samba-3.4.3-3.3.1<>,@Kť/=„7p} cH .чaW)ԬiHA[u>-{˜BAp8JVҰ N h/ LΟHm;B(g>0Ye`gW6G`FmgªNÐNEi*%aQT*bgynyJJ/OY0sY/G>>@?0d  F,08<JSZ sw$ X  r      X!M$'$D&x'E) E.E(.~8.c94c:KFc=?@FG$HXIԌXYՐ\]^;!bcdeflz$(Csamba3.4.33.3.1A SMB/CIFS File, Print, and Authentication ServerSamba is a suite of programs that allows SMB/CIFS clients to use the Unix file space, printers, and authentication subsystem. The package named samba contains all programs that are needed to act as a server. The binaries expect the configuration file to be found in /etc/samba/smb.conf For a more detailed description of Samba, check the samba-doc package or the Samba.org Web page at http://www.Samba.org/ Please check http://en.openSUSE.org/Samba for general information on Samba as part of SUSE Linux Enterprise or openSUSE products, links to binary packages of the most current Samba version, and a bug reporting how to. Authors: -------- The Samba Team Source Timestamp: 2341 Branch : 3.4.3.SLE11_SP1KĞbuild14,oopenSUSE 11.2openSUSEGPLv3+http://bugs.opensuse.orgProductivity/Networking/Sambahttp://www.samba.org/linuxi586/usr/sbin/groupadd -g 71 -o -r ntadmin 2>/dev/null || : test -n "$FIRST_ARG" || FIRST_ARG=$1 if test "$FIRST_ARG" = "0" ; then test -f /etc/sysconfig/services && . /etc/sysconfig/services if test "$YAST_IS_RUNNING" != "instsys" -a "$DISABLE_STOP_ON_REMOVAL" != yes ; then for service in smb nmb ; do /etc/init.d/$service stop > /dev/null done fi fi test -n "$FIRST_ARG" || FIRST_ARG=$1 if test "$FIRST_ARG" -ge 1 ; then test -f /etc/sysconfig/services && . /etc/sysconfig/services if test "$YAST_IS_RUNNING" != "instsys" -a "$DISABLE_RESTART_ON_UPDATE" != yes ; then for service in nmb smb ; do /etc/init.d/$service try-restart > /dev/null || : done fi fi sbin/insserv etc/init.d  !!{u/`%6D)%610p84P0?1VF&& 7|&%6&6p%&&FV@&4W\6FtF&HV,,y <U 'z Z`:B N 1NP6 L " (JJv;  ,m`F;쁤A큤AAA큤A큤A큤AAA큤A큤A큤AAA큤AAAAA큤A큤AAAAAAAAAAAAKĞ4KĞ4KĞ4KĞ4KĞ4KĞ4KĞ4KĞ4KĞ4KĞ4KĞ4KĞ7KĞ>KĞ.KĞAKĞAKĞ(KĞ-KĞ-KĞ-KĞ-KĞ-KĞ-KĞ-KĞ-KĞ(KĞ-KĞ.KĞCKĞAKĞAKĞAKĞBKĞBKĞBKĞBKĞBKĞBKĞBKĞBKĞBKĞBKĞBKĞBKĞBKĞCKĞCKĞCKĞCKĞCKĞCKĞCKĞCKĞCKĞDKĞ4KĞ4KĞEKĞFKĞ+KĞ+KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ,KĞ4KĞ4KĞ(KĞ`KĞ`KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ6KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ.KĞ(KĞ(KĞ(KĞ(KĞ(KĞ(KĞ(KĞ(KĞ(KĞ(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.d/nmb/etc/init.d/smb@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootntadminntadminntadminntadminntadminntadminntadminntadminrootuserssamba-3.4.3-3.3.1.src.rpmacl_tdb.soacl_xattr.soaudit.socacheprime.socap.sodefault_quota.sodirsort.soexpand_msdfs.soextd_audit.sofake_perms.sofileid.sofull_audit.sonetatalk.sonotify_fam.sopam_smbpass.sopreopen.soreadahead.soreadonly.sorecycle.soscript.soshadow_copy.soshadow_copy2.sosmb_traffic_analyzer.sostreams_depot.sostreams_xattr.sosyncops.soxattr_tdb.sosambasamba(x86-32)     @@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@ samba-clientcoreutilsgrep/usr/sbin/groupadd/usr/bin/getent/bin/sh/bin/sh/bin/shrpmlib(PartialHardlinkSets)rpmlib(PayloadFilesHavePrefix)rpmlib(CompressedFileNames)/bin/shlibacl.so.1libacl.so.1(ACL_1.0)libattr.so.1libattr.so.1(ATTR_1.0)libc.so.6libc.so.6(GLIBC_2.0)libc.so.6(GLIBC_2.1)libc.so.6(GLIBC_2.1.1)libc.so.6(GLIBC_2.1.3)libc.so.6(GLIBC_2.2)libc.so.6(GLIBC_2.2.3)libc.so.6(GLIBC_2.2.4)libc.so.6(GLIBC_2.3)libc.so.6(GLIBC_2.3.2)libc.so.6(GLIBC_2.3.4)libc.so.6(GLIBC_2.4)libc.so.6(GLIBC_2.5)libc.so.6(GLIBC_2.8)libcom_err.so.2libcrypt.so.1libcrypto.so.0.9.8libcups.so.2libdl.so.2libdl.so.2(GLIBC_2.0)libdl.so.2(GLIBC_2.1)libfam.so.0libgssapi_krb5.so.2libgssapi_krb5.so.2(gssapi_krb5_2_MIT)libk5crypto.so.3libk5crypto.so.3(k5crypto_3_MIT)libkeyutils.so.1libkrb5.so.3libkrb5.so.3(krb5_3_MIT)liblber-2.4.so.2libldap-2.4.so.2libm.so.6libnscd.so.1libnscd.so.1(LIBNSCD_1.0)libnsl.so.1libnsl.so.1(GLIBC_2.0)libpam.so.0libpam.so.0(LIBPAM_1.0)libpam.so.0(LIBPAM_EXTENSION_1.0)libpopt.so.0libpopt.so.0(LIBPOPT_0)libpthread.so.0libpthread.so.0(GLIBC_2.0)libpthread.so.0(GLIBC_2.1)libpthread.so.0(GLIBC_2.2)libresolv.so.2libresolv.so.2(GLIBC_2.2)libssl.so.0.9.8libtalloc.so.1libtdb.so.1libwbclient.so.0libz.so.1rpmlib(PayloadIsLzma)3.4.34.0.4-14.0-13.0.4-14.4.6-14.7.1KKK@KqN@KqN@KqN@KoKoKn@Kn@Kl@KLd@KG@KD{@K=K;@K/c@K@K@K@K?K?KK@K3@JJJ@JJJJ`@J@JH@JJ JjJ0@J@JJJ@JJ JzJzJt.@JmJ_@J\s@JT@JT@JMJL@JI@JCfJB@JB@J@J;}J:,@J8J7@J7@J2C@J2C@J,@J'@J'@J'@J+@JMJp@IIIo@Io@IԨIW@IW@III@IV@II2I@IIIl@II@I1I@IHI~@Iy@Iy@IuId@Ia@IVISuISuIFFIBR@IBR@I?@I?@I6tI6tI3I3I2@I1.I.I.I.I.I-:@I+I%Q@I%Q@IsI@IP@IH@H,H,H,H@H @H @H @HHHHHf@H@H׈HHBHe@H|@HAHAHH@H@H@H@HHc@H@HnH@Hz@H4@HsVHnHkmHkmHj@Hj@Hj@Hj@Hj@HhHhHcHb3@HXHO@HNlHNlHM@HI&HG@H?@H?@H=I@H=I@H;H6H6H6H.H-w@H-w@H-w@H-w@H*@H*@H*@H)H$= 10 and libc segfaults if printf is passed NULL for a "%s" arg.- Use a conditional suse_version macro in front of the SUSE_ASNEEDED export.- lookupname failed, cannot find domain when attempt to change password; (bnc#520645); (bso#6560).- Don't link with --as-needed flag on post-11.1 systems.- Stop the smbfs service if an interface goes down; (bnc#517768).- Disable build of static libraries on post-11.1 systems; (bnc#509945).- Fix missing zlibs for cifs.upcall and test_shlibs.- Update to 3.4.0. + BUG 6431: Local groups from 3.0 setups no longer found. + BUG 6459: Fix build of pam_smbpass on some distributions. + BUG 6481: 'net ads leave' needs to try account deletion, NetUnjoinDomain not. + BUG 6497: Fix calling of 'test' in configure. + BUG 6498: Add workaround for MS KB932762. + BUG 6499: Fix building of pam_smbpass. + BUG 6509: Use gid (not uid) cache in fetch_gid_from_cache(). + BUG 6512: Fix support for enumerating user forms. + BUG 6514: Improve error message in 'net' when smb.conf is not available. + BUG 6520: Fix time stamps when "unix extensions = yes". + BUG 6521: Fix building tevent_ntstatus without config.h. + BUG 6526: Fix notifies in the share root directory. + BUG 6531: Fix pid file name.- Package /etc/samba/smbpasswd as %ghost on post-11.1 systems.- Fix net ads leave; (bnc#511695).- Supplement pam-32bit/pam-64bit in baselibs.conf (bnc#354164). - Supplement glibc-32bit/glibc-64bit in baselibs.conf (bnc#354164).- Update to 3.2.13, 3.3.6. + In Samba 3.2.0 to 3.2.12 (inclusive), the smbclient commands dealing with file names treat user input as a format string to asprintf. With a maliciously crafted file name smbclient can be made to execute code triggered by the server; CVE-2009-1886; (bnc#513360); (bso#6478).- Update to 3.0.35. + In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a data value can potentially affect access control when "dos filemode" is set to "yes"; CVE-2009-1888; (bnc#515479).- Uninitialized read of a data value; CVE-2009-1888 (bnc#515479).- Update to 3.4.0rc1. + BUG 4699: Remove pidfile on clean shutdown. + BUG 5456: Fix "net ads testjoin". + BUG 6081: Make it possible to change machine account sids. + BUG 6253: Use correct value for password expiry calculation in pam_winbind. + BUG 6297: Owner of sticky directory cannot delete files created by others. + BUG 6305: Correctly prompt for a password when a username was given. + BUG 6328: Add support for multiple rights to "net sam rights grant/revoke". + BUG 6333: Consolidate create/delete account paths in pdbedit. + BUG 6449: 'net rap user add' crashes without -C option. + BUG 6451: net/libnetapi user rename using wrong access bits. + BUG 6458: Fix uninitialized variable in local_password_change(). + BUG 6465: Fix enumeration of empty aliases. + BUG 6476: Fix smbd-zombies in memory when using [x]inetd. + BUG 6487: Add missing DFS call in trans2 mkdir call. + BUG 6488: acl_group_override() call in posix acls references an uninitialized variable. + Improve pam_winbind documentation. - Install a vendor copy of samba-common.dhcp as dhcpcd-hook-samba-functions.- Samba 3.2.0 - 3.2.12 smbclient commands dealing with file names treat user input as a format string to asprintf; CVE-2009-1886; (bnc#513360).- Fix a bad memleak in vfs_full_audit; (bnc#510035).- Update to 3.3.5. + Fix SAMR and LSA checks (bug #6089, #6289) + Fix posix acls when setting an ACL without explicit ACE for the owner (bug #2346). + Fix joining of Win7 into Samba domain (bug #6099). + Fix joining of Win2000 SP4 clients (bug #6301). + BUG 2346: Fix posix acls when setting an ACL without explicit ACE for the owner. + BUG 5832: Fix build on RHEL when ccache is not available. + BUG 5853: Add keyutils-devel to build requires to fix build on RHEL. + BUG 5897: Fix shutdown script example in the smb.conf manpage. + BUG 6089: Revert the extra SAMR and LSA checks. + BUG 6099: Fix joining of Win7 into Samba domain. + BUG 6157: Fix handling of multi-value attribute "uid". + BUG 6289: Revert the extra SAMR and LSA checks. + BUG 6297: Owner of sticky directory cannot delete files created by others. + BUG 6301: Fix joining of Win2000 SP4 clients. + BUG 6309: Support remote unjoining of Windows 2003 or greater. + BUG 6315: smbd crashes doing vfs_full_audit on IPC$ close event. + BUG 6320: Handle registry config source in file_list. + BUG 6330: Fix DFS on AIX. + BUG 6336: Fix 'net groupmap set' segfault. + BUG 6361: Make --rcfile work in smbget. + BUG 6365: Re-Add the "dropbox" functionality with -wx rights on a directory. + BUG 6372: Fix usermanager only displaying 1024 groups and aliases. + BUG 6382: Fix case insensitive access to DFS links. + BUG 6415: Filter out of range mappings in default idmap config in idmap_tdb. + BUG 6416: Filter out of range mappings in default idmap config in idmap_tdb2. + BUG 6417: Filter out of range mappings in default idmap config in idmap_ldap. + BUG 6441: Fix the compile with --enable-dnssd. + BUG 6449: 'net rap user add' crashes without -C option. + BUG 6465: Fix enumeration of empty aliases (ldb backend). + Prevent infinite include nesting. + Mark registry shares without path unavailable. + Also handle DirX return codes. + Fix Coverity ID 897. + Do not crash in ctdbd_traverse if ctdbd is not around. + Fix a race condition in winbind leading to a panic. + Some man pam_winbind improvements. + Zero an uninitialized array.- Update to 3.2.12. + Fix SAMR and LSA checks (bug #6089, #6289) + Fix posix acls when setting an ACL without explicit ACE for the owner (bug #2346). + Fix "force user" (bug #6291). + Fix Winbind crash (bug #6279). + Fix joining of Win7 into Samba domain (bug #6099). + BUG 2346: Fix posix acls when setting an ACL without explicit ACE for the owner. + BUG 5798: CFLAGS info lost in configure. + BUG 5832: Fix build on RHEL when ccache is not available. + BUG 5835: Add keyutils-devel to build requires. + BUG 5945: Fix out of memory error with Winbind idmap. + BUG 6089: Revert the extra SAMR and LSA checks. + BUG 6099: Fix joining of Win7 into Samba domain. + BUG 6279: Fix Winbind crash. + BUG 6289: Revert the extra SAMR and LSA checks. + BUG 6291: Fix "force user". + BUG 6301: Fix samr_ConnectVersion enum which is 32bit not 16bit. + BUG 6372: Fix usermanager only displaying 1024 groups and aliases. + BUG 6386: Groupdb mapping fix. + BUG 6382: Fix case insensitive access to DFS links. + BUG 6465: Fix enumeration of empty aliases (ldb backend). + Prevent creation of keys containing the '/' character. + Fix bug in processing of open modes in POSIX open. + Protect netlogon_creds_server_step() against NULL creds. + Also handle DirX return codes. + Fix a race condition in winbind leading to a panic. + Fix a crash bug if we timeout in net rpc trustdom list. + Fix profile acls in some corner cases.- Default with passdb backend to smbpasswd for SUSE products older than 11.2.- Explicitly use 'tdbsam' as passdb backend in the default smb.conf file.- Update to 3.4.0pre2. + The default passdb backend has been changed to 'tdbsam'! + Samba4 and Samba3 sources are included in the tarball. + Changed the way smbd handles untrusted domain names given during user authentication. + Various fixes including printer change notificiation for Samba spoolss print servers. + The remaining hand-marshalled DCE/RPC services (ntsvcs, svcctl, eventlog and spoolss) were replaced by autogenerated code based on PIDL. + Samba3 and Samba4 do now share a common tevent library. + The code has been cleaned up and the major basic interfaces are shared with Samba4 now. + An asynchronous API has been added. + Made parameter syntax of the net command more consistent. + BUG 2346: Fix posix ACLs when setting an ACL without explicit ACE for the owner. + BUG 4271: testparm should not print includes. + BUG 4831: Don't call openlog() or closelog() from pam_smbpass. + BUG 5681: Do not limit the number of network interfaces. + BUG 5859: Fix renaming of samr objects failed due to samr setuserinfo access checks. + BUG 6099: Fix NETLOGON credential chain. + BUG 6136: New AFS syscall conventions. + BUG 6157: Fix handling of multi-value attribute "uid". + BUG 6253: Use correct value for password expiry calculation. + BUG 6291: Fix 'force user'. + BUG 6292: Update config.guess from gnu.org. + BUG 6302: Give the VFS a chance to read from 0-byte files. + BUG 6309: Support remote unjoining of Windows 2003 or greater. + BUG 6313: ldapsam_update_sam_account() crashes while doing talloc_free on malloced memory. + BUG 6315: Fix smbd crashes when doing vfs_full_audit on IPC$ close event. + BUG 6320: Handle registry config source in file_list. + BUG 6330: Fix DFS on AIX. + BUG 6336: Fix segfault in 'net groupmap set'. + BUG 6340: Don't segfault when cleartext trustdom pwd could not be retrieved. + BUG 6357: Use Samba default command line arguments in 'net'. + BUG 6359: smbclient -L does not list workgroup for hosts with both IPv4 and IPv6 addresses + BUG 6361: Make --rcfile work in smbget. + BUG 6371: Unsuccessful 'net conf setparm' leaves empty share. + BUG 6372: usermanager only displaying 1024 groups and aliases. + BUG 6387: Fix a crash bug in idmap_ldap_unixids_to_sids. + BUG 6415: Filter out of range mappings in default idmap config (idmap_tdb). + BUG 6416: Filter out of range mappings in default idmap config (idmap_tdb2). + BUG 6417: Filter out of range mappings in default idmap config (idmap_ldap). + Change the way smbd handles untrusted domain names given during user authentication. + Replace the hand-marshalled DCE/RPC services ntsvcs, svcctl, eventlog and spoolss by autogenerated code based on PIDL. + Fix several printing issues and improve support for printer change notificiations. + Add 'net eventlog'. + Add asynchronous API. + Make Samba3 and Samba4 share a tevent library. + Add two new parameters to control how we verify kerberos tickets. + Add 'net rpc service' subcommands 'create' and 'delete'. + Fix the core of the SAMR access functions. + Fix SAMR server for winbindd access. + Add dbwrap_tool - a tdb tool that is CTDB-aware. + Hide "config backend" from swat. + Fix linking with --disable-shared-libs. + Fix issue with missing entries when enumerating directories. + Map NULL domains to our global sam name. + Fix driver upload for Xerox 4110 PS printer driver. + Add "net dom renamecomputer" to rename machines in a domain. + Inspect the correct computername string before enabling/disabling the change button in netdomjoin-gui. + Fix join prompt dialog test in netdomjoin-gui. + Only gray out labels when not root and not connecting to remote machines (netdomjoin-gui). + Allow to switch between workgroups/domains with the same name (netdomjoin-gui). + Add NetShutdownInit and NetShutdownAbort. + Fix samr access checks. + Add a security model to LSA. + Also handle DirX return codes. + Do not crash in ctdbd_traverse if ctdbd is not around. + Fix Coverity ID 897. + Fix a race condition in vfs_aio_fork with gpfs share modes. + Fix bug disclosed by lock8 torture test. + Fix a race condition in winbind leading to a panic. + Detect tight loop in tdb_find(). + Fix chained sesssetupAndX/tconn messages. + Fix strict locking with chained reads. + Fix two bugs in sendfile. + Fix memory leak. + Fix file descriptor leak. + Fallback to the legacy sid_to_(uid|gid) instead of returning NULL. + Always allocate memory in dptr_ReadDirName. + Fix 'net' crash during domain join. + Zero an uninitialized array. + Allow child processes to exit gracefully if we are out of fds.- Enable cifs.upcall on versions newer than SUSE 10.0.- Add BuildRequires to keyutils-devel.- Remove redundant Requires to keyutils-libs for cifs-mount.- Detect tight loop in tdb_find(); (bnc#450974).- Fix lp printing with kerberos; (bnc#476913).- Add BuildRequires to ctdb-devel for systems newer than SUSE 10.0 and all other build targets.- Update to 3.4.0pre1. + Samba4 and Samba3 sources are included in the tarball + Changed the way smbd handles untrusted domain names given during user authentication. + Various fixes including printer change notificiation for Samba spoolss print servers. + The remaining hand-marshalled DCE/RPC services (ntsvcs, svcctl, eventlog and spoolss) were replaced by autogenerated code based on PIDL. + Samba3 and Samba4 do now share a common tevent library. + The code has been cleaned up and the major basic interfaces are shared with Samba4 now. + An asynchronous API has been added. + Change the way smbd handles untrusted domain names given during user authentication. + Replace the hand-marshalled DCE/RPC services ntsvcs, svcctl, eventlog and spoolss by autogenerated code based on PIDL. + Fix several printing issues and improve support for printer change notificiations. + Add 'net eventlog'. + Add asynchronous API. + Make Samba3 and Samba4 share a tevent library. + Add two new parameters to control how we verify kerberos tickets. + Add 'net rpc service' subcommands 'create' and 'delete'. + Make merged build possible. + Move common libraries to the shared lib/ directory.- Update to 3.3.4. + Fix domain logins for WinXP clients pre SP3 (bug #6263). + Fix samr_OpenDomain access checks (bug #6089). + Fix usrmgr.exe creating a user (bug #6243). + BUG 6089: Fix samr_OpenDomain access checks. + BUG 6254: Fix IPv6 PUT/GET errors to an SMB server (3.3) with "msdfs root" set to "yes". + BUG 6279: Fix Winbind crash. + BUG 5329: Add "net rpc service delete/create". + BUG 6238: Make sure wbcLogoffUserParams are properly initialized before freed. + BUG 6263: Fix domain logins for WinXP clients pre SP3. + BUG 6286: Call init function for builtin idmap modules before probing for them as shared modules. + BUG 6243: Fix usrmgr.exe creating a user. + net conf: Save share name as given, not as lower case only. + Prevent creation of registry keys containing the '/' character. + Allow pdbedit to change a user rid/sid. + When doing a cli_ulogoff don't invalidate the cnum, invalidate the vuid. + Don't access a freed structure when logging off and re-using a vuid. + Try to to fix password_expired flag handling. + Make sure to grey out change fields in the netdomjoin-gui when not running as root. + Don't look up local user for remote changes, even when root. + Use procid_str in debug messages for better cluster-debuggability. + Use cluster-aware procid_is_me instead of comparing pids. + Fix smbd crash for close_on_completion. + Fix a memleak in an unlikely error path in change_notify_create(). + Do not use the file system GET_REAL_FILENAME for mangled names. + Fix a crash bug if we timeout in net rpc trustdom list. + Add '--request-timeout' option to net. + In net_conf_import, start a transaction when importing a single share. + Fix writing of roaming profiles with "profile acls" set to "yes".- Update to 3.2.11. + Fix domain logins for WinXP clients pre SP3 (bug #6263). + Fix samr_OpenDomain access checks (bug #6089). + Fix smbd crash for close_on_completion. + BUG 6089: Fix samr_OpenDomain access checks. + BUG 6205: Correct sample smb.conf share configuration. + BUG 6254: Fix IPv6 PUT/GET errors to an SMB server (3.3) with "msdfs root" set to "yes". + BUG 6263: Fix domain logins for WinXP clients pre SP3. + Allow pdbedit to change a user rid/sid. + When doing a cli_ulogoff don't invalidate the cnum, invalidate the vuid. + Fix resume command typo for "printing = vlp". + Fix smbd crash for close_on_completion. + Fix a memleak in an unlikely error path in change_notify_create(). + Don't look up local user for remote changes, even when root.- Don't lookup local user for remote password changes; (bnc#493507).- Update to 3.3.3. + Migrating from 3.0.x to 3.3.x can fail to update passdb.tdb correctly (bug #6195). + Fix serving of files with colons to CIFS/VFS client (bug #6196). + Fix "map readonly" (bug #6186). + BUG 6195: Don't let smbd child processes panic. + Add backend_requires_messaging() method to libsmbconf. + Add methods is_writeable() and wrapper smbconf_is_writeable() to libsmbconf. + Fall back to file backend when no valid backend was found. + Fix a memleak in dbwrap_rbt. + Provide transaction_start|commit|cancel fns for the registry tdb. + Speed up "net conf drop". + Speed up "net conf import". + Add transactions to the libsmbconf API. + Reduce memory usage of "net conf import". + Registry cleanup. + Fix handling of SAMBA_VERSION_VENDOR_PATCH. + Fix build of pam_winbind.so with static linking. + Tidy up some convert_string_internal error cases. + BUG 6224: nmbd waits 5 minutes at startup before checking if it needs to run elections. + Allow DFS client paths to work when POSIX pathnames have been selected. + Try and fix the build farm RAW-STREAMS errors. + Ensure files starting with multiple dots are hidden. + BUG 6102: NetQueryDisplayInformation could return wrong information. + BUG 6193: Avoid messing with sync_context in libnet_samsync_delta(). + Fix notify_printer_status_byname. + Fix Coverity IDs 722, 762, 774, 775, 776. + Fix build on old Heimdal based systems. + Fix compile warning. + Use parentheses in if condition to make negation clear. + Add dirsort module. + BUG 6147: Fix detection of the GNU ld version. + BUG 6097: Fix smbd segfault. + BUG 6130: Don't crash in winbindd_rpc lookup_groupmem() on unmapped members. + BUG 6139: Add missing whitespace in mount.cifs error message. + Fix a malloc/talloc mismatch when cli_initialise() fails. + Fix a valgrind error. + Speed up "net conf list". + Add sorted subkey cache. + Use StrCaseCmp in the dirsort module. + Document the dirsort module. + Disable dns_sd by default. + Add avahi detection to configure. + Add event avahi binding. + Use avahi to register _smb._tcp in smbd. + Fix two memleaks in the encryption code. + Fix a scary "fill_share_mode_lock failed" message. + BUG 6228: Fix SMBC_open_ctx failure due to path resolve failure doesn't set errno. + Don't use reserved words in smbconftort. + Fix smb signing for fragmented trans/trans2/nttrans requests. + Parse_packet can return NULL which is then dereferenced in match_mailslot_name. + Format the header check for netinet/ip.h more nicely. + Missing break in conversion function prevents tdb password database update.- Update to 3.2.10. + BUG #6195: Don't let smbd child processes panic.- BUG 6195: Fix crash on passdb conversion.- Update to 3.2.9. + BUG 5920: The length of the memcpy was calculated wrong. + BUG 6097: Fix smbd segfault. + BUG 6098: Fix ads_find_dc() with "security = domain" when the DNS server is invalid. + BUG 6099: Samba returns incurrate capabilities list. + BUG 6100: Implement _netr_LogonGetCapabilities() with NT_STATUS_NOT_IMPLEMENTED. + BUG 6102: NetQueryDisplayInformation could return wrong information. + BUG 6130: Fix crash in winbindd_rpc lookup_groupmem() on unmapped members. + BUG 6133: Cannot delete non-ACL files on NFSv4 ACL filesystem. + BUG 6161: smbclient corrupts source path in tar mode. + BUG 6193: Avoid messing with sync_context in fetch_database_to_ldif(). + BUG 6196: Unable to serve files with colons to Linux CIFS/VFS client. + BUG 6224: nmbd waits 5 minutes before checking to run elections. + BUG 6228: Fix SMBC_open_ctx failure when path failure doesn't set errno. + Numerous Coverity fixes + Fix double free caused by incorrect talloc_steal usage. + Backport delete semantics of alternate data streams on a file truncate. + Allow set attributes on a stream fnum to redirect to the base filename. + Fix use of streams modules with CIFSFS client. + Fix more POSIX path lstat calls. + Allow DFS client paths to work with POSIX pathnames. + Ensure files starting with multiple dots are hidden. + Fix guest auth when Winbind is running. + Fix memleak in get_remote_printer_publishing_data(). + cifs mount fix for handling -V parameter. + Fix guest mounts. + Clean-up entries in /etc/mtab after unmount. + Add fakemount (-f) and nomtab (-n) flags to mount.cifs. + Enable total anonymization in vfs_smb_traffic_analyzer. + Don't try and delete a default ACL from a file. + Fix remotely adding a share via MMC. + Fix resume handle for _samr_EnumDomainGroups. + Fix a buffer handling bug when adding lots of registry keys. + Fix a O(n^2) algorithm in regdb_fetch_keys(). + Fix a valgrind error / segfault in dns_register_smbd(). + Don't log NDR_PRINT_DEBUG at level 0, this always ends up in syslog. + Fix a malloc/talloc mismatch when cli_initialise() fails. + Fix two memleaks in the encryption code. + Fix "fill_share_mode_lock failed" message. + Add S-1-22-X-Y sids to the local token. + Fix smb signing for fragmented trans/trans2/nttrans requests. + Don't miss an absolute pathname as a kerberos keytab path. + Have nmbd check all available interfaces for WINS before failing. + Initialize the id_map status in idmap_ldap to avoid surprise.- Obsolete change from 2008-03-05 by removing the needless examples cleanup.- Update to 3.3.2. + Fix "force group" (bug #6155). + Fix saving of files on Samba share using MS Office 2007 (bug #6160). + Fix guest authentication in setups with "security = share" and "guest ok = yes" when Winbind is running. + Fix corruptions of source path in tar mode of smbclient (bug #6161). + BUG 6082: Fix renaming and deleting of directories using Windows clients. + BUG 6154: Make ZFS honor admin users. + BUG 6155: Fix "force group". + BUG 6160: Fix saving of files on Samba share using MS Office 2007. + BUG 6161: Fix corruptions of source path in tar mode of smbclient. + Fix some NetBSD warnings. + Fix bug in processing of open modes in POSIX open. + Fix use of streams modules with CIFSFS client. + Ensure ACL modules work with POSIX paths. + Use fsp->posix_open in preference if we have it. + Fix more POSIX path lstat calls. + Fix a bug in message handling for the change notify code. + Fix guest authentication in setups with "security = share" and "guest ok = yes" when Winbind is running. + BUG 4640: Fix guest mounts in mount.cifs. + Fix displaying the version string properly when no other parameters passed in in mount.cifs. + Prefer gssapi header files from subdirectory. + BUG 6176: winbindd -n should disable the winbind idmap cache. + Add a vfs_preopen module to hide fs latencies. + Don't log NDR_PRINT_DEBUG at level 0, this always ends up in syslog. + Fix a valgrind error / segfault in dns_register_smbd(). + Fix build on SLES8. + Decremented by 1 for ntcancel requests. + Fix creation of core files. + Fix first mapping of uids/gids in Winbind. + Initialize the id_map status in idmap_ldap to avoid surprise. + Fix initialization of idmap status.- Only call '%find_lang pam_winbind' in the samba spec file, not samba-doc.- Ignore return value from subshell to fix build.- Make libsmbclient work with DFS, backported from 3.3; (bnc#475995).- Update to 3.3.1. + Fix net ads join when "ldap ssl = start tls" (bug #6073). + Fix renaming/deleting of files using Windows clients (bug #6082). + Fix renaming/deleting a "not matching/resolving" symlink (bug #6090). + Fix remotely adding a share via the Windows MMC. + BUG 6082: Fix renaming/deleting of files using Windows clients. + BUG 6069: Fix build with too many arguments. + BUG 6090: Fix renaming/deleting a "not matching/resolving" symlink. + BUG 6099: Try to fix domain join of Win7 Beta. + BUG 6117: Fix core dump of pdbedit -a. + BUG 6133: Fix deletion of non-ACL files on Solaris/ZFS/NFSv4 ACL filesystem. + Fix Coverity IDs 115, 116, 117, 602. + Fix warning (bad handler prototype). + Unify the detection of the timespec code in configure.in, and the application of it in time.c. + Correctly use chroot(). + Parameterize in local.h the MAX_RPC_DATA_SIZE, and ensure that "offered" read from the rpc packet in spoolss is under that size. + Backport the semantics of when to delete alternate data streams on a file truncate. + Fix printf warnings. + BUG 6073: Prevent ads_connect() from using SSL unless explicitly requested. + Fix 'getent passwd' to allocate new uids. + Fix 'getent group' to allocate new gids. + Remove check for sharename being a username in 'net conf addshare'. + Fix Coverity ID 848. + Remove unused ENUM_HND from 'net'. + Fix getform command asprintf return code in rpcclient. + Fix memleak in get_remote_printer_publishing_data(). + Remove duplicate prototypes for generated rpc server functions. + Enable total anonymization in vfs_smb_traffic_analyzer. + Fix build with external dns_sd libraries. + Fix configure check "sub-second timestamps without struct timespec". + Use correct BSD evironment variable. + Don't try and delete a default ACL from a file. + BUG 5798: CFLAGS info lost in configure. + Fix Coverity IDs 740, 742, 744, 745, 876, 879, 880. + Fix remotely adding a share via the Windows MMC. + Avoid valgrind errors. + Fix 'net rpc join' for users with the SeMachineAccountPrivilege. + Fix resume handle for _samr_EnumDomainGroups. + Fix a buffer handling bug when adding lots of registry keys. + Fix a O(n^2) algorithm in regdb_fetch_keys(). + Initialize rc to 0 in main in mount.cifs. + BUG 6069: Add a fstatvfs function for libsmbclient. + Eliminate compiler warnings. + Don't miss an absolute pathname as a kerberos keytab path. + BUG 6100: Implement _netr_LogonGetCapabilities() with NT_STATUS_NOT_IMPLEMENTED. + Make Samba work with older ctdb versions. + Add S-1-22-X-Y sids to the local token. + Conditional install of the cifs.upcall man page. + Adjust regex to match variable names including underscores. + BUG 4370: Clean-up entries in /etc/mtab after unmount. + Add fakemount (-f) and nomtab (-n) flags to mount.cifs. + Fix a crash during name resolution. + Fix "assignment discards qualifiers from pointer target type" warnings. + Fix SMB_VFS_RECVFILE/SENDFILE macros. + Change "ldap ssl:ads" parameter to "ldap ssl ads". + Add manpages for vfs_acl_xattr and vfs_acl_tdb. + Fix double free caused by incorrect talloc_steal usage. + Build ldbrename. + Make nmbd check all available interfaces for WINS before failing. + Fix compilation of vfs_default on systems that do not support utimes(). + BUG 5920: Fix the calculation of the memcpy length. + BUG 6098: Fix ads_find_dc() in setups with "security = domain". + Make libsmbclient work with DFS.- Define init_samba_module in all samba-vscan modules; (bnc#469218).- Add GPLv3 header to all init scripts; (bnc#459766).- Backport of the clean event context after fork and krb5 refresh chain fixes; (bnc#415026).- Revert accidental partial strict allocate upstream commit- Update to 3.2.8. + Fix and streamline join and DC detection + BUG 4308: Excel save operation corrupts file ACLs. + BUG 5933: Fix incrementing/decrementing num_validated_vuids. + BUG 5953: Fix smbclient crashes. + BUG 5953: Make cli_send_smb_direct_writeX use writev. + BUG 5965: Fix creation of the first share using SWAT. + BUG 5969: Optimize smbclient put command. + BUG 5979: Fix level 2 oplocks. + BUG 5980: Fix race condition when granting level2 oplocks + BUG 5986: Fix renaming of streams. + BUG 5990: Strict allocate should be checked before ftruncate. + BUG 6000: Avoid bashism in perfcount.init. + BUG 6009: Setting "min receivefile size = 1" breaks writes. + BUG 6014: mget shouldn't segfault without arguments. + BUG 6016: Alternate Data Streams / Extended Attributes seem to conflict. + BUG 6017: Fix magic scripts. + BUG 6021: smbclient du command does not recuse properly. + BUG 6030: Add missing header in Status page. + BUG 6035: Fix possible race between fcntl F_SETLKW and alarm delivery. + BUG 6040: Calling Samba print server with an aliased DNS-name fails. + BUG 6058: Use 'make distclean' instead of 'make clean' in build_docs. + Fix "allow trusted domain" so it disables trusted domains. + Fix error code when smbclient puts a file over an existing directory. + Don't return 0 on error in smbcacls - bad for scripts. + Determine case sensitivity based on file system attributes. + Add vfs_fileid manpage. + Adjust regex to match variable names including underscores. + Fix stream marshalling to return the correct streaminfo status. + Fix a delete on close divergence from Windows. + Allow renames of streams via NTRENAME and fix stream error codes. + Fix a segfault if ? is there but the options are NULL. + Avoid flooding of syslog with failing pam_putenv messages. + Document default of the printing config variable. + Change default value for "ldap ssl" to "start tls". + Check if Unix account exists before asking for the password in smbpasswd. + Add manpage for vfs_shadow_copy2. + Clean event context after child is forked. + Refresh sequence number as soon as possible. + Don't set child->requests to NULL in parent after fork. + Clean event context after fork and fix krb5 refresh chain. + Fix null pointer refrence in event context. + Don't send message to any other child in child process. + Fix bug in get_dc_name_via_netlogon(), null pointer refrence.- Backport 3.2.8 fixes. + cups leaks and crashes + various winbind child handling fixes + join fixes + ACL fixes for Excel + allow usrmgr with non-root- Replace cifs.upcall Makefile patches by the upstream version.- Only add ccache to BuildRequires if it is used.- Update to 3.3.0. + The passdb tdbsam version has been raised. + Splitting of library directory into library directory and separate modules directory. + The default value of "ldap ssl" has been changed to "start tls". + Extended Cluster support. + New experimental VFS modules "vfs_acl_xattr" and "vfs_acl_tdb" to store NTFS ACLs on Samba file servers. + Simplified idmap configuration. + New idmap backends "adex" and "hash". + Added new parameter "winbind reconnect delay". + Added support for user and group aliasing. + Added support for multiple domains to idmap_ad. + The destination "all" of smbcontrol does now affect all running daemons including nmbd and winbindd. + New 'net rpc vampire keytab' and 'net rpc vampire ldif' commands. + The 'net' utility can now use kerberos for joining and authentication. + The 'wbinfo' utility can now add, modify and remove identity mapping entries. + NetApi library implements various new calls for User- and Group Account Management. + libsmbclient does now determine case sensitivity based on file system attributes.- Replace all chkconfig calls with rc_active calls to improve performance during boot.- Add SuSEfirewall2 service config file to allow samba browsing on post-10.2 systems; (bnc#460902).- Update to 3.0.34. + Fix update of machine account passwords. + Fix SMB signing issue on Windows Vista with MS Hotfix KB955302. + Fix Winbind crashes. + Correctly detect if the current dc is the closest one. + Add saf_join_store() function to memorize the dc used at join time. This avoids problems caused by replication delays shortly after domain joins. + Fix write list in setups using "security = share".- Obsolete old -XXbit packages; (bnc#437293).- Update to 3.2.7. + Samba 3.2.0 to 3.2.6 can potentially give root filesystem access to older versions of smbclient; CVE-2009-0022; (bnc#460764).- Samba 3.2.0 to 3.2.6 can potentially give root filesystem access to older versions of smbclient; CVE-2009-0022; (bnc#460764).- Fix nmbstatus dipslay when workgroup parameter is given; (bnc#459785).- Fix Mounting failure when there is white spaces in service; (bnc#460793).- Update to 3.3.0rc2. + Splitting of library directory into library directory and separate modules directory. + Extended Cluster support. + Simplified idmap configuration. + New idmap backends "adex" and "hash". + Added new parameter "winbind reconnect delay". + Added support for user and group aliasing. + Added support for multiple domains to idmap_ad. + The destination "all" of smbcontrol does now affect all running daemons including nmbd and winbindd. + New 'net rpc vampire keytab' and 'net rpc vampire ldif' commands. + The 'net' utility can now use kerberos for joining and authentication. + The 'wbinfo' utility can now add, modify and remove identity mapping entries. + NetApi library implements various new calls for User- and Group Account Management.- Fix all remaining conditional macro calls; (bnc#456469).- Add IPv6 support for mount.cifs.- Update to 3.2.6. + Fix potential segfault in vfs_tsmsm. + Don't list the domain twice when expanding internal aliases. + Fix the output of "getent group" when "winbind use default domain = yes" with "security = ads". + Add domain prefix to username in lookup_groupmem(). + Prevent negative GM/ cache entries due to broken connections. + Fix crash in sync_eventlog_params(). + Fix timeouts when calling 'getgrent'. + BUG 1254: Fix "write list" in setups using "security = share". + BUG 5080: Fix access to cups-printers with cups 1.3.4. + BUG 5737: Fix Winbind crash in an unusual failure mode; (bnc#416598). + BUG 5783: Fix FindFirst where search pattern equals the mangled filename. + BUG 5790: Fix returning of STATUS_OBJECT_NAME_NOT_FOUND on set file disposition. + BUG 5797: Fix moving of readonly files. + BUG 5814: Fix Winbind crash bug while doing "rescan_trusted_domain". + BUG 5818: Sort ACEs in smbcacl output properly and honor inheritance. + BUG 5825: Fix account locking with LDAP backend. + BUG 5826: Fix truncated filenames when accessing old servers. + BUG 5889: Fix "delete veto files = no". + BUG 5891: Fix smbd crash when viewing the eventlog exported by "eventlog list". + BUG 5900: Fix vfs_readonly. + BUG 5903: Fix vfs_streams_xattr breaking contents of files. + BUG 5904: Fix libnss_wins causing SIGABRT while servicing getaddrinfo() request. + BUG 5914: Fix build failure: redefinition of struct name_list. + BUG 5937: Fix filenames with "*" char hiding other files. + BUG 5953: Fix smbclient crashes. + Fix rename_open_files. + Restructure VFS SMB traffic analyzer VFS module. + Correctly fix smbclient to terminate on eof from server. + Unify access checks for lsa server functions. + Remove the requirement for ldap call made as root. + Cope with MAXIMUM_ALLOWED_ACCESS requests when opening handles. + Fix net rpc vampire, based on an *amazing* piece of debugging work by "Cooper S. Blake" . + Fix Coverity IDs 456, 574, 592, 606 and 607. + Fix net rpc vampire. + Use the same prerequisite for DDNS update as Windows XP. + Make "lwinet ads dns register" honor the "interfaces" parameter. + Fix extended DN parse error when AD object does not have a SID. + BUG 5888: Fix PNP_GetHwProfInfo(). + BUG 5957: Do not abort rename process on valid rename script. + BUG 5898: Fix 'net rpc shutdown'. + Fix duplicate installation of cifs.upcall. + Fix _srvsvc_NetShareAdd segfault. + Ensure consistency when reporting password complexity. + Fix _lsa_GetUserName. + Fix access check in _samr_QuerySecurity(). + _samr_DeleteUser needs to wipe out the user_handle on success. + NetGroupEnum_r needs to handle servers with no groups. + Search for gpfs functions in both libgpfs_gpl.so an libgpfs.so. + BUG 5908: Fix internal change notify on shared directory. + BUG 5135 and 5446: Prevent calling POSIX ACL vfs methods on zfs share. + BUG 5929: Fix building of vfs_prealloc with option --with-cluster-support and GPFS. + Add new VFS module to analyze SMB traffic + BUG 5928: Fix 'testparm --version'. + Have uppercase_string return success on NULL pointer in mount.cifs. + Make mount.cifs return codes match the return codes for /bin/mount. + Use lock/unlock_mtab scheme from util-linux-ng mount prog in mount.cifs. + BUG 5778: Check if strlcpy and strlcat are already defined. + BUG 5840: Fix segfault in "rpcclient lsaaddacctrights". + BUG 5860: Fix nasty error message for overlong strings in safe_strcpy. + Fix a potential NULL deref in found by the IBM Checker. + Fix an uninitialized variable found by the IBM Checker. + Fix an unlikely memleak found by the IBM Checker. + Fix some missing error handlings. + Add workaround for domain joins using a netbios name which is different from the hostname. + Fix crash bug when freeing a non-malloc'ed buffer if the client sends a non-encrypted packet with the crypto state set. + Fix trans2findfirst for the large directory optimization. + Fix checking for presence of cups-devel and correct cups-devel test for HAVE_IPRINT. + BUG 5805: Don't close stdout when calling setup_logging multiple times. + Fix setting of trust password using 'net rpc trustdom add'. + Fix several issues in vfs_streams_xattr and vfs_stream_depot. + Return an error instead of crashing when no realm is given (trigerred by "net ads info -S 127.8.7.6" (where 127.8.7.6 doesn't exist) and "disable netbios = yes"). + Fix the new vfs_smb_traffic_analyzer build for static links. + BUG 5901: Fix default for streams_depot location. + Fix several build warnings. + Delete the krb5 ccname variable from the PAM environment if set. + Fix circular dependency error with autoconf 2.6.3. + Add @CIFSUPCALL_PROGS@ to "all" target so cifs.upcall gets built at compile time rather than install time. + BUG 5906: Fix Winbind crash when calling 'getent group'. + Fix logging to syslog. + Allow SYSLOG_FACILITY to be modified with a new configure option called - -with-syslog-facility. + BUG 5909: Fix MS-DFS on Vista clients. + BUG 5944: Fix starting of nmbd with "socket address" set to "". + Fix segfault on startup with trusted domains. + Re-add "winbind:ignore domains" parameter. + Avoid freeing fsp twice when opening new_file fails (Debian #431696).- Fix the conditional macro to start smbfs by default; (bnc#456469).- Readd libsmbclient to baselibs.conf for pre 11.0 distributions.- Use %__install macro to install files with the right permissions instead of cp.- Update to 3.3.0rc1. + Splitting of library directory into library directory and separate modules directory. + Extended Cluster support. + Simplified idmap configuration. + New idmap backends "adex" and "hash". + Added new parameter "winbind reconnect delay". + Added support for user and group aliasing. + The destination "all" of smbcontrol does now affect all running daemons including nmbd and winbindd. + New 'net rpc vampire keytab' and 'net rpc vampire ldif' commands. + The 'net' utility can now use kerberos for joining and authentication. + The 'wbinfo' utility can now add, modify and remove identity mapping entries. + NetApi library implements various new calls for User- and Group Account Management. - Added German translation for pam_winbind.- Remove patch for bnc#336854, which doesn't exist in 3.2.x or higher.- Use %{NET_CFGDIR} define instead of a fixed path to the network conf.- Update to 3.2.5. + Samba 3.0.29 to 3.2.4 can potentially leak arbitrary memory contents to malicious clients; CVE-2008-4314; (bnc#446971).- Update baselibs.conf.- Fix circular dependency error with autoconf 2.6.3.- Fix the dhcp hook script and support CODE11; (bnc#442335).- Fix perl v5.10 warnings in nmbstatus; (bnc#448225).- Include the missing spec file change mentioned the previous commit.- Make cifs-mount depend on keyutils, keyutils-libs packages as they are required to support dfs and kerberos; (bnc#432494).- Fix the offset checks in the trans routines; CVE-2008-4314; (bnc#446971).- Change the runlevel description for winbindd to use "Microsoft Windows" instead of "NT"; (bnc#446154).- Directory/Filenames get truncated when 3.2.0 client acesses old server; (bnc#432471).- Add SuSEfirewall2 services config file to open Netbios and Samba ports on post-10.2 systems; (bnc#247344).- Remove unrecognized configure options.- Fix the pam_winbind build.- Delete the krb5 ccname variable from the PAM environment if set.- Move the nss_info modules to the samba-winbind package.- Activate the idmap backends "adex" and "hash".- Add version branding for CODE 11.- Restart smbfs even with the traditional network setup; (bnc#425058).- Only call the stop_on_removal, restart_on_update, or insserv_cleanup macro if available.- Only call the fillup_and_insserv or fillup_only macro if available.- Use package names instead of macros for cp, mkdir, mv, rm, and grep or instead of the full path to the binary for ln, find and xargs.- Introduce NET_CFGDIR to fit the needs for a differing location of the network configuration per vendor.- Use path macros for cp, mkdir, mv, rm, and grep.- Only use SUSE rpm macros and SuSEconfig.permissions if available.- Update to 3.3.0pre2. + BUG 5729: Explicitly allow "-valid". + BUG 5737: Fix winbindd crash in an unusual failure mode; (bnc#416598). + BUG 5751: Fix showing of ACLs on DFS in (lib)smbclient. + BUG 5762: Fix opening of mangled directory name (resulted 'is a stream name'). + BUG 5783: Fix FindFirst where search pattern == mangled filename. + BUG 5790: Fix returning of STATUS_OBJECT_NAME_NOT_FOUND on set file disposition. + BUG 5797: Fix moving of readonly files. + Fix crashes when looking up a non-existant uid. + Fix getting/setting of NT ACLs on a file. + Fix the wcache_invalidate_samlogon calls. + Clarify usage of "force create mode". + Get smbd to look (read-only) into the winbindd cache for uid/gid <--> sid mappings. + Write times code update. + Add experimental version of VFS module acl_xattr. + Fix rename_open_files. + Make SMB traffic analyzer VFS module more efficient. + Fix segfault when calling nss_get_info() with a NULL ads structure. + Add support for name aliasing in Winbind. + Add the idmap/nss-info provider from Likewise Open. + Allow an admin to define the "uid" attribute for a RFC2307 user object in AD to be the username alias. + Add new idmap backend "adex" to support RFC2307 enabled AD forests. + Add new idmap backend "hash". + Fix build warnings. + Cleanup of DC enumeration in get_dcs(). + BUG 5710: Fix changing of machine account passwords. + BUG 5784: Fix pam_winbind build issue on Solaris. + Fix invalid sid copy (hit when enumerating sibling domains) in Winbind. + Fix double installation of cifs.upcall. + Add change-user-password command to wbinfo. + Fix segfault in _srvsvc_NetShareAdd. + BUG 5736: Fix Winbind crash bug with trusted domains. + Correct the netsamlogon_clear_cached_user function. + Add new VFS module to analyze SMB traffic to record write and read operations on the Samba server. + Fix build warnings in cifs.upcall. + BUG 5707: Do proper error handling if the socket is closed. + BUG 5778: Don't define 'strlcat' and 'strlcpy' if it's already defined. + Fix Coverity IDs 587 and 589. + Increase the default positive idmap cache time to a week. + Fix calculation of useable_space for trans2 and nttrans replies. + Add mapping of generic bits when setting an NFSv4 ACL. + Some write time fixes. + Add new parameter "cups connection timeout". + Fix enumeration of nested group memberships in Winbind. This affected only setups using "security = ads". + Fix cut and paste error in quota code. + Fix display of POSIX ACLs. + Fix permissions of group_mapping.ldb (CVE-2008-3789); (bnc#420634). + Avoid a race condition in glibc between AIO and setresuid(). + Add missing become root for AIO operations. + Fix an errno handling bug that could lead to an infinite loop. + Fix logic of tsmsm_sendfile(). + Fix handling of arbitrary new PAC types. + Fix segfault on startup with trusted domains. + Fix segfault on the CTDB destructor code. + Re-add "winbind:ignore domains". + BUG 5609: Remove configure option "--with-libdir" and add "--with-modulesdir". + Extend "net rpc vampire keytab" to support differential replication and storing of kerberos keys. + Rework internal logic of registry tdb code. + Freeze autogenerated prototype headers (good bye "make proto"). + Add new "winbind reconnect delay" parameter. + Make the change to smbcontrol for "all" to mean broadcast, and "smbd" to mean the main smb daemon. + Allow an admin to define the "uid" attribute for a RFC2307 user object in AD to be the username alias. + Add "net rpc vampire keytab" and "net rpc vampire ldif". + Rework of the Winbind idmap backend.- Define PAM_AUTHTOK_RECOVERY_ERR when not available on older Linux products.- Adopt samba-vscan to build after the change to the bool type define.- Build cifs.upcall for CentOS 5, Fedora 8 and RHEL 5 and newer too.- Call mkinitrd_setup during %post and %postun for post-9.2 systems only.- Create a link to the html manpages so that they can be accesses in swat; (bnc#426182).- "Password last set" timestamp update from admin pw change; (bnc#420407).- Call mkinitrd_setup during %post and %postun for package cifs-mount; (bnc#413709).- Update to 3.3.0pre1. + Splitting of library directory into library directory and separate modules directory. + Extended Cluster support. + Simplyfied idmap configuration. + Added new parameter "winbind reconnect delay". + The destination "all" of smbcontrol does now affect all running daemons including nmbd and winbindd. + New 'net rpc vampire keytab' and 'net rpc vampire ldif' commands.- Update to 3.2.3. + Force the permissions on group_mapping.ldb to 0600; CVE-2008-3789; (bnc#420634).- Update to 3.2.2. + BUG 5592: Fix creation and installation of shared libraries. + Fix replacement of random seed generator. + Fix a race condition in idmap_tdb2_allocate_id(). + Fix unix_convert() for "*" after changing map_nt_error_from_unix(). + Make sure to always set errno on error path in OpenDir. + BUG 5675: Fix smbspool program assuming Kerberos authentication by mistake. + BUG 5686: Fix segfaults in libsmbclient. + BUG 5692: Fix coredump in full_audit.so. + BUG 5696: Fix "force group" in setups using Winbind. + Rename cifs.spnego to cifs.upcall. + Fix segfault in cifs.upcall when it is called without any arguments. + Fix coverity ID 594 (resource leak on error path). + Fix assigning of primary group memberships when authenticating via Winbind. + BUG #5617: Fix freezing Windows Explorer on WinXP while browsing Samba shares. + Include stdlib.h to get a prototype for free(). + Solve an IBM XL C/C++ compiler error encountered in get_exit_code() auth_errors array initialization in client/smbspool.c. + Use NGROUPS_MAX instead of 32 for the max group value in rep_initgroups(). + Add add c++ guard to netapi. + Fix compile warning in cifs.upcall. + Add "dns_resolver" key type to cifs.upcall. + BUG 5688: Fix orphaned LPQ processes if socket address is invalid. + BUG 5684: Fix removal of dead records in tdb files. + Fix coverity IDs 595, 596. + Fix smb_len calculation for chained requests. + Fix output of test status. + Fix smbclient connections to older servers. + Fix a fd leak when trying to regain contact to a domain controller in Winbind. + Fix permissions on ctdb databases. + Fix passing back success when a function had in fact failed in two places. - Add --enable-static to the configure options to get the statical libraries installed by the install Makefile target. - Add --with-cifsupcall to build the cifs.upcall binary for post 10.2 systems.- Set Required- and Should-Stop in the init info part of all init scripts.- Fix libsmbclient to older servers; (bnc#402776).- Update to 3.2.1. + BUG 5594: Fix "make test" by adding and using a new testparm switch "--skip-logic-checks". + Fix creation of libaddns.a, libsmbclient.a and libsharemodes.a. + Update the section about net conf in the net(8) manpage. + Improve processing of registry shares. + Fix listing of registry shares with testparm. + Fix several build issues. + BUG 5578: Fix error from strlcat. + BUG 5613: Fix flushing of smb.conf when creating a new share using SWAT. + Ensure consistent use of pdb_get_nt_passwd instead of pdb_get_lanman_passwd. + Remove worrying warning message when safe_strcpy tries to copy a pseaudo interface name that's too long. + Canonicalize servername in the printer functions to remove leading '\\' characters. + Fix option processing in smbcacls - add POPT_COMMON_CONNECTION. + Fix bug creating files using DOS clients with mixed case files. + Fix uninitialized variable. + BUG 5616: Fix session keys also in rpccli_netr_LogonSamLogonEx wrapper. + BUG 5570: Fix bogus error message during AD domain join. + Fix trusted domain handling in Winbindd. + Fix build warning. + BUG 5202: Fix setting of ACEs for users/groups with write access in setups with 'dos filemode = yes'. + Re-activate 'acl group control' parameter and make it only apply to owning group. + Make ntimes function more like POSIX and allow NULL arg. + BUG 5512: Fix alignment problems on sparc. + BUG 5616: Fix share connections in setups with "server signing = mandatory" or SMB signing set on the client side. + Fix a race condition in Winbind leading to a crash. + Fix a segfault in base64_encode_data_blob. + Fix some uninitialized variable references via ndr_print. + Fix error message if trying to join with a non-privileged user. + Fix setups using "include = registry" without [global] settings in the registry. + Fix "net sam rights" on domain member servers. + Add documentation for the vfs streams modules. + Cleanup some duplicate code by passing the password to the wbinfo_auth* functions. + Allow SID with 0 in subauthority to be converted properly. + Set sin[6]_family instead of ss_family in in[6]_addr_to_sockaddr_storage. + Fix realpath() check so that it doesn't generate a core() when it fails. + Fix overwriting of winbind logfiles. + Fix "vfs_full_audit.c: name table not in sync with vfs.h" panic. + Add broadcasting of the debug message to all winbindd children. + BUG 5635: Fix updating of printer queues. + Release still reachable memory if the smbclient context is freed. + Remove trailing withespace from wbinfo -m which breaks gdm auth. + BUG 5540: Fix "set primary group script" user option substitution. + Fix regression in Winbindd offline mode. + Allow authentication and memory credential refresh after password change from gdm/xdm. + Allow %u parameters for print job username.- Fix a race condition in winbind leading to a crash; (bnc#406623).- Use the configure option to enable debugging. This fixes the creation of the debuginfo and debugsource package.- Fix emptying the printing queue; (bnc#411493).- Remove trailing withespace from wbinfo -m which breaks gdm auth.- Add a recommendation to the samba and samba-winbind package to install logrotate for openSUSE 11.0 and later.- Include mkinitrd scriptlets.- Allow %u parameters for print job username - use advanced sub; (bnc#374389).- Update to 3.0.31. + BUG 5504: Fix SIGTERM handling in Winbind children so that they do not remove the unix domain socket used to field client requests. + Split the winbindd_passdb backend into a 'builtin' and a 'sam' backend. + When allocating client buffers for large read/write - make sure we take account of the large read/write SMB headers as well as the buffer space. + Memory leak fixes in DC location code. + BUG 5533: Winbindd fails to cope correctly with a workgroup name containing a '.' + BUG 5555: Don't return NT_STATUS_PASSWORD_MUST_CHANGE error on machine account logon. + BUG 5551: smbd recursing back into winbindd from a winbindd call. + Fix usage message for "net rpc trustdom add". + Ensure consistent use of pdb_get_nt_passwd instead of pdb_get_lanman_passwd. + BUG 5578: Bad (non-Samba) use of strlcat gives error. + Canonicalize servername in the printer functions to remove leading '\\' characters. + Documentation build fixes. + [DOCS] Fix use of smbconfoption in samba.entities. + Return NULL in sitename_fetch() if gencache_init() fails. + Use machine account and machine password from our domain when contacting trusted domains. + SPNEGO SPN fix when contacting trusted domains. + BUG 5285: Fix libcap header mismatch. + Fix joining NT4 domains. + Don't let winbind getgroups crash when we have no gids in the token. + Fallback to level 24 pwd set while joining. + Fix joining w2k domains in "security = ads". + Fix pam_sm_chauthtok for storing modified cached creds. + BUG 5202: Re-activate "acl group control" parameter and make it only apply to owning group. + BUG 5531: Fix conversion of ns units when converting from nttime to timespec. + BUG 4974: Map NT_STATUS_OBJECT_PATH_NOT_FOUND to ENOENT in libsmbclient. + Fix a segfault in base64_encode_data_blob. + AIX build fixes. + ENODATA is not defined in freeBSD 4.6.2. + Don't reset password last set time just because the expired flag is set to 0. + Fix usage message for 'net idmap dump'. + Miscellaneous man page fixes. + BUG 4203: Samba3-HOWTO: Add improvements/fixes submitted by Pete Boyd. + Fixes to man pages. + Add tdb file documentation. + Ensure that winbindd trusted domain children keep primary domain online status up to date. + Update cached creds during password change. + Ensure that Winbind always uses set_domain_offline() to mark a domain offline. + Allow authentication and memory credential refresh after password change from gdm/xdm. + Memory leak fixes.- Allow authentication and memory credential refresh after password change from gdm/xdm; [bnc#395578].- Add SMB_VFS_OP_RECVFILE to vfs_op_names to get it in sync with vfs.h.- Call the libsmbclient testsuite from the %check instead of the %build script.- Use machine account and machine password from our domain when contacting trusted domains; [bnc#404667].- Add a %check section move the test of the PAM modules to this section and add more tests.- Add a recommendation to the samba and samba-winbind package to install cron for openSUSE 11.0 and later.- Use a variable for syslog and add missing $remote_fs dependency for Require-Start in the init information of the init scripts.- Update to 3.2.0. + Support for establishing interdomain trust relationships with Windows 2008. + All changes from the pre and rc releases as noted in here earlier.- Move header files from the devel sub package to lib*-devel.- Work around bad use of autoconf interna.- Build Samba with debug symbols to get working debuginfo packages.- Add /etc/openldap to the file list and not only the schema directory.- Improve samba-winbindd and dhcpcd-hook-samba interface scripts for faster booting; [fate#304967], [fate#304965].- Move sysconfig variable DHCLIENT_MODIFY_SMB_CONF from Other to 'Network/DHCP/DHCP client'; [bnc#400467].- pam_winbind: Update cached creds during password change; [bnc#395578].- Update to 3.2.0rc2. + BUG 5504: Fix behaviour of winbindd children receiving a SIGTERM. + BUG 5489: Split the winbindd_passdb backend into a 'builtin' and a 'sam'. + Make sure we take account of the large read/write SMB headers as well as the buffer space when allocating cli buffers for large read/write. + Fix tag as a goto target we were not reinitializing the array counts. + BUG 5451: Fix for using the correct machine domain when looking up trust credentials in our tdb. + Fix spnego SPN when contacting trusted domains. + BUG 5285: Fix libcap header mismatch. + Fix pam_sm_chauthtok for storing modified cached creds. + Fix joining issue in setups with "config backend = registry". + BUG 4544: Add new parameter 'ldap connection timeout' to prevent waiting for TCP connection timeouts if no LDAP server is available. + BUG 5502: Fix security=server. + Fix coverity IDs 552, 553, 570, 571, 572. + Shrink ldbtools. + Fix reset of password last set time just because the expired flag is set to 0. + Remove support for symbol versioning in shared libraries. + Fix autogen for autoconf 2.62. + BUG 5515: Fix empty input fields in SWAT. + BUG 5516: Fix saving of the config file in SWAT. + Fix winbindd trusted domain child not keeping primary domain online status up to date.- pam_winbind: fix pam_sm_chauthtok for storing modified cached creds; [bnc#395578].- Don't reset "password last set time" when unlocking an autolocked account; [bnc#382111].- Fix winbind sigterm handling and make init script send sighup to all child winbind processes; [bnc#382027].- Fix bug with winbindd trusted domain child not keeping primary domain online status up to date, merge to trunk from reversion 1801; [bnc#373560].- Make winbind children reopen logs on SIGHUP; [bnc#382027].- Set only CONFIGDIR and LIBDIR while make everything and install. No longer set CONFIGFILE, DRIVERFILE, LMHOSTSFILE, and SMB_PASSWD_FILE; [bnc#395877].- Update to 3.0.30. + Fix for CVE-2008-1105. + Remove man pages for ldb tools not included in Samba 3.0.- Fix vulnerability that allows for the execution of arbitrary code in smbd; CVE-2008-1105; SA30228; [#391168].- Follow the rename of libtdb0 in baselibs.conf.- Rename sub package libtdb0 to libtdb1.- Update to 3.2.0rc1. + Move the posix pending close functionality down into the VFS layer. + Fix activation of registry globals in loadparm. + BUG 5452: Fix smbclient put. + BUG 5434: Ensure the loaded password doesn't contain the '\n' at the end. + BUG 5456: Fix missing echo if we ^C at the prompt. + BUG 5464: Fix timeout in winbindd. + Fix returning a directory value for a QPATHINFO on a msdfs link with a non-dfs path. + Use more error-prone form of testing dm_destroy_session() return code. + BUG 5453: Fix winbindd and smbd crash when dsgetdcname is used. + BUG 5465: Fix joining with createcomputer=ou1/ou2/ou3. + BUG 5461: Fix issue with Citrix on Samba DCs with more than 900 groups. + Fix wins null pointer crash in nss_wins module. + Fix lm session key length in _netr_LogonSamLogon. + Add -f switch for DsGetDCName() example and be more verbose on output. + BUG 5429: Clarify log msgs re: failure to create BUILTIN\{Administrators,Users} + Fix the DNS Update option of "net ads join". + BUG 5184: Add Missing HAVE_UPDWTMPX check before using updwtmpx(). + Recognize and allow longer UA keys in winbindd_cache. + BUG 5436: Fix signing problem in the client with transs requests. + Fix a valgrind bug in the new [ug]id2sid cache. + Fix Coverity IDs 565 and 222. + Fix dfs_Enum: In form_junctions, correctly check for malloc failure. + Add support for symbol versioning in shared libraries (can be disabled with - -disable-sysmbol-versioning). + Add new function wbcLibraryDetails() to libwbclient. + Cleanup size_t return values in convert_string_allocate. + Fix Kerberos support for CUPS 1.3 in smbspool. + Fix printing with Vista. + Fix deletion of files when they're in use by other drivers.- Update to 3.0.29. + Fix a crash in tdb_wrap_log(). + BUG 5267: Fix for nmbd termination problems when no interfaces found. + BUG 5326: OS/2 servers give strange "high word" replies for print jobs. + Remove MS-DFS check that required the target host be ourself. + BUG 5372: Fix high CPU usage of cupsd on large print servers by using more efficient CUPS queries in smbd. + BUG 5095: Fix the enforcement of the "Manage Documents" access right. + BUG 5460: Fix MS-DFS referral problem in server code. + Fix bug in Winbind that caused the parent to ignore dead children. + BUG 4235: Improve compliance to the Squid helper protocol. Original patch from Pawel Worach . + Prevent cycle in Wibind's list of children when reaping dead processes. + BUG 5419: Fix memory leak in ads_do_search_all_args() (merge from v3-2). + Fix winbind NETLOGON credential chain on a samba dc for w2k8 trusts. + Fix client connections and negotiation with Windows 2008 DCs in member server code. + Add NT_STATUS_DOWNGRADE_DETECTED error code (merge from v3-2). + BUG 5430: Fix pam_winbind.so on Solaris (requires -lsocket). + Re-add samr getdispinfoindex parsing which got lost in the glue commit. + BUG 5461: Implement a very basic _samr_GetDisplayEnumerationIndex(). Corrects interop problem between Citrix PM and a Samba DC. + BUG 3840: Fix smbclient connecting to NetApp filers when using whitespace in the user's password. + BUG 4901: Fix behavior of "ldap passwd sync = only". + BUG 5317: Fix debug output from domain_client_validate(). + BUG 5338: Fix format string bug in rpcclient. + Ensure that "wbinfo -a trusted\\user%password" works correctly on a Samba DC with trusts. + BUG 5336: Fix SetUsetrInfo(level 25) to update the pwdLastSet attribute. + BUG 5350: Fallback to anonymous sessions if not trust password could be obtained on Samba DCs and member servers. + Fix signing problem in the client with trans requests. + Enable winbind child processes to do something with signals, in particular closing and reopening logs on SIGHUP. + Add implementation of machine-authenticated connection to netlogon pipe used when connecting to win2k and newer domain controllers. + Fix trusted users on a DC that uses the old idmap syntax. + Only have Winbind cache domain password policies that were successfully retrieved. + Fix alignment bug when marshalling printer data replies. + Fix DeleteDriverDriverEx() checks to prevent removing in use files.- Expand baselibs.conf to match pre SUSE 11.0 products.- Remove obsoletes and provides 3 for all packages and systems.- Cleanup the use of the suse_version macro to achieve consistent defaults.- Set CODEPAGEDIR while make to fit the install location.- Prevent errors during the cache validation when ua keys reach a size larger than 1024; [bnc#372558].- Package man page files independent of the used compression method (gz,lzma).- Rewrite spec file to build packages for Fedora, Redhat, CentOS, and Mandriva in the OBS too.- Add a script to restart smbfs if NetworkMangaer gets an IP address; [bnc#373075].- Remove all references to the obsoleted samba-pdb package.- Compose the BuildRequires in a more flexible way to fit the openSUSE build service (OBS) requirements to support different operating system targets.- Use _libdir macro instead of a local define of LIBDIR.- Remove PreReq /sbin/ldconfig from the libtdb-devel package.- Install the shared libraries with the same name as used as soname.- Update to 3.2.0pre3. + Use of IDL generated parsing layer for several DCE/RPC interfaces. + Removal of the 1024 byte limit on pathnames and 256 byte limit on filename components to honor the MAX_PATH setting from the host OS. + Introduction of a registry based configuration system. + Improved CIFS Unix Extensions support. + Experimental support for file serving clusters. + Support for IPv6 in the server, and client tools and libraries. + Support for storing alternate data streams in xattrs. + Encrypted SMB transport in client tools and libraries, and server. + Support for Vista clients authenticating via Kerberos. + Full support for Windows 2003 cross-forest, transitive trusts and one-way domain trusts. + Support for userPrincipalName logons via pam_winbind and NSS lookups. + Expansion of nested domain groups via NSS calls. + Support for Active Directory LDAP Signing policy. + New LGPL Winbind client library (libwbclient.so). + New NetApi library for domain join related queries (libnetapi.so) and example GTK+ Domain join gui. + New client and server support for remotely joining and unjoining Domains. + Support for joining into Windows 2008 domains. + New ldb backend for local group mapping tables + Raised level of security defaults for authentication operations. + Inclusion of an HTML version of the 3rd edition of "Using Samba" from O'Reilly Publishing.- Add libtalloc1, libtdb0, and libwbclient0 to baselibs.conf.- Remove obsoletes and provides samba3 for post 10.3 systems.- Let libsmbsharemodes-devel require libsmbsharemodes0 for post 10.3 systems.- Rename the libsmbsharemodes package to libsmbsharemodes0 to follow the shared library packaging policy for post 10.3 systems.- Update kdc dns-only lookup patch to IPv6.- Move mount.cifs and umount.cifs from /sbin/ to /usr/sbin/ and create sym links in /sbin/; [bnc#380693].- Enable the build of vfs_cacheprime and vfs_readahead modules.- Update to 3.2.0pre2. + Add library for access to the registry configuration data. + BUG 5023: Separate NFS4 and POSIX ACL code in file access checks. + BUG 4308: Fix Excel save operation ACL bug. + BUG 4801: Correctly implement LSA lookup levels for LookupNames. + Add new option "debug class" to control printing of the debug class. + Enable building of the zfsacl and notify_fam vfs modules. + BUG 5083: Fix memleak in solarisacl module. + BUG 5063: Fix build on RHEL5. + New smb.conf parameter "config backend = registry" to enable registry only configuration. + Added support for IPv6 client and server connections. + Remove unused utilities: smbctool and rpctorture. + Fix service principal detection to match Windows Vista (based on work from Andreas Schneider). + Encrypted SMB transport in client tools and libraries, and server. + Added support for an SMB_CONF_PATH environment variable containing the path to smb.conf. + Various fixes to ntlm_auth. + Correctly handle mixed-case hostnames in NTLMv2 authentication. + Add Winbind client library. + Enhance client and server remote registry access. + Add client calls for remotely joining a computer to a domain (including calls from "net dom" command). + Add libnetapi.so library for joining domains including sample GTK+ app. + Fixes for Vista SP1 Kerberos authdata handling to only pickup the PAC. + Various fixes for DsGetDcName and conversion to IDL based structures. + Add ads_get_joinable_ous() to libads to get list of joinable ous. + Add get_logon_hours_from_pdb() to comply with new IDL based structures. + Migration of the entire client and server DCE/RPC code to IDL based structures and autogenerated code for DSSETUP, LSA, SAMR and NETLOGON. + Started migration of client and server DCE/RPC code to IDL based structures and autogenerated code for NTSSVC, SVCCTL and EVENTLOG. + Use IDL and autogenerated code for samlogoncache and Kerberos PAC handling. + Add remote join/unjoin server-side implementation. + Import the Linux red-black tree implementation. + Support for storing xattrs in tdb files. + Support for storing alternate data streams in xattrs. + Implement a generic in-memory cache based on rb-trees. + Speed up the smbclient "get" command. + Add the aio_fork module. + Modified libsmbclient API for more easily maintaining ABI compatibility while adding new features to libsmbclient. + Refactor Winbind internal parent-child interface tables to achieve better unit testing support. + Networking fixes to the libreplace library. + Add support for DNS Service Discovery. Based on work from Rishi Srivatsavai . + Don't restart winbind if a corrupted tdb is found during initialization. + Add share parameter "administrative share". + Improve error messages of net subcommands. + Add 'net rap file user'. + Change LDAP search filter to find machine accounts which are not located in the user suffix. + Remove smbmount. + BUG 5073: Allow "delete readonly = yes" to correctly override deletion of a file. + Register the smb service with mDNS if mDNS is supported. + Add smbclient support for basic mDNS browsing. + Fix padding between Winbind 32bit/64bit client library in the request/ response structures. + Added a syncops VFS module for file systems which do not guarantee meta-data operations are immediately committed to disk in stable form. + Additional portability support for building shared libraries. + Get Samba version or capability information from Windows user space. - Add new sub packages libnetapi0, libnetapi-devel, libtalloc1, libtalloc-devel, libtdb0, libtdb-devel, libwbclient0, libwbclient-devel.- Fix build with glibc 2.8.- Added baselibs.conf file to build xxbit packages for multilib support for post 10.3 systems.- Only cache password policy results that worked, otherwise we cannot login until the cache expires even if a connection to a DC has been restored; [bnc#373552].- Remove dir /usr/share/omc/svcinfo.d as it is provided now by filesystem.- Prevent tdb lock call getting interrupted by sig alarm; [bnc#364200].- Update to 3.0.28a. + Failure to join Windows 2008 domains. + Windows Vista (including SP1 RC) interop issues.- Rename the libsmbclient package to libsmbclient0 to follow the shared library packaging policy and remove provides libsmbclient3 for post 10.3 systems.- Add variable to define if a share should be an administrative share; [bnc#358841].- Fix patch errors with dcerpc and idmap_global; [bnc#280452].- Fix safe_strcpy error caused by duplicate domain name fix; [bnc#356025].- Fix two memleaks if num_validated_vuids exceeds its maximum; [bnc#349581].- Fix ACL inheritance; [bnc#351570].- Fix a gcc 4.3 buffer overflow warning.- Remove duplicate domain name prepend when user SID is in winbindd cache; [#336854].- Prevent winbindd from segfaulting due to corrupted cache tdb on flushing caches; [#340332].- Fix kerberos authentication with Vista; [#350032].- Update to 3.0.28. + Fix send_mailslot overflow: CVE-2007-6015; [#343702].- Additional cases and problems caused by fix for CVE-2007-4572; [#337823].- Fix send_mailslot overflow: CVE-2007-6015; [#343702].- Added default printing system information to README.vendor; [#113759].- Add missing define of AI_ADDRCONFIG for systems with older glibc versions.- Update to 3.0.27. + Stack buffer overflow in nmbd's logon request processing; CVE-2007-4572; [#326261]. + Remote code execution in Samba's WINS server daemon (nmbd) whe processing name registration followed name query requests; CVE-2007-5398; [#337823].- Change the spec file to get debug packages again.- Additional case for overflow: CVE-2007-4572; [#326261].- Fix process_logon_packet overflow; CVE-2007-4572; [#326261].- Fix reply_netbios_packet vulnerability; CVE-2007-5398; [#337823].- Fix missing getpwent mutex unlock; [#329796], [#331754], [#336854].- Fix the alignment of 32 and 64-bit winbind requests; [#331754].- Add dmapi-devel and xfsprogs-devel to the BuildRequires for post 10.0 systems; [#289599], fate [#302668].- Fix possible segfault in winbind which could be caused by uninitialized variables; [#253862c223].- Use FQDN in KDC DNS lookup; [#295284].- Update to 3.2.0pre1. + Use of IDL generated parsing layer for several DCE/RPC interfaces. + Removal of the 1024 byte limit on pathnames and 256 byte limit on filename components to honor the MAX_PATH setting from the host OS. + Introduction of a registry based configuration system. + Improved CIFS Unix Extensions support. + Experimental support for file serving clusters. + Full support for Windows 2003 cross-forest, transitive trusts and one-way domain trusts + Support for userPrincipalName logons via pam_winbind and NSS lookups. + Support in pam_winbind for logging on using the userPrincipalName. + Expansion of nested domain groups via NSS calls. + Support for Active Directory LDAP Signing policy. + New ldb backend for local group mapping tables + Raised level of security defaults for authentication operations. + Inclusion of an HTLM version of the 3rd edition of "Using Samba" from O'Reilly Publishing. - Update samba-vscan to 0.3.6c-beta5. - Disable dcerpc-funnel and idmap_ad-Global_Catalog as both currently don't apply to Samba 3.2.- Make nss_winbind thread-safe; [#293907, #329796].- Perform KDC lookup using DNS only; [#295284].- Handle smb child crash; [#294895].- Add a global lock inside nss_winbind as workaround; [#293907].- Merge ranged retrieval optimization to winbindd.- Update to 3.0.26a. + Memory leaks in Winbind's IDMap manager. - Update to 3.0.26. + Incorrect primary group assignment for domain users using the rfc2307 or sfu winbind nss info plugin; CVE-2007-4138; [#307623].- Fix two memleaks in idmap_cache.c; bso [#4917]. - Correct failure of libsmbclient against a version of Windows. - Make read_sock return the total number of bytes read instead. - Fix error in enum_dom_groups. - Fix logic error in timeout of blocking lock processing. - Add parameter "directory name cache size". - Fix use of pwrite in tdb code.- Also ensure to initialize ip_srv_site and count_site even if we are not on site; [#230963#c124]. - Use an off site DC if we're not online and talking to the KDC of our domain; [#230963#c106].- Fix a bug where samba writes the wrong default value of max_passwd_expire to an LDAP server; [#298469].- Fix if statements where we still expected cli_connect() to return BOOL.- Update to 3.0.25c. + File sharing with Widows 9x clients. + Winbind running out of file descriptors due to stalled child processes. + MS-DFS inter-operability issues.- Update the cache tdb validation patch which improves the backup handling trying to end up with a useable cache tdb. This applies mostly to the situation that disk space is short; [#256166c82].- Update the cache tdb validation patch to support backup and corrupted file handling; [#256166c77].- Fix a bug that causes smbd to 'hang' intermittently; [#289599].- Fix event based krb5 ticket refreshing in winbindd.- Limit the LDAP expression in lookup_usergroups_member() to security groups; [253862c209].- Don't reset the num_names counter in lookup_groupmem(); [253862c198].- Make the days before the password expiry warning appears configurable in pam_winbind.conf; [#287871].- Don't link shared libraries of vscan with -pie.- Increase LOOKUP_SIDS_HUNK_SIZE for rpccli_lsa_lookup_sids_all() from 1000 to 20480; [#253862c175].- Update to 3.0.25b. + Offline caching of files with Windows XP/Vista clients. + Improper cleanup of expired or invalid byte range locks on files. + Crashes is idmap_ldap and idmap_rid.- Fix reply when no dfs share is configured. - Fix the DFS code to work with Vista clients; [#286937].- Migrate old if-up/down scripts to new names on update; [#283706, #285187].- Introduced prefix numbering of if-up/down scripts that they get executed in the right order; [#283706, #285187].- Restart nscd on winbind update to load the new libnss_winbind.so.2 library. This will not resolve every problem with nss modules; [#174589c88].- Fix winbind segfaults with idmap_rid; bso [#4624].- Add missed 'c' character to the list of valid ones in escape_shell_string(); [#273611].- Let lookup_groupmem() only resolve not yet cached SIDs; [#253862c106].- Remove superfluous requires to samba from the devel package.- Ensure the returned structure size from _samr_query_dispinfo() is smaller than the total size; [#203833].- Remove 'unset CONFIGURE_OPTIONS' in front of the configure call to vscan. - Install header files with 0644 instead of 0755 permissions. - Enable build of the python package.- Branch a samba-devel package for post 10.2 systems. - Install .a library files with 0644 instead of 0755 permissions.- Update to 3.0.25a. + Missing supplementary Unix group membership when using "force·group". + Premature expiration of domain user passwords when using a·Samba domain controller. + Failure to open the Windows object picker against a server configured to use "security = domain". + Authentication failures when using security = server.- Add %dir /usr/share/samba to the client package. - Remove samba-classic{,-client}, samba-ldap{,-client}, sambaxp{,-client}, and smbclnt from Provides and Obsoletes of the main or client package.- Add /sbin/ldconfig to %post and %postun of libsmbsharemode.- Update samba-vscan to 0.3.6c-beta4.- In some cases PRS_ALLOC_MEM was called with zero count; [#273613]; bso [#4637].- Enhance the patch to the ads version of lookup_groupmem(); [#253862c89].- Don't use current_user to prep the security ctx in change_to_user(); [#273613].- Prevent winbindd segfaulting due to corrupted cache tdb; [#256166].- Use WORKGROUP instead of TUX-NET as default workgroup setting in smb.conf.- No longer check in the pre package scripts if swat or winbindd of version 2.2 are updated; [#273160].- Update to 3.0.25. + Significant improvements in the winbind off-line logon support. + Support for secure DDNS updates as part of the 'net ads join'·process. + Rewritten IdMap interface which allows for TTL based caching and·per domain backends. + New plug-in interface for the "winbind nss info" parameter. + New file change notify subsystem which is able to make use of·inotify on Linux. + Support for passing Windows security descriptors to a VFS·plug-in allowing for multiple Unix ACL implements to running side·by side on the Same server. + Improved compatibility with Windows Vista clients including·improved read performance with Linux servers. + Man pages for IdMap and VFS plug-ins. + Security Fixes CVE-2007-2444, CVE-2007-2446, and CVE-2007-2447. - Disable build of the python package.- Fix heap overflows to prevent remote code execution; CVE-2007-2446; [#273613]. - Fix remote command injection vulnerability; CVE-2007-2447; [#273611].- Remove obsolete samba-pdb package and required packages from BuildRequires for post 10.2 systems.- Remove X-UnitedLinux- prefix from init scripts for post 9.0 systems.- Remove requires on release from devel packages.- Reduces the number of queries made to the DC in the ads version of lookup_groupmem(); [#253862].- Allow winbindd to take local shortcut on secondary DCs in case dce funnel directory is set; [#266853].- Really remove Should-Start smb in smbfs init script; [#242918].- Disable 'msdfs root' by default again; [#268004].- Build libsmbsharemodes and create libsmbsharemodes and corresponding devel package; [#264623].- Let idmap_ad search in the Global Catalog in case dce funnel directory is set; [#266049].- Allow share names with a lengths greater than 32 chars; bso [#4512].- Check the euid and call become_root() to get write access to dump a core.- Add pwdutils BuildRequires for post 10.2 systems.- Do not restart winbindd under any if-up circumstances; [#227942].- Replace unneeded become_root_uid_only() by refactored become_root(); CVE-2007-2444; [#262090].- Add repository version and branch to the spec file via build-source-timestamp mechanism.- Allow applications to set the share mode while opening a file using libsmbclient; bso [#3684]; [#203737].- Fix for fd leak on error path in winbindd; bso [#3204], [#258737].- Add gdbm-devel BuildRequires for post 10.2 systems.- Remove setlocale(LC_ALL, "C") calls; bso [#2926], [#247728].- Fix segfault and memleak in wb_lookup_rids(); bso [#4434].- Fixes a known bottleneck under very high load situations; [#247984].- Avoid passdb builtin group membership calls in the DCERPC funnel patch; [#248556].- Allow pre 3.0.23 multi passdb backend configurations to work with post 3.0.22 by using the first backend only; [#245167].- Prevent nscd crash in NSS winbind initgroups(); [#237719]. - Fix pam_winbind cached login for samba/NT4 domains; bso [#4225]. - Various pam_winbind fixes; bso [#4094, #4288]. - Fix DCERPC funnel patch; [#245278]. - Fix vista and share level security. - Fix vista variable expansion; bso [#4093]. - Fix vista DFS support; bso [#4356]. - Fix vista backup tool; bso [#4361]. - Fix vista deletion on shares; bso [#4188]. - Fix vista spoolss problems.- Fix crash bug in rpc_pipe_bind(); [#244892].- Enable DCERPC funnel patch.- Fix accumulation of expired LDAP connections when winbind in ads mode; bso [#4009].- Fix all lp_dce_funnel_directory() callers; [#242833].- Disable broken DCERPC funnel patch; [#242833].- Update to 3.0.24. + Potential Denial of Service bug in smbd; CVE-2007-0452; [#240265].- Fix logic error in the deferred open code; CVE-2007-0452; [#240265].- Avoid winbind event handler for internal domains.- Fix smbcontrol winbind offline; [#223418]. - Fail on offline pwd change attempts; [#223501]. - Register check_dom_handler when coming from offline mode. - Fix pam_winbind passwd changes in online mode. - Call set_domain_online in init_domain_list(). - Winbind cleanup after failure and fix crash bug. - Don't register check domain handler for all trusts. - Add separate logfile for dc-connect wb child. - Only write custom krb5 conf for own domain. - Move check domain handler to fork_domain_child.- Fix pam_winbind text string typo; [#238496]. - Support sites without DCs (automatic site coverage); [#219793]. - Fix invalid krb5 cred cache deletion; [#227782]. - Fix invalid warning in the PAM session close; - Fix DC queries for all DCs; [#230963]. - Fix sitename usage depending on realm; [#195354].- Add DCERPC funnel patch; fate [#300768].- Fix pam password change with w2k DCs; [#237281].- Check from the init script for SAMBA__ENV variable expected to be set in /etc/sysconfig/samba to export a particular environment variable before starting a daemon. See section 'Setup a particular environment for a Samba daemon' from the README file how this feature is to use.- Remove %config tag from /usr/share/omc/svcinfo.d/*.xml files.- Fix pam_winbind grace offline logins; [#223501]. - Fix password expiry message; [#231583].- Move XML service description documents; fate [#301712].- Disable smbmnt, smbmount, and smbumount for systems newer than 10.1.- Add XML service description documents; fate [#301712].- Move tdb utils to the client package.- Fix crash caused by deleting a message dispatch handler from inside the handler itself; [#221709].- Fix delays in winbindd access when on a non-home network; [#222595].- Fix client-side smb signing; [#222951]. - Fix imcomplete merge for firefox NTLM handling; [#198255].- Add IA64 and x64 printer drivers directory.- Update to 3.0.23d. + Stability fixes for winbindd.- Fix ldapsmb group and unicode issues; [#143417, #216606]. - Fix net ads account management; [#217046]. - Fix libnscd usage in passdb; [#217363]. - Add the "mega patch" + Add site support for winbind; [#195354], fate [#300909]. + Add site support for net; [#211281], fate [#300909]. + Fix winbind krb5 ticket handling from offline; [#178028]. + Fix "net ads leave"; [#196771]. + Fix winbind username case handling; [#184902]. + Fix winbind name canonicalisation; [#210174]. + Fix winbind online/offline handling; [#196859]. + Add NTLM cached credential handling for firefox; [#198255], fate [#300973]. + Fix winbind groupmembership handling; [#211324]. + Fix winbind site-support handling on reconnect; [#195354]. + Fix winbind child initialization and online/offline handling; [#196859]. + Fix winbind cached credential storage; [#185053]. + Fix winbind long login delays; [#184450]. + Fix winbind crash for new AD user; [#208454].- Fix pam_winbind overriding syslog settings; [#201756]. - Fix profilepath pam_set_data for other PAM modules; [#215707].- Fix timeout handling for winbindd (samr, netlogon). - Fix gencache access; [#209409, #211281]. - Fix libsmbclient accessing NetApp; bso [#4018]. - Fix error handling in ads printer code; [#209409]. - Fix passwd pam segfault; [#211719]. - Fix crash in winbind async child. - Fix winbind failure mode for trusted domains.- Add realm to username if missing in net ads join; [#211706].- Move the LOCKDIR to the client sub package.- Activate the libaddns.- Add version of the package subversion to Samba vendor version suffix.- Update to 3.0.23c. + Authentication failures in pam_winbind when the AD domain policy is set to not expire passwords. + Authorization failures when using smb.conf options such as "valid users" with the smbpasswd passdb backend.- Fix time value reporting in libsmbclient; [#195285].- Remove update-messages.- Store and restore NT hashes as string compatible values; [#185053].- Added winbindd null sid fix; [#185053].- Update to 3.0.23b. + Ambiguity with unqualified names in smb.conf parameters such as "force user" and "valid users". + Errors in 'net ads join' caused by bad IP address in the list of domain controllers. + SMB signing errors in the client and server code. + Domain join failures when using smbpasswd on a Samba PDC.- Fix from Alison Winters of SGI to build even if make_vscan is 0.- Update to 3.0.23a. + Failure to strip the domain name from groups when 'winbind use default domain = yes' + Bad token creation of local users on member servers not running winbindd. + Failure to add users or groups to ACLs using the Windows object picker. + Failure in file serving code when 'kernel oplocks = yes'. + New "createupn" option to "net ads join" + Rewritten Kerberos keytab generation when 'use kerberos keytab = yes'- Replace vendor-files/tools/dlopen.sh by test_pam_modules make rule.- Fix pam config file parsing in pam_winbind; bso [#3916].- Update to 3.0.23. + Improved 'make test' + New offline mode in winbindd. + New Kerberos support for pam_winbind.so. + New handling of unmapped users and groups. + New non-root share management tools. + Improved support for local and BUILTIN groups.- Prevent potential crash in winbindd's credential cache handling; [#184450].- Fix memory exhaustion DoS; CVE-2006-3403; [#190468].- Fix the munlock call, samba.org svn rev r16755 from Volker./bin/sh/bin/sh/bin/shbuild14 1271176869@ `@@` ` `[ `! `% ` `" `$  `# ` ` ` `~ ` ` ` ` ` ` ` ` ` ` ` ` ` ` `} ` ` ` ` ` ` `w `U `T $ ] B A ? P Z N \ _ W X a G = : J D b R 2 U Q H M 6 Y 9 V K S   `+ `J `K@ l z { | } ~  m o p q r s t u v w ~ x y `3 `9 `7 `6 `8 `5 `4 `: `2 `<3.4.3-3.3.13.4.3-3.3.1  nmbsmbsambasambasmbpasswdsmbusersslp.reg.dsamba.regnetbios-serversamba-serverswatpam_smbpass.sosmbstatussambaauthscript.soconfigde.msgen.msgfi.msgfr.msgit.msgja.msgnl.msgpl.msgrpcru.msgtr.msgvfsacl_tdb.soacl_xattr.soaudit.socacheprime.socap.sodefault_quota.sodirsort.soexpand_msdfs.soextd_audit.sofake_perms.sofileid.sofull_audit.sonetatalk.sonotify_fam.sopreopen.soreadahead.soreadonly.sorecycle.soshadow_copy.soshadow_copy2.sosmb_traffic_analyzer.sostreams_depot.sostreams_xattr.sosyncops.soxattr_tdb.sonmbdrcnmbrcsmbsmbdswatsmbstatus.1.gzsmbpasswd.5.gznmbd.8.gzsmbd.8.gzswat.8.gzvfs_acl_tdb.8.gzvfs_acl_xattr.8.gzvfs_audit.8.gzvfs_cacheprime.8.gzvfs_cap.8.gzvfs_catia.8.gzvfs_commit.8.gzvfs_default_quota.8.gzvfs_dirsort.8.gzvfs_extd_audit.8.gzvfs_fake_perms.8.gzvfs_fileid.8.gzvfs_full_audit.8.gzvfs_gpfs.8.gzvfs_netatalk.8.gzvfs_notify_fam.8.gzvfs_prealloc.8.gzvfs_preopen.8.gzvfs_readahead.8.gzvfs_readonly.8.gzvfs_recycle.8.gzvfs_shadow_copy.8.gzvfs_shadow_copy2.8.gzvfs_smb_traffic_analyzer.8.gzvfs_streams_depot.8.gzvfs_streams_xattr.8.gzvfs_xattr_tdb.8.gznmb.xmlsmb.xmlsambaswathelpwelcome-no-samba-doc.htmlimagesglobals.gifhome.gifpasswd.gifprinters.gifsamba.gifshares.gifstatus.gifviewconfig.gifwizard.gifincludefooter.htmlheader.htmllangjahelpwelcome.htmlimagesincludejstrhelpwelcome.htmlimagesglobals.gifhome.gifpasswd.gifprinters.gifsamba.gifshares.gifstatus.gifviewconfig.gifincludejsdriversIA64W32ALPHAW32MIPSW32PPCW32X86WIN40x64netlogonprofiles/etc/init.d//etc/logrotate.d//etc/pam.d//etc/samba//etc//etc/slp.reg.d//etc/sysconfig/SuSEfirewall2.d/services//etc/xinetd.d//lib/security//usr/bin//usr/lib//usr/lib/samba//usr/lib/samba/auth//usr/lib/samba/vfs//usr/sbin//usr/share/man/man1//usr/share/man/man5//usr/share/man/man8//usr/share/omc/svcinfo.d//usr/share//usr/share/samba//usr/share/samba/swat//usr/share/samba/swat/help//usr/share/samba/swat/images//usr/share/samba/swat/include//usr/share/samba/swat/lang//usr/share/samba/swat/lang/ja//usr/share/samba/swat/lang/ja/help//usr/share/samba/swat/lang/tr//usr/share/samba/swat/lang/tr/help//usr/share/samba/swat/lang/tr/images//var/lib/samba//var/lib/samba/drivers/-fomit-frame-pointer -fmessage-length=0 -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector -funwind-tables -fasynchronous-unwind-tables -gobs://build.opensuse.org/openSUSE:11.2:Update:Test/standard/6b6bdfb0e7971323e6a351adf36a3b17-sambacpiolzma2i586-suse-linuxjji@U|XI2vcronlogrotate? ]"k%Y6   <0a?+sAm:6Gd׃pglSsүL˔˄nMa h59<.Z_ U5q0fDvw|! &s/g )0Ix5i5,k0H{% ~b7s8sHR@>\Kâ΍Q&ؤ˔+o.;ONRDg2Udw 5Scrwtgݢ9(‡v)DI[_a(syrT>)pM:sW[i=4%TLc͌)6ogvn%oFu]/=<(wxvDv؝P?BM4R.T>d9L{5 ])|w'\˷̆fGf!i}bFx܎; )PZB@ޤNN*#[ =͕J̏{[ܗ?w ``s}`RRnuV lcs xo nU#a#$w4-R -mB9Ђ/<'4Hp2C 28J Hд`1gR}1dAD!jjf\G#r21IYc#.^QõLY},oa['9+NnnXהV*"ߵ8Xd8,AAz-a2!߫sGM?8O2d ^`?LEUzٛD;cEpu~j{7T; ;'\ÄAxlU#q/6-n36drUEcْ-]3RXI12K@v-b,4*Sym Ԃ3#{rR(\+4䊩̆ט6TzA~"~cRS =/(Lml5 !m0%ڛ;W]z%~CgQ  oXLE{h *(l[ǤA+NCpy էuKGoUD?`1,4k.25F5+b$~0laDŽsqEk?[#@{dn3OC \@ ;z"OÅdzc[ el䱤pHT wf#7!tA\T_atRJA~|,RXIЂ)^|jb XA8QH+CauE hy"̌(,XKqgE.Ֆ)*.` J!DH~ ߏ1Pz:48eE|L_(຤q ,k'N%N G) @C$ r/kpy<#S`i+HBNiW1$Q-O-ة{߹uNo_Qxy̶ ƄP8߃@!]nmNҭ9CZOg8 嗮}<#A;9bO,f~\~2"0ښ "TwٛFkyvfAXQY=ǽ*I)S~g]?1gBKRKHwjiH뛟vtN@YL`BUC0c0[n/>02-TOԮUI +QOȷz?-i YG'ĪLgg& (׵q äA4Iӽݴ;yWm,"%0cBE^F8&zyOnvJmsš ]j#j̙GOƷ;9Wo;G?4tX) 28UM=S&[oTkUr#*c yY z-}Ye^"vR PoŹSykANVؓq.>;"ݜni&a(!It6<ީvWY2F%0XAQN;6?*:杘 vzK mWS0~@3sN*Y ,}<8)@Bte8"if>,#(^fH=ON˯ųh )Soj@I>|4򈹍(@}"{Cy.Ղgz>aɻqe.jflN¨d(sŠwMerj]CIShD.V>sJ"ФJ-yr%MakGnC(YpaPaHnmd}tn0GD9M=Kś ̹j{}ʗLt g˨ԣkA`v]\ޢ̲nwA2YSpr31zdr5#q% $=usF1?wM@鋖7wx:<lb/4N$$-f~ne =Csb:M.?^|dUy6ژ+|D`4RS*˶iĉ5>I>mON dYI'-N|iM?@';R4~TmWC}g,sg-Bf4@^p1@hxRNW67J"C ;СO|֋ ap( Oq:"^AEMAb iqFmUZX20{>S=B3+ =zK/ؿy} hjf.Vyv0˿z3aLd~l]Þ.Cz] grb>!!f_(C9ٝf涿bN'i:FEN!n:+_xg:\5EFdžy<Ը0%oHNߊ$-0+8EB|".SP=d\Ϻz8!fI~W!6w|x.3+Ta UFi:'|j!\nz6aDp禬i?2Qna go w>,kϙπ4=N-6i?24"&8iqexOJ[NUT$< ,zfɷLDJ05=Xʏ?(rظC%D +QS|*5LwTtI߆Aԓ~isiS 7 N5=3vEcQX |#U+;Zg[v~ONdD|*жGͧM]8;,R}:A٭Z_Ѝ[Ԅ;G|8> phntw zQ$/i4_.)D6z} WO?By!1cfbZsaOx<leC+*gǓ"B05aS@Wt6uNr<1:!T&; 9]9}ej z{wV-l*Y"9- 1V@4ՖqY$6 ~Yxӥ{k-S4gK|J\ʝXI^<.])ɥZgk-qTvЦSw6p܄ 9B'<~kB$6(^jbymYg%~3![1T<>mD C?珘Mߋ9 >OI^Mb}ǜK%UJgR95\|c$[9(ʇg22rc(O*bTC=0 2gm(q.j=UUUjH\ }b-ɰ9NhP S׷[SE׽\#r֒xKv[ Ĵ>ٝV^^cX؂[%,vVGWG6OCyDF2tñ`xK#ppz 17OrĮegR\YDPf8<n ?  swCmC'WVKTBY2(xF*K[aB48l:3{H~zUE6~4Ka!R؇J,ʘSh@NsM@v'ZP A˓[y:bC#ʦS:mKLP$Ω@.hF\U1\dw9,E[;~fjxysjQcO*emk4*"43tC]RSk G1YH3d:-ʘ拚TXPB8vS0*p0'wr3{:oOǘ5q_s1(&!-ye`6vSWLZTۥb;{"pM| ۊ.ՒcKYovm=$ KGbS=Cq'3;,ɵɇ} ;k`mIf+ZgN3Ϩ+Qq[Q0|V\*ݭk0*Ůs0QC|XB mhgOėx.z mYƕ~bN,,$c'}sq %ˈ*/QP<6IIy'KKMn!!ępEݮ'gk".?qfTxld*<>T3c .XWGsCη19|zm#)ra'y%'-ɠ6IZ,]îԇ^2do7oQ|41˨U]3T.vǠR0nv Ò-څ Owߥe]>%}Y!˥xv-&_GpZN V3a(]?6 V>f:ݛdRu@킖lSrYNeZ?wִ,5=`!xkO+_qu 6/{2?.0zdfgIXh/*Zeڎ1o4EF#VtX#Tm2YX'LӤl6lS1nT|H4 iKp3KXv eQUVD$Z$r B(0' xI}`wto`FټҴ>#14:5{C]'N6t2@sjcwFlE ~"gG3KF=&嬽x%L~ սA1thQJ-c(ҵZJϲ 1>!-m 3} NKvI EN+i9SjSNk)yn]RXI>?`rtPenY!^K7.ZW zyMoY)\Ֆ Yx6:VM-3B!f|"L\gHbo 1'C XWo*BaJQg9m4m+dc<5x·7%۶(23Y }֜N(Z|rWa46!,MfbR zNL Ӣ0fqOxz0c?qT&*;ұUVfheq\)};覌If|-"lN$4}K󖣥]?sBbs4gPIQ9Bz/J?7_ir(dwc[eHPHy]rS9 E|:s4oِsݨ K2&g8= LӎiӋZMD\IN·=$(A;02*f YHaVpMX]uYpo';#AvJUGe417juehgY7tt  kͼY=8k19~)Yew0= yc)`H6IDPrGskVG-F0 m {wv4YZxRwtPˎDUڊGW-rdFCYL 1=Qw r\f4M۳H}2OȨu F61hV{v>*0GE&w%~KVy*O8 |d?hK|'=}Ww]EБ;P27$8&\rS?Q(Lƈ\!=9pVHo.>C wGdhUeK=;uT08kB?at 3ԄlzFz9~Ot*í:&X4a$_5td ٻ]bFAiO\Z=.v<egGbcEI$t1k/4pA5Àj=qw {GzbߚQR^ߕCU 2 ց"2&f]#,m8 &2b1% TT^V~2Wwfl59¢sP 3ͲJ8EKL.ҏ3ZL?91PQ Bޮ263$5xฮY\6ȯw3.*)A.*q+o*B1 c-cwlУّ3ʵ&$Mr'蚉 y4K_%BogbHd9Z`jX~ny%3[4p/i5~[3U#+d6ZGdZ2^G Grmqyy"4䧶ػmS/v7i RZcn4%L響='ug#0>Hu6^JJB`~dJy3yGFE񔙴:&09i,~;E+hWoY#fA=ǖ#Uw)iA1SSRc~npx tya8+¥x/΅s1X輽w6vHi<A&DW $q}퍏M ӥM5uFpdl3)ܤ QD(12=nm0XۻX bo1Bt&怮|!ng4ed>(d.bzd͜˞TwM/Qd9_|m xF{C×bC/ݑ* D9%&=u+?%/ q qoC4uq-+Ʌ gv_ڈDI5pG ж4^1 ieh U:$а"p9ncXlTt9fKq3ӒKp1%_ח>uwF|`~RF8=/Į5zonmXv֩R|lZGbfc\WPA1@DǧZՁ7azXl(ER^UD$K2I7!Ed]v(e/OA(ܖ(Uar\zԉ|VqC0 q#l -V G?Ce]%l QeKT}SMxLZSS >CfJlFH$EP,BV\]GG5d BSGE`k5ˡ3! ^ G{~E>'}]ʞ*o2o9:̨\kZE Iї! @yPHkb{ЦkcoVK7>E&cy0:^'5htR8}t|7.]ddמ5\Ѽ^ux^cO]|*䌄aً+=NTO+~aA+ Vg~Ph;H+ZeU} 8_#=N.TSГb۾4 A=+y'L fA_CJ<1e^f9:rn>:Rp"}ȷ):#񐑼xRp\v:" &pKɭr;0b\VM_R gx83`0<&- wrqB¨7=R 8k]%*RdwB6.ZmhT/(rbWe\\#YodyvΔnL&~4?u[Y$~\7b&~]1I~F[FՔM1hFv72/.brKYԩ΀9a ROI,6>=q2+ө\|@턯+,r>aA{70]à?\^4$p. 1BbL!;ZL|[`b EX1y6LzBdZ}x/5ڔIPA(wP]㰢7M!:= 4李š:{E3e4՜4v'\\z%I}ׄTr:"Ze5ϮfS84Uîh'U% 6{whAK?Iݣ<!mF4lb]V5P{zJ};G3=px& #yX %xh+o!V.٫8 0>U`ע܌䍬-㲂u=p?dUD0ʢaٗ+3\r}/ IVٞHV3/y҇6L 3E F/&}0םEmCpwF"%qQ "2x]&˔!:Wu4@z%Y!X-q&s@%3=Ǘa jIon}b |2e{.؎c-?2Ry.xpz44gOku=h1ÂCx%ԓ:NH9= fc9BϒՋξ0"_0I43LC] r88i^ m4OU~|ܺm]U" 't̃}?OHFh1ܳ&amBӜ!ן`ym]Xv{G{~XaK`td4v9FztlʠcxQ 5ϱ%U3ۯYkqNyHA:?TJL6fV=y3Iy$ 2:l{rZhr  ˱ x?JYY[Wl]A%6\t'ٲY\xϣU %h!5̣jݞiBP08'õg$4~.їug>c@UAWg F뉡G(n&RCb+:9!K@(17x7{trg7vJeA/socp1GN^ J7vNP\U aBGu@5mDc9 zGd<|Dio?b=UFM|GJkKjbJ`;'fȩ*Ob^vct ڜfx,NM5$RZyz @>KcA$'rOpA(V{m yCE.Ax;XcLDx1/ Tuz}@=nCzFߟ4Z76K"WdW|/xocG{'*89g*tC"O|p q<$@NThn!ܪl ]貃y}qj<0aZrԎ m_b:(X0yhW1Xa-JT_VFAMwyT0G Ȱ0yz}^BKi]򢴩t: l7Z,EhnPVٞpHN X*blG 瘯v=(ٻtE@r# F9@mMz9͟@"DҶ€73`gWp jpH>;f`k=ro=e7$/.p0DoUd\v@W5:MN(.-y0E⪿5I%EMk|p ؗxv寔K^S" vN"O+V;_|tG7:(Y2ԩV-JN%Oa %^An Zof($g#7F_hT˿gJGS9zLzpM/Y gZ=<E/c{  2<ɵ8.P'E5MkR)ь+<6Fz{XfѸtB>wF(iFAg/ힸ#^J#]XxӾ,Gfl[0LHZOgd'n|h-;2edT1Jn; iO*~(l$^Q ^v) dybJYT .AdhV FXVh3U̫ [^';D3`nʆW,MhCeϼߠyGyHAw-hl;iWbjb:sdxhifijFgwYAadGYz; N.]y ]AWi'rVRmǏ>?P@b̅47϶ zKE"CZMУ,l ; M-m=AKyPh{.g+V\YAό=r6r \XCZ( *>{' e>°K!h]aV G25^gv8jms#Z_ʹS1>sUAJX5Pᮦ)1O|<1{BP'l!@XBOVj9/|wzV<ܥAIm%+If1PX^fr|4[yƠY򐀅"8l.K[pf69j(R먆N"[^Do՚!ڎŞBfwݱyi'=x+Dצ2W5_EY,sIH~>>X֕()4 qB_˺bkV ]Ыz {)'9U\ZQQe 8Qb=}@l$WPV +b}*:EP;RqA)Qb!9;ٞ]٦X\e}::=7*]'2h&ũeCl^/.rSjz*6#]7p<_/JyQc¶I(?T,0#Ȯ!ʊUh⋪''* }]ln>4i`eߋQC^<]n۫RQ.X"U5elb˦}Mv6TU\\݄oX2B wa7ӑ_v՞ܔ0|>'zhTJ.$ӷNOOiqw;1EZF؀ە!IAMF݋l`<x2*[ĊIlsgl/h,֟QdxЀMvM8ͣK7ܤD,Ƿv,(_E6ߞb⒉7=gv` FMځ%s''%輮ÎpS[R3;,p ݰb u}ֽ+0֌uS%u8aTR/8X!v'AO %xY5܂`Ԇ  'q]|^3J2j;$%/L`~gs>m #*)au['b`~[~% rܓ^sA8$nLw> eQX[fyPr&-2,OΈK'7(`ưJMw3h薥H! MlBwhxaC"ʐ@M p\Amg~?Hl7tm V]+_Lvd[ـ@"L*'OB}C?P2ĺ=?gAF_^mWl1%oU%LNmC<} IЭXx$Q+<Җ;F;*55òV*+--ʑCŴ9~S0DCL+3}"+?wI>K/%ޑ0̃M3˛rZQ4GO~*AZDr̨H~اQ=iB]^E >^Saɕ1bԭOtHɀw<~7_,CdgL埋l?~Q[#5nN֍m$*Dw;_t}t:Dq;zkʻ wޮ{Hn Fp8oSnH7"md4{P%ث`(.k'CNM8{depuq(Ao% >L&kW&iqW]a*Ȗ$j̜O?h ׅ1*+%gfjfh iuw<2n/&Fך0)$xIDZ﹖ PjGZrY<@]&O}w>9k5,Zk6>0gD+hY鉷g+:#NwÇT/[Ak8F3nnf.s˪ k.*◐V3:,Z ]hB4uj "d /[ icM3H9`&ǮgVh!g.k~$㎺2ܽ_n-ӚWda>{8qR\? EĹc@D 2\sCh$k&MaD `!0nLH".8|. _ dM/j4f~}1WJdX2{ZLfӊohR {WҡZjkCYX~ jgFQI}=iѠn kEUC+% r5nA" !Kr{-#dXgLdFD򌣗OWl DGC|y{M4!khrt|D!&rw!9rJ_iruh7$nVE` jk!l.E-_Zt$7ʡWJE:t nwROaص4I0g .\k}nJx`^J)sζ)~B Eb2xz2,Ƶ>[ߌۭˉ*Xx0M$4`0t~!=݇ho;ӗ''/LgiDV[G K妉ܬhZNJΉ/Ouȳ,CƱ1󱬘D&Gpc)FbYkw~~Ktݲ2sTg˘DFմ?F 6ܑnRIG%4ܠ]AU[y]'ʶM(Wm=nThIcu3uΊ!\'=vU=zLc}#D]2ISҕ:¡g4Nи8 qbL4rtYCj 6"%Ix@񇄉\|%iRcF\B+UMm yj-4Qb;Pq4;DPrBh•VI"0yxX֘VIAg/dV'-wݪz]%=Q-#gacΔT`rbYe%,ᩄ;o7-vk0tXh]P6{ǃ!"h#Vmꛄ1Uz E-)J"NKxQI.!p웝V0(b<42WM<'C*O ޘT05 *4 a\GM-&M0g!+g]`kdmXAʈ^Ĺ/9<~x ×1QZ1 ԒvP`CpOUh3uvdA{ϝ 2[Vm4 uZ66zBg{Z]N/pr( K/*OPIV uDB',>AX/Kj&ֆWc1mm<Bw:L *tKBfVhm} 5a'<!VDFg{<)lE)KsNµMerdd<0&}kcNhClwЋ!jX8 KAo&yK&@ƔQ$ $R6z#(0bȍ,e_W`O\'eP d{76Ik1||dfT/WHw.0$(PF 8vbbg\zAV4y攲$qw(cژ)$,gU""_dQgY ɹz56Ws/ȱr(-)W3?gQ?&T$O,Fxly*^Nq?mAqHJb|o w.{8 FT_u-h~Y8)R$uW\ll]% z]](k".FY(%4<"Ӡu຅ `"зK.WeVD:^ 9T&:<ھj9~&m*GH+1-_vDb^ ˜9aACfFMm4~m [ڄO6axcނ5h&\xaAj~]J@k 0 CgzcUէio儢sFAV67*)E sUN×nnVos6A0{Tؽ筩eYv(tMyHiVƛ܉`kgppژ k3pZ`Wȉm8^fmCddzneu/ G^HrV(e0E7)G~QjyC$j،$uJ@a!4 =_1AL !fY)?GY2PkOڕv^Hx=v1\d* - y_.#VUN}DQA&Dҥ`WH8FI,Hp]C2R䧴\ݖ[n+ɯU3",K=$)̿Kpc?v#Pƅގtڒ~]iqʝkFKzSxLLg3͟F5Jp8AX%d[U6Us-\]9l DPƱTX$ipN[T]DM\. e6&>z*pF(h2S*/Gq_CP"{edܸ2_USJhk7c!b/oBS(io">0RAuG!\e~6k"T#:BV &t5=-4]]17JJ0 !'yhBɚQi] tBm OXffH5H]*#R|o{@0kQ 92̃?ND [*{ݛ7|Lص]h4q+#`5\R5s`j,YeTmE08)ȊG-q n:qE%]<74RH;܆I,?ayf:/`D Z}v(2Vt{rMrʶLSlׄ0A_$Su057`66 ϤZHֽF. Mȩ`miG Bܕeq|o'>sݧ|{f9贇яmXYas' Y/<~Wfr{Q*ւ*15~ci8*ҁ|Em;XU ӣ]]2,I35 2:Ob@XjRXrqFTFb-s$y7i2c7ba82@1?j(d^1@`F %S?+WÒH.^v,Y[JtdIEIDstM}+lH=e(72.Q gk2?!|'z.n c"+J"";d-ӀU']J `LlgH|M(%#E(= ƺN ah &f-jI,$ qx(\r=Դ+plef‰' *d)C>1Kd* Yuk8wɯf󿑬^D^$}TŅ.u1BM91N+pxR`Ec&xE_o:S@D._">]9Yg-v#`S <]ϧ$lBVjzr#6$2d'fHnYW.>,gi ^̫e MQhmH>>[}1S!1 5ayv&yyu^+STuxH*fmQUN|c(C`z"u4!FU=KId>ZJRFLdJ[%v[JǶ >kv~@:8,RU%o7`lRN16.s#HHu[O<z&0%YEguVfLSv^RkT]߂mPS29Cr~~;|l];v>EIUD7WTcq8N"BWD<2;)D)08EjlNg_v+1 A,p a/=cZG$aE#/u*} ?(|XԐf@>kOdxu0vgYcly]Wt(<^dM ʴI;sЁwlXxOyc"0Vqˇ|Y@] mJj,Kt^̃P`'Ǥ/!hkp~}:.cFt5_yGSfkY N +`˘nȵKa|;ja*%ח*ۡug?ZbNu!0bߘm.UM_DڲkBKrA,*ieGM0rٞ g(H7^}4 0jQ/7" 1^ r~[G:0#+?݇#4%%`R^?"1rwHM$!)k9T)@^;BiTn&MNig3 +-pڳdRҵ Fᯀ{BVX@·ʧCBC=:ԈOPSV@]޴"^rۋN䵚-yY+q*.Eu%E94ϻ)/4}\YGY[eK P8FK:"k/(n٭2NdGs$02oA6'F0b$+Q1m<xi0Y{7ߖF\z6r;{Ő^#8ɮ&Yv [CcDdcTي]lԚXgwU%;*WSn-JM!V|X<N~5`U8%=7̫/^}}쭦NeRt|ljָz^[}>iFPsí35SѫhS锵z''!X-GPrɋn8XD;{OPI Yđ lnYAxcl1 |ɍX~,\m7>5MI<|I[}7H >UFOA9|&[٣լοh!m+}%BbLzd3V.J\E#K}צs_ "w}\ pw!KFI{b9m'#۲%op6C+2@[$5tF`LW%Cm}E{l&! D,C9 0Uz3n#PQ*T_ Vلҥ wh+l0y&:x H~<)HyGcs,_QripQX eW&9qtu>  _1sys :`B_]q+'OIw0}YnSv%*܊ʽ0 D'@m= |~6ce]wd{Ehs=yK&&7ʷi]'{j]pn\e';<'8Ϛ>\E71.=aBi8jsKgl?46:%^Uh)1h5"v\&ACjLs MFMl̛F[Y>hѱ$*^2bv{n'ms̓l͞|!Ɍ aT[;T]J!3#>/2=n)^oo+'<8) qVM6dVWRք32a*2!āf<(e.8u*Zq4#8"Ҟf%vfyh˲U?//ݠxO׻.lߔ>XF!s#`g0ĺG&nJaCnsj斁0 2֪t&5=ݶpX= 3!;;Vȕ,ʉ-2\'MziD-W{<0b }V8SyTUc. w8LuqqrIQAa rhd~"{0F&{ gT䵇ϐv%mD=6]މoI_Xu! ?;Igl-[W0it#bm>'k~뀹B -g{E4`5c 2N 6^L IP5SYm)Bkz,Yb?GPv2C<J^Gc_:LJMK  0 U5(c?̓y*loOֶ_|3O>bYF'~yp޲po A:=`y=QADUS"VgD/܂lG ު{cmy ݵ?؝Sg3K 7mxgJOQTTtu>.jI)$Ŷ˞Vz1᳆ɌnIvp?ʼn0`s'UN0\HN[,"4MicFwSmtw*KvC7Я1-r;[e+yxJdwO︳CT47.5SݢJ#WY˃6aOKUT%)=f1р2pJ*y8QsIuKv~!.`B2GhS(<&aH~23?߷߼V?D\G=6 ne/+)'im0+~X<{8x\͢DP)VK1iIs.r.%x*"sOsm'{F#%-op6 CD+x 3L2-?`9~yX8q& KǘL==1 *l^;s P3BIZwg㠧xF?ro9Q)~'#emp/ET.8gw ۔ C{Oɯ`.+şd&Ɓ%7P1&['b>ZJqUdb*/ dxAZB;d.qNLHQuO#tBJ.$Rfm w^_V+UD(:ض|q\[f$ bxU)\u8JـrV!#ZhR>=}]Ei.>tR{+7Fڹ;caZ-4TOmQr 4hB;; HBXSoTELbc戥@7) (8Zk% ݞ^;P0L'2D˙* j@a;5Z0{zSpa?QhP6Zy7*(mX$I1@k@3Y_D8j!Mhc>X "[a[[Qs3rQٜRX;UckmHac͡[XZ3PEfa|Z8/aҐKD'Zr@#/A$L&ez #IrZw ۪j!Ȁ9gOѲе{X$ĶbEyG-ciEUw kG%^"3tjIHH2sbVg=x.86,pҢ)#Lȅj|)o?`DoB{GXە Ըtҥs\_BtCF%Ҧm'{?EYbK>\JI5!~pFu4qc;D( ˸6VʥS:(2Nݷ9&5d-K#;0`o1- /~Y40E~-(ouhӆU7U:7N,GRpՈ~U^7h4G$^)JWMÇ2<{F@Y /7|1fI'zd|P'i"K UONmV ߊoRYk@rD,}xT;i9l-+ I$z;|2@nh;q˟B})ÖH柈<;P iƟ+=i{i9=*383&)ݐMѲ2ߙ~4hC0!vuDD혌3+խUUI YhT5ɨKiaR;>~gv[Uu\\fƩ]Q XKt)vO#ʂ"OFd`75, ̤w/ 8ۑڦg$mXhGD+g%Nc@`> @=TR` @/AsclLmpP<4sB˙$rяEF:Wl!Y-A>_<5[)LlpƇJQu A7`-dRB_NVW7mo\I-*,Zi 2< ބSAkH%t%fH^󝧮mON0q[?|LQۯ܀ qx`@x4S6{ >NʰU&\u&:z|8DpL@yRkITk#X(=FLjbZgfhx ;,R*W|m8չ^AX <V8cUѽ i,G{]A3+5-Y;l@W[c T%8J G9?k:j$6GՎUͽD*gI_y3H;K$z",,޿n8U{FQ&]~] JʘB9&J+:W HgElVRbH/S0c"w695hQYc؏ᾨL6SĦÒӄ[NӜʳo]'U uՂ7 ֐KL0WXW|6׊L ќSN$k,˪dXC{DhhτĈ1ȏMk74 n]" c<#Xyj,d!iE"ymV" p荤!w~P{,sge:GBjd-F$f:ڬ`lX) `Ʀ9d0zLҠW(z;SR=^@JA-ZGƂ>m eLL{zۓS|~ߙ~ҾK3n^2eـxb v,5~HI\"VFy- sU(3Z6M c%*`fJrI/QC&] h ar?{`F)GqsD@r4UV}ĸ{.FR{kdLlE}uߵ$w^~Nlw=i!' TviOe+Z! /}^ab0_ \q7 ~qnZc74~@'|u/W{k@ e)Ι Ԙ0©a1bS7PmUl_hD9R9$m!%y>o4(iV^bӖC 9t}+8MD ()hHKG{'}J 6%?.;bGGio\捪ݷm7@,>t(QiC7gjǾ-Jc 9q=aVb' T3X'b%dΡ ˰>@Fġ/4(? aVojۇ_P.@+GO[#lZc%|t?&V#J?9,.v{0{_J ptLٞ5T8V t7f3̐yAUa P#rjoq!@>/*>%n_|eh a49/R+!6{ !}ʹ=<3v U]l>HS!'enUJ.GrR{Ҥsݣmb{{zE>+{̊69*|p6 }H,?pNx*%`/B?mŬ3\H:U6Ar/]W[෢ Ea%y{m9ۛl!t_/5uXη^Y2\׷7@y!Q/9&On] Mmv]pN'*pYisvGaKx+BX܋ d$MJ`+¸&Tҷ<,6:6$?ܙ~; r9Mguf:eQdhuyAN䢫C+:cǶh5Xg AKW+GPG8R ѥή~yLfoK.`:l #ӄ򟭐gT3`6yϹXˏ~Fʦ(;+)d|(RqXgenNҧ+ Z6{ 7 xW˟ho0>γ(C ٍ{a>԰dvx=uB- A/: ~2!/ZG)1' gAZFNz0xw9;Dt%\!+JFRՠaą P7o[n`H)|('2>vce׿)iD$4<Ddk9;pWL: z5 e(madBtTw8a8i14ΠH<5ìgGڣԣָI$+^E|QX`MJN>3^O=ʢasV˾^kЈBf6]&K& E=(!Jn<0ZxR<w͏!F*.~п!ŠuUAΣ /w!U"ShVx>C(4*.ܿ T k]RlLJ,Z(nw C< 7v \Uz%TTC}8yꑖxrb!-7gɰy3y'L2nPuV}"cI57!d$$a  T?) zNfg^K=)FO;`ctvIZn9ʫ $~^Tgj!T\quvm8P'0Nw7Z*3mb$"%1lna!ґݻc?:Usu u3Yi'`m2#r}4;+iX'ּDG޼G,[Q]a,]MTajλ~:`ڙŸJUJ[x41yNH.Vs N1/+8ɒj0s %ITb!ÔG ==bJۆ3n,( s%hAlX9G}}c &yu9O$Y~Tpr=# ߋofW 3^\ǑZ(p^wҶYÝp#0iv24@Li2z'dRlʿڭ%]\bs6`@$R[<Ͳ3K1݃mWj}E.&C0/JK2O*,VhX% ǶZ8EmE9ՃZtuD v[] e-)Q$=-DbI9:Vޏkmt84U_Dw_S5kw|ydetZ`KEXJU JPYz\["dWv,5n1mCHhsya%^,@=ދK'5NZy~[*)uer~EvӃ dIhe|{E^,փo>8"0"~8!$钧04WjI oX2ʮohHD=" l+uA#tqGz}4!b0dc4(^:,ނPehLQ|ݶ-3鶜Y"VRǏ,AUyj*~UQ'*$)a'\ƎmMhE;;?`N-EA4.%X{ p VV6m7qʱ.~L 2 {(KTcG=3J Ƣ4m@aOi;qYϞoZ(fV Z?[G[8{bDVa?3KlH%\cV ByЗ+@.x~QSydV#[oU ,^#cӜkZgU )cH~Jo >Ä@*C;ؙ-l9h \AAO)ǟ}uGLMSaHEBjعF6*?1. :khX`a2\.(Ҧq7aDs!taznܞme[Msra%$tR< 1!,"tݲ|r%0m'C]jbIr'oN4Q%z٨HB}ԪwFT*|XO|-)cOK@|Ԥ=l-T./i6e=[v*݂ն*3XKӅDWhq}اi G!gjciL~S"]jD̶,9a2]@{cl$ 4;"Wc*j?IW=y[F_ؾW  ?+\]vt-D+͎7A$ުŻb]hΑt\=$"K'hi?\`h/j 1/`Y|__vogoݔ۠>a^EV?MiȶO9o ~ׇ&ڲc gPTQ# А}g>ozg_u kW:]M27(h2p%b8scHG Hf֥vXqjg[rQF)wI"bԑ31\pjk?t}%28V0DFX֮40+ܛ6G帽) MC;]Ϥ5; O14CMQ*(S ӏVX\z<)# #WQ`3Хh(}Y g,ȒKC? D[f 뻵elT"ikER* 7O}yVt8}r$4{[?3 V'8}Vh,q%~'>SB:?Y^s"^rqP?`ca*nPA}I8+QMdz&2CV=F<עtV(Z?Rn3hbcoOd^OTvEƓhV8G1cdW0ޓ+O͸ 'Voܼ`ozh-c]R嘜gv6Fj|쎒 zc4#sd?۽`Ʈq 44e#uZkfۂ&c]dC33#C~/$r6;mcA^?c&{{J2!%p\:~0:Aʯ*XJAW9DڑIq cNSw}]kXD6[6< ژ S5~8^Ny-]a]R:ܛ[bq~9-]ÜLbhfC<&T9"X W7\êMID1$"L26)e ;I~)[v%@MQvυ;r-x_(=^PlO7е.0Yb?[s_q/1FðLH\KmB`Ya ;z XHE~AU>30 -euNEOg=:%lDWR?wx&.cz9ey;$ I腦5"xm29HAy;F|$43<>FW=U`Usv6B<_h0,uv(mJw0챕cZID^v5Si*rcRLڿ Vv~9iEg2q`7x!?kpobGn:Gqk\D܃NSGkpAT٬WG0z]/+ESy m w~tn1u8躁喨%,3"T055$]T2J䝫5ZueTj?]eZ }u!Ih`}F &KΘ^Eo\nu>15`|ZKͰ$BHY<}ֿg4MQC䛊'GqLxZc2L3v=C}xfkEL$R!ԯ_,Ib?w& }VATHH)<*}${9ӴTs+Xj&M /Jq3a\\> S'JK{4健m#_{d$Bi΂:\ r| ֎7Ն0@WH ׸/eU[QRNz$_Yj-'>o Ư ͜+S*S>?&aVd첂 #MV a(𹞳JK4aZ:җMyiCrڷڰnk͇Cx-m+定l  _cnBLk@ "EןW4Ğ 'ٷ$ȜTy_c uӯfR!TRe2FޱQFn'Ot_H6AwD#g_<|Iܰ kNbUG;%R7Dؙ~gَA VG"1@dI >S05_:( g6,?FaוX,*Y4? OHAG,COŏ uWį-h`է*,]-w33ȧN7of1K IATH|@F"띃L$*]-ɛ}wܼ%Y*<ݱXIRilAưR&*f}R{9K"Ǭd3(IdRPV^@Nv&%85ˊo5R{o3VsE񯼠MBJJ>H%$Hm0;+ץv2zE ŁxZK@|5 U|Xؓ l&$]c6{(!$ӆG+Ƕ/1\q BLissD2zk*x2ćecl{(M|2ѽ[gؒ_?IjF-.9 H_9J t81y8?-A[s>6 k97yYƣofU'C6J)_Ny%d*:sUNȰ !*F6 ak2Kǂt_<4/] 1'DʟZ ; *49BLI_=XbX;]>⮾~y|s;6;R}Sik?7u8qXQNj4|:Tk x (+mi٨+YX=dYp7nBDi"'pō}T[X#7bQYAb mR.B $RAyoLB2z[NXw)6͑2M6NW~gYAswg+PJMm7'EV0`虝knJ'"] lf|g-xwV4̖b?g }HmRHtP-PV9gq3Yg#>a&J(]ĕ[yRgqN?>G]4y$8%6 4oȫ'%lwX^8j8Y!=q󠅓ë WVi,7"lص=, )NY2YmTT< 0S_>;;W,/nrNٯ8W63s#߳p~XA#*k `8B^/[JۢL)2'}[yb8Dp97oNg~͚]FzAoJtHN6SSΞiZCmqkv̵VrIXI/v܎"Ƀ8R4m9i([[-e[qQ] #X1ndNml܃HbBNWv:hn J6lI>p(SIV͡A#MH2>+u!9Y7=Kݗ@Umzx 5=+SS.Pxʩ̼r3[2" Ijc.6NJt{To=~ Yw@,mգ}2֏}wtzZE+;NXٕ篾^FsJsvN1RT(HmR 2R0GJû]JIX3@֭WiJBa ӃhQgƎ]K2+v6ʀ.X$RIc_n"uKXX~,9KN> +a`5ʏ+DfJ,I[9s|H!|p+UZZd䈄Bn*'Q_2Q#cR:V;EkeؽcWHd,]9-U1̘\ɳRX"$V~g)(z1+tSGQP4 %+)jV%m'HhG:?%qDX/Q֭{g_l{N\\i Jǰh]|#G$[dH2+N]$ۈ_H!*AE> ˮ@?:ݽ.EYS7"ʕG7eKA}IGyXv?vxe@&?P49)փ~ #A12es5_}*ܓ7ՕE)(ĤYS&HDùA쉺c;>[F{+\q,TAvwU2/BJZdB)^E04zm=!Dqw"tۈ_]@[o35[M/ >c)xL粆׹5J{ hsj:'eMK.DI4 MAoT1VrZ/}>1YPmN|aƥ/n|Vdrw^lT5:\@Rt2CSVd,΄>MI wXAfz"m#U$C֛yrL3d)Z* i%Oܻ7ⶪm(Ҧ`-=HL ed|Kl5ʚ8JO"* ؐ៰KH7}vREVYBl'CMN;-v0J6Aa,'a? U3Uoj7y3ٖv 貌]9+ Q-Z"2{L5 AE BʸK#= ׆iZAməڷm3TX-64Ն۟Q)D͟Mo~wD3i;-ְswcyQOˑ@Z.nI!|ipEF1 dڰgE3E9uf7\0Y%X@:`l1k|P6p%#*0$NZ ::Q5XM!$2 ЂJ]6$B{|gYzΒvdžcc=1f p[-[d+bv9 h?KrϗS4Y޹oo8¢Xk{:Z0JHբ 078tw\0d=5O͞F}:A JL )ThmfjOv{LL-!{(NuSj$t9oiT,QzpmDH\5GQe{LxUr|uV1h&|uqr'+%?)$(5:dCW]i0ɏ ! 6]B OP.`@ylL2J]rwL%L本YZ0NTSl&&|pZHɦV^0ulyw}\I \(pB>< 4v.FHFP rr֌MLpT Dbp^Pdot4})~u&wh鴔 8I6sk S(AZEebhSeT0K-DžU]0 uJw lҗ1  w0>ݝ(jaKFNm!74)<1ÒjΧLJW$Io1Yv|GbO[Cː޴-_a侀,6!.N[LSh`LX [6E/5<5S+XGhf7{2 ۵Jvl- 'y?UNLG\w *Z &TnlڱSn2N,u׍! Ir;?_-X/5/).xE'BnؔRү˶I T9kEv똦F~zjn$ ->MeJ$Ӈ=#59GsSWfZ-NPbAr0g_qQBY=Wre))rkfͺ^i!K+sJu8r;Ci&P4:/C\fйL~Ε%/c-{_hwNxKI\t? 2ˁ&ZuSM܉Blhcqv69+N|W2M /oٶd 㹜>g!v>ĿۈQ3}- ~{c'S6E̴Vت3B~ `Fy%9.JXx 2DٰU̘B,$wG5CNRV=*F%?r`dJY#JrY}Zn;$PoRqX 胴r2@ $39`q _j7:Q$O0(5DCO7[Gmu,K8%iVN"ݝІEI.y6,ifO>ym1g]?cNI!îYER6c}J ,\b߇~P_mW@&WϏrwb '!]QuBftQN+?G|Ly^~(o!>"5f7仨1?S lt[<'ϙ)2 !ٴm>k@݂‹=E=~joOP +ôLd8`FP%'mk% G~o~=M4ռ4@8KnĽ@ǤNa;b5 >P5W3w/@s@V juprOW M.hK4(*2ŴW\ܻAcyL_r`[^ G=DO빲u?a0CV/bFb B~. V|+QAqBwni** @cHRNw>_O~BHi s#lZܚkb&¬*nNXhw`EwKIG ɁxLxk+ZDH%VuBAKeF|k=FIe࣫ p;~^լiRSy<286i=穑Ntrr6UT+x^'+a$aF|3 GzjJлP):sC%Z;*Yv%[. I{lQG8*rk>jPX0pvns+mlC3.HA@wLex*aV(2ֱ2wV{ *tg'"T`>'WzB6TjXO,e:Ty:ge!i֔*mä!ԥMdI 4\1p('t]bLI*O$a+P.&A.-zwe sٲl,2~+s70SNS!14PڳM|?\j_kN| Y %i5{Ȯ0" \m_&^ cG~%Iťa n0ԔMld2LJ8䋨wTAXwNV g/桌@EPbx@7M͙WomqPⰴWx^ӄ+?Qzu~%ݜWGʍ ľ2΀7Yڀe*ՋBhGS54Nm;6b%ܠZ #\c|?4̠;:~=c T1H wэN5/({uőp:834Ix- gB@}aKAV 5tn<]2hξl4[i0x ~"~ %1C0HslSoLzi]yq q/pA 1/tj=U/2;:WsDGANfG6˛ ܣ wG%yeρ{f`qgޭUԓѻ!$rrÿfXGW+y&ĸ{J8l:P*m,>XAő&\jbI|'D%Jog_Wn. OhAo~?d@<X850A &٭4,+GCOaDOsD4 D?}Qg鱖^cRƌp di.}1!tEt.Qܘ~lB[}|•WtՎ>a0dXa s@Wfc8"Œi<*̟K]]j=5(Qȷ2"#kWB0a9a%||EW(Ha~y UH{?`,'AN;%_D.{˻ g~ "PbUEG~K0#|O~Y맩D:;X3oA1Vй"̿#a>G9WQQ6,`]7ց&,P{EhsQAPEFCU&a'>3syʢQMRX6PވXu]:j(w`tP?Uټur vC^;8r3T C4gx(@z>!kdvrXɹd\y=h 8Tg!R 돹&>j˖h"yh95l J7>\\*UBpet_<O H/Dd5BDz&ܘJ^~iQ؏EIkr}%HFwv,=y6!nѠ$AcCPaA?0H)&[Ȱg~Rԭ%oz}-5%]J ?v䳽'WKhi~/5A)jl ˑJ ,YPYm cyvt? h4}%flS` .n$7 U~^<{'l8αYg:2T&+Oc`N b8Q\X|GbĪη/q-6ɡElpM儋ƿ[\ٱ ݢQ2hhJYu0Ů׽TN#!@G>o0w{JA 5fX[4 rΫ%yT {'ϖX*$A"xâ.f)UC͍j#gwA{{? X1<(4-&͞xfvkt׺z MvCmMޛsgJ@IȒ?TCɎh`H8놜{ᒄEsm!iWwg[z y%[Zbߓ.w:ԪpѼF8hⱺ|]#&#jc ns HPX2 ?L w03f{e}_ٌ:"O!׾úl=m[}=z0I .8?M&D퀒 9 0I_1)NayvUHc2/hG는{cg]0r\y U[mJդ '瓎F }Yka-ع{~ ]^JqDyoZ83[:1K ϶@P(FSd X>-Y&b$dsld: dk{`H&_tZC(ְ htP-0k2}8t?:…1]ݬ>a)|ʮedYť \wy!tXvvZLDKՔѻ0Yv g/֖ۥ~UiTP',/t*qCo@"D={F;H/<;Oށ4Z#:5(qAqj>5xl* .mG֙ԣjwl%#|Fcm^CRꒊ)M!$؈eԵ!c]Wk5IY  2.*P# QaфV`JKE/;a]Sɔ#Qb~]7foU$Aaz>w|C}OZ_@O)pZ@C_ / ,f#s?z:&)9_0I 1VJx!rDo(e{ H`r$rn2 :L_;!^4~c^4Y_!53)a#c'p&7\W;/ܳրwrO$pLsPS: g#9qRŒJ G9[X7=Jmzӎa9cmYo+"YERtI#WN:U#H!HuY2PU3s^:  ȱڡAG5]C44T:QP&˕e"?Fe.xEy=+V;?+pG +kr9FE%*A=g˿piDkN`uy6_!'®>BpU\wd #jq E^5Kí/0N3b+@3(`p/KYBGO)z)W+#`?ծ`z3.<" LUo IkJk#+L.4 92qf>]h۱]V"3Ԉݷ} |څ |ҟAʐ4xUyftL,[4ŢW\06dC U6x:D- Ѕ޽KhaY2]GеD΀a DM{P(-?W }`Ǫz-^16dzʏ_B&ƠxyY<{,Ј~*'*xLԱƉ 'Ȏ2 Ѯ6o(ֵX[Vi4 o K8J? VdH_}1)0g{aӉJ" _CoadKgʕXWǝrNzVFN8m/"I}H YYߘDmgOgjlOJK o8ȯ&ah~sdWx$v2INY%WG[N[I }n7u=0=%z#c"SLƼQ(m;HxLZ2RL$u_^"eļ{lV#Y`?4eGsb$&kJ(5`b? "p&&~bw^aa1{`+[%8QWI$V{1TGᣅ_( ki$O7xbQPR&H5 p@tg&n/5컴/g_|UɃS_1- Yi :[ 2(*&;PxP'_x+>,]TL+tyFl3pq>( wqF%Stu*D~%}) y # xh?&3?IuĽ_̀HUKԔ6fKzJLJ׀˘14ecc,†֛ؤzJ.fᨠvVNiE5휽+(|ywGe'&}4Bgnm{<Z^3SKm 23ltFP) MW #ƴ|)'s̒᲼iFg7|0 iOWru1NAaq"ێ9M-OVM"ɠL'OG=T;an]!KKmȱc!ACmgM2.*6aNv|>(ČZ|FpJI\$lځf6S~쌪Ш8g>.+;LV4N[I - r>jVB}ێ rYF_Joi堐w|ޕ 1دdk,s7̙qz 3Lš{KrسQXsOӖ7-i̓s&yH sJ{?{ _^Or.Cn4hF4B6BY"0f+אdi`?DgVIl!s'KBdo/xόǬY1"w"!UvP8MjD\A,$?cRn ^i67UV>gX8tet2(5]WQaV-zlL q2" = mi`xfC]Cy~W&#.] _g@y |LG7+(k57;;+Z/!E{p㎚Ԩ/πeJhα^#}tO o׀7"EzuRٲ *ZdNSLrbG*rYSf}UʶB^mJ&3agEI+lhi:uv~mB+X$OY Xn{6(Xݬt͕,|@W!H9#6H՞wV߮=u`b廲j,K dIiLks7X,4h6bPPOs ISaEGtM͒A?e?MEg2yw :V'H GT8oDNNAj Jͱ䎜>i87{Lr ם,U!\CJԴڪw3t]rO32GF⫊0Wr o).W _J2@R~۹'oIA(BOL:D h7qBZ,,0\uK&<xGYyl ! n+I^J9v{m_LCX'p+}kx2K&>(WP[HLX^ߍqEQXh+TT@p]B̐Z}$Jmh-?f@B _SLt 6)Q䳫UH#aEJ?\EyZ" F[M4)eGE}"_8fQ U&ϮD7 D5bYF4zxz4:5)Il#Qyw:W? NeTs$M7%I ʙ٤}>8ӀPs:yݤ$Q{A3j _/D{,˴&`X$>U>(2?˲v&P2H7rӘ7˝O$vUksÏP~f~#l`1W.w$Vt_MRGkzQj$\qCUxH[m טC1.Q(D7:VgӽSkk\~;yX˦*#]PqREg}ՁUxO5k⣮y աs1OFYIscBt"4YE4 %L?tħzJ"0c`C'Ɯe$|֛_RN0p'^-%s5g`/FAw0oV:H|m*_$eѨPH]K#VIJ.HPq|/wk3̛̀Qc b\@ l[("+"MFj˿=1#|n?3ps$邒zXS1eBiierѧp 4))!MW*NϹ]y,۵5y:Yt+'hRk{8ʘ́$k|?G o#xܲaQee`c!p5ؕ ~T*+gRw X ; wq]n@* a:|to|kpj<J?Z\t K8SKh8ۋ@Uw:f^÷9)'+U(.3?zmY.N̄={,ly{^TqcXD[ KQCBqln5yqCCXuMLAVlw?,Ko%lޕ04;5agu"zL= Ak-FcGZдXT R&hHuK{ﯛ3F&cR&u4ROp}ך|lDbjqBF2J~c-e.[]_I,t%rpw{qĕ_sg,a %Wi~N ֙6`&.<>du4At߰0:7Ne#J;VŁ1mxПmгfFSeJ'Q9V(aJũ]KʑE2q:O+,z^-k\6jďPPIn(2vGw }pxh,Eh0]D9#](JJ6 K~F-XAV"ma?= h׆*#<'l(97VBk*X(ibF:@/YR$}86ĀŽݮf␾oW z{꿍3!d>ʴ} GKHqLK~,oҕJ.6N+P#.e*V,mf-bv3Že3R| 5f3 {Ѓf0KݾkO}A?x@ !egԝ$!){a RB22tr 9rU ?7t p)r,`3Ù:uU=kϾ<[EvT`L4 ;_ꨩ钜KLͽTk늝8.N{lW[HCiǴv$cWz cg3X-,0 y_&.17g?ד1͞X >4w.6|M7x]Xa=k7]z B,v/ю1q{ջ!/W9z (ۧž kl "CS*uiF~d3 n&\Zn0o韚9@IL9(YD|zNW3>vBt)#agn|5ݴ EQ~MAw1ٱa6}Ok/=؃yϒNkEJRJ~(khi(0]+*ۢ"vRӻA/PΥ,tWXH1(l9q4Bmo|+`24]0 `>@D$uSOj*K=ځ{E\] ݎ; g6G3LN}qA%X DYb8+@'=u 4E,%dNx~mt 1Ѝu6 2G32*9/OD3 : c{=83]k9o|%8,ؒ"~ @\OkBuW.?כ%_ܖmY~3À綜qm2I`'c9,y3Y8G< 8Ji!(L퟉9ul<~)M" IPSg¾QFH+\)>lLޅfSmܔ^#+qMfS8R(㭣0³-XnA.ѩTsJ]9\ߴَ} MN|#m١VVcڱh8z{ 9EJv6εR' P9CW ܏oW%4o؈榜! -=ʡ.~DN!3ɬf* "g] z1"ދm{(J#񧬾 {lk0+0;Ϩ.Ն~Kh2 W"af&S%6 ew.v1NA?mbȧ9d* #!?L'#ӍBR43X}`AgD_1x3 Ƿ"B\h*O>s@`t̂~o$p*Pr<P mbx7b⸃M9/r؉!Ӎ]V|y`&;Y:Wzu.A};2+TvVCVF!nGVI FG T UH 7 )>+2'8.ݙ͎]!hՇq߱ӧ a5hXh7dFVlf7~Sn>\F7@LYz̢F,o>cZ\(blǁiHߟQ [|j߼tvX5fUefϷ;u4>q"1W8:u yōuς )P OoW%\{;-[D)DVֽPVS#r"*=DJ9_Gha;qQe;W$qf߁Ȇ-F(Qbc=]Xw +[4dR^rCJ|diܰlV@xyZSz(flv)*{A#k&E~SG >$.], u$1=8RH{hzC)L g;͔ꄪS!.ӑ-&MrcpbtL`9.3'!Do H  ?J#vf~%f5r d-< Yݍؖ5B0o!<؜ഊK~|U6s]>#x] T]e9-K"WUm{mD<6UI&ԩ4I {oGLg ˼g"UAmU40K]~c&w5Շ|̯.OCi]'L5)@~؝08==:̚,sUW]imf[I.bƏ%BoIߙ|qKWjE?%2Ct /v`Vvd|՛bI▶ 9dX@T#?_E( ƙjUn&NfVsjcAhn0)^'›Uu A +M}UQ0jXΛ8,}dLi%Pۦ\P MS$եDtC}&dYv\ CŌrhBcF-)]gjn[X%m MD44{˳Oe;\ |q>OI5|ю1y3;0;p/}34BD4#^}M *+cZ@X;8]]s"Jr(^͗p(pʰBZE԰G#C?氒N52\p=؜h`s)7I׌VbTH9er(ydWwZދe-, ?In|F$uT/zzLtt\xf"1m}G}|q7f}~hRez8 ֵS |'!$mg5}*6Qg^I6_Rsk>fj mQ}"((Q&U@4mR ER<=teerm$$ׅT.ʔYݵehe"nvld}A^b?"("ҝk)Ѐ[ov#$ANPkpX"g`_I.xaЧG|w\]UslY ?d z]6qP߉{GDzg; `.h*,iV#"\ac5>}ż$f~fD=l? g L+M恁;\g^i;,ZPFboq! L;ՈNMGiЋ.* mwX?)>O-x~ip[DaETa:rvV:no.nHϕ3WѠ%-9$w4[z.64ݧMKix5NcM&cDP_P\l#PBQI%8ш/ 17ZZH}^•^'r2COkkϤ6W2=#`o&E `7Wr(uB irÿZ opD4\:D%(-K9 ";b-@,8 -3Hmؽ5˻_Cr1X\J^)uk1 #+({$>q"1R&KK*,p>YJBXy۽}?\o$J|`ǚlm/%/˖tk]GSz  ` } ;aP ֏fcDL˭LcEOjW]s}"ۯջOX=Rddx,V*jV/T4^8ޣQr(KwS:Ge嚀Mr0N/7 |t;R{7jͨ> wS5 wnH~3#_7FWgP!X 'Y#ڭN]yn<=Cd%2{\vE"פàޙw,qP-PqYYmX^ھSo9δ\\igiOoDN*;8BL<,29*l&H M?T縶\>ɍ7`Қ4őn2oA<\sXW0U aqʦDe#KHQmfd2dctMi.Rq[&Ȏ]~We ȇaPEJ$Y.kOGb4CxwCtGJfPw}-b3f~|-g(c~w6\%@HлL=}:K߇ަzHMRT9b6⇳vS>HpU&[Gn]ŏC7\w$ۆBCWs0whX! P|qY}]H&xG!Q:ҽe=̲M_ȟ5Do"D4kOP֠~Vb4M>{yuH,.u%v.!QV%ʃ -Qv3vA֚bO]2'y{B,KnpV뗖D`"W4DB}W vvH-%1:VD&sW' AA̧(awpvSJeb￁n&lci| CT6vgt(eHKWHHd"fL~VL2cZt2DWf&&eMseVSJ]&H>"QaI$\zFm%9 ii.xPPׇp 3E#N5x$=ǡsKNu"5H"knҘ !қ2|u*Gboie -]w4rQWx04ёXA/ıUzJ}LMoxS4 KCNE_ȶv~q(_’w8OyWW"s(3Ax ,]f4v㛀ʾǦo~}Tr RO}GVZ'9DHv}je%G=5]&lțhX^\9pP?4! 0?0kM) DEG8@TU70\*? p_x# *!mLs|٭v<~<xUsQWE/En>J/]&ZD(U=fc:]Ya^OُX򌿲Q8XdK#-wU$ei,ϥ0IJ.=5 -cV]1^+8q&W\qFZZooJ&  ѤgUduo-y?;PXrP%Cp%&+E#rNW :4 ˪Q&qOQKa(>bܵo)};(`rF ,1NGaTݥnITjF\4~Q̧RШڔsOso[l2,XQCLP0.4>άt4J N5duUWiv秜+X@X"=AQNgzg{PP(Z$\Hsqz_]\"qz8oqN.$~lŭ6LKw 3[(a4_OQb(61OTnIb댶Ly;ޠ3O_PGgM6\y-R Dv$LόbwnJL+~&h5n!CW` Ҟyht*ʙ<#.Zlw*ֲᶝM׸Mmu%2De}qH8!c(9V ZOep[L[_,i i+bie%!;EtYmDCoXIm*[[څ4]SP*bJݡ!z*oLPlBX<%=0n˗$Y0r,Wup,.Kn|W Rykۭx/f=S1s9v~n)F qԶP9X  ԙQҤpY׻rQy"L]"᭽/uftahbK?/ jZ$J(#G`ARM ,TF7LYÝtBd~6Bqpf:JaZP{WU9p~[CWڍ@U T2\ͤC4 K WS ?%2P":g4F+iuA\e77EuFs_DKt`cT?w' RB( |>sh|(~%QPȤ  }዆Ԛ0K.H1v:oa)w+h^4m _;AB<^hVexBe(Βգ2&Z4F*5sL{5_k&弑>=-JzE3߻ SP9+ؒMkB:OE}deϘ&7胴=<* a{TNYT퍊0d2-徂gWS'd%+y IDݔOOd%2'"i9mmU~2`UHH'{1X%Lvyq>*y[qØS^Wo@57+hw钘e[4< eGCs|g-Ϋ,'67~܍eA;_v k^djz9xIa*Vf&=-C :Si oFja1 {Q\oAœ֓ 5gL].˿}/ «ĪU҇Wl_~2@**ql?j&fQ7H-_w_;;"•<5UxWM[̿\_l q*7_hCɠ [ 5|<,*}Ny9 7I\c ?BSOz#C  7;{㢏xˬ.Z=! ^݋謂MMAg``3-DZ< XSB?|+ .%uM{=+N%G6@ 5vW]m>#G `4U b % ]#W $@zr GDk91x&S|J@\01@RU~{fxǝ>C+mc&Ȭ뽴#K Zo>mؤ&1>ׄS8DW@i~x;$^$ 5֓{BјI= IlP&1#=ZkS'g~[i'v`,uu^F,5g.|S)#% 3|j5zS\qd5=ćD*&Fdf,ڇʎa$bYXXhjHp6s[?0da9xDD XMEKT`Wڤ7Y\~\6Dt0MvPͣ쯦T:'Xy COv_0U᠌5#/tdiq =9L_V85=0F>YrHfB\\,BJvދiѐ!z78jl6\\ʡi Ejy'('կgw&<DT. hHЎ!r=Ӗm14,M$Lȡa\mey^ 16t1=3e`|@ |o]e"+n M#zHJeF &xp;tXuxO5">bDJRM.dռd4ć2hq(JPǞ7a[z |.+Bl?Jqf{lVy\IiR(t "86i2 w@K "Tb C-Ex׽3y*T'@nIIWmqiӜ7F4b:9sٞ:DS)>kS;B n鬹->!A'ղ) c EfpuW'yVgNkR1 J%<&/ό JA1Cqw'{Z>vQJ'KeQYc>U@YCV4r b1_T"8拥] a 2-b"H6ttAٶ}b߽ Ns=`oCA׀SoCMy\H?o)AlHR )$#c Ft fD'iM"cV̈́z9/E-SҋTYa??F5]D)zJdm2:$k{9̓,T$m 1- =,E$8PK=0jpkvb‚_%XC$eܭ0iFNa] Rh5KsA H_ە:~(w(!E*fsŰ7<,*pB J$J3Te鰘]P3LD9 <׷Oʟ~h8jCh+{XO/PW=Y!vX(X=D{{LEb^+ tkGE eJFAwX8n@~Vy =d!1ɪ/?;XT7AancRq6ڦ11qgcM#y ?j m 2Xcl*'*0FS0Jj ԙ .a@9dzgQiϵa Ui(R0e>bt&ՒM[m1o|CQ{#W_ k=PCYx\;e"0ķçJ*L׭4!N .Ѥޒ?arqo{٘#.9;ܺ]W:up^ Ц[ԣ8j 0،QT i9.ǑDzu&lŵݙo/Ljŧo!|^U#HtIӸ9hWvvxs"ij4!|6F4p͆!vEd/j4RόC[NNφsԔ7;eȥ(O:kRJሩ/3H?nnP ,i",~@S晶; C(JC5R3P|JCr}(:"X_gchIF ;xq9at]u`&,y?q#|*q*+77rRu.ZHg7Q#t+ .ʠv+sk!ࡓnϮBҙϗu,{tO%_|ߩsSrS8,V(-ƼLv:ϺIv]CB z$ԋ.R޽Z"8WUzd|6/zLR"r< ObS\Ŋ&PSO&&5p'3m1=T:e+ x4`sͶ*3`e2<**cQ>HE2#St`KcdQ RTnTXLϖliRA`f8sL +Z>* ɷA\HP=Ow/Otն3(Ӂ;w+ cdBⴗ#agp^ DU$qJ_ Cf|x+=<N ʕ=RL?f hv̽3,LngͱcUt `[sUDYv>ѭ4W+,[..^½F@eQ8M}2v0^ƣYpb 2xzU3bh}9OhfHZpu^%3N,L_FOXh S>kK^KGb #x (c79y8lt%8޴*'27F(T%("!r)N q[z ېIp&bf7Tu@!p{J[J*Ro@[@*+j:͑Mq4Px \b}r)jwr"8#b1 XWG ci:P4QE(针3MR}C<GRzfhj q8:RnJ2L^p5zBIg${CD^c$&oz0)}cVw*#&v_]Nƨ}TӤݸu4IUVo4/L*!'5*:vo 6DӉO"QIm&"@D^C.oM7<%$美-6j&N^Q-(d_U`Z'KTLKf$. ]T9ܘ~V[|A?"={1.Xeo'ִ1+enSՍ籤Gp*,6Kܖ:p+!~c.7"ʍ] N6IX!/Y]bt$v TMj|],8c齵=T C@CYc mk6p1F"CNU눿o6A {v|妪 fnUd[S&d퐏*!Թnk`S墚>c~S6[+y+@*PZK!5r\%e(ۉ+368SXP:-^IN[q  aQf!~0,0髜-ߊDug5`0m6ͽ `+tsG:F1FV:/|^&r_]㭜 o d}J/o{h9Vًau& TM ƶKPW ؚ-H+g/Y{QP_E*kd.E@A iB[QɞR=^R`~}.*T&42f Yc'=M*l?IhŦf 0fHb.LT\,4{>.60eY~3u)8PRmCyuo0 b{8f1@}ڑCO|K84@ F~hٕ(LǼ("Cf%QHcM%8nԓ~0>'iEIcqRaŞ%ִ]r)sYemn[d7 M$?|]^ QvAQV "MEf#-\&{XluN1k(IocAT"V( bJI_ qP:^꽦aJX#zo> ´CGA4ݳPftigO;ɔjG閸ʮ9L]rr1rG]i+4hMH٫(1Ԁ|sMk P]Dȇ x1P@wtK+Zz^?sM0ڟ\^[k8EQ]ߵF-HnFG¹6BozI$̻=F:q1 ]\v2! eӈX**s7.)cO8w.ϕJ؜}#w ?mRݨ2G9dA׬˅ րɭhP#Θz;_>%Qs2Qؾ%7c4I1@T\TN_ܱkkH*Z1.cRv1cv:4+m{h&uq3Es-.EqrgK1Q{T2P)f坸 KiK]E3LP=/ʨN@I@Q_|S-~cH:.pq *9kA!w-IYvvDDkgKuGZ4Z{IVVyQ*VPr+0DIh8n!L?o5i(lj r]ӱjζ#j ᦟ1i1r፻/"KR짮?׻Nڄ0׼R ܝLvY@@omK- 3U=0%P9rڟawjUXtM@29Dkt髇mMGgGryйmy'U0:^dFr*fR$3KeG9:-gt۹ɑ;AՋlQ{8GWJ3.`3e"-$v!+R~:k9Q' +F3O*nņQP6y܌/BH "sm)kGP‘c Ĝ{QUG0W@E|S;tS0l=fM5_Vw]Z3[P/"nnvV"ly~dnn' Ro۲<R7buևӃ}Xmk.í7!`d[7&qP2vϒZWU&lYS x+5+@ctd౗=pL+i.͜ԕd,:AqaYrY&N@z(w}/mYGL|W՟>B^mzoXEB$\gz߳v!8NW1R]Yn`}ѝCK_c(,?##Pr'֮{gmAqq; ,/L}jO =DLD(ņ7:Z<;vΨ QsȗLUx!ᘃ| Rق@4R' 뫞gvh_pg [ U뗂ObdY`a.3)t6:ÅG= Wh%ZD diMp4BrSs]8щv~9}ACo]!S} ː|\b,Q\7y_^}v*2h#+nM޴= Iˮrǫۤ$,Mp[f;MYQ$ěJ:lCMPISm6(qT?3(YFQc#M2/?h#5j)]<|9آƜAXyLl :m)? @ּO:eimhًEa*k~Z- pPf!tH;ֺ[w)J^'ճ:,) ,nopuyP4o'^]B2 {p48wE#G}d6S?3YFdޅwBɺI;X?Fȇ8l 8S [Dߐ 6P{:jخ$N3I'r[Eb#JO <4Ъ7ޖ 7, 2:wlEJ0.%q$(4^l,),b 6:f{hRe!?\\cf6$I]Oi 4P$<:z'c[ ţ3fxodM1ې|U60{ 'tĕ%,\Y4d_'3}tGřS A&4}\/ K0e:Z% y甛)^46/Oqr˿7i_5|edw8 i*lzBz 8Ȉa,@* ݲP9>#VӌƓu LMsK!vJ•BG$3UˋRpDP-aƽr:d4;xCM)Fky37Y'he~s_,璞,H8@7+1_֢6ܝ㏀x؜ b8a$*8p,^"Rз6Zr>t c$?ϥ 럏In.',e% 29 Db*{-FqVXbb:bQG@+yZǿںV5at/i2ٟ MA"ЇcLۻP3m")4O\IB]m4}2w1rL%D)fEwjL^ :!9SA0_2b,>uxS?WK[_48S$AKJ)h6ǣh !GP ߙ:(<#MظFHc\%4J|#ӅDq)0&&Sܞ/zzB ])<"té^Wz nN->C`7~wrۃG{c&L?<6ۗ?3%_OH3hD{DKȫ*]an4IfڭkuYtbF]фLb-nr[d#Hzj+R6zR-vg{lsE}"l"kZ^p+)H/`WglDճ'>( P:< o\mrxn^dH5Gda}|F&GEeSq}2Ԏfw@~k8"yT+gٶR(Ͷs6؊GQWʍS> l3 ߞ_l@zi[ǁ|v'ǫ<3ۆ4SԤ,ї݈hY@ j`Uu,ŤHGoε4,DLFr c]=H7=lW~E*4+ eynxr'GLlC+'i|v,-0\nPYY[KukcZpQw#qfT`0[?(r~0;Ţ1Q}mP`blw MՐӂYI{NL['Kcn~Z͹oMjyy (t렡Y}5B5#Fn8CAC_\Z~}δS4<"X-yc975n̜9 +^Q7#V{9:wS$Bq^'g5~4PeKU 'H v\bwHvhFe" ?AN yA)5PG [+S#h Dg Acc'j\>tz@jUU:xeLV4kBW94~!shL}-lDlѲK%fi (K0sƂ7p7yYcO:/(orrmm7}[A74o J`6!|}(Y^N(+GP@MdD,I(Wz coӒP<BJib9V_p9x WvPUa^ַE9/aCeXΦ7!u6ev ! a1?Z8VU*3}vb.R1u0HGTb;Aޝ0]t-ӓ ߻Iy#IXb aI}o %Wcn&1Ff0 -  .rˈ~9ϱ)j1ˆ2zuL'pl_~G_0ms˄P ڣtt>!gE" sskE5 #=J-t[O%Wo$$KXv[86=>M)*L[L[I~lNy.l}/w7>îIや%ʁP|1ḻ9r!%bS: >g*DS\V0l:DĒh"ҾYQ;rտȃ!ҠJb9WeZT -O=cc4ji7Z;w6R+> O%il b@" u0ÙbȰ@ꪀ̷h MEA B-M}27@!9Q}3Kv\gPr&_)2mCg| * \qWt @VM|ƺAhrqrlFmy0Z8|~BȧSd3u {.|z{Mr:|·8y2Z ~V9G=* LdZ ix|@"_0rكIJ 5P\ ^cM/k Or=}SZN8gh+Ln@];8:[he̊l89@ +GXb"ƌ 8%TڱOm~';xE<^wq{-q1rAx}n(lݬu<|{dV=x=u:Ҫ zߎI\ & sXn( F"3w牺 Si`׆kh6:Aa1:u!ۖzّ*ϼyHO oүHLx%¥cĐ7 vt2 q0(=",ŋՎZM+ G O $[uHtqm*mX1SsF*C#VuT`Qӟ jKL.[Nmyȏ^]"HlH (kdl!60XRQd:ӪYzD`HS{k}<9 .j 樦yeTXPBێ,j讼$堟!Iݝ7FAAᕝ] !Le@+e: ɣJIj3~Jjocۋ3+W;:޽뎉͑8mis3iwM.;?n1Ԣ܁s>}>RqCRm'm9[He:ۛo$jm/]CqX0*5)W!" öf;XgqB i1A:#WC= MQ]Ӿڷ|{C 0 j#[/[rk ^trw`3(a7{D̐.s` W0kbGZVUm^[JH ٧av­pUI֊"E<ǎ&rFiA$waPEfHeսl$ (PqsqNM^{b*V' W TZͫܩrLc#̨,KؤU-%O893{@W~떆?)}qE0v1% Қe>#Cj3yvaTr/Eׄ5ev:216>܈瑬LchZJmEk ;T/v>o[l@45>dd߷OH:N ٵAZ_I\v㬳ֶAHE!w_/rdƉ@nxcUƬ#@=~ZKMU֕ m0>CEv#HR@@49Z>@%пgy>5G.\IvMn㻞C'8|ԧqeԮtߊ.(H@϶$V=)p5zJgz&У`PKFWy;"5NE;m4zrXjldȀl>ut^VxWR>pY]qsMLqm"ALDJsW.xtVjm.ׄ&zچHP=Z'G6Yvcj-(6kfxr#un=s`}l1*Pe`W]G5{WOB:i2L' 2SV{M:~2is_6_)8ꄂ0c#z A )i;0b[ڐZ!Jp?43jҩ4?kϲI%O|}%x,#@ֽ] ϳQ ~(<}0ri}~b1dZ|1IQ;av*Q;v53{^9*p9"X:ꠍ e=#TL=3rEni9Dz0R3B V?LfI{ޱQ;{N ϏSr^B^RnJ5EwԢݴ+te܃J^Тɋz ÿY2oG%'{]Ty- t !7dH׻l0<)vĊ3wkN^>"l$su|k;9KjiU6/%^hΐF(8tE|; űKED\ؾeυ6֒RD?d0~٤Ͼܻ$_ܲne*=ϼR +ن :<?D7ZV \fs?$~=N]&?WZD"y%[@Tv߶/蓾+D&*ƨtWb0)Ewm? TU͖1@^子w[@ /o wiV:laai&y$ T#kX"+}H!_MFN&5zܨ2٘E+;7A;<ƾ~:{Rh^>v7ӇM2@ ckO(F~-{5:J~7mcWG4ӵK?6SMcGaԆR <뇿]d}Z]#5`1_JoZHu`*{l:Ũݗ@KB(Bn?ckWlo6EK-UshDm@1E>Ng N?IКO|7 ZEDeFCid82.#p=xbeʶ]~N?/`ʊ#t8O")&v"0踹`Y\Ħ)rO:72 |f3C^C=pF k+ER"Qhnx )mύNdgev7a2u@'ĥ- 9B,@Lv(} . s^3uݓ؊!_,NU; RWX/hżJG$%}iZT.gG̀/x$$!poFߧ @i]/ ƌI~8oxwO<:;bQ8Rj"a.qK|e×:ז }\rm-Չ{R.J6lYEmwS^@aSv0TڙݺvG4%Vܙ͊ 22C&/5QkSُf "顳 )zԡL8PaĄU3cTz7sxɿx&IT2n̹j lS,/%jxnS1Qnjr$z}Bܽ~ v=$ψ d/Nfw7W\q%j6`)g/JAsNVcLP%ěPGSobZz@D#.h6y 2G*sTBOa3fs 8J\k^.4?z.Yٲ`S/C[ʙ:L8[m;ny]?P.d@I{_htY_@۾X"_/^Pgϋ/@v`fUY73;;y^7ifѦto\RRt'Ek`C=;!#곉B5Ҁr5R8 1GlCPHH3?=vD̟Z顣cTǴYZ*F:)*7 f\ax1mrn3-܆T-,8Jh {^cڡFK`jD :Ժ F0&!jT_tB)gLŃ- |oUad% t+W'ZҞ$r.^*; cެ&H{.~{= cvx q cNNYGAgZc_粦3%<%􅺗!_+#EM i`N%9힏UCNp4Gծ(pEqdǛqs])U\69."J Bpt-el^@C&eVT[~*Co@ v (GG vMOS4i5:M_`u`߁N_77i!n0IbBY،oL_R(opX0"uNzTl B*C YHSWk8I9Exʚ1X]Pi nrKNg?RB5k?a[K#'@O> J(WLe^wrP;z4jPG2^p}Nc?N2{':]! ['%&j+9 fZoYODd8|%^1Vֺee b#tbtԳK /ƚˢ7r&:E6NVjWꌲ5RRe&kYQgb!R {W?hmuʡNNC79? _,Bx5Pv{]s(m]?Pl2ȬяxmlC2E[tP /5Ѷh.Pe-pW kI)L T$M`Վd-/hQKl9AO%֬TQY0-?~ Lc R=gA^gSq6*FLɉ`n6| Glz y'JBpyγa]6LH:d3ƞP样eeCntq^K toxWip~3 YjWA1 3s-K/OvһB BKGX w$7?2_z ;S;"@ϓ}0fBf##FyUM/ {яm2 (dvɺrb"{dON0h1RnhH1GWsa锺)㒷""R@%{h6%rMݱ) ׯGn|$Yhƥ'7P1!9++×iΉ%qlIRYb]IQNs56Dy_TIЧી_i){{9|隢{=+\ᐼHDŔk̃$ IUkCF\gZǴw WʡvG8Tީ2"Q WYQ&ƚ/9/bY݀!jBlK7ĽQZ#~sW>?EGpj?*ڳ6bqUqlP tzgoٌS-}1K hG֌pDRf/9D}U\[jFgȷA4'v~ J+w-x5ZNaɨ*{:tM\7l`>i߼o~p8.8/H:^NH gg|DL!*o:QRדct1섒MҌnY*Rk//@1[@zl R\l8]ٍ(T[ڴCJXAՄ_yBw:Ly\ʤ[I+ k |?ڴ\ 8S_Цeٮ{o II6V}E+6@#qZ+pӡO߽HG\VU:$bM*x" -\t=^c5?$Y'MJr}am&GXԺW[B8L1'*-R^`%I[F>>I8B;NfEf+\NS,IS3i22hw-!#~NQ[$r4*/{ٕ⎻ZBUiBQt!E9=^aOߞWxqb2X wi1Ő?_ nZޥ*ƊʳOطdyWL4a©AQ.ifhW“a0ن,{$ݖJ%%ӥ\ž6UunOc胒d湧Id]H,֯k0ұ;{N$"F9sT#Q9>wˤ5УzW2*ڮ'V^tډ~!gvՂ 4Z_@S9 g8b6/,IM[{%~8,ҥxVo+F ^l];VɒFV 6`2ڳ}dp]}eT{imP5@ƙ+A;!|!h~  cG#u*Aը"C^k o;$)f}€ / Qt],Ȋ9:-,Ձqt{n*iZ>U.ˠFoƄt,r"z'Nm $E;188!}nTݽ继HXdCd߳hLv xн%?Y'1Ua,$ ?VKss[=Al>Adܑt*a}1-ؕ㸤yÐ>؋k-w`[7amQiz΄Բ?+b 4&J|}ٴRNV1 (qw_[_Uf1gG5ix8ոM1֛)OO,5<]Q J]=S>Xy&1$N,Ɗö@_Q ]B_tq _)8ls95~/(nTH*µ=0Ŀ:rtH ߳N#C8BHJ6FyR z9b91VmwpcU"*b2!kԥ ]ΧD9JCE%ȧcWqUB4,w85}cN-d3}q AQ(tEYhpp Pt`M~_]G܂B:wNNXz0Άh®)L2]Z³6ˁiо UccEq[vYdo0K@m 'c)"bdafY0}w+E囈'qǜOCNqBT}9obB_m^AMzjzZׅ0P~p> R|ŧVjgn424y{0# %,`ssi*i[ ̷ZJE:`(#CP5S~lٮh):R8pI/댠s^^dů|=q)̨=i;e;FͼG!vBQ->]IȫB~ 3nFv4|0pa^Nėos6[|]}8r%O.Cڃn d^ɸ}"2YLNx.!<|{XD\E##v|BTIٳ<%呾>+G L.;c[bfLUi[ eHtgX+s1c9p1rPAЦ S:s<7RT屼@#AF-H\iq?un=rw5֝Z< % tl#W@.YV&$Lw @VUcKh5L\";u*d>Ef_(UO2Q?ں9M[t#ӏj$#('b # 8ﻎVYQns9 Y;.nԂLcfH0w+hA mGAz DmAUCJpSOk5+wX3 9֪OUicDzKwZo,1@ %Ox*" ^¾]3<u@ 0З'!((a2p}R#Ml1F\ٕ oiThuUa\XTa]Nj ēgJp,4xgR'JYӘG܏ tArT1n`;|V2j3@S(jťf]c\lŀl#P|`2e"!r.#~C2t Uz} ffkΉ\cgsCb26dAKl GSeE{G sܰʪFYW;S IUp$TT]us|#nHzMaj|ƢDx/F<}ܸE%S:pp߬.prv!gKRMH$u<'džm{-!T/gK[aW=XhqꂰuJ)E6[hE=NC\B4 8';OH%NjRo\ȻE#2i[ ̆>I|,w\]۪OʛyjiVLV [ٓ(+NV8&ЉgʃIVt@H%!lldU]^+.c"6rL,F*ڒuY{Ae\qn3|Dm^vSP~2m:b>) \Ft ejkd/6(cyn+sLyC*?b-JtѻJ*bnQD.=TĮsz r[z$WrqT<i i"WԕYL73jM4زNw; /vesbN"-ԦOqD2ֶ9/O,)SKv)y5'K%ްCv0jHlb9wµe8숄"G̘:3@j/>)$i%\u-Ȩso- Er_IX9})ǵ+59X57-7An+K s ^i7x;K!  s `r=z 5sӰT8KxiE -Y2vteQXR+H x%B6,.OrKb !*Ro~#91Ķ(U6t^P -f]v8L9ǔvoUvǬN0c&aU;`b%o| V@#liV%kg߾x,dn[tZl(B ØJg6qs,<{>񻳬H6 7鷐d9rslt(5McE;~i֯?ʈ_UL#lr'ؕ~PO9ўi\鳕ê6;z[i]lCk9SW.M&ޒj;9\hRh"YT >[GZ;dw ŒtהV.ϯQS@rbs;ό?+&$o4@|+gX֬F凟ÌlYyҴ:4Q z>ד:iJ%{$e8~īdMEL朋WIaD{jN\d&0dqKmIM'[mxҜ4(q3:Wg@ !w`Si@bsr %;A}yg0˲_h"ZI`(9qEtߓőOSم{-Ê= WsuG665dߔ'])s;6Xa&9Y7 )۶=٭@őUA23[=$w5Qsښ JF_N07$8*.+H|x5<6= :%U|VpT2 + lUXŁZ>Uſ@c9-tWb.lL||f[|՘{xno{jZXQГYj;vK۳RgK@6]mso#F[V.3<(9" O9"J0p͋Tc$n?>c,ddzI(!n!8r,hCpb>8p$Nw08a5)s8hhUE5'[ߕf~;גX1fIݺmFkQGv,/Ο4T5~(#AUG(yٯJja@,'@]:-4ʟ@Sw`ذ<~Y(>C5bGWS71|͂+?E$ZW*n@X×eQ~~r9|Ɣ}2^L~;@0MHu;ʪ]w/~'Ӆp,ŏoUi}BR'ȧOHH6EY:^Zm J{3~ cv`zq6jR Cےd3ɫY'/^gOnIqrO>g༐Ĉ s\($wLm6gWӝyxXXA*sբ\~LjXꦄi#Z"Z e]JL;x έzfݸK|suId#@4۟S͓CN?f}]Cu^?;˗!hx8"[c? "%܌wCpR;kG- 8ۈ{޺nAo 0?K5byoGNeDEDճ7=#5DwGqzX)T=[ U{^Ji8:vb؊ֹO+3oHq#Cv3w&S:n­IvƑu:p 0Y7:%dӟ=! CuuUcq[#F:b;z[q`v`^f(ptJ\EvK }4Yӷ*[O>%eߟA" ,C"TR@XɏJxt ;ޢm11o[ϼ`l:C[%[cӥIF$Mrx7-a06umm^E6;MZ /KcjJ|QHKnnG4vsMF&6ia`M2)phogl}跫 ]JDkd|CWmkKB.sI9] w/ap 6Jg̀m9ݞuEo/ vt|c;HӨU>u3I~A3Ld!X$]+'Kk3(F10"^b-.ؗ^`ٞ*]>)L\&u|ԓc;Ocܧ.ynBD~di5ۨUS T0̹ngo~UL\+β+Ҕe<(2k1Җ^ TaXچ0Ϗ$[ue5[h'5ע;:lz X(n) %A&)!MBV&]$*gVB \w?U `WcvU{!wwљЌ/fH({T͞6WI2.G?R]m}o4}fTun6=\C{KH?-7n bTx*#ztE=3-3^+msMƎ7rn0;m3#'訐GH1FSC(K+):/U̲fm`S=ks߈8WHy O梢B=.SZZ_d_,#烃Ǭ`V_t/YF\.jd?K)cP3A`a}NVT57 S@e^Mzu?3z$*:˯%GTy|t.zC#wWIe,p dOB'N|ڔsdc0ظ$Y`0-hgT3a|ޠ]3-b [;Bւ粜ŚeyB ;& ?L7xdRN}>M0Ym r Y/$ܯ:Et>SWA/hgIlyt;Ƃ@b6=Sj1 u>Be,Ӊ{=Et ܐI\VWj,l!Kh|eF}v+oIN~DQh] ,DT])5kañRTY~˺k > _gm/,gT6KЏE8('{D2Y/hJ~B L6ڠp ZUBսu׏$+W s׌]8wZsQ'=31酱}}z}!\&=4^QErJ i@%M5șerRsntr5\ˆ$JjYrU s#KG}`]&!u$eF^481zNXcO\?1 ~͉/ST>FWr%$jYuNC c.{};T)N9\]0?툽.;?L[ [A%A k2Kt0nR~0Ic~=9![sB,eU_X9V.Qw,j ΣK}`?R[% SJ"5TV u?OۡSj4iʐez}_ ܍6v8==*w!K(@fRYCZȔ)W9gRnIؠGs+:'W"yq l) B̆pYBBVd ["+bR‡rc3]  mhzqjc&ZhK?dOe^}C #+XHX(n2ngR?G\-H)b ̽r*%u R\{Z-;VrKw6NPAqJN0@j 7ʘ6pn=G>0bl z9Ȥo4E*Kўv,]✞lP<ѦH=mbd!/$ųUϒ~-QQd4 8m`5h'ށvW1 6xסP.Snc^;pʵ*1+RjvoPhj<<icooO(*E]ĹjY!n W il\a`W[1k}ֶ H栗UsA.} N@ǎfS5Ga6*8RCjҊc'Ua^Q4gVAT:͇<^jUl#qkٔj70NYJ.`T}Ps!M|a9tH>y]Z7 K2WODͰ8.v3bz䈈JWq|ƺt I͒C2P UxY]I5̄8룼SgKAb|.bRjf8$-gNrFً{d|%ąءd8b1oe0~1#Rx(!"vMSpɎPp%؂\2,+zPkꙬ(Pf(~ԑ]} oi`!H$ pybvX3S*|ɧ˚76 ,K}mB%m&tɲq4&ǐߞ_Uq_Qzf_7;^2QKp1l}WPh-]쐯]8|$\^2_3ѕeGisnͺ/Gi=`Y#$ɤڣ>JRDd{|/Ȉ^y|uR-@]mP䠔ڱ;]7 6o_ -FlIdwώd s"#U?)Ar\dm;Nu\.zxΣ^ݳ烶~"]G) }MAowq n}VQ1We~0ޫgsk1Ux.1WErghDnRA,(CtaFtjhSKYT_͸R ni:R4{57#?]:Aul ҠԔc{bl*A_LjER+V #t{icW4Jz$2,z|-CT#]5&nLgp?u7tt`tաh,.T p\Equ*KA"7Zr'U;U-:!Z{9j{%ψ ȻENS><88 I?+Y}PP'Gwq!;#qKp9$Zh'?OCwD}Î;xUqT?;ltn^+Q\![yHDL4"1M5 ǢPR19Ͽ+RL qr?p9YSR1A`}ݖ N%R2mwc-X7Pe;+CǰͿ [2Y)|-?AZ45 zd 3 1_MTyv!evIC'YX8x.0ޮR#0HEV؏A U BcuiqjNu%㵛MR[HvYI\~f3=A, U8鶀f4u4irG5X]tVybEylih ~xx_옑HrsL73ak&#j $ &j ,pjf ˟M+4h6wj1t{:]\q^ܮ$6頮MOƌv/-"2LRp)ѓI(u&nT\kFgB`*c|ql'6Mdoљv^agP 텟AiȔ3muB vHyxp8cV#{wח1Tٷ2H^<)@oLx2|!>$j헃fmI`R sjT7khVMG>K4GKPd3u$5ABu "&u͂ieMպLefi/J$ӓ*$_`+3٭B@P^): j^:`"n'ZY<1ʵ-tb &%Ǭ. N"G$1o׿+2foJ> }K{f>f că=l漑>T13?UBT )_ƛ[{%১}#TrcJ~΄G|p s`xn?IѮYjgxP$rnvCz k: )gr<гd̉(ջaz-zq/ |%orŞx)6_ZÄp~V*1?0)`f`NA;&VnmJEUƙgvv̆ꀐmګV*B+YA80PJ12 ʫ$ak=NZ/HUr ~-K=(jن[U]u<A pf?oS)!/bC7] >pk\ h?ra c59a371RE 5 ; +h^^ ]"|hT7*'nDs K($ȓXTZD鯯d}|"o*`fM-;_q4FR/#jdpd4@;$--(%*|)ɟsn/OQN6DN /NKH^" B].}4.k yBEH YCr,BBǍ䢜eB&B${qIl:9H`UYw:UC$4]Re%q=]N5R/:kOVE\EGO.PKP]c8(`MJkb@k;~^9ub:5p渣2ɶPY^'+󶯼ai=|gA^^`4="{| 7i.QUbm2Z(#I |(>LЖfQT05蔑]e`[*[rUm>XUx.4%NMyS#S2 j?s=0#&1ޢxnR1(r%Yqǟz>npť/[Ӛl5>H6a_kZY8F1a[.AȪ*L.1,BPFJw<|>T 8E+`vxh@\VBҨanO,LЦl ƕM`{ U2"P'`"b{Mxhu׻ OZN%OapЩOnDp(*|+pup e[GbjC_|:zɹ$BvKvT&!zTFDeڙQwX`VR4m^r3րJxgC{I/5 gNvDlI_KGX˂ݼNіSE"n>0…?Ƌ^7ǝSL1?#3"o8@Ô5EQ40#/GT^nBna[uNQu_ p[ڢEZ,d֢4 (&E9 篊&"#(F$1lQgr'Dcih!&Ro϶RwyAL@ɱ hClnn)H'F?K(Jz zt$]0O%=J}ɷΥ. sIl*C:.TND)Zj~54[aHo$xʝd"P#e'J[p2%7!,N%obA1%2u%tiJ:%R8N6~)ƧS򕜧QrƝ Z=rmgTUUstN'U$tl!=6|n&VnmG| TOW 3ןXY#H%J[0H\JT)R)Ƀ`xA+m+[X65kO gHrLPZNP&":+."@F$<`|JtAy#,s&Mq@=kEҙcGDJ B血6>ʊah˭rgҿvNMVfS5?BG#6nf6VG'w fD!LL,G47wjbě灿U_X4A.} BlxP!#jAp9V:`,~.UQEle}R-^Ku;1I GeJ0}; gjJ{Yޤ&k46^?95I;Z@,>ΥKlkXO `FM6%9A6V\nNC9uyV*,2{ wĩ* `酂Q@ uڎZ0o'ܩA݈"hٰz \OPD}g=`l)='NȾ#C.Vn%':`o2y>x\q/E1 9nɬ;8YsjT=`q $e}* $-? ?Oy IP |G}b^WY*X#XD\4/VX:<}s$GS2ź`R=y/;2 Gz"1 eic:@5j>j-sfS! zEDԲcv[4?6+ŌLA}S + $bTPaڂC;.@[hI%d_]p! owC lhr7r.n^j:AZ_e@:E'Jɖn ЬbViREyBo/7UU"8Qv*åqō,?a&/m4ާH]NEےno2Ч0T81^ 1ёM:bHKZ @?˚buHitwLp@>.b= ̅~f s+8i W]uYza݂7Vt/ч6Fyey/ʪTwUଔv @%:p=%9 Vs$<:ϡKF>;z\{-MMoI:|p[5/;0cހ&̽ƷN\ X1=9-9 LK_Gly4 XtE-]x js!i}_[r;Bz/^->kY1w]K0paVjt, QWẐ\V¡::?$!N#:h̫d) =5mXi]/>mzd*EUR~P&4=N3z:ϲδ{@Of);2>扨lLYwXJ!Stc;^'9 $n+|D+\<~^ 1q Iz4)b_.JӚ#Vf r _Z>h#6J9 oeɤf l.G5|=+tC1'S0䉨f'˝H!3%lO=5#}Dr3P o#e׀u+$xZ{Y.yё\hp*SO$^*':EbZoJHr=q1Ve_N_+I|l -Y*!xC,>|:|3Q!c -W9c kYќvQ̡Ҡ=ZO!ՒПÆVg&kZnY7k]k>N!eT`z fa.ϰDS9M=yC[VXMin͘N`C`ԖWUAbfgJnL0lIYn ,PxȇؼՓBcoPS 'I: JekϞ"'M+Hcv17RXHG JI{؂pe[%!t#ҭ1Mk!T\*GJ>es~e8sO'1APڊPEegCT0Gtg(Bƙ?z;ORro{+‡';.6k}K89<4A*G~H&T,U7MI#lޙF8F_$˪I(?3 eN*F [AnfFofɄP gZ~#9I=VQH pF%><@ܲl sh8AyFai Kbfiri~2%^C DkwFn8|6{ۤutW_CUv֖E nѹ2{e}-;uJƀK=8XD}bRPgՍo z#ݗ⠋ԓn#$2 c$&>^j _ ꥾Tx>H -rPog7a΀PVH4d7pա<)pKذ VR- s cҢl_ȟd_&\w:<+Dxs d?Ff1^EFd"ȿRO?a,Ǒts_ euу^I7YȯIfb`oDht ph?!ܹL7'7DMQjCKQ-k}:4?,/lH`Òrek`8hbV3F r^g>X~/F~)r:)W#3VwfF6t#M[1?ߓÝ=yΈgqoݾd2|!Z$2h豥Uq H(Db(pWg,vZ+YI <Ub@w$obR"L jw}&繊t"Y 2Ǡ(Wm&6ntVhP?i@Q1e]8&Uedoz18=B<p awwu:L)LeMs ZM2kK^|!=a<_h;IX򘩐Y̪*(uq}eBY~h̿0vϩϒt1]Vx0Փ#A3.M?7+rB%s"Q')`gaN ,aG}EK]ݝjR#{5vI7gV/3$*%e"oj `R;gӻId$*fZFuH 7}mA _ꨥߠ^x}dsmD~ BD/UZli!A\#+0jr 0]5Uuwdt%G#琘L>DV<{ytHZxi=b/耄]dέG|"P"K#Z4"H=7%y=dx>j,zoG:U e]⎜g> P-I!E@z%0`:˓Fij'/< e {DSI{ Tjf0JYȞo]c0e׉]ঌ j!ODƱ>3iZj֡ R8s6^J,GhS2 j ='D)ٽ-\w):/%QCj-Tw,24H"7>7B:zq_F #)>.tB=Y ɞ -MX*(f}e@*5mg]in2%dqbΈp":*7.HZA^6EhZt !Z-j:'hk`9e_2_e)'$=vCni+< IE'/3S|PRFB݊]p4ᐓwV=!#త"@8ÝF"V3T?G՜ӕggD~=NזsIz\lo:27j|(2zNRx*%;p&ע581BRǜIXIJ"Ć7j\]( { 3_ pcii<;șCPQ$5 )߸-h̩7=>lg}u#4# B6Zs~ݠV3hXAhbc;Ma7@>KM68%Fvx(3B@"V`. ]pnxKPAvKl2D*KenբaF܁u.7Yoͦ ^Z}L=QMtL=h 8 ]9"ӆwzQ/ѷ,war ]{ Yf&s#yy;2\|8$t)8WKgfe¯6vG8W w!P@4P>T*OOjc}^81erKى:󦾬(Ӆ(˖_d܉i%d[[qR 4xSTiM(ES|l|OYk3~sAOt}Yx4`&4 e)' Ɛ8sX% ΈH'2]9f䠂3oX@}⥵_S_440[b,DN zŻⁿ6⥎@i71kuwS`Ǯ1NFQίUb%-(<eC,@cMeuP+KIMبߏU%( O/_/ݸjJOQr|A#B}ΏsXm$2%Ru8˽Pp&bJq*|Z3'T 1u*bЪKym'Ɨf!Zټ7? e.w C/ĬQ*5f#whڭXxKIwkdnJW7mjVeKۮ(Y]Ս-0C1h|)U,ǯ9tբ `j=WYߒ:Ro߃I^"X{<^2.ӾXiWVx)Sk!F= 1 ݹ"==U u$B}"lt&:ta4X i!LB- ]ےN4뫥 +5>GME! NԺڌ=[w{N>yMvoD!Hu+SWJ{VSP5 ,Ī@H@EJnëEO3N ]Y&# Lո{T t(.V3ʓC?t`]_6&X۲ԃ?j`@,U*Q C-SQ6}}d )' ^ҁxZSQo@VvUIaGcN|:LK*RgG#{f=K!X*= pgp xp67twwՒgw|eGF%8jʯ/Fn%baz_~]v ,/2e*G/$$}flĈNK("P eIcWeNr+k0ؖLJ<¯՝6kq~f"&SЦ 4Qf(3 g'=rdISA d}m\[&mWHc TkZ - QֲH 4YD2N [ʗfn{8ͬ4 -xI`KDh'S.--#RzI}jQ03)jL|V{Ҁht6pBl\uQ>5⇔dzXY ˓@aY>K$5 C8am?5Z21.}+/lTKVA|xa4M%½҄aªaBk觾Zt ΀x x]`ž], mcP Xw$I]vM͇\!t v1ԜAOm"=촸8kz NKGA9c{m]si?dɕzoozČ^rGq{~@)T?1h587]`0f>8Igǹv@ Arv:&)Y)ѶOi<5@_Q>S2~Dsێݑy_WK%Rſ%fs mR--V9%LjV/Ͼ RQ_x䆚g4iAh w޽_J`uSBa z>a"jZw_FIz3u2zLzUPf2!f݋OHيwgݗ`s%,4R"~㯄HA?UAY"vi[019(CwJڅ*_5zN2J&IM鈰G{-_.]^\zK/Si(mz$e6+MO@JwDw&j-^,Y6ۆF䲚;.%G7v_x m<9PkvJp_1Fd#5o)u*FxÛc5H?fd5ec4*x7mP@$e~\+P9b(oiP&MXF25Y!n.r s9߷Y͝X{*> y7xYd1ac% ]K)a"CC$8r"a!n$<0v]5% yF0XO)ou;먜,ê5z9#=K-:y\MHrj`y:9bhK- #[\ce)>cBY5DZPdԡS2ZܬC ^O^&x7l1)M,LT, 7N#_ĘL[s˔mBr&xf!<Tzs5pQ5Ƒ)'-sJVNƐ}٢ȗd"ZA8jHV}U_䡍ʼlzπ/sFӜ^*vܹK Qs C!9Hw.`&^;^$k;iZK5SD)U.<']l2Zg<h({(gQQPOT/PֿRH[*rp5xzn<Ȫh( 0k~;-8ud(La܅0,TDlq!;ܼob>8f׭lJ)~en%d(nCUʅ1Tؚ]nbT oo*S%L\<\}jҌcOt?EoǪ&ag6AnɦNL vF/J[SfmLw|JՕ[vOuSC'z01ӱ* ?Qp熱Ιalw-&6 )$YT9T`9:nhiׇ]z@-.gy}A4P*J:|E+bXĞCd.h:v0jGpQ[}#l}4z{R_}V!po+OnO#5y,ghg$w}>83 0ϰt3YҸk9*Vs#fIƗ3 v\?RVCdjEZ0]%FUL猊HΞ2F4+mHUM淯Yw,ZSߚ @g}Dw!\ڕoXv'P5Mw ͧᑽ(3p$Rzs1'Щ͍uS|WH2Vۢ4&NMrCe/paYY\ 2%~Gy{qU9hnm.޴Fy+#Zu>+!BsbS;Q YŝbO%Vu` ~N d7_+ԂD2FG ?PYϥM?q7wW'=8"xa J4gX~4"(1'p# aa'kcsEp<<;(DkȷJXZrѦ/TSǙ#qrP!pu!ɀ$ڕvb7r5G dgfB1x9qjռD0^vPn\[IZ͇ߩ~Yw@.W=9ss2ZaA˿|q{NE:?g+_"*iٞwؑMjB rIsP9rR^Jg/^ J|U"_05%x}h̓5/kV~$Vr̢ڔe.G uzv#23ly/{5LQ Έ'wq!iת StlyFB_O.-p7$~ 5Q\ﭪoDд$]& ֵ x}Rnڐ'fiREwaqs NqAtFD˷-\ :a\5^FxA3ƁJo:A0J*UDŸft#[5h%&N\*.~OB z)]|% >["/ 6 <..iV u[Zd*{l/C8[\m*ǷAxcGZL/LzqR孎O>/g5HEyd`ؿyE$M n}7/drFˉH 3>2'ݎ{C16xo>{贝B| m_>>*E YlW%ץ>omE/6yptGQ3]4`D~ؾۛGwA׼ssRNRpm:G|!?J7KyH~}FWofgY 8lŮa$ pէ&:mrPvU40ANF'd<#ՌLhv7@XYߊH*KT'r { #tCji_Mlc_lp}_੺qBݮeߞrzm3~$n6=f):r6&uvPem=V;ddbKdXП;Y ܛ>kOᩩ rO`q=ɄWw_kLI7jlH6 OM(咃7 <a,>W]@Q?yᚖ*{N\QIw/K) V ʥ:?;jk H"p씥3:עɚxIS ӕCgH? v3c<B G]8+((^IMXmSD4 !C>7XXի\Ŋ7z7 4a4P!иaD#Gd1-G :w c<#O7 r}isPjwyس ܕdkpW> `7l/0 @PЄ:DڌsxRn.g"oϮĹVLqk@Fv062 d,l ϚLM" HP*pICgfx1rbq{0Q~[`V!kjEdu5:~*tci]S~-e E-h,?/D-hiA㡹ʅ9IQIZ$/ Yi .g&m<߶Q(4pcW:PMH_(欩e֒Bg0 *֋e m@%.0I?NjrV }\ܢijr"@Nq;C:577"x{aUl`QS aa'pPK]rU"Ja1 5a#ճ[Lcܳ<1昋 >אuȲRp 2o v|{e@T6y-=LWDBLSH+kFjfbr3wiT݆5qיwl0I .UjShjlBu"GYrG'y/ԁS¬Ip@ iD]XB-ұ9̃h a|20g XRp&06E4s!BHe҂BT2T+%;cY],ن_WXH@ؤ;5 |i@ lM|x%s3$+mph  r7 q8č;Y[8F4&pޗ,YXК7Xx[TJg=C>_H4*M*ssoFFW8SXQs^RhEw,y69I?w.dF\}2wI-kuaXv;ϦSqH߃Gx|)%Gt5zTB9 o^f ^OQ`{:`4| g[%;TUDa}{2D@$o(5턏BܾBeblg,Rl2삤4d*J*ɋ@L#!y-shNjߔ2) S-=b]=C4)"mRG$І sKoKX!h fDZ⼅EL-,=*ߐ֘(t*%C@(miBrbo^/x]DT{vmمc_8VET4aWiPr>,K7mڔ:od{ʦ)('ǃ9QaZ;k.KlrFX,ߖ^ar sT@f&;Jhrhv+,fyE'1sF4hδ<8;,)3+=]URFM 2l@\AbX5.s6_qsow7et|䁯:k㈛;WȆԽeW's{$do-q1r`ux)6?>+SB*az HF}"A}ǀfќ QSjc͹@{qQul?77,aTj> UL~5 )xWOL)?q後hjj {epdxMoQ7C'w:`hh/$Wt|b.JĹdqSţ&bO7sX˔uԀ &^#9i.UM#j  frT+YtnzͺUit0~bx볃۹ a5w_'B2z—b`$ab$E<@&}ԄUkqc$߄,Glq)ě[PGn{Y͠Ṫj2§ݦ:p۲fwr 6y\wS-YԷS*h*DQDv8{;ߎ>_;ߢki]Ħ7ү 4ڤ%JJשׂ.a$.h)l;$R`affRsV}76JC$Yf GA\HS F_e}/7Mg*x wM搩W^ xkGJiauf2b= Q\8&vv go㺦1-FMOr'EwສOX뻠 -A4taH0ĭ,Spɞ1ķjBlo D U8T:QhBs3:Ř +A EIKx!wvIѳӹC!ׇ6ߠU%nsȜ8D. 8CռNsՏbl_*6aK9;g=a5L/EB猓r"k.htO~(Y9p0sy4;9Lp—k H> 6"LES0j785^ZDŪ ^ts{|W`:$`7=z1\xEpVIw+!ԴA H4OٿO\"O8D-!xDJXd.1mH"R\XJg*OT|QF?'R],`yqGgy @|Z+|ҏhP`ir֘QK4-q ۹D?c#=l_<-Psc z]mi1fFOq돐do{V7p/6eO΃ei$>O~vW`+9ѻDq"}dJx8?ߪԐt=oq2r4c. 8"l+6*b-hB3zTk'lt<Lg.T{\r;KR5GnjTYBHH2 N%g=z@]x_oW3 Zež5n@ެ!nsUaT-xSL~JA3bLFV֋}IT6 CJN|IBWqiαաvOKaqIC8FcJH[y>غf8֔hqP1wʻ0A;slT+"ex^jj@n2*D~0!.?zwCϞq=-1! YZL[J~2oKG?ֳEn"SaȆrKtW#5a]p%n~.! :&;z*M t##KMC蚰܁)И@PA+Mo7s?Oz^: O*(|{< %;DوPXk_nQJ07?9wjW/{S@6_l7 s5z[ {͏܃ tǙ/s[K鬄+s,߯˗)X'Ns>f˅so/ͩɰ|N2*7-8ZghW:I*ƥ/X82V1wyo\\Y?<rsOyx;](jhP!&43ow]qEpR1^ډ8Y>I!&Dws7ۨg sl4JWnQh)ҹaI~eXW oN ៏g&= v޸ >ep/oSR|uka2ep7kn( _{K= ŀ{:fU渪yw,n0Xfg_h 0Ҵ^mdg M3iX@M!Zqvb׹MTvG̚!3Yަ۲ <;=Hz)QXz{pRP zn`XU$W[ܕPf1lNIkzuNx|F ={rZQmF190^&/8:/tgMBS8Uz菣k5V,=L[ɿON-PˮnKZ,)F`9y%Lr9mL9!QJΣ`PHHB- HmS<[yS`9 z_?:=iD6+8 nweJlfC磥'U OT2^pw= 4?V u&3K,Q53P'Oӗl3b&lX;Y9 &k mM^&ʮr+nfs~wK|z{6CO3頟Fn0? dˀ?* 6YmNTB(#tyB9dpa( ʵ&CEM;D|pXc4T* o-dȍ\Ldz#{D2*d^*!25-Cx Zcr.f>^(5G4 b9q# nx;ɞl/EC:eZ,"ucZpF^;El^%SoʐeOMМO^ %ǡ ?oM#'}l_::=LP +{5.@5r46z^=m~cI^n Xq6ӧ2ͻ58ۘ2$<qӿ>U]%PG:E]#j',$Y?4^fQ2#MdPڋxtr~8+$ YSܪ0x 4ҫAL*MEbyb[]ˈqu5Z&1aWI*ֶ6 RupP*kH 1r'%iV6i6[H3 %R5˔AZi Y$k9 qJ(Ab-dJvA|#sBypVG"`1 ׇ ǴkcYgu%qw֛aj8,Mᇍz@[p.ې {N|EA;QcD9e^9 T\8&\Qeu:F ̞h#Pp_aтv܎' rM\<|2J] 49x i5g^E9 5]q6$[U0K`'mG2yl/%zÞ8@w[|8k/6zim<$upAM~f!gKϮ tMe,ROt,)y%S mohm Lɸ Mw2Ce? ! dO*5}($ %L+uy&44]D.A 3px471ES(N6_, x؋RĬTu#;RxJP\OϏրWCf&ܓ=t%]tD\PvYޙ/\mtVo\8n/WcauO=8¨q .sY͝hjM3|Q[ރ;X+&-8,'z]ppI6\Ƕ.;NMX6r-2HKZ HR1-7W`4SŔ VCgUmsf`_d! YUHsO=iPb);~Ў6м^ᕢn<{гzɗ+1-bŰ]f ,Dp3Ep~A?E Yz~v8ts\vζ~հ~5󄙨8G+o@guj@@#$ bFMqJLK8`/+ٻ*mjL`-<9{5$hNB0F(UcN^,&. SK~rᛃ]쓐D,kA@K"gN"Hel C^j\lj|lTrQ&NX*U_ذͰ@By S { +883h LOђ;[L4̛a>~O5!5OP>q}O t>H$Qs% e4$.c*1lj%{(j%~z9B_sv6iCmpŞʪxƻ sc_ͶFivWZ~TH}H`=3‘7Os%~jmK 6hET!BZmu'Xd(pǟpܽ:F(Yñ 5[V_j#36gASmOAFDoGW%ҰH}9rE FH:ȸAɍF9$Xc<[#U(σWQ v͢ǪU Jek|Aܘ1ధu8aQ݉PrJd{2 Ϗv=b8*arMn{U[{a*QabRP9g*EW俑m@FvkQj8?$w4#*7+^:_VKGk͟*'Agz}d^%>3d ;9C<Zmb=UX5TڅmP!3\؝qAo#R][tbd؍>Ƥ׾KP',Xdҥ];id`N8LHK `,A!a d Vё?K6tL N̰9$ucwo{Fe0~jYP"wqdxO:%yP^ d6gkY .-_d\AS3/IJ2?`4Fi]; .CXfս16lgvQw kd+UEnn[#lPwwd]ףJOGZ&Խmܟ1^=/W:m BN:[w }Vgio]LJlY[).LED=4{+-2&vϵ;W|P,W ;P ?!Y} g|VgƸ,#܆8\a3v@担[ 礍&x:I5L-Z`D=d ްêщ~X&# Y}Yβݰf>U2. [7WQYJt]f˞ n6ҀeFkXL f>hW'q/) *`sSug +ʒCM6su ܙv{H.2=FΡ' J h|a/Ba(+ mOÓT0XNh8/0P|Sj ;9-1T~O~>f6ilQ}/gIA^* @/AoeP$q업lxLdȵI XJ{!ti1;Å-րk̡!2aa!e,'&ѝoN=\yNJ'Y⥏bbU%R".IKY s irufYd95n !F"}6x=iOm@⿁1VLJl D?CWϡ75,6dF: x?ZȪԤ1$凖. `;p*%Y*|k8S׃9{mc0hܬ=9ᒤV|ڐٹ8f*UHs8WTI8/v:h+En0n-4.h٨,m{GZ_@ #weoM)Y~?UNJw# dO_K#Fhy'xE[? y}UNx;b}Χs۲j R:Dw+y87`lIu6N܈5xu?(P\DmK1MݛޮJx\$^l@9҃W䣍 >Ly',e$["ˣrg5~jKGΣI'\I'W{/"dӿ EUY&q/(|O-hӟ_a?`Ƚ2On슧Wac{T_ 8<5Tao&0hn!3$U=.P3lr-/wi.ˣMڴ+ԘEW!AzL2X_B>S(:DDA+ SS0ze)O0<٬GѦD4QCWsbyӱtaWBoNQZ?LFds%>h1COr?L?wDAAv{#&X#-V`!V2%y- NuoKT0'v$ &J17Qmzo_+-@ u{sdPM@k^g"`Ł`JF~i4CS_u=>+>梙MPt!K`5Vp ZС<@ŇD(mVPR &l 1piPę5b)q~+7ʨ523@ 'A5W$)[,eR2fPѼfY}WHRrZ+@#6&DkIt%w|IsxZ} ;B'\kb>RtEk7/O cz~VMz/+[VyLnMrvY'7ij /QHO/DjD qOk@ &Ϧ%^NOIb ]g;]Â!%}ʆ`־=eխXf)0h#kiG^[SS]0~q .߭/Oa ]QtJtn}wBřLyj5ͱH=$ *`WZ`)Rt8K䣑EՌ ]{s=IUH;U;_s ~zp&QE"3\i(es=|7LQ_ߟɷD)WFER9ekEvvĺ:3U,r:=M .&sy&^6pT1nMx\\n:E5 g4>7 \61NReN_soKĪh${y-P%IkaCq[v(3jF'!vFXk\UM ,/g_@v=4&vVoPOEj {WOkM/j:HP|Zu〰!-͸7ҏ5ݪIJ+Йrjf3/u`08i,~(2vHk1gh1Y7 L<Nm-V&5zȔavI|9b~ ~+|~}Ib hݚ4iqCHM% nGc"5F,bUsN!SIBBIHkֵ: Q um近&ڶ&2칌,]3bk,fEt ʍ s5K$QJsbOoDP@LvJܷ}gG7,l>`maHT\T{&뙿^<⢏p&aK[dyhWuۄUiͿ1KS||kZwymӈ^?7BQoUD`C6w&:у,9e^Q. Z'(e-K1ۢ 䱞`3I4L~z` +G+iTx1iB!+.ޘ"fx*: G'RN xؚw=CĒD _y̤ʷJڦg r8Yf I^ Θ'P`0Uq(66[5D8@&ΐ}]&f23?տ]84=Y>hΪxdԷ9LܱBu jǐAzǎ'?LK ϪHHXۄBU ;6yW&,An {$jmX_a"H W8qmHiܩ!^;{=ٙ7{^k8LQ+KV߿`E{u^J,b9x exB+~! {,n[iLpF6Pז4w]=[jMOʰ.~,Q "j_V-HશR) H`_,2/W%8}:,]lJlY7xiϏeWxѐ7"$*fgDB/9:hDuW:p;YޚFԖ ߆6 vĿ%%cYf%w:< 絗WvLG~̮.KMf0x|n Qb]ҹ tYS;ǭs ŎX% e* \πb ntfq`o`cyRQ~g<}ȝNMdZsrE83ro!fظj7~Bwy?ZA\ [~[w-r( We2q67R"IZs,V~| թJI[q>+Kq$ Q71օox .~_UeN*Xo:'Mwr-ǯgJEp4|gn;+v768 YV\BP2H<%6]4jR4u;( pvw-gܮYҮ-[+;QjQ(ftcտ"%{sq]룿^ /܎%({"Fou[M$gyB3/ DscN}:ٙ&Km(À!G|l)z=ğU!z$$A~_K{ ؒPHcBx] [؝)W6;Ǐ;\? ۪l _l}0P IB.*ԛ( yl !MHI7xBN.P2W&;T^5rh_NHfov=nǶI@^r[lpK͌G x4Ϩ/k$dLr5BU!Q`[/!y\KW.AzUN\ōb HA%Lc>1sQa1.=O?Xp,{ZMl% 궗'N6UKvz/UƸ"+hx9Cdz08wDb#Bz]5eE,]8G_fA=t5aUrͭ%n%2O2K,8`?׍Bjb]a5trQf 0i־ IY5Z*g.i.CۇRAO%D[Me&=#?uEVZ_8/%e$75'f{W@Q!lOx('p-,sGbsAaz"d"a0I35]!լslX`-O>DZRvn0[ 쎵*ϧ[%ͪq5)zb{WSH#vgZGm&mk |uAK/:ݵ  bK*l~4=C#dO9CMYbs:$?JC߷&lkt/8ٳ0^`wLw~X̮.99rˍA|݈,AMiWeC*#oIʳStTkD:VnaCm>9CMXy 5HwPk\A2"}@EG8DKѭ7 Ua#Ѻۧs@e$A-L__N|p{oްB|Ko^k@?TNؿ];c$ cD*pڟ8T|G֒`w\UD־,e%y_JvޤIGq1ЃmrF+F G7aFZ qq)wЄQ,E;#p\Fۤ<9q!E|AI8G4W(.cu$yAV FmO/nRA+[r"u6Ŭb:ijljO=d'*wJ(O}8R٧]7r[arN 4+pbЭuHg$RuȿMyr1,AFO`}hZym.79GOuO*xD*?|뽈rZܾiO Gk̡R xNE ƹ Écyq1T^E97hQӞX1&>0rT_y)7f43둖;BOlJ$ZzhHc'?sh^i(7%fif{A;Iۮ7|gvx9"o-zX-h/B~v?Ͻ5wxuB 'kɴ^ hXH3MHP]cPE )uzi挺R[HnJVcjW<{q$q΁5iXN #Dɴg9/nٓz ł[@L_)s)D{qb;(hIJ΋zpԱq5l%TW0SfFl~Z~Ԡen?:1P|JRPBZ0.6,}TN$s+gg bLv'e%oFv ?ͽ,6/pw}D8]e^Ul!<6Hڳ#XDW1Y[4e83PC4q']tbĀhZcl?[F h,{5@|Gt\0u^2!5ЅxrPETH'Uؐ\Rĥx)?+q5Eқ݊ȑ[<ZqNum 1)/ E >=jAQ f4v?Bk'l{.[VB ``iyܸ{0p+\(&x\` *57-!p닫6M FVhb-<_ĸP؋ϳ ?PhrhU@<|fZpAM5ouxek^(&;A5FI *8)42?0-4Qm3By!F N[AW}VHޛzإH 0ZK;{\=iG Ę*2a"Boޤ 5TwjBlVT'8^nMGGYT7L:2tbA_%U`@$ Ex0.%4^^ɧ՘$YOe )}D,S g^Wʺ`# d LKtHQ=S+h_|ZC1 3*YŢ =g_YLZ}:/3vK{S/Fo|t%g<Ǥ=m!w[ɸFWDh`M2 Y*iKWXPȔ %hBxu`msbERx7)5ryWu_sΑ[(*^'*.3՝÷@r|٨ۉ &Ra:/_ZEҴE '~A| IF)fc~16 bt+lX6Ͼ}BoڅS R81C)1CM dJZv⨾d#sa7eU*c"kzDvNm-))$aJў$.}jsw^oo!AYNJ҇4ں?ьa{SNR'okZo͟IExGnMS>FeF9~/O/!ƦkH#_diX췦O6~.IC,MتQEeczQo5jKȭ8PhlE4/Y-`߁sƕ ! .֫ ~1q/>Jqmx=ا 0 =3  ZULܶlB@ :'c)ԍ`4zOu "8 !|KHMouR]F7/fsھALoDZ8#45q$"j`|Z; kp qYT|pG ?}CKZpZ^"d1l9!2F,B&"A>áGms#i V`cuXVK(d<9a O% ޜC&WP/WGK=}P[Nֺ|DJN2+K.{Ana?N"| +!B$+xyH6 l:0㮰Nes?O}2?/k=*0|;_y=&8>Q&VX͞fXx:U0s޹H/yM)c=t=}4gWCHD(  Ӫl`㈕A~ST4iL.mǽNT],00ZwV9-A>psC{tݯe6@]pstц֎qjeB8)E<&Z1,.1iA-`)n\ng=yY)%%Q҅,Jq (\ӽ4|`.N43~Y˶]!#:sƈOE?%da i[f-"N){10Nq_ Q/^r `0p^Z.Q1{ =/]C,e5kt UE`WP,_7Ci!7Lf=yFy\noM.^Ux1LS|ؖu8'a{\r|R3Ķ\[ծ2uȒ]x$ 3,@ʳՄ"_UmE?IR[T߽]0/STw|{:yKt,{O=Q!-;4fGt 80P8bhWdb2 F0pG+s0@3t\4[tuJ2TfQԊ6Ts GIbG Rg&6"zohS;IpJЮ8:$#cK>܍bف~S RIFH-~)*ܬp M]rRbr]yB7=bx}URd0 bUR6<3+}lq&3(!74P/+g8XC5HZ'l6\u 8{(i,thYyVWقDA\W˳ p\5C,F%?u"N"\iwaţ찮ϮK(-~Mzc+.,ހvK:c@)x\#@ovԮ V+]wW [}&V2ѪQ*@8l;krKM(caU3پ W+i @)XJ $PNu2Y! ߹0v\>`#Ixu0ƗAy [MMN+;S!rm[kɢFsJ&kza(kY ÝoU_#t[EIx#Jj ҽdvR(ݮ@㠬Ďc!\nqR˜a/InQ @*˻nKguEUd.Le' -ZP񿪭p|rr? 3 rx{Z]{G1+nh:x B׃!b - X-bS'YyO>j;U/fLObmMr] 0Ao 2;>3dy\PmgeKdmeHa2Q{LQJ 澒wKZ}Yӕe7Ʊ՝PTu;Kw|Nbj&ZLs1̿wR v=_q8M8}|4c뺝*T&TyCfn?ٔA,& NhCsESJ{4P t{,qh1(&ơyE$Ң*=kE ӟyfWK)A$1K VTot1_ܳ1bN9ꝳQ/%_$ʊ>7@}E:e~~[b,x$:j)/}^`ҁ,k*]t"`{ MjL2wQj]:ȹ`B Nnr Tg~v+4jQ}XÊǣ-LCX"hCEZAd0_ZRS@"][ 43+fD"Ǘ˶>j7Z^ə7HܟBFZBtapqKS NlmIoy$(mfY;9 J\2n鏀?ճ?`K XEh |cħ!ȳ4W}1[ 眼g,AMx󄾟gYXS) `3":C[Բk!O/0mg5_^Y%0Y?8Ub;̹u͗ GSR' ?B[s,zSZ"O gZ%F=YH e[f]]WsƱW5r] 3G=<̅xzA)Ja6߸%7Qq8r-iv[9n  a.N9~U3=w܋ǰRlt+U+F/ObT$8k6)S :Ē4tCH%I0LjXeW-:YZX!/nũV4$=Rk6LJ=Onȥ">i6(b䁎u"Hxoc\لW) !V堓%tV: d\P".WNU sryQ9DStgX0_O>U$!U]꠿Nm1Y6a#iƘá&);BL?',&ȝ.$a%S\$.T=uf$HFpJD> D‡uԨ"4S$ˋܠ{t ug)%w"UF<T.Jx8Wtr6~~E"Lj-Mt/&Xcˎ`J"q&biHUbָҎu̼@??_NaU8@ tKMWG {~ $G^J!hVw't]K&-%Ay-\GѼ?<+@'16%'!YR%U₂Xd#Y{QrU/Ž$׫Rb l-"ѻK}|JOxrBr&1?BTGQtb!P}v髂Tdt\%! sd;*u2TŧhmU"h|yS%fpH0stDZLh2u?7q>1B_PJr~u~ ~%8xZ|v]hġa/@$A@ ZwgwttcV<{isu@T(f?`@_sl >Ms@p@s7}mڙD]#Z.1ti㼻>\' M3ʧ=@Z箝\N"RM_k|xmPO!J8" d1Kl"dHD|*LZvf뚃ٮfoqgoLQ }Ϻ˪WcCϊ7,VdGD}"+-dЕwT\DsGw)5+Teodo=<%q<ib=z1LW^F!( HKLp>~m"Tڃ@QŢ&= %Qȷa)FS=ح˔bb:e>8#MLhJds&Y!fEC{FqwBfz7ʎo] kMܡY鑵hJ0,,a(50V OJzM:l .*ahCI3VgxGl yd4O wuoDc4 9$.LtG-pL乢 (2wMڄ\&[ed =yAo7 a [t>^drE^ʳ~BdiHU&TO{9+Pat>a6sT8|H$55nk/Aoٌu7Q : 曒-ge/:'59Y THWϏZm5jkol5xC[ Lr:MfNGϺ*p/ؑXk -Cz(b- > 36:2o&e]޾ny'ȓ92漣gʔ@0%9+7#T~J)xgh7r+/Է4-VnBĉ:8)plNtw1|x<*rA -{2Zm㑇ȥMj"&(dI&?7gc.q(~"@h% t%YcX"[gcxP+8`g P48O?^yaj;'X)/F7%m9~%A cuWn!i|i(g7quDېyZ '3^ ڰ9I(z+Hzܸja@:d޵A+~Շr[8PAq7Fބl!nd  1TT[dvW.l4My9-jU*M~v\?2 >!QdNt@鉧Pd!raҗKd:3/Xi\?RToc zrwҔW{)DLJfˡD͆^ Tv9ؓ0cЦqZJRI1wWtM1a6o)LI6Y0Mi)5%PD1Ƞie%qȴ<KȄ_\ |&=Rv⛍+JQe!6DJ? 6vюuQt OL~tfc^; ]>/= R*vb2Lx$dܭvmŕ_$½٨9霻K,kiȻl\J84K[)E I56D%Ya"y3{+_Z@Cɥ AaٯvN-BͯtI=nvdުarhmHԽW,HBaK5SBĘMVj=lOTƱxQxjӋ8jBy^omXƂo~rb$+*cʱ-{R[WK0Qi0rZ8W`N[6׊N͜yP[f{&5ӂJ ͡YК&}S=>B(d$pCkQC2jG˃^ F-Am5jZ DF;7kb׮P @|ه&G[3`O1-o$E~z(>~7G@Ht?֣J oRH{AFptŗa(,V!{+Qq޸V=(/)ɶ~+GdlS+}pJv)Auj=5"?I-ߜ;G?w"GTP8|; ^.c̱ _ΗZ8ZB~.%T֘?>ӅL3x3l+P\ Awrс;FFa׮s꭭0aP:(Fh(vShہ&w-pMFaPc\9{op۝9,=6W5WK!,4Oɶ }rw[YG*djgݴf}ї L*ԜҰ3AKZTi#ushz# Kf2*a8A<8ʀq021Cx۹OkQldr *D@[;hi %aaN-@#ҲS¾w+. ӆc"qɩ" y1R VM~9GB(#} X`M2""ws9 =ZE:)\YgPٓkbu 5|P4tc1{u=E ? (f3XjKSx>Fec> Ɠ`M%Ã~[G߰ $]&tKWzڤNAڹ\4l? Rн}?ǥGIV3U$MH>Tjl /ILI)+$JPlY#louN$VLU6=ig; -V_fZDzƴ*P,"1cZx"-hPΤJܱLxTm5i^/? ]@Iß8{lY}WxBDUUGb"ߺRw)P:# m4}g,vdf=HuK`|cVD f$L6N}u|ه)XJam-30e=ci5S$X`KPɡn u;LZo3/sg rKSVUUtbZ*0ps.}S~QA&RN3f/<:Gb# F[L5q'tKzm,;6})9 qu3s7rM1m$vB3hUD8`'ؼy}B$X[2oпayyE LemA\D3]@HۨMӚ$s .lլӜPy?ҴtU&=WT ݿ#XvC&];.[d|~6筳R$s bYd h>;Zܳ k#:)x!2!?{2 NOwZfK5rk{@, aWV~Y>x8L6q\(@Qct0g, t S4IMКg?Cr V IQY=Yh;^2#dO48Nscvc5mo9fTg yZ3K>XM\''fZ$F0mFĊi]_3h!ΌGX}nE"Ϋv6!ݞYΛ

%6L8&㽨EKMuN5b`LF>|[ӅkԇrJ0^Ӌ.T(LwZM(<87Pwvy&E( 3N/m:ENLR& XAɖFԹquap.-7sY{7a=dmeSC6h7&2@kDdՏ dv'^S%  zL}ܟPQRB< vV2B~RӪ*H[R_/"3QrqbAxaoỚtj]̲;%(TGc2^ 6->0ӃHYs> +5>7ҝ6e):cƟN"$Qnj~ Xż7ӪqbC[7;Bs J?B|o&i[׻5È'%Xmha9a|0j,%GJka3 F5!vY'A{eM/j2' >Sw{RJ#̠{bZW Y3*gk"՟3PqDb!)Uh:*GݐG.]TOLEO\C"FZN.NYǍzU[ ꅋ REcL7큥^[fZoяVlCMyPbaBzNNxA:ЄsGM:1N/(Лsłv5,pwևl~!u牒p9Pfb-̌E:ۍ\p"^ơNWMu*ၫks][ SB'VcܲA{-IoMx O gyc(9G w]`~8P3a |EU S^|pBݍxp , Mfui#Djj4$ 4Eo?EQj4(wx;W{-|{MH"&h͍0t\cC,g1$f>Zí+x~zMiC۠6œR;t:)*)Hܐբ hTc<;(q2 Eoc qkn_^ΐ=?Z~m8.,> _x$\;ѺpV{p8WEI؎ZQ?q+2!FPE'Dt@vMƙ9oa}!-^,V}*ˌlnW$PzQ[*p8|bBפ5p_eŭ\&,nX/!g W@=xT@)Y[޹a,m\U"^v|Za'|0nr-L,xw"Xd e^:5*~S=K15Gg;\UZi_2ӥ.m` ~Rtݶ@8Gs5=k(ֵDL%lz5Ủ~E<Ъ~+DNS:2pj#K" |]'u#ĥ\N4I/%,(<[5)? ٫d'2Xt-y$([1q9i+Cҥ/!D/q!Ggpqa/U1A/Qkn×S9\Z J1RTGә!og-;Q5@m}U' {C3K˚9$|.D+Y9+h !.(:ɫDNRJn"m 3.+<0TWP684Π4€R#f)=xC)(i іYNK̬Tq$y?<#U1q]k#I4? /sCd?o<"ذAF9d֠Ķ\˛6ұ?EWF"˄}CYx^[KGΪ\U7f d>Wn/ˆ2H:&!k W;Qxv9PF/NҵRʟ$ٴ8 L8rX\InÉ]Fn}Y6W [Ub$;h\Դ᎙?v8^A5@ @_8H6k*fj;d3X$,]bTk,T m2&Zɇ#1{17BnofKZGwsPDٿAp%:SP.% uw6؇li7QLu>C8R_Xtbs$XHš5XCSHmJ`hh]Լ/ \1L%e.4[ºEmdġMv bB?=?tHLc8'| g̶ևzڇ.H/⒟}ql۴vފV ?asl]Z=]lyX%35.ۀ2M).3J s"͚Zx#2(>TZȸ٫d4ץOX ,lI aHSH@loq)3+/*Hu~'. +eZ.V}<&͙=zl.Ll0Bҧ잢rł}jBB䚁z8ʧ6 f?E,缱im&SCRM?(xn?v9sQE/r6,_,"%S0 Ej?!]f ^.Cˁձ6*j3v]Na2? ׈ZvJ}4.6=\%8LUtfppj9oHTV\Gƀ0/ iY5 ;V3dV}:nusӨY=8:NA.ֹe5 ݃#V\~Ve#(Ug!n1D\ޑq wMc(MZ,/Z%M&pbĀR(o lmTrϭ( ;li|Y<#BF0rI ;…˽țGor @?<=q3$DR{ Q b?%id;mLȕd\e_ꊘs<=ּ7Bak/QC %xhHÀ>YC>0{EujT .x %OȼliY(;mIӞ= AbchK2|~Bi!1A"(v:@`wu%zw0ΛqfcrB7xLkأr\(EmNgsVn$\;.G0 7}ӯvN_('WAׂ, ]NNn`n: {ȧh&dh/40?wXɀ y=P)̇E w&@tK10ي:fh?'m6 ;G,M3 m<>^T*^U,,{² f\0lߖ<*!>Y֪:D#fM7ˈ7]om `}ozFoEkNnDTHyzU=`]ՅFX I0A 7Ej21K1X{DD&tؒ28x̋އPd;m@'>p2$nwYxڂL1H.z*k0EKdk7ޞ6O:ϗ#AJ7+U<qZ 7P;FJz0W:ޓuFZ(&ڹ*XS |ϭpA2 O1̫:k~-ZrZsЈaKa#a:>dcY3 X5*]]5X- rj0JA޶9.e}.rAM*u|d<cT#Q %l`5=da/]jY -/1J'@L?{&Njrt|.(>dwM;*-{ 兞*gq[v'ihv]٠Т]ҩѭ!~#04ny26;^#_:-g`UݢC$gQGc :Ȋi_(F̻xc:EZMqaB3@(NfmtB>ɏFη > EP1ȗN4z9"'#5^?t$JɩKxw7ɾk]VC1- :"X?챁S;3`̍ XD@L0cT^sBy[n[J/;AV+Ɠ<0Wat.7+V!3&6?fXYo6?bttC-FhNèdocmd@5߶oSCʖLo %LzfoUC-ڧ'vt3c"ҿoȂJȽXf!st:aA#e-;2a#Ҹ!1 ErxGD a>e!];Yf60UX_ε9o[L@WRԋ\;zhg[h)l]GMaB5Gy2С&M3mN4[4%eDpկpv嗼M3Ҙ uSIstt| @ չK"w}"?Zk'[ӳV*WۤTz'>R0e^YLyT&ESG4Z 7ݥQnTJ|z+e/&N| 5޽ D=m[)kxvPDjQi2h£ \Dd,؎,&sc ^ g/QG&CL3lWJPgWŷ׶ш]7 L\_QiA!Zom`N|p0׾l{p.Kcxy]uN@@Ϗs*@)x 3C:s3.KXff?