xca-2.3.0-150600.12.6.2<>,h45op9|mB.{)m7M{)x"n q{W@ǥX4]J  #?M&{#T)KXaFVk~H5 iZTfˣgԯ6O)Yƣ, .P &Hƭ%zg1@-әWhxR,ckơ%`p¬zQ:p=Pfϔ2&xD%fs>ZţܕZc{|r=Be10yZ tѼzpe>>[ ?Zd     9Zg }22 2 `2 (2 2 L222(2 xD(v89:FNGN2HN2IO2XO YP \P82]Q2^RbT?cTdUfeUkfUnlUpuU2vVL wX2xY\2yZ$zZZZZZCdexca2.3.0150600.12.6.2An RSA key and certificate management toolEin RSA-Schlüssel- und -Zertifikat-ManagementprogrammGraphical certification authority is an interface for managing RSA keys and certificates, and the creation and signing of PKCS#10 requests. It uses the OpenSSL library and a Berkeley DB for key and certificate storage. It supports importing and exporting keys and PEM/DER/PKCS8 certificates, signing and revoking of PEM/DER/PKCS12, and the selection of X509v3 extensions. A tree view of certificates is presented."Graphical certification authority" ist ein Interface zum Verwalten von RSA-Schlüsseln und -Zertifikaten, und dem Erzeugen und Signieren von PKCS#10-Requests. Es verwendet die OpenSSL-Biliothek und Berkley DB zum Speichern von Schlüsseln und Zerifkaten. Es unterstützt den Import und Export von Schlüsseln und PEM/DER/PKCS#8-Zertifikaten, das Signieren und Widerrufen von PEM/DER/PKCS12, und die Auswahl von X509v3-Erweiterungen. Die Zertifikate werden in einer Baumstruktur präsentiert.h45os390zl319%+SUSE Linux Enterprise 15SUSE LLC BSD-3-Clausehttps://www.suse.com/Productivity/Networking/Securityhttps://sourceforge.net/projects/xca/linuxs390x'JJpuSp^(<L"6 T#?Q$> Yx/jir[t3%ȁ큤A큤A큤A큤h45oh45oh45o^~^~^~h45oh45oh45oh45o^~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-2.3.0-150600.12.6.2.src.rpmapplication()application(xca.desktop)mimehandler(application/pkcs10)mimehandler(application/x-pkcs12)mimehandler(application/x-pkcs7-certificates)mimehandler(application/x-x509-ca-cert)mimehandler(application/x-xca-database)mimehandler(application/x-xca-template)xcaxca(s390-64)@@@@@@@@@@@@@@@@@@@@@@    libQt5Core.so.5()(64bit)libQt5Core.so.5(Qt_5)(64bit)libQt5Gui.so.5()(64bit)libQt5Gui.so.5(Qt_5)(64bit)libQt5Sql.so.5()(64bit)libQt5Sql.so.5(Qt_5)(64bit)libQt5Widgets.so.5()(64bit)libQt5Widgets.so.5(Qt_5)(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.2)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.34)(64bit)libc.so.6(GLIBC_2.4)(64bit)libcrypto.so.3()(64bit)libcrypto.so.3(OPENSSL_3.0.0)(64bit)libgcc_s.so.1()(64bit)libgcc_s.so.1(GCC_3.0)(64bit)libltdl.so.7()(64bit)libstdc++.so.6()(64bit)libstdc++.so.6(CXXABI_1.3)(64bit)libstdc++.so.6(CXXABI_1.3.1)(64bit)libstdc++.so.6(GLIBCXX_3.4)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3h/ge5@_p@^2@^1s^%@\X)@\G[ٙ@[GZ&@VT@V U@Tw@ali.abdallah@suse.comali.abdallah@suse.compmonreal@suse.comchris@computersalat.demardnh@gmx.demardnh@gmx.demardnh@gmx.deidonmez@suse.comliedke@rz.uni-mannheim.dejengelh@inai.dechris@computersalat.dero@suse.dechris@computersalat.deecsos@opensuse.orgecsos@opensuse.orgchris@computersalat.de- Keep serial number & revoke old certificate, otherwise the newly created certificate is immediately revoked [bsc#1240383] * Add xca-keep-serial-number-and-revoke-old-certificate.patch- Enable OpenSSL 3 legacy provider and simplify key checking algorithm [bsc#1234636] * Add xca-OpenSSL3-Simplify-key-checking-algorithm.patch * Add xca-OpenSSL3-enable-legacy-provider.patch- Add OpenSSL 3.2 compatibility: [bsc#1217722] * Fix based on upstream: github.com/chris2511/xca/commit/802a8787 * Add xca-OpenSSL3-compat.patch- xca 2.3.0 Wed Apr 29 2020 * Close #191 OID LN differs warning popups at startup * Close #189 Database compaction #189 * Improve PKCS11 library loading for portable app * Refactor native separators / and \ on windows. * Support TLS encrypted MariaDB and PostgreSQL connection * Close #182: UI not using Windows native theme in 2.2.1 portable * Close #70: cant open ics file in ical on macos mojave * Close #72: Add checkbox for OCSP staple feature * Use DESTDIR instead of destdir when installing. Follows autotools convention. * Close #172 #46: Multiple OCSP Responders * Close #170 xca-portable-2.2.1 cannot change language * Fix certificate assignment when importing a CA certificate * Close #163: Show key type/size on column of Certificates tab - rebase patches- Update to version 2.2.1 * This is a patch release, fixing Issue #159: "Opening existing database" which prevented the current version opening databases of XCA 2.1.2- Update to version 2.2.0 * Most notable improvements: + Support concurrent database access + Support ODBC database driver A detailled changelog can be found here: http://hohnstaedt.de/xca/index.php/software/changelog- Run spec-cleaner- Cleanup spec file - Use Qt5 - Refresh patches-Update to 2.1.2 * Close #40 macOS: Crash after xca v2.0.1 quit * Close #37: XCA 2: EVP_DecryptFinal_ex:bad decrypt * Close #74: Exiting XCA 2.1.1 corrupts database * Make PKCS11 libs, working dir and main-window size host-dependent * Support for XCA as portable App * Close #69 Library not loaded: @rpath/ contains local directory * Close #60: Fix MacOSX 2.1.1 binary * Add new maintained languages: Polish, Spanish, Portuguese -Update to 2.1.1 * Allow manual override of the CSR signed flag * Close #56: Duplicate Serials after Upgrade 2.1.0 * Close #57: SAN IP not working in 2.1.0 * Close #55: Calculate "CSR signed" information from legacy database * Close #55: Add Certificate counter column for CSR * Fix slovak translation * Close #50: Hang while importing 1.4.1 database into 2.1.0 -Update to 2.1.0 * Close #48: The SKI tickbox isn't generating an SKI extension for CSRs * Fix translation of dates * Add private key icon to the key name * Inspired by #42: display dates relative (seconds ago, yesterday, ...) while column ordering is still strict by age. The ToolTip shows date and time. * Related to #39: Dynamically adjust explicit DN entries * Close #39: Subject entries shuffled * Close #36: Support adding CN to X509v3 SAN automatically * Close #35: Configurable size of serial number. * Close #34: Improve Mac OSX installation * Close #27: Configurable certificate expiry warning threshold * Generate calender (.ics) files for certificate and CRL expiries -Update to 2.0.1 * Close #32: Version field contains "Created by Qt/QMake" on MacOSX * Review and update russian ltranslation * Close #31: Closing certificate details window toggles tree folding * Close #25: Certificates are no longer coloured * Close #24: Add LibreSSL support. Tested with LibreSSL 2.7.2 * Close #23: Improve limiting to pattern in certificate tree view * Close #20: Unable to chose remote database type (dropdown empty) * Close #19: Replace 3DES encryption by AES-256 during key export -Update to 2.0.0 * Open database before starting a transaction * Fix default hash during startup * Fix Importing PKCS#12 and PKCS#7 files * Improve automatic setting of the certificate internal name * Don't use remote DB descriptor as local database filename proposal * Usability: Preset remote database input values with previous ones * Add another missing windows postgres library * xca 2.0.0-pre04 Thu Mar 22 2018 * Accept drivers that don't support transactions * Install MySQL and PostgreSQL drivers on windows * Closes #10: Warn if certificate without any extension is created * Add table prefix to be prepended to each table for remote SQL DB * Update translations * xca 2.0.0-pre03 Thu Mar 15 2018 * Fix installation of sql plugins in the Windows installer * Fix opening, importing and dropping databases * xca 2.0.0-pre02 Tue Mar 13 2018 * Fix crash during PKCS#12 export * Update HTTPS_server template and add example SAN * Acceppt empty password for private key decryption * Fix legacy database-without-password import * xca 2.0.0-pre01 Sun Mar 11 2018 * Close GitHub Bug #5: Exporting a private key results in too-permissive permissions * Close GitHub Bug #4: Workaround QT bug of editing in QDateTimeEdit * Fix display of dates in the Certificate details (local time displayed a GMT) * The internal name is not neccessarily unique anymore and can be edited in the details dialog as well as the comment. * CSR signing is now statically stored in the database and the comment of the issued certificate. * Private keys in the database are PKCS#8 encrypted and can be exported and decrypted without XCA. * No more incrementing serials. Only unique random serial numbers. * "xca_db_stat" application removed. Use the SQLite3 browser "sqlitebrowser". * "xca extract" functionality removed. SQL views may be used instead. * Each item may be commented. XCA itself comments important events in the item. * Each item knows its time and origin of appearance. * Change database format to SQL(ite) and support MySQL and PostgreSQL.- Fix grammar in %description -l de. - Throw out old %__-type macro indirections and $RPM_ shell vars.- update to 1.4.1 * Replace links to XCA on Sourceforge in the software and * documentation by links to my Site. * SF Bug #122 isValid() tried to convert the serial to 64 bit * Beautify mandatory distinguished name entry errors * Support dragging certificates and other items as PEM text * Show User settings and installation path in the about dialog * Remove SPKAC support. Netscape is not of this world anymore. * SF bug #124 Wrong assumptions about slots returned by PKCS11 library * Cleanup and improve the OID text files, remove senseless aia.txt * Update HTML documentation * Refine and document Entropy gathering * Indicate development and release version by git commit hash * Fix dumping private keys during "Dump database" * Fix Null pointer exception when importing PKCS#12 with OpenSSL 1.1.0 * SF Bug #110 Exported private key from 4096 bit SSH key is wrong * SF Bug #109 Revoked.png isn't a valid image * SF Bug #121 CA serial number is ignored in hierarchical view * Improve speed of Bulk import. * Fix starting xca with a database as first arg - xca 1.4.0 * Update OpenSSL version for MacOSX and W32 to 1.1.0g * Change default hash to SHA-256 and * add a warning if the default hash algorithm is SHA1 or less * Switch to Qt5 for Windows build and installation * Do not apply the default template when creating a similar cert * Close SF #120 Crash when importing CA certificate * Close SF #116 db_x509.cpp:521: Mismatching allocation and deallocation * Add support for OpenSSL 1.1 (by Patrick Monnerat) * Support generating an OpenSSL "index.txt" (by Adam Dawidowski) * Thales nCipher key generation changes for EC and DSA keys * Add Slovak translation - remove obsolete * xca-1.3.2-openssl11.patch * xca-doc_Makefile.patch - add xca-configure.patch * fix sgml2html command - cleanup spec, fix deps- add xca-1.3.2-openssl11.patch to fix build on factory with openssl-1.1- fix Changelog - fix deps * openssl-devel >= 0.9.8 * openssl >= 0.9.8 - fix missing help files - fix rpmlint * spurious-executable-perm /usr/share/man/man1/xca.1.gz * spurious-executable-perm /usr/share/man/man1/xca.1.gz - add xca-doc_Makefile.patch- update to 1.3.2 * Gentoo Bug #562288 linking fails * Add OID resolver, move some Menu items to "Extra" * SF. Bug. #81 Make xca qt5 compatible * SF. Bug. #107 error:0D0680A8:asn1 encoding * Don't validate notBefore and notAfter if they are disabled. - xca 1.3.1 * Fix endless loop while searching for a signer of a CRL - xca 1.3.0 * Update to OpenSSL 1.0.2d for Windows and MAC * SF Bug #105 1.2.0 OS X Retina Display Support * Digitaly sign Windows and MAC binaries with a valid certificate * Refactor the context menu. Exporting many selected items to the clipboard or a PEM file now works. Certificate renewal and revocation may now be performed on a batch of certificates. * Feat. Reg. #83 Option to revoke old certificate when renewing * Refactor revocation handling. All revocation information is stored with the CA and may be modified. Revoked certificates may now be deleted from the database * Support nameConstraints, policyMappings, InhibitAnyPolicy, PolicyConstraint and (OSCP)noCheck when transforming certificates to templates or OpenSSL configs * Fix SF Bug #104 Export to template introduces spaces * Add option for disabling legacy Netscape extensions * Support exporting SSH2 public key to the clipboard * SF Bug #102 Weak entropy source used for key generation: Use /dev/random, mouse/kbd entropy, token RNG * SF Feat. Req. #80 Create new certificate, based on existing certificate, same for requests * Add Cert/Req Column for Signature Algorithm * SF Feat. Req. #81 Show key size in New Certificate dialog * Distinguish export from transform: - Export writes to an external file, - Transform generates another XCA item- update to 1.2.0 * Update to OpenSSL 1.0.2a for Windows and MAC drop brainpool extra builds * Use CTRL +/- to change the font size in the view * Add Row numbering for easy item counting * Support SSH2 public key format for import and export * Add support for SHA-224 * add "xca extract" to export items from the database on the commandline- update to 1.1.0 * SF#xca#79 Template export from WinXP cannot be imported in Linux and Mac OS X * Support for Brainpool windows and MacOSX binaries * SF Feat. Req. #70 ability to search certificates * SF Feat. Req. #75 show SHA-256 digest * RedHat Bug #1164340 - segfault when viewing a RHEL entitlement certificate * Database hardening * Delete invalid items (on demand) * Be more tolerant against database errors * Gracefully handle and repair corrupt databases * Add "xca_db_stat(.exe)" binary to all installations * Translation updates * Optionally allow hash algos not supported by the token * Select whether to translate established x509 terms * Finish Token EC and DSA support - generate, import, export, sign * SF Feat. Req. #57 More options for Distinguished Name * Switch to autoconf for the configure script * SF Feature Req. #76 Export private keys to clipboard * EC Keys: show Curve name in table * Support EC key generation on PKCS#11 token * PKCS#11: Make EC and RSA signatures work * PKCS#11: Fix reading EC keys from card * SF#xca#82 Certificate Creation out of Spec * SF#xca#95 XCA 1.0 only runs in French on a UK English Mac - xca 1.0.0 * SF#xca#89 Validating CRL distribution point results in error * SF Feature Req. #69 Create "Recent databases..." file menu item * SF#xca#75 authorityInfoAccess set error * SF#xca#88 Minor spelling error * SF#xca#87 Unable to set default key length The Key generation dialog now allows to remember the current settings * Do not interpret HTML tags in message boxes * Overwite extensions from the PKCS#10 request by local extensions This avoids duplication errors and allows to overwrite some extensions from the request * SF#xca#78 replace path separators in export filenames * SF Feature Req. #71 Add KDC Authentication OIDs to default files * SF#xca#82 Certificate Creation out of Spec * Add Croatian translation * SF#xca#83 Inappropriate gcc argument order in configure script - update dependencies * qt >= 4.6.0 - remove obsolete 0001-Fix-for-openssl-1.0.1i.patch - replace xca-configure.patch with xca-linuxdoc.patch - rebase xca-desktop.patchs390zl31 1748252015  !"#$%&'()*+,-./0122.3.0-150600.12.6.22.3.0-150600.12.6.2 xcaxca.desktopxcaAUTHORSVERSIONchangelogxca.pngxca.pngxca.pngxcaCOPYRIGHTxca.1.gzxca.xmlxca.xpmxcaCA.xcaTLS_client.xcaTLS_server.xcadn.txteku.txtoids.txtxca-1.htmlxca-10.htmlxca-11.htmlxca-12.htmlxca-13.htmlxca-14.htmlxca-15.htmlxca-2.htmlxca-3.htmlxca-4.htmlxca-5.htmlxca-6.htmlxca-7.htmlxca-8.htmlxca-9.htmlxca.htmlxca_de.qmxca_es.qmxca_fr.qmxca_hr.qmxca_it.qmxca_ja.qmxca_nl.qmxca_pl.qmxca_pt_BR.qmxca_ru.qmxca_sk.qmxca_tr.qmxca_zh_CN.qm/usr/bin//usr/share/applications//usr/share/doc/packages//usr/share/doc/packages/xca//usr/share/icons/hicolor/16x16/apps//usr/share/icons/hicolor/32x32/apps//usr/share/icons/hicolor/64x64/apps//usr/share/licenses//usr/share/licenses/xca//usr/share/man/man1//usr/share/mime/packages//usr/share/pixmaps//usr/share//usr/share/xca/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:38851/SUSE_SLE-15-SP6_Update/17ff962f14ce3729ebc3da990181c405-xca.SUSE_SLE-15-SP6_Updatedrpmxz5s390x-suse-linux   ELF 64-bit MSB shared object, IBM S/390, version 1 (GNU/Linux), dynamically linked, interpreter /lib/ld64.so.1, for GNU/Linux 4.3.0, BuildID[sha1]=be5597f0fe0e85476e9e8576f4aa00a40074c6db, strippedUTF-8 Unicode textdirectoryASCII textPNG image data, 16 x 16, 8-bit colormap, non-interlacedPNG image data, 32 x 32, 8-bit/color RGBA, non-interlacedPNG image data, 64 x 64, 8-bit/color RGBA, non-interlacedtroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)XML 1.0 document, ASCII textX pixmap image, ASCII textHTML document, ASCII textRRRRR R R R RRRRRRR RRRRRRRPPPPPPPP*wLxutf-806cc2796cb22aca54aeeaa4c097728ba50f45407668183e2fea050dae4083e30? 7zXZ !t/zl]"k%j+mQJZ&WGΟPT0:HDGHxeD]*ʍ IӅ]!NڕER OF5Qa WJ},z48pOx寢"E}VkSN|S;PDMy-jnc\M !2mL ;w_-o-yݟA " F9'GѶЅ`8 ~-Gsҩ]~xAf# }{eqw;mFR/ `W:Z=bRF͖\ a ya{mCBD*6BYU !ԶU2adtrmܐ1 s :?yR)CAG uc0OVywzk8yM¹V76H}$pZn7"qI1tg W@qю68ƤcuVYV(LEDd <ƗLk`,~+yol (WE35+k{?JoBġLm<&ΐ8+l|Sp%} Ky&j43q+tqm]1Bnh n*fbsz Hint+i81p~QV27@S5t<ҌB#OLi+h\;G\8I4 EM.hY%d ;^$친T";S;iD9ii[DkRͤ+{X̶}Ml{}E\-E;7~^Mlo~kD|ÉSoT5g)X("&yyto؆OSB܀޿D"'sc*DAәЖ!Q()tlȆ[k{^..a[;>(ķL%a*廼k8+HLZ& \|HVS| #PdnI6n#mWm,5X;]HE F F%/̔-'Fu`h QA#{Gvje>.ׅeQl&k p=>۱%l[m;.=lj@D<ԨΕq)ף>4]@y$M=za,У[|'|L2N^rxԼM%EO'f3M-I^y':g%1wkV=/돏XF}=:E@q|J] 7 pG۹vGBZbjn!05cuI4Ui ;^E )pDItaȬgbŒ>0 8 3g4E3!e?3SVhUVObu|qHXX,x(P!\t)K;٦T6sHuqSRCN$CpA:}Mڪ(F/mp:Q3D!G :J]Z`Vqp.c%oȷdž-q΅!tDrsjR _>f2/Tԥ,|4Y7O3;-4+>s V-CT`l:eGum#T+t\|$~F̖EgEY#u |^rY."0FjЙɎjUyvb" ǥ(%[{̳ێeI]R8![/`B_I7 dP"2-@eį*ZVȘVnT[HR}l ze6BK+/WpϊtG;NQ,}ږ}z,)I,*Qn] '+bNo]gDp<1"EJd$n,\Ygq&ثgo$~p+9t7\D!C}-"^Ul| !ZLè v0ZA3L$G@ID"sy pw]7Ti -'r s$?GxNF !Y$O^b2fkAH+}`g eŨh!`U E{+L۝έ18ꔙoߥO|zĕn;ҏm=U\@$gJI|MFM PDk-9Q*E+/yDt3aQ[P^oa7poؔg7@Bqyєl6>PNdUy 38uƚZQID1g 1TtgW0hpze5,fsGo$0`,r{$aeUiN/Yik/)he{z"O `zs,xQ wlI7֔Nd,RE|`LDoB3B\X(", f(om VShFP@"Rd'ek P*BK( EPw7pˡlo 6S,LPNC;yj:Tlf!/7mpUY ?%s;:YމZv:ED35,$НŎN.B_Rp=5y_GOfFNP!:lU${`p42tT=N՚龴+`.xl_',$0{Z܊H֋Ou$׹GK.@6ҋ;JtԗBo&pUz5?a (,/mX?zr.?(ŠH/R#  f6ZצH=?Q/3QjZi'm3 աmc羈AIM#w'k]C"C9[.]G#| wu716I+؞=h̴xVcj?8=˓jcQ^Qۿ"@t\m5Yho/Mj֏3?i~{Y$;9Mwm "~|asB8hh5#.=!zak9Ůp\q% (G}fU"l@(U簘}v)z,bܐ?{6?[$̷#V"f47g.1 +N@ TjGB9oZwVe-y )Wm.[_Y훀 P1.…1ϞΔTl:=$Ʌ[P=?6=).b'+`b)Vo9T#% ]0Bov V!POgv1 D*nW^L~m'CZ &[?c#rzk;,G^7A2_pHW X3,q׈8L]2K콥E%h OV?#DHWnG#K7 D)*J& ]g+#T@ D[zEt 8 ަ~+9w -׵jDՄ zcn)`햽ܨ, {rt.AD63~Η~sgAW-bɫp I@2"*8A.ۂ?b1o3Ќ:a6aԳhG)QK9t }Z Ha=%$GbjO/^$>n5WM"Fp|h5 rI}U5 nǶ-^[gW!߱'-Tl })ՑL]S hV'i1q,z'y7ܴp鑖 NQ`i Gc䉌){% A:A=.[ ZL7fShL7c9p) ڕ~]Vd}a:PO9=?Jd>2M|dOӶ;*3] ƶ> 3Ǥ+;5856܌}SrX:@{;s]*x[&ۖ@*unN t.m^ 46iNm̥qsfxc]S)MȪ@PO|}MF`5=rHOlz=1ڴ bOY\A3(x/~ NcoI?ZJ4I%tb~_U:N!HZ碸pb Hh )ɟ8 bꍒPS?q4V)娓`K\>VKӣtewWi*h㑍JņJ !ÿ`Dua(;R =fH2*g;[P _6;լDȐXLL9+1Dϋ?S~*JKSLjȰ 2i0;}t#w]?>//0]!z4yDR/kciI~{X 9*h+uym,QT&G!<-a?( xS~{Ш= {4:ܾʬ%YR4Y =4Һ.b\5ʬaO{Q @k4:p,<:% ԪnjoI3-`Z${[Z{7;jikT7ù6յ4JںOr Iz\W9Mǡǃ)M'j 0 Dooi%Of̕]nef8$6Eƽg=Nk9A;1?h;£ R,K o^9M-K8ZD[WD. ݏ"qm0ߓ{PF8^;g h{c ^;WL>ڣܕ@K)ȍz&Q=V0։L'y3y1v/b}OBRApu|/M|j&Zb[\*qq 1We,i'h9[g5^̩˭ D"[,~%І!c:,pl۝eװ紖YG0v+'J ӵـ*\wۉ뱀+\ U jI?6Ǐ*Bv{ggƌ?c:e_ȃyW>,w)/X=sE|ؖaX}hNjD-&ۤ/̷4A͙Y)'+\ ÏC"AI-5Vb 6.fφ23͢DZTÇ3l'[\9У;dQ`)Ɔ7"8 ?ub[dJo}ݛz3c"z%-;΋TPU܄_qAE @)&urzeVB%r<wۇѐ"^Ǟ1 _8p݅ JA2FuoMn:i-DwOFw/1Ri[|BѰ^9(@8CXx;w,Ge7IJw'2>c*;x%H]g7t_ICCUu3F 3ĦLF+'Pao{XպqY8D$zo5ܡx . 4Wl~X`-`+}K()GwT(; |Ppsmܘ(d sZXO# THK<1Җ"y" z'Vb fفw';JZX-EH˯nQbCd[s&ҲWoO_]5ҟ;lĕdqAh Ԡ=   P$%#V"w,jPU;ϫ&c_%F>W{ c9,";2VDxm؜Y)J궆e6YM1skHf' 9?NtCSzGLy>6V?W963lEoly4$6A2Xx4n-S^%.Bw5ZcpjgJh\ m2K1LݯF>q"}p!_&B#m ^1zH9CYC94Vo0kYLCн1"`} 8'`\SD[u.R>v`R Fb hHQHYHv\$*zPc;.2a= )츻%3TVg/r|,AGߝ>? jc .hp'o+rW+I ?Õ WמDP\DS#8*.H-YY7$HN 7G |PUJαudlaXӧg TË,wqX \ѹK ˱ce`|wvTJQr,{B&hXMjvd2JʮΙ.YM |3e'Ӧ(":p9_BEmY-*-6s)WccXRq|)lR"]Mö2C!k<v;*qW,ݿTc%br!ҶӃeM4Ւ*Jf߷דҗ^_jzo{ի{xE8&èn֒{ &U(XQPF&6}XgYW˶=cprןxF;9x*'QmI4-Î^}9@;,i~_Wfh[jLnz^F븤eJUuO+CL簔NM࣡DBk7lPW\" hm3%Pq}`wJo@Jrunx}xvi;ytk<oU1pb|"YFW 3j"K\)4ydBN)]?,JayB'sDC.yMP{(fsYXcxn+B6Oy P͖D5*yx@9uwD "ɡhE6CM)`F8AעpD| Q*rm`CY]h`l@ M9ǻ$IH4цßX7$ Bၧ"=]H>~\;YKYP)!7$M+&Ӧ+J+/ލּ"#q~~^;}—Xm }n z'B1\%)N 4Pﳢ E{y 0h$:uE,ŴSը+|zk5#\0TƐ9v0-ɽ&C̠[eg>4[Yke [87r7^w;M 4Et ̽!^wR0f<:㋇,ӱMW MQbv} J~3%r;\V?K~(,D&6U bg3N9aEվɢh.Բo ~(AM.V/~]`LFCdWN'k -8+(w*Jo8(D79/?3[5skP*66| _*͒Q͓Z)*j;- q6~M3ΉEH /ppl ;?)Jv/ëͤ]1HJuo14J"9wo  x8](ЛYvpg)Oj%4N]Um2jϟ"Ơ̖鬐1: dX&iyIq_c)g.7h֨ zzyUNbInXOb.~ ZeKہM0[WGubKdNc #[ೞ.)`~>G3ƸzǤw`h$#f`4ワvTP9[yLQ:1҅6U 𸀸yDQO0kNJ7S1F#+kɕ%gM*LBdD=Q{˾1'(Vx`=$ 1|ѹ.k'A^|(2 UIbS;Rҁ*]\oK98ѝ0'ߌ yL\/G."Z8w}PA'?xXWrkF>sthM[E}V3`DfwI}Nxcʅ1%3\QXmNe{ͥ<:׎%Ԥ';œ%۾<+x\[=mw>7Gb"QB!t5Kd5K|f;[!yp<@A*`NǃR&z~sC"+fvXhy+yjGu>Qd̮&tD$= 1&Wdlbǟ9;#Ì)3yU'P!'SA6^whWa gFӂBlHa'TWov.c<@wL&Lz(pWƷ]Zr=/ /v b% hX!o)!ل%’/+5kAY 5(f~[԰Th`'c%|JcQ:ʇ!FhfOH{FyْB`Ј=UM6>=V@2ն8(X!i=3:ԴWenZ EYFlg[dE5 ˦MmO^`(9FvZVBQ=0:j 8QW^C'7\t ^2;,g%h8 VPL(Ʊ&Sq]lE &N 4zr43Pe*64p NPY V,΃EK،tg !nxట1;e$ =52%g gKvO ijf3}Q"ZR9**Ն{[E<1t J(l'PV. -黺:>, $(!G $B;ݘᥥI*T `4}I(l@CI;4HK^}`8 #/vLJ6g:HBo5G!9֭nGET# ވ$gibZҊegcf]qϭSū+N{!:ųj>@>)$}h5^-`w)i:!r9?uHyE}}yc ͐{ 4mIQ7Y6!jyEa hϤABj)AjȘ 'p~:=5#D_ӡ3oۇwco&H<ɣgӦ^^ *x\> ݭhO9~D@a 7 ZY,|Fԋ:UP8 ;}5Q6mE$ '0p+k/7||cY'x \B9N %Օ)jE|EL*2.J{ ٚNޡ:[1Jߧ&bK?Z6K8TY~eA)b;m ?f0nx/PL5Vݍp%Z[(6IONOWݭe2/y)BpYJ(4 Hen&4NO#V{8kbWl ʦU/ғ 2ɡ<_\YSCUZ(BmqD6¯뫢L _ uu*e E9K]׫e+Nz8Cy=$ ߘR~&"[:9E#ķIXE]6ɦR#fX3[*ڿe$ ݞnڌ/q+`lg ĭ(Djg90 I 1mb9_QuVr^f)Vioą(Fp K0={~ Ce;- 2h>Bކ\|7@2cWS:BC7nB/65ȉyQА , a>lvݿE]DURnPH<#/2ڞaCv}1h FeTtj>i*uuӏ9'i?4R \=g[+jkRnxl( r5DNf(f533_hrP=:Fs!磧flu",ya1gV<mMԙL6bnk&y'.k,- 5s90EWL$T"f|C,٤˝Ɵ1v!>bU0893\Ɔ" /Va>wS,ψYei<NC6_-c!)i#6oս*9/1J.b FI\9NڌۘPw]0vY P}~>وr}NڞJvrlJƄwT/A92ҶDhu{svO#XeÆ(-?37G,wb~Бe" ]3j %|yfHQՍRHBnEې uhy;#lj1i)?QIr Umш>B:tI~pk6ns!71PjP.-1ԉ~<MN;Vh/ {Q#݉5U{+ nH%}_J@rAɎ̌ e&gD9Ex "B2MZnhR2꾆ǐnf EÃTI|JjIHL3 Q/]⌧$j\61(`td53Wۆ8)mCkGJ&`dY=y)]%!EG)_+Wxpq^'3MrLw`^5W.~J}Җn-w1XX&Wk9. 1Znhc]7K. ~x64?2^Nb}$рnd/o>Vd> (}ZH:G l@׀3Q-?zoe5w[2n^Vehd^\ ʫ5#JKǭbSB6RD@<&@H]uS {J "J9ᖢ&fBi0P(le1H?q gVpPSÈKP,>>[po+]vDpFw#}gJBuEg-  7hVxo21f9XˏD^>n%V!!OJz"=pe|\@rT4+ɣP;tf;obe] sZbX|_0[ 6 ZVb֦P"VNpFҙh}4Rt:I\%5}' Yʭضby 28>6 5>ֆnJUZ^{=, 7`)>\?i(0^gCrsw1/ǭem}>/>ٰSR\ uz#F~Ȣԫ~1lc \K7Q-nmހ6t2?Rvz[ca@2&Ge&1 T m<+Rljwjt+{ew/HW&6jT\3ʧG+]76vr\7^ЍVǸ c|4sҗx>ħ ye)UYH__Gv ԣ>Lҩ)V̅B>~\q?5?3Y*D~?[筮P 3YCɸ ډ].7B͞2ɑkە'W$vڽ,M[Ry@\j<2@"dqXY`e𕬚a`Kzv"lJ 4RXo.B o6j66-#4{}'iY䴙%V8!@eOK"WyL8ɠ́l[]:8kk^w0 .kq)0M0ydϲL_j9fiK!U޻+ʁ@xJ^8fw-CSn'Ff0J$j$IrF GqD\_HjmCƲiVc{S_&uy?߲898rظ36u=7qsbGkncsP"555;vv쏵/1f%n }6Bz1k!Q }jJ*L(96R}C !y+/+Nu׊?>t^@"R6LھLN~F:v(YKFEf܏S^[.z֚7cD7pav٨:K;c̳D <Z+`{Z\;gZ%0 =!shb55 E-pji+'|e9b9VZh%+62Tnx3긖,X@}2UAu{#uq*RȶcHr_ 'Vj>ƓEöJ*> kɖg\,]*OE SB\r0@Dm_?ڇx1T} ׬?kYH ePO~R?xϵ򷩕򼾹↶IJaq KpHSi<FLoS)pKٱB(nϐRovGu(Eb[oY{NA Aq̙H7q3 J)Xd_[=_^m:<: :{Ĩv7FȤoBg +1w@`hx;ż$C!\Ibmd_ϥ: 8ocT/W/'eX3\) bATZ'A2 ~բfFiC5cWn˒ _Ƽh/f5 {֔dМbhzAz>@JuhW3zڭ-PLR\ ð# IUUz՝꜁<)hwf^]е X`6)_tc1 JǬǾ6M?2|wtdFn}D(EKx_X2yoY'7 -'h* y)Tsha6'FuͥO$x52du>#g77R[] !e$K:ps^+k|dR` Q{,"UÄ5U7q1= z g.G w1j1ܴo(N~g91UvPi{Oһ\_%Qy! ^9G0c5emA>N pSvPl#!7&}f:a>3hL>JPfmW\ Yd[C*>W.C#*%Ke4 >`AΚpE3*|#B)2{ 8ODEݤ|$Bßikt;)W "FFnWTqs_M<>LFsuۓ([ʨbz?o?4BcN qϴ~#-#miFד8_n o!g!xb pMr Zx'7ρUu:֍{ZL"u MrQ7f4(JivۻDKԞ 8Ӆ:]M!R[췧[M(a?13a֓/hi޲/%e3{!8Ci 8jQYj)qtc,/ _j%Ҹ8[Bޥ=ԫLZ̓= ,ocn  ؿ5x&v03.cw[̟x7K~ mSjcR@EKb\s9Jrg5 Au| KH_4/zþ@|fEBW9sRDI*+tnN8 ~_b[P%ՀǴ;`?1i0Ha'1kC4 €?M޻Zl^үBeZ Z &h 1+2_8nֻ,7NsIՍW3\a'>R'&{ǹ(VJ R SQnh|7سb  3 _F0ZA8uޛ! h"/eb&]h&cAe\(E!/A*2{^Sr{g6ysW8|>dN}FzR3U:"ŕ(ni[C\[xGZmLX%\~i[‡;k s@׭alE |lgInd.Py^Y7W;MqbA.%3GnW8* btƆUf=Lksg/TT~FF9G," a]R'Eܒlo40>Q -ɹä΂yo?b-lS&%҅t+)Nb4$CͦA sOl0P 3L;!Vt2;]q GC3^uɭ?t6wYNcyht4/, 8*v0ocJ&/lI22 Ro1)ZN;U9I8]lɐjWs:$٬YR昉/*uM=,0)t&TKE܉EplWrǮOnҷl\~5(.%HlKS!]hL뿲/Q@Kv3:P`O3bnSZ[C8R9m 6?nJrNKAzwV. ~ ("bsa*®BFP|B6Bh.#~HP}5=HWs0aoRqWHMc]Wmyx2 2fYe26fqje4H *"/PQ`knW}N2ra6ssp5!IT@lN#q }ld/H' 0q|jM^”əVrNA/YLr aSS`UdϹ`=݋nm%%r"pfR1=,l PS!Uxώ;Mp[-qpu\"PJ"4^71$0GFVvC)J$$Bunwz $bOJ$KsJ˚I-kp|"iċ,vjMrH0Gzh.YjXh%2Pap']#FW0&E%U&DɿrHygeE%\![.K;~o_{M`JN854KQ<_ߛdb&(A#CI"`Qpah46jE!?LWBWLŎx6^U*[5dkv<@[}H]N7ēuNFɊވe9n98kS v6F~c~|D'~ad{G+m ۤ!',jT!< }:sVBH?JOPFp} Y,O&Vnd-D VgGQ%} #nP0h)wzS(h3C,26dU4P MJR^)a%v)4Iٲn^fUW >iPةOKϳ$A~YE 3SN޹#QhK$_N/t4wh?MezcCP934.յF38/f*x6J"s: Y!SJ~}`wK7%8w0pNs|y\h?{Q#Tp,Hc BƲ37Tn+pCv+nm68Fb7?{ .Flc%#TӜ 1 55{Ky &f|G!7O- SOS)Vy}2Nh3uxi 6Sc`bр^'i*LzZKa2KtDQ81Յ',i 44nL8JDMwV2ZK1q^fSs7uU$krX|D:Rx RPaЃ#%!V[E'rcARZn:#pN@il~}߲TboxB$ ؾdbD͙"$nj%!0-@KM%/s֫ORg6BCz6Tnu^qһ#ga})ކҗIO,er-;1fi8E")/Y: @h NW4S<27:yx&FlXH[ީS.Dg!ՃtmɿʚvE"ڍ)P|g=<INq_ffR]3wҁY<0-nY+ Sjk"Q.sUBlb<_Xuy0Cu:u ݩ`ozwj FO?C3J}ZS<9cu"~5]7 Tw.^zpG p++dtZh]5EZXu4T5TTcsL>,jf+_od'Y 3'y? 67Lh8qPO}hb}Bm /7qf!:He[.C#,<`sgNg͌:ᨄJTPUp!d,Uf {ץ*+]*x ĥyEH3l$Xrҁatc-9c-Q.SHrX ]rjxi>v 4h@\6`꾾%,wŅ633f5"3DQ Ře[)Ǽ,TU y_R+ST_NFi݅\Vhq~pr& ƭc \wd 5NƳhLA|o30U>"# :=};z12 vMpf>@1[Nu}oT  HYojr uqy1MHL"\ǠTE,mW0.x]͔`x|`Ԛc+@Uֱy_ku|CNB4EgOK˸%Ԯsc!.e4%z^}-$KZX@y؇0Dղ¹/7eýIY\*jwf2]G( /q|Xvi~޽k㋕ XI?Xw%*CN0R W.Q f,>*sqAZ\FOOJOi&o3i,puLs!y˥lkf JGLN|vN%x|'нkNB~NfXXD$GvoW}.oBRu-tDs ͆yTMjܳay@6UFbcphj~S!ܮ<'hz,<;`ݵ#?91LcmZ1TΘKd&< !Z~X!~PhZe`wm+U{L#UG<=$4MD sŧ/QHZqh )gI3IM"uue;2}O06uU@RĜ-Fsˑ۲,q6!IaH$Ӏ0ԗ`v á gu! `y=\V~,acȈ<ݨٝOqhY,63fqH]eqИK Bb=m:'&li+2ᅙe{!r.5Z!2̦ g*M1&! /3P;'7"#к .iٙrYe^Tns˴,lmmzDO :ߛV7ju,b4BKX>trѣ>ޙKY);9i˘j)JPy:([n eꖜ4 hKX>jId++z52:eD'8 zO]y>Cj,wX^0{5TPg*Ĺ'>8 F 1O(kU) p%`P\d'Kȗ>e:[u(r&&Sd=seurq<\:֣T.~{.'.& -n݄:!@ ٫hN\`72(~6 ,>a +e)k~v W6dC /GSgX{#I$Eok'7so8g& YZ