p11-kit-tools-0.23.22-150500.8.3.1<>,z8e:;'p9|H;T͹k!o+Ž[ W=Kb7PJ]U@"c>`!w6[d: ,:ewkYANHҸ "J>6?6d % S1R_ u     Q XlT(8 9 : F0G1H1I1,X14Y1<\1h]1|^1b1c2d3'e3,f3/l31u3Dv3Xw5x5y5!z6h6x6|66Cp11-kit-tools0.23.22150500.8.3.1Library to work with PKCS#11 modules -- Toolsp11-kit provides a way to load and enumerate PKCS#11 modules, as well as a standard configuration setup for installing PKCS#11 modules in such a way that they're discoverable.e:;'h01-ch3a"SUSE Linux Enterprise 15SUSE LLC BSD-3-Clausehttps://www.suse.com/Development/Libraries/C and C++https://p11-glue.freedesktop.org/p11-kit.htmllinuxx86_64Z  큤e:;e:;e:;e:;e:;bd5867b7215dbd5d81e9358913cf981a5c57f5210f93dcc990238718df29f99f54c5fcbdcddba5db317edaa0c8b0de677198f3b8d4f22ed44e8d9276366982ac4afdd303b50c51ee2292d2a17cc45eee44667998f91be07943349e54d2a12caa990061f9c4a52c3bcff64808e66df4f6f1252c3c2a4e51cdcf4d59cf0587b0638ca25f352520a6103b86c59de016b13a7449e92358ec096a8e6a182e96788a11rootrootrootrootrootrootrootrootrootrootp11-kit-0.23.22-150500.8.3.1.src.rpmp11-kit-toolsp11-kit-tools(x86-64)@@@@@@@@@@@@@@@@@@    libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.16)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.26)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.6)(64bit)libc.so.6(GLIBC_2.8)(64bit)libdl.so.2()(64bit)libdl.so.2(GLIBC_2.2.5)(64bit)libp11-kit.so.0()(64bit)libp11-kit.so.0(LIBP11_KIT_1.0)(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.2.5)(64bit)libtasn1.so.6()(64bit)libtasn1.so.6(LIBTASN1_0_3)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3e7ca^@]Γ@ZX43@V@T9T;pmonreal@suse.comlnussel@suse.comscabrero@suse.delnussel@suse.delnussel@suse.dekukuk@suse.desbrabec@suse.commpluskal@suse.comp.drouand@gmail.comlnussel@suse.de- Ensure that programs using can be compiled with CRYPTOKI_GNU. Fixes GnuTLS builds. [jsc#PED-6705] * Add p11-kit-pkcs11-gnu-Enable-testing-with-p11-kit-pkcs11x.h.patch- Backport IBM specific mechanism and attributes (Jira#PED-584) 0001-Add-IBM-specific-mechanism-and-attributes.patch 0002-Add-support-for-serializing-CK_ECDH1_DERIVE_PARAMS-m.patch 0003-client-Allow-zero-part-length-at-C_SignUpdate.patch 0004-Fix-support-of-CKA_DERIVE_TEMPLATE.patch 0005-Add-other-SHA-variants-also-for-RSA-and-EC-signature.patch 0006-Add-support-for-missing-AES-and-DES-DES3-mechanisms.patch 0007-Add-support-for-MAC-and-HMAC-general-mechanisms.patch 0008-Add-support-for-CKM_DH_PKCS_DERIVE.patch 0009-rpc-Handle-special-cases-for-buffer-and-length.patch 0010-Add-support-for-CKM_AES_CTR.patch 0011-Add-support-for-CKM_AES_GCM.patch 0012-common-pkcs11x.h-Support-CRYPTOKI_GNU-for-IBM-vendor.patch- Update to version 0.23.22 (bsc#1180064, bsc#1180065, bsc#1180066): * Fix memory-safety issues that affect the RPC protocol (CVE-2020-29361, CVE-2020-29362, and CVE-2020-29363), discovered and fixed by David Cook * anchor: Prefer persistent format when storing anchor [PR#329] * common: Fix infloop in p11_path_build [PR#326, PR#327] * proxy: C_CloseAllSessions: Make sure that calloc args are non-zero [PR#325] * common: Check for a NULL locale before freeing it [PR#321] * Build and test fixes [PR#313, PR#315, PR#317, PR#318, PR#319, PR#323, PR#330, PR#333, PR#334, PR#335, PR#338, PR#339] - Changes for version 0.23.21 * proxy: Do not assign duplicate slot IDs [PR#282] * common: Get program name based on executable path if possible [PR#307] * anchor: Exit with non-zero code, if any error occurs [PR#304] * Build and test fixes [PR#283, PR#290, PR#291, PR#292, PR#296, PR#299, PR#305, PR#306, PR#309, PR#311] - Changes for version 0.23.20: * Revert "Fix RPC when length-s are 0" changes [PR#276] - Changes for version 0.23.19: * common: add Russian PKCS#11 extensions to pkcs11x.h header [PR#255] * Add simple bash completion for provided commands [PR#258] * Unbreak list matching in enable-in and disable-in [PR#262] * Fix RPC when length-s are 0 [PR#259] * rpc: Add vsock transport support [PR#270] * trust: Support CKA_NSS_{SERVER,EMAIL}_DISTRUST_AFTER [PR#265] * Build fixes [PR#271, PR#272, PR#273, ...] - Changes for version 0.23.18: * rpc: Allow empty CK_DATE value [PR#253] * build: Meson fixes [PR#245] * build: Adjust feature parity between meson and autotools [PR#247] - Changes for version 0.23.17: * common: Fix uClibc-ng compilation [PR#237] * trust: do not allow daylight to invalidate date validation [PR#236] * build: Port to meson build system [PR#231, PR#234] * rpc: On UNIX wait on condition variable instead of FD if header is for a different thread [PR#232] * doc: Add 'server' command in help [PR#229] * Build and test fixes [PR#230] - Changes for version 0.23.16: * proxy: Support C_WaitForSlotEvent() if CKF_DONT_BLOCK is specified [PR#225] * conf: Ignore user configuration if the program is running as root [PR#226] * proxy: Refresh slot list on every C_GetSlotList call [PR#224] * modules: Fix index used in call to p11_dict_remove() [PR#219] * Fix Win32 p11_dl_error crash [PR#218] * modules: check gl.modules before iterates on it when freeing [PR#217] * trust: Ignore unreadable content in anchors [PR#215] * extract-jks: Prefer _p11_extract_jks_timestamp to SOURCE_DATE_EPOCH [PR#213] - Changes for version 0.23.15: * trust: Improve error handling if backed trust file is corrupted [PR#206] * url: Prefer upper-case letters in hex characters when encoding [PR#193] * trust/extract-jks.c: also honor SOURCE_DATE_EPOCH time [PR#202] * virtual: Prefer fixed closures to libffi closures [PR#196] * Fix issues spotted by coverity and cppcheck [PR#194, PR#204] * Build and test fixes [PR#164, PR#191, PR#199, PR#201] - Changes for version 0.23.14: * proxy: Avoid invalid memory access when unloading proxy module [PR#180] * Update pkcs11 header to allow SoftHSMv2 to compile [PR#181] * build: Restore libpthread dependency [PR#183] * Build fixes [PR#188] - Changes for version 0.23.13: * server: Enable socket activation through systemd [PR#173] * rpc-server: p11_kit_remote_serve_tokens: Allow exporting all modules [PR#174] * proxy: Fail early if there is no slot mapping [PR#175] * Remove hard dependency on libpthread [PR#177] * Build fixes [PR#170, PR#176] - Changes for version 0.23.12 * Fix compile error when PKCS#11 GNU calling convention is enabled [PR#160] * Fix getauxval() and secure_getenv() emulation on macOS and FreeBSD [PR#167] * Build and test fixes on macOS [PR#162, PR#168] - Changes for version 0.23.11 * trust: Add extractor for edk2/cacerts.bin [PR#139] * modules: Add option to control module visibility from proxy [PR#140] * trust: Prevent trust module being loaded by proxy module [PR#142] * library: Use dedicated locale object for printing error [PR#148] * Treat CKR_CRYPTOKI_ALREADY_INITIALIZED correctly [PR#134] * Improve const correctness for P11KitUri [PR#152] * PKCS#11 URI scheme comparison is now case insensitive [PR#156] * Build and test fixes [PR#151, PR#149, PR#141, PR#138, PR#135] - Changes for version 0.23.10 * filter: Respect "write-protected" vendor-specific attribute in PKCS#11 URI [PR#129] * server: Improve shell integration and documentation [PR#107, PR#108] * proxy: Reuse existing slot ID mapping in after fork() [PR#120] * trust: Forcibly mark "Default Trust" read-only [PR#123] * New function p11_kit_override_system_files() which can be used for testing [PR#110] * trust: Filter out duplicate extensions [PR#69] * Update translations [PR#128] * Bug fixes [PR#125, PR#126] - Changes for version 0.23.9 * Fix p11-kit server regressions [PR#103, PR#104] * trust: Respect anyExtendedKeyUsage in CA certificates [PR#99] * Build fixes related to reallocarray [PR#96, PR#98, PR#100] - Changes for version 0.23.8 * Improve vendor query attributes handling in PKCS#11 URI [PR#92] * Add OTP and GOST mechanisms to pkcs11.h [PR#90, PR#91] * New envvar P11_KIT_NO_USER_CONFIG to stop looking at user configurations [PR#87] * Build fixes for Solaris and 32-bit big-endian platforms [PR#81, PR#86] - Changes for version 0.23.7 * Fix memory issues with "p11-kit server" [PR#78] * Build fixes [PR#77 ...] - Changes for version 0.23.6 * Port "p11-kit server" to Windows and portability fixes of the RPC protocol [PR#67, PR#72, PR#74] * Recover the old behavior of "trust anchor --remove" [PR#70, PR#71] * Build fixes [PR#63 ...] - Changes for version 0.23.5 * Fix license notice of common/unix-peer.c [PR#58] * Remove systemd unit files for now [PR#60] * Build fixes for FreeBSD [PR#56] - Changes for version 0.23.4 * Recognize query attributes defined in PKCS#11 URI (RFC7512) [PR#31, PR#37, PR#52] * The trust policy module now recognizes CKA_NSS_MOZILLA_CA_POLICY attribute, used by Firefox [#99453, PR#46] * Add 'trust dump' command to dump all PKCS#11 objects in the persistence format [PR#44] * New experimental 'p11-kit server' command that allows PKCS#11 forwarding through a Unix domain socket. A client-side module p11-kit-client.so is also provided [PR#15] * Add systemd unit files for exporting the proxy module through a Unix domain socket [PR#35] * New P11KitIter API to iterate over slots, tokens, and modules in addition to objects [PR#28] * libffi dependency is now optional [PR#9] * Build fixes for FreeBSD, macOS, and Windows [PR#32, PR#39, PR#45] - Changes for version 0.23.3 * Install private executables in libexecdir [fdo#98817] * Fix link error of proxy module on macOS [fdo#98022] * Use new PKCS#11 URI specification for URIs [fdo#97245] * Support x-init-reserved argument of C_Initialize() in remote modules [fdo#80519] * Incorporate changes from PKCS#11 2.40 specification * Bump libtool library version * Documentation fixes * Build fixes [fdo#87192 ...] - Move RPM macros to %_rpmmacrodir. - New server subpackage - Change keyring to new maintainer Daiki Ueno - Avoid bareword to fix build failure - Remove obsolete patches: * p11-kit-biarch.patch * 0001-Support-loading-new-NSS-attribute-CKA_NSS_MOZILLA_CA.patch * 0001-Fix-a-typo-in-x-cetrificate-value-see-also-https-bug.patch- Also build documentation (boo#1013125)- support loading NSS attribute CKA_NSS_MOZILLA_CA_POLICY so Firefox detects built in certificates (boo#1154871, 0001-Fix-a-typo-in-x-cetrificate-value-see-also-https-bug.patch, 0001-Support-loading-new-NSS-attribute-CKA_NSS_MOZILLA_CA.patch)- Use %license instead of %doc [bsc#1082318]- 32-bit compatibility fixes: * Add PKCS11 module to p11-kit-32bit (bsc#996047#c39) * Add p11-kit-nss-trust-32bit NSS module * Fix potential bi-arch issue with private binaries (fdo#98817, p11-kit-biarch.patch)- Update to 0.23.2 * Fix forking issues with libffi * Fix various crashes in corner cases * Updated translations * Build fixes - Make building more verbose - Enable tests - Small spec file cleanup with spec-cleaner- Update to version 0.23.1 (stable) * Use new PKCS#11 URI draft fields for URIs [fdo#86474 fdo#87582] * Add pem-directory-hash extract format * Build fixes - Remove 0001-trust-allow-to-also-add-openssl-style-hashes-to-pem-d.diff; fixed on upstream release - Remove autoconf, automake and libtool require; unneeded dependencies - Add gtk-doc require; needed to build html documentation - Remove redundant %clean section- remove patches: * trust-Print-label-of-certificate-when-complaining-.patch * trust-Dont-use-invalid-public-keys-for-looking-up-.patch - new version 0.20.7 (stable) * New public pkcs11x.h header containing extensions [fdo#83495] * Export necessary defines to lookup attached extensions [fdo#83495] * Build fixes - new version 0.20.6 (stable) * Make the p11-kit-proxy.so module respect critical = no [fdo#83651] * Build fix for FreeBSD [fdo#75674] - new version 0.20.5 (stable) * Don't use invalid keys for looking up stapled extensions [fdo#82328] * Better error messages when invalid certificate extensions * Fix parsing of some odd OpenSSL TRUSTED CERTIFICATE files * Fix some leaks, and memory issues * Silence some clang scanner warnings - new version 0.20.4 (stable) * Don't complain about C_Finalize after a fork * Fix typoh01-ch3a 16983150470.23.22-150500.8.3.10.23.22-150500.8.3.1p11-kittrusttrust.1.gzpkcs11.conf.5.gzp11-kit.8.gz/usr/bin//usr/share/man/man1//usr/share/man/man5//usr/share/man/man8/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:31290/SUSE_SLE-15-SP5_Update/d2461017bafa557a22e90431a0c28c1a-p11-kit.SUSE_SLE-15-SP5_Updatedrpmxz5x86_64-suse-linuxELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=cfab1ced77b0c9acb2457c3db20c75d7eb1f55c3, for GNU/Linux 3.2.0, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, BuildID[sha1]=78734019a23b0c627951f7d23e2d86e7651b1d00, for GNU/Linux 3.2.0, strippedtroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)troff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)R RRRRRR RRRR R R RRR RRRRRRR RRRRR R RR RRԥi{X>utf-861af4eec1dc694cf8a8fff264ad8dcf636f74510b27e9e8c6dbb6fd6819c8b61? 7zXZ !t/S?]"k%$P x3OS,פVXU͈W7 ?/rS^xM$Qq SCy o]t"cp/P} bo$kϷ?6SLJ%e[rNs'UZn]AQfu6PFx uY!Oፄ)Iz*d1njGGc3c+esC򇾺l=kQ,LƌX `lfpۮH\QAf สK1kPҰ(螞W.Jz}iK_d lT!L_l:j)C}{0i89{*$夛lk;ϯ3`%TF GEԤHv"r 2].lӧU !ڃ7>dZho&'0ݵ ֠֌ ׃^ {;e*e`!VԯqB` aanvU?B-~j9B  z_SWLB0[Ejڤ0bB:tYiҔS,(9ZO)v(>vttz+CǍ@-Tk{\'`ëb.Fفp/E /]#`CM=F ;nט>Nk!$ʵ*>egHveҋfo(|;Tb^ձIWK/IZ$r"'=<ՎPt tiP8la%XM-]3Pͽsٰ7w w[qSˀ?񓓶TLE(;DNླྀжc|iyern9US ~blwe$it-o +pc(p@I '.nݿZk5FwZ M6cy\{TO iM?ehZt65kp)ZʿZ/;XqU\lY*,r-'JOKQulFO]$rpJ sK-~fjHV̠芡(e ).V:D V\QVL- ؿ ڛtC/{pzn#FL}.XVI~†p+c$jev{Pl Rd5&͖kNǺ(oP6ʖDCH<"!yľ.Q~}SRd򳊱(/_5|6xŇ/±orJ1TDPa܌%WpB''&Ū^c5DDts[ &)JpJm7Sw}_HjsQ's*@2 UW1W))#hMȯKxmz "hqL{n{SǬIԐknۀ ]糵:ohxޗ ˕1t4{F*뜤E&4;st92%9YY }+?[5 u 1hZlJH``7}%':5@P@%t[nNJR m+`+ky3]Q~5Z!y<&P$R0!FE|" p;¦i~lrTVJY<*{rqTҢ}0 :;3@&d}\Ҙaf7:7R(.iM~Ҳ]WZS̊69N\EH}eW}'/@ssj w>K?M:YQ<FzPˋY\ʲ|^^RM ,XA'#Oߘa WG 1 s~ފ:2ְrw~j$^$$|jt:ECL;D"$cWjK |*-_˨ UcOc"MI2,Ar vC A ԍ B*0,- Qu9RB^" M%ob}'Q Sl F$kݝ\d`}Q!׍b!9ʣN{)m8M^ʲ !:Dxn1dzrǧ2"`2S$ӛerX/r׶g冱.V>|EBxPٕTׇ^ څ2G7ɜ;<(|rw@Ti1ӻs'qwt~r~-dDyWG -=h^Wa4'8D 8@m"!UY@m9.F޼} 4HPMXLr8gNcߣ㍏]Q {b[;Y/U|Iopus*olOcIFrqK"I8IlϾT"]qGh؜5ɧkْ.*A[&+-F=>:uIoiGV(S6?Z$DyA mCp"֍ v]LicD4Ot.Z6#DWS\[}P;ϟ%"87;ښ=M>S)BlL ??y9 SL-^~*֡$z^_=vqw3>о)v\1m'ϒS13h\\2.v澠]<񪧁׷DrX9vŅI0pP[QV ޔ~CUWB{!bq ,&<_WE6e&^VaiA"@ MkY_$ZUT/ H1xZ׀ڔ_UZc'4"Dt-!vVZ^ӌF9~>.6'jtLi\fY8_D˕NS3]6ǡ2tl,vx>"\c>3\MVA}B%`Ҥ]mk&3zt^~5wjW f~˹ΙmK\Ca Bl|߭.+tCQKn4L A m({.B凯j/?j<j ٩ֻ]8}wn4($\@c=F@۩1Zhd|YDž8J'ŢQ|y&Dܳf,6UI ] ^gi[58WD@FԧDR`5!m?}U#t!ͼ ZUf GJ9צFѵkXĝ {fjѶqrq™\JF…߹uSHw?A5bkGDO"|,rVm8J_P)Mzl bRm<.^%O[MrXp̹q6tBWM[p#$P)v&\D[!U.%1QJ[5r8Ҁ&>"sؼPlu5Rʎ|wAVhZj2iRJlҮh)9*@wNEl|۬!gpvyzgNxp:]qV!l2۠؄'Ud椑 JZAґQ`ҰY'ty3Og^:X:ǒVHϓ;тڱֳ<[]3/,gDG -PC3fZ̭t*gB y~HL)_QjgЪwψbi8o1+"qPzvS'8>GHz!RsuNP4] >W RV -OL J\֐Ь g_G^ Ö^^(Y5zMkN)W 48y7e2']*D\F\3#P'#I[`A8Wsq3OoԦرDgqRXX' vr%ߎq(Ց1!k`WӏepX=B ;B> uwZ6Xpn (LcbqEaeIgbZ\04nQ0 fF'p߀Y:S28ᱵgW&S7iix>wm<%kk52q16B7!=Vj3|gdgϑC0kjگmbpn$x[Jf23ǒ "WXarNxs 8I[V*`CZY"UsrVSwL~V=AuCɋfto7%_Ouk(N)Ũ9FUM3x gsJ-TV̄"d?5 ƆhGx#)toyvY}zp1n 7*#;cUW~O҈\+{DHn ?4Bp[0Mme!ߴ P^~&>Rl.[*^6 =N7(1;T*RK``A&3eTLH2[Űb8S.#r&7AtS[X1U*CU*zxjy\'/: ;@AF[{mٹVk>(吥Ծ] d$x%"w/*|sNH`mk^!@>d䋂$ W>qDhb+Y!lcx{|'󃩞i/,V4$; USPQN'#MU j2'xO͟"]%Hp? [̝mjɿPaeM>RFfXÆNMPֈRW!,0Pc[L3 Ah z#F:1Mh3}үi1϶&B?\r-Yw`Y(uw-2vǵxx{bGay=CIYK ,A~zH8M"w83;6Hؾ;rJ"cyS<72?ARa]Ӎ%f-=8{%_Aa {;* 9+F~6:Vs ʹ4h..ڌu#!頗q^#B+ZVzKtE,Q[.u䨽q#~8 [':蟖S*F3aAzsQXl'+>xl*7Gev*JEk'& P8;׿{<=TO`sI?ݞrd4%ҧ5OnV!vOW7 ]+:nMId+ʼ@nD{BA1;%lҞY%-MO2 PZu% 7"i=9_8%H*dS"{P-S>k} 1 @Ha|߰b}%p|lU5~KEiɷ(+\A (ނv8G?׽R# +F}*_nyjf6:T0qni鯜HyS ˮFܒG;;Ño^n_\Zfa&:~@hY4&4n ^AEB.HgS]4la+;0HђhF CvJƓ]5Tרp:D߽T}!8z>S\Tz^;پW-/+EYI~f"3-KX?\{1iZLļd 8JfN)&fUn䤹=g;`!~SQLp)b' G-&jfF4ADsI&أGLdzTIןgz[ W{ Z&g~J[!=r;dMGB7^uOkf wo=!i;tߩ'}uzv#`${.JA)L7~&Z썬}T-e@Dr'H0|kI~喷,WU2X]C{DcμDݝ[9K瀐?d: V5fbr?3ņK5`7a~CuMp8vۏa@rL2 `+s;QGLfrH}cl32(f6a* =d=W,HH2lػNl U,T~>~~+-4Ot:{9-Aڢ2 _">úep7ߏʊ#&N"Eȇ3E S:A2wN}yOv_kV{sQse@t.'eea7f|@D9/b;jUs-2_$M}&,wn=4޸r]`x^R+vIa 5\kBm>_Mb,nڷtaa\a5RH)K_I#TS~s#AWR.2<{s5h!500ϒ^;*8d }J?r4t}N灁UEMh_w mBv-ʛrd X> ~P8ACY&E Q"C?ģ5xh .F{ B9Ԑ4&Kz2l:1esAY۴O'+p1"݆"xB?TrcPf"ןXp<ʦzyװ1Tqn35O8 *H*fojs=vzk+]F8Sj ٫ m4;m㞵 /M۠S,I1t!ߥR(ȬH{1'd꼍T@8ZL"1:6 i[Q[f0~p#8ua Sh=PB4iN3vKArS{\h,X_ԥR&W^vYA5[zċufO`+_wm{CeZanK q n@Q/DÜ9_*$ ͱ8shI釗f6t]0/s̅ʎn"$0$hNM>h^gٱU1b͎\Z)>T۞EV2|&HvѺ- ٜ0$_UP'6ynS B'Y`Am[nXINC>ω;T}$k2SQvlaįx-g 5lM}o|G!\IB5 'r06\jXtQ@S?#:G9hWIxTpA^?icNdȦN"3QīT\u$يhښ`P1gsiVKD>w@q>,/\O %s-QfVv8c`JݠKX@G@w3-56C?}@ oW^&* &ZLk&<sc,IceWj:gS?XSl7\Ԅ #*L 4~sMF ]kN1h]R\K>;yrF:լR("pAl:" Iv7gKgsԥ#}{mn;=B3/dV+.1d'ِ9R{La[ VVmH.Oᝏ݃J;T.s 6Bc?F~C%0DZ%; T E;;LE:~sh(ppCpQ]V9|)bLPE8$A9|4/. 1f,@B<6@#+&$$W2PKYm*E@+YBPZ0w˲^L 4@B^śfX|آKP>0rsԪ('.϶b& 8ϟ-~Ca8CPqѓݨ4 +՟8<{fbL@0V*,l6~V<JLiQ-F$ sra{SYbt10d)N1"w$SiЄt&b!/2'ZxnwmB#};2!qK1BEEz$fZCxZ !~cW(ٖ$<{yWD<32$&5pYzuFoj,x/׸y߻@ ^0W~Yonc?1)(^յӝ 4yZoS'pj_yƿJaL CbܓYưJl.:_lSc=9VƆ6DE0DD/! 44s~ͭutwLXRăbO:XijBH"ª(Muu]\ G U)g -w7 z/b9z{%~wԁ!81G1FeD*d~Il^/d[s,[|'j [TlǺ~Ff^49#sɤ6yН;چ[[H i,Ro_!I %4DzJvGEub6ŝܾD0q"i3YT$~G>L߇˒sحl.WO 4a,*3|Tt汌AeG•`nD"S/5ƪɻIchJ#C3mrnʈb؊(2nOTJ0a @Aawbr;sI0]6.Btf5]Ɋh9Ut=?TZ( 1.a,l~}8JL܃'īȯMŃm^"?ec {BKr\;/O1L+]_V`}Fjhʨٸ͏M/l[,؟V| M Z7炱l~x跄}!>֒t}kIj}^8u>2/6-f7H=*6aXNAj}I)o,AM$MmQ|mŢ h2ڋ_Z + @Զ"$- uJU0" 3 Pܮiͼaވ+ynW" ù_tn6hK=yLy. 1c~`լ@ݻq%-0x;;q'@;}ޤD9e 8eL Xi޹c%J*~z{ܯJ^/4x :뀸NK#]vmbq9rj*ɊL8[ڥ?&4D7[Q`*Iqc҂)g7+phq b*MeCWRU *-T<̴Cȕ\>:r &݄{E9|nnǗ3*)/ϸbзffe}N@V/kQ&"ڎbyw?v&g<I4+ZFXc|Dv@yӵʮ@ĢqHQ}iς>yIw3kUqIR#r;2j}$,(76)s5".s͟)vk*KY#[1Mj}TN.-^ µ]}{a -e} & D{Yv 氝P>,}{p"txfpC$\8Kۙx2!Mg/bP$UzrK̋vqWwL;u(8F+hNڢ:>/2*_Y$zP1HW"Au!<0%1VׯD&6U`vI,`c"*2,r.HvpXQsa Y7;<yIy`%)mxYA-j |n"DPuv&opJq^9~l^맞z "k\.}"b%81l#Od[8];gl97< (`L:s7c?v8#PKtmvJ0+]N5xo-KܣYD6S1{fq(o?IV$IHa{Gx$:l9'x\HHqXw;|^%ː&g˾SR,@ "QPRlOwf+G:F-b4 6Yw-j"2v{ i0# FbF㊵/4q!Gy3O9q}Kc2?!خNǷy0Ӝ/ |>Ut[ Á1RɅeiߵp#uT54hD}lьEi5dcȸuJTsv.Ԩ~UINO5RcɌ/dһl_;>梃;힘NlOpޅUbqu2jd=*+D(ya72epw[/YmQ!\ae(>NKFlzPZQt0TԽl^rǃ!铺*\oKA9MLuc0|%i`0N׷+RF(̺nB3&:K_4fu!*1,飭 3+:}Y'jmKx|eߵrOVG ^pP 5l@"Y{+!$Xy@y7l:/3>!c'+/:êCߚpFxa ]veΙ!vk",.P1"tn1ٲ6Kao92,?ov:fp"7 ǔF\nvXf tK'&Ed}Sn[fW^}vB4BnƆ-W :H 5“Q,tLOH=rg$&(>ֶ9̕WQ9SN>&~~,LL` r̆lz@rZg TK_6$7O6s`ea@-BX)ij'K'kSR}l Qa<ӛSeu uxEڟ #XzQR/?E'pϾz.=9; *y(z!5ˋ1BwjEÉ3CH_y%h_{+1hWȓSZZ_%qXy#^[ ^ScrM`C5 a+y` h6ҟE9P@6K~bԀ]y+}I3"k|BҗsEVljN?IJiP2iPE&p3ѵo $R;Hsoۭ7H8*&"4ЋDދy\}L|YGpBEȏ&A\@C :8a}Qn4Pux0rDQy o7;oi^g5͔Y=8.BGetė쟲 oL\XU=0[Hmƛ "/ݮ70yH9]:oׂAXHӷQZ-= L`@rz,Q@!_EfDӠ⭰(&͹mdv0f"JFybΒ1i E'lpNwjTD'H-M;:b.efO˫7%hȧ mU+k}deVH,.a~5[Jy<)a+?hI$P8ckKb٣ ˘N^ W{N2T|mO:1Ӷ,A"ȳWgC=z Ao'>aCQJъpCh*8+Uzr}*9CdS̐VKe}2#7jBB[>2hL&R")UP\n<=\ÚYzz\F}v`90uw{ /mY)#v# 1dMiܩkNBۀ)+hҧDpg9 بIb)A8)[ k8HwxR .4yr6R$3.b:c_ AL$pJ#%Wj|ZoTo(sHeaxK롊m_>+afHB\N7E NbuNjNw뚜[|geflT2cv 6EM+ؔ ףNǧ… /JGFWR5 ^}+lT9ee;\9z<[L⧁M: [$* Dz0@