systemd-doc-254.24-150600.4.28.1<>, gۿEp9|n8 C&RCƞTI:Qrf^=ix:0v IrrWtKֻ&0Tr/Ҝrs܃Y`QpfߜiTpai+z״Ӥ8MбÖ/lOڙbbgynL{~̮p> ͦ2*d rՀeUKZDд:Y?uoƙ8zRE%|l.-jDԡ!&'3>>2H?28d # Bhlx| !(P d %x 7  d>-.@@@`@p@(@8@9L:yxFeGfHx0IXXY\]@^b?cdjeofrltuv0z111111124Csystemd-doc254.24150600.4.28.1HTML documentation for systemdThe HTML documentation for systemd.gۿEh03-ch2d1SUSE Linux Enterprise 15SUSE LLC LGPL-2.1-or-laterhttps://www.suse.com/Unspecifiedhttp://www.freedesktop.org/wiki/Software/systemdlinuxx86_64 7m)@bFCga ~64 YWZ'f pJ`$ !!!   Vy,?XJ&) j9;F $#/UIAXEcc e1!Z$_2AB&6-!#>RwE\J#,v1b5(>R()M ԵiaFE\1bB9D(;{ /!ØXp41I}EW%EPpx "*#w*>`#:v2 &'!'"$""$$X#$## #&#&m-!!._/$$-Q$#"#3Al#,$$$$`#Q+h.#$#\&2(#,\;F,F- %"U{<%;%0Ifc 4D~R?D5V2)"2t'8$!$) (!e!"!"" &!!"%+"A$!F' :n  0{+.I~(;|A~!Xw!):L5X !_:X5L2S$(O5/ B43 V) ))5. "k + h?Am|,3`  #8 #X`JUf% 'B HK7E Q$%@d6@d-bd-bd*d*d&@d&@d"d?@d@dJdJddd@d@d @ddcc@cU@cl@c=@cױ@ck@ck@ck@c@cvc @c@cR@c#@c#@cc@c|cwscr-cjDcWcWcRcOcF@c< @c*c*c)@cc@c @bb5@b֜b֜b֜b֜bK@bb@b@bbbbb@bTb@b~H@bu bk@b_b_b^@b^@bQu@bN@bMbJbJbEbEbA@bA@b; b3"b1@b1@b,@b'E@b'E@b'E@b'E@bs@b!b@b@b~b8b8b D@b D@b D@a@ar@a a@a@a@a@aa@a@a7a7aa@a@aaZ@aea@a@aq@aa6aLa)@a@a@aKa(@an@amaamaaim@aim@aim@aim@a`2a`2a]aZaTU@aMaMaMaKaKa;Ha;Ha8a8a2@a0a/k@a/k@a#a@a@````````@`ݮ@`ٹ`ٹ`s`̊````O@`O@`O@``@`@`@` @`@`m`c`[)`Y@`X`OL@`OL@`J@`J@`H`3`/@`-@`3@`@__ܙ_ܙ__S_м@_0@__@__@_:__"______ts@_s!_cO_cO_a@_a@_Z@_Z@_O@_G@_FN_D@_>e_ @^@@^^^^^@^@^ϧ^˳@^@^@^@^^@^@^@^^^s^^r @^ku^M#@^;^8 @^&^@^@]@]@]@]N@]ʞ]d@]]])]@]]]4@]@]]m]@]@]@]rJ@]nU]S]A]5@]\"\"\@\@\ڭ\\@\@\@\\\O\}\\M\M\\@\~d\k\f\=@\73\73\l@[[[@[v[[[0[<@[<@[<@[<@[<@[^[ā@[ā@[[[[[@[j@[a[[ @[0@[!@[Z@Zz@Z@ZZZ@ZUZľ@ZZZZZZZZ2@Z2@Z@ZZZZ@Zw@Zw@Z%Z%Z@Z@Z@ZZH@ZZZZ@Z@Z@Z@Z@Z@ZZZZ}@Z}@ZyZyZyZyZyZxG@ZxG@ZtRZtRZtRZtRZqZo Zk@Z]@ZX@ZV@Z%8Z@Z@Z@Z@Z@Z @Y@YYp@Yp@YY@YA@YA@YA@Yo@Yo@Yo@Yo@Yo@Yo@Yo@YYW@Ym@Y{'@Y{'@YyYx@Yx@Yx@YqY_wY^&@Y^&@Y\YK@YK@YC@Y7Y%uY;@Y;@YR@YtYtYtYtYtYtYtXXXsXg@X@XXZX@XYX@Xe@XpXXX@X@X@X@X@XtXoXn5@Xn5@XWXQ4@XIK@XF@X=mX43@X.@X)@X$a@X$a@X$a@X$a@XXX X X X XX`@XXXXXXXXXXX@X@X@X@X@X@Ww@Ww@WW@W@W@WSW@W@W@W W Wv@WWWίW@W:W@WE@WPW@Ws@We7W)@WKWVyVVVVVaVՄ@V=@V@VS@VwVwVhV`.V\:@VLh@VEVD@VA@V'~@V@V@V@VV@V@VV @V7@V@V@U|@U|@U|@UUoŬUUUȒ@U@U@U@UU@U@Uy@U@U@U@U>U@U@U@UUUUU@Uyx@Uyx@UmUY@UY@UTE@T@T~T~TTTTTC@TTTTp@TTT@T@T@T@TxcTw@Tto@To)@TmTmTl@Tl@Tk4Tk4Td@Td@Td@Td@Ta@T`T`T`T\@TWn@TWn@TR(@TJ?@THTG@TFJTD@T>aT>aT=@T=@T=@T=@T=@T=@fbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comandreas.stieger@gmx.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comantonio.feijoo@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comdimstar@opensuse.orgdimstar@opensuse.orgfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comkukuk@suse.comfbui@suse.comfbui@suse.comdimstar@opensuse.orgfbui@suse.comjsegitz@suse.comlnussel@suse.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comlnussel@suse.demvidner@suse.comkukuk@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comvalentin.lefebvre@suse.comfbui@suse.comaplanas@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comlidong.zhong@suse.comfbui@suse.comgmbr3@opensuse.orgfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comdmueller@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfawz@use.startmail.combwiedemann@suse.comfbui@suse.comwerner@suse.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comjengelh@inai.defbui@suse.comfbui@suse.comlnussel@suse.delnussel@suse.defbui@suse.comfbui@suse.comschwab@suse.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comgmbr3@opensuse.orgfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfvogt@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comlnussel@suse.delnussel@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfvogt@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comlnussel@suse.dengompa13@gmail.comfbui@suse.comfbui@suse.comlnussel@suse.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comlnussel@suse.defbui@suse.comfbui@suse.comfbui@suse.comdimstar@opensuse.orgfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfvogt@suse.comfbui@suse.comfbui@suse.comfbui@suse.comrbrown@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.commatthias.gerstner@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comeroca@suse.comlnussel@suse.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comstefan.bruens@rwth-aachen.defbui@suse.comlnussel@suse.defbui@suse.comfbui@suse.comfbui@suse.commvidner@suse.comlnussel@suse.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comlnussel@suse.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comThomas.Blume@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comThomas.Blume@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comdevelop7@develop7.infofbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comThomas.Blume@suse.comfbui@suse.comfbui@suse.comfvogt@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comrbrown@suse.comfbui@suse.compavlix@pavlix.netfbui@suse.comfbui@suse.comfbui@suse.comkukuk@suse.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comjengelh@inai.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comkukuk@suse.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.commeissner@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comtbechtold@suse.comdimstar@opensuse.orgfbui@suse.commeissner@suse.comjengelh@inai.dejengelh@inai.dedevelop7@develop7.infoasarai@suse.comarvidjaar@gmail.comThomas.Blume@suse.comschwab@suse.dewerner@suse.dejengelh@inai.defbui@suse.comfbui@suse.comfbui@suse.comfbui@suse.comwerner@suse.dewerner@suse.delnussel@suse.deafaerber@suse.deolaf@aepfle.defbui@suse.comjengelh@inai.decrrodriguez@opensuse.orgtchvatal@suse.comthomas.blume@suse.comjengelh@inai.desor.alexei@meowr.ruwerner@suse.deschwab@suse.dedmueller@suse.comfbui@suse.comjengelh@inai.dewerner@suse.defbui@suse.comfbui@suse.comfbui@suse.comwerner@suse.dejengelh@inai.dewerner@suse.dejengelh@inai.dewerner@suse.dewerner@suse.defbui@suse.comwerner@suse.defbui@suse.comfbui@suse.comwerner@suse.dejengelh@inai.dejengelh@inai.desndirsch@suse.commeissner@suse.comwerner@suse.dejengelh@inai.decrrodriguez@opensuse.orgjengelh@inai.dehrvoje.senjan@gmail.comwerner@suse.dejengelh@inai.decrrodriguez@opensuse.orgcrrodriguez@opensuse.orgsbrabec@suse.comcrrodriguez@opensuse.orgcrrodriguez@opensuse.orgcrrodriguez@opensuse.orgcrrodriguez@opensuse.orgcrrodriguez@opensuse.orghrvoje.senjan@gmail.commpluskal@suse.comjengelh@inai.dewerner@suse.dewerner@suse.depwieczorkiewicz@suse.comwerner@suse.dejengelh@inai.dewerner@suse.dejengelh@inai.dejengelh@inai.demeissner@suse.comcrrodriguez@opensuse.orgjengelh@inai.dejengelh@inai.dejengelh@inai.demeissner@suse.comwerner@suse.dejengelh@inai.dearvidjaar@gmail.comwerner@suse.dethomas.blume@suse.comthomas.blume@suse.comwerner@suse.dewerner@suse.dethomas.blume@suse.comwerner@suse.dewerner@suse.dermilasan@suse.comrmilasan@suse.comrmilasan@suse.comwerner@suse.dewerner@suse.dewerner@suse.degber@opensuse.orgledest@gmail.comwerner@suse.dewerner@suse.dermilasan@suse.comwerner@suse.dermilasan@suse.comthomas.blume@suse.comgber@opensuse.orgwerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.dewerner@suse.de- Import commit 83b9060b6e4c9cdffbbed0e27467cbd2f806dc0d 09b7477895 udev: allow/denylist for reading sysfs attributes when composing a NIC name (bsc#1234015) - Drop 5004-udev-allow-denylist-for-reading-sysfs-attributes-whe.patch The path has been merged into the SUSE/v254 branch.- Import commit 2b599c7501253b0e6b7987fdb2676af21bc72ab3 (merge of v254.24) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/b25faa18ee7ef3c2d0b16416dfa331d0013dd112...2b599c7501253b0e6b7987fdb2676af21bc72ab3- Import commit b25faa18ee7ef3c2d0b16416dfa331d0013dd112 b4693652f3 journald: close runtime journals before their parent directory removed 044d051f0c journald: reset runtime seqnum data when flushing to system journal (bsc#1236886)- Move systemd-userwork from the experimental sub-package to the main package (bsc#1236643) It is likely an oversight from when systemd-userdb was migrated from the experimental package to the main one.- Add 1020-core-create-the-credential-directory-even-if-it-s-em.patch (bsc#1229228) - Rename 5012-Revert-macro-terminate-the-temporary-VA_ARGS_FOREACH.patch into 1021-Revert-macro-terminate-the-temporary-VA_ARGS_FOREACH.patch Commit dc571cccd75db7be49b2aada64baf92e3a498c39 was backported and included in v254.9 bumping the version requirement on gcc from 4.7 to 8. Unfortunately this breakage won't be fixed by upstream therefore there's no longer a need to keep the patch that reverts the offending commit in quarantine.- Import commit 34b1c72fa9aeea9c2c20e6802530e4b915c9dabf (merge of v254.23) eab1d9753b stdio-bridge: fix polled fds f028f2298e hwdb: comment out the entry for Logitech MX Keys for Mac e808cbdd6d test: answer 2nd mdadm --create question for compat with new version bf01f3d692 core/unit-serialize: fix serialization of markers f043ab6f34 locale-setup: do not load locale from environemnt when /etc/locale.conf is unchanged 71efbe69b6 core: fix assert when AddDependencyUnitFiles is called with invalid parameter- Fix systemd-network recommending libidn2-devel (boo#1234765)- Import commit 127e162c9cc0beb5058a718b3a9a1fec6942a927 679c57667d tpm2-util: Also retry unsealing after policy_pcr returns PCR_CHANGED (boo#1233752 bsc#1234313)- Import commit eb5a78f50e64a39a2a509fd5141e68ff216a4273 (merge of v254.22) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/600986ba4d9c562390d99513416f49a5be5559f3...eb5a78f50e64a39a2a509fd5141e68ff216a4273- Add 5004-udev-allow-denylist-for-reading-sysfs-attributes-whe.patch (bsc#1234015) Temporarily add this patch. It will be integrated in the git repository if no issues are reported in the coming months.- Import commit eddf52fb14391c30ee2f45fd0c3cab1be116c951 807fe76411 udev: add new builtin net_driver 3a48b5f21d udev-builtin-net_id: split-out pci_get_onboard_index() from dev_pci_onboard() 5359c1d6d4 udev-builtin-net_id: split-out get_pci_slot_specifiers() 1cd915ac7b udev-builtin-net_id: introduce get_port_specifier() helper function 72a4218155 udev-builtin-net_id: split out get_dev_port() and make its failure critical f6c721b4da udev-builtin-net_id: split-out pci_get_hotplug_slot() and pci_get_hotplug_slot_from_address() 9e16c3cf27 udev-builtin-net_id: return earlier when hotplug slot is not found 4851355767 udev-builtin-net_id: skip non-directory entry earlier a571e5f1dd udev-builtin-net_id: make names_xen() self-contained 9acc241d5f udev-builtin-net_id: use sd_device_get_sysnum() to get index of netdevsim ca8a431b55 udev-builtin-net_id: make names_netdevsim() self-contained a66251d666 udev-builtin-net_id: make names_platform() self-contained 1e834d7157 udev-builtin-net_id: make names_vio() self-contained 8b236dcd7a udev-builtin-net_id: make names_ccw() self-contained 7d70e2fa7d udev-builtin-net_id: make dev_devicetree_onboard() self-contained 46158a6e91 udev-builtin-net_id: make names_mac() self-contained 7789e7f886 udev-builtin-net_id: split out get_ifname_prefix() 9b0062a667 udev-builtin-net_id: swap arguments for streq() and friends 181a775b40 udev-builtin-net_id: drop unused value from NetNameType Refactoring to prepare for backporting the filtering mechanism of specific sysfs attributes during predictable NIC name generation.- Add 0003-Drop-support-for-efivar-SystemdOptions.patch (bsc#1220338) Upstream deprecated it and plan to drop it in the future. Let's get ahead and drop it now as this feature is unlikely to be used on SUSE distros and it might be used to gain access to encrypted SLEM systems with unattended disk unlock and with secure boot disabled.- Import commit 600986ba4d9c562390d99513416f49a5be5559f3 (merge of v254.21) This merge includes the following fix: a467a411f pid1: make clear that $WATCHDOG_USEC is set for the shutdown binary, noone else (bsc#1232227) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/f7f6a3454e3321f92cbdf8e30aeb8b17bc1ff8e8...600986ba4d9c562390d99513416f49a5be5559f3- Import commit f7f6a3454e3321f92cbdf8e30aeb8b17bc1ff8e8 (merge of v254.20) This merge includes the following fix: 8b6ae951d3 udev: skipping empty udev rules file while collecting the stats (bsc#1232844) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/0cbb02c0273374b14188f30e89874c9e8ae425c9...f7f6a3454e3321f92cbdf8e30aeb8b17bc1ff8e8- Import commit 0cbb02c0273374b14188f30e89874c9e8ae425c9 (merge of v254.19) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/44943af96be1422c2d7bdf271e4a77b42f4b41ec...0cbb02c0273374b14188f30e89874c9e8ae425c9- Clean up some remnants from when homed was in the experimental sub-package (bsc#1231048)- Import commit 44943af96be1422c2d7bdf271e4a77b42f4b41ec (merge of v254.18) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/51fd0b7b9d11bb932370f4bcc3e849f8c0b3bc06...44943af96be1422c2d7bdf271e4a77b42f4b41ec- Add 5003-99-systemd.rules-rework-SYSTEMD_READY-logic-for-devi.patch (bsc#1229518)- Import commit 51fd0b7b9d11bb932370f4bcc3e849f8c0b3bc06 0512d0d1fc cgroup: Rename effective limits internal table (jsc#PED-5659) 765846b70b cgroup: Restrict effective limits with global resource provision (jsc#PED-5659) e29909088b test: Add effective cgroup limits testing (jsc#PED-5659) beacac6df0 test: Convert rlimit test to subtest of generic limit testing (jsc#PED-5659) e3b789e512 cgroup: Add EffectiveMemoryMax=, EffectiveMemoryHigh= and EffectiveTasksMax= properties (jsc#PED-5659) 5aa063ae16 bus-print-properties: prettify more unset properties a53122c9bd bus-print-properties: ignore CGROUP_LIMIT_MAX for Memory*{Current, Peak} 8418791441 cgroup: rename TasksMax structure to CGroupTasksMax - Drop 5003-cgroup-rename-TasksMax-structure-to-CGroupTasksMax.patch 5004-bus-print-properties-ignore-CGROUP_LIMIT_MAX-for-Mem.patch 5005-bus-print-properties-prettify-more-unset-properties.patch 5006-cgroup-Add-EffectiveMemoryMax-EffectiveMemoryHigh-an.patch 5007-test-Convert-rlimit-test-to-subtest-of-generic-limit.patch 5008-test-Add-effective-cgroup-limits-testing.patch 5009-cgroup-Restrict-effective-limits-with-global-resourc.patch 5010-cgroup-Rename-effective-limits-internal-table.patch These patches have been merged in the SUSE/254 branch.- Don't try to restart the udev socket units anymore (bsc#1228809) There's currently no way to restart a socket activable service and its socket units "atomically" and safely.- Make the 32bit version of libudev.so available again (bsc#1228223) The symlink for building 32bit applications was mistakenly dropped when the content of libudev-devel was merged into systemd-devel. Provide the 32bit flavor of systemd-devel again, which should restore the plug and play support in Wine for 32bit windows applications.- Import commit cbad4b6dbbec36616c04f2d26e2e568936c789ab (merge of v254.17) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/2ef89364315e1ca71606768f1bb4d63aaee66209...cbad4b6dbbec36616c04f2d26e2e568936c789ab- Import commit 2ef89364315e1ca71606768f1bb4d63aaee66209 (merge of v254.16) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/957aeb6452837326866e1f89092e6d0e0665fc10...2ef89364315e1ca71606768f1bb4d63aaee66209- Don't mention any rpm macros inside comments, even if escaped (bsc#1228091) Otherwise pesign-obs-integration ends up re-packaging systemd with all macros inside comments unescaped leading to unpredictable behavior. Now why rpm expands rpm macros inside comments is the question...- Import commit 957aeb6452837326866e1f89092e6d0e0665fc10 (merge of v254.15) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/ea63a23a20292d4136612808bc8777db283d0bca...957aeb6452837326866e1f89092e6d0e0665fc10- Import commit ea63a23a20292d4136612808bc8777db283d0bca (merge of v254.14) - Drop 5013-Revert-run-pass-the-pty-slave-fd-to-transient-servic.patch as v254.14 contains the workaround (commit e2d6762fa3fca4bf) for the broken commit 28459ba1f4df.- testsuite: move a misplaced %endif- Do not remove existing configuration files in /etc. If these files were modified on the systemd, that may cause unwanted side effects (bsc#1226415).- Import commit a8a3a9567de992eb7c23705f5a55585cdc5fb4fa (merge of v254.13) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/85db84ee440eac202c4b5507e96e1704269179bc...a8a3a9567de992eb7c23705f5a55585cdc5fb4fa - Temporarily add 5013-Revert-run-pass-the-pty-slave-fd-to-transient-servic.patch This revert the backport of the broken commit 28459ba1f4df until a fix is released in the v254-stable tree (see pr#33216).- Import commit 85db84ee440eac202c4b5507e96e1704269179bc (merge of v254.11) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/e8d77af4240894da620de74fbc7823aaaa448fef...85db84ee440eac202c4b5507e96e1704269179bc- Restore the gpt-auto generator. The workaround is not needed anymore as commit d317008225 (see below) should fix the issue reported in bsc#1218671.- Import commit e8d77af4240894da620de74fbc7823aaaa448fef d317008225 gpt-auto-generator: be more defensive when checking the presence of ESP in fstab fed117d448 journalctl: explicitly check < 0 for error 41d9e82099 journalctl: make --until work again with --after-cursor and --lines (bsc#1221906)- Update 1010-sysv-generator-add-back-support-for-SysV-scripts-for.patch (bsc#1221479) Really skip redundant dependencies specified the LSB description that references the file name of the service itself for early boot scripts. Note that the dropped code was incorrect as it didn't freed the original allocated pointer 'filename' but 'filename+5'.- Add 1018-man-Restore-systemd.unified_cgroup_hierarchy-0-cmdli.patch (jsc#PED-5849)- Import commit 0dfcbead8caf4cac7db6d03e7b52b7516e5842fb (merge of v254.10) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/8baddb9037b88fec2b700226914fa2eac2c04a13...0dfcbead8caf4cac7db6d03e7b52b7516e5842fb- Import commit 8baddb9037b88fec2b700226914fa2eac2c04a13 31f1148f75 seccomp: include `fchmodat2` in `@file-system` (bsc#1219766) 001f349c57 service: Demote log level of NotifyAccess= messages to debug (bsc#1210113 jsc#PED-6214)- systemd-sysvcompat: ship /var/lib/systemd/sysv-convert. This directory is needed by systemd-sysv-convert. - systemd-sysv-convert: prefer /etc/init.d over /etc/rc.d. The former is shipped by filesystem package and therefore is guaranteed to be always installed unlike the latter which is shipped by insserv-compat package.- Import commit 3f531e55c29b99922403291ef55ff7a6cf1debc1 53e2aaaf9d vconsole-setup: don't fail if the only found vc is already used by plymouth (bsc#1218618) 22c4878430 vconsole-setup: port to main-func.h boilerplate- systemd-testsuite: depend on "qemu" instead of "qemu-kvm", the latter is obsolete (bsc#1218684)- Import commit a4c17b78f56f5e9c32c36df84d01ff6f4fa62ff7 fbf9f32eb7 test/test-shutdown.py: optionally display the test I/Os in a dedicated log file cd012774df test-69: send SIGTERM to ask systemd-nspawn to properly stop the container d883b83244 man: Document ranges for distributions config files and local config file- Import commit 3638837d2aff1d18dd677a9e663b379ccbbb7576 (merge of v254.9) - Add 5012-Revert-macro-terminate-the-temporary-VA_ARGS_FOREACH.patch The reverted commit introduced in v254.9 bumped the requirement on the version of gcc from 4.7 to 8 which is not OK for a stable release, especially since the backported commit does not fix any issue per se.- Move systemd-reboot.service from udev to the main package as this service is useful in containers.- Update the version of libbpf dlopened by systemd (weak dependency) (bsc#1219440)- Remove gpt-auto generator (bsc#1218671) The generator is not reliable when the devices it operates on are DM devices and when ESP is mounted via /etc/fstab and it interfers badly in such cases. Until SP6 this generator was present but remained disabled due to the fact that "LoaderDevicePartUUID" EFI variable was not exported by Grub. Given this fact and that SLE doesn't rely on this generator to mount any partitions on a GPT disk, the generator is simply removed from udev for now.- Add patches that implement [jsc#PED-5659] 5003-cgroup-rename-TasksMax-structure-to-CGroupTasksMax.patch 5004-bus-print-properties-ignore-CGROUP_LIMIT_MAX-for-Mem.patch 5005-bus-print-properties-prettify-more-unset-properties.patch 5006-cgroup-Add-EffectiveMemoryMax-EffectiveMemoryHigh-an.patch 5007-test-Convert-rlimit-test-to-subtest-of-generic-limit.patch 5008-test-Add-effective-cgroup-limits-testing.patch 5009-cgroup-Restrict-effective-limits-with-global-resourc.patch 5010-cgroup-Rename-effective-limits-internal-table.patch 5011-cgroup-Add-EffectiveMemoryMax-compatibility-for-cgro.patch They are temporarily put in quarantine to get broader testing but should be eventually moved to the git repo (except the latest patch, which is SUSE specific).- Add 5001-Revert-udev-update-devlink-with-the-newer-device-nod.patch 5002-Revert-udev-revert-workarounds-for-issues-caused-by-.patch It seems that systemd upstream has a dubious way to fix broken code these days... let's revert these hacks until a final decision is taken to solve https://github.com/systemd/systemd/issues/28141. See also https://github.com/systemd/systemd/pull/30075.- Remove pam-config call from post scriptlet of systemd-32bit as the full package already does that.- Import commit 69555aed64578449a7c00aa9f6651faca26bdb7d (merge of v254.8) It includes the following fix: 029272750f resolved: actually check authenticated flag of SOA transaction (bsc#1218297 CVE-2023-7008) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/327b885182f19f795f3af635bce0adc264bfb334...69555aed64578449a7c00aa9f6651faca26bdb7d - Update 1017-efi-workarounds-for-building-PEs-with-gcc7.patch- udev(-mini)?: ensure %_modulesloaddir exists and is owned properly. Allows other packages to install modules without worry of the parent directory. We do not ensure /etc/modules-load.d exists in the -mini flavor, as that directory is not meant to be used by packages.- udev: only require kmod in the full flavor. udev-mini is only used inside OBS in a strictly defined setup and udev will never have to load device drivers there.- Import commit 327b885182f19f795f3af635bce0adc264bfb334 071ac409a0 rules: set up tty permissions and group for /dev/hvc* nodes (bsc#1218137) f693b3ed8a vconsole-setup: remember the correct error value when open_terminal() fails 963d838bad vconsole-setup: handle the case where the vc is in KD_GRAPHICS mode more gracefully (bsc#1215282)- Make sure systemd-sysvcompat replaces systemd-sysvinit on upgrades from SLE12 (bsc#1218110)- Import commit c5c5d234663f47e9d9bf53e02c21ce815f079328 6f53f71d2d vconsole-setup: simplify error handling ce08cd5f66 man/standard-conf: directory paths should end with '/' 8324cbfde7 config files: update their header to reflect that they can be installed in /usr bc36846ad2 Reflect the fact that main config files can be installed in /usr e304a11f33 config files: more recommendations of `systemd-analyze cat-config` c45cecf279 meson: add build option for install path of main config files cc61b052c6 vconsole-setup: use a consistent log level when setfont fails with EX_OSERR (bsc#1212970) 4fe3653dab tmpfiles: ignore EINVAL with --graceful (bsc#1216628)- Restore the filter that prevents the creation of 'by-partlabel/{primary,logical}' symlinks (bsc#1217878) It was broken during the upgrade of v254.- Fix typo in /etc/systemd/user.confd.d (bsc#1216676)- Import commit 0ccc9eaa16ac89508f4c4f510cd145fe924cbd02 b53f364c26 test: install af_packet kernel module on openSUSE 86b7521a3c shared/wall: use logind if build without utmp support 65aac5858f errno-util: allow ERRNO_IS_* to accept types wider than int 8f93b89db4 basic/errno-util: add wrappers which only accept negative errno 1b815b3e76 Introduce RET_GATHER and use it in src/shared/- Ship the main configuration files in /usr/lib/ Besides the fact that shipping files in /etc is not recommended anymore, this change will hopefully encourage users to customize the defaults via the mean of drop-ins hence removing the risk of conflicts with downstream customization. In contrary, shipping empty directories *.conf.d/ in /etc is not a concern and should suggest users to create drop-ins (bsc#1207056).- SLEtify (jsc#PED-5604) This forward ports the SLE bits taken from SLE15-SP4 to this Factory snapshot making it the development base for the version used by SLE15-SP6. Dropped 1001-udev-use-lock-when-selecting-the-highest-priority-de.patch as it's been replaced by upstream commit 331aa7aa15ee5dd12b369b276f575d521435eb52 Dropped 5001-sleep-don-t-init-sys-power-resume-if-resume-option-i.patch as it's been replaced by upstream commit f1f331a252d22c15f37d03524cce967664358c5c Imported 1002-udev-add-option-to-generate-old-buggy-SCSI-serials.patch Imported 1004-udev-don-t-create-by-partlabel-primary-and-.-logical.patch (bsc#1178023 bsc#1183702) Imported 1008-login-mark-again-framebuffer-devices-as-master-of-se.patch (bsc#1187154) Imported 1011-sysv-generator-add-back-support-for-SysV-scripts-for.patch Imported 1012-man-describe-the-net-naming-schemes-specific-to-SLE.patch (bsc#1204179) Imported 1013-strip-the-domain-part-from-etc-hostname-when-setting.patch (bnc#820213) Imported 1014-udev-create-default-symlinks-for-primary-cd_dvd-driv.patch (bnc#783054) Imported 1015-networkd-make-network.service-an-alias-of-systemd-ne.patch (boo#933092) Imported 1016-core-disable-session-keyring-per-system-sevice-entir.patch (boo#1045886) Rebased 1003-logind-store-a-timestamp-when-the-ACPI-power-button-.patch (bsc#981830 bsc#888612 bsc#1072933) Rebased 1005-udev-optionally-disable-the-generation-of-the-partla.patch (bsc#1089761) Rebased 1006-logind-keep-backward-compatibility-with-UserTasksMax.patch Rebased 1007-sysv-restore-support-for-halt.local.patch Rebased 1009-Drop-or-soften-some-of-the-deprecation-warnings.patch (bsc#1193086 jsc#PED-944) Rebased 1010-sysv-add-back-support-for-all-virtual-facility-and-f.patch Rebased 1017-restore-var-run-and-var-lock-bind-mount-if-they-aren.patch Added 1017-efi-workarounds-for-building-PEs-with-gcc7.patch Renamed 1002-udev-add-option-to-generate-old-buggy-SCSI-serials.patch into 1001-udev-add-option-to-generate-old-buggy-SCSI-serials.patch Renamed 1003-logind-store-a-timestamp-when-the-ACPI-power-button-.patch into 1002-logind-store-a-timestamp-when-the-ACPI-power-button-.patch Renamed 1004-udev-don-t-create-by-partlabel-primary-and-.-logical.patch into 1003-udev-don-t-create-by-partlabel-primary-and-.-logical.patch Renamed 1005-udev-optionally-disable-the-generation-of-the-partla.patch into 1004-udev-optionally-disable-the-generation-of-the-partla.patch Renamed 1006-logind-keep-backward-compatibility-with-UserTasksMax.patch into 1005-logind-keep-backward-compatibility-with-UserTasksMax.patch Renamed 1007-sysv-restore-support-for-halt.local.patch into 1006-sysv-restore-support-for-halt.local.patch Renamed 1008-login-mark-again-framebuffer-devices-as-master-of-se.patch into 1007-login-mark-again-framebuffer-devices-as-master-of-se.patch Renamed 1009-Drop-or-soften-some-of-the-deprecation-warnings.patch into 1008-Drop-or-soften-some-of-the-deprecation-warnings.patch Renamed 1010-sysv-add-back-support-for-all-virtual-facility-and-f.patch into 1009-sysv-add-back-support-for-all-virtual-facility-and-f.patch Renamed 1011-sysv-generator-add-back-support-for-SysV-scripts-for.patch into 1010-sysv-generator-add-back-support-for-SysV-scripts-for.patch Renamed 1012-man-describe-the-net-naming-schemes-specific-to-SLE.patch into 1011-man-describe-the-net-naming-schemes-specific-to-SLE.patch Renamed 1013-strip-the-domain-part-from-etc-hostname-when-setting.patch into 1012-strip-the-domain-part-from-etc-hostname-when-setting.patch Renamed 1014-udev-create-default-symlinks-for-primary-cd_dvd-driv.patch into 1013-udev-create-default-symlinks-for-primary-cd_dvd-driv.patch Renamed 1015-networkd-make-network.service-an-alias-of-systemd-ne.patch into 1014-networkd-make-network.service-an-alias-of-systemd-ne.patch Renamed 1016-core-disable-session-keyring-per-system-sevice-entir.patch into 1015-core-disable-session-keyring-per-system-sevice-entir.patch Renamed 1017-restore-var-run-and-var-lock-bind-mount-if-they-aren.patch into 1016-restore-var-run-and-var-lock-bind-mount-if-they-aren.patch Merged compats/persistent-nic-names (bsc#1061883 bsc#1083158 bsc#1178561) Merged compats/udev-compat-symlinks networkd is kept enabled as it's shipped in Leap distros (bsc#1071311) The following udev rules are no more kept by the systemd package 60-io-scheduler.rules (bsc#1165579 bsc#1164717 bsc#1134353 bsc#1177490 bsc#1184994 bsc#1188713) 80-acpi-container-hotplug.rules (bsc#1082485 bsc#1040800 bsc#1078358 bsc#1081170 bsc#1075743) 80-hotplug-cpu-mem.rules (bsc#1076696 bsc#1127557) 99-wakeup-from-idle.rules Enable split-usr Add /usr/sbin/systemd-sysv-convert in systemd-sysvcompat sub-package (bsc#1178156) Set the version of the net naming scheme to "sle15-sp4" Set the default cgroup hierarchy to 'unified' (jsc#PED-5849) Restore "Provides/Obsoletes: systemd-bash-completion" Don't mount /tmp as tmpfs by default (bsc#1201795 bsc#1201795 bsc#1201795) Create /run/lock/subsys again (bsc#1187292) Restore tmpfiles entries for /var/log/btmp and /var/log/lastlog Import fixlet-udev-post.sh. This script mainly convert legacy collect based udev rules to chzdev based ones (bsc#1183984 bsc#1195247 bsc#1198732) Adapt fixlet-systemd-post.sh for SLE Install systemd-default-settings-branding to customize some settings whose default values are distro specific (bsc#1065301 jsc#SLE-10123) Enable support for halt-local.service. The unit has been moved to systemd-sysvcompat. Explicitely build requires clang15 (clang >= 10 is needed for the BPF feature) Disable ukify support, it requires python >= 39 Disable signing of sd-boot, it's too prematured and it breaks the build of systemd anyway. Don't overwrite /etc/pam.d/systemd-user on update (bsc#1207264) Disable transfiletriggers: rpm/libzypp are too old to even consider switching to filetriggers.- systemd.spec: add files.portable and files.journal-remote- Don't include entries listed in kbd-model-map.xkb-generated (provided by kbd package) in kbd-model-map anymore. Yast, the only user of these entries, directly parses kbd-model-map.xkb-generated now (bsc#1211104).- tmpfiles-suse.conf: drop entries for /run/lock and /var/log/wtmp /run/lock is now defined by filesystem package and wtmp has been replaced by wtmpdb on TW.- rpmlintrc: allow systemd-network and systemd-container sub-packages to ship shared libs. These are actually NSS plugins and are not really subject to shlib policy.- Drop 5000-core-manager-run-generators-directly-when-we-are-in-.patch Since dracut-059+suse.447.g9d1fc722, this workaround is not needed anymore.- Import commit 9674bb256205e6c643feadbcccfd1ee8feeee684 (merge of v254.5) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/6ed5b11298005e07509832881a0c5ff1a80bf225...9674bb256205e6c643feadbcccfd1ee8feeee684- Make sure to call %sysusers_create only when transfiletrigger is disabled.- systemd.spec: switch to %ldconfig_scriptlets- systemd.spec: add `%tmpfiles_create systemd-resolve` It's only needed by SLE distros since systemd packages rely on transtriggerfiles in Factory.- Import commit 6ed5b11298005e07509832881a0c5ff1a80bf225 (merge of v254.4) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/b6b4e5a8a82d1f13f265a4ef170f2d13be82789a...6ed5b11298005e07509832881a0c5ff1a80bf225- systemd.spec: during package updates, restart localed, timedated and hostnamed if they're running.- systemd.spec: when enabling units prefer enabling service units over socket ones for socket activable services. The services shipped by systemd automatically redirect the enablement request to the socket unit.- systemd.spec: %regenerate_initrd_post is only used by udev sub-package hence move the build requirement pulling this macro in in the list of udev BRs.- Don't ship after-local.service anymore. This was mostly a hack for people wanting to execute any random things once the boot was finished. We shouldn't encourage such practice and it actually conflicts with the sysv-generator which believes that /etc/init.d/after.local is SysV init script that needs to be converted into a native unit file. We still install a copy of this service in /etc if the user is relying on it, for backward compatibility.- fixlet-systemd-post.sh: fix invalid use of rpm macro %{_localstatedir}- Import commit b6b4e5a8a82d1f13f265a4ef170f2d13be82789a (merge of v254.3) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/1f73719d67b9300c6bb75232d695d03410991098...b6b4e5a8a82d1f13f265a4ef170f2d13be82789a- Make utmp support per project configureable [jsc#PED-3144] - Make apparmor and selinux per project configureable [jsc#PED-2736]- systemd.spec: don't use build conditionals (%bcond_with/%bcond_without) with the mini flavor to make sure that all the features remain disabled for this flavor regardless of what is enabled in the prjconf.- Don't build systemd-doc with the mini flavor- Explicitly require group(lp) by udev: this used to be provided by system-group-hardware, but with the introduction of system-user-lp (and systemd-users auto-generating groups) is now actually provided by system-user-lp. Latest versions of system-group-hardware clean this up and no longer also provide this group.- Fix incorrect option name when calling pam-config for systemd-homed- testsuite: Recommend selinux-policy-devel instead of requiring it in line with other tests. Add Recommends for selinux-policy-targeted as this is also required to run the test (in general any SELinux policy should do)- systemd.spec: add journal translations to lang package- Import commmit 1f73719d67b9300c6bb75232d695d03410991098 1f73719d67 test-mountpoint-util: /root might be mounted a391ba4a8f test: testsuite-35.sh needs manual/test-session-properties to be installed on SUSE- Upgrade to v254.1 (commit 208a21833b6953a2517a6c3f8f4849c6664b01be) See https://github.com/openSUSE/systemd/blob/SUSE/v254/NEWS for details. This includes the following bug fixes: - upstream commit 331aa7aa15ee5dd12b369b276f575d521435eb52 (bsc#1181192 bsc#1184238 bsc#1184254 bsc#1184859 bsc#1185828 bsc#1203141) - upstream commit 529ba8a1a3968564b67049a077f213e3a0d53070 (bsc#1209340) - upstream commit f1f331a252d22c15f37d03524cce967664358c5c (bsc#1186606) - upstream commit df1dccd25547b430258bd42ec60428fc9aff1370 (bsc#1213185) - upstream commit 000680a68dbdb07d77807868df0b4f978180e4cd (bsc#1211725) - upstream commit 2067a7ec7f4c8a353b8e2ece15a6a997e50808b0 (bsc#1211576) * Drop 5001-Revert-core-propagate-stop-too-if-restart-is-issued.patch. A fix for https://github.com/systemd/systemd/issues/26839 has been integrated in v254. * Drop 5002-Revert-core-service-when-resetting-PID-also-reset-kn.patch, it's part of v254. * Drop 0001-restore-var-run-and-var-lock-bind-mount-if-they-aren.patch, it's no more needed these days. * Rebase 0001-conf-parser-introduce-early-drop-ins.patch- Import commit fcdb2dd2c921db3c6b7c28465dbda314f4469d17 (merge of v253.8) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/2dac0aff9ced1eca0cd11c24e264b33095ee5a5e...fcdb2dd2c921db3c6b7c28465dbda314f4469d17- Drop 0003-strip-the-domain-part-from-etc-hostname-when-setting.patch /etc/hostname is supposed to contain the static host name of the system. This patch was used to work around cases where users incorrectly save the FQDN instead. However this is incorrect and not consistent with what systemd-hostnamed does and what other distributions do. Also assuming that /etc/hostname will contain the system host name only removes any ambiguities since the host name can contain a period. /etc/hosts is usually where one sets the domain name by aliasing the host name to the FQDN. Note that the installer used to save the FQDN in /etc/hostname but this has been fixed since several years now (bsc#972463).- systemd-homed is no more considered as experimental It's been moved to its own dedicated sub-package "systemd-homed".- systemd-userdb is no more considered as experimental (jsc#PED-2668) As such it's been moved to the main package.- Import commit 2dac0aff9ced1eca0cd11c24e264b33095ee5a5e (merge of v253.7) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/6458c066547eaadf0e9709e441ea36ad03faa860...2dac0aff9ced1eca0cd11c24e264b33095ee5a5e- Import commit 6458c066547eaadf0e9709e441ea36ad03faa860 (merge of v253.6) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/07bb12a282b0ea378850934c4a76008b448b8bad...6458c066547eaadf0e9709e441ea36ad03faa860 - Drop 5002-Revert-core-service-when-resetting-PID-also-reset-kn.patch, it's been backported to v253.6.- Move a bunch of files from systemd to udev. These are pretty useless without block devices.- Split off sd-boot into separate "systemd-boot" subpackage- Change the group owner of /run/lock from "lock" to "root" (bsc#1212674) This allows to drop the dependency "Requires: group(lock)" that was introduced previously to make sure that the "lock" group will be kept around. This dependency introduced a dependency cycle.- file-triggers: fix a typo that sneaked in the script dealing with tmpfiles (bsc#1212733)- Make sure to keep the groups systemd and udev rely on installed. Theoretically with only "Requires(pre): group(x)", rpm is allowed to drop group 'x' at the end of the package installations. Note: this is also needed when (trans)file-triggers are enabled due to the current limitation of the default libzypp transaction backend.- file-triggers: fix lua trigger priority for sysusers (bsc#1212376) A single digit in the priority used for sysusers got dropped somehow and upstream commit cd621954ed643c6ee0d869132293e26056a48826 forgot to restore it in the lua implementation.- file-triggers: skip the call to systemd-tmpfiles in chroot too. That way we ensure that packages that really need the tmpfiles in advance use the right API which is %tmpfiles_create_package. - file-triggers: to be consistent with what we already does with tmpfiles, we skip the call to systemd-sysusers and delay system user creations until the next reboot.- Temporarily add 5002-Revert-core-service-when-resetting-PID-also-reset-kn.patch until it's backported to the next stable release See https://github.com/systemd/systemd/pull/28000- file-triggers: make sure to skip the call to systemd-tmpfile in the file-triggers when running on transaction systems (bsc#1212449) systemd-tmpfiles usually modifies paths that are not supposed to change during transactional updates (e.g. /var, /run). On transaction systems changes will happen on the next reboot.- Import commit 07bb12a282b0ea378850934c4a76008b448b8bad (merge of v253.5) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/25aec157888f7aa9a36726962fcbbf2c74ead440...07bb12a282b0ea378850934c4a76008b448b8bad- Reexecute user managers on package updates. For now we send signal to user instances to trigger their reexecution. It's asynchronous but it shouldn't cause any problem in practice and it's probably safer than triggering reexecution with "systemctl --user -M 1000@ daemon-reexec" command. The latter command creates a new PAM session behind the scene bringing with it the known issue (upstream issue #8598) with "(sd-pam)" helper process when the PAM session is being closed.- Move more packaging fixups in the fixlet script.- Provide (Lua-based) file triggers and adapt systemd.spec accordingly (boo#1133764) More specifically, file triggers handle automatically installations or updates of files for sysusers, tmpfiles, hwdb, journal catalog, udev rules, sysctl and binfmt. Therefore it makes a bunch of systemd rpm macros (such as %udev_hwdb_update, %udev_rules_update, %journal_catalog_update, %tmpfiles_create, %sysusers_create and so on) not needed anymore. However before considering simplifying your spec files beware that these changes are not available in SLE yet and will probably never reach the current releases (latest one being SLE15-SP5 as of this writing). Macros dealing with unit restart/enabling (such as %systemd_pre, %service_add_pre, %service_del_postun, ...) are still needed though. However reloading of systemd instances (and thus restarting of units) are delayed until the very end of the package install/update transaction and is now done only once. Nevertheless to fully take advantage of file triggers, users have to activate a specific zypper transaction backend which is still considered as experimental, see bsc#1041742 for details. - Provide a (slighlty) customized version of systemd-update-helper. Some of the systemd rpm macros rely now on the helper and delegate their work to it. Hence we don't need to rebuild all packages anymore when the content of the rpm macros must be updated/fixed.- Drop an old fix for the persistent net rules (only needed on SLE). Factory (fortunately) dropped the persistent net rule generator long time ago.- Rather than having one script per fix, use a single script (or "fixlet") per (sub) package that contains all the fixups relative to a (sub) package. This has the advantage to limit the number of scripts but more importantly it will ease the sharing of the spec file between TW and SLE. We should also be able to compare the fixlets of two distros even if the spec files have diverged. Note that all the fixups are run just once now.- Make use of %_systemd_util_dir in the spec file. - Rename the SUSE specific scripts used to fix up the system where systemd is installed on. Also rename the directory where these scripts are stored.- kbd-model-map.legacy: drop entry for 'ruwin_alt-UTF-8' as yast doesn't rely on it anymore, see https://github.com/yast/yast-country/pull/307- Import commit 25aec157888f7aa9a36726962fcbbf2c74ead440 (merge of v253.4) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/3ce9610975b5239a21c0c886cb893bb172966de7...25aec157888f7aa9a36726962fcbbf2c74ead440- Import commit 3ce9610975b5239a21c0c886cb893bb172966de7 3ce9610975 test: dont use anchor char '$' to match a part of a string 03ede3eaa2 locale: when no xvariant match select the entry with an empty xvariant f08017efd5 locale: convert generated vconsole keymap to x11 layout automatically e8cf56459b localed-util: make use of strdupcspn() 821c684440 test: use kbd-mode-map we ship in TEST-73-LOCALE- Revert changes that dropped calls to %systemd_{pre,post} in the main package Until we switch to filetriggers these calls are needed when a new version of systemd introduced a new config file during an update. - We also introduce a new build conditional "%filetriggers" to identify easily which parts of the code will become obsolete when we'll switch to file triggers (WIP). This is important as this is unlikely to happen on SLE.- Re-add back 'arabic' keymap mapping as YaST needs more time than expected to cope with this change.- systemd.spec: don't call %systemd_{pre,post} on units shipped by the main package since they don't have any effect during installation (systemctl is not yet installed when %pre script is executed). This is actually the reason why it's handled by the %%posttrans scripts of systemd-presets-common-SUSE.- kbd-model-map.legacy: 'arabic' vc keymap has been renamed 'ara' (bsc#1210702)- add some green to systemd-boot menu- kbd-model-map.legacy: drop some entries no longer needed by YaST (related to bsc#1194609)- tmpfiles-suse.conf (jsc#PED-3144): - Remove lastlog entry, replaced by lastlog2 - Remove btmp entry, not Y2038 safe- testsuite: TEST-75-RESOLVED needs knot DNS server- Import commit 66f3a8a47d5bf6aea3f6fb181c01550a1a54406e (merge of v253.3) This merge also includes the following fix, which is not part of the stable release: d2413cec02 test/test-functions: fix typo in install_suse_systemd() For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/03cfbe767327d01d5a71131d91bf06fdc0047ca1...66f3a8a47d5bf6aea3f6fb181c01550a1a54406e- Import commit 03cfbe767327d01d5a71131d91bf06fdc0047ca1 03cfbe7673 test: use setpriv instead of su for user switch from root 857843834c test: wrap mkfs.*/mksquashfs/mkswap binaries when running w/ ASan be7388f8c5 test: do not remove state directory on failure 1b2885bd16 test: fix regexp in testsuite-74.mount.sh 41142f8013 test: drop extraneous bracket in testsuite-74.mount.sh- systemd.spec: add files.coredump- Import commit b63f58661b08037d8cb04ed97b5e39d9bf415fdc (merge of v253.2) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/8b01686dd20124efc300d21ef38d85c1f75c372f...b63f58661b08037d8cb04ed97b5e39d9bf415fdc - Move systemd-fsck stuff to udev sub-package.- Include pam_keyinit.so in our systemd-user PAM service (bsc#1209741) That way "systemd --user" instances get their own session keyring instead of the user default session keyring. For some reasons cifscreds refuses to work with the latter. That's what is expected for every PAM session anyway.- Import commit 8b01686dd20124efc300d21ef38d85c1f75c372f 8b01686dd2 test: don't export $TOOLS_DIR 7a56b1b2f0 test: clean up $STATEDIR too 324bb19eb8 test: $STATEDIR should not point to /usr/lib/systemd/tests when NO_BUILD=1 2251735482 test: install symlinks with valid targets on SUSE and Debian c30905a269 test: on openSUSE install the collection of unit test binaries in the target only for TEST-02-UNITTESTS 797ced15d8 meson: make sure the unit test scripts find testdata/ even if they are not installed in the same directory 04dc5b44b7 meson: define testdata_dir globally 69643c6c96 test: install unit tests in a dedicated subdirectory below '$testsdir'- Import commit d914e29c33c0248226a01112a3e03181ef17b06b d914e29c33 Revert "hwdb: fix swapped buttons for Logitech Lift left" (bsc#1209618) 8360811d23 udev-rules: fix nvme symlink creation on namespace changes (bsc#1207410) b77c13a130 systemctl: explicitly cast the constants to uint64_t (bsc#1209305) 51011f280d test: assume run-unit-tests.py and unit tests are installed in the same directory d86e346f6b tests: don't use absolute paths when installing binaries in TEST-58-REPART 97e886c1f4 tests: fix inverted condition in testsuite-58.sh - Drop 5002-systemctl-explicitly-cast-the-constants-to-uint64_t.patch, it's been merged in 'SUSE/v253', see above.- Add python3-pefile as requires for experimental, needed for the ukify tool.- Drop 0005-udev-create-default-symlinks-for-primary-cd_dvd-driv.patch These obsolete symlinks were kept because several years ago VLC was still relying on some of them. However it's been a long a time ago that it's been fixed and cdrom or similar devices are discovered in a better way.- Enable that systemd can load the IMA policy from /etc/ima/ima-policy. This is used to complement dracut-ima when using SELinux, as the SELinux policy should not be loaded in the initrd (https://github.com/openSUSE/microos-tools/pull/14)- Add 5002-systemctl-explicitly-cast-the-constants-to-uint64_t.patch (bsc#1209305) Added temporarily until it's merged in either the stable v253 branch or in the SUSE git repo.- Add 5001-Revert-core-propagate-stop-too-if-restart-is-issued.patch until https://github.com/systemd/systemd/issues/26839 is fixed properly.- testsuite: mtools is required by TEST-58-REPART- testsuite: swtpm and tpm2.0-tools are needed by TEST-70-TPM2- Add 5000-core-manager-run-generators-directly-when-we-are-in-.patch, a temporary workaround until https://github.com/dracutdevs/dracut/issues/2211 is fixed in dracut.- Upgrade to v253.1 (commit 6c327d74aa0d350482e82a247d7018559699798d) See https://github.com/openSUSE/systemd/blob/SUSE/v253/NEWS for details. This includes the following bug fixes: - upstream commit 3022916b4d2483452c3ddbbac9ee7c4372b1cb46 (bsc#1215241) * Rebased 0001-conf-parser-introduce-early-drop-ins.patch * Ship systemd-journald-audit.socket again: it can now be disabled via the usual "systemctl disable" mechanism to stop collection of audit messages. Note that it's handled by the preset logic, which turns it off by default. * TEST_06_SELINUX needs selinux-policy-devel.- Import commit d447802feee7752cd1756f8fa86ce2a6314ba24f (merge of v252.7) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/8e0a8094b8bbc442d262795b85ac57a37264c5fe...d447802feee7752cd1756f8fa86ce2a6314ba24f- Fix return non-zero value when disabling SysVinit service(bsc#1208432)- Import commit 8e0a8094b8bbc442d262795b85ac57a37264c5fe (merge of v252.6) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/d87834a33444b7163e741e1089e82b44af663808...8e0a8094b8bbc442d262795b85ac57a37264c5fe - Drop 5000-rules-add-missing-line-continuation.patch, it's part of v252.6. - aaa_base has stop providing /etc/sysctl.conf, cope with this change so the compat symlink we provide is not dangling during the build.- Correct BR from python3-jinja2 to python3-Jinja2, fixes dependency resolving on older distros- Drop build requirement on libpci, it's not more needed since udev hwdb was introduced 11 years ago.- Conditionalize the use of /lib/modprobe.d only on systems with split usr support enabled (i.e. SLE).- Import commit d87834a33444b7163e741e1089e82b44af663808 (merge of v252.5) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/5a506d73bde7ba9261985f8e9ce084044a519432...d87834a33444b7163e741e1089e82b44af663808- Move the bash completion support for systemd-cryptenroll in udev.- systemd-testsuite: move the integration tests in a dedicated sub directory.- machines.target belongs to systemd-container, do its init/cleanup steps from the scriptlets of this sub-package.- Drop 1000-Revert-getty-Pass-tty-to-use-by-agetty-via-stdin.patch It's no more necessary since util-linux 2.38 has been released in Factory.- Make sure we apply the presets on units shipped by systemd package- Add 5000-rules-add-missing-line-continuation.patch until commit de8409ac43f6e4596de4cecce8dbbb5f1f2a18b1 is backported to the v252 stable tree.- Import commit 5a506d73bde7ba9261985f8e9ce084044a519432 (merge of v252.4) It includes the following fixes: 9b75a3d050 coredump: do not allow user to access coredumps with changed uid/gid/capabilities (bsc#1205000 CVE-2022-4415) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/bf3fef99886bd977a1c7a51d20087bc8977fff44...5a506d73bde7ba9261985f8e9ce084044a519432 Additionally, it also includes the following backports: - 20ca3155c5 localed: reload PID1 configuration after modifying /etc/locale.conf - 3538c202fd test: update TEST-73-LOCALE to define several locale settings in initial PID1 environment - Drop 5000-coredump-adjust-whitespace.patch 5001-coredump-do-not-allow-user-to-access-coredumps-with-.patch They are part of v252.4.- Fix systemd-coredump to not allow user to access coredumps with changed uid/gid/capabilities (bsc#1205000 CVE-2022-4415) Add 5000-coredump-adjust-whitespace.patch Add 5001-coredump-do-not-allow-user-to-access-coredumps-with-.patch- Import commit bf3fef99886bd977a1c7a51d20087bc8977fff44 6372fb0cc4 btrfs-util: convert O_PATH if necessary, in btrfs quota call (bsc#1205560) 12e68eb0e5 blockdev-util: move O_PATH fd conversion into btrfs_get_block_device_fd() to shorten things bb2bafdc9d btrfs-util: convert to fd_reopen_condition() 1323232948 fd-util: add new helper fd_reopen_conditional() - Drop 6000-Revert-tmpfiles-whenever-creating-an-inode-immediate.patch It's no more needed as a fix for bsc#1205560 has been queued, see above.- Import commit 82898a14f5b0a965ba9c1efc1913fcdf29d446a8 (merge of v252.3) It includes the following fixes: 9410eb20eb cryptsetup: retry TPM2 unseal operation if it fails with TPM2_RC_PCR_CHANGED (bsc#1204944) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/e7e931b07edd786dc6ca1dae6c23ff7b785f8efd...82898a14f5b0a965ba9c1efc1913fcdf29d446a8 Additionally, it also includes the following backports: - 17b2f9f196 utmp-wtmp: fix error in case isatty() fails - 8d5c487c87 sd-bus: handle -EINTR return from bus_poll() (bsc#1201982) - 2dd217c8b5 tree-wide: modernizations with RET_NERRNO()- Don't ship symlink /usr/lib/environment.d/99-environment.conf anymore. /etc/environment is owned and parsed (among other config files) by pam_env(8), which is included by 'systemd-user' PAM service anyway.- Import commit e7e931b07edd786dc6ca1dae6c23ff7b785f8efd (merge of v252.2) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/64dc546913525e33e734500055a62ed0e963c227...e7e931b07edd786dc6ca1dae6c23ff7b785f8efd - Rebase 6000-Revert-tmpfiles-whenever-creating-an-inode-immediate.patch- Import commit 3bd3e4e6c1efe0d6df776107efde47e15e58fe96 d28e81d65c test: fix the default timeout values described in README.testsuite d921c83f53 meson: install test-kernel-install only when -Dkernel-install=true c3b6c4b584 tests: update install_suse_systemd() 3c77335b19 tests: install dmi-sysfs module on openSUSE df632130cd tests: install systemd-resolved on openSUSE - Add 6000-Revert-tmpfiles-whenever-creating-an-inode-immediate.patch until upstream issue #25468 is fixed. - Drop 6000-meson-install-test-kernel-install-only-when-Dkernel-.patch, the patch has been merged in the SUSE git repo.- Reenable build of sd_boot, it was mistakenly disabled during the integration of v252.- Upgrade to v252.1 (commit 64dc546913525e33e734500055a62ed0e963c227) See https://github.com/openSUSE/systemd/blob/SUSE/v252/NEWS for details. This includes the following bug fixes: - upstream commit 67c3e1f63a5221b47a8fea85ae421671f29f3b7e (bsc#1200723) - upstream commit 9102c625a673a3246d7e73d8737f3494446bad4e (bsc#1204968 CVE-2022-3821) - upstream commit efbd4b3ca84c0426b6ff98d6352f82f3b7c090b2 (bsc#1213873) - upstream commit f562abe2963bad241d34e0b308e48cf114672c84 (bsc#1226414) * Rebased 0001-conf-parser-introduce-early-drop-ins.patch 1000-Revert-getty-Pass-tty-to-use-by-agetty-via-stdin.patch * The new tools systemd-measure and systemd-pcrphase have been added to the experimental sub-package for now. * Add temporarly 6000-meson-install-test-kernel-install-only-when-Dkernel-.patch until this patch is mainstreamed.- Import commit 9cdd78585069b133bebcd479f3a204057ad25d76 (merge of v251.8) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/c212388f7de8d22a3f7c22b19553548ccc0cdd15...9cdd78585069b133bebcd479f3a204057ad25d76- Import commit c212388f7de8d22a3f7c22b19553548ccc0cdd15 (merge of v251.7) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/f78bba8d037cc26c09bbdd167625b2d7fe1f5a30...c212388f7de8d22a3f7c22b19553548ccc0cdd15- specfile: reindent comments- Import commit f78bba8d037cc26c09bbdd167625b2d7fe1f5a30 (merge of v251.6) Beside the merge of v251.6, it also includes the following backport: - 07aaa898bd pstore: do not try to load all known pstore modules For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/07aa29e3942fb46b0aed5405c88e8d3179ca958f...f78bba8d037cc26c09bbdd167625b2d7fe1f5a30- Don't create /var/lib/systemd/random-seed in %post (bsc#1181458) To make sure that the same seed is not replicated when installing from a 'golden' image. For regular installations the random seed file is initialized by the installer itself (bsc#1174964). Even if it didn't, the random seed file would be created on first boot anyway.- Avoid expanding of macro in comment which leads to an error on installation (workaround for bsc#1203847)- Import commit 07aa29e3942fb46b0aed5405c88e8d3179ca958f (merge of v251.5) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/532faa39ebaa6f56e493cc938a91a40df082b74f...07aa29e3942fb46b0aed5405c88e8d3179ca958f- Drop the old band aid used during the breakage introduced by the switch of /tmp to tmpfs This was done to address the regression reported in boo#1175779 but shouldn't be necessary anymore since the (few) affected users should have updated systemd during the last 2 years.- Move nss-systemd and nss-myhostname NSS modules into the main package- Give the instructions to create a home directory with systemd-homed in the description of the systemd-experimental sub-package- rc-local.service.8 belongs to the systemd-sysvcompat sub-package (bsc#1203053)- Enable building and include libcryptsetup-plugins provided by systemd Now that dracut 057 has been released we can enable building libcryptsetup plugins. These can be used by cryptsetup to extend functionality including fido2, pkcs11 and tpm2 support.- Let systemd trust the RTC for 30 years after the last update instead of 15 (bsc#1202356) To allow for our systems to be used in edge locations without systemd updates for a long time.- Import commit 532faa39ebaa6f56e493cc938a91a40df082b74f (merge of v251.4) It includes the following fixes: - 739d7130cb home: drop conflicted headers (bsc#1202221) - 8fe0c12178 glibc: Remove #include to resolve fsconfig_command/mount_attr conflict with glibc 2.36 (bsc#1202221) - 0c5b7ee318 udev: allow to execute longer command line (bsc#1201766) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/8cd784e9250b38d20d8e14fccbfb211010283c79...532faa39ebaa6f56e493cc938a91a40df082b74f - Drop 1001-statx.patch, it's no more needed.- Add patch 1001-statx.patch based on commit 3657d3a0 * to resolve conflicts with glibc 2.36 with * add dirty hack to get in src/basic/chattr-util.h, src/home/homework.h, src/home/homework-fscrypt.c, src/home/homed-manager.c, and src/home/homework-mount.c as well to avoid that does include - Enable oomd (bsc#1200456) It's part of the experimental sub-package for now.- Import commit 8cd784e9250b38d20d8e14fccbfb211010283c79 (merge of v251.3) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/32912879062bb1595d8498b6f9c77d5acd1dc66a...8cd784e9250b38d20d8e14fccbfb211010283c79- Import commit 32912879062bb1595d8498b6f9c77d5acd1dc66a 111b96ca86 logind: don't delay login for root even if systemd-user-sessions.service is not activated yet (bsc#1195059)- Enable bpf framework- When systemd-container is installed install tar/gpg too So `machinectl import-tar` always works flawlessly. systemd-container already is an optional package and both tar and gpg are rather basic anyway so no harm should be done by requiring them. - Move the systemd sysupdate stuff from the main package to the experimental sub-package while it's still time. The method used (currently) for updating openSUSE distro is rpm, not systemd-sysupdate.- systemd.spec: add files.experimental- Make {/etc,/usr/lib}/systemd/network owned by both udev and systemd-network (bsc#1201276) This configuration files put in these directories are read by both udevd and systemd-networkd.- Import commit 69abca7794ed06d823bc0a9bb55daf822adcc632 f29b146685 pstore: Run after modules are loaded- pstore is no more considered as an experimental feature: move it to udev package (bsc#1197802 jsc#PED-2663)- Adjust rpmlintrc for shlib-policy-name-error/multibuild case so that it's not only for x86_64.- spec: %suse_version rpm macro is already reserved and has a special meaning in openSUSE distros so rename it to %archive_version instead.- Import commit e9fc337d97539fcab23078ab3e06f6b2ce3a3c8d ca0b29521f sha256: fix compilation on efi-ia32 1bbbac6a7e test: enable virtio-rng device for QEMU guests- Upgrade to v251.2 (commit 949d6bb7201dd48167ee9716ed6278764d1f4c0f) See https://github.com/openSUSE/systemd/blob/SUSE/v251/NEWS for details. This includes the following bug fixes: - upstream commit e6b169418369abbc88c8f622e02e1d704a23d4ef (bsc#1137373 bsc#1181658 bsc#1194708 bsc#1195157 bsc#1197570) - upstream commit 3a3b022d2cc112803ea7b9beea98bbcad110368a (bsc#1212434 bsc#1213575) - upstream commit e92a3d8fa3c554f807ddbcd7fc00821868fd8a62 (bsc#1195529) - upstream commit 1d0727e76fd5e9a07cc9991ec9a10ea1d78a99c7 (bsc#1208194) - upstream commit 55fabe92e2efb1a907d4c3c93dc63b96ff5b6860 (bsc#1191502) * Rebased 0001-conf-parser-introduce-early-drop-ins.patch * systemd-testsuite now requires python3-pexpect due to TEST-69-SHUTDOWN relying on this module. * sysusers.d/systemd-network.conf has been moved to systemd-network sub-package since the tmpfiles configuration snippets for networkd has also been moved to this sub-package.- Import commit 4dbc543953eabd4c578da67ce6e2970d6f96c406 (merge of v250.6) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/0d950479e58dd3af007eb3780d600a5446aac519...4dbc543953eabd4c578da67ce6e2970d6f96c406- Update rpmlintrc for shlib-policy-name-error/multibuild case.- Import commit 0d950479e58dd3af007eb3780d600a5446aac519 (merge of v250.5) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/736db5a59f1ab1317ef64ec6e7dc394250178146...0d950479e58dd3af007eb3780d600a5446aac519- Call pam_loginuid when creating user@.service (bsc#1198507) It's a backport of upstream commit 1000522a60ceade446773c67031b47a566d4a70d.- spec: add sbat (boo#1198589)- spec: sign the systemd-boot efi binary (boo#1198586)- Drop 0011-core-disable-session-keyring-per-system-sevice-entir.patch Since bsc#1081947 has been addressed, we can attempt to re-enable private session kernel keyring for each system service hence each service gets a session keyring that is specific to the service.- Import commit 736db5a59f1ab1317ef64ec6e7dc394250178146 98bc28d824 tmpfiles: constify item_compatible() parameters 3faf1a2648 test: adapt install_pam() for openSUSE b7ca34fa28 test: add test checking tmpfiles conf file precedence 2713693d93 test tmpfiles: add a test for 'w+' ce2cbefe38 tmpfiles.d: only 'w+' can have multiple lines for the same path (bsc#1198090) 769f5a0cbe Support -D_FORTIFY_SOURCE=3 by using __builtin_dynamic_object_size.- libseccomp is needed everywhere- Move coredumpctl completion files into systemd-coredump sub-package.- Import commit e43a1b018899266b764ab81afb9c30fb417675c6 1c229f8fc1 cryptsetup: fall back to traditional unlocking if any TPM2 operation fails 8881f21539 cryptsetup: fix typo 5882148902 journald: make use of CLAMP() in cache_space_refresh() 6ee0601f73 journald: make sure journal_file_open() doesn't leave a corrupted file around after failing (bsc#1198114) fe928f3d49 fs-util: make sure openat_report_new() initializes return param also on shortcut 3881af1806 fs-util: fix typos in comments 96060b73ba journal-file: port journal_file_open() to openat_report_new() 611d9955bb fs-util: add openat_report_new() wrapper around openat() f16edb41d4 network: ignore all errors in loading .network files (bsc#1197968) 5422730a7b meson: build kernel-install man page when necessary 45c627cfc2 build: include status of TPM2 in the feature string show by --version - Drop 0001-meson-build-kernel-install-man-page-when-necessary.patch It's been merged in the SUSE git repo.- spec: define %bootstrap with %bcond_with so it can be used with %when. Also re-order the meson options a bit.- spec: make sure /lib exists when installing conf files in /lib/modprobe.d- Temporarily disable 'libcryptsetup plugins until dracut 056 is merged in Factory- Add 0001-meson-build-kernel-install-man-page-when-necessary.patch Submitted to upstream: https://github.com/systemd/systemd/pull/22918- Move systemd-boot and all components managing (secure) UEFI boot into udev sub-package: they may deserve a dedicated sub-package in the future but for now move them to udev so they aren't installed in systemd based containers. - Move a bunch of components operating on (mainly block) devices into udev as without udev they're most likely useless.- spec: enable 'efi' support regardless of whether sd_boot is enabled or not We should support EFI systems even if systemd-boot is not enabled.- spec: cope with %{_modprobedir} being /lib/modprobe.d on SLE- Add 1000-Revert-getty-Pass-tty-to-use-by-agetty-via-stdin.patch A temporary workaround until bsc#1197178 is resolved.- Import commit 8ef8dfd5401ba18caec59e54a05af9f2e0d7ac65 (merge of v250.4) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/ca89b1d1fd1ae86cc1e763d2d01ec2806f3a4d3a...8ef8dfd5401ba18caec59e54a05af9f2e0d7ac65- Import commit ca89b1d1fd1ae86cc1e763d2d01ec2806f3a4d3a 37b683c832 journal: preserve acls when rotating user journals with NOCOW attribute set d043fabebc journal: when copying journal file to undo NOCOW flag, go via fd 78c2766689 journal-file: explicitly handle file systems that do not support hole punching 7ecfb4b098 journal-file: fix error handling of pread() in journald_file_punch_holes() c4946a412c journal-file: don't use pread() when determining where to append, use mmap as before d3fbd20628 journal: various fixes to journal_file_read_object() 5897a8e8d4 shared: Handle filesystems that don't support hole punching in COPY_HOLES 27746408e2 journal: Truncate file instead of punching hole in final object 59b6130030 shared: Ensure COPY_HOLES copies trailing holes ac9ccba73f journal: stat journal file after truncating 0257283444 journal: Copy holes when archiving BTRFS journal files 26c2a9952d shared: Copy holes in sparse files in copy_bytes_full() 6c7191dece copy: fix wrong argument passed to S_ISREG() in copy_file_fd_full() af0a43024d udev: 60-persistent-storage-tape.rules: handle duplicate device ID (bsc#1195529)- Update Supplements to new format in baselibs.conf - Fix libsystemd-shared exclusion in baselibs.conf - Exclude new cryptsetup libraries in baselibs.conf- systemd.spec: minor simplification by assuming that %{bootstrap} is always defined.- Make sure to create 'systemd-coredump' system user when systemd-coredump is installed (follow-up for the split of the sysusers config files).- Upgrade to v250.3 (commit dbd8bd2b9fd827ca89ed18034b60703c95798e01) See https://github.com/openSUSE/systemd/blob/SUSE/v250/NEWS for details. This includes the following bug fixes: - upstream commit 34357545590d4791d1acbbeb07ae8f7636e187cb (bsc#1198093) * Rebased 0001-conf-parser-introduce-early-drop-ins.patch 0001-restore-var-run-and-var-lock-bind-mount-if-they-aren.patch - Dropped 0007-networkd-make-network.service-an-alias-of-systemd-ne.patch The alias makes little sense as soon as multiple network managers are used in parallel.- Fix the default target when it's been incorrectly set to one of the runlevel targets (bsc#1196567) The script 'upgrade-from-pre-210.sh' used to initialize the default target during migration from sysvinit to systemd. However it created symlinks to runlevel targets, which are deprecated and might be missing when systemd-sysvcompat package is not installed. If such symlinks are found the script now renames them to point to 'true' systemd target units. - When migrating from sysvinit to systemd (it probably won't happen anymore), let's use the default systemd target, which is the graphical.target one. In most cases it will do the right thing anyway.- Fix a regression caused by the split of the sysusers config files shipped by systemd (bsc#1196322) Calls to %sysusers_create were not updated accordingly.- spec: fix dependencies for mini variants (follow-up) systemd-mini-container is one of the sub-package that relies systemd-mini to conflict with kiwi and to not be installed on real systems.- Import commit 0bb1977021be2fc9ebfae10d766dff0b1a457f88 (merge of v249.10) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/b9b83c5d11e686178ddd545862a00b33c6fdfabb...0bb1977021be2fc9ebfae10d766dff0b1a457f88- Import commit b9b83c5d11e686178ddd545862a00b33c6fdfabb 8973cb2462 systemd-coredump: allow setting external core size to infinity (bsc#1195899 jsc#SLE-23866)- Fix build if %_distconfdir is not defined (see bsc#1195679)- Drop enablement symlink migration support of SysV init scripts And let's finish reducing the support of SysV init scripts to its minimum.- Don't rely on %{_distconfdir}, it's broken on SLE (bsc#1195998)- spec: fix dependencies for mini variants Make sure that all mini variants won't be installed in real systems and won't be involved when building medias with kiwi. Note that sub-packages that requires systemd (such as udev) don't need any special treatment since the specific deps are inherited from the main (mini) package. - spec: simplify systemd-mini-doc dependencies by assuming that the doc sub-package can't be a build requirement for other packages. - spec: libsystemd-mini and libudev-mini need to provide libsystemd and libudev respectively- Rename systemd-sysvinit into systemd-sysvcompat systemd-sysvinit was probably provided to allow systems to switch from sysvinit to systemd by overwriting /sbin/init with a link to systemd. But this isn't very useful anymore due to the fact that sysvinit is not supported since several years. Therefore the subpackage contains now the files needed to keep backward compatibility with SysV init scripts (most notably sysv-generator) and has been renamed accordingly. The few files that are not specific to sysvinit (such as /bin/init) have been moved to the main package. Normally this new subpackage shouldn't be needed (since all packages use systemd unit files) unless a 3rd party application is installed and still relies on SysV init scripts.- systemd.spec: explicitely turn on/off build options Hence a feature can't be accidentally turned on/off because its dep is pulled in or removed due to another feature being turned on/off.- Always create systemd-network system user, even if systemd-networkd is not installed (bsc#1195559)- Make more use of %{_unitdir} in files.{systemd,container}- Installation of libnss_mymachines.so depended on %{bootstrap} but it is actually installed when %{with machined} is true. - Call ldconfig when container subpackage is installed since it ships nss-mymachines NSS plug-in module.- Import commit 117bd7f14aa7834d85a4306cd380d292bec04108 1395c74be7 udevadm: cleanup-db: don't delete information for kept db entries (bsc#1194912) bbafc8092a udevadm: cleanup_dir: use dot_or_dot_dot()- Drop 0006-sysv-generator-add-back-support-for-SysV-scripts-for.patch 0009-sysv-add-back-support-for-all-virtual-facility-and-f.patch Given the fact that Factory no more ship SysV init scripts since several months, only scripts coming from 3rd party applications should remain which are unlikely to rely on the SUSE specifities implemented by these patches. This change was announced on the Factory mailing list: https://lists.opensuse.org/archives/list/factory@lists.opensuse.org/thread/3ERUP5ZZJ6PPA36L3HVN46BH6U6JL74O/- Import commit 885e0b9126bd2cf1e3f6b147c45ec58a5550c75c 41334be59e meson: minor cleanup 3db0c28462 sysusers: split up systemd.conf - Drop 0012-resolved-create-etc-resolv.conf-symlink-at-runtime.patch (bsc#1195153) Since v241, the patch isn't useful anymore because resolved is no more able to create /etc/resolv.conf symlink by itself,it runs as 'systemd-resolve' user. The symlink is now handled by a tmpfiles config file which is only installed when systemd-resolved is. The tmpfiles config file has currently a lower priority than the one shipped by netconfig.- Make use of %ldconfig_scriptlets- Merge nss-resolved and nss-mymachines NSS plug-in modules into systemd-network and systemd-container respectively. These modules are plug-in modules hence the shared library packaging policy doesn't apply for them. Moreover they're pretty useless alone without their respective systemd services, Hence let's reduce the number of sub-packages as the list keeps increasing.- Merge libudev-devel into systemd-devel- Make sure that libopenssl-devel is installed when building resolved. Openssl was implictly pulled in by systemd-experimental subpackage but could be missing if the build of this subpackage was disabled.- resolved: disable fallback DNS servers and fail when no DNS server info could be obtained from the links. It's better to let the sysadmin know that something is likely misconfigured rather than silently handing over the DNS queries to Google or Cloudflare.- resolved: disable DNSSEC until the following issue is solved: https://github.com/systemd/systemd/issues/10579 - Replace '%setup+%autopatch' with '%autosetup'- systemd.spec: explicitely list all files for each main (sub) packages Using glob patterns in %files section to reduce the number of listed files was error-prone as some introduced files could silently be placed in the wrong subpackage. The sections were also hard to read and many files needed to be excluded from the main package making the point of glob pattern usage moot. systemd, udev, systemd-container and systemd-network packages have now their list of files described in a dedicated file. The lists are kept sorted to make them easy to parse. The size of the files, especially the one for the main package, is still reasonable and much easier to read now. During this rework, a couple of cleanups happened: more use of %{_systemd_util_dir}, some files was incorrectly owned by the main package and have been moved to the correct sub-package, etc... Note: the rest of the subpackages might be addressed later but let's find how it goes for now.- Move the whole content of /usr/share/doc/packages/systemd in doc subpackage- Move the systemd-network-generator stuff in udev package This generator can generate .link files and is mainly used in initrd where udev is mandatory.- Restore /sbin/udevadm and /bin/systemctl (obsolete) paths when split_usr is true (bsc#1194519)- Import commit 3743acbce3bd44208af453fc6dc384a1236dc83c (merge of v249.9) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/e2ca79dd775d1f7d39861d57f23c43f6cd85a872...3743acbce3bd44208af453fc6dc384a1236dc83c- Extract bits from 0008-sysv-generator-translate-Required-Start-into-a-Wants.patch which are not specific to the handling of 'Required-Start:' and move them into a new patch 0009-sysv-add-back-support-for-all-virtual-facility-and-f.patch- Import commit e2ca79dd775d1f7d39861d57f23c43f6cd85a872 (merge of v249.8) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/458220239c69b8e5fe7be480929348daeccb70d1...e2ca79dd775d1f7d39861d57f23c43f6cd85a872- Import commit 458220239c69b8e5fe7be480929348daeccb70d1 e95df40b09 shared/rm-rf: loop over nested directories instead of instead of recursing (CVE-2021-3997 bsc#1194178) 078e04305d shared/rm_rf: refactor rm_rf() to shorten code a bit 6d560d0aca shared/rm_rf: refactor rm_rf_children_inner() to shorten code a bit 6666ff056c localectl: don't omit keymaps files that are symlinks (bsc#1191826) - Drop the following patches as they have been merged into SUSE/v249 branch: 5000-shared-rm_rf-refactor-rm_rf_children_inner-to-shorte.patch 5001-shared-rm_rf-refactor-rm_rf-to-shorten-code-a-bit.patch 5002-shared-rm-rf-loop-over-nested-directories-instead-of.patch- Added patches to fix CVE-2021-3997 (bsc#1194178) 5000-shared-rm_rf-refactor-rm_rf_children_inner-to-shorte.patch 5001-shared-rm_rf-refactor-rm_rf-to-shorten-code-a-bit.patch 5002-shared-rm-rf-loop-over-nested-directories-instead-of.patch These patches will be dropped and cherry-picked from upstream once upstream will commit them in their main branch.- Import commit a54f80116ccf105dff11aef5d18dd110ebd3e8ee 30cbebc56f tmpfiles: 'st' may have been used uninitialized 5443654ec0 macro: add new helper RET_NERRNO() 8d90ecc435 rm-rf: optionally fsync() after removing directory tree 591344010d rm-rf: refactor rm_rf_children(), split out body of directory iteration loop 8c7762c4f1 Bump the max number of inodes for /dev to a million (bsc#1192858) dc9476c881 journal: don't remove the flushed flag when journald is stopped 29efc29efd TEST-10: don't attempt to write a byte to the socket 773fb785b6 Bump the max number of inodes for /dev to 128k (bsc#1192858)- Update systemd-user PAM service again Change the default implementation of pam_setcred() again, previously customized to run the full "auth" PAM stack and only call pam_deny.so which is basically the SUSE default behavior without pam_warn.so. This is considered safer, especially on SLE where a regression was spotted by QA.- move files related to static nodes to udev- Replace S:$n references with SOURCE$n. Makes vim * search work.- Import commit 523f32df573d459551760b072cb62906f4a2cf23 (merge of v249.7) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/c34c98712600bc206919ec6ed136195f75ac1967...523f32df573d459551760b072cb62906f4a2cf23 - Import commit c34c98712600bc206919ec6ed136195f75ac1967 f99aa40c6e TEST-12: make sure 'adm' group exist 6c7194ff99 TEST-08: don't force ext4 for / dd1814b8f9 test: use kbd-mode-map we ship in one more test case 94c5febf2a test: fix TEST-10-ISSUE-2467- Update the dependencies of the systemd-testsuite sub-package.- Import commit 61c79e68381801428c0bc00a56b9e2e9cfa68373 (merge of v249.6) bcdeee7b4c virt: Support detection for ARM64 Hyper-V guests (bsc#1186071) [...] For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/8521f8d22fd44400289fcea03493ebd7f8b1487d...61c79e68381801428c0bc00a56b9e2e9cfa68373 - Drop 0001-Revert-core-Check-unit-start-rate-limiting-earlier.patch It's part of v249.6.- Add 0001-Revert-core-Check-unit-start-rate-limiting-earlier.patch Temporarly revert commit ed8fbbf1745c6a2dc0b8cd560ac8a3353f72e979 until the regression it introduced [1] is addressed by upstream and a fix is released via the stable tree. [1] https://github.com/systemd/systemd/issues/21025- Disable nss-systemd and translations features for the mini flavour- Really enable libiptc for masquerading support (bsc#1191651) Currently used by systemd-nspawn and systemd-networkd.- Convert systemd package to multibuild- Import commit 8521f8d22fd44400289fcea03493ebd7f8b1487d (merge of v249.5) 8de173ff93 mount-util: fix fd_is_mount_point() when both the parent and directory are network fs (bsc#1190984) [...] For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/355e113ce193e5e2d195278c57d47f9a1b00ae46...8521f8d22fd44400289fcea03493ebd7f8b1487d- Import commit 355e113ce193e5e2d195278c57d47f9a1b00ae46 3b4a005095 meson: add missing include directory when using xkbcommon 4c4e642712 meson: allow extra net naming schemes to be defined during configuration (jsc#SLE-18514) 78466e4464 meson: drop the list of valid net naming schemes b9a2098f9d netif-naming: inline one iterator variable d7fbbc5e74 Add remaining supported schemes as options for default-net-naming-scheme- Rename %{gnu-efi} into %{sd_boot} Build conditionals (%bcond_with and %bcond_without) are used to define a specific feature of systemd. "gnu-efi" is rather an implemenation detail. Also not really sure what "efi" option alone is useful for since systemd-boot & co depends on "gnu-efi". - Enable sd_boot support for aarch64- Ghost own directories /var/log/journal and /var/log/journal/remote again rpmlint no more complain about the setgid bit, see sr#923496.- Overwriting rootprefix= is only required when split-usr is enabled- Rename %usrmerged into %split_usr- Suppress PAM warning when the credentials for user@.service service are established (bsc#1190515) systemd-user PAM service needs to define a default implementation of pam_setcred() otherwise the fallback (defined by /etc/pam.d/other) is used, which consists of pam_warn.so + pam_deny.so, and will throw a warning each time a user logs in.- No need to install upstream pam configuration file "systemd-user" It's overwritten by the SUSE version anyway.- Work around rpmlint complaining about /var/log/journal shipped with setgid bit This setgid bit has been already reviewed in the past and wasn't a concern. However we want the mode/ownership adjusted by tmpfiles and avoid the duplication of these info in rpm. - Don't ghost own any directories created dynamically by tmpfiles Again rpmlint complains but it doesn't seem to make sense to try to track all paths (including theirs perms, ownerships...) created dynamically. And 'rpm -V' is likely to report issues later with these paths anyway. This effectively partially reverts the two previous commits.- Make sure the build process won't create /var/log/journal - /var/log/journal/remote is owned by systemd-journal-remote- systemd.spec: fix a bunch of rpmlint errors/warnings- Drop systemd-logger This sub package was introduced in order to configure persistent journal and also to make sure that another syslog provider (such as rsyslog) couldn't be installed at the same time: each syslog provider conflicts with each others. However this mechanism didn't work since uninstalling systemd-logger wasn't magically turning off persistent logging because /var/log/journal is likely to be populated hence not removed. Moreover using a subpackage to configure the mode of journald was overkill and the usual ways (main conf file or drop-ins) should be preferred.- Import commit 7a5801342fe2f53e5c2a8578d6db132c0eca2d97 8d65ec4a66 test: wc is needed by test/units/testsuite-50.sh 1527bcc5dd test: make the installation of the debug tools optional in the image f4e6bf0b37 journalctl: never fail at flushing when the flushed flag is set (bsc#1188588)- Update the dependencies of the testsuite package The debug tools are optional thus no more required. OTOH strip(1) is needed when building the test image and nc(1) is needed by some tests.- Drop git internal files from the testsuite sub-package- Adjust pam macros- Don't reexecute user manager instances on package update yet This can't be done until users have their user instance updated to the new version that supports reexecuting with SIGRTMIN+25 because this signal terminates the user managers for the previous versions.- Import commit ec72db9ee0f8ce061f83624d7148ff38a5993b11 3b1aa2f79f manager: reexecute on SIGRTMIN+25, user instances only fd46c81922 test: make sure to include all haveged unit files - systemd.spec: reexec user manager instances on package updates- Make sure the versions of both udev and systemd packages are always the same (bsc#1189480)- Drop dependency on m4 (replaced by Jinja2)- Configure split-usr=true only when %usrmerged is not defined- Import commit 40bda18e346ff45132ccd6f8f8e96de78dcf3470 (merge of v249.4) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/7f23815a706cf2b2df3eac2eb2f8220736b8f427...40bda18e346ff45132ccd6f8f8e96de78dcf3470- Rework the test (sub)package: - it's been renamed into 'systemd-testsuite' - it includes the extended tests too - the relevant commits have been backported to SUSE/v249 so no SUSE specific patch is needed to run the extended tests (see below) - the deps needed by the extended tests have been added - Import commit 7f23815a706cf2b2df3eac2eb2f8220736b8f427 ad216581b6 test: if haveged is part of initrd it needs to be installed in the image too 088fbb71d0 test: adapt install_pam() for openSUSE 4d631c1f0c Revert "test: adapt TEST-13-NSPAWN-SMOKE for SUSE" ef956eb8a2 test: on openSUSE the static linked version of busybox is named "busybox-static" 6f7ce633b0 TEST-13-*: in busybox container sleep(1) takes a delay in seconds only 278baaa3ec test: don't try to find BUILD_DIR when NO_BUILD is set 3bba2f876a test: add support for NO_BUILD=1 on openSUSE d77cbc1b64 test: make busybox TEST-13-only dependency- Upgrade to v249.2 (commit c0bb2fcbc26f6aacde574656159504f263916719) See https://github.com/openSUSE/systemd/blob/SUSE/v249/NEWS for details. This includes the following bug fixes: - upstream commit 6fb61918ccdd0610b425d5b0e5417751f8f8f783 (bsc#1182870) - upstream commit 6fe2a70b9160e35fdeed9d37bd31727c2d46a8b2 (jsc#SLE-17798) - Rebased 0002-rc-local-fix-ordering-startup-for-etc-init.d-boot.lo.patch 0012-resolved-create-etc-resolv.conf-symlink-at-runtime.patch- Avoid the error message when udev is updated due to udev being already active when the sockets are started again (bsc#1188291)- Import commit 73e9e6fb847513c6d62f2fb445778ef5bc0fe516 (merge of v248.6) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/cb29bcc5ef2c0ee659686c5d229646a6ba98ec50...73e9e6fb847513c6d62f2fb445778ef5bc0fe516- Drop 0001-Revert-core-prevent-excessive-proc-self-mountinfo-pa.patch Commit 81107b8419c39f726fd2805517a5b9faab204e59 fixes https://github.com/systemd/systemd/issues/19464 which makes the aforementioned patch not needed anymore.- Drop 1003-basic-unit-name-adjust-comments.patch It's been merged in SUSE/v248 branch- Import commit cb29bcc5ef2c0ee659686c5d229646a6ba98ec50 (merge of v248.5) 4a1c5f34bd basic/unit-name: do not use strdupa() on a path (bsc#1188063 CVE-2021-33910) [...] For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/94efce2ee59fca15a48ff9c232c8dd7cf930c0a0...cb29bcc5ef2c0ee659686c5d229646a6ba98ec50 - Drop 1002-basic-unit-name-do-not-use-strdupa-on-a-path.patch as it was merged in v248.5.- Import commit 94efce2ee59fca15a48ff9c232c8dd7cf930c0a0 (merge of v248.4) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/c0aecee593511e49638579cb2b9ac8aaf1f8e6c8...94efce2ee59fca15a48ff9c232c8dd7cf930c0a0 - Drop 1001-unit-name-generate-a-clear-error-code-when-convertin.patch as it was merged in v248.4.- Import commit c0aecee593511e49638579cb2b9ac8aaf1f8e6c8 42ec1d537a login: use a hwdb entry for tagging Parallels' fb devices with 'master-of-seat' tag ecc7c7b462 login: use a hwdb entry for tagging HyperV's fb devices with 'master-of-seat' tag a4cfd70476 login: XGI Z7/Z9 (XG20 core) graphic chip requires master-of-seat to be set (bsc#1187154) ef553e0199 sd-dhcp-client: tentatively ignore FORCERENEW command (bsc#1185972 CVE-2020-13529) aae6c575fc sd-dhcp-client: logs when dhcp client unexpectedly gains a new lease 258a3d2043 sd-dhcp-client: shorten code a bit 0a80303114 sd-dhcp-client: check error earlier and reduce indentation- Added patches to fix CVE-2021-33910 (bsc#1188063) Added 1001-unit-name-generate-a-clear-error-code-when-convertin.patch Added 1002-basic-unit-name-do-not-use-strdupa-on-a-path.patch Added 1003-basic-unit-name-adjust-comments.patch These patches will be moved to the git repo once the bug will become public.- systemd-hwdb-update.service should be shipped by the udev package- Finally don't create /run/lock/subsys anymore This effectively reverts the fix for bsc#1187292 made earlier. This directory is specific to RH sysvinit and since we're going to fade the support of SysV init script away the directory has no future.- Import commit e9a23d9e064c2e7ac21a1b984d116bcf15327e63 8dd19c6ee3 sd-device: allow to read sysattr which contains embedded NUL d52409e5fe pid1: only add a Wants= type dependency on /tmp when PrivateTmp=yes (bsc#1181970- Enable TPM2 support- Import commit fcdb8dce591db2f5fc3c1e3eeb7abe9a2090b401 aa2d840a3b compat-rules: fix warning: "label ‘out’ defined but not used" in path_id_compat.c - Restore 61-persistent-storage-compat.rules that was mistakenly dropped during the merge of v248.- Create /run/lock/subsys again (bsc#1187292) The creation of this directory was mistakenly dropped when 'filesystem' package took the initialization of the generic paths over. Paths under /run/lock are still managed by systemd for lack of better place.- Drop systemd's dependency on udev (jsc#PM-2677) In some environments (i.e. containers) udev is usually not necessary but pulls in unnecessary packages.- Now that chkconfig/insserv are history, let's implement the strict minimum in systemd-sysv-install to enable/disable SysV init scripts (bsc#1186595 bsc#1186359) Indeed there's no much point in dropping SysV support completely until upstream will do especially since 3rd party applications such as vmware still rely on it, see bsc#1186359).- Allow the sysusers config files shipped by systemd rpms to be overriden during system installation (bsc#1171962) - While at it, add a comment to explain why we don't use %sysusers_create in %pre and why it should be safe in %post.- udev requires systemd in its %post (bsc#1185958) udevadm, called in udev's %post, requires libsystemd-shared-248.so.- Restore all "License:" tags udev uses a different license (GPL-2.0-only) than the main package and "osc service localrun format_spec_file" has the good taste to restore the license tags for all other subpackages if one of the subpackage tag differs.- Expect 644 permissions for /usr/lib/udev/compat-symlink-generation (bsc#1185807)- Spec file minor cleanups: - Drop all "Group:" tags as they are deprecated. - Drop "License:" tags from all subpackages and make it inherited from the main package. - Drop "%bcond_with parentpathid" as it's not used.- Introduce subpackage systemd-tests This subpackage is mainly used before submitting a new version of the systemd packages. As such it's not intended for regular users hence can be removed/renamed at any time. One might wonder why the unit tests are not executed during package builds (%check)... the reason is that the environment used to build package (chroot) is too limited and therefore only a subset of the unit tests would be executed in this environment. To disable the build of the subpackage, use "--without=tests".- Add 0001-Revert-core-prevent-excessive-proc-self-mountinfo-pa.patch A temporary patch until https://github.com/systemd/systemd/issues/19464 is solved.- Import commit bc08011f04ac4f12569ec05965149f665a0b110b (merge of v248.3) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/6f5c11b28f5739b901390f22c2bf4c003cadedaa...bc08011f04ac4f12569ec05965149f665a0b110b- Import commit 6f5c11b28f5739b901390f22c2bf4c003cadedaa (merge of v248.2) 2c8ec0095e udev/net_id: don't generate slot based names if multiple devices might claim the same slot (bsc#1192637) [...] For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/e5f93c9d2e9e26dd0dff430c4c072a547357ae7d...6f5c11b28f5739b901390f22c2bf4c003cadedaa- Upgrade to v248 (commit 5d3d934a5c2f4593207497db94e6f313348e89e7) See https://github.com/openSUSE/systemd/blob/SUSE/v248/NEWS for details. This includes the following bug fixes: - upstream commit 4327574fc1093513badc2177f71cede2fc88c13c (bsc#1166028) - upstream commit 3573e032f26724949e86626eace058d006b8bf70 (bsc#1186411) - upstream commit 30927a24848c4d727f7619cc74b878f098cdd724 (bsc#1200170) - A couple runtime dependencies on libraries are now tracked manually (with Recommends:) due to the fact that some symbols of these libs are dynamically loaded with dlopen() (heck!) - oomd is left disablde for now - pam configuration file 'systemd-user' is now shipped in /usr/etc/pam.d - Rebased 0001-conf-parser-introduce-early-drop-ins.patch 0003-strip-the-domain-part-from-etc-hostname-when-setting.patch 0006-sysv-generator-add-back-support-for-SysV-scripts-for.patch - Dropped 0004-tmpfiles-support-exclude-statements-based-on-file-ow.patch as it is SLE specific. - Clean systemd-experimental up: - Enclose "%package/%descriptoin experimental" within a "%if %experimental/%endif" block condition - List the build requirements in the sub-package instead of listing them in the main package. - Enable support for fido2, pwquality and qrencode in the home stuff - Improve the package description- systemd.spec: clean some of the build deps up: - libpcre is redundant with libpcre2 (only required by the full build) and the mini variant needs none of them. Hence drop the ref to libpcre. - normally libidn2 is needed by some optional features in systemd-network (only). But it's implicitly pulled in by libgnutls (required by the main package). Let's make sure the related features won't be disabled inadvertently in the future by making the dep explicit.- Import commit 14581e01203df7aa63c7c8383a12e6ebe258476f (merge of v246.13) 423b1e759c Revert "resolved: gracefully handle with packets with too large RR count" (bsc#1183745) 4723778738 meson.build: make xinitrcdir configurable (bsc#1183408) [...] For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/9753d1c17545a5d46530696cb14254f5f12024f1...14581e01203df7aa63c7c8383a12e6ebe258476f - Drop 0001-Revert-resolved-gracefully-handle-with-packets-with-.patch as it's part of v246.13. - Make use of the new build option to ship xinitrc in /usr/etc/X11/xinit/xinitrc.d (bsc#1183408)- Add 0001-Revert-resolved-gracefully-handle-with-packets-with-.patch Temporary workaround for bsc#1183745 (upstream issue 18917) until an actual fix is found.- enable libiptc for masquerading support in networkd- Default to the "unified" cgroup hierarchy. At this point, most users of cgroup (such as docker, libvirt, kubernetes) should be ready for this change. It's still possible to switch back to the old "hybrid" hierarchy by passing "systemd.unified_cgroup_hierarchy=0" option to the kernel command line.- Import commit 9753d1c17545a5d46530696cb14254f5f12024f1 (merge of v246.11) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/134cf1c8bc3e361a2641161aa11ac2b5b990480b...9753d1c17545a5d46530696cb14254f5f12024f1 - Rebase 0001-conf-parser-introduce-early-drop-ins.patch- Import commit 13bc08870147b35f87cefb074aec22e767b7ac04 846d61e0a1 boot: Move console declarations to missing_efi.h 171a37228b boot: Add startswith() and endswith() functions with no_case variants 0fad9f309a boot: Drop unnecessary braces c38bbb0874 boot: Fix void pointer arithmetic warning 438210924b boot: Replace raw efivar gets with typed variants e46cb3e4a0 boot: Add efivar_get/set_uint64_le() functions e16bee35c8 boot: Rename efivar_get/set_int() to efivar_get/set_uint_string() 2808d0e9a3 boot: Tighten scope of variables used in loops d3f3d57743 boot: Add efivar_get_boolean_u8() 0551ecce71 boot: Make all efivar util functions take the guid as an argument 8376ba3b9f boot: Turn all guid constants into C99 compound initializers 166fc2dad2 boot: Enable C99 c87d66e261 boot: Move Secure Boot logic to new file da7bba9438 udev: fix memleak e06139117c nspawn: make rootfs relative to oci bundle path (bsc#1182598) 8ba587d46c PATCH] Always free deserialized_subscribed on reload (bsc#1180020)- create subpackage systemd-experimental to host pstore, repart, userdb and homed- Make sure the udev socket units are reloaded during udev package updates- fix-machines-btrfs-subvol.sh is only shipped when machined is built- systemd requires aaa_base >= 13.2 This dependency is required because 'systemctl {is-enabled,enable,disable} " ends up calling systemd-sysv-install which in its turn calls "chkconfig - -no-systemctl". aaa_base package has a weird versioning but the '--no-systemctl' option has been introduced starting from SLE12-SP2-GA, which shipped version "13.2+git20140911.61c1681". Spotted in bsc#1180083.- Add 0001-conf-parser-introduce-early-drop-ins.patch Introduce early configuration drop-in file. This type of drop-ins are reserved for vendor own purposes only and should never been used by users. It might be removed in the future without any notice.- Drop use of %systemd_postun in %postun This macro is supposed to operate on units but it was used without passing any parameters. This call was probably used for issuing a daemon-reload but the following calls to %systemd_postun_with_restart imply that already. So let's simply drop it.- systemd-sysv-convert: handle the case when services are migrated from SysV scripts to systemd units and are renamed at the same time (bsc#1181788) The list of such services is hard coded and contains only the 'ntp->ntpd' translation.- Import commit 134cf1c8bc3e361a2641161aa11ac2b5b990480b (merge of v246.10) 25f220eafb sysusers: flush nscd's caches whenever /etc/{passwd,group} are modified (bsc#1181121) 4a543f0257 journal: send journald logs to kmsg again 26df96473f busctl: add a timestamp to the output of the busctl monitor command (bsc#1180225) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/520e53b6d85087b05892ee637ae93f1b269e7e52...134cf1c8bc3e361a2641161aa11ac2b5b990480b- prepare usrmerge (boo#1029961) * don't install legacy symlinks to / * use %_pamdir to install pam modules * leave nss files in /usr/lib*, glibc loads them from there just fine independent of usrmerge- Import commit 520e53b6d85087b05892ee637ae93f1b269e7e52 (merge of v246.9) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/2401461e5f0e32922823d954c56106f96344070e...520e53b6d85087b05892ee637ae93f1b269e7e52- Import commit 2401461e5f0e32922823d954c56106f96344070e 6131548b0f udev: link_update() should fail if the entry in symlink dir couldn't have been created f6cb8c7d79 udev: make algorithm that selects highest priority devlink less susceptible to race conditions (bsc#1084748) fc64e47291 basic/stat-util: make mtime check stricter and use entire timestamp ae91d45d3d test/sys-script.py: add missing DEVNAME entries to uevents 09e3473a7a test/udev_test.pl: add "expected good" count fc89379b5b test/udev-test.pl: suppress umount error message at startup d9e114f10d test/sd-script.py: new helper script for udev testing f2672eae66 test/udev-test.pl: generator for large list of block devices 42b68e43e2 test/udev-test.pl: add repeat count eec8ec375a tests/udev-test.pl: add multiple device test 73b8f3cf93 test/udev-test.pl: count "good" results ee04d70bb6 test/udev-test.pl: merge import parent tests into one 03942c8fbc test/udev-test.pl: merge "space and var with space" tests ec95546189 test/udev-test.pl: remove bogus rules from magic subsys test f704429217 test/udev-test.pl: Make some tests a little harder ce1a877dc0 test/udev-test.pl: last_rule is unsupported 913c72ff2d test/udev-test.pl: fix wrong test descriptions eeb25a1be6 test/udev-test.pl: allow checking multiple symlinks 00ab4292da test/udev-test.pl: test correctness of symlink targets 5b71ee2911 test/udev-test.pl: use computed devnode name 2e04bb9ae8 test/udev-test.pl: allow concurrent additions and removals 8816dd593c test/udev-test.pl: create rules only once 214418632d test/udev-test.pl: allow multiple devices per test 1eb6b23f27 udev-test: do not rely on "mail" group being defined 4a0a4dcf10 udev: Fix sound.target dependency (bsc#1179363)- Enable support for zstd compression systemd-journald will now use zstd for compressing large fields in journal files. systemd-coredump will also use this algorithm to compress coredump files. Please note that systemd older than v246 won't be able to read new journal files as zstd algorithm is not supported by these versions. This incompatible change was actually not the only one introduced by v246 since the hash tables in journal files have been hardened against hash collisions too in an incompatible way with older versions.- Explicitly require group(kvm) by udev: the group used to be created by system-users-hardware, but has been split/moved to qemu/kvm, where it is more logical. The file /usr/lib/udev/rules.d/50-udev-default.rules references this group, thus we should make sure the group exists. Otherwise there are errors in the journal in the form of: /usr/lib/udev/rules.d/50-udev-default.rules:86 Unknown group 'kvm', ignoring- Import commit d5e7958d35dc7758fe2e87e0a8193b93ce1a1b15 (merge of v246.7) 450792497e sd-event: fix delays assert brain-o (#17790) 1040a19d08 udevadm: rename option '--log-priority' into '--log-level' a7b41e19bd udev: rename kernel option 'log_priority' into 'log_level' For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/f6104ea5f554233e34b94ffd92da8332c3bd7d8f...d5e7958d35dc7758fe2e87e0a8193b93ce1a1b15- Import commit f6104ea5f554233e34b94ffd92da8332c3bd7d8f 617aed9236 scope: on unified, make sure to unwatch all PIDs once they've been moved to the cgroup scope- Don't post-require systemd-default-settings-branding anymore This is actually not needed now that the branding package issues a PID1 reloading every times it's being updated.- Import commit 49caf8e37aba04841e5493ccc25e7edab462d95b f8f7286527 units: restore sysfs conditions in sys-fs-fuse-connections.mount and sys-kernel-config.mount e9c7158dc7 units: wait until some fs modules are entirely loaded before mounting their corresponding filesystem (bsc#1178631) ac7ddc4201 Revert "units: skip modprobe@.service if the unit appears to be already loaded" 17310a1d19 core: serialize u->pids until the processes have been moved to the scope cgroup (bsc#1174436) 1416965614 meson: add option to skip installing to $sysconfdir f71a1ef5d0 systemctl: give a nice hint about org.freedesktop.LogControl1 when applicable 20a3f9fd95 systemctl: immediately reject invalid log levels 9f67d2e57b systemctl: merge log_target(), log_level(), service_log_setting() ddf7cf4872 systemctl: add service-log-{level,target} verbs 026d7d156d systemctl: list unit introspection verbs first, modification second- systemd-default-settings is needed by %post scriptlet- Revert the change that dropped %{release} from the package version constraints used in Requires: The release number is actually relevant since it can be increased when some patches, which might touch multiple sub-packages of systemd, are added/modified. However the %{release} is still no more used in conflicts.- Import commit fdce77ce2067f9dd90d816bad28b51efed0b6dc1 05fff5bd02 generator: use kmsg in system-level generators, journal otherwise ecc07954de log: normalize log target condition check d32ceea42b log: update comment 2ebad02b60 basic/virt: Detect PowerVM hypervisor (bsc#1176800)- Simplify systemd-sysv-convert - the previous code incorrectly assumed that the sysv init scripts were uninstalled before %post get executed. It therefore save the enablement state in %pre and restore it in %post. Now all is done in %post (making --save option useless) and there's no more need to remember the enablement state. - "--save" option is a NOP but is still kept for backward compatibility. - the previous simplifcation made /var/lib/systemd/migrated no more used. - we do not search for units in /lib/systemd anymore, this shouldn't be needed anymore these days especially since this path was only used when systemd was introduced in openSUSE and it was never used in SLE (checked SLE12-GA). - the option --show has been dropped. It's never been used even internally. - the DB is populated only once even if the script was enabled at multiple runlevels. The runlevel info was never used. A dummy value is still added to keep the same format just in case.- No more need to clean the journal-upload stuff with --without=journal_remote Since -Dremote build option has been introduced with meson, this workaround is no more needed.- Move journal-{remote,upload}.conf.5.gz man pages into systemd-journal_remote sub package- Explicitly list files in /usr/lib/sysusers.d shipped by the main package Currently only one config file is shipped in this directory and we want to check any new files that may be added in the future.- Use %{_modulesloaddir}, %{_environmentdir} and %{_modprobedir} wherever appropriate- Do not include %{release} in a few places where we explicitly mention package versions It's usually not a good idea especially when used with conflicts.- Rely on systemd-default-settings for overriding system default settings (bsc#1172517) The new branding packages now ships the drop-ins to customize systemd either for an openSUSE or a SLE ditro.- Import commit d7b5ac76dc95ddf30e707d26998e36303e9f52a7 (merge of v246.6) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/1cab0d44584687ace92d1df30eadf264231e3b65...d7b5ac76dc95ddf30e707d26998e36303e9f52a7- Ship {/usr/lib,/etc}/systemd/network directories in the main package These directories can be used by both udevd and networkd.- Remove dangling symlink /usr/lib/systemd/system/sockets.target.wants/systemd-journald-audit.socket Otherwise the build system complains.- Import commit 1cab0d44584687ace92d1df30eadf264231e3b65 (include v246.5) 304ec2c7ab fstab-generator: add 'nofail' when NFS 'bg' option is used (bsc#1176513) 6ae277fb37 test: adapt TEST-21-SYSUSERS for SUSE acd8bfd2cc test: adapt TEST-13-NSPAWN-SMOKE for SUSE [...] For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/a4e393eecb9dbe140a6c7d57419c291d786155cf...1cab0d44584687ace92d1df30eadf264231e3b65- Drop 0001-udev-temporarly-restore-the-creation-a-few-symlinks-.patch linuxrc has already been fixed.- Add 0001-udev-temporarly-restore-the-creation-a-few-symlinks-.patch A temporary patch until the installer environment is updated to create some of the symlinks that udevd used to create during its startup but now udevd relies on the init system to do so.- Rework how we prevent journald from both enabling auditd and recording audit messages journald.conf gained a new setting Audit= to control whether journald enables audit during the boot process. So let's use it and make sure it's disabled by default by shipping a drop-in that overrides upstream default. Also we used to patch systemd to prevent journald from reading the audit messages. There's still no way for downstream to configure that properly (we would need to mask systemd-journald-audit.socket meaning shipping a symlink in /etc) but I think dropping systemd-journald-audit.socket from the package is a nicer way to do that as some users might choose to reenable this setting (by reintroducing the socket unit in /etc).- Enable audit support (bsc#1175883) Enabling audit support in systemd will only make PID1 (and some of its services) to generate some audit records for certain events. But it doesn't affect journald, which has been prevented from recording audit messages in the journal (SUSE specific behavior).- Upgrade to v246.4 (commit f1344d5b7f31e98aedb01e606f41d74d3caaf446) See https://github.com/openSUSE/systemd/blob/SUSE/v246/NEWS for details. Now that the number of SUSE specific patches has been shrinked and is pretty low (12 at the time of this writing), they are no more tracked by the git repo and are now handled at the package level. Hence It is easier to maintain and identify them. This effectively means that SUSE/v246 will contain upstream commits only. Added 0001-restore-var-run-and-var-lock-bind-mount-if-they-aren.patch Added 0002-rc-local-fix-ordering-startup-for-etc-init.d-boot.lo.patch Added 0003-strip-the-domain-part-from-etc-hostname-when-setting.patch Added 0004-tmpfiles-support-exclude-statements-based-on-file-ow.patch Added 0005-udev-create-default-symlinks-for-primary-cd_dvd-driv.patch Added 0006-sysv-generator-add-back-support-for-SysV-scripts-for.patch Added 0007-networkd-make-network.service-an-alias-of-systemd-ne.patch Added 0008-sysv-generator-translate-Required-Start-into-a-Wants.patch Added 0009-pid1-handle-console-specificities-weirdness-for-s390.patch Added 0010-journald-disable-audit-support-completely-from-the-j.patch Added 0011-core-disable-session-keyring-per-system-sevice-entir.patch Added 0012-resolved-create-etc-resolv.conf-symlink-at-runtime.patch- Adjust %pre and %post for the restoration of upstream tmp.mount (boo#1175779)- Import commit a4e393eecb9dbe140a6c7d57419c291d786155cf d8e3bd4e22 Revert "core: don't send SIGKILL to user@.service immediatly during shutdown"- Drop requirement on 'sysvinit-tools' It was used to workaround bug #886599 by explicitly calling vhangup(8) from getty@.service so when this service was stopped a virtually hangup on the specified terminal when were stopped to give the shell a few seconds to save its history. But this workaround was dropped since it had no effect (SLE12-GM was released with it but was still suffering from the bug) and was replaced by commit e9db43d5910717a108, which was released from v226 and backported to SLE12/SLE12-SP1.- Import commit 6d6d92930acad63f9b9029c305a672c32c550d2d (include merge of v245.7) 797ad47d3e vconsole-setup: downgrade log message when setting font fails on dummy console (bsc#1172195 bsc#1173539) [...] For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/b12cd8b89b4bccfcf972b47153a2b01cd7775932...6d6d92930acad63f9b9029c305a672c32c550d2d - Drop 0001-Revert-job-Don-t-mark-as-redundant-if-deps-are-relev.patch Upstream finally reverted it and it's part of both v245.7 and master.- Restore default upstream tmp.mount (/tmp as tmpfs) behaviour (boo#1173461)- migrate-sysconfig-i18n.sh: fix marker handling (bsc#1173229) The marker is used to make sure the script is run only once. Instead of storing it in /usr, use /var which is more appropriate for such file. Also make it owned by systemd package.- Fix inconsistent file modes for some ghost files (bsc#1173227) Ghost files are assumed by rpm to have mode 000 by default which is not consistent with file permissions set at runtime. Also /var/lib/systemd/random-seed was tracked wrongly as a directory. Also don't track (ghost) /etc/systemd/system/runlevel*.target aliases since we're not supposed to track units or aliases user might define/override.- Include in the package version the stable minor (if any). Also update the version shown by various command such as 'systemctl - -version' to show the stable number.- Don't restart udevd sockets during package update Otherwise we might miss kernel events as the daemon need to be stopped as well.- Import commit b12cd8b89b4bccfcf972b47153a2b01cd7775932 (include merge of v245.6) For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/a6d31d1a02c2718a064bbbc40d003668acf72769...b12cd8b89b4bccfcf972b47153a2b01cd7775932- no longer explicitly package setgid directory /var/log/journal (bsc#1172550). The bit will be set during %post by way of the systemd-tmpfiles invocation. This avoids a conflict with the permissions package and an rpmlint error popping up.- Fix build when resolved is disabled While at it sort the build conditionals.- Import commit a6d31d1a02c2718a064bbbc40d003668acf72769 bb6e2f7906 pid1: update manager settings on reload too (bsc#1163109) e9e8907b06 watchdog: reduce watchdog pings in timeout interval 385a8f9846 udev: rename the persistent link for ATA devices (bsc#1164538) 66018a12ae tmpfiles: remove unnecessary assert (bsc#1171145)- Disable bump of /proc/sys/fs/nr-open Hopefully a _temporary_ workaround until bsc#1165351 is fixed otherwise user instances crashes the system is using NIS (and the nscd cache is empty).- Drop legacy /sbin/{udevd,udevadm) symlinks hopefully for good Since boo#1160890 has been fixed since a couple of months now.- Drop content of /usr/share/factory/ (bsc#1170146) systemd ships several files in /usr/share/factory/etc that are copied to /etc in case those files are missing there. Unfortunately the content does not match the openSUSE defaults.- Drop most of the tmpfiles that deal with generic paths (bsc#1078466 bsc#1181831) They are problematic because some of them conflict with SUSE defaults. Therefore it seems better to let the revelant packages owning these paths to provide their own definitions instead. Meanwhile we still keep the homeless definitions in suse.conf until a better place is found for them. Drop 0001-Fix-run-lock-group-to-follow-openSUSE-policy.patch Drop 0001-SUSE-policy-do-not-clean-tmp-by-default.patch- Drop %tmpfiles_create portables.conf from %post of networkd sub-package It was probably mistakenly added because systemd-portable served as template for systemd-network.- Import commit 08cd65ac385c884ed6e4bd71128a0796f56ecd17 (include merge of v245.5) 1ceedf8535 meson: fix build of udev 'path_id_compat' builtin with meson 0.54 e61569d4a9 pid1: by default make user units inherit their umask from the user manager (bsc#1162698) 64fdacd5f1 user-util: rework how we validate user names (bsc#1170272) [...] For a complete list of changes, visit: https://github.com/openSUSE/systemd/compare/c5aa158173ced05201182d1cc18632a25cf43b94...08cd65ac385c884ed6e4bd71128a0796f56ecd17- Drop 0001-meson-fix-build-of-udev-path_id_compat-builtin-with-.patch It's been merged in 'openSUSE-Factory' branch otherwise this branch won't build anymore since meson has been upgraded to version 0.54 in Factory.- Switch back to the hybrid hierarchy Unfortunately Kubernetes and runc are not yet ready for cgroupsv2. Let's reconsider the unified hierarchy in a couple of months.- Import commit c5aa158173ced05201182d1cc18632a25cf43b94 (merge v245.4)- Add 0001-meson-fix-build-of-udev-path_id_compat-builtin-with-.patch- Import commit 31f82b39c811b4f731c80c2c2e7c56a0ca924a5b (merge v245.2) d1d3f2aa15 docs: Add syntax for templated units to systemd.preset man page 3c69813c69 man: add a tiny bit of markup bf595e788c home: fix segfault when parsing arguments in PAM module e110f4dacb test: wait a bit after starting the test service e8df08cfdb fix journalctl regression (#15099) eb3a38cc23 NEWS: add late note about job trimming issue 405f0fcfdd systemctl: hide the 'glyph' column when --no-legend is requested 1c7de81f89 format-table: allow hiding a specific column b7f2308bda core: transition to FINAL_SIGTERM state after ExecStopPost= 2867dfbf70 journalctl: show duplicate entries if they are from the same file (#14898) [...]- Upgrade to v245 (commit 74e2e834b4282c9bbdc12014f6ccf8d86e542b8d) See https://github.com/openSUSE/systemd/blob/SUSE/v245/NEWS for details. This includes the following bug fixes: - upstream commit 7f56982289275ce84e20f0554475864953e6aaab (CVE-2020-1712) - upstream commit 66a19d85a533b15ed32f4066ec880b5a8c06babd (bsc#1157315) - upstream commit 7f56982289275ce84e20f0554475864953e6aaab (bsc#1162108) The new tools provided by systemd repart, userdb, homed, fdisk, pwquality, p11kit feature have been disabled for now as they require reviews first. Default to the "unified" cgroup hierarchy. Indeed most prominent users of cgroup (such as libvirt, kubic) should be ready for such change. It's still possible to switch back to the old "hybrid" hierarchy by passing "systemd.unified_cgroup_hierarchy=0" option to the kernel command line though. Added 0001-Revert-job-Don-t-mark-as-redundant-if-deps-are-relev.patch: upstream commit 097537f07a2fab3cb73aef7bc59f2a66aa93f533 has been reverted for now on as it introduced a behavior change which has impacted plymouth at least.- add systemd-network-generator.service file together with systemd-network-generator binary- move html documentation to sparate package to save space - move networkd and resolved binaries into correct subpackage- Import commit f8adabc2b1f3e3ad150e7a3bfa88341eda5a8a57 (merge v244.2) 77c04ce5c2 hwdb: update to v245-rc1 b4eb884824 Fix typo in function name e2d4cb9843 polkit: when authorizing via PK let's re-resolve callback/userdata instead of caching it 83bfc0d8dd sd-bus: introduce API for re-enqueuing incoming messages 5926f9f172 polkit: use structured initialization 0697d0d972 polkit: on async pk requests, re-validate action/details 2589995acd polkit: reuse some common bus message appending code 5b2442d5c3 bus-polkit: rename return error parameter to ret_error 0a19ff7004 shared: split out polkit stuff from bus-util.c → bus-polkit.c 1325dfb577 test: adapt to the new capsh format 3538fafb47 meson: update efi path detection to gnu-efi-3.0.11 3034855a5b presets: "disable" all passive targets by default c2e3046819 shared/sysctl-util: normalize repeated slashes or dots to a single value 6f4364046f dhcp6: do not use T1 and T2 longer than one provided by the lease 0ed6cda28d network: fix implicit type conversion warning by GCC-10 f6a5c02d26 bootspec: parse random-seed-mode line in loader.conf ddc5dca8a7 sd-boot: fix typo 2bbbe9ae41 test: Synchronize journal before reading from it 072485d661 sd-bus: fix introspection bug in signal parameter names 80af3cf5e3 efi: fix build. [...]- Use suse.pool.ntp.org server pool on SLE (jsc#SLE-7683)- Drop scripts-udev-convert-lib-udev-path.sh Nobody should need it these days.- Temporarily restore /sbin/{udevd,udevadm) obsolete symlinks They're restored until YaST stop using them (see boo#1160890)- Import commit 8254b8d9646f3e0f5f8057d1ffb5d6c20f079aaa (merge v244.1) 639dc9f4bf network: set ipv6 mtu after link-up or device mtu change cbced49daa man: fix typo in net-naming-scheme man page 7dd04c99b0 network: tc: drop unused element bf4b7d07ba man: fix typos (#14304) 1ba2e7a730 ipv4ll: do not reset conflict counter on restart 49806bb310 macro: avoid subtraction overflow in ALIGN_POWER2() c4c1600689 test-network: add a test case for SendOption= 6f15b45949 network: fix segfault in parsing SendOption= 2e531b830d seccomp: real syscall numbers are >= 0 f7616ed52b network: fix copy and paste mistake e8b53300c4 network: do not drop foreign config if interface is in initialized state 00f05813bf seccomp: mmap test results depend on kernel/libseccomp/glibc 4de1909e61 seccomp: use per arch shmat_syscall d83010521d seccomp: ensure rules are loaded in seccomp_memory_deny_write_execute 2c6568221a seccomp: fix multiplexed system calls bcf0aa02bf Fix typo (duplicate "or") 96d7083c54 network: if /sys is rw, then udev should be around e874419902 nspawn: do not fail if udev is not running 29c9144655 Create parent directories when creating systemd-private subdirs 9cbb8b5254 network: do not return error but return UINT64_MAX if speed meter is disabled c08429ae33 core: swap priority can be negative f25c0be335 networkctl: fix to show BSSID 65fd2fce59 systemctl: enhance message about kexec missing kernel bdd0af5f81 Fixup typo in NEWS- Manually set system-uid-max and system-gid-max to 499 It used to be detected automatically by meson but it's been broken by the migration of login.defs from /etc to /usr/etc.- Import commit d8f6a204858bff68b8e0e7be86b418c36087ab2e 6c5e492a65 cryptsetup: umount encrypted devices before detaching it during shutdown- Upgrade to v244 (commit 090da85161ceb1ba0b4c208963c7156a8fdf10c6) See https://github.com/openSUSE/systemd/blob/SUSE/v244/NEWS for details. This includes the following bug fixes: - upstream commit b49e14d5f3081dfcd363d8199a14c0924ae9152f (bsc#1139459) - upstream commit 22683674716fd0e5b016ce5a7d8fd90df5f9f9e7 (bsc#1151377) - upstream commit faf205de3ba9a11b0ba17682123d7f3fedc7da24 (bsc#1151377) - upstream commit 27c3112dcbd1b5f171c36c32550d9c6331375b0b (bsc#1155574) - upstream commit 21b40f16622f171a9969dc334d74fb5eb2f575c2 (bsc#1159814) - upstream commit 9b88bb5023dfa3cea406c14fdaa3d8e3e320907a (jsc#SLE-7689) - upstream commit bc9ecd484f1ebfe0de8b567c90f6cd867fbd5894 (bsc#1141597) Legacy and obsolete symlinks have been finally dropped. Dropped 0001-logind-keep-backward-compatibility-with-UserTasksMax.patch. Users were notified about the deprecation of UserTasksMax option and how to move to the new mechanism. The dropin replacement for UserTasksMax is therefore no more generated but its use still produces a warning. Added 0001-SUSE-policy-do-not-clean-tmp-by-default.patch and 0001-Fix-run-lock-group-to-follow-openSUSE-policy.patch. These patches were extracted from the git repo because it's not clear where the SUSE tmpfiles specificities should be located.- Import commit dbb1d4734daffa62e0eddecfa4f784c84a9d8e76 1439d72a72 udevd: don't use monitor after manager_exit() 99288dd778 Revert "udevd: fix crash when workers time out after exit is signal caught" 152577d6d0 udevd: fix crash when workers time out after exit is signal caught f854991504 udevd: wait for workers to finish when exiting (bsc#1106383) Changes from the v243-stable (84 commits): e51d9bf9e5 man: add entry about SpeedMeter= aa1fc791c7 udev: silence warning about PROGRAM+= or IMPORT+= rules b9a619bb67 udevadm: ignore EROFS and return earlier 1ec5b9f80c basic: add vmware hypervisor detection from device-tree 7fa7080248 umount: be happy if /proc/swaps doesn't exist [...] 47d0e23d26 udev: fix memleak caused by wrong cleanup function a6fb0542c5 parse_hwdb: fix compatibility with pyparsing 2.4.* cb1d892f17 parse_hwdb: process files in order- Import commit 0b715187a87907e18edf98eab9d0a50fced4a424 9dbdbc2f10 logind: fix (again) the race that might happen when logind restores VT (bsc#1101591 bsc#1140081) c848bec110 libblkid: open device in nonblock mode. (bsc#1084671) b70ad6c927 resolved: check for IP in certificate when using DoT with GnuTLS (bsc#1155539 CVE-2018-21029) bbedf3d557 resolved: require at least version 3.6.0 of GnuTLS for DNS-over-TLS eb732c2e29 resolved: fix connection failures with TLS 1.3 and GnuTLS 4e45084ac5 shared/install: failing with -ELOOP can be due to the use of an alias in install_error() 2e297f0d87 shared/install: fix error codes returned by install_context_apply() dd29d70d32 man: alias names can't be used with enable command- Fix %{_libexecdir} misuses of /usr/lib- Drop 0001-compat-rules-escape-when-used-for-shell-expansion.patch It's part of the previous import.- Import commit b7467b7b553d6d0d6f92758d966b69f1a88b6b42 441f44f371 fileio: introduce read_full_virtual_file() for reading virtual files in sysfs, procfs (bsc#1133495) 8a1bb5c66b swap: do not make swap units wanted by its device unit anymore- Import commit 5df9000899ef7d45ddbcacd0fdf73afa07a40f6b f0ed7237e4 udev/cdrom_id: Do not open CD-rom in exclusive mode. (bsc#1154256) b37054aa5a compat-rules: escape '$' when used for shell expansion Changes from the v243-stable: ef677436aa test: Pass personality test even when i686 userland runs on x86_64 kernel 3f6398c450 docs: fix inadvertent change in uid range 25bb377a73 cgroup: fix typo in BPF firewall support warning message 6d97aca0d5 fix build with compilers with default stack-protector enabled fbad077cec nspawn: surrender controlling terminal to PID2 when using the PID1 stub 0553c3c668 pid1: fix DefaultTasksMax initialization f406a691a7 src/core/automount: use DirectoryMode when calling mkdir -p 20438f96c3 udevadm trigger: do not propagate EACCES and ENODEV 6480630bc3 hwdb: Correct WWWW Pattern In Documentation Comment 9d8e889810 nspawn: consistenly fail if parsing the environment fails 40e169b304 nspawn: default to unified hierarchy if --as-pid2 is used b5df1037a0 cgroup: Mark memory protections as explicitly set in transient units f14e3e02cc cgroup: Respect DefaultMemoryMin when setting memory.min ea248e53bf cgroup: Check ancestor memory min for unified memory config de1d25a506 cgroup: docs: memory.high doc fixups 2ab45f38d8 cgroup: docs: Mention unbounded protection for memory.{low,min} 19a43dc38a Consider smb3 as remote filesystem 5c0224c7bf Handle d_type == DT_UNKNOWN correctly 8282bc61df util-lib: Don't propagate EACCES from find_binary PATH lookup to caller 9d0ae987a6 network: drop noisy log message f67f0e4ec4 Updated log message when the timesync happens for the first time (#13624) e151bf4674 units: make systemd-binfmt.service easier to work with no autofs 2b8e574d82 Corect man page reference in systemd-nologin.conf comments a0577353f1 man: Add a missing space in machinectl(1) 693e983988 log: Add missing "%" in "%m" log format strings ea7151b8c4 pid1: do not warn if /run/systemd/relabel-extra.d/ doesn't exist b90549290e man: fix typo- Remove intltool BuildRequires, not needed since v237 - Use python3-base BuildRequires instead of full python3- Add 0001-compat-rules-escape-when-used-for-shell-expansion.patch (bsc#1153648) Added to the quaratine area to avoid uploading a new tar ball just for that single change. It will be dropped during the next import.- don't package locales in -mini package- Import commit 428b937f917ae177f2315e8469800941885e441a 0026b58744 pid1: fix DefaultTasksMax initialization- Import commit ed81f69153488279957268e247a5c81b678da491 (changes from v243-stable) fab6f010ac dhcp6: use unaligned_read_be32() f2d9af4322 dhcp6: add missing option length check ccf797511e ndisc: make first solicit delayed randomly f2275b6e12 dhcp6: read OPTION_INFORMATION_REFRESH_TIME option 6dfbe58ee7 l10n: update Czech Translation d4cd0e9d32 sd-radv: if lifetime < SD_RADV_DEFAULT_MAX_TIMEOUT_USEC, adjust timeout (#13491) dbefe59259 polkit: fix typo a321507476 sd-netlink: fix invalid assertion 45dca7fe86 network: do not enter failed state if device's sysfs entry does not exist yet dd83d58796 network: add missing link->network checks b294305888 path: stop watching path specs once we triggered the target unit 2cd636c437 hwdb: add Medion Akoya E2292 (#13498) d133bdd1fa po: update Brazilian Portuguese translation 530e09b594 po: update Polish translation 0c5c3e34c1 polkit: change "revert settings" to "reset settings" 73e0f372d8 man: fix description of ARPIntervalSec= units 5412cc54a1 hwdb: axis override for Dell 9360 touchpad 9d4e658529 test: drop the missed || exit 1 expression 7ed7ea82f6 udevadm: use usec_add() 477bf86c91 udevadm: missing initialization of descriptor 19ac31c989 networkd: unbreak routing_policy_rule_compare_func() a20a2157a8 core: coldplug possible nop_job eb55241742 tty-ask-pwd-agent: fix message forwarded to wall(1) 1a3c53c06c core: Fix setting StatusUnitFormat from config files 91db81e4dd network DHCP4: Dont mislead the logs. 6af590838b Update m4 for selective utmp support. modified: tmpfiles.d/systemd.conf.m4 6823c907cf core: restore initialization of u->source_mtime 29308bcc13 mount-setup: relabel items mentioned directly in relabel-extra.d 8ca1e56165 Call getgroups() to know size of supplementary groups array to allocate 5d84a7ad1c test: add test cases for empty string match 1536348cc8 udev: fix multi match 3ccafef0ad man: move TimeoutCleanSec= entry from .service to .exec 8c0c30a820 zsh: udpate bootctl completions 0556c247a2 resolved: fix abort when recv() returns 0 9a25d75520 man: remove repeated words be3be29347 hwdb: Also mark lis3lv02d sensors in "HP" laptops as being in the base 4b92ffccaa udev: also logs file permission 75a2845e5a udev: add missing flag for OPTIONS=static_node 19e9fc4262 network: do not abort execution when a config file cannot be loaded 3e1267cf50 fileio: update warning message 1b3156edd2 pstore: fix use after free f500d2fa81 journal: Make the output of --update-catalog deterministic 64d0f7042d travis: protect the systemd organization on Fuzzit from forks 4247938ee1 hwdb: Mark lis3lv02d sensors in HP laptops as being in the base 379158684a po: update Japanese translation 31e1bbd1ca docs: fix push recipe in RELEASE.md f06530d86b man/systemctl.xml: fix missing "not" 22aba2b969 docs: fix typo in boot loader doc 000e08ca70 pstore: fix typo in error message - directoy -> directory f7f9c69ac5 Fix typo in comment: overide -> override ca8ba8f8c0 po: update Polish translation- Some files related to the portable stuff were missing some %exclude- Allow YaST to select Iranian (Persian, Farsi) keyboard layout (bsc#1092920)- split off networkd and resolved into separate network subpackage - use separate lang package for translations- Import commit 9e41d7ec3572d8d5ea1e00f683e9fbf8108e85b4 fb1b9d54f9 tty-ask-pwd-agent: fix message forwarded to wall(1) dd14da3bb6 core: restore initialization of u->source_mtime d62f30f647 resolved: create /etc/resolv.conf symlink at runtime- Slighly rework (mostly reorganization) the portable stuff- Track 0001-resolved-create-etc-resolv.conf-symlink-at-runtime.patch in the git repo This patch has been in the quarantine area long enough, so let's move it in the git repo.- Upgrade to v243 (commit e0b24c4356aa0c1c56ff274ff72228f33482a5be) See https://github.com/openSUSE/systemd/blob/SUSE/v243/NEWS for details. This includes the following bug fixes: - upstream commit b2774a3ae692113e1f47a336a6c09bac9cfb49ad (CVE-2019-20386 bsc#1161436) - upstream commit 5406c36844b35504a64e9f05fc74b8e5e5a09143 (bsc#1132400) - upstream commit 83a32ea7b03d6707b8e5bb90a0b3a6eb868ef633 (bsc#1132721) - upstream commit 7cc5ef5f1811c539ae7f20255c2a093f413cc64f (bsc#1172824 bsc#1142733) - upstream commit 83cb24ac20baf19f7834931dcf6e03486b4c9c30 (bsc#1156213) - upstream commit a2dcb1d78737d3daa301ee63fbdd02837acb71a8 (bsc#1158485) - upstream commit 08185cff19efcb1d7d9fb7b546e7f516ab6dae91 (bsc#1165011) - upstream commit 59c55e73eaee345e1ee67c23eace8895ed499693 (bsc#1177510) Drop 0001-Revert-insserv.conf-generator.patch as it's been dropped from branch SUSE/v243 while we were rebasing. Drop 0001-rc-local-generator-deprecate-halt.local-support.patch as this functionality had been deprecated during the previous release and now have been dropped by upstream.- Enable systemd-portabled (jsc#SLE-21695)- systemd-container creates and owns /etc/systemd/nspawn now- Import commit 0f9271c1336c5c9055e75389732a44745d796851 (changes from v242-stable) 07f0549ffe network: do not send ipv6 token to kernel 9d34e79ae8 systemd-mount: don't check for non-normalized WHAT for network FS 5af677680c core: set fs.file-max sysctl to LONG_MAX rather than ULONG_MAX (bsc#1142099) 29dda7597a random-util: eat up bad RDRAND values seen on AMD CPUs eb6c17c178 util-lib: fix a typo in rdrand 829c20dc8e random-util: rename "err" to "success" 5442366fbf man: rework the description of Aliases and .wants/.requires directories ae71c6f634 docs: typo in arg name replace-irreversible -> replace-irreversibly 09774a5fcb meson: make nologin path build time configurable 69ffeeb0b1 man: add note about systemctl stop return value 4cf14b5513 shared/conf-parser: say "key name" not "lvalue", add dot 4481ca7f86 shared/conf-parser: emit a nicer warning for something like "======" 46f3db894b shared/conf-parser: be nice and ignore lines without "=" 7d928995f7 nspawn: fix memleak in argument parsing 7727e6c0ae resolve: fix memleak 7f32a81976 journal: properly read unaligned le64 integers fa419099e5 activate: move array allocation to heap 815a9fef2a systemctl: print non-elapsing timers as "n/a" not "(null)" a4fc3c88f1 factory: include pam_keyinit.so in PAM factory configuration a453d63315 factory: add comment to PAM file, explaining that the defaults are not useful d9a5a70a59 factory: tighten PAM configuration 5e2d3bf80b test: make sure colors don't confuse our test 5fe3be1334 wait-online: change log level c49b6959d5 systemctl: emit warning when we get an invalid process entry from pid1 and continue 3c9f43eb03 systemctl: do not suggest passing --all if the user passed --state= 5964d1474e man: offline-updates: make dependence on system-update.target explicit a04dd26e03 alloc-util: drop _alloc_ decorator from memdup_suffix0() 7c46a694ca man: add example for setting multiple properties at once 1d72789271 man: CPUShares= is so 2015 45da304673 man: document that WakeSystem= requires privs bed58a06e4 man: document that "systemd-analyze blame/critical-chain" is not useful to track down job latency c5461f31b3 man: be more explicit that Type=oneshot services are not "active" after starting 455ee07abe man: document that the supplementary groups list is initialized from User='s database entry 5f0cb2616a alloc-util: drop _alloc_(2, 3) decorator from memdup_suffix0_multiply() 7bc336794d generator: downgrade Requires= → Wants= of fsck from /usr mount unit 66465c4381 systemctl: allow "cat" on units with bad settings ca937b49da pid1: fix serialization/deserialization of commmands with spaces 4bb3113023 growfs: call crypt_set_debug_level() correctly, skip if not needed 0db716771e cryptsetup: enable libcryptsetup debug logging if we want it c8b9b3956f cryptsetup: set libcryptsetup global log callback too 679b3f6b7f basic/log: fix SYSTEMD_LOG_* parsing error messages 8d6b5158aa units: add SystemCallErrorNumber=EPERM to systemd-portabled.service 6681fcd445 network: fix the initial value of the counter for brvlan 853ec5f458 man: Add some notes about variable $prefix for StateDirectory= e6d23358e9 sd-netlink: fix inverted log message 6feb862407 blockdev: filter out invalid block devices early 9f7c0dbc75 blockdev-util: propagate actual error 3f5355bcb9 man: document tmpfiles.d/ user/group resolvability needs c15b92cd98 man: fix wrong udev property name 9768a900d6 meson: drop duplicated source 15194f22ed cryptsetup-generator: fix luks-* entry parsing from crypttab c2475390b4 core: skip whitespace after "|" and "!" in the condition parser fdc754aeb7 shared/condition: fix printing of ConditionNull= 572385e135 test: add testcase for issue #12883 9aa1edddb0 conf-parser: fix continuation handling 8fbc72f45f networkd: fix link_up() (#12505)- State directory of systemd-timesync might become inaccessible after upgrading to v240+ (bsc#1137341) This happens for users who had previously used systemd-timesync with DynamicUser=true, ie the ones who upgraded from a systemd version between v235 and v239 to systemd v240 and later (v240 was the version where DynamicUser was switched back to OFF).- Import commit eaa7b8b148927d471609de75e542dffcc1b36df4 7e58b89136 udevd: change the default value of udev.children-max (again) (bsc#1107617)- Add 0001-rc-local-generator-deprecate-halt.local-support.patch /etc/init.d/halt.local support will removed from the next systemd version (v243) so for now on warn (hopefully the few) users who rely on this script so they have a chance to switch to systemd-shutdown interface.- Add 0001-Revert-insserv.conf-generator.patch (bsc#1052837) All remaining packages have been fixed so they don't rely on the insser-generator to generate proper deps. So let's drop it as all services should carry the proper dependencies itself.- Drop debug-only-remove-new-policies.patch The new DBUS methods have been reviewed by the security team.- Import commit 9984a86d0d2259d54c7060f9c09f214202b4efa7 f2459bf373 random-util: eat up bad RDRAND values seen on AMD CPUs c90a2e9793 util-lib: fix a typo in rdrand 4db1cc9d46 random-util: rename "err" to "success" 981a62a102 random-util: hash AT_RANDOM getauxval() value before using it 64a9c3d918 random-util: use gcc's bit_RDRND definition if it exists c5d6ecfdca random-util: rename RANDOM_DONT_DRAIN → RANDOM_MAY_FAIL 298d13df7e network: remove redunant link name in message 77cbde31f2 hwdb: Align airplane mode toggle key mapping for all Acer series 460f03794e Revert "hwdb: Apply Acer mappings to all Gateway and Packard Bell models" fe9271ad84 test: return a non-zero return code when 'nobody' user doesn't exist 29d355e755 fstab-generator: Prevent double free of reused FILE* f30f1adc11 meson: make source files including nspawn-settings.h depend on libseccomp 84bab914b8 alloc-util: don't use malloc_usable_size() to determine allocated size 5240972d8d units: drop reference to sushell man page 0a26de5e33 codespell: fix spelling errors 582de105c8 nspawn-expose-ports: fix a typo in error message- Buildrequire polkit so /usr/share/polkit-1/rules.d has an owner (bsc#1145023) Otherwise the "post build checks" would complain and would force systemd to own this directory. The owner should still be "polkit" and the perms should be in sync with the perm set by polkit itself.- Add debug-only-remove-new-policies.patch A temporary patch to suppress the new DBUS methods introduced by v242 until they are reviewed and whitelisted by the secteam.- Add a comment explaining why static enablement symlinks in /etc are suppressed Also remove any /etc/systemd/system/*.requires/ symlinks for the same reason.- preset remote-cryptsetup.target during package installation This target is supposed to be part of the targets that should be enabled (or not depending on the presets) at package installation.- Upgrade to v242 (commit 071c380dcc434dca2a0c8b6de0519cc9e816c6d6) See https://github.com/openSUSE/systemd/blob/SUSE/v242/NEWS for details. This includes the following bug fixes: - upstream commit bf65b7e0c9fc215897b676ab9a7c9d1c688143ba (CVE-2019-3843) - upstream commit bf65b7e0c9fc215897b676ab9a7c9d1c688143ba (CVE-2019-3844) - upstream commit 37ed15d7edaf59a1fc7c9e3552cd93a83f3814ef (bsc#1124122) - upstream commit bf65b7e0c9fc215897b676ab9a7c9d1c688143ba (bsc#1133506) - upstream commit bf65b7e0c9fc215897b676ab9a7c9d1c688143ba (bsc#1133509) - upstream commit 1f82f5bb4237ed5f015daf93f818e9db95e764b8 (bsc#1150595) - upstream commit e55bdf9b6c5f72475b258a7a4585a0480551cb60 (bsc#1173422)- Drop "BuildRequires: -post-build-checks" from the specfile (bsc#1130230) The syntax of this directive is obsolete and should be replaced by "#!BuildIgnore: post-build-checks". However there's no good reasons to disable these SUSE extra checks, so let's re-enable them and fix the few errors it detected.- Import commit 4e6e66ea94cf5125f9044f0869939a86801ed2d8 430877e794 pam-systemd: use secure_getenv() rather than getenv() (bsc#1132348 CVE-2019-3842) 3cff2e6514 man: document that if the main process exits after SIGTERM we go directly to SIGKILL 26c4f7191c bus: fix memleak on invalid message- systemd-coredump: generate a stack trace of all core dumps (bsc#1128832 jsc#SLE-5933) This stack trace is logged to the journal.- Stop installing macros.systemd There're no points in installing this file if we remove it right after.- Make sure systemd-network.rules take precedence over our polkit-default-privs (bsc#1125438)- Include the SUSE version along with the major version of systemd $ systemctl --version systemd 241 (+suse.42.g15a1b4d58) Note that the SUSE version format maybe subject to change and as such scripts should not try to parse it.- systemd-mini: explicitly disable some of the systemd components For some reasons, some build requirements get pulled in for the mini variant now, enabling some parts of the code that were expected to be turned OFF.- Upgrade to v241 (commit 15a1b4d58f1d2bc9c21c7cbab6fe63b58e48bda1) This includes the following bug fixes: - upstream commit c0d76959080e3ba6534bce1c7053c750668e8b55 (bsc#1160595) - upstream commit 7334ade4a7e103b1a01d1c8fe1ea7c7a854a1c31 (bsc#1123892) - upstream commit c7e93c4d15019323973baf12daa76357c83892c4 (boo#1111498) This also includes the following bug fixes released in v240: - upstream commit 2675747f3cdd6f1e6236bbb2f79abfa53fb307f1 (boo#1111498) - upstream commit 9eb0fc32d6cb63e71f2cfc1e7dd34c3ede4b48a3 (bsc#1140631) - upstream commit 1432d2dbdfa90963272a9b581dc4b55dd3ac514f (bsc#1155574) - upstream commit 26e35b164b8d0603629b3d394554cfa728e8c3e4 (bsc#1169488) - upstream commit a9fc640671ef60ac949f1ace6fa687ff242fc233 (fate#325697)- Import commit a1d86af7ed49dacef671e8ec8dae9472a8fa47f5 92d860fc12 sysctl: Don't pass null directive argument to '%s' (bsc#1121563) 1379e30d59 Allocate temporary strings to hold dbus paths on the heap (bsc#1125352 CVE-2019-6454) b5569a03ae Refuse dbus message paths longer than BUS_PATH_SIZE_MAX limit. (bsc#1125352 CVE-2019-6454)- Import commit 01b4746d3c6f6cbf969fa2176c77ac3f616a7eda 7af53e005b sd-bus: if we receive an invalid dbus message, ignore and proceeed 92dcbfdd7f bus: move BUS_DONT_DESTROY calls after asserts a83e7b3b43 automount: don't pass non-blocking pipe to kernel. 726127ea1d units: make sure initrd-cleanup.service terminates before switching to rootfs (bsc#1123333) a6347a3cb6 core: Fix use after free case in load_from_path() (bsc#1121563) 22e2550222 strv: rework FOREACH_STRING() macro (bsc#1121563) 2ddd38f41a test,systemctl,nspawn: use "const char*" instead of "char*" as iterator for FOREACH_STRING() c2c8333e0b strv: add new macro STARTSWITH_SET() 1db243a601 Update systemd-system.conf.xml (bsc#1122000)- Import commit ad34cc45f63720ced69960dc66b47bddb146176d Import a bunch of fixes from stable/v239-stable: c8293f5af4 Revert "network: set DynamicUser= to systemd-networkd.service" 7f605592e6 Revert "resolve: enable DynamicUser= for systemd-resolved.service" 5a48e92e06 test: Fix networkd test for an already running service 36eae1688b Revert "timesyncd: enable DynamicUser=" 3a11f24cf0 Revert "unit: drop After=systemd-sysusers.service from timesyncd" 23cfd15ce9 machinectl: fix verbosity of import-raw or friends ba037daf29 Make bzip2 an optional dependency for systemd-importd fb609d2721 pull: initialize libgcrypt before calling any functions provided by libgcrypt c50857bc6b hwdb: remove stray 'i' in hwdb match string for the HP Spectre (#9571) 9a12fd17f5 man: Mention that paths in unit files must be fully normalized. 76fc2ab4a6 tree-wide: use instead of #ifdef for HAVE_* fcc699c093 network: update log message a4f497b2cd Use #if instead of #ifdef for ENABLE_GSHADOW 121c662eb8 man: add missing option for system.conf 564341146e core: add missing option and drop nonexistent option in system.conf 7082a3599f journal: add missing option in journald.conf 3c15efa9c1 basic: add missing comma in raw_clone assembly for sparc 4c210b6dce cryptsetup: Add dependency on loopback setup to generated units c777fbbe3e journal-gateway: use localStorage["cursor"] only when it has valid value c5b1bef639 journal-gateway: explicitly declare local variables 2361522ca6 analyze: actually select longest activated-time of services 3e810d92d9 sd-bus: fix implicit downcast of bitfield reported by LGTM aef660a4cf resolvconf: fixes for the compatibility interface 06b3f54f50 install: fix error handling in is_symlink_with_known_name() f70ab9a468 portable: fix error handling d2c40d4e80 resolve: fix return value type of dns_answer_has_dname_for_cname() 6f684e0670 resolve: dns_scope_network_good() does not returns negative errno 15d83e1138 bus-util: fix error handling ba0a1f3384 core: free lines after reading them- Import commit 3bece8a25ae11e8ec132cdecc7e72a00ee790994 89a9721a47 Revert "logind: become the controlling terminal process before restoring VT" (bsc#1120836) c3a8dc821b pam_systemd: reword message about not creating a session 0ba0f5b3ef pam_systemd: suppress LOG_DEBUG log messages if debugging is off- Import commit a3b059a8c60622e4ec30aabda93c6b41d0953dc4 9dbe9f12ec journal-remote: set a limit on the number of fields in a message (CVE-2018-16865 bsc#1120323) 61d569ab1b journal-remote: verify entry length from header a08760b26c µhttpd: use a cleanup function to call MHD_destroy_response 43f46a1a3d journal-gateway: use _cleanup_ attribute to stop microhttpd daemon 437b0b2d01 journald: lower the maximum entry size limit to ½ for non-sealed fds ac9e209710 journald: when processing a native message, bail more quickly on overbig messages ce103705b9 journald: set a limit on the number of fields (1k) (CVE-2018-16865 bsc#1120323) 35538171c2 coredump: fix message when we fail to save a journald coredump cfe247b555 basic/process-util: limit command line lengths to _SC_ARG_MAX 9d59e6f6ee journald: do not store the iovec entry for process commandline on stack (CVE-2018-16864 bsc#1120323) 8d650a68d4 journald: remove unnecessary {} b608f532a4 coredump: remove duplicate MESSAGE= prefix from message 0dbb2dc066 vconsole-setup: fonts copy will fail if the current terminal is in graphical mode (bsc#1114933) e501d65540 Revert "systemctl: when removing enablement or mask symlinks, cover both /run and /etc" d3ea69961f fs-util: rename safe_transition() into unsafe_transition() 338470fdc9 tmpfiles: use CHASE_WARN in addition to CHASE_SAFE d9ae1b30da fs-util: make chase_symlink() returns -ENOLINK when unsafe transitions are met 8b76594d1f fs-util: add new CHASE_WARN flag to chase_symlinks()- Import commit 8ae56af7802ef8f91fac64fa244d62a4468fbbd5 4474878178 udev-builtin-kmod: adjust logging 805534aff5 core: use the generic module_load() function ac7e902530 shared/module-util: fix preexisting mixup with errno sign 415aa40793 udev-builtin-kmod: use the generic module_load() function 8a36b4bac6 Move module-util.h to src/shared/ and load_module() to libshared 999b910752 core/kmod-setup: restore comments 1f2b822a21 logind: stop managing VT switches if no sessions are registered on that VT 5ad8d374c5 terminal-util: introduce vt_release() helper 145d492490 logind: become the controlling terminal process before restoring VT (bsc#1101591) d4b5dbc033 terminal-util: introduce vt_restore() helper 2e8af185f0 logind: make session_restore_vt() static ff3048364f udev: downgrade message when we fail to set inotify watch up (bsc#1005023)- Fix the test for figuring out if /etc/machine-id is writable in %post (bsc#1117063) "test -w" always returns true for root user even if the writable mode bits are not set. Fix this by testing the file mode bit value instead.- Move systemd-sysv-convert from /usr/sbin to /usr/lib/systemd This tool is not supposed to be run by users.- Import commit 69f9f79e1b03e3d23df25b61cbcc9304af3e358f (bsc#1080919 CVE-2018-6954) f3615ce49 tmpfiles: don't adjust qgroups on existing subvolumes (bsc#1093753) 7165e92f4 tmpfiles: use fd_get_path() even less excessively c2c531c1d test: make TEST-22 easier to debug, by outputting to /dev/console 621b78317 test: don't use "nobody:nogroup" for tests 1f9c7acad tmpfiles: return correct error variable after fd_reopen() 2236280c1 tmpfiles: reindent one comment less weirdly f6bdfb889 tmpfiles: use correct error variable bc75127cd tmpfiles: clarify that we ignore file attribute setting errors 621c8b1fe tmpfiles: add log message where we previously failed silently bc9229630 tmpfiles: use fd_get_path() less excessively 5a1106039 tmpfiles: add more tests c974086cc tmpfiles: don't follow unsafe transitions in path_set_*() e64a510eb fs-util: add new CHASE_NOFOLLOW flag to chase_symlinks() 7480154d0 tmpfiles: make create_fifo() safe eb890962c fs-util: introduce mkfifoat_atomic() helper 653bb81af fileio: make tempfn_random_child() accept empty string as path 2b1e12bfe tmpfiles: introduce create_fifo() 6dd80f289 tmpfiles: introduce empty_directory() f2c137edf tmpfiles: introduce create_directory() and create_subvolume() and make them safe 6a76f6dfb basic/stat-util: introduce is_dir_fd() 38a7f2e81 btrfs-util: unfuck tmpfiles' subvol creation 26e19b6fe btrfs-util: introduce btrfs_subvol_make_fd() 5fb5bdf5d basic/label: introduce mkdirat_label()/mkdirat_errno_wrapper() helpers 390b767da selinux: introduce mac_selinux_create_file_prepare_at() 0f72fadba smack: introduce mac_smack_fix_at() f2838154b tmpfiles: introduce create_directory_or_subvolume() 2de697fb8 tmpfiles: make create_device() safe 558c5fec7 tmpfiles: introduce create_device() dee986b1d tmpfiles: make copy_files() safe cacb14d3f tmpfiles: introduce copy_files() routine 81c85ce17 tmpfiles: make write_one_file() safe 9ec6b92ab tmpfiles: make truncate_file() safe 8dde36e03 tmpfiles: introduce truncate_file() which deals with 'F' exclusively 481134a93 tmpfiles: introduce create_file() which deals with 'f'/'F' exclusively 057861560 tmpfiles: make the stat struct parameter in fd_set_*() optional f37caffda tmpfiles: stat file in item_do() rather than in its callers 86f1362d4 tmpfiles: set only default acls to folders #9545 (#9599)- Make systemd-mini-sysvinit provides systemd-sysvinit Some packages (such as shepherd-bins) want to conflicts with systemd-sysvinit: they should also conflict with systemd-mini-sysvinit.- Add 0001-logind-keep-backward-compatibility-with-UserTasksMax.patch We have to keep support for UserTasksMax= for a while before dropping it. This patch is supposed to do that and also to make users aware of this change. It also hints how to configure that differently.- Import commit f39674d6d114d999c50672c7bea8cad21e1eaed9 7d1e04e85 units: use =yes rather than =true everywhere 185ce0d34 units: assign user-runtime-dir@.service to user-%i.slice a051f5e41 units: make sure user-runtime-dir@.service is Type=oneshot 30c6842c3 units: set StopWhenUnneeded= for the user slice units too e74de046e login: fix typo in log message- Own %{_libexecdir}/modules-load.d (again) This was incorrectly dropped during the split of the SUSE specific configurations.- Drop a Conflicts: in systemd-coredump It not needed anymore since the mini variant of systemd-coredump is not built anymore.- Import commit b54f5d7a8b41898ce98f43cd1a6cc92c0071806d 5def29d24 coredump: only install coredump.conf when ENABLED_COREDUMP=true 9133e2d6e dhcp6: make sure we have enough space for the DHCP6 option header (bsc#1113632 CVE-2018-15688) ebc3fa418 dhcp6: split assert_return() to be more debuggable when hit 51eefb6ac chown-recursive: let's rework the recursive logic to use O_PATH (bsc#1113666 CVE-2018-15687) e1e1aa237 core: skip unit deserialization and move to the next one when unit_deserialize() fails 1c726c87d core: when deserializing state always use read_line(…, LONG_LINE_MAX, …) (bsc#1113665 CVE-2018-15686) 4cd7d11ac core: don't create Requires for workdir if "missing ok" (bsc#1113083)- Make systemd-coredump sub-package optional and don't build the mini variant.- Drop duplicated %{?mini} suffix for systemd-{container,coredump} subpackages "-mini" is already part of the name of the main package so there's no need to append it again for those sub packages. It's only needed when the name of a subpackage is completely redefined, IOW when '-n' option is used with the %package directive.- Dont ship /usr/sbin/resolvconf symlink for now It conflicts with the bin shipped by openresolv and provides limited compat only.- Upgrade to v239 (commit 6d8584e7e8e5d13d2bab49b9e6f6d2ec39759978) This includes the following bug fixes: - upstream commit 0722b359342d2a9f9e0d453875624387a0ba1be2 (bsc#1045723) - upstream commit 2f2e14b251b9929e84e8b690d0187b766dfbae20 (bsc#1124122) - upstream commit c839b729c5f7b08f6d91bf9567d0b1f91d17e0f7 (bsc#1155207) - upstream commit 8eebb6a9e5e74ec0ef40902e2da53d24559b94a4 (bsc#1168076) This also includes the following bug fixes released in v238: - upstream commit e8a3144ec4ff332bd63644e468a98e1a7e06e7e4 (bsc#1112024) - upstream commit 4d219f5343b1924e7c519c2c178aeb5d1a5ab924 (bsc#1123727) - upstream commit 43b7f24b5e0dd048452112bfb344739764c58694 (bsc#1146991) - upstream commit bf443be99565e4327f1c8c12b79d98b4c1529cf1 (bsc#1156213)- Ship systemd-sysv-install helper via the main package This script was part of systemd-sysvinit sub-package but it was wrong since systemd-sysv-install is a script used to redirect enable/disable operations to chkconfig when the unit targets are sysv init scripts. Therefore it's never been a SySV init tool. While at it, don't ship this script (as well as systemd-sysv-convert) when sysvcompat is not defined.- Import commit 19b3868d32af20f1ecc86fe3c997144ff456fd65 06c2284d64 core: introduce systemd.early_core_pattern= kernel cmdline option 479b002083 core: add missing 'continue' statement c7fbccc62e journald: don't ship systemd-journald-audit.socket (bsc#1109252) f17a6c790c detect-virt: do not try to read all of /proc/cpuinfo (bsc#1109197) 5a1aa84544 compat-rules: generate more compat by-id symlinks for NVMe devices (bsc#1095096)- Import commit a67b516d49115a5be0f2ac27a2874cee6c59a7ae f8457adf9d emergency: make sure console password agents don't interfere with the emergency shell b8bbb50634 man: document that 'nofail' also has an effect on ordering a5410b2229 journald: take leading spaces into account in syslog_parse_identifier b793c312c7 journal: do not remove multiple spaces after identifier in syslog message f9595f0481 syslog: fix segfault in syslog_parse_priority() d464f06934 journal: fix syslog_parse_identifier() e70422883a socket-util: attempt SO_RCVBUFFORCE/SO_SNDBUFFORCE only if SO_RCVBUF/SO_SNDBUF fails (bsc#991901)- split off SUSE specific udev rules from systemd package (fate#325478) * remove 60-io-scheduler.rules * remove 80-hotplug-cpu-mem.rules * remove 99-wakeup-from-idle.rules * remove /usr/lib/modules-load.d/sg.conf (see bsc#1036463 for details) these are now maintained in the new package system-tuning-common-SUSE- Enable or disable machines.target according to the presets (bsc#1107941)- Import commit cc55f1ea9e1c1ccab5b9fb97e10e08830d02b282 962b38aaf user@.service: don't kill user manager at runlevel switch (bsc#1091677) 3986c4d82 units: make sure user@.service runs with dbus still up 5e68aa0f2 Revert "udevd: increase maximum number of children" (bsc#1107617) 099138fd9 fix race between daemon-reload and other commands (v237) (bsc#1105031)- Import commit 6ac2232d88f4b64428511a4692a51bd00d610b32 6247696db nspawn: always use mode 555 for /sys (bsc#1107640) 72f558b57 cryptsetup: do not define arg_sector_size if libgcrypt is v1.x (#9990) cfcd97cf2 cryptsetup: add support for sector-size= option (#9936) (fate#325634)- Import commit bb5a925bcefd4743873cae3f748ae1a426e92d44 8983bd246 core: don't include libmount.h in a header file (#8580) 3e4156a8f tmpfiles: don't adjust qgroups on existing subvolumes (bsc#1093753) 42edc93ac core/service: rework the hold-off time over message- Enable regexp matching support Currently only used by "journalctl --grep=xxx".- Import commit 0350f62a8cf7f151951b6b78337fe3c198b8bf6a fbf43a697 core: don't freeze OnCalendar= timer units when the clock goes back a lot (bsc#1090944) 4134ba8b6 man: SystemMaxUse= clarification in journald.conf(5) (bnc#1101040) 78bb2a0c4 socket-util: fix getpeergroups() assert(fd) (#8080) (bsc#1096516) 1753d0420 systemctl: mask always reports the same unit names when different unknown units are passed (bsc#1095973) 50ebf79d7 scsi_id: Fixup prefix for pre-SPC inquiry reply (bsc#1039099) 570f7655b locale-util: on overlayfs FTW_MOUNT causes nftw(3) to not list *any* files- Drop runtime dependency on dracut (bsc#1098569) Otherwise systemd pulls in tools to generate the initrd even in container/chroot installations that don't have a kernel anyways. For environments where initrd matters, dracut should be pulled via a pattern.- Import commit f63623c1fc0eb01b8efc2037d004f42ed8328356 6a161916f device: make sure to always retroactively start device dependencies (take #2) (bsc#1088052) e4402648c Fix pattern to detect distribution ad59c7970 install: "user" and "global" scopes are equivalent for user presets (boo#1093851) b1876c81a rpm: remove confusing --user before --global 00ea8a214 man: updated systemd-analyze blame description for service-units with Type=simple (#8834) (bsc#1091265) a9b587e2f fileio.c: fix incorrect mtime- Add 0001-resolved-create-etc-resolv.conf-symlink-at-runtime.patch (boo#1024897) - Ship systemd-resolved (but disabled by default) (bsc#1018387)- Disable user units by default (bsc#1090785)- Slight rewrite of the previous fix- align permissions of /etc/machine-id to upstream code (bsc#1092269) world writeable machine-id is a security issue- Move 80-container-v[ez].network in systemd-container sub-package - Move 80-container-host0.network from udev to systemd- Import commit d8196805089566ecd846b7c627ff2f3c42588c50 621b247f3 device: skip deserialization of device units when udevd is not running a7da5bdbc device: make sure to always retroactively start device dependencies (bsc#1088052) 303624f6f systemd-udevd: limit children-max by available memory (#8668) (bsc#1086785 bsc#1066422) 76acf3ae9 tmpfiles: fix directory removal with force symlink (#8619)- Ship 99-sysctl.conf instead of creating it during package installation/update (bsc#1088769) Previously this symlink was created in /etc/sysctl.d during %post which made the symlink not owned and more importantly it was created only if /etc/sysctl.conf is already installed which is not always the case during the installation process it seems. So ship the symlink unconditionally and put it in /usr/lib/sysctl.d instead since it's a distro default behavior that might be overriden by sysadmin later.- Be consistent in 60-io-scheduler.rules And use "?*" when checking for the non empty string (instead of "*?").- /usr/lib/systemd/systemd-coredump was missing from systemd-coredump sub-package (boo#1088057)- Drop systemd-bash-completion sub-package Now we directly ship the completion scripts from the main package as we already do for zsh. I couldn't see any advantages in this split.- Be more accurate when specifiying the tools version we provide- Make sure rpm won't expand %autopatch even if it's commented- stat(1) as well as systemctl are not use in %post section of udev So remove stat(1) from the list of dep and move systemctl to the requirements of %postun since it's called from there.- Import commit 14b3e00c3ccb8c1c82c8a2e99a9534750880a09e e0a8285e2 pid1: when creating service directories, don't chown existing files (#8181) (boo#1085971) fb25886b1 Fix format-truncation compile failure by typecasting USB IDs (#8250) (bsc#1084638) 5a6e9c92e sysusers: make sure to reset errno before calling fget*ent() c2e1ee488 sysusers: also add support for NIS entries in /etc/shadow 51cb94fa1 sysusers: do not append entries after the NIS ones (bsc#1085062 bsc#1045092) 783f3d368 basic/macros: rename noreturn into _noreturn_ (#8456) - Drop 0001-basic-macros-rename-noreturn-into-_noreturn_.patch It's been merged in the git repo.- Rename the tarball (bsc#1087323) So it's clear that it contains some additional patches on top of the upstream version. Use the commit hash in the name so the exact version can easily be identified. Provide _service file which can be used to retrieve the tarball from the git repo (with "osc service disabledrun").- Split systemd-coredump sub-package off (bsc#1083849)- Enhance IO scheduler tweaking rules to support blk-mq as well * Set optimal blk-mq schedulers (bfq and mq-deadline for HDD and SSD respectively) * Explicitly set CFQ for rotational disks when no `elevator` is specified * Verbose comments explaining what is going on * Rename the rules file since it is not ssd-only anymore- Don't ship machines.target in systemd-container but in systemd main package machines.target is supposed to be a standard target for starting/stopping all containers. systemd-nspawn is the main user of it but other container managers could also make use of it.- Build a mini variant of systemd-container So we don't have to manually track and remove all files that should be shipped by systemd-container in the case of a bootstrap build.- Run migrate-sysconfig-i18n.sh also during package installation (bsc#1086164) This is needed when we upgrade from SLE11.- Add 0001-basic-macros-rename-noreturn-into-_noreturn_.patch This fix a build error triggered by the introduction of the new version of libgpg-error package. Patch submitted to upsream: https://github.com/systemd/systemd/pull/8456- Turn off the IP sandboxing for systemd-logind Since v235 logind run inside an IPv4/IPv6 sandbox by default. This creates incompatibilites for systems using NIS.- Restore (maybe temporarly) "pam_config --add systemd" During its installation pam-config seems to overwrite the defaults shipped by "pam" for "some" reasons (see bsc#1084924) No idea why but since pam_systemd is not part of the "pam-config" defaults, we need to restore pam_systemd in common-session manually...- Remove dropin that was used to turn delegation off for user instances Upstream now enables "memory" and "pids" controllers only which should have a very limited impact on performance compare to the "cpu" controller.- Import commit 46d6bc9c4f1c05f3b4fcfca754cc59963bd86ce3 2a79f4e78 units: delegate "memory" instead of "cpu" by default for user instances (#8320) (bsc#954765 bnc#953241 fate#320421) 88174ae85 compat-rules: fix syntax errors spotted by test/rule-syntax-check.py- Remove udev-remount-tmpfs script Complete the previous commit.- Fix hotplug memory in 80-hotplug-cpu-mem.rules When new memory was hotplugged, the rule was supposed to call an external script (udev-remount-tmpfs) to remount all tmpfs. However the script was broken since its introduction (commit rev=715, 14/07/2014) and had no effects... this makes me wonder if we shouldn't get rid of this...- Make sure /var/lib/machines is created when systemd-container is installed- BS forces us to own %{_prefix}/lib/modprobe.d This seems wrong but that's how the SUSE BS works.- Upgrade to v237 (commit 78221ca750a9c266f9f8497dda59d7ee44000a6c) Udev rules 60-ssd-scheduler.rules and 80-hotplug-cpu-mem.rules have been removed from the git repo and are now maintained at the package level. Those rules have been rejected by upstream as they seem to be written to workaround some kernel shortcomings... This includes the following bug fix: - upstream commit 3d083b2245b0b8e52f2d8ccc3e55246f41f1f544 (bsc#1102908) This also includes the following bug fixes released in v235: - upstream commit 2e64e8f46d726689a44d4084226fe3e0ea255c29 (bsc#1069239) - upstream commit 79873bc850177050baa0c5165b119adafeebb891 (bsc#1069239) - upstream commit 4bc5d27b942afa83cc3d95debd2ad48d42ac07a8 (bsc#1089376) - upstream commit e9ea4526a3a3b41eced29b8d742498cc36750424 (bsc#1089693) - upstream commit d75b31837c93dbb9b20067719026ad0fb7cdfadd (bsc#1117025) - upstream commit 0e8856d25ab71764a279c2377ae593c0f2460d8f (bsc#1117025) - upstream commit 048dd629c4590eefb2ebd6a316c7350ed3a6ff19 (bsc#1119971) - upstream commit 9b32afa9f241fe8febc0a754850f1e7331caf6e3 (bsc#1126056) - upstream commit e6dde451a51dc5aaa7f4d98d39b8fe735f73d2af (bsc#1137053) - upstream commit 0864d311766498563331f486909a0d950ba7de87 (bsc#1158336) - upstream commit d60cb656fc63c24b430421764b7d0322857d34fd (bsc#1161262) - upstream commit e2be442e791fa1150aa835c684acc6d7189de3e1 (bsc#1165011) - upstream commit 64a36ae4b1dd23474dd7ea261381ac437b24fac2 (bsc#1172072) - upstream commit b001ad61e91b6499897f0c977045c7608c233bfa (jsc#SLE-7687) - includes IP filtering feature (jsc#SLE-7743) This also includes the following bug fixes released in v236: - upstream commit b3b4ebab02395933cde554b5a5d5c363dae3920d (bsc#1083571) - upstream commit 3e3852b3c6c61506963112fd218a86b673fc61e6 (bsc#1110445) - upstream commit 4050e4797603d3644707d58edfd9742b5311c7cf (bsc#1124153) - upstream commit 8cb83266062b383cdd4a57301ef559d64b491c51 (bsc#1125604) - upstream commit 19a44dfe4525ab01caf593a9c2beada4b412910d (bsc#1156482)- add basic user space support for suspend to idle (fate#323814) add 99-wakeup-from-idle.rules Currently this only covers the power button and usb/AT keyboards as wakeup devices. It is planned to make that configurable in the future.- Don't call "pam-config --systemd" pam_systemd.so has been integrated directly in the PAM stack since bsc#812462. So there's no need to call pam-config.- Fix build errors due to the split-off of systemd-containe: found conflict of systemd-234-33.1.x86_64 with systemd-container-234-33.1.x86_64: - /usr/share/man/man5/systemd.nspawn.5.gz - /usr/share/man/man1/systemd-nspawn.1.gz found conflict of systemd-container-234-33.1.x86_64 with systemd-mini-container-234-33.1.x86_64: - /usr/bin/systemd-nspawn - /usr/lib/systemd/system/systemd-nspawn@.service - /usr/lib/tmpfiles.d/systemd-nspawn.conf- Use %license (boo#1082318)- Split systemd-container sub-package off (fate#325469) Other distros already do it and it seems a good idea to not install this stuff on new installations by default. At least /var/lib/machines subvol is not created anymore at boot even if it wasn't used at all.- Import commit 295ead0f396beb2b5199abd99a17e274c2581f95 f4f94ab2e meson: install rules/80-hotplug-cpu-mem.rules 2901aa9b9 meson: install rules/60-ssd-scheduler.rules 1293c0056 core: use id unit when retrieving unit file state (#8038) (bsc#1075801) 596b2b241 Revert "vconsole-setup: add SUSE specific settings for font/keyboard in sysconfig" 0b595da04 Revert "locale-setup: handle locale at boot time well"- Re-enable systemd-firstboot It's used by the installer and also by JeOS.- Use %systemd_post in %post- Own /usr/lib/systemd/system-environment-generators directory- More systemd rpm macro usages- Disable systemd-firstboot I don't think there's any use case for it currently.- Use systemd rpm macros in paths defined in the specfile- Stop importing i18n settings from /etc/sysconfig (fate#319454) Bits taken from SLE15.- Make systemd-timesyncd use the openSUSE NTP servers by default Previously systemd-timesyncd used the Google Public NTP servers time{1..4}.google.com- Import commit 4a6a1e4f0b02e6cedf7eba93b85a6dd968f875c7 db1d8eacd compat-rules: make path_id_compat build with meson - Drop 0001-compat-rules-make-path_id_compat-build-with-meson.patch which is now part of the git repo (see above).- Don't ship /usr/lib/systemd/system/tmp.mnt at all (bsc#1071224) The previous fix couldn't work on platforms using a RO rootfs. Therefore we don't ship /usr/lib/systemd/system/tmp.mnt but we still ship a copy in /usr/share/systemd. Users who want to use tmpfs on /tmp are supposed to add a symlink in /etc/ pointing to the copy shipped in /usr/share/systemd. To support the update path we automatically create the symlink if tmp.mount in use is located in /usr/lib/systemd.- Don't build seccomp support in the mini package- Switch to Meson build system Some rearrangement in the file list was also needed. That was probably due to the upgrade of rpm.- Import commit 0a5600eb7f8263c7c79fec0d85cc159d54aba636 2a181fc6f insserv-generator: make it build with meson 7b0401da4 build-sys: don't build networkctl if networkd is disabled- Don't build-require selinux for the mini package- Drop libgcrypt.m4 The mini package builds fine without it so it doesn't seem necessary anymore.- Import commit 846d838c37865da60eba48090e570e959291399f b1e0a348d fileio: include sys/mman.h f1fa784cb meson: update header file to detect memfd_create() 8838ba7ec meson: define _GNU_SOURCE to detect copy_file_range() (#7734) 531a00c84 Restore "restore /var/run and /var/lock bind mount if they aren't symlink"" (the 3 first commits make systemd build against glibc 2.27)- Import commit 3f421e4fbf6fcb31d74caf729435868ba8824483 7fb9ea39a Revert "restore /var/run and /var/lock bind mount if they aren't symlink" 23ce1207a meson.build: make docdir configurable (#8068)- Import commit 8ec9f58d334c76e736957812d9e57151502a6f63 07c6ee3eb compat-rules: get rid of scsi_id when generating compat symlinks for NVMe devices (bsc#1051465) 261a4ef38 compat-rules: generate compat by-id symlinks with 'nvme' prefix missing (bsc#1063249)- Drop 0001-compat-rules-get-rid-of-scsi_id-when-generating-comp.patch It's been imported in branch "compats/udev-compat-symlinks" which has been merged in branch "openSUSE-Factory" in its turn.- Import commit c516268845b0fd0683cef2e491b84077371e8f01 37da1facb core: disable session keyring per system sevice entirely for now (bnc#1045886) 8a1ae0449 strv: fix buffer size calculation in strv_join_quoted()- Drop 0001-core-disable-session-keyring-per-system-sevice-entir.patch It's been merged in branch "SUSE/v234".- Import commit 2087a80d56bb6f8c7fb74a19172259bc9d9af866 2b8971b8a tmpfiles: refuse to chown()/chmod() files which are hardlinked, unless protected_hardlinks sysctl is on (bsc#1077925 CVE-2017-18078) 8c2bcac25 tmpfiles: change ownership of symlinks too- Do not optionally remove /usr/lib/systemd/system/tmp.mnt anymore (bsc#1071224) This was done to make sure that tmpfs wouldn't be used for /tmp by defaut in case the dir layout created by the installer did not create a customized tmp.mount. But it had the bad side effect to break "rpm -V systemd" and updates of systemd via delta-RPMs. Now instead of removing tmp.mount unit file, we mask it (still only if no other tmp.mount would override the default one). It's the official way to disable tmpfs on /tmp after all. Since we cannot rely on the presence of fstab during package installations, we introduced a service which is run once on the first boot and which figures out if tmpfs would be used. If so it masks the unit. We also handle the upgrade path and make sure to preserve admin's settings (if any). Another advantage of this is that we will only need to remove the introduced service the day when tmpfs will be the default for SUSE distros.- Import commit 83067827cc891ddc90def200fdbe725917ec9fa3 3d60486f7 core/timer: Prevent timer looping when unit cannot start (bsc#1068588) 460bd0cd6 Revert "handle SYSTEMCTL_OPTIONS environment variable" (fate#323393)- Import commit cc94ce8513221061898c83f57862544b16021f0e aa3eba828 delta: don't ignore PREFIX when the given argument is PREFIX/SUFFIX b1ea0173a delta: extend skip logic to work on full directory paths (prefix+suffix) (bsc#1070428) 77c5065f9 delta: check if a prefix needs to be skipped only once db32866d1 Fix parsing of features in detect_vm_xen_dom0 (#7890) (bsc#1048510) 11d40461a sd-bus: use -- when passing arguments to ssh (#6706) 1148d99f6 tmpfiles: consider /etc uninitialized also when /etc/machine-id is present but empty (#7849) (bsc#1075179) 3a95f69bf tmpfiles: downgrade warning about duplicate line- Edit scripts-systemd-fix-machines-btrfs-subvol.sh We shouldn't be creating a /var/lib/machines subvolume if /var is already a seperate partition or subvolume. /var/lib/machines will already be excluded from snapper & similar tooling in this case.- Import commit 82dbe8a2ae56649231111eaadd4c302a2d2175ee 8c7f0c449 service: Don't stop unneeded units needed by restarted service (bsc#1066156) 869be64ce sysctl: use raw file descriptor in sysctl_write (#7753) 0c2400810 sysctl: disable buffer while writing to /proc (bsc#1071558) 9eb1f30b8 Use read_line() and LONG_LINE_MAX to read values configuration files. (bsc#1071558) 4dbea654f def: add new constant LONG_LINE_MAX 48f14cd71 fileio: add new helper call read_line() as bounded getline() replacement 861e1a222 build-sys: udevadm should have LOG_REALM=LOG_REALM_UDEV 8ed5cf3fb meson: libudev_core and udevadm should have LOG_REALM=LOG_REALM_UDEV (#7666) a9f93f1d0 virt: use XENFEAT_dom0 to detect the hardware domain (#6442, #6662) (#7581) (bsc#1048510) fe56abdf9 seccomp: arm64/x32 do not have _sysctl c9194fe37 seccomp: arm64 does not have mmap2 31d9b3c32 fs-util: small tweak in chase_symlinks() 9dd0bc7a3 meson: do not include man/meson.build if xsltproc not found 7e29e2b07 analyze: replace --no-man with --man=no in the man page (bsc#1068251)- Add missing /etc/systemd/network directory- Import commit e30f1b10e276fb18db10ea2463fbd7146ae778f6 63481b24b firstboot: do not write vconsole.conf when arg_keymap is empty (bsc#1070124)- Add 0001-compat-rules-get-rid-of-scsi_id-when-generating-comp.patch (bsc#1051465) This patch is not yet merged in the 'compats/udev-compat-symlinks' branch: we asked to upstream if it would be possible to introduce a new specifier that wouldn't strip trailing whitespaces , see https://github.com/systemd/systemd/issues/7462 Also this allows to give the patch more testing before merging it in the git repo.- Drop a useless rm(1) from the specfile- Remove requires for pwdutils, we don't need the shadow tools anymore [bsc#1069150]- Import commit 4b9afa11f918796184e1264d618b4ff5d18e481b 22dcb1d04 tmpfiles: when /etc is not fully initialized, some specifiers are expected to be unresolvable (#6860) (bsc#1055664) 216beb768 tmpfiles: Allow create symlink on directories (#6039) baf85eb79 udev: net_setup_link: don't error out when we couldn't apply link config (#7328) - Remove stderr redirection to /dev/null when calling %tmpfiles_create since it's not needed anymore due to commit 22dcb1d04. Indeed the messages are no more emitted at LOG_WARN but LOG_NOTICE.- Import commit b9a41367b6c1164318443491cc3dae0e8208e15c 86804326f systemd-firstboot: add vconsole keymap support (#7035) (bsc#1046436) 9b64225e9 resolved: fix loop on packets with pseudo dns types (bsc#1065276 CVE-2017-15908) - Drop 0001-systemd-firstboot-add-vconsole-keymap-support.patch since it's been merged upstream and backported to SUSE/v234 (see above).- Import commit e44237e76f6e133e62ff6c681d3fd06ebf12f66d a4e02c099 udev-rules: all values can contain escaped double quotes now (#6890) d2b767a76 tmpfiles: remove old ICE and X11 sockets at boot (#6979)- Add 0001-systemd-firstboot-add-vconsole-keymap-support.patch (bsc#1046436) Temporary patch until it's been merged by upstream, see https://github.com/systemd/systemd/pull/7035- Damn forgot to drop 0001-Revert-core-device-Use-JobRunningTimeoutSec-for-devi.patch in the spec file- Import commit 6dea894131d78b20b9e0482f75afa6ee4dec8627 1cdd944b0 unit: when JobTimeoutSec= is turned off, implicitly turn off JobRunningTimeoutSec= too (bsc#1004995) This make 0001-Revert-core-device-Use-JobRunningTimeoutSec-for-devi.patch not needed anymore.- Import commit 93688f8e53b4e482a55a7d4aba2d927ddedebdde c53522be3 compat-rules: allow to specify the generation number through the kernel cmdline- Import commit c1e8af7d1e8b09c2878a5b17f513bfc41ae46dc6 982754275 build-sys: make sure 61-persitent-storage-compat.rules is installed with meson 9ac2e8b9b udev: proc_cmdline_get_key() FTW! (#6925)- Import commit 9e0985dc330b1cf04bc44049962343bdf4ba851a 4fd7cd041 pam_logind: skip leading /dev/ from PAM_TTY field before passing it on dd6312828 logind: make sure we don't process the same method call twice (#6583)- Update scripts-systemd-upgrade-from-pre-210.sh script - drop dependency on awk - fallback to runlevel #3 if something goes wrong Note: I'm not sure how this is supposed to work as /etc/inittab is likely to be missing in my understanding. Indeed this file is part of the aaa_base package which might be upgraded before systemd is installed...- Drop macros.systemd.upstream as it's not used- Import commit 58ea3c819cca1639ef8c922505c573ba5e262b3d 334945091 shutdown: fix incorrect fscanf() result check (#6806) 027202892 shutdown: don't remount,ro network filesystems. (#6588) (bsc#1035386) bc77b53a5 shutdown: don't be fooled when detaching DM devices with BTRFS (boo#1055641) d9d293847 util: make get_block_device() available 421ce7382 tmpfiles: silently ignore any path that passes through autofs (#6506) (bsc#1045472) ca8f90e62 device: make sure to remove all device units sharing the same sysfs path (#6679)- Make use of "%tmpfiles_create" in %post of the logger subpackage- Add scripts-udev-convert-lib-udev-path.sh (bsc#1050152) This script takes care of converting /lib/udev into a symlink pointing to /usr/lib/udev when upgrading a distro using an old version of udev.- Make use of "%make_build" rpm macro- Renumber scripts to start at index 100- Introduce scripts-systemd-upgrade-from-pre-210.sh It collects all existing hacks done in %post to fix old/deprecated settings in systemd older than 210. This includes hacks needed to fix system that are migrating from SysV. There shouldn't be any functional changes.- Move scripts for packaging workaround/fixes in /usr/lib/systemd/scripts It also renames fix-machines-subvol-for-rollbacks.sh into scripts-systemd-fix-machines-btrfs-subvol.sh Note that the "scripts-systemd-" prefix is used for those scripts so we can gather them. Why not using a directory instead ? because osc doesn't allow that.- Add 0001-Revert-core-device-Use-JobRunningTimeoutSec-for-devi.patch (bsc#1048605) It's a temporary but urgent fix for a regression discovered in bug 1048605. The fix is still under discussion with upstream but we need to make progress here and limit the number of affected users. Consequently this fix reintroduces bsc#1004995 (the bug report has been re-opened) but this one is far less critical and a workaround was provided. The final solution will fix both bugs.- Import commit 2bed4bf99cf7f24eafda490f778ed5e109f8d7f1 7a4935268 compat-rules: drop the boggus 'import everything' rule (bsc#1046268)- %regenerate_initrd_post is suppsed to be used in %post (not %pre) section- Import commit 6887cc21f23e33ac37801a01d76176e5c16fd8ea 9dcc6c04e pid1: forward port console specificities handling for s390 arch to v234- Import commit 986e98fd5a75470ba17e21fea12d7d4e966c1ecc 4706ebc62 call chase_symlinks without the /sysroot prefix (#6411) (boo#1051172)- Remove the unneeded hack forcing systemd-crypsetup binary to be linked against the just built libudev I don't remember why it was added but it looks unnecessary: most of all systemd components are linked againt libsystemd-shared.so which includes all the just built symbols. Also I don't see why it was done only for systemd-cryptsetup since all other binaries should have had suffered from the same issue.- Import commit c5705e01800bdadd6a4fa7dc50d47b13eb697211 8ea065d44 compat-rules: don't rely on ID_SERIAL when generating 'by-id' symlinks for NVMe devices (bsc#1048679)- Import commit 06bed720274d9436405a7c27c8238d7d1aefca2b 66fffdf12 build-sys: don't hook var-lib-machined.mount to remote-fs.target when machined is disabled 96c232066 Revert "core: don't load dropin data multiple times for the same unit (#5139)"- Drop support of compression from the mini package Hence remove the relevant build-requires from the mini package.- Upgrade to v234 (commit 78af11131da1b2760778206806c0ebe8616a5284) - package /etc/systemd/system/dbus-org.freedesktop.network1.service - /usr/lib/systemd/resolv.conf is not installed if resolved is disabled- Edit pkgconfig(liblz4) dependency: liblz4 now uses 1.x *again*- Added 0001-core-disable-session-keyring-per-system-sevice-entir.patch (bnc#1045886) Temporary patch to disable the session keyring stuff as it's currently broken and may introduce some security holes.- Import commit 21827ea0875ff197e16e72003b2bfaa1c6e8daad 1ad06735f core: fail when syntactically invalid values for User=/Group= fields are detected (bsc#1047023) d563972e2 timesyncd: don't use compiled-in list if FallbackNTP has been configured explicitly f4e0c16f5 gpt-auto-generator: fix the handling of the value returned by fstab_has_fstype() in add_swap() (#6280) e1345aac5 fix add_esp() in the gpt-auto-generator.c (#6251) c591ece9a automount: don't lstat(2) upon umount request (#6086) (bsc#1040968) 643ab2eea gpt-auto-generator: disable gpt auto logic for swaps if at least one is defined in fstab f07d2022f fstab-util: introduce fstab_has_fstype() helper bf735bb35 fstab-util: don't eat up errors in fstab_is_mount_point() a4b40fbed resolved: simplify alloc size calculation (bsc#1045290 CVE-2017-9445) 8b960bec0 only check signature job error if signature job exists (#6118) (boo#1043758) 1418bfb5b job: Ensure JobRunningTimeoutSec= survives serialization (#6128) (bsc#1004995) 19b6d5f08 udev: turn off -Wformat-nonliteral for one safe case 717ace439 udev: net_id add support for platform bus (ACPI, mostly arm64) devices (#5933) a3bf2e6b5 core/mount: pass "-c" flag to /bin/umount (#6093)- Add minimal support for boot.d/* scripts in systemd-sysv-convert (boo#1046750) While at it, the handling of the symlink priorities is also removed since it doesn't appear to be used at all.- Don't try to restart networkd/resolved if they're disabled (boo#1045521) "systemctl try-restart/preset" wants the unit files exist.- Stop shipping /usr/lib/sysusers.d/basic.conf (bsc#1006978) Ok looks like the previous change was the right thing to do and we continue to follow this path by relying on the new user/group scheme Therefore the basic system user/group are now managed and created by system-sysusers and udev also relies on this for the groups it uses in its rule files. Ideally we should have listed all of the groups in the deps (with "Requires: group(disk)" but the list of the groups is rather long and the risk for those groups to be re-organized is probably low, so currently we simply use "Requires: system-group-hardware" as a shortcut.- Make sure "lock" group is created On SUSE distros, /run/lock must be owned by "lock" group (see boo#733523). This group was previously created by another package but since a recent changes it doesn't seem to be true anymore or at least this package isn't pulled in anymore when building the rescue system. For now make systemd creates the group by adding "Requires: group(lock)". I'm currently not sure why we don't use sysusers.d stuff for that purpose and if the "lock" group on /run/lock is still mandatory. This should be revisited later.- Make sure dracut (if installed) will embed the new compat rule The new compat rule must be embedded in the initramfs so make sure that the installed dracut supports it.- Upgrade to v233 (commit 330b55d5e28d17f361062dba66426e46fb7d7857) - package new systemd-umount binary - package new environment generator stuff - drop /dev/root symlink support - /etc/pam.d/systemd-user is not patched anymore but we ship a dedicated file for SUSE now. - manage compat symlink generation in a dedicated branch (bsc#1040153)- Fix systemd-sysv-convert when a package starts shipping service units (bsc#982303) The database might be missing when upgrading a package which was shipping no sysv init scripts nor unit files (at the time --save was called) but the new version start shipping unit files.- Fix indentation in systemd-sysv-convert While at it, strip trailing whitespaces. No functional changes.- Disable group shadow support (bsc#1029516) The new configure option will be imported during the next tarball update.- Ship /var/log/README Unfortunately it's not possible to also ship /etc/init.d/README because of rpm "sanity" checks that prevent executable in /etc/init.d- Drop systemd-{journalctl,loginctl} legacy symlinks.- Drop %preun section Currently the only use of this section is to remove the symlinks enabling systemd services on package removal. Those symlinks were initially installed by the systemd package installation but could have been overriden by the sysadmin later. If so the symlinks shouldn't be uninstalled. Also in a near futur disabling services will install a symlink to /dev/null.- Import commit 9e33c2ae69fbb705e8ad143536e419a231e93020 04ef0eab8 importd: support SUSE style checksums supplementary (#5800) fb601ad9a importd: support SUSE style checksums (#5206) (fate#322054) b76b27c76 hwdb: fix warning "atkbd serio0: Unknown key pressed" (#5772) (boo#1010220) cb0d991f6 loginctl: fix typo causing ignoring multiple session IDs (#5732)- Make use of %systemd_postun()- Restart a couple of systemd services on package update Those services (most notably journald) should support restarting these days. However logind still doesn't but that should be fixed pretty soon, well I hope :)- Don't buildrequire pam-config, it's not used at this step. Also drop the use of it in %postun as it can't realistically happen...- Don't call /sbin/ldconfig in %post of the main package systemd main package doesn't ship any shared libs so there's no point in calling ldconfig in %post/%postun- Silent %tmpfiles_create in %post (bsc#1034938) Due to bsc#1024740, we stopped generating /etc/machine-id during systemd package installation making the specifier '%m' unavailable in the tmpfiles.d configuration files at this time. Make it simple for now and silent %tmpfiles_create, after all that's how the macro was implemented originally.- Import commit f0325620d23a247682c629d28883a364e4a7a8c4 327814841 core: when a unit's SourcePath points to API VFS pretend we are never out-of-date (#5487) f4b9fb58e units: move Before deps for quota services to remote-fs.target (#5627) (bsc#1028263) 44b9d27f8 udev: net_id - support predictable ifnames on vio buses (#5675) (bnc#1029183) 64f4761c9 units: apply plymouth warning fix to in rescue mode as well (#5615) 77607b887 units: do not throw a warning in emergency mode if plymouth is not installed (#5528) (bsc#1025398) 336d6016c core: downgrade "Time has been changed" to debug (#4906) (bsc#1028610)- Consider chroot updates in fix-machines-subvol-for-rollbacks.sh (bsc#1030290)- Initialize /etc/machine-id during the first boot (bsc#1024740) Previously that was done at package installation but it didn't fit well for appliance builds.- Import commit 68fc0a749a83d16d4cde8471d5030bc6254ffd96 76d4d05fb udev: fix variable assignment 473df8cc4 udev-rules: perform whitespace replacement for symlink subst values (bsc#1025886) d6c3ff647 udev-event: add replace_whitespace param to udev_event_apply_format 30ad15f7c libudev-util: change util_replace_whitespace to return number of chars in dest- Import commit 103259b3226251d06f79ca627f7b0ba0bd49f4bc 0ee7890dd automount: if an automount unit is masked, don't react to activation anymore (#5445) 99865a181 core: make sure to destroy all name watching bus slots when we are kicked off the bus (#5294) (bsc#1006687) f34234c54 build-sys: add check for gperf lookup function signature (#5055) 44e39538f sd-event: "when exiting no signal event are pending" is a wrong assertion (#5271) (boo#995936 bsc#1022014) 471b26807 sd-event: when an event source fails, don't assume the type of it is still set- Don't ship systemd-resolved for now (bsc#1024897) If resolved is enabled , systemd-tmpfiles creates a wrong symlink in /etc/resolv.conf which confuses the network manager actually used.- More indentation cleanup (no functional changes)- Remove obsolete insserv requirements for udev again [bsc#999841]- Import commit cd97d5d5fef79ab9d957bf6504d085c0faca6bfc e587b6ce0 disable RestrictAddressFamilies on all architectures but x86_64 one (bsc#1023460) c8ae05632 journald: don't flush to /var/log/journal before we get asked to (bsc#1004094) 7261eaf3e sd-event: fix sd_event_source_get_priority() (#4712)- Move fix for permission set on /var/lib/systemd/linger/* (no functional changes) Move that part after the fix on timer timestamp files otherwise the comment doesn't make sense.- Import commit 028fd9b60580976dffb09b3576a2b652ee35137c cc2ca55ff build-sys: do not install ctrl-alt-del.target symlink twice ececae77a device: Avoid calling unit_free(NULL) in device setup logic (#4748)- Ship systemd-resolved but it's disabled by default (bsc#1018387) The NSS plugin will also be disabled, users need to enable it manually.- Don't ship ldconfig.service anymore This service was introduced to support stateless systems that support offline /usr updates properly. AFAIK we don't support any such system for now, so disable it. If it's wrong it's easy enough to restore it back. Related to bsc#1019470.- Be more consistent with indentation (*no* functional changes) Indentation should use 8 spaces now (no tabs).- Import commit 2559bc0c076b58f0a649056e79ca90fe5f1d556c 9c4a759ab systemctl: 'show' don't exit with a failure status if the requested property does not exist [SUSE] (bsc#1021062) f9194193b systemctl: remove duplicate entries showed by list-dependencies (#5049) (bsc#1012266) 2a6653335 rule: don't automatically online standby memory on s390x (bsc#997682)- Fix permission set on /var/lib/systemd/linger/* Those files are created by logind which run with umask(0022), so they are not world writable and shouldn't be affected by bsc#1020601. But it's cleaner to not let files forever with their setuid bit set for no good reason.- Fix permissions set on permanent timer timestamp files (bsc#1020601) (CVE-2016-10156) This change makes sure to fix the permissions of the timestamp files which could have been created by an affected version of systemd. Local unprivileged users could have run arbitrary code as root if systemd previously created world writable suid root files such as permanent timer stamp files.- Import commit 3edb876e3b80437a95502aa5d31d454606ea94bd 27b544224 core: make sure to not call device_is_bound_by_mounts() when dev is null (#5033) (bsc#1018399)- Use the %{resolved} build conditional for the nss-resolve subpackage- /usr/bin/systemd-resolve was missing from the filelist- Silent warnings emitted when udev socket units are restarted during package upgrade (bsc#1018214)- Upgrade to v232, commit de62e96da6a62ac61a7dea45cc558f5fa4342032 - a4dff165d nspawn: resolv.conf might not be created initially (#4799) - b543fe907 nspawn: fix condition for mounting resolv.conf (#4622) - 1aed89e55 core: make mount units from /proc/self/mountinfo possibly bind to a device (#4515) (boo#909418 bsc#912715 bsc#945340) - bfb54ecdc coredumpctl: let gdb handle the SIGINT signal (#4901) (bsc#1012591)- Really include legacy kbd maps in kbd-model-map (bsc#1015515) Instead of fix-machines-subvol-for-rollbacks.sh...- Enable lz4 (which becomes the default) It's much faster than xz and thus should be more appropriate to compress journals and coredumps. The LZ4 logic is now officially supported and no longer considered experimental. The new frame api was released in v125.- Good by compatlibs support There's no longer need for enabling/disabling the support for the compatlibs as it's been dropped from the source code.- Drop /usr/lib/systemd/libsystemd-shared-%{version}.so from the 32bit package This shared library is not for public use, and is neither API nor ABI stable, but is likely to change with every new released update. Only systemd binaries are supposed to link against it. This also prevents from the 32bit package to conflit with the 64bit one if this lib was installed by both packages.- Upgrade to v232, commit c5c3445825981e2a5c3ed71214127d5b1b9de802: - Dropped backported commits which has been merged - Forward-port Suse specific patches - Added --disable-lto option to ./configure - Added systemd-mount - Removed in %file /usr/lib/systemd/user/*.socket: since 798c486fbcdce3346cd86 units/systemd-bus-proxyd.socket has been removed. - Removed in %file %{_sysconfdir}/systemd/bootchart.conf since commit 232c84b2d22f2d96982b3c bootchart is not part of systemd anymore. - Backward compat libs have been disabled since it's been dropped from the source code. - Added /usr/bin/systemd-socket-activate in %file - Added --without-kill-user-processes ./configure option - Bump libseccomp build require (>= 2.3.1) as described in README - Specifiy version of libmount as required in the README- libudev-devel 32bit is needed for building 32bit wine now.- specfile: conflict systemd-bash-completion and systemd-mini-bash-completion Otherwise the build system detects that systemd-bash-completion and its mini variant are conflicting at files level even though those packages can't be installed on the same system.- specfile: clean up nss-* plugins descriptions and drop nss-myhostname-config script for now. Currently /etc/nsswitch.conf is supposed to be edited by the sysadmin to enable the modules. However for some reasons only nss-myhostname is removed from the conf file when the corresponding package is uninstalled. This is inconsistent so let's remove it. Actually I'm wondering if we shouldn't make those NSS plugins part of the main package and get rid of all those sub-packages...- specfile: remove old comments and unneeded sed command- specfile: no need to create systemd-update-utmp-runlevel.service symlinks anymore The symlinks in /usr/lib/systemd/system/.target.wants/systemd-update-utmp-runlevel.service are created in Makefile.am since commit d5d8429a12c4b1. 'reboot' and 'poweroff' targets initially had the symlinks but there's not point since the latter conflicts shutdown.target whereas the 2 targets pull it in. See: https://github.com/systemd/systemd/pull/4429- specfile: remove the following warnings: [ 256s] warning: File listed twice: /usr/lib/systemd/system/dbus.target.wants [ 256s] warning: File listed twice: /usr/lib/systemd/system/default.target.wants- Own a couple of directories even if they don't belong to systemd otherwise the build system will complain. Some directories (owned by others packages) are simply used by systemd to ship some scripts or config files to customize others * optional* components. Since thos components are not build required by systemd those directories are not owned by any packages and the BS complains...- Import commit 15ea716 journal-remote: change owner of /var/log/journal/remote and create /var/lib/systemd/journal-upload (bsc#1006372)- %sysusers_create and %tmpfiles_create must be called in %post Calling %pre is broken since the respective conf files are not yet installed.- %{_libexecdir}/{tmpfiles.d,sysusers.d}/systemd-remote.conf are part of systemd-journal-remote package (only).- systemd-journal-{gatewayd,remote,upload} units are only part of "systemd-journal-remote" package. So exclude them from the main package.- Import commit a1c145e6ad6588555dca64402f9103fb1e02b1a0 7f34037 man: explain that *KeyIgnoreInhibited only apply to a subset of locks df5798b Revert "logind: really handle *KeyIgnoreInhibited options in logind.conf" (bsc#1001790 bsc#1005404) f79fee7 Revert "kbd-model-map: add more mappings offered by Yast" 3760c10 manager: tighten incoming notification message checks d6efd71 core: only warn on short reads on signal fd 6eebd91 manager: be stricter with incomining notifications, warn properly about too large ones fdf2dc3 manager: don't ever busy loop when we get a notification message we can't process- Rename kbd-model-map-extra into kbd-model-map.legacy- Remove tcpd-devel build requirement. tcpwrap support has been removed since v212, see commit 7f8aa67131cfc03ddcbd31c0420754864fc122f0- remove all dummy "aliases" to /etc/init.d (as it was already done by factory more than 1 year ago). Even if a sysvinit script is still requiring one of those dummy symlinks this should not be an issue since this is requirement is translated into a weak dependency.- specfile: - do not own /usr/share/zsh directory - do not own /etc/dbus-1 and /etc/dbus-1/system.d dirs - do not own /usr/share/dbus-1 dir- specfile: %{_prefix}/lib/systemd/system-preset was mentioned twice in %files section.- Specfile cleanup: - use curly braces with rpm macros- Specfile cleanup: - %ghost files doesn't need (anymore) to be created in %builroot - do not own /etc/X11/xorg.conf.d and /etc/X11/xinit- Specfile cleanup: no need to protect the manpages with %bootstrap condition in nss-myhostname package since the package itself is already protected.- fix nss-resolve sub package: - add a %files section - add a package description - libnss_resolve.so.2 is now part of this subpackage - add %post and %postun sections- Specfile cleanup: - reorganize some files in %files by types - some config files were missing the "noreplace" attribute- Use %config(noreplace) for %{_sysconfdir}/pam.d/systemd-user- Rework systemd-gatewayd package: - some gateway's files were still in the main package - it now includes all progs dealing with remote journals - it can be turned off (SP2 does that currently) - it's been renamed systemd-journal-remote to reflect that- Specfile cleanup: - only specify once %{_prefix}/lib/systemd/system-shutdown in %file - no need to list the content of %{_prefix}/lib/systemd/user-generators in %file - machined is not built when %bootstrap = 1- Specfile cleanup: - There's no point in listing all generators in %file explicitly. The default is to include all of them and if for some reason one must be excluded then it should be done explicitly.- Specfile cleanup: - remove explicit call to make for building man pages. This is not needed and was maybe useful when generated doc was pre-built and shipped in the tarball.- Specfile cleanup: - break overly long and unreadable line using mkdir - gather directory creations- Stop providing udevd.8 systemd-udevd has replaced udevd for some time already and usage of udevd should be avoided. Therefore don't encourage this and stop documenting it.- Import from factory: - Thu Feb 4 11:05:37 UTC 2016 - lnussel@suse.de - curl also causes building of journal-upload. That one has rather unusal certificate usage, set it's ca root to /etc/pki/systemd instead of the built-in default /etc/ssl as journal-remote and journal-upload think they can put stuff in /etc/ssl/certs then but that directory is managed by p11-kit and doesn't serve the purpose those programs think.- Package rootsymlink-generator helper. It was forgotten when switching to the git repo but re-added back. That said this thing should be removed as it's broken as soon as there's no direct link between the root fs and its backend device node (i.e. BTRFS).- Add kbd-model-map-extra file which contains the additional legacy keymaps needed by yast. This was previously directly patched in the systemd source code.- Imported e251b8d7fb5c801fdfa3a023257ba0e4d514f3b0 - Re-add back /dev/root symlink generation (although this must be deprecated and finally removed).- Migrating to the Suse Systemd git repo: Third step: - Re-enable networkd (disabled by default in SLE12)- Migrating to the Suse Systemd git repo: Second step: - Import the specfile - Import the tarball generated from the git repo - Import lastest changes for the different scripts- Migrating to the Suse Systemd git repo: First step: drop all patches and drop the tar ball. The dropped patches are: fix-support-for-boot-prefixed-initscript-bnc-746506.patch set-and-use-default-logconsole.patch ensure-ask-password-wall-starts-after-getty-tty1.patch 0001-rules-block-add-support-for-pmem-devices-3683.patch Fix-run-lock-directories-permissions-to-follow-openSUSE-po.patch 1007-physical-hotplug-cpu-and-memory.patch 1066-udev-add-compatibility-links-for-truncated-by-id-links.patch watch_resolv.conf_for_become_changed.patch 0019-make-completion-smart-to-be-able-to-redirect.patch systemd-add-user-keep.patch 0001-core-re-sync-bus-name-list-after-deserializing-durin.patch systemd-228-nspawn-make-journal-linking-non-fatal-in-try-and-auto.diff avoid-random-hangs-on-timeouts-due-lost-cwd.patch 1037-udev-exclude-cd-dvd-from-block-device.patch 0001-add-network-device-after-NFS-mount-units.patch journald-advice-about-use-of-memory.patch 1011-64-btrfs.rules-skip-btrfs-check-if-devices-are-not-r.patch 1006-udev-always-rename-network.patch handle-numlock-value-in-etc-sysconfig-keyboard.patch use-rndaddentropy-ioctl-to-load-random-seed.patch 0001-pid1-don-t-return-any-error-in-manager_dispatch_noti.patch 0001-add-hdflush-for-reboot-or-hddown-for-poweroff.patch 0001-pam_systemd_do_override_XDG_RUNTIME_DIR_of_the_original_user.patch 0001-bnc888612-logind-polkit-acpi.patch avoid-divide-by-zero-sigtrap.patch 1035-99-systemd.rules-Ignore-devices-with-SYSTEMD_READY-0.patch suse-sysv-bootd-support.diff ensure-shortname-is-set-as-hostname-bnc-820213.patch parse-crypttab-for-noauto-option.patch tty-ask-password-agent-on-console.patch 0001-pid1-process-zero-length-notification-messages-again.patch handle-root_uses_lang-value-in-etc-sysconfig-language.patch 0001-core-exclude-.slice-units-from-systemctl-isolate.patch vhangup-on-all-consoles.patch 0001-systemctl-pid1-do-not-warn-about-missing-install-inf.patch apply-ACL-for-nvidia-device-nodes.patch make-emergency.service-conflict-with-syslog.socket.patch 0001-journal-warn-when-we-fail-to-append-a-tag-to-a-journ.patch 1096-new-udev-root-symlink-generator.patch 1099-Add-default-rules-for-valve-steam-controller-to-work.patch 0001-journal-set-STATE_ARCHIVED-as-part-of-offlining-2740.patch systemd-install-compat_pkgconfig-always.patch 1012-Skip-persistent-device-link-creation-on-multipath-de.patch 0001-avoid-abort-due-timeout-at-user-service.patch insserv-generator.patch apply-ACL-for-nvidia-uvm-device-node.patch restore-var-run-and-var-lock-bind-mount-if-they-aren-t-sym.patch systemd-pam_config.patch systemd-dbus-system-bus-address.patch let-linker-find-libudev-for-libdevmapper.patch 1098-systemd-networkd-alias-network-service.patch 0001-let-systemctl-completion-ignore-at-names.patch boot-local-start.patch 1095-set-ssd-disk-to-use-deadline-scheduler.patch tomcat6-var-lock-subsys-legacy.patch let-vconsole-setup-get-properties-only-once-to-copy-them.patch plymouth-quit-and-wait-for-emergency-service.patch respect-nfs-bg-option.patch 0001-If-the-notification-message-length-is-0-ignore-the-m.patch 1062-rules-set-default-permissions-for-GenWQE-devices.patch rescue-emergency-target-conflicts.patch Correct_assert_on_unexpected_error_code.patch 1097-udevd-increase-maximum-number-of-children.patch 0001-core-fix-bus-name-synchronization-after-daemon-reloa.patch 1005-create-default-links-for-primary-cd_dvd-drive.patch allow-multiple-sulogin-to-be-started.patch systemd-230-cgroup2-use-new-fstype-for-unified-hierarchy.patch 0010-do-not-install-sulogin-unit-with-poweroff.patch 1003-udev-netlink-null-rules.patch 1002-rules-create-by-id-scsi-links-for-ATA-devices.patch 0001-nss-mymachines-do-not-allow-overlong-machine-names.patch shut-up-rpmlint-on-var-log-journal.patch systemd-tmp-safe-defaults.patch portmap-wants-rpcbind-socket.patch hostname-NULL.patch 0001-pid1-more-informative-error-message-for-ignored-noti.patch 0001-journal-fix-HMAC-calculation-when-appending-a-data-o.patch handle-disable_caplock-and-compose_table-and-kbd_rate.patch kbd-model-map.patch systemctl-set-default-target.patch 0014-journald-with-journaling-FS.patch 0001-On_s390_con3270_disable_ANSI_colour_esc.patch- Import a better fix from upstream for bsc#1001765 - Added: 0001-pid1-more-informative-error-message-for-ignored-noti.patch 0001-pid1-process-zero-length-notification-messages-again.patch - Updated (no code changes, only patch metadata) 0001-If-the-notification-message-length-is-0-ignore-the-m.patch 0001-pid1-don-t-return-any-error-in-manager_dispatch_noti.patch- Re add back "udev: don't require nsserv and fillup" Did this in the wrong project... it was a complicated day today ;)- Added 2 patches to fix bsc#1001765 0001-If-the-notification-message-length-is-0-ignore-the-m.patch 0001-pid1-don-t-return-any-error-in-manager_dispatch_noti.patch- Revert "udev: don't require nsserv and fillup" It's been judged too late for being part of SLE12 final release. Nevertheless it's part of Factory and will be reintroduced after the final release is out (ie through an update).- systemd-sysv-convert: make sure that /var/lib/systemd/sysv-convert/database is always initialized (bsc#982211) If "--save" command was used and the sysv init script wasn't enabled at all the database file wasn't created at all. This makes the subsequent call to "--apply" fail even though this should not considered as an error.- Added patches to fix journal with FSS protection enabled (bsc#1000435) 0001-journal-fix-HMAC-calculation-when-appending-a-data-o.patch 0001-journal-set-STATE_ARCHIVED-as-part-of-offlining-2740.patch 0001-journal-warn-when-we-fail-to-append-a-tag-to-a-journ.patch- udev: don't require nsserv and fillup (bsc#999841) udev has no LSB init scripts nor fillup templates anymore.- Build require python and python-lxml in order to generate systemd.directives man page (bsc#986952)- Add rules: block: add support for pmem devices (#3683) (bsc#988119) 0001-rules-block-add-support-for-pmem-devices-3683.patch- Fix is-enabled check in systemd-sysv-install (bsc#997268)- Only BuildRequire gnu-efi when building the 'real' systemd package.- Add a script to fix /var/lib/machines to make it suitable for rollbacks (bsc#992573)- reverted the systemctl split-off on request of Franck Bui.- Add sysusers to the new split "systemctl" subpackage- Split systemctl and tmpfiles into a separate package- Fix 1099-Add-default-rules-for-valve-steam-controller-to-work.patch to enable missing functionality of Steam Controller- Backport unified_cgroup_hierarchy fix for Linux >= 4.4. boo#989276 + systemd-230-cgroup2-use-new-fstype-for-unified-hierarchy.patch- drop 1060-udev-use-device-mapper-target-name-for-btrfs-device-ready.patch it breaks btrfs on multiple device-mapper devices (boo#984516). The problem it tried to fix is already fixed in rule shipped with btrfsprogs (see boo#912170).- fix warning about missing install info during preset (boo#970293) 0001-systemctl-pid1-do-not-warn-about-missing-install-inf.patch- Avoid bootstrap cycle with sg3_utils- Fix patch patch handle-numlock-value-in-etc-sysconfig-keyboard.patch that is do not close a file descriptor twice (boo#973907)- Add two patches which address logind/networkd disappearing from dbus (and busctl) even while the units and processes continue running. 0001-core-fix-bus-name-synchronization-after-daemon-reloa.patch 0001-core-re-sync-bus-name-list-after-deserializing-durin.patch- drop all compiler/linker option customizations: - -pipe option is used by default since day 0 - get rid of cflags() function which is not needed - --hash-size has no impact specially in runtime IOW, use the default options for the compiler and the linker, there's no point in making systemd different from other package in this regards.- use %make_build instead of 'make %{?_smp_mflags}'- be more strict on own lib version requirements- systemd should require udev with the exact same version- Modify patch handle-numlock-value-in-etc-sysconfig-keyboard.patch to allow that open, seek, and read of /dev/mem may fail e.g. on XEN based virtual guests (bsc#961120)- Add upstream patch 0001-core-exclude-.slice-units-from-systemctl-isolate.patch this fixes forced logouts on isolate target aka changing runlevel (boo#966535)- require curl and bzip2 to build importd - curl also causes building of journal-upload. That one has rather unusal certificate usage, set it's ca root to /etc/pki/systemd instead of the built-in default /etc/ssl as journal-remote and journal-upload think they kan put stuff in /etc/ssl/certs then but that directory is managed by p11-kit and doesn't serve the purpose those programs think. - /var/lib/systemd/random-seed is a file - own /var/lib/machines - add systemd-228-nspawn-make-journal-linking-non-fatal-in-try-and-auto.diff- systemd-sysv-install: Fix chkconfig argument for disable op- Create groups adm,input,tape in fixed order (boo#944660)- Make sure we don't use tmpfs on /tmp by default (bsc#940522)- Avoid enabling readahead services; they have been removed. - In %install, only process kbd-model-map.xkb-generated if it exists. Resolves a build failure in 13.2/42.1.- spec: update minimum kernel version to 3.11 - Update minimum util-linux version to 2.27.1- Add patch to enable working steam controller: * 1099-Add-default-rules-for-valve-steam-controller-to-work.patch- fix CVE-2015-7510: Stack overflow in nss-mymachines (boo#956712) Add 0001-nss-mymachines-do-not-allow-overlong-machine-names.patch- Update to new upstream release 228 * The various memory-related resource limit settings (such as LimitAS=) now understand the usual K, M, G, ... suffixes to the base of 1024 (IEC). Similar, the time-related settings understand the usual min, h, day, ... suffixes now. * CPUAffinity= now takes CPU index ranges in addition to just individual indexes. * A number of properties previously only settable in unit files are now also available as properties to set when creating transient units programmatically via the bus. - Remove 0001-Make-sure-the-mount-units-pulled-by-RequiresMountsFo.patch (merged upstream)- Update to 227. - Rebase systemd-pam_config.patch, handle-root_uses_lang-value-in-etc-sysconfig-language.patch, 0001-add-hdflush-for-reboot-or-hddown-for-poweroff.patch, 0001-On_s390_con3270_disable_ANSI_colour_esc.patch, 0014-journald-with-journaling-FS.patch, 0019-make-completion-smart-to-be-able-to-redirect.patch, avoid-divide-by-zero-sigtrap.patch, systemd-add-user-keep.patch, set-and-use-default-logconsole.patch, tty-ask-password-agent-on-console.patch, 0001-bnc888612-logind-polkit-acpi.patch, watch_resolv.conf_for_become_changed.patch, 1097-udevd-increase-maximum-number-of-children.patch. - Remove 0002-units-enable-waiting-for-unit-termination-in-certain.patch, 1001-re-enable-by_path-links-for-ata-devices.patch, rules-add-lid-switch-of-ARM-based-Chromebook-as-a-power-sw.patch: fixed upstream.- Modify patch handle-root_uses_lang-value-in-etc-sysconfig-language.patch to handle locale at boot time well (boo#927250) - Be able to use build service environments several times- 1096-new-udev-root-symlink-generator.patch: fix substitution in ExecStart value- enable seccomp for aarch64 (fate#318444)- Fix again UEFI for mini package- Drop one more undesirable Obsoletes/Provides. This should have been a Conflicts. (There was already a Conflicts, and since Conflicts go both ways, we won't need a second one.)- No UEFI for systemd-mini- Add 2 upstream patches to fix boo#949574 and bsc#932284 0001-Make-sure-the-mount-units-pulled-by-RequiresMountsFo.patch 0002-units-enable-waiting-for-unit-termination-in-certain.patch- Disable systemd-boot on aarch64 since it fails to build. Error while compiling src/boot/efi/util.o is: usr/include/efi/aarch64/efibind.h:2:20: fatal error: stdint.h: No such file or directory- Fix UEFI detection logic: basically we let configure.ac figure out if UEFI is supported by the current build environment. No need to clutter the spec file with a new conditionnal %has_efi. - Provide systemd-bootx64.efi (aka gummiboot)- Modify patch tty-ask-password-agent-on-console.patch to reflect the changes done for pull request 1432- Undo Obsoletes/Provides (from Aug 11), creates too big a cycle. - Provide systemd-sysv-install program/link [bnc#948353]- Fix patch tty-ask-password-agent-on-console.patch not to crash away but enable it to ask on all devices of /dev/console- Avoid "file not found /etc/udev/rules.d/70-persistent-net.rules" waring occurring in %post- Add patch let-vconsole-setup-get-properties-only-once-to-copy-them.patch to avoid broken virtual console mapping due stressed ioctl API for the virtual consoles (boo#904214)- Fix last change that is use the new name for udev packages in %pretrans.- restore usage of LUA in %pretrans.- Try to generate the systemd users and groups always in same order to avoid republish other packages (boo#944660)- cleanup specfile by removing commands that were dealing with systemd pre-generated files: we're now using systemd tarball generated directly from the git repo which doesn't contain any of these files. - there's no point in using LUA in %pretrans- Drop 0009-make-xsltproc-use-correct-ROFF-links.patch This patch was initialy added to workaround bsc#842844. But it appears that man(1) was fixed (included since 13.2 at least) to handle manual pages that consist only of a .so directive such as '.so '.- Change use-rndaddentropy-ioctl-to-load-random-seed.patch to make it work on big endian- Use Obsolete/Provides strategy from windows:mingw:mingw64/mingw64-cross-gcc to do the bootstrap cycle and kick out -mini afterwards.- Update to new upstream release 224 * systemd-networkd gained a number of new configuration options for DHCP, tunnels and bridges * systemd-efi-boot-generator functionality was merged into systemd-gpt-auto-generator.- /usr/share/systemd/kbd-model-map: added entries for xkeyboard-config converted keymaps; mappings, which already exist in original systemd mapping table are being ignored though, i.e. not overwritten; needs kbd in buildrequires (FATE#318426)- hostname-NULL.patch: Work around a crash on XEN hosts in OBS. /etc/hostname is not present and systemd then does strchr(hostname,soemthing) with hostname NULL.- Add Correct_assert_on_unexpected_error_code.patch to work around a problem of an assert on ENODEV for closing fd on an input event device (boo#939571)- Remove udev-generate-rules.sh, apparently not used by anything in the systemd nor udev-persistent-ifnames package.- Systemd v222, bugfix release. - Drop upstream patches 0006-pam_systemd-Properly-check-kdbus-availability.patch 0023-core-fix-reversed-dependency-check-in-unit_check_unn.patch 0031-install-fix-bad-memory-access.patch 1032-ata_id-unbotch-format-specifier.patch - Drop SUSE patch 1013-no-runtime-PM-for-IBM-consoles.patch udev does no longer enable USB HID power management at all. - The udev accelerometer helper was removed, obsoleted by iio-sensor-proxy package. - networkd gained a new configuration option IPv6PrivacyExtensions. - udev does not longer support the WAIT_FOR_SYSFS= key in udev rules. There are no known issues with current sysfs, and udev does not need or should be used to work around such bugs.- Avoid restarting logind [bnc#934901] - Do not suppress errors in any case, even if they are ignored- Fix devel package requires (both mini and real required real libsystemd0)- Rework patch tty-ask-password-agent-on-console.patch to fit the requisition of https://bugs.freedesktop.org/show_bug.cgi?id=82004- Rework "-mini" package logic to not conflict with itself and then add libsystemd0 to mini.- remove SysVStartPriority= from after-local.service, unsupported since v218. Note that this option was only parsed and that's it. the logic to give "start priority" was never implemented.- change the default fallback ntp servers to the opensuse pool.ntp.org vendor zone. - We still need to run systemd-sysctl.service after local-fs.target otherwise it works only when /boot is in the root filesystem but not when it is a separate partition.- Obsolete pm-utils and suspend (boo#925873). - Remove pm-utils support (remove Forward-suspend-hibernate-calls-to-pm-utils.patch).- remove patch sysctl-handle-boot-sysctl.conf-kernel_release.patch from the filelist.- libpcre, glib2 and libusb are not used by systemd, remove from buildrequires.- 1032-ata_id-unbotch-format-specifier.patch: fix udev ata_id output. - 0023-core-fix-reversed-dependency-check-in-unit_check_unn.patch fix StopWhenUnneeded=true in combination with a Requisite= dependency. - 0031-install-fix-bad-memory-access.patch: Fix Bad memory access - 0006-pam_systemd-Properly-check-kdbus-availability.patch: if kdbus is enabled (i.e boot with kdbus=1) DBUS_SESSION_BUS_ADDRESS must not be exported. - spec: add a min_kernel_version macro to ensure the package conflicts with kernel versions in which systemd cannot run.- sysctl-handle-boot-sysctl.conf-kernel_release.patch dropped, replaced by a tmpfiles.d snippet "current-kernel-sysctl.conf" (feature implemented in v220 just for our usecase)- fix build when resolved is enabled - remove fsck -l test in spec file, systemd requires util-linux 2.26 or later where this feature is already available.- Fix bootstrap build by guarding filelists (man pages don't get built in bootstrap mode) - Drop commented sections from baselibs.conf, allows format_spec_file to have a successful run- Install 50-coredump.conf as coredumpctl is now installed by default and does not use journal anymore as default storage- Update to new upstream release 221 * From 220: * libgudev was moved into a package of its own * Runlevels 2, 3 and 4 are no longer distinct, they all map to multi-user.target. * The EFI System Partition mounted to /boot will be unmounted 2 minutes after boot. * systemd does not support direct live-upgrades (via `systemctl daemon-reexec`) from versions older than v44 anymore. * systemd-nspawn may now be called as part of a shell pipeline. * systemd-shutdownd has been removed. This service was previously responsible for implementing scheduled shutdowns as exposed in /usr/bin/shutdown's time parameter. This functionality has now been moved into systemd-logind and is accessible via a bus interface. * udev will no longer call blkid and create symlinks for all block devices, but merely those from a whitelist (cf. 60-persistent-storage.rules). * /usr/lib/os-release gained a new optional field VARIANT= * Details at http://lists.freedesktop.org/archives/systemd-devel/2015-May/032147.html * From 221: * New sd-bus and sd-event APIs in libsystemd * If there is both a systemd unit and a SysV init script for the same service name, and `systemctl enable` or other operation is run, both will now be enabled (or execute the related operation on both), not just the unit. - Split libsystemd0 to support systemd-less nspawn containers - Redo manpage file lists without %exclude, tends to hide unpackaged files. - hwdb belongs to udev - Resolve memory leak and add missing _cleanup_free_ to 0001-On_s390_con3270_disable_ANSI_colour_esc.patch - Remove systemd-powerd-initctl-support.patch (no longer builds because shutdownd is gone) - Remove quilt-patches/0001-core-rework-device-state-logic.patch, 0001-Let-some-boolean-survive-a-daemon-reload.patch (merged upstream), 0001-Let-some-boolean-survive-a-daemon-reload.patch (obsolete)- Remove libudev0 from baselibs.conf- Drop 1055-let-9719859c07aa13539ed2cd4b31972cd30f678543-apply.patch as now upstream code - Add 0001-Let-some-boolean-survive-a-daemon-reload.patch to fix bsc#933365 and boo#934077- Add 1098-systemd-networkd-alias-network-service.patch to alias network.service the same way NetworkManager and wicked does. This is needed by yast2 and other parts of the system. boo#933092- Modify patch 1021-udev-re-add-persistent-net-rules.patch to use the new return values of proc_cmdline() in enable_name_policy() this should fix boo#931165- Drop 1021-udev-re-add-persistent-net-rules.patch, 1036-rules-disable-usage-of-dev_id-in-persistent-rules.patch, 1040-re-enable-dev_id-conditionally-in-persistent-rules.patch, 1046-fix-duplicated-rules-with-layer3-interfaces.patch, 1050-only-rename-SRIOV-VF-devices-when-name-starts-with-eth.patch, 1051-check-if-NAME-has-a-value.patch, 1053-better-checks-in-write_net_rules.patch, 1088-drop-renaming-of-virtual-interfaces-in-guest.patch. 1021 originally broke parsing of net.ifnames=0 [bnc#931165], and given that neither the kernel command line needs to be touched nor the source be patched to reach the unpredictable naming setup for SLE, all these parts are moved to a separate package.- Add upstream patch 0001-core-don-t-change-removed-devices-to-state-tentative.patch to fix the fix of the last backport (bsc#921898)- Reenable networkd which was silently disabled on Feb 18- Add 0001-core-rework-device-state-logic.patch to fix spurious automated umount after mount.- mark more subpackages as !bootstrap for systemd-mini usage.- spec : remove --with-firmware-path, firmware loader was removed in v217 - spec: remove --disable-multi-seat-x, gone.(fixed in xorg) - spec: Do not enable systemd-readahead-collect.service and systemd-readahead-replay.service as these do not exist anymore. - spec: drop timedate-add-support-for-openSUSE-version-of-etc-sysconfig.patch Yast was fixed to write all timezone changes exactly how timedated expects things to be done. - spec: remove handle-etc-HOSTNAME.patch, since late 2014 the netcfg package handles the migration from /etc/HOSTNAME to /etc/hostname and owns both files. -spec: remove boot.udev and systemd-journald.init as they currently serve no purpose. - suse-sysv-bootd-support.diff: Remove HAVE_SYSVINIT conditions, we are in sysvcompat-only codepath, also remove the code targetting other distributions, never compiled as the TARGET_$DISTRO macros are never defined. - systemd-powerd-initctl-support.patch guard with HAVE_SYSV_COMPAT - set-and-use-default-logconsole.patch: fix HAVE_SYSV_COMPAT guards - insserv-generator.patch: Only build when sysvcompat is enabled - vhangup-on-all-consoles.patch add a comment indicating this is a workaround for a kernel bug. - spec: Add option to allow disabling sysvinit compat at build time. - spec: Add option to enable resolved at build time. - spec: Remove all %ifs for !factory products, current systemd releases can neither be built nor installed in older products without upgrading several components of the base system. (removed: 1008-add-msft-compability-rules.patch was only for =< 13.1) - spec: remove all dummy "aliases" to /etc/init.d, that made sense only when those init scripts still existed. (dummy localfs.service source: gone) - systemd-sleep-grub: moved to the grub2 package where it belongs as a suspend/resume hook (SR#286533) (drops prepare-suspend-to-disk.patch) - remove LFS_CFLAGS from CFLAGS, never needed in systemd as it force feds config.h everywhere in the preprocessor cmdline.- Update to new upstream release 219 * systemd units can now be "unsupported" (like, for example, .device in a containers), similar to the "skipped" state in SUSE's prior sysvinit scripts. * tmpfiles gained the 'v' type for creating btrfs subvolumes. * tmpfiles gained the 'a' type for setting ACLs. * systemd-nspawn gained new switches: --ephemeral, --template * The /var/lib/containers location is deprecated and replaced by /var/lib/machines. * machinectl gained the copy-from and copy-to commands. * machinectl now knows a "bind" command (for use with nspawn) * new "systemd-importd" daemon to download container images and run them as nspawn containers. * networkd collects LLDP network announcements, if available, and so shown in networkctl. * The fallback terminal type was changed from "vt102" to "vt220", allowing PgUp/PgDn keys to work. * Pressing Ctrl-Alt-Del 7x in 2 seconds forces a umount+reboot now, useful should the regular shutdown hang. * Removing storage will cause systemd to unmount the associated mountpoints so that they don't linger around.- Add suse-sysv-bootd-support.diff (reinstate old Revert-service-drop-support-for-SysV-scripts-for-the-early.patch)- Update to systemd v218-1050-g38ab096 - Remove patches use-usr-sbin-sulogin-for-emergency-service.patch (upstream fixed it) - Reinstate and improve (remove huge indents from) tty-ask-password-agent-on-console.patch, 0014-journald-with-journaling-FS.patch, rootsymlink_generator.- disable systemd-resolved for now as it interacts not well with our methods and security has concerns regarding spoofing. bsc#917781- Add patch kbd-model-map.patch to add missed keyboard layouts which are offered by YaST2 (bsc#910643 and boo#897803)- Update to new upstream release 218 * New utilities: systemd-timesyncd (SNTP client), systemd-resolved, systemd-networkd, networkctl, systemd-sysusers * machinectl gained a "poweroff" command for clean container shutdown * The udev hwdb now contains DPI information for mice. * Userspace firmware loading support has been removed and the minimum supported kernel version is thus bumped to 3.7. - Remove patches: G=gone locally, is upstream; D=dropped: no longer needed; N=no longer applies to source nor is it deemed needed; K=killed: no longer applicable and too complex to resolve: - --- G 0002-rfkill-rework-how-we-generate-file-names-from-rfkill.patch G avoid-assertion-if-invalid-address-familily-is-passed-to-g.patch K service-flags-sysv-service-with-detected-pid-as-RemainAfte.patch K remain_after_exit-initscript-heuristic-and-add-new-LSB-hea.patch K handle-SYSTEMCTL_OPTIONS-environment-variable.patch K 0018-Make-LSB-Skripts-know-about-Required-and-Should.patch K log-target-null-instead-kmsg.patch K tty-ask-password-agent-on-console.patch K 513-nspawn-veth.patch K 1087-infinit-timeout-for-kmod-loaded-modules.patch D module-load-handle-SUSE-etc-sysconfig-kernel-module-list.patch D avoid-leaking-socket-descriptors.patch D 0001-make-fortify-happy-with-ppoll.patch N fix-owner-of-var-log-btmp.patch N disable-nss-myhostname-warning-bnc-783841.patch N Revert-service-drop-support-for-SysV-scripts-for-the-early.patch N 0001-make-209-working-on-older-dist.patch N 0001-Don-t-snprintf-a-potentially-NULL-pointer.patch N tmpfiles-do-not-clean-for-mandb-index-files.patch G 0001-sd-bus-don-t-look-for-a-64bit-value-when-we-only-hav.patch G avoid-assertion-if-invalid-address-familily-is-passed-to-g.patc G optionally-warn-if-nss-myhostname-is-called.patch G 0001-units-systemd-sysctl.service.in-run-after-load-modul.patch G 0004-getty-generator-properly-escape-instance-names.patch G rules-add-lid-switch-of-ARM-based-Chromebook-as-a-power-sw.patch G 0008-Reset-signal-mask-on-re-exec-to-init.patch G 0001-login-fix-pos-array-allocation.patch G 0002-login-set-pos-slot-to-fallback-on-pos-eviction.patch G 0003-login-Allow-calling-org.freedesktop.login1.Seat.Swit.patch G 0004-fix-typo-in-iDRAC-network-interface-name-irdac-idrac.patch G 0005-Replace-var-run-with-run-in-remaining-places.patch G 0006-Revert-back-to-var-run-at-a-couple-of-problems.patch G 0007-README-document-that-var-run-must-be-a-symlink-run.patch G 0008-Use-var-run-dbus-system_bus_socket-for-the-D-Bus-soc.patch G 0009-mount-don-t-send-out-PropertiesChanged-message-if-ac.patch G 0010-mount-don-t-fire-PropertiesChanged-signals-for-mount.patch G 0011-logs-show-fix-corrupt-output-with-empty-messages.patch G 0012-journalctl-refuse-extra-arguments-with-verify-and-si.patch G 0014-nspawn-fix-detection-of-missing-proc-self-loginuid.patch G 0001-Fix-systemd-stdio-bridge-symlink.patch G 0002-execute-free-directory-path-if-we-fail-to-remove-it-.patch G 0003-Do-not-print-invalid-UTF-8-in-error-messages.patch G 0004-man-document-missing-options-of-systemd-run.patch G 0005-systemd-run-add-some-extra-safety-checks.patch G 0006-journal-assume-that-next-entry-is-after-previous-ent.patch G 0007-journal-forget-file-after-encountering-an-error.patch G 0008-core-correctly-unregister-PIDs-from-PID-hashtables.patch G 0009-logind-fix-reference-to-systemd-user-sessions.servic.patch G 0010-man-update-link-to-LSB.patch G 0011-man-systemd-bootchart-fix-spacing-in-command.patch G 0012-man-add-missing-comma.patch G 0013-units-Do-not-unescape-instance-name-in-systemd-backl.patch G 0001-core-busname-add-lookup-string-for-BUSNAME_FAILURE_S.patch G 0002-manager-flush-memory-stream-before-using-the-buffer.patch G 0003-busname-don-t-drop-service-from-the-result-string.patch G 0004-fix-off-by-one-error-in-array-index-assertion.patch G 0005-logind-fix-policykit-checks.patch G 0006-rules-mark-loop-device-as-SYSTEMD_READY-0-if-no-file.patch G 0008-man-multiple-sleep-modes-are-to-be-separated-by-whit.patch G 0001-gpt-auto-generator-don-t-return-OOM-on-parentless-de.patch G 0002-bus-fix-memory-leak-when-kdbus-is-not-enabled.patch G 0006-Do-not-return-1-EINVAL-on-allocation-error.patch G 0007-networkd-fix-typo.patch G 0008-sd-bus-don-t-access-invalid-memory-if-a-signal-match.patch G 0009-sd-bus-don-t-choke-if-somebody-sends-us-a-message-wi.patch G 0012-journald-remove-stray-reset-of-error-return-value.patch G 0013-core-libsystemd-systemd-timedate-udev-spelling-fixes.patch G 0001-cgroup-it-s-not-OK-to-invoke-alloca-in-loops.patch G 0002-machined-fix-Kill-bus-call-on-machine-objects-when-w.patch G 0003-sd-bus-don-t-use-assert_return-to-check-for-disconne.patch G 0004-core-don-t-try-to-relabel-mounts-before-we-loaded-th.patch G 0005-sd-daemon-fix-incorrect-variable-access.patch G 0006-sd-event-initialization-perturbation-value-right-bef.patch G 0007-sd-event-don-t-accidentally-turn-of-watchdog-timer-e.patch G 0008-systemctl-kill-mode-is-long-long-gone-don-t-mention-.patch G 0009-ask-password-when-the-user-types-a-overly-long-passw.patch G 0001-journal-fix-export-of-messages-containing-newlines.patch G 0002-systemctl-update-NAME-to-PATTERN-in-help.patch G 0003-tty-ask-password-agent-return-negative-errno.patch G 0004-systemd-python-use-.hex-instead-of-.get_hex.patch G 0005-systemd-python-fix-failing-assert.patch G 0007-dbus-suppress-duplicate-and-misleading-messages.patch G 0001-reduce-the-amount-of-messages-logged-to-dev-kmsg-whe.patch G 0001-bash-completion-fix-__get_startable_units.patch G 0002-sysctl-replaces-some-slashes-with-dots.patch G 0003-delta-do-not-use-unicode-chars-in-C-locale.patch G 0004-implement-a-union-to-pad-out-file_handle.patch G shut-up-annoying-assertion-monotonic-clock-message.patch G 0001-sd-rtnl-message-append-fix-uninitialized-memory.patch G 0001-tmpfiles-fix-permissions-on-new-journal-files.patch G 0001-errno-make-sure-to-handle-the-3-errnos-that-are-alia.patch G 0003-analyze-fix-plot-with-bad-y-size.patch G 0004-job-add-waiting-jobs-to-run-queue-in-unit_coldplug.patch G 0005-job-always-add-waiting-jobs-to-run-queue-during-cold.patch G 0001-backlight-Avoid-restoring-brightness-to-an-unreadabl.patch G 0002-backlight-do-nothing-if-max_brightness-is-0.patch G 0003-backlight-unify-error-messages.patch G 0004-backlight-warn-if-kernel-exposes-backlight-device-wi.patch G 0005-backlight-handle-saved-brightness-exceeding-max-brig.patch G 0001-replace-more-dup-by-F_DUPFD_CLOEXEC.patch G 0002-pam_systemd-use-F_DUPFD_CLOEXEC-when-dupping-session.patch G 0001-core-close-socket-fds-asynchronously.patch G 0002-logind-bring-polkit-policy-for-hibernate-in-line-wit.patch G 0003-core-make-sure-to-serialize-jobs-for-all-units.patch G 0001-logind-ignore-lid-switch-if-more-than-1-display-is-c.patch G 0002-logind-fix-printf-format.patch G 0003-logind-ignore-lid-switch-events-for-30s-after-each-s.patch G 0004-logind-Do-not-fail-display-count-if-a-device-has-no-.patch G 0005-logind-move-lid-switch-handling-from-logind-main-to-.patch G 0006-man-clarify-that-the-ExecReload-command-should-be-sy.patch G 0007-man-readahead-fix-cmdline-switch-inconsistency-betwe.patch G 0008-man-update-journald-rate-limit-defaults.patch G 0009-nspawn-properly-format-container_uuid-in-UUID-format.patch G 0010-logind-allow-suspending-if-there-are-no-displays.patch G 0001-hwdb-Update-database-of-Bluetooth-company-identifier.patch G 0002-hwdb-Update-database-of-Bluetooth-company-identifier.patch G 0003-hwdb-Update-database-of-Bluetooth-company-identifier.patch G 0004-hwdb-Update-database-of-Bluetooth-company-identifier.patch G 0005-hwdb-Update-database-of-Bluetooth-company-identifier.patch G 0001-conf-parser-silently-ignore-sections-starting-with-X.patch G 0002-man-note-that-entire-sections-can-now-be-ignored.patch G 0004-machined-make-sure-GetMachineAddresses-is-available-.patch G 0005-core-Filter-by-state-behind-the-D-Bus-API-not-in-the.patch G 0006-login-add-mir-to-the-list-of-session-types.patch G 0007-logind-fix-Display-property-of-user-objects.patch G 0001-hwdb-update.patch G 0002-hwdb-update.patch G 0003-hwdb-PCI-include-primary-model-string-in-subsystem-m.patch G 0004-hwdb-update.patch G 0005-hwdb-update.patch G 0001-journal-cleanup-up-error-handling-in-update_catalog.patch G 0002-journal-properly-detect-language-specified-in-line.patch G 0003-man-mention-XDG_CONFIG_HOME-in-systemd.unit.patch G 0001-keymap-Add-Lenovo-Enhanced-USB-Keyboard.patch G 0002-keymap-Asus-EeePC-touchpad-toggle-key.patch G 0001-nspawn-allow-to-bind-mount-journal-on-top-of-a-non-e.patch G 0002-nspawn-restore-journal-directory-is-empty-check.patch G 0003-core-never-consider-failure-when-reading-drop-ins-fa.patch G 0004-socket-properly-handle-if-our-service-vanished-durin.patch G 0001-Do-not-unescape-unit-names-in-Install-section.patch G 0002-analyze-run-use-bus_open_transport_systemd-instead-o.patch G 0001-virt-rework-container-detection-logic.patch G 0002-fsck-include-device-name-in-the-message-about-missin.patch G 0003-units-use-KillMode-mixed-for-systemd-nspawn-.service.patch G 0004-util-ignore_file-should-not-allow-files-ending-with.patch G 0006-tty-ask-password-agent-Do-tell-what-directory-we-fai.patch G 0007-keyboard-add-Plantronics-.Audio-mute-button.patch G 0001-build-sys-use-glibc-s-xattr-support-instead-of-requi.patch G 0001-hwdb-fix-case-sensitive-match.patch G 0001-sd-event-restore-correct-timeout-behaviour.patch G 0002-bus-make-use-of-sd_bus_try_close-in-exit-on-idle-ser.patch G 0001-umount-modernizations.patch G 0002-namespace-when-setting-up-an-inaccessible-mount-poin.patch G 0003-core-allow-transient-mount-units.patch G 0004-systemd-detect-virt-only-discover-Xen-domU.patch G 0005-backlight-Do-not-clamp-brightness-for-LEDs.patch G 0006-log-honour-the-kernel-s-quiet-cmdline-argument.patch G 0001-core-fix-invalid-free-in-killall.patch G 0003-install-fix-invalid-free-in-unit_file_mask.patch G 0001-systemd-detect-virt-detect-s390-virtualization.patch G 0001-core-sysvcompat-network-should-be-equivalent-to-netw.patch G 0002-units-add-missing-caps-so-that-GetAddresses-can-work.patch G 0003-units-order-systemd-tmpfiles-clean.service-after-tim.patch G 0005-po-add-Greek-translation.patch G 0006-hwdb-Update-database-of-Bluetooth-company-identifier.patch G 0007-po-add-German-translation.patch G 0009-core-clean-up-signal-reset-logic-when-reexec.patch G 0010-util-treat-fuse.sshfs-as-a-network-filesystem.patch G 0011-build-sys-add-pthread-flag-for-libsystemd-shared.patch G 0012-core-transaction-avoid-misleading-error-message-when.patch G 0001-vconsole-also-copy-character-maps-not-just-fonts-fro.patch G 0002-core-make-sure-Environment-fields-passed-in-for-tran.patch G 0003-core-You-can-not-put-the-cached-result-of-use_smack-.patch G 0004-cryptsetup-don-t-add-unit-dependency-on-dev-null-dev.patch G 0005-man-fix-path-in-crypttab-5.patch G 0001-units-order-network-online.target-after-network.targ.patch G 0001-core-use-correct-format-string-for-UIDs.patch G 0002-core-transaction-fix-cycle-break-attempts-outside-tr.patch G 0003-fsck-consider-a-fsck-implementation-linked-to-bin-tr.patch G 0001-main-uid_to_name-might-fail-due-to-OOM-protect-again.patch G 0002-journald-make-MaxFileSec-really-default-to-1month.patch G 0003-units-remove-RefuseManualStart-from-units-which-are-.patch G 0004-util-refuse-considering-UID-0xFFFF-and-0xFFFFFFFF-va.patch G 0005-nspawn-block-open_by_handle_at-and-others-via-seccom.patch G 0006-tmpfiles-don-t-do-automatic-cleanup-in-XDG_RUNTIME_D.patch G 0007-units-skip-mounting-tmp-if-it-is-a-symlink.patch G 0001-parse_uid-return-ENXIO-for-1-uids.patch G 0002-util-when-unescaping-strings-don-t-allow-smuggling-i.patch G 0003-localed-consider-an-unset-model-as-a-wildcard.patch G 0004-sd-bus-when-an-event-loop-terminates-explicitly-clos.patch G 0005-bus-close-a-bus-that-failed-to-connect.patch G 0006-hwdb-update.patch G 0007-hwdb-Update-database-of-Bluetooth-company-identifier.patch G 0001-architecture-Add-tilegx.patch G 0002-architecture-Add-cris.patch G 0003-arch-add-crisv32-to-uname-check.patch G 0004-architecture-remove-cris-from-uname-list.patch G 0003-namespace-make-sure-tmp-var-tmp-and-dev-are-writable.patch G 0002-namespace-fix-uninitialized-memory-access.patch G 0001-machine-don-t-return-uninitialized-variable.patch G 0002-vconsole-setup-run-setfont-before-loadkeys.patch G 0001-util-consider-0x7F-a-control-chracter-which-it-is-DE.patch G 0002-util-don-t-consider-tabs-special-in-string_has_cc-an.patch G 0003-architecture-add-string-table-entries-for-mips-le-ar.patch G 0004-core-Added-support-for-ERRNO-NOTIFY_SOCKET-message-p.patch G 0005-service-don-t-accept-negative-ERRNO-notification-mes.patch G 0006-systemctl-show-StatusErrno-value-in-systemctl-status.patch G 0007-service-flush-status-text-and-errno-values-each-time.patch G 0001-journal-compress-return-early-in-uncompress_startswi.patch G 0002-journal-compress-improve-xz-compression-performance.patch G 0001-logind-allow-switching-to-unused-VTs-via-SwitchTo.patch G 0002-hostnamed-add-a-new-chassis-type-for-watches.patch G 0001-units-make-ExecStopPost-action-part-of-ExecStart.patch G 0001-event-pull-in-sd-event.h-from-event-util.h.patch G 0002-util-fix-has-cc-check-and-add-test.patch G 0003-sd-event-always-call-epoll_ctl-on-mask-updates-if-ed.patch G 0004-fileio-quote-more-shell-characters-in-envfiles.patch G 0001-Clear-up-confusion-wrt.-ENTRY_SIZE_MAX-and-DATA_SIZE.patch G 0002-units-serial-getty-.service-use-the-default-RestartS.patch G 0001-po-add-Ukrainian-translation.patch G 0002-man-document-yearly-and-annually-in-systemd.time-7.patch G 0003-core-nicer-message-when-inotify-watches-are-exhauste.patch G 0001-detect-virt-Fix-Xen-domU-discovery.patch G 0002-Be-more-verbose-when-bind-or-listen-fails.patch G 0003-Add-quotes-to-warning-message.patch G 0004-systemd-return-the-first-error-from-manager_startup.patch G 0001-bash-completion-p-option-for-journalctl.patch G 0002-journalctl-man-allow-only-between-terms.patch G 0003-systemd-use-pager-for-test-and-help.patch G 0001-bus-proxyd-fix-incorrect-comparison.patch G 0002-shell-completion-prevent-mangling-unit-names.patch G 0003-Always-check-asprintf-return-code.patch G 0004-bash-completion-use-list-unit-files-to-get-all-units.patch G 0005-core-only-set-the-kernel-s-timezone-when-the-RTC-run.patch G 0006-parse_boolean-require-exact-matches.patch G 0007-drop_duplicates-copy-full-BindMount-struct.patch G 0008-shell-completion-prevent-mangling-unit-names-bash.patch G 0009-journald-always-add-syslog-facility-for-messages-com.patch G 0001-sysv-order-initscripts-which-provide-network-before-.patch G 0002-keymap-Add-microphone-mute-keymap-for-Dell-Latitude.patch G 0003-keymap-Annotate-all-micmute-workarounds.patch G 0007-hwdb-update.patch G 0001-nspawn-fix-truncation-of-machine-names-in-interface-.patch G 0002-switch-root-umount-the-old-root-correctly.patch G 0003-bootchart-it-s-not-OK-to-return-1-from-a-main-progra.patch G 0004-login-set_controller-should-fail-if-prepare_vt-fails.patch G 0005-sd-resolve-fix-allocation-if-query-ids-never-reuse-t.patch G 0006-login-share-VT-signal-handler-between-sessions.patch G 0007-journald-also-increase-the-SendBuffer-of-dev-log-to-.patch G 0008-mount-setup-fix-counting-of-early-mounts-without-SMA.patch G 0009-journald-Fix-off-by-one-error-in-Missed-X-kernel-mes.patch G 0010-machine_kill-Don-t-kill-the-unit-when-killing-the-le.patch G 0011-units-fix-BindsTo-logic-when-applied-relative-to-ser.patch G 0012-util-try-to-be-a-bit-more-NFS-compatible-when-checki.patch G 0001-hwdb-keymaps-for-Samsung-900X3E-900X3F.patch G 0002-Add-hwdb-entry-for-Samsung-Series-7-Ultra.patch G 0003-keymap-Fix-HP-Pavillon-DV7.patch G 0004-hwdb-update-format-description-and-document-reloadin.patch G 0008-hwdb-update.patch G 0001-systemctl-Correct-error-message-printed-when-bus_pro.patch G 0002-units-order-systemd-fsck-.service-after-local-fs-pre.patch G 0003-keymap-Adjust-for-more-Samsung-900X4-series.patch G 0001-login-fix-memory-leak-on-DropController.patch G 0002-util-fix-minimal-race-where-we-might-miss-SIGTERMs-w.patch G 0003-sd-journal-properly-convert-object-size-on-big-endia.patch G 0004-sd-journal-verify-that-object-start-with-the-field-n.patch G 0001-nspawn-fix-network-interface.patch G 0001-completion-filter-templates-from-restartable-units.patch G 0002-systemd-fix-error-message.patch G 0003-Quote-unit-names-in-suggested-systemctl-commandlines.patch G 0004-config-parser-fix-mem-leak.patch G 0005-login-fix-mem-leak.patch G 0001-login-simplify-controller-handling.patch G 0001-initrd-parse-etc.service-ignore-return-code-of-daemo.patch G 0008-hwdb-Update-database-of-Bluetooth-company-identifier.patch G 0009-hwdb-update.patch G 0001-systemctl-allow-to-change-the-default-target-without.patch G 0001-activate-fix-fd-leak-in-do_accept.patch G 0002-analyze-avoid-a-null-dereference.patch G 0003-analyze-fix-mem-leak.patch G 0004-backlight-Avoid-error-when-state-restore-is-disabled.patch G 0005-bus-avoid-using-m-kdbus-after-freeing-it.patch G 0006-bus-unref-buscreds-on-failure.patch G 0007-core-fix-a-potential-mem-leak.patch G 0008-core-smack-setup-Actually-allow-for-succesfully-load.patch G 0009-journal-do-not-leak-mmaps-on-OOM.patch G 0010-manager-use-correct-cleanup-function.patch G 0001-core-fix-resource-leak-in-manager_environment_add.patch G 0002-util-remove-a-unnecessary-check.patch G 0003-udev-event-explicitly-don-t-read-from-invalid-fd.patch G 0004-shared-conf-parser.patch G 0005-logind-fix-typo.patch G 0006-systemctl-fix-resource-leak-CID-1237747.patch G 0007-libudev-monitor-warn-if-we-fail-to-request-SO_PASSCR.patch G 0008-shared-conf-parser-don-t-leak-memory-on-error-in-DEF.patch G 0009-bus-fix-bus_print_property-to-use-int-for-booleans.patch G 0001-journal-Do-not-count-on-the-compiler-initializing-fo.patch G 0002-include-fcntl.h-rather-than-sys-fcntl.h.patch G 0003-mount-order-options-before-other-arguments-to-mount.patch G 0004-shared-wtmp-utmp-don-t-clear-store_wtmp-in-utmp_put_.patch G 0005-shared-label.h-add-missing-stdio.h-include.patch G 0006-shared-sparse-endian.h-add-missing-byteswap.h-includ.patch G 0001-login-pause-devices-before-acknowledging-VT-switches.patch G 0001-nspawn-don-t-try-to-create-veth-link-with-too-long-i.patch G 0001-socket-introduce-SELinuxContextFromNet-option.patch G 0002-util-avoid-non-portable-__WORDSIZE.patch G 0001-Fix-warning-about-unused-variable-with-SELINUX.patch G 0002-bus-remove-unused-check.patch G 0001-systemd-tmpfiles-Fix-IGNORE_DIRECTORY_PATH-age-handl.patch G 0001-logind-add-support-for-Triton2-Power-Button.patch G 0002-logind-add-support-for-TPS65217-Power-Button.patch G 0001-shutdownd-clean-up-initialization-of-struct.patch G 0003-bootchart-parse-userinput-with-safe_atoi.patch G 0004-bootchart-check-return-of-strftime.patch G 0005-bootchart-Do-not-try-to-access-data-for-non-existing.patch G 0001-journalctl-do-not-output-reboot-markers-when-running.patch G 0002-udev-hwdb-New-Entry-for-Dell-XPS12-9Q33-keyboard.patch G 0001-core-swap-only-make-configured-units-part-of-swap.ta.patch G 0009-hwdb-Update-database-of-Bluetooth-company-identifier.patch G 0001-virt-detect-that-we-are-running-inside-the-docker-co.patch G 0002-bootchart-use-n-a-if-PRETTY_NAME-is-not-found.patch G 0003-fileio-label-return-error-when-writing-fails.patch G 0001-sd-event-don-t-require-a-signal-event-source-to-be-e.patch G 0004-sd-event-check-the-value-of-received-signal.patch G 0005-sd-id128-do-stricter-checking-of-random-boot-id.patch G 0001-keymap-Fix-touchpad-toggle-on-Toshiba-Satellite-P75-.patch G 0001-units-introduce-network-pre.target-as-place-to-hook-.patch G 0002-keymap-Fix-touchpad-toggle-key-on-Asus-laptops.patch G 0003-sd-bus-check-return-value-of-vasprintf.patch G 0004-core-map-the-rescue-argument-to-rescue.target.patch G 0005-util-avoid-double-close-of-fd.patch G 0001-systemctl-when-mangle-unit-names-for-the-isolate-suf.patch G 0001-tmpfiles-compare-return-against-correct-errno.patch G 0001-shell-completion-fix-completion-of-inactive-units.patch G 0002-shell-completion-propose-templates-for-disable-re-en.patch G 0003-man-we-don-t-have-Wanted-dependency.patch G 0004-selinux-fix-potential-double-free-crash-in-child-pro.patch G 0001-systemd-continue-switch-root-even-if-umount-fails.patch G 0002-systemd-try-harder-to-bind-to-notify-socket.patch G 0001-strv-add-an-additional-overflow-check-when-enlarging.patch G 0002-hwdb-Add-mapping-for-special-keys-on-compaq-ku-0133-.patch G 0003-journald-add-CAP_MAC_OVERRIDE-in-journald-for-SMACK-.patch G 0004-journal-do-server_vacuum-for-sigusr1.patch G 0005-cryptsetup-fix-an-OOM-check.patch G 0002-shutdown-pass-own-argv-to-run-initramfs-shutdown.patch G 0001-manager-Linux-on-hppa-has-fewer-rtsigs-hence-avoid-u.patch G 0002-time-also-support-infinity-syntax-in-parse_nsec.patch G 0003-time-earlier-exit-from-format_timestamp_relative-on-.patch G 0004-sd-bus-if-we-don-t-manage-to-properly-allocate-the-e.patch G 0005-journalctl-correct-help-text-for-until.patch G 0006-calendarspec-fix-typo-in-annually.patch G 0007-systemctl-do-not-ignore-errors-in-symlink-removal.patch G 0008-util-introduce-sethostname_idempotent.patch G 0009-util-fix-copy-paste-error-and-actually-set-the-new-h.patch G 0010-shutdown-do-final-unmounting-only-if-not-running-ins.patch G 0011-selinux-make-sure-we-do-not-try-to-print-missing-fie.patch G 0012-manager-do-not-print-anything-while-passwords-are-be.patch G 0001-sd-bus-properly-handle-removals-of-non-existing-matc.patch G 0002-keymap-Ignore-brightness-keys-on-Dell-Inspiron-1520-.patch G 0001-core-don-t-allow-enabling-if-unit-is-masked.patch G 0002-snapshot-return-error-when-snapshot-exists.patch G 0003-shared-install-avoid-prematurely-rejecting-missing-u.patch G 0004-Raise-level-of-Found-dependency.-lines.patch G 0005-units-order-sd-journal-flush-after-sd-remount-fs.patch G 0006-journald-fix-minor-memory-leak.patch G 0007-journald-also-check-journal-file-size-to-deduce-if-i.patch G 0008-journald-fix-memory-leak-on-error-path.patch G 0009-units-make-systemd-journald.service-Type-notify.patch G 0010-hwdb-Update-database-of-Bluetooth-company-identifier.patch G 0001-login-rerun-vconsole-setup-when-switching-from-vgaco.patch G 0002-shutdown-fix-arguments-to-run-initramfs-shutdown.patch G 0003-utf8-when-looking-at-the-next-unichar-honour-the-siz.patch G 0001-keymap-Add-support-for-IBM-ThinkPad-X41-Tablet.patch G 0002-keymap-Fix-special-keys-on-ThinkPad-X60-X61-Tablet.patch G 0001-systemctl-let-list-units-unit-files-honour-type.patch G 0002-systemctl-obey-state-in-list-unit-files.patch G 0002-core-watchdog-bus-properties-cannot-be-both-writable.patch G 0003-sd-bus-refuse-properties-that-claim-to-be-both-writa.patch G 0001-units-make-sure-rfkill-service-is-bount-to-the-actua.patch G 0001-selinux-access-fix-broken-ternary-operator.patch G 0002-systemctl-show-BindsTo-BoundBy-in-list-dependencies.patch G 0003-cryptsetup-default-to-no-hash-when-keyfile-is-specif.patch G 0004-core-fix-transaction-destructiveness-check-once-more.patch G 0001-units-tmpfiles-setup-dev-allow-unsafe-file-creation-.patch G 0002-man-tmpfiles.d-recommend-using-b-and-c.patch G 1009-cdrom_id-use-the-old-MMC-fallback.patch G 1010-udev-increase-result-size-for-programs.patch G 1014-udev-update-net_id-comments.patch G 1015-udev-persistent-naming-we-cannot-use-virtio-numbers-.patch G 1016-udev-warn-when-name_to_handle_at-is-not-implemented.patch G 1017-udev-serialize-synchronize-block-device-event-handli.patch G 1018-udev-do-not-skip-the-execution-of-RUN-when-renaming-.patch G 1019-udev-avoid-use-of-uninitialized-err.patch G 1020-udev-keyboard-also-hook-into-change-events.patch G 1022-udev-remove-seqnum-API-and-all-assumptions-about-seq.patch G 1023-udev-builtin-keyboard-do-tell-on-which-device-EVIOCS.patch G 1024-udev-always-close-lock-file-descriptor.patch G 1025-udev-exclude-device-mapper-from-block-device-ownersh.patch G 1026-udevd-inotify-modernizations.patch G 1027-udev-synthesize-change-events-for-partitions-when-to.patch G 1028-udev-link-config-fix-mem-leak.patch G 1029-udev-try-first-re-reading-the-partition-table.patch G 1030-udev-guard-REREADP-logic-with-open-O_ECXL.patch G 1031-udev-make-sure-we-always-get-change-for-the-disk.patch G 1032-udev-guard-REREADPT-by-exclusive-lock-instead-of-O_E.patch G 1033-udev-really-exclude-device-mapper-from-block-device.patch G 1034-udev-check-the-return-value-from-udev_enumerate_scan.patch G 1038-udev-fix-invalid-free-in-enable_name_policy.patch G 1039-udevadm-settle-fixed-return-code-for-empty-queue.patch G 1041-libudev-fix-udev_queue_get_queue_is_empty-logic.patch G 1042-libudev-queue-provide-file-descriptor-to-watch-busy-.patch G 1043-libudev-queue-watch-entire-directory-to-allow-the-re.patch G 1044-rules-update-qemu-hid-rules.patch G 1045-rules-don-t-enable-usb-pm-for-Avocent-devices.patch G 1047-udev-net_setup_link-builtin-should-print-the-reason-.patch G 1048-udev-net_setup_link-add-a-bit-more-logging.patch G 1049-udev-link_config-ignore-errors-due-to-missing-MAC-ad.patch G 1052-rules-uaccess-add-ID_SOFTWARE_RADIO.patch G 1054-udev-exclude-MD-from-block-device-ownership-event-lo.patch G 1056-udevd-add-event-timeout-commandline-option.patch G 1057-udev-unify-event-timeout-handling.patch G 1058-udev-unify-event-timeout-handling.patch G 1059-udev-fixup-commit-dd5eddd28a74a49607a8fffcaf960040db.patch G 1061-rules-allow-systemd-to-manage-loop-device-partitions.patch G 1063-udev-path_id-suppress-ID_PATH-for-devices-with-an-un.patch G 1064-udev-hwdb-do-not-look-at-usb_device-parents.patch G 1065-udev-bump-event-timeout-to-60-seconds.patch G 1067-udev-always-resolve-correctly-database-names-on-chan.patch G 1068-udev-net_setup_link-export-the-.link-filename-applie.patch G 1069-rules-net-setup-link-preserve-ID_NET_LINK_FILE-and-I.patch G 1070-rules-net-setup-link-remove-stray-linebreak.patch G 1071-udev-import-the-full-db-on-MOVE-events-for-devices-w.patch G 1072-udev-netif_rename-don-t-log-to-kmsg.patch G 1073-udev-drop-print_kmsg.patch G 1074-udev-fix-copy-paste-error-in-log-message.patch G 1075-udev-timeout-increase-timeout.patch G 1076-udev-timeout-warn-after-a-third-of-the-timeout-befor.patch G 1077-udev-timeout-warn-after-a-third-of-the-timeout-befor.patch G 1078-udev-remove-userspace-firmware-loading-support.patch G 1079-udev-remove-userspace-firmware-loading-support.patch G 1080-udevd-parse_argv-warn-if-argumens-are-invalid.patch G 1081-udevd-check-return-of-various-functions.patch G 1082-udevadm-hwdb-check-return-value-of-fseeko.patch G 1083-udev-node-warn-if-chmod-chown-fails.patch G 1084-udev-ctrl-log-if-setting-SO_PASSCRED-fails.patch G 1085-udev-fix-typos.patch G 1086-udevd-don-t-fail-if-run-udev-exists.patch G 1089-fix-cgroup-device-controller.patch G 1090-udev-path_id-set-supported_parent-for-well-known-SCS.patch G 1091-udev-path_id-update-comments.patch G 1092-libudev-do-not-accept-invalid-log-levels.patch G 1093-udev-Fix-parsing-of-udev.event-timeout-kernel-parame.patch G 1094-udev-avoid-magic-constants-in-kernel-cmdline-parsers.patch G 1098-udev-link_setup-respect-kernel-name-assign-policy.patch- update set-and-use-default-logconsole.patch - fix comparison of console log facility that caused journald to skip output to console (boo#912030)- Use Robert's latest patch 1098-udev-link_setup-respect-kernel-name-assign-policy.patch which drops NAMEPOLICY_KERNEL as this breaks all on current systems out there- remove 0022-systemd-tmpfiles-ownerkeep.patch since this is now implemented into the systemd-tmpfiles binary - add user based ignore statements in tmpfiles removal directives (bnc#903009) add systemd-add-user-keep.patch- use --boot option in systemd-tmpfiles-setup-dev.service (bnc#908476) add upstream patches: 0001-units-tmpfiles-setup-dev-allow-unsafe-file-creation-.patch 0002-man-tmpfiles.d-recommend-using-b-and-c.patch (adapted)- Update patch 1098-udev-link_setup-respect-kernel-name-assign-policy.patch to Robert's version- Add upstream patches 0001-selinux-access-fix-broken-ternary-operator.patch 0002-systemctl-show-BindsTo-BoundBy-in-list-dependencies.patch 0003-cryptsetup-default-to-no-hash-when-keyfile-is-specif.patch 0004-core-fix-transaction-destructiveness-check-once-more.patch - Avoid old net devices naming scheme on openSUSE 13.2 and less maybe caused by patch 1098-udev-link_setup-respect-kernel-name-assign-policy.patch- fix systemd-nspawn network-veth support (bnc#906709) add 513-nspawn-veth.patch- Add upstream patch 1098-udev-link_setup-respect-kernel-name-assign-policy.patch which may solve bsc#907318- Add upstream patches 0001-units-make-sure-rfkill-service-is-bount-to-the-actua.patch 0002-rfkill-rework-how-we-generate-file-names-from-rfkill.patch- Change the maximum number of children from CPU_COUNT * 256 to CPU_COUNT * 64. Update 1097-udevd-increase-maximum-number-of-children.patch- Increase number of children/workers to CPU_COUNT * 256 to avoid 'maximum number of children reached' (bnc#907393). Add 1097-udevd-increase-maximum-number-of-children.patch- Fix error return in rootsymlink_generator.c Update 1096-new-udev-root-symlink-generator.patch- Remove upstream patch 0001-systemd-logind.service-set-Type-notify.patch as systemd-logind.service is already from DBus type, compare with upstream commit eab459bc0639b81b32735f36d3e929e4bfa2cb4b- Add upstream patches 0001-systemd-logind.service-set-Type-notify.patch 0002-core-watchdog-bus-properties-cannot-be-both-writable.patch 0003-sd-bus-refuse-properties-that-claim-to-be-both-writa.patch- Re-add directory /usr/lib/systemd/system/basic.target.wants- remove pm-utils-hooks-compat.sh again, pm-utils built-in hooks partially duplicate hooks run by systemd which may potentially lead to problems, instead temporarily re-enable Forward-suspend-hibernate-calls-to-pm-utils.patch until boo#904828 can be addressed properly- fix bashisms in write_net_rules script - update patches: * 1053-better-checks-in-write_net_rules.patch- Add upstream patches 0001-systemctl-let-list-units-unit-files-honour-type.patch 0002-systemctl-obey-state-in-list-unit-files.patch which allows to use --type in the systemctl command list-units and list-unit-files.- Add upstream patches 0001-keymap-Add-support-for-IBM-ThinkPad-X41-Tablet.patch 0002-keymap-Fix-special-keys-on-ThinkPad-X60-X61-Tablet.patch- New root symlink rule generator Add 1096-new-udev-root-symlink-generator.patch - Remove write_dev_root_rule and systemd-udev-root-symlink- Change patch 0001-add-hdflush-for-reboot-or-hddown-for-poweroff.patch to skip hdflush as well as hddown but only use halt as fallback for poweroff as well as synch in systemctl before any reboot command (compare with commit 4a3ad39957399c4a30fc472a804e72907ecaa4f9)- Create rule to set I/O scheduler to deadline if device attribute 'rotational' equals 0, usually SSDs (bnc#904517). Add 1095-set-ssd-disk-to-use-deadline-scheduler.patch- fix systemd-fstab-generator crypttab parsing (bnc#903963)- Add pm-utils-hooks-compat.sh in order to run pm-utils sleep hooks from systemd (boo#904828)- Add upstream patches 0001-login-rerun-vconsole-setup-when-switching-from-vgaco.patch 0002-shutdown-fix-arguments-to-run-initramfs-shutdown.patch 0003-utf8-when-looking-at-the-next-unichar-honour-the-siz.patch- Add upstream patches 0001-core-don-t-allow-enabling-if-unit-is-masked.patch 0002-snapshot-return-error-when-snapshot-exists.patch 0003-shared-install-avoid-prematurely-rejecting-missing-u.patch 0004-Raise-level-of-Found-dependency.-lines.patch 0005-units-order-sd-journal-flush-after-sd-remount-fs.patch 0006-journald-fix-minor-memory-leak.patch 0007-journald-also-check-journal-file-size-to-deduce-if-i.patch 0008-journald-fix-memory-leak-on-error-path.patch 0009-units-make-systemd-journald.service-Type-notify.patch 0010-hwdb-Update-database-of-Bluetooth-company-identifier.patch- Add upstream patches 1092-libudev-do-not-accept-invalid-log-levels.patch 1093-udev-Fix-parsing-of-udev.event-timeout-kernel-parame.patch 1094-udev-avoid-magic-constants-in-kernel-cmdline-parsers.patch- Add patch watch_resolv.conf_for_become_changed.patch to add an inotify watch on /etc/resolv.conf which enables the reload of a changed resolver configuration on the fly (bsc#902901) - Do not apply patch 0022-systemd-tmpfiles-ownerkeep.patch in case if the script /usr/bin/systemd-tmpfiles-keep is missed- Add upstream patches 0001-sd-bus-properly-handle-removals-of-non-existing-matc.patch 0002-keymap-Ignore-brightness-keys-on-Dell-Inspiron-1520-.patch- Add upstream patches 1090-udev-path_id-set-supported_parent-for-well-known-SCS.patch 1091-udev-path_id-update-comments.patch which will be applied if patch 1090-udev-path_id-set-supported_parent-for-well-known-SCS.patch is applied a this may fix the trouble with iSCSI (bnc#898233)- Add upstream patches 0001-manager-Linux-on-hppa-has-fewer-rtsigs-hence-avoid-u.patch 0002-time-also-support-infinity-syntax-in-parse_nsec.patch 0003-time-earlier-exit-from-format_timestamp_relative-on-.patch 0004-sd-bus-if-we-don-t-manage-to-properly-allocate-the-e.patch 0005-journalctl-correct-help-text-for-until.patch 0006-calendarspec-fix-typo-in-annually.patch 0007-systemctl-do-not-ignore-errors-in-symlink-removal.patch 0008-util-introduce-sethostname_idempotent.patch 0009-util-fix-copy-paste-error-and-actually-set-the-new-h.patch 0010-shutdown-do-final-unmounting-only-if-not-running-ins.patch 0011-selinux-make-sure-we-do-not-try-to-print-missing-fie.patch - Replace patch keep-crypt-password-prompt.patch as this with upstream patch 0012-manager-do-not-print-anything-while-passwords-are-be.patch- Add upstream patch 0002-shutdown-pass-own-argv-to-run-initramfs-shutdown.patch - Add patch journald-advice-about-use-of-memory.patch to use mmap() flags as well as madvise(2) for journal files.- Add upstream patches 0001-strv-add-an-additional-overflow-check-when-enlarging.patch 0002-hwdb-Add-mapping-for-special-keys-on-compaq-ku-0133-.patch 0003-journald-add-CAP_MAC_OVERRIDE-in-journald-for-SMACK-.patch 0004-journal-do-server_vacuum-for-sigusr1.patch 0005-cryptsetup-fix-an-OOM-check.patch- Add upstream patch 1089-fix-cgroup-device-controller.patch to avoid trouble on existing /dev/console with nspawn (bsc#902240)- Modify patch avoid-leaking-socket-descriptors.patch to close file descriptors for incomming connections in pam module in case of short memory.- Add upstream patches 0001-systemd-continue-switch-root-even-if-umount-fails.patch 0002-systemd-try-harder-to-bind-to-notify-socket.patch - Add patch avoid-leaking-socket-descriptors.patch to close file descriptors if an incomming connection can not be handled due e.g. short memory. Could be related to bsc #901481- Add upstream patches 0001-shell-completion-fix-completion-of-inactive-units.patch 0002-shell-completion-propose-templates-for-disable-re-en.patch 0003-man-we-don-t-have-Wanted-dependency.patch 0004-selinux-fix-potential-double-free-crash-in-child-pro.patch- Adapt patch rules-add-lid-switch-of-ARM-based-Chromebook-as-a-power-sw.patch to make it work even with patch #438 and #439- Add upstream patches 0001-systemctl-when-mangle-unit-names-for-the-isolate-suf.patch 0001-tmpfiles-compare-return-against-correct-errno.patch- Add upstream patches 0001-keymap-Fix-touchpad-toggle-on-Toshiba-Satellite-P75-.patch 0001-units-introduce-network-pre.target-as-place-to-hook-.patch 0002-keymap-Fix-touchpad-toggle-key-on-Asus-laptops.patch 0003-sd-bus-check-return-value-of-vasprintf.patch 0004-core-map-the-rescue-argument-to-rescue.target.patch 0005-util-avoid-double-close-of-fd.patch- Add upstream patches 0001-virt-detect-that-we-are-running-inside-the-docker-co.patch 0002-bootchart-use-n-a-if-PRETTY_NAME-is-not-found.patch 0003-fileio-label-return-error-when-writing-fails.patch 0001-sd-event-don-t-require-a-signal-event-source-to-be-e.patch 0004-sd-event-check-the-value-of-received-signal.patch 0005-sd-id128-do-stricter-checking-of-random-boot-id.patch- Add upstream patches 0001-core-swap-only-make-configured-units-part-of-swap.ta.patch 0009-hwdb-Update-database-of-Bluetooth-company-identifier.patch- Add upstream patches 0001-journalctl-do-not-output-reboot-markers-when-running.patch 0002-udev-hwdb-New-Entry-for-Dell-XPS12-9Q33-keyboard.patch- Add upstream patches 0001-logind-add-support-for-Triton2-Power-Button.patch 0002-logind-add-support-for-TPS65217-Power-Button.patch - Add upstream patches 0001-shutdownd-clean-up-initialization-of-struct.patch 0003-bootchart-parse-userinput-with-safe_atoi.patch 0004-bootchart-check-return-of-strftime.patch 0005-bootchart-Do-not-try-to-access-data-for-non-existing.patchh03-ch2d 1742454597  !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~      !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~254.24-150600.4.28.1254.24-150600.4.28.1systemdCODING_STYLE.mdDISTRO_PORTING.mdENVIRONMENT.mdHACKING.mdLICENSE.GPL2LICENSE.LGPL2.1LICENSESBSD-2-Clause.txtBSD-3-Clause.txtCC0-1.0.txtLGPL-2.0-or-later.txtLinux-syscall-note.txtMIT-0.txtMIT.txtOFL-1.1.txtREADME.mdlookup3-public-domain.txtmurmurhash2-public-domain.txtNEWSREADMETRANSIENT-SETTINGS.mdTRANSLATORS.mdUIDS-GIDS.mdhtml30-systemd-environment-d-generator.htmlSD_ALERT.htmlSD_BUS_ERROR_ACCESS_DENIED.htmlSD_BUS_ERROR_ADDRESS_IN_USE.htmlSD_BUS_ERROR_AUTH_FAILED.htmlSD_BUS_ERROR_BAD_ADDRESS.htmlSD_BUS_ERROR_DISCONNECTED.htmlSD_BUS_ERROR_END.htmlSD_BUS_ERROR_FAILED.htmlSD_BUS_ERROR_FILE_EXISTS.htmlSD_BUS_ERROR_FILE_NOT_FOUND.htmlSD_BUS_ERROR_INCONSISTENT_MESSAGE.htmlSD_BUS_ERROR_INTERACTIVE_AUTHORIZATION_REQUIRED.htmlSD_BUS_ERROR_INVALID_ARGS.htmlSD_BUS_ERROR_INVALID_FILE_CONTENT.htmlSD_BUS_ERROR_INVALID_SIGNATURE.htmlSD_BUS_ERROR_IO_ERROR.htmlSD_BUS_ERROR_LIMITS_EXCEEDED.htmlSD_BUS_ERROR_MAKE_CONST.htmlSD_BUS_ERROR_MAP.htmlSD_BUS_ERROR_MATCH_RULE_INVALID.htmlSD_BUS_ERROR_MATCH_RULE_NOT_FOUND.htmlSD_BUS_ERROR_NAME_HAS_NO_OWNER.htmlSD_BUS_ERROR_NOT_SUPPORTED.htmlSD_BUS_ERROR_NO_MEMORY.htmlSD_BUS_ERROR_NO_NETWORK.htmlSD_BUS_ERROR_NO_REPLY.htmlSD_BUS_ERROR_NO_SERVER.htmlSD_BUS_ERROR_NULL.htmlSD_BUS_ERROR_OBJECT_PATH_IN_USE.htmlSD_BUS_ERROR_PROPERTY_READ_ONLY.htmlSD_BUS_ERROR_SELINUX_SECURITY_CONTEXT_UNKNOWN.htmlSD_BUS_ERROR_SERVICE_UNKNOWN.htmlSD_BUS_ERROR_TIMED_OUT.htmlSD_BUS_ERROR_TIMEOUT.htmlSD_BUS_ERROR_UNIX_PROCESS_ID_UNKNOWN.htmlSD_BUS_ERROR_UNKNOWN_INTERFACE.htmlSD_BUS_ERROR_UNKNOWN_METHOD.htmlSD_BUS_ERROR_UNKNOWN_OBJECT.htmlSD_BUS_ERROR_UNKNOWN_PROPERTY.htmlSD_BUS_MESSAGE_METHOD_CALL.htmlSD_BUS_MESSAGE_METHOD_ERROR.htmlSD_BUS_MESSAGE_METHOD_RETURN.htmlSD_BUS_MESSAGE_SIGNAL.htmlSD_BUS_METHOD.htmlSD_BUS_METHOD_WITH_NAMES.htmlSD_BUS_METHOD_WITH_NAMES_OFFSET.htmlSD_BUS_METHOD_WITH_OFFSET.htmlSD_BUS_PARAM.htmlSD_BUS_PROPERTY.htmlSD_BUS_SIGNAL.htmlSD_BUS_SIGNAL_WITH_NAMES.htmlSD_BUS_VTABLE_CAPABILITY.htmlSD_BUS_VTABLE_END.htmlSD_BUS_VTABLE_START.htmlSD_BUS_WRITABLE_PROPERTY.htmlSD_CRIT.htmlSD_DEBUG.htmlSD_EMERG.htmlSD_ERR.htmlSD_EVENT_ARMED.htmlSD_EVENT_EXITING.htmlSD_EVENT_FINISHED.htmlSD_EVENT_INITIAL.htmlSD_EVENT_OFF.htmlSD_EVENT_ON.htmlSD_EVENT_ONESHOT.htmlSD_EVENT_PENDING.htmlSD_EVENT_PREPARING.htmlSD_EVENT_PRIORITY_IDLE.htmlSD_EVENT_PRIORITY_IMPORTANT.htmlSD_EVENT_PRIORITY_NORMAL.htmlSD_EVENT_RUNNING.htmlSD_EVENT_SIGNAL_PROCMASK.htmlSD_HWDB_FOREACH_PROPERTY.htmlSD_ID128_ALLF.htmlSD_ID128_CONST_STR.htmlSD_ID128_FORMAT_STR.htmlSD_ID128_FORMAT_VAL.htmlSD_ID128_MAKE.htmlSD_ID128_MAKE_STR.htmlSD_ID128_MAKE_UUID_STR.htmlSD_ID128_NULL.htmlSD_ID128_STRING_MAX.htmlSD_ID128_TO_STRING.htmlSD_ID128_TO_UUID_STRING.htmlSD_ID128_UUID_FORMAT_STR.htmlSD_ID128_UUID_STRING_MAX.htmlSD_INFO.htmlSD_JOURNAL_ALL_NAMESPACES.htmlSD_JOURNAL_APPEND.htmlSD_JOURNAL_CURRENT_USER.htmlSD_JOURNAL_FOREACH.htmlSD_JOURNAL_FOREACH_BACKWARDS.htmlSD_JOURNAL_FOREACH_DATA.htmlSD_JOURNAL_FOREACH_FIELD.htmlSD_JOURNAL_FOREACH_UNIQUE.htmlSD_JOURNAL_INCLUDE_DEFAULT_NAMESPACE.htmlSD_JOURNAL_INVALIDATE.htmlSD_JOURNAL_LOCAL_ONLY.htmlSD_JOURNAL_NOP.htmlSD_JOURNAL_OS_ROOT.htmlSD_JOURNAL_RUNTIME_ONLY.htmlSD_JOURNAL_SUPPRESS_LOCATION.htmlSD_JOURNAL_SYSTEM.htmlSD_JOURNAL_TAKE_DIRECTORY_FD.htmlSD_LISTEN_FDS_START.htmlSD_NOTICE.htmlSD_WARNING.htmlbinfmt.d.htmlbootctl.htmlbootup.htmlbusctl.htmlcoredump.conf.d.htmlcoredump.conf.htmlcoredumpctl.htmlcrypttab.htmldaemon.htmldnssec-trust-anchors.d.htmlenvironment.d.htmlextension-release.htmlfile-hierarchy.htmlhalt.htmlhomectl.htmlhomed.conf.d.htmlhomed.conf.htmlhostname.htmlhostnamectl.htmlhwdb.htmlindex.htmlinit.htmlinitrd-release.htmlintegritytab.htmliocost.conf.htmljournal-remote.conf.d.htmljournal-remote.conf.htmljournal-upload.conf.d.htmljournal-upload.conf.htmljournalctl.htmljournald.conf.d.htmljournald.conf.htmljournald@.conf.htmlkernel-command-line.htmlkernel-install.htmllibnss_myhostname.so.2.htmllibnss_mymachines.so.2.htmllibnss_resolve.so.2.htmllibnss_systemd.so.2.htmllibsystemd.htmllibudev.htmllinuxaa64.efi.stub.htmllinuxia32.efi.stub.htmllinuxx64.efi.stub.htmlloader.conf.htmllocale.conf.htmllocalectl.htmllocaltime.htmlloginctl.htmllogind.conf.d.htmllogind.conf.htmlmachine-id.htmlmachine-info.htmlmachinectl.htmlmodules-load.d.htmlmount.ddi.htmlnetworkctl.htmlnetworkd.conf.d.htmlnetworkd.conf.htmlnss-myhostname.htmlnss-mymachines.htmlnss-resolve.htmlnss-systemd.htmloomctl.htmloomd.conf.d.htmloomd.conf.htmlorg.freedesktop.LogControl1.htmlorg.freedesktop.home1.htmlorg.freedesktop.hostname1.htmlorg.freedesktop.import1.htmlorg.freedesktop.locale1.htmlorg.freedesktop.login1.htmlorg.freedesktop.machine1.htmlorg.freedesktop.network1.htmlorg.freedesktop.oom1.htmlorg.freedesktop.portable1.htmlorg.freedesktop.resolve1.htmlorg.freedesktop.systemd1.htmlorg.freedesktop.timedate1.htmlos-release.htmlpam_systemd.htmlpam_systemd_home.htmlportablectl.htmlpoweroff.htmlpstore.conf.d.htmlpstore.conf.htmlrc-local.service.htmlreboot.htmlrepart.d.htmlresolvconf.htmlresolvectl.htmlresolved.conf.d.htmlresolved.conf.htmlrunlevel.htmlsd-boot.htmlsd-bus-errors.htmlsd-bus.htmlsd-daemon.htmlsd-device.htmlsd-event.htmlsd-hwdb.htmlsd-id128.htmlsd-journal.htmlsd-login.htmlsd-stub.htmlsd_booted.htmlsd_bus_add_fallback.htmlsd_bus_add_fallback_vtable.htmlsd_bus_add_filter.htmlsd_bus_add_match.htmlsd_bus_add_match_async.htmlsd_bus_add_node_enumerator.htmlsd_bus_add_object.htmlsd_bus_add_object_manager.htmlsd_bus_add_object_vtable.htmlsd_bus_attach_event.htmlsd_bus_call.htmlsd_bus_call_async.htmlsd_bus_call_method.htmlsd_bus_call_method_async.htmlsd_bus_call_method_asyncv.htmlsd_bus_call_methodv.htmlsd_bus_can_send.htmlsd_bus_close.htmlsd_bus_close_unref.htmlsd_bus_close_unrefp.htmlsd_bus_creds_get_audit_login_uid.htmlsd_bus_creds_get_audit_session_id.htmlsd_bus_creds_get_augmented_mask.htmlsd_bus_creds_get_cgroup.htmlsd_bus_creds_get_cmdline.htmlsd_bus_creds_get_comm.htmlsd_bus_creds_get_description.htmlsd_bus_creds_get_egid.htmlsd_bus_creds_get_euid.htmlsd_bus_creds_get_exe.htmlsd_bus_creds_get_fsgid.htmlsd_bus_creds_get_fsuid.htmlsd_bus_creds_get_gid.htmlsd_bus_creds_get_mask.htmlsd_bus_creds_get_owner_uid.htmlsd_bus_creds_get_pid.htmlsd_bus_creds_get_ppid.htmlsd_bus_creds_get_selinux_context.htmlsd_bus_creds_get_session.htmlsd_bus_creds_get_sgid.htmlsd_bus_creds_get_slice.htmlsd_bus_creds_get_suid.htmlsd_bus_creds_get_supplementary_gids.htmlsd_bus_creds_get_tid.htmlsd_bus_creds_get_tid_comm.htmlsd_bus_creds_get_tty.htmlsd_bus_creds_get_uid.htmlsd_bus_creds_get_unique_name.htmlsd_bus_creds_get_unit.htmlsd_bus_creds_get_user_slice.htmlsd_bus_creds_get_user_unit.htmlsd_bus_creds_get_well_known_names.htmlsd_bus_creds_has_bounding_cap.htmlsd_bus_creds_has_effective_cap.htmlsd_bus_creds_has_inheritable_cap.htmlsd_bus_creds_has_permitted_cap.htmlsd_bus_creds_new_from_pid.htmlsd_bus_creds_ref.htmlsd_bus_creds_unref.htmlsd_bus_creds_unrefp.htmlsd_bus_default.htmlsd_bus_default_flush_close.htmlsd_bus_default_system.htmlsd_bus_default_user.htmlsd_bus_destroy_t.htmlsd_bus_detach_event.htmlsd_bus_emit_interfaces_added.htmlsd_bus_emit_interfaces_added_strv.htmlsd_bus_emit_interfaces_removed.htmlsd_bus_emit_interfaces_removed_strv.htmlsd_bus_emit_object_added.htmlsd_bus_emit_object_removed.htmlsd_bus_emit_properties_changed.htmlsd_bus_emit_properties_changed_strv.htmlsd_bus_emit_signal.htmlsd_bus_emit_signal_to.htmlsd_bus_emit_signal_tov.htmlsd_bus_emit_signalv.htmlsd_bus_enqueue_for_read.htmlsd_bus_error.htmlsd_bus_error_add_map.htmlsd_bus_error_copy.htmlsd_bus_error_free.htmlsd_bus_error_get_errno.htmlsd_bus_error_has_name.htmlsd_bus_error_has_names.htmlsd_bus_error_has_names_sentinel.htmlsd_bus_error_is_set.htmlsd_bus_error_map.htmlsd_bus_error_move.htmlsd_bus_error_set.htmlsd_bus_error_set_const.htmlsd_bus_error_set_errno.htmlsd_bus_error_set_errnof.htmlsd_bus_error_set_errnofv.htmlsd_bus_error_setf.htmlsd_bus_error_setfv.htmlsd_bus_flush.htmlsd_bus_flush_close_unref.htmlsd_bus_flush_close_unrefp.htmlsd_bus_get_address.htmlsd_bus_get_allow_interactive_authorization.htmlsd_bus_get_bus_id.htmlsd_bus_get_close_on_exit.htmlsd_bus_get_connected_signal.htmlsd_bus_get_creds_mask.htmlsd_bus_get_current_handler.htmlsd_bus_get_current_message.htmlsd_bus_get_current_slot.htmlsd_bus_get_current_userdata.htmlsd_bus_get_description.htmlsd_bus_get_event.htmlsd_bus_get_events.htmlsd_bus_get_exit_on_disconnect.htmlsd_bus_get_fd.htmlsd_bus_get_method_call_timeout.htmlsd_bus_get_n_queued_read.htmlsd_bus_get_n_queued_write.htmlsd_bus_get_name_creds.htmlsd_bus_get_name_machine_id.htmlsd_bus_get_owner_creds.htmlsd_bus_get_property.htmlsd_bus_get_property_string.htmlsd_bus_get_property_strv.htmlsd_bus_get_property_trivial.htmlsd_bus_get_scope.htmlsd_bus_get_sender.htmlsd_bus_get_tid.htmlsd_bus_get_timeout.htmlsd_bus_get_unique_name.htmlsd_bus_get_watch_bind.htmlsd_bus_interface_name_is_valid.htmlsd_bus_is_anonymous.htmlsd_bus_is_bus_client.htmlsd_bus_is_monitor.htmlsd_bus_is_open.htmlsd_bus_is_ready.htmlsd_bus_is_server.htmlsd_bus_is_trusted.htmlsd_bus_list_names.htmlsd_bus_match_signal.htmlsd_bus_match_signal_async.htmlsd_bus_member_name_is_valid.htmlsd_bus_message_append.htmlsd_bus_message_append_array.htmlsd_bus_message_append_array_iovec.htmlsd_bus_message_append_array_memfd.htmlsd_bus_message_append_array_space.htmlsd_bus_message_append_basic.htmlsd_bus_message_append_string_iovec.htmlsd_bus_message_append_string_memfd.htmlsd_bus_message_append_string_space.htmlsd_bus_message_append_strv.htmlsd_bus_message_appendv.htmlsd_bus_message_at_end.htmlsd_bus_message_close_container.htmlsd_bus_message_copy.htmlsd_bus_message_dump.htmlsd_bus_message_enter_container.htmlsd_bus_message_exit_container.htmlsd_bus_message_get_allow_interactive_authorization.htmlsd_bus_message_get_auto_start.htmlsd_bus_message_get_bus.htmlsd_bus_message_get_cookie.htmlsd_bus_message_get_creds.htmlsd_bus_message_get_destination.htmlsd_bus_message_get_errno.htmlsd_bus_message_get_error.htmlsd_bus_message_get_expect_reply.htmlsd_bus_message_get_interface.htmlsd_bus_message_get_member.htmlsd_bus_message_get_monotonic_usec.htmlsd_bus_message_get_path.htmlsd_bus_message_get_realtime_usec.htmlsd_bus_message_get_reply_cookie.htmlsd_bus_message_get_sender.htmlsd_bus_message_get_seqnum.htmlsd_bus_message_get_signature.htmlsd_bus_message_get_type.htmlsd_bus_message_has_signature.htmlsd_bus_message_is_empty.htmlsd_bus_message_is_method_call.htmlsd_bus_message_is_method_error.htmlsd_bus_message_is_signal.htmlsd_bus_message_new.htmlsd_bus_message_new_method_call.htmlsd_bus_message_new_method_errno.htmlsd_bus_message_new_method_errnof.htmlsd_bus_message_new_method_error.htmlsd_bus_message_new_method_errorf.htmlsd_bus_message_new_method_return.htmlsd_bus_message_new_signal.htmlsd_bus_message_new_signal_to.htmlsd_bus_message_open_container.htmlsd_bus_message_peek_type.htmlsd_bus_message_read.htmlsd_bus_message_read_array.htmlsd_bus_message_read_basic.htmlsd_bus_message_read_strv.htmlsd_bus_message_read_strv_extend.htmlsd_bus_message_readv.htmlsd_bus_message_ref.htmlsd_bus_message_rewind.htmlsd_bus_message_seal.htmlsd_bus_message_send.htmlsd_bus_message_sensitive.htmlsd_bus_message_set_allow_interactive_authorization.htmlsd_bus_message_set_auto_start.htmlsd_bus_message_set_destination.htmlsd_bus_message_set_expect_reply.htmlsd_bus_message_set_sender.htmlsd_bus_message_skip.htmlsd_bus_message_unref.htmlsd_bus_message_unrefp.htmlsd_bus_message_verify_type.htmlsd_bus_negotiate_creds.htmlsd_bus_negotiate_fds.htmlsd_bus_negotiate_timestamp.htmlsd_bus_new.htmlsd_bus_object_path_is_valid.htmlsd_bus_open.htmlsd_bus_open_system.htmlsd_bus_open_system_machine.htmlsd_bus_open_system_remote.htmlsd_bus_open_system_with_description.htmlsd_bus_open_user.htmlsd_bus_open_user_machine.htmlsd_bus_open_user_with_description.htmlsd_bus_open_with_description.htmlsd_bus_path_decode.htmlsd_bus_path_decode_many.htmlsd_bus_path_encode.htmlsd_bus_path_encode_many.htmlsd_bus_process.htmlsd_bus_query_sender_creds.htmlsd_bus_query_sender_privilege.htmlsd_bus_ref.htmlsd_bus_release_name.htmlsd_bus_release_name_async.htmlsd_bus_reply_method_errno.htmlsd_bus_reply_method_errnof.htmlsd_bus_reply_method_errnofv.htmlsd_bus_reply_method_error.htmlsd_bus_reply_method_errorf.htmlsd_bus_reply_method_errorfv.htmlsd_bus_reply_method_return.htmlsd_bus_reply_method_returnv.htmlsd_bus_request_name.htmlsd_bus_request_name_async.htmlsd_bus_send.htmlsd_bus_send_to.htmlsd_bus_service_name_is_valid.htmlsd_bus_set_address.htmlsd_bus_set_allow_interactive_authorization.htmlsd_bus_set_anonymous.htmlsd_bus_set_bus_client.htmlsd_bus_set_close_on_exit.htmlsd_bus_set_connected_signal.htmlsd_bus_set_description.htmlsd_bus_set_exec.htmlsd_bus_set_exit_on_disconnect.htmlsd_bus_set_fd.htmlsd_bus_set_method_call_timeout.htmlsd_bus_set_monitor.htmlsd_bus_set_property.htmlsd_bus_set_propertyv.htmlsd_bus_set_sender.htmlsd_bus_set_server.htmlsd_bus_set_trusted.htmlsd_bus_set_watch_bind.htmlsd_bus_slot_get_bus.htmlsd_bus_slot_get_current_handler.htmlsd_bus_slot_get_current_message.htmlsd_bus_slot_get_current_userdata.htmlsd_bus_slot_get_description.htmlsd_bus_slot_get_destroy_callback.htmlsd_bus_slot_get_floating.htmlsd_bus_slot_get_userdata.htmlsd_bus_slot_ref.htmlsd_bus_slot_set_description.htmlsd_bus_slot_set_destroy_callback.htmlsd_bus_slot_set_floating.htmlsd_bus_slot_set_userdata.htmlsd_bus_slot_unref.htmlsd_bus_slot_unrefp.htmlsd_bus_start.htmlsd_bus_track_add_name.htmlsd_bus_track_add_sender.htmlsd_bus_track_contains.htmlsd_bus_track_count.htmlsd_bus_track_count_name.htmlsd_bus_track_count_sender.htmlsd_bus_track_first.htmlsd_bus_track_get_bus.htmlsd_bus_track_get_destroy_callback.htmlsd_bus_track_get_recursive.htmlsd_bus_track_get_userdata.htmlsd_bus_track_new.htmlsd_bus_track_next.htmlsd_bus_track_ref.htmlsd_bus_track_remove_name.htmlsd_bus_track_remove_sender.htmlsd_bus_track_set_destroy_callback.htmlsd_bus_track_set_recursive.htmlsd_bus_track_set_userdata.htmlsd_bus_track_unref.htmlsd_bus_track_unrefp.htmlsd_bus_unref.htmlsd_bus_unrefp.htmlsd_bus_wait.htmlsd_device_get_devname.htmlsd_device_get_devnum.htmlsd_device_get_devpath.htmlsd_device_get_devtype.htmlsd_device_get_diskseq.htmlsd_device_get_driver.htmlsd_device_get_ifindex.htmlsd_device_get_subsystem.htmlsd_device_get_sysname.htmlsd_device_get_sysnum.htmlsd_device_get_syspath.htmlsd_device_ref.htmlsd_device_unref.htmlsd_device_unrefp.htmlsd_event.htmlsd_event_add_child.htmlsd_event_add_child_pidfd.htmlsd_event_add_defer.htmlsd_event_add_exit.htmlsd_event_add_inotify.htmlsd_event_add_inotify_fd.htmlsd_event_add_io.htmlsd_event_add_memory_pressure.htmlsd_event_add_post.htmlsd_event_add_signal.htmlsd_event_add_time.htmlsd_event_add_time_relative.htmlsd_event_child_handler_t.htmlsd_event_default.htmlsd_event_destroy_t.htmlsd_event_dispatch.htmlsd_event_exit.htmlsd_event_get_exit_code.htmlsd_event_get_fd.htmlsd_event_get_iteration.htmlsd_event_get_state.htmlsd_event_get_tid.htmlsd_event_get_watchdog.htmlsd_event_handler_t.htmlsd_event_inotify_handler_t.htmlsd_event_io_handler_t.htmlsd_event_loop.htmlsd_event_new.htmlsd_event_now.htmlsd_event_prepare.htmlsd_event_ref.htmlsd_event_run.htmlsd_event_set_signal_exit.htmlsd_event_set_watchdog.htmlsd_event_signal_handler_t.htmlsd_event_source.htmlsd_event_source_disable_unref.htmlsd_event_source_disable_unrefp.htmlsd_event_source_get_child_pid.htmlsd_event_source_get_child_pidfd.htmlsd_event_source_get_child_pidfd_own.htmlsd_event_source_get_child_process_own.htmlsd_event_source_get_description.htmlsd_event_source_get_destroy_callback.htmlsd_event_source_get_enabled.htmlsd_event_source_get_event.htmlsd_event_source_get_exit_on_failure.htmlsd_event_source_get_floating.htmlsd_event_source_get_inotify_mask.htmlsd_event_source_get_io_events.htmlsd_event_source_get_io_fd.htmlsd_event_source_get_io_fd_own.htmlsd_event_source_get_io_revents.htmlsd_event_source_get_pending.htmlsd_event_source_get_priority.htmlsd_event_source_get_ratelimit.htmlsd_event_source_get_signal.htmlsd_event_source_get_time.htmlsd_event_source_get_time_accuracy.htmlsd_event_source_get_time_clock.htmlsd_event_source_get_userdata.htmlsd_event_source_is_ratelimited.htmlsd_event_source_leave_ratelimit.htmlsd_event_source_ref.htmlsd_event_source_send_child_signal.htmlsd_event_source_set_child_pidfd_own.htmlsd_event_source_set_child_process_own.htmlsd_event_source_set_description.htmlsd_event_source_set_destroy_callback.htmlsd_event_source_set_enabled.htmlsd_event_source_set_exit_on_failure.htmlsd_event_source_set_floating.htmlsd_event_source_set_io_events.htmlsd_event_source_set_io_fd.htmlsd_event_source_set_io_fd_own.htmlsd_event_source_set_memory_pressure_period.htmlsd_event_source_set_memory_pressure_type.htmlsd_event_source_set_prepare.htmlsd_event_source_set_priority.htmlsd_event_source_set_ratelimit.htmlsd_event_source_set_ratelimit_expire_callback.htmlsd_event_source_set_time.htmlsd_event_source_set_time_accuracy.htmlsd_event_source_set_time_relative.htmlsd_event_source_set_userdata.htmlsd_event_source_unref.htmlsd_event_source_unrefp.htmlsd_event_time_handler_t.htmlsd_event_trim_memory.htmlsd_event_unref.htmlsd_event_unrefp.htmlsd_event_wait.htmlsd_get_machine_names.htmlsd_get_seats.htmlsd_get_sessions.htmlsd_get_uids.htmlsd_hwdb_enumerate.htmlsd_hwdb_get.htmlsd_hwdb_new.htmlsd_hwdb_new_from_path.htmlsd_hwdb_ref.htmlsd_hwdb_seek.htmlsd_hwdb_unref.htmlsd_id128_equal.htmlsd_id128_from_string.htmlsd_id128_get_boot.htmlsd_id128_get_boot_app_specific.htmlsd_id128_get_invocation.htmlsd_id128_get_machine.htmlsd_id128_get_machine_app_specific.htmlsd_id128_in_set.htmlsd_id128_in_set_sentinel.htmlsd_id128_in_setv.htmlsd_id128_is_allf.htmlsd_id128_is_null.htmlsd_id128_randomize.htmlsd_id128_string_equal.htmlsd_id128_t.htmlsd_id128_to_string.htmlsd_id128_to_uuid_string.htmlsd_is_fifo.htmlsd_is_mq.htmlsd_is_socket.htmlsd_is_socket_inet.htmlsd_is_socket_sockaddr.htmlsd_is_socket_unix.htmlsd_is_special.htmlsd_journal.htmlsd_journal_add_conjunction.htmlsd_journal_add_disjunction.htmlsd_journal_add_match.htmlsd_journal_close.htmlsd_journal_enumerate_available_data.htmlsd_journal_enumerate_available_unique.htmlsd_journal_enumerate_data.htmlsd_journal_enumerate_fields.htmlsd_journal_enumerate_unique.htmlsd_journal_flush_matches.htmlsd_journal_get_catalog.htmlsd_journal_get_catalog_for_message_id.htmlsd_journal_get_cursor.htmlsd_journal_get_cutoff_monotonic_usec.htmlsd_journal_get_cutoff_realtime_usec.htmlsd_journal_get_data.htmlsd_journal_get_data_threshold.htmlsd_journal_get_events.htmlsd_journal_get_fd.htmlsd_journal_get_monotonic_usec.htmlsd_journal_get_realtime_usec.htmlsd_journal_get_seqnum.htmlsd_journal_get_timeout.htmlsd_journal_get_usage.htmlsd_journal_has_persistent_files.htmlsd_journal_has_runtime_files.htmlsd_journal_next.htmlsd_journal_next_skip.htmlsd_journal_open.htmlsd_journal_open_directory.htmlsd_journal_open_directory_fd.htmlsd_journal_open_files.htmlsd_journal_open_files_fd.htmlsd_journal_open_namespace.htmlsd_journal_perror.htmlsd_journal_perror_with_location.htmlsd_journal_previous.htmlsd_journal_previous_skip.htmlsd_journal_print.htmlsd_journal_print_with_location.htmlsd_journal_printv.htmlsd_journal_printv_with_location.htmlsd_journal_process.htmlsd_journal_query_unique.htmlsd_journal_reliable_fd.htmlsd_journal_restart_data.htmlsd_journal_restart_fields.htmlsd_journal_restart_unique.htmlsd_journal_seek_cursor.htmlsd_journal_seek_head.htmlsd_journal_seek_monotonic_usec.htmlsd_journal_seek_realtime_usec.htmlsd_journal_seek_tail.htmlsd_journal_send.htmlsd_journal_send_with_location.htmlsd_journal_sendv.htmlsd_journal_sendv_with_location.htmlsd_journal_set_data_threshold.htmlsd_journal_step_one.htmlsd_journal_stream_fd.htmlsd_journal_test_cursor.htmlsd_journal_wait.htmlsd_listen_fds.htmlsd_listen_fds_with_names.htmlsd_login_monitor.htmlsd_login_monitor_flush.htmlsd_login_monitor_get_events.htmlsd_login_monitor_get_fd.htmlsd_login_monitor_get_timeout.htmlsd_login_monitor_new.htmlsd_login_monitor_unref.htmlsd_login_monitor_unrefp.htmlsd_machine_get_class.htmlsd_machine_get_ifindices.htmlsd_notify.htmlsd_notify_barrier.htmlsd_notifyf.htmlsd_path_lookup.htmlsd_path_lookup_strv.htmlsd_peer_get_cgroup.htmlsd_peer_get_machine_name.htmlsd_peer_get_owner_uid.htmlsd_peer_get_session.htmlsd_peer_get_slice.htmlsd_peer_get_unit.htmlsd_peer_get_user_slice.htmlsd_peer_get_user_unit.htmlsd_pid_get_cgroup.htmlsd_pid_get_machine_name.htmlsd_pid_get_owner_uid.htmlsd_pid_get_session.htmlsd_pid_get_slice.htmlsd_pid_get_unit.htmlsd_pid_get_user_slice.htmlsd_pid_get_user_unit.htmlsd_pid_notify.htmlsd_pid_notify_barrier.htmlsd_pid_notify_with_fds.htmlsd_pid_notifyf.htmlsd_pid_notifyf_with_fds.htmlsd_pidfd_get_cgroup.htmlsd_pidfd_get_machine_name.htmlsd_pidfd_get_owner_uid.htmlsd_pidfd_get_session.htmlsd_pidfd_get_slice.htmlsd_pidfd_get_unit.htmlsd_pidfd_get_user_slice.htmlsd_pidfd_get_user_unit.htmlsd_seat_can_graphical.htmlsd_seat_can_tty.htmlsd_seat_get_active.htmlsd_seat_get_sessions.htmlsd_session_get_class.htmlsd_session_get_desktop.htmlsd_session_get_display.htmlsd_session_get_leader.htmlsd_session_get_remote_host.htmlsd_session_get_remote_user.htmlsd_session_get_seat.htmlsd_session_get_service.htmlsd_session_get_start_time.htmlsd_session_get_state.htmlsd_session_get_tty.htmlsd_session_get_type.htmlsd_session_get_uid.htmlsd_session_get_username.htmlsd_session_get_vt.htmlsd_session_is_active.htmlsd_session_is_remote.htmlsd_uid_get_display.htmlsd_uid_get_login_time.htmlsd_uid_get_seats.htmlsd_uid_get_sessions.htmlsd_uid_get_state.htmlsd_uid_is_on_seat.htmlsd_watchdog_enabled.htmlshutdown.htmlsleep.conf.d.htmlsmbios-type-11.htmlsysctl.d.htmlsystem.conf.d.htmlsystemctl.htmlsystemd-ac-power.htmlsystemd-analyze.htmlsystemd-ask-password-console.path.htmlsystemd-ask-password-console.service.htmlsystemd-ask-password-wall.path.htmlsystemd-ask-password-wall.service.htmlsystemd-ask-password.htmlsystemd-backlight.htmlsystemd-backlight@.service.htmlsystemd-battery-check.htmlsystemd-battery-check.service.htmlsystemd-binfmt.htmlsystemd-binfmt.service.htmlsystemd-bless-boot-generator.htmlsystemd-bless-boot.htmlsystemd-bless-boot.service.htmlsystemd-boot-check-no-failures.htmlsystemd-boot-check-no-failures.service.htmlsystemd-boot-random-seed.service.htmlsystemd-boot.htmlsystemd-cat.htmlsystemd-cgls.htmlsystemd-cgtop.htmlsystemd-confext.htmlsystemd-confext.service.htmlsystemd-coredump.htmlsystemd-coredump.socket.htmlsystemd-coredump@.service.htmlsystemd-creds.htmlsystemd-cryptenroll.htmlsystemd-cryptsetup-generator.htmlsystemd-cryptsetup.htmlsystemd-cryptsetup@.service.htmlsystemd-debug-generator.htmlsystemd-delta.htmlsystemd-detect-virt.htmlsystemd-dissect.htmlsystemd-environment-d-generator.htmlsystemd-escape.htmlsystemd-firstboot.htmlsystemd-firstboot.service.htmlsystemd-fsck-root.service.htmlsystemd-fsck-usr.service.htmlsystemd-fsck.htmlsystemd-fsck@.service.htmlsystemd-fstab-generator.htmlsystemd-getty-generator.htmlsystemd-gpt-auto-generator.htmlsystemd-growfs-root.service.htmlsystemd-growfs.htmlsystemd-growfs@.service.htmlsystemd-halt.service.htmlsystemd-hibernate-resume-generator.htmlsystemd-hibernate-resume.htmlsystemd-hibernate-resume.service.htmlsystemd-hibernate.service.htmlsystemd-homed.htmlsystemd-homed.service.htmlsystemd-hostnamed.htmlsystemd-hostnamed.service.htmlsystemd-hwdb.htmlsystemd-hybrid-sleep.service.htmlsystemd-id128.htmlsystemd-importd.htmlsystemd-importd.service.htmlsystemd-inhibit.htmlsystemd-initctl.htmlsystemd-initctl.service.htmlsystemd-initctl.socket.htmlsystemd-integritysetup-generator.htmlsystemd-integritysetup.htmlsystemd-integritysetup@.service.htmlsystemd-journal-gatewayd.htmlsystemd-journal-gatewayd.service.htmlsystemd-journal-gatewayd.socket.htmlsystemd-journal-remote.htmlsystemd-journal-remote.service.htmlsystemd-journal-remote.socket.htmlsystemd-journal-upload.htmlsystemd-journal-upload.service.htmlsystemd-journald-audit.socket.htmlsystemd-journald-dev-log.socket.htmlsystemd-journald-varlink@.socket.htmlsystemd-journald.htmlsystemd-journald.service.htmlsystemd-journald.socket.htmlsystemd-journald@.service.htmlsystemd-journald@.socket.htmlsystemd-kexec.service.htmlsystemd-localed.htmlsystemd-localed.service.htmlsystemd-logind.htmlsystemd-logind.service.htmlsystemd-machine-id-commit.service.htmlsystemd-machine-id-setup.htmlsystemd-machined.htmlsystemd-machined.service.htmlsystemd-makefs.htmlsystemd-makefs@.service.htmlsystemd-measure.htmlsystemd-mkswap@.service.htmlsystemd-modules-load.htmlsystemd-modules-load.service.htmlsystemd-mount.htmlsystemd-network-generator.htmlsystemd-network-generator.service.htmlsystemd-networkd-wait-online.htmlsystemd-networkd-wait-online.service.htmlsystemd-networkd-wait-online@.service.htmlsystemd-networkd.htmlsystemd-networkd.service.htmlsystemd-notify.htmlsystemd-nspawn.htmlsystemd-oomd.htmlsystemd-oomd.service.htmlsystemd-path.htmlsystemd-pcrfs-root.service.htmlsystemd-pcrfs@.service.htmlsystemd-pcrmachine.service.htmlsystemd-pcrphase-initrd.service.htmlsystemd-pcrphase-sysinit.service.htmlsystemd-pcrphase.htmlsystemd-pcrphase.service.htmlsystemd-portabled.htmlsystemd-portabled.service.htmlsystemd-poweroff.service.htmlsystemd-pstore.htmlsystemd-pstore.service.htmlsystemd-quotacheck.htmlsystemd-quotacheck.service.htmlsystemd-random-seed.htmlsystemd-random-seed.service.htmlsystemd-rc-local-generator.htmlsystemd-reboot.service.htmlsystemd-remount-fs.htmlsystemd-remount-fs.service.htmlsystemd-repart.htmlsystemd-repart.service.htmlsystemd-resolved.htmlsystemd-resolved.service.htmlsystemd-rfkill.htmlsystemd-rfkill.service.htmlsystemd-rfkill.socket.htmlsystemd-run-generator.htmlsystemd-run.htmlsystemd-shutdown.htmlsystemd-sleep.conf.htmlsystemd-sleep.htmlsystemd-socket-activate.htmlsystemd-socket-proxyd.htmlsystemd-soft-reboot.service.htmlsystemd-stdio-bridge.htmlsystemd-stub.htmlsystemd-suspend-then-hibernate.service.htmlsystemd-suspend.service.htmlsystemd-sysctl.htmlsystemd-sysctl.service.htmlsystemd-sysext.htmlsystemd-sysext.service.htmlsystemd-system-update-generator.htmlsystemd-system.conf.htmlsystemd-sysupdate-reboot.service.htmlsystemd-sysupdate-reboot.timer.htmlsystemd-sysupdate.htmlsystemd-sysupdate.service.htmlsystemd-sysupdate.timer.htmlsystemd-sysusers.htmlsystemd-sysusers.service.htmlsystemd-sysv-generator.htmlsystemd-time-wait-sync.htmlsystemd-time-wait-sync.service.htmlsystemd-timedated.htmlsystemd-timedated.service.htmlsystemd-timesyncd.htmlsystemd-timesyncd.service.htmlsystemd-tmpfiles-clean.service.htmlsystemd-tmpfiles-clean.timer.htmlsystemd-tmpfiles-setup-dev-early.service.htmlsystemd-tmpfiles-setup-dev.service.htmlsystemd-tmpfiles-setup.service.htmlsystemd-tmpfiles.htmlsystemd-tty-ask-password-agent.htmlsystemd-udev-settle.service.htmlsystemd-udevd-control.socket.htmlsystemd-udevd-kernel.socket.htmlsystemd-udevd.htmlsystemd-udevd.service.htmlsystemd-umount.htmlsystemd-update-done.htmlsystemd-update-done.service.htmlsystemd-update-utmp-runlevel.service.htmlsystemd-update-utmp.htmlsystemd-update-utmp.service.htmlsystemd-user-runtime-dir.htmlsystemd-user-sessions.htmlsystemd-user-sessions.service.htmlsystemd-user.conf.htmlsystemd-userdbd.htmlsystemd-userdbd.service.htmlsystemd-vconsole-setup.htmlsystemd-vconsole-setup.service.htmlsystemd-veritysetup-generator.htmlsystemd-veritysetup.htmlsystemd-veritysetup@.service.htmlsystemd-volatile-root.htmlsystemd-volatile-root.service.htmlsystemd-xdg-autostart-generator.htmlsystemd.automount.htmlsystemd.device.htmlsystemd.directives.htmlsystemd.dnssd.htmlsystemd.environment-generator.htmlsystemd.exec.htmlsystemd.generator.htmlsystemd.htmlsystemd.image-policy.htmlsystemd.index.htmlsystemd.journal-fields.htmlsystemd.kill.htmlsystemd.link.htmlsystemd.mount.htmlsystemd.negative.htmlsystemd.net-naming-scheme.htmlsystemd.netdev.htmlsystemd.network.htmlsystemd.nspawn.htmlsystemd.offline-updates.htmlsystemd.path.htmlsystemd.positive.htmlsystemd.preset.htmlsystemd.resource-control.htmlsystemd.scope.htmlsystemd.service.htmlsystemd.slice.htmlsystemd.socket.htmlsystemd.special.htmlsystemd.swap.htmlsystemd.syntax.htmlsystemd.system-credentials.htmlsystemd.target.htmlsystemd.time.htmlsystemd.timer.htmlsystemd.unit.htmlsysupdate.d.htmlsysusers.d.htmltelinit.htmltimedatectl.htmltimesyncd.conf.d.htmltimesyncd.conf.htmltmpfiles.d.htmludev.conf.htmludev.htmludev_device_get_action.htmludev_device_get_current_tags_list_entry.htmludev_device_get_devlinks_list_entry.htmludev_device_get_devnode.htmludev_device_get_devnum.htmludev_device_get_devpath.htmludev_device_get_devtype.htmludev_device_get_driver.htmludev_device_get_is_initialized.htmludev_device_get_parent.htmludev_device_get_parent_with_subsystem_devtype.htmludev_device_get_properties_list_entry.htmludev_device_get_property_value.htmludev_device_get_subsystem.htmludev_device_get_sysattr_list_entry.htmludev_device_get_sysattr_value.htmludev_device_get_sysname.htmludev_device_get_sysnum.htmludev_device_get_syspath.htmludev_device_get_tags_list_entry.htmludev_device_get_udev.htmludev_device_has_current_tag.htmludev_device_has_tag.htmludev_device_new_from_device_id.htmludev_device_new_from_devnum.htmludev_device_new_from_environment.htmludev_device_new_from_subsystem_sysname.htmludev_device_new_from_syspath.htmludev_device_ref.htmludev_device_set_sysattr_value.htmludev_device_unref.htmludev_enumerate_add_match_is_initialized.htmludev_enumerate_add_match_parent.htmludev_enumerate_add_match_property.htmludev_enumerate_add_match_subsystem.htmludev_enumerate_add_match_sysattr.htmludev_enumerate_add_match_sysname.htmludev_enumerate_add_match_tag.htmludev_enumerate_add_nomatch_subsystem.htmludev_enumerate_add_nomatch_sysattr.htmludev_enumerate_add_syspath.htmludev_enumerate_get_list_entry.htmludev_enumerate_get_udev.htmludev_enumerate_new.htmludev_enumerate_ref.htmludev_enumerate_scan_devices.htmludev_enumerate_scan_subsystems.htmludev_enumerate_unref.htmludev_list_entry.htmludev_list_entry_get_by_name.htmludev_list_entry_get_name.htmludev_list_entry_get_next.htmludev_list_entry_get_value.htmludev_monitor_enable_receiving.htmludev_monitor_filter_add_match_subsystem_devtype.htmludev_monitor_filter_add_match_tag.htmludev_monitor_filter_remove.htmludev_monitor_filter_update.htmludev_monitor_get_fd.htmludev_monitor_get_udev.htmludev_monitor_new_from_netlink.htmludev_monitor_receive_device.htmludev_monitor_ref.htmludev_monitor_set_receive_buffer_size.htmludev_monitor_unref.htmludev_new.htmludev_ref.htmludev_unref.htmludevadm.htmluser-runtime-dir@.service.htmluser.conf.d.htmluser@.service.htmluserdbctl.htmlvconsole.conf.htmlveritytab.html/usr/share/doc/packages//usr/share/doc/packages/systemd//usr/share/doc/packages/systemd/LICENSES//usr/share/doc/packages/systemd/html/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:37991/SUSE_SLE-15-SP6_Update/1c83f4d7ed2006ddfd01514ba0aa8582-systemd.SUSE_SLE-15-SP6_Updatedrpmxz5x86_64-suse-linuxdirectoryUTF-8 Unicode textASCII textASCII text, with very long linesHTML document, UTF-8 Unicode text, with very long linesC source, UTF-8 Unicode text, with very long linesPython script, UTF-8 Unicode text executable, with very long lines}Ou (systemd and patterns-base-documentation)utf-840629b2c581132e10362f5626cab3f9100727a72d149ea8df2e411054d973164? 7zXZ !t/:]"k%Ə Ve}st8JOCGǝvlPt|Kn2wa늫ّ=.!k C*Sy pq3yuXy:r:ѱ+F@W;~$[ucƘǞN!! \h1Eoy!IaUxQT$^*KDYX~:9hs!no;P͉>#}HJ~<3>S y֐֞?)C t<{(,7 w߰p IǙTԜ̺XGA{[]=E|ɊadDL#X\a1?̈2eXe^ջAa r "giT(^Ŝ_݊;ݼQ؊ĔAdptEt^GNced8$FѕrkXЯRf/I~i4|0^ NTf5&$ն}-X=سmQW[GZ{ҷQ1j΅S +XCnAa!ojhMACJd?*+eO&1GS8 O{Uotl?w.DI7>z8 ݬvtGc&Bۣ3aҢhj`W52+]-m#ה^~(6HH{J w/񎮜0hs5a,`a<{-LeEK5D=o0Sif8m\y)`?jl%dwJNO)C\D*|^+EXݩ?&}'jԇ "7 a2SUj T&Q"">5 2 ܸ)ƅ}v+O~مmףv}UӬl~#ŏ@8H{: C=.@@eؕzɧN&')[Cܮߠ]'IV%]8~Q % @{~_@JE("ɺ3Q+¨yfCGvJE-H`+dDTv^S7`6( ج2Cz@SUkٴ|Ѡz)5?qrnz r&!ܢ#Tʒe椅2^/wzt̓M%<ؖwGfh: 3"=aZ[g=8ua M%øm=yJ7G=Q|_FeBzʱ]Pk6(RqJr,3p)/-R _e 2@ ׼els 8[O!Ϻm])P,[Mk6ϲjkh?CIa<0!eӱR`=8I% Ep;<"K+EPmFQcsvS1s%yx1j PsM~ꏼg tN|yJrH@CpU9ʵ"h?x&PCZ^iT쒯D @}ŴK׹IYMFf>y_I|\ZōFNZo|tGӓ6c' K2sAˆE"V=!8 <Ղs_xuK@MJCS%OX|AH{^CECNv`ec)KXȓlX8=5Jb,Ȝĸ,ȯS奔nF=1jq*N+o#9%nw`3@ 8kI#8ū'2P5a3!Äa{{xˬ.I2qvZEepق8 !'DX[o.u]OЩl9tJ4cuD7ޜ2˼yØ.,==;ԁc2NwаplP!NU-Y=KVB=< Gj$wnphxV)߲DhBm4L ʊQ]ňvi"u䯕%[:Qъ9Ȥ9ѨlNNP׾*8C5`6bg-D3ַG |WdӉ.L٩qsZt6hI }*5=)IKOYIo&y?x-$ u6n[Lm⡖pE*G'+6r?`sc"Zʞv?29tNY9a˼t !LvW~n۠ v*(#ohן$08~S-]Fe >$ڇbҿj<87?(S`$z-.$۸)8;'& Va dk #qpڅ~E2)af(.o0RkDQ:29 v Y)4H-W/jA r,CyI~סuvM'a)X,RUk/[GTg ԓ?.9H5&+@Â_.uH a5֣ȪRYu+ѝX\81?^V *DD>z!g$]I/ISIQ'tK{rp59.PpY;*im=§Y4^B_Co v[<վ\lyJܓp8i"eR!k[ʎ7 3 WTfx{ND6Ozk*sH_^*Nc\MmYj'6vVO1n!Qܣ| P0,S:LpJ`RU 8P7z*"O1?n͕4-nzd S:FS07:$sP i6?F""ͭ/)C4o25%B{<ඛ졚Μm_è\v|%SP,1Eu11?7꽗QVbiW"T}`;"9j`3a匤\=Dм4sOٟo;=C=GSnl1T}qiJ=~Ƀ6vgѧ7戂ad$9k >GԜnFmO\[rջSOQojSAr8(pRea4_Vv޾jf/3+fS&>5 nN{ }H$zN, empk?4iCzV3$ϝB-ГDy?¢8'.9UoK'=W}QQh4?Rj#ozE ;O|Pz2[瞂`_h}jSᕺpwǒZ0dvvYMH;*+ DA `Ǥo\.W͌Qw$uQ}qu_H sPPLufu[\RlQPZ536[ZضBlpf'UAWnb%-%4M Ȼ,*RkNfjAEw,ٽg*wk1BBNhOKq3sNՕ]Hs.o MrfzVwC%QD<'IyMEV2?h'ިy0l)>9A/% ɶ !ոp RtGr㎉8Ky&<}r> IeR%{kvdgUL&o٠zY"Xz1Y2$qo(ɼ|enjXII繠lUb&vҙO~Pœx."dsB$ BP5҄KATܻsrkN3B}Ac QE^uy26-eu ix)iTTס& 2 _q&3 ]xa X@ OM]@T<^~V:.h.ΎU)blւGhg84&xc0<ihywt,]ˋ$*_.(ħK(9i.7݁h)GTb[ޢFٳl2"|Si'$d.)E%i͓ ĨT #y9;~Kdk"fB&ܐdw&/ĕ-d/K59#_ޜ ;Uh8${JJfn.(, "f@G~N]/^`yte{g@3@g+T72PzFx6P\[g! ż9TEIuT[9VEza?:4"[[%  ݺ(To&MCl7>l]idL:h05Vx6*sЦ$EK֏eK9MBL[IlY[leIUY 7.<ֻ4`,͖dJs&pG`b(319T _>hcpO}%7ӶW([ "L>]ernd"1v ^™ZHx*L??W`=d8T# !lofJXJouŐtCTp+jR5oEkmS,#F]H؅pc5­el}5ɭ3q4<{&,R_1N3ƴ k& I>lNa$rBp 8~+顲$`wɰ؍1݁)[؉ڗO#;"qM Tv?br l\'ac%> H!Hƻa#ðH`-E\ihs8sI1bL^M)U[isk:^dktu2 З=p9MglUwqa04KDDsLelU<^ ڃ iPӱT?*2" ˂ō4G:G‘яxk|O4ǫPw6nP?x u2z50޴\5*\%n6n)#Å ?OϿ"V%-jF B܉>  9t=<[C9Nq4'鱘e#z+*),A6;̣49R5awV! 7ۣW"KF7꙱;stNV]hl܆9DҊo fX'.9 7SRR<3xҳ D3d1'+(*`b5J(aWjc@j\a2Mzy= hp7WQ4~br 04,iG9S.X.W:8P%Zt~ PTBBl í[!UجgK:1@|# Ds'9F7@'D4"( W&޽m0܂]=4?JrY9'V*v|BsHE2/k !6iS U^*ϓMw>H*ysEո]k06(-X֎1\JdI)qփӝP|5A.qNOUJd`Wt#Q.#[_\BJĉ,V ~rFs=1e%N4-[6Q{"zN5Ax'\vT0a瑦Ztk`ie|ʷ)me&.1ɹ:?oEFui^&e:gY: Sp$#QLB$m!@I$|aϺb^53v(nj`=r =w'X +%ЗNvҾCMoƝ’ R]=K&f?3{!hͦL ҏkK1'jC "wI6eE0vQc!`E0sJ0)8 lyL^$:;WV -j fo{NPp=A-/s|h˺;uF |1_ r5P:2B%(!0!ԛ~I ֧>„bKn }ʪKkBQ"(dgu9Ìj("ss(*| rm./^1hEns"ʲv2Kw`ݨh">qb\gx.8X ( 5&z,+Fggۻ(] *mSe ߦ2p\k+>QPgӻb6 W~`+!٭ޚـR),Ge\n&?.@4.HL x8,tQzgMl W !e߸/69<IsZgWKjH̲N/ƍ JD514'1fb|!ʖJ}) h01>SjӇd04mH<`c5 &~[PK]&.l܍h'fAUe;tkXs=a~ֺ`RYɏ#†5 -%<5e?$b\E6Dn{!-sP꡿g~j_fh q\0MU`/ Lud#S /*C8 'u*N}nѦ4WX4\"V(a*;.ƶ[O<̠վ}g6Tptc+c(؊ER5:7ۮuom.Ɣb²oH.5yfBrZv( 7 DmG+oe@HӮl:^387  z* M\3*8U&XZ ҬvGy'ƌ3둹Yb=,I6bPڡUeG{Mպ/B=\F{f"%ܷqu`㥸n<[g| h088c3mFm߂_a;൪"lg(CE֢)Ra t:@-;(M,7z^=uwNw{RA4E~C\v' Drb+u$B?wO/ݽx0/ cּ{MH W>, _`A`olwcj&5 ;0aK?>epH"[޺׾ X(X2)ktYLuCWF+_u^H,=)g᳅2"uo~qZNnB^i PT~3CGtz k*7Vޟ+6%4 GҬ JCsK}ۗl ՛&bϽJK ͞r-|rӪӁ73֍s3VS!gˡ4GvU, x&kcC"C;hRZo~Y"5ېc "^FF9Sok\SI_~6 -%]"Z,K׵Y*(mtI![*~>Euu3 C ι)8385"2"kUǥ!L34GL~MGqG\;d8Ӱc21w=0ȭ>D>@<7G j#ؘ5?"{eimC]pJE@SW /^- Hhѵ1)E&$$B36Jc=X`}Fl-+@&#.OQ@T$9< GmGW[ e[243mimJ_3,}{4)gt $dv;Mɂ?H7K# D;B-CoXF7_KZNMgvoO=GP{ jKǠT24(ç3|bJ;jݤMq4r4ӋD0>o8tґzCǫoizg'?ݘ'p瓠2o(_Fo&_6CFb:M$׾uCdtQ%͸E ՚},nIr+Fd$񪨙oeo UNb~̙8q`*hDr ͯ Ӿ#֞XcB ;8j{!GB>m ɜ<}%(È i-%$[w:A =sFC[•Q& iVq )63.'"1E|< Wn]gc"s#G3tCڹT e7܌ajGa׷M*aDx ')}3_iBHWI _'9"5n(&xm[E akP)zM ؓ;6p0liP͈KhxIk|SK '+?#]&_*ҹ8 yH*?[;#^_oS,j&d?ƋQ6eKw$?4 ?4mF_Q2ٰl:~M"=a*Lkj0ڃ= R~&20d6aٝ/bSWL9@@ieb}J&>\xFڂ>J(OfH!3 dNr}$ PK"]>}?c*dꑙ̺gb-1 fuz+-X%x:aDO{KWC?M̔ߧ+t=/vk<0JbV*-YLW4ѶgzI*C[D >xv &,Z@bxgX4sKq77׮۱`k-2w^wYi1E'a*K} !$&f'i" G_S'(ǍN qYr =;6Y@Cxu,ͿԳTTh<uc^&* Pt7+_\􏨊QAmcJ"9>Ѫ tvk5>Ӟ-TT GRFKH1Qϻghzp;/ ?7t vN.iE@_p#F_q.nqZj_tҜ < z5X?{cѝ瘈d@'Q-o ;C)`ꩼ0Q3@}gSe\(1bAAi7nNN`д]Zz_FVz 碜rm$Yɍ4R>~p  TThieIoeL- :,X팜jGrs 8?9|kvOXOJ59cZD:4 h(2lX!y $vKUQI9Wpe?!ufNӹF2bf|ۅz^Zr[s7XyQ:`4Pfu9_78]<ӡ(i>%?Bq= 0P.^[WU$o0xu\2`cY]Ut?b<q/Yn5/ i1 Qw jl,g}RWpc3J|^UPι4β$ VP-oHب#)crv(cpZ:me巨0a~YGXE8yTnPvE8w9t궩O |} $Id2CVP3.kvő$J촒~Oqj=o  ֞Mv@SsKԡBri/H!s2gq7" v|QVQl[$sz@,%*--‚vC }Q m}^XY1[kʭ?$` "9,'Wdn']!M`{]iqD$Ok~1u%ha MHK :ZKpevXeȧ~.]'Yai8skAlR2NǠBWT{IJ*3!)krePҊ=55Y7 PCis놱3ÿFx>97ްP]e OyNLjǖ kV7W0Aܺݰ.xzdBd8]-̿e1fޱp}2Tu{PMG3ĶOzobF {Ws Wna5Ix{MWpIf-f hL61d6NrQ *rwi 6E7WPh颲BrbZ^~ixaֺ0P]5pO&hf UӇlP@dcQ M`ODJ3FJDKRXSftնwkhN[hC /v`4[DxzFgi~JO ѿw΍W\_+3j;~ N(h4 ~f/^ ;xs\)MIqۮD14G_ Ezd~E`&ۂ'79 n<̶D]v1́$!< wAkM 76^KPH;XŞ3p!2tqL0SwSN9z=5w7`ܚޅ 43-#~۽I~j+Kױ}9-bD~< @pzQD#+Cń\=`)C .FXM{ ĬqbCL(AISfC埽}}*|AĎ3۟o t_ѽ>aY<#.>s]#^!w:[>pڳccXZ3_LK5pd&4zy0Łލwd#@6 )G2=3Ȱ]#l##{]vL6NW7 ;R3}~wNZT-j9ϜA):/=U*Jꍦܰs<6O(Ftt}[ %ra `\:\[t{9@SNgfyAuе7}&;': z'^C+[bT՟Oˇ$'VJ }CxwHc%K魳ǖ?L{3Նkxp'AթRC]%w)" B`6ΤVcLimP$6s9fg[S!t+[O $,Ɂ`BcGٛFǸi?ЕEnu,Sh.s#kGmGۓc]9`gy|0ftӒYޖ?sG!]{9- Sm%_}E5 MGN2m+K.G80OAVWwQ:=)M@< hb uGOJ^fk+8ݱB#& 6b?s!}M9{Iu!*q*o>hryg%կ(u'+wn͌Ey&z1 ڝ:Y873Yq^6iY\% W.ύYW EjV 9?,_O YDU#Iűy; ޗO lfߚI'i~twci_Q??8\c RL6l+&Lm@Gi;aZh4Q+{,_ оh.ة[߄@Z[O{-+Hav$i|m Ӓ@CN~m$)EEؒ$K7)7#F'%1r}^1òϬ,Ӷ#,-{Z Gf A4(_>JQd 489Caw-?3(ʨ UF/*ZwVg#x+y;OZwL,&q T5xpӖ[NdƃdV)JdUW=y(F'tĜahˌJɫexkϩ$׽2^Q+_gu+C홪: BO ̔9 (7+Wp̦=MkP^ZB7H)/%f? 8RݨUl~EBGFA.9ҋ]Ay>7t֮&=L9Ea1m\ݨTg 58o}\C AЀ,XK7< LЄ&Pnw7sܧG8q(zs1#_"*P0k.vFWԿ"ɣ2,袡!SR%ҝICedOS^ ɂMʮ>U=M{>G@m}y,G-;5ԡw[Qh2K7 a-=R?z8!q5G\#̎7Eu}.(MҜ9  ',([O*a$ /'r0GaBpfݗp:NPV+5ʏSlpBE Z m;ek~ CC`"7}iMU\UC^30}練$ S6l70^6)+)(yF1TYL(CڌIct'4!/: M{S%V(צSz> N_W[oȄ"p+00;R`+yβ_ Gnnȸ]YcYy01fVlCɋ>0` rW0kҐNO6eqґ%l^"2նd f27C 'Ôyhץ>$eiLxa*iĚC=?r/|Э2 B˟P/!)W,Lf4bI&*ϥZ$9`e({=^F|deL`1|Yo,t&7_Gy#ͣϴ̡FGKewYhPsZWO5~5jYL/ҌbF{Y$cdr -8OHm>YI/J8ڏTD dbХ>>>3ө8P)>Y~7Y-xBM>N&Y"r,hT}BբA-CFeVD!4:vϣ7.-WBRkQz&`$j=0)&aifz_TߣwK&qJ ,ۓs?gnPUl~/Dqa7[q1>&2P{]/-:56"Y61ˍh=U?id@*߃3Ty, z{ۤYn{a( yDUΫk+KS}'osÜofȩ+32\nw_>zcՒ1ޓ1D,6lg[[* Z791*yEp>!nȿp[Us1uK0xE =d_IxMU_8W禫Gp.^uc+9%4}@{4 P#IL WI\6iJXW.~D23Cċ<+*;cjjmhCܮDcHD)jHnN8G%pJr0Oˢ˟Mk1217&hoŝRGV<%l4>+L bH_!C IKֆn/a?Q7KT@k.xَ# TRGb3Q94zL@sG$w θ.CʬU]Fo;\#Pd t;`eֺF[/Rw[(ٻ#ldg c11@ԮS psB65?oV,!d@\]B2x7]=ϐnyp;6a_3ReU3-]Rj?hex1Vqi[YZ8.YHp! "l}ߒ4~2(/TR){pѼ8MF^Y%1q~^M F3x 4MӠ+`SRwi15S@5i'tctB[-ibڝW "Ͷe1hbl5.=N+ƝYsC5I  h-2=;^f<֎/HYJ;/q Bi#mau^{QgũÌ>i݂͐oFwZx30@[m:}CNy'R@Uc;S}̾mlgW S|?M"{9GH<,2m"#3&&s§]$aOA`Sghy$ 6w_6~< rVYؚ2rk:\CԌ #ߊ9 aNΰt6SDC@fB*Iao`8IdV M8-;[iS=75Au׹L)$-'ّʽz1 3X$'37mo{JXB zaةhk;MPCНVMz#{S6a=dq=dT2@9a]~BXo!DI Mv5=R]ۡdL~/;k1)LнAT!X{A+\7q +@ByєƫE&j[J4W?56M7XT.Ey{OCZ<5YEj$BxF;'x+(L6K^ 1 Sx"f|]k2YE9h~p80(F&DߙVp:WWVnDbA0@#,"GժYI~Q+9ȉu5r&AQ =K`V.}x" J{1O%X܈G*h1:',;W2&Ǽ"j }uC c;тǹxI8LF3MhS}ވ\!U5M+zqF7F\E^G}6].^(OaݒXF "Z/ s^L޲& QH8Crx0 @ӰAzn\|ɑ34Jto(|l{?@2B_YNE[: b}+!ݖ.d8rt'Tb ,'?Mid#CJ`FnT(>*4z#VVV[) =bk`*(KY: C#c G⋨UB9Zr#w17b&.l4H t^qҳ Wk8s@>dWaӝiWNbǣpk2iXuD9QxՉPuر+ΚV?YIqU F"D˛|,+j?.4<5>|ZRvӱ*T̽o*af1Uo';LEQ|9=$1]6d4 }>'z^ej;&7p!i=U ! h.-z^ ¹U-@ ZTZ>_aZxSqNJwPd'ypnۢgļY k|G2 Ȟ>%4'.bS:]3v˗2dd8ixU8Ԙ |S(׾!\&i 0)JmQH㨤/GgNӨ4u`1!\ !Q/LO`Zq|1DKt| 7~ U6kR\[^kOӶ;ig #|Atm4D+bGKvs3zo?&`bOIq.NܘvVb.sak`>mikFZ- />)!A_EnT.tވdg\iESU;{)*@ׅF25erfкLMmFũkb?ۍPf좦mRt.bC{5L"xҋJfc|Ro^~tByR7-{e{ɾ)qE2z:߃1Q@JZv|)b7qvÊ2}=57z!8$=.Ze5$cfog&'OnHg|&u; KlIK9z~{A) // \&,C6G %~+Ӟ~/s^K*`Ui[v"M$/\A`ؠ$Z^nQ}"J6at7sVfHM^*x^~sS+u^ DY,>ur;~BA k|Phr]6nNL7 @벶!#⠱M߫~\򤳑ҤjB-uAoO/Fx"]Yx)d+XťZ>]!s3t;~ HRIYe7˃EϑGT}Bn3>_7Vq= z4պa u-TU.Xƒ_IW;G5w,90,eSa頚U#c//P^،X\߫;G4)˷,OlR*P3ĪGZN΋k74 Lq>'msS*kI`{ Z"" ](3R"pѩEK0AY`D(1~G}_7@#!GbҼ ݚ?F vQj(d P bB7S5/Z"޹vlȻQl~ 0eB4ڨ m6~i8_J\ML`͑Nfᚲ2W t֦% jM͊/-"6bz`n i3]C986.v\\'* 턓p0c_K}:gcU 3CF F}YʫUI.#"%0?_Q [lS~/8AGLPaѠ[߉GQu*ء;\ >{6$s 1ĚUAkЍZ]gGw臿YO)HL}6ԣp.ߜI@j-dԕ}!2B aFTxݜuK2sʸ[s0ٺE/ e12̣)j7ao+~z1#1o|6ymFC2)_G{L'!3], @U+^L/]D) ޘ5&"pGX0톍@ Oƛб9E˽"w,*00)0M%3zxVKy_f0Dq(i6gF4n_k>u'./QX3D}G. Tjn1[%f 0!NK- qHu й™bz5".J1r \HM8_v`; oȁܡy fzq"߃2go'7z Cʄ}e"䋚mFEqP #g={/7A`f"5"uƷʏղ\|? ?m\Vz2#҅"~:\yl\DGQ(w>F)XRz]] $*H.ڦ9sIy%ޑ,SI :RKyjr8xs֪kr> a0LEHtF-WbGi8 \5'BD 4q^qa軹f*%M`֊A.,iN+dWF}J =x@ lkIOFP/%Rjڽnqg}'xa#dhв=ILVȰf;sH\(Z}Е}%mN3}43NSwhkK?d[1qjleCݚZ{qw9 v}ȁHk}6٫[42,ѿm;HʹLUIS]ʈ%+)_Q.]gR#̄a0\OX bJ,JGt[FE~X.b#Yғ"{*^Oڦ@aь#*Q<9"vgZ.LE` _}R'{~&-]w}x P]NU!_URx}Z8<!uV,xSJW6EWyPvr|;&Xb'=gv֠b{v03 hWt3 F.'"{vܩPBy!C2 ۆۮ#Ht_f@N>@H{ ֬CўݶKƇF3KɹQ`r" Eyo3dkmbLo,@hf#h{N<:+3};͌.?簎cK2Q\W)Uk_^/ӏ3Q{I"[gu}:TIhtIB A{Ŀ- iabIEP~]1vFyAu^#l]( 2֢եmȟB&!r4H4ƕVTYf 1)N-2 Fԇ2eVN]4ЕŚ3#P-"KâK:tX"y:\Mۀ{+6:J'GkS w ͙wNșϣI3F!oyĥf|+5e$ӗ0"-n~F1t?2Nti'Z:aS%w* TbUc'^ח4/QE,0 "z8zu14M$ylO-=hV F A똮82xƂҞe۬zOV})kgPs"|Dϐqx<70-kҀ@-1%~NnҹˠC7 %Ay٘e)YO:q,RTv#85I.U*Gq{2&dޓ#4VyhO y e Hdgcs_,:识K}~I8X+Pamgʊo3 <}9-Ҿoam}wnjn&T؁tǿ4Qv3C {?Q`GU(*fJlkг ]=Ok%JWl]hKXE|뢕.6\SH*AԠ('~C*ˌu4W~kGQrܐM>~տ%vfLU"gi c<)I8k`OLbH &(3Mߪ_1h2x)0e g{l.+$9% >ߋ8Umմp4gFr^ qБ-,k tpd=cC_Ԡ-

}CFc3T9s٘&o$D)0G.g6 *y-{57BuB~-QO#̜Lj&*=&Et" @!*_QHVBchPf"U. ,Q_Pt*`P,8.*ju.{YՃ68XeXJ w ^V]4g<#jmnP?c W` ?Y]v` =YFy;&O1_#ȔvۼʠnI[#9t&w~jWs~ L?v/?c ` Rr`J7t7x3WH"s>u`Twh'DQZ;3Y d$tsskïJv-WA]|P#l0w1+|P/4ޚ Z,wH"##*Z-JҬ!AE NBd VAޒX 3PkzCU'ڮ+XZB;xs$U 7xG-/g1E6MoIX!GN$&_, ^bF4kx5~X+U`>C`<K1]>ahתZ3-n(V!LAqՠQ)mZ7Wj[v;ah 0f7(59áz4y(8[PWш4nj[`(Vr+9hސ98 Ogqgj( YjO;A.4NeZp Azs vfwIO谩\8L[;ߏLPL HӾ/CQ]FFm| UuEIf]l>L R.F w}]3z ot.5ђ~y:C Еbb#417(i9YrB:IMtd-Uj.>l]0LCr듾ln`oO {wP67t$J{"E:Kӯ'=}h&-v{Hd/Oa?6) &lɖN [Ib&l"`;/{ϥ/<.Toy{-]ep1[TNroa |c`|\GgXD# =>DNJRSMPDψp<0;Gve ?})) wu+lQ"GZFÍ#\޹WV]t=o VF<`RJ_@+K"cTI)[;Ie635s8W2aF=\`4Svbrb2p•e 60um[.KZ\,Orjm !e1:=/"LQJRz"6脏B92hyHݟJGZd zC;˅9,+$tXVER! MO-zxQ% >q{ ַ+$5}>pV0bPESGm'ay%v#ϳ5A *f":yQ'¼>\EZaPN>4h;c9{(aCːnB@e =ҎkfvtƶYOP?l%/t1A7Dٔ(M-V%nt֔9'A!DbvTZu-#|}i.@u X`V *g/:"wpdţD\|֕~֫pq6i+"EApA`z9ŤUc+>W ہ{/ LH':a./OS !gUp :ݲʎwAm%^?/c_Ѱh}`;(;ӷ^rp:sDgFh*n5 5cI_).Pu͙b3cھ3s4ƚK6'V?7GNϘ̥l+A?/t76J6_?xJzl]-9<;7~Ց))y%^m+u;ܮ 0[{?踡fo"0axTQ5?)d\ ;W z@C>'xRP{aC*OO㟃yldڣ~I6ߓdEItTc`򲨅Uv;jV ,:ÄI@Ӽnm,T,ohR=)Z2,~nu_0͜'w,m7?p}HLi'8i4k+?bCApAe;'y{cqϥހ9}Wm]"ؘ B(# q!bg! XNG{=Elv=ڄ3lek@jc8>ޒY!I4S=Z)D( Ɠ[1q_`ϛ%1փ#j?ݗJJ*LۧsO@T[0vgfܐ~~$\$w$2?gĊ <;hdhOnxv4ze rYY:f\:5KK-(UFm>Ǿ(c[zndOWИ9XÓ;{yf^q8 ."f2%dB2OXLߥ^f0 D"Y5ګF7h`ftԆ`YӴc$S f'.,fЩ-8[!ϐ8y,mM{xd۔h<}xXsd|jo=%`߰;?"+5D7%׼TFu]p X{ zn/DCޡuۍrJϑĸ 4Z#03 RsXfszű;1\Lթa/P|7#[8x9TElvFmjAĎOB{1N%|w r {K"b$'q6 fc`-XpeG 8YO42p¬gYu]d@ :#B8fM{iL!?RO,3s` HB֫a6?Fh v]26>jnϟv C):;$VR_d !cM'O'e59Ϝk*."dDWfp_5[uQgϼH{MrIk3 E<1N]Buծ7ۖG7'Tu?[P/S{&F3+Q* jWya 2=1塝 k2DZ \^ 8AJO&w/l];gF SMN&r_. ~V{O 㹇aÂVYQcR)>C.!˭K*=WPmcYBzvOpZa@ܾfar:Xs%ҚJ9Fz3e= LLh'۟ L+5xJPy*wH&ZyicJ|KPل&dT1^OiƷOٲ;gf._|yw'mR0?|ЮMr*y<'#DuƳD49]zM#B9\oGX6[U4FW%N6g~\$ 9x$AX -UP2)Q-䡽5,\/f 7Ɋlw]v7GIiuq~  S}8<:.<Aw^fIi=Uv)8llwζEDЧĶWY_Am\^3ˢ͞^[ =#D4to[u_ק ma?TfCp>=[[73= ì;°ҡ|ꊉ\"NmԚTy:"o}ndzf| jJ.( _B"wvTbQ\abuUF9+(?#DBʒ Gz1@E<_*y̓94}4迓QXjs׽r@/UJ[(?eٶ-^̊/A׋dx̱󲨳{uf3̨€ 8AgbX5;3vN$,v )ǡdf^GY%yp ˁ} Sy^ChnBz9ǨD%l)YTUiVj&dsDeP&Q`xAH.p6z \JL% \6AJc=>DOKTF*)gp^M ϔZgcmj9|^D$4L[$?FZ7t)qd8Mbw5z?"YJMvoH9j-0U36Ps6g~(-ȿteH,BO}Zu~HzD$I ?I@݅|_/-hYU,b4Sh[,bz*߭}zZ|'ębуi=́n>EMnܣ^z.r1ozPf6 ˜M#45,h@E;%FS@:@O5ix^j; a7ܛ Yy|e)SY  6&T}"XLL8"G.ͤ=X}yXE5B"Ƭ] p3wzd0ѯ(pC6vVzRo}oIBPB _cTuj,sL\HԲLhC4kxʪ8 E@XX{r0=3clf#7To>\4IUIT#L`zm`:|ض?V A zJ#wL%2lٸvlzv釉8wQBGVKaevt|{z䝲~ Tf*Ui6Tˬdr@6ݢouc vtyo>0$Z;?G;S!sR:ߦ~ws=Qxc&)Scs㳕#55$*¤}8Pd&@]s|W>5$GI(o;n]|pW*G PW S2Y\P]_~6~G*A0.6i; FH?pONK&$^{6` ,kB"%l+/"2词|>wKz01ϊDH 鶰$AQ/;GEO=t@uUm v|*n?݄y}?W7(zgVTL_cM@U)iU-%0ם|sW=d˻x) >sESJy@W퍡R`wL6pqY.Y!lo?8!@TR4k*qqE4L r5s:. 61QxK6=;ǭ'hf1}rx ˍ5Qi:wѨJBrxQ͠maǼ,lalL6F}LD3(  !xcs6Pvrk:BUui' 3n(4s_7MR).o =]*TX2cd}1;Q^Q׆5pB:b|,i|OÃbfBMn8f[RWCbsÙW/!W@<`&bq޽DMc*/V3m︋vRtF{v/Bl[.Vc@^/b\=P-Il;{prG/?VI#:{oE( yv Rwϛ%~ezajpY/6t!=ϐpqJ2?^Vj4۠P12.\?R|sbR/ z=źXs]O&sSo7R4?na99ap*͘iQ>T|^ BkW>v d|c ,2f#'Lo7{3}8Tf)Co ܱ_Mf0t`w`BvD˰yiԢKO t:̀K$=$ (i1۳%hh8yJ0iJf96:ldXa1rŁ>pƄ#ad;6(RJ?L#suIni(I}7utCVsUV 8Ȋn%M}24[Q#e8*hhP#()u!aioI+|gp_Q ==iuK)hloXOQc*n[v"JЄJϺYor'bt ix.Jڈ.ɖ l`9qi>*3w~:D:$Wn`xP 7nn7or[=Ea1ݱ*&sDz01"{8+04F1&)Ǡ!t;nI&Tk,r>O60E g#?4ALi8wpŚ%kJ4Ҏtȱ{l)35KR*z㤟ۜh(SqBm?!M$ϐ [#z271aG>E '@5]4I4@k˵}H)cxsYBН bnP/c Ah+G(zy\҄9^n*ʑUzu=jDiQ[72.;2ypnR7,%MZUl=D+)/w}ڲ-Òi߿9B0Զ槼ImIV''L˖ O²AALJ"^C&N5Zj"]421UtuVPv{}tFy.sGW8U ؖ,wJE_rx5 :}ҥVw2Mc?ƸD ;VGe̵hmBddҝ,╶K-GP slNz g%~~{eD~-rwO\kp QȳľAJ@8cxgdAG# yo D`aQ_^=jΔ@0 W^3}7{-r:ބo7U KP>B?w[^\;@N0IZԘ( HͲS #ic8A`+ :ޔ=:-nrIO3Z!1،i n7IQ!HM_`荄dsGEm婌I,va>L5VOOfxs[^e̊by7:2)%4 +Z^O6[_-!& 6X FC~IB hTnҒ`|cX}?j؞:4?e*~L޶=RZq,Gtŀ+,+P/o~uFǻ)LF0 T3TYEt@„R:c&mH:TD hE^UH3Pf 9yԾ `&hz,LjVs`q_9- ){,knߢӊbc%<DëI6]؁o?8fy"i!$%ʡ{"Eϑ8^#2,^v dRISJW*4Qt:cQGH`M4ؿ@R*D|$ɫsA:)ht<=E{*Tg( !7Ґ~C2Y!$_R ߕ/.r眧-rop;& Vp!CtC]O8yJJ2pMٶS7r$P=Zٳ-9,%6^C^%ˣrPB,+cy*EqÉeHsCJoE`PP~-ؿht-Q\UM6k@)<g-Rm?ʢCbtX4DqRHW\'J #0yKWo)17-/)ن{^4~|ەb!'pձq!6/Z_w@?KY;R.ZЭVPybU9|q( > 2M*xl]7^#|[ib*u8UFŗyPAd%p Yw +3$aMμ V'g !=#>Ə3I' Rg+np (e8'P˄̶S(u[;{Lֆ.a`Yxص'+fvzp!E[$?>=|(K\UBG0A\4\s&9Zn?h64r+KBz0ÖS<fk g[˭fe :n6΍ajG! 7dR̹KEߠd~_ ZkФt\2%oنIgG:ć;+r7NQl3ڼל2=9N}xPK/M.ӿ2|-on8DpGw su$G)NA%=7eذq7O/t]I~Lk@|4߄3'VQuwq'!ұ }vqJ ħ0܂m-沃3jA!'2'+?ϠE)$g櫶@8nC |׶w/򣧣rQKBrg)6&G1&96ݑy2(+g /1|jY O$\r 8k&Ht*ٴK1IY 8Ən\7aEnɒUUJ}:+dF9řBjfdNkM؞T6=a ;a0k\KB6}\7c iݸi{מ+#YJ@[n6>,31Pɪ͗(?Xi{LE0`[aAZPLP8/S6" [PU ځ0R~#|)[XE N qN i@c#Feůն8}<|majK VE7Nhl[Kn ^y`/7%Dț_I↡Vr=0~5%0.Xa{5MQCbuR9n̎mbEc1#L' v"y( 3پED`/' hkG4~7 Mgm7ƵC~+ގ`vx0,%B@rl67´Ed w#-44Wj -;o"cD/!|(; 'p&Mh8y,LUj2O}/uuB{D} [a30bV* ߝvYł|G[Ez)7Lkc§ܫS8onbiU24/ M*K@OrwN<9~Tw1NqN prƑHA!7qT^2i/jя\lHWE"21+4rghR<Ɏi b$`d'yLye0G:V ])ٵ4a$P«l UzwF8gNEcWunBty k=~5Ya5}€&(>7y #-RaOkVD}"2{9.qp6--N t f$[9ι ]綆-oUn* K %_$)]&ayb:,'jXq` 7(flAZ!HLDw'Tid׫`ÒH%ƵfXvPð7\)a.d- i)3WY2"|b_S$5ƫW/0Qs"{2蜝[5דݩ;kdL+}D{~D*i\!c/PhqI >Ry@]?`]ǏA)I dh%_f0݃,;gml.";K {a )]>;@[<c̐џ*B8&0R2*B? +桜&,'PsHn0`j#"gق\6]9Ÿ̫s1@C? d;F)/_r'p0D/}Mg\ d|qڕ!,],s *mijcOH7eMY$fZ (6q59{{Рָp!9--9IU %~hݘe/lT~7x 2߽ ԏ0,X||{T9.!)mOZߗ.O}Qp*YbWIJ (:)F0FG=/iDDڈzXM䧪ሽj<>NN`)R就6:[ڪ0ܰ&Sʉk>-2}׉DT|rѢ١4efaǬFt*Q`:;:%)eԁ^-RgmVw`$Nl~XRc>dXCA|8f9.ئKxMZX^G߂B- H'X<&"Ouq'1%BrfhG?oRM, LRaп0Kf,%`eDR!~<n]wnReږTʽꗽ:hBi-ze.ma Hd-wEmG$QUG/8R'auiby$l x)δª"uǧb(Q5Wu9؅.Nf3}a QbT>DYM"sf({+#^˿_ $Y--vRU̒ 8.[$k<ݢp#߾KHz|[*dtϖ6-(]hcd240UF՜V Lg$iClaL bkpw5%oMpE\My]ZYcv_7;-╤,a[}Q3ynBIM * #_KCZ^ZBDd!n$t2DCemenb~^KChHL#su>i, j}% ^vk#.UC Ҵ]uuIyun%+9nqCyG%!< }rŇV(sY-*鹳U = G咙l yڄ#4-ߚ}2 _􁢎, .?Dax Ot8OTzS`%u02($*<,cr;ds~^)$T'~+24f ͚~ȑnSKɰH6, x`lO:l.N'H.Q5UlFSd g+TQkߔ!ſEH{#ugm4f<Ԅj@ EƷIf4S{\/'*pZMIv!Z"VQ.%RɮS4z˺k2*qՎOE ܩ!-qJ9FDCF qo]~ kV:AE |皕Aw뗝=5+rL' <8:TzYEYDԣqÜr $ C5"xFMclh(k[q:\D3҈ UYK~٩:& {j Ї)||Ya@1" G:)eā4ҋӈ٧ ,:C4X1ͨf$#iUQzԫ\ lڋ~w]+=($zns>"o2*mӸ\=җR}UTֹJ "a2Vf /YE>c=8m])S{lƤdbf' R_W} 2C=G};_ꔦB\xӀHJ!=\ ltmH/m.Ft%Y̨ki,;2D.D f"3l7kL5+I"=شPQV-!#B{pH[jt[>,f_ 0b ZU<6ڷ׵A5"F5ɀ cH,[TfU$YhpcȹqXr*P󯼆K 7~Z7v2zN_Q0_ 5.;,z6_Cv-g퍘׏s1姝W@Yd/  UP2o~仫lE Sgec>j(>,*v -VHaQ>O=Q|s_ss ;ɻ[:F=9deѠ|&B݈v3WtroZ+*MY! ;f[ Ew]^ %Mh>OXg.D7Fw Ik ܛlpC0@ q9閼Rc&<&͟` RWҬQ0^n%[J|Md1~ ߵ{=e'p8q%L @n*.}#gI\u\ߒfvqu#edttxM#O-1Xt;44voK!XUᰲjmaΘ~T 0qZyb.3.g7FdvTb.m*sRa_Xi@`dT!PH%*DTbz~Vl.瞐ht9!62ZBrN\jXTh1ĪZ[1JF5c/E?JۆKoTep,aLe^yE_!@_j7]bR33bA)Kl `6L ?h0}FqY~]u~+>WT5 O/3B3|QV'lѝp.,2>.wi/5(bT|kWfQGgUU"uX#c-nek]])VV)_w5;Y,؝"CR?!ԖɇU>[WJQ!LBt˫s":7Tۮo(O>>g$p2IAGC)a₩`luCKr$cPt'Y47ѻr_BtIbժ&:HTz=enkKVE0+g v5sRa QG2ѽ܄n4w/MåoG|Х(~Y)7=}mo!B@a" M Y-d.T{;l TE~BO"VӚA.mv͸-ۛ2aB]wA8 7XRY[f!j^1ʹj96%C*[xƵm2fNn\g/<վCqTQ5JBJףtFT";-|j#b L7+V;٢]Y^dVBR=w?W {r9TN$M}eqfv_W\IsPV; co'éUSs>`=+]Ayse-A|M wIOlz insA^ю6_Cc htEmM(̚1 ޚ־P KfЍlUnWv2RpZ7X]3hXDᆏb|UJW)<_Hɦ|aTa6N+^*4cLj@RqMG\xZ^ w>|j M-`*ǯ<-؍UY`kc6ʾf}H=Ƕr.&U*(ɀLi2[.΍8VV5T dbg5n e N%' *D:H[>ҮE UnsdȮG~0So*lj:P/aI4rt\)@Ű,fl52[̱+|ROXGU;Tue vy g@=@9gu"̎ ?յieS",}A4Xq{OX+RAuA@T@z@ׯ9 T21BC8kj&ܚ#J}?#P PZ_0NrƞGިx5P"¥Jq]qP~fMv>^uA] .S5q۴`^M -K_n8'T!WG@m¦q^Dճ#4*[K$+xW !lo]P-ӥ>G}/o0>|5"mү$I`fSQiylQ]@3A(wzpJ/Dd|sb׎斾i3ͯk_!JCs3Mo5sDUm kT8@ź.$萟\eNRp8戩[k.139n1X̒ Qnt<<7~( vcV|rF)Dֽj4boRy8j ,o :Ykn`3leD̥v( H $pV—J&$ߕj ֩$  Ǧׂ q3<[w:lr8pУu*iH Gѣ: sY$}CiKw8Cԧn:CR_vM_ |9o6%|X_~y. w~rC6ϵT,).)N|\9X6:Ze ,foh*|Ipr 1E; ɰBAf}1ov/5qZȆ5ʸ_*sߊR8[ I> Ǽ/ޙɎT'b.rTAtX)GFx<-j؆E@Z^TEOLX)ܽm Y }.S}BDIY J4i;bgp#&[FGugU\hfɖqV1jۣm|Mp7 7Q 4KeKj+8R1"=]1~vX{W^te 9!c£_"-\[PͿbv^cj{@(eӝof VF>^J&sxNS.4.LzoRqIk۲j%-Iz߲q M6IƘI2K/W}l,VҮSY.Tږ3LB$Aݬ'\ ;0U 5ǘeZӗik ΃yV @r QR4yuJu ^U7o&ZJɆ8LFO3*^+kyӞ}l]R.PGχa9QL;`c )C=&p=5n wG I۬pJRpq?b?U irHzrY<$  dE=yd=FUTE|Wix:9;탛=oK =v] 08YbqMn^°IJ!k6g )Ą ,~.A>%RԼD.}$'Q{qX0vbMP$7nL˖r~&ԪZ0 8)[$ IItOՂUiUE 0ePA~`94CR ߂g.6++R,Jzd팆,Ȝ{);n#=&+H|@:Je9W.>(Z*sK3 _ƾUYT7|YI!vqJ˙.Mw$!5fĻ͇ˆ}]LIR9.\8<_ZCNu#b` ӼXOu.>cNjY4NpR7\0[ x z׳o#Q f*?+x_nSҰ6xI],yPG.&dB::'记5Q- N%x=nz1 t+C=,lY? =aZ쟯(nO)1'ׂA*D`gG%!tX?ąDY'l+.@Iv7pOYx:jnwkO5Dؑ[(d1ܖoZagNcdPjU*!0 U;?hs#fMD#{"M-iaKگš.w楏 uF[mzNQg5"<: ZѣV [@1y?J"H,0'AFin/ו_J<ݝؒLKlcߩ*_r ѳ_%n]/^ڕ#u`p%)FwkMttW ^KJG Wi5Qp T 7rd=8+tz Ai)%ޯ._PO7#  ,%aNrk`b*gm'Sy3Gؚ{g}ZZcd"y-Li =]Z qĪ^$> ,ɎG| :EyPI~)E!.gZTw=UE>tK|dj܀VE2iwyFنcm0 Ϸ) JU0xpN.0}YUe:KʷEVԜk! k7Q die"4&YoEbW+n#ZQ ⹑CEyKn#Aq-3;iuP'V \RRHo(vw͗FCn@S+Id\Q=AHϨRvz/If,?ulE+A+_k1֔A ݛ^? |Qzh4zj֕g'^E;)Kcڗkc2\1,믾DӾ#O׎|'wtvS$ςe2AqLwo;ޠ|B)󀯿\@|y\s"|8z ف9btW?C}Ů_˸Ei39{EWq3Ĩ֙KQg#>JM4W u€4e#8"@VmЄvw pzW:u3c+Qul6\=FN dI[}tt]p#x\ ]iKQ,0rkkţҕ<WrQBo-W ,^;ӓBc {e:bLfC֝.N/RUTP΅TQ*d2wճc%W(=Kg'ҐVzRڈ‘>iLJĠrԃ,BP> ~ :72ɬVP_5;3[F}=!ʊ0^OߣI,{[e|{Γ=,Ä:zOW=tiK 8ccDOb>?+_&h"Bh_ZN6JY=ˣ(>?GšQ,&w:$E/wm>ϋs+L.FR 8Ҝ6Ϭ $5Yt?.R"Ntۣ>EvPtH@B5<,ȣҵL`[lu;A+@+q* >%(sr3E~:8z毸ԩ V=ǡd0~P( 5-6g{ތKOɠ] s+c`o\DAzhO]5vI3=FmW'-hpGbT*CJ֙r3:G[ۧm<8*"_ wc1'=a9$RM6Zag+c8\M @-542j79 S QI"bh0`cղ4&ԻV,Fk%PD(E˰FP-1i5xFM0vjOG/nPJN\(8&`ԩq* dHm,٥<*?JDi*oL J*sĭ׏=bM=g]oz;ZYQPT3a`؛SBx/R@TH,?~ghNvJUF 'pW#?󑞋Gjg'Emy30 e\N3f$qN^ϯ8 PH ɣ;c*LK i҄ v'3am ~acuʢ<NJl'P qއ Y[_g]2%Obc[B=5ulNgev^:YŠRdޢ@2Ցq=Ћoϙ{N݅c.Tر~]}&$ :/o1Wi%SH刁46h rW"J:򟯘QauNKfrO0{ā9kMEٗ]C*=Ɓ)̳gte瀊v6e[wLia_$4@IjY{1$Y7Q/Jt wFM:r_ԃTgf|<MoJ5L7җb^mgä́-5 aKkchZ ~1DQ !)2;ٖEְN`j,pJܧV2x>o. h+OU) 1R"9cjk2: uk~)ܓF3@RT/TlSVU0'U~x1,]-?O{lYwB['qtC܋7 h"/7J^Ay0PPɬ[Q_nMҵtwz8Sl;:]Fnc mKS^> %YL2.\Fx ܩh$%Ko:&vB仓4wers'y)i^ZU!nH@B=Ψ1LY%6H^ܒM_Ĩ1)6sdqLN>yUʉO%\4}3`|LThg{'ةvÎ&H4R h:-ؙDƮ`iJ\"YWh(֥ jt&35Glf4xN,-3s甞kV,71[̏1uVMc"o^}pMI@$> f]tDF1T+L˗~5/oԜ]{ ֌.%d$S%u6Ⱦ}(Ƹ~B[T9"'0|)`Jˆ9ce woF#Zڑ%>$Ǒ7k͏_3U|S_jSE^$f%GK+܆Qq= dCvW)C(x#췮aEb36qDl Fh.I2!/0džSo W5s =[(@B h0 Q2ÂBrDb(="sBЫ&IԺ%_"OB^ J6Ȝ4%FtRi^Z{ F554k]0xpry%F5~ 45,9x4eL󌡱ƁQІv1VJ) =o Y8,Qe1_01 vKtdtө <չ%heBk 3sBwxl=뻿w6 f,2mӜ*@CMbectHb:QcRK3T[}w@g>\dGV~p"u:,&{=ܝ]s]FN4 _Q%4Elֲ(ZV'864/6JVpC }j~`6Scy]ZI&kW$\&Wl]w#eJXshc$Ԯ!vt & a|ɔLEu>s4~HԇbGpYxEt#Y< +'5v "X@JvD`Ox>En]ɕ I(Q1$\ݣ Ot8EMlzI)HǠZ ^zN36l's'mOCaz*h}&n̡vٛ/r0y#rtonX:L2;(,OI K/ܖ]l/#?Z}7,F$[BbyK1Ľ='+ ^;{XȈ?z݋q^lt[^M:T! V[r|5OU3 *}(哫vX FzUg=Z-5:ULzɭM쿥 J*tLzŠ;vS+K['J~O3Usj]{om4zC z|I-xg^[P 1k-$KrC?y5t̼m=݁W*\B(<1K~egQG!Zao !e2Qc؋ogMN&Q:cϙ<6w+x27"{$?VF; 5;ʩ}"ADÈ8mAlj]rn`ay#̍Us &@[ DI[8,U4< Pu^J/ќ!q9O]p</s8Q$R*?B `G(ͧ)ZgplTzEؾTW$ + 7CVy~5ċ(>b9.,fagUvg| O\MTIZ/4-y+w2.qA|L$NB0#RzAFVIcE!MAs;Z g_Ry΄Ci~J 7 s'1">Zx~gK {[T-~GrGhGS9w#T%[c7+$d11~ ' kH%VLP7:YB$~~R,ި( O1]ubM_-1 8`9 cK+_|>N`bMaڲ [[L2PGUN7+b=0L oCDt\3"Sb:kw<&WLɥt? 2nI;yCj~~gv4Wqo<3REF)t#C$Ve!VaF *, &D^W$ICQ-%TZt 9Ʉa sc7"v¬5/jY M8$gE&AзQ>f.iSx\ΐdTa7n1kKV]3ڻgN6vmh6i!zBk":5s1bP,ҝ#:r5Hݭ+ZFCֲ .: 2Y=^4cd躩~ #1ң"L= [1H_'rrry/3菪m_4rCnfI(01[' +ĸ%ёDm4Kb.!h#'"1ŗ&_?yS`4mo#Wj" f/.j^f!iIC%0 Ъ`Z34,hWիLI3`jA2=%錗Q3H&f:~'q.¶bhog'4BijA!  PY?n|[Fi?91V ! h3RP2=:3h"9)dp+^JƺyWj7ڊoyxf;z^O)RS/Er5SFܨff5,ps -ɕH*Q~F 6|jKsC[ߤM)n|.F9]H0t;Փ?O?^Wعq3 CKwlNe =)<Ҩc>|H!`|6&)j@~DHi Q~t,[oV[." \ÀP8q xTʎ My@ep{Do3. sL:L 2ilul}LlYЋYN4m몣VxF$|zX,t잲#QzY|e}ژRart33g,#b Ҩ\#4?OkW񕃘,x%QUMO,N*8EBiKDIN=X M/~\L-]p.864=ORՁA'xR誨%F &fL`r0aLM@G$TǬ_lFO*F0a7Mzv=@-N"I@ cRYX1G5$Qъ`i4tW0Vxi,<_İ ^$NA[$fsi3.9 F#pFC.O{VP'#Ĺm"J,:} ?̳77eݱc5Cu:oG(f/ #-@ox"+؜v❘ :Yw9^,&Y9+Az ׬3} G`d7A?uv[}%2q]fQ`= +#<=7` h# [U'b$_g4M/xvxWOUeOk6G7GB>xhN(܌V915!" `REu2ǕY/+ΔU! k۶<]>%1TwZ鼸Mӧj,6Q]=SzsZ"N$A6="/'WQ Of`F<|U=? SثG/>oԖj1AgjWN|iOz2k|?Sad-)W~Q'uiZR1?ve 8]w"J fb{%KI[hT"s2ٲjH°R2H-"9 S2k5)AG>Z)x&l.jOS#X/%\0BM3Hr/%ּ%[kvSѣmjVXNvgqa_+ oNpua;V-@8u3#%Zaii%JKo"8#JeeTtS+E\H E$D? {,̯VFvZP=7¤qA\|TͿCϔ_K=ˑe-cOk0l#]P7Αi|FKQ_@fq- j ?ĩ_V3%jE[n 68f׻՚8uQp%rD\YߝDQgW֬ }=V%N% $Գ}:v[[ukA L|Rl݁GEТ9 = I1㾖CL &5$-%^8PRڸv[ߵ%t;M=.`8<|T-zX;S5 adXGqG:L &tUfϔlT-M=DnzG)l^NF`~}hІh>aHVH^x/KВ_و6SU/Ԇ?U{ruF'#6l8D>vIu? ZNKڒԈG:vB Jcp7h~ߵv* _W+\O!C!ZSλ '6JjA@Q"`bLKM?ehIP {* <ËKAI֬@#|3͙BRJ)PpnC}TRxN,c2!%J|Mv~m2<+j 0BiDs~Ij"4cxUe i< BC{i[PuWJلz#sgo#JDELVBQTƖS^l+>vqpͬᇲ:DS^S+OM׏Vց Tz'Dg4Ru;=n,ڌA$|3P,!RBwDW/)_! |l;Į[nbPݛ?!!Qanb ML)F| e66i򊄴vAl+T{fu/JO:ߊ1yWO QrǶm)ZIaJLS^us ҎJAR-b C@N?61xX3\O)9@,?NcL2[-=QPGFDZ&HX6q)݌44jW#<[JEfEf9C).= MnENfgBF%EcA+i|1΅|kgV\?X\n.L_2dC>i4t7 E恠ݡ}Yy}(+\ VP}D +}[p723ϦG(nCbzۘיkǀ_'9l9+"X,۱f;Mw y柷Km@vgva/aGNk+@>DK ]>kE PA')Ek$_iD4DkXiÝֹgGLJPLx7E@b&d"jAH RP?}sΛ>͈9>+C0?ƈ22Jv _;A]==xb=CvQ[~3kGZNYM^wvj!)]׷Xsӄ]ϭOY`IzץXo@41&#h8:\ڣPot\sHK·l鐛yy/kBp8LfX/Kc(P.–kzRg=zRpm| Ad>4 $]a4!u\f 4Go {f/wMXDx\ ʝZ-CG+5Fc !{bf-8+̋EZSQZ R?u5id燠Wd Z-?dz8}pgI诈Lb7C>dn ,Ey[8rFb_;h&pOvoCD5*f`E mo[D>#Iew]d֙{GX>6U)#Z0 s[[1RrጔPƁWD@06A?3lb SºS^2ɰFV,iM79ENq}c-o5W}W;W4:8\wC9y2?=wyb%e:/*a p.cRCco*kaN!<0wUr>zR*I`3ݑPyMHӯ4%Ჶ&AZ ]hݩD{ 2熥Kٌ B@/&꿯F o{|ms4[*bN7,Vq}<,*4xT.x 0Piecdՙ"Z+ds,hB` &"\Y 9v~R>C|koXx^:s`K!R Ow9QCC4\| GUG'X%ڴ F $qak?(K>SbNR'pW_U&F- {epl?3@-A=EwA; L4MV%Az.5 Mjeϗ=Yh}HyϨȦtGOD ɛԭ7{5 l2&\%%nW[5;~pޠL*<L]ǎ5YӗP}K5+S > ي`-/.Ьgk2*LG\j<^5rgϕ؅8NoI T.vыC`TUޭXz;uЩˎKvpIP lەF9g` +BP+gGڷZyőp^N2\s腐 98p;!^Df̚܉.d%ܷ;1&! ;Dz3ӄ-/sN)WRi@ I>o6S{(6w] ӎj`*Llclδ Z֊v?l! |lѶ#=+·./ im񊈄j&u@^׎w *Th E[r(x.565&i0Pw"݀fRSPzcp Nw +ϲq1YrB$ Xϼ 6$% cƧo*؈JA(_P'DC$ΠKs#89s2y=z^xڽߟkJ9EU :y$Jkgy{>엸^|U[eC-;{-9@K-At=Ƶs=`vT[ipv'^L0}[%!u, 36悴ܹN(Iu%gk͛K0q$D_Y$EYw9n'ypS&UFDQJ FQKE/ˤM1fnC r{\Uc&~BVR8F5p0_;)(wa2/򨐁6#!:mm,ϝ{.^󈩏YoG;gw8bt} olŐpYr$VN^/ӅiFH3)L+k;fU> Ȗ3|7%C$[ɦ#fm6l-p|Ҏ3(\ʴ\1N+|PA70%ħJfW)/}9Rhޝ4|8%?s*(6Il2@%]( %ҢK֬D zVtYP0%y@^(l?JBuDs7BIxVY:G(3@V|Ԛꫠk7^GT]ά2svV`qnTHA&*^?'·mub>QErIquBQAzZ5%D QVg%ߕ_i(~(ڑ7KhzI r OSd-F^!^"Ľsv8Ah*qJ.=Ht@%Pb9Gù&rLgX%嬇u'YxaLՁ\n?$ɾ/]:}=m n ?)z0B^!R:C%kSBvD;boF_L0,.@ UUw Thn-^op 럕TFg>ClMpV|{v\ sdfS>R Ǥ&;WiLq7`GGmF2pF; :0pt*UrƳ)`S$،>/k^q> +4R=ei@DZeOvF3E>I?~%lN,$*s`]ܿrPQ=.‰A&OC=?׉Tw7pRq];o|R3AR|t)`i=ɡ#hOh p^beyoػ*v&U!R'o¸ lPKIN{JՐGcd%bzO᭄ Kԝ,*N)=!Ϟɠ`,`q{??Vy'Rr/-G{`W( 4!~4%IN\B6i/ƒD^3\34 @ pR-LHkJ pwT |:KQ7ɜxb0Za4Vof_ "~$瞃DK}`"F3lM d)|@zb|n^=pF&ڦT;D9 ox ï$X7Gs/NUY*t9A+-b]ȏޔ[S'&f$9{@ٻ8w+b%#$f}Rt;AYlBS u5KP޹EW{x9kfr\M׌)UB(nto5NjIjC7 DUTa?,fji(p5DRWP+ R1 KN5)Ov s3:;cPↄ֣Bʝ^ (0H^61ƁVY)`4_ )K݉[LTu/;@^Ra4Ws[pE SAېw= jkM| 3lΆ2 cl[wlL)!NtK:~X 83rVk)O{W\PI/Nc8WbmIh‚/dmځ":5Kwj2N߉![ÍJR =UxaћL/n~@)ފ\ܚ7X L1$:0n\t:gWݶ E4 bV%Ag})ݪIM鿤zEi\#atֺjqRCdܛOPGàNRPvB7ih/2$.n6NJY? '&iP3G{UPxs=`) WVp+C 00-O`& 9T|  C"+vWr֗; 4l4_-cJ(EĖ}NB`α~FI{8KCCFWyZ5̔V@@8)!9'/ÉmouDՊsYq0egê lvّ,qI;GwCul>mk9~2 p8+0Y7B}y9 Ul]]{ț_fOO!bXyl=`OOc^fUjW-SkZ0pk!PևA_˪ߤ5Dg0)jLh2 ͂s%Ckڟ#~Wĉ=1KHֽ 20NjlFG;O& T2f)ݩ&ߜsbd\qɏ *6K+;{qa;X\fiZ&OCRUJ؍@Ns=ɄY DĞ-->(s:+F&b9,ҋj*tOm ^SՐ ,:;% ~ݨ)eѴOh')ng|#w~=ʑi`AmE]55+KA[ ݹH3M^vj޶ВȜǕRAir}Xm*abj < /hHz0472H4̓guvxYkLDk 3Ye?)ۏ֞x}) J ;j>LÊmV#Ș3!>7 +=2uJ]r0%Ta#Q'2d4WB3zSLY_sl?C(ܻN.!?5'!:CH6&|JцھϥWKA]sGQI}p߭FK@)[_S}T )"S7]CK)S E @/HpL.cd `2bL_   YNJ/${j ;sC "/mY],- QId RK!ꉅ;-pׄrdtC6a`dl u(؍$ kw&7a٬,됩[`H"i Nx%#alۋ?{ܜ.i]ִ,ZE22ixkӜ'[r߉[. AMP+TBCv^K~]Yl\'Z ЛxSѿġm2laHp]V*Fyj}x:<7҈J\@(L }';1Y 'E٢QWY>G<WNSBt7/ϫ'jC|$iJo 7vs `벻)UQЉ˺!S7&wlfh8zcC"5LAi JELe -gWx2rqL5,"Lg0뜦PzuG 'ZX:%p@wta6$+&u." q>]g Y X$!gzM5]v\,/~?ەOj/r9+D/Լ{߾g0݅!.5(Adk )X2,Ls)*jBtT"R<ҳr.`@s:F>Yj$}~DpZQƉ|>l#X|}:J)w=X2 tU46=IdZ69$UdBk,"h j>]*<_ac-+{ÌoAtB,Cm4TKyCNyH qN4N-vQos-C 5UR8druX Ȑk]XyqPlKYkddUCi5XzC0r|F W:.cBx(_zo\ԩP&|YM)E|2XReR焷,w^tZ{l}]lmGМGb~ro/PNղnxGb%=:R{ɨ,TŲ_;eU>,;WQ>p[pHM]B!U9_|yD{ւٗnɵh7jTR?Ε NghAH|Wj=*>~ {Ev7R@6HCV"^UիR6ȨTN:KrH(A~Py 60v> nbCC'7e󾎽txh^e(!}Jj]IV29lY3GNHQ{~*CHub廏}RoEKrr6ZxI\9vp^nS]4zPȆ<`ZYjR9p0p)*YtfUAEWIV˾.d}-Op˧C;uKʁ,зN(rmsbmolI@Y/5-FVYXk}lĸQH,3VwK=ʝ˙%;< hnXN@KBN]OhcL&\ +nQWB^( ^ 1`hc@QOeDw<'2?R]Ma. dt,#U!Aw3&CPEw)V,Y8RtŢiϤ'!,[gA΀zYTh^=z!AАT2y,1'L~Н)m漷5s%Ggkݻ&rˇ> :BԓCo)j[sQM&K;ޗT[5&H>HR沘w8gV'"%@QO 埜 wc⧺i 8h)~1%4ӂ߾5~,lxXUeƳ/M4)l ZuszEmpts^9&!5 +R? d͐r,צpmfjeè.-]HGw(-d Š@4@hBꆮU#B5o(/M] %,V8w?s&D8lP: ? \4Ⱦ<':b~BS˺8H F | cT/GweXF:eH.k1o4ضy]`e\9hiM/!ZΝI`cZj\UMDPڢ\-TժihRGvjQff1Z@9XPk(˟-}1s~`x,$/t_ I|)\&@C٢A%Et:4 NT^T}/$CDaY,xxMlk~Ϝv: 0rU|~;5M6uN μ48xx-Dto('% L :RT6ˬN. L]ג3rw:!U hźG4p3I_C 9jόA2nB10"+3n Ec3M:mV+ MIU״Z~a\w)qkag2 yXAo@VˣHц 3Ejr ˼b_PDtǘ_:yBtdxڍu,n~(De*'7 #r/ivg3L{4BBΘqs$cmD3?3)쁡L/[]> C9E%l% V{f^y3?%JN.SXH5Tg10+|C}Ry%dcP4eA_ϣTpCrI_?Qt*0X/vk&gLJ?b 95җ~Fõ+ϴ\^K}ȒYCD#G(5oUc{LyDU7-`t׀f8[aE檵&r{Kr0+ФpJYiujnXw]#mKֶz{]LM!ԕ`eӨx˵|Im8bdSD*}kV%UqňpGW.T/;Nj>ܻ|!mY@p]Ndn|#~LZ[c'Y9ΗTmbli?jIϊ+)5rug SF}y)t; U`y />L]4Gcu/d*~!$0!1#ĎU^o%&y9O|=.GnXh+f<WNReZ ֯l[u:y7ߡAnjG 0 }gD{aӻ="~=GGCgV4ɷ.؇Gf)NH4 bF|ⳃ ww$ Ҁ9Iv^-*PM;;:N '2ͼ:p㊥\Pl8b 0a,!܉szqi}b&#| &ك(d./vc!VJ꘮\u݊=^JtL_brEptm ڰv?34|^wWz(y{E{m&,^a 0}7:06٠B ]u(8ee.?%@4Yʥ=jLΔ_Ј@i,T`{osv# FyvYgo$YvOr&YW5=eCBS-5].Va:KޑiN:"[_^3K b›a6'g džX& ?t>]L| ^c+0U 3a@Z)KS LKAhK؃zvt#ZεPC$ZzwnsF53W­c81E6tX+|wż KAǍuO4óz/y8|d<ǂ*&֛{hD5<߮ q뮉%EEE3Q (tWXny<fOp5 x +B(qoH[2usV i}*}ۃu=]( zQ{q,,ok,~8mJjDkTw12󓩒/ʶ` IV2':6/֏N5;[FumV,hds2IٔdԲc7Tb{}5AV8S$UB W$>[1,Cdֺ槓~jj 3rPC(PwMWݬRC߲h,JF^RʯmF/P+Fzaا7\ەyZ WmɀvA7b2۫h zȮ ,OBe.t6( 3GZx9J&իO6&70뎊Yc""i;C7:]V 'e;njw U~JQsy{]Ȅڑ YO7_ Ki]ɡm͜sP=fL FXI=@7-_;q^FEC1r#T7JJEI#pY#g'$ZdOmoyrd}k(c.zf1=N3h9GWŏ쾭"YM&z4ZLu8wV,h+t| %egntKDp&n$EqkZy>t{m Mkĥ28K ys-6L_< ׏xOytǽKF206oZF.mm%:pK^I*$s}&|+asѼ'!^ec8,|4Bpҏ1'g.:vlq (IZkSd,S{V>T=/Di~gmU~ؤٶ1RP4kC7`FUx<W S: oI$qXcń|FeRNvqx^L2<8I䯳LYa`qiX `f %#﹀mP@nF|r,xK>x^]:ۊI;lZ4BWgoyKhr\RQ\Gsj:I/E|#E(cc?z'E+YX ;\Bi-v-  R,e('Dfb-HKGWԬIցk:t+Cw;|o[*%Obٯ*g^+4P-Xj˿D#Q̈5(u ?dg(aҧt1ع $'; 1wp#L[_:gpMi7l6+|c26 ubU Ia&ȍӳ) '2߲´b|XjH+m^N?n;AH՟Xy Qv()#ꆾ}Gjuj2> H/xs݉.z!g!AH خX.nݣH''q]m Q,3߷_8#v}r(?V٦=x擮C>봵J:5"sٱg%^p[V>1џ5A^`V}I6ɓfэ_RQ@q+w˦:x7{sܟS3+uICkӘ+qb!هDmJhxlcW(A[t@=h`l4P33`+e;?Z{JԿUK{ }M:7@uaRh,LLyhO SŌcӇJO{ʬs+cpJ*;wACqEn-NqK،3lѴvᯪk,ӦVoӊ*uRr`>Mx z_U3n'(TDr|Ki?PтcʡYJ\lAӀKz_E"6z49 DVGCG`P7ϯX+X2h 0W跌TNxU;#ؓD˞a?&V}"{/pYxiGk%ujy7(6élO\.dx+xҵjosK|H²5HUgy ,]ǬhEe-_ta(UQm*v)ߩnP؃C? j7׻ӀE泧1d` A U{X.v|bHT 1B+jh0O'SnM4**_n=K Z-"K#Rn=I}^rt%?؎A3cFw,M;Ŷ)" H?$ŠGl\Gp$CyKEU)Q} ZW`jZlugݍ/`b98Snݬ8Zg+3InAtѾ{42sq-^zz%ys菨~܈obFȴP#/(ð'+gC1[0pI6@n&"rsCLK'ZM&_#fRe3oAn3d>*'MzxTS&ic"_Qz o.i@SͰ>!($]Kؑ ƃ@8Ln1 E~yx7fi %U&(pRݏ[M'i@(ZC !8.),<: UG*q'ÆƋUdia <~J~np~轂g_PY5Gdݘ+n ]sMghq쮬;=J}0DNG{Z5ۋ `b!nH ˵-6d`'GfC!v]v<(qEA*P& urb(ĝo8"׽ޢ;aWMIE\BzN˹ZLnAB% K7$ۃ: LЋf]JH!Ezf~ }AwaQ$ɖc~ewŀ~8|у]eh}9BH(;.C1CX8æO!Im=nHH:N_qSa{y fMRg6\Ԑŝ^Π̼ņҨ)5AUНI_RKY]̗\JJ'Z(bDW y] ](^퓫=8 Xߡ-f!2&դG} gҁjě~V z(8`4 .0: (\2l3 $Qlj(4, V*B1CA[Yn:6[`p1SṶ%CJPԢMpeޟ {b튝1E`?w #t!{R%CZ mi+׏iG923 _lW˧|#y{N&6zaz"W5G R(=_ \Y՚N+Rw/n2]lj!zVKK56[q iG 3G%[a,CCMBɵz[1M?(6᳸+!:6E*3<PoY8¬6-@` x|@w,\q܏/}\M4%RO\ @ ?@ɽ'ޑAJ|B> UeIցBLq-ZL[{9Ȧɧy~Rc􏛅LZTfY;.-4n P[J]C`9/ʥ͔*?!&" COK7,hY-+|6w ;:k(+IZlP<ߪ  CY#nyrDV2N2 H;NSclu]+To3wjo@8 pmEdBX-u(Mdaa)DEUx`,H -V>4nd;&!uGXo%cF#~)w8aeR(%mSfYW.QAIa_%{J<&Qty ʪ\:>W ( (Z"So3$u6}"۸1QP t`m**W*a10"orfٳMsθl$9Y@hP'}u:Dm7q9^kSeRv29jXűHՖ+ZVBҶ=Jj }zuA2iu+ >iz0bK)AĤVzQyd[TU!UB,ԋOS#̞:꿦 P(g}VO&7Ǝ0⼚MM4-Py}gnU^.P BB8[+}F(W 3FD2BGSח/c6Y7>92ck%M1>B}_:X˔=qecx?RE_8^@}}w3zѵP{CK؞3[*?mQեo~2Dc\;= u0d?x|FLP,OB%ILgi6KV ;\F5:ixY_MR9& mk9jyfxcKRoE[4.xqF`7,Ftf=p`ݡ *8FSe/3oԿ5?ccL.ùLoCArYlVr^VWz9,W4R]~Ϯ\@s $o'.caS8 #M^G5 WR Rq[/S/fgBݝ0eOXL) ިQڴZ뼴 诠5wpc5ױ8X:TV. p;˯<*090E oam ^ 玅H%-j-5+E>Z#;b?M4"5\6٪pQgxKth%$p͚QPfHbB-QcSY "GzSqXPv=ڏJjRZ ' p҇×e7!? CK̒.+U[~#2-ISl(JwuL; ů[K׬ȼ\Vg|՚&>4@h?q R]ʑ NϪibdu#:k?.U<]AѶs17e\*: c5xoUyqju^](At`[2$sRJfmj6uiOKfQa[%%:6Û7xçyA?͂˙Rv.aR>"gBUsJ /ޙHGr.aDﰎgWY$ݳ 2Va}RWG rЫ Y; Bl,oߟ& .dy҈!VOx45[V0W7-wO{G̓Zݝ]~^ Ic5? 'v%˟[+sRAX+?9ӣ|=^xKn5(* WdWQ9.{)(ļE֨$a^V믟Rep["_}uWL '- TT Zī>6lď#zD]/xOSr{S-v/`Y?PǵmH/guԢM< DM+mP.99#Kk% uhX[=WD5 ?zb,0LZ,q$^ dW+s(~L!O >Er2|L?3nP-7%Xńv3S*zIVFl|Po2J=!0"OsfSd=$(7ٿ'+.x h5ٚ%7{tè4+&R)[ߠw 03lsV7s/ cQ֥8 )d^m3K q^ j!M5$ yl5S܋{LLQb֭4t>Ijbrih,Zv I.Ds6͕ɣf `wo[TRh@d7ª!RO'h7Jߖ7wb!H;vWMN·Zͦixw Z髿 P8"iYE q#HUNUm`8ZR.}p+uy*$^@kLu>qH u%NZJ, hJ\j|8**pa^D|L?H!n vVbKixq9)uo",̥gN*'-KYҴO+36e^5PU+h4YOxWmicnďMoOS;R Q7\jmfY碂蚙e"ic -eZfi\&f=o.Q0`"t%!<{ #ҷrco*!7vk{p|g{|봧epXѳܶe3POzz]-֨p ?OqR$)@]GhucBzaב$cSn^SzjבF %.ҍ`*}Ti lP)ʟ%,hH|}i2sRDDjU۠#jv!G>N OqyRrO )ڰ$Ѿ0ZIʇ_yzhw|E@-!ZԪnGr",ہOLJiMJP=EdhXb>ogObT<䧨4e3P @Jwtl2콄R{1/t%j̉5) Sb`Ś8'$(|J9x)+"i;cոQ$IhaP%aTXp^ƨ<|x^3Ss 5q`LY nD>{a-ⶕ]=d&I(2$B3øI}Q 3J cѯ_QFm^?פrUzs /Ӯj_*.4 ˘ǜ 1Vt~fx|jQ4O[x= u_I!¯sE5Ԛzmt/_pd6 Z;rPCs8pvcTP|)yԙ\Ɂ 1* UணM8%ueuVrs-{[62/J*çH #q1 cYr~[J\PW(=cTB[ 4* =AݠYr⧎,-:EB_'YT#kEX((AnGQX[8'W8TU vi(^"p]{{ ڇYqK%Pz/unԑu= v>X sN8L:@h95LMŽZDlTO>jXw[{F*.2j92vMq +'a1ɩ=a=t%XqA{nM3WD`2!r..=ڂ6neR"+SH;R6[b/Ρdץ vXAIs^'={7; +rI7x OŜf!3Ɯ WtS:gVY0x^zzjx=%H*$rI'3ȵ= Yykxc.oU_^`6<ۦKRi,O)['rj8}WS?b&KΧJ݈&$K0v|UpDӘ*?h[NfwVo,0")3z.1ߊ hl͉9֙4W_1c4mYa02}zC*~f+B1MZc]y3U^Y I+JÄff}~P?y0^9ּaply֟F+:p mߴ|!ܕG`߲ 9!_V0XK80/jI$*mnQ9^ uIr?fyw^hVVSy2&FI'%z)KK[{4, k? nLH9Y0jr%|IVuA!+̉)PR4~=Z=҅~"ϙ[nȋ/La˻ď鏶p*eņx\s;#0a421Yg#\yhS{=9oJ u"3zj@C Z ߥE`(|*ǜi|H6 KHDPMPRqަ o>{7rLxNgUޞ(M0F.@C?VJs=seG ĴX4B.D[ncj~$~R*#* +fvy8aD}oWԍA]ЏH=P['!ېD0RTFd[SucЀ5I4*ݜg(a#rAPm6_4PK{dc|RaJ#zLJa{h@wZIԷxs;)o m `TFIrP념1YVfFK)lxCΑxĹ-|:޽5ĸԞ?6i_Yj7N~fʄS{ lR4_f_'R=#EmbZ|ª5\M؀Swlo*fs@SnWOxχAhp YH6m} N;Iy'L:7WAJ; $LmA/e|]992~R $86㬔Rf7H1sx}Ƶ-`PÚ+h+GfΖͼ'P!_)εh*MS Kr}K؝jrC=~ӄIT^p hS6{i +,tZhF@XHB h>8l3s`AJ I (r8+wYbF-2Za<2LV1S}T'8Xl|\tU>X#u?c"!݂2 H;)ɮ`(Х`Q) $Wr^+?LeSk$ 6JbekTZ.ĆMX}4VnEF5"4DBUsfd`eh\O51S%*`ӣoUNm=@̬LjB6{pg'V57=&!ox_@Ձ*WOۢI2=% l!ك&v2*¿*\$x3۝zR,]8F:E$I0|7)\\C+S l!w*M&›6M@[G ^1R^P@!pj +G6y'AMGL9EFD/j)4Vѥ!$20LiLrvZ #~L©(V5UsL֙UVV&t^ &ҟ%C $S#渎1Ei2,hB^lړtm2L m`!)[/s "IrZZŞ׌{ȌǶ9 `8W[lv4U&E1Bz.mxn ܺf:1ܪM9/lSdTCVEvoŘؖ~֬bW2el!CgS"|_/ah頾`L8)?SCbR3s}pv&7Y?I`' /in!^-pO\OP[>:Ë]&;zú4)K(n0I}7ؾ`9h|' Nh`BBk gC5" `yمu)aE#ٹqґN/½!ޛDkUjCˑ[!*s.F zS%g`gߕ 4tzR)êlA=Wv|xQ(gTM7vT!?9ɧ{׊ե۸2s[A%vxṚAsVw^{c| 1O=h* EQ.&2HL>w>`N΅mh [>v"%G׭iPB^F%Y͏08ք?VA+#fQ:\z,+eH&ΒcݔJ&c'LU.Q^$[\pxXB]Q7GB *E ')_.RAlyZKu=] Mc9(lC'l3yNo.R]-9(S' YK8B~EX#LR ߜbTmɖ+G猤lQi2, ̧UfFlQuFU^۫ ,y||)I%bgp_٠7Z)F~=% r:pv=cMooPcRb t%u8:(C3":,e~'d?BƟJm؂OKϧZ(rOK7iZ-1g|HvòqW& |p?9vh\ދLʕ&G]ףҖv (R)L"k}^U:d(QU+_muBƼ'9 gg:S-;l_!ssg^ 4[؊ZD$4κ&C8Zp@/+Au|BAkHY`1^b  :8^l^~N|ԡ4h6{ֶȆ:gHu=eUKYjcSagK6@^OFPY6:W (#⼩Fr9N,>AnJrQ8q^AH)Uad^u VL+]\Dbo'/1b ؿǕn ESZv~Z*Hk8j`hAA;%qjLb7m)r<f1!c"*-xzإ"h(]\U\k_PY2P(Ksꂙ!5 =W.ޗx=& IFQߗѪJiuxeu[pEײ]lipC\Ft%+x /EG޵zL<!'챠$ͯ=mLbȈ rOyU)+͞gϫ|Kv|-۠o~&oʰmժZ5YnhU`Izaq|ot[qB!ot@c̋!iSYw ,R|[8 Z=q4< 58Շ_Շ(!ǴqeaUI@0g/~' qt4iT8C,N4d:v,w`B 0w aHޖ;t{Y*O),˨-P(bJbJ6~7 :TcPu3 6$J1 ݎS|׳KJap|:_!* EQ.5$ߕ16Jb2}iףG_B+Pumn 1ac[ΝtBIJ=/WY3ukMoD+NVC:se3]`Y 7jB8J|͊pmB(@i؊`zk(7N|U nʕ]-ȂGc,G?'ZPirrIj€xgYI.wtZt*GK?G |6*2N6۱# +W>t8lK-NLt$4QYMD I'R!3RL}3 +ZfݺȝMӾw|5 XRsNO .Jd׍WzsAł9W|dؔK6+7'dSd_@a !A" La][`,=|ޥȗY?O[Qkng\\'ǻR8鼬 Cc7v&0%ڃYY@h$AvUpqN-)'ak]w7a ]DK0,B[MrZ&*!H*!$9~f\na+'.2h?مU"j=lF" ML(c>L.ͭN 9-YS|xZY.e7khgI< P t:>?l/+kTG~|gD=}iD8Ta키'1RZ,G0(+GL'/|{Zo 9;R|==Ov h,/UH{X)&fؽiyfWWP{eK:4Ve(݅Iʆ/%o" ABnvuӸ@aS6b\LqF8*VMHi_8?Oj3R H* Y}BnUv_VqD (>db%hqK *ز,vvḺaƽE8?|g V.nl3r2=I{Q13y7o Ri (A8uAzVi< rÕ}k{Sk<3[豍"*ŐS]Wwu~dXw{MAf\@/{ %DZd;io;2`#%6WӃ}Kh%!>ԋ_4+LՅ'=~ HtfK|UyNhAz=]l%5cjq!%' (/`wf7&l U0*4]\8˛rdYR", pY `W'wD>D>bI.3&9y75< НQaFHJnQ'%?Lze %q [hkd} _ݐjzjmp;/BepB:/giJ6bv g1Wg!O<_!%c"82~H °qҗ~cP!6ܾzjr;]g.IYw \kT\ηWU{؛~1^t sҪuj'k9x%z%1 ѧ3|Ar]C٨vۧZnb-2"·**+M[^I]nsjAVT =(wvޘEn?%/!ˡ"n#/CYH*fp w3ԭ`+^c D!tf'FTs}!=~1gLRDΊqm#EQ?nOckelx4I4ŕ1edV%X72PَkNCLBoHIt@t  ۼ[}!Q4汰RGUഃ3!O?!kPj>*+*5(;+8Ę94hrhTDfu7!ޯaLl5q|2;H7p $9lphޑ/|]Mnb"h)~)@IZE4K8q֋ w@=z>V7ĔJ.r#0-KaĆi )mAaZ$,.?&,I[lJ)L[{HӋ:!.W4h/´NC -vO{.&y*37#H^C)º%@Q0Z.CIg>Sd3T4B]ͭ񐧦 |i f.1=OpH SfB}I,GA()^:kD$4K:^_m~ nIi~0ӒT!nA}!&TО'j gG*p]l ueo=\4 V2?m ta|M2ǎ@[\@ņ13 #3pZM9/OH7*XKʙms@D4LIoeVd FUoyLb h% F-=DGuHC/6w8b-.^'`D&{`ha#T :.T@|eD29Dpy;JPީK>S&%fPXU̜{H<5Dz ",_"uup>[p=࿊Ot/tqdcH?u&Swǧ<I~X%P9_d8Wqd]>kLs <L|g)Ӷ ҙb>5|K_K̿CiE!8AH$P<ƹqlZzDvHRSj)tOs=.Il!2UE&;TkwΣZi60::'_l&26ʻ%lPb~@e"*nˢpޘXO erV4/x(r867LU6Lʎ ~Tra?)\=o'?*@PDSN0u))ucq LHTRVd5aYێy@z>eW,R8]G,1w6v@!wZ12I;ߘ05rȓvUw{Y GB"M $Co=֍K_(EM8RzaXBN⨂oNowj%wzpO=?%tO ,YJlh=Ғ;2`Goe,f?9 `Ĥ(oN\y0-,Lۀ#h}L4Ns L>C-o\=>fnlI UTaiv6M} z^(_z'hzǟ%uG{419N80QK#CÄrnCN2#-DuMJsht`ѐ& 2{gZv EݨLF T(w/=\@X]uuF>6\:r(;9EJD~:uKݛQC_DASvZ7 ڵ.n{.Ԓ Zݎ?.G>tXGD\jxOBAt\*O;Fq|TTM@c?cx݁\g* 4 7:xRWb@E2ڱȂnO#QKg^С`0Y3q&n;P #>=PD5Ϣ*ԝ*^U58Z*UfEDB:EC^KT`B]v]qF)SBpx&͇F:fvAhHGNzl!n-vN_?U* M t*1/wo84 VT9)rE=x顗O+cLz0[5m8b'){$ȐL(XIգ".˥~,aȖ-\)RHu"e58/a @ƨxYOUwl>uIj!'=Im{ol Aq |*='|7@r|K1%ob]]Cw3J5+f' yz.wd^FJH| cިp@wDd'F`M7xTjH0zF;Me4xZ&vh􌜚]rtJ;`KY$l:*\A0X61B f%AL-z?fƌ(nYH;nH0^A&_@<:f#VS"l0eG,0:'2VK44"iejh,Gn+;<9do{֕7~W% F[2fFI-lFMH|&K|iS#u!`d[#!]HGI/bV^^^+PB$ut_I-Gps^*evMؔU:K7b?/A__KO5;ca5Sp}6m9 %fwdXrqYGBQis~Ar!:'_fLGV-ʖҮLmrfgt@gFIPf2QBQ2. R" Q32VUX ge ?hE2E];`!:(Z%| `-ݽQnm;7$ ׆elA^I}NSt |2=vY MrNTavW ۔LXTv)E؈B&)G<_l3Bȋ00[.Ҫ WܝޫK]'^dB0H/t\`ezMѬl7H "^zp)a1|rddV| szJU ̮|j5Om6bԍؘ`3P0s4'GxݠO<)~>u Ȩ9LZpc i: qA5NNWʛ\ɢ^ \$BǺG!:*AI>nS ,ӑEӘhdPHBnho~]W~^| Qs0FSrgȜIW8ab 9aNx;44ȱ_2D'orٍ&Dw ގFvbnxJg\xzD>B?[eժyyдC ˫TG@"}1W+3 R> Bq|~B %4t.Y'h#+FT~dt:KoJN׸bk%u\ |$1?PCVZi>FD}IL{sW mظC/4_~EW[+nfžf0'Ă^] {t v#DA+]z9 QK AgIתfx¸-Ler}^xtιGtB2lj?LJBn뛈Q`gRlǧx@`r> 79},'ZvUj{7l"q2Z+gH Er.*:4Y k(.gJ~H\ağǜΕOyn'@n4B{9IXqR |#X"ӏ9qh]/'ƂQ LXKɝL"YL[R^Cgw6>;Uxc3 Gźr$9sS M/vq- vt*|1z%>FDi:֣Jևa@{׫i״ րW^}{=g}{k5'?F, YRY(6h_\:Nc=;߾.SC/gIB8u%rڂ AgNbp$ek:ya)Ԫ p9ORsi}]>\!գ6cR /酫D#^?/ݴ". c4upWU!G:>ZpVmꯡ~!'8NYms-x7٫@k>|v8玴ubJ ÊVJ~%>0F{(DRPdEQN\k>Zr"@om r0fg<SeSͲt_(^&:y'lGV%")y$Sze/qHJn3A))*џaaA_MaT쀍rD"EeGިItYDaxzQ_:ڢ AGfIz3[(Q8 Nk3*MCHjOC-Wbʸ3ZB.AzЩ wd6d[ [XVcy[G/OJH^ۣc` `IMVHum>x9ߛkAby8VwX,wZd0:Mp$1n{/k\WݙOl0i*jEٌ]*}E].Ra ㍿c( NqR^Byq N~:vn3  w"BФ=充}] lK XhS+'Hֹ2Mi U:NZ6dO>;gf nb3B]k3Pb&7LG2ZRa>d^W}XV^YX $,wOOLbg8TS4WLGrHV "6亞"ZNZb{HJgF_tgcqjS;'X'qhih_fɟ|46yY*]{ (B৑t0F8=kCZ;tv͵צfXQ1|e,D ?nρ =Cu-@, HU]vsiZAvT45DsYxUˆ,[Jnxtz1UZ7\b7ɜrS{~=d8th9&.d󕀝FN<[+û%2Y֨+sw!<-'{T06)%]b8᷏UcP0};BAɻ@AX|5o νh$pkU b*4I7̴ wQg(j"Z3ю8Nة jC: 6PӦ E>fbא{Z0pǮX]OQ>%PѴLdF;(=a W&;!>חsQGDuX?0vkg1 uN[H18³sc9n5ym B Q/tׇȔ9%`VS.3 `C$nld]8M΍ńCadeeb/vq_%;X61bK^j_af Ci 0Ӊm %j?:醭E9o1+y%v5ϘL,k0B1jc{ZȾv; *O %5ėbf[~[ZbckL/]uZ/g}DEyzB "~1oM!P;a(G ^-ʚ<ef6hjCU ԙ7vvբD,8U$JRHRɟ5컟M'`xuVk]os)jObac@_+l-$+o4H uWrTuU-!A[9ɀMHI{DLI-56}y|o'2T1ZpB"zgX QN:hh,`'F7 SNk| qXiƮB!ÁLѱ{+'eDJ¯SI?*=p0 Z c`2q [2砞oarAx|jV'|&^6buAʞ}k FI)X: rۀ/[3Dr5, \ 1=mq d&ώ?O~YT^j>_Z a =~hh$ t؁m7;DG9)Q貖Nץwh+*?^*UCɇ0~2ZOȖxֽl*1-R 4vN'G kzP(~@"5:}ߊ7O+X>?թhjK,B $2^d:) ^+l ?nY"/ϢiD+b4̢Gb: iA0Jtξ ye=ptޡW>%bkvwŕU+J3I1RxKt7̪D13_+諈XKgڎqDẘ6m Z_ei A[9~s契zM/f zngqL3IՆ+RY: RϞ>ẋp5">0h8zK)$n!t^zbp :Ύu6 XL|c6i^Q q88[!sVepQ`!Fƚ =LGKQ?%Z\'.Q[Ӣ ؂T*7j?3p*767tu3z6w郿9aO ;HFH~ imx)ͪzCS碎-g7: V(7}1ŕA9||ƅ^ͼ]gJG|,Ҵ8/Tm]${K@?&lTc܌wѩw>WW>ZêQ;3 VuX0x W[p*,OH,=ʮzq( -RM.ˠt Ǔ"0S r[d1ujI>y>=#;Kwq+wcL~.v")S}ޅ}x}*, Gދyńr@O3FXY~`["IOW1^h^]Q?uO GH- *sd  @8J0mR81lwFWx U\z'#Vf0Uu%9  On׼Ig'}$DaVzh &m6;gv"2" > kmoj $,lİ\QS~i.R\Kw*G|Ҳ,-y]cxMMͺMPۅ (N$okВug"_4;ȷN+0ͪb@,v+j! ~j=0S DUG:rA׮1WE!p1..UTC}9ަ0ISeH-Hh9C >vttqgz ^Q7TGޤWb `̋].Y`ݷ:> TEsXόMflkEb "X{h&c|@%K 5/þnjƈ6bOL$1RH=i[*,v'"( n}=P#3bv0N$ꐘzJ UA6M q)e ̫ToF;` rIVcf(a9chB) jMO./›Nl傟`ñmIzft~l!"؏Y=UMl0e[{ՀfL:QRAkyR~ǝGRR-Fz!5TצTNꠉ VD΁\L?ӞpxR7J鞬Lf_`XuP^@񇴀>kFݟ/:o_{C{rQ{G>V,O cNqy*077yfRnp~RIvR5tc'r#7ɉس)ַíӔV^\'@ԐE6iGPs3l:5wS7g󼕼whH I,ey쌣̜J"¨XAG{d6K?`+1ٙ鋆B ; UI{\8=Z[(p!H$%o'tW*uJOЩZPIfK\܆QJ4xnknx`(L67_X!Aop7R@JB^e"Z߉2k1~+oJ.T>)!4u0y*^ Bر4nzW Շ2~WEm\$u[[LL(?C}|̊tx6RyOb`l" B$f2"ׯ ODE;?ԅ1f_j 6_>al)F2+TYҶXozt>m5f<4$ɞ oиĥr>=P܇ӌ22VN3;<^V1";+H>WIk#B~h{O{9r<ōގ[1V1A٧vs M7[cmKXUfGTPߎvpGh)R{<5JXm SV]g1W]ܿ`g\w'ֻJ ǔu1-$obcڇx$%t~>Zm)^?7'=#@q(ZV' mu#{tgl#GZ3y'c»NYaiJǫYp3:N,:5, [p_Y Bzj ZZ[fvƟ{U3 _֖/^Aͼ|@Z!qjŻq~`˕QSg< 鳖#^e"\YZ?YS$Ó[=_q.Їi[`Rбi1ڥzzWNn|$DY p1<Vve:{N(I}f!yL'犊p_즀ܘ(=(P+rwhYBD˟N)N.XHjiL"Z`V0H۽V0_LX]su"Js V$MaP.4o@L kb*aIKŖH %I&Q;К㓒33"KUvAe;<&rQM‡Q2^"à{:(VIVr*g8_eZ2.Nevq Ů_ש# c٤#AO$".O=*"uXoD[͹ Og*w#Dk1ioz;pg'{ݗ;5B:rhud2PdKջ(/"gvuul227{ؓ$qC-Zxh4gg FEc1< OqZʶg#* F*%q)kӹ"̋4n1Q.,t734y¥M!>RZr'_C1 |)xjȐQMgqxjgPju";֭=b+k!56ଂܸTX2v'DjLbo`5o 2Y;2!YE&q"8]#вMQL:!+=Il1ODKO!/"my*!<>~3[,2Gqg{zu@_Iii&&(̓.u{V7<H>cg,I`t#(rslYcI~'SRsV*)} Up-DU՜O y(:#QiRMy8 %/& Td:U^z_"ZY|!ggxՕZGcJZ◺GZf'/TJR?V^| 0eE,)0%ΛR-mx}k'k\V}3iC4lȱ$n+nadgRNǭ VChc(isY^l~&-j9 \p#)coW\e?yϦQ }6"#_\(DWqUk -Vl3܌f4$4oD(>][sY[Žf CLh&P[=)R%]|քJrVdmf!o,tbR9?<l}.>'O~#L!lGZjw^+&E|_X@HGs6p5AH(9@j Ak_ *o{(Ea [)OABG5ŸEҐs*:%mRjЍ*SɒK ͘D"NjIJ'tQp+l ebc"mLUօof&uN0g>֚,#g.ӡy{q@ s_ g6$h`!-^튱2lB:**qwPѸl27ޖy:lU(mcЅ͈V<#eW?QnG: t=}uqjvíFjO{pj]u/\ќKiKRfyb€}&w$heqWttz zF's ]o E{>b9|R yj1ÜY leM "~Fb;DG\'±o d7:eo#,ߟ@$rXdۭWn2/xw\L*$f2iwu[_!y_t\&L dٳ.r|/zbK98R=;9ƊC^iq-y (n4 +wnȆwѡeCLwqbH^[|k*t 0,e zX(9U3~ĕ*1Q1gd=T=z[pңKAj0g_ҹM}x΃D(¼{4#}5" :&7Í{dtޚm~]( x/Z:$u9<u'S3Ud. > KcYX(vUΦ'>~.*E͐ub#g,^MY=*#Z~:? *m_oU8fܮ _<;i¯ڄߛkpdQ6 nøm?rq+ ~7W+GCy)+Z_ވnЮ$z{aퟴP`@4^ϥp?H=>lU S3͸~ 86ІػL4v4*~b4Ƈy.kn&=ya3sXv׋`J VSge)ċkqM7g<2Eגdt$!Ft:G&lp'JuNpj"IH{;kpżìeC;8v3a=o[u z(VeF"φd Gvwƾ HvNa{VІ? ܒ @M4i6$dۖDꩬNABj]3vq;ވ2=C03M3UK) nOԥnAv&W@Z] vi 49:1 #VEcK'E8M^8645_"OݣE$` ۔Z`tOO87&PfxCHYFsSiGX幩W+FW͜"g'80}0]6638]PSM]Fy_A|/.j  ]Fi?Aps.3Պb^M,qP7".㗯!./Y)xHs|ɠ7m'xUAKf KEIgmi\"agRx3S }e3G22!wVLI;֎!2U7r<{VaaMƊmYn"R;4ϑ!h` ==杹E-U̝  DүhP_v9g蟓?裥'|nldV 1h85zXup3$BV/E=wNe-G݋'ԾkeNTQq ՐTVFL5ش u0BйHBZ~]k=]͛L Gx,{Ds܋N__$mFt-X c-!NUd>aqjoVhZh0a4\H qA>HS~TINovuC0kz9;:ՑU|Cr8FDfhXL\|dLFaz% &CceR4 Ia(V7.pcSZUnOPۘAyW}'R]9\1xcc0fM LT~legHk.*ߔ@\%ݓ}F?9F9? x/v~s4U)M{OuR=x7'ׂ@-b =Ri"NgwekrR)KvltWB mA4ahY3)Ucap81Xި$v/ȁ˚Q_sp#ID&G|3#:j2w  8TB։u681ElHMz١̺*jkft@4P8K8'rtPxڀ6~bqXFZ )nUc6 }#P7~s!/8RkF؀\Ac@/S(wxNKd T;$=X4au?ٿTΈQZ,(@a:zp@BQ{+Sg Kx6 HfQids v޹DD:X)OD~d6R" TE3&/j1iU`iwveqxXiT*a\vDžEOh LUQ w0Ea/)CXcpٗ/QsP ̓,_X3{rb3$[Bj~' x9׫3B_,ΜAn!5(i*K_ڸ˿W^{\7qq^+nY^Uu۩E43  F]%U _gO='O;EU5u,1x"nD٣2R&p..\NroZWl||@w7 ws{T&q%@(J8ԁkD5$# ,s+mF RDxM9 g!ENN.Byk ci&TF4mi WZqfqs^>l %2ƴO.z#GG9ږzA*G\qA"&k%)(sX:Qhocj|Qnʒښj<927 \3TKuޙJ]G"bSX{0u|³(NK, vlazA w#hYo9JOVZ2Zi=ҹbZgqwL()-P[Xd; =U7未.뭖*)t&9Ņ[CD ͆i?:v!LF5D>->a1qȳafGUL^JϳXPS1t”_+l< 7wjh)},(a|#B! a9؇OT[1^x`QI Pr9¸ H`PY~C )k0aj(aak~@m/5jj),Vx;=UEM9guʣCqý^.Ϫ޸ن8]y eo\` .KD$5c[,:Ymx`<}4CsR.m3B_ WF^*%wٚ!:L7+Db2%MR*ցXj/Np >9|&&"ʉ|7lmR|RUstተ-+HtVEwyL-<.5Eh JK/W9t~g sJEE._'_ITbI PWyfC&EBZ'${`e04qÉ ҭ~#b7ZO~-[Y2 yce vitZIhfRXeĩ0%0?;'b淒ڒdUWj͈!bB6ޗ<^_;FcV 3х:yvd _P)~ATx\5Qg!#swյ }UнI1G Ce WDҚmt:dj (XHw]8#{?hIQG'"sr\FW*NY,}4OB[R mO"&N!Qoeuy)V~ro٬K)3ڥRp[Ojp۝; 'vʮoidʙt u2 ɡ%RdLjYc"G2✛ᒌ=t' PJ(Xc 5c2ihu;2!T0Gpg <& /#q%zM= 9mG{] tY2eu#[LsR.NsG_7]6ߧVւ Ҁs:qm&AHm t%;λrL$/z|Ъ7'x ۤ'+kPUxq4F׬tWݸ8PG&\x.>eQCN /u/'l!:9J??Fe$4~GlfI}\=jC:7eXm͠<;xC{ w I;Ld܉\],/wA[`nu,oYz6 laTh>4z]BOXVI5bh+74Rf_ RWcv{7*,ӭ=$ ^ ~.n~y8T"/D|Iǡ O75& /,0d\l(6FnenŲMf?vO +[&ACBv_ivI-i91\7&#}a@im 6y*s5] ߹؎ N =gآ2(0uN:~ u!{pTik#̰d]OKj[LSoKj[=>z:ݛ[V;J8;^E$ĔQv4`BrZ8c]b.Nt Y[cp@t}%>gJYkp9fsWV2C,;طkJu?,PSX4AZٔdՓ悚4'aMkzH:DOQ_uIڄ+ 4,=lOp( keU69l ˪IQUA+1+|{C:8,Lw O&`DY5)eFI|[2ҧ0fC?YT43RLTH{k8h 5ȈW8R?7+[ k-@L'Ⅳ/"!iFa.`;֝s軞4J-vImۦAjڨz}8Fi^>CV{xt:3kD 1I)0wUY;3ei]k#ad fnNEY!Lk(YAVZ|rHrOXl}P"Ƹ;a$O˾Kqt ysR_yVs8Fma1~Hi]WKK^П> C5'^HUyz392 kX@|lV J C:l"M҉h&vddQ"y|a9q$'+z9R3wr qw Pn'@;?B`hTr[ഉdo|(Shlj: ؑG$P|+`%Y$ka`tGƆG#>*=;B^2v!e_=',u0eN }Lq~W/.TxCTo|H Fi6lىs 5k S)CXǼNd= zt$j77c"vKe$ D })꽹QMND3%vf~kq詃&~i?%:ǜr&  &m0| }@vOV뉀 iՋJ%2y"2ī WԢu'2۰GTF!\#2D`MKbj ,`N*BHato4eV-Ja8~*V۰2T[ɾcPW|>EUOT bpfU,Ve(p"蚦VQ1׻˜ 7ˤ!GnW) 2 ; G9Ńn7) hF#9β3!x1i8@Qbٚ÷0a5q:[)ZH5譎 '=0&]f紧ZUNuL+h½;N#-i5r:JM%Iz~Lݡ8i𽊳A=':DNg Yxdzl}A]YݕK_,U416|s1`Cx|UԶđP5Xà ncX&&r2l{8ĞeL/ }vStV?'`ee:=}[(-p¤ZғSGA˶};{a_!|F%jg=5k]hh <[}5"*r-#4El k=a iX,aU,%!!=)ܙs~ĝ$D7:>giBqCkzgo4"\.f}nIomq$d39,9v2CvJ!¯H]dజI!/.9٩=m]C+VyoZ;?ĘB`pz_r$Cs'WsvU-l}cMt3484ގ!Љ &7RGs&g_~,#yUpYq¢ F3DUd`(t7ԮU`oV["z i~]wyx xe+SDZv0-2!:vz.:H>ȴ OcUSJջLZzS:!~.l'$!M0{%FQTy>Sb [3T÷޼Ⱥa穱.~'z\0 <(}M__bG#M};4'CL9d4$jFvLBҍ.R˽9A#F_Vq~]a[.mx5+^"sg5z/]}>'<ܚvI!H"LMI[/a۶M>;ADa ^_WF.ɍў_%̼x#%-j&S@'[~d5m1Id蚚E+dnIb'3!|8jµE9mMOYf̥ņ~fY Ywc+|؟ٜ|3I'@,6 ItMɱ-q&X&iGsQu]8~%{=*BfQdb7t-]_- \l9BzUYNF/^)Q'G\IEi^Cnz ^6#͘uoJC=7کo>4e[! 2\%I#h+pdR!s7xNp3W6>v)Wf Ɵ|; A[_\C"2:l4ۯc0hAk+V)0D-.}-j\Fʠ"ҊJC6={tI-fYJޫZ*8 hdF+'1*uvTx|7-!f3UX(m3u 4#EF!@]|(lbE}M%B4> 2bL&}ɵ((M8$d#Kqd4v1;2NDS 5CʓڧR[8G̈QJJbp_}/wx㽦 zS2DݛXfi*Xxs`̴~a7x '-"b]R'<`,M[a廸066oZ8I?:&~(fkJ-gO YF^W҃U@Wek`גmX(+=o0Xߦ?|:# $sGqt5gZ!K0g,H 9H-YWME~prޣp17_}R"-Z| ͎4[LJIY{`~qu"dM"|67>0!Av3z{RoɄ#;Y?v*8 Ek&Wz1eT *}rzՂ ^ֱ<[.ٴ5T^lÔ";C0鷪L]4X@&Ѯ<5+JĂۤrSe0/~/.tAyX eY711w2‹\¸ĴGk8 Bm$ cWUKՌFF$~lg::+hs>E*Za0g 9V\C" 4 ׀bsyD\>`QcYhp6yAw\Hz2XIͱY32IA` 26WmXEZHChFZ K{h0$.`VyVN{Ԣ$A&w8PgF8K ^Kc&rB%;j|͞7c,1ESBz|<4|JH"v!?X;!PSd&4 Pׄφ0^%@s7Mfz F @xIiZZwd ?E:d2 36m: 2j{K}aPj*?ܝ^PÔH&vfg3v˶$Lj胑C(%zB~9lxI'b!p/;FTO A߆^f).vʋ+ڃDH[jz1`EId._bi·+J5j>[8N)Gom@ZB^\gk{ `:/ kf<n:Knb5r>$-lY^Pr _>Խ`mhӹHihaUV-T,E4i}IT}B0o֙DL}?ڲeZ'cV)n\-'b V_پ,tO(C3vv}$ E,GndTpא;,WWԘj= qר@G5jopș^XlНׁS̢khz꟮݀p~v;#ĩGL5ҚTlX/ES)auc= ?_߲nQwSTzjD_`$Yg\&Ӫ !NiE}gp)\b;g]izކ:Cxp'_N}ӭؠi{4Bǀ 09~~8Uz׸=vg4)kҌ+֫~\&\90B#aq~e[w5D'iY'-˲趬Ox~/DE|J>N ůlҽ{̳&q(WZQKe} g#G*@oDbWr/ai*4v[h:AdwIG}˜挘Ҷ*F{@l'8= iȾZx́ߢFO,8׸Mney6=l#BYjW^-$׬7F/gr|ڬ}DϯJ& PqSdFygG6<1poy_q3ˁ3tN7OrnbȌUM>x`>W2M/ >$ 1W~ h9Eߚi{A!T*]SIEF=>eh$T<}' mK-V䥕~7뗳NpCOβmt4EWJ.røgq#*+x FlNIdOI%rMiO3H'K&u߼e+a{LIaHNg暘8V" |{לȞ-v?`:? vvX|EiY1ߢ{9Ja}W1IhպSɋeBXZl8(H6'/YJv߻TێciRY_>Ȅ&m,Ң #iАƠ꺏b"f $+4–dvDw?5:a/#mH?Һ[ؘ2 \VCQ9`N'+ yЭ5 o,'5[0`pըhQ؁#bPnߜ"u` ٕH6+? 'PfsQ [Dt#ϋAE՟Vks#Wm?buZj?ǯz:UIe&]aL{qKYٟk/.pK *_Ae粋ⵖgC3;,2]?Zi~}6Ċ2fy&Xrw $aR>H> (0r}'=fߵ=JKYzoKeٹm.q2 ʲ|/ fBTfwlfG=Vc2GyoAB1* .Bu-Zكj1=uAN,,%NS&zPstS |3,gF]F  cZ!_^R8`+NcD*Y"XR=}ZFfUfڇPs.GkaU&upi&& 3$혻Q }3eFDS Q^barիQ_:VY)2ο{/dUvy&V6ȷ_ oP/ݦxegN×V #L)? 18f_cu{gشtBm!sKN͢X/2\.Ԟ˅w ш K~Ҫl7DZ0B1n(ubE#e s{xqiye#y~3>>0Ǻkgs _)2.gi@RY\\clR"`[㬘7gd\ôladg~j ӎIO_!{iD]*o͉WpbRE,GVMx>77g[5=El;ȝ}K#r\M$ 'P1dJ4A y =\cY閞*0FOazfOiwgޯUL}Iޣ9=Kpwl[XcA ȱɘ 4`Y _ڿghC"R84䘝.9X8\HB^C Lͺߺb\>S5pjԒ\ʱ( ?NT 5+6~^Fu`vO>?Y'Z]_'Ǝ*sfJ#$@)?R`z=qRtQ Y}Ὁvi铔 ULea>ՌW ͡}*b&Tf .:d7F~f{"z_X<ƥ_)C$gsgM3JsUs^Mjgudzޠ޽X\jQL(P*TfnZ1Z Wc&oǪj,ӏ^W3ԄewS* ҮyWSvi}GGtza7f v>ݜW!aq"7yB_`6$Sfm3A㡈َՈOyF9fT\3@؋%*JIGciC\Cl :-]~ċŋ0oaݜ! '@:]]h+%MwTS(_O;*v9s" ̐IwmoD9;[,Č UU6~ë=䔯&{;߅؛1#rulBx3@q4<`i.1+ INĒ 0c✢JS$U]UYfMݶہjCofB.fX܆˛'nM҅sңg^cnS$WCfFyV4|qzM)xt~H0+ط!rVHEӪWaԥ~V^َi*pʅ nn\c 1ݒZ"?T9pl׃3W@p&ThRsl9UK&YsǑ̾ :FHZPNbE*7c:ȕusd=b1lߒfю,c~-bWY<|8aFONסg xlڗ?)$uĞE7|(4qwk#hGHYD/n_]#,F,(o0*kNb]т;"L..'HNz։$|3 `4*#n 54;ֆ~68~|0T8ұc wT08$d/m;̻ސI}Efn8h W@ zpbcRJհf;81ebNO@'S{LHzRMd=.ϏLS&&1&*ꋃ5[=7@`"(e(N GPϕ, ]wA1imV:'Y[wƯwvl9Ӝ_z|"}Q4Ł+,xYVsL\s^aOkؑc 0˞qjYxY$2J`ykr1h$ȱgA!u:WPpKEb1YEmz0U";&j#C#~t뵬.k7!{Jul5&ռϬO񢥽pSe4hg#;K 2%]9hXvMB1 )qDvn-j3{l3׶B)(18/{ĺ) YMAߤdB]Cky:(' /R UPxc_eqN|XUO*{$TOxw/k$9P9*9\YJdRr=0t\! dY:W(9V@U ?6e̪\7p¼_zK /y+3 ꉦ8;0$цJ1*(^=[Pބ:6~ l K f]F#zKt*#ŊY}@O@7H~}v亵K]h4!~["vP%ix-__G“.;7.{vTslWوd? ;;n;!;j'A^F2Pzlΐn|vsGج޼_*Ù}=Uǵtp//2*CBzAWXJD1ŋ4-K=v]Ȧ7rDY7$xugQp<(nBVz=9cjM-|!W$b9P]G&pǮ#j"oy7S2LFy>)WBCP BAp3Qᚌ4Ɩۯ"B?:M( N˨5L|"O^^N3_@+xZı=H)"Cy7 oDS?)>4LvU[e>[cJo Fzbz`Cjx[1dtCn*ڗˊ|O M7`az&J,ymd{=%Ύ4)c!P~at#e DT 6\ ➑(LV)Py'ۡ93TD9GKG,HK짹IK"f7 ʠE@n&YnE0:QAߦǠNG >td ]c2#Jt {ڦ M=@!Cdz:c{Ká4u+xox@ 9To qh:= EKi>whi'.J,z3B2oW&sK۞Hl5KS,kz#\:(]r'@!j(jߋ8H3Y 7aw;)!e g)|17}8ALdD YLg~jWK5ziy& (GijI%oÉ9jivs lDDΛŅd_hޘGAQQ(q6FR Wg`&q[-H9vf{Zi|AIfo?zU/F[ KSncȖcJ\*3Ik{Y3S2?]X4,ULգP! VH}ЇY_N];At@G:V_<]NqDX.K-Ĉqocl8[e 9k&%0T_l?n̢CU @$3Ѹ\%%wJ^=!1|A\fe ?7-A.Ǎxd˘CF˫}JͰIl ֪*U@ :zRSpY5 $Q|2LA(^ՓITxHNtla5x !cR&8iaSQ75^&V`_.\MXz)k9?cQa^M*4%$VDظ"hbBlALɇuht >Y[$NI!U-*$]5($"X&)LB cIETުk';Ϟv'j>4sya @*<Aː[]@` K{|#H~tuzvC xh{9b(Ji]5T/q)צG/|}r 3xX<`  I+jn@xFFՋU?Ȣg846;gXcnN]FC%M vloFao8+E}rO0 ~4g/:4{v*|9=e&` dUb\yӢ<%e¸csmKubAZ~ Hd=aUoꟁ &w&DxvVT5= _T}ǎ&29>m+$ Ĕ).7@Q$٫VGۋ;/yqU7Ԑ3}Vy d͐MLb?H]PdfP`5ݩ%b>1 }_]wYՃ+„LS QprmC)}j Ds.:j~__tO0 Dtڦ=8|'Kwv1$&[ُ|5zaKpzܣ%)xyM# a?v@dm1Nv=N>5(.1VyMs\<8EOA1r d;y"R壯/4:ʰ%GSqvzP+jA'`==~1N$θ227 0 [b[\fv&`mrkc)))oeiN<>d6o)%oƨ*B6,*ިs(ơ@X ϰ-Ck2#{jE**VH[R ,N9V֌1%͙TÂ" î|Ý*|?pʹ $/F Ўr^[[8LnM 2h*3-Q)>bĬf|151)'Xw4S**"\sL%(eO *o &FRCi<~==Hvi{)&eV ]`sg_kF-Zf|BXR^pF&Fy9O&{iiUM ,w|%[HBF&K*.}/P#Yg%.zv7NCd܃Ya(bq|PR+ G݀zDu(p ?wG43Ͷ^d]^-)R/3Uk9]b< ޺+ɏ@57p77m[5;&vxww\ܔdscv1_Ưd[۽wGD7wʉs6f S΋5q=F@Ϣz3^My"I42FY[ݵPB@1"Vc+h({dX@݂4w%'H7nzqIp{RƕȉCVC}(îԞ^("Z̰Uj[vd3Ŭi k5UgzPp"(rUVB ۣӺR UC.I"<5\[lt c~y gP0$M^k'y>z}0k+fxQS WT뤺ѱpe3vߺ:Jx,V`>pg.s4UŊ!߫.g|5ehն QNnwٌ.]%gF>GU&ݐn֝]qPD5?Z# *׆hhFQ Ui<$HV>.UG6!\zu94`hҮL< @ҌR GEsn?/k;䋶n;EdDjA2\qb)ufΕo(W! 'CxULNoscq]%\elF% R.612Ak(bҿ v4x5 *N8vKsW\l2P?ьUp@(t+ kAʕR<&q􎈧~Vg9шG(W \YBrרu5.m̢[\T?9fX8NE <“AܾZNn-8*J wUoSb:pe!FhFAzJ5{h6Qk2K)7 HTuZuaHFC^xDC8WI穓LCKA(ƚ6&TFjpƬYf"/qǯBVs)@T'<6|"cQ! vz9˖G}0ŧ s96{k?ke[X5f3DfqU8J 4f NiP@E^57ӅG|Fqs9_ξ>VpONau'e{wfO1kXZx$u[gY{[dӬ[u;.BGi͐u]Ֆ~Fʣx6hТ<4L:tm'tldi-n$<5A*bff۝lŁZm f5p<.@z2?NSReQ \ǻ Mˑϣ :8)J0 *O%|ϚXnŸ͈ ;nk=nbemK+_ JhJnGsrVqJ%kl"yə>W'o·<"7[zKEzO)m:5 D&p{$]uZqsa-_n|C'Ń&5TEXsiV/eջ@։V떒]N":WцVf5d`iSiaˇ8%P'ų֕sVi͑L E 48G^F_7vل _&)i@;;.%yxݛJJ֭ETTe`l_Se"f@@꥟a+;#؅9( Vz/ g:_ u@܅Ώ jR&`r>wdVYKnPP[B;siه.5e",ع5sK,%7 @QyZwNǟ3#hCe GF{t Cʢf5SUt8{YF۽dYBD uaDbL"י Tۨ.# 4E7Vzhql>(7NY1A9ꁩ!5wnn/;Ap`s6y* Tr?b&=BA9$ N[yl$,!.c oHdG3M&iBsex ]`Ȳ>dzCvdbWc99uݜlIЪB'H-:`G`7 VȤ`_ )tiz_Μn֛#(+ubXUGE\?ј8Bp.)M ]l@ ~d#ے!(XR>3,?b~R V<}wuFTsA{7=!gc܄Vȅ&B*{˓$Ȍp]j#e MWoF4p#Рm9(!0dVQ*4wp \ѐ1rݼ>&JfQAnNKE$C@nYӿʬ%`vp{KfgG,B/M/ez' ;c[\y܉e(zk,c%5|[kkk(-㔶 5k%b.6i6ǾMF#Уn5\::p%[FI#QY7*|MYG\۷ /_բR `Umr,fB.IӪ~ _i$3(z*ӓtG,n7H䶾xqi.[B2c楣R;po3]pGQgM/*?mG_")X  #"؀%_ۉ]9Qq?6G^@SCi^Qxu7j#: ɦjXRM4mb/'FQr 9Sfos>[VOji$WsM׍b=Z-dP|X=JL^{T{=x$͈Wýk48!fH-jc梅ޢWͿ6jv.Q -zn > +8_B7S.}k$#2%exEj{;`ޛ_Qm\/,wRċ_"tJ7:ar2g&D#.P4qT X `]"M=:ޔwʡ9Ɵ "JߊfZe89lvtb3ۙsM+2qNj*0KվÁz˼HP+'2 fqfW?tS[Y? +i8߮{ @nF4l>eæz}E= VifRLB):FL< VVmZ{(i,@)&-[W2z]{H:'sگHk7ȳ3 `f2CE5϶W p-EE`V9.|H'z`?ҠO5󆿽e5l>- N |3w.YYt+'KV9HTVK5Za$A*Y!nK{5]OӞu #[6|YvcQ)y)nj}8U u xN27Zh՚%!hd.ˍ TUS|>jba-uG)z,++c˺ͰO%lOm=a3m`N§  mɆ>-P-ӜX)<$7%30iQhAJ xa voXLւI\`/ 9z?n F~.7ͭ4>.64^Y!>&F0O#1`הw9ȟB6Kwew@,T6X==ZDC,nCG>I sc"M#vD߽B8K[`>nӞOI[b g 4 0-"Ol3嬱 xa[6fL6kNPװ+f6轣P8)57臽9G)) \L~Ь35sfpq]H\g ehkH!.n5ti1T3ȝK7{Xr.y=WlmF IKkPN{1!d]y `3L2l o*KHo5BvB1t*ϰ\&!Q 5ЩS6x6=\k"p?,VqoO%gRmV@r[u~6b&If 3Gʉ&{- %@u}3jãt,@qڤg p,@l3]Z%G È]K g<웥h:Pԏhq VQQ]rT63UGuD5z [9?t}pU>wqW>baZ)xkqɕˤ!T#C878LKؼ7w@>QY\F?!s8Afer.0#c +cf:zʏp˹1#JK:fxDy<TEX3x޻04s'2r:h.h<^ Ry ?mF93b5u=Uښ\2Y4\C@O- Xe`| yUlm#ZǘG/4`7;:B׍YzI5rΟp,OGUVfSeK& K<6 Z]iz]L,R|=cINf0-0 ի6K3NfqVt:^[ tt~JP[j δc+eڃhͻLi {@"A6h0k ӏ8T'-v!{w~̟]|`:$@70]nAX&]a0tIZ'@ڢ5 s{ηiWѱXk #'@:"0)c[nxGPD2iZ{RmQX"E 2uyD{ޤϾV6n<z?Dy !FaNaSJ%00KVM;>" Mu 4:K.<γ1=ؙ&cUƤH.u4;ʦՁ J<{:fY0K,qoúnH<+$qN92g6fb4iK%ߑ添ŀar0>]zsϩvҲ濭sjY B| :R$<%Ӽ>3)R 7[x., _OvoCA"kAYB}4REiBsiZc) m=BExif (4'_/n8rX1`[~ M2 },9*/ȲChp#$ iX9[((hWnYb},T%K%NxaԵ|0+Y~g]6V2DI7;d_HֱEH*r] wyNia}gJ8Rέ-D9i?V(76&"HD~` 켛N3s\z5^\6 :짓 @ߒ;bհDZSGx #^PǮ} \\GrU0OW|Qgk #7SG*la^5!ZeN͝J6“\p."]P%nBBvZc$NDj+ a4@W'"1 CrT=ߘ,~J6Úľ!fPbMB5 :V`٧2-g =&zQf>+$36y#II;DSjƢdAL 1}=oXct\EyGPWXC!bM2t%ӧ(<.#}El emiUف¨LCG<~ HoMMPIkQrY)9/&<H + I_[*4u4mjio>'\xە3 ؇1 }yL ){UfZIrk".  |KG%kj7ܑxXo`:%p3K'@<0p,RIuNE\g${Ν#OvփCMfm/mKsv]9߸.BR.fI3I^f_h^݌_{( q=6*2SV,sUVzejP^!1.Jk x'X3!rVM'Ӎ2H K1B-C@:|3䓃 ?6` {w Nz7;@ltKhA|ˣ֒~z&(sLs>I^@~JCM.x_aucRcCYvHrŚdIvTt_EketA* ; eً&>^}NbY"LS\| P>KD?zAQʶJTV֬bbbwc"󱇧r+4)L)1 ͈gRbb"8TNW8= Viy7#ݏ"G|fS}L"ܭ +fd_+_wa u©BfauptYPYswX?Ÿ0E(ݱ l*hF~]B=гU3el1 ?$p2UfgAr~}Dm:GcgkKwQA6{ې#a5N,Vڡ 2fah~WqHWե'D;eg[ 'nJo[THG/Ы/}saBb˩ZyTS4؟ۤ9tVdPc\c+ʐ,Jom$hQ1֚1hTE*6 y8\R.s:\U577 #إ0J(tT'M+ъѕC$s"WEj;:1$ NdszY$6Po2SY Vk:v(ױ˄  S jVmGM|>.@*1f|?gd(8a>t7 u|ɍ:>&@82^rNےfxF⋚2ޛI=ǜbI2jBj0/s'BO/iR-zB^j8F>?X=̳P܋Hg)ScHMme]h#@vX0epf${GOߝF[No-a ԞSͥ ۯXF?*MGYJfB㗁3-Z>;ϗB;W` rjTng+ ma;8 l\)¿"RSΑ>:VdȷB; Ȟ2|f0ܑO(ު+qM5Ns}-gMztͩےn$A}\_h4lh+9jdx P#tmku"jvT梈RFS}98?wLkaHdᶆ{&DI9vЍ߽_OgҤIeU܋BISMuQZ $wp7d͚[zGť_u9o:C)cA}l8jָJ6)u1~ͥ]f)z&iZ]i]oP. }p/mu^K{zVk!>*y n8RSfI6_*VS`&B҇W* *c>:ԌK--&fI"tnZ1*"@D\R {NҒ(cD )|:RPnhr}BRԋN&ӢCxLD)iS(d4(`/9֥7| yעTk *g9D?+D䷵k$]6Cf`㥥J^j#ebmأi'^ ъ @aeY'6>qzNhyݽ n $f̃-RMLw8'PiPZo;sz0*bӇrBڞ@[ &D -[qpA~Cڱ>˄54N2yf ׿c]L῱uH P6C,r$+7)F{{ݦƄ `cRGSǞ} c!ʚٜ?&&I/yZjciEz2Խ| l`<Ym`Yq1*ab'~@Q(5#?<בF0*up@m2nIYb?ךY Q*])= Q3OKaE`V Qo`g9nz~d+;۩Ŵ V)EnGJPG5$}-?`K86y ЉVl~@\ n7c3e'Fh,u z-YV!ppq~3oL&h2=~?u]5?0rMn.OIZJ{?(fTqk6̆^-\JR˖EPBXı`~g7tٟnߔ||[le<7[ԹA*1:y|ǨMaxMh4Zn!:)&.v%DCȌ{FrJ jOHQ Iw+y-*v비= (({ t>뤛s]{Ax-H>bvTƤ8&o'&D(_tW3"T fHX7e6qͮ-Z؈zg.+qq&JH{lU`Y'Xy_&>hgmR51:wd?r㫐>7`0p9i_?շ:2C}3;2ʑQM@ilFߴe^" X E||ˑ@2pd]U(s BQ4vJqఈhp6_>t6CN\~ MIBA G| АO+, C@F7"p bw.@ #rLl5Bc);^*G"#'hJC(.Jr*XU,2OTi*eIp_w\2;4"&ڊz~tʾ;;,‰Ҁ̎^RDj~(Gѓ H-]|_hQso´w(SYΔǪ5E:b{NA]LD RL6^'8lὸJ ).5;PER!+m /Wvrg2*9҄n58av/OAzIg} Y{h˒q{mŤ_6{;%xJFh5e_}KbI͟)7jngMA|W+&' 0PKSn`PJ,>Q?:p{Tc#V/3+\2Z!Rാ}Z? Ryjf8 s4` TX<5=$A30wsPy@_@h[mTYG&p/Zğ Ϻ @,~izC2H9 ͊!D'輮7p˪L/Zw6x]P ޸91'dw?\W.I7#*̆@;/Ċ԰}jlh#1a5+%P-rf5QÑ9q[fJ%5EڵUQ\(E"UZ>-#KNOtIE&@rY'k4mD;w7 CYe(b-۬G.aN:Lov'iGґljt;hz{C7Bg-HZ!3w*&O΃[!Z i?U{չn܇ve3E+1ﷻ}諘est4IZu(袐NPE6=G l[uÈQ|7p7 "&B<6ҦQr ltG]Y$@aMn9lΒPhe Nb'm[!0jFPhs@I 1Pwzϩ,c}r`=Hx~b27[8m]ا%Oט9)Cu\!MXZg҃j.6ci (QJ[UƴO4lbJ7Y^D,|Mlݡ.ʼ-Lh C7QZ)a\qJkf/ȏu_ VD B@ړ,[lPg mt7&x$g(Z?[\N7*(Ͳ7=wo]pq"X?*o&!Oݤ[GuPI۸[[Ɉ,&wyԨis0mpn3nDq&/Ηֹ@q#'b7/>e2PC3/CG:'Be/׷SQ+I?J;QVǨ2 >b\)Dnj/'|A +›z&6 0x]BGKS$!svm۟`%Z^j:^" G?ӈqh4eiTp=I:6^; r]<)g):&E4o;xc u Ͻ_R? i׀K>ʏe"k ^W+0rFp73k'|mY-*S&]P gD[4M9ib!wRb Zb[@~cTD(*ʛhAB_EIVٿDꘌ톹-$NTsK=uw`MOUnLpLL+6ŒsiȐ˜fYLً17сk%Yg#O-80^z=垰_ ԗVe E-d`F x"4/S[.Oqc[RlyݙvD0V| GƓ©2:Kn~fuuPɃgg޼d_G:H'S}L@4: gΉTTѡB%'or3˥kbI\ Zpp -<9d4~*d}#v*{Dr46^NAhO(4Ή&1 $1Cm)g;%% Fڥa@Ans2%yzM,n»σ ,[wV& wF}-:^>]Ҏha6ٱQ_rb`dz47VB,E/ A+fI|4b‹B܋}^Vҕv*oƻ^)@֛c{e~gŢҮPU !&\~gtUUZ69{ Q3A,3_I64{؇-!vUwJya- (3 '΋wK*5`o3=ߏ-ڡʙ|y.PWݤ %p&>$$it4h%(I? 7W|kƗ"8t&R`TLA,$>R;=h+n =C]%<`b.Q>atyپ&톬$ߣ +(Eسa"PlMvNz !jmʢD1Yt (Zb x;<ذܠw.Z+ nli6byZІ-ex3wsD0r sgs7n.sH :_E=6)H3_ѤnO Cm%ل4kUSƇS=s&K>_ a?k*C̳]rp2I ~y"j2 )rR^{ 8&]+u`A^e+hH = bSӈesּ7ts=QU[n ݤYNB݄O#d~`,Ig4+‚_LG %(f(,g[qǥ'y1z$xRn~3E@ryݿӷOU*{iG7:{q z?ե7"I55&vj[TXJa(zZ1W4V BBH@miP Ck~ltP/xNk$*$q*rJ15C&aǷq5nZV|TG&,TRoT.--VgXå{rӞ/ZNWI_+)0GSf|Ѕ`˴4m@VG%p/y(!W^(1U<L)q.'+4(ajjNZ REr(Vw$b0\?˵(%M=<TMl(y|U jvi;rG|9ÍVN@Ȩ尛^Ҿb;\Q]JuPqۧ/}6c ~6*PsPЪS9wN `OR ڟ5|Gc},`Ah?y:m"Dĕ.ůk}[(c?F'u0J(sב P R5\Mk **R )sp[0ge<̂<n <[_9H t!dI i>?E oⲜNhpC/#bzaŒ,*CvSֶ=rev×l msXҮO4^`C?*cI5ymwy9|Dl]ߌO؀OH QNSp0j8!2FA5 &Dg%Մ!BٱD[bq\,,.Ò꿳KSw2HI_a6f?֓s@?7I7li3G ,I&m*)gҞ:% 4 ח_,U yVh)mD>IWDPc~QKk' 汫:Q8g`IO+I"9p/ 6>TXڌAA*!1z K)`bN>_']UMKPeVoU·+`ha k)bG^ƖB4d "cCZȮ?^ĊPYq\t% $nDKlOt`^%h&5طG ~U_$QhBPVzAvskyd)6Z7G7a_˿ ׼EtA7q xܙ&yy#~1xyCPU`&ف|ŧ3 "+AZ ֱ!j7:0 jh֟|xTI>%8հzqc.W.&ߺy3tخ)/XnyU"2'犐Fխ&{$=d6G}0B -[b4p#3-[6,2q =8cƥ4npE1k΀!E(?(wpZKeUciћ`1I' ~-]\8DyOxWҼm9uQq8o #ReoI.2_lciSBL27!Jq"g0S 'qU !2,?=N%I@9βOkoX,y-IlΰVݤ2+32ɳtU *2X.Q)De85gsK{aZL2+U Cl~O >|3qզQ.TjR>8DRp&W5>jtka=_ [4<2/g6A-i1G\0nw:n&pr (jȸӑ)v(~mEEBN,9BEGnj+j/Zf5!&i+Dbls.oՉ9(A$vr_A6||k{uŋޥQVH0S0sKv|F1̽<P+pRI Yv _cϴC.5J+4K'1vh[]׾2\< }݅nS]= BS?{K'\ ( vXT5yC Uͬ=\+afD \kZ Xj!~M!ivUqL"\ VÝWp%3"'09~)y «=w8gg4 j#ŝGgU/ k)^ H|txgu79whjp!_st)o&sSYyɚGU_.ƍ$ 1hBQ{~y1 >DS/ba'NiJ;jj۵K>^q hOVC?Q \okkm?x-;JHFDQHE*^ e4|pu!Y\&`*R=4k1Ӝd@qTB]/}~Ԁ9}1t0UV9y,c^QU΅ 8cqͽVci#[`MtO$^xfW,6)eC:]j{;P"΢߯hih &Cae>[J٤o5 B%HCn3= 5 nH~}ެujVd|uÌ-Y44nM)A|ςJ^lN!*KٛPik 'ۖs<{,qY Pq[Jze"_?ȤxkeZapMmTYA+PQXňRK~l[-k(_XL'nGkNnQ3xȿ!Sp2/=󳠣bfػX^Y0|T P4颟KẇFIo\kCJ_Z =!mH+KMƖ)ǵS!ևkH"a-Q8o╧Sz +:&;g\IQ' ? A[h9̡+ovNx|iV swcHNp6ږaOA^NדN]?^yǑCpyGԩ] rQpeG'jZdz4cd9qrՍy##844ܮ.I}.!2!'ŴC5WY:9jVStJ:ae|P0DsEO~ Sc+/zg.:sK3PWi{t!]NkVI?S @~)LGj*6S*o)vԀ3hzF`0bukIejD7heKx|-mge~Tc[eF(p$daG|Ʀ@3#UtjB[A72ʠ{ o.|ǦM.le{r1Cr M}m亱[]SQeVr8 5E&YClfo3FǛ^b1 _A\ѩo<݉\G2\|/ye_sض1+UX62}|LTE ?[+Pc}堚F-M՞lXϥC;oҷz>T MrvwMU5,68fN 17^@ml a$KPw/-gE a[McHscR0W ?dm VH"[eC]2ע~nlb&ETPqL֞l SwҡuϑЭXF!ByX¬i Ɛ ;} 8 aA8="E^ cԄcS "T!&<ی4ƹOFy{JD-'B:{'p?mkm"k5; ES~aC<1Sg" t k]}?n鿶-T|Bꖁ0(^HHJsإ{pDUjH @li؍PG| v|"DZdڎ,E*J> j|f4זNK@#ƾQ"Ӵ۳m@ĖN=3*l]])w|ڑOw|dIZ$sƊxᑨ8]{M%]v{EIS{|u$;}2!xݔW-.ӊ1% #2H/sq1'Xb[c9 a {lpx[e-L5dxP' ':U_7}LvKPx합7tH,HǕf45T<X'aUb%2g}J95z;Pn~A-/ScF'X4lC]\ {gT(&϶#aFWI&Fh8v'No*!J MP0047~϶)eZ%JXrb̈́Ċ'%G>ѡa'П/x!?jx$/yz6 ~ AtOhoT# ¼ESlÒW*z84ȋסbAsm <0zi PY}<\n5EJbjXKS.RkLMŊ,zᨎTpsr_7B1# Z. PyXvhY7.V~:mJu? %wkzRCl'E_ 6ֵ$,R}Ml8M^]]@+]E;OHR: ޗsZ1NÌ:S @Z>^GntoXK\ZvWɶ)R"l&a)x =O {}J,%zf_C{8 ;wZ0Ԝ~$=1Bc6v=V{b3D@lDLpn?L!+}Ljg|j99޶H澇]dX(H^g foX&*qd t$S'=,iaqꈰyk;ksaf~?uND@6trbLI]b8~L&$!oVuO)/1KP$ =NS\5*y{|f4,!L.Z+ S O2Gcy{ -'0[ڦň7Lid/Y=rqUڭLQ-W紼Njբ5;yיގNba@]Ƶ#{-g,C :9SQw5{W KvmB=W)^r71wmf6_" P& 4>kRdu~ta7:Y+2 cϳXnAf`J=l!DXZs+ kM˄؃+azh<E VO IlMڮ %z9F^}ng'ڷ @kw)0vuu\,b,nV_kdsZˍNJT.۫4C4{[xWU8 cI8)!2W$蔓#A%6U(ҁX-F=\TI]]v3aʜpð DxqIX r^RLMb.0lf `06|^;,MK"~r bg ~4F_ǿ9Mxy2⇇#<:Z/XK*!3m:@%}t 9Ѹ7Sʏ3"XJx⤩xǓ~'Tnq+A@@i±'2 2+A IX];,gaN!T|]ZR}MV:ԮKZˏrhjRK&b☗2Y]AA[Z>M'ad.RMG1gYSAf:91340+bweb=KS5 cȫdU{Ac ⲛWS4\77ueKQ% ?Ky @ F| _=Ievv. 樒k}o~ #0f,LN/]7"@^e$?e^,+}< B r:pg0+"&:tGeyj3ch[Z{?:F- ˲'IUP$[-f њ-1 Yˡog62l feȀ' I2Ϙ'gI'e͓>pnǖ1s§=X>,!,ȁkflR3O4X,= _ !zD2\s)\x옏G8ͪ5Ai_6p*Lř7\$ei!Im'7+6~!/*Ph]%/[C1'90x ݍvʉ8E +#hgNV`̵}Igi@{}$v߷.zz$3wI#Uo`G،)R%Tu-Pps lTQ7DW䁝U/7%ai.ye)[¯v\.d$bӋ}Y ,ԃa!!X8i᪂qBJE N|,S\$ *єy"n͜m>/%tvp_*W <42պ@,3L>@ss:hFap8Rr4r߲!JR-xl!lK)f(MҶEF*wGB-S4r X:QJ[ V+<#<#rPZ2aOyWV8)y,a@pljHĠWAXϚ(;s.mR*]<:si+O &J>CgRrCb{!zmwh8҄Dmٌ`޺nH%bB;\W M~EMgCV8hƚe@~ 79䗢<AD}|q_mxzJĬ|(Sp#ܸXZ&)K=TZm~ @Tv^o#~ZX3 V9pz)VMDUBкH.M}!z-(LoTO7ʣ}y(_j/dȁԕ[=Ͳ6xdes'd Z_CJc*_,[s~.`7>zckSBϷǗjM f џ?`GY 7RiP'F$n2OS+#iu-=>ld4Csфej-,\ 1| -u̻u0Ev4wȿs}asZ!Q 㩕8]-]S\*RxW;SphDE*W}-@cؾC-XTChg|`'6crL]5Ĭ̿5+(SgRYV,.1wxZ;at蝔Gon]U̇5g;]A o${.H()MI[筌M>y+AI(I +c_ %g !%0_Ct?x`[/ j\֪u:h&ݏJ RT"t83{ѱAPu+1+K[xqzbS .dwFLmrNل2/a) T9QZ({J*աR-IQu {&w®WG3R0\bl$W;g5**-.wɟmGint u 5+)2jaXE G/n }6q, ͋ךgA"n9xepZoFh QkSaR. Ԧ %c wwqP}̼܆L;Ϸ_j&DH'?IȚhj̉S"0Th˛MBF8(D6` <)f^wxs;8/Ij649GbzO^?"`Hj 嚇ʡHn=?E)]'0 w;Bĺtv&ә¸#+ǒ8-x9! A4%$}ݫ U iǹ/=]8~~8&\z؅[HuV޸;̿+;Fd{1f!l>@B=˰ ՉZzXeQJg7DŽcX { O]bqu$OJЕJTD%a̋:45>ޚR*#BBZA7aD?n6xW(eQ`C:o";g*^}R=붩9BQey0T#}q;KfqPdAg=ź= X9>j4 8KКQp AuH(ݨf5DZM:Χxyz8P(L/(^%sLrVr䉤gp7Af }5pHhbj( X48xP>| w.MU\;' x,for*>x<_:ŵ/2"=V2#x)}58t3Y1O$:A\n+p B}u#lm2եoZ,rnv N OqE<͉r\ k0L+88WS3=, ͢C tl¡әîS94h|@1VG w>zlB&XQV\!caXb{K_: )-L|%b^er$ ڝ)}YC3ZR2pu:Hk&M?YE"WB^u9se!Y*N,6X8_ϓ,+߰]v`4p .wE5꬛RH }.&'G!0bG;LDQa%`ܡxS K%#8ofAo/'~bmMDmΆ7~>k{f2Fo:,KjF4H0/C .G*wG(ag e`RR b"ޛ8e*AVs/8fSwߘK<1򝿒gi=w1e^\AKp(K.na=*֗íRouy֞Du=@:"_妟2H]7wi ?o/E؞>DILɫ̸Zvm9:]>Z1mM@_+ _"P߉1];ȹP];ݪ9#f>63<.c꿝2gm} _1ճAѶoϢAlMlOLKr IzYad,{\[vbPJ]G(҂w;B2ek:N0'$#=,*@#BI7%<ԲB@h9R#.! e4E'V sYM 4̥tբMs{7B|b_Hش D,c1#FWG"=ay? faywҟLǢL1/d6ɫIfX %z+W#΃Aм+4BhNv}fo$C.@,֧x?6IyģF N:3Yqwtk1%:[_V!2z9ֹL_'B\.qR Lwy4Pb^t6NTfoyQ ]a;͉q^hyX` .B g;C||pAK#[VUuĠc0"݂hZl#!=V,V3\C"O'ԵtWK`auꇲ0W4,Q\ͪ;#~Ŵ!ܧQ,%AM{Y'4 9׻ٍVhSu7 /ř6W` Hwo"U@\큢<(6/MZw[yJ y;|$`?19#3[%ZtepN '86KcR@X2 J-SՄ[IhWȩQ~*H!G~] 'M5v^ӧtEP?gzmAH}CV4$/T\gĵWtgQ@RRʲMe ն=. O;fNz}{V v BMhp Q_|gۢ\\PapeiDz?Aym7mt*(wC'sIo-eC ʜp_%q&Hƃ~Pyw4=ā>aM(p+97v-T/ހbU]]am0 )8z8VpRʹ hl)}`n='^{H 䣌jAF,p0t߽.A Tkb?K,2h xuDBF ETX8y_)z`lxh^, .fx2~o2f)Fcgɬ4q?{Kbh^?a;BZA#pR# sKƺ=Ǟ b+f:{McO #z_Ĕ2B -Cyp H$}J5w!(sQFh{YR]-ҮdZZYKk<qv=IQ-N^F :-9Y}Ǚޏލ qkoY|qYqޫOWuU8詤DL1 6M?FtT1H]@7 :o=͏+1Twq^z 6q\uݿM /N:=ڀ~wDar"5̳fg5"` [Ƙ;nK)B,\fMQ$Y5-:3;b.gy إzוOͩ2 3ڐEki?A$җ)(]mC0u>-Yv [JwUIxAFތ֪|3udǏb~ ; ˄-xZSdL VyĠo#QC o0 ʘ PP;  E1*䶟[cb=LOj4)^*6KR~FUҴrԢ`bR* 9N]Sz~&i#|' xPPJ=NSO¤j`ݘ8krtw?~ pJ^GGS]DS h31PD,\]{$! g2*Ǔ73N7F;^dwa]ǧq~"1!{ xJ$g J_n+KaҮԇ0%+Qrgh:1'x+8RKp4UhE !"c[ ̦Z,N,Cx[bdOh;hP0.9xЈ`+3S,ϡ{, 70k j o:ڥ>zmU=ҵA~X^FPv˚{0"O&c"ea%gC! b%\'hn 1*Ϫ$Q YlM'%=K 4|"m:N[25/P7^" E=-LF챃ɁR]E.wfd[}^jȮܒBBĦ?47>,`^rݮMPGaRlD= ݻXM:ㆂ|. .Xb+G jj|zEoF$ky>9E tu2Ӧ hr&HɾF3Nq(gKn ",v V  e1dMB{ 1|Q#Wnszx, y%gwVU4۝ їݧb2l4x?1}@[Y*fwo`"OlGOx Iق' X7ֿ׬V*>"Y#^ eՕMOd;5j-c h=;mU|YI4M4"(~lXȘH`RKǀ-)Ure)^jkkgeK+M^LC5-·2zMU?ɕHɁ:OΒ`^@SECc##'LCYQ7كсͳMYCæ +^䭪^֩ŕ-`.Al/(҃| uo9 ]X? pG)MmDi~CT??\gs)O<1M`w,r) $k1jBNۅ>K=lc[϶ /ANsDڀ.ڇ~\A8eN89X7'uW>-gr^FWxnC=`D/R,=%ctĜ⼁(>{;r'.:=6I3A\jB$vZK+p o!'pD7xH-ԇWQ'Yv8kE?oҕ%ot8Z Ny&NTZ`:YBqaۅ!C];Vsn/!p5sw)x`źsAԙ{-TO7:$M1$ܿI)vu6P%'|@(F̉akfi|/#Z^T _zjr܆lr—che7zzG3+X4T06 J9lגjxqpژMH/`8/K ͈[ЮtԤҮF`= w9U.}(e"}*fO,(җ(t{(8idgb9cD67tao JL8}kBK9o8oz}2 V\Hΐ~D+}aIGWy`Fa$7C^S7ķk7ctƩ/{yԐΔEU~WePQ1fګƋ Om܃6 p:(<"0EKb_lAO}s i%U <P;.wA /rk#aEбmlU4pߔǰhR0wO[ V*/N2;B*{U*Ժ+v@wLj4pkZ]*=dem`0_JTlFHH͗@]\ fڵvb좓['@L G>n\0CrIô9bʗTnEhmlW ;FÁ5rlH k^w^ΤjRrV^ 6ڔb:(q2d N zMSz~ŰRz;8;Y*JT lĊ,CzDF@IǻWڃ29̊=# TTYN[v/Rs݊SkQz%|=#ݙGXsM)M-rT~̴l7 0A4\L{WǙ1;"sƀq΍hgm6qڞ@kGO>xo!xd.1kO`ZLw[E+N7y;bBQOseFq/A5T: *>LNڪ+'!}l1pb%CS"uZAF4tBW1DysW{FpX >ytσuY (Ö0yvu&tn6D*dh0#l ` nk <9?u_ Pg߈~k7˳Vv8M~OGVQMj=< 肈2rS_vtd 'b\(k2YG)*j)<<l-XIߘԣ 3y[5C,Q2Up*cr'L1B9xohP dl@g}]au=SLJ{MﱧJVm G;g ` Qb^@C[<.6lxuIgBD4IM٤mOaK8 SB`+ ^YI]+lС#0_D² >OBM z_S6vh2qCWST 4LR: z1K_-㑊LBqS j# oIiCuɡ 1g=Q_]|'mUhuö|<{tmNQa $oGl )zd=ȶ;qZ 2-q ߍSqZ"qj؀IBdG%O>mt[;Y39$4xkоA*z}kaO&뱺巾@Apo!eg3{cyl _PJ;~JA{X~`>$;[K"xq+n`7n{Sv 06~P=0+$~`J&X|FN)~7[Y; \"4S8tQcJ}UD6N%Ð=m3}FP>rRvså/*ڑY Ρ<.OŻw7= ! /i9 z.GҮS˰\uQnSOlU\o"%=*>0QOcxzPuI&x@ *xB-Mi 2]zu![K$+b2Mf D>$7IX׳ b"@^LRՊL3vg/xτ2dHn93;]ަ`a[d}"d Ye&i5I^b-=;!T5:/(v^o-1g#D#Z@tReX77_:*~Ez;d;)1J٦~/!J*UoynE J9u\K2?U"8WDFڏIe)Fy m2%sH5#Ì Qqqv~SBU$*|/޻;:4i+^_(6S!z@,@0rD Hk2_P-5넂xGыz|lNh"sbXѼX@x@S{ ,3&_;d2DTjҀ۷)y,]fM7"G26}<X3MsSeR+}Q]@]mmWS*EAH8e#izdfx?< >2B1SSp #$B˷?%p<+Wl~I%K'խF&,tүg&ϊ$lh{0ILQ8"`OH_R?׵QwjY~&L D5löY8UheୗrM݂w Y_C-ɐ|ƹm\>!_\z:)A/8Cx Ig6 BJ鋔TYdsp&_2mGާ.^8rB1#%[q<᫝Uz@6{]i^>Y$ٮeLg "3pgb+uz2}6s\,ҞxEX[.lc3)Cmc'>XxC gC[@U`6໓b!7RR2vOJ42l>7q9@4G-_$6I0.?s#Mr]e[Gwrk0˗%7j>/LRC84yfNJ5mM]I?!Bw ܠ!Χ7х!)x0]ɋئf[v&>Ɖ= PbHm`x (~}pnO9|S h 'R,a a_C؋y{3TO(-AW:DqRJ$Y dT1'l; HzXszGt%oifžނR4 peOӘ}l]߾,%Q_J)TF4^g"Q) Od"ڔfb$Ķ-W=j>Z6ol=laNs-Z2/7?^qB?\oGrȈ;r#t[5 @ 7chw$6B!2@0]4%gc}~7ajG ƛi _B<3aпr{ݟ)jB!ku4@Z8eK 8&_0qsMKA%c͞X&#=CL֟nӕcy?hrb(1wS8Z;tem1BIqHRomKÍ?"cgI;۩&5RV3)r] v"@C̥ٙpYCE(U_Ze|؜v)YbjH3=T45e"Ŭ?C6rWD,c#nWQVPCT̯m"P)dFg~W\͘ ǕˣRuzTk)er#5&QӀoX;i0F\mbcOƉlgdK$֬J =!ppshl͈0B 4\w߹MFX Al:Pay&=qF\QVOGM?Y9 v5B?ρ=v~ѹ~Oef8.-(y 2OJ!th kw^Iѝ n;hJ/nMl?Kwl v]u$81X+(w#IuA}O5;9Z>†{% 1ܷXO)!^$xr3$kC+#x ipY=uGmΫ w$ŷx%{zxݗO~^ R11AB=Zʭ_$XQrSP9l >Rdh7.b&? _KƤxTP`ά4Y2I]PKԈM,B?.ׁkYz_tF(X874s-?u 8~dW8AnLEf;Q- x8SDۃ4ڐoC C^yob\|"AHoKI,jyh=~DqY23vWp$eynb:Lw9r[}>{r1:cVđgc̣rHm:&hxA EJCk؂ ,F#f YDl7 hZq>=$%0?;-4ou:CXlwߗ,L @R(_ !jMB+ u|cRWvSxt* W>#ãH#PxI!V=q1)ۯl } !ב.#SE*<8 3 /ݘAX0$'n웧9բESǨʻ+ ZgTem Jjɺe=ړ-~7WkZү I uUfpXX")*YI8F´+ݖ$"& "!ܓ_gV 4Uбg۩qbpnU(.4re[N=R~=lpA :mpxCm󓞘KDY^:\1 ^c/  e 7r*m ۦ.uh ?"5cR$l?0۬:oz=HS8W}bYg1:>TyA/=dD'E[#W~kօ;)LdqG4SXՍK'&D--y!HW'#q 划͸Y'Y$:Vނ- _(Aݷ֥'CpXB*_@"Hm7G@0aM݁kcQ; _4Q#`?f:We3 S[6g4"VzUЇ*h]eZfP52KF"-{엽E 劰}#De/uI>fs6>}tӍ]x-g xŽf(;H)y0@yacbmtePuU%~ a^.8VT݁0<0ty&HYnI bhF1;Qc> `j W2mR j ޸~d] CږPm2.]5r Ӝy'_l#D1} #RbWp+uR\c߁ h̝ 3P;2]1v2Vg$R2dh0}vB[ju8z DM\7Gv %7- /'y xiŀ0܃q?a sqB+)%lS lp؋ԇEam{zyK3=f%-M:qr`"Vmbs`MEGˁ5س`9{D5F)2NDZB/)ځXzHhI&Ӥy9fLEU$Y%"qqq7 CfNs0}FX͒_Zu,gzۿG&"M锜'PR<@J0HO [% 4DP@ jcBE*q-30(CmԄvbc<Ϡ,j׷@Iy Gc?qYy bեPM׾/M9ڨ hwp0>w|Y=c<[vTXEs-^C ֕,R:sZ dszwd&q{RAsZls&aV& ե{gI/ErQ͍-Kk/ŇU]iF~+ԩE-UpW\R˻:.K09 ^ަM@Q&U7>j&#cOKoz٧_ Ur~.#VQ؞@fQ̜my'/~6p:m L'r-ģS^Fz>fczeWJ(A+a1XJq#-zAJJyO`8r0Ydu<"9KMU@u&bow+5ؑ$N/%6cj.0{3N)?hY?D6cUJZ@"V#OThS=3!5ro4#3ݟW"X9gOuxdm\lbacө<C("!÷cC]~8VUݖq8V>?Zn: e T.IpdJj`~ ֑"M>S1pطc}`!l3YxAUʕTV. c  >Rktmd$1iZ :#Ev'zm};M` 85r7I"+ LpǞrZս`=&{>u B5 3VmN5KP^mPV> N,KW)b?Re&g*[}vD``QFo3#¢ @ylD7NPI{ȔhTjH^i$҅[/ZRfWeh@oPՆ$fLM u:_٧I^?v)jeQ$D6ɫQyE$Z5ofc-dmN9͆`;.r6lm? iW(l$A!dHFধYe)Bn^IAE৴ -4]RR ^H0a@q<ˆ WЯ Jlקc+AoBJ?xhp5cnq+~ky"rCʲÈbMBcM1̓E Q`/v\^xB6,mz+̆\=2W9-Iwݵkh|"JFT[ߌ'lg+I* i]6h8jB`# l:[k:FnҖi<ܿЫrao:XtI a뒨Rr)M0H4) Hm3x:2(춧\ buyb14kXШDŽ:O=W:]ݫΪ9ZF,p7hi[2;mQ~1 0)ѐ *بe௦9M)50u"F g@z: K@^[NÖwAĺ +r-L,+ ocm _%cR#ñ7ӇMk~=mX]2@VӉ[}dPM7"7ca VNK`:1ƓZ_"w) !0ˢe_T SL(3{L{z ZU G4IޢY.,opj8TdyD-_PщՓV0k[ӥ7x!󪉷iI1/ndp~jIJIip?. Ɣ 4Jr_@EY'ݚŝ$>.8hz EǪjѵۥ&g'<60mfKu1㙛DdJ"n}stbI*wXj?90,0NRN>#ܑĚ=o0ک+%'ڭj6 #S,uiO@ǵgTY/hIu$cyhO:8BI[XiĂTZֆs TàtYSyJ瞑:&(86bސMU ѰQQ &of)z4|>rj]\o.kŻt~R6bFȠ JF.Gm k5lP Pt^慍;Vs`21Ex pj-ӝO0{}R(օDm~*V!Q@brlӉ9$)\y^0"xo –F}Ƌq-rpw=s M &:JKSN(2Ucs䊅M8RLHdWT,1$qrA%KԔ;!not9@63Ha(΁'0@3P -/dj<ƪ͕"\$sx{e(#Za9G{&2ţh'pa6QXZciJhrN'?{ؔ-v_]k4<2ډ@T*JZ$+ux.;iM6Z2*_3ő [Çgp;[Sϔ{P% Oe©F;2ckFIȥȋX^jȹcӢg,BBky\3 XMh%GeKEGXÌNre!䗠 ޗ'Oo%fnϺ3@ '3 :,W]NJ)\a' YlTH^6*@ !iijrͤ1gyϔtgܿ\̓CUUiՕ#UޑZdǛ^B^xZq65 %,qޖ\OdGxfs\a#,14FV>ry谠4H"A  ^*Ud| %C$3@*:Sa39v k_^17#r4慹\t2: /-Pj><oY_0&8< o)`8Nk9e`+[$>ZPj=.d'*Ƿ]'V.uphĪS^<)TjkLsQyԧÒ>H10ۊs-Obl-sߘ^]tӎ? шD觸ODsrd'? +ɑ?Yt aBLk\z4RZ=\> p-ײTI>Iȩ/uF+7ah̭%w8>M&݋'+K9=!h*{>,z&y8E03fv{(Q~lDtyp$6=?:l^Ğdl3K@0X%ݸB4VFʂk`7Ǜ[Vg5k%t'kg0f-diMXd;/dup0N>>X t gKުIyoun7^% R#]mr,^pk$6g|7/YR0Te C#$^ZMoV7<#>j- ^.?{#@_,X#F_5Z&·w}٨35%%^G~Ve]Ϗ2G/g؜2=&;l cKuU&A_Avp2'Z@ .@sQ"@a}'ôQ~IXyؑEX8ޤf\NFޅOȚ=6kx[QtpfG#KX V"tO۰!AG\39.d!hŇ66 ~TKub. iu7&.3&ww g?Xmyb! t;1w^`?ؘЌRuԁAdpdU}f#s%;4v"(x e*m[0Q6@l'X)yUfqVYq D6{[ƣPx226j / /V-,T{L6 g.%dk9Ei0-ʔrQ~"n/k(O,:i(i4uvZڑ|m#O*zwB+=X-$ٟM4nğ WV /J.r>C-k0 B/v.KffQW.OrvkgCͰ+Gk9)mVx%;QO C0c_!6'ce%5b ֙gӲ@*Ѭk~\=vc!\xQU/?$k]0gq੤rڽ-L; F,'cϻr r=R~]2CnSRHJ&>P9fj_nhdjMMRb@A1E yM_'hQ]v-&D;IJA΁+q7IG|eY6n.;;DfV#&(rw# R^#oG's[Mΰ=X1h8 ZR?{kыI~ܛB@C u[jX9j-?=-!uh i);BΓj6ʫ)""Svg| #h: cZtKAldQ 5W/Gw,Õ{,c Rg5~1 Ҍ(r1"12[>Q9b~Ԅ閏N[Ey# qGdUh{]a[ h[MpQs}'væq\, f ^HlGH*uV +P,2VYQ΢wAZ7BT싵^$\w˳uLD0[o_=7P{H3P0TpފjAi"7! ]+-0D+;=xش3pK7dʹ&~; >>Hi+i>'f+=gԺ&7R3 ,3XtKn!vSrU- ^ $V'=bNã+Bd}fy Sro3p z䠘M!?W9[2'ާüt)CTet7 4.I4|M/~LK OG Z"/^~sF/=Q`l?X33tZd'z>?W$5{ʛQ*.T3}[vQ\VRv)D!5(YOEQkCGN+JN\RR@w?(8":/zIyˈ,͉7ޢzRĘ\rQ?N$Pz=\Β.%v=A$œ8*폶)U t7]R65,Rϊ>ť€.{\oicV݆<;#-v. T4?`PM.BJg}F mjqұU@Q\, ?KxwX^@< R;&ȓi8S BW: " OTNν; ^Ud|L%M]IJ9[H,g}#N d=_!:uka lqU?.bmoz K0F5jTާNg1~4+{ΕN7oĩ6d+ 嬅os9uE? 'sb: &TBS18t 9KR31WM8_UDF|}71 8oOjC垻5> +"Dnqy`ƶ 8$D 4#wciXY }3ʲ E3RjVLRC*#>"+w2ofnЪMzJ\OL4pc̹U.s{ V"F`TLnqoDm>]N΍2i+QZ2Mrh>9TaO>!1eqjv9m 㪹F L޴^(=tfdBsr,PZi4`0#_I&Spm"CSp˷2;譸44֪Aӆ;W?PXR֨S ~ d mg8hAK;ϳKax۠'8ﲷDʂ ] tfjij+=*)]))CBҀxWnu?-Lgyn??zq2q+Ɲ_0Ln1l qN/y E܍=G}Lnni 3Ig3XaBd]`9$Դю>Ez8j,v9djl>7-ǒעu4r^fw@FB* |6QjmrkGn+8n#C{6+O1$(75VrWD9ti!pq^g˼84SQʜʴL0[90Ѭ@K)g.mcb(L[۰T815.9*17 j)]А0>+nF*NhR./bìZl ¥qzlP۟3_ 4Htw ~75X19xP۠ ܮƍBh "RUiهN< [X5u\qXG~/h4r4$ ŧmJڥP_Lto;/JܨU2 DYt_H&gK)2iT:;+׾ <U"E!Ξ-%$CU7Kp%/?ysf{ 9<0#0rەЊEQjpOgv~y4wiJ3y*-hw.*In?9)t4K!88kIY?.MnG ;gY ?sxw>Sd4y { ?7;ln"- 7WfCFp)WgiָR/mU$G/!b|$fzw#0+,oI^#~dG9GbO#us!r7(<ꅄJ"|0,WXTZlaj %S⶛P]{/;XqO <Q;0k]Z0y(Ge3HbެePBw ۗriVjS;51s;T!D^vnL+~݀)7%f h޴X<=a@'_xB_؊'3R2 *nr'ʼp롖#>$%׼JU Rp eUT\/3Laei*̊FoA>dl2MkR+|Ծ桏0n^zS'X_ˋ`gT l~FWMߙ4cM t3V780.H+ sIƒˎ4"x|=:D+YXf>*d^͎kHLA(aC"ruߙz3zIIl> =l) ͉b1D-ua ռ/'$T<2u׍6CǶtgݻv/ݚ_}gw Xɑ".8 ABpJoq]tG.dZ,Ac$Ii%G$6@f P]uqNB1\:Ss]$kqB6-d ֳԝptVO{BuCB'I9Lv{6,Vj:PīǓm )$Lۘ Qr>P>\3V`ؙMx7ܩ9;ˊ x|9(6I.|~AixM7!"9+L[8σrΤZ }Rځn:Jo3Is}E~6 4sHPJȈpaw9?|B̻wgr& sq@X1(Eq{*Ŋ4 4mI#Бkȷv֫G(|G~,dSn"Zv'f~q;q.kBZғ_!!QeO\hv Z`,0.}D8M}Kސ\ Jq~ HQ:[߿w"xz4q"Е|u-0ʰhp-y0υPh ۰1Pn[րZa};b!1O,J|" Q{,M=_0)+KSyH^ 97h}ùX$ ~w( :0ڇ۱|-P;0"z5LD("r :EIvehѪy IM15?-aX̴ʲ\fgHWbI@JR+ω ]D7?¤p[çxXӑ)BD+1SR -!Mz֥KyiL>:4ىB;[ u`%'MC@\ovN>,ج{{e{Jk=7>r_m sIJd๪7T>Pbh3qMS@vjE]HU !#h![Uu+ ,ZaZk= xW0S4z1wxv,Ht0JU 9׵$/1YfṇhTG zI1*B7S}.#*̢8;Z'D[G.22GL{8 \nʱ6LgΰXiWZ n׾1AwS#TY댍֞uj:phvw2u@tT#jo}.qDQXƱ5If02 !n|4D6GB)!r@ 惤4@pC,\ne!Q5OQ=)"5]}&"z:-j g x ԩDW҈l1\hyF_v͹g"ةTb)dY }L w ֤oze׺lmNLA;hKӆĀ80Hj#ggbIr/ޯ8Ş\J?jdXqq3K?/ _R[&~֑BlEa Ws@ZkMn"E 8nA^`DQ vHjh U><%?ϸX5_h+AVLu-Sg|0٤/=90x8 tV͊N$yz}@~ֳ|k$^f%|:omiK^g~7U12:nS5CH {?-ρ;#bX*/ V!UTt=/U4߂칵W8]v&M!wEM!.3 wċN ّewAX#w`vi 3տ+sPyF%4K>}y~أXOuՅHpwza|c#%w$Y40NqY|+W4F[">樌4tc850!toW…{Su` PgcT=y1]@sIȣr"t^f ?6z8G!]aEHl?{p1>t7 ̆4Q>MKZL>wy1ua]1UNbv `n"ĕv1 'o=;v*R'hkc-iѩ-Lb+҇:tlFScn3ֽ=؞(ʦR'z)EA~|`2JkvYRxedR) k00U?/][z )$ń{ DTL  f'0Ԁpԍ >+uq&u^uӫ5 tRvFj-dS`cݭZ;ͻXOJ:1:j㙖'jcIYya#:֙,;*\~içZ0Ԃ7:oKX֐9T3a|L[?H$e'3-PQbWl+FS>)[`gZ7c( f#Iu./F2$t&pQ6U-PE 6R9 y+kyQӃpdvWac3c=T,AzmS̺NxEW|YR#,m]A]"Qazi˂L!S!쮘-Rn%_vj[2T;;{LҐ b Jf_1)pry=bB˕%g-)X h@5ZQ4+]dظfp<I9lh:ĸ D2x6\{]0V 'i+_XMj|P.ph~\f1V޳"0c2QX EE k7_[LNEBd*v/\CHXP-2مݒTZ})96ƄۄAWїLW470veF7Ky:W11Ԡ`pя@`-UdwM8B74†YcDnj9g$rČLE>0CoBېafd@9+xzq $yo=/Ij`}n% |6X$7ϧh'O}؁#oK3CihzB\-Eo>j'pf\jlKOXZxԃ"HkݡC@@^C c'U4Yicv](*(r g}oB@.1:?Y~JyU._yvgӜQܶ;TBK];4^L5?5u-ztlvKiT0[sT MTi^V/+-[{$۠]~"65Lڬ?<^Rװ(H<>\9Xʦ+y&(f[bfg[|qcŝ@yߧ[DMkA[3aa쥒Nf\l'Q1)eȵ̴+^?2jK .2 O5_Р+?PZdgUfJȔqpY.s}'*|F1y LSi~h_A1|iMUb7m!3=8Yz^Q2j 5l`(|_)[E})"QpS;q\QU|Qv᝭־ a:ǰn":9å>W-8c(7Tex{%.;I].^V8eݩ%28,:(5:%g^>J>"9rTg6TStL<!"#@:b(X 0z(~QL;?^=m3γW,[0X?U-φ8KP=?s'V(WG(,F2|"EqZ]QJ-(43$HG?P؝D1s}j&,b`-R̅ PvA4d2b9 c73W < ѻ1X3gΰ: 5,T5^<.XНW3e|]Q`# Y9_1U1*]adx\&a/ آA"lAȺ˅eD` 'AVFޣ2\PNwG]3 9pp ^.֯Wk_|aB|o֕k )"tT ڀb8Xؐ!Ό8= Wa+g:{%E+_>'ZpI5J.5}H)}&k¯C;+,6ԪM7w5(wInvM`({^5*c7+nSvR|rX,J^_`:3A רqU4\ Sdo]Ku27pAjU:g2 L:j߲%嗧#:?LqSrP=9JbзC- VȌ3I:UJ|(bSTXǺ͊PFy+IR5K𯁼d.]E,OVMƷLef`ϵ ΰC]H9%m̜|Cn"]59q{PhW#.aFv̟kb{ HL+j*v31a;gyi |đVm}AcȢ")TI2OώP_@1ULp,s-{;0b}R[PdbCdj:\氛τ?J*:0Rb}Z2dQ0~Jm_ɰ(mX&} iif'S!ly9 6g?{Ko ~ hgClY=J/RjBA&> ͉m_ww'&¦T:0Zꀶ"ԏN5}TAgvTnURʮ9/ĔSJnx ko/c!=l++`ȩph5[ݤe*|N}-1g `S\ݓ+a+ugkb wyjj *,JH߹Ye&%=n:mNK('n:,ĆfKacKRFU~d+1,@qVх90HvwRL,ןlM> nI۱Sk ɮS* ֨A V*+fɲPg{s/i'@a5,H`tnَTX)e`N-:q݀w52tp^uA~7>T0\@&.(=V2ͣ>cZVw3H" oE|e=FK=O{Tr@\Źh [VcH?/:*%^IfK_CC-ӏ4?U=UIt‡ʎHu e(9P%C2\ TL}u%JAf/kf7?{V7VB{@ZP֛ߗ Wg=[*x Z4ؖ bk+oTLdxP=5"Hʄi˫"Ir$4E){i~Zm)'˜&~ZХ7䎨 uTtd58cw>&>ܚ`Li͘/ܲ3®h,M&x? l&pUlcQ3dkޒ6E2s >',CdE02`?c*ϷQ!\hI¿KNvsENtΆ)7|ݵʐHq#g[2xz7.Pjtɱs!NteYw9;MMC,)r{@C-wŨ:f}]hː_+4꣋R&]55W yލw}$*ҲY۬G.8/W f^7ZD#[ezƁ͘3<ުAP r7Eff hK̵Q$4ā_|JFn|@6]g/O$8z*kB؞xҲی5 rrbV[o9gj%_=@-TtJa[Rm wUw;'FG!*$ne=?)Sr4, AKnfR6Q=0>睪Y(SwعJvTl+9 }w$4U0kQ \UO;ىIRf+G o-^0(iaF'R]̀DS7UHK6X*7 ntyR-/Eor?#NӖŽ Ajgjl gtcI]Z}At}iҍNOi:4\q=/zg5y]sRJ`m;wfGYBX2P R6zFzh/p*X;obx5xRc\f{qX8xkd.BqSRI^s|Ͷm S*VBÕa_qIj=e0goCr71e7whcaSj}0iB[.rU3By={qO/(}91[n> MUcUt`],!bW`r䴄mt&1fv'FhFD+@Ƃ=V.mH !naJ9D iσ=[ 6ydB[*{aFQCC y!S%<{᰻1^Y|]M2w&GDʫL!ﻱKn6{GbOnu^'mC>@atP)ܞ-6YF x'+ۣOZwl. Qk| _e{{#=$;ujo$Tox44㸗a7v)沉 W\v)ˆP.S#<ðl9V/O3KY/Aw"68p0}} 2L+>tIb;]Yv|,QHY_qV u# dfZs`wr/t4qe~3v"ťޯtN3KҀF{5뒪ʉ@ȁ_zȨdc'.e)٘»,%_xL`R ~ᰕ"Zs(J7lshGh؅ݨ)TQ-YX\\O *s4l[=TKY &ȬX }M8 y}*ٖ/er5[0 fB` n<]@s)[G*P,ڮ`=W\Rqv*oGǼ* ~t+Y4;Yit7C1u!lH .cSO r_W*ǁx/̐vݗJ}K|TyBTtʷ$+gTÁ]ALİm Α J<~mz޾W>-rnz[ER2敚7p{5 l,enl?)c[M7|<`7_M|Rh5H^efICYae7@bGGwn؊܍۴"#ƍ Z^sw&.ܗ[{jѨ4t*VvKeLM6Zw4x!ݚhzΗH=2̈UI@ľvH #Go}[q!q`cLa%ޢR`K3Xho'Miw~,/\MA@ ]*o`^-TUDHh{M1XK&'j (y}eȡVl1_^ \v5Yt(6& |V:%i(ELm9)dKm٣# eR|#,& "kqϩ&yWpR3/Zk-FMYmoy40XQ}Q͗x=)be9<&Uπ3$c㋱c=wU䆘 !\2kO+rg|Y]K K;~5s|Zscc:Ϙh"5lt{xR[>G(>g̚EmHcu:BP;آHw'g{.% qmnTfuLjNrש$ia7צ$Tzc՛6fR3L M:=DE?PtcC!NQ0d)GZXnJp&y?n 䏑0AsL `pHzo@TQ$uA& #OKiL@qص顶ќ7;\,qγ8M#qPJ FN9)Ӄu54rHU|VvNΉ)yhf+|f |b(ޑJ5{vyBJ2~Pzk IM(멾 V˔!i1 xyEz]n<,f܄UǍpk%jڼ䤄|W|Vv)NG@xxٿ&ӏ|~FJ{ U,^F}A8Sh߈?& R}G\ -Z 50,.zϰ8u[,SXpi_HM1݋&s }?ͮMP #B ?FGOrΘd2jď:@ʦ;Fe0z/%R(]S|ˣx NRbcocתL9jtp_LlVXWfI'[0Guks &+ADތ\BlSpRǵ+3 ɠę?%cBIWB~! bqo2sY pw?>vZ,8̍<:*(iǠ\{WDÆgm.u׃DN!g.~" |0S.4z1O@OhONv  F[]ouR )+&f$nILl޻er\Z)1䮄g#~|]:nga.:۸ ՚u;h=)xv.76Gr=hYmĝ栔fKK Uy/H̼7&DL.%b:3O+Zn L #(9 ui4+%N&6;ugK"* :)ifN#wjr_n8}APb #-lˣ mz(|9 =M̙Tm BU*gNvl%^m"l?'g[2Ou$OeuP$'4r1|^RUvJPPJ+V:&= 638 믷;^D久G- elE瘡\ū_4h&`R4t.38P.R =>20c /֤\e3ał'寻ʧ&"8zY s1")0MqJ`:wuDz3?pRt #tc%!h =Fm'a=Q`6HAJhׂuMav1~GPm{iIa,o&>f֚;MGָ;ѥ:8u"^H܁!~O:Zx.;O%eYMȱZI??|yK?T*fK+<[>3 Yiiƞ,Bf ^r Է ,@p _`5*< M㝸xƾA*o#ygn76s}b ^,GTF2O.L̈́b6M۩Eр!0݇6x˞D}yC7 b ݏ_ڻ'3xִXG$ʉWpRq?L7?H%€d4myI-74{CV`n/NIH6B}q9$ߧPDpPBT74$U)- ŶWF(i.%] w$g&܃[ inM֏wԊ'E/4f} j"LwM,۬)v=mJu3c3Ay{eڰkJ; TNq$jDGY ~H(?s!~͗{^j0ೂ6F-|{Hh,^n/4;I?5/ V2%7qtlhg †3|9J-.SY7la/ax,A'rƿ'ekX¼!"{.#J t| j&wBܳOwg c1AjϺR`٤:_zXefW<]8B r8+/z{X 2+Q}ѧ\ 5e辌,M=p<9g֡.' )(=HY$~,yE`()Ep^NԿܤit_.kW۷k)}&㮾sD5jĒ|hIEiR ##1_Vj<;pcFL4I[ڽEp^ cD!R%z=oeΣY5WvpCinԆiAnN!H~2l-298kv~bޓfa ѫԵokdnx"?Qe>c7%.=TلHl4 7]?KZ-:D.TૈYzv@ǧDsJtUJU_Zdt_{p逿6q<>0ogoxvf`Ff=:4|w1~mM=9-y"iz74?\&AtlRFx*zZ/Ig9~&݆pBM ߀{aKmt\RDX> 4rW)|1S*x N˅Df=wߓJ2V)bJJTwHq`v0(e "pzfo|Q~A\ %+sOo02J,SD MH)@9Oz&:W4kfYHW7>)h2$[5"5éh~,.s0U41QŬLӪ<@*6K2_x W$)A'p "Yo aW2L,lϳtg)AͯrZΔAJF ERFc}f |=QR HX*qI UAc҆_F+0G4j` vWu)>Fegd{=Ď~ߟ'#Y!]l.ݾX*kП}x ^I&`J;yNyX^_QQ/ 5Orb?xY*Lmo=eҔM})d(0]n53M TT [`L<͵ ^@eߡ1Ҫjۡat8=(ob,jzW&  vmۣnXQfLZAoM%|BjK q -]-j̢kQsgaa0_uJ)yNm(c33j5c .xKf2%o{-BviTܯ*eo!hQ5W#uu}TѴ 06XaGA 2o( $Mj0&T_\ jV{ /IZVc`  ~a=}E 5.ȠKtPfdnar|RK>h$Y[XPae@QHq^艖3`Y/h_gʣFgufȣQz7yEx<כ]K w嬦v8%5qHhU;>;6"2b]L I0etcm 7Kd?h|%MK?΢ & C_!VJT̽zIV,Cp[j}}l ףy~j/- mW] $Ή5yu4-Cdu?J`N!p:>8.h̓f)9stg{$WʥDO l2M$`s>\rҗ]}׾ % jUM>U]ُv+!a榼)`Q5Q`{a%E{ra2fJPm6 +Nv] `F BGx O5-|}صiD HT8 Uz-T%N;NŚS/(W{8.uX2 JǴraBj7@?;L#y T c䚦e4rU$w}CQ Ͽd"Z?pO/VT ,YEg'*`|_*RZ? pWԻ۶,tbZD#hHTua+C˜XQ[}Ry8cGÁúBP .-Ntj#Fܼ4i'yxS)c/hYKF9-v'b h EM VfQ1UkVtIB\mh5^;M|j@0{oį akăWF3E^Jy#c5R0R ^:51)BzJ^ Rg7|"دE *T&vx,wFD y 0 Qd&ݰ[o|NHPlC|@d4-u+솠^)X7:Ms0=n>ܪ\&d֎A@V?kѧȈ8Sж-JfBh{beSP CzӚ-CPEԬqj^.ZĦFkA/n$]BihvDD/̫ ,2,Aa ^tvG9F>!DД^ߚ YXa0wWfVSuhLh!@>Qge'LHP a"a~U3ƫO`JV+wc2t6/CbOPcTxȢTR1="[{BaDb#?= K#> UHo{*gZh)"2 [I/XӒҲf"hka/^Z{*}4̟NDG#Xa\gT )#:@~2iPYWAb+nyemP*^*N(Gp2cx}abU)G[}'|4~Ƽ6S(6\+`{<`j{5!z0q?v(T*WOlˢ!"0$&$@JTΦ)Lׇz ⯣ M#Nf.isI"裯\25.ϘJ6 f ySUi g?amFٱyNƷy_AU0:![h@܂_XECO):5b5%F3KorYXG1%aUeX#71%yR"Pw3h1Hȩa]t;ޱLu)4֞@Y" Y,8ssEzC;B,roS'ł>BtFKҬ>?wv2z dd#Y$I?~4F(<\w-/cę5QI˨JŃC"o򾣤[:>zn[\On|Ӿ ˍ$٦\+Uns7/()$C eauE :z2hd_ןg+m.zw,GU8'PM9e2N[˱{:cF D6蚴}Lx'LGQ,+ QQfع~DHntLًT.ɯ[BM;˗f;!*$>/aR/]IWs 3|15ȱ FD; Qս5eDcWr%TޤdqI bv,&7{kcv 43 fK#b*#^:X$$*L쌦3~Gءf # q\N v*gi(N9ʵ8C?VnLq6ד>;7E,#?IBzc((HQ"׉t9Fi;h)J$$1h_~yb5&ovjZ(W(?Zfe7-8^kvb%&r3YL03sROz{RUrC 8i8Wo g-=!#]1c}MN_>p`snϻKfd"_x2^'{vCUBh0efCLtNĭh %UgK X4I~sky6A0,_ߡ4r: 0[ZF g#I#%T>0p)( lm괪\OI?G{zXW#K`*.߾^R&>+h &yN}bդjVaxdd, mը0؁('zP`Ԙ82xo ܿ(f,ُT^)ҬGJ:r&E?spxArn[l;14 TY&nhsВ|EXOYK[R0QKRax=Z]+3zrDZs֣wEJ 5 T. Q$ߣC+;+#8n₅[s k]qH|F(1]VI  Kk $0J" ,؆5+ $.uaJq^ TƝ.sM ߜ]9j 4DudjuB3x*``2&f }$`5OG,,]nZ q?:W{EEe \wL KU_V+SB"9RJzK9Qz@4-*VڡAQ.#ԺQc=6m$Ut/v).aW2cQe:Z0ÊKd6>!'7˸fc'!jh VsNw###Rssa`J7YSv4ڔiZ$BԛΐHLq4k|rh, ּhے'R]roe&[c !_6,v>ixT2mΰ7h.(ǚ?ܫYoO3odDzcҸN̙yLuf#G):VI(J'5n(D\b!.ѽamy őXڝ4$Ԥ4ZLg0+*,uo#+[+UpS5oU4m qy1$5G&e ~=xCNupŁȺw@ЌX MNo}ֹmZUXzЌk/STCՃt3W6'̼vн 8:'q+)xjД5-IEr ;'R}J15q`}ـ|AC=)15-ssFÊ2)39`͓"QjO=p_Dӫd.:!J7(UJRm# ¹2.H >ngvsO$v!#f"/sCoBƺc):T)MG1Ҩ \i_\ECtŽwc,Z{X܋|LNyf5Nz{j,lQ0e:v1-UOUK%'[h^QIZgT_x #a ;BFe8_€N϶'qM7/6?_΅riS<EU"hc6ҭ<6JhdtMt̜ $Jc;_ 6vTT/R@IdGxe,XfЉl2Z wp+?18Wp=lJ.QR RE/O{:iw:hGn{Q}GDW|J!EK_E 0f}'ݖ"hJ 'cXQa1?$pcI1evB%e[tG"o^ (]mw\c$"}zf텽x ,(f:o=`D2oݝUe#0{vd2G,`"ucJ!)<}ߨp9jn\I%2`-t88YʂWg2 j^[.at}\ׁ=$>R}^_%m[W'?Hl7 hwp5Džm?(#A+z~ ϊ;)ux2U#kuGXiU2T?nf4O#e+u'}m6m*rjp_\DgKK{ ii(7t@US\zNa3l.#zG㗪c-ϳ5"^7D ?P'D> \"~ŽÐ's#Q?o_"eb5r8=T*ǃ2Zl\3hӽ>0s̓UO3;:ZP? 6W.N:|nlg{FO[ϛ*g.~ҳϥô{VTQl ʠ;f =^S6WsV) [S|?81SmFyA SF0#ui3s ae/٨2Gݤ}ֆڦ[ߩ7fܠ2}W{яxⷱV6 J`4|~^Ľ |ppe^vhˠR7ȂÀ!ei!Ϛ6FM@Y2G#IN7aȨP߬(T  r)N-5IcQ@/(Bp-) EO.&hKP`:4dPTfۀ,'`\i{Z& ILh$ seZ{-x%`<9A8:JTJ|ܿuKVVB'xMI?' qr:Ql~; y߼\$]c} pX)ɕ^}'0:_ VDs| TA) oâM5BWO/IA#b>%9{cøPnYNO'fÅ?o@ʩ}U] =jH[euݴ&`HڊjkV]8()e{&_[qv a4b=7S=eb E&<ݐU?r#! vKwarC晩WV2x M;K>}CM+L\rLKޙJQ~ЉşBfG_.`&h8EexzṂqҌ qfå$Ad10גfPHWtsJZ10/ TEmgX-~@PTܠH<8v- -CU!Ҳw5 d)iitmT[CBK/9jbU''ݱ1 9aǡJFɡ5K^<Sr@ `.UX* B_ˌJn9灌mdeMndU 4_,Yf$9;vt&6!nU vc$ b_\2`-;͟iIqQ~ʜuçC>̨` Ĥz$۰&(B fEqPx6LCM8An OM"] Rb@%F2V!Y#&Oӎw9 kg;W^* S[ nLKpkȏ Ꮋ—*`tȪIq!OXDߖ[Y1S ät>0hQhToNnbL~Z((0ЧeC1W@,5 (d'm"AJzQo|6"v6?Â@-gȔ[39[dLʑ lG|&.fS7R'#\q }FiWy^5\E'1f;*ƋppJ5(I9< k_pvo|ӵ*ݮ 3N9D1XJ=9Ƭ B&vCa'ڂS&t kA+~+8:U#,j}dWѲ&gQt=#]&p$>׈YʦH{]HCߍ׻ @N?>k(r]e#y*(!&U aVe+cZy]!N>o +S69ˀ- m_Ӊ܈11ˁ6YZ3zguQE9f[rJ[r =|(KG.hTI,M񵤦UL{FE %(_Q [c!q#(.'%꼘 d``iNJu]upDh[b:ӼW@ElNOoHv5.AVᓪ}'0Jab3dDÂERnG^w}C؛}E42Y|?j" 0*jI ʽe 'N(G x9~D--Jّت:< ]/F|O+"%iTn~PyhyMr*chk]}]7- s=l"*ت E;aZhx!nrXSڣ:̤1Q.$& ;f2 X$ap}vG{ eF1^̂I ,ӦIhe쓄ĬA_!\N6e1-/506(Y2j#lgN|13_n@T񎪇B·Ku+,Ǣ? Y2 sG%cj]% %`Ws=t1Pf}UBϕ־YұF&f {Rn)Owm3ۊPeyr%gǒa)搌}E l< Nnڶu8,qx|y|` ;.濉t(JGG^k&2GM^xfp;ɮx/RZ;K' ߧXPm!%Uz9|܇PjְDgٶE1]$Y4MM{ 2EL%PyZ]GUy@źPVv5 "zkl^,V3˥~Id}_pjGZ0G9aۜgq)ʥfDWEfTJ TCiϣƘݔ]{$}glJ)$mfP/ڧĹR-:.aVџ}{;ovF>ଉMd.zt c:)xƙ]ZLȎI8E/C~L(;$kGZ9_+~_MsCOo35' 9Dwe.ɝ`A;3DZOeopu#{G<0SZNEzSA}t`[v;LNJ+ 5Ms.i݃y-(A=vD޻㖮qW:>3m̋Ԟ 驧GiCU/K,{>x%MḺsd@w_N FCNb{we'P/O l\\kK OsU$ Yĭ`G߶JF [gnl|evqk+: -@ .ُCvu:C5[iIo:1\)4'~W/\a{U3G,߃=D3yDXX"2TޔWz>.Ń `${tY K% _ϥFa6A Dxb+}ތqKEz@3 Zpb2 -֜JD6yXR\.Mܦ&d(dHt.:q.}mΫu{o'#?+{x10n9dx;glնiP6yqԇ}reF(-庂U$tyQ YR,{eM`F e#5]+S?:xHtz xֳ#<"H&ssmoedOz79촹7hx_dP;6[x4IV[2}\8bˣWCf+s 7z/༾͜`VNPsu.ۦr &\M5O5?:)A` >6a|ͽYom7HnkLQTuE'xN\1:A]e2"j͑Lꕹr@<.;nR1NJg{*z433['Y 9;$-R'ʪ`6zQXFX+&%\XO,|R JyrX䜍<8 R}4L ~(,$Cy$. \' z?2rl'\9q=~^cWY~wxvqD稢c=Ѝ;VknOC g mf{%ih4fA@mJn\{Շ-#A!ڙUr'5uvk/E.)KPkWiX1wy{ó1lw}}kƨ˸Q2c6Ɉv`3N&=1TOYjygHo9Nu,2KP;eE </g )zzFUfp`@m[*T |,k <$Arz@ =NȎxwXkU9]vF_\"tfeJ #ʆHknÓueHKJ7E#uЗ53AxH-F.a^ ?]cc 7X{AB⿝7=m2U_`򜅫AL4rW5\_f3MQa ߑl_תXaC)[n~#z8 OyV_E,T373-1?Mw0Q]5T̴m.ć1$9c;!^/D~|P MQrDu9z ._:T]0G@ U5#2lB"`dgvm/2#ThT㓒FS[R$(&T؛ogh0_okyz](>> a@*EH;ϋ)ߩYt-Şai|eɬVzTXtSYݟXvpgtȢx>YH0cCa"SsΓueVaeڊ`{:fc}NQ#va7pvDI/wGZ][BNB d0@d9*|>\MBQߙ$5.'a0@*h:@idd(+]]oe|he-˱ܻ`eFfSNcKݮ ~@$~ۈ`#"mM&͔@F2Bai3e\%T;wݴW3E{`쟪壵L1yљ~ۋd}u?&tK.96p9]@N VMy5edS޶RGL+OxDxo,mxRXJh#(-<$43+ǵ5e>СƔlVXKC.T>Ť&# h_P’$aQ5~a?l%EF-83?AQA)X7 ,pպ7Hedu |1B>s16x%2ۮPCE$n‚ lѭcq9)jt;.ik7,qGHJ4N=YP<ƻN #b'OzunO"ɒq#8vmH_-Xc0 }9H2j'LL v2J zT IQP!C,|&3oeCT&$VMig4]&6E7+hQ6 X4 %Y/NUT  sqfzj4w76TTlh> H> ư166gjtWuuC~qzuPδfgZ;]-,"cG~%_mw㦪6:֊ 3kh*!=M3Q>^!7& :s/[X#=XaKAIU3;C _.2k@T˽"Z 0qy@ONuPR[*FK3m|͌np+ҫ vL "~Cj1") "AS3'ďez;7q®pFEq \zNV_rƛy=z"\&P*e 3X,L5RAllrbX?/BAk+].`?5qQD[%En)RXTMڬ#NQd'-ɳ$W˲H.uo53I wqPpg2 pܰ0C *Gl_ Y,֟. ~-htVv3$jE9BeTwB^CIf?;S*YBe2˝t%U1Jw'){usfn v# ^`j$ޭ=0`^;BB7CVF`mf7rK%vMbAQh*6iP& ~26㏶L)v—Aww/\kX=ͩ9ѱʾdgo~磅$c`S G66lggv^5Gy@Hb }°u{WB$ yڤj.յ*=4D҂8'!#@oYV3@{ أ1h&,֪ͰC ?㪵LCiW7V$V0K~P݊4rt욡@Z1`y;:rZ+كvMs&@/fri}\gsj#4״%Ã_ȩw] iabA=M0YU7Rlj*M9tXՒ2%!!m|l qeI>қW#_L3Y4g ]U$2|rL3Uɝ| J l:; fU[ $:yR6xdhC% fpp0V4~j#$sz'i7=]2IB2}\ lρa0!q1n xP1SOIPίWvƌ.^$% M&6 cJ09Xv,:HmE*HICм4.Zi| s3\{Ln ye;1/,9JY;9Y{lylUN-1+ ?hLR)NjJ9]Ҥ'Qq{?{!bIM7\VC١t(e+PQ%l0.Ò2xΝeڻ)t-ŀ U-+`lj<[.9$\升4ݵl,՝^6=HFq*g~{* E`Yc*UKTW B TH㺍6Tf`9gx˷ST|3ɇD=!G>KDA7!tUbD13 [=t߹ɭlq ]/}-z:$o RSOzRyJOLk Snk=z3U|j:$o`q`[CJ2IU'Ww7(Ř[ JU j33tvxhw}%8ʾW8F5iLֽհ^BL.Iv7_7,W^+IxvJS0 Һ`R!6Nj)L@&WwnAuNztH˷w 5 ~ŃWW=pR+w1taԚ#Z"5]ySS:ֺs޵ESu;#tb:* < @ITe=;'XcSL0;``0b݀-%=<3p"G ᆩz,tbd|A[66F$+qژ+C(o^SRIrt*H!d_\DEJMHWͬwAֺT@.m!ZLyۀٓYf>U vͧult7&[EW*m:Q0/.jQ]j=f l ?ЙU*I*1 {.=j%_pU#E&KF?5s3sV87BN ϰ~ڏ5{n[ IBSF6 a/f͘\C=j3R݃|7 t2tզ'σ%?4磹/j/5fߟ8Ί~KL"fvR4>ۮOq1C'g30Y x5mѤ= j}Ʈt&$b&hc_43ש!1S8$_>&b#N/P>[y(Rx2(62~J$h~){I[ULL*O̿pAFSDŽ̚\ƩIsҽAg#8Xʖp[OhH.mu*`x NP>mDXB oWO Fr<+=dk*x] M5QEUR_PN8 Zɇ~:=V$}`w^赊]Yy_XwuWGP礼XFM-?.E޺x:@q4d (HzH5s$kz+;!mibOloJޒ-ʢKM[/®M1Cv!F< hZ6ӝ}k=dƱ&W\tL˜y/^'Q:jI԰`^4hJ.8)S q O Bj>!JZȧ=_*dx[X & }xҋƙ~Q[kߛ^*= 6lYNIEڼl`^̙e\-,VXW,= =4M:dh -SBЫ~SZND|y~r3Aj}&7Gv vVӧ~A'}!;J*6 ҷsUd3vȼ3! -:͹JxjhG^tCq6I (EįJv ZlAx>J?׃e}@$:#?*PJꗶh % i$:l6mx2< ć:>\ꩻ[q{٩![Z{x2HnySxHQFT-D?ȒB7d,(`R98&h˻)R;UǺD6B7si/@'ЮpBޖ?楃XKѮP$O1V?J 1hdT܄l`|Q"+9K n̊PApEb:҈׋xs/({xʑy޹R%6 l2>4F![XaoW'χe5*ʕ8i'}M{*Q4gZ}x=^]>Jy`3Z1w,g\҈Cf\E YStbGӛOη"ʖټ6Ψ3zm 5gC ivv&BuI0-#ɣ> T([uقᝇ ,:ط|L:R%SYN-^D?XMLdTڮe]>RԵҦi7Oq2 ĆsJ*/hNGq E?:z HJ4ƃ4IiKsxc͗emqdB߷s!?opO+0;k 2P\w̠$ Mbэ1WӇBbnXdpcM@;#5SaJv3KU HXf`d,7d^y2Bq]6V@2VJjbiE6B%?̡'W;lSk.i8 g{"jAѐ<~FL+@?E9+ws# aϽ,S!e2c@pU1'ߏnmQQ8&zOبk4=zЖYlS D}ާe8bZGcA+Tmp*нAfX]@7>I#?j,dE`- |=V9j,"dZ {$DKr?wd[> %hֹD+D7\#p)v;ܒ)xBfN3`@6_)۴0[a YdTev6xiɡ>kBpw[;n;fXi,7By9f(}zl͸]pJkH/p_ˤkivh,kT|b1NksSe {gŕZhVY?ҡkZPV1>WIp.@yl>p<Q 4߆m\NE/ J3O 0n?* }ϠdzKaT\yyg:ԖoRZ0@{!zcd~/f"4l%-6} rGY vjE:EZ &3c^sp|Is^X۟dG0|Il/? $.=ry'[!t.LAR;CI26 {37v'x 3O|?XZ=$-.aրÒI*fTXf?˝[{7;c<~5WrJ|qy}@VٴȴAܮRhUa~6x#UÝHԅ/BKc8M21t)X$#憟"A A˅ FzQ yj/lS 9%%oo"4LI[ ]ffN } pMxԲ jnVLh)?ɨ, AL҉Y% G _P4R%l(GNh_/8QLDv<~[DɈf׋'KCLCҾRL:%vO[0yvHL]ml;t2v9#z(B<'ޮ6ʶ0âg GPUΤہ`\D"(iIIPzOzf <9~\$W,O Q~.,>Hˆ :yh'W)0stccL!(]A旵*0*,cH^o@#4kTXLj- LtL%X<ӡ$4P_!Qmeא5c*^s=54SkFeQZ*|o\ Y 5mtyL4FIPv#"!_ۼScں2!on˲_{rYU,#w?Na ]km8m,2Di'lֽ?O ] Ɨ)]o3^< khwwB0m5T]*2 D߅8Sk@$o^}+=Ea2Eڰ7 8FwBk]m;D%{R'RPY߀y\E' |4k(mLNqIQ~Mqo0^Q]O3&ˆ{^ >s!C/ۍˠgdN}{AUkCY0Wferk"v_О}"\ F]:Y9O5)!USbNJV"u$Ī/\/.bkkR8Wyn)1Ӏ,5q76r2|H,^-0K3Yp'ܿ$4Q*RzרJs)w5-`eTʰ~tW5j>4{Q(#XtӪb,Jey_v4KbC/wr#c:DrV `kIa-`I]TFW[;! h Ic HkC+334hOFޠZ $s-<#;5zB)99p$K/y?e*[ud) j<#*^epT.LPg&@u4P(SNgin 4L_gӴ?w+Gi8c# );D 35J_<p=KL˕^~a[eP CR.GC5 wl4ÁDP)\F$!|m[˜8ow&,Yc-|EAods,k氬 #ޏq\1tz?;O8W}drwLY?vL|g)E|$V#?-Ϩ?$I"^j4g HGks\ o\,;&w x"'elޮ]4K8/UlkS=|; NS8'2.M2ƅT]JJź}/'XE@[@-uf-K$+DsŽ R=)|#W{ƃ+8h~j~Yw4=tBhLh7 r[s !Y.KF.߮wfR rqum`(MUǜbưjصH -G RмG1X+K[iȢCb *ۑ"h[L .Q6pړyΰ;s0W\2^B :xRŽ Ϳ5hKQ) TTN#0?(xAgGDA gɡzgiʖO LoYpc Z@bQ2EyZy)s\7, by)(ѣ'r  eȝ35K3L4uWz$oioZ+C21r3`Qty-?#>z,2@D*mRD#Y{KPZ:X:Q|c8Lٸބo"b_"8o/,V;V Z,#"_NKW-ÐCq}z6NlKd~Mng Cnihg~ b=4 Ǖ;)YcpɆx8;EUG+8izD0T\Ao*w\ݬ S菨qslGŸ8[@(U| 0UގZ}A & AMqe^~=lяHB}Č%'bxXBȼ OQ zO}\xa~t" Oa4`Œu'~#dKX#lغ.J ,5Icm-wQ+adw@h3p2oP:s{Qi]]~{*嶄be-О`;2U11ь̩h׍W1t mԺ  }\f~GtV(鉘­FA\Gq#SՓC!i,2gw24iUJg lr >~G ;dyIm?HBz/{gЧb'}+!SiM68Yd_U ɼwgS*&,ل}o14()sWI'/ kQkVy4~(r j6_}"Dl4q%e;`?[i#[j[ ޜ+/` { 5Veݵ&CD)Cb `}.^9 NIw'J'|_ĭG^$O%7ҟ䭲xW1J/'7۲ӹLbR!ՓMz ~Ra-s3fYn^M|WA髜Qʈ|8BHT~ٌh`??:Sf{OE_K z'eEvmҊߑQ\LrNXFV 3~P͟;Q) bN[ (fT Gg|$N` )}V8;Ÿ>,x PΆc0cܠ$ AUIL>UA((Ku:vb= S;i>ah&R6%׋(-$ Vk1eOiAP9P1*$!HAzj?K "yb< Czl~~M!(Ye/Vu8\ ouGh/zv= VGz qG]>Y1BzX2Pj2tl i[%bNلG7jg J<#R)ٸOksz9| Ա! XbJm?#V؄f"$Px,B{s9`Z ]U.qL<bިab@[#][/AB6gJ.-8<ϝ,pXwW o_YrHx:dolC=f )'Qlo֟Rτ)cŕEonۥ'X-BL.A\Qp:wƙ!A'O ]T~ڬ.A"@oo_P^XBS1LߓK44 +ޤ)ŅڑYMf6*2Ia껍ر;`NZ 41'B/._:WB2WyToF4ٔXwsAc(Eqwl'UqoU)y~&[^aمSg/`¾8|^=?*`OmpR&smKp6(o- :%ZOJo*: mՈEPRijϿ^(`0˓l. q-[Ȼn;ˇ25wNK-iԳ'A-Z_Z+?<Y-]Ḯܓ ͔`I`o z,ޖ d< xO+ k!o&{W+LlH-mULq3ѱjP0;'k[D#sRۇJhD-}4p܊Fb#(Lۂd^(FOί &GSI+3nL3QN@'A=HׅH6X^g+Nl7 F#QߩX~ Vg񺉃Nl28L,b%NlJvAl.}1Q.,X]pDaLSm~[:|? b g6fھ[o㖡ѱxW<Γ Le{" np,?E rpH$;&_5WOG?ȍN$Vo;tCzB)_}ak+& 4K&$SmK?pWK;`Hϥ̱W$zA!aB'o|֢`xj ('|$]};R8;CZ?#cSQɃu@}F7x@N;w5hf8$ +l_)MeY߱ Y_E^Rh'hFTX;tpɹEu~8bL}7R$2J{5{x$'f#Ϯ#d/tѵtː4{m @% "[s{0˧@ќmTAV:JTtVy "L\ /g+|9Ճr/ xX6+Bk+4.WH#oeuwj c2Zn<,Krl2#< 5+FW#}RCm?*ԏ㤥u &~SDoÇ&Rp˚ϸ 4TsᮬyzQKQ&N̅}.^ΖLu8yR$$"dZ9o%jcŴ̊x&CaO2~g؎iM%Ta.mnDe8ߢAN'c,=|wU:o.j黒7ak^gЮ9Lr[ҥƪ^ _r'dm[7_P~ʩT!x!b,@lWFLH$\㞚zx9PHw7} X&+UFئfai:޹־Ԓ=CJ$SaG+};KBo^7S#D@uCPWGS/&Njk2,MPFRqCf8.=͊ʉ6hٲ-o%طnfؠtoʥQ2yE&c6qSjܬlufِRl1y޳]YyLO )Mj6o6T" 8 <«ՔHhQJw F;_1I .ì pE ENu5T M(+#$pXPMrACK|u4(vPXi.II|F΃Wң=ם$W"h NSD`R&&>9=[Q!uڟ6_&?1_E$-ο ~R,RF? ;K l}>w@E闙Y߂h_.O1seRuY/ICBt8>ơL%]s('ʌHCdփdi;>acB@gצqqz:fnJ+mq<^ alc}R;+4mġiF]g joddH{`nqdc݂0FN0iXGsMtla*]DӪD&rd"KtTK=a57R.ߌW /}7aEd5pLpӞJ/|#2uOqD϶S1ӜJۺh൷\VKǀU&R4Oľx/@2\ϼOBmxDsLLevrO} 2']Q=\Ԝm0WM\DʕI# Ά+ɴYҤ Oap^|̷Frv  ̰"h`ȪYp8|=r.y [r4asoAw{ͺ;u7]IӲʞ}eyh _4n'HuZyG}-i.".#@cl =M~|&3 'L#/>#|ivEM}3`$#&;Y6SM3N3lk6(5ڗ =ΰSٖ^ sRsL,֨ΛYA9.SbOb "bpMi8W>u"c zɳ4M|g3QG7OVvONwX(ip? XHPIL๕_=±AId9Dz2(c\AK:z`|̓Dgm LxQA][a-@QݖiCg.)+2=%)!RG^ފ5&t _kɟ*V[ ln{kkK2ׅq'Ztޠ͎0_4tMUbާ\+"t PY쾫Ӫ+x}W}#Nw uL4%0|9B.^/Dx"˺PMOiR_guZaզ RG¤kVC .f5M%Fg|IH?MN4z8)UZ}m~{@tS"$RP E/K[цJ*%XcoޭtJʤVLr-R$rXzoYN7J½ uF4&RTQo6P1lVOz2l Bsvsͥ 2~9q IKTlR?E':w?>wÝg N-!In/Q1ڜhpd=.Rh2/8J1VRpw=i#ww0ʶ4/Ue8\ qت+וf^-h+|g晰C7L 'X(+FtO~ П̝CqŭXa״) An 2UAJ7EX|[>n5εG":I;ueW.8=` )n]ZHXTs5%Bu)0h}FͱbZ":uS$.O m](~֊C({67qƶpcNj'x1vKkd:⦥0)e Wt*0 O8|g5P$ߵQ[Szu8UUn a3ц|K>?Pu(jMveP^ ^\.MlU8߂zo=T5`[SFf0NB uuʇcBZߺLvNեU ߖ{.R/pi^,޷,` j^(unp&GPd>4%'kk_t,ܵZaB"y&z*X5H|G0pwG$- "[^8_IxFҝq[ >|,t;7mŤx}nn_Z9 cVTdQՙW3IZeh~2ȄBlKH_gtZR^ӜXEv_' yTab|ҕCWE.dw0N*jR1\+I{agyg(,X.-l4'SHh -o\$[f 瘲 f@P}Ri-t~is/eXE3HP7+6LIn:u/#D$ ]>IhX"fGEqKxП*-1$^mM["O0H?]?E9U(/svԎ/dK`zy y G4jC${Vʁ*j}y&=eS^N꽯Vr"twrx5|TJ&`i]-FK?SmqR{8o!7~_ϝߞ`FhK{b3G޲Zn~tG4]u/^R&v^(+J(aI2( HE%Jse e| sӖE,>>Ɖ\f_7V}^ڃ[`uQ/ϙ) Xە~, 1T''|P$ǵͺKD;x0k"65*pHL0]17HHجi9R,R^cIoHܔ=BRIX)™mf$}8#;CmkBᄎ׵3``MV0.K筳e#ͺkϮ}gܨU! ދH6_$ O `xϏRW>$Ϊ0cdcA~9;5+a~07bg>ޛ#UQy{1R6ㆆ@.=|LECcƆF=FXTD/ .PsD|۬اN#bG\!|BD+Utc` VV2.xDTsORSbeHTYb-i$dEpO{ExtA "W4V5qjr(-0t(xYE@MnYoW]:kM^`,[sհjDC|Ѝ2v%?*Tb->Sd>i:f/yol[փQ-n鎒m fi:kNkl\!*P%{V%N'++Bؐ^6 gO40Q^֌6NZ+Ҝ!|y$!m9ɣŞYEB!K]#Ly,.6e=7w0ܰF({m r.>uQh]@Q,w:Eav5P=%)Jto\h¸YmҀfPZ Sa+e/aKJJwB gB^ c16ghv?ͽ?RWnU'Q 8%$# RѲ^=*_Pu=^k(PKqD4 >雱DTB ` RNA5,::VG!ﮊ{GA3P@'ͨlŶNٻEYI7` GR\lFYz#)έ"-{s !_P )_}!TX#+@Nd*jCGiD ^zJ,$/GAn]O jh_+UDNAyF(ƻhG kh+ J*Tٞ`:ā c=f3+j>4 d±nd5@w0_[[6q0!Z;ޯk4AM'6:ΒLǑ Lew!4 UVYM Uh٥ VxdX _ ,oܞ_ 6sUb$b&ԋeQTOs d.A 5cAE㇣3:FL-Bk6<,/?$bhDZ=wOf̸z!|LQsurIXGhOAи Qpr5|8OׁśU>Bw>FFz}(ֽ3;tlQAtrYgUPsϪURhN–P.hpi^U` Lɮt SkuƘYKHVռG\l{4gŢܳ\P{VR2utܰG4`C) W#-]wʞʽr3z?GUuvKdAu#T}!@i`=lXJv C(Bt9@qH3."5w #m1"Ӧp-f.ܒ pHK!iD`=.n3Ѵщ) n9(C΢ 8Q~dP fk7ez:u6:7175T6 qUV;,w#2ƶC8\ WVO /@8M<>/b؛Tz-Z2pOa>L IN{Wl T v$iCXgN690yf˖fIUS[Pڸ78F ّoeB(Ƈ(_{=uDǸ_83wS N?ZU'^+ ;gAM$^[Ab% Ԉ<-M 5JZ7!v3G R#|Xi^p b[}M2TږFc3nzӤ{3Q#2Ѣ ;woPM'>ǥpK< GXdKvG ԫAn jMq6 q[hf!~:B7kSE#Nϡ 傇՛z7(S/<}.ĪE2xEFN{| 'gKG\`nلtf&ZNd(̬G^>$*+H}ZjkjCI%JP,Zm C K)"PdKJ4 V?mQl|ØBae fC嗌:\tr|6OSS;p>nV24V%xD5VLYEI a2k [08zgFu3i q|͡|N/;VûDӌ.EhwF{)qD_+gcOqh6C"ق/ݜ6&V}/CsS`v[:WU Hccn6p^f1P wS 0:!m]duM'Ԉ昱XN 2U9$f1F[%dOtJ@\*cQI (}~cmZ{ >L̴}]9"Kdy1Nsͯ jZI{)|538) hۼ)]bD@"_){@|ORcwV2=\+) H4l,I]a` %M7F8߷ЪH2q)(HjBYzVhh?_X??֦ocǖ樇 4dzT%#0k]7bMi@@0RC+!1˓) >eSk+@{淄VfƺO5qDwk+rn&:> 4O$k5Sh/~|*ݫ/E^7KPz͛ni$[wp$+ӳ8Ds/;8׬3 Z4Қ8~ iqx.GdnOZ49ս\Mo6D!(x 5=Jb2Z=gb4R҈+i0IU.G$cs7e\tc[*ղ&rܟp[ VLlc>8_I;DrT}Y6zV[>S8 ‚@`Jw:9 eO2K/_:11 LrƄ͡>|*;zyԑ'|r{.t抜YHaVį̋v\yNbVZc(qrdICY׭RQg."xdyvBծa!MA|yTmQWl׎?Y7g_NK8xڢ1Ū׆zNֳ~&oP+,iI1Ec6j8 k -( /S`&6OÖ0;1A Xpߪa#bÁdMq JgK 9՚fDvJy"eZ9 AyL[;< GIdU;`.(=\xo4!)KUJ#'ȎBݮG7C'sAs@Uv=[3fxoV.q4&q } z>$ +Ϣx7e={+ ^&S VpJ0R 3װUMZ &Qtm(޼PK}?]ء.,M lwE҇Gøͥ<b빍឵B_Lb@puiqze7Wa<]?ߺ9R5VH.(wõ1ˡ쾯`HڎO|_$p;\dHtɇr'Jo^nݷ.c^AWBW9P)pbV6GWBy88 ڏCp\úldCWPE)oPGghNWzȬ+>8-fSVtv:wkI ACP%$\mJf)TTk͏'H0wH/6$CMpbx,[hF%+ˊ* ;^9-8C If 5 Y2KYLJk2 8<ڡ#د:h k 4R\F\.T x &#c3ǞeCݡؗ~s^N$S@uH–4}^Bj -}*èݸ̍~+Zބb@rvo(A~[6Xw`7sXH$fpnJL"Vd/ȷ^8jdׄ$o8Wx`a?Ιg{"D;Lrf}D+[rI_O/jo`Ҏrwٗ yw=O貃!z;HLkty.U$B?# %h'ch> gE^暑Yt~` /\jQ_)j&G/jMJN"XBsdV}y["<| }MG-"ݑ<&FDΖ]æ85B|^M UZ BC0 T/-8H2ᄋ+Fmq=QS>PGdzgVHnĢ2"w&2ѭ91ezE7&aDbSc)`PT[S> \5zcUZ=Зv̋8cos(Ha?UWJcoJ d+uɭە)90\c‰xGl lcOT b!nr gV)Eq B!&R؃rN"R4g_gccc FyZ"w߿]Vyt2]r6_wsI3A꺜"Q"Zd}3G5MӨa x"c΂^gahn#lB3ɶ +#;)2/K>K9 ?XENpib7Ёڮ 8xuvǸxVnVK뢪<2{}lؙV&Vi_"B!i9k[vUr0Wi-,k2DޱT<2GiJpxPx 3`ؚ{љpO\x408x 1ZanWCѻa/'T":=0rI[-Tse#@d<*8kDde+?N=s-*WjHƕ'g;T8m`ps#\{cHZjn44JJ%H]saWp Qj}n0u s٦:Z:`}iTIS"gFrSE"ߤU[T v|Zd :^017a!]$S2<^EP\GʟI)g\g&6@uF=i"31'w3B'zWYP-;gjM-JXrJ=Y.A%`SL+# =nU̚#AԔ'Y;mK:J1vS-3\[yvu'` =dwoqGXJ.e}5DepNe,Yf}˦N,ymAPC9KHU Fh!:MCb'>$C^F{a"|we/{1ݼ7|qthe1k&?-f| ĘMg _߽oɱXA1mԇnW2wׁ]@>/c+QP`nuQV3$d\9%qxYNXvwKo8BK#JXē+TwHZ ci='_"XSڬhBo5!z9O2gpj @dnZW7}l]}Z3qPc޾ǽRӊvɦ74ڶvKO])D.N#xˀOϟ_[sw?x5p>NmmW^ht2, 9SpJ4$^>)(_[N(pN:92FĹs-ѭgSo_\} -f.qa3to!XS29#:t5|R!-SV8DGkZoG~\d ԭ#`.1Ul6QJh)וŲϿ/ Ko|Ǔs)Rdp)G/ttIG@ff?3ixxnYW۔|>K8SҰ ~#Ƚ l.PuMe?OMO|HH®%vrvqQSX5$Gqry(ZdҭrtfMJd^/ \~!s4+8toBҩL>)e{r՛i{f~;/2E,aWVcV REG:?Vm0`~!+&ǂ?0pA"Zi7n8jT wYRpq~vUM {l|t]oGyv5}v<$z'Q4>8z p ܼ$%[/KgC7mNJ@0wkj4U9A<9=@}W2Wr,gZ1ārGqrX:%b@Y+tgn@ȒٴWP?x V᪈42 tamzJ&86~[܀skʶc`І!C%DEC}$X&יi*(rqonFphBtC<[>ԻkK!Pe U^ "Gyb0\;R8j-bL`gһډ i.8coDh}QVg<%fdr+Ҵye!cGD[-AΧ) »W 17M^E07 ͥ!P 5 M%AclNoB=xn2xTJr[Q*yRA(Zj-PFYIjZRl%H*9h2=9_50ML`sLZS5|̡.Q(턧Fk&9"+tD^,,Zix@E9D jAIHe{mw(>YTD8v3p&agK}Mk_L_,:R%J$X.0|.Wϟ Ⱦg9SE(Q<8\E8ĀuVfds٣:lPE''nc'tV{4*Ҝ|zIJ/gF$j=73o6=񈞥f'a'XـZnCpA>,tq'>gW [hj'p)2z*ф wZH.^[~ ~LWc~1_d̂<^7r+pߤ-:Ds1dTsko[TE/s`p 9JmFѫ%TY!_pam! '%UX zc;|iW} [$BW":.V%.LEemB<%yV|'DpfoN̐kIߍ ӤKrӀ?Y }&Kpu3YuW4_99(,jvq,ذAMQ{|a0u Z)azC'm~U'{N&S]o\&6, K!kO).F_ˀH}xW>U6M">m_:W#r'B,0_cAgbY%w?ˠ{.'HmڨwGD"ȔTO*4J\ɍ4y^I$Ϣ"vRyYLLMO8, qˌ^jӦ}I+ kpl?Hw.]xB6wdǀ(HBfY|c(}A?P{::OJ2$ ϯU>.]!X6e ~́M3 NlNZY#|`~%6|28 z|og/!L*Gh2^TX7 f-43ݮtxsctHpXZ{Q z )o"r\H|hf'rzB6c{.ʺ=꦳u:)?B`MV,.dAֳJw_^%4jSbD#8߆*нBI  Ȓm-XoH-{;ʹNy}{f#lG'K[1 3p󼏫,Oq \f4٧*8gS#!򴐙@{ઽhޓ`gt.WN*V;I6J9?5ۜ. .'tsQQ] s >PxKo?(3~+yo)v1ՃЋ_jԠ,[E e?=ۯ EB%4%;y T F`g y9gK6$O^#-FN%k:lWei@x(PO*: 2Bm9f#G=[v*Lpe.A$=eهm ݅9@9ҏ$*dG3zr/DFB?rhMN~\ʚdxDԼ(,10kZ?}^xAOjq'@KvU%A'sSLj,O!pTEf)/թxg|jc唿6X9(6YvNj{냂J|R.w OۑNQSd:}aڼUG;adpKP]U%0Ǧh +NBWҒq $4_Cnz nwo_B5 &ܿ:&06b F7{d:=p'_(}Sn&hy̛9=.[.&ok>אNiOX'k[yi6¯ė%=޽ fL@O Cy)JFa.⹧lnȭN;6.qUHϾl֬\5yϯ_-"pYb V-tuMk>wr󼖾XAe $v'|K>[ۖv5ED)|P/O| ~gkť|(0s_s"QZId+YV .|q(.|:&"l/>"ŖCQN.R9$8q”4hT?Gj8=i{0Ʉ:y\/ cfb'u0א25UW~,}&q nYamPw, bGY4ϤAFsޑ;'ОuE\z])aFēPy+@n>ڋDihs!C\?X84?m2%v$$X46^A>;8uT )Q ;8P,sA-<țХ{ڄMv\Sg;Pqjl/tv%9і-[,ZLAUԻ5;) }Hm]#wKvO 2b=hjnnxOF+4ݤK񺩥qJvf;KR0ZG7@RfEFk0BLcټ~@sP;MꏖP?".=\1b)4UNj+D۾SkzcY3g2`}K- )GPL^p)˗ƣ LjIؑ54ueK,1|`SFy)FObuDQd6i|!khnusZ!{9JkrMܨV>H˂@+y^Z9ӾDZڛD!&;*O8tf 3g#uC>TWkrϘ:Q'bQs\T(\+MtkU~h<yg`<7ֳtw\Ä y_ 9I=AA#C:'Cj6@CԽCB&f!' >+N^y|{%]GTX:2 1]H.Bs%W|}9cŧx@?z FERS)QaK G~F1p Jݣ}cAjvom xʮL`p#>GE$m03U(&Qa ;5Τԥx/rQ{u3ST;T8'OM)e/cA[qGHwE۰jx"ruvm T$qr؋RqY"AI4WW=Jn̓;Gi){?m9FJ=\~hb#vBrf]YŢL-5D\/~]xa׃<)A48]oyZşPa^ّ]m\׽At'bI) v]híO3yU:[~,2zQPelR 콦 _X_{ d;YJ,չpjGgܻdet㜦KSWu*N|7Ոu,\1D9yk!9pt'{KJͽ$Bj,H`: m[BMbi?.w1U׿Wڀ|ƨ=o16YH3+JX~>3wdK+f3xh K/QQ < wBjCW~o92t'w]@)3)О ͑7DAy^ؽZ'(,7it{ y1#= SsmOJ֩O(+i-[@ XK*>_EɟצMժb)UDoƠl%2eYVj/g;֪)cǷ$Súo"lE+S vEۗJ~ׂ`(, rބ{#X|^6FPዀv*xg{-_5fQ%'=榉cK;ȹrx3ʆ.ºVtfT%.DdUj|pP'Ze&\ْցՖ,+ MlJ֒gZiq-'{tt"AuŵD%UJc]*Tj8߻: |lw%zƒXm%[\Cl?4ՋC̒VUۺ U@LF(2]pn}i8Ro 5OYVtp99 LVv$)aw>`۔^V6U(*.!Hh7O<낏ꛂ)t[c=@\Id3꾙g;;$oT}k_J{Kd4<(n9UKH+;f#`g7]) *X= N0#9M1+ގ1Wi zWB`B K|ZVZC^WAr2BEň vؘR wnq 1E]Ax}ueB%! !vjn wx_ 5:.O<:]sʒWjW੄l5{ ˪W>l=q"*,imKo@-7~狠 o\vGK β3H Imnn cPxa0-`7Wn"{f%W)҃h{V,8e×v=O6wZ-;ƌėq$kl 9# (vWX+yIw삷;OҪqOQ_$K/+p5NVmAH݀'ʼnc#Jo^+MdNB"r0@OVn(S͊=v2WuEv OUn4&BK:FX,"y™POMW{_kx.پbj07sC[ t&jL.0[fN .ovC1A&e76v/sbYa$7cLJAwޫ_;m@جE%X2bAH3&s_S@a҃7e/QhDAKOƇ݇-SеZbO!ɧn7#k2r :cH㡠]c %jʗ9d1J/"!u77Wn'^2ýtU&kiO}ye2:RۆO %苼 kE mxx"+9ب##ѼB@i`8Q;^ \rU<=w$Q=5-+ӟEe+*4Gs%qS!?}%Á#Aj'!}5Kk{wMsVNߠj iK! h 3 mo(]yJwD.$B6>\PrMd婕L*K2=N@n> -\R'bĞ }$oW|=pFG KMvf*e*Uڌ#$wsQ]A2e/M>Tn]>O41PDv8WeD#!DcJʂјtZg>b{5b"!ha2]^;~ݭr"P?iEIiM@rOC9Iv?2k$'Dx2+ #@8wf&9هv6\!T׍Ap0<9\+(hW"|<8|JH!d5K>zB) A]j4RV/NXV-SFrat.[iS%c#yH~ou}'s aJ)dv6H g,rr;<=^/ bu^nYJLd,pAQoj5]gqie T+',"$sLԿ-%&rN(>3|fNHX`6lVk u .I#GüsmHw.IP|Θ*Jd@!K܂ɖ+ m]jfWI&*˨B@fóf Z̦V(yWpFEJ0$ڮ܊L2?'\GsՕ%;\;3Yk򻥊YWǙsdyy/9h1]i"k^"w1+I L*]^fŴ P l r봣qf؋2iIܝ 9~:E*:]P=dkx뤰ҎT.Y14aM=4-%X(<226^/c¾T^[_值6 i_*z,p4MA /3D){τǓ`m|c [. yr ۼ&ə =orQ]QQ@u."'Eitib4*~#S3T,&"6(%j* $/{mm7TzJ6.\ ^w43Ztx"U)hfeN7a5ekp&ÒYNdgJ}N}l[k : #Z䝠0ĕ.鑹DRtYb#}t0'ya -n ^]Nu) '$ܚW욅+JP$EᇡqI+C/*&z}z2V2s Q>;yRcj ŕކ87p}{֋fӡ)5ĂA oaRxZ;8`naBu,G=ҶXRo.Ӆm<,tyy97E (%3 FiHsDP5`_aޠ.<}.YKsɋǴID`,dPt.iI7HJ "; G ~L=.SYԗHu\=( WNzt?c9b >2 Eh~wEg݉jfui(3ebneP$K/52*x^MFxw#Ք\p. o  ma18sus\#5kc(\QOFQβL2kfƄumMRCq41N3 qHț_^t|U$G|KCeo¥Tnw@ORb/A 5"?ɛΣvָ ǥrhPK>3p @LhY2]K)ʒ4< M%D11>IGLϔqHFWP G[.l: ^b?CaG=6Y}uϩD$N9Ѻ!*yJSJo !9;A.&FWަ"r]$@u6kNIM* R}$W^YAd}QG#8T!KV~ ]c ZEKD[qlGEݺ@maΠqwCÄY` "6fO/~?#=C_dL\oRH+Ю<d;ޜkibZ^7΍BRj[Lyv._Υ6}ž$E0Z <9?lHğ ){>O=i6 XOn$ǩ-ܕHqږD3oƉQ-ژ9. y18u!m?$<{_oL't8b:KbQ SbK}x_Rbd hW-EoۛZY?hHwLh 5~~eBd(GzI,,y`G2#{Q6F`r8؍%>:JdFGGWSx*G?SǺsL#/ ȋRwY~3S; ;g QCE-0}5NA бTS3Xh}'&v[^cdZA +2Z9liƾDA)˅cG`̯t7=aɵ X"_mY/ڕkD25|G3@Hb5q/t 8Czh\ps/gܨ6DCk<6gwbrВ߷ Q[aB.A2@IX6ȧX g$lMIBo*%!FA HwN(H $p7z˖c/底qXU[ALZP)amQ8ͼo!SHVl٠)Z~!@HSo!ף|MHz }Q : yT򠪊ΨaA&1pW,2Z1#dP7<5,Cw#WWHJGQ ")i*9 $S%~b-?)fECȅ~W)*+V${+`D'Q?=D Š Ac>?% AOhuwJ? _ ' ,CnYg U^:zdsE,LAGk[ɯM3=h<^~S+ |M lnoy& &L+![>BP%^tOKPrpFZۯmtU!T"FP@ H>^1X2d*LզMNL51=V5[d} =cqEM <bKzN 4. #%č2+^W@aMn;S2IvHi ΀\ ){ٷ$<*K>WhYi*%y]j_kuCSyKAqRXg"?Iɠˢ&LU5T%4-nZ.c@?L{ \Yܣ@uuceoVsM߷i2x=4}1WKu(HdĭBb1Ł oU-Ks`{oʞ8/Dyob^ 䄃th@euSAflqVpnj(z'Ĭ4qӴ<~wp3j'ʴkځS^|4TyT޺aN,b8 "&SuOCs ,PtۇTkRPm.ܑ<0RN6^`8,tv uG kυ{õ\ׂh3 9U{$0'QF2UVO@2KꞻߪO0/jCtév ΋?T_I$jĖaA-)RX8ee 4>F?1U)=K( qH੆EgpQpq8t@[{PU%e> Km՗&ǀe|D'K`L+u ߱PPm lS7c Vk4tNhn3~cRƚ ~l#CL܈TTo?MωBB# U/eoH;RPm"M "`$q˰Cc"ԇ< cSC4 $Gb:\LsՃPb7,5(6 e' &fiPa1 dlo* mHd ˺Pd3K]ʚƋL̑,0*JW}`Qטd)Dq "n2PQO\%qEڳ7h(MӡsoJC9@T:hD7C㲳[N+;~1 i 1`6?;Mw4U->mp$ 4JZF<fEɛ/ BShQ\dbhE@-~ 'hRm#N`s^B̡dFz`::1;O:bqgޓ2x*L H-B{/Aa=,G-0c1̠MS+V)7OCjzv vؘfe\QجU.P:UkQI&Kz8"0,zŲ0L4$P]2Öq/Z6)^oYk'{ ?\qfYnWJxa  >eG|{]1G"˩Oؙ|b>+8Tb*+uA;~msu:&-km 0OTv .` i9߱ĒbXF% c9Q)޺B  [jIy_ːEH|U/'MyaKBAUƓoV&xg_Qڮm%Qw3P `9 -J>wBʙvXnE )Qpl@)SVb*|)Gծ|OG0oꔻ7_(N.*(_PTOVwՎb&n%!&8\^| T3JdAC1;1Ta77Ȧ ld}3Me3YGaynϗ*. _7kckX VawZr݊$_ęf s[F-{tgЭ̉&.ʒ[r9:q3N#1)֝KK<l|εū+ yUxj[:V~|q / /˫0ՠ05-Ϝ][US!/U‰xi(Oz[Ea˕h"F<^`uZz.'2w:.x5(Z>?TkyvTn_|RIKىysm>ÿCiSs/Rڅ4]RڃV}, yDFRWXӢ[f#݇c#/GiIi|#؟r~ڹ/8)8xz_/[6\=:YAB Fx q Ȝ~*"ccTN zk=0 3cv+2Ϳ!þQt!9s^0D+ eL/XHwr.zCCgL(bnpYm\OaLhI갮"ގ&`"vO|!R苮$=щ81ԙ4MES6vyz,jNY&ƸRxr Vc!\ܻS"0?0`-Cnf)3wd '.=rc==Lt5nFI-fzAPcx SJφ% t;[cLO)p*t6KQ H)yYSՆf5D~CWZ8CMQ΋I-0 wy %084ӻ9r&q|!z!zYBu"tE[pYpEaG7q ~RQXC0c>b*7X_#<)@4#[7fbD~V)*Mº{x2:̘eKRT(jnjO6)HE6XS AQ ɲݖw:0@"۫JnhdoH\!SiQoFiΡٷggo6*g`cp1ۊ}_4܊d%6V]g7Ui`\rM;OzjHvTg#jh_2 d%-asaH8 'ٛj4>) *rBMH ! |O_KC_Ԝ7|/k𪬷(I_}Uм+ɬmLB'8ʠfvn7 Ybtٳ BiД4~%)fL:E FN✺?5U,upظj%_s4 H+4ef#Dm=#OM;؈@Hg_hJzlM3VQjDBө7mCfܩR;mlT`c('":_jeN+8Գ+$u eP@s'Q<8fƆY ߹xO0{&_/)Gv6{G…|ICXnm k[U$EMG/1R_g7fXotZh}>OsdK81$NRqOt֮Ggk_D= aV;$(@;]Y5dP#B7_IT~1Q#B~xD)05uihg!wV1" z^kXj_4u(׿\r;_F3/̃ cd{$BI >K ҰV#Ge0HGeЂefM)Y2F$)%nܧAbVګtCRVVzMHpު=v|ڳ!W$E :Cyqj>\;ֈg{ v|7Z"/.S\>b7PUNc$>e'F>Ld֥' }dlNr DyX =^eUMDhݽeA&Pi?*`|[ 'M!=Uږ*}w'7sfWݙ$XB<\{#^?7 P( 醭@{y0 DDT#|kي`9N@$-@ S#6H%J(s 0x]jfox=v6v,Ԯ`;AF)Q(أI#Ւ)@VP,a "=Uy Mjx=Vr ,w,$px][-"?u^[Ico3#vs*}-c@ͧHٻ mrjXNO@ @!M*Ւ!k;QW=ߤ%*f"gqmqMrCaeE'i7<)ޅDVV{.#{"5kJ9 20’ xJz:|gy}E6 3 >\#+[uӝ:B/&jjq8];k)ڂR 1ZxuA am锗p{$ѣi4zS !0I檓 TAQq0>PShb*S~9>,wSM`ׯu_YgMɾaMF7zi|<= jg YEQ8{hK"󊦯+KC6Ln7$ÇYɚ?-z"햲08Q+kK']b;DڹTk&FlA0c8ܗQdi_QPhqM6.4-f;< +4 }rC4 #$8ZҦ PuY6=Q*]r /+W㺠"IZM/d6R(;ǮX9P\haTէkV2iMY,Je3NȞ툤Z.Y6Ja7vZ.;gUgOZeS-FR&N 3U wQҺI)>h/%&B>?e  ěc5cn~8FQ Q=|k7pl\cR0(sQd m {`T]3]?($P&/?G8`/9,OU5 FrkgB`Z^ wq0@WlT8L@֟k]X |bxijtLh|L0dp Y` i*%the$DWI)";G# 6XP>+j5PLjjjba2xhT̥ՐmEDi]YjN {$,^+𦰘60|})q +d+k~֘nR;c`lLtwn#.W~~VA8_)hF 98 ]b@3T^;8AQoH,@]9pѺSjKLIbIr7ZRI%ob GV8Ou S<KutNҞ[L OuLMfaParG 37k87Jngy5XCMp0d$caT 6 "E˿&ԼWiȦ^lS"Tc#閿.iQeg.ܲȩ !CuJBe0  OE=M1;Qt)?2gH7C`.AVж%-|ǒl}* Pf^nSwS״aYUrz/U;Ӓ@ #3ދ_ wM "R2qzK뒀7n&  lc314!(ZI–W2@y g8΄±(1]7Iڭ,“i.iDClO]e!(|sQ[^M):QO^(kl?``9E:VP!I諫$MJ'5K;($3#wΨ]%ۯ3%׷tV'| qhQ2[g4AXCTR'pR\CґZϨ9T=cb"v\Yݟ#SjZٸv}J;O}:EiB]=´^tG֥cU2U4"76iK⟰+e1p=G*z:V ;KeS(Sv!{ aAtfKsq'x>F(&*\#[d?h"Dm FOB԰}-SOSD!6&[ߎnkn2rSU}XV\"!b3ov \qyטq{q[&f5w9@]Ԭ:O!Fgf1u+TKmRW0z9z-(7<`{YNg"ߏ P [;0r56(j}mw{ _o$OɀWD*QǀFgFBoK{5cW?ϠYq5&e]FdW{/'] U4O,6=*Ԫ-z 3.I(If,`=L<Q|GI(8z!y)VLTF~;^J|T8!.Y<#=D>Kl>Nk盉IK.f# ,FCaeft2GYP[YSW?/WvNSdEg2g89]_MA !?vn-z&ؖ9}iNujtJp; Pae!%d:=ᖫFh#!92=6}tP:6 `t܅ܮek uL@i;ݛã`]/zS[լZIO!nO+VHlÃ(No6U|)7cBGY_ڶNJ7})GAaW"=@k^\DMB%E<ן"2-^e9X`Ȯi)wAἸ>y&9z-͈2tH+"zBU> ǜJkhF ;Ɗ氹K`~ZQ֨}-$lөɢ+Cz2_&"a gumH2^Heҝ^ܘ%^+{XU`ޜ)Y*opg#/,jd=&KuߞJvxJJw*mV:5D$a*V`JwL={Fݓyt= sRݵu?dk`="1<7`]ޡ)69l4 w.seFcC>DFXR6IBPsO`6 8{Ft-?oehz|T`Uŭ=7 57FdsIM3LazRĴ VFz _K(?@ S Fڟ:?U4Ȱ-drL846|fKT8SK0~p:n`G.φ VNltML+VJfG_.!–P$#Vd*ESN"(Rׯ&Ѝ+*ʭ(=䕕ߵ46=i_+H{瘣 mzd5- }dwUϞl\'b?9o$e&tػ!:U<W;}bD=Jؼ_OusvRlaF/%r5sA})f Q*`Fr^; Cy|v# SdTFN@A;kWl+?İMgr'FLa]}k&{`nԥyݭrl.`ckРe ҞGqvd2tZِЧB2m 5 =V23".&oZ]DCczn{Z}0EAKX׭yoB.҄8#Z((=%" OV^hY|D|}IfLб`q7z#/r䰶Oo9J f{]RgԏVSd9Gk]6Ɣ^=[=,F!"ب,l @0fǟx(*y0J@tCϝo[ \S5ˊ/4WLWYQkYDzE;maH+cGU - 31^!C R )JP7N#譒f1EχBT:K"ZpQw/oc ,iN ̈́}iI+j9rmuIl OyzY0 wi`/1I{:d>ՏT87\ LC\"(g3H$;ZPzGKa_jҗlm0˓"v(Tcߏ./y|v^Cd[ÕJ'gLYլ#+LQR3Z,#d1j `Q'Růta?2)Izl Up[A *huR0iOq ʕ(6pj9HLL3ٞOcL+nqi~lBc>#gP!śd"{ ,UtC%]щoroE-S/]>YzmӐ~ =oeh)FIKbLyҗ5nr"X`bNd~6YB\T?7( ((Y'icp0 &ZmS-LQ(A>]Jv cݪg 2 RM#Kg6V#DܩGw6pcRs#f(xPF֤*q_`nN˃KjF䏗TED,]}*A&dfURq V K6&c 1GyWAqTq:JH*p0]v#ZO#Ff7*},SRp4 ` @ %3[vD=4RlxolgZǭ4n'@RG 8M;txp:u<[BX^UO8k)>NI[iǿ1K؋磡 *^jW?32XufZKŏ/}慽1oLUp&Bs=#ͥS3cxg)M%ޛ\=Y ŕܰ|T~QigS -x+ArV[BlikoCDOh뾏 WG&>w;= Y WX}'?SKٕV/CU`= P]94VɢeD*wN]3l<I/P P"/sU +@a@|aObS!M]r}F 4 i߱Vw㸔h؅64*o_6YXQ4щO_sUdEFlg%F6U&JaLat }̎ɠ;it=FߥapB#+TCsb'{ KTkw7n4ҷQ 2!z ,U?xL _6U5K\zkoYm=iZiZsZC*M2yiξFzX+dz4 6+;v#3mET6$|?(WV|A lʠo~M09}>Z=Rqq ~ BGRm9%cY9AފL bRh a&eKʕ4䪙N+(ie8Ŷyb ",Mi4gmeR=`}Q& yA}Bo, y6ʿIkEMAgDZĠ*G6[nLkEB{[E?jyeӳPITyY dT>^%>H(;,{K$ fdij-)u )''~3;%]11sM.kMO #[='2-"%UݤT }38~2Ma%k?xH$j o,rX Pc6\Ƭ cU[\P ͜򤽠`J i? c}U:mʿ󘈍//hW)"c.[ۨY_p6 @r@}N:7jͳIݙ` ϙӪQ>/ ^*QOP^宩oTGmf̘7tme[Ef'Vu!#FP^Su֬9++#R\c浗vK5KdQmI驹"Yd͏`v%IW""-k ZYmox#NNYbf Pt6!Eܸm]tjUpmUD!b{ڪO*vmL?x)Ij c9DtL$U[,2e,&CVzYVzwZpyt>V5xh?Sm/X=BHJ^#VKeR|ϒѣ|emKĢbH&U2L߯a<(Fp<#_7Ĺ"<lV/pt~e񜆺̉jQSSsΧ|t4l0~z>g~PЛ~":fzFw6?3ӫc=hC Aեn "U(?Q.[&!9?o x9q"֮&9Qg3֚jvHq~8ēmFj"3<6M=Wߗ;2zop WuRCY'-4yLQ{}^ 4Pvh/O.xj5&޲ Ioj oAghKHyJFe'<#?[ZsJ򼇣6]/a֩䨨ޗ}xO퍭l6TVCbPrO;"ؾX7,`iwJ4NQhg]6Ͽω.í BsM9ک(kw՜=ZG d&A$vTyvKhC zIȼ?9eMkLMC[g`|DEIZ/WYGg%e/I6N ]Y8_f?5C<9fq!?nEd*w] OI 9َ]@!Jk}PO:ejhI,P(Ov,{6L=#,z8pBhC7ўA#RHM `Ŝ6舜i/3=pE W^o }:W+gDk\2Dr~8Kp)%">&K`!:?i@[CU HPp[յ'|fId̾|3 bƎN L"kݼ[3ҳ^f`/M͹e2*-vڡzQ<0l44y7-"Z^/>r ɺK)-zgUAP%&FS]X^vF=^`yxiiuD;\ iJ"Sw"WU&eH[ ]wV7o|?7湖UC1zF:7_'zTK. t((Op 545Q|Y-dxTmbG',‘û&s@6)LaBCL'Heg[& K72C@3ǵ彙`wY5Y0;of~AGQ올 @]bYn6ϫ͝WPNSV\}^iUMc&͑rithF.h~}Q+ E?]$Z Td$y1mEMX shN/GsJǤ=$\Ei;7QH6cI[cJ;)>Y0A`NRvwZ%nU u{L'_=aLVq}Fɛ  ZmAԧ~QGd%kXG/ D@Jiy?E&o ¯x?N78/I~E]ɿZic%}'ggf A"A9;oswC_x=ӴˋGaoR,]J-̣b J vY1U*$ٱC9Z:>ȕP!24(>lӾ&_E[jɮ,\pVCZTM#Og+B }N:Mg\Rze7)Z_H{ju#.@p7k&^(gIZYs<Ñܛȶ:D 6D Y\a>E&ʼ[@-U1}<{LawրWLA گA:=6ֆdX 3 Z*FfV@@kȣ1Y1eDGD siVTLGB!l[i]`%xXh^/ ԗ9>+~VBZ5QrA/*!^:[ωԗ?$Ǫaa2 ')qIRzN\mO$#w=C1wR}βꛕevsaG6wӀ2%)Ɓ!>xrIt0E' e"K{Rq:AAҢ 0t\jU:?'W~;)l%6˛KKCBx Ose֟#PN݄>ɚ*s"xKaV@%3Hz zrB@/llݳ鄫kDQhޚlh_!L`ɓt;|,!̰v\zu#հÛ\gӝ OSQhC~y~M9jJz=ѳOd~;MW{EZܴu"TEpa8{ Zg}24G1=KOJaz'C^PsbFדHS$I] /= d\]ڒiv>l @T&(<_!F ]'Q.$dKsӥFKeLe6De  eT9fB5}D?H5kdܓEj9>(iULjW|/fKGYڙ2g @- ٷpb#AxSu Eɓizl͟!~ZdC ZJ"J,`W>kO3GdF_ϪTn^8Z0q^rhؕTG& 帷zU=QJ5\Nع%UGA!+Jѳ+Zl {2 pƜu؀A gl!` >PB7=B!{dLd'2<*e*hLs0 ($W7qO!9mӏYэdViQMH/ɦgf;i-T&LppQAqY$B8Tza=N,ȏyEgf¿@\93AtIp w0ߩiZ>-΄g{eDkmq!jIֶ,ufe`ĉCj$hqo>L,&.T-9.2S⦤ÌrIM> tDblE撢7ANlj W:/M: (k/j`ړj@-0_u?VdJСpRGQ!;dx*y6xIU=U'l&|8}L!E{W}F#5SNhpsOTXVi`IEx_15 K0oiL}\p T8\`GG:[mYܱsDORRl# b}﷣Ɨ/`3CCGxh9hif+FB)GBe* ]ў3#InZf@ ߍ`qy,%v7.$ [] V< v+' Uܰ0-'ЎTBFN'BoeaIH#%}s-/شr!}Sޭ }xApp!Z!` lTZG AQbSIh -L n_ Fi6?Bue1&;һݣ"#5sVIFnl Ӭ`ɔ+]A$&9i;]=Y,%&a°8a_PުG4%HE6vjy< ؋= Xt}d- d  e'^Z# ޠ^R YjHZ 248&B(0|[g-^n?!Vۜn0% t1DfeaGYp6c~aj)K\9Su&u-\ɌEXGb,{ %顎} Nfךp^\p[^[D{kFPwOJ91s lRsv%wH!}w庝tvr/ΛƸɎVV7'қe>%@I|mgbE71_EX.oIȇ4Q d٭}R6[lyV:bĎ!}eav`3@]`Upղ[0ySϦՉ\#g- ZBvՊGNm/E+he("1HW։S00՘ԮπX{ hlFCu!꪿ŒL;ENVXlW9{zvgBge{Ray>}7iMB(ۯVIyƁ,jvBח=#) @46s^P~Naw?pyTzZS]!i]R8C3M*+V ~&Qudinuq-,u}75tUڱr2&ssoax/ kg55k/o2#?UMMZM?+>y2V妒kHAEyi/=ظ[Bhx a=X46Y}M6'{&_J`8ēf"VLNrLNH )&+1Π$x\r':[;͙eXJ{N.vc4-v[Dǣ)g9;.a$W}K{FӉD^kȕ=eLHȊ=K_r)ĥ`ƪ"O=k#6bQwK>+ƎY*ToydD\3-PO"{4opK*zEǀDO:_wp ntMkog .giLs^yv]d+y8[f7#~Oܻ+1ڛɈ#] oEW#Iz $E$$<'G~HbrH!L}X+-s;ݴZ%hj"Xk7-lH3ZT.,E q h6R:螧wڬcYrZDTNthn8j7On! ?B#KlfIJ5 -҃=]3'~0@`* kV.\ k25h/I7?lp ١n2YMwkwLN^zz#[[M]և #W\Fn'%<_XZ1^@+ZAdd!KPUON҄6v'b7Uڟ=y/qxt ђɥ9ɌcK3Se-uJsR^eF"6 p⓭\M}L-*8?k1K3ÄiV<@5#|fdͧ\x);I[l*RpVCl&a/ jܹziҔ,nQuи$m<ts`h*1Hp|"L^#)tIY&"dr=0+{~ZɃ=JA>JG%!>Ճyt_{5Pz;Z4~?I9'[x`pF+{w#`F%?R2B q *HF9 GrBTTwi'2l\PGwi7.\v-qAҧ%6)"MK[}"r )kTR^2oj'}@K/:ο.PGaGّC^4(v^URk$K. d?I:;XbϳeGAv\F#C{[)ӝ'wKhjqL[Kh`lIU9Vt67owNОII(V.k/) JoP0O h&@ѕÌrpBFD~E!OV_7"HMkyq2@<S]PJAT3sQm,x:^23 I"ǿ9pȪLyX{BZNS <ph$&vr<4N3/䝅-^\"ڊ!u?HNFC054{9<uإkP%Aݐoh@<\j*!;Ɵ 1:3C ZNyԟ+~:WZ\*NOV} }zq׽p N{hpCwNx좿QfԞ}Sq`+K%0d"u5橜nfx!yv}t2= s**XNvm=(H!2Y_VwJ&J@۽qϕ,ȑ(5}DdnXdOe#Sg|@;L@rgu΁w !LB WwM@5jSr#K]:),2Ǔ,J nm߸Ġ\l1._S#'hq6S [r*)R *TK4BItT`#a783(~ FKRTt 726U> 4^*հad`Hoh܎9J;l'E䀅D`8 4r&#Ņn̗|+>}) (*/VM:_'|8dл $[r34g%;ӃYnZ-GtnMBo@l9Jf ͛Z )@])ˑbcbK`gV XXN)r+6n, tbb'ʪ7Mհ%.s1 Eiڍ r{`_&q(A 6PXyI5;hw*T!=R?:_*y猪a0DTVu01oa;@r[}ϗF R3DrWa՞w_cѦ" `5N27Գ,r!7K3ѥ%M<FևSecҒ+<2&R\Iϕ *qUqnm14$Wtx %}sn$)öo `Zmвi_6ACJjN}l`{X3aA:?ۇiv.)g[ *;{)$p{6p8qPBT& >{Ηw'Pi#NTBߩȔ}uU*J° =>lbxt,BʧIۥ6Ck/](~Hߔ& DZ){ L2߂:%#)m+v~2RG AFŌ 5=}/S!;'jҎ"@#3"-{^Op+m\o)3I)}Yѥpp) cޔۮ- ɨ Jh M>X:@NHv1pHo%Mޚ" [7tpA\B]Zhm9ͱuY %˘vi*2aK[× $3jHu&|!o_ 8QM(vo [)%/+2[|m3NY+MQ-hX,5~YHOΠS\LqVKV(fRT;I:VL]3::!4庁mܵ?n%}.nltٙ@)`F#e?TR|:0('֓-L`%b@Lh3Tƌk9"%øxRVVH̠ZPl^ Mjە ]i#)m!5j-^!g:C$\Ż[|.iWw5jigtMBKԫ ,Qq W[t5Ȟ1cϻ.j;^JX9^Xgc5 X忒8AR![&Qݹ{m.T=<)aNjx %+JÛ᭯ UH\ r1:Mvj)KGq^.L1:eҘ2q9$=œf_:gGyȄQ ,?fT苿O &u-գXu?Vl'b F?XTK^t@o/PLc-#+ 2Q4pp֓toF@-wXxjSʚ/m쿊Fr)~Ҁ^Wʭ+g: 5>iaJ_ Xm|Wit@ iY1[UZK|uRL}}yr(D[MGLSnA\趞C GZڻLV=+sOαSeCPIPvX"n*Qپy{O{wnЬN`RSpRc j-H@CQs@M r>`>ћnڲf5A(ÄxP.48^+RtǬ_+7I.ITWTj]C${$NڔҘJV_OJv8`CXZrAA/gx^ZPz(ǥ==Nn*_Lq!ί?Az?CˇQ5HY<1ɫCHa a #@hȇ4#|}ZH*L@(%ӟiѧ#2_As&y1(${/';҄Ŧ*nXlOcb)wA?$u:H@\ lU-dh?lO=d$8㛆+7#J}Ugk@;IC2<ЊFN$SlC0E5b#1  ߧaQģI#]h:}a)Tgۃ諛 ׵SXCe1XO ^R>ow= Rd`,YiȚ0ZBGIR so,u)i=w## ,>_8sdYPM( u pOj=tMג>v:?سS(M5[,s E {^< :q|wN'!78@ؚmzZ(<8 twur; tf_&(9 m¦ImE Gg}з_fm9y0.&غE+r4gT1jЯ8T)PmK,LkRFGm C@<X,pR6WbTJT&.(sJ'azp^9e)_ɗb;Ҏ3(U䔆;VU^QSN'z­X8Ȇ ,薾 J6Fx~n#&ekcT$ϳ|6m! W}bo1ܤq5yPaCh(ĀE9Oq*ep{S WI =~9uIGtAuypDVgR6>(̪uIRLD42*iw[V{r$}p5yPFPcyN'$`yS_q%3d'F䏃Ht1! Pj{/D%A~4bހRUz8pTC*U%M+CJ8O9 Ry.wW+Ur_҉EH~Dt k5 Ikq(PZwc(3棡1ǯ%-RK #zf"^li#wڌ#w6\HveIJXN;9S 3rlhH8<~W/(k 2)!!:ah_%9-?-ewAwyv Z(0̻LH4 gxjt]6p{\s pto`<:b4icAGC`Rjz̠mTVhmƒ[M~BmjoG*˲bˏx_NF5xY' i?p܉//Wg¶g1[$>+)T+$FN-[^dr]S)Aԭ6KA< Hɞs= 9/*,T︁n0'h':+ h+^ Z0<3??'FL(4˶p+w_,yxFt' Q8 n9~z&/A_dc JA7`53e ~i{q# ;[0 Y"쥰qLWcDYu+3﫮(9"~V_+[_HxO0ʤ"ԕ T&$\3Zh!`uܖ5Sv*)G DLLd Sj4R?e[#u 'ˬuG f-2uѼu:X,fXB^~c|ӚMc#Qu@<*]Ņ&Yn# PI\97H7"Gڄ nINSvDfK_0mhJ#Aף**|^{W'O<Ywf*]# >;}!=Txlf8w2" >MZy~ -S6-)ڳ gS u,m,@-ͭ쑋y kiPX2g+ Vl#'-ݡ M"2-x ;BB\~1[ L/؇ W<'~g~G$.%w!A,4[xd1h@5>93kBJcHG ͌n]S+@xL 0MS<N oyɭC\.+I_0t#^1/a]S7̃\8's \!9U- X潻J~=Y|VA3p ?H-LbErxեj!{[TMys̤|780#ꁷ l\KCcrxTdd#Kݾ:--q. 9ڈ2(5 .aϫ48 gwm-\[~(d 'I@t{!T7AX v*(`wI9f#eX; c԰@ٗ*zܗs-h X, ܞ9Q{9,.pLq ݝ/H&ǖfZ4goѶVFB(gǚ<%A:=$#8L$~K !Aau,6@G 5Gb5䈚QTJ)OHdr.Ae_[V%ۦQTWTKƮ~}iM%K)lu5"n ]"h)K#!S!ԯwχw4a4Q@4ET; H$M`Jp!j >̤ :47M@XQ0Msh072|> ?ЌqWT=x%BLMK^a,c20b oٱTB#ȁ'L3 _us?'q0 cv j"A0~L}F. ]6+،:kت|i"T%뢕 q+HܫuW ~^-H8@kt.{Y(M Ӡ##jl74 lPDŽk,3+a7y[`VȓOʚp)`+9s;5fQ)RN.` Sx$8+_%Wٞ*MٗDsսBͥ kwΪdo;Ժ"U$}3bCo)稹{PmUK};mЀ KW+? T+SfAQe~#z+Zt4BЇ9z-F2kt({L|H@w΂GމKަ>6a[_HPW^Ӆd Kdz$3<ՇF +c 4:kK.A¿USvw`~uO*OR눖&Ü|Ω(PwWtޣd 5fs ƌ9z~`H陇1W{ub.rF!CLdVp!Jg :lf%J]/{nb ltH7Z]!ԗv8=PŰ5oSٲ$yZI) 07V4̆=էY姆|%>[jb3 ؾBɫRf|)UY^)B3!nC@bd !rkQ́:y2,~( (ʮX3lbJhJS|xhۘM+'WQb#RPha,USPv)>wUֹ){_ǦKE5YN L<22jzpVJz!YEV9I$ >gu2aj:ԵzoDI9kᓡJj2 A|㙙}F9rܐB W{+Yu-4BZb4*v=v)0@wu13Bh iW@I&EWL!W[8 }$q^jP?G)P%_QG[m\ZE 6^qssWKydn1IáC/8p| \Pcә6+^)[u5._!?ZKeqEWڰm:>ˀ$F&-Kf <8bgk%]aӏMaa|ߐ/W?lٳIBp bi: Uq3:׀%Lќ7@?Vf*{E!qvjG3lor;t dfQz.A /wZ(\}eMR̎9Olz~1ھ"H!WuP{9s!Arx()Tajǎx|dMY޲^+a`GĤK|:.W:u)زQ:-[SL=lup-W~UzXbP\ *36b2a+k"5Ή^xz!S'+Q*޽V }ߦ_­/$EX,۩4x2&}_J9r%-fߢX$b-P&YЊh!2s~ YQB :-zO::G5mk$ -f+cݵȯw ^n-l<.m '%Ae7`=їiLgz:OY@RU)gOe` >|4|kR܉$ݥGYH82ǂqp6\Yqʕgw#н  .6]4Hr{q>LXl\iPF3JLˠCk<$]&=4K/M#NM-pzLî@@̘M#0Pd 6t>cmJt<0XeF(6=2&PwbD00CF]N .ݫitmdq[ H!3Tf"uᠼ "_'Ch"vз^0&܊NK2?` FUhXj]ſTEl)L~.GgqgsTETV\\&E2T=cp15VPz ْ[WΘ[ )^#?YbFqiƛgk4)Yݱ.#Ϫgm=\LFÿCug+/fŹI<|pp kÖQߩ,H˗ hܬ%gÂ3Jzi$Ь “<KrO7`WϏ]6CvH쨉g/V;"y!±ZXuƾv .j!|IԤk6[ z P]s-*F?̦ĉ "_vM*;/s(3 .vC$[ |1_ i/rX=h㥞ֳ:3Jm[l*iN8g[08c>_'a[`]6_`nWQ"CD #\MJq! A*xش-ko#S1s撹kЬd>i2Q a'?Ce$*ٻ&ie(+NJ&x y*ˇ gx[8p "l&ddrNN0Τ\ &'V׆IObz b鯳G<<5<6 j,KN!+no2R; jU +7"(az#Veq>)Fz,+y_p쯫WcMQn4gb=s7m{O.V d`eN&0u9a)Kw8w btdt%1`cR9ŨUwWEV^&zJZ* yLL/N3{yɅ"$?ܛ܋WM7ؽ/ya-h0kN:hY״R 3t Xbr-;:ZzXXI^28JyA*(G0!k.,+PF>NT|![,ʌ&64-bQAN_`2y%B n!h˷o\3El4]*e;֖OG/ayAl~nKLN)YZr  Ow8S'/@ؿVU7Hao `TZ͑>LGsJz7>u^hDH%(|MR)=.:(O!P |`3'*I l[7GBT5Sc֝jR }UwTd6}3$LJɀ$Ų+ڥ<@AM9*XSO`}`\k`^QFkA5ZOk_ڀpaABcI@Z8ą_x3_ƌGd0=WR)_dIssꈫ%CjoK1UP%*i{Zf5ɵOвP1[=9(J3%=J]| t:V ߱ 4~WUnyf+yXsm"&6;d9s? \f^+DzhW?~T7X3=` |JT bNLP"bC1˷W2?c".Tc-4F:kFŜRG aT ܃5IIϹ1cpCCkm zjYQyq:axM>KLB}?53@C%/d uAx~X5-5]#J*ş}w>bcƏ']Yf"Pr8WPrh6ܢk5Z BX rTz'\=,M66?n"*.U#[U;#V4d♑SviIQ_ָ4tb yda6JB]RTbe.h,E.QL[d.M۷$%S5ԡD[i-67ʍT͗軟zՈL8+fެbׄX2Ό Lz{  G|V'B/m /` y;<҉& x2хo}+PTO ܹ&e rR"R2H zHmiޢ=*K.BtS#ԉ-xJ09}+K}ɺ!b_,fpVpdahS@B7cѾyzüOT0d[z73_Y=d S\H'{+lO'3G9u\p!,,1Kd\JSE`w[|56T,(XTd48DԜ˹l7hOvvd˳Z/g1`6zGG˱ː->7dP]PW%wUS.3$Oeqۘ8+er \qVhYƀ)J{>|`-Im]ڤ<.T*nfy]_&$wϷp7fšzrϨТiR~G6D-.{v]e3vsn@ D,` rA$Dl.Wn4Th4}?3l2g,VAQ5G\ Z~)A߆OH؇lfe3;umWj\'Xcjd~z $0޺Q4e苌%`E:qPDz@FZ!qt\R-uxNgP¨Xo}hRPI8JWiPU5Y2_Jk6*-<-Sj'э=nLN鱡ޖu[k5A5He{hK״  _,͙|M0'+nGt34!$S oO$˷ i$F!LGSo.;Z>ۣte ImqXԹ0"Kq8- hxbT^PkԤhů hes"!n'Xnr4vfD7MP|N38IaƣgW%Ylb "It`PG~ +ND&ICzfBH ZDYP_lUE' p NH<(!wy}ئ Ӕ}&Uk.ۢtc Ơ GY*u1kC{/r8<j̣YDpm}iBq&)3-%$:vf<=X)$ ._jዷZ. gz˙H3K~+0&| DRm˚VSBe].uXvx. h̵*cM;Cϯ9wNj\Ɋ4cfƓBwF[AT(TvE his&[p (zyB#WB^7bbyRU'3s .$V1A«Vb s"SPuTׅ2CD2yoݱ f0z㢊Lֿ[R|Ǐ_BvMKj42q okO @o$:/Q^\k-2NAՃG' mJ{B.5.sp;9; N:0%iou}'! W ?Qe\~K+ #y8PL 4*"Mm˱[kN{f; HX;IpmY KփW|R ^&?:R=Ũ]Z/FqK JpցK۶U%-.QqNg/dP+G,{ߦȾț_{I~t,y)Ly7(85c*^߂ӗ+6E ǘ2N} l҉rfs|.P I߯:B/S2"#|a2t:C}|"^V"z9&.wh~M輫\YcrFQ(H}ʋ拉ObS3}wZSL.:T`tX+^s!S:>(u 4E:ye_ l8idx~İkbKRh7gЧLb,n\<טDqUu7!cY/CU p-6jUɼ4:UY/UР1xuǸ"kV}gELkHM棒N A [Jn@DKsRl(Gbn v Q1{;~Vy^8gG Q4tE4vK3KiP&9&%vN{>[zr`08@/QOPL ^7JD[\ -|@P~ wt-swMd9U˿K$_Ħ/=#R%kd2صnbʲ k<'>.$FX?;D(;bshqy6_lZ!+:uQ-sYV}a뗿ԣAW`=O4v],YAzY[>$q94Ѻ ,}@tm67Ԭ0xJƣt;&(t+Bh]pH ŅݩŹ_Y &-)fQnyĴrhhjgM7%5屾*AeG!NժV@ ݐ+LڙK߭ Y75",6s7Bg i`j ʞ#m~ÕhDK>l8%$!56S$:lJ~IrhKU:1 4얥ޚbY?R*PL?q5 pfwǏ1屙z~6^nٸRbv_|:5&; bղMe{Tw ex>3`""hhY^V=ab/rWy+:h_.]W]QmPATG@U(n wpFT/(woދD$sgϤ 2 d[j*ĢxFK7.Ez-p4`TYقk kJgMmGM{64vFzS5R`g2 D+PieWq6kD<ü8\k]YxKyNlgu9ISmSx}UMH<4 Shc6xM`"1%#ǾJy0 ,*=9E:2& |?e}S̟cNwd*F8WjhLGg8q(1 ꈰYKυև&7meQE7SU*:{rr̘3?`TLյm2_һPz\6u9bW9߅-df쀞GOBg0|Ҝ|0p\1ܪnjh<"ReO~"N6my\< #OQ&tmi:4uxRʎ)g@> Q+腧> rRNhtO!q"o;#.nWRxY8-+*NB,1 @ c˸#Aɲᯀ%Fpa;C"'̓zGI0T(;CxrZuf|'IoId&:-#5qE^Eۏ;eE7Yꨶv oґ3T>P]tbbT;Z21C ,WkQ8jŚXPk t,[k [{Fk ,mؚ,Gс򴞴%+# *hXwcs NPs3Q4شr6a[VTVݣ=maHI=G#hfaOe,@^ 5Нν5UK,)Q_SZW_@ g@kU7Pz {{m95j|/t)ämi q{INvx{A'&[wOF&)!rEkf.%6)Vzb9I#LFjl%bIeFIDd!^*؉e?@#@Xݓ_9Sg9fݐu^I7A{*N0ka[{59_Z@l/)J1@rX=V~xe&/ Ii^RM,F|0]Lѓr+_wM*u߱ዮӼ_mCg"e1ɿT떖]>x)TC+ϑѲjl)mHONy%P-"nh;EoSŭg9k{'(l֨(" d3ǝ|u:$ 8[N 6ܱPO̯9cu<6tdv dJI޸ K_deBCq{Q_=:]ڑlE'^gݜy\VqLIVX<6іOKV`RoZDgL۴"1!>g[W-ϩ[xba}Gs:jQ/%@߱seLW*;(rLb椔9R3OQ|2F ӺKhp\+i=B{$*I58$SᾙreCdWꇯ%)?֤1#3J}'*bi5nu(q<3bZRYOJ"NpYkMv.K~wiyrQ8+Záo W]PdK7=τb9a:y8Tk|E. YfD%cX wql\dcmr{mebQ%! ^d]K,8\g[2)7n[!eiܓY4:`>jVӳ`Wb3i),$|,a=H@5p͛#"ʸ-Hm^0C3^X# 0lAVJ@i@9S47fTQ=U" )R8*2Vg-刘1} SzS߃5# Z9AYV'> #=ߪ% K 5 q8&լg>Lv[᫼cmf0"#dH>jAšMD286kl]:tPMuR/l UjkOZkg6 4wۂU(&AOCɦLJhgWvg׷|fCe' nC  fD1X2瓯4R;`;OF fWyN$ba_u,wKR-e2i,f|z /akrmyc=inGPdJ PszmΒ^Dq%'>k|bS\)$WISfKo 3C6QoaB]>-*YAķɏ O#H›4[[&KZ$+<u7л#نѥ)sb.(xHKUvCyKOU8!X;T*7'WŁ]RFڛ/Q5*"cqjٻp qw2 ߈РX[rщF%L׽%F~VW`]Dh%~ܰ#v_'l }U2 a \d hہKqp$Oy׻]AW[eC]]xy)Tw>mZg';@t6؝铲߾4jϤ^Nrt}5b !=6NZ~--`@$ O<; ƈ/);Y<&2aVFTȗϚlA !0s6҅O;\ ZUH"߃cأ; }97 6"T _/ؽ7l,zaф?]rd>bMw*o׷gt5UG}&{s #y7#>~gD7|@V$~'k ߼aq:Sf[*-zi Оz#cQf9_b3E=D`݉j@@Qs C@rG| 樕ƘZ &v,=F tO]8,}K2UjŌz'٧}-xTsCkH-.R _m2rB[ X'>]s 77#om 4\{٨2pLȇ Q+̪xY:clRII2AlcG ;؄HgN6Qs6tcG17=+>$j>؅;>hWc1%6Whg;>(z^TY0&J/ k 0K(.\Z1uPnjK"v~*'~R'ζ:aОځk/}3 ^ Yս0XD2٨sQ2f?0, 3P'5K|(wi,YDsf(^Yt6WN<`/s&i{07gi}΂H|xJwx4AIM4u=ڇq颧^3 /o#Z QUy/}Lyw2JQ%Ɖ꫏x4_ \?V&+pmEmH /Pg%W9Q%++H7]ݭfil0O+kk<@{ES)+\{ ^¬ 1[#`Z&Gר[cw=χSvˣAF>YґrRQ`* n} f-~7꩖;@g`Ni;'#Han}lݖXyK4#D7xlOUuΫk;8w4con5Lbv͈YMYRdJBPI'F-NOe2DEZ&WҬ=|d8fݓ'{V^8$`YՐ )k':eK@٩ŊT(T>A֨AV•V㸧6kՄ8ߣ-bO?.Pfmѷr?DҎZe]x&P{O ;摐:mXiroDB}_V-ZUJh^#FT>L!}vw-#"Z9Gj0QEԊ᰷P xخ&,eG sŦ)g!A 崧 {O:"j;WS({;{__uj* e,wN! U\8):H~L-CK$l>̏.Unbaneiqn$1>ђ)Dfz+0dV5D ]wᠫVi9iT>Bzʼn]pTAvA|{)܎#MوU9ƞs{* * ДLAx ENp~5z0haӳ㺨Z9yABڪGh5,P[@`n>QTT!f;tX?t9xދ#e>?w]`'riM/WƗ$A%:-;y:+i ৯e6yi</)ђ >˕.˃lBŪ40"̓&Pul9z uo9F.ӱJ͌9.^bP'4_9^%݈`9 4n3󉭈v$?[6pE}C5t5dzJz CUA4/@šf{A1pv5\{o]9!R$)$S FU9 4HnN&LX915-7{ڎk ?H`CޑԄg-2jo<چC BBgH"F)l&KcYLrrp]Kn}%`OPw5V:ї%e XmHO jwD%a3ɱI_H/Vr=ǡ7w-ɕ Mm0e[N2Ƕ]6o|(>%X9wWPfeO4DZH?"ډw`L5sg2J7ȶZUí] eS[2η9 !J(z%ˏ\pB.,.f{V_J^3]) VYir'Ӟ;L@܅Pۜ%$W: HUczq$Ɗ[ tlZPPSQ) @vCBk2PMcOn&ա9Nr-v#y?Ȟ3h^9 S6 x~|P&W{H r T=9sύr`q+Y1פ7*ۡRYBM1S,7-?4fne鍆e"d^* t^R:`b30xˮI+#{8l`+":SFOx%!^wU/ǨGc^v`% ¿5uf^ ||9`DJFwsDEުEAzB1˕;=[4 .+}fߛhz͒X4I^@^jp=%@[sũӴG<@pe\[U@4 L9hKx X7MrF]lkX_P7bD0g6 $e h,SE &cS-4BbIlg2_iH)WU\=ے"4LѦdF~/}V,IG1T,R'^{)L<) = (٩A*ޝ ACJ-dJ[1%DFJ@Sgt: 2-:EX+";2IZ9?usͷB͍f:O/^@AsN/Ti[^OCL93 G#O}_N22.'am<&nA}`h\KkTn|; z9h"{O"ً]F h*ތ'@0UAY }qnd;3aalQGPdGv>nhg@VuJ6E"&Azt#p㙗BvAC{[ 1&Za4je!Ǚl"\fqh^z+[ﷃ_jsR"Ȕk1l@K@Y{VeT.֣FН2^?j>RXp~ %qxܐ Z`G`gFI( xE*.e7ծj}yD4(r.euTDXiGp($,ARԆv%LYjJs4MuUN *?_FU n؂+0o/qՕ΂.li`\$r-X2].ěxf({ k'=>~ lSD(߯VDo_oPPo$[d{\枲/0.@N!Nu|09&rL|^ #"גgAqSj)DeEÙZL@f~|fj'}b C>b?^&=(j"jjCh5B% 0|,_G %?\rB XYl6#o{M2-Rn|o]^Vu DZS4N|dbH|wr L~ƚ? Uʆlrw(#Iw15y?[ob MyrT =92Ly9=lbMQ`+א*س\}SvXPH z'oVqeQT}z-,Fs<ĥ-"x52"xWıJˡϋFd-e\`>s?= wihe^<AOST㠟~$_F]\x\=^L?Oq{ַ=89o  /񨟲Kur\ԍ N7f,ьQ"3!%`J?&? Fy ?U}…FEZ% W8?osM_JmtK4*iNuvwۍYg m$BR6nMzVD-onO ) [mR&zȾuyb?]4]8 ^JHAzuTtc,mXIpa7)wx=5uo!Dޏ0ImU;ٹMbS|V6\[M9\L_0۫ZFf7y8TV1 Tumf:5}Ҙ ʹ#seFFa5SA+Zߝ%9 D5EkHOL=$Mb4JtŞɂ@iu+;ky@8,D,:Ҝոі=_ }3V-opHb#nu!1CzG-j}SEUSDsI_t )]! **Cg.̨#ro\'\DMPE0 A<6^Ǭ7޶r=O]"v',t&?iqu-1x B Efj6m3bOhWBCh#.UT7$ Hp4v-ƮXEİYy/ɥͱ8ֿ2E}*:bi>߂niK35` IoY`q /V\Ecp=K_J܊M5 :er֙1ȗΰ R_1HHwVˑ=[јu%H溘p5nvvM]a`Siܐg1} O'kMij{`'CDkb w[6vK6`p[ #h&n@_`Ww@uqE:~p#c\[\6u7CঌCeI|i%%}uᎩUo07,M|:er_#*!IȠѩڂ[Oz~}A#JJZI:#KݛxbY;+lKZyaWDNDTR,φ܋CE *L.p-gw zvJ>?Onj;So\Cq[E`hJid[YdvL$ֳ%ZGӞ1J[ꀬ Ox ޢ|64\B~o0Ow];T-XrFW ,1Dom>p)>/v\T|Fjz!ӂD&"01Ԥ? `s s2`Q]SRigfnBѥf S76AR)϶/Id2EIah"٬clu<I4q-QG2XxZ9m=/7Y= 4ѹe-HH +էm9;ɭBӞbݕb\> KC)MH`0#JB`ѵ- Ap 9bPS^)9"'Tzq@AK]4's5 K+ ~N ilR]`Y\C̓Gc|G0^"TP6X9uXig9 $)=󱣬jJaC9"n24[`(b Y3*-9|E#8 JQ߬M[r2fQӧi!*4nVea![M,mGQ5r;G: #Izܸmr/ n(EjK\Rc:h }ߖ&ݺbU`~,]YG+ulL%Df~%<@DG~EdCъA9eRl0ejɐ:֛J!uɧ/ G,+jqd8{?c-Pk/|Ʈ5W&y?(LjT?c _t1tIL'ynflh?L-Xj"mnQxeԇ_.0}XB#,T]#N*Ku1A8n+j-g%x8Ǭי ιJ6;*p;`FjK]W6;F*52lQ7ʱ=Q*WUsD_4ji !d=N66xe$4:Ax8R>Y\WRaυwHZ)1[DBOGv"p&>`2frxߏA'Ry~GN6^*I2%?/` b6zh95wmNVl3P +k@<Ŏڈ .i:.OlZ#l))}B I=\dstC'.\nUl&űdrK<չ+Q4O. v̖8c\vpZHMӿ`}&\ ѭ_~Wnr/:jX%Ճ#dj`$E{R bULJGg?v>mſoU[FU9~LKL[,DqAz g-@厌yu| MIPfrŠ}x74vˉȮ/hS ߘ|_eh@֐.E R_BJEB'.qpG"ʫZV Zc-1gZwk.X`QR b!tI:A"B?KO /0pI_EUL4_2F +Hpϻ7-z|+f欿wcg>UYі%|U߶A\j ܟG =NR\;'3OlF4W%'9br0L G[CN1cv8,jhqӅ҅?[xKyB§/.Klض>]p5pxFwUݗ#Ĺ^bVGS)5wDKyt^6,᡾_zIjhW{q7-ai#*h^^yls+Q>}|\Dh #6_dAϹĩ!J'c*osS o}a?.Z6[;6G`ҳxbKMlŏ*JC 툜0e|ͅ®㲯F*û뿥i}_Xr?5aXErjD\j TU <mac4>w8Hו[8 s`ůuL?,4o1Zfb2]p̖w4> w?.#4G4 Ʀ9` 36L oBW1WKJ@Ef2ƫ>Y[}_&mj\W]Ϥ'F{@L]^ױ|c\ ց@WDztt$|r-``"x/@"p@|crwCdT#4. Xi.H?ه[]iH2QnY1A#uNGM̞.q7g}x8/+:LuU`uT<У6nJϽ7V=3,XjkqZ4рBd,4cf*~%;gy9  0CeѬ+B/\OF쎲Ԟ"X(cӄ@0y=EG^ӅL5" 0Xka3Y#d`9@4nDv[ }7Wgb#a%!q$p EۑCY|;fqWMK1,]W><4Km&Q 0cc"g! C46e+.W]Xv>,}΀$>hxwT, e}=+E8Q# p Hr9Gj dob2,8M:8k*UUeȐ:[/Dz^v.uZ wfc0J%*/}eV0WFq_k™&^?`03t kW- pd t} ᕿ~ѸQLJxB7d i6<< n;򗑂foHzKk5.UdLߓ2H!${" B 99TWՊm\"vߦF~,`w]E~ 0l?NGR N7i\&3y:CЛI36Q8J< Z-y.#!s,SXZS!y8e؁!gt-? ݺY댍/._D۰K4fP#LbUrI0*:#\;.zGhisy @,q^&P)Pg90` : KF(k-o :4xq#kC !$/1,OT*چ ,4'I9S^pWM ~S[EqɰWAәi @yf;{TQN$}לmDzힸG+s~V*~^5+x=[n'Atϓ<x\@2G/{z2ӥ * nD5:CYv"Oސ)I+4?,maMu뚜b=WaiU4`V5d iJF7NR17^6`/+u G#y[Q {k5>QDXZ-T\L3mze"57ۈ_ T~PbN5_, W`Rh=.D# +/?~_.67/N=X8\oPӱ]z=-o7Y ϓ 5}䌚mk^rz=[= (-pl(FN{BKi?1jAb)~LK7B}צ/|tC]zWf\sa `$Xk#~nJI ϋ~KaARR܊W l/?707Pq{$ߺ{+ Z >aǩO"?hAYHɠxgA序1H×P`eOEҩ' v,[|)UYA<JC+Q8ʔ1T\ ]?;ܳxzǡotl! pG{1J5`iqaqyPzk />Lp9>͡G޶@I`,0/DX%5sa.r`D.sL=&Z1Ԁ%'tsHQlRDeՕSV:ՙk-W9 (InZ39,5Ԭk^A-Wfy&zcEmh)ӋBˑ]_U8q ~ gvDj4h_~vO0R-‘dC7KJ$W~$< p*Hs4B0@3  D;.a΃9-{0=e&;4cMa r]:9zýU' NpY@EVeN1-w}tk0f-̯LZ$:*IoOTspftqcd)d(=aJUpp{rTjYz./ШApPXw2VpOβV(RTlI =N,I< _T}`;޼egs} ]#޲blG BE#oT]G@2\e|P32*Y2 +Պ?+LnD|0 :c$3 YB tG%Xn.U8>rVGLx#\[YνǷPg,oxN_'I)<=',H,#oM"f}7  2R3d͊%ہ(B䈄ؒ|rSGve2iׅc*VϑŒޑDBt[ Z&jϷuᦀ޻d\b"L2 &=ylkMnvʂ/W26և)Xeb\͔%<~jlEv pAOҿ>.ip p.(& WޯbEΔʺÒpJ>< i4!i%("F_@I>:\˗0{]Nev*b.)$=> {Gp%]ʗ7*`Lڴ 7ׯJP5$og ~ l`&MI˘e5pS 󾈼Wi@}r,58UhPxK06od% =PI1D#aAjdvͽ7+r&Z#{>cB挲3.2LE]߁HJ#d shj؝lyLkNM JmK LQO\c4+^<.^=Xp ^ǙpN@{սb$\:VͲt4`{o ƅi'-PD)YZaiUa# PJS`.ci`X¨[W> 5f>ElN0 Y&LU+*ӂ1%yqQK } IϚ%{uh1y}3| R"_wxviã7գP4ԕ۝d+]P a[RT C;1r~LY T@>FѮq0=/?gf,k2Re2 {;@5eWbd4HH+ꕋpMSv=(K~{~\AAB_Gdr~:]3b(#~8Pe졽dX%WU] Alꆦ@&cxzO*S~)Q^fx3pxgA:t[PFrq56)y`(Z{ѫ"?zm;lY+H*vÒ6n,#@}|ѫILЪjJ op(X}7$i➑LtWaa]sZg%$~gAZY.a ̓p \D7 _qu{Yhp \O`sB萑@!J>joȸqQ)RrppwBK9I0+?\F@^.8|Ā7{/W|y'w?O;2vH hߥ:TC.^l+tv=IMm>0k19ǚُn=].Ms M+aKC5a V."ᮊúKfIa#x(UMf S1)jcl?>aq%-{X샱6hhβ<6 di45ζ2G9Ij @TlHIoOX#$nH;D@ˋ%Ecq]Ҹ}Ӎɷ$[3 iv}>]ۈRjr%ۚ=;kۥ/6vAuBph p<3D ߛ(ۊϐ^bMNz5.`|ؔcN拄8[VsJA4A& Uy}~6J9wVdQ|߷;J٨|d\A 7~D;;"ֵjťFYp{`]\j _# ֢9kUo&iEB>!7hVzwOyXǺRbb/ܣ(CX ]9's;ͺCڣ>F+~n]>zy#u't`V@m^*Ndn Q>##wɟ04 R PxF@K| ._IMNxb;]ОގǺoEZ4k¸o$`;E\SI \j.)o.ľDktaP:uG2/䚜!΁ 腲$Kl[wS82@OYLo V5F۱{$467sUvE@YC+nҁl_U]*D+D1$G)7eR&Ş>Oc<,dB+ ǐpMmĠ Kuh{bdM8z/ WN X \`Uc2sR Tv#(lN(hRhAoi]#70dzR}r@O9P`xFbzdU3Q#&㧇 ۔%^fu͛2 74`ᔄ7ؿΟ\`|l_HlA~_-.ch =^A=0hm$mr:#̤p4NcuD +1rrQnAM(%O],`Ru.;5 ie7rp5ܱ/tbXs~סML27ک;d#i?:|D+O-T&>e0jZA;T#bE\hL]jvE ǩqN3j3i G州T򿞪MaC:@uiz#kK#ZaV5ZgcXc;F{$ ~ <`OHg-J0ŹGQV}9$8Ęj/R!AbktmJK&Of)bĸ RXQ7E1'9~4y6z8/9 Dd&3fL~TM.@:g/, OPz%XĈrXO#V+$˵.6 vI /G>\6S:^k?^cL(7 њ {TiT @ځ!<)RkR,摑%h);`^fGm=:&J\\%af[:Q^]/rCt5L}|&KkΆx+iiG/%4=SVI:h,z:!uϻ&p6B z8H LrɛOݣٰ}7s [eׇZ@ѧq'ᄼTxl㷖n$c9?)#a\cʌX!K$*Oke-Α/_g@׀ЬogJȍl?O]pNl૆ᱝ:H #y`nDAGWCKQ{UV2Fͣ4#堖-aZ|_ft^i,1o&42RWJgSsGaH0ZKI IHQ?H7_Q:Kpb]S!vt|-M_-ojI^?GǬ Gkmm[>Dj"ĐN+DgNyxj}=vfkOn|ִ`jϝlmġ]~/{"° >h_ܸS|_bQ%69|θ僵1SƱi[V:+1WlewnZd5zn92Ȝp^GٯoeQ<-_Q%XhXufff}K{$ :B1ZT`vSahdzVš SxG|tqSJT>[Beq mi/Z2qٯG m*Ñ6b0%:x-X<ᴠp p I%_ !-&~UB헅a1 פK?'Lj`z%F9& QBx^kZ45ڥcte'v >A_n݈~\3M o0 *ptsf!6O ,Gע\wuC$ɀ/< cDY6+reF) uos[Y.כK@tYjX,.&XЧa6]$3oE0D'WgIHkٍ1(8 nOU\ X=7V^ 0J98H4lܕ_O4P  i#.I1ɜ?.3k,.-ZҳƃƓO.y\|6k)qfjce\<PC=6_=bal$dm{A.mefo^Ѫ3YZ \E4o 0YΦdZ/k”D}:DS#>E'㽔,oeԌ} ѶnmcN3Ď_)+9ܱs5yTQRJ#xm *'JH'|~S6ԋ8mjX|%|u&?m$)oLyxU \᷼}Q!_{qބ3xi9u6kmKV}x(|U\/RE~&|b 75v KpM\ ;vK%T18-QO[öv&/L1r[uzQ6.P[хj?RuoZ7,MXZhE>a} N7TRNf sNE5J5&f9qts?jmlN 'xFh7Խk 7LL`S8kR)[cɷ' wv1Y}qܗ,}r{aB~,~h B횲QS-}!'00ʧ=.'pC2jt.B_+Teg;1Yi4ǁɎ AXL~DrTJV c=;a+'fo¿%TDX+w0## ?j^Méked?t7`׮ pX<ޟ+`?A;k~x&joӖ fA*@'W{ cHi Eti  xԴCYo (K+d\S `+"=x#Y)i~$!+"qs2.RIneBBl7 rf9C`_x/;Fɚx,aøFt2=rÞ~;Kf{ 🫣>:u9/xUN"N dgzy6?Bk|Ƒuo>J)/¬5NKQ"CCFfY*ThIdVJ P,LNIh9[xG9ܦW>֓G D 3qfF#rjfg6 "sZt /}5c9>5j,u[ʳL)֠XlD!|hѿrgҞyIԬo$U1Ⱥ^[0dp2#hw^5b&)K;8VW.LLh8_SD*PBȗ%#:'àkNuQ4|!oE^>ji'G{/{gQWZPSBSm "ɺ S` (yj lWq Z4O&U"!KwsBK:aqPISz8WHjS>E W}c0FO$!1ggڋ3+Rk|`V#=k6N&~bbSgKw4r#GkL|6JsVu`_YN/jz j6Ѡiꡘ525Q'bؙYcAv-Yy:M+~O<K^;0J(CfZ%o8&7Ս>nƴp@w/\sɝm[N擄!Ѕ@"xo{ÐUꎬ>l#A%J,3nRGu>A*ralU¶QwflU] ?g\F"B7ѷ Тa4p2<; `C_,o+lMbQ_H֓3 *o˯3,jqWXLJp*D_["cm:>"I ӪI p<G1~aB"vcP6̔:MR{I|'k& ԇW`z½vmY Dr1j ׉QQw}RIЩ`P#aYbeVh-t6ti>}_dÏ7OV3>N< D,re$7(m .ni@N"2f\&!&/AStj*#aKgMA(3P|sFM9Ue4_Tc56Bf6Lo6c3.bH$yO&"NN:d![<*5T;6hwk Iroއjjhdqle{,u$nuPsMvc. 2V< QIЇÂ%-!e+ub=ia!~DmSrO /5xɬ^FJJ o7@Fm}3炣2$^GI"f=0| "U:Q|)jKkcfMq 2Bjh3\:4UtRz?[f=!ĖGFYGʁN>0))G V Z %%ʝlip3,WC_$OsUbGv Y+(rj_k7=Im>ѫ#dAupiu˲r+h i|O흝#Ɏ@!)m05w]KuJƤsʆg&s$;{?wGw,C/Bv2#㊱6`0G Fp#'_[ ?!ت 9%4Y6VYH;^jN4G?DcJWx]a'c&H 3k{D[iw4pw@T 'qY#8(<ڸKvPrAm-*: W]+ZGx?Ub0Gجd]GB(߲KXdݲmJ`R{K_+G J="M2>eri Y0O): %5pcoEASIƽ9k_T e2aʲ1D=V+}XvcExMh¾P;u+7RTkhvjgW_lj\B`&dms]޴O15PwG8J:siБ!2S>@7 /391MROtXDn${=ѫ.^V,=v*G힍"5ֿ؟b/EX un5yv*Y!wǺKtr'3}!7f3OJ‚˿:HpL ]*O|Z#21 qJu͗ha[C-o0"Zs/=↹%T`hxx%()]~O](Tci0$s K?:j3@Jm7C`Lt76UJjGOEfаS=nmAX Z 4F0SU:f5L27Wcx=gy@v(|M_~u36V;mrK+_tڭlΪafs?|juu4.( eʘ|GhˬI7;ȪNPr72(ݑ˺ XmQW8C=W xj' ,XNJ:23 mA:اW!B߱򒷋%QTۙ]x gEߌ`3c4̪g!(pÑ0|6wt3 dU3zGp4p9Tϧ{DT H96E J6s>Bg6^mwBl%k33MEM+Y}GT> ۗ7>|!g$QV `>ದ;]me܇Y C@ߥeK G)^!"%UzF*Lb\=ho̔әK @V~!4鹪_-*TiCʒdc°J, AXD߹pRax\&מ{2ڒ1_(}O!1DX9o}7w]Mfm'nޱ7Mm͘?T2{˻4 8oxÛ9򷯸%醱kY_7U AY% v hYԲȫAݳgb755ɱ:p*FX*GXaP6QPl<\RӊW9|C(2)ܯr_KxoOb"Y*鸳|3Lv&Mg?Fc[0#X{#%+nKTMownj,CC>j,50bxt#H(_H[1' }(,Hut&^_{r\rQt ;3N')\r*tgj%-̰0s$9&+)j*٨yʿ.`cg=8AH*~rGT\!GUgYQ6dFye)<*Y8 m~2QcevkRz蛠eJ%&Ƈ= ݎ@ռUcY~ sd'ׇ#8G`CXL^ :?o*l|%NYFaRT\^7M^퓳Ve1O Pٚ x!AKzXVl㵒-Ô{jrq2XҼzq#HUPo!c)>qU9 DߥwoV91!s^*Ýf^@LkBR4ያH5??!TJ9`]W %FNgy-O '[Es&eIF.B3` Cڮ*(uİ MEQe@j}OT]^]mjSE?ߺC\p& b[+#~u:L+ G&?~\x5SxǎcLwR!)mu,UQ(/zrkؾJ,ϽP`m[ƙߐ04 N JUnC\0nj BU40,1K4 ;8TWAeS.iB//4Gd8#jM VkeY a% >HRnQ4XS}HauE,U& EBOWj/a([F8ֲ-E$ ./ EO$]:~F ;~*J(Z6Y q;72>JO})dF7Ln3=rWD^W">(G{ U={]IT9T?c.Nu6@LZNwEQ6p埴轅l6bw77f 9E{e]á%AQ6_)\dIq9ڜXƌCd1uqJCͺի7dFSͶk\z!>I9C;HW@EAtJ}msa?Go;UE !y84V>,gxv-Ƨ.`ɉ%wVp/oPGD<N-͇koa\^BByL_j-'B\vpdH֤~9<,A>kwU~J߲:^G /]vG_|G <=ŅzWigIqVA !_(,R2"ؕW 7[ uQ߸PrW4eYNpT|1`;LŠwU$YvEެҽ:><"T.QM=Ry7*_vulY%{b FľEټEXNNafTWly&*B襷oVwwyhY0Ӻx5j~9f@$.."` 诒bpǠ=Ƕlڟ&γP0_ZR.!3x SZ6W}/г ]8;TZe=ɕJ %O&Vkhwdm/$씋Zݜ$GjAsyVh- ÝP#,^bZK 0;9x_Voi85a^~kx"DaXJc&b%uv0yؕsuR邥8A/byЪB-K$h~O>^@ұш9̼a{b.u|D{+7&sgtT/:%k4V%0[T(<&SERk4K- &:G":fV=99JY%r0T؂+ﺺlJ@ ef\^\=,lb]d"O'uu:'[qkP*j x,'z9B#}# 7."@h&:fXc.u4 !肞IŪ(DC^)g 1 5}/GKO 7xxZ1A?m򆹣cw^pu$ưO6*(Kb$&C췮, F.Nss^8&L"cOGL=[ IZ- \Zmo8`*>^p\q^7 E5!>^Q7IIB D'd>C끫Yk6ه3& [`^ Nmas䴦Zq<(%"KTwM^iHk|tes?h% FmCy2.nIjeI'-޷¬s\-*QFDŽ쉗|UIp%K!V/A,?x4TMu<A _c[>&!Yo0sZ?5*юY75L)nOqQY{8xRjLM^b DzomQOH[z7\,k^AnV]FoBIPи&r( e PI-1Z[k Ô)8Us/_1Q/ʙU?HɼcM&wY9ƶ>lOqlq_zR@:sYfp2SY55})Y-N\V,_eK+4{Ŭ,=\B/v'X[W캢@uLLH N*nVI-Y<)g+ uӮ10+@Eی8W%{'=a$wI}Ou3EEXR(Ϳ:7`kwpqs.62: HM/G" *0@8Ow JH^eCYtl*ҿ#;MU9z`w0-V5KnfY=QfyG BVxlR 6_o4Ggk80qL)U .Vp]I,.kRSŖz4JekٷDY"鯷2޿]lhU:ƥa6ԶE_'3[䍻5ʴGy0 ȶX: 9>6 uTuZQŢlQuylY1>B8Nx0pZL(A\dN%""3+s*i>~f7,%f10~~ 6m灘TZiy; t*&O=/\Xx=٦ yI1nI0:iu?JJ<.qz /MB S7y+Y.nER}VD`ŞWESMδɊ"+k/[8d(?'W*:¿C] (pLxYst%qL`KKBfyQʈ[9)i\: PD.WJ.C[_/Z)ӎ/fRG6ұ<͋<rXR-%4I =_C ozM62B;+{|S( m#/9VUP|u~wK 7ĵ*OilPV`nHnVh[2] ]M ey]* `SM%dċkמxz\sdy $Bp+ &Ij0 "M(7^. ^?{G`'뇑S23-2ىL+@ZKD*}&0cE |d`eGwΌU2Olm:qtRZyFMA# OQ:z?cYMW eUZĈ~~*̭?1Ҫ쑣" Qt+$е E0E{KW9۟^ZRz);;%1D\T_d܊S{h&MH>QIUtYW={>0W]socא՜&~4u<F^X`[;kE*3+͟9}fpк$GGȚ;*u1Ipű9 T^B7sr:5>83I&xٴCy@he~VP?XfשzwFǶ ȟfj;MM"sr>0V!2Nf`d1ٔn*-7Ὑ;l4x*J4 &ehƸ_#_Dz,(!R&k a{63$!shX=z1GgG"wnJ +ȍ!6q]r8/NOdE^Yc-:`i%C>7^ ưcA.KG>6)nɚ-L H'DQ`Ăi{3qˀr0Y%%>rX`%HӇns8?1Tͦ&_Ye@U5m1OYp0gةZ8ءnGCy{ڡ4&q-qPZ{ sW}kȍ@T@Yd̂u_W]M!Zg|RҒ(3[ۛu~o!0dN/5l-+olTZu=Ʋ;62tO{?h~Mf/yOVH&$d_-9ǀt)7۔P'/ևt;0lC~h8tdi6Yʏw5젦J1qAwTWږߠLy3N!\KCJ6 %Gmʬ]Ӝ;Ypjv ['gyɝhZ^Z \1\7m ͘h$EũІǹZ8ǘ+HIsĿ]Y#Fri*zEK9d>-{T3 cvyݳ CF*H ( z Xa͚lÐ{y CUn Y]Ƭ}|k}z or̈́3dA&8!\4&uk! lI77#)ERDLJ;u[G[u=fVg&94Q(/\y=m'W_5G(̧R탻˖hUzfpcHh?+l T72bAʄ 'u'0蝏}ʊt`󰻰Btz$Mzk%3OwX>|`*Q^8$:f25rA+k&;e<Ҿ筑3#xD2w(5+7/$զh/ xepθӠz SQ'4ƙ8WgQI $D}0۹@h~7ԧ)f$ؗ"眞Kg T=f7I|e驙3Tʁ >5B3e_< i A|Iׄf?SD0Y`"(~.Цr.J#V]!%TW# C} Dfj-LH1; +ʗmKS(eg^e2M)" d)Xva"̴q~? & Xy1-q|a3~@g +8Cku&ÒA\ 5 v-&jl-t%* @gN0tr7%Q s`DKݩ,MPC^dzlw w_c宪U": Ao,*|VCn45 L*Ԃ";W0/xSh(BfUi>^~Beltw_ El$W9a8YYovm#> \1s3>9J.ӫ: [V*۝{64.TP_޻ L1Rz^Ea½uL&/2=|)I-zA҃:\2#Vlͳv(mOTr ݄*:mhon!=hw{YjLW%s#E9EF\V߱ؤOЀ1GΫBeAQ/R aDx*N~ڴ ZõQYjt41lY/NO?i¼]p#oY#Lw(g{8qLN!fo?;k7o].fYGrOW ~,Z /a`uy{m)7uZ}ƫŃanIۛ?Eʩ!~iS׾#k& QH[bP? bK=2="K*57J:浥|)7 Ā>w/1r, B 6aaq$$*"eE#IEn{9};e:n?+"2r'\ e3_~)h@AQ4-`.uk$+,c7oE8doJ4=~]}nvgziܾVv_{/UO YZ