permissions-2015.09.28.1626-14.3>t  DH`pYP./=„fy`{2WwÐI~r[G,}x:YiF]:lR/(~8PoGmd΄@l=G.3@y#h[3[~b֦ V_?J⺭F13q\+pD~A+ׇڰnX,0F<fGeQ K/q3c7949eb26ccd130803a9e9682d7f2fa89cf8034ӉYP./=„.e|ZrCFmpOH̹A~ Owݼ0jN)sW= qmŧFl ~vzv`|,lfXyt7==iĢ!!Q<';4mcHN=T6?ގkjc<­tI]*u]zw;Dt䝿Sq_t ~_@WLI/JPSB"Vye4><.?.d # B #,5 NdX |            I v LY(8S9 S:_S>*F*G*0 H*T I*x X*Y*\* ]* ^+b+c,fd,e,f,l,u, v- w.$ x.H y.lz.Cpermissions2015.09.28.162614.3SUSE Linux Default PermissionsPermission settings of files and directories depending on the local security settings. The local security setting (easy, secure, or paranoid) can be configured in /etc/sysconfig/security.YP'lamb67zopenSUSE Leap 42.3openSUSEGPL-2.0+http://bugs.opensuse.orgProductivity/Securityhttp://github.com/openSUSE/permissionslinuxx86_64 PNAME=security SUBPNAME= TEMPLATE_DIR=/var/adm/fillup-templates SYSC_TEMPLATE=$TEMPLATE_DIR/sysconfig.$PNAME$SUBPNAME SD_NAME="" if [ -x /bin/fillup ] ; then if [ -f $SYSC_TEMPLATE ] ; then echo "Updating /etc/sysconfig/$SD_NAME$PNAME..." mkdir -p /etc/sysconfig/$SD_NAME touch /etc/sysconfig/$SD_NAME$PNAME /bin/fillup -q /etc/sysconfig/$SD_NAME$PNAME $SYSC_TEMPLATE fi else echo "ERROR: fillup not found. This should not happen. Please compare" echo "/etc/sysconfig/$PNAME and $TEMPLATE_DIR/sysconfig.$PNAME and" echo "update by hand." fi # apply all potentially changed permissions /usr/bin/chkstat --system0QFIPZ?<9큤YP&YP&YP&YP&YP&YP&YP&YP&YP&f0f096f39905c1239462dea55bc34c8d22dae817647814b7ce162350609f2c09679c1c8263d75afca5e78b6768f9a1a5d9cb331dfc1502fc9e73090e6518adec317244444c3f5c029a7db2919d2d90b17651b053a019aeafb14acbd14f85645151d22b54d368056a59f951cebccfa5faa5cd5c3f099b7102c06ea5b580e112a7393eff1cdef020bd23c98e04879eb92frootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootpermissions-2015.09.28.1626-14.3.src.rpmaaa_base:/etc/permissionsconfig(permissions)permissionspermissions(x86-64) @@@@@   /bin/shconfig(permissions)coreutilsdiffutilsfillupgreplibc.so.6()(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libcap.so.2()(64bit)rpmlib(CompressedFileNames)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsLzma)2015.09.28.1626-14.33.0.4-14.0-14.4.6-14.11.2W"W@W@WPVV@VV2 @V +V +UuT~@TZ@SvSہ@SϣSSS@S[SM@S0@RnQR@RR@R@QbQQ>@Q@QP@P@P{PaO@Ọ@OȮO]@OE@O2cO1@N@N|tNyNx@Nx@N @MAM@MMtMY@MRL@L@LLr@Lr@L7L7LLҠ@LNL6L@LL(KыKsK?ĴJu@J#JJ:J@JJ|@JzJn@I@meissner@suse.commeissner@suse.comkrahmer@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.comkrahmer@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.comkrahmer@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.comkrahmer@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.comlnussel@suse.delnussel@suse.demeissner@suse.commeissner@suse.comlnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.dejengelh@medozas.delnussel@suse.delnussel@suse.dejengelh@medozas.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.demeissner@suse.demeissner@suse.demeissner@suse.delnussel@suse.delnussel@suse.de- permissions-suexec2-is-symlink.patch: suexec2 is just a symlink- permissions-shadow-bsc979282.patch: * list the newuidmap and newgidmap, currently 0755 until review is done (bsc#979282) * root:shadow 0755 for newuidmap/newgidmap- permissions-qemu-bridge-helper-988279.patch: adding qemu-bridge-helper mode 04750 (bsc#988279)- bsc975352-make-chage-sgid.patch: chage only needs read rights for /etc/shadow, so setgid shadow instead of setuid root. (bsc#975352)- permissions-gst-ptp-helper-960173.patch: permissions: adding gstreamer ptp file caps (bsc#960173)- permissions-suexec-bsc962060.patch: the apache folks renamed suexec2 to suexec with symlink. adjust both (bsc#962060)- pinger needs to be squid:root, not root:squid (there is no squid group) bsc#961363- permissions-suexec-bsc951765.patch: add suexec with 0755 to all standard profiles. this can and should be overridden in permissions.local if you need it setuid root. bsc#951765 bsc#263789- adjusted radosgw to root:www mode 0750 (bsc#943471)- radosgw can get capability cap_bind_net_service (bsc#943471)- remove /usr/bin/get_printing_ticket; (bnc#906336)- Added iouyap capabilities (bnc#904060)- %{_bindir}/get_printing_ticket turned to mode 700, setuid root no longer needed (bnc#685093) - permissions: incorporating squid changes from bnc#891268 - hint that chkstat --system --set needs to be run after editing bnc#895647- Do not applies permissions from backup files (~ / .rpmsave / .rpmnew) (bnc#893370) - do not mention SuSEconfig anymore, long dead (bnc#843083)- append a / to /var/log/journal so the framework makes sure it is a directory bnc#888151- make innbind mode 4550 (bnc#876287) - permissions: Adding systemd-journal directory (bnc#888151)- permissions: Adding new kdesud path for KDE5 (bnc#872276)- vlock_main lost its permission checking, so remove from here.- opiesu,wodim,vlock-main have no setuid root. (bnc#882035)- tighten /etc/crontab to be always mode 600, even in easy (bnc#867799)- duplicate /var/run entries to /run (bnc#873708)- permissions: incorporating capability for mtr, removing +s from ping (bnc#865351)- GIT repo moved to GITHUB. - removed the setuid bit from "eject" (bnc#824406)- do not use magic constants for strlen (bnc#834790- Chrome sandbox also allowed to be setuid root in secure mode now (bnc#718016)- use PERMISSION_FSCAPS- it is PERMISSIONS_FSCAPS (bnc#834790) - qemu-bridge-helper has no special privileges currently (bnc#765948)- utempter helper binary moved in new version to /usr/lib/utempter/utempter (bnc#823302)- cdrtools: allow some filesystem capabilities for more stable CD/DVD burning in "easy" mode. (bnc#550021) (cap_sys_nice, cap_sys_rawio, cap_sys_resource, cap_ipc_lock)- leave out readcd,cdda2wav,cdrecord until it is ready for the distro (bnc#550021)- cdrecord currently has no special permissions approved (bnc#550021) - append a /- Allow pcp to have stickybit worldwriteable directories- add /usr/bin/dumpcap to watchlist - make fscaps=1 the default on "" - added PERMISSION_FSCAPS to the sysconfig/security fillup template. - /bin/ping(6) was moved to /usr/bin/ping(6) /bin/eject was moved to /usr/bin/eject- apply permissions settings in %post. During initial installation some packages might be installed before the permissions package due to dependency loops so we need to make sure their settings are applied too. Also, on update of the permissions package changed permission settings may need to be applied.- temporarily add su.core. workaround for the migration of su from coreutils to util-linux needs to be reverted as soon as util-linux is also in- no longer install SuSEconfig.permissions, SuSEconfig is gone.- enable ecryptfs-utils setuid root mount wrapper (bnc#740110) in .easy- remove /var/run/vi.recover (bnc#765288)- remove /var/cache/fonts (bnc#764885) - remove /var/lib/xemacs/lock/ (bnc#764887)- Revert "Use credentials from within the root file system" breaks use of --root option in brp-05-permissions- print warning when requested to check not listed files - Use credentials from within the root file system- add duplicate entries for / and /usr (bnc#745622)- add scripts for automatic package sumission - drop zypp-refresh-wrapper (bnc#738677)- disable run time fscaps detection (bnc#728312)- set permission by default in SuSEconfig mode as permissions are only set when called explicitly anyways (bnc#720010).- fix typo in path- remove world writable /var/crash again (bnc#438041) - remove world writable permissions from /usr/src/packages (bnc#719217)- add chromium browser sandbox helper (bnc#718016) - don't offer PERMISSION_SECURITY in config anymore - remove setgid games bits (bnc#429882)- remove setuid bit from opiesu (bnc#698772)- disable fscaps by default as factory kernel still doesn't have the required patch for auto detection- read /sys/kernel/fscaps for fscaps settings- change path to gnome-pty-helper (bnc#690202)- setuid bit on VBoxNetDHCP (bnc#669055)- fix hawk permissions (bnc#665045)- add hawk (bnc#665045)- remove Xorg setuid bit (bnc#632737)- update permissions of lastlog, faillog, wtmp, utmp and btmp- remove permissions handling for /etc/inittab, /etc/inetd.conf and /etc/mtab - revert previous commit, done in coreutils instead- change fillup deps to requires to avoid coreutils loop- change utempter from group tty to group utmp (bnc#652877)- add permissions man page - update docu - add --level option - set perms for setuid files always if owner changes - strip root dir when printing file names- add option to explicitly warn only- reimplement the core features in chkstat itself instead of SuSEconfig.permissions- don't make changes if not called explicitly- add support for file system capabilities- remove vlock (bnc#629236#c13)- update path to gnome-pty-helper (bnc#634199)- vlock -> vlock-main (bnc#629236)- use %_smp_mflags- add lockdev (bnc#588325)- update for innd update (bnc#594393) - remove lppasswd (bnc#574336)- enable parallel building- add /usr/lib/virtualbox/VBoxNetAdpCtl (bnc#533550)- add /usr/src/packages/BUILDROOT/ for rpm 4.7- add more arm directories to /usr/src/packages/RPMS/- remove permissions handling for traceroute6 and cdrecord which are symlinks nowadays- fix weird sendfax permissions (bnc#525954)- permissions now maintained at gitorious so use tarball instead of individual files- added polkit setuid root helpers after review (bnc#523377)- also added KDE4 start_kdeinit (same source as kde3 start_kdeinit), bnc#523833- open-vm-tools gets setuid root:root in mode easy (bnc#474285)- hylafax directory permissions are handled by the package - change group of amanda binaries (bnc#523006)- add some missing slashes to directories and remove entries for at and cron (bnc#480855)/bin/shlamb67 1494372391 2015.09.28.1626-14.32015.09.28.1626-14.32015.09.28.1626-14.3permissionspermissions.easypermissions.localpermissions.paranoidpermissions.securechkstatpermissions.5.gzchkstat.8.gzsysconfig.security/etc//usr/bin//usr/share/man/man5//usr/share/man/man8//var/adm/fillup-templates/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector -funwind-tables -fasynchronous-unwind-tables -gobs://build.opensuse.org/openSUSE:Leap:42.3/standard/c2ded91e218af9a32fd2b562c7adc604-permissionscpiolzma5x86_64-suse-linuxASCII textELF 64-bit LSB executable, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 3.0.0, BuildID[sha1]=e0cce563e62e43fc6d9340d504f67f6c4901451c, strippedtroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)R RRR Rr\8'?@] crv(vX0DM)L}?9szfmq aՑoڪ޾=q =~-'ǧ2\˔j ÚY(?PNRқRYx0?Q;K waW}#1s,ىĒaK0φ .-ܛ,-+}sdOӿug@xZIGsZFɫIM Ź,E%{*ѭ$h9D+ `>Ǻto9l" 4a!et27+Aٰ^u >0{]vUW/W"^3&=X yf^#XްUIYAn 0 Lڂ $g' 5(dTgve i ߔl/n*28<4G[Kۖ)Q@ok Q Ӌ䝱5U.Ol"G0, P0#=Lf CQ̈h`IQ-+ֻ!x1e7iA,HZy-5+Rş.Vn]WzrLu,nr Έ@mi|V}k\֧zx(b+U8HgVkϔ:^."i^1g^GkNM'm>ŵiND ~O'Tdh^+JAPw7,"~rI]Vmp5X&T2<-v]7x d3&i{ĺ] TXBJTQ'dv)ZF2Tqq` >pJMPP*zbnx]H mp]]^H9%C }J-=B36qw4sbjHRp' CX:Da443'CoAbJ,Au#'_p}+f\ۋc7tv7q.[aQ,C1n#nT+,,ċ0f⓯m9D&<xdl[5SP BahY"Q^}E8&6sZqWE =b2k`pv?Lޤ, tvQX94\y60KpQ aI6 辊3jW$hR. Mx~Bgbw]MI(G]S]=-p<33#cZ1}.#8y@_H#B7Xl܍"8;>HFqC$vQr}7O.la#)~xY@8!oGof1~jć)bNYj8xuW`42W2cU/I1Sm:iCjVp2C@Op阩hk*:eSC !d9/OuզJs$a u4G U}ߏ9?G^ 0տ~aRMh ɖ4BBGG/fM>9, u;R; zJeD t}O?n~'l{ iVsz܉}+=I, /W~7(3O3 \&*ҧy%]q}/J14FC" zwҙw@;xy2?!s cv=hc==@u)ߨ[[aBȦgo ˷R29n кKjl/>dRh9T3$}4hA9f?grU<+[ݘ48)׾r!xA&r30Ъ<JwȐH܊Y޾ oaB$ )Z 7?Np2NALEBP4蓝3+t{1f0}5.- ʡGcG#?zܙ%֙}9bV [,\ݻpkz_BW:;JRZEO BUYϖDfQT1Jc#&mqǸ_M= $ًlш;1ەL9:@-ٓrkډd?mT"%b h w 5Y~l1Ѓ1YXhzQf_ҤBe>c!,j )&ʄ\T˄"!&"g-}Eۘ+qdw5r/cɌ,S\3X4o,j_f 6T q#%e/.K^Odt>*L#XØ纻(-"*CÚk-|oR d ^` *!z,?58VGonq'YJ/~;hXइmn)k_ }EwPK..`!2 H"졂#h$.3mLfIX׵2+A8[ Ei=cG3xу୸JEeuȉf"m$@!!2fgk DOv_݁&JB|26~X$glӱ $Gq}Ev=_݋X\5[<7zK&myy'HZvtaVn:&Xp劕⥯yв}\+f srYJgNƗH{". L`^6ŷav>2袹b23tIR8q7I_l{M 2< TTϊ0]PΒU-xܝ?-3޸H sombR)RrH]S6 hQ42Ӫ' Pyv4&XXbZYTM2#cVvMcHt1dP\`y+k%#PE?\qڢ7% o'a]qhݴn\cQb#o(iAD!fjʗJWo_H*yQl]7H>ufW@θr)&l f}/,>]65<Hq*mm²ee<2E|8&vDwCv]_nӘ"kCcH=3C6*ڱ>$wwӮnj۪AVd՛}j[rAXV$Y˪5*Kʌn]xD=,&ZY :4r|$@_|ss?2H(R|^.`/x#c7K&~f߄):72 (^3 qUcd*VI]$UEzͤ'н@L~lx 8*XsF0hk^{q]jhk tUJʞRX'PXXEeAˉxAs&-Yu>{"Os`T0!'Tu" TIMяh"rC yڝ*jhfcJ*a g?ͧݛ:~2iM=\GcF0OIjSfO2p+zr!H'%0o APVaf ywAV`1jőU޽<ӗP, 7PtjZJT aCAw?ԧv#[ǖC=9_b=pv_BjqRدs*>bѩ ۿDnޜ KYE b9DYeTX_Gyl3諄@w+ZGG H5t< wzf)JWU]ILNhl[b.TD S,X/;l2"/Z>d@v5Xu$fP@6'bŌ|a]“HɖVl.CY.yQP0} Ѫ0-<\[ٙJeqy?[Z ?"QLyAÚYhKE8rRW.!@ C}]3H~b;ӣaX5W& r8o"Sra܌o_dR66< `:ҳ+ū?7ПTpDV 1܌X++Է&.[ڇ<8#34oSM%xt@>+:(8&85k]DԒNd>pf~W"jL:^ LBWfc4?za'xXΫ^_Rfv96&T8C28o7Zh$ȓ 2@yNᑥѬ,|0CB Iv)L uքi-]Mx\+ CSBn'9!_I鴘vah<p/bB4ݭQqb!΢+$n݁g=qFTs ]jSQ˥ot(u5,?h‚z1y[`Irp%#ܩzOPaz|y/;gɯ|f?|-0Fd*%saLqV1x5WJ+`z<}K; 46jd9_\dW'Gd4njƕƫ'ʓ<\urSic6d#ݍp,BdyٶҘX)~a=*c }xtkMR~*#_BlQC3`c-9g1_5kq@_aA`-v'-vŮJyKBYh;)l『Vv_Nw@nvIQt}4CW4$ݿRi ~kB`˩bٗ?Ā/"!L]Y{!тܢ?șmKL-,zyڟqTH ONI12<#]KDD鬃9UaݽA"*5Ծp6@kNW3Ӆr"9cXeAL-hh,kS<ډFAW"*X(U ޑb#(]x ;lR90|l|^uiVYL.dH='%hqA0Ͻ#MHuTOjsOv:I= 3C61dRWy?p+l ,LcV?DIo:J/9Ѹ-_8@ Yr  Q~W$+j߱nS8.ϥ+$mwҪ{eavJ0&oR\}x{("w{fN'|ue-.ͦwWìJA,_6H8Pls_*S|;ak 7:+n\ud-ME>'@\WMJ_df~MoC_#u>Ջ~n/\E榭`TU|NڟI>€LQv/h JAӚm12C]oU|ʍ42pQ*NS]J;`T'4kiZ2'&E=|-X>aڤ׃mtOߟ\Ǥp~*Bۢ Gp>Xl}O reAo8RPf"tvňA'+5C f6'YS7 Ff)V-|7UwK\ƶe"|+yds |@&Atz=n6J X~<^av%ΊsV67JԘDBmt4Ϝ!7y|+ʚbC7Ä iafJV5Aq$ ۺu[/\nB;0b/5v윚bsPeQˀ. VD9Q'+7y*R= I@=X q{dcG w3n j%ͷ}‚f)|R*'}^'n@Ǎ5pGn1]Y/4(dC5ժ8`}!f@ l=_A,sDNJft[jz˝!9MH^fį~ Yg)?b##s;jDT.EbNDhɹ[Ai}*pc=h*O=42m/̣>JR;#Ԣo{ R3e~ondtsVD7qK>3_+ozjU0XAewZi H4vϠi(OlBHz@Ő)0gQ,Ji>85E9,WTSmTVI ΧXGf^r#y JBܺT#q.Duh8q*fU 08 L|گruoH%wgY[ʵn(sl#BW=V:`Ux=4Sd,oxjJ9n*YܟrpsZw"Ε8gBLi+Uld䶉φP 4&FJuw._k"\_B%cP&\.27dߊNǁgHfoOqaeFoW+^`XKhz.ng`Jy'^n!w>')1Y+L䘗ZF \7;f=4'P)ôq&# kۇY6o7NDـоKG/.cCݪŭ$Q'p/ ^?0"#2 t0yCf\ܓ?D `g5-F%0"Xj%@8D/pB^FSך U}'Roi7ahH?䓓l!xy{}-dJ/  mZ@36H+}"eQR8Pĺ g'W jLPߧL)߻VJX4W(cQx/8_q2}hA[ anLok4"8'XINޒJbaH#W/G!Uk;X۰S_ Ca1T^%˶{Bkŧ`.QE,n!}vJL܇IoXKZHXq%!MuU,H<%%Vk.(}QRift,S%a%(<VY/[% `/]~]OOkasOi 5RirN_g6jcĴGZ,Vg'cLsO"R)ipzF)c[XPWg:Lx!IFB,Ư=P_̢C4yvbD }ޓ- d.f]v~i8Go.Uc,T$3,X.g^vg7fg:69XQr8$ 6Na@X̓8Ui> QZ V6<8-ܬ;lat;` !x$>_v5HS~kǛrkr#-OM^CuDaқ2Bdݴ!4QvFDxMiPx+^=<5M^^,#exLG9?ħ|ͻql'ÉwIٯjo0.gj]$2Z/yPg[{b\tSkZJnB(& ^\ҵk8YQWtx!LJ9 )VcX?bA$Ҥe)𪪷Ce9YrJ&{g2i|ID׋\VWH/9H|ZãȺPgrZIf5ԁۂad!^yba+=!.v݌7.F(.rQB\7~oϰhSc|%۟KCnH^ (Q,Nꏮ?4z?ׂKE~Uey]c[j:=|}>dHvr˖=KC&Ѕy-{1__*pF!ѢLpY^|a"o66hfF.FPfPrM:Y$eߘF= nC 3gUࠑ-I/UA .N^.TqϝU(-%QNYCkZ|4&O5$O܀NsWqҗѫe"#h H |Z_F%!/kH.JWݏ !nE.ٻH $d3S1Ax$֪ѺW *&pF6R"~vT ӾHgm4安qD B2HS+z7 L{&1(/ f4 d!R'}M8ݣa;0r6&ܸLU|搒XmaŹXAueĈ{dnݻȸCu_ kzr9 뭈J+t` sBQ;3NiolaB-W+1)Ba܄GkGGp$8YRɫ*s`jR4#t"}pm 6F K"k%x[`HmtX9m)׎r :rGI,Y`bw;dbNjgKX7)R7vҵ^x^y u24X5"Ƹ,rrO:(PHo<US5U 8"4? BI9,ӎd81R*;9i-Z˺"w6[PH͈xNqSK´It8S. I0[aHIպ!Ʒ!*yrbӲ?FWMWYFΧ1ZemGCD, Y F]]t_T'^ILKCL~7I^ԪLe K02A9gaf j~{M/Ӻj!ru$C32zxk'9PtoprtwkV`EM7 {X5yS`5<1b0G޿u~fT,Ҙ޹{aڅ@ŕUX x0VV86`PU>Mlׅ?Lbrn7, ê(E>R+cj0mexQ!bp ;s]TPWq?_vϲEkZa9+Fb~9o͂(?w+1g޲uItyqt!\[qd93#&e Cv&8a=6@܈QԴ3; cy=p&۫k(R1E& -9bJh#oX?nh~CU)pOMx3`LNWQM$t:9 ·Bȥ[dUc͵*>m4;PA|OۂY PH{IQˢyLvdA!CE1*'v+u#BWEy~E6Βyx?]Ai<.{Elje0{/2 $)#^Nzb ¢T&?,QosѬ"T>1})OB7@'ܘ?)8`,˥xb{ kQW P0}YBH"n F[XrڏwqNuAhN|;+:`[354LڥHXi+zun?E7OVg2_7ͮޚKK0H iIf+'`&˻g5KҌƼH˔tGSWcف6!ߒu0fA>늦wlqȊ X)DDMT$[}\ȗƗu餽LsjqM+NeGmA_R#g |6s,~'[mXjy./@a0TC2~[Aawaӹ*c.[cXxbi1 bad2DX_1ܹ~x^Rw|mĄ =ftp#Xo#xD`z{5OUG$VPpO#?k.h^*0T̒ bFJZlZ#rĨKU3o-gڢz6K"^\H\e9%Zjw$u…y!x3ȹST`ȏfL9wh@#\O2A3tCqG3鶊pH$=UH#<_P L3?՘"_SDn; +(܃7qlzȟd{3J s mmOoaN-6b^Fg6<Oe+єQXóQSH ȏ1aryP3;5~b?$xF&*8V$NHB#q\M#my&]ؑbckba> 27ԨW`ǿNy Tl5E?-s̔>l= *;tKUχBjбR L>UjaleϻhBI,n+,//tV PNI:1zbL<N_mdtIJgT%oo%h,tCn{{x26XߠLđѥBs-􋎷wA RvҋCM o`T^:-}*$@| ߩBP;:O%>|wvSX9E՗qdkB5RwjUGV b͓ofzK)g-:S~⬩籇nl-!$UGBm|xZc or&[6^5)Hf,j¯^Am<`ז#8\Ox>iZ=y@N /Ɓfz'ӫ&Jߓ&O=bo~zD5׆G.^LlE=D*"{zP^gգ+&FXϓF62Xu# ěqĠTA>\cwSXИ>ޓr֜K_X-N)/?.Go5Y*6,BD,h.}q&歇 12/^5l9CG51[Ps^C*`sHf-j7ކ2_{1AUQѝ_?BI&g]S]Իgg$HF |VIYŅۏ•Lz ߳cow08-v$'n rc}vkBb#NC`t'󲛖o{lWh_Y bLzn@ gڼzܛ8uˁ|l |PoOm0猃qg| X֢>g@D¿b5Hd70NJc&cY"VqHe΃7F%B*N$m:ՄKlyQ eq#cVO{RX9LDϣg}ypHwcoIdAg934ge?Oofg)h\-9c-L:~~ZľRv?71l'%| ~<'F` !Qk 6<re3{oiW60㔣.DO>+`NbyLPΠAC96/X?bkٜ>G@~bN t?HWV7+ۊ久E!3g#6RgR6D ^"R>SN3Z pT.I yOh~zSFj]hF,PoX&С{,(ԩkS*`D.;`J#k=FtW }社~4Vo}> bItn.jO9] ['#Xf"5)EHdgۮEǗ^J7f1,Ç4#7t@|@Tp m !8K`1ϙI;d&3=2I- " 0bA5/[OxIϸoFajUP>eKel;,W B]$ L?}'ttwaer,r&hI:ڶʘe' Ƈehqn:Z/wEwj7t-fyP%VF,oD W>p'c ѿV, n7`%YF?|Y^XV]@K][VV]*vuP7 1-ԯfX{G}7mFgm.:zV%PǵIp YN>*ɘr^lZJ`M^/ ꛠnIꙧSﶻ-D]Yބf¹y\<+?[<$υN|MaBk>V_p*_-Elj  xR .iL9ϔk3.93fR (jSu##J#,=wzt鼈rܢakMyze6@%iEg x$ X^GZ(T842M+=""xس1'l2!*ND[h;`Z<"_WJ+5&Sm~nQ)5ǥ .`ZG!͂zᓀKh7RlxW@ˍnX# }yZ&&/KDfM]B2dY'Fv}!1OϲbNƗOCN.0a(M|7cum9u=Jl~Fmacי|> si^>Kb6!_;9؂ 6.Id`tèld6GX