From 0bdd15c113cc092dbbdd66fe387f021387792b23 Mon Sep 17 00:00:00 2001 From: Patrick Date: Tue, 17 Dec 2024 21:54:26 +0100 Subject: [PATCH] chore: nucnix secureboot --- README.md | 6 +- config/services/netbird.nix | 3 +- config/support/secureboot.nix | 15 ++- flake.lock | 136 +++++++++++------------- flake.nix | 2 +- hosts/nucnix/default.nix | 1 + hosts/nucnix/net.nix | 8 ++ hosts/nucnix/secrets/secrets.nix.age | Bin 876 -> 905 bytes hosts/nucnix/secrets/secureboot.tar.age | Bin 0 -> 31310 bytes secureboot.tar | Bin 0 -> 30720 bytes 10 files changed, 85 insertions(+), 86 deletions(-) create mode 100644 hosts/nucnix/secrets/secureboot.tar.age create mode 100644 secureboot.tar diff --git a/README.md b/README.md index 550653f..49aa4e9 100644 --- a/README.md +++ b/README.md @@ -90,15 +90,13 @@ These are notable external flakes which this config depend upon ### Add secureboot to new systems -1. generate keys with `sbct create-keys` -1. tar the resulting folder using `tar cvf secureboot.tar -C /etc/secureboot .` +1. generate keys with `sbctl create-keys` +1. tar the resulting folder using `tar cvf secureboot.tar -C /var/lib/sbctl .` 1. Copy the tar to local using scp and encrypt it using rage - `rage -e -R ./secrets/recipients.txt secureboot.tar -o /secrets/secureboot.tar.age` 1. safe the encrypted archive to `hosts//secrets/secureboot.tar.age` 1. *DO NOT* forget to delete the unecrypted archives 1. Deploy your system with lanzaboote enabled - - link `/run/secureboot` to `/etc/secureboot` - - This is necesarry since for your this apply the rekeyed keys are not yet available but already needed for signing the boot files 1. ensure the boot files are signed using `sbctl verify` 1. Now reboot the computer into BIOS and enable secureboot, this may include removing any existing old keys diff --git a/config/services/netbird.nix b/config/services/netbird.nix index 502b0c2..ea66105 100644 --- a/config/services/netbird.nix +++ b/config/services/netbird.nix @@ -79,7 +79,8 @@ management = { port = 3000; - dnsDomain = "internal.${config.secrets.secrets.global.domains.web}"; + # DNS server should do the lookup this is not used + dnsDomain = "internal.invalid"; singleAccountModeDomain = "netbird.patrick"; oidcConfigEndpoint = "https://auth.${config.secrets.secrets.global.domains.web}/oauth2/openid/netbird/.well-known/openid-configuration"; settings = { diff --git a/config/support/secureboot.nix b/config/support/secureboot.nix index 085aa7b..612f5de 100644 --- a/config/support/secureboot.nix +++ b/config/support/secureboot.nix @@ -8,15 +8,16 @@ lib.optionalAttrs (!minimal) { environment.systemPackages = [ # For debugging and troubleshooting Secure Boot. - (pkgs.sbctl.override { databasePath = "/run/secureboot"; }) + pkgs.sbctl ]; age.secrets.secureboot.rekeyFile = ../../hosts/${config.node.name}/secrets/secureboot.tar.age; system.activationScripts.securebootuntar = { + # TODO sbctl config file text = '' - rm -r /run/secureboot || true - mkdir -p /run/secureboot - chmod 700 /run/secureboot - ${pkgs.gnutar}/bin/tar xf ${config.age.secrets.secureboot.path} -C /run/secureboot || true + rm -r /var/lib/sbctl || true + mkdir -p /var/lib/sbctl + chmod 700 /var/lib/sbctl + ${pkgs.gnutar}/bin/tar xf ${config.age.secrets.secureboot.path} -C /var/lib/sbctl || true ''; deps = [ "agenix" ]; }; @@ -29,8 +30,6 @@ lib.optionalAttrs (!minimal) { boot.lanzaboote = { enable = true; - # Not usable anyway - #enrollKeys = true; - pkiBundle = "/run/secureboot"; + pkiBundle = "/var/lib/sbctl/"; }; } diff --git a/flake.lock b/flake.lock index f075d9a..112b0b5 100644 --- a/flake.lock +++ b/flake.lock @@ -134,29 +134,14 @@ }, "crane_2": { "inputs": { - "flake-compat": [ - "lanzaboote", - "flake-compat" - ], - "flake-utils": [ - "lanzaboote", - "flake-utils" - ], - "nixpkgs": [ - "lanzaboote", - "nixpkgs" - ], - "rust-overlay": [ - "lanzaboote", - "rust-overlay" - ] + "nixpkgs": "nixpkgs" }, "locked": { - "lastModified": 1681177078, - "narHash": "sha256-ZNIjBDou2GOabcpctiQykEQVkI8BDwk7TyvlWlI4myE=", + "lastModified": 1717535930, + "narHash": "sha256-1hZ/txnbd/RmiBPNUs7i8UQw2N89uAK3UzrGAWdnFfU=", "owner": "ipetkov", "repo": "crane", - "rev": "0c9f468ff00576577d83f5019a66c557ede5acf6", + "rev": "55e7754ec31dac78980c8be45f8a28e80e370946", "type": "github" }, "original": { @@ -553,11 +538,11 @@ "flake-compat_4": { "flake": false, "locked": { - "lastModified": 1673956053, - "narHash": "sha256-4gtG9iQuiKITOjNQQeQIpoIB6b16fm+504Ch3sNKLd8=", + "lastModified": 1696426674, + "narHash": "sha256-kvjfFW7WAETZlt09AgDn1MrtKzP7t90Vf7vypd3OL1U=", "owner": "edolstra", "repo": "flake-compat", - "rev": "35bb57c0c8d8b62bbfd284272c928ceb64ddbde9", + "rev": "0f9255e01c2351cc7d116c072cb317785dd33b33", "type": "github" }, "original": { @@ -707,11 +692,11 @@ ] }, "locked": { - "lastModified": 1680392223, - "narHash": "sha256-n3g7QFr85lDODKt250rkZj2IFS3i4/8HBU2yKHO3tqw=", + "lastModified": 1717285511, + "narHash": "sha256-iKzJcpdXih14qYVcZ9QC9XuZYnPc6T8YImb6dX166kw=", "owner": "hercules-ci", "repo": "flake-parts", - "rev": "dcc36e45d054d7bb554c9cdab69093debd91a0b5", + "rev": "2a55567fcf15b1b1c7ed712a2c6fadaec7412ea8", "type": "github" }, "original": { @@ -786,11 +771,11 @@ "systems": "systems_2" }, "locked": { - "lastModified": 1681202837, - "narHash": "sha256-H+Rh19JDwRtpVPAWp64F+rlEtxUWBAQW28eAi3SRSzg=", + "lastModified": 1731533236, + "narHash": "sha256-l0KFg5HjrsfsO/JpG+r7fRrqm12kzFHyUHqHCVpMMbI=", "owner": "numtide", "repo": "flake-utils", - "rev": "cfacdce06f30d2b68473a46042957675eebb3401", + "rev": "11707dc2f618dd54ca8739b309ec4fc024de578b", "type": "github" }, "original": { @@ -1009,11 +994,11 @@ ] }, "locked": { - "lastModified": 1660459072, - "narHash": "sha256-8DFJjXG8zqoONA1vXtgeKXy68KdJL5UaXR8NtVMUbx8=", + "lastModified": 1709087332, + "narHash": "sha256-HG2cCnktfHsKV0s4XW83gU3F57gaTljL9KNSuG6bnQs=", "owner": "hercules-ci", "repo": "gitignore.nix", - "rev": "a20de23b925fd8264fd7fad6454652e142fd7f73", + "rev": "637db329424fd7e46cf4185293b9cc8c88c95394", "type": "github" }, "original": { @@ -1283,7 +1268,6 @@ "crane": "crane_2", "flake-compat": "flake-compat_4", "flake-parts": "flake-parts_4", - "flake-utils": "flake-utils", "nixpkgs": [ "nixpkgs" ], @@ -1291,16 +1275,15 @@ "rust-overlay": "rust-overlay_2" }, "locked": { - "lastModified": 1682802423, - "narHash": "sha256-Fb5TeRTdvUlo/5Yi2d+FC8a6KoRLk2h1VE0/peMhWPs=", + "lastModified": 1731941836, + "narHash": "sha256-zpmAzrvK8KdssBSwiIwwRxaUJ77oWORbW0XFvgCFpTE=", "owner": "nix-community", "repo": "lanzaboote", - "rev": "64b903ca87d18cef2752c19c098af275c6e51d63", + "rev": "2f48272f34174fd2a5ab3df4d8a46919247be879", "type": "github" }, "original": { "owner": "nix-community", - "ref": "v0.3.0", "repo": "lanzaboote", "type": "github" } @@ -1423,7 +1406,7 @@ "crane": "crane_3", "dream2nix": "dream2nix_2", "mk-naked-shell": "mk-naked-shell_2", - "nixpkgs": "nixpkgs_2", + "nixpkgs": "nixpkgs_3", "parts": "parts_2", "rust-overlay": "rust-overlay_3", "treefmt": "treefmt_2" @@ -1467,7 +1450,7 @@ "inputs": { "flake-parts": "flake-parts_6", "nix-github-actions": "nix-github-actions", - "nixpkgs": "nixpkgs_7", + "nixpkgs": "nixpkgs_8", "treefmt-nix": "treefmt-nix_4" }, "locked": { @@ -1530,7 +1513,7 @@ "inputs": { "devshell": "devshell_4", "flake-utils": "flake-utils_3", - "nixpkgs": "nixpkgs", + "nixpkgs": "nixpkgs_2", "pre-commit-hooks": "pre-commit-hooks_3" }, "locked": { @@ -1648,7 +1631,7 @@ "devshell": "devshell_6", "flake-parts": "flake-parts_5", "nci": "nci_2", - "nixpkgs": "nixpkgs_3", + "nixpkgs": "nixpkgs_4", "pre-commit-hooks": "pre-commit-hooks_5", "treefmt-nix": "treefmt-nix_3" }, @@ -1668,16 +1651,16 @@ }, "nixpkgs": { "locked": { - "lastModified": 1730531603, - "narHash": "sha256-Dqg6si5CqIzm87sp57j5nTaeBbWhHFaVyG7V6L8k3lY=", + "lastModified": 1734126203, + "narHash": "sha256-0XovF7BYP50rTD2v4r55tR5MuBLet7q4xIz6Rgh3BBU=", "owner": "NixOS", "repo": "nixpkgs", - "rev": "7ffd9ae656aec493492b44d0ddfb28e79a1ea25d", + "rev": "71a6392e367b08525ee710a93af2e80083b5b3e2", "type": "github" }, "original": { "owner": "NixOS", - "ref": "nixos-unstable", + "ref": "nixpkgs-unstable", "repo": "nixpkgs", "type": "github" } @@ -1779,16 +1762,16 @@ }, "nixpkgs-stable_3": { "locked": { - "lastModified": 1678872516, - "narHash": "sha256-/E1YwtMtFAu2KUQKV/1+KFuReYPANM2Rzehk84VxVoc=", + "lastModified": 1710695816, + "narHash": "sha256-3Eh7fhEID17pv9ZxrPwCLfqXnYP006RKzSs0JptsN84=", "owner": "NixOS", "repo": "nixpkgs", - "rev": "9b8e5abb18324c7fe9f07cb100c3cd4a29cda8b8", + "rev": "614b4613980a522ba49f0d194531beddbb7220d3", "type": "github" }, "original": { "owner": "NixOS", - "ref": "nixos-22.11", + "ref": "nixos-23.11", "repo": "nixpkgs", "type": "github" } @@ -1865,6 +1848,22 @@ } }, "nixpkgs_2": { + "locked": { + "lastModified": 1730531603, + "narHash": "sha256-Dqg6si5CqIzm87sp57j5nTaeBbWhHFaVyG7V6L8k3lY=", + "owner": "NixOS", + "repo": "nixpkgs", + "rev": "7ffd9ae656aec493492b44d0ddfb28e79a1ea25d", + "type": "github" + }, + "original": { + "owner": "NixOS", + "ref": "nixos-unstable", + "repo": "nixpkgs", + "type": "github" + } + }, + "nixpkgs_3": { "locked": { "lastModified": 1731139594, "narHash": "sha256-IigrKK3vYRpUu+HEjPL/phrfh7Ox881er1UEsZvw9Q4=", @@ -1880,7 +1879,7 @@ "type": "github" } }, - "nixpkgs_3": { + "nixpkgs_4": { "locked": { "lastModified": 1731319897, "narHash": "sha256-PbABj4tnbWFMfBp6OcUK5iGy1QY+/Z96ZcLpooIbuEI=", @@ -1896,7 +1895,7 @@ "type": "github" } }, - "nixpkgs_4": { + "nixpkgs_5": { "locked": { "lastModified": 1730768919, "narHash": "sha256-8AKquNnnSaJRXZxc5YmF/WfmxiHX6MMZZasRP6RRQkE=", @@ -1912,7 +1911,7 @@ "type": "github" } }, - "nixpkgs_5": { + "nixpkgs_6": { "locked": { "lastModified": 1726871744, "narHash": "sha256-V5LpfdHyQkUF7RfOaDPrZDP+oqz88lTJrMT1+stXNwo=", @@ -1928,7 +1927,7 @@ "type": "github" } }, - "nixpkgs_6": { + "nixpkgs_7": { "locked": { "lastModified": 1734119587, "narHash": "sha256-AKU6qqskl0yf2+JdRdD0cfxX4b9x3KKV5RqA6wijmPM=", @@ -1944,7 +1943,7 @@ "type": "github" } }, - "nixpkgs_7": { + "nixpkgs_8": { "locked": { "lastModified": 1732238832, "narHash": "sha256-sQxuJm8rHY20xq6Ah+GwIUkF95tWjGRd1X8xF+Pkk38=", @@ -1960,7 +1959,7 @@ "type": "github" } }, - "nixpkgs_8": { + "nixpkgs_9": { "locked": { "lastModified": 1725194671, "narHash": "sha256-tLGCFEFTB5TaOKkpfw3iYT9dnk4awTP/q4w+ROpMfuw=", @@ -2101,10 +2100,6 @@ "lanzaboote", "flake-compat" ], - "flake-utils": [ - "lanzaboote", - "flake-utils" - ], "gitignore": "gitignore_3", "nixpkgs": [ "lanzaboote", @@ -2113,11 +2108,11 @@ "nixpkgs-stable": "nixpkgs-stable_3" }, "locked": { - "lastModified": 1681413034, - "narHash": "sha256-/t7OjNQcNkeWeSq/CFLYVBfm+IEnkjoSm9iKvArnUUI=", + "lastModified": 1717664902, + "narHash": "sha256-7XfBuLULizXjXfBYy/VV+SpYMHreNRHk9nKMsm1bgb4=", "owner": "cachix", "repo": "pre-commit-hooks.nix", - "rev": "d3de8f69ca88fb6f8b09e5b598be5ac98d28ede5", + "rev": "cc4d466cb1254af050ff7bdf47f6d404a7c646d1", "type": "github" }, "original": { @@ -2209,7 +2204,7 @@ "inputs": { "flake-compat": "flake-compat_8", "gitignore": "gitignore_6", - "nixpkgs": "nixpkgs_4", + "nixpkgs": "nixpkgs_5", "nixpkgs-stable": "nixpkgs-stable_5" }, "locked": { @@ -2352,7 +2347,7 @@ "nixos-hardware": "nixos-hardware", "nixos-nftables-firewall": "nixos-nftables-firewall", "nixp-meta": "nixp-meta", - "nixpkgs": "nixpkgs_6", + "nixpkgs": "nixpkgs_7", "nixpkgs-wayland": "nixpkgs-wayland", "nixvim": "nixvim", "pre-commit-hooks": "pre-commit-hooks_6", @@ -2386,21 +2381,18 @@ }, "rust-overlay_2": { "inputs": { - "flake-utils": [ - "lanzaboote", - "flake-utils" - ], + "flake-utils": "flake-utils", "nixpkgs": [ "lanzaboote", "nixpkgs" ] }, "locked": { - "lastModified": 1682129965, - "narHash": "sha256-1KRPIorEL6pLpJR04FwAqqnt4Tzcm4MqD84yhlD+XSk=", + "lastModified": 1717813066, + "narHash": "sha256-wqbRwq3i7g5EHIui0bIi84mdqZ/It1AXBSLJ5tafD28=", "owner": "oxalica", "repo": "rust-overlay", - "rev": "2c417c0460b788328220120c698630947547ee83", + "rev": "6dc3e45fe4aee36efeed24d64fc68b1f989d5465", "type": "github" }, "original": { @@ -2526,7 +2518,7 @@ "flake-utils": "flake-utils_7", "gnome-shell": "gnome-shell", "home-manager": "home-manager_3", - "nixpkgs": "nixpkgs_8", + "nixpkgs": "nixpkgs_9", "systems": "systems_9", "tinted-foot": "tinted-foot", "tinted-kitty": "tinted-kitty", @@ -2827,7 +2819,7 @@ }, "treefmt-nix_3": { "inputs": { - "nixpkgs": "nixpkgs_5" + "nixpkgs": "nixpkgs_6" }, "locked": { "lastModified": 1730321837, diff --git a/flake.nix b/flake.nix index 20dc481..cae7645 100644 --- a/flake.nix +++ b/flake.nix @@ -85,7 +85,7 @@ }; lanzaboote = { - url = "github:nix-community/lanzaboote/v0.3.0"; + url = "github:nix-community/lanzaboote"; inputs.nixpkgs.follows = "nixpkgs"; }; diff --git a/hosts/nucnix/default.nix b/hosts/nucnix/default.nix index c36938f..2b6efd7 100644 --- a/hosts/nucnix/default.nix +++ b/hosts/nucnix/default.nix @@ -16,6 +16,7 @@ ../../config/support/physical.nix ../../config/support/zfs.nix ../../config/support/server.nix + ../../config/support/secureboot.nix ./net.nix ./fs.nix diff --git a/hosts/nucnix/net.nix b/hosts/nucnix/net.nix index aba7402..625c1f8 100644 --- a/hosts/nucnix/net.nix +++ b/hosts/nucnix/net.nix @@ -23,6 +23,13 @@ }; }; }; + netdevs."40-vlan-fritz" = { + netdevConfig = { + Name = "vlan-fritz"; + Kind = "vlan"; + }; + vlanConfig.Id = 2; + }; netdevs."40-vlan-home" = { netdevConfig = { Name = "vlan-home"; @@ -67,6 +74,7 @@ networks."40-vlans" = { matchConfig.Name = "lan01"; vlan = [ + "vlan-fritz" "vlan-home" "vlan-services" "vlan-devices" diff --git a/hosts/nucnix/secrets/secrets.nix.age b/hosts/nucnix/secrets/secrets.nix.age index be0161d5727010d3d1c789752be7ce96fef801f7..0df3d44222d071e8db41be701d23f7091363ca43 100644 GIT binary patch delta 853 zcmY+<>xey(&X}JQ@@y3uWcSplfKeJ zDn8Kj0m^oBn;Vlma16&D=;?-t&iinFkU58_!^aNfK*T!-PUa~((Qp0*KYl;oIXCu7 zq+CvSG7e4$EGxDUxlVF;lC}p$P}JxiqNrZM3aC&f+6=4%dD#<9OZHK!*s(M}ooB)6 zxYwlx3~jPqh?!KCvVpduZIRkvy6v7(uhOi_c}GfgVJtnUdw4hLYhc-jv>Fo64#Q$9 zOzF{@&cgzbDK-^bH>)I9GH6nTbuMewP$O3!2vOE-X%OzXZf7`ylxQHfFXA6eS!T_aIMRVI340E9t1552_;Av@M=D!H4!=aEjVB7DgoLMJIltDKO4%G#FfoeI$ z=^%?zX;NExDFp7 zyu7A4xunk7adgKen7#z=w44j5b27~7^No%r(qz8xxn1Pi^n&1QKQsQ;{npZscfW>C zr@z?q^o5I;fM#I3(tMJ=u3wiH&@>K;qR;HWqKa|vHj(?ll|XUc5x4iM=rm5@7XQ6-Dl+QZvJuM z*!*(kgtD=F?#k516Q@2|eReIG+p7EX&-^rgbn#8)>VYS#-y#njIWe|*b%7 literal 876 zcmY+<-;3J>0Kjo^(@D+;PjM4{Fd##v>(aDIo8UZ6+O$co&82C6HOS8VYMP`?leA5m z;Dd0ti4QlJOhGshpJd+Hfw+gExPjn=J?vy6P7wCs5b;S6#UI08;KTg|pYK<9?4li* zaTd)`%?80$ifmxvys*PU8(NaU(n8;hEwKw@IgrGJIcO^RU|t%6$9ahVh( z&^S?8)3Qtqu7wi9_Bt>NPZuhscD0gki!mgv!bWH4s3jnq%W+m8@Mud*uyT9VAb9}| z4F;~#A)@gO)lfsN;}s%-*k`F?_n&-_z>Ngse4&|#R<7gKM8iUc4YW+2bS(iUIXJ3W zwgS@}RtNC7VY%ESl7>j`)(2jLnF@6UR+(Oe=vAYaYi_qq7n-Wd?6dy=iU~4s`_eof z)N*9*x7tFJ6-m+Y2)|J%H@av(54;I#I;8?Y3t^M7yaLy^^+IKUmOTz7ON5E8O~+&v znlvfSGMS+z_xybpnvD5b7bMbA3k!uAZl{x)p`Znx9{PqT>q*2Rxy~ciY9`yr%uA;o z03ia1%txs*RQYI^{ zVA=(rZpJEuKM#;lfmS#*a5x>4`^-qg9h_cJB`WY))hLPCg6{#vViA-pnpe&jEVgLq z%}SlH+E$^SCKI<6=p$>y3P^X+8u)1@o51DDt>Q~}-`@D}nZ*wA!8*;qd{Eu`d~!&+ zxSs4BIC$#W^*`$HJFkRS>7{ea58YV$+&CTzM(Sf}iqa)uxl0R``Y2({5x_suo zUmxf{x_jyU>$h)x`rE6U%Wv&Ie3JR`v-ImD@$H)gaPMBSsjt*8Z0_8B1G)dPkGLWF z!|ylYD=Y6F|0UYq`{wH5lh3{P_>1?Py>t5KJI8+d^Dj1gy|IpdTsr*~rR<&^tSb4@ l2d{6PZ-2RRg<9spt?g5V?#((dQA!~J|J*ub}eu+H8vnvR8ebHK_EeOQZYqjcSCG< zZ%Au#ZE` zGfP@pSW<5*SXoPCI4?PKLPv5iK}Sq=G;>i)MQaKzJ|J*ub}eu+H8vnMc5P5}Q6NEV zZ&G1vYfo`WZEiJEaAi!$c=LjR%069v2bEy zKO?kf_qydiR(2QoC+}ao-9iBYDpyR)EBS$7>?(`o6eaARu(O(Q2RNv!J1qA}DxUh! zJ@=8QY*4*i;FhvVUnLLnBi8B;8uLN%;wts4Yb__fmhnnQDy{lM#8pQEGiS&qZ38N9itM$kY5A_2DJL{`55v0rjr1%9`3#ytmyJN*FY(ub!vD`3Jbs94$zy+cW*Ip6Bci$h! zBQ1;^-{q;Z1WhPr+93GxM9&E|&uela1T)-dGPU`v=&bU(y;*M;PziI%->Q(0|MU2c z(L!F`BjR-GZB)a3F6eDh!A#8BjtT0@ruLrbM`L2CZ%UhcI=KfjvXjS%tcF$QzG%r0 zZ^O;P6Xo)-pWz0mq^*x$S|V{_0l2JGy>nzL6wpbUGUufhEm+#RAdwTl3z#pz zl>BL9UQp4j>-aJ(|Ib(^nV56$B`@o}D8Jw=zq^mQlzyfr3=@JFvMx;8F_+)yR19(- zk|U|E`A1=8IZjD{>zX3`T5!g9>xZ>c=-Bk zhm(NlBl!;a_mJ9#Pd>2~3#mUqz?=1H52rg#iI=y^CtHr^$;p=^>v%G80(rixF%iZj z<_;scG=A@>VZZCmH-ifb1c)7qR&~!)NJgo%XRKzbLvH|s=^hr>HhaEz&AKy}bM|ye-#iXzjUWCc2mzlApjp*z%>w=UxYF=e-Az>-oidhGbM%Qj}d_kTk5m z8cVx?v)yUesZFlsfdXLt6#F5Ezyi<}%-T%%0Q{qVUbsHxq3t4CstMd0h(hZ4A}1>q zkP^gaT;h$dxhG>()2cWV)m9G}SZ*2E09cXDm~0k#GAQ($!OpfQHi3t$>K5-S(y2G! zNdui->F*7ovOIbK+1}oQ%Tb+|T%vEwX<=$Fi^gpB#1@zwl|SO%bqCqoFRO{5Z?*vP z`}NiEPU3I-jV)8C1xXxOg*VRBMI5?jNF7!t%tBNosHD1-SuK3X2X@a?2+hNfwc&Z}Rih0Gf7KJO0WD-?ek0y)pJQx&MT8rN!WjyIG ze+p4YP8oKSbi1?b!v*5({zJ@Eyerw$%$sdQc_fa^T)C`k7#Fc{rZm<8>>0yPMorP% zM5sG7QPX7Mf`FsZOfGM&rsP9U|gP7Bvlm z(sTQnQ2|?u>8a*9ldPqnjpvN8;l18NB$ZYL=%%J6X$HXW z>pnS|p-e+TL%y}O6ohl^rby8AKpZ$+;k1etv&88hb>1eLxQW>l^=+^wQDcslHAavK(P&i*QaQm)h zZB{%GN14&R#4Ma^6ArGE$3+jd|66ACy|?|B?DdO>swncwEZj;QNso54(&b^-#t~Ll zA}>pSD%He&w^(Q`u5n!1+D|$B^*=Hs4|A2HhI`Fva*OUmJ%9-ZWm@)XNBuH}<* zz6pti+v@(iD+MXqkN5hHi6yqt3M!E*{V_NG4lyEo`k*{o7onkg7=Gt075cQtrn4Wv z+mSa@Jue2rJub8wF1=rD z7ES|*toWIt)>aHD3yM6-5R(mXNqu1Dvw%88wSU`r(%hf!o!iI(8i zJ=v}PP?vu(f77OQk#?jh+`E`TksZc-{4fD|-(f=Kd^)%JIT0e+YU7VKyU(aJ2CO~I zf~w;q^Z~V_v;RbxyCgiwR&Jl1wU;Xq2jX#hNNgjZJK2zBvvcyOylR;d>h9DOuNw!# z26+D9%(uhX%b@drF9TG#bspe_U8jD+Sho1|XaNvHsHlLbv4^_xxsMNgoJ2r5gnw7= z`3q`Yz(E&6_nS8-^hQ7doh>j+qy}`IPICN}v=*H4gjb-JURZH&|AMpPFCu(T6tBqZ zaCM=#^i!bfb5~{DN#DitEVKl(DpOj0{O^5AXW&fQn*(P&_+x0kouE~kt^D%EcwqJi zfpzluwSiN$2K9ef7xnAq#Rb4EUgDTFK0wfP9Dc8{(~Ylid>pnKM%$Ch-ZN8GSJkzZ zsxnbspJUR!2lgaW43_-omb6;=4Tkr;vZA^;%+YT2dl&)jQ+J%GOb^WKAU1hUBSRn0 zsNCbqVHu=)6umR7aNW%<+oh6_TW$Q_M%t*_ta2ig!Q#WhFdg01ydU`2P;;N3?aKuF zD0r=5s{xY_5J_s0?MDfC1iyLIOOK*dm8CW#8^-^8^t|#GAKh>?(Mav4JI`y%ibU&E zbKMa=SuE5|3UCF#ULU1tDNy=t zXNh6IGz~;98Vk(3?9tg?8Qo_Z}Tqd!|f)yEnuD8uRq)@mdj zHD3gY&SfalgMOi>F5rh3C)tP--DoDcQ&uz$VT29A6L7TCGl~B;vOELeZ6&`Fh_WxQ zRkxpx9GW{`tl1W62cGIX9{)9YYHs5R1}&%vDpZv@GdTb%ph$iLaM*^Ea`fYLjbk2 z>o4%rL{WV-26GTg37V!kf?VOmiX@|Xl;;Q#$)`r6-_m0mCv;|8!Zdr>A1agXT*Fo^ zrF9uYO4^Oc7^e^LZ510pws<7BAzvWV`--2gv0a|V$I)hh@q3Q*-+iH3=W}bz1C-0z ze<+dQO4pdDyA)07YvmNQ_t};|3c8wWz}PL4$ixRv;Js3hs+=kYTbxP)ca;edbav7g z_MEPF`r4M^{H@Z)`P}R@<2+axVi4gJT@q2FgZ@ChD)*Ul$CT|z%#@KkpyT5a3*f4Q z7sskC{KSDgD((AEkV^~SvT(%UO!RziQt#5c5clicDYuKZ-`}4+pqq@wYLm(^=(9a) zm$o?s`_c@PT8>WA!eKn*%bL46M_n)kKU;9Tt*UIXwv0@tZ3I*onJ_|sw-L`JJ(kXB z0hd#TsYZJS<=Fm^yDl_mZrf^1;)+j6=w=WyVw97cH!6c2Zu`?LL}`yg*8Z&3^p&dR zj@bt76a6c}qpfgvg-NR~q;Z9WfYrLWZZKVFNufb`F)z#1GzB=PR^j~hB1tFCb62qet|4j z69zNQjsY+u2H~rHm+-v^Qyb(7mw7Rw_YMu&b(F>gd|cA8(pJQy0+)s98%GKX5ft|) zB^gd$;GeqTfBvQk7%9PT#6|qi)vQ5oBSs?t^;H0hYZ%W_Enq>@196mP0b3$O_E>RzV-(;Hm#_!ex<_7}JWW zA3Cr>@8eclCxj7n){_7w zrm28>juLp+FfNgBy28pm5SvGodW~8)o069luy98-cN>Lle|o>h8fT7<2i8L|te2l7 zkQAygRLsJ7uH?SH_(&w6EG{*x0}D>02CZBlKtC=Lq%v>==oxYAy06ed8PHVlsI0K= z52&2)&k%Hvyt%jCZ^Y~kU&@z2ZX5!9))WU0-E{gpH7!IiK9jK`c_n7-M;>eOXXA(J zb-aRi+DFRArDaewYc=^0q!!ASco~JWNUg6#HKS@vjfQ$s+uFLCRXCX}ypVnUeqdb0 z81Md!sj*2Ocecsef%eG1`X)I7P~O}e(*w=-hXOn25XpjPf3gulIQh|7M7?m_k$4Hn z5L*ghH4t<&NEcw>_A+w9u|mGW1ae}$yrdyRM_V`B4w3_5@fUNj9;r_-k>=|bI-h5g z^daVKcfeZz^WJ&i~y2IGy_mxXPT3DW#>2ypB)5m_OIGS zvU3RBz3jdsdZ2h7Da#`EeqnQ*)xu)V4Kx?Ix;%F;tS46xD!7a5Z|VqNtjEt`Kv2ZhAoM~ zfijb8jHvww=+$?h$Qef7sD64Z@q->{38hxWA7)f0apO(B`sh76KdVo7+8g7|Z(&Z& z{5Mj`?M6x*segiCXpfZ$SGaZcdwv6RI95`1Iq8EjSOfI~d^QAwCG}6ekG_@D7&jR0 z7NO~0`sy;KXsdpoEq~B*4kCOvS)MUn4m*mJfnUTiXq2YP9`dO7FxZO1OJ^6;GWjbP z0r8B~DdMkcTm1jkJ=G8OKhSs4RQkP-Wy~iP9m6*^I{oFVurGrLW4F%?aI$^=Dpi0 z1n(nyMEj@XreOiw22wIGy%laj;NQY#F^y<2&9Rx^CN^8cTURiJNqNcQnG{pB*01{{F$MA)LQsI40GBK3tBjAArPxxl1>l?9|W zE+quRk|e;d8Bp-Y6NDCp^B&?V1f6>kt;G1al@3-1wZ+fs>w;5)%{AeaK!xGHhpLbW zHZAkfxn=g18}k^pAn4CR_r;gU`h315V8}5p489^xk;|3G7=U-Q{7C*lF{#9{JAA2I z)42dx*MhZe)rAxaiI=;>Rx(Iu&{+JyFFZJ+2g}@%BD&G~4<@gzS9eOn52nle&SOj0JVYFf1ik5Z^ zoO^JfJ}^j7SP&cDq*&0`!S;1670i`3d;H?A(U@fL1hP1I^h_v6-GEBHzFO&r?x}xa z0+@c+#NSzyd;2DJ-(Ix&b;LJb$@;@!#z-z5ia$6yp8-{g)kRsA>8r0{On$_)v=*Ba zFXDF+K#ph>tMyUji@hAv*hNMKpR@K)Cc~A$fTEoml`+sC>P3)VmNAR0lK*}oM#3s` z!#V9<*VEw+gl0w8_<0ft)P-weAp(~vv+fEG=$_e5OrSpJtmEu zBPZaf7j2l@{@QBL)_vYwbZ@iq~tbyVNSOGBB}+&k;1{BGfPIC-@Rcq!}_@!;Ah8~ zfHStUESWpl=lf{?9vuWmK}KoEJn4}8X|E`oQm5Z=~Bc=ejReKX@U!0EQ>>lOq^s9U-r$bv{f!(&T}fk@5-e+LnE zRTAR`>q~ly=7PcY_g#XMWz`sI35b70k`-bV&tq9y*J=YYtslD)b~v%%zd39S@7O-^tJipv1UYPXVmk|3e@^(@Q$!WiIPI_!_vtJ&FQ+!Enzx=nB+NCd z-J@sZXFCF|){|bc+OXqtLb^-N0o;$So5F6cTa)BCO;}kn*2vz#2GMW1d=Q8&;^4?0 z8zFkL^kiC@?7vW7@;>W`KpmDNIP1gXA^kESpmsu~Pn-}} zR^@d+=^QoOlUo?{W8g7dlT4_r0USzM`7WGhiMP=Lrj&Z@jZpd47lPlr3tz^HE5d3( z5-_dcSGGS_<(4`YatSND0*O1T0NcMEkAh8n{2z3xq)NK*ks==GIYi_O`fx9?^Ia~{ ztZMha{7M0Vii6uqB)r^@O@S36CIW$CUXOb7zxf^qfE@zauhWWxhNd8!*_OXwS`vKZy*TB|?=e^eqe78)M{ zy@L!4sJ9K5Oa_-dTSspj89b46UArR$D9@qdn9=CP9Twp57<36B6nTRy$B@hQ`s1h3#RP(>UFnEW1m~FO@fTOh#-UV zQ56El?xGyl(;xJJ*wQNibH}l_OzD0&a;#LWh$wr(#cIT(;F zsj)TL{Gvakq+0}jBb(G^dDH5?%#u-X_z9Q?j|0Pq~i7qR$EQO-8HhmmG$;V`vB7dtJ8k%&<(uJxq0 z_yncFe4O(^;dON$;{-4tWEMJoP{YkuEq!<`eYQ;2*Loa?A~#bmnbhrV32}goDmCqUL1!YmmD;>MkK$prHakNB})(umBnfnO9?}g|sV9I9oHjzzem`3tD0tq{QJ$ zUs+`HRLi0zmO{WF?fi}OtpXb+8+7m~!3TP7qNG$Z{qfAdXAbxr2SDH*zP_BClzqNw z&%@m5zpkCe4dUhckrQ)SiA7pe74 zO?ZcEnZ^Sex=Q_Z!}(Kkg$ny(b1yU)W5|HxL|k_n7{S2>Vafbh-mSMU|!5ZmIx z$K>q^dalA|LzQ0vCR$SAh-BXC2f2YLeJ`ok#y9k`!CL3|i?bBp*2~sD^GRlo%JC;R z5?i)=d{M#mFLE*e;3<&Oms55fex+CV&dRTRt+Obry-$nb9leB*l~P#F2Fdp{GDtL5x!M{T zf25T$4j=0E^9xh?Yi`nSxlT6dzj`jTYayN|AI~71nmbq47lUl3ADA~w4?^m9swz0)ZOhB`NgkUL=y z;%uw0A3}@5q1>=kPPdRtXgUmPeu>@zU!os6ihu;)OA!;6UvS4!7kBZd?0yibh~B3V zEfU0kbfk_%xjRprDy2`z)H#8#6!gPlYL$93De^Z1Th-Cw8;sPQ{-MQ7q0=A@SX(Zq~O(7M}=gdCjfb4$t3;F_VAqpfX z4JL<-^J>pp-?652(EirlBlno~9vwb@Lg6QRJ{r(@H;iJn_7xAG62cIsPQglDe(ZR5 zwgoeme%H)f0$qb%Hg(CFzzQqv_RpP_eb*pAlL;*5J;shfw<6hKC1kZfKmQ@yX;%$) z{kDVg_s5tO^JR@@U9rjC-BZ9NV&E31dh^5PkNQLkAsz#`(*Cis_Cc!s)LL*sD=Kl- z7~d577_u^OXi2B)oz;?Fm11nya9g{bFPP0JNz3^rO_0l=rCYn!?3d0vj&slYB0&Us zWBWv;4gL@0z>WlQw}x)rGKgS+3+|DIuC(wPF{;a)=gBnj49))$d1e9j|NiKYSn*&G6lU37UV7#a&`fGl9AE5w_L=_~88_N?hG<|&_ z&rHQJyN}q^w?KjEBl`Gn&c5I&P9{Yw>XgdDZQ~>3A)VVK!O(J4zZm={K0)+D@krC- zGN>$-64``MD>Kgh#+=6Tjq_b*!3%cBZw=gFIQUi1{k2LXejpxH3%^FNLFz7jq_j5?r`2p! zl^KQ+`MsSX4tScv8}OPfaX*Y(`2olHv=HwpGW6!=iHv|D1=eR^%_BL=O3V~wWf~sc zAMHLzn_QIr zoDy;WP)FW%xgQ>c0%Y)1N;&bW0S_kl&l;eQ{|nVwl^#0|!Sn)jT#SvmE69QNOZXxK zDll9dMp)fl+xgyL-IND*!-@^@WspZ7jl9h9lcpxC`D6D58|7jNJMFJOXiaQPP20!4 z1S)QHh)@Hr1OZte_KB)ppS;Qfd_Bb+DphSWUK+RK>J(dg-b^#5^xd+DuDU-ifS3vc z(_WB#p~kT}G2ck*Lf_kurEwLLSg1*mdS__f7x#t94DuoIU*Nxad^_l>h)t5ZpWU$% zNw>~`z^DGpC3(?2vkvLvCery6(jK$ttS8BAK*Rum*qNP}onMbd6O9S|3NXS}hmkwR z=y!vscVD>h6S*!^t^Mi;xVQLm94PZ!!e3UcbuOhVsm5n`c~!=Wynh;jUv%xM9HfKU zeqqHJcE5t{ksuoD1NXLu@pXUl9}NuE<`HE5Sl^`_tDz~WWoqwkACIQ1yH$UK==LRx z{pfyOUunv zqjgl!THIT}&8KK2Q@H!`B6Z=`R0kFit_Y1?q`s*PVWj#OO~+FU4B}_Ps$5ie1jD5! zjgRjFOvAjT@sxvqASu>SY;8hLSLT)8t5kYiSj%Tp?ka3u?cWs9L@f90o(2(yvofH8 zCChIe;WFTCPd>{-h2GQCqB2&D4|W4R3)cWAjQazD**B70R#E2#`sF8gKr)S$L4lH* z?@Sr=z1v;tYHD3X*W*KAuLsoAJq6THfXuZP*m{ib-J^3259uy`Xf7L8qz#Cr(98cI zGjFhCYqCD}0^>;Aj8ToAP!yS^aQJ6G0{djpkwHQEaU6$lgW}AeK`P`~#0=cw%WWPQ z6qa91?9v6=sQzXD?dhu=hkX{zS9voTW0{lb`%DEl;-OQ{2}e{-|E3{a#2Bx7NM)H7 z@Zs9PjO6;BjjS#w-!5C&jl5++o}Jg3MFQ5`(yKJ=#Bo5mIDN3!dcyx1`g_eZYFt8q z7oj%VSRPxQI!MMq347HD9|=Ok#96#&J}TG_8$SV^Bz)>TtR7KgY4ZaL%yjOZYGXKP zc(Vlo&H~>;j4lA@)SDJX_Wk|cF)!-0IqoT~J%wli%hNGN6vm3O8628Gmoe~-L9I^z z77=CUM2ip`9#(^k!GdPb>rC_)OWf6celKQ9AFXw{+Zs{I*I8!s;VcE-j_=s5>n7MQ zkN-%^Sr^X%ssGi+$V5hKyXj4jZzJfCoiWoqZ8(OlV&Oc?upRvf#og2caDIB+0oBh@cT1((^~z5wW&&gQ%^DfTylEf-MmCC)rXnQ9?b%uJSO+g2c`j$?W@|HS zlm_4kNA%o5P5onIL}gRqv`mDOZ14emr)2fYHLdTZteMA6<-Ma4F?^)>ys#S4gv%=O z#kDym^xz_I^BE|wC5Xi5vtwuxg|ocB%$&nX=J0`lH?42BQHW2(zsF+rq|_&O{_ru4 zt$|h)ZlT*wC&BUWHWIGaX=bZ$qeurA$8zo0ZMG9&P$tdCCDF?k=#z@RvPk{|M8j>N zrZ_28#cxB1J)p?1diOPb3JP5zU_Ab~+g{v@t_NVpxKiH=`~;>ed=8AhVRqW8Y}xAK z(&#H&=Acm%k-ef~UqX6_d4--(bQu!OQodLtyblryTAEA+xNgVC%&hAy()-V6XF977 zI&cWgZ^vWG=hjIvE`)#tklGGIX1#Y&McVrXG7XR!tyeVpbB-&%H_MkuXSWL;3AaXA zPo*CrpIXMJb+%$Z)IgtoIYVJMePE*?aQ2lTD%^Tu+MvfI zkUGN<5t1eB>Lum?zL0#3;g3A{n|?kJ?8bMMR5f*i9~8J!#glF{bn;Ia#F)ZV2XcO; z4G!&RS$_ypz+Udc{(mVwURK7s-nSe2q&yvGdD5Fm)>lANYDVdZrxblE+{Xs~PZ1p` zr%U5;aS~r#y9g}fD2XgG0U~&Da7S}`D-h|8UeiN$mRah_E z{3fk;v5&rSK~3>~_}$8HBbrGGtl3Dq;3MOE@?eiM6>%#s*-z5$!iS^Xzn#W6Sa=&z zu%R895KBti!-8d{j~-(Bw3NB4iFL~DsJ}xRyqO?Rd+_*pAK3Hvs6A=@-+mRtHzJ`%II0 zgXfuXE$(0XlfP00upyH;- zHhkb!hV+LOQB5ma zh5~;Wm*oGv;^-r*-_|8&-1H1$3MRW3k_tZO736L#Uv*%=w%r2TB_l{?KzYcvp-lFQ z30v5Tt{gcp<83R|%HQ~%D9`)P^Q@WxpwpuI9Kvg-l!vB;lzL%~lj`gneyA5A>Nm@Q z+a<#;dBYvXk)ybP5iLYQ9w8edeVeEHC6M^319iUUCGQ)ZL~=G1KS4*+j#=o;nWR7e zsCfr%k#38Du47C!;HZ%dcw57(yB>afW~nvGCO-@BGJ06dpQ}62E#v&H%VuWwjr@?coT^Lo-cAm4^c#RI96N51 zUb`H>QVTcm^#*V5Qy&I!4lg9@KJqetwi9aFdo5=09_*#LtP(9fXGhT+z^&ElYoI=; zvG6A>MuSmR?)%zYAUqYa`xatW%=b55^Jobw{A-9{JR?qm4Gqo%#(oFL8b25>ZeNvB zf{#YnmIdKeG^&JF2He%K`-|dF$!De?3topvZw&t#VPn7B7;;$p@klf(Vh$01Rmr+s z+xwWfEt%o%SM2^1g}V&rSPm>21(wUD6)V)6|pdAsgM$6i5j zvXbu}ahvHS&0t0u&u^T+_-x;b7d!jv69~{vE!B9P^9(aM_2xfSu z6SKKGUQL*Jxav4la#HRdz|!(3$IJKD4)oJbvA#~{U5Ipmggq7KmNSIs0-p&{Ag0jN zBmKQnZ$1Yv?MYt1G8_bwLSRko}cJc$66& zDH(rAGZ9dyDfaFGa>HA8R$m-TaVi`c9G$|sHAXe!tD=a|SX_((C$J4R{oDg!LOw4Y zkkWELXdL$*i0fX9!5HAF^5j-sv-%$xH{5~(n1YR?o$44O@Z#SjW3HI(IGnTHA9O!7 z4FKLK8AeY5!74{RzqHuvIzD9B_lS|QjZo`z5_0VQrXmdy`5u+Z=XhAg`xWrQ9jXCd zyR>w^Ow{3Hr;@T^o~z^OXnr=C9enAt6DXVK7R~Wb5!l`Bhrvrl$(Q06RvHY21-&D_Xy zvp1d)MfMe%Y0!XF`xK4N)0C^d*U$3LUS?DeB8E;(+zv`eYKGSwp&(wG15hYyL7F8b z1rDLk1@?{1lvW~Tyo6HFTS>R=M>~K7{<#0twZpHcBpHwqAe32s#bjX>TmkB=L@Lf7 z`{R<)1_k>4qwv*BA(%v#j>mqnJf_-21lJ*QKlHdZQxMK$L9EPm57j{m6W?6X8;uHn z@DPekBsw<M{8k=`qg$gw~PEVO`1pjOu4Gzk_~31moR3UFx>pP5J0S3d+9dr(6}#z;9Vo2_J3bR$PHh z=k|X9QCDSJmo0ib1RARB?+Ftq*g4$s-&o z#y(lYb@KA+dYF+Ce@bRZPrCK?+H};g+vjiL+A^l^tJ^(M!uk__m{%+*h)qGy+SND& zKbS@=;`mM(wq4w~YfR;eYcyi)Q_*Xs3+}XpP8uf2`q2y)>0u=!3_dd5o3y_(KQ*~ouUGvsBV4Xo=RL=Pc1fJ3J z{m2uhIA!Su9mB4Vhx+;{pJ~U9?4#`ZTUFt$rhY8fG139|S`4 z#a7JW)S#V8VPLO#AXr%Cdc+Y?-9IG#eJ@pei}*U~S=)O6zJ4#BTaA^l;=i2_i-;*9 zUdRZWl-n!w?huB8~;-w0RQ*W7g#8vLz)R#{3f6ah6Uo}KKEZP%I zWT&=GOB0LJ56MagX}W;}U0nP!f@nTv*1zl|Z5KL9&$#p%UqfQ8{XiRb)M&dvv(RIY zl*pfz*I$LRMciRD^pDVAt$qvnAYeEYv1I1c{@s_hWGT}+BEvszh_Ob<@e)w^4<3IK z;CZdN{|qLV-}!FUUtO&-wBpxievr+u{+d_itA!+6OO}U&ig-L{@p(L2O(XCun_WcZ zeRz;D@3Q4?X>e#v;pdBArvjJsUnXXH-izoYz;eUoTyeMm=1H%zE-M#J1p`o`#(8j| zr9RQ~V&<-UbfGtXpY!laz5%GDEmB`vTN5I&-v#Jq%{4w2-0f0z@e@Rb=h%?F5^0jT zVteg)a6i>>eajhg?q8g_Tbs^#9}I?)8fH&bV-=|RBO5707{5+nc&tu^m4-?gQxbuq z2(nf!VhplPwvX7ZgK`Ko)v7#N(bz{ulFz-%(CXQYmGTTs{R|Z6zVp9 z^{7foeR&|e&uP58r)xXQ5(6ZS`^=vka$zWM$ZHa5ES2At|A(^F2Q{+Q_N?xB+-$xf z=j-o(m)GQn_{ijvs}o@<8Pb0HE%{B&{meuMVxskv4L$p5CZypSMgf&dGF6DvO8qkG z?QmC?YGTe-u1)Aj{o_CQT%4BMNO|rKdvoYgt3=DRrzo>3%?Isge@Pu1CdNm=N>&q9 z-bv=e-b0-C3}rN9xwHh(6ei};^U%qftqNI9EtB9QTAlmc3o_0$0p7?9(?KHr+4njI z{ebPz=y;uAEclvU4abocTO=p9LNMi0B4TSRLRLxoiO#6N87L!0=qw}3g7>~CG0eRh zE@wz)+;IELxvOy#a1B%oZRw@6d|fI?SG6yj8@}tEO4LuoSpKsx*j%tuXyEhxc63ZzdUHEss`2q2k%s$3T4Nt+Rd(RDJmc_UBAuS20D| zCu*F}v@cJfO^+Jho_Ia-H@UwU`4-tU^D`nbvyQ^2q;%`OE zHH&zS#u*o$c0Tk_FDRBOyNg-|ZL9@-;J8O9vjvKt9W+5GD(B!Y^R#zw?v#GIAX9IN z9Ai0=($)BvK)E|*=YK1{UA8AY`GH|WZRnyD(MtQz)^~8g*$)&ovy$PTM1A#9J2F;S z4QpDt{mx=gnHA=?M|i)zBvQP!x~1s%8Dc}oAsA703LKNdN6TPba`82CzBpXwSqO zVC;Jd$+x{I-nqwB&djGmlg!AJp$;e_d6$t*V`#&qE0lc_ucRwc$tID{kUmwV%_ixZ z_a*Vitf|z%Dih^yhk>tu=n=hK|eF@4-u^O}Lo(zW(h49_mIY zi_vLZR~Ke5Oaz|5lRQa-s38I&(>h90O~yg-#Pviv1Hv!hxeGc%56JMt%r-U6{6iH; zR8<||uRKAyZ1<>Q>oZtFXSCe(D{r^E${Xkd3b4S1s4W1g{ z=lH{vLcVnQC(K1R^I8tJW2#u#%3}E=sQr|O#{~3dWh)5P7#De&`zu&AL9mFVNgU4EVkv3lev(4(z%rHuiOTJQY~0@iMdpN0N;R_i2LIeBE3#OJ zXELyd$ba|%KvdBqCI1h{gj~lE7g>%Q4pwKZUZsRutIHMXGMDOU zf&LoLNU?B;-1x>l0&p*8Ykc7o71UG0~ULEdJ5UepI^{ARc@-Oe^^7jjpEd; zV#`2CbT*GF5ZNsRn|(9XWU1;Ag`XnFbI=PD^5^S7DX! z@ixTm!KQR5XMt|RPdD6U_vp-_7&t)%x7Gvz2$4vt6ykAW)4%q!W$EDZRZviJv1F5B zpd1jV3-HL8u*ES_&CkmXEYcA@9NkS`yBhlo$Whz%$Y8BmQ0lWd?weoGC|t z`XNuJUDiQTK|9C@G1+U^qN+KTuND!H88=)#Z%eA_-Aj@wv|~`@IRDNoz(!w;-x&`! znLXXPK4$Tv%i0g7AcpAD3*;hrq#PU5Nt&q5VkRK-HyxufkoE7eMZ2S%1oi|~85|w^ z47mm8S5-&2>KN1pMN1OiELg8Xgi>-K=+|7$_<&~p&bk@|@1EKr8B`+M5z89xiE*H> z&5>x*>jL&KKw6m|pH3UXYN8YETkaiY5v>IRRMUR;O{nzn&BWm|o?pV(&R zn~m4e5=JqF^@D%=>+oIPA&e8RgK4H1L4PBG8lx)}?_6pwoT!9GB6b(fZ2&ixY89x; zKjQOg0*&HoOIZ%L<=VxVSxO;#A{A0&|y^-PbnoCMGypeof# zYbZ#A7KuGg2u=mHcbJ*HpSc%(Ff!+H0)NjcEVtF*Xl1XwpfoB~Zng+*yt*Rd>u0se zhy45f+#Klc{wn36&c?T*(Ba|p2k~i8*=K9lO-L7Km`$%3yt1cPTEGH~zYX@wP)oiH zS9ej~Y9}yiuOsiOl+$ZygE8l@ib?rqcnby=bnH>e-+(W=dA;M`bOR|8FJ$L$4HD-Y zgyg~L#HqvTLA+Un@`t=@mPGfor*JZ7A8j{Cpa57n7f?)xZ>CZUKvBNwJT zRECEX4cdNlx~n%2bGQU@Ws;jh0reGpKH0M!?|#wMRmEsCx66%Hwf@HJyk{LoO_j zdAOn%g(%C5^9d;V&Yvut|5Vk@34}^gUg#^$HiFi}+|wP`%?03iqx8_mtwoIFhGsd( zh+AcW;or&%K7_PfV{i}5Z=0Ovm6&6YvDvNH)n(8jyA(KFFt_ZZk5?Axa41S0+B@ieZf|LWM-Y&Ava@6jrfHC8)1c8ET{j z;D%0+0(u;DFfmw1sU)HOm;D+nYHY-YeDjKJNK9w6lun+>6^MzQO1VzeDh~u+*iIE7 z45o)k%A)qec&=V;fnVKtBB_t}ILY&ijhDJ1di*^TC?g75;D}t) zLO+KWIcA^~U>)b6T+&ebl-hk}24zB>h%J_py}O_h4rRk_)D=`BcjCz5YYM>}vvrBQ zUN{Mi28z!s)+d}CYLfwk}>|(mDCj$4V zG87e1T_jP*X-q$jQn}cBlI-8S4lS6ZOeN1Y`E`1}O}|w!qs$wsC=zIP{7|T=1vV=J zdno9wgBQ$}UPy)9Cn+&}_f0WD$02OopLhR?w|w)L#%H>+h#EmATVQRw`wdULjs{H+ zNE+6`F(n`+Ej1IthEtNhL>2$w?T@k*?y;Q4oc1x^DILCr^0*`#Uu7LlQQ4G1pH#+@ z)$+F5_4w=+7WfyKp{J|jftzSTv*HVK=|B$xRuGvuD{k+UCX)U}JNM;({EK4r2Sxr&1r{)!;c=Dg` z=NgBY#O)&~L1Uj(DV?a_E0iTHH3^$d^zslR@0p!+?u_*TrpdSbdm5;<6l*ALH!pt3 zoHg7=9$49`hIncl1)9r1Cs&$spO9D-u9Nw6E290!i!<)2$QFphL&>D*2}?q!E$`?n z36}SKyMzY4VjgGl6g;hYiB|(zT%!S5&tqDWYqg}D@ET1k=N?K#IdW^+Erue?{ze!$ zX(R(R-P-=-QnZO&GZYBuiE*tlLG{?7wzpC085}TW!&3V?p%As$o5PpSE9D%48L{Cc zo!h}a6+ao6#!GB{pweWtqx7lriOlYtiW?Mng5`ox)f)^}*WOO2G-!i6#>>Vw=8^-A zpGm=ed`}5aWiooqxm__l$SSn5!RWbFJM-ckG~%;!`U&qI+!U?@G6O=#GnlBL{1Y`RWH-i4;G{31&A)eZ`n zZQs0pP}WtwmeL=5r?fs$;35KyLIpD(Z+lPFGG9|K9Uw@e23B7!C{dXdiaI@5b+!&6 zQB1$;f|^ujC^*2S?)ts@JU@{#bRKr)bLuLLHBJQwP%jfs^EQR6>Cyrg3^a^|mmKq2@A&(A|iri0`nHUD?OV#kqT5UHg^fsZW=YDrw~@ zyuIpW8yPp*nLk&tBmXGy?Qod7K#QNm0e}(yIZ92#2Gl~{5${5$rl$uQUKd#l15W9l zB0|-hycpvCr7zp__>yt@6EXiw23XU3IpnPlf>>3CcGCdbkr!7v_&7Eleaj`*kdPOc zFi|6q;oTcYsJntW9wP&lhLib?3>xMalQ_z}C5fV)aq_Aw+5}uh-k;iO19)7vTE9ro zh<}6{#B(ra?gYO(4=JFABn+|b3%h*gy2KS z6)act=;0%f{XnrX(~yPHu(++(eP|{9kqO7VfEXXn-eHDG>iNnXstj+7&@Z#=de&i_ zG|F5#M-D71=7T|}e>p)y(Yg=JI8Vs2)hXiAwIig2EDVj8)Pxvs&` z@_&Dc!?ZvnM5-l8RB!v~#xeSwGfBjxNZYT-wb*iZ{f)|GL1=g9w6{X&MvoQ(;-l0n%*l|Dily{S~o!9!r#1*z6b- zPZs`|a(gl1?Xf)p zq1inQIgq-8pk2B1CWMdVJB}$zB(ptDYE+WRu z9ZrC>*kG44ryADXD!yc~cZv~khzuF+O!&z>qK=lJ%p_16gwo1GY$Dh z<;G)mSGl#v+jZ@hALJv8hOiB3N$4y07^8!?g$5e!JhB~WT10?tAIF&{TA<~wcR~hg z#6^1L{2~aY{>IuP8n6nWgr8d%xM96(>y#tSA;n;6QgFPj)R3~^CP*M~uZJ%t!n=iv zzvUjQQ>aPar6h_0!dm|6V@c=2>>OM^Nh_vt;WP1uD+`&R2VBSV{JxAX%!nJ1RdkY<;!V~ zvpmn&Hv2*Bk*5#NYPk;oJaz{X^!5_&%7w1Dta;sP+}qTm=z236Z$8PBQOn~wKv5hK zDCl9YGx4NEHeeqtPoH20Cut8h{|wUj{h)P_iYl9e?fc2AWZ0$>9O&l@i~P8Sf?!E` zw}dEFKdX4cSVvVQ;jAOPG4OCRzfKkv`)pAW48d;9u5}WeV~+3}>#-w2$8B$_!(DEL z0YS3qFEGGylDDT+r{RY^&MdcyctB?tm7s4l*Fk=$GU)p$p;qgVHqU`Ecf``>^XtA znXuunDxzJPW6kV{G~C;r1o)s{t5y<5+|mataF}z&FBZhoKY4x1xbD&qY02W&MKOhU z1dzXXFOmDU+0Q#CyJJ@719nHMChpT2hLP=Z)%MkBxW1)Flcc3mai?_@O7VpUMqH&?UT`FOCT z(zcex)N#o?Pq)%!rJ!fr#TUhrsok*e-`y-KkC}jQ1_1u%tz1pde3ckpv?fWy@4LW- ze1B<(T370{+GN4?+k((|oAgBsMiJx3x5Egri3xS~KO)=|HMUE$8atYF;^{1DiK~)o zi`-AN-k4>DWnPt=QUryNfxiMcp}5d(=2My3Ft+Orp{7Zx489s8?U+FbBHPjzgIm|^ zdJv3w$HY`}>bgJ*4KpGGIB_NTa%*z)K+4lc1{4@oJDP?;;KA4bK2utQJsXPi8=*$G5(fU77Pt8UgtRNsW$NrslFr5qy@D}7~=t<;+R#kL_$5?-S2hFUfX1E(+&T+T&NfNr( z`zWYLf@^x#t27|`8YamamLt_Ic?|)B&?AJoFGG*p-RDxVE^~R)A)pT&kw)VGPo#Pa z?^jw9&Z@!UE^DX2eH>c8F;Ga`gZwMYt~QrzBw2pd7NAr(G{cipQw%j2-N~XmPbQ{1 zZr|dZT`#i=AJy47s!~i7_Uw11=%7U1+-ne9tcG4LjA;TrS8-x-jPxXyxZr zn{Mcx^>2K@1^sd2?O!&YU<^yKWewkBAl5P~G-T@b*c<0#%0}4BIpknott5i$rA6-x z#EwNXvl@!WP0WvJP)~TkL~wC*SY%u{Edu)pZzRYLe+kvy*m+KC9AUJi@hltjot37h zt@-oay`_YZ!Yo(~1&Z0#^zQ$L00s45%05~^f!Sq$>RU{YB*MkC07x`8|KwloqUm-( zi%R~jcv*LguSCvL$Oqoe%dFi(Mg%KoNIhXGjToVgL0%&7$VFA`>69|~zsmKdxRY;; z#ZiOrhfBIT5L0;}8D#J^>{(ybnEFQ;<1bbrwe9dwdb@zGyj0vt=OuK+=!hxfOE7k# zfR+6(R``urZOETl-c++YLQ=~sVTswK>Z5zAG0wZ6^dxmUdK}7yyzB+vrc6KdZ|9At zwTvZ@rX*rTIk=HC-Wua*g;v`cB317RwAb@1p2GZIsMAPoOY^xZ9z}uIVRJ!2n@Kq5$EsUcS!n^os zo;`(}H*-k<$mHB+;0OG}ltk3vgkEyB_ST1^W7Uq^St$!n~ac z7Ceu~vVLmBa}3%pI6#_R^Q@M+%JwCG`d|C-k7t*P#kuLqB@P)TM=BY?g2Bv?ktA(b z_Ah)Q`KBLcQ|6SW6KDjlE5shBoT5KtE}G(4sp8@=KL;kQC5W)!B1lnJJ>Dizx%IUq zS^(KQ7AzrZ688eA@&9gC)Z{HmJ)t@>AgX0icGow@isWT0CZ$9AsWE+`eiU*AF06fT~NRCHA+Dt|?f?9`#9j z@RyG|MI9YGXFhWG7ccWk*&f%UvYQ3ObBgNU5fRB0nM7^ZL@y7wRfWwB%vYr>G8KtMt%T+g#Q6-5&i z4{TrYMAK;zKJnhZk*wGyNlwzb%ZqNw$5x@UQgdcOY!Tg`&ikb5vejSW6j8x zg;*b!+gYj@KaCpE?i@t^l6mUsEr+NV&j|?6shr24R^r!4>fV8jP!See)GFb;RQe&1|=DQNW3xho7ZMNQAqI+&P92j2Y ze|YtZt9;VZdwI;8+E#fiQvUfHgaq_s;j5|yOseTK+@+qnUGD!@&-YN+k?c*gRLdn8i(pkSHteR_ z9DAt`jku#%M^fq0HLg9BpD#9i77Zl92l0EhNsn1|{wrt8HDeXL?kB!#n#LA^ppn}^ zBqxJB%R)T}buQVPjr28d=|Kf-!q#*o^3(PVZP#GHstHaIf|G3;AH6fA|jtMFBv zzq+KW!K(X*kY=aE*2P7lso8HFtY;{!_B{e@Y%r{Css&p9(yy;;8VUO`VlULhd|;XV z&D)iq0X=cx_5tACu$jo7UjD~w=v$gPl5@NA>rs4J~u5Ks7iDc8;BNZ#T%VPMEL z65ABQuJ%y_$sA*YkPY!xB<32R8WrQyLNA|47cxZmV~>widpIK9nKU>|;d*m}XrMsp zDrpME!@af3se*3r37>;+B-TCU^pEb}sDSSts0x*pKw(vxqVs7ABw(zCy z>{RAqtW&@Zd<8Iyx^FR?3v4Enn_$Yh0L08SY+6jj7&$4!*=)l_y$JwwtSwETGOJ?# zG$|^m@+dddS_ZWUZ)g3`Gn`0YuHx-(_bIH-QETuHm0+6EHgPbe@6$A?_gN>q};B{K)jMhMnA0Y^?pMd#u<9W}k5 zpa;WDuf)_px-M)4t-!-pBnVF6Kd)!gUW#fRzamapl782_$^iA5>I0?E2sIzIzL9Yw39(h zc3qm6$KuewV>Z&@VGBUS+46x0Qbl{4uod`mPop?7Us}LP)JIRho+1mwxq~acr!TZr zi85sqo&c9)A0N$Co7~yP(GKW77h!1G7ooHK+AdL&AF?<=vFzuUh(Uul2=w!R z$_$0JLDRVJwv(-uxtTh^&K;ju%$JoImD4hfMwP=X<#@vqf4sdbx-R%oHBmVipkzI( zy|w~Efp*m4%_Y=9Q{wZ=J5|vDmL~`;L|J0J8^^C1W*D3E1X~8ADRcWgDJMn?xoe&A z;sSX3@4#*ZTpXDGh%I#NiYDrV2}r!*S4Z0 zpvbhXn?->y&%y6+4zHiuU4KO}YF>T9Ol1abyDjr}4m%e8c9ELzxm*$$@~^Tn*nS>6 zM|KIB5?wERQ-$&`TT@FSxEDl*-3Ps%yH(xEgr^0whA#|D(G4z|kmpgn z*-3+t@*k*LP=~?{RbL|qw9&nL__dbBm`R5k*FPn+p{ADkm|G-g9rnPhCzIDv>Zq7@ ztcaY&`jFX2DFTPKE#VJZ4r|LOZW>(9yHjlIwQX5e){q(mwH=*XY^reIV_-h1pe!(D zn~d}JCwHGmh7WsIKqJ9vQj{}`;@X@m%{(aJr)ujGveZ*h0jgEJV5~qvWUThy;K&tT zzCvy9MSsJV8D<`{(%{j;eB~jaCKso_8{Y>PyClAP*v!cSI;1B=(B-E*T`wJC0!Ptc zK!igx5)B68rb^wf2!BN;{K;VHIgA1^nlL#&R`GW}zyKItJ{uhPQ93s`@>-CIRZDv! z)4{y{vSlk|Y?AS=7tl2f+e-^LEFC;`p66d_RMcj>I*PWKQ+C@aJ?jANbQGv3O7KMk z>V(!+j3Gep!w-vetEg?e;MbM`wss&bX;^gMwKOXPeu1n@K%r%n>EE}pU&YoZ+!_!S zS3ASMN?YPuD^uw@#2mNmFMF4wle!xFj*`KfGWME=cai+1Ay3)>wbkAX#%zM)tOH&) zv%K4kO7@%8J5+H7@NXCry_LxYf3A46EC$u~59-YC^V^#qSBDUWNA08w+sd{v81Z@! z9q67F3Q@DtJ~s<)6_&hJ1)aaS z@?92lh+eH0Td$2DK7u_a(98AE^JiI*@ruHHiOIQO2S13?JT-8&Bq}6~eB=HaUAm%m zd%T@#?<)I@6l7AUg|3%da8*s_pYKSGiH+ps;`{J)S)BgX|tg2$V~?;^*A`y?5X?8VVl0O)LPZjsS`?Ugh%00i1(GocTl-uiyP9!qPMV}Tx6tF5~w#>2{Q!{*|?K9n0aH*|E zxvt&W^(8UHK)Wj@vXcbM)FesNxH!y|nj878R-vHo@kUALy}mO+V|CA{M6PwHZQm&t znSix2;oi5DddexN1tN%0Ml#P~HY69ilssnaOo*C(aW6r!tK+jqsQs*_DwXxQ6B>ZNXyRo3rncSSA=W@Cen)ezBadP;y{d`&>1kto2FXUTq)EM6 zWtYmB_x(i8J!(&hR_l-wm)sKGJySJjkJ0{)L&4r_o$b80a=QOv?H-OohHOjoMISLV z4D{cx0XVj7AmuH@gnDTOcEze&(-d5MV`*vgaKZZg%GkU>Mi@{=HR#RJkWA|SN=}-< zr3|gsbR{~3g;l~~slPOrMcV%bDy0KK1)^7KOF*dODVLey_6B%4Q z=|uDdP6;!$-b40h1>Z!%vLO45U;N9s-#z#(gSj98y&q7hsm`clFN8W0XOV&dAnmC8 zZEL*|r9wL!A56m(%QOYiLw99B=gK>=xSpMYl22X;9Xes$@H`Lk^34~oZA z&WTs`;o%%0193L>%aWk9mV`J5Sa67+OB2Vo!M_1J8G9 zZLZySFXp6SPH{=Gy=ViEZZ&Y_#-Pl!MMh)8sqOgO=2b6?0L&l_BKky1S_L)^CB2aW z?mcmlsd3n2L0EQIm{MMgP76hD5=7w2IQ1ec@Gy0-ZbxV`u>JsaOD<|D!boNPH%1Vs z>Efb4s$%K#RIFaxZ%qoxg|@NHE;;^XPqd-!D)27Mj#;mkUAkx_l(&c zHoCy&HG0v7+fo2J**yi5y1St}W^mN#jByOW8_ca^ULGC49-DS3-xkHiBi9FgCPm%A z`Ga`8MZP3gL~SnLIPC1yTXP-{8ep8G=ivM#3Yhe5A@tP1r7 zCnS%FtJadXmOw;yGkYcQq)z8;9d4-^3Mm3Ty~gMG--~Y!p&Rzyc;KLOpw}8N>!c^VRuIrL2y=yNvxWr0he99Vhn*t}u>EZ;(q`b?$6qI!U8<+_k3l8g{ir}+ zQ_apszZ0C#JEKs5Oi1(?Rv|NjK63r~QUP?Y?Px=cZ`~b%*xNy+GvOA<_^1?^8dG_a zk04%;I||Ip`!B2&wTvYb#_h|~y0^HC*0wTFR)A2xxTYB;ZRl->Oi`2}BNZupC2UWm zM7MDo!ezmD-&Jpls=tzAPuDPb3{Fv9k-tehi0d9TzGbpAm)m#S*v0gQ6n(FC44DAh z<<;!|EZgt$Ri@bfZ`!b*NmtO6={~>Qcz2JXEUgy!hww!rGr0OxW@Ef0rUaJ-wpZ#n zY~^|MgKABBI$qvSjbOkesVYt~Gr5b0sBX&Q&8|*yNUoa>3v4t&RzKgfVccU6IV-wv zM<$HF5jV8MKPwJ3qk3~YK3q^w8B9lMGcKcnE!a^9!Lc)#YHz%{8Iy9c#D+EHLpZl3 z6rekTU*ZuQHGCCXj7=l<+|U3H zM75B?uDRK} ztSJmx=uk*vL5Ek$9e_|2Z@LP=ka6DWuUPAo2lYSm{AiVWNj$Pn_Lid{$2C0nTJ}=%MKeCj8QUOBm03=8bgBn!W+(6B!lrO+w9xpB0cg zx^l8J$UhD2&NOYg6IAmjO1BPyGY$muM7Hf~fR}DC#0kH@#CPBEQL2EW&JYb~`=j;~ zfhrx3L5X$Oen(|-WTTDN?`p+6Gt9)WX$WL{ir1(3y=3S_L7)iQiIqRZ4KwFm3BkxDdp`4(Cq;*Re$P6 znM!6QTWR^Vf`Da4@qnKj4mT@QuaSw*Q3snn~As5KU?~zuDvT`2m(=1AkTzY%$?qCvI%*^WBV3o74+6t^0gho8+ z?)I2w$$54%q`Ytm7u+bEF1bLGkLpofXjZ}$ZaqXw;T3C8m6-ZdRtUpwW^%*!db&Q0 z4G4n=D#r}L@utZ2g?hEZiGC0ZX070aVyDm*>9=kX;v$A0imNVL(x!*d^=iXw z=PBkOtrZs-=zEdg+|pzvPD|}P&^5(7m!jU7qAmzjD)4%KTtlBmhbMoW7ODWilVGQ1 z#$ewuYHG|aOd%7-{-qClHmtt7ax_fe%@knbE>7mG9uzC8n>a#msd7vt2HQSNSPS&= znSP#LN*Np%*&u?%aF@wn0cZ&#r2c)8`}EQ2_-6M&7=Cq%#l%R7WkD-ggXw)K@h`Qw zI7tfsS4BKPsGsSj81WLY-8y+2ImZv2@AEazr@+Sam&LOq-S_4RF_BAmAHKv9~ z*xl?Y#zE&!2x5WTT2pZ%4NIcx2mjNK7fwjTQMj9NqJQ_}MQH#FNO%Zhcjorh)`ZZM z;m|Cyrk7&JmnUx`@HJ3*fc7Dmw(+lxE_#@pkGUSySl~{YfogcO-~$*p_zP&0^p#wOY<9zA7F0eOTQ9uOne z#ZU7ZXej0?2K-?&UCta!z65Cj^?UWS4)5D^v#XvOV*W!kF@$%aVs2ptA0wtpKZSBE zaR1$~exgwyi}C!}+KR#H%!9%qy2CORH?RZZHM}Gv&z9WZR~+fH**c0Fs#ZcJDe;=q z-wD^sL+6;48U2hDSA(M4`OVd$W^RDTHB-QUHbibkO9~@wmW6hSjv)8f=nQ_qa4xVE zoNO`FeSJ>YpGS?&%&OC+s4I_Oc%1Ng_eQO+&{*9;E6V$3Xy5e!Wq^)SKzd;u5xcj5P(<=kQQ+z^sB4sQmJLRj#Ey?d%af?s z%A`f7iAD|{;~6c1%j+NZswiOe@{oJSZb&nl{ekvY0SFk6rUSTATzX5^z!xa*#eaBm%lCiGuv`5osEM?RX4`#F~|qFQGB{E% z@=}jQdb!~^+>-CP^fL?Dzp<1{9-jGfMjx7eYPsVkX)O_}Ww?h20UXp)BW~Ew_kjT`V$qI6XfAI_~@FY(M?`C7B{XAA> zK-LsDBp(gTnN6@q+Xm4S-&r|rZIXCVKXjs>W&T38#YSJVX)lE>{+)*VECdjBpK;bO zAb}01a=;b__aMubuotsDV4N#XWVM|!<1J_%Lt`G;FT!aY$y7EA}DF%50r;6`gWy?3rhH=qT2rtrsC9Bftq-|+Q=Ss?mq6S3=QqUA9@@zc4C z$^m})StG`TAbf|Kp zWgK_~QL%71e+I*^lz$5oK+6k`ityw7xpYgx%Fuiv3 z$A`ej>x*WeOs==v|JUn6c+04BLsP3^>s@PHiUluKZ!qIwubCblnZS- z=s?E)63X(*kI*+sc@e-b>A%MO0h3mg&Slg<2sy7QSqCX-(kJ+B)Fc#T>~NIOUAOgj zytodLK!kH~WhgyAbS%bI$ucouY*xIelC64>1RZ3>CONPr?4Ib)Gn?cjdAJM%~61MPa+G>n&?B_Ij8H4H}f%Ddm&hB7vru!&?HevKmk z3|{!B^N0Cqgx_OA!GLA^UeJsCZe9#9=qqtjs3-Y%h2t5@T!N}xzcu*kKT5>rbq1;^+9J+6+@B5VN6*`N` zG2#RCo`J`arAa90TOecH(;BiwR#Uv2U1&?SgOLYXB@%M>O!&>)`{P+9n zR1BWd?aqVB$TW}9FssHv9#eILaS$&26oAiyk!P<^s(otuPY1~I@OQyHP1hl*ns?AO z6i&kY5~0;6E%-8Gg#06F zLB2XHnq>qoI~+}IVj+1GKBfiz93*c|%Tt%FS2hDkLJd2~WoKE<+XiR~BI_HZ&kmBU z&g$fzvIi-Qu~;apxFa1@i@OZAFc4$k29YONSSKFllfg*ANj8yv*w6_J*=I@(PKRgp zTKoQDc8{ZIUbaBijR08o$EYnDlTeub--JiTWH-n+(YW~erho|bO4kblW#T7AYs5Y# zMbPGXr}5!QelH8c;)q0g%5V$J(#>b{9F7Im$4i{rf95S^G(dBVYJNB=$ZJ&`)6sek z)&;PpMnI3uzKDG6_SHpw!*3lZLUAh_SEVTi))C~$f;nE+JVD&9ffFubVt7>ZbtX^^ zK>2U4kNrW3Bo5G@^S4#w+|iRBkeRC!qcT_|{xLBfmJQT(N58OB-aDC{#eK466Nf1) zdN#X%3D{!j_>z`A42mw;^8ad`>y*Se*2!lhDGC}&^)CW}bt!<-Bd`~bk>W8Has_1s zHSdYu0TUpB7c*T*d?9*hWKVq^Z>ZJtipvvEmY4KQy<2;XObE;0%36+e_BlXXB)ijQ zR*^vq{N$kwL>!>$&T$Vn7?80q*(O!<$aS%QAsl4_i*Bfm(|ZPvF~f_T)Hul{c&3Ys zX-MQ9172gNRR^NHZo{3`x9O(qZJ})tXn?K9rkXD%d}~}2^mF+)kQV!M&g%-FG~*Hr z$kNj3;T~O+mx$!AF%1f^_WFS z(gGaiy?o8-4>K$k>>j;h~aI0)GSVVq)x zQ>&#L1t6h(JS0TMH>!En89p43@AuqHpGEjw&?nn=onEeEYoy~OHe{7OZbc1k{If2Y zG1s9)R^WNnnPgAKARG%kZ%h_e$v4V>$o;ZkrM_-o#Z)S|8|a0x+v9M`HqWZ^1IUYH9vAC%$0wRsocd4Dg&gMf zrrF^9S1#kVp5@$p0~qcN0V^qIFg8a0wGQA@4A)g^jVU?esvtNoTw5^lLF*8iDdJuf zhOW`=cvpMp23BAh3w2I}>P4US2Y&Q_nzBfl-qhS;z}cM?dUd+C>nK>M7%xvS3FY)E z4azc{2zysn&F69xV0x7)=NVrK|JxekK*E#+Q`}UVJPuk&`thFHdekQD;4jBb{6hL7 zrF&-L&{k)C(iQQ{B!{+0^y=r_=Aof$HxxZ?IAThEQX z8))H)q}@3it9t))UWsBW^Cs*lGB7odZL7~n2oRurpE`srYZDZXX6WsQ2ts)#Cyxo6 zn5)8{N1|)3>}di-WVpE{5LeDx0T+Isa>>rhj%1?m_1yW44ZaU`0XKadmHkWCB~yy` z^!p(MWK4qaV6^b~Oc?^2h}?C|tS#TPK3n=0D{+=7WpaC%#PziI8nX}}cfTJ(q!Y*X zV7??0@JY)Lze1HjHku_8f@m5UMv{+r?}EW$LHi&R%@_;00eQid>`|7i1cI;JCPC3O zKwho#jI7)GTkgf%btB31f3aIi&uY_T>_lC=qDqJ?@se36LQ|x)6OsO)c%{T&yc)&y zoAsxKx_%D>QQkW#YByI=h>>(F`d2n2(d(=da>^MFQUzSY;`C7RDQR(nReWvT8(2eu zgN-Iew~SZ6>I{5-U8Uxu-~DhsF!;c{*4X5k8G&Y>>0Pe#&%9i66{&j5ZW2zl9m_fb zP%EKT<(B$ENtCA6W&pRe4~M*3X;3j4ag|Kpc_Qa)iyS|I)I~QVB+!s$P104@Vq$Ek zRVhK3JovLE9e~e|_3wc!1jqL?vo59ZC&xvNljZB|U8Q;5^2w VKFw|Od z1rFe5pV(%5oBap$r$77y-yez~{`AxD`}1Fa|9lL=DGbI40)eUfJVhbopZ<;b!{6+F z!1`U{`QQHSPxCM=f9rXF@BH8T+y9Ht{Rbp^GXKZE;7<-Fas0pf{n!7)@O|zV|Dzak zj}rvONa9cb2LG|I_2;|)KkokmEebqG(0{)j6#qL;7s^`FG4dw)P+lDg;rkM;kL9}~a$Ulr6pZVdc4{EuQN zdHWx^vA_@i|MA}c)1Q9h|9cGl$C!Wq^-ulD|M>55->>^W_S0tnKllHi{g2`|4EVAC z|La}xyF32-PajqgW#ivC!FJ`R%rUO;^HD&TW#Qp+9J8P$v&$?~$~L2U>Pw>2=6q|C z$Lg>4DxPJz^H!*+LnK#QYA}|du@*5Z$ffpN_rUzdWY%;UT)rn=K6=V42VretL?- zK6B9+!hq-_ht;BY`#&#Y8U25C%?^~MTBq{*P)(L$V>NPicGmVKC&-5q1UVM7Suy0J~_Gt@cbFhVV zUIaudN1sJ{A2@LS&;>CAF8SM2(W#@#z~QmvmYjQUkB@HYtr8~J{dELLba@n4RSmpn zJCz~{lMs!eYfj*PWMFfV=W9mXJ%7-e@HmJ!sAXq_k{TJfRqvl*X}*UQ-4XVV!M@it z=44v(Y5F?)u3`(oP`IwItph0(PFc{+fT;mxiO>L9Y)svK`)VjDBCs%U;QMXn;*#fdL&1z_dl_nG(}=M)uFR50gr>mf z7>AaFov=fUd(giNB>4Dc6@?VUJz@sL>ay2r=6sfPax5z6ULdF{PfVv~Z6|62(3hny zrE_450goiZStSL>RA-Z(h5861)Q#tYyztB-)%c70sTC2zfVe)BfAHc}?tpf2gg57* zTScH!KjLMrU#unbjK#43b%=BOpNIH;ZlcN(dx=sCG@RcXkQqbO;f%(9h^PW%hV@}| zDSuJLq6c&_zB<)(z~ae3#dW!bwk)5tIxK%K7+{Qii-mic3)JgPaBayQit35DGNrD3U! zEmyZ$#;lJX)5kZuRp*jF-q}EVwhufh7#;lmtiR1*%MFxNFApuCV^U>IVu@E_aPK$C zfG3C{&yZ+_`V0BK!wIQMo^F`|lSbtuz4Af4yrn}YeAyfZpS4G)@%N7kVjV-E8Do?l ztL`0$qDclm#Cf?6CQYlqB_u|3w8CYq`g zYp+kLeG3KHa{f%9xejEvtG#-NU0H2tD;(?ZJmFLVmH*>^06%YHg2DfOWBc7M`2X&K z|APPSVDMjWi@$^aNDTQ+{^u9`hax}l-@o1yzrW+pljP6%&$MO##(w{%3gQ36e~NA0 zxQ}NHwrr=Wt;NR<-}py(GK|A<4t?XFc4kU}`D+*m_!R{Gvls~Y6$JgW7zp?k1pTuZ z2>2BQ{j(Sd_!R{Gvls~Y6$JgW7zp?k1pTuZ2>2BQ{j(Sd_!R{Gvls~Y6$JgW7zp?k z1pO@x^ve)lNmz3O>%+11P>f`>sE_vxK-5D|A0248Q4J^JjOjOedolgi2++`a;cL`H_ZiJ7r*tJ-i6PML*`0$1NvEc(gp*bng+T_o znMH1ghhVKXsT}vWL3NAB0XlterbGij+^du%kIUcQvR4%)jIz8i`J4CV*tq=9cG=6h z7}zKrqvl6PLW=|+BRQa=-=}}gK)WF!(kNsswJsMw+W%O2MO=yn5Wg^}b z;euGWjS=&)K|s)mN-M3hW6Br9sMMRih;Q|HaOZ`|2ACdgyvOV2Krg5CCc2kWQg;t8 z!|BGg@g)E}DiJTutJ=nLBNheNPs!;E6+WUy<0AJfomgQh9PGbTT#EVOcM z`onEjAnd-}`Hsj-?Yne(!fk!WZOTKoQSY^pUt~7Q*+v*LCNhWspCfwl>jQ7pP4dFU zeF;Etc~cR(%yUgmJ%J&}o6duxukn0f=3yJ$5S~1i841l}GN+Aw^T`n3^;t9-A+;oc z+NE$7XXPz84hr-%2Zw{uQtt>QJ-uvN27MybWRtGpwh)Ru08Uc^ zWtH`0SYCm)IHYTRvGF-)v*%E25OiEz>av3B;a`lNxAefq>rQ zBnlM6lx5rvFE-&Yz1N3j+bp?xChuIUyzItg%SbA#GF%2{)OVVLhi2i zSonTtza?uefme`-vR^w3U5;8$g&i-PzNtxLYcc=e-FY6~`Gman1W-I`g5*o5vZutf zhxEDRO`Curou>v{J1h0I(g?`ZA{mOR=t3#cr~%wF*<^ zQG_-8VwGvVXDuC*t!Yu0c@?{Yq>B(jA#ZdFdnhhj+w1~5!mkjn&hm{lU zyS}11WA4Bx_=@T|@h$}Q`i>vD$7@J{0G=rJCPA1vRzsGU8oS=+#8 zl=IkQq3!~fjTri<$HLH+=Y%hpKHSs!r_tSa4V=&ZFBYC0p?O?*Kh^G>4Pf=A*4^CD zRchk=<17^<)K5#(3OkT9AkDuYuo^&VscUoHWUS_VDxU3Br%u`UULRc~kuFJI4~Bg9 ztM-IPF(t6GE#y>YLle+p5w5?bkY`7;e4NBI-HqRat}s%iCNFYD*bxl|$U$GE*ni&S zE6^9G>M?jy-;jX;>qFXnkq*rV@s>(2Sf6Lir2doJs&fw61CLok6XbkyREA#+{0*%=<1ji@X--K@ z9at9K%|H2zq&xx9WVxR>d-e&xteuiPxR$AdsFio-+%!toqO*9N_ay4iCcJY@8EpZ9 zuUR=oM+a_2*lVn0?*VGsJWcc4hTQCX?5}<#b$Zm~Wa+ypeb+m(zY+-jg4=|!K)zcg zUiPP~`HOKWtusy_csYK+yW=tj?b^A;JbC06V?JZ))VkpH=S*|#JxE;y@<2q;-|XF! zcpK%)G9{IUwS$5K;My zu>N=P%I~9_A4mS41%8SD%|DR-`AuH6H%kclk~J=dbdA#83R+_c#2X`651ohp+k#t2eXrC^wrU`LFYT zS|j*6tN+UX>7IC0Hv-+#4_yAl1?sl93wy}>mc%`}dM$qCFBMTiDk1^p zkz!RvMv|#09$fLqH;$6=eLk)`0)!@8fZ!zbOc0vwO(1!sxV>dDBqfY}t% z(7#*)D$EZlYmG@MRm&;l_3cO>qVw8$5FP656Kgz4o7r;s`?zy{;*&KEY@2}W2ET4J zUAEd@DVp}1!0S~-O#W_1-$ibCIJdP5O~P;}i|3ZVIJBm5b`tXk&zM~cu(0Zz;$a-^ z*1j@g^KZ~sdailXNF#x5h+Ui9ax=k1G1)g)nKv$Re<{oB^jOt36bGV`5@@m6WwbE^ zLSGa6e9KnCPb~J@os72MK~^DBQ?J$+d_3c5C^NHQX3Ah8MRQXiAE&}M>-U``8t_CY zY^bvjHmQSJxTxJcBI8H}wg5lWSwLk7+1nc|8pKCy_K?Xj2DnFuv6Vr2P}RZdcK_I; z^J%Q0MEBfE^6e?FQ)eEWdDA@4u2*63!AlT&Cu^uI_Hke~yIohwIn~X#73ISnH-2}j z6h`*lmE8Q!bb|s7?Tov3fEkUPUbM5}d$8Am#AII^U`m~37~!u?)t`nq%dpFXG$rOC zn3+Gmonpo5htV(Z(^cIgje#50xsV^=sI1?(Hsy}@J#jP0?_h0tKt}TtU+0$}Lr53H zZic_$9Y*-L>xvMK#f=OBLP=eplQw(Q7j-+EDjJlq;~b=ySVUATv(1k(Ls_Ad=@>lD zjX!#(MXkm?_vH(?A?ILUf{g~4n$M7lgF2b9g4Cd}y7@el$uo#2j$|j~)|m<0|JtXn ziVk&cdT}TRU?ire&Kxwq@8RvX;I?#*FrOas?S`KBcaVuh_9EGaGB9U7BpG46>S-vd4JvUP)xO3P2{}?p zBhLq9+sW}dJP~$2@k{L(41u0uaUL^9J>KwCY16LcP^Z8~IsmP_I=21EtD==uVmyV`UlEg30f@^d8{cww!_vlM%^dwhXLdXsba z$X3%5e(-#Mdx!tqXa55K{UPk%-^G77{|En9{TKQ}|Mj>1_OCko8~pdXc>30VDb`QA zum2_g2mi$XjsMC2@iV89z2F{DstF*#>f>5kAKo~en0!7}*l)Nh-X=rb$LX@>%wRG*gwKQze%mPcQ%5txaB76VIwP^f>ol(b(UZD== zlEXaiQXxn*N8TS2&^mbbK}A)Tjs$DUW!PR!T=ko^^F+jCT<0ENH;puc@ACu+iV}Yc z7ok4MJfj|7*Z}*SHZAxjTWgH40S5ifho6co)(!Vq#qf2Q>_BtIa3QO!ec-e^1#u_K z?D`6QA@~T;hnbDzbE}z~9eiS0a4Kf%=*Mds^RH9wY3f`%yVde>f!k%C#AY7>bKG zl_{0maa}RF-?@b4=5l%kDpp9=zG#GLl2$*CpfR1(hejpp4D=*uC^YB|=w@x2A4qj) zX35_EE*{fLHIab(1!|1bRgvt^i68`qq<<2IFOW=sx1N6{qS(alVgbEllB?C++o4-^ z&c)GY1M2FjYlmN2qti?5i;MfO3D>f_y%MZ@8e~WZ>zb_EB-n4@JGy-dE&MRX!s8P$ zPx*4sjB{+#jcF~wi!fjU{1rN@@wMJ}GW=HU^7IHIygN`)8v)@ijLx`4W!b>yt?UvZ zEf=diK5opDl4xa*tSr!Hr!SedKW(WZ#v9KgW!r&C->aQ5~4ar8-0HENre@|1Gt16m|&8P@o=m=SMJdy$%DfK z4i0KC2OlxZS&j0-q8X7A*#cIh)84*EI$Ns!Wd?xnHOfraGX+ddI|>W)t6y2qD6#%?(twV?($Q5;n9AED#)Dy!|#8m`AL z2L3+zSbTK#6ZlM8I8Mm5G^0d;t)1ted#dapez^w;CiI6v-)&Um6bFSFPi#%c)syny!7JKkGUh^Zjs}?%b0Wa6tVTgmM{1D zHK2J=5MZ9(3?wL{FZaotem)aO4d6IsX+)L1IhasYQTaJQiEF;o39saSlYVRKmXYcG zsx=LGS;tMJI3=aBO+*=$8@5K--zq*(2qwioS!lD*>lWHgpru%B$q&LzW2GoUIj=nP z8F-?7`D)BsV~p2mB!r6bhJN%DgoU18+e{n^4?c1sjg_$C{ac2&ZvPUJhAVhJPX(|15kPs-s)Po42^PBvixWcchcXIjIpMfiG;=WAK zB0R0oTfSWGxX*smb>gE=xwi@^<|)LetOS|(4f^tvT!LEyx=OZ@z;ZRpxh9?XRtY-@)&}S zadfbJ`U2J78^lrfY=pS-Z2P|$7;E^vyjAn5b|aieWYmC?j^fQ(Hj{U+=j=)|E(PAlg9G%@gw`G2rg1K@PsR*mwo| z*V);A4I$YpzLxSH&3Bfo6#U%3=~_WNy|{}IA^!lnLp)dN3!WIuJtZ$E3-X`X7e4-%`H(vS|=;LrkDAkLO0I+ zI0`dI22CE$s%u1!Q=32I2h(9+silvJ0r%1IXA85FmZ0HwPkzJ$VoG`zaO64D`1cSeftTsMx4wMWANMQCMx|X1V9&t&B~X*&XzU zPt45cK~7-Ofn@>>Y=czju|o&&bW;55z7Ui5;m&9_syN6yA2ZCD!9SJLzpanQP&1cF z9Cg7YWLnECW*$qZ^OXe+aL6N4|y3Jn>wo*(>BPWVR?08Q`dBS8`;?@pdmD(FY8sY zF0@zsmu)Exj(x=fyz%ofOKgvb4f4u#*R)DvOE5*$Pz3|;H}=B zuFnfA77ZgmfQ-y!`}e)+4Ej<+|3*&J}Ruy2!_%^6Qvz^>9t=KP0@%fcd8B6n2xbHhr+&hVe|dm zcywPVKntb0W!hce*_Kh-+%(t~UEA^6+WpHczi|>#y?ENmQK07Il^3^gB))_ zX-5D9LAyKc;9XF3vni(aohDN^P%@0Y`tg#6_4`2AJI+9T^pd3yQ&7i9O_%dQR&Fo% zC&1SU*rl8d=RIPlavB__AOKZ)maV31Hc)B6L<~tD5V~Y6-Hy|w|ZlgcPx}r40gT1id_^`BGpjwel zsv_@IwMSw+nV+tLa|=J0!ZG4Yj`^;9Jfne|aG_U{yD*h+W~9PRmUwQ%t$p^ac)$wX znkQ3GsK930^a!wU${t|F4VOqut;sJA`KbG6e@n9cI%f4%WD+G1jG~W$y)eAV7w$r? zdY0i)M{~!9;hM>BvMa)8k-;nYPAq(PO)V!Fa{OBY?I_-zG|NVxBF(?g|A|zkw*pCx z{90B7F=4$r|6Vo2?RO#N(LF#K{L^N~BM>rQBQE8uq5kFuit+RamX zE`BpWr7RFnS)PW$GlAoEC!4aa%lHwm+s}@t}>LE`lQY%xK*sQ1rGBI z#a^b5RwY5CQVpc);*TS7lh~C1_C8~*%S81u6o0mtJBxS6=|ud+7TJMNu6e8ocRfkN zOR7(B{P%wk|A*ms|BoO2pZ<3|`;YzYZ}8vmV(Opyzn_F5|4aUF z|B3$_e#8Iq1uyGHBwY6Q2?6i7Jmi8yOUXBRr!+NZ**so6MQ4Rj*P!n|%5%fS)RWBAi=%~ChuBqoW)a^b2^hEi*Na+!M9*JR zM6kft8`uSb=Ro%)U3c>MBphiez~x%S0A$+7=1<|3+~2D9JWds$o4_3415{-TlEGr2 z)Rzs#AE3l@zBsWw+&MN5hy1*J<0&fCj>>|7CrfhRfzJ<-9$YuTx-ZJ4_NC8nxCy?e zc$X}NrX9r0w6e+>9Cv>ZoP2~izvp&BN?s?3lYw2g-n==u9BC~@()|Th`=S`ENk2B0 z0QjBq)-4>5=(znFeo9xXO7Zk7{!O4?>GIXi7V~tNPD6E#zHKu@E~O27qq%yNFB!<9Mr{xJ8yUjwJ+1(ckJijtqS|O2g04c`>Bn`$IOxkVeRIV+pv%KrB`2dfR&UQ zbQ@|pSZYOj1>5j#KajCFDii3A`RWX(IWp`prum5&_!UPVUn707T|N!=yi|bUw&$BW zyt_E#oBHq@C)Utm^SCzZF@D|*0@jgcs4{(2!mwZsZ(~=<5D|Owpga$@0qaPcBOFco z`MwjY(y2{qau*jO;!{zK$yU2U|h-Ss|?TON} z?|gTlnEWhV$r8Ltdvlw+`A){Jg|fi(W+k{>-C!tLZlD5uNvIWlW5MEYL-g>w7evgW z60OHHvQbFm(hF=JZm-C2k}fctC$0CGlL%tD?tS+-0Gjo>8(q9@YgC|#cHo#?JAxb_ z_-mR;M9T^!f6Q}wkRIgP!MM0_+el-0_ov{r57#b0TXgTczR9a+p#~#I(Gv|k^e5ZM zLM&NSAgGZ{c%k(51ljS%H{x%h?$-EeUdH29WdM4-tyLd}yKb{>=_zxpQS*MOJh`k6 zK{1l!Pm52M7K@%v6iRb|hjsid9|viXJHY0AJ%y;m1mViAcdwE=I^#DB^L_eO5u|S( zoYDSne!@I!4)VAap90ZwSy`KykHGIffJBQVoPJ+c6D;iNXLO#PdS&aag=?01u@@4H z>BA*Cri;z_u3n)g{3G>u`A=bqcJ{qBu^sx(V$>u}?^fU@lz0zAvAR(>{4AX>88t@0 z9!yBal>YYCGI#b385>9Hc&XKm5Rl5uS0G!ixgFG#-TZ#9Ijxe%(P^@wxeE^|rNlJd z^R+^+wzgdYaqi|6hb?525)~*=tA%q&$GOoqK2TO@J#WH!5vYMDddzV3cDZnzjjyB; zTfEQ^3(_%i2C%R$I&8HC4RsU;@#=w_8u%ik$l`@RdU^35luWY$~~V zUXz>N*iE!jJz&mffPLRSX7&A`BGW5!bORNmKM!H{I(gG?zB7lH#>;lU&f7Gg?m-loZ$41tt^$*I1UJf@ zUC<|hX(-FxZF;f?DYY;^6Ur@EfzXV?f07i#*h7EuZ^Wo;H%yAA5_)E?OJ?;#a9)uY zy8;#cmW@v;ycDdsqn4e$RgZHD-VIQEGTCuXq~DXxeu+ZON_tBab1LET@K^S_?#55_ z2n_o0j7+kbQ%x!PpzbQnAI_JgFQHv+fm-sjWbkOLp&!q%i&Gg^O{VSFSM&X8I8^{O z1(DUxaJp#aT`AU01D}~xkErSxI$wVy$`r=zJ?!%7Zr-N;WXUQ=7jR ziR|AHHx|}M-P3(8A7vK_DIxWD%*-lYphZLUH1C@85xgozp^)2U5Cr9Fu-LQ{>Q5RIJ4qdVoU--*`z7E13D< z%!)t;-aw$ww#|#NYxz->@kVgbG<>qhTC||SEQnR#8i26iNJs-nM{8^{t>El{y(y;Q zX=$Z#Pr1ju9`jYVERUGyQh)I1-D%#li=tYu%qpXL0)K!bAg4^*Z?w;J85@CqLf*x$ zt*K9s%Vc40jJ-N-cr1ePC6F96BDyCIS#axN8FhChSgc6N91#vE%!A zfU(7>WLoDQMd{+_t--4!%C~X}=4v&lK3#Kn5g?1+1@4U9bhp70Qkwm2+$52A*jztg z#BcbxPp1=-8BtN{r?xZ_WF~wQVJ!Gih)Mn8gC{6}C~{9)ZwDt0TWL5tPdT66Hvq+* z!F$WLGHifWnV)SU!JE6es}k%sMl|L-- z!va4n@WTQ>EbzkuKP>RW0zWM9!va4n@WTQ>EbzkuKP>RW0zWM9!va4n@WTQ>Ebzku PKP>RW0zWM9iv|8a))rFa literal 0 HcmV?d00001