.0noopsrch.so.0.0.0nops.lanops.sonops.so.0nops.so.0.0.0pw-pbkdf2.lapw-pbkdf2.sopw-pbkdf2.so.0pw-pbkdf2.so.0.0.0pw-sha2.lapw-sha2.sopw-sha2.so.0pw-sha2.so.0.0.0smbk5pwd.lasmbk5pwd.sosmbk5pwd.so.0smbk5pwd.so.0.0.0/usr/lib64/openldap/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector -funwind-tables -fasynchronous-unwind-tables -gobs://build.opensuse.org/openSUSE:Maintenance:7089/openSUSE_Leap_42.3_Update/263d77abb10eff59f659c0a6fbefa462-openldap2.openSUSE_Leap_42.3_Updatecpiolzma5x86_64-suse-linux    libtool library fileELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=1e9b7dc21593a2c6b8658c2adb2f1f2cc71bcffb, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=3590ee1b4c55d83cd7d7571d269027adc62352e4, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=dd53cb5394b3ce94dc2fecbe0cf3e49d3fc97027, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=8397d8c05f25885c5acd49cb07217619bd326d05, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=1c299bee316fa8d353907efa62ecd312eb2dece4, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=aa5b0813a22eb0a555490f8d1533bd6f3cd57eda, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=99eb0594375e38d8d811781a7305511348839f6e, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=b1a26960a4bfa2b4b5671244650d02a2130442f9, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=11e025304ec9718c83d5ffbc82cc47c8ff5ba4f4, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=aaaf025386e747d22d68d0470819f549fe49d3e5, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=dd08f94dc8b0658fd5e2385de1952b3eebd09da3, stripped  !%&*+/056PPRRRRPPRRRPPRRRRP PRRRP PRRRP PRRRP PRRRP PRRRPPRRRPPRRRRPPRRRRRs,Auur?`] crv(vX0D/c8w:5gx]ٔ@޾K.YAbk!ʩIj4kvkbjӦ].)L_b&X?FT&vU.[}^QIm%ڇ-!5ڢO sMv>=\5*Ӷ`Eҡ&#_'G70"yeII` F*lF <Yŧʼn. rN{s^SUXwõQ*Tx|4[άcvh?n8gICOD\ʲ2$O0s}Q %6;Pv#3]~|nF!z찈ytߍ9.=;|KF`',oX¯L!pAh:PF?I"X4T¬†"zwfmQޥmx,O /ʼvY+ېIJ;m_rmMc޽?9{X.fk7fߞرս~r}Vrz%J bu xqv)5lݬ95J%],\1noaڅ,9cҟS3."Wc0"{Ζ]"iKAɘF#vw䪵L4GԽ|04   z K9![&r#kqVEU :{%)ZᔒtزgOX駃?1SbgN7Y4 0/se b"ILr89Z/M< zA|ڳ鸂??X:#*)F9,\E;:ئ8F2hFՄ/`Y!dGcr OdN>pMC?)yRnp՜YyM {Q EJ͚s:w>m6PbYC9H2^*D}e{$ %X"IC1[zq|%u!CT8Kd MHpH `7='G:^r x$L5}aEa .;,knnEld*zFgf]6XYS)R  ;cRcK._ܞ] n4ieT8=3N@kBԅЋ[ܾZRF7c1>9:{_c~-~Br+z9)u{ږmKnZ`3xag+)îX)N(QFIJOyϻ zZw\$jX ~=EX@EW_i Hs._ZT>@酶1W.(~>!"%w!wpcGKVY3~xλ=m+I&sGU:: 1o߄LK3ZAGG"BqH{njϗXNRL1]GUvƓ`M1Y!gU@qf`;J$R N?c )KSΘH'I=+_B?ڀ#UP'xC,,.62ԁb+S:UKb ]YqrǤ]]#<[Vh؄"4<;iYxԉ`vH$mrb{=?x hX̼/Ҏ H6ҹ>Ju1C! +Js{SS|o2ꎵfY,x)~;DɞZk/e7߮s_324hhlӿM$Fӯh >`QƯL{|a,D5Bp8 8M:?-gT~h2 ToAjބ+{⌡ w:?-/e1xtB?IfY5EEUXЦBc|^3jSn35jtʀ՜3a;vG͊,)|q>j'8q$Nx) N)tt<1Q޽)prw3'$]œaElԼtLHuZ'Ui(,So0EAR*o-EA.\G9Ŭ)xPps!!O% `V{YqnBgEAv "#n9lsǑ41CI2آvme&&ާ Ư >,@LJNF*Ѳy:MZ Q}8VEeUZOeiטPIxvAɚs)ı;ja/p`wnbr=]~' VnɀpoU͇9t_+~3kmda㼒Fx$҆]$󑹈?"vT#g;$n{eBkF]DsYƔ\ (o1l7"͈2g=@ !A"{{2uŒU1u :y]gڞ%-xkSsVblRQubTZB"ҟLJ0{Z]炲L燵]q@yۢVk@6˷Ʌ_LFwK|rD5OCZ:`~]PNv,LOqNyW!&rbR&zen`:N^G{DV: g(X4|(!쭸}?HX˄Zd>܎AB5yESG> b{3S/a)3%dbhҀ)t8V!=\荚81;Pٽ5%u_hm$+IXq6G`P<tHBh]Ks~U:Af1RqYeZxy>k3QJ-ÚeVYq%U+LXh[s2qSRԓMڽFAe{i>1\?17[PmH 3WYIBA" J܉h^rCB{vlZX5~%@M3U]\'+:@23p%yLS*j|rNg'G3xyeW-?vGYCX!V>?!>Ua lL!$O5TUp{J^Ew}9PQ\^Wn6 Y( Ї~ د'RRf+\ʞ+=1V:7z"2ŽUzmɖG,YADZY+ΘLS꫋p>:-SfQm.@B Fʄ0|[œz$ZCb<&;IC撣*%w9tW1w(S <MGHe[%eWB qšB\41xn|΃J W`[:Ш)m<}ѐ}&sF8`D\2#5C sF ?}%GG9b7(% q=Kdt:)-OfK@2_Sr⿣иl@iHbnLxe:k֭^F*wnzVEnfVSU|va!Ǥ_ =(.o"#B5ɇS)cfb&UcS_oUzm6]i" aj"po2/'Z;OHjSK-7isY2 9hI)Н>ЉXXGq}#+69B'W6<(M헹ljir>Զ.`"UzӼL}GVNk[vqR=$AF# keľk,7ʋh[u;E5zҫ9GAgeB" i Ci]W[N(22:Q$%Y`fsU0Qq5Z@Kt?E0,%()"DDO^V9QW`O+_Ӏ¬_Ԗ>Rߊ)f7W&r[$[֊|ʃݶDnkj4C:D bgJZW&|mx:*#͗r0w9#_G'#S El;z0~hKiyn]¡Ќa0Cf+3my@ |(nQ}/`JRT#mm=CkkHŮ뷔‰n3x K}^[?Ν ցqwe m G~GjUK@Bi>[Y<ȏqʝ&`p>ty_}(KCGۏ()H*Ou[aXLr_bq^8TԡaNfe_8yn !!9 D+6kr 9<))!e]x*0@3H$a{@mܮ APdE3l+! u8I1ܑ>сImjLcQХfÆ6rBoč423(Ihl׭S) Rd <^TgD (2Ȣ|:-{e;~D) vt[ Oć%vP`/ bZ b5r}WX-d25MI"7IM٦hJtpG,0 ~ȥN0"sA)x D=>j2e%HoD9(XmG.]VJIcLFN9?:Mq$@Dw֪%QB[6u@ě^gpt1q< U5zvK%2Awcd&5z93@_$칹|v4 d}{w=I3xOZ+1ZOpᬸ10\ Q9sY$0u zĽB}IɶE6*k(n 0Sf4nr%@Ixn iG=WpņCߔ_E ؝`,J<_?Xâ\ Pv;11LόtgfVV^ weUBnxSu,ŵ?^XAdƦ!d@a/R*oΩ%RSc},0!$L‘r}0F^ ?I'zNa>BU?@!o2ҮyJ .'UaC/N5 a 6F 0ogǵo$fT2MvSߩ7N!łn؟-eezzz1L`4,ž?Eyv+q\Іn[!%vPXCjB>}rNO-vMq+iS۠VFԑBR䪊!־]"H5gߍS}\¡@44'ͅ"x'V ztﻅW->zkA0W=a*]R7驢#-6-ρE$=DJBuhR So7D5hb|mjMO9H^"3xRdk|fe9 {&zLHK}˝g7i4T"n\,Q֧` ^2 Kl!<6^©Niz>AA3y 2V/D |KPH^6{nK~U hK#cr~uK:3:8#/290$[M, rCW'1`q wA'Rs+5Ҹ0`5[d0LY0!<^K{G=l>{6ƌ]>pFn~_Z3 D(z^/"Mo6>h0u޳uPXd+5d /;ʐC&7O@th]}`DKzEg :D0-h+N/Eק &̡I*lv֥jA3Ա"^c}ET6T}\0}U#vXs)ܶ!A ̊^2 xՀ/G4W7@qf_;/$_(?VG1`8eHC# 0הH91,,K& u)-`c.DF8G9/;.rK[F cs$0R[B! f>* /8rVQb.t>oíبo2>F!m횺?0=U(R@:E Z3h|&F(0}I(3gL7UՁ|?fA_`T%Y) uQܳJ6iٱ*.pMDE-LcB1Ud=?!^=]d:MDIp\.xNƁNm0 aMQ5L 5\,bJ ^:3</K.vg| > 8A\3Y2"Ԫ?v<_vCL1S] ~C &-附RhXyNm">}5vXs~rXz @IJL e~ڕ fM z*5ɩFq9ňٔ=*RHTKA0Bc~@3)pKX+%xGE-ˢ[f Y*xHӹ>QҙK#MRTV,LK|LyjԽ?KZ2)#k!G $K*/`U$/1RrQé3[?Β ߺn6 yv 챪͏Y_p_ '9/|0 ,UXLXGPI$I~3Vyb)j3,m=V6th$Űs'U+a:v\§GtO&n|/ +[(%gOnYD UſӢ3Rg\Oכ9#tGHiNUN&(iD&w E륯$~sB5IRDe?| F;[c ev3lN'UL6D:sQN܀ܮ%80'( t&\@B$&E? A0Vq[g PAQyQEI8:rLۚSuh(M~.k-f\ؕ^ޞMhIeQ)LLnWHP.!<aس1uR n%Oa!%8lb.bۑ*L%ݡ*eۂu8h5bD19g?~>JY9rga8ZJIb&[,KG/j‹9t?-\'8U :p0Wo>QzG"UT)GP?`T]:,o1X,kPN53 Czu|R@h:4C6xW~cS~$R .Z~ֹ~cjtmuJKL%a&K{U{_vrUB-^My+R>,Y lqOr?y!$d|І=gOqF\wH[ͦOZDD܄O,-=jt䁩!܌}PSsyXI+зvݝaa 1l$MEqE*8Qy8d;FHS=BDh_0c k+( ar<5ѲqG0y0!6ෝ~.0KP`ިkѦ[@)%XqeF8ÿL 9^ -nPw⟓9u=o×V/˺~xR )ţ0ZA(+~VA&`IqzR-ǧ}c~͇z]c+@fvkZU3Nf]3OA`(XfFzٚ8?=S1/phAJ6iUv4%jҸ !l,pl )߆?:X͙A'$ѲO`+t!'kF K9Ci*k6*u`;5U=s>R81΢؋*_0>ܸ|8 q@̻ Q+/*Cf=i7ugA^տ[K͹"#T]^Mq[P3u'3*B/eY*"%*ٿ+/Jh(`t㕨رs{>64ۦF+cJEM_ʯ *@4 _;eSl."etѺw VTe b̋=@t`-Pwώ0!e Ysz߆ xLƃ]~h2(@Ȅk)P5a!LW*cb%JDCúܧe֚l_ʋ; EzۍQwHC|9Az9hs=$S.RA@|/*ls83%zz>r`|+Ge^4lL$0>,[9E鳆t/a&eMr)qEԣ=Ϧ6 Ot:bX2jpt_y;3CadaQPΗ|._)l"\l eIZPS&Vp 663ĬkWt]9`weqɜ{KdP9{~%#ޔt8%0Kujd3EiIUYbO*K]dweؙҖ[,g3Zi%Po- TPx j|2 LjjzfY\A=#@`@ ek&%]%r+Bv_2|K RnOpqY:=l`v4;Q+ `f0sR; xlK:_Q ֓SFMA,E5p@1΅p0]v>Q{r(厊}ŵ8cRm_3 ᵹ1|䀇ÚRzB}jY%U`pIT=I@ũiA@{Շʶ3{.X J~%|&CY J[]h;qvZ}f}r_%KL"7 kb,'浭lM]"Xn.q`W\p糏/hh}YWl IU~3/B FҾ oQe+; #ˌ|iVh`|"Ty)dQ8" ZSPb:5n%PH7Fd֎p-V?9`vs`hr{_*% !DMLtE Hk>&>\p4E_I=ӟ[ D1DBKstS9Yx{|0HG^rS2^7^ ¨\G y.H+\k^%PuQhp4l~UU)@,Dpa{ذ{:@7lKt@|h2Pg|AV&[$r M=~(@'t ':Fŀbk¤ik*}s0i֔Zj])ydk#oN_E#tgsz(Nmpr5#y"HZCA'T6xg-;G^:ojv1@*ř3ub<GapJޱ- lQO#IL LF6uO;˶NF;hNOI: \6f7߿Xfe;D]iHaա<D&]V6|:%%$REyFg<.Ob~I`lc䡑m$:'P2mpKXS- e|Hl<N2}%3ca-րP&@L0’#ގMSч;ed^[U(c(W5}戵 5PtC*|i)՛fi/{鴬$\r֍{Zn:,=W48⨾ߐqF;r"SC_ǵ5W} Fgx,{C /|N!j̗(^ cU,g\+AfU<'uh%v Rz Ahw2(M)f[Mt#Q[h/ŦSPG je\n=Y>۔2O ֲ+;?D(bƃ"72<]ϳ(7?ѣc ̒/I&}\39,RN£/`_N-`.ZL͙8%o& ]%{ⸯk~Wm'kYu6·e_Nv|\sVْR A{QfrH{Ⱥv)<-Of(Q'ddleN3&+ߛ/V3gZͅ AwlN1yp^?-r(3f1"UGrvnaɹ{̲̓,)a+O`<ܶ_@'(iԝ]O%(-U?cDo :'uE,@C*C_{E>AWb>6ٽzEvm>&ԅt$6* qPa`݅6S]WiHrI8J 0 tpBDQ&l&IU`|PN;AZ޼>1Nj2a"h+A^GI~z,$oD1d.]t5T1P<rK*z۠ڛhn!g/GWmcA^J c1uiv;m0JNGF.s&wxχެ|G@:=ɒv2JRL0ߦSe"!ԀT$ v D#%ǫ=}UДt~y(}x(HYF0.y[ w:C ٥/{-'BN1vS$=S)WiC JXћ9yO/d5ty |%EfD  V+0lUl42%'ksmӎh h)V%kP>曺s^5JK]=IHX+4(3 ]9hqy0ӌoEA ؁@Oh4bjPT^'\A7<=pp.ˢ࿊*K}WHucj7pؔE3Lսj5TuEd+ӫq[?.3LR¸0tKxLtc+L&q0 2nV&QfApPVimC=[}wwΉ26K\\/Է}0Vy5o= +}MplFϰ5:uA:{^U;Oܱ߅I 5dn,S!طs @i*} .>V*Q(AfmXNpsbbYD҃/Q'"QT;>2@MmTc4 vy#*<$R lɇÒ3~ݑ4JЌ*DX(-N5.3ol =.ynV7*3?A{/e,SC_'J=K@~ b AQþ!9خ 72gN|5z i-ymDP{NMIQ /M*y-d&\W(zc#_:glTjf{V [8cs39Sf3OleS(}=$H Ϭ/@V⧐le|fG,[`.s[a݂[敛}b ZSיМ pі^/:4SB;A|0۶l߼ IiJ څ#x" |A}=ܨ +餆Ap5*4b'mD^~zgփoGEǎ%hhdON8˳DP.va2;;i^xc14ݶۚ)yK(^]U_ArOrS|&QFů\6&>'jO_7?X=~ ~4PwQfPWMJx|6zjpƳtF1l.db9;J3͗ _]Tݫ}D~6)zTSx<#VP+6d *bk1ipl~ в`Z?Fg>/4pAG(hr'FrEʑ/V$Ajtfhc%. Omgݚo-2+71MH4ctf_^w4b6,kZ*(;kOLӟo/,s!r} B]@:A *|ܴsL +,| P.quW ޺GB$lf`UO{يⱂܩAzcf#*<s)Ўq[UPJ4a; Ԑ_JC^OCЏ}0ĵzzGr ` NCmc66Z٘:UFE׺K2 .r IJDk` (TـŰA~\qe6|gje⡝F,qވABek\h. ^-W=]cF4Q q] a`I%.$n>q Z4OhBA+S;mF7+:+&?? &M9C L+KۓAW8eG4q:\Ɋ{4K8 Z&5ݫ@i.*eWmI`>g~$Co/WWR@1_"av'>oq͉RXkFqq޼f{TI1'A‘~LCR?O<P-՞Jq lj}ۛew2C|#݆VSZcɇ]:3ݰ&,qfu,n`rA3i yqă1e#,NV1GcjO@=U f3tj=Ww:骿X 63a_ leZKޞHLHdW L2)]Μ!E9z0E~QtztK>RU D0V⠧D*ǘ%kN Ou &<\Orp*1{*dp. H ?Wcwí 6l]0h<Ԥ=2+PmmRmӪq_g+')lt E~غ9vege:˒N^咘F}\EFx~ .˾gcecI\ ef=1 4x;Y4|ѫ|"Ydmق`,ia>(0%#ذGֹV`yOh-nu:Ia;;1 A';J9pf5O2߸WsܾWͰlaM?{vaK2vg;Q.b :{X@n 8V69Я7>TGc"PKyWҽ VӘqUXR9K"|o`' f-хc*A/ZTBng}IiɾlJs-0Ό!@xG# @t[jk2Z w9,qW\%?ے3LT]v#G x;< [5ᣤ+_5AelF[<UwSx}v5ΓN~@mT/Gߝ+*2AB/b 3m+^O!O+[wڎtׂ(cL_{e* oqVae^_T"W,vHKS@j X (*QbF1D\2嶃sbx:cd=QַYO3RjjEpJ7)7_&]Cq`VA|?T4;?*G!G$N~d@f$amgR31kVxqqؗy-sl9HA dyҏED \o65Y(qf JųO#s)woS9~X^"jnzO54%!4o>^L^"͙IzH aF3,|rĹ?%'c+sh 2?Lԗ 6,L9pF~"H!}#D6k 0zMO oM_#K->2nt[ɔM[4B8>VXTDeN X0c;"3:n_'qĸ[ SMXK+O#R֋~x/ӯ(l:2f^Ȗ]8+,PMop4|ezgCWvpǰ&6N˞{AZgEY\uQ1| ֌(jLL%~p%9s%:;"vPdchx(ZiY gB-RO\S+gK RwP@{HM0U3 G]J4*0c(nnŷxmc*L9 Hͼd٣/#Ѩj[ѩ% T.j$#x^XI.kZgcv*-PcσݐFΖk sU; [dCes>*l, Cmp w)0:ml=qÅJɟż&xޢz.^Ȑi Fj78De4;ī{uM,PtM*N`W}5'̜VroRJDQG֛Җ; [+bGu'YSi)$Kkha^iըn4=j֛ 0KI)C>}z &f Kj%US M7'u wR &HGhkZ啟0>*yu=$Yju^ۜj0iXW{`:cT?̚c7{絢F,;`.ޫ3cIX| ]x bHךNt쾗 12b+%(.t,AG|o"̖>!j{7Bľhfvhms[ Kխm(1orV8]L8q^8{gGDb_[篼2+z>];e*I0+e^#g91P7qT_}T8":_F>7/Nnf {on$ڟۋ:85Xi۷1C21 \zzF"a".`@ a o2|B>~,) {e%~vǃP&tD' V#ʐQb8\GyAP<.n FG/p$q"5ƀ70#17J:'mkLPvT0#Y4qjsMQn?B]dN<mU;$_@?P$KaպP*e=1W /v qih-I}r&cbfHW^g 艪 ( ,G$ޘZXܩ6dZ$T;$N #IeU7^4|["ɻgu@ŷ *O}w6U 8*NYv_OϓCע; a^kɞr%&/} )%q(aHc)MYfQ8!V܌ׂ *.>Qy1c)V?5͏{`|%?z?vzt;Bnξ]oer_ y.Ui}*隃]^d#Gld)Wc,[L5xu=Y3ۦ;{NޜֺQK`U:12p-sf]/A0-ex ei뮭dF>ørFr5XYlaZ8ځa$jِj6gw :p>Zlڄ$'Yfrk6Bk?/L|t+sk*tθ8!ԧͶW5j?HN!ױf&۵O4vv$*K^xџ,Uwc3ռh-|-t%L߾bBMEh#4RW7_N#[P;8P dgjIָf,ΑKD>OkE#A\ O۞Y}g`?~\>Ҫ`SxH$+XᜳG E# NCT/:QߠOp7T;ZZZS,/}̆TrŘoy4zVM(SHL޹Wy]7Xl PYA5wʎR&WEICri4X7?VZ.x>o{hZŖy :ר(.f0Y?IEKƷ1G\ҹb k/)p^B@+&d܍tm* woeG"YH}$Ơ:EѻcϾ8 {r $J_N/[j//{P\G ηԗ=bD`SJ( 4z:XU91ZfQ3X$M]MBaz…>p蕦&qaLV^(Cc_XR b&pҗ+oQ*ӌțOVv[閅s7-]vd<~ w}8P"l~v v9:FEGDm6\ {^5X'Խ9vbuFh2>"5%Kc.ެѿl 8 W~Bɽ.1#\3|q^uyP1F~X}=qhp([Įr_` ,B!+0>bFy 1m*qD&2+H5e%tm$>.:"@zVyћ=cȗU23K efrLV+WWOOðL $%OwcnV f_;ϳ'}0(eOPK.إKʲЏx[ı2:FyX2yw);VaI2& A&Ը1tX*@ $;)H[-UC-qTYiJ(ĞSyCT25' L#)%gI6&wXmy!EHnK3r_-f{V;USY8&7=f|հ OS]- d8-jn,-.1|89*?L=f Łr>= @B.lsX8Dq1!zo4GW8K,?ds;YaiڳD8 mޖoL-a]]HM6 DLCP&\ge?2y|bIkN$!B-\kL*xIfz% RxQ݇]trM  %M \~|f&<$Ѕ8*=&#fB}óstju1g jk]-Qi{&=!,irQxsïAƐ=-$ vn_?Si7q?wYG;o3>9Yn;tȳj(chW!^6Ro [b,-YzTQ[lԌMFR[T$]ZKkphe=/a>C uY!hd`5o ء (fd_3p3F]*`0LM[TO9(lf}9vTbI6b#P " 6F%?eo<\iW4uOG$؁G{kKȆ,l2HVi/ ]ѲlN-iR)% ;0\y}@د9F"MJ z3+~ô@'wO*")N=Kۨ*E_wJ <촆”WC bz+SQ@@4ЬT.H Un%$Rpoi#[7FD>TL=&9Ώ,7e'G$A*sٽ1i3n~=lUMϴD$'J ?QjU$DS<#G-}Ny7/%9^ )2~oQn:w]t3Ea=lɫJ-/ BI,>#ZM׵ZY˞YNݜw6[,6.JMf#WȑSS]E}9g윌x3 }K6ܑfDӢo/9[YӮKKisA,;08 ::s[qg9*L+FyxS ֨ž+,A`QY!UL#t]M5^lx`b5 [3C.?K-ոsx~v7+0K^C" Q@&Sx;a%d׆pK7sL!2uڠfѥ”Z^aMDIU{3]Hp7mܣ#vgB^9w5s?Q+`lGYA݋ ƜH Z1g@8n 1,'+MdG"[|l1N 1ZNrEt/x?Q!g*sLwYڭn ;F`^z)5*VFԃ`"no<[/qj"*`I#Zs 8\O ̞ko ) TQqMI'V4[X.z/FH_=gt-C㐆/,TjSyZk(*븦^hV(t 5 Z #Y,OٿYÀ*kwV`+%9VY0N٘V$qg,v wRˌQT X!(in.zn{bɂ=^ id(Td`ĪRQd*n`W6}! ňdA>t)Ӓkިa;+ W[ iJY[}x-*yiވ*5v bӱ[{)_bKEִ0pBcxx` (eA[ ;m \U̟eigՔb.畅Mc1rnmeNJ53p@$ R3A߲)| 91&Qqqujy_r5h`/ʮJ3f33Ѵ6cN/0rv>hֺ=uLC>H" Fכ%~,@qb 9%L۪e};~@^tC/>pEVr9ow5^kڸk¬ͽ$; e峧$F@ŶM Aγl֡KqW筼1Mߧ,$a'BF4?[-JMT}և録kY7JeUDpuc`w@ffb2&NIݱ"NŗxTn 8_+d[n X0ړmI~wʉ0F?QgYOT*^6Y62O0%n}O}j'rM05êAXƚX)*ŏk_bXAz e.g%hG\vTjwҠ9`>#ZtW㐛ݙgb$V,g˹ oSn?Rӳf]F}u lc+_ޫy-k񜬶T$u8boTE3|b@ŢNMMQw=J)`*{ _ P HښeQ lf8䅓LT"_otqpNZ+8 od:V1 1eP᝭U".2I9 [ mks`,[_# :2 5̙ndbKvlbn)JEHl.E-BqE2 ;j/wa) !u)$ixLwV/!hx0F]҅t3ZK 97 ov80EbDnAUňm@Z /Kh]Ǝ3 ܄s*99G0{(A(YcW 6HU@)dR"-͢"riRm#"9@cڲ@%@ nú-!AB^7V")Pݷv~ڹM0H`LMظ4/>[E0rkR|N=ʚ|%MZ }e,~ˋEE+8)΍[޸(q4,\D@/@~bYx\q8\s[=+-ZؖlxI?]-qy$B!9x\0A/JM<ݯՇgH;M im;DہR ގ! sog7+Ryn-J mDI6%ze2sB½uxD$Yd`#_ĥȜ1ٻ-5a{T(QC_%J,!N ]v3SzL{E+ x,1v*q&}|v P=N8dp3R髰{J~!Jwd%JuR#mW& G J %Uߔ]FMzffPfX>/Qy0<|k^%xs1PT^g]MݟĹQ] >>)[<Ũ[+40˭Z_xU,(dpcqPA_ݭ@9%uNnɁ~P:d|6na\[QU UuzJiͩ60C(XKRdDd}EAl Yp{)&FZMP vhdQNW7FDsQ.pGF~;FBT-w(6V>rzC^uSfh%pCϤ/Z6ჲ521Qcafq!-_%o!j~B yBv;+DszqF+DʨSg/ x֮' 8qKЦ{Bz>uEΞF?5i؆2lgeIC`:O*u#v`r EģA\Am< ỵY;dDE%X:3e:H8wbL}v{d~{hoRaNojK@EU?Q+Z;FBy6"!t464i=_smP6xpڤ* )|"\xHgoU%_إ`n,=gv8s4A3l`PH,kWN67xfB,N>Ғf||NjȅB\@Qg`Ү`}I\|mTvjF5xgC;Φ|5_w_FrSs:Zd􍫢%ȡv}2t$f5Gp~|Nќ!18W;} gx=<>4z[nA.7Baɛ̻G*e湒L%^/ilSGĴ P*K^j^ЏD_,<1[hde.[\st1yg8G Jxu=/4QAdY$F\(Pwa|?ҟ[+i l$L&H)P+ci:zph=MRwfEf 9 3Wo3vm!ڇ4Y/m/0'nNt>[~TTL!ϟpP6Q;RD[nEJQ#esW P8 !#@S5[ي \TAƔӒ{xhfgxk믂mЄ2qA{6 VRz/ !py,P)1#C0S硈K*1K[ u)M??Я ?aY:r{5vk %a:ؘp)#"Zy $=W)h!Gl^j9Yɘ=O:'G"p |F_ECs;ॠ^p?:ɨP7e@B҇'m-/Ôr>vNW"Iktp̀[wwG,էlg7 2Yrүm\ik ^UTuuxbRΈy;l2OeA)|Awd;D5N |Ftި|: ~5#z] ʿk׾Ly&?/7ʁ&LOOwZ`jg,1\fqj9O w`a 3PG+ 4wvw(Q@T5vLRz=vz(@Yw+7W=,˺X*/}3L} zEw8Z>eBp6`g㮳o-2C70yUx}By?̌ k>M _ 0ɥaRK2U~ / \gIدgҷ|ʌe2ROmyOVz&g= WpǔgUGDa惷Q_Pꡝӽx(?2>vo>I#kQglfU|MYVWS#*Z3xdQr.=FHtr4~\ ON*plMo^">U !Q ɲMkPvW:BwNd˞׎AGb}oQ.C~)I e)Jq?+,ybcODqOr]&9_!Fj;2o4Âx<)1= |Px(߳kAR.g@68~%D]ЙYdV!3\.GofMQDs0X)I!LkOvpc ֫8qJ>^b.@8: `zAaox{0i5B13LG,! YQJqPTQ1wȻ.%EGB='7u J"I!零05zjw -t L)Ujm|YҪQiҲ:fݨ_ytݠyQt5s;J5#'_cq5">v"jk6E=kĤ+\hh6 q Ё[:V#=>No[C0>R@k6y<:TMt`iv"9&8lG,4DJǿ"Fx;*^8{:moT-8"8dw OƾBJ "jO*[4|b"z%!l9ݩC]Q'[_oyhl|3'3Ѱxr14`n={FeԸ_B^d,vϏYĕzj/X73rFn#Iªa(<"u',&/iXb@_~-v0yi|&S,)LEl[3*X{k؆ѽ{a$hjp0Jm0ױcx~pP_ic+Z~>P9>By@0m{[XgN0(<9Ϝ뤭4JHu}'Ez1D(Gx$.,c6vBzTmPռ[i8s~$KB{\*c\Y&צafFu7%!eAzS7ߓջv[_ߛ;U{we'-1 ,["31Iؑ%QahoYNQɁ e8,JA#:?' Kafh q Xy쵹+&=֛7=^4ь\a{Rt `8(Diӄ^c);c|~ BT]Ɋ\;yB{gϖIQ2+Ei^5) ڡNiǠv ة5>k=ߺaM/PTzNpD]8s--a21gHo-*4بM,3GE8z!$C>#K+' w~0Yd%w0oGivg ;X^݆.ΰx| I jIӦWag;:-:Rs4#k9ٶG HA*5@Έ:} %dGF?iL@g{qOp` @'{8K{ϧ!Imf.5r\ uf<c\X=;9PBe!F`ZY!NpUQbOyP|+?/: {c0Q?7W0˙// W J"1.,?knIIqV͆%W 0]ьd?'~coSgmiʜҦQS1;Nk 3kϖTȃΤѐ5YSeXJOip2\ndN>gAu`ȼK2.`"]h$g{:-c\&^wN"7D(P)qov_T?&^s?ICrBwgȎE у vNF> wEq0mSdCeX(U^W4 UT]P-™l^58 S!=| y͏~C=R")&X-8Lde.]awtdDp¡Lh `lP'6I''~2t|Kۣ"n^ Xf#̦L9SaV_z433Pr]IjX&~һL.ƽq}A=U35O\?q#"`+Em.*٫[;'ɑ6΁2/|;Fӻd_ V؋{:4-:!GLrTF;TZgz@[T>^H}=1Iޣmhֳ1ɝ8%7񧣴#ߔ59FguYm܃#=sDjr:xuEc独"ft4xH2_߉KUܘȗ ‰X:JU$۪ڡaAln -nIE8iQw$=/Υw0$9GrjnWm!C7 Z'6W^j+@q/v[X:96~~>{/M.f}*B)jzթ &(T(O ȫi"6>ai#FZ3}"hJ$:[/yL< *QS#K~3HAX~&Bgmjonl-}@-ozX9_Msޕhy)ϰ' J )5YRfx1evO1/==7n$(P|^k+}>#6TX cPйs>)ˈk!nO`t '^2ȝhzS)~ Lښbc&#XXTf zf) ҝ<%SQdޱ1?x!1$-Iv6N??M$A䥻:LnQϫl%Yz;qQ/ #V;d .=Jk#͓46o} ڤ3}:Ǩvd$ q⋮*SJnAoћԧRSf.֗*r'0Lڄ2%YAʦ1`n;pa+iAv)_o6F('@ba ?~3{1X%c\0µY]EMh?z gn~ղaW2Q.l'(eE9!R>gI@fj y[\i6âCq(rݷG{w:Weڢ RH܉r-[NQbM(P?!R{tt{^E?=.$s_9&HVu/m C'>j\?Q; ag n4'l(Q00&nf:cNF"&5m_5Kfe> &2κYq{Ė "\oRtJJ*_V2(I'$7p'gqcN&TAŃ?⛤4Z1i=R`v#ԟ+{FKZ\{bGUa) <6>_6fd!T$cBpYF}uqt;b]䶟QxPq9{ ,ATן젮)#1ydO͠Z԰-jHJ`}`ԑz5ȍxD|;,?n Z }^vNś09૨O[0vƛH}2Uva!A+I"m}Ka\C aʃ@**y:5?h~ю k2}Q co7SwaY|Ka̗p,:`H{-0Pv;;enӬ b G1B-Kq#;O4S4:Bzx&Em˰q-b\K) yڌ՞kb@dɃ OIM{]ֹ5Vg$dv fS_9Oy"Q|a9rвۊ4U#wa9seNwʂ9ku^՟%ǹpEw:!(F XӗSyenD›*7gDbaZA7ɦ6 ~*mgq2C r*9`P/VJI>;Kgc9ȑ9%^ѥ莔(J织e_صĠ.ӷ]mNǨ!ԄW+:'+8qDMZc b]7C2ϭ'{8}xӝ!eul[mȾ ]WUrd?`fj*HrB}wsԆnYS8L2TaߣCdwÈh{R8