nss-devel-3.36.0-9.el6_10$>{q%)]8˘?ˈd   P CIP4 4 4 4 4 4 4444(e8l,9,:R\,G4H4Iè4XY\$4]4^ƹbdǠeǥfǨlǪt4uȐ4v`w4xʠ4yp˄Cnss-devel3.36.09.el6_10Development libraries for Network Security ServicesHeader and Library files for doing development with Network Security Services.[x86-01.bsys.centos.org ]CentOSMPLv2.0CentOS BuildSystem Development/Librarieshttp://www.mozilla.org/projects/security/pki/nss/linuxi686 P YRCyQGw'[!r7 p0$%.+#z?3c]?9XSh8?r A큤[i[iZi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(R'Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi([ [l[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-3.36.0-9.el6_10.src.rpmnss-staticpkgconfig(nss)nss-develnss-devel(x86-32)@@ @ @      /bin/sh/usr/bin/pkg-confignspr-develnssnss-softokn-develnss-util-develpkgconfigpkgconfig(nspr)pkgconfig(nss-util)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(VersionedDependencies)rpmlib(PayloadIsXz)4.19.03.36.0-9.el6_104.19.03.36.03.0.4-14.6.0-14.0-13.0.3-15.2-14.8.0[9@Z3@Z@ZZ2@ZZ@Z`@Z%ZZZ)-@Z%8Y@Y i@X@X @X,Xf@Xs{@XOXF@XAb@X,J@X%X#X!@X@X2@X@W%W@V3V@VJVV͛@V@Vk@VVy;@VMVLh@V'~@U@U|@UzUrU@U2G@U+U) U'@U"u@U@TuTd@T"@SS@S@S׌SSQ@S@S-S@S@S@S!@SSU@SFS2@S2@Rb@R߲RƦ@RR$RR;R].@R].@RR@RQPRNREs@R@-@R:@R:@R9R2@R2@R+@R)R)R R@RR@Q@Q@Qzl@QR@QQQNP@P[PqPM@PM@Pd@P@P@PPx@Px@PvO@O O@Ọ@O Oc+@O`@O_6O_6OTOLOLOLOB5O&@O#@O@NU@NNGNN@N@NNw.N`@N`@N`@N^"@N\NGNENNN*N*M@M@MUMMlMfH@M] M:M4/@LL@LwLvW@LvW@LvW@LvW@L @K[KKKO@KK]KUKRKRKMKMKLd@KD{@KD{@KD{@K4@K,@K*@K@KJ@J1@JSJSJ@Jv@J@JG@JG@JJJ@JRJ J@JiJiJ@J@JJJu@Ju@Ju@Ju@Ju@J#J#J@J@JJJJ/@J:J:JzJjJ?r@J?r@J,@J)J)J@J{IzIzIIIԨIԨIIII2HHH+H@H@HoH@H`HCHG@GQG]@G@G@G~G-@G-@G-@G}G@G_@GSG1G FFFޚ@F@F@FvsFkF` @EE(EEl$E D@E D@D@D@D@D@DvCC@CC@C@CZCZCZCZBϼ@Daiki Ueno - 3.36.0-9Daiki Ueno - 3.36.0-8Kai Engert - 3.36.0-7Kai Engert - 3.36.0-6Daiki Ueno - 3.36.0-5Daiki Ueno - 3.36.0-4Daiki Ueno - 3.36.0-3Daiki Ueno - 3.36.0-2Daiki Ueno - 3.36.0-1Daiki Ueno - 3.36.0-0.1.betaDaiki Ueno - 3.34.0-3Daiki Ueno - 3.34.0-2Daiki Ueno - 3.34.0-1Daiki Ueno - 3.28.4-3Kai Engert - 3.28.4-2Daiki Ueno - 3.28.4-1Daiki Ueno - 3.28.3-3Daiki Ueno - 3.28.3-2Daiki Ueno - 3.28.3-1Daiki Ueno - 3.27.1-13Daiki Ueno - 3.27.1-12Daiki Ueno - 3.27.1-11Daiki Ueno - 3.27.1-10Daiki Ueno - 3.27.1-9Daiki Ueno - 3.27.1-8Daiki Ueno - 3.27.1-7Kai Engert - 3.27.1-6Kai Engert - 3.27.1-5Kai Engert - 3.27.1-4Kai Engert - 3.27.1-3Daiki Ueno - 3.27.1-2Daiki Ueno - 3.27.1-1Kai Engert - 3.21.0-8Elio Maldonado - 3.21.0-7Elio Maldonado - 3.21.0-6Elio Maldonado - 3.21.0-5Elio Maldonado - 3.21.0-4Elio Maldonado - 3.21.0-3Elio Maldonado - 3.21.0-2Elio Maldonado - 3.21.0-1Elio Maldonado - 3.19.1-9Elio Maldonado - 3.19.1-7Elio Maldonado - 3.19.1-6Elio Maldonado - 3.19.1-5Elio Maldonado - 3.19.1-4Kai Engert - 3.19.1-3Kai Engert - 3.19.1-2Elio Maldonado - 3.19.1-1Kai Engert - 3.18.0-5.3Elio Maldonado - 3.18.0-5Elio Maldonado - 3.18.0-4Elio Maldonado - 3.18.0-3Elio Maldonado - 3.18.0-2Elio Maldonado - 3.18.0-1Elio Maldonado - 3.16.2.3-4Elio Maldonado - 3.16.2.3-3Elio Maldonado - 3.16.2.3-1Elio Maldonado - 3.16.1-14Elio Maldonado - 3.16.1-13Elio Maldonado - 3.16.1-12Elio Maldonado - 3.16.1-11Elio Maldonado - 3.16.1-10Elio Maldonado - 3.16.1-9Elio Maldonado - 3.16.1-8Elio Maldonado - 3.16.1-7Elio Maldonado - 3.16.1-6Elio Maldonado - 3.16.1-5Elio Maldonado - 3.16.1-4Elio Maldonado - 3.16.1-3Elio Maldonado - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.15.3-11Elio Maldonado - 3.15.3-10Elio Maldonado - 3.15.3-9Elio Maldonado - 3.15.3-8Elio Maldonado - 3.15.3-7Elio Maldonado - 3.15.3-6Elio Maldonado - 3.15.3-5Elio Maldonado - 3.15.3-4Elio Maldonado - 3.15.3-3Elio Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.1-15Elio Maldonado - 3.15.1-14Elio Maldonado - 3.15.1-13Elio Maldonado - 3.15.1-12Elio Maldonado - 3.15.1-11Elio Maldonado - 3.15.1-10Elio Maldonado - 3.15.1-9Elio Maldonado - 3.15.1-8Kai Engert - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.14.3-37Elio Maldonado - 3.14.3-36Elio Maldonado - 3.14.3-35Elio Maldonado - 3.14.3-34Kai Engert - 3.14.3-33Elio Maldonado - 3.14.3-5Elio Maldonado - 3.14.3-4Elio Maldonado - 3.14.3-3Elio Maldonado - 3.14.3-2Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.0.0-12Elio Maldonado - 3.14.0.0-11Elio Maldonado - 3.14.0.0-10Elio Maldonado - 3.14.0.0-9Elio Maldonado - 3.14.0.0-8Elio Maldonado - 3.14.0.0-7Elio Maldonado - 3.14.0.0-6Elio Maldonado - 3.14.0.0-5Elio Maldonado - 3.14.0.0-4Kai Engert - 3.14.0.0-3Bob Relyea - 3.14.0.0-2Elio Maldonado - 3.14.0.0-1Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.3-7Elio Maldonado - 3.13.3-6Elio Maldonado Batiz - 3.13.3-5Elio Maldonado Batiz - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Elio Maldonado Batiz - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado - 3.13.1-4Elio Maldonado - 3.13.1-4Martin Stransky 3.13.1-3Elio Maldonado Batiz - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.12.10-17Elio Maldonado - 3.12.10-16Elio Maldonado - 3.12.10-15Elio Maldonado - 3.12.10-14Elio Maldonado - 3.12.10-13Elio Maldonado - 3.12.10-12Elio Maldonado - 3.12.10-11Elio Maldonado - 3.12.10-10Elio Maldonado - 3.12.10-9Elio Maldonado - 3.12.10-8Elio Maldonado - 3.12.10-7Elio Maldonado - 3.12.10-6Elio Maldonado - 3.12.10-5Elio Maldonado - 3.12.10-4Elio Maldonado - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado Batiz - 3.12.9-9Elio Maldonado - 3.12.9-8Elio Maldonado - 3.12.9-7Elio Maldonado - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Kai Engert - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5.99-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-7.3Elio Maldonado - 3.12.5-7.2Elio Maldonado - 3.12.5-7.1Elio Maldonado - 3.12.5-7Elio Maldonado - 3.12.5-6Elio Maldonado - 3.12.5-2.1Elio Maldonado - 3.12.5-2Elio Maldonado - 3.12.5-1.14Elio Maldonado - 3.12.5-1.12.1Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.10Elio Maldonado - 3.12.5-1.8Elio Maldonado - 3.12.5-2.1Elio Maldonado - 3.12.5-1.2Elio Maldonado - 3.12.4-15Elio Maldonado - 3.12.4-14Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - 3.12.3.99.3-30Elio Maldonado - 3.12.3.99.3-29Elio Maldonado - 3.12.3.99.3-28Elio Maldonado - 3.12.3.99.3-27Elio Maldonado - 3.12.3.99.3-26Elio Maldonado - 3.12.3.99.3-25Warren Togami - 3.12.3.99.3-24Elio Maldonado - 3.12.3.99.3-23Elio Maldonado - 3.12.3.99.3-22Elio Maldonado - 3.12.3.99.3-21Elio Maldonado - 3.12.3.99.3-20Elio Maldonado - 3.12.3.99.3-19Elio Maldonado - 3.12.3.99.3-18Elio Maldonado - 3.12.3.99.3-16Dennis Gilmore - 3.12.3.99.3-15Dennis Gilmore - 3.12.3.99.3-14Dennis Gilmore - 3.12.3.99.3-13Dennis Gilmore - 3.12.3.99.3-12Elio Maldonado+emaldona@redhat.com - 3.12.3.99.3-11Elio Maldonado - 3.12.3.99.3-10Dennis Gilmore - 3.12.3.99.3-9Elio Maldonado - 3.12.3.99.3-7.1Fedora Release Engineering - 3.12.3.99.3-7Elio Maldonado - 3.12.3.99.3-6Elio Maldonado - 3.12.3.99.3-5Elio Maldonado - 3.12.3.99.3-4Kai Engert - 3.12.3.99.3-3Kai Engert - 3.12.3.99.3-2Kai Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - 3.12.2.99.3-7Kai Engert - 3.12.2.99.3-6Kai Engert - 3.12.2.99.3-5Kai Engert - 3.12.2.99.3-4Kai Engert - 3.12.2.99.3-3Kai Engert - 3.12.2.99.3-2Kai Engert - 3.12.2.99.3-1Fedora Release Engineering - 3.12.2.0-4Kai Engert - 3.12.2.0-3Dennis Gilmore - 3.12.1.1-4Kai Engert - 3.12.1.1-3Kai Engert - 3.12.1.1-2Kai Engert - 3.12.1.0-2Kai Engert - 3.12.0.3-7Kai Engert - 3.12.0.3-6Kai Engert - 3.12.0.3-3Kai Engert - 3.12.0.3-2Kai Engert - 3.12.0.1-1Jesse Keating - 3.11.99.5-2Kai Engert - 3.11.99.5-1Kai Engert - 3.11.99.4-1Kai Engert - 3.11.99.3-6Kai Engert - 3.11.99.3-5Kai Engert - 3.11.99.3-4Kai Engert - 3.11.99.3-3Kai Engert - 3.11.99.3-2Kai Engert - 3.11.99.3-1Kai Engert - 3.11.99.2b-3Kai Engert - 3.11.99.2b-2Kai Engert - 3.11.99.2-2Kai Engert - 3.11.99.2-1Kai Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- Backport upstream fix for CVE-2018-12384 - Remove nss-lockcert-api-change.patch, which turned out to be a mistake (the symbol was not exported from libnss)- Restore CERT_LockCertTrust and CERT_UnlockCertTrust back in cert.h- rebuild- Keep legacy code signing trust flags for backwards compatibility- Decrease the iteration count of PKCS#12 for compatibility with Windows - Fix deadlock when a token is re-inserted while a client process is running- Ignore tests which only works with newer nss-softokn- Use the correct tarball of NSS 3.36 release - Ignore EncryptDeriveTest which only works with newer nss-softokn- Don't skip non-FIPS and ECC test cases in ssl.sh- Rebase to NSS 3.36.0- Rebase to NSS 3.36.0 BETA - Remove upstreamed nss-is-token-present-race.patch - Revert the upstream changes that default to sql database- Replace race.patch and nss-3.16-token-init-race.patch with a proper upstream fix- Don't restrict nss_cycles to sharedb- Rebase to NSS 3.34.0- Fix zero-length record treatment for stream ciphers and SSLv2- Include CKBI 2.14 and updated CA constraints from NSS 3.28.5- Rebase to 3.28.4- Fix crash with tstclnt -W - Adjust gtests to run with our old softoken and downstream patches- Avoid cipher suite ordering change, spotted by Hubert Kario- Rebase to 3.28.3 - Remove upstreamed moz-1282627-rh-1294606.patch, moz-1312141-rh-1387811.patch, moz-1315936.patch, and moz-1318561.patch - Remove no longer necessary nss-duplicate-ciphers.patch - Disable X25519 and exclude tests using it - Catch failed ASN1 decoding of RSA keys, by Kamil Dudka (#1427481)- Update expired PayPalEE.cert- Disable unsupported test cases in ssl_gtests- Adjust the sslstress.txt filename so that it matches with the disableSSL2tests patch ported from RHEL 7 - Exclude SHA384 and CHACHA20_POLY1305 ciphersuites from stress tests - Don't add gtests and ssl_gtests to nss_tests, unless gtests are enabled- Add patch to fix SSL CA name leaks, taken from NSS 3.27.2 release - Add patch to fix bash syntax error in tests/ssl.sh - Add patch to remove duplicate ciphersuites entries in sslinfo.c - Add patch to abort selfserv/strsclnt/tstclnt on non-parsable version range - Build with support for SSLKEYLOGFILE- Update fix_multiple_open patch to fix regression in openldap client - Remove pk11_genobj_leak patch, which caused crash with Firefox - Add comment in the policy file to preserve the last empty line - Disable SHA384 ciphersuites when CKM_TLS12_KEY_AND_MAC_DERIVE is not provided by softoken; this superseds check_hash_impl patch- Fix problem in check_hash_impl patch- Add patch to check if hash algorithms are backed by a token - Add patch to disable TLS_ECDHE_{RSA,ECDSA}_WITH_AES_128_CBC_SHA256, which have never enabled in the past- Add upstream patch to fix a crash. Mozilla #1315936- Disable the use of RSA-PSS with SSL/TLS. #1390161- Use updated upstream patch for RH bug 1387811- Added upstream patches to fix RH bugs 1057388, 1294606, 1387811- Enable gtests when requested- Rebase to NSS 3.27.1 - Remove nss-646045.patch, which is not necessary - Remove p-disable-md5-590364-reversed.patch, which is no-op here, because the patched code is removed later in %setup - Remove disable_hw_gcm.patch, which is no-op here, because the patched code is removed later in %setup. Also remove NSS_DISABLE_HW_GCM setting, which was only required for RHEL 5 - Add Bug-1001841-disable-sslv2-libssl.patch and Bug-1001841-disable-sslv2-tests.patch, which completedly disable EXPORT ciphersuites. Ported from RHEL 7 - Remove disable-export-suites-tests.patch, which is covered by Bug-1001841-disable-sslv2-tests.patch - Remove nss-ca-2.6-enable-legacy.patch, as we decided to not allow 1024 legacy CA certificates - Remove ssl-server-min-key-sizes.patch, as we decided to support DH key size greater than 1023 bits - Remove nss-init-ss-sec-certs-null.patch, which appears to be no-op, as it clears memory area allocated with PORT_ZAlloc() - Remove nss-disable-sslv2-libssl.patch, nss-disable-sslv2-tests.patch, sslauth-no-v2.patch, and nss-sslstress-txt-ssl3-lower-value-in-range.patch as SSLv2 is already disabled in upstream - Remove fix-nss-test-filtering.patch, which is fixed in upstream - Add nss-check-policy-file.patch from Fedora - Install policy config in /etc/pki/nss-legacy/nss-rhel6.config- Ensure all ssl.sh tests are executed- Update sslauth patch to run more tests- Fix syntax errors in patch that disables sslv2 tests - Resolves: Bug 1297888 - Rebase RHEL 6.8 to NSS 3.21 for Firefox 45- Resolves: Bug 1304812 - Disable support for SSLv2 completely.- Add patches for ABI compatibility- Disable extended master-secret due to older version of softoken- Enable two additional ciphers and keep another one disabled - Prevent enabling extended masker key derive- Rebase to NSS-3.21- Prevent TLS 1.2 Transcript Collision attacks against MD5 in key exchange protocol - Resolves: Bug 1289890- Package listsuites as part of the unsupported tools set - Resolves: Bug 1283655- Resolves: Bug 1272504 - Enable TLS 1.2 as the default in nss- Rebuild against updated NSPR- Sync up with the rhel-6.6 branch - Resolves: Bug 1224450- Additional NULL initialization.- Updated the patch to keep old cipher suite order - Resolves: Bug 1224450- Rebase to nss-3.19.1 - Resolves: Bug 1224450- On RHEL 6.x keep the TLS version defaults unchanged. - Require softokn build 22 to ensure runtime compatibility. - Relax the requirement from pkcs11-devel to nss-softokn-freebl-devel to allow same or newer. - Update to CKBI 2.4 from NSS 3.18.1 (the only change in NSS 3.18.1)- Update and reeneable nss-646045.patch on account of the rebase - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL7.1]- Fix shell syntax error in nss/tests/all.sh - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Restore a patch that had been mistakenly disabled - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Replace expired PayPal test certificate that breaks the build - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6] - Resolves: Bug 1131311 - rhel65 ns-slapd crash, segfault error 4 in libnss3.so in PK11_DoesMechanism at pk11slot.c:1824 - Temporarily disable some tests until expired PayPalEE.cert is renewed- Keep the same cipher suite order as we had in NSS_3_15_3_RTM - Resolves: Bug 1123092 - openldap-2.4.23-34.el6_5.1.i686 fails after updating nss to nss-3.16.1-4.el6_5.i686- Resolves: Bug 1158160 - Upgrade to NSS 3.16.2.3 for Firefox 31.3 - Remove unused indentation pseudo patch - require nss util 3.16.2.3 - Restore patch for certutil man page - supply missing options descriptions to the man page- Resolves: Bug 1158160 - Upgrade to NSS 3.16.2.3 for Firefox 31.3- Resolves: Bug 1145432 - CVE-2014-1568- Fix pem deadlock caused by previous version of a fix for a race condition - Fixes: Bug 1090681- Add references to bugs filed upstream - Related: Bug 1090681, Bug 1104300- Resolves: Bug 1090681 - RHDS 9.1 389-ds-base-1.2.11.15-31 crash in PK11_DoesMechanism- Replace expired PayPal test certificate that breaks the build - Related: Bug 1099619- Fix defects found by coverity - Resolves: Bug 1104300- Backport nss-3.12.6 upstream fix required by Firefox 31 - Resolves: Bug 1099619- Update nspr-version to 4.10.6- Update pem sources to the same ones used on rhel-7 - Remove no longer needed patches on account of this update - Resolves: Bug 1002205- Move removal of directories to the end of the %prep section - Resolves: Bug 689919 - build without any softoken or util sources in the tree- Remove unused patches rendered obsolete- Fix pem module trashing of private keys on failed login - Resolves: Bug 1002205 - PEM module trashes private keys if login fails- Restore use of indentation patch until another bug is resolved - Resolves: Bug 606022 - nss security tools lack man pages- Update to nss-3.16.1 - Resolves: Bug 1099619 - Rebase nss in RHEL 6.6 to NSS 3.16.1- Resolves: Bug 689919 - build without any softoken or util sources in the tree - Add define-uint32.patch to deal with using older version of nss-softokn - Fix suboptimal test failure detection shell code in the %check section- Prevent users from disabling the internal crypto module - Resolves: Bug 1059176 - nss segfaults with opencryptoki module- Improve support for ECDSA algorithm via pluggable ECC - Document the purpose of the iquote.patch - Resolves: Bug 1057224 - Pluggable ECC in NSS not enabled on RHEL 6 and above- Install man pages for the nss security tools - Resolves: Bug 606022 - nss security tools lack man pages- Fix the numbering and naming of the patches - Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- make derEncodingsMatch work with encrypted keys - rename a patch, dropped the experimental moniker from it - Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- Revoke trust in one mis-issued anssi certificate - Resolves: Bug 1042686 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) [rhel-6.6]- Disable hw gcm on rhel-5 based build environments where OS lacks support - Rollback changes to build nss without softokn until Bug 689919 is approved - Cipher suite was run as part of the nss-softokn build- Build nss without softoken, freebl, or util sources in the build source tree - Resolves: Bug 1032472 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741- Update to NSS_3_15_3_RTM - Resolves: Bug 1032472 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 - Resolves: Bug 1031238 - deadlock in trust domain lock and object lock- Using export NSS_DISABLE_HW_GCM=1 to deal with some problemmatic build systems - Resolves: rhbz#1016044 - nss.s390: primary link for libnssckbi.so must be /usr/lib64/libnssckbi.so- Add s390x and ia64 to the %define multilib_arches list used for defining alt_ckbi - Resolves: rhbz#1016044 - nss.s390: primary link for libnssckbi.so must be /usr/lib64/libnssckbi.so- Add zero default value to DISABLETEST check and fix the TEST_FAILURES check and reporting - Resolves: rhbz#990631 - file permissions of pkcs11.txt/secmod.db must be kept when modified by NSS - Related: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Add a zero default value to the DISABLETEST and TEST_FAILURES checks - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix the test for zero failures in the %check section - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Restore a mistakenly removed patch - Resolves: rhbz#961659 - SQL backend does not reload certificates- Rebuild for the pem module to link with freel from nss-softokn-3.14.3-6.el6 - Related: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0] - Related: rhbz#1010224 - NSS 3.15 breaks SSL in OpenLDAP clients- Don't require nss-softokn-fips - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Additional syntax fixes in nss-versus-softoken-test.patch - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix all.sh test for which application was last build by updating nss-versus-softoken-test.path - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Disable the cipher suite already run as part of the nss-softokn build - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Require nss-softokn-fips - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Require nspr-4.10.0 - Related: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix relative path in %check section to prevent undetected test failures - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Rebase to NSS_3.15.1_RTM - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x) - Update patches on account of the shallow tree with the rebase to 3.15.1 - Update the pem module sources nss-pem-20130405.tar.bz2 with latest patches applied - Remove patches rendered obsolete by the nss rebase and the updated nss-pem sources - Enable the iquote.patch to access newly introduced types- Do not hold issuer certificate handles in the crl cache - Resolves: rhbz#961659 - SQL backend does not reload certificates- Resolves: rhbz#977341 - nss-tools certutil -H does not list all options- Resolves: rhbz#702083 - dont require unique file basenames- Fix race condition in cert code related to smart cards - Resolves: rhbz#903017 - Firefox hang when CAC/PIV smart card certificates are viewed in the certificate manager- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement. Please ensure that older packages that don't use the alternatives system for libnssckbi.so have a smaller n-v-r.- Syncup with uptream changes for aes gcm and ecc suiteb - Enable ecc support for suite b - Apply several upstream AES GCM fixes - Use the pristine nss upstream sources with ecc included - Export NSS_ENABLE_ECC=1 in both the build and the check sections - Make failed requests for unsupoprted ssl pkcs 11 bypass non fatal - Resolves: rhbz#882408 - NSS_NO_PKCS11_BYPASS must preserve ABI - Related: rhbz#918950 - rebase nss to 3.14.3- Revert to accepting MD5 on digital signatures by default - Resolves: rhbz#918136 - nss 3.14 - MD5 hash algorithm disabled- Ensure pem uses system freebl as with this update freebl brings in new API's - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue- Install sechash.h and secmodt.h which are now provided by nss-devel - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue - Remove unsafe -r option from commands that remove headers already shipped by nss-util and nss-softoken- Update to NSS_3.14.3_RTM - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue - Update expired test certificates (fixed in upstream bug 852781) - Sync up pem module's rsawrapr.c with softoken's upstream changes for nss-3.14.3 - Reactivate the aia tests- Recreate the distrust patch by backporting the upstream one - Resolves: rhpbz#890914 - Dis-trust TURKTRUST mis-issued *.google.com certificate- Resolves: rhpbz#890914 - Dis-trust TURKTRUST mis-issued *.google.com certificate- Remove a patch that caused a regression - Resolves: rhbz#883620- Fix locking issue causing curl hangs and authenticate to the correct session - Resolves: rhbz#872838- PEM peminit returns CKR_CANT_LOCK when needed to inform caller module isn't thread safe - Resolves: rhbz#555019 - [PEM] invalid writes in multi-threaded libcurl based application- Add dummy sources file to test for and prevent breaking rhpkg commands - Enable testing for 'rhpk upload' and 'rhpk new-sources' breakage such as hangs - Related: rhbz#837089- Update the license to MPLv2.0 - turn off the aia tests - Resolves: rhbz#837089- Resolves: rhbz#702083 - NSS pem module should not require unique base file names- turn on the aia tests - update nss-589636.patch to apply to httpdserv- turn off aia tests for now- turn off ocsp tests for now- Rebase to nss-3.14.0.0-1 - Resolves: rhbz#837089 - Update ssl-cbc-random-iv patch for new sources - Remove patches rendered obsoleted by rebase to 3.14 - Add a patch to enforce no pkcs11 bypass- Resolves: rhbz#830302 - require nspr 4.9.1- Resolves: rhbz#830302 - revert unwanted changes to nss.pc.in- Resolves: rhbz#830302 - Update RHEL 6.x to NSS 3.13.5 and NSPR 4.9.1 for Mozilla 10.0.6- Resolves: rhbz#827351 invalid read and free on invalid cert load failure- Resolves: #rhbz#805232 PEM module may attempt to free uninitialized pointer- Resolves: rhbz#717913 - [PEM] various flaws detected by Coverity - Require nss-util 3.13.3- Resolves: rhbz#772628 nss_Init leaks memory- Resolves: rhbz#746632 - pem_CreateObject mem leak on non existing file name - Use completed patch per code review- Resolves: rhbz#746632 - pem_CreateObject mem leak on non existing file name - Resolves: rhbz#768669 - PEM unregistered callback causes SIGSEGV- Update to 3.13.3 - Resolves: rhbz#798539 - Distrust MITM subCAs issued by TrustWave - Remove builtins-nssckbi_1_88_rtm.patch which the rebase obsoletes- Resolves: rhbz#746632 - Adjust the patch for new sources- Resolves: rhbz#746632 - pem_CreateObject() leaks memory given a non-existing file name- Resolves: 784674 - Protect NSS_Shutdown from clients that fail to initialize nss- Add two needed patches - Resolves: rhbz#783315 - Need nss workaround for freebl bug that causes openswan to drop connections - Resolves: rhbz#747387 - Unable to contact LDAP Server during winsync- Rebuild- Resolves: Bug 784490 - CVE-2011-3389 - Activate a patch that was left out in previous build- Resolves: Bug 744070 - Update to 3.13.1 - Resolves: Bug 784674 - nss should protect against being called before nss_Init - Resolves: Bug 784490 - CVE-2011-3389 HTTPS: block-wise chosen-plaintext attack against SSL/TLS (BEAST)- Resolves: Bug 761086 - Fix nss-735047.patch to not revert the nss-bz689031.patch- Update builtins certs to those from NSSCKBI_1_88_RTM- Bug 747387 - Unable to contact LDAP Server during winsync- Add to the spec file the patch for Bug 671266- More coverity related fixes in the pem module- Coverity related fixes- Add relro support for executables and shared libraries- Add partial RELRO support- Fix the name of the last patch file- Retagging to pick up two missing commits- Update builtins certs to those from NSSCKBI_1_87_RTM- Update builtins certs to those from NSSCKBI_1_86_RTM- Update builtins certs to those from NSSCKBI_1_85_RTM- Fix CMS to verify signed data when SignerInfo indicates signer by subjectKeyID- Fix pem logging to deal with files originally created by root- Retagging for updated patch missing from previous tag- Update to 3.12.10- Resolves: rhbz# 703658 - Fix crmf hard-coded maximum size for wrapped private keys- Resolves: rhbz#688423 - Enable NSS support for pluggable ECC- Add "Conflicts: curl < 7.19.7-26.el6" to fix Bug 694663- Construct private key nickname based on the full pathname of the pem file- Update expired PayPayEE.cert test certificate - Conditionalize some database tests on user not being root- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Fix memory leaks caused by SECKEY_ImportDERPublicKey- Short-term fix for ssl test suites hangs on ipv6 type connections- Add requires for pkcs11-devel on nss-softokn-freebl devel - Run the test suites in check section per packaging guidelines- Prefer user database ca cert trust settings system's ones - Swap internal key slot on fips mode switches- Update to 3.12.9 - Fix libnsspem to test for and reject directories- Add suppport for pkcs8 formatted keys in the pem module - Add verify(not md5 size mtime) to configuration files attributes - Prevent nss-sysinit disabling on package upgrade - Create pkcs11.txt with correct permissions regardless of current umask - Add option to setup-nsssysinit.sh to report nss-sysinit status - Update test certificate which had expired- Update to 3.12.8- Increase release version number, no code changes- Update to 3.12.7- Rebuilt- Appying the changes in previous log - Changing some BuildRequires to >= as well - Temporarily disabling all tests for faster builds- Change some = to >= in Requires to enable a rebase next- Fix SIGSEGV within CreateObject (#596783) - Update expired test certificate- Fix nss.pc to not require nss-softokn- rebuilt using nss-util 3.2.6- rebuilt using nspr-devel 4.8.4- Update to 3.12.6- Update to NSS_3_12_6_RC1- Fix curl related regression and general patch code clean up- Resolves: #551784 rebuilt after nss-softokn and nss-util builds - this will generate the coorect nss.spec- rebuilt for RHEL-6 candidate, Resolves: #551784- Updated to 3.12.5 from CVS import from Fedora 12 - Moved blank legacy databases to the lookaside cache - Reenabled the full test suite - Retagging for a RHEL-6-test-build- Retagged- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- bump release number and rebuild- Fix nsssysinit to allow root to modify the nss system database (#547860)- Temporarily disabling the ssl tests until Bug 539183 is resolved- Fix an error introduced when adapting the patch for 546211- Remove some left over trace statements from nsssysinit patching- Fix nsssysinit to set the default flags on the crypto module (#545779) - Fix nsssysinit to enable apps to use the system cert store, patch contributed by David Woodhouse (#546221) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387) - Sysinit requires coreutils for post install scriplet (#547067) - Remove redundant header from the pem module- Remove unneeded patch- Update to 3.12.5 - CVE-2009-3555 TLS: MITM attacks via session renegotiation- Require nss-softoken of same arch as nss (#527867)- Fix bug where user was prompted for a password when listing keys on an empty system database (#527048) - Fix setup-nsssysinit to handle more general flags formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build  !"#$%&'()*+,-./012343.36.0-9.el6_103.36.03.36.0-9.el6_103.36.0-9.el6_10nss-confignss3cert.hcertdb.hcertt.hcmmf.hcmmft.hcms.hcmsreclist.hcmst.hcrmf.hcrmft.hcryptohi.hcryptoht.hjar-ds.hjar.hjarfile.hkey.hkeyhi.hkeyt.hkeythi.hnss.hnssckbi.hnsspem.hocsp.hocspt.hp12.hp12plcy.hp12t.hpk11func.hpk11pqg.hpk11priv.hpk11pub.hpk11sdr.hpkcs12.hpkcs12t.hpkcs7t.hpreenc.hsechash.hsecmime.hsecmod.hsecmodt.hsecpkcs5.hsecpkcs7.hsmime.hssl.hsslerr.hsslexp.hsslproto.hsslt.hlibcrmf.anss.pc/usr/bin//usr/include//usr/include/nss3//usr/lib//usr/lib/pkgconfig/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector --param=ssp-buffer-size=4 -m32 -march=i686 -mtune=atom -fasynchronous-unwind-tablesdrpmxz2i686-redhat-linux-gnuASCII textPOSIX shell script text executableUTF-8 Unicode textcurrent ar archivedirectorypkgconfig fileRPRRR?7zXZ !PH6)٬t]"k%nÍdڴ4Yk(`<~>}F}/W1 )Z}1^?MdKMs9L8PmjJf y'qU}l-I}oCz(~.Uί  3> .$oZXyYn9R*wf>7D^ kF^-,R2-DxAu ŖOBQ`5yMo?ci~;ȯ|$hlUn\v,>$jIKXh1NH*WbGB]J-(_1nr\Mމj֭_J3W{{0}l)E:#ѻ;t2X^ed;ddwU6323W0 ~ VCdYɑd=X@ۈ `l6Kecpw t.Qy[r'K"~WMmS# 5zE3ĺ']NelիLʧRnGft($`zWk x)]nc{ J?x8|#Kku.^gCc_mu+LhLb$]"J}v ˯cpvڡL~qBMh1? PB%MReB_n$|J6L`CN'g܋ik+DTU@k熆;zڰ\7dUmA=B Gixv/Pm*\e8:uGe]@ ŔVTJX8;bx:;bn<T(/! m{2_}؏XW&Ɍl$؅%5_ECe6PA`3 /R޲Iӂ6Ρv8r^vCEio|Òۨ&I1=(AW%n3~EضӤwD0Y9[ppU p0vQR 'CqZڤFzU2߼0]_XOx11oA<>#W)n{Rk)[e G"aG;LnS:@@HCB,x$Wl4׼bXLY;/AzwҮp:ֽb7=:"`>+!fر{ {4y ԥ8Jad؂CZl *Pw5}@xew"KKYP&F0du)x<^ߴf[#e;rWG:4+TZG D$7чnixrh'VqD)Vo!ĦԷ(7&eFaU 4YCͤY9T }J;pu7bș@Pǘ.1uȀNMn i\h0I>fj9,2PlDnSEdCXEd*|NGiU55QplO-24^NUȿ y+/Hiiʠ連0@5Kmÿ-Ymw?Z9saЕ}:*vyD1ڋKaYSa M&$y+)5Xh_~3EyL-=u駀{Ytw"vO6FCפd ɽ#uֹt Ыʚi$1~[ę ;%b1[唐`2 D^{29S&\WK.Z"U`|UiVɱ!Nt*,Ci*-$n^@^\?|M}|1hz%6?P)E9yQK$M_^0,ā<x '6f!*`fE{lS ]|m2_ ̆>q:BZknv"\ a&aR7+#I?: ?S|C O[/ h,ipξ-$qH?Ԕ=w$hrapw#Qy+9&TR#8|Xyab oΥN}Ac!"<ڭ Gs'u<%Y?f;H@2m%^>ǥc{^syJ4QviNHx>x վf!T+s%/b bS$^|o֩6;e%~@e.'$n_3Rp2 Z_BQC6Qk87|:6#>ME=N v># Mc=I{`"]? p"+ Ǧ;t&Z4C`pϦ[6׭Zi蠇ߠ] 9Դɮ ~&)27^&=sFvHF6G:=vA扦9e\G{x>WcY owQ+uZQS KݙB7XJ8^r1Q4ְeOPNmCC\}TWT&odKUkeZ+6iGJ2yqܧ M;>aEAL8 JwEّY7 !7#T=hS:?zn214̈n{_(┆r:3ŐpNсy)Le*+(KȠ P~?]8fCj bQ}Qa\sjuC[LrظzEjgNs :vjBd's|qNX Ir?TsVD3=Kr M4XvnnރLBZU;|;3j}<}"!&(I;Qua9CọףlBw;Fr揱v^86SL߲74aؼwŶx 4pZ7$s}OH?iye`*M!/wbJ!嵱@*G; b|#x\4~9 ~ gSҚ꓅+)-WUfSZO$1m`F%_iI?څ/revO} wwEEx'8A"d$Y$Wsq 9A*hmh/"† (@wjUP9*ybs\Q-蒪? r+ܣO.>w3 b+ʄX_PScX Q(-xcQoW90VKͪB+*O{E\(W=1Qu?2 I'ne.l4Ss Z!Gn'S:@*#2-οR/Dd\S57c]% cѲVly۩FCTyaeͅm'B[@jBͥj)L511Eu#׀؇n5fOR$Zma*@M_;u)P?M=XUl?GCmB.CkhԧK4MY3;-+%lOwZ)XQ[RɣIDTl&[ [*O&bhWC # _Y9-}S{o䑅~9F*|Z;/H4):*rT?w31yM'KKƛ\1kOOo+k<Rafth?x6fAk;4mͫnט=>js /Yw?cNjE gJL\ f~ɩɓq˜-qWsI^5hC~O OAÓ syZ^rZ'$ ?7UnEs*8nT|2CM^4wVazOoχ˶Dܟ5B xrlnqIR74hfǶ)f_}0a4'H?MbƨXIcdhtoN/;x'!TŕIOI}RκFnQ %xӌIЦ\q_`X~s\jWQ tש2pfk-9WF8 !Cn\ZK,Q`R0݀x f-[Ոi/cm˿-ӳͧ[SGy1o7N dYIoMzx^R]ȩr`IY2uH"mAq('Te}?ptsRkh)e㷳*$2"Qp[6t) w fI$k=$2{D#L@(LJXYX@8&0rr@dSҔHxi@dx#d$/e~1^R|Qr]ZMZ46U\xx(VJh#3 Id |ηeq!Pr瓗vX!g /28f%6.-vQ-.y}'.߼Nˆgp# eqB >al{& Z;^ !&+_+Ɓ_|"c嬿^)LiUԏnr*pM'PEʼ ! E42y\\UeD[OM5c#g'DX aM!2i`R2K(4HOGLsu ܿS;0̺(}Q [nQ8~Vޛ`ux\+Af!dq*g{3(X2)p2va]K+ abnyiwBv&؟۴d6u;Ġ|cT҆C%Ԩ$s]0֞\y ̇ ;sWC`%#KBþM8oUY3)ȇ@ ur2j1]';΁vbR2=B'w 1[]fHo"w߂^e[tn#HA$uVL2JU:)Lh7pmD威I>)I}nUy^<ˠ&3MؓO9V]C:[y 5Q GZiߢv]ëK0P3 :!g*:I9\ƻ`88S ,ppiDE$)q^xjao.BR]ғ_F[N凝x80d##pf 6p8`҅[^I?8 ٗ3 BclT~RR(_V 12[qxnF+WE#y/`YƲd*nV4 :IOو~V@Tu,p 4\@[Ⱥo1&y$|20OM;% (p~G:@`pMR(fDJ%5mS m}sp$޴"pټt֙S2dJu}UHwSc9FNyZԝN3l {{V^6M=+Tp;\qUe8Աhq8hՉE+~p_/-puύ+s5_d=[/.t,9YlڮC/XYȓ~MYrh؎ôdч[o'l6=7k+o~o-}⶞VK3vE$UXR{{jO260{nd:!KUl:oHpjLɎDGwKz>zk~qiaɷٟYzߖǀE'!cE:RXL`"[zhwW9K-m|p?נwi?E`vp>/ín{ѤIQmg-! 7Nف\f J@JeP_pPD%(CpD \yMVw)(OwSy޳PUz~Elb"P#2#_>9\u=fo }tP<|X_rO,)!>T|=zyNhyɧf3nb̪HD3yf\֌^CŤ ͞lz o~2%|H⵾KyJA v7S%͖$sMH;dz+MrT".:΅`9Y Zk+,t~PX ?"傧PZ{#;h Z4 D`DVyd'x;Bx缋&v_8kܳG--ǖ$:* i۴+D`q`V)X#w?X{=ƙxf?ml8n٬ēlАy.^?怇%/Βh '>u&wv=Yݛf1]bm_ېSī16Ǐ}GILݱb9ԤHQ~?$>{VtΏzw-)kO[yURxR&a_1|~iE5@h}>oB X mRMlY3j+nvMۀ.J|L~94$_/ъ?p,۶"| ѢNc%B/ˀ㸊$|cÔc4E`~3I%Qq4}"ZCc=h"Oz$GDwy59X*UdSh>Q;tJdظ .$ʶb6ODÈ+9?hvLѹ;d^.nD8N>QZ=R!s5M!nӢi'u1:~z7w$PFAX ,jgJjͦPJq/b^ @ $cG-hXa&Vw?8t0(`ۿ{VPF iݣ Œ;\s}SQy2]/Elݟ/NQ9J?.3\"z9?ww7Y ɧKz-(oيzS&<?An>aJ;D2:M!f1o'C,R;TF&`+{kmLǤM:%hWe ?zg8#0}@a<20 *' Nilh0BN^5PgH$ +T8TH<S3;Zǹ/N8 ѿ"瑐 ,@7hsbagw*)Lf9+]8G?>E~tz& l@a\*ƽ9 \!<ł xC_l%9v`,^;C> +M6DwV1Μ HMVx.mx@L]h(c;Z( #M P ʛuB%&Darxa!:g惺6̶Qhl&kT@aaE+B`W\wv-ՠ3$2;K%xl ET_0W,Kd-̎oILJ VqOƭ֛v~CLE1c gun(#PO%iI %vlt OV' lgu2%%@U)}{B/y R:@_e͌$B^Jf(V8jVȾQR"0-恝UI{sn3p);>EjH'ч(>Q?!#RI 9jW!PEPg$W#>5)e}Nh-(|6e)͛94Z+ͥfMwTs)#Yx}Ҟc+3yYt3uMF|f: ;QGHy4n8Dܤ[6'(Y555U(M L^.*׶ I6lΒw ˻D #>)M伓Av>ez'I/YDj:$O|pphjkЄݚ 3Ł=C[&իG7^=Hy05  -],L|I d#a2IawFUkN}dGN&Hp?v֩p| ݻv|Ȍ!mcώ[Xc S܋9I+2v)<ÌHlR`r@J:.†]:1ȸgbtdwdƫ3uϘX)m Q!)E=>U!ѹDԈv5m1$mAfv+QS=f.}왻^"BkCn59XZ̨:[dk6Ƚ@Aֈ)֌Nba;uW HE<[>&p[wr-KJJ6 ?ڽ?>xG)Q߆g 颶̅iT'o|M.)P qXTޏAc-tOj@*OPífQcvbSM8SX5 kTp̀kK =^~=k$Ԑ9 (9 P0afdq'=,'sp Zudv#*v)Qz N tlD)p¸+B,Ќ(e בzuQOl\iNژ_1k["G%TWbˌh?JV^flf $E7E -jiœOCོ׾+G |˲* n4Y0vq2_UǝC]ޜ%QaL9,Ž[\AT Ru²5(g8뎳E"5J=`t^aw+/ع$i>a;%AZ0)[@N"D0 cFyU9< 5P%~ۂC<`5z[Ѷnt}ʟQ'Ũaviΐ[Kv@'^žZ 엺Ŭ[LM^WO.aIZ:K{#fnrн`ZSzz #s j=kG0!@ +E|\ MḂ9O} >;j`І``SWbZudAEc"dh8LtHzLzVWjĀo!Ed΂r*M1kU@1k3]u=y#dY"i QmaxCIz}+UU}7ߪ3H*^5Jiip jE,Bڀ=BE~4QwGkl"cӓ)FZu en#Qf؎n ňt5Xfbğ~%u{Lwkjs +( mo1RYUO\䎜YG.Y磤sWI(C\B,8OͿ@ qZSA]Ǫ+1 +u Djеevt3hEՉt+ Dއ)WU ws(c+f'<ɟ|DxZW|zklSƷ;e(/ E_5v$hl!tUVˠ;ڽv!oApf}UU\'"11?Ѯ3 (#qzZ !aehj""9w@g%+ߊ1~^ǂDeKjv/S)fT; w]f(\;~04Yet^cLzRhe~{+jۚ28gU@'Oބ٫2v>-@iH@^>XDȿQ]{)A`k΁+^0 W k_shkь)Pb0DO4^k47x 5=믄Q< j0KcCa@X/iJjtR-~ݎ;Z[QlxS%j2#i .6cR1z_3[AXK)N,[SC}6V.`q\aMׯ^'⬰LJ-Fτd{N߭m~#ȖBZ-SF(O-6O2:;}dǯKc}yqt4& Fh  Q, h-}0Aڷc$h+QE-&$bҦ7(+T8з~ iކ&>{,@3]`S RqyFlxk^WSּF,r$$I G*(?*dFb |[yze4Kh.uC>wr&HRnuîЕ 5sBͲp>% y-]鄟u{GIQ@̻TӾa71\hp[MUF؁1ѳm~XBkMl mP ,䓊m<Рsl'€x ®D}#ğ ` N Y}Eeஆ)ڹ1jf| umPMԣMNbvp ڔ168$ ѿu~wgĉ;f2`'%ݣÉB.::jDR!CiW"fX{T?ٍ0-Gu{s{q _mFM^cy,;? :`n8H,hWLMbqaH1y/KaZuwQRݛZ|K|R2G]~\ȑP#9[iNԅ XEސP"|9¬/4f}A@Ǯ}*Si\r J h6ns J#dxA-ۣN_TCF/+*nQ'1R%Ofa6ފR/E-t'OJk̂zMզ<`$-Pi<4IW)K(N\t ']z΂%ʜ~L^Q~a"aj`S.r5ZՄ7[md tbPA[W` z=L^]!jeU0 jUP断7!ig-%MreIbb4%7gʗd>#\JZYQZnA]3J1d&Ag:ӵc',o "5u$˚yenF ֭\ Hu:P"0P#BKrj_}xJPW Ui -@Qtq"ǸbBuG hcr TgiMK~J@:VA\JmɹuGN9-0z7$zK *m/(Ɓv겮. >࢑cϢX>/BWs»\}c̿q4#^nZ+t!ieԡ+Ac o@a9 meU[ kye3*7|L3a,̽ڸJ ~XT *uFz,rug.xr>(Yjf ~d9DKMuʺ rtإ|(f?%OKFlA ̈́dgj/3(h19RIڔez^&0}x ۢQN+ %9ת/gb|$gh##y !2>;{_JSAڼ2%In9;z:㢃vl5ˌ~@=աiwa 6`c$rT>cFy;C7 B).t}+ًANU!AYn~Uja"]{E%Z4.,ceg3XWw̏{_;/ɖ'zRrЧ7qC;eDJyìzoy2!N{EB-P^i@ϕQ۾pf648\l".P[[;Bi=dۢnƀ_ AeDe݌}4ީcAYP.ӂM4-#ݿ  *!{8M):olbe fgC `h+O eizf\,`(cK#?@\\+N!H>y[SO®FmgB{mZ"MX_%g1buE7Ab-6Qpg.Ųs7'hiJ/ބ[#!ro:%u'ۆ<%E܂Z#B#мޚg(ő*}QFck`=ʟHo[ss%51=12P^p?o bX.ZsyHM3CC?˛!eTLOf !r|KR'TZ&*p;(gוFri]avP[Q~TZO]QSeR|! 3LOSB@?.:x @-Fa&xԙhQ~7pڗh[ӣ͞:LPtMKE+ -Se *%}TFe?60VfM) CE!P9.*4;:ء$Zbs?_YԜiu L y|~~Y{oGDIqMWsJ$RH}ˢ#1s 4qzu=>GE&LaObR82'~uy3v X.cCvI"ɗAwi/5 }R6J:VyIіkʠTXqm3Lu_gdPC3Kb>)}lŠoG?%&`(TNdΨ+BՈQ!zd2kM @\9# fo1qX8.k0 a[H}۲xyk$>tݳ]SA[:Cx^%qcC7v*9K:1>z0Uv1o'NcA?NւxL:xX\ڪ(u+^eWt.קh exU|3SM݈w' bpNbԛɐpqfQJ0̜#cJڶ1U.#yK#UEg$wx^e߃) P0f3;rODڕ=BjTaSZ#V2p N13AV&{{3 %N/w Oj']=:r\S0o boIS^j0/k)ɥuӪ  X$38E_(Vi6tcLop~d]ffv Y 3`X$%Xps$2dzn՞n9N'p- 8QpꘂxU~AϏd# =WJ\ˠk*R]S4/e}I)&O ^E 1R۶t€TEC%l*kӻU5W ^`*n{;&~췶:2W[/~ǹ($ Wqp+?sZFjD3f)3\Hd9_]v|M+1dEHjٓ(08)hVT5Dq?FZ |F1g{ŌN7/4V6|nl߻ti5LfRApxe;1~bSt}7(fl!Y>w@Z_.Nk%KуCG }nWubW;n_]ndzKj{scB[O2 X3Qԕb.:"\KYeϷAX{tZn{+8KR\N6>L1TmoӤA/*;iO^H9She!gR%"~9]7@&M=ǒvI~CyN A_KD9&-@ZoW]<+-(ʿdް,R'(eܢ6sl£4KF+Izm,|0WekF '4-˦§6pY)ٯM_=ᰚH)*K@KAi%՟} {@1p3^ϐA@UYQ&h6/^& y-XX%JYi/.y{ @, !zjg]d$D8˪(e'v@+BLx 0/=465<\Z㠝H\6m.jEx{D$bERhdg΃ftW*5 HJJ l_xpBFf?l>6|^13x6Z(&m[EL,^/a"0x AՃS!,6IF.wDz,+d&v1%}r߆wn<#@ır<Co{VOi9i_D)7r6Y&knNT"V,%ӍcGJg~O"Ut) ! Ku7\t}&5=DꏠuKx#^. ]Bi|L.VA !PhE`^VսXapK#&,>H>юgk\]|c'mc=~e: 5|y⬟_KԦ<%dǧ"T)ǏE|<y*Ю |ͱzZha`4jqr{- \)\KZhE-!23mKr+۟]WZNcjp{ǥ:=6Qq7)}WlFzwtE"ѥO80va9ix1F#J>cp<;[o4$)<{άCiG`6x9ڢ'Ѱh.<ЎI#2%AW}XE¨%!БCN5a1.-H x~i av$u¤{zpu|4l{-pxXBU߷ 4:?ze)Ebj3yͣ};X`xđܴX"k] w$qGiY"mqQ4tML{%8w92̗ٛ`svIx-N vr˕aK޺ vIpjpgQ*jLOaXs/e@t02Btu4rh;[:{mUl/QR?EduϪ l<.i~UbeP;ۃ)IXWt i`i?8o xn5Zd7 YgH3"MZ]˸oT) )Aouףo`PƧ[w:wo!Tqtmݿ|i~ @IEi=u/b5wDQ;$0:#o]~|^3Ct#lybQw5`!{7^! p&%>;˵a|}7 T3r_[~U7t)NҢ:#;I Mj%-@tWjsc%&~o\1?ki>Qpu?oxU?%%;Z/ C+M)LF!`0yyoYh `8!o#1 ׬LK|V%\%՛9VzHp@OĹ?O񣝺$q!McV4'}M"bԎ @^bi+鱏[ϒmT֎M/{C_6L@ B?? L&}QĐ CNmr񲰿˺lor>Kj5FٻTA7@1UQ)Spw@(*Juʹar+o0DJ`/TBl1i';_MpGtF]֮P (ibc7|>kDuiH(ɑ&[Uw/e6r#[٥*g<.ZϢb 9j C%|ôeot%[k2 |%_ =}' pćFPwenNmLf]Hze7J iCշg7_.ZwC?卓~<9,)jSY.r.Gx¸$J&,Hx0վg PvA$q?`= Q5–8fڴrD˟itd+TnE S6q9B~xu.J-gMNRBy֊Y+.q|7[ G W7)ӵ>vo/p&JYK漢|F+iUZhpǖFnt"3[B&l: JLn/ɘ7s:n{pJQ]#$7/^b02H66>%ׂvT0S-sqhIx^ս(<4S<, ihk# qR큗4',jxo!NgUQ+.8qDj1B8LjrzYqv)p/!ǹ]CXc W࢏j̓+Y㬵rΠAxL3lz )~, VCHy4jDo+j G@n Az`_)GcuxG󅽊=M>1~X-+,VӍ%5`h_KAur%kA/S/.< 3|fPy7wǩjè~cF)dbDž>i-0s"6D4ƂY%F/'|JF<"ʠVF-zRUf%PGM+s{%Ӭ,=.|<@'9QPC0H⿴֠=EubIaNȘN]}\A&|UI)մz{{t[QFngN+Uw,X[,mu ;'.c7H!H6j~ioW8L̹A'UaL%Ȕ*:݅埩׀ *$5Ʒ2{xv 'Fܧdvo\]f]0,Bٟ]7bknEЂO 6 xrʡ}]WȵUұGY\lB :v z~SS;yTxz]K:{NTkK<:4wg.`]PNyMBJe!鶡Wv]w>PΘ(ݎ⯈>2P`Zmnь47m^1quLW,,c/U5Ь/95⺆fZŠӸ&-͑{gg;8O?>36"-_شYYvan&K^Dukk'$P־Џ©jx.<A3~n;|%٠.qݒ٣ gզ>uKhȋե)1^)/{*?S@.Z{AVM9^-VfNNW.^y2<09>.m2AXC6&4 U+4HEё -Jf[}MV \ fLRj<ڕ* ke>b{*gRVl&W e9 Ĺ0>ܺj7WQX'܍Xb8L`ṉȤgN|~_&B3Q`Wg7$`(-(46Sxg璂@>ܞ jz5jTV.1Z'n/w>K7[\ 𴫿@'N='=%&Oͷk]nM8dnO:ฝ``S0S,xm[!Zo< {/xYXT}f$薱gZ-;#>pQ*HGN@i $|œsZ,-],A%Vb|}4! `T#96ХeP*Vcmȏps D.:r/>g& )pL RZ0+GS}U *bM-ĄBlydxS2BPzzbw)2ᩦ>=IъW;9RdY;6Ȗ |-¦"[^ ߙM.;Ι2/|ABJr77(uδ$.br,>L?"bh_1~@NisӄQ{wKe^5]8E:V@}ȕ}s݈7HkeN*Ks#Q t{ŒMp"*u+,ؾ3~q׵pM:{]6`~Ƹ#$2,Χe!SP@Q 9Z+J^ C;J:ؠQ>D̶ G"i:K6 m}h)VY rխo1xO]x! ^e S;0aclVӖGPjKm#2O*ʰ4B#`M PT\hg6bNh':iFf]H//_gnuOpۮ; \,<~lFV58냅 A~mx:G%Ɂ v~2`MlG\eg9Bg=C  )w֍1_=;b77˒8{QY:47S_vHu&SExg?${{ut}  T_huϕ%sq>c nWtn7%*gC{)LҀo ~6{Jgy% 4>auGl B־ֆM8dEhMIWV2lpCo`JCD(PaAnZNE\\*B;o\*]}Kv׫P&56UD;0UJګ8o=ƱklGRqv^V,X|)(4y_pppwP\ʜ<,LM1َpA܉ozLݓ 4o0*ObaS.ܷMdEkJ.ใ z8-N1"? W]6W>K0"ciPX*3 XoFoln{4bjr% HK̒2 K^X $D% p +i_.<.¼ Y5H▗ia^;B1:}BhA4C+kW9}m9_.b 긹xY@cۺG3,ĉW+U'B xzneҮw˷ `+6D &}oQy `cƤIZzWl"gWY'7'vF6vzh @kCPe+iZHyT j&'FG:hB])گQlrrtaΚ7/o>oHR!kN`격Ö$-׶ߩ>VO-\og|+V dT钚c%T=O`0|Airfs }Wߓ:5SK-! 4n)囙-H'tD}`kCOؘ% As_8}`n,ۗ&,),DiV{kWB 18F?Ü|`2GJdŔx%#x'=W"DLڝ063c.vs,C s"y2U=;(2.gI |nc _nsᑱ_Y -OXIkƻ^Ǫo79 @lq0+ې\+pܯB)Dh9Fέ6`>=Rj3ESڊD`Weko3>inH#>M?-"(T4G.yՌ1 ߮UQKvo7rը(F!.!|92`ZXdBDpgGJ^yiZ0IsH@aPWM\;%qP+Vq."&T>ʬHbE0eiM4aET9*ȯפzaq5(&s8n DÔUDd ޯdϮVkϧs7Ffq)SS=ŠhEpL ,Bqb [Ÿݡ_ prj\.3o_ lar&o򆁯C&Au+qhie{ ǻKW3ȣ^lf[SZ6٦o u4Dj$x(l`Hߜ*ʳu,1J< .z Gmej}j&iys6V $P+CIpՎ ?RGN\LbaoR"2PG `5ſuj\}tJdFmkEԵ`EDZp-{<Pai"s xiN_z2PMYO;w'>4[Jb\G^TeMf3xilkScM~ 99~}N\ {5}AMӅ}bbcA$d'K$BlT֓SFL4m-4'9Ng-pBQ"Wdx8 wb~/;=GCxFisC^>h 稜Lsb!vP3גC\I=o7ƌ?2M=OPV,*((Al̋ Ĭ P IOZE u⋷f8k a;Κ;Y^t=,oT jqlά.-p||+ҡ<No2@Lr!CDmPCr~PP!ך 0=J.a#w-TcǟM3B\?ދX}uK'WG×hNChsL6I_nk~uSP$yVdaO'Q z`voIݏΠ|éj>,(;ŅI;0WҥW^vZbAGEmV*Pè=t)׭?w]MnH$TMG<~vIGQ}x4CK.֧zWTFʄQWA- aj!63 :dq@6S@6>x 9_8Vw,G|#9$5i81>tgG> ?Ԩ.c00'Nk/@ ƯE.Io*2A[}'%Ǜ;)LaHmT>.g]Nir$2sRfD_AL@~p|iz/ ctϝ[oo$"R?+`jה dœ|8qrL1J׏O_Ф+2훻n<8ùb)5?T2ﵧ(syÎ=$9(%+=G䨾UֶkKX?TBxpbZJE&QkO5.nrB_p5}!3ڒѮ?p ĪL'kI prjo9"Qg0|9{ؼVF̄2-{le#Q,:ǸX bFy0p<;m&nQ._T>/5ϴBN_*M4矷 ~)8f^m'XRFـ%Qcvoui{1e2@r/¸F;YIW+Jr<2RF0Dn<} )OXrY`t'dYh37@*"O/PR.tZ&۝^y\eQu(1X?7WuY-Dp+#|Ll;\i9>\1I^Bca @[j  ҁk~F̞"}Qes\Ӆ-,kdrN1*+v<9`RϽEAn>YP\RIl;Q , i^$p(%Ωâ\CJie]_ߧG6s[b\C՜;00^~ܿ2a?wL9`󵂸g|pi=xh mߒy90s?&ǠdQUc<+K/vҐw[T/DjCւ`/gWŜd ؼ`BJ+1ÿ]Ȇz%CFPDY^-ͰK5UI(Z%0HlғW׺O3nu7x}#G_߇ ?YE2 p#ꍼ:q_[[cd1lc_ X\!\UM&K 'Ha7xm*AyWU+Jnʦj qM)4vpX@8NWt밖3LɸsEf)5 rvfַ%_Kb`5CrHj #1TB[0MT70؆FޝÞ] i3ӡi # &e=9p0U30+6ъS3n@Z*^&THӹ߁s6c_ vJ[b7V & V 5^ݲGkyP=ϜntSU˲NLշ;"d@}E_@ >f<NيL6n&k>%Ī9Q9蜁T>Qeqb$ MLBJ QxgcUȆC\ݦ~긾 р&Aa'AԒ,oaZ:[o֟(MA Kce.ه&4)验bv,#D)xDY%D?irz7Hk̈́6A] rѬ-sf;Ec+qA؏U/ĸtLm)=PKc;/K?:\e)_ F+s]DĝS|x]Ӫ @_Uu\PwjURԵ]{|W~Az׵irF#޴]xė6A7M7DxV;D ̍LS;`yTċ3C̣̲ MuՏ!y~Aٯ 翽KS݀D݆_[{^ YssHfwG5}X vӂBF`+Y~UYb㮷 Z6, ;:s5t9YYFK US=9'AjsԶ;˛=3ir;w%kߵ;hbVk귣+q?D-XS&/4skOqN2nm5<"pik[|j!bNd֛ heY:@1cР,)z>]Ty 5qY69wMfuHdwQ,JZS^4H ܹs7]K%bлw)prieL#Bu f'$J@f.񳓓8Vf>ۨm?o-\ [s?y4%m|&6N#kVW[dᡍvz;NDCTJ TF}[9+w:m|L`oγǮC@y340\c b[W`b48;})C"߹7ln'9!^y`A?BW5vd0r#aۓ]pmz>a?+3wƗ߰1}=I)FI# XH&=SXK}X.3$hx\^T)x0?},\Vc.㕇5B0Gd"2(X$TCfwxȼFc?X9eܲΥvfjy.KP#acML$1 ,lH(k\榊yy(GA9"+WaBxh/Z0D>";ȹJJْ[08Q~TtϹl2a5:/=Hw`YcY$bzah̏(8kgA]{', Ȭ8}!i*h>o rLR"MRý^ь9I6,o`9`/\&yw7{%1wOu3Β3 ;kbVB5}E6e"ֺNuk?/eӂG)d<~C{ "}sS7 0yk͝yVP%cϑ$ƈ`atfhnQaOw~tJ_ɎQҮ.CmGt\y#6' f9tyKQ؟I}. d_B֬5{(%cLjO~ؘ7_Hi  wTqw #xoT"1pd JB@ҐE_ec۔[9GcR}/&$?@-iY? PMWEYS]ôG钞\-]ĵ9c~11ZT?Um̭mѪ}3e(r/ئ0%U]M[ 򀧊7;`||ORopVJj],Ɂ8U e MOA^{'*ϯ |3IDζXl @yIgg=b6ԕ$`\3HƆ>"i$}J}in %ui/Ǘ˂szen$HhĴx7!t9¶A҈^liaFLQ1>#"J3FT)Y]s&, `$ #i?뽛ww,Yz;VGd]b%EANy㕗^ lkQ\t陴8@!&83Q%w(EP:V@b8Ҽ$ߒ#!UebՄvf{ Om!- !3UpΧsSWĪxGȎiUy &mD%O.7@ q-^Oń쉭QgAtV{MqQjgFDmL:pnB2!Pʩvw4\֋ #|2::k_/: ]ݬ .R}p86n6Y^WGZŹ_K%Li"g Wxg5qNw6$ؔ0,U̒.S_:-%p* Kh@S>rC)w PVaHzD?`d΂C(ԥ,,h%`\57V9)NθɚU$la\K*<3iHWOzoVj2|fym:eM4J4E\I#_Zk漢A6/J}RZghURnP˥,`wLK }AR!ʘS-_n[cK"Y2GK;׫ͽU؟`흁N5qo'0V 6oXukqhHbD6^8˴`cf2zܳ7/0+!ڊ&h +i6<ȩt:A.5/@x;bpk p;(ge}Tѱ◘1nmB^1?%1?\}XԬ\w_݁,Oי=Tʲؽ@I'uv6It||tn2 .hq_&3EwvR-FVׂ3hmϯ4[lh Xs=+I1!.u'V:hͰ G nǦ:*m$xA@1dPȈ,7ORoW#~A0z~͟&6$uґMC,w!}5hыK<H;(𘽌h_Nx/Fk<3 lXlqld#)q׎O8UW5Usc7M7B' i߬L  ),Ƶ <}~߼UHn|27ЄoXc2g.ʶYFV s#U(俏˔Åɥ)A%̘דä&nmfpMmEq~6AZh(sQ0x#;H>f5DE^7nV2ߤdX٥Ti2`,iu{ҜZ +bewNb|YL~4;;4gk76[>Fdn~I!!II.>?n bd 7n,j.@7K1뙠±k jJ*H9Lvtޘ[4&j+$$"tgmi+ 2<2~2ùLE/sE-D9 >)cS&&F2# rcCܐ α.bqDFi 8­F 6qH%Hպ7炇G2^REϱ"P9~=h cMc4?ɞkYyxHCI|Pzb -%t-|>q~7.TǧD8_˻WkaQ[a2<۝O4i'FZ8jKAŠ ~tUGրihIJsȶP;h=TWN.]*gx8#SƌyK1$'r0e/*;Y־ Ӛbu?TTmIӎ$-"pdیP_ïd(rfXhըC1(V8PaOц *9pKr.>k3' 88Xɋ<&< YZ