container-selinux-2:2.42-1.gitad8f0f7.el7$>u4lQ| z8'fw>?!?!d, 0 X (.5W       0 X      ( ;8 D&9 &:-&>P@XB`GHIXYZ [(\@]`^b d!%e!*f!-l!/t!Hu!hv!w!x!!Ccontainer-selinux2.421.gitad8f0f7.el7SELinux policies for container runtimesSELinux policy modules for use with container runtimes.Z_x86-01.bsys.centos.org\CentOSGPLv2CentOS BuildSystem Unspecifiedhttps://github.com/projectatomic/container-selinuxlinuxnoarch# Install all modules in a single transaction if [ $1 -eq 1 ]; then /usr/sbin/setsebool -P -N virt_use_nfs=1 virt_sandbox_use_all_caps=1 fi export MODULES=""; for x in container; do MODULES+=/usr/share/selinux/packages/$x.pp.bz2; MODULES+=" "; done; /usr/sbin/semodule -n -s targeted -r container 2> /dev/null /usr/sbin/semodule -n -s targeted -d docker 2> /dev/null /usr/sbin/semodule -n -s targeted -d gear 2> /dev/null /usr/sbin/semodule -n -X 200 -s targeted -i $MODULES > /dev/null if /usr/sbin/selinuxenabled ; then /usr/sbin/load_policy /usr/sbin/restorecon -R /usr/bin/docker* /var/run/containerd.sock /var/run/docker.sock /var/run/docker.pid /etc/docker /var/log/docker /var/log/lxc /var/lock/lxc /usr/lib/systemd/system/docker.service /usr/lib/systemd/system/docker-containerd.service /usr/lib/systemd/system/docker-latest.service /usr/lib/systemd/system/docker-latest-containerd.service /etc/docker /usr/libexec/docker* /etc/docker &> /dev/null || : if [ $1 -eq 1 ]; then restorecon -R /var/lib/docker &> /dev/null || : fi fiif [ $1 -eq 0 ]; then /usr/sbin/semodule -n -r container docker &> /dev/null || : if /usr/sbin/selinuxenabled ; then /usr/sbin/load_policy /usr/sbin/restorecon -R /usr/bin/docker* /var/run/containerd.sock /var/run/docker.sock /var/run/docker.pid /etc/docker /var/log/docker /var/log/lxc /var/lock/lxc /usr/lib/systemd/system/docker.service /usr/lib/systemd/system/docker-containerd.service /usr/lib/systemd/system/docker-latest.service /usr/lib/systemd/system/docker-latest-containerd.service /etc/docker /usr/libexec/docker* /etc/docker &> /dev/null || : fi fi #define license tag if not already defined&;0NA큤AAA큤A큤Z_Z&Z_Z_Z_Z&Z_Z_093be781f9916163b4f01d3f7edd672d735d3d8347b5aa643cfa3c58057c6d5dfc6217a38cd557adbe6ba5b7e219411cf816d86ad270db71fed1fc1d348517d122ca58993af5c40363e65191aa1fc69ac77f39dad1144ab5a13fd562b24748b6rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootcontainer-selinux-2.42-1.gitad8f0f7.el7.src.rpmcontainer-selinuxdocker-engine-selinuxdocker-selinux       /bin/sh/bin/shlibselinux-utilspolicycoreutilspolicycoreutils-pythonrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)selinux-policyselinux-policy-baseselinux-policy-targetedrpmlib(PayloadIsXz)2.5-113.0.4-14.6.0-14.0-13.13.1-393.13.1-393.13.1-395.2-14.11.3ZZ`@ZTZS]@ZP@Z/ZOZZY@Y|YYdYA@YYoIYcl@Y[@YA%@YA%@Y6@X@XO@X+X@XX@XXX@X~@Xv@XtXp@XoXoXoXWDan Walsh - 2.42-1Dan Walsh - 2.41-1Dan Walsh - 2.40-1Dan Walsh - 2.39-1Dan Walsh - 2.38-1Dan Walsh - 2.37-1Dan Walsh - 2.36-1Dan Walsh - 2.33-1Dan Walsh - 2.32-1Dan Walsh - 2.31-1Dan Walsh - 2:2.30-2.git7f2de1aDan Walsh - 2:2.30-1.git7f2de1aDan Walsh - 2:2.28-1.git85ce147Lokesh Mandvekar - 2:2.24-1.gitaeff029Lokesh Mandvekar - 2:2.21-2.gitba103acLokesh Mandvekar - 2:2.21-1Lokesh Mandvekar - 2:2.20-2Frantisek Kluknavsky - 2:2.20-1.1Lokesh Mandvekar - 2:2.19-2.1Dan Walsh - 2:2.19-1Lokesh Mandvekar - 2:2.15-1.1Dan Walsh - 2:2.10-2.1Dan Walsh - 2:2.10-1Lokesh Mandvekar - 2:2.9-4Lokesh Mandvekar - 2:2.9-3Lokesh Mandvekar - 2:2.9-2Lokesh Mandvekar - 2:2.8-2Lokesh Mandvekar - 2:2.7-1Lokesh Mandvekar - 2:2.4-2Dan Walsh - 2:2.4-1Dan Walsh - 2:2.3-1Lokesh Mandvekar - 2:2.2-4Jonathan Lebon - 2:2.2-3Lokesh Mandvekar - 2:2.2-2Lokesh Mandvekar - 2:2.2-1Lokesh Mandvekar - 2:2.0-2Lokesh Mandvekar - 2:2.0-1Lokesh Mandvekar - 2:1.12.4-29- Remove typebounds access rules- Add typebounds calls for container_runtime_t on spc_t and svirt_lxc_net_t- Allow container_runtime_t to use user ttys - Fixes bounds check for container_t- Allow container runtimes to use interited terminals. This helps satisfy the bounds check of container_t versus container_runtime_t.- Allow container runtimes to mmap container_file_t devices - Add labeling for rhel push plugin- Allow containers to use inherited ttys - Allow ostree to handle labels under /var/lib/containers/ostree- Allow containers to relabelto/from all file types to container_file_t - Allow container to map chr_files labeled container_file_t- Allow containers to read /etc/resolv.conf and /etc/hosts if volume - mounted into container.- Make sure users creating content in /var/lib with right labels- Allow the container runtime to dbus chat with dnsmasq - add dontaudit rules for container trying to write to /proc- Relabel /etc/docker directory- bump to v2.30 - Allow containers to create files on tmpfs file systems - Dontaudit containers attempts to write to /proc- bump to v2.28- bump to v2.24- Resolves: #1469792 - built @origin/RHEL-1.12 commit ba103ac- Resolves: #1469661 - bump to v2.21 - built commit 333854a- Resolves: #1463549 - built commit 532fa20- rebase- update release tag to isolate from 7.3- Fix mcs transition problem on stdin/stdout/stderr - Add labels for CRI-O - Allow containers to use tunnel sockets- Resolves: #1451289 - rebase to v2.15 - built @origin/RHEL-1.12 commit 583ca40- Make sure we have a late enough version of policycoreutils- Update to the latest container-selinux patch from upstream - Label files under /usr/libexec/lxc as container_runtime_exec_t - Give container_t access to XFRM sockets - Allow spc_t to dbus chat with init system - Allow containers to read cgroup configuration mounted into a container- Resolves: #1425574 - built commit 79a6d70- Resolves: #1420591 - built @origin/RHEL-1.12 commit 8f876c4- built @origin/RHEL-1.12 commit 33cb78b-- built origin/RHEL-1.12 commit 21dd37b- correct version-release in changelog entries- Add typebounds statement for container_t from container_runtime_t - We should only label runc not runc*- Fix labeling on /usr/bin/runc.* - Add sandbox_net_domain access to container.te - Remove containers ability to look at /etc content- use upstream's RHEL-1.12 branch, commit 56c32da for CentOS 7- properly disable docker module in %post- depend on selinux-policy-targeted - relabel docker-latest* files as well- bump to v2.2 - additional labeling for ocid- install policy at level 200 - From: Dan Walsh - Resolves: #1406517 - bump to v2.0 (first upload to Fedora as a standalone package) - include projectatomic/RHEL-1.12 branch commit for building on centos/rhel- new package (separated from docker)/bin/sh/bin/shcontainer-selinuxdocker-selinux2:2.42-1.gitad8f0f7.el72:2.42-1.gitad8f0f7.el72:2.42-1.gitad8f0f7.el7 2:1.12.5-142:1.12.4-28container-selinux-2.42README.mddevelincludeservicescontainer.ifpackagescontainer.pp.bz2/usr/share/doc//usr/share/doc/container-selinux-2.42//usr/share/selinux//usr/share/selinux/devel//usr/share/selinux/devel/include//usr/share/selinux/devel/include/services//usr/share/selinux/packages/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -m64 -mtune=genericdrpmxz2noarch-redhat-linux-gnudirectoryASCII text?7zXZ !#,R9N]"k%xĉNμ5#+mz qwՕ^.Y4jS' N XltfsȦN-,!QmH73ڵ`LT"!aԪŀvc@j˚V^&ʇ"!sa\֨Um[naD{N4E֨x]hh:ѻ"G^}:>qrjQ309Pf}V3g~}NdêcmT0XjTc9yȍp䝠a9 KM]'յ_V Զ/ !WXtOZXv7PK(KHp|(g9ՈƦFU@pIGTT~w_͒e w2~97a,F_4eGmaCt YL( n}5E<Js>Rt _.yqjM ᩝ:7wnT3v` X֓JU$6T>G~ˋT G|^r?yȀ wI)QL&<eJGx@kƈvs}VKMyg*>;(,It2!)o]'Eq7N|f  (Ds7g^) eЌ-a)OGOmy<,?*) #V~f&}Wo%r[ݝEE'[N3{P~~gIZOe u/7[gm`!"ԃ{F=\=H5[E޺nj/B.e $A=w47X(7߆^>[FDP՚V߮9-w qU1Ig\+kUd  ɤuE@0ۻ]G@5eOj + j %l QuFЍO(ud(45燻) s)'xO`tYrS뒁2@2 4V; !NyD 90aGZxV CL2'+b*Qe $|V`JG8 5p4U3x vRױB].f"o0\YI-|GVs*2NTFYwX_*x7&˰iR lF)ѝ!ob?hSyO9  :_)\*Pf#*/KzM| -gwԠ)O& 9;Ф \Nt|uswY\@W9-cpʚi#2WgSO2 {Vv^]% 2M puIIj=}V㳵x!maC2/l;Ȩh=L󒇡)NQ 9NEҟ6O5^X[.~-^\ޡ$ڵꌶP"hBdo/S:|MC~K+N}$]yh+.v6#W ˺bP Zj,e 7\*HcQ-Y.5f/iia1}vt( xs 3t{\6B˾_LmMU|kQ7,}jUP"V04izZF^ܚ5jnMQfg#XU{uL8uau4/5ڣ2?[8kT}rspǪ/ 1I)eI< Q2y@,?\u}PŐ`#M|\D6ZBcXiV=H{+e&86( 2e[ס-@Xm]3vWuJkBﻱ9"zI9o!i-̃Tr<;%u1~FRe}>]+GDg^zfA:t45fH*29R@Gێ!c2JU[ aO Ō0*}6=K-8nV(Lr6ļ O{7*Dd :JjT'N.y@Vܬnn;.VmnIQ:9=vxƘANRkn&k[U R Ca-ĔЫ/8'͠uJ|Ь17ܕ6"!TQ0m۱1Yܟm]kZek1 ݙm|$?cTh> "ײεɵ ӀQ8؈>yb_K)|LB^<P'U!Fu 8Q;)K'n-ڜmm%,+ $\HCDs+LU<(Ou1O7$7 M3#eG} `>XW lK2(O2 i·1??#kGGs?>A1^e'R09+s^k4\iQI0`u ~V}юJ9Ye/m,qS0++8byF3w ;`*lhwIf 0UhN.H8@߃3qS^ʤqL*T/Zd8cˤ:G%isVlR\|k?/JoM r(*@vUxc&e"c[4T bIR@#b @iHvk%>daRRޫRd"V-lN\nQ`O A0#DUL Gs)ƢKIK]gǿHl A̳{|1  'I2zks9t[wjYӜkoy9 Tֶƭ]xXS+XrC<:%qw9`P)-E {*2 :ΓT*sC+g62>=nW? (2s$W ]JJ<|ɵeVmgmG'ɐ<Ɯ ^Kn)h7qEy^?Cru7AJ 80&\{daWu)L3rl+DLT7 YHs m0ʃkJuQZ{π "̽X定Ht< gњYUYrZ=y!C'{Ij1uɋOFK=uRkAd^ run!܉! GAXЈ!v? TU -0ȥ%wUA!ꎟQ")0Ɖ52d3K Aי Ύx̮~9-"@NbH.{O䁷X0ƪ,S+=@VݚQ#G+ffg|+_FW^Cg:?V&ީi,4#ő%!hc*Sk+14Omo6m B¤ @~2gws" v>gYR,RNgrYfgfYAM YQSvş&開^Dl)v%aftga5;+{sK$i 7WjA+)䒅hfi:EL+C,"+s%*WBJJz ԁLJ&z A>&`ôZUW3&7J59?n5S?E[K8EzAH)zl @@4J@!0 J#LIBC9/-y \XqIL"@`{;j.o§ѓ% 0'SϔVC)Mb,MQ =[,~}R6IF;Qt3}&M{/LXd&{h)mZ K}w O/ ?D)rdxg\,~FoQ6Z;dE.&Ɨ){7\J 疭0S3#P:<0sƄ*N;4 Z_]Anfލo?! dڥa|.NI-ȶ>!I |}"k)4? klR9HQ|"cbUoJF _o~|QQ>2H0J;{/堖,%X3'"/ ,^Ht}13xUNz3gBl6L=ۏ^7jaHqveya)mfsy7" ^ v-R J9~k3HT5 gymq#D|N;8U|u*ٲd2[pt8k2t3aU, bɭX_.Cٸ82JNO ͈XǬ+/' =TZh_a:W:w5,{00vVE4Y%cLene$/QP/+pJs&sGCb'W0leAmMR횬]t KY?>Wʎ4>]^ՠJN cauqYy],לWl_LPH JxY'u-XI1،u~xr$O<Å1DJW[0! ǒKnDzA`.O*u( IE;a*d]maؼ?9ZC3@[>GccLeC yl*U6t!蛛Kxd)C14d:k,^=M3pohpD0_E{ R2ezjo9$4'tkl:\!c(mʨ=Gaט"]l_:u %xjap3ze+iVq[$+ƀ7>(``y͞>TTW$A!_Rcj"KS!kty%kz(؃-hZ.$pXpRQoY -d468Gkv Uɔ5 W=c#̭@.Om|yiFyCeT! 6;`#q`H+T/F xpቈfh}hGV3wӛ=% XT=(ngPWGY,1YՃ훱,[3#x-1`Q?bvFw |vj^`,ij^, ))+$I d3@7Wz؎݆&w<~Tթex<)BKH2q:Gp[n=[茰rORXk_>.bt]ǿ nRn|[>fh|\_ࢱC?[lA!t Da\?k$IzA(ŪMOx a !_ M90CEL:a14T@Tj_[Xrp߭gFPCJk魭7BhTAisa!dk M=ͥR@~m+{xyNypɢg'w2XEZR)3&,SK,gfu-V)AIsr?$ě48Y!i?T4}OޣGj{p{ZPdV8Yk])[Ph_J(iw6zGlV-ԉi&LueTf :X8z^"+""1ew`8 սUt iiPR&!*R뮝â4bOKc/z/# dCc⣝57sy9UvSXAz˺άwU8mқ$M'tO%in|#Bx~Oxr lkbTafG|#Ani*\"f;Kowyk$ʛhih'F~Z' vV3̦I[)d`HÉ8XuN mIV=Sb+LL`3҅z̚N :,ӟ]cJk4VFV~gXqmi_B3m77x"E@.w6=+dҝڜdodg`*X*^v\{%]y8 -Nu {B6v6m&}Х-T/ud@~ddB k8I[ʽ1.LK L6FgX#<.I2#@/߿j+} !SkjrfV(`lu_^+hΔF[RN$d؄{/?<FW^<>-$SNF= 8IE!Z|fjx` qㄼ3\ ٔsJ$RS*|R?tm8ʂ& 5KdE>z!·a-I.K{Ջx.Fr{+k>UY@qH?]9l՞b!jEc30(#33VgV暐5c\oMj*mkQ#򛷹-y: ,FJ@;[q㚅 EP+!,nH+6!$2֑ϓ<8uKHlXC`1UKOapNWs$Ѥ)dǺq7Ss uF@I m4'hb!u٩eT(QT'?6\j&uWU%ad˿#-2R_|%l`g-^꽢^~NSwׁ?R;׌Lj~D6a@i1(q[1|+OeƞyspHFy50F%3Y39wO`v&0qx@C%6MlH7AO[N}sE}T[mcVc~FSrVd>ZGP`PpnS&UD/dy%۽?l#uS1G2k_4+>М]:A9 GJC?-2mc^$]qgY.@ hI&,y6#v (8\rˤJ1d"ʼn)i }#3F~Х.aNm7H1*Zc 6Q,lO\5xsDd]G ml(Pى yh:T66:hbu{㟜w4aM&wAW.zG/T9a |N:+iHW)Dji]x@ML_ٰ@6OY]Jbiq9!tw[4[P2J(q 1Hi|ხ~BRR"(Q_j+-&hĂ$'$bڞp%^~`,}DA?V8BIC pky%\5y)|ݨ+?ku*3 J`$(xBg^N˃$2v1T"hZa_|%8hz;_?ӿSwKAZxIJ'ZSk "zƱj C>w#;wCꨘc%$[Bj#CVf(n<+f=ɚ$X{Pl >L/rO8\CDi49psi_L6\XG6h79ۥ& ۯFcs-l"$.V#%Rj(}WJOjͧb{=r\:n=|!Wba{%/BbR}2@$gj !q̞ ]ZMX7P1(jURenmF fcݫ-Sip  #E4hEym+KUUo Q~iBV,!d-VТj&m%BW$qd+:Mw{E&O5| cvGsjoӭrFdi$йQVdIKMxKJ]tAu88rg=%M& ^1f'x? K~%<%!?29 HIWDD~u&0"L<uioiI\o@xIaR]˦̟J֑2??u̩+ 4?";\|R5i&&(m *=i#gruatͣJȵ$WAA{FA_bɸ]vd`jQ) /ى)k@%Յ5;ES}جj䂫f Py??['#)zb38q]vYڊiL 6.U!8&t0Fb6w>y+)9aM31RurPW}җ]4F5s^\x^PԂf屢g~u4v!|[^. &g?ބvwÒ.҆,N`gl">{X=$ e7+HRL\)%Ptrdhg VR R#vlF̎hnMf|{9&#HUm:~h}ai^|@I|_%ꄆx^``xoJ&F=F<ݸKamڏc퀚^?\}Nȿ xBa>}&3K'yK\NjʬuFk6l&-ې B҉Y~VWŢŖDMw\f~d:;?Ϩ<*DZ)GT)U+C=ۂ0K uJUYg6s /cgqgx ]7}q_yDV wS.! Tur#dt :V EEߝ-9ŷf͠/S9ҭ uIFNl]/F>4$K\23 ;;jA%v? Th* Dk/iџ,|$&v/Bvek1bS;!d]rn$a|̓F l(lyr<[=rWJeޙ9n%X̶̖AfS6q--sAwqp֭=%Eg-୶NQsaFgo 9(<;%3>jD<9" vѦF;B1grUG]c' iP|mRĬqdvz%xMJlK*$Q'XUY_A9~/nщK4}ѶPX:`Trb1ӂ.GBӺ[9 O`0@~ġ9߂&;,ajn(޻?}φ"eLF.wy -LW3n%)!9A͋lH{H|'ԗE[^ڈc48WFw,JɅz:]rҒC=9 =^7ؕQg1vXջ QPIDo6g1pҴ&"ͧyc {K+7vyLؐWs^]v%0c`煔^oyQSP߼gA}7R (@/`[:LFR 'IzѢŠKu&i/C'REilڹ1(-yDWSV9?\t%a I5EJW mx]@э"lTՑvV1ߊmv6O}^iʼؓg@nMIw[.".}0'(ڈ "|cqu!eb?eAf9x('u2/\-`[(_o`_5pM+S<׽j 2kq0_"Gi>WDBo15!ɤ[Hgs2' ubF]ޗn+_#5w>3,@:2'v둻9 L*w(8F:obmjK%syy-OP0LK8 HP 9;҆Hx8خKՍ@l?u馊<(*ȌMvZkGk,3IBH k9?Kf i~*rD-`0 #Vi8Љ @LeH#A> J@"?'AsQn&qe6Nm6J˶9c .Cv~7BOV1Hol_]?--\ۆ_a&=^ft$y`]GtӞkD\Nfs.3u{(%vۻ_yEiA24gҢEUNg6JcD;EKk~"4vy 2iń]ĆBtB"݅kړeq"ǃ7yFRx0aq2~xMQ:dsJ#OT8ZݘJ- bFDY~8HxZ9`O"XDt1RԓcXS׎|U#g\\͘+*s \ \& 7854so*nYt$Y?5sw##)O9|dvxF9yWpe(ب2Tmee!J^xæ 踔KY&kas9]KI.PM ?u*H:3c{˚]۸5o,-bg)ɟ'+=DOCՄrq1=ӛI!5~JcVU/_V,44-KǶƊ%wu*LDZ0$ī(h Wa'|w@sN{tn)ѷS4sΚ ~Sѹ\QbD #9m끋=7_zlBy5mS()aԅ}b9ۭ41 mlFɚtruN m2굂C 垰 : e%'7OT;~&|Z27Ԕc*^b~3X9Y\('TAAVgdw&DYXoXʟu ⾞/dt֢j Ջ(q.+W{6헨rW̓jm??ǧE'5gȄOYГ"RS9OYUO/hx&̡)y=  z 7H-!iςx GK;V>_SkV-rNQp̔N8p}QQV O=Hp> 0T!\f+.,6'J]OޥX,}$d E *e6U`.JS(@+eআtIfL7um+ۺs _EͥȖ}IYHpgM)Nfr,ć=1'h_}(hdyEs)"*6ֳˎ0!ϡVV4]w_qu]~'.HZ/`Ԙ̈́鰄JL$qO݆{׼ :B"7A_oTd\ ㇫5Fh?u#W< B_Ԗ+}'u ƛ&kFVU>'ۗ_3H PkΘ2pʫr)0O@#dm7t^1 %j{&q/)2画( c>~lfk';ēH ECGd`zX2N3++O3uCt&1K&apTP'-z#AB=LӳXI J*#>=ny(Q^pa: <75]sďOX0N ;I y&Z%\E"7qrK(mg}UK! p2uHwYއ,micwPCadG\5V[  uS ؗSƑpTَhc=[]8mE3jO]^UrTPwhY +O-orq҆C1_#q}8\TeDŽכZ\9?f80^Q"~ QͦSs;zrz,^*~=& C=YͥM>O"u,3r1 ،3r*\b`1h^->VxU?N>LݴO2~>3LGR>o>&M ȓl-YSi;`]m 4+`M<ɩm@PVƷ-XlTULOW:9i('6"^pR')p.h()bO3xwu9Vί LS kɞɌW1 A3ɣwKA9M%ۺ s>#HD(+@ o)Y!p6Xh> WYDhgeɱ .*11{/irJ7~H c{n} ((Wn: 4^2H(ԐӬ> B:$ KH'8Ћ`K_H%7JZKm3s?j<|q@_TEoʿY&∯ _o_:`qcNL>;ߜIZGjpmӅ}W#hʇryF)\sdXty@ܜhRvIH3۾ dnxQ2);^ %Z~.J\X?` Wuӟdʺa_k[KGYrNLb`&ۀQO.t,:sshnEm#ǾJƖ.&4>nH /R:<(UoNkϩh5-yۀ#QSylS*FlZ*65Y(mU"a!:9 - چ ޜub [/z/Z&Ib6+ [ GԎ/1=>b*5"2 s^%ık?9a^R` J2c 5T}6 9XcijoyFD)cdo_m-?c p rή,ýH<"tckA 5^1+\N'vaRsÔ0[PUa=1$Xd'so2[/ȏ (E~K^^;2m"9CNʆ:U}H&lu$c*uI8_._uѿ hE"-<^S0XnXь; $͔J=q޹vkLFe,w) cv X(jt@Ż>o.XN0N 2 J.:ʮ`4CBjc#WQˊqZMGސZaǥހlUtՎ!ŖvE#lC A#*9n >}gek=9CJQуzcmBLk9Qڎ+cϐH^V5zX\H}L1řu\ټP*0TmW~.zN!# `n]^{OHbf)DBWAV9I#yS7v:IvϟUNc#)Yzn?b5^;omtuٳ!W1\ݭW1_X#oL~)/t󜦤Ig4-Tp A[R*'µ0u~;TnCok#<m T:S7l03F?ՒyЄ'ۉ?;.4<Q@ߢyc3Oc|ϥK\FWm V2OɐA K%c7SEp/*ڣFx"VR}Mhm ;J;t|Qߑo4;;NH 4WTIxZ8GڨtH?Β|k[UA8_N4/-2D-xlQ*fci*6ũj^"nsɊ2+FTf@lSݍi 351q-mTܛD:7X kn^虢CA3qMơ?@GTИBfVu,;n%3JV@c$9f>i* He_#CüSDLvߕK%<~ [߫_yRd+S8~o.Myl  2t@EmoDHt17yUY!9Os0o~׷tO ve}|9H[ ѝw% C-=Ս;Ļ vȿvTZkWwƦO\$̱sGCsTQo! {lGG,8q`x<7yҚos=Z!pj *i FGR`;),ZǜU7Y'MeS)nyʤ>%1.}3ЎGآ>dN?ԌDƻ6Zt3+Wk:],5kq!A[8jxfzzq<3?ojV~a&k\EFKy,UG#pCL`J.%eޞ um9I4ηDgy@ʀ݆bcbj 5A %J׻{2#v_Gb}\FV@$L%1 }nd|2Uw5ͭ%4LStõg!x 2ˊ!)eWC,zuǞ#DtV݅]_)C]]ߜ{D'rF_^yv#=X ӱ];-ER6ULAJ r GՋ^ :S A*ɖ{q VBa3[gwZ8ɵx`\3F9{Ryk=P6;ɟv <F>;X jLϮ vӚ'e;/3xo;IiAwuDqam{t5t4sc|jv&ܡR51k45RDOF4Oe>9vPDOOP@pdQM 2픺v39ާ~_PМPi [4ala0d &tt HwNt;hTu@,j!( cd&;V}6 fͩib[7ZE_xrjQՔk{W?͖ơcϮTl;2FƼh.ϳ`bKEڞ¤9Ж,2T@:{TGH,hD>haqllN/n%cZ-n߼ ͨ$|?l珁6"OԤ XG߁ Z(Ná jEYF]d 3*Ӭ 13?TB趠q[$4y&1ڞ C67I3S ɐzAQ e|f= kO4=n_oGp3 AI9I%I gk=+38ܐc1  YZ