p11-kit-tools-0.23.22-150500.8.3.1<>,me:;p9|ZtA/[jU`_vI+h5Qo[E*@S`P0KvwIVG_@?!fxuGE0;nc5c2i '@:"<:Ҝ!Y7wwOcM'}9y7'\Κ:a6=t{#}7Ӿ+4~ÍӒb*Yâ,F3H}>6?6d % S1R_ u     Q XlT(8 9 : F0G0H0I1X1Y1\1D]1X^1b1c2d3e3f3 l3 u3 v34w5x5y5z6$64686>6Cp11-kit-tools0.23.22150500.8.3.1Library to work with PKCS#11 modules -- Toolsp11-kit provides a way to load and enumerate PKCS#11 modules, as well as a standard configuration setup for installing PKCS#11 modules in such a way that they're discoverable.e:;s390zl32-SUSE Linux Enterprise 15SUSE LLC BSD-3-Clausehttps://www.suse.com/Development/Libraries/C and C++https://p11-glue.freedesktop.org/p11-kit.htmllinuxs390xPH  큤e:;e:;e:;e:;e:;cb435007c79f660665e3689f2f6771dacc0d0f339b3bd56d661273d775766a9f630ecda819606d9ea3e6f218f4914e21a63005aead8ce09b5031fdf5659ca05b4afdd303b50c51ee2292d2a17cc45eee44667998f91be07943349e54d2a12caa990061f9c4a52c3bcff64808e66df4f6f1252c3c2a4e51cdcf4d59cf0587b0638ca25f352520a6103b86c59de016b13a7449e92358ec096a8e6a182e96788a11rootrootrootrootrootrootrootrootrootrootp11-kit-0.23.22-150500.8.3.1.src.rpmp11-kit-toolsp11-kit-tools(s390-64)@@@@@@@@@@@@@@@@@    libc.so.6()(64bit)libc.so.6(GLIBC_2.16)(64bit)libc.so.6(GLIBC_2.2)(64bit)libc.so.6(GLIBC_2.26)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.6)(64bit)libc.so.6(GLIBC_2.8)(64bit)libdl.so.2()(64bit)libdl.so.2(GLIBC_2.2)(64bit)libp11-kit.so.0()(64bit)libp11-kit.so.0(LIBP11_KIT_1.0)(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.2)(64bit)libtasn1.so.6()(64bit)libtasn1.so.6(LIBTASN1_0_3)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3e7ca^@]Γ@ZX43@V@T9T;pmonreal@suse.comlnussel@suse.comscabrero@suse.delnussel@suse.delnussel@suse.dekukuk@suse.desbrabec@suse.commpluskal@suse.comp.drouand@gmail.comlnussel@suse.de- Ensure that programs using can be compiled with CRYPTOKI_GNU. Fixes GnuTLS builds. [jsc#PED-6705] * Add p11-kit-pkcs11-gnu-Enable-testing-with-p11-kit-pkcs11x.h.patch- Backport IBM specific mechanism and attributes (Jira#PED-584) 0001-Add-IBM-specific-mechanism-and-attributes.patch 0002-Add-support-for-serializing-CK_ECDH1_DERIVE_PARAMS-m.patch 0003-client-Allow-zero-part-length-at-C_SignUpdate.patch 0004-Fix-support-of-CKA_DERIVE_TEMPLATE.patch 0005-Add-other-SHA-variants-also-for-RSA-and-EC-signature.patch 0006-Add-support-for-missing-AES-and-DES-DES3-mechanisms.patch 0007-Add-support-for-MAC-and-HMAC-general-mechanisms.patch 0008-Add-support-for-CKM_DH_PKCS_DERIVE.patch 0009-rpc-Handle-special-cases-for-buffer-and-length.patch 0010-Add-support-for-CKM_AES_CTR.patch 0011-Add-support-for-CKM_AES_GCM.patch 0012-common-pkcs11x.h-Support-CRYPTOKI_GNU-for-IBM-vendor.patch- Update to version 0.23.22 (bsc#1180064, bsc#1180065, bsc#1180066): * Fix memory-safety issues that affect the RPC protocol (CVE-2020-29361, CVE-2020-29362, and CVE-2020-29363), discovered and fixed by David Cook * anchor: Prefer persistent format when storing anchor [PR#329] * common: Fix infloop in p11_path_build [PR#326, PR#327] * proxy: C_CloseAllSessions: Make sure that calloc args are non-zero [PR#325] * common: Check for a NULL locale before freeing it [PR#321] * Build and test fixes [PR#313, PR#315, PR#317, PR#318, PR#319, PR#323, PR#330, PR#333, PR#334, PR#335, PR#338, PR#339] - Changes for version 0.23.21 * proxy: Do not assign duplicate slot IDs [PR#282] * common: Get program name based on executable path if possible [PR#307] * anchor: Exit with non-zero code, if any error occurs [PR#304] * Build and test fixes [PR#283, PR#290, PR#291, PR#292, PR#296, PR#299, PR#305, PR#306, PR#309, PR#311] - Changes for version 0.23.20: * Revert "Fix RPC when length-s are 0" changes [PR#276] - Changes for version 0.23.19: * common: add Russian PKCS#11 extensions to pkcs11x.h header [PR#255] * Add simple bash completion for provided commands [PR#258] * Unbreak list matching in enable-in and disable-in [PR#262] * Fix RPC when length-s are 0 [PR#259] * rpc: Add vsock transport support [PR#270] * trust: Support CKA_NSS_{SERVER,EMAIL}_DISTRUST_AFTER [PR#265] * Build fixes [PR#271, PR#272, PR#273, ...] - Changes for version 0.23.18: * rpc: Allow empty CK_DATE value [PR#253] * build: Meson fixes [PR#245] * build: Adjust feature parity between meson and autotools [PR#247] - Changes for version 0.23.17: * common: Fix uClibc-ng compilation [PR#237] * trust: do not allow daylight to invalidate date validation [PR#236] * build: Port to meson build system [PR#231, PR#234] * rpc: On UNIX wait on condition variable instead of FD if header is for a different thread [PR#232] * doc: Add 'server' command in help [PR#229] * Build and test fixes [PR#230] - Changes for version 0.23.16: * proxy: Support C_WaitForSlotEvent() if CKF_DONT_BLOCK is specified [PR#225] * conf: Ignore user configuration if the program is running as root [PR#226] * proxy: Refresh slot list on every C_GetSlotList call [PR#224] * modules: Fix index used in call to p11_dict_remove() [PR#219] * Fix Win32 p11_dl_error crash [PR#218] * modules: check gl.modules before iterates on it when freeing [PR#217] * trust: Ignore unreadable content in anchors [PR#215] * extract-jks: Prefer _p11_extract_jks_timestamp to SOURCE_DATE_EPOCH [PR#213] - Changes for version 0.23.15: * trust: Improve error handling if backed trust file is corrupted [PR#206] * url: Prefer upper-case letters in hex characters when encoding [PR#193] * trust/extract-jks.c: also honor SOURCE_DATE_EPOCH time [PR#202] * virtual: Prefer fixed closures to libffi closures [PR#196] * Fix issues spotted by coverity and cppcheck [PR#194, PR#204] * Build and test fixes [PR#164, PR#191, PR#199, PR#201] - Changes for version 0.23.14: * proxy: Avoid invalid memory access when unloading proxy module [PR#180] * Update pkcs11 header to allow SoftHSMv2 to compile [PR#181] * build: Restore libpthread dependency [PR#183] * Build fixes [PR#188] - Changes for version 0.23.13: * server: Enable socket activation through systemd [PR#173] * rpc-server: p11_kit_remote_serve_tokens: Allow exporting all modules [PR#174] * proxy: Fail early if there is no slot mapping [PR#175] * Remove hard dependency on libpthread [PR#177] * Build fixes [PR#170, PR#176] - Changes for version 0.23.12 * Fix compile error when PKCS#11 GNU calling convention is enabled [PR#160] * Fix getauxval() and secure_getenv() emulation on macOS and FreeBSD [PR#167] * Build and test fixes on macOS [PR#162, PR#168] - Changes for version 0.23.11 * trust: Add extractor for edk2/cacerts.bin [PR#139] * modules: Add option to control module visibility from proxy [PR#140] * trust: Prevent trust module being loaded by proxy module [PR#142] * library: Use dedicated locale object for printing error [PR#148] * Treat CKR_CRYPTOKI_ALREADY_INITIALIZED correctly [PR#134] * Improve const correctness for P11KitUri [PR#152] * PKCS#11 URI scheme comparison is now case insensitive [PR#156] * Build and test fixes [PR#151, PR#149, PR#141, PR#138, PR#135] - Changes for version 0.23.10 * filter: Respect "write-protected" vendor-specific attribute in PKCS#11 URI [PR#129] * server: Improve shell integration and documentation [PR#107, PR#108] * proxy: Reuse existing slot ID mapping in after fork() [PR#120] * trust: Forcibly mark "Default Trust" read-only [PR#123] * New function p11_kit_override_system_files() which can be used for testing [PR#110] * trust: Filter out duplicate extensions [PR#69] * Update translations [PR#128] * Bug fixes [PR#125, PR#126] - Changes for version 0.23.9 * Fix p11-kit server regressions [PR#103, PR#104] * trust: Respect anyExtendedKeyUsage in CA certificates [PR#99] * Build fixes related to reallocarray [PR#96, PR#98, PR#100] - Changes for version 0.23.8 * Improve vendor query attributes handling in PKCS#11 URI [PR#92] * Add OTP and GOST mechanisms to pkcs11.h [PR#90, PR#91] * New envvar P11_KIT_NO_USER_CONFIG to stop looking at user configurations [PR#87] * Build fixes for Solaris and 32-bit big-endian platforms [PR#81, PR#86] - Changes for version 0.23.7 * Fix memory issues with "p11-kit server" [PR#78] * Build fixes [PR#77 ...] - Changes for version 0.23.6 * Port "p11-kit server" to Windows and portability fixes of the RPC protocol [PR#67, PR#72, PR#74] * Recover the old behavior of "trust anchor --remove" [PR#70, PR#71] * Build fixes [PR#63 ...] - Changes for version 0.23.5 * Fix license notice of common/unix-peer.c [PR#58] * Remove systemd unit files for now [PR#60] * Build fixes for FreeBSD [PR#56] - Changes for version 0.23.4 * Recognize query attributes defined in PKCS#11 URI (RFC7512) [PR#31, PR#37, PR#52] * The trust policy module now recognizes CKA_NSS_MOZILLA_CA_POLICY attribute, used by Firefox [#99453, PR#46] * Add 'trust dump' command to dump all PKCS#11 objects in the persistence format [PR#44] * New experimental 'p11-kit server' command that allows PKCS#11 forwarding through a Unix domain socket. A client-side module p11-kit-client.so is also provided [PR#15] * Add systemd unit files for exporting the proxy module through a Unix domain socket [PR#35] * New P11KitIter API to iterate over slots, tokens, and modules in addition to objects [PR#28] * libffi dependency is now optional [PR#9] * Build fixes for FreeBSD, macOS, and Windows [PR#32, PR#39, PR#45] - Changes for version 0.23.3 * Install private executables in libexecdir [fdo#98817] * Fix link error of proxy module on macOS [fdo#98022] * Use new PKCS#11 URI specification for URIs [fdo#97245] * Support x-init-reserved argument of C_Initialize() in remote modules [fdo#80519] * Incorporate changes from PKCS#11 2.40 specification * Bump libtool library version * Documentation fixes * Build fixes [fdo#87192 ...] - Move RPM macros to %_rpmmacrodir. - New server subpackage - Change keyring to new maintainer Daiki Ueno - Avoid bareword to fix build failure - Remove obsolete patches: * p11-kit-biarch.patch * 0001-Support-loading-new-NSS-attribute-CKA_NSS_MOZILLA_CA.patch * 0001-Fix-a-typo-in-x-cetrificate-value-see-also-https-bug.patch- Also build documentation (boo#1013125)- support loading NSS attribute CKA_NSS_MOZILLA_CA_POLICY so Firefox detects built in certificates (boo#1154871, 0001-Fix-a-typo-in-x-cetrificate-value-see-also-https-bug.patch, 0001-Support-loading-new-NSS-attribute-CKA_NSS_MOZILLA_CA.patch)- Use %license instead of %doc [bsc#1082318]- 32-bit compatibility fixes: * Add PKCS11 module to p11-kit-32bit (bsc#996047#c39) * Add p11-kit-nss-trust-32bit NSS module * Fix potential bi-arch issue with private binaries (fdo#98817, p11-kit-biarch.patch)- Update to 0.23.2 * Fix forking issues with libffi * Fix various crashes in corner cases * Updated translations * Build fixes - Make building more verbose - Enable tests - Small spec file cleanup with spec-cleaner- Update to version 0.23.1 (stable) * Use new PKCS#11 URI draft fields for URIs [fdo#86474 fdo#87582] * Add pem-directory-hash extract format * Build fixes - Remove 0001-trust-allow-to-also-add-openssl-style-hashes-to-pem-d.diff; fixed on upstream release - Remove autoconf, automake and libtool require; unneeded dependencies - Add gtk-doc require; needed to build html documentation - Remove redundant %clean section- remove patches: * trust-Print-label-of-certificate-when-complaining-.patch * trust-Dont-use-invalid-public-keys-for-looking-up-.patch - new version 0.20.7 (stable) * New public pkcs11x.h header containing extensions [fdo#83495] * Export necessary defines to lookup attached extensions [fdo#83495] * Build fixes - new version 0.20.6 (stable) * Make the p11-kit-proxy.so module respect critical = no [fdo#83651] * Build fix for FreeBSD [fdo#75674] - new version 0.20.5 (stable) * Don't use invalid keys for looking up stapled extensions [fdo#82328] * Better error messages when invalid certificate extensions * Fix parsing of some odd OpenSSL TRUSTED CERTIFICATE files * Fix some leaks, and memory issues * Silence some clang scanner warnings - new version 0.20.4 (stable) * Don't complain about C_Finalize after a fork * Fix typos390zl32 16983152330.23.22-150500.8.3.10.23.22-150500.8.3.1p11-kittrusttrust.1.gzpkcs11.conf.5.gzp11-kit.8.gz/usr/bin//usr/share/man/man1//usr/share/man/man5//usr/share/man/man8/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:31290/SUSE_SLE-15-SP5_Update/d2461017bafa557a22e90431a0c28c1a-p11-kit.SUSE_SLE-15-SP5_Updatedrpmxz5s390x-suse-linuxELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, interpreter /lib/ld64.so.1, BuildID[sha1]=a48c67eaa82d7b9398d03e1c2460d27999753f93, for GNU/Linux 3.2.0, strippedELF 64-bit MSB shared object, IBM S/390, version 1 (SYSV), dynamically linked, interpreter /lib/ld64.so.1, BuildID[sha1]=37ea584b0410fab1e8c22091e25f3d02ad73aed2, for GNU/Linux 3.2.0, strippedtroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)troff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix) RR RRRRRRR R R R RRR RRRRRRRRRR R RR R RLٓdXD6Ue:utf-813ca19103d7e41daff6527df04618b81f7c654d3948664f0dfbc38a1adb01943? 7zXZ !t/F2]"k%$P x3OS,פC2-f.1@9>}m.dwTN3IZ׼-_d*A@X1aCm (c0"O$QnuqGO8ILm*<,b̉?ҴDa|HP )2pa﶐5"-ㄚ/(d=/_Yk] Eg "NP7Բ5+y@ii %&# /OY6TO=¢'~uM]g?4m_'C>VOgC#;}_VthhAV/[7Yo"}39GQ@4*j>`D.HKs jxNPofgJu=I˶}{3IdoYac>c蛩OQ' / Zhx77@`\`D7N m\qh)TCpE45MuuDDy R-f~1~93eHo,9GBʉְpycLIʂx'w$"1x'Y|m'/ԩF|wX fK'/3[~悮j\-'nJ#|sUIS@,wܮTϡKse <"dkh`>if7h\ѻ8Rd)|sgtX">'ǛZ1$2Mube +kD,ƆEuISs{NڮBea}DK8+J?Ofi (J`8CNexUwH @:a7ٹf4Ю_̡Mj:EŗӰ%by)&;$< 1]bD;b\`dwm+;A'o{ z 9#lqJ%(Xt[>8/MB˂Z+ktX!T/u[»ی pxlH_"m_SEct.{(8NR`hg'FX~Ǫ>e)D,)I ahJiiZ~IýpED&p9۲flNXQF>oO\;T& - >u ]OHpot[h\;(5h4kϥb)U(L'=jD_= {;l^'XY#̄Lù--FKNY3 K`GV਍ \- f}aulg6ڙ 4P Nj^[;1L-;)^ U?~SA"㙬9|Ga]#09q7 Xk<ᚨ_Ga:48 rW&ݴ×WRA\rh00ñdמt^>dFXQ 6q5UJmg ApLPhy * v䶻6mKNG ^j aOJdu4ʢƭBvS };bUbNg5amv`}8Vn^m3t(̹Q2.p Q3r!).<_iq#DU&cX .X(GKlc6erO+Z̖5b` $w\?BiG1#;zJtxI.'c(OG=a}1/x4ں-{݈ 3G":rSW<>E^ maGdɝ]ʶFj1r:VbfwZ6綄DFy|z&?)JS]'al>zWEjYsZYUΉ:^IJ}ѡ6(2%r]qWR)? K7!EPWIAF $AXybRgc$/ln*.7:߇8ۋN+eTәn 2Yebt&ak乜3tW|[nqQK UgO3;PE ̣g+/DZvJLxr;>n*+>̟ &؈H3!J`rڿ&m *rogAC=Sd 3uHAVa/A$6(oGzzS/'8wӝvk35mgIb[p`2{KA(io|W Sڟb7z\ };oϳ_J SE>;2KfsDc~ !?ɁOoP\xc%w8X_V-ɯChma@b!gt:@=f98t%o{T4I}v.Jaw\/쫲~WVRƖ^n\KiB5f,P@¢EhݍΎ% pʱu>;xUlu S_iɮx_ 8PJn5BNA*VyqOs2T|6Ԑ|AZ]"Ѷt$۝#$/EZ 'moEd( ULz;ϊ?ʛאtxаXjxC9ƞpA8O 59?x4pNm9h&"U${n. AQ~Cr>rvX&|&* #R^ :t_: *Yßf`MklM+N12EVr921t32t<߂ 'i^Frs# \[jٺp-]c^R h7n~ $g} 󬱐|v6H"׎yxϝYbHGIطa?nl+v\o}kM8h D$ϛӺ[yj6O2HeuX{ RqJzGmYq24N Qa]MWǛdZpYs6P lՔ<ɂ&S2*rL7q{Ce>{Ӑ,zDk dSFEL.:ra\? FR*@ӧK.Bt޼tm1ͻD76D5.H`fm`}ڃJ!+,YX-'% rg29^VJYˬB쿲> )ez !7Sjв L_96h7vA8cl/{{"JyfNRfi@Ϻs?Q޿m~Gᴧz?fw)(q1|Z$eDK"/H۶|R[cϒ=KHC7h,.cg0@ ֢?%U)m#P7 [ KtnL=UR&-*+6D8A-CTG |p+r^f0qg$5аD?ˁ*/si3ntisc 6;g&"^|OkdU+L+;k}>[jR}Rr:]Ov̅F3H oEC1سY>Swfs(Q?R~j[q 5nΤd:eqsKo01288`=߻w[CsLb7O#4D$~fTs Wq鵼٭3v'AIWgP 'D?踷ت* R)m[pA"AVf>mM㩆ߢ.Ȋh?Rۘ["db]KA k g[WOC\Wx9q:)7P=u'05"%P&s:KZP[?|Ux,X}R+xMR!\V 𦦁C3F erDceOhD"\_2_t㎟ gzpud tr1`gPLArf neO6mpa4 %6m|X#]"f..KFBP)~[zbD:\_/B#CjJE~=Ii U} \&iFxKX8FEky' U_q)<;s@Kg΂ikd Wu]jΟaQ1{G2]*+}-į` w!wۣNQ%=.b:8VXTzoŨ&SRsw)lo+2US?ǻD=l*%$;l8̍FF:a`+ņ͛V!1KGAu~ЈЁ۴>4b` td [2_4^Aݾn@weOb*=K>&["0f-)*%%oclה ѣ#eJ.hj by EᑸӶr)%ه)nˌڰVAH6.᥿XfYmҘ[p9zքymԪfo wmFc>">C_o7:P@+POS+>'X:^/'WЁu(AA*C*YoOL/ #ReSB:#2.>PƤ81gTMzףP+o]t0 %0ɱ8VZ.L GVu\TLS}i6 gAzkKLju󝡨EBMgw1~یE`ڔ4;|@_βH4.mJ-N8h =r9E+Hbm垿#{:#D  2+{ >kMv3 tC~Z+_%Δ ~==iUx{ yo9 Rvx㆛7R)ފ_3wbF!]gb_y0`S/:c;~7AUg${`Ff\\{ޫfp*2L;MWt7/trajM?Lc`xfy`ql,LW[enGXgw3EWA=1nGzpqݒTHRL& x0(3h֝m]do.~3腸s4^S*ɥEUBT?In2j]j2+iJisS,/6䐖OKk=?1"C&"/֍>t))"p.7M|,+&"Za*ZNNd+g9]t(#W.쥭y));hd j)XDZsi֙7WiRPwЇWm~rU)" /_efއ ʐFR26 /銋@46<+lawoϖ _x.)pQR&ŖVD_ɷs^m~ju*;ӵg}jiTuޠ7( އXʋ4p `%Vd2:S;"|2Vp0^6[H'YW' c쵖Ebed ;l.5Pl'0n$|fNB0> y:nj )kD9:i胚uF)r丷GFb¡ݠ>gr(٨в+`&y݅w*\xA4{2\GKGmL鿻t3kk5LgT>F Pfzl$PQAѤ `sSxJ;Kuǚa@VQDu^_G^AllJ5)g M_MKȻk{&ԙ`s  GK6Dt1[aǍGΖ'Ȇտ15u>z= mJ.ˊBe+hkr\b} J̇޷lmr:1U֯c&6 ub3}^ak[?)#FAXZ*H؎oU7VQHܙ4,pP&1#䝹F҂4(清xLO՘Pf"QiKG2ed}7Y>RYJIoC;JGH/*> '!b96lƣp-UGpxO">P0BF"PpEU~Lvt~@%F0ួ~F7EIM!cLF๏0YAD_ޝUn]j׾O%|>)},PU&%QS~հY<*u1B#k9D%X)+US#Z8::{ *<!,O93*qh%\2ŌAd߰ȷGO u*^gDdvثmM: 9}wvkI[&ArWmǘIr>fdQ~ XݓTd1td@4 !?=+}or/=4pY ^s&VO0oQ.T.pQVڗW;AoeJ0V}t[}#8'|i)'|Di:_R;m?GF+bBr&f*D k>G K^\ُ3>9[֝8s@ $CȒl>M"V~1051mM-L>\SWr3}|(]Bw^b{V/ _y<;ÀAזZ5O&WVc榾|cyK8H|]Nla=3J sڢrRW=8xhO+*ua#"ϗīل V?jdv5' # |: qW"”YWPHcgkm/S#U Պ_a+ 5oqKxYnͿ+Ac \2ͭO'TA|=zbr=i'VA.:b:`\+ X,\zO`:=D ^ZF"/?ו- S6`bT+U*+ULS%N`&y.᫙9lU-(kilv&†fhNd[J뜹c|ϧ"lKz9A1ҨHG:2 Dq€q@z RZ\AQ\=l b˹kM >VD+;x%zSPr`Z-߅#% Jt1<0v ,W5dž\-nK_R"r|25sFs7{"x_y0 h6`}"}4x"ab(%I*j/(_ YF5%‹;+tL4ZT;"g *ycG\ fΟ s,#18ÒT9e')cs?qgU m(v ,`jӳ*9uLBq HYĭUDK9{w;dtT8ed Jzح. h,{ 12m+Pٵ%֝9K7ˉi2 !ʪr͑ݏz)̾Pnw} #b֯ed LZر]hq]s1ᄄC4$༛L*xj-UKLƚ%>sj{PPʸNo²|_ I)dD@/ںpNyZi^NF[+niP0ٖ zMQ= A9E6a/rVi? t _9EDTq -"0#|GqHHe>@3(P{ۙ8ODLXY {Yq&֪=٘g2|`$c\j153As]iX[vwLƣ0if! 29LG|_81j ~%񞋒[t0mBmn]z:9O Qjt#J;Oqg#CH_Dk ^!h8#hg{:A[IA O9xr_%1+&=E_mBf6#BEϫ =*+'v$eB0W t7$@m vt9.j =`\%[^ }ga" FLM j*\ޯDF3~ębK@.~$i0ID4ZG" EtjDVW5@xӹMKßTAәp"R6Ks$a 'p^KR %ǔ9ݨl+ߴKC* |8<Е?/n|^Ui?Ln5<4HptN{H?N(Y8#FsINDҔpCaCt+g5SMĻ?&;zZrV'~+ %,VhM-k6^5xslL*Fw[\#EU_?м?&wuURde(7ٛu, W9>]a|K6ܰVw1B|#JfJfQB.{4ԾV凒q(Et ukdGpjaw`xq9O4]sWY 'w'apmx/Dy'Լt܅nWE=d+wLH ?_M#qt : (4Yɻh|!X[kV;*uJy| /x>A4I4q4E}ߝ\:^ Y1N tp|SnI(WPCj]"-[K=0h>>?H˽o8a.M^] !Yۗ 98ׯ$ڷJnz\;z߹ ;HR|gNIGvf>.1T:4;x>tF'7