xca-2.3.0-150600.12.6.2<>,h46Lp9|fp/(' H/&Y0/*ݔscQF|$ޫŲ~^qOxmkC):-_ Ih06(3;4Dm>`/zbLy:%RÉ u¶ 9.&Ϯ?N;&jϛOB[ uAM6t^0<jCp>?Pq iE2>Z?Zd     9Zg }22 2 d2 ,2 2 P222 ,2 t(78@9:FMGM2HN2IOl2XO YO \O2]P2^RbScTdU&eU+fU.lU0uUD2vV wXl2xY42yYzZlZ|ZZZCdexca2.3.0150600.12.6.2An RSA key and certificate management toolEin RSA-Schlüssel- und -Zertifikat-ManagementprogrammGraphical certification authority is an interface for managing RSA keys and certificates, and the creation and signing of PKCS#10 requests. It uses the OpenSSL library and a Berkeley DB for key and certificate storage. It supports importing and exporting keys and PEM/DER/PKCS8 certificates, signing and revoking of PEM/DER/PKCS12, and the selection of X509v3 extensions. A tree view of certificates is presented."Graphical certification authority" ist ein Interface zum Verwalten von RSA-Schlüsseln und -Zertifikaten, und dem Erzeugen und Signieren von PKCS#10-Requests. Es verwendet die OpenSSL-Biliothek und Berkley DB zum Speichern von Schlüsseln und Zerifkaten. Es unterstützt den Import und Export von Schlüsseln und PEM/DER/PKCS#8-Zertifikaten, das Signieren und Widerrufen von PEM/DER/PKCS12, und die Auswahl von X509v3-Erweiterungen. Die Zertifikate werden in einer Baumstruktur präsentiert.h46Lxinomavro@SUSE Linux Enterprise 15SUSE LLC BSD-3-Clausehttps://www.suse.com/Productivity/Networking/Securityhttps://sourceforge.net/projects/xca/linuxppc64le/ xJpuSp^(<L"6 T#?Q$> Yx/jir[t3%ȁ큤A큤A큤A큤h46Lh46Lh46L^~^~^~h46Lh46Lh46Lh46L^~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-2.3.0-150600.12.6.2.src.rpmapplication()application(xca.desktop)mimehandler(application/pkcs10)mimehandler(application/x-pkcs12)mimehandler(application/x-pkcs7-certificates)mimehandler(application/x-x509-ca-cert)mimehandler(application/x-xca-database)mimehandler(application/x-xca-template)xcaxca(ppc-64)@@@@@@@@@@@@@@@@@@@@    libQt5Core.so.5()(64bit)libQt5Core.so.5(Qt_5)(64bit)libQt5Gui.so.5()(64bit)libQt5Gui.so.5(Qt_5)(64bit)libQt5Sql.so.5()(64bit)libQt5Sql.so.5(Qt_5)(64bit)libQt5Widgets.so.5()(64bit)libQt5Widgets.so.5(Qt_5)(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.34)(64bit)libcrypto.so.3()(64bit)libcrypto.so.3(OPENSSL_3.0.0)(64bit)libgcc_s.so.1()(64bit)libgcc_s.so.1(GCC_3.0)(64bit)libltdl.so.7()(64bit)libstdc++.so.6()(64bit)libstdc++.so.6(CXXABI_1.3)(64bit)libstdc++.so.6(CXXABI_1.3.1)(64bit)libstdc++.so.6(GLIBCXX_3.4)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3h/ge5@_p@^2@^1s^%@\X)@\G[ٙ@[GZ&@VT@V U@Tw@ali.abdallah@suse.comali.abdallah@suse.compmonreal@suse.comchris@computersalat.demardnh@gmx.demardnh@gmx.demardnh@gmx.deidonmez@suse.comliedke@rz.uni-mannheim.dejengelh@inai.dechris@computersalat.dero@suse.dechris@computersalat.deecsos@opensuse.orgecsos@opensuse.orgchris@computersalat.de- Keep serial number & revoke old certificate, otherwise the newly created certificate is immediately revoked [bsc#1240383] * Add xca-keep-serial-number-and-revoke-old-certificate.patch- Enable OpenSSL 3 legacy provider and simplify key checking algorithm [bsc#1234636] * Add xca-OpenSSL3-Simplify-key-checking-algorithm.patch * Add xca-OpenSSL3-enable-legacy-provider.patch- Add OpenSSL 3.2 compatibility: [bsc#1217722] * Fix based on upstream: github.com/chris2511/xca/commit/802a8787 * Add xca-OpenSSL3-compat.patch- xca 2.3.0 Wed Apr 29 2020 * Close #191 OID LN differs warning popups at startup * Close #189 Database compaction #189 * Improve PKCS11 library loading for portable app * Refactor native separators / and \ on windows. * Support TLS encrypted MariaDB and PostgreSQL connection * Close #182: UI not using Windows native theme in 2.2.1 portable * Close #70: cant open ics file in ical on macos mojave * Close #72: Add checkbox for OCSP staple feature * Use DESTDIR instead of destdir when installing. Follows autotools convention. * Close #172 #46: Multiple OCSP Responders * Close #170 xca-portable-2.2.1 cannot change language * Fix certificate assignment when importing a CA certificate * Close #163: Show key type/size on column of Certificates tab - rebase patches- Update to version 2.2.1 * This is a patch release, fixing Issue #159: "Opening existing database" which prevented the current version opening databases of XCA 2.1.2- Update to version 2.2.0 * Most notable improvements: + Support concurrent database access + Support ODBC database driver A detailled changelog can be found here: http://hohnstaedt.de/xca/index.php/software/changelog- Run spec-cleaner- Cleanup spec file - Use Qt5 - Refresh patches-Update to 2.1.2 * Close #40 macOS: Crash after xca v2.0.1 quit * Close #37: XCA 2: EVP_DecryptFinal_ex:bad decrypt * Close #74: Exiting XCA 2.1.1 corrupts database * Make PKCS11 libs, working dir and main-window size host-dependent * Support for XCA as portable App * Close #69 Library not loaded: @rpath/ contains local directory * Close #60: Fix MacOSX 2.1.1 binary * Add new maintained languages: Polish, Spanish, Portuguese -Update to 2.1.1 * Allow manual override of the CSR signed flag * Close #56: Duplicate Serials after Upgrade 2.1.0 * Close #57: SAN IP not working in 2.1.0 * Close #55: Calculate "CSR signed" information from legacy database * Close #55: Add Certificate counter column for CSR * Fix slovak translation * Close #50: Hang while importing 1.4.1 database into 2.1.0 -Update to 2.1.0 * Close #48: The SKI tickbox isn't generating an SKI extension for CSRs * Fix translation of dates * Add private key icon to the key name * Inspired by #42: display dates relative (seconds ago, yesterday, ...) while column ordering is still strict by age. The ToolTip shows date and time. * Related to #39: Dynamically adjust explicit DN entries * Close #39: Subject entries shuffled * Close #36: Support adding CN to X509v3 SAN automatically * Close #35: Configurable size of serial number. * Close #34: Improve Mac OSX installation * Close #27: Configurable certificate expiry warning threshold * Generate calender (.ics) files for certificate and CRL expiries -Update to 2.0.1 * Close #32: Version field contains "Created by Qt/QMake" on MacOSX * Review and update russian ltranslation * Close #31: Closing certificate details window toggles tree folding * Close #25: Certificates are no longer coloured * Close #24: Add LibreSSL support. Tested with LibreSSL 2.7.2 * Close #23: Improve limiting to pattern in certificate tree view * Close #20: Unable to chose remote database type (dropdown empty) * Close #19: Replace 3DES encryption by AES-256 during key export -Update to 2.0.0 * Open database before starting a transaction * Fix default hash during startup * Fix Importing PKCS#12 and PKCS#7 files * Improve automatic setting of the certificate internal name * Don't use remote DB descriptor as local database filename proposal * Usability: Preset remote database input values with previous ones * Add another missing windows postgres library * xca 2.0.0-pre04 Thu Mar 22 2018 * Accept drivers that don't support transactions * Install MySQL and PostgreSQL drivers on windows * Closes #10: Warn if certificate without any extension is created * Add table prefix to be prepended to each table for remote SQL DB * Update translations * xca 2.0.0-pre03 Thu Mar 15 2018 * Fix installation of sql plugins in the Windows installer * Fix opening, importing and dropping databases * xca 2.0.0-pre02 Tue Mar 13 2018 * Fix crash during PKCS#12 export * Update HTTPS_server template and add example SAN * Acceppt empty password for private key decryption * Fix legacy database-without-password import * xca 2.0.0-pre01 Sun Mar 11 2018 * Close GitHub Bug #5: Exporting a private key results in too-permissive permissions * Close GitHub Bug #4: Workaround QT bug of editing in QDateTimeEdit * Fix display of dates in the Certificate details (local time displayed a GMT) * The internal name is not neccessarily unique anymore and can be edited in the details dialog as well as the comment. * CSR signing is now statically stored in the database and the comment of the issued certificate. * Private keys in the database are PKCS#8 encrypted and can be exported and decrypted without XCA. * No more incrementing serials. Only unique random serial numbers. * "xca_db_stat" application removed. Use the SQLite3 browser "sqlitebrowser". * "xca extract" functionality removed. SQL views may be used instead. * Each item may be commented. XCA itself comments important events in the item. * Each item knows its time and origin of appearance. * Change database format to SQL(ite) and support MySQL and PostgreSQL.- Fix grammar in %description -l de. - Throw out old %__-type macro indirections and $RPM_ shell vars.- update to 1.4.1 * Replace links to XCA on Sourceforge in the software and * documentation by links to my Site. * SF Bug #122 isValid() tried to convert the serial to 64 bit * Beautify mandatory distinguished name entry errors * Support dragging certificates and other items as PEM text * Show User settings and installation path in the about dialog * Remove SPKAC support. Netscape is not of this world anymore. * SF bug #124 Wrong assumptions about slots returned by PKCS11 library * Cleanup and improve the OID text files, remove senseless aia.txt * Update HTML documentation * Refine and document Entropy gathering * Indicate development and release version by git commit hash * Fix dumping private keys during "Dump database" * Fix Null pointer exception when importing PKCS#12 with OpenSSL 1.1.0 * SF Bug #110 Exported private key from 4096 bit SSH key is wrong * SF Bug #109 Revoked.png isn't a valid image * SF Bug #121 CA serial number is ignored in hierarchical view * Improve speed of Bulk import. * Fix starting xca with a database as first arg - xca 1.4.0 * Update OpenSSL version for MacOSX and W32 to 1.1.0g * Change default hash to SHA-256 and * add a warning if the default hash algorithm is SHA1 or less * Switch to Qt5 for Windows build and installation * Do not apply the default template when creating a similar cert * Close SF #120 Crash when importing CA certificate * Close SF #116 db_x509.cpp:521: Mismatching allocation and deallocation * Add support for OpenSSL 1.1 (by Patrick Monnerat) * Support generating an OpenSSL "index.txt" (by Adam Dawidowski) * Thales nCipher key generation changes for EC and DSA keys * Add Slovak translation - remove obsolete * xca-1.3.2-openssl11.patch * xca-doc_Makefile.patch - add xca-configure.patch * fix sgml2html command - cleanup spec, fix deps- add xca-1.3.2-openssl11.patch to fix build on factory with openssl-1.1- fix Changelog - fix deps * openssl-devel >= 0.9.8 * openssl >= 0.9.8 - fix missing help files - fix rpmlint * spurious-executable-perm /usr/share/man/man1/xca.1.gz * spurious-executable-perm /usr/share/man/man1/xca.1.gz - add xca-doc_Makefile.patch- update to 1.3.2 * Gentoo Bug #562288 linking fails * Add OID resolver, move some Menu items to "Extra" * SF. Bug. #81 Make xca qt5 compatible * SF. Bug. #107 error:0D0680A8:asn1 encoding * Don't validate notBefore and notAfter if they are disabled. - xca 1.3.1 * Fix endless loop while searching for a signer of a CRL - xca 1.3.0 * Update to OpenSSL 1.0.2d for Windows and MAC * SF Bug #105 1.2.0 OS X Retina Display Support * Digitaly sign Windows and MAC binaries with a valid certificate * Refactor the context menu. Exporting many selected items to the clipboard or a PEM file now works. Certificate renewal and revocation may now be performed on a batch of certificates. * Feat. Reg. #83 Option to revoke old certificate when renewing * Refactor revocation handling. All revocation information is stored with the CA and may be modified. Revoked certificates may now be deleted from the database * Support nameConstraints, policyMappings, InhibitAnyPolicy, PolicyConstraint and (OSCP)noCheck when transforming certificates to templates or OpenSSL configs * Fix SF Bug #104 Export to template introduces spaces * Add option for disabling legacy Netscape extensions * Support exporting SSH2 public key to the clipboard * SF Bug #102 Weak entropy source used for key generation: Use /dev/random, mouse/kbd entropy, token RNG * SF Feat. Req. #80 Create new certificate, based on existing certificate, same for requests * Add Cert/Req Column for Signature Algorithm * SF Feat. Req. #81 Show key size in New Certificate dialog * Distinguish export from transform: - Export writes to an external file, - Transform generates another XCA item- update to 1.2.0 * Update to OpenSSL 1.0.2a for Windows and MAC drop brainpool extra builds * Use CTRL +/- to change the font size in the view * Add Row numbering for easy item counting * Support SSH2 public key format for import and export * Add support for SHA-224 * add "xca extract" to export items from the database on the commandline- update to 1.1.0 * SF#xca#79 Template export from WinXP cannot be imported in Linux and Mac OS X * Support for Brainpool windows and MacOSX binaries * SF Feat. Req. #70 ability to search certificates * SF Feat. Req. #75 show SHA-256 digest * RedHat Bug #1164340 - segfault when viewing a RHEL entitlement certificate * Database hardening * Delete invalid items (on demand) * Be more tolerant against database errors * Gracefully handle and repair corrupt databases * Add "xca_db_stat(.exe)" binary to all installations * Translation updates * Optionally allow hash algos not supported by the token * Select whether to translate established x509 terms * Finish Token EC and DSA support - generate, import, export, sign * SF Feat. Req. #57 More options for Distinguished Name * Switch to autoconf for the configure script * SF Feature Req. #76 Export private keys to clipboard * EC Keys: show Curve name in table * Support EC key generation on PKCS#11 token * PKCS#11: Make EC and RSA signatures work * PKCS#11: Fix reading EC keys from card * SF#xca#82 Certificate Creation out of Spec * SF#xca#95 XCA 1.0 only runs in French on a UK English Mac - xca 1.0.0 * SF#xca#89 Validating CRL distribution point results in error * SF Feature Req. #69 Create "Recent databases..." file menu item * SF#xca#75 authorityInfoAccess set error * SF#xca#88 Minor spelling error * SF#xca#87 Unable to set default key length The Key generation dialog now allows to remember the current settings * Do not interpret HTML tags in message boxes * Overwite extensions from the PKCS#10 request by local extensions This avoids duplication errors and allows to overwrite some extensions from the request * SF#xca#78 replace path separators in export filenames * SF Feature Req. #71 Add KDC Authentication OIDs to default files * SF#xca#82 Certificate Creation out of Spec * Add Croatian translation * SF#xca#83 Inappropriate gcc argument order in configure script - update dependencies * qt >= 4.6.0 - remove obsolete 0001-Fix-for-openssl-1.0.1i.patch - replace xca-configure.patch with xca-linuxdoc.patch - rebase xca-desktop.patchxinomavro 1748252236  !"#$%&'()*+,-./0122.3.0-150600.12.6.22.3.0-150600.12.6.2 xcaxca.desktopxcaAUTHORSVERSIONchangelogxca.pngxca.pngxca.pngxcaCOPYRIGHTxca.1.gzxca.xmlxca.xpmxcaCA.xcaTLS_client.xcaTLS_server.xcadn.txteku.txtoids.txtxca-1.htmlxca-10.htmlxca-11.htmlxca-12.htmlxca-13.htmlxca-14.htmlxca-15.htmlxca-2.htmlxca-3.htmlxca-4.htmlxca-5.htmlxca-6.htmlxca-7.htmlxca-8.htmlxca-9.htmlxca.htmlxca_de.qmxca_es.qmxca_fr.qmxca_hr.qmxca_it.qmxca_ja.qmxca_nl.qmxca_pl.qmxca_pt_BR.qmxca_ru.qmxca_sk.qmxca_tr.qmxca_zh_CN.qm/usr/bin//usr/share/applications//usr/share/doc/packages//usr/share/doc/packages/xca//usr/share/icons/hicolor/16x16/apps//usr/share/icons/hicolor/32x32/apps//usr/share/icons/hicolor/64x64/apps//usr/share/licenses//usr/share/licenses/xca//usr/share/man/man1//usr/share/mime/packages//usr/share/pixmaps//usr/share//usr/share/xca/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:38851/SUSE_SLE-15-SP6_Update/17ff962f14ce3729ebc3da990181c405-xca.SUSE_SLE-15-SP6_Updatedrpmxz5ppc64le-suse-linux   ELF 64-bit LSB shared object, 64-bit PowerPC or cisco 7500, version 1 (GNU/Linux), dynamically linked, interpreter /lib64/ld64.so.2, BuildID[sha1]=d79f698f5431e41ffff7680929b0bacc160a046a, for GNU/Linux 4.3.0, strippedUTF-8 Unicode textdirectoryASCII textPNG image data, 16 x 16, 8-bit colormap, non-interlacedPNG image data, 32 x 32, 8-bit/color RGBA, non-interlacedPNG image data, 64 x 64, 8-bit/color RGBA, non-interlacedtroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)XML 1.0 document, ASCII textX pixmap image, ASCII textHTML document, ASCII textRR R RRRRRRRR RR RRRRRR RPPPPPPPPᩎR:fkc~utf-8e9657ee1d908cd6c33d63f7b473a58bae1248a162d0c819e6f77396e09d5fe5f? 7zXZ !t/l]"k%j+mQJZ&WGΟP[i-n4a^~uXL1l=k5kFB>D%U |ETg*euL]PL$\1֝8wkhεwF6lvM)eGs~DtPJY} {N o9:1rb!Wn/:ўB;*4uNDCqy>"8!4 #ę;mFg|.iQ >CF $b)[ؓm' /Utkd3ӄ~("pfM- nzDp\y'V\Laj.JCLzdZޤoᏤ&0Ck 6[8 #=Ѥ@{^jӄp)ģ5d±ᮑPEˍ~# ɨmq['%n^um:qI>;(alilUux]4[!rѼovintW;? 5 qr#$8O÷U$|]뗹uEgL0 bS ^g|˷:&T)5?m^pvZ}Ǧ=@xnH,y#72iBNևx%nӺМ* ԁ|#;I0y,+(J˜;Ṷg]`tֿe)tV,I,!W4g\̢«C`+Ƈk>y߄߄!m4sX׶ſ?n2:8:;m .B" P.>Όp}HWIRa騺j#碆7{zMFF#)f| J[Jӄt)­M9 \Lfp5w'U H{&\BLk%~*:e :#G*" yA_kPd#:|8jhTkq浩k<z_YY_OT~qL.C雛e,d*8_jr ]+VfFN^%d B M%=vnvϸ0iә23ьtUa%7uGʣDOl2~L C eaTbG6@"Tdlf&@kP$3^ 91\Cj9$-|Rm{=O,>x9z ?˯JYywWNxRC|^K9" HPzr+IW?mtc"]$wK}szl,"9k=vN6O^7Զ(P|:\)JC\G\P MB;BVvR|l&Z-ʺ\D/YM 1ڈpK|\$9\7Dz>5HMHW}aZIsZ ڜ[ IJ=j5Ub;+S2ݢ=:F@-x "WEj_-Olдpr]}RPҥՃ1isviS2(XBZ7F-9{<@%LP>kcu8[,ß< (\L"hQh68Ө \+ڍfBYG""Q:t!sN!T.'; MeX!ȧ=0XSڶ EsJ= 8 ) jW=+Bh3.IUn }!E{2;o&Kf>fu;wj\SV߸Z^hB-83xٿS kj7GJRZOI_ R q ʮY>uFU{? @n5vh>Z36Il~ẙ|S iXǡq bQeIkw+pD30e\ 褐 򏤹0E#b%3"j7kFݣ Ι <+BP<9SF{{Ux1YF)R%FJ^k `ْk_ƨձk.s L?k\7:3Ldk3cT ˄DPztE(_ mMSكKA<)0㌚`[$X‘Hf[zByZ/VIRr7BhP]{Q 8ijPvyK=1AoeNiPɭR&׻3~YLMJ{&ݲISrt8_Ucd5U8d,vVH#!A,ԼHGÒ5z㚱x?#з<醑8o.Z~Eۖ DmXuv r0MX!Ea_ 8`_r(H`S@3w_3PG%z([2ȖFy; J>lkdezWOQmCDOC: on#~KTN F vϊZ@v0#(-qvtCpJMNߝ1"9BșJ7ߏ"ǚcTΚ#,膰K4+:5dzEؓw4`qՇz%:fE:X'L -^jp[R ;9PoOqPA]9Q^Q(Cmf|^Y0ͪ-MוN11x(esf9L 60O(vw.In01AVp=z=wm:m_宂ܙ<;G&jhVSeug2JdG6n㧁q|77TehGx㰱ޕ.L@_4VZ +sv {XVCѢYWX1Āe84TFвZ$Rً 4j37sw8,[Li`Հs"gಘmiQ ;h $S/3OxnQ #<"9~V( mr6rVtňºtb!Wa3&8=Ζ0T·OLoQ pEW:g !_] x3Nzd/{;u3Ƶc$['2w|w[h% -1d:ptlEM>LGFڜu!s4#Xrcg?̎<DO@JzSβpɨ(5|}pu8HW (i[n$N|TZ唁^>5 DaKRf8U܈VO8ZK dn {$a|q i{Hvb߮GJt5Yb;SAoB\'GȀ0l2|kI [tB(uX]@Bx޹jl6k}I$qTzz}=_>lyy7`3*ԺRZ) d.0Pڽ#F*N̈́l9iB=ȊXL|Oq»K>$e eJ@`N j19E)"%b_=Wp@r}?GPFISR^m`L@Ή;]Zeҧ` ̸4?9KC3a`lt$FU!{P׮=+P.0ѰByxʳ|OՑ Za _h @Դ@|uptT14tTDg=sv+p=NodBJ'J} ` **Ró @J&gK@m 5M]c4,L?T$ȸoǛE7xI1-~O?܊=]S;9 {2x!oZXݍϘR)BGi<5 j3:f՛e! 4]Ado.B;Rq]@oO8PK!]ޫ4w˼⊫xIrjn2vj霴TPIr5BzJS(b{܎{Yd#ǐ ?FG 孺ؙW_ֱe`R<;XPt2*e(Ĕ,UW1u*|j+TBv0`˽Hb)ܓϴD[GsWCF.#tWbS'@ LQd*-$~-x}&bh$xǀxHuNWz.A,chƷE9Ԕ`&d-$_Ay^]iiߦ?ψ"b[nR\-GO=+Д \d_LnJz jó.8+Y/JD+ ꊋhP['^*-v:c[I;-f;X/D PaXHNu3bݪz&Ùa_`pCL;N| o?Ora]*'kC;I|#ɜ_kizp*H{ i F {MN XJmSޮc>rM՜|-Tߜ\zd=rsn0O)zͅzRf[ᴑs ޫevHGAm$ M?$G)ݤ#ߊzLm{Nj24_gHcUu^S ~ʢeL1k1B[]n}(~Œ^rݱdLj4ԝe%]800x|9z9&W0EPJ@!|OgM3l̩tzj=-$C.FBa*.[9LpeA !}z)pM;} dAދ?Uuyǝ(Յ9=erJ޴6z6{LMOe)lK4/'LwR޴|>퇁-EZy")x;s&/ɶ/JajbZ n3'-'ȒûS}M%b{BXVw͉˂jiF "1ȗ: K$ Y !*fGmSpL4#(/~yc 𧺝3ʃ71'XCp/`Jf֐ CH,qLz(090`-Lʗ%b+0& FO>YN?T0Fw(8՟0yh9PK d (J8ҕ9@hq09M_ŐɌ2)"2ϬL,B UG$TpT!;u 攦35kr; Jgw Xy3\vBZg(CG=(IK";6<`nQu6:4d(A^xz7Ik 5~Г0Pө JTN3 #)x#gRFQd.B'CvgkKv Dkxơ< "P{ lcBqàr+So짪䐮1[_;xg;7`@rPn(6sphnv)rwQdt8 @*[v4[|bL N-Hy5VԊePt%~{gg%UӞI#S;gHaTKq%8*g  X9::CKX* ;}m |P%V jIoev*nk~~C5!d˯{9<ĵ5/zuZvv".0F 'Yo0+Uu7tO'_vtWۖIW['ON!Θt^'[ɮajmO.R.+[dMܘ%Tw^/%u-yQ*yRl{'T;m3~c$Ȍc\NϜ튶|>s5Xz͋ ,P{uk侅ܗ~hun8KaP~>+aĶ, =lGQ'ǜlÝ thHq[&kXkS?F=3? A"$"~FAM}d3 gۦQ=V] ɇN%.˗B嵶0c IΗ k\Xog7Ey'Hp:ldž3{ /n6C3^jviJr&H:ކq-qrKݸlK4"GT%{KD0-a5Br]T1|=9C~;0!m1Ѝ'Q5D/cGiЯZKi>ޯA II$]w"UY8P4$eqYbzf&* j۷nd-ܢrP}ꖅֻ75Y *źOl}8_~OjoW}jA)W7au-k~R[/8=@< &AM -'Ϻ|9vENJ]'T&}tS2Bi˚BUҫ^p_^И)6Xxt4:m; Y )aFj6t U553};RfgK#\ ᔣwwWȴMcsյ[¦bFɶ7Bc_>[4mfsOz>O7_!tRK"cUNkRJƄad܂J ֣&Z]r+&2Ƞ`|K僧\Pr+:5ؗ|o͊LxBU"gB^z`5(]`[IK ȌjtGUFl-Q~]0W6JCx:+^ `y U.9 ^yJfc¬Om":f*Y_x7:gAʘ宷b3 >$ nh^"C3э|GRPR26K2+0e y OZä́2ESL|+Biqaib$bI";0a?%QL7¥M-R=.=qEh?% PL@6sO\#tgrrLjivu0|K`ֱ~]+%2;\>!z]O0ji-7ri on]U/ KϢN1.Ĝn dt #ʾ M^1O؃Ty-W;9POE`^;b=،t#GIXE/(&u~"!ZAe {C9wJݜaJ. 3rs ̠K‚e dq;ZGry3_g%7 q!TgHɜV(=[J|bum(H\+\t~p⚎.t#k2]9DŖh/6 b.6W5s"pCg;ﭩkV. =1cz+/m]A)H9[}dFPQ)dW:ZSp1MYM+O2V9>mcX`kdNKQw@߿lȂ5]=͂}7X˕lMʜ^{%( xӘG Pe&xӓ1 \+D i]ͯmT1'NuE?{DT/ *Jg9[#Q)@UT|;'PfZ'h9`a@-0 `hcFPI^ <Vxi;Mnu{Y~sEިԴhClu-K`l$&n09{$Du$[o %'$=BϴxAt1 lDI[`,|4I5l؊V49`f9},о42xo%`|qifγ 6? 5ĵnwSd`+% QA&?橡k&!2Po!Nx X))E(ƽEu$ÍsXrϸ&n -l$CwLEEPo}QXطF)U-fh䊕/;U;syW9^!1\6 N^Y4|nOr~?K%5F~w ״qsVuj\{.}n}Kqˍ¸H6"rnL[ic#xԎS.s${!( ~aH#iqB'6slgcN R'}=+=#^伺1Ov/{֤8k!+ : du`4ކSkcۋvdp`N@-v  gNVR!FGcIҿ?0'`O۹ L QoXnVtTKqV$.`Ы/.ѳ%rb4%M G˲Fh~ g)xp9O?t*~ҕfcHOw݆|'(`y=ONχaWBN>O4Q1< 4&uݡ^ږgx)W=jq ی5:7}j >]Fi량C,M \oj:rqI_'L`,_N@A=dKuj(Hfki/qRONeTIJ H-aHL)dɜshSwN.CeX%3tqg`!뢈'=YMchY ,}\; >H!禷TiqY:~:ĠOv\ P1 55HzW6+~|VJɜ-Q=,>=͑ga\s=@p۶'.[K0r_t2|ffdJXl8[3HaOxW`ӯEYu1~vjE#Ox˺W0s龁|#ԣ>ؕ]{ݵxDEP)E\ʜrsz= ΀KO=euEhL_.4v/k_PDOH0;Idf߹-i'J(-Pp fF]EUkKf̓6n1Ovt "fkn%1?ݏ<|{^Pj)uiugbܗhK`0=iv1kTY\2x!&r$Q b,s_5݀ %2Eb#ˊ6XP峡8O>4in`␩D4K[a?K "WY@j>컶p)\ZwIuG93k4Pf4ʛT$o-jm!qd9I;GƀrߏvwSȝ3Hf>𣘪5ur(ɋf<iVh> =*xcJrѷ Ғmzx[JhoaҶ" *#ujp? m܊[ִ~8+gR,8#f6㲾C89:NzZ8rp8L5PAwjzGA 缷mخWFE<;*?}{5 :zEq88S(!{*F9Aҵu@2%N*\SF 9뀝 K;akG:s}s/5؍ׇDe{z wr%I|'щA]$F8Cw7W(r락F+W6 AwWVÎQ(7JmwZ[~/faO.,h*Y,·=|8' PIpCC>LĽFdniCF-'ԩO#OjTͷAyM##)2Vi̘t`@d]]H 1$]^&ebi~ɝ&WD+ BHjlswJƼ) ѹ8ǘ/euIDfwk 30=kr\I?Pzct^J}m{,cZU6C[simۅCMd(ɤksSQ#+21D7,Vwwt/ Bq# +%Wɷ`?KG-H9=7T[GM#Hz5/b/YYc&-^*)b/$Sv_e 2VbE=$d@뱗ّ٣౓C]^1u\,%E&jړE:Y%`s}|<4fb_$[$uK!uӘ~>n~׸xY"yqY u/,V| KZ Uf,OsvhTYIc;ڱ|f4Df*g(\tI\,V0;f8QX,RzM0@Nc,GU9<6KҔtբRŅ0':ŕ*lIIPMDkh8xp+KX:@ZQv> #s\qʛSF1#Pv&(8{k}SCy:$'Pi =ݒd Y|p=%C+: 1»%/0*)? W*ե-ECPH_CM $6+zFWC `Vǫpy'T- q,׆^NViݶgaxf[G[z&Jk=GϘXB=j]N_1e;kf@W'|/E{̝ɠJ+ɞ1_0V["T>KEq-54CH`Hc$mnAJGJCun.#yh FD&jC13k'fB.˻LZa84էPG*˩FQWfJM쥙4ťY:m1dfbpԣ\jiսdgrܢ``ɰ+fc)XY5Ζ(ǔȧ @c漘=L]̍~!tWA jh{%tr:8f8M_͞Gs NQw`f6eNj t;u/k}K.TsvHB٩4~I.FTut8aN%r{E;*y've) D=;cTCWH ;Wf,uς e\(sNtW7 #SmWrB5 ͔U5%\E-bil?i$nC!&H5eB D{KrĊUD G~tx~o?“& &Y2R|鿫oOۋMn?0jhZ?Q OyL_Xpmh)#h43ܲE.X~ӕvxb.06=i\)"GE|ܢ!lʱKc7. ivδXÇ0/SbK˰k ;(|g躕 w#(t}UѰA{ڕ;!}ε}B_B~8`kw(Wuj=:{z='(r+z)&jߺΓz?p&m=tu#p qǚ =!3vrG2G;Ԣ3; M}u(]y7=+CK$x:-Ѭ^ !"d4=  ֭'I;cNbZvd Qz`WD[0J>K}YH.Iz7p}&,1@=ԼcDI~u>_R@_]Xc*!2L`J^ÖF&$Y16T178"ԴتF< ӥnF EQxskiO;y̨qd@ӵs(|d>Tm6Lh֌w58d/ƝH1'k,AP_75]h|2IF{:Lo r@NF*l`UkB* V}WtԉO5LZonW۬cm t3 K#<2&Ԭ<:S co֔Έ^݊pto~Y?^+! i/lQHMb2o)K@ߧ**b3 "GGfxim&.\}yj$ckDƪÙC~ݹXt#Յxx LW*7g9d)xq-N><Qdt)5%r6H##ea!Á!괦O0wML 9!l= <Lu^D%'EXН棢NNV @{4%3Q#sudLe¿9 ,~hd@;㸱tb*[uE3u@!PAn >If4zArl kL)MA@ɨF><Or9V}ke`!A9a7a9G2dۣP>|-& wO,Ky185\-k&xVNvPq4|c~414 wNif߶ˉFZ/to]g%qxM3|\} B'lُ iVVn\&U}${ܪ1EAe/'Ta3GкOb&r|Emσ:ϱ_'Ck5s5``JX+D$(> 鶱&9`,-Q,HI0/-Ap^nՋ \* 9l3  ǭ-W4e!"B ~0/w5,ȓV(:JNJ,O\ۏ7(4E-}\ Y1($. CNWB6 ? zy;N`˚뀃ED 46f& LyL&3ח? FOMZ%3E[$s"λ`^'5jn$88_յ E=Iܑ t~p$Ɠo`je$ NT*L@c?D.XY(^PVJ:r5c͛Z17ڙXZp˘Ot3 &RQ¦eN2AZrPWDG&EZ$p ʄ"Gz>_, }1?6DsM#5 ;mp/:Qn/t:ZOs]tN"4ǬlN";™\*^Q3 2V@.j˽;ek|~5mCQ]3d6,h  A*e"̑\inNG9&hc ^u)hdᖑǯVY0g#s !0EGB6`DEZNps6@Y/0GPGUֺteܘhdeR~~TB3"r@sLqRSxyxع ],Tٱj nqW}DC/\Zƭ>@{it3Hh_8?Z 6(Ȁqd)۬} 95⁧|(x x_ǂ&"y(\QED5S͚9e^a.}+S+ 'u9rІ'ܿ%0v $IJ+`au6J,Ǒ],=éӛFXBWKq՟ʺg < s1 c0EMQ/+T6EL|Mwm2S]w1УL[?+d:0">ݵxϬoւa=bacQ w*KAkקjQFe Weg_:y Z 8=D@΄ϒ5eKvvkJVZgoe-AKA(5mvdV-jdVUvEËX'as n|w!ZSTf<rn@c Wephbiu8!3Us#k(>x1|~\yN? ")&3񆿊"K/YSN# .ٝcFF; q⬃[p'ē-/<8F`\g7'MʛKB꛿}z;j*wj5]P>CĔƗhl}C a}cRqV0}68+X٢hF%N#\v'UU .D|CM`SU@IgrbH_}g6jp5yK)B%'s̮F;uty,|o`Law-'a<2.^`x[xozo|KPkF}~?yE9*sZW\Cԣ䥜U+ sM ,e`e Nwe2RPzIn]}.'OO/O*5M5cI Xʄ@t45z"8.d5gZv< ]ֲ˱'l0̶LSI> \D(m/Iu/YHw*ipA'" GnUO1]iyS| OYely>b%ZlY+0~)Co$ѷ>ru+"<7 \^EYll}G֚f;SwGY0c eb<:soC+0M[`DJߺ<)3'}Pۉ ]W[;ݻ[%SVŠ.u-tO,ڽfߜP7| $;cxbPv'J\lpk}4VqQS28;=0*NU^0ג-n'mlkJ}" :(v }/,2`e[[ͳor Z8җG2ƢCCm\{: Sq\@:q =sl-:An[bSCr4LM/mjiU"@׳7*=dOâxs:ݤFȴۋĭ&!*i L1X[PN}D]sGv,#5,+BDuIOW^Id}H.,9^r=a4 Fol*\t]^p|1rd.q_eToџQR@T7Ɉ'5Ϸ6mX3v65emӫPm^~0Ģ?ʃXc41ULٴn_;/=J%"EB,Ft9%Bڜ0Y٢Ìcg` 9Zտh4z& ɲIۧ1 _4 ;Re!rbBTt#;֒#`!3W;y| 74v@o4=4Ѽc߻P}%)!/>k,3ѬJE)|s SYh/&7=qoŗv|G7ѭzÞ~&&p5`59T[H+E( .FO5l]%ۻ)cA{&;6Tf7,h1{gc qR@dT PӶ7ԅÐSZr3[ m7<?vlƺsk7Y_ DC> Haʨ\n C[Vjʽ2EoۅrSzK#uO+q>zhޏƘQ[VXgY"%PPsҫ7=mf>F֡|9i$ׯGT$d\gG)h" M̵^gCiz?Ɗ_JmtqLrmrF[c0A-To4Is3K"ۇ;3 ^;X(kU$IO_UݚFɟ,N}O|*z-Q?yLoz5N[$Dz+"RKy Dʑ>e$VMTL,Pq.PK:dg)3"oy`U7<ћr $$zz3`c9ʗI]%YPs)͐Hʜ-|V%iMED6rc$6pM*!=VE.:rpOt9m#0GUW=3Dd-v(KA%P1AԻnrb/kP~dl @ }XͦI'E硢,\tXQ [w`mbU8-&@MI<{?~/>[1h."SQn0)r%X әǙ"-=ѫ69{9نm!~z}ճIG>18ۢSV G vGA*[V ˂Lϙ׬L9t6Ss&x,Ihje+ YL&-. γ}X4S4TmRyx^O 7?h$'!Ќ4w5eĞl[T*>9y>}ᜤtЄZemŶJhJ0Ftˤ+x1$ʲuD7F+-pg6j*f LH+R'0za(p#JBbݔ,؍6~YJ[B^Şr W C qf~m-!u1&szUJL[?ܤ$OAmeW.>) S5?nŜL. g'.X{}[W݄wGVYZz ƃ])lLȧ_مPX OC*kU(+Aa: /uKBޅ i.B ŋ幝R@TGT,QQǰgMN얄(M kĐD2NO9# $R_.o5]<[YV F &uPL\4K`h+v'"紲N{mK>xu)FIR/HRo:3J