firewall-applet-0.6.3-13.el7_9>t  DH`p`a$ƨI9MDV@}t 9XΕ;,X (̌*| xMw;\])s*-_r.QnJC_Z`LH;o~)T{Cz?0{T 5a}nH6;;+H v*,7o[t}\X+xhiS qʲNd`(9COJXmY'8b\Q <(6f {yZ El;8V:ylSnC*|qrnm`Z7>¥Y;]nX Vd9 5J v>h൥ ^˷t) Y>9XbhzԌXM{9::ՔY} djv妆93?b908cddbce4acddc20d6ed2fd59f0b14e021c7b0l`a$ƨ?zub ΁.Tq[c~T]K3nc)s}eߙyp4> +ng B0CT|w>4 Ő*J$)|$ɻr ߪiKkp>LMhw IEeZ+6]R߶8rlO7Qn$ W) ?Ja^gQ> p %-k՜ d3yNBsqD|v,Jl7ɻd^X^bcq^B=Er Z[O9 YTH6v :hI$'40 c0a]hmm 9g^N9( E=:,%A%xH_6F5 |pܦ;Z_$o _7 ]JAnf.ݬQm7!mcDfZi`ʈpLo Jx_sGaқ>><?,d ! 7 !(i`   t    $   f    4 +( o8 xh9h: h>@GHHIȤXȼY\],^. bWdefltulv wx(yЄЈ(Cfirewall-applet0.6.313.el7_9Firewall panel appletThe firewall panel applet provides a status information of firewalld and also the firewall settings.`cx86-02.bsys.centos.orgPCentOSGPLv2+CentOS BuildSystem Unspecifiedhttp://www.firewalld.orglinuxnoarch/bin/touch --no-create /usr/share/icons/hicolor &>/dev/null || :if [ $1 -eq 0 ] ; then /bin/touch --no-create /usr/share/icons/hicolor &>/dev/null /usr/bin/gtk-update-icon-cache /usr/share/icons/hicolor &>/dev/null || : /usr/bin/glib-compile-schemas /usr/share/glib-2.0/schemas &> /dev/null || : fiq_cIm R | A큤`c`c`c`c`c`c`c`c`c`c`c`c`c`c`c`c`c`c`c`c`c`c`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-0.6.3-13.el7_9.src.rpmfirewall-applet @    /bin/sh/bin/sh/bin/sh/usr/bin/python2NetworkManager-libnmPyQt4dbus-x11firewall-configfirewalldhicolor-icon-themelibnotifypygobject3-baserpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)0.6.3-13.el7_90.6.3-13.el7_93.0.4-14.6.0-14.0-15.2-14.11.3`x*_Wr@^@^^9\]X]]nU]QT]QT]>\[@[v[ug@[P}@[ZZ/Z'Z'Y@Y@YY?@YJY>@Y.@Y;@Y @X@XX@X@X@Xn5@W֘WίWu@W@W@WW@W{@WrfWj}Wj}Wj}WM|U@U@UmTTD@T3T)ISz@S @S Rb@R@RRx@RkRxR_@RNRM\@RL RIgQQQ@QyQ@Q@QnQT0QIQ8@Q$Q@P@P@P@P @PpP~PIP3x@P(@P!@OOOc+@OaOU@OTOC@O1@O/MY@M!@M!@ME@Eric Garver - 0.6.3-13Eric Garver - 0.6.3-12Eric Garver - 0.6.3-11Eric Garver - 0.6.3-10Eric Garver - 0.6.3-9Eric Garver - 0.6.3-8Eric Garver - 0.6.3-7Eric Garver - 0.6.3-6Eric Garver - 0.6.3-5Eric Garver - 0.6.3-4Eric Garver - 0.6.3-3Eric Garver - 0.6.3-2Eric Garver - 0.6.3-1Eric Garver - 0.5.3-5Eric Garver - 0.5.3-4Eric Garver - 0.5.3-3Eric Garver - 0.5.3-2Eric Garver - 0.5.3-1Eric Garver - 0.4.4.4-14Eric Garver - 0.4.4.4-13Eric Garver - 0.4.4.4-12Phil Sutter - 0.4.4.4-11Eric Garver - 0.4.4.4-10Eric Garver - 0.4.4.4-9Eric Garver - 0.4.4.4-8Eric Garver - 0.4.4.4-7Thomas Woerner - 0.4.4.4-6Thomas Woerner - 0.4.4.4-5Thomas Woerner - 0.4.4.4-4Thomas Woerner - 0.4.4.4-3Thomas Woerner - 0.4.4.4-2Thomas Woerner - 0.4.4.4-1Thomas Woerner - 0.4.4.3-2Thomas Woerner - 0.4.4.3-1Thomas Woerner - 0.4.3.2-10Thomas Woerner - 0.4.3.2-9Thomas Woerner - 0.4.3.2-8Thomas Woerner - 0.4.3.2-7Thomas Woerner - 0.4.3.2-6Thomas Woerner - 0.4.3.2-5Thomas Woerner - 0.4.3.2-4Thomas Woerner - 0.4.3.2-3Thomas Woerner - 0.4.3.2-2Thomas Woerner - 0.4.3.2-1Thomas Woerner - 0.4.3.1-1Thomas Woerner - 0.4.3-3Thomas Woerner - 0.4.3-2Thomas Woerner - 0.4.3-1Thomas Woerner - 0.4.2-1Thomas Woerner - 0.3.9-14Thomas Woerner - 0.3.9-13Thomas Woerner - 0.3.9-12Thomas Woerner - 0.3.9-11Thomas Woerner - 0.3.9-10Thomas Woerner - 0.3.9-9Thomas Woerner - 0.3.9-8Jiri Popelka - 0.3.9-7Jiri Popelka - 0.3.9-6Thomas Woerner - 0.3.9-5Thomas Woerner - 0.3.9-4Thomas Woerner - 0.3.9-3Thomas Woerner - 0.3.9-2Thomas Woerner - 0.3.9-1Daniel Mach - 0.3.8-2Jiri Popelka - 0.3.8-1Jiri Popelka - 0.3.7-1Jiri Popelka - 0.3.6.2-1Jiri Popelka - 0.3.6.1-1Jiri Popelka - 0.3.6-1Jiri Popelka - 0.3.5-1Thomas Woerner 0.3.4-1Jiri Popelka Thomas Woerner 0.3.3-2Thomas Woerner 0.3.3-1Jiri Popelka - 0.3.2-2Jiri Popelka - 0.3.2-1Jiri Popelka - 0.3.1-2Thomas Woerner 0.3.1-1Thomas Woerner 0.3.0-1Jiri Popelka - 0.2.12-5Jiri Popelka - 0.2.12-4Fedora Release Engineering - 0.2.12-3Jiri Popelka - 0.2.12-2Thomas Woerner 0.2.12-1Thomas Woerner 0.2.11-2Thomas Woerner 0.2.11-1Thomas Woerner 0.2.10-1Thomas Woerner 0.2.9-1Thomas Woerner 0.2.8-1Jiri Popelka 0.2.7-2Thomas Woerner 0.2.7-1Thomas Woerner 0.2.6-1Thomas Woerner 0.2.5-1Thomas Woerner 0.2.4-1Thomas Woerner 0.2.3-1Thomas Woerner 0.2.2-1Thomas Woerner Thomas Woerner 0.2.1-1Thomas Woerner 0.2.0-2Thomas Woerner 0.2.0-1Thomas Woerner 0.1.3-1Thomas Woerner 0.1.2-1Thomas Woerner 0.1.1-1Thomas Woerner 0.1-1- doc: clarify --set-target values "default" vs "reject"- fix(zone): cache rule_str for rich rules- feat(service): add RH-Satellite-6-Capsule- fix: add logrotate policy - fix: checkIP6: strip leading/trailing square brackets- fix: firewalld not falling back to interface zone- fix: failure to load modules no longer fatal- fix: Revert "ebtables: drop support for broute table"- fix: direct: removeRules() not removing all rules in chain- doc: add --default-config and --system-config- fix: guarantee zone source dispatch is sorted by zone name- backport recent upstream stable fixes - backport fix --remove-rules deleting all direct rules - backport fix unable to delete rich rule forward-port - backport fix forward-port for external zone hijacking internal zone - backport fix testsuite iptables locking- backport recent upstream stable fixes - backport fix to enable IP forwarding only if toaddr specified- rebase package to v0.6.3, include recent stable fixes - use QT4 patch for firewall-applet - remove cockpit service definition, cockpit package still ships their own - remove testsuite force of LC_ALL=C.UTF-8. RHEL-7 doesn't have C.UTF-8 - remove nftables support- even if startup failed, reapply non-permanent interface to zone assignments- backport patches to enter failed state if startup fails- backport patches to avoid NM for generated connections- backport patches for --check-config option- rebase package to v0.5.3- services/high-availability: Add port 9929 (RHBZ#1486143)- firewalld: also reload dbus config interface for global options (RHBZ#1514043)- Fix and improve firewalld-sysctls.conf (RHBZ#1516881)- core: Log unsupported ICMP types as informational only (RHBZ#1479951) - doc: firewall-cmd: Document --query-* options return codes (RHBZ#1372716) - doc: firewall-cmd: Document quirk in --reload option (RHBZ#1452137) - firewall-cmd: Use colors only if output is a TTY (RHBZ#1368544) - firewall-offline-cmd: Don't require root for help output (RHBZ#1445214)- Add missing ports to RH-Satellite-6 service (RHBZ#1422149)- Reload nf_conntrack sysctls after the module is loaded (RHBZ#1462977)- Add NFSv3 service (a127d697177b) (RHBZ#1462088)- firewall.functions: New function get_nf_nat_helpers (RHBZ#1452681) - firewall.core.fw: Get NAT helpers and store them internally. (RHBZ#1452681) - firewall.core.fw_zone: Load NAT helpers with conntrack helpers (RHBZ#1452681) - firewalld.dbus: Add missing properties nf_conntrach_helper_setting and nf_conntrack_helpers (RHBZ#1452681) - D-Bus interfaces: Fix GetAll for interfaces without properties (RHBZ#1452017) - firewall.server.firewalld: New property for NAT helpers supported by the kernel (RHBZ#1452681)- IPv6 ICMP type only rich-rule fix (cf50bd0) (RHBZ#1459921)- Translation update for japanese (RHBZ#1382652)- Add services for oVirt: ovirt-imageio, ovirt-vmconsole, ovirt-storageconsole, ctbc and nrpe (RHBZ#1449158) - Fix policy issue with the choice policies by using the .policy.choice extension (RHBZ#1449754)- Fix --{set,get}-{short,description} for zones (RHBZ#1416325) - Man pages: Add sctp and dccp for ports, ... (RHBZ#1429808) - Add support for new wait option in restore commands (RHBZ#1446162)- Add support for sctp and dccp in ports, source-ports and forward-ports (RHBZ#1429808) - Fix firewall-offline-cmd --remove-service-from-zone= option (RHBZ#1438127)- Rebase to firewalld-0.4.4.4 http://www.firewalld.org/2017/03/firewalld-0-4-4-4-release - Drop references to fedorahosted.org from spec file and Makefile.am, use archive from github - Fix inconsistent ordering of rules in INPUT_ZONE_SOURCE (issue#166) (RHBZ#1421222) - Fix ipset overloading from /etc/firewalld/ipsets (RHBZ#1423941) - Fix permanent rich rules using icmp-type elements (RHBZ#1434763) - firewall-config: Deactivate edit, remove, .. buttons if there are no items - Check if ICMP types are supported by kernel before trying to use them (RHBZ#1401978) - firewall-config: Show invalid ipset type in the ipset configuration dialog in a special label (RHBZ#1419058)- Drop ghost flag on policy file again- Rebase to firewalld-0.4.4.3 (RHBZ#1414584) - Support disabled automatic helper assignment in firewalld (RHBZ#1006225) - Fix masquerade rules to be created always the same (RHBZ#1374001) - Properly handle quoted ifcfg file values (RHBZ#1395348) - Fix extension of ifcfg backup files (RHBZ#1400478) - Complete icmp types list (RHBZ#1401978) - Fix LOG rule placement for LogDenied (RHBZ#1402932) - Show error messages from NM and do not trace back (RHBZ#1405562) - Support icmp-type usage in rich rules (RHBZ#1409544) - New service file for freeipa-trust (RHBZ#1411650) - Fix --{set,get}-{short,description} for ipset in commands (RHBZ#1416325) - Speed up large ipset file loading and import (RHBZ#1416817) - Improve support for ipsets in firewalld (RHBZ#1419058) - ALREADY_ errors should result in warnings and zero exit code (RHBZ#1420457)- Fix LOG rule placement for LogDenied (RHBZ#1402932)- Fix ZONE being blanked in ifcfg on reboot (RHBZ#1381314)- Exclude firewallctl (RHBZ#1374799)- Tolerate ipv6_rpfilter fail (RHBZ#1285769) - Fix set_rules to copy the rule before extracting the table (RHBZ#1373260) - Translation update (RHBZ#1273296) - Conflict with NetworkManager < 1:1.4.0-3.el7 (RHBZ#1366288)- Do not use exit code 254 for {ALREADY,NOT}_ENABLED sequences (RHBZ#1366654) - Fail with NOT_AUTHORIZED if authorization fails (RHBZ#1368549) - firewall-cmd: Fix get and set description for permanent zones (RHBZ#1368949) - Fix loading of service helpers in active zones (RHBZ#1371116)- Print errors and warnings to stderr additional patch (RHBZ#1360894) - Fixed trace back in firewallctl (RHBZ#1367155) - Fix client crash if systembus can not be aquired (RHBZ#1367038) - Make ALREADY_ENABLED a warning (RHBZ#1366654) - Added conflict to old squid package providing the squid.service file (RHBZ#1366308) - Fixed firewall-cmd help typo (RHBZ#1367171)- Fixed firewall-config gettext usage (RHBZ#1361612) - Fixed ifcfg file reader and writer (RHBZ#1362171) - Fixed loading ipset entries from file in commands (RHBZ#1365198) - Added conflicts to old main package to sub packages (RHBZ#1361669) - Do not show settings of zones etc. without authentication (RHBZ#1357098) - Fixed CVE-2016-5410 (RHBZ#1359296)- Fix test suite for command change (RHBZ#1360871) - Fix test suite with stderr usage (RHBZ#1360894) - Rebuild for wrong docdir without version (RHBZ#1057327#c7)- Updated conflict for selinux-policy (RHBZ#1304723) - Fixed exit codes in command line clients (RHBZ#1357050) - Fixed traceback in firewall-cmd without args (RHBZ#1357063) - Fixed source docs in man pages and help output (RHBZ#1357888) - Fixed rebuild of changed man pages (RHBZ#1360362) - Use stderr for errors and warnings in command line tools (RHBZ#1360894) - Fixed lockdown not denying invalid commands (RHBZ#1360871)- Rebase to 0.4.3.2 - Fix regression with unavailable optional commands - All missing backend messages should be warnings - Individual calls for missing restore commands - Only one authenticate call for add and remove options and also sequences - RH-Satellite-6 service now upstream - Conflict for selinux-policy needed to be updated to newer release (RHBZ#1304723)- Rebase to 0.4.3.1 - firewall.command: Fix python3 DBusException message not interable error - src/Makefile.am: Fix path in firewall-[offline-]cmd_test.sh while installing - firewallctl: Do not trace back on list command without further arguments - firewallctl (man1): Added remaining sections zone, service, .. - firewallctl: Added runtime-to-permanent, interface and source parser, IndividualCalls setting - firewall.server.config: Allow to set IndividualCalls property in config interface - Fix missing icmp rules for some zones - runProg: Fix issue with running programs - firewall-offline-cmd: Fix issues with missing system-config-firewall - firewall.core.ipXtables: Split up source and dest addresses for transaction - firewall.server.config: Log error in case of loading malformed files in watcher - Install and package the firewallctl man page- Readding RH-Satellite-6 service- Fixed typo in Requires(post)- Rebase to 0.4.3 - Rebase to the new upstream and new release (RHBZ#1302802) - New firewallctl command line utility (RHBZ#1147959) - Adds radius TCP ports (RHBZ#1219717) - XSD enhancements for conflicting tag specification (RHBZ#1296573) - Adds port for corosync-qnetd to high-availability service (RHBZ#1347530)- Rebase to 0.4.2 - Allows unspecifying zone binding for interfaces in firewall-config (RHBZ#1066037) - Adds improved management of zone binding for interfaces, connections and sources (RHBZ#1083626) - Adds commands to showing details of zones, services, .. (RHBZ#1147500) - Adds a default logging option (RHBZ#1147951) - Adds quiet option for firewall-offline-cmd (RHBZ#1220467) - Adds support for zone chain usage in direct rules (RHBZ#1136801, RHBZ#1336881) - Adds source port support in zones, services and rich rules (RHBZ#1214770) - Adds services imap and smtps (RHBZ#1220196) - Fixes runtime to permanent migration(RHBZ#1237242) - Fixes removal of destination addresses for services in permanent view in firewall-config (RHBZ#1278281) - Fixes firewall-config usage over ssh (RHBZ#1281416) - Fixes reload disconnects with existing connections (RHBZ#1287449) - Fixes ICMP packet drops while reloading (RHBZ#1288177) - Adds option to add a new zone, service, .. from existing file (RHBZ#1292926) - Adds improved checks for file readers, fixes error reporting of strings containing illegal characters (RHBZ#1303026) - Transforms direct.passthrough errors into warnings (RHBZ#1301573) - Reduced getprotobyname and getservbyname calls for NIS use (RHBZ#1305434) - Fixes (repeated) firewalld reload by sending SIGHUP signal (RHBZ#1313023) - Adds After=dbus.service to service file to fix shutdown (RHBZ#1313845) - Adds ICMP block inversion support (RHBZ#1325335) - Fixes local traffic issue with masquerading in default zone (RHBZ#1326130) - Adds destination rich rules without an element (RHBZ#1326462) - Fixes reload after default zone change to newly introduced zone (RHBZ#1273888) - Fixes start without ipv6_rpfilter module (RHBZ#1285769) - Adds log of denied packets option (RHBZ#1322505)- Fixed file mode of schema configuration file verifier check.sh als in files (RHBZ#994479)- Fixed file mode of schema configuration file verifier check.sh (RHBZ#994479) - Include upstream testsuite in SRPM package (RHBZ#1261502) - Added missing ports to RH-Satellite-6 mservice (RHBZ#1254531)- New schema configuration file verifier (RHBZ#994479) - More information about interface handling with and without NetworkManager (RHBZ#1122739) (RHBZ#1128563) - Apply all rich rules for non-default targets (RHBZ#1142741) - New iscsi service (RHBZ#1150656) - New rsync service (RHBZ#1150659) - ipXtables: use -w or -w2 if supported (RHBZ#1161745) - Do not use ipv6header for protocol matching. (RHBZ#1164605) - Iptables does not like limit of 1/d (RHBZ#1176813) - Fix readdition of removed permanent direct settings (RHBZ#1182671) - Fix bugs found by upstream test suite (RHBZ#1183008) - Fix polkit auth for query and get passthroughs methods (RHBZ#1183688) - New vdsm service (RHBZ#1194382) - New freeipa services (RHBZ#1206490) - Add missing parts to firewall-offline-cmd man page (RHBZ#1217678)- added missing upstream commit 265bfe90 for (RHBZ#993650) - also add log message in the firewall-cmd output (RHBZ#1057095)- additional upstream commits for (RHBZ#993650) - additional upstream commits for (RHBZ#1127706)- added lost runtime passthrough check and reverse patch (RHBZ#993650)- fixed GUI missing name of active zone (RHBZ#993655) - recreate man pages at build time (RHBZ#1071303) - fixes rich language log level (RHBZ#993740) - fixes typo in firewall-cmd man page (RHBZ#1064401) - new support to save runtime as permanent (RHBZ#993650) - new cli --timeout time specifiers support (RHBZ#994044) - updated translations (RHBZ#1048119) (RHBZ#1083592) - more descriptive error message in case of mistakes in iptables (RHBZ#1057095) - use apparent name for default target (RHBZ#1075675) - simplified firewalld usage on servers by dropping at_console (RHBZ#1097765) - fixed enable/disable of lockdown (RHBZ#1111573) - new Satellite 6 service (RHBZ#1135634) - fixed inconsistent color usage for firewall-cmd messages (RHBZ#1097841) - fixed missing -Es in lockdown whitelist firewall-config command (RHBZ#1099065) - unified runtime and permanent D-Bus API (RHBZ#1127706) - fixed missing update of the connections menu in firewall-config (RHBZ#1120212) - better docs for interface bindings in firewalld and NetworkManager (RHBZ#1112742) - firewall-config: Show target REJECT (RHBZ#1058794) - fixed inconsistent PolicyKit domain usage in main D-Bus interface (RHBZ#1061809)- firewall-cmd: prevent argparse from parsing iptables options (RHBZ#1070683)- firewall-offline-cmd: options from 'firewall-cmd --permanent *' (RHBZ#1059800)- fixed rich language log level (RHBZ#993740) - firewall-config: use simple tool to change zones for connections (RHBZ#993782) - translations update (RHBZ#1030330) - firewall-config: fixed service and icmptype name dulications (RHBZ#1067639) - allow router advertisements for IPv6 rpfilter (RHBZ#1067652) - firewall-applet: allow to bind connections to the defaut zone (RHBZ#1068148)- firewall-config creates unloadable config; port forwarding broken (RHBZ#1057628) - Network connection is lost after changing Zones Default Target to DROP (RHBZ#1057629) - permanently adding rich rule with audit creates unloadable config XML (RHBZ#1057684) - firewalld input_zones has default rule for public zone (RHBZ#1058339) - firewall-cmd is not able to add and remove zones, services and icmptypes (RHBZ#1064386) - firewall-config leaves deleted services shown if they were in use (RHBZ#1058853) - firewall-cmd does not allow user to change zone default target (RHBZ#1058791) - firewall-cmd man page has a typo in --help description (RHBZ#1064401)- fixed enforcing of trusted, drop and block zones (RHBZ#1054415)- fixed rich rules (RHBZ#1054270) - fixed small defects in firewall-cmd and firewall-config (RHBZ#1054289)- rebase to 0.3.9 version: - translation updates - New IPv6_rpfilter setting to enable source address validation (RHBZ#847707) - Do not mix original and customized zones in case of target changes, apply only used zones - firewall-cmd: fix --*_lockdown_whitelist_uid to work with uid 0 - Don't show main window maximized. (RHBZ#1046811) - Use rmmod instead of 'modprobe -r' (RHBZ#1031102) - Deprecate 'enabled' attribute of 'masquerade' element - firewall-config: new zone was added twice to the list - firewalld.dbus(5) - Enable python shebang fix again - firewall/client: handle_exceptions: Use loop in decorator - firewall-offline-cmd: Do not mask firewalld service with disabled option - firewall-config: richRuleDialogActionRejectType Entry -> ComboBox - Rich_Rule: fix parsing of reject element (RHBZ#1027373) - Show combined zones in permanent configuration (RHBZ#1002016) - firewall-cmd(1): document exit code 2 and colored output (RHBZ#1028507) - firewall-config: fix RHBZ#1028853- Mass rebuild 2013-12-27- fix memory leaks - New option --debug-gc - Python3 compatibility - Better non-ascii support - several firewall-config & firewall-applet fixes - New --remove-rules commands for firewall-cmd and removeRules methods for D-Bus - Fixed FirewallDirect.get_rules to return proper list - Fixed LastUpdatedOrderedDict.keys() - Enable rich rule usage in trusted zone (RHBZ#994144) - New error codes: INVALID_CONTEXT, INVALID_COMMAND, INVALID_USER and INVALID_UID- Don't fail on missing ip[6]tables/ebtables table. (RHBZ#967376) - bash-completion: --permanent --direct options - firewall/core/fw.py: fix checking for iptables & ip6tables (RHBZ#1017087) - firewall-cmd: use client's exception_handler instead of catching exceptions ourselves - FirewallClientZoneSettings: fix {add|remove|query}RichRule() - Extend amanda-client service with 10080/tcp (RHBZ#1016867) - Simplify Rich_Rule()_lexer() by using functions.splitArgs() - Fix encoding problems in exception handling (RHBZ#1015941)- firewall-offline-cmd: --forward-port 'toaddr' is optional (RHBZ#1014958) - firewall-cmd: fix variable name (RHBZ#1015011)- remove superfluous po files from archive- firewalld.richlanguage.xml: correct log levels (RHBZ#993740) - firewall-config: Make sure that all zone settings are updated properly on firewalld restart - Rich_Limit: Allow long representation for duration (RHBZ#994103 - firewall-config: Show "Changes applied." after changes (RHBZ#993643) - Use own connection dialog to change zones for NM connections - Rename service cluster-suite to high-availability (RHBZ#885257) - Permanent direct support for firewall-config and firewall-cmd - Try to avoid file descriptor leaking (RHBZ#951900) - New functions to split and join args properly (honoring quotes) - firewall-cmd(1): 2 simple examples - Better IPv6 NAT checking. - Ship firewalld.direct(5).- Only use one PK action for configuration (RHBZ#994729) - firewall-cmd: indicate non-zero exit code with red color - rich-rule: enable to have log without prefix & log_level & limit - log-level warn/err -> warning/error (RHBZ#1009436) - Use policy DROP while reloading, do not reset policy in restart twice - Add _direct chains to all table and chain combinations - documentation improvements - New firewalld.direct(5) man page docbook source - tests/firewall-cmd_test.sh: make rich language tests work - Rich_Rule._import_from_string(): improve error messages (RHBZ#994150) - direct.passthrough wasn't always matching out_signature (RHBZ#967800) - firewall-config: twist ICMP Type IP address family logic. - firewall-config: port-forwarding/masquerading dialog (RHBZ#993658) - firewall-offline-cmd: New --remove-service= option (BZ#969106) - firewall-config: Options->Lockdown was not changing permanent. - firewall-config: edit line on doubleclick (RHBZ#993572) - firewall-config: System Default Zone -> Default Zone (RHBZ#993811) - New direct D-Bus interface, persistent direct rule handling, enabled passthough - src/firewall-cmd: Fixed help output to use more visual parameters - src/firewall-cmd: New usage output, no redirection to man page anymore - src/firewall/core/rich.py: Fixed forwad port destinations - src/firewall-offline-cmd: Early enable/disable handling now with mask/unmask - doc/xml/firewalld.zone.xml: Added more information about masquerade use - Prefix to log message is optional (RHBZ#998079) - firewall-cmd: fix --permanent --change-interface (RHBZ#997974) - Sort zones/interfaces/service/icmptypes on output. - wbem-https service (RHBZ#996668) - applet&config: add support for KDE NetworkManager connection editor - firewall/core/fw_config.py: New method update_lockdown_whitelist - Added missing file watcher for lockdown whitelist in config D-Bus interface - firewall/core/watcher: New add_watch_file for lockdown-whitelist and direct - Make use of IPv6 NAT conditional, based on kernel number (RHBZ#967376)- several rich rule check enhancements and fixes - firewall-cmd: direct options - check ipv4|ipv6|eb (RHBZ#970505) - firewall-cmd(1): improve description of direct options (RHBZ#970509) - several firewall-applet enhancements and fixes - New README - several doc and man page fixes - Service definitions for PCP daemons (RHBZ#972262) - bash-completion: add lockdown and rich language options - firewall-cmd: add --permanent --list-all[-zones] - firewall-cmd: new -q/--quiet option - firewall-cmd: warn when default zone not active (RHBZ#971843) - firewall-cmd: check priority in --add-rule (RHBZ#914955) - add dhcpv6 (for server) service (RHBZ#917866) - firewall-cmd: add --permanent --get-zone-of-interface/source --change-interface/source - firewall-cmd: print result (yes/no) of all --query-* commands - move permanent-getZoneOf{Interface|Source} from firewall-cmd to server - Check Interfaces/sources when updating permanent zone settings. - FirewallDConfig: getZoneOfInterface/Source can actually return more zones - Fixed toaddr check in forward port to only allow single address, no range - firewall-cmd: various output improvements - fw_zone: use check_single_address from firewall.functions - getZoneOfInterface/Source does not need to throw exception - firewall.functions: Use socket.inet_pton in checkIP, fixed checkIP*nMask - firewall.core.io.service: Properly check port/proto and destination address - Install applet desktop file into /etc/xdg/autostart - Fixed option problem with rich rule destinations (RHBZ#979804) - Better exception creation in dbus_handle_exceptions() decorator (RHBZ#979790) - Updated firewall-offline-cmd - Use priority in add, remove, query and list of direct rules (RHBZ#979509) - New documentation (man pages are created from docbook sources) - firewall/core/io/direct.py: use prirority for rule methods, new get_all_ methods - direct: pass priority also to client.py and firewall-cmd - applet: New blink and blink-count settings - firewall.functions: New function ppid_of_pid - applet: Check for gnome3 and fix it, use new settings, new size-changed cb - firewall-offline-cmd: Fix use of systemctl in chroot - firewall-config: use string.ascii_letters instead of string.letters - dbus_to_python(): handle non-ascii chars in dbus.String. - Modernize old syntax constructions. - dict.keys() in Python 3 returns a "view" instead of list - Use gettext.install() to install _() in builtins namespace. - Allow non-ascii chars in 'short' and 'description' - README: More information for "Working With The Source Repository" - Build environment fixes - firewalld.spec: Added missing checks for rhel > 6 for pygobject3-base - firewall-applet: New setting show-inactive - Don't stop on reload when lockdown already enabled (RHBZ#987403) - firewall-cmd: --lockdown-on/off did not touch firewalld.conf - FirewallApplet.gschema.xml: Dropped unused sender-info setting - doc/firewall-applet.xml: Added information about gsettings - several debug and log message fixes - Add chain for sources so they can be checked before interfaces (RHBZ#903222) - Add dhcp and proxy-dhcp services (RHBZ#986947) - io/Zone(): don't error on deprecated family attr of source elem - Limit length of zone file name (to 12 chars) due to Netfilter internals. - It was not possible to overload a zone with defined source(s). - DEFAULT_ZONE_TARGET: {chain}_ZONE_{zone} -> {chain}_{zone} - New runtime getSettings for services and icmptypes, fixed policies callbacks - functions: New functions checkUser, checkUid and checkCommand - src/firewall/client: Fixed lockdown-whitelist-updated signal handling - firewall-cmd(1): move firewalld.richlanguage(5) reference in --*-rich-rule - Rich rule service: Only add modules for accept action - firewall/core/rich: Several fixes and enhanced checks - Fixed reload of direct rules - firewall/client: New functions to set and get the exception handler - firewall-config: New and enhanced UI to handle lockdown and rich rules - zone's immutable attribute is redundant - Do not allow to set settings in config for immutable zones. - Ignore deprecated 'immutable' attribute in zone files. - Eviscerate 'immutable' completely. - FirewallDirect.query_rule(): fix it - permanent direct: activate firewall.core.io.direct:Direct reader - core/io/*: simplify getting of character data - FirewallDirect.set_config(): allow reloading- Remove migrating to a systemd unit file from a SysV initscript - Remove pointless "ExclusiveOS" tag- Fixed rich rule check for use in D-Bus- new service files - relicensed logger.py under GPLv2+ - firewall-config: sometimes we don't want to use client's exception handler - When removing Service/IcmpType remove it from zones too (RHBZ#958401) - firewall-config: work-around masquerade_check_cb() being called more times - Zone(IO): add interfaces/sources to D-Bus signature - Added missing UNKNOWN_SOURCE error code - fw_zone.check_source: Raise INVALID_FAMILY if family is invalid - New changeZoneOfInterface method, marked changeZone as deprecated - Fixed firewall-cmd man page entry for --panic-on - firewall-applet: Fixed possible problems of unescaped strings used for markup - New support to bind zones to source addresses and ranges (D-BUS, cmd, applet - Cleanup of unused variables in FirewallD.start - New firewall/fw_types.py with LastUpdatedOrderedDict - direct.chains, direct.rules: Using LastUpdatedOrderedDict - Support splitted zone files - New reader and writer for stored direct chains and rules - LockdownWhitelist: fix write(), add get_commands/uids/users/contexts() - fix service_writer() and icmptype_writer() to put newline at end of file - firewall-cmd: fix --list-sources - No need to specify whether source address family is IPv4 or IPv6 - add getZoneOfSource() to D-Bus interface - Add tests and bash-completion for the new "source" operations - Convert all input args in D-Bus methods - setDefaultZone() was calling accessCheck() *after* the action - New uniqify() function to remove duplicates from list whilst preserving order - Zone.combine() merge also services and ports - config/applet: silence DBusException during start when FirewallD is not running (RHBZ#966518) - firewall-applet: more fixes to make the address sources family agnostic - Better defaults for lockdown white list - Use auth_admin_keep for allow_any and allow_inactive also - New D-Bus API for lockdown policies - Use IPv4, IPv6 and BRIDGE for FirewallD properties - Use rich rule action as audit type - Prototype of string-only D-Bus interface for rich language - Fixed wrongly merged source family check in firewall/core/io/zone.py - handle_cmr: report errors, cleanup modules in error case only, mark handling - Use audit type from rule action, fixed rule output - Fixed lockdown whitelist D-Bus handling method names - New rich rule handling in runtime D-Bus interface - Added interface, source and rich rule handling (runtime and permanent) - Fixed dbus_obj in FirewallClientConfigPolicies, added queryLockdown - Write changes in setLockdownWhitelist - Fixed typo in policies log message in method calls - firewall-cmd: Added rich rule, lockdown and lockdown whitelist handling - Don't check access in query/getLockdownWhitelist*() - firewall-cmd: Also output masquerade flag in --list-all - firewall-cmd: argparse is able to convert argument to desired type itself - firewall-cmd_test.sh: tests for permanent interfaces/sources and lockdown whitelist - Makefile.am: add missing files - firewall-cmd_test.sh: tests for rich rules - Added lockdown, source, interface and rich rule docs to firewall-cmd - Do not masquerade lo if masquerade is enabled in the default zone (RHBZ#904098) - Use in metavar for firewall-cmd parser- removed unintentional en_US.po from tarball- Fix signal handling for SIGTERM - Additional service files (RHBZ#914859) - Updated po files - s/persistent/permanent/ (Trac Ticket #7) - Better behaviour when running without valid DISPLAY (RHBZ#955414) - client.handle_exceptions(): do not loop forever - Set Zone.defaults in zone_reader (RHBZ#951747) - client: do not pass the dbus exception name to handler - IO_Object_XMLGenerator: make it work with Python 2.7.4 (RHBZ#951741) - firewall-cmd: do not use deprecated BaseException.message - client.py: fix handle_exceptions() (RHBZ#951314) - firewall-config: check zone/service/icmptype name (RHBZ#947820) - Allow 3121/tcp (pacemaker_remote) in cluster-suite service. (RHBZ#885257) - firewall-applet: fix default zone hangling in 'shields-up' (RHBZ#947230) - FirewallError.get_code(): check for unknown error- Make permanenent changes work with Python 2.7.4 (RHBZ#951741)- Use explicit file lists for make dist - New rich rule validation check code - New global check_port and check_address functions - Allow source white and black listing with the rich rule - Fix error handling in case of unsupported family in rich rule - Enable ip_forwarding in masquerade and forward-port - New functions to read and write simple files using filename and content - Add --enable-sysconfig to install Fedora-specific sysconfig config file. - Add chains for security table (RHBZ#927015) - firewalld.spec: no need to specify --with-systemd-unitdir - firewalld.service: remove syslog.target and dbus.target - firewalld.service: replace hard-coded paths - Move bash-completion to new location. - Revert "Added configure for new build env" - Revert "Added Makefile.in files" - Revert "Added po/Makefile.in.in" - Revert "Added po/LINGUAS" - Revert "Added aclocal.m4" - Amend zone XML Schema- Added rich language support - Added lockdown feature - Allow to bind interfaces and sources to zones permanently - Enabled IPv6 NAT support masquerading and port/packet forwarding for IPv6 only with rich language - Handle polkit errors in client class and firewall-config - Added priority description for --direct --add-rule in firewall-cmd man page - Add XML Schemas for zones/services/icmptypes XMLs - Don't keep file descriptors open when forking - Introduce --nopid option for firewalld - New FORWARD_IN_ZONES and FORWARD_OUT_ZONES chains (RHBZ#912782) - Update cluster-suite service (RHBZ#885257) - firewall-cmd: rename --enable/disable-panic to --panic-on/off (RHBZ#874912) - Fix interaction problem of changed event of gtk combobox with polkit-kde by processing all remaining events (RHBZ#915892) - Stop default zone rules being applied to all zones (RHBZ#912782) - Firewall.start(): don't call set_default_zone() - Add wiki's URL to firewalld(1) and firewall-cmd(1) man pages - firewalld-cmd: make --state verbose (RHBZ#886484) - improve firewalld --help (RHBZ#910492) - firewall-cmd: --add/remove-* can be used multiple times (RHBZ#879834) - Continue loading zone in case of wrong service/port etc. (RHBZ#909466) - Check also services and icmptypes in Zone() (RHBZ#909466) - Increase the maximum length of the port forwarding fields from 5 to 11 in firewall-config - firewall-cmd: add usage to fail message - firewall-cmd: redefine usage to point to man page - firewall-cmd: fix visible problems with arg. parsing - Use argparse module for parsing command line options and arguments - firewall-cmd.1: better clarify where to find ACTIONs - firewall-cmd Bash completion - firewall-cmd.1: comment --zone= usage and move some options - Use zone's target only in %s_ZONES chains - default zone in firewalld.conf was set to public with every restart (#902845) - man page cleanup - code cleanup- Another fix for RHBZ#912782- Stop default zone rules being applied to all zones (RHBZ#912782)- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild- Default zone in firewalld.conf was reseted with every restart (RHBZ#902845) - Add icon cache related scriptlets for firewall-config (RHBZ#902680) - Fix typo in firewall-config (RHBZ#895812) - Fix few mistakes in firewall-cmd(1) man page- firewall-cmd: use -V instead of -v for version info (RHBZ#886477) - firewall-cmd: don't check reload()'s return value (RHBZ#886461) - actually install firewalld.zones.5 - firewall-config: treat exceptions when adding new zone/service/icmp (RHBZ#886602) - firewalld.spec: Fixed requirements of firewall-config to use gtk2 and pygobject3 - Fail gracefully when running in non X environment.(RHBZ#886551) - offline-cmd: fail gracefully when no s-c-f config - fix duplicated iptables rules (RHBZ#886515) - detect errors and duplicates in config file (RHBZ#886581) - firewall-config: don't make 'Edit Service' and 'Edit ICMP Type' insensitive - firewalld.spec: fixed requirements, require pygobject3-base - frewall-applet: Unused code cleanup - firewall-applet: several usability fixes and enhancements (RHBZ#886531) (RHBZ#886534) - firewall/server/server.py: fixed KeyboardInterrupt message (RHBZ#886558) - Moved fallback zone and minimal_mark to firewall.config.__init__ - Do not raise ZONE_ALREADY_SET in change_zone if old zone is set again (RHBZ#886432) - Make default zone default for all unset connections/interfaces (RHBZ#888288) (RHBZ#882736) - firewall-config: Use Gtk.MessageType.WARNING for warning dialog - firewall-config: Handle unknown services and icmptypes in persistent mode - firewall-config: Do not load settings more than once - firewall-config: UI cleanup and fixes (RHBZ#888242) - firewall-cmd: created alias --change-zone for --change-interface - firewall-cmd man page updates (RHBZ#806511) - Merged branch 'build-cleanups' - dropped call to autogen.sh in build stage, not needed anymore due to 'build-cleanups' merge- require pygobject3-base instead of pygobject3 (no cairo needed) (RHBZ#874378) - fixed dependencies of firewall-config to use gtk3 with pygobject3-base and not pygtk2- Fixed more _xmlplus (PyXML) incompatibilities to python xml - Several man page updates - Fixed error in addForwardPort, removeForwardPort and queryForwardPort - firewall-cmd: use already existing queryForwardPort() - Update firewall.cmd man page, use man page as firewall-cmd usage (rhbz#876394) - firewall-config: Do not force to show labels in the main toolbar - firewall-config: Dropped "Change default zone" from toolbar - firewall-config: Added menu entry to change zones of connections - firewall-applet: Zones can be changed now using nm-connection-editor (rhbz#876661) - translation updates: cs, hu, ja- tests/firewalld_config.py: tests for config.service and config.icmptype - FirewallClientConfigServiceSettings(): destinations are dict not list - service/zone/icmptype: do not write deprecated name attribute - New service ntp - firewall-config: Fixed name of about dialog - configure.in: Fixed getting of error codes - Added coding to all pyhton files - Fixed copyright years - Beautified file headers - Force use of pygobject3 in python-slip (RHBZ#874378) - Log: firewall.server.config_icmptype, firewall.server.config_service and firewall.server.config_zone: Prepend full path - Allow ":" in interface names for interface aliases - Add name argument to Updated and Renamed signal - Disable IPv4, IPv6 and EB tables if missing - for IPv4/IPv6 only environments - firewall-config.glade file cleanup - firewall-config: loadDefaults() can throw exception - Use toolbars for Add/Edit/Remove/LoadDefaults buttons for zones, services and icmp types - New vnc-server service, opens ports for displays :0 to :3 (RHBZ#877035) - firewall-cmd: Fix typo in help output, allow default zone usage for permanenent options - Translation updates: cs, fr, ja, pt_BR and zh_CN- firewall-config: some UI usability changes - firewall-cmd: New option --list-all-zones, output of --list-all changed, more option combination checks - firewall-applet: Replaced NMClient by direct DBUS calls to fix python core dumps in case of connection activates/deactivates - Use fallback 'C' locale if current locale isn't supported (RHBZ#860278) - Add interfaces to zones again after reload - firewall-cmd: use FirewallClient().connected value - firewall-cmd: --remove-interface was not working due to a typo - Do not use restorecon for new and backup files - Fixed use of properties REJECT and DROP - firewalld_test.py: check interfaces after reload - Translation updates - Renamed firewall-convert-scfw-config to firewall-offline-cmd, used by anaconda for firewall configuration (e.g. kickstart) - Fix python shebang to use -Es at installation time for bin_SCRIPTS and sbin_SCRIPTS and at all times in gtk3_chooserbutton.py - tests/firewalld_config.py: update test_zones() test case - Config interface: improve renaming of zones/services/icmp_types - Move emiting of Added signals closer to source. - FirewallClient(): config:ServiceAdded signal was wrongly mapped - Add argument 'name' to Removed signal - firewall-config: Add callbacks for config:[service|icmp]-[added|removed] - firewall-config: catch INVALID_X error when removing zone/service/icmp_type - firewall-config: remove unused code - Revert "Neutralize _xmlplus instead of conforming it" - firewall-applet: some UI usability changes - firewall-cmd: ALREADY_ENABLED, NOT_ENABLED, ZONE_ALREADY_SET are warnings- Do not apply old settings to zones after reload - FirewallClient: Added callback structure for firewalld signals - New firewall-config with full zone, service and icmptype support - Added Shields Up/Down configuration dialog to firewall-applet - Name attribute of main tag deprecated for zones, services and icmptypes, will be ignored if present - Fixed wrong references in firewalld man page - Unregister DBus interfaces after sending out the Removed signal - Use proper DBus signature in addIcmpType, addService and addZone - New builtin property for config interfaces - New test case for Config interface - spec: use new systemd-rpm macros (rhbz#850110) - More config file verifications - Lots of smaller fixes and enhancements- use new systemd-rpm macros (rhbz#850110)- Update of firewall-config - Some bug fixes- New D-BUS interface for persistent configuration - Aded support for persistent zone configuration in firewall-cmd - New Shields Up feature in firewall-applet - New requirements for python-decorator and pygobject3 - New firewall-config sub-package - New firewall-convert-scfw-config config script- Fixed traceback in firewall-cmd for failed or canceled authorization, return proper error codes, new error codes NOT_RUNNING and NOT_AUTHORIZED - Enhanced firewalld service file (RHBZ#806868) and (RHBZ#811240) - Fixed duplicates in zone after reload, enabled timed settings after reload - Removed conntrack --ctstate INVALID check from default ruleset, because it results in ICMP problems (RHBZ#806017). - Update interfaces in default zone after reload (rhbz#804814) - New man pages for firewalld(1), firewalld.conf(5), firewalld.icmptype(5), firewalld.service(5) and firewalld.zone(5), updated firewall-cmd man page (RHBZ#811257) - Fixed firewall-cmd help output - Fixed missing icon for firewall-applet (RHBZ#808759) - Added root user check for firewalld (RHBZ#767654) - Fixed requirements of firewall-applet sub package (RHBZ#808746) - Update interfaces in default zone after changing of default zone (RHBZ#804814) - Start firewalld before NetworkManager (RHBZ#811240) - Add Type=dbus and BusName to service file (RHBZ#811240)- fixed firewalld.conf save exception if no temporary file can be written to /etc/firewalld/- firewall-cmd: several changes and fixes - code cleanup - fixed icmp protocol used for ipv6 (rhbz#801182) - added and fixed some comments - properly restore zone settings, timeout is always set, check for 0 - some FirewallError exceptions were actually not raised - do not REJECT in each zone - removeInterface() don't require zone - new tests in firewall-test script - dbus_to_python() was ignoring certain values - added functions for the direct interface: chains, rules, passthrough - fixed inconsistent data after reload - some fixes for the direct interface: priority positions are bound to ipv, table and chain - added support for direct interface in firewall-cmd: - added isImmutable(zone) to zone D-Bus interface - renamed policy file - enhancements for error messages, enables output for direct.passthrough - added allow_any to firewald policies, using at leas auth_admin for policies - replaced ENABLE_FAILED, DISABLE_FAILED, ADD_FAILED and REMOVE_FAILED by COMMAND_FAILED, resorted error codes - new firewalld configuration setting CleanupOnExit - enabled polkit again, found a fix for property problem with slip.dbus.service - added dhcpv6-client to 'public' (the default) and to 'internal' zones. - fixed missing settings form zone config files in "firewall-cmd --list=all --zone=" call - added list functions for services and icmptypes, added --list=services and --list=icmptypes to firewall-cmd- enabled dhcpv6-client service for zones home and work - new dhcpv6-client service - firewall-cmd: query mode returns reversed values - new zone.changeZone(zone, interface) - moved zones, services and icmptypes to /usr/lib/firewalld, can be overloaded by files in /etc/firewalld (no overload of immutable zones block, drop, trusted) - reset MinimalMark in firewalld.cnf to default value - fixed service destination (addresses not used) - fix xmlplus to be compatible with the python xml sax parser and python 3 by adding __contains__ to xml.sax.xmlreader.AttributesImpl - use icon and glib related post, postun and posttrans scriptes for firewall - firewall-cmd: fix typo in state - firewall-cmd: fix usage() - firewall-cmd: fix interface action description in usage() - client.py: fix definition of queryInterface() - client.py: fix typo in getInterfaces() - firewalld.service: do not fork - firewall-cmd: fix bug in --list=port and --port action help message - firewall-cmd: fix bug in --list=service- moved zones, services and icmptypes to /usr/lib/firewalld, can be overloaded by files in /etc/firewalld (no overload of immutable zones block, drop, trusted)- added missing firewall.dbus_utils- added glib2-devel to build requires, needed for gsettings.m4 - added --with-system-unitdir arg to fix installaiton of system file - added glib-compile-schemas calls for postun and posttrans - added EXTRA_DIST file lists- version 0.2.0 with new FirewallD1 D-BUS interface - supports zones with a default zone - new direct interface as a replacement of the partial virt interface with additional passthrough functionality - dropped custom rules, use direct interface instead - dropped trusted interface funcionality, use trusted zone instead - using zone, service and icmptype configuration files - not using any system-config-firewall parts anymore- new version 0.1.3 - restore all firewall features for reload: panic and virt rules and chains - string fixes for firewall-cmd man page (by Jiri Popelka) - fixed firewall-cmd port list (by Jiri Popelka) - added firewall dbus client connect check to firewall-cmd (by Jiri Popelka) - translation updates: de, es, gu, it, ja, kn, ml, nl, or, pa, pl, ru, ta, uk, zh_CN- fixed package according to package review (rhbz#665395): - non executable scripts: dropped shebang - using newer GPL license file - made /etc/dbus-1/system.d/FirewallD.conf config(noreplace) - added requires(post) and (pre) for chkconfig- new version 0.1.1 - fixed source path in POTFILES* - added missing firewall_config.py.in - added misssing space for spec_ver line - using firewall_config.VARLOGFILE - added date to logging output - also log fatal and error logs to stderr and firewall_config.VARLOGFILE - make log message for active_firewalld fatal- initial package (proof of concept implementation)/bin/sh/bin/sh 0.6.3-13.el7_9 firewallapplet.conffirewall-applet.desktopfirewall-appletfirewall-applet-error.pngfirewall-applet-panic.pngfirewall-applet.pngfirewall-applet-error.pngfirewall-applet-panic.pngfirewall-applet.pngfirewall-applet-error.pngfirewall-applet-panic.pngfirewall-applet.pngfirewall-applet-error.pngfirewall-applet-panic.pngfirewall-applet.pngfirewall-applet-error.pngfirewall-applet-panic.pngfirewall-applet.pngfirewall-applet-error.svgfirewall-applet-panic.svgfirewall-applet.svgfirewall-applet.1.gz/etc//etc/firewall//etc/xdg/autostart//usr/bin//usr/share/icons/hicolor/16x16/apps//usr/share/icons/hicolor/22x22/apps//usr/share/icons/hicolor/24x24/apps//usr/share/icons/hicolor/32x32/apps//usr/share/icons/hicolor/48x48/apps//usr/share/icons/hicolor/scalable/apps//usr/share/man/man1/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -m64 -mtune=genericcpioxz2noarch-redhat-linux-gnu directoryASCII textUTF-8 Unicode textPython script, ASCII text executablePNG image data, 16 x 16, 8-bit/color RGBA, non-interlacedPNG image data, 22 x 22, 8-bit/color RGBA, non-interlacedPNG image data, 24 x 24, 8-bit/color RGBA, non-interlacedPNG image data, 32 x 32, 8-bit/color RGBA, non-interlacedPNG image data, 48 x 48, 8-bit/color RGBA, non-interlacedSVG Scalable Vector Graphics imagetroff or preprocessor input, ASCII text, with very long lines (gzip compressed data, from Unix, max compression)R/usr/bin/gtk-update-icon-cache /usr/share/icons/hicolor &>/dev/null || : /usr/bin/glib-compile-schemas /usr/share/glib-2.0/schemas &> /dev/null || :/bin/sh? 7zXZ !#,] b2u j wcBk?ܳM-qnv Ljkpѳj)m߃.>`0AkLbu4sqGO:ğxJA MxdQt-S)b/%EyJ&At2J;HީUdG!?Q#;NN4\*z/8۟޶+VwGFғW"K}\3NѸ5"ZfX 5h}Ic-.>!zߘRliĎ_>I({qV^U.xtEf,Slz MøxpBXzʐSbӔW_tBuj!"!;$Os0y.pkauѯG8N͒DyqoQoOwb~z*k^[)]\o9QA*K[4|6LLq/_ө05f8ԿP{T>*>>g^if{)|j=vld&j8 3S zFTQ՚GLcoˉ 9a# [8ƹiIOЎ=j=UWDMʍ?,|O)5٭!j8XF{'3ئ9 !o/ 9r%@.?&:[Quc8 r+s,@7IucB]"4# ;G.b窣-%.6`[uqk <~v:|1z7}w ^E6) x.iG'U߃/Q*{ 0$t.tVbA13O4FGS_v>h0XlUTaa|%\^lNZ^w]YwPqP%p;;̱gX4D.Ab,Ig믳* 0 m[󉊆L%]0:&".e 歱n]*sq{ N+*1ػ]mv]eXwwQ5^tWod] (-FA)_K]&CB+0픉JύX2?_7Y8 d:SEbq8A=KN(U7~-$C:"Ϧ ;'ݤ\U;`˜R !>1rJbؼ(kp7̟ѰPk'*AXwsb1 7:ĶEu"Ypt f9uYu ^N*^̏8;r0d;,]gx(3\#)fzа߽Ky5ڨ=P1NHBN7lNrKdv-,I$r~EcZ 8B݊5HWN B=5kI1Jc&MQi<[eFף˻Y5cX˾s~obAAZjDF=[˼--vK_CSN1k*cf]nᒍ:+jLK<;jEai^§_RPD˒ahI0ycRixlU%Y)͈f͂U碟`dњY qλpA-G.7"" (IPz{J#jughRUIxl9ݢS@0ɾ|K41ȏ"q3Aia`Zh?ZwW_-wZm]+RF` K>xwmj8?Sxk{(D;*r>~[8 WW>tu52w<8/0KUB!UrPL-(RQ3 D1mQA5V82v/y0X5WRux*ȫѢh5S,X2 Y>.q(>Rf*a:$%/mi[R.$`_ǧEJyݺk苮7 E ޖk=ߘ0nIݩdz\R &ed>5_ ݲטtAGᢐ㋑p>>Ĉ8Q'e NvF+冴J$vQNF00f0߸sĨٜx Y&3SWy*ڧaE>xs"m}L[8"M'g#0 ݿyk*f];A>167>4wj޴)CY=Bq;ӫ$KFh-OXۮq+0~9.YS@Bl-?;4}T.S2 +nSvF- >q.'E"Ʌ:V'{b,~mvzX`r5K{"vWIGS@bJ6s' L˽u}E=#r,%zWRkjf"Awvp@Q[kfa'E7}uc_U3C{O @-NjMJוi=8zMv(J_h1v,Ψ.C=GD\`=l_HJNuw]au5&?"+TVHwѮQh(DKQ'VYkH5e_=A)hԢHYC~ m".!bb\&~BBPp35/?QK.Q: rbTu$p81]VnRk_w$c%DO<-k"x֛U"rТe%sxzY&ΙGE3f"PV%Vܣ/\朌m-<)V,i`If7.ׅڊtA%R9W "KIxxtƈ0L7oW+ףڙ|V2>{IO\-LNjԶ] T cj_;sp4u2?ZMoUa㵠ڝp[4¯Mr0nfj: ?kPCzDz-r5F\Fϩ5DǑMg]*W)ik*@VY .IF}0<'M業$ _ce4`kq "C`Aes@p0#٨uzYIq*д ]GE?&ekEwEz @({$mML:!A{M> (1%1@i w"i9}=F,]$Td$Ч>8G꘳zDte#b{J TSLР|Bwp,ߢe>-t5 ű:|RV2Rl`}'D +Lڞ"s)|QdOXcRA,CWMX[?˓l.W;YԪm]dc۪tɽ1W$lGkHM#1KtA0A e%.SuY~>cE'eLweU:Vb2ʋДЄI›ӣme Ap*X2M&۵Z yڡ8;<]zS9Ǝv=<ܐib!^Sɲ;|Tn73O"Jڳv8gh@O"G#v?BӼϿE`u9.>`L&Nүd*$/2t[~Ay+}D^2!e.X0ĽዧUQ?SSmVE;JO'b,~"_ĉ ֑,5ԵD?)6b( )xLn[u`zð(j |(cNhqtaL5 ]>ҏ&gLm`  MnwZ=JRx˪A'cحǡ7a;/R@n[}0)/Gl.4 ,>E\Mr(u"0{lI1svNeg˕AZ"j2B C07G pEI xN>&{!%?@eu:+}$ha*iEX/ \9LK [R I@%&]hvu'~Dg'EWDG,_z#Tıw:@EGƀ.~z:߬\8d Z8voCfCsGB(HV}5B!kenH2~.G?_ UNiêrTh:Th~Tᴴ8Nkz62w 5lMp2WGH_ :+H5N^%<-[u:kd+ )qC|6DfGi *{jWZ$cXG s]U=oʗNyS$ k- r\鐞ĩKrmSnÑک}vwYI3"wAt[_OtGn 6q@iL}H= SIHNʕkUМyrP;|/ =ՎTrd0,`,n"J}9In%t3jv _EIY1B!)3eE(N2#zG~3=q1y6ps>)Ɠt#'lNplV&ZRш5UY_l1&΁zk,x36̴ qP7x`C͌7K`QP)wvM+X80)ͨ%$P EW8-FG=tv` h0Ge^CŻF鍪H;"b?xPvש]p,5?v ص%^vAXoqc쌙!k5͊Z5[kx-XĻgVmےbsuh>tNquJPDiT62SC;o:gy/H+*s6QE02>Dw@?&#Dݕaːr3(WwY9ԛ%r@]Pi6K`:F3mD̜@v"#A-^xBg-wݜ>ft֚G$ft_l/˜ 4=+f`M+K ]ҕv' LÀϏ ,/pJ|"`'PV `C"`F6]*8M3_\߯Pg;B%{!鈎j oݻ$>  baVx?m‰ 9[<w.%qV)_XG)$ 1.Hߺ[ 58Jᡳ@}.y3Z {?FW0{x1izuhAMa;FZv6[N :h 1Vl҉*D׋OAc;r3SMpriE”n0#xL{q$ypۜb־: [@^d YGƾ֬޹QoԛBUxۻj```+WrЇl2Vo90n.C֝kDxa][G$o!1[KZ x:t-qG=YkWdPVTrL eͯE Uo:) SO\TE6sjmycŝ3Ow"D =il8. i/)'Lrqmf{gc`2'7N`wmWN)Mj;JipYAKn@)r½TYt*])DCͱW+d'!SuvemzE/ ؒk-kI.%U?Lf {df;=.) kowk'{,ǃէ W-_,v~NG)¦NכteG]_Zh^<h}B_2 5N=(\: WK? ^%HyO"IxNQC:,=iDd;L.agSLbGJS(E@r$s9oòfg&B%$?C(K;\bzQv? inm6dSWx7ѬqN>K^[v'O\Jq]wVqQ$/B T#;)G{C$6 /)n]Jl%FDQFFxaX M4ACHԠ.NXehs@=[>_~ĻKRoD4d,-R ޅwVԝBYu)} 1 %dh'H R{1 *]sM<#A$0WF.P;j^xnBC3Ӣ^ݓ]%Dpp&;qd7+Lfn걆b°}p0+y֏9mlYBd-dPfJ _>(VK^H%S=S:*% (\Gn< 9kh`v]m K$@d·'$|;TjQrAs38B=&$fBJE6{&W;hIだ.)t}D(&ueb5,U8$DɿsOA-O䭭;~Z&9m>"Z5YT7mKyډVX!FWVx jnhś<Вx4)6(q]x(ٶیxz8~ ]:NjYh E]KVݢATcSi{yik{>nzx%dM,@^ Yb呓6ȥ˯.Ϝ `aQ+l'4/ڪ?=tBGCM98ӳ_'i-Qu!dtCB;3 8耴,Xm>rhA~yߵ3!s7t6x۟=8%VkWSkwIԥҞ[ĜK~We6j\^[~ scgjfTK#@`>t]޺Ր\# c6eK-֎$W~Yir8߆I:vėQ^F2O^=:Dw-јB-R/g0A<+b#s_t5PGLl_dIjq{:ASTfVt],@=Zkbj urU*.C o^-4QE}1+Et\@r|ODCCes2G M|XQwۋiL3Opm*]CSf&XA;˝;VV2-ztIzʱ -i9t<]ҹWX~x@j!qu\dP\UY0.jZ(]˜ ?N.\0lqJ!)d~k7nZ񣀅IVcP 4yA A`,7t]/YZئq OfAR2yϘw`[ŋ1܋ m[|Y6,\.xt=z,@En=4'S~yAʅotVI;̘%[@o M#ZfQ>_4MDkYOo@6>0'd;U#_]$aR`L"Dh T*6ݲKNP{ t0K_NcBr8j,_[b+Uލ6/Ә58E 㷶kuS-TVJa&t %K뿻5*o6``k;1p_xG&N>%Ѕ$^E{7E]jOxoUN'E99G[24XUgOLI7/x`^Ru v=VG#]Tmr66SLO5bnxZڞVNJ{P 5X_ wQewH8,ui񏖈H zɒdNlAV.p' BָWT4!5?Heg1m|Dx&%+MK 8TEp/Z5qٔ*`ke:n!mLBf @CAS{o]&mVף3&aGb()ywhC{kQ?C2|`V}Jǵ74 51ǚ'A,v@zL椁 O i0WNЁSqS "V"`| .x-$@NYb7)-&;hYk[vT3.aCEB}Et|/Kp]MymdZ,ہNpn[˭CsjZ_R!R/ d\2 QUPK!dE[&}O"4IcwpC!I8֮X*ս%w)+oo cc۟]uK6<qF)_|D o}%J6ER-5v#x,|4,hWR|{*ludB<&e&Jpw2v4m*)|piS>׿BR'7)[ ,5de֚m'conRC}A1r|Pdo`3 6XC[z2:$~`zZz00!( e:%_zNd 8=jSG"iA_q a \f4b6d Gؿ\+Y vLA=Qߢ?ou^)%IE-YE>" k먙5.}p)\K½$[5'@k3BH2"fyRīM+l/m\a.vˠG{tXߦ]g.G}xfhվ/}' Hߋ14&,*a&HdK:є(ѻgCxidNt׸ѐ硼S>}t{gjZZ (a\o@Du?(M 11.E;FLMZi$!%嚂qx^mxHo$∕60 Jьq;EJ:#}SxD0_);bv7Iv܌=󹹅hpwX¢u'L}6Q?ti\5wBPdߕ?`g6UdqљgTPt-q1^A2:`dřؑ%OtRagl\\HȚO{WOg̉&J&24&Hpz\.YY{;X@Uf2oVjɎ\S(j8P}Mz%@DU1 ;̃R1Z)4k`@C^zd3E&ךo *tE<%L*R pjE;9ǂ Qsɸj_uztA9o4tFdS0EhOY uzʆtTT#f،I^݄zPAyg 8!!TP.0`ʃ'3 QaIjq0X_^Mš qy="r'sl:0O1]Z[آHEwl#tGN@ܳID0rQ.3QEVw׸sJc1=J*N P«Fa8gwN3tb-J?tvCg˓< ԕ3tŦ<M|qӻ@jmJ˓mpAf HWpXY&Z7 -[TO$r:nx)L",Tk@NFYoG ax9Q칿 W$7p^Q8XC=C Cܨ}>^6z kA]Sdy:m6H>l4ʹsdn7as]}\-~6D J oP[ B(W '3 HOڰ]M-+Vjؽt(jU`P VQ*8.i'-\CxW$r}X;㭧o13 O ߃Nƀ^l1^NhьAbn2A 6^7Z/%5B~8tjY 7%GUN82 D XS\Ff)SA86TKB8&>$$&ן;󊿶,`51 peh-֧}o`&ULGL}db]DBF+CpB'l \s^\ Nם*Nṫ#π;oIlT׃Tb/u?$HԽ//%hnlvT3D7-,.n\^Ֆ5V U+0Șq9moV!ܳks{ /Lt GZ%kqNY]&`Q)9=^Ӣ..l2 Gd )JmtH]4WQOOzSgk( ltb\E]Оz.1`dɀ{a͒Y2 Y"R: 7Xu7\GM-9z3^?%*# +޾+)ØɔĄ[(*H{zk| ?;S)!Lj j'?/(G~JD@ua{H7W hj3r^v9y]A[YMŰ@~2e|żw6e+aÂ*3jhwS\/j}>UKo'@bWL Un{;KiÐѱt-l,գ~xTcg+f,g4Y[oZ*&cDwp¼ӈqhpizu}X18Wc1\hJYI@&y_be>&\K~LAX8T^f=B8A b?/ixGCPr5lSMwxKFsx7HwҦʀ\TKGfbOM>bːF9d',`mv#f.jvh *ױXpsOz8VJLy_mR'5Ƈ8VpZcLqUke7p.l0~||5(~4;(!;BhO~jq4iwt a-P:JRD!&X~8~abݒբZVj{[O5D#8Xy:l kEǝ7#GIs?a/SnF`m%L[DGZ9D*TiG=)q൤ G)]b6(pu~U3ߘIknX9G1#Feo/v݌hJ^],1ݼ&P bI ݭ}Dͺ2^@iَPq5mHWըu8 YR9O? kXyo.RQQ+g}sS *Su[u2X0}!ssKmR#5JP: r1qk_b!~w@dž-9rnن- w׻HhRɾتi}4گmC ,Mֽx#\ 8$^  hk쐢$ 0.Цߜ{4^Ij~^j>ѻeB|^W:y#v{1&'"PW K7L2Rq&Sή7À"}߈|-Lr2 A;vF L[i+6,K4mM~oJ_u5O~W9x)UPCdK~ ;!ߙN$jjI:? /9ֵ|i0ϡ+ʟ׋Ӛ^VŨsq\h=+ŨT`jLh f+-"_%|k)3 W@K_0p 6Xu>"t\o^rPcSN/i@4 ?/5:ER}m=?K=po$,Dv S 9Ӌ\bS {T4YB( HY4LJI-bcCYNUnqDsĪ ̶-ޟWLk{ O }}d"'AV:ӎqNY `/?rM(nɷ''>N[3X1TEbr ~oJ* ݒ =MgB/Qӿog2r]j&A [oU<C:z(\s9yu;E?39ـ{0s(YP!ABC=V V*,̣Mt|z3,conEsҜۍQ43:Wd߯= BGCߏ0IК]+A^[ˆvrB-}bfI} ˬ}#Z` 3DŽu3/fkr)W%$*!]F4bL`؉"&PU8!A_*y\MM'qn$^BZdܕ9."·mRM vRX*UM 2G nl;MAbORotP'oGݯ?\ h%Gt`|2#"fȒk PtoԪ&#F N􏘲 {RdKFXKJ33.4΃Cfm>Mx =LƆf7şI_:5ՏOr5%ڜN(| >>(9 q0p#eAϪ=ز4ȈJXI|C o$̷G5Hjw4"ɸޛ _.]X_V;Iɼ&UXE"8rD}RPr6 8RN 0@R^53|Vz"~;L T[wp.2Q:7zuO@sj6uyj~ wOWk;zs MW`EJW8bRS?S-Xg4yvتP=fڗǙk|:ٴlZ⤻XD> _m3'%WٓTD,rQ2'WMs`l2_8Ir@l(-_4NyVޜg~So>Bka}ӆZ1Ϟq6 k|l!>ke" ߜJ+J+Y?>UNH~`5m\-MR軰'vJ}& Q{iể˽[Xfmܜx-^+V߄bnjpxx:Th'f6aج< E XyNVdi?QO}B9R>.Dߘ-'u #;&TFl3 H1i\[%Y'>ηvf3|Y2{5NOK)!|mqj`J(C 5P*# Tu_t`H$(f`\r > Q!R0 jٌ`q|=-@(qVl2NR˄o?&}ÌT$xi"CR ƬZfSmwrBu>fk5EBFg7bLKΚ"vIRA/jW7 1}j>7 Q wEOu |% Óį,6(Ӌҿ' .w9؅$,îW{UesO1J'8d7mkI2fN*=e֏SF(QA)q9("%SS-H-@C{,WÄ2r3Bs]3M23Sk"kL[Q*0I!(_m-"rOlїiF?e.n|$%(pZ霚Փpˆ-H9bߐزD z(CO|:ӵE1g3 [9U =Mgb9btgȽ3A9ЗƬ{/FY#] k%}mGEESxԍA-E)m87Tzj9 4=[wc Wc9c8nK+j@fL^5ا-/PpEvU`JPG| тq١c1s[BvJ2:)Azc^& Ѫl~#$Y8;d]?YMYiom|73k~Ñ>&M"7H-ekv!-C$A@@ʎ7߄4{؄#&tg$'N/rl<가O}k[.I@)v791Yw .[;AxvY*rsm ׌1іqN* u|M=?U6~E}JLD%p{BLQ_?p$%?8M86-.P'P>ai*LM[ܗI0df<J sI ܅ѥ~.ޅ5@OIMV0LKa[ƈEiœ3م)F*GO-<4_HW@ JևX("mɄEo\U _Na`r?/?KQPW>h@sikhoz.)s?Iu\mlb q1R* q9^q-pgm "23t) SAКiHJtHahNĜAX,hiD#oV:ǒUFMQX[KAo 6lYJ f{;7*{J֕ Jtx"B%[eOHiLe~G И{6gDhM s ́w\ki5rF3D/5) E¦/:KšMNxܲķtS]i9} Ez(YqKvb=>.2)Ry(1 FuC2O8B8ӊҸM3~:`_egQ P[4(|*L a%?.0rBj>`kqbK89c}pxbKԆ U\Z%`qKU~ )V1~+\^9N*aUha BC1yYL6FB/3aI Y*vئ[Lj>!ibG鯧fm|Q#U;s,3f(@("Rkt!ԃ8RF%?kֆ%*Ccb9VqdOgY==,C>z<[B_&1j"?wVH#XWXN)ʆTzzAݙJoOv9V~`1cR³@OO\nB6݋<KNa1FCF5'0*7n49m縙f\em"gs .%~gZt5Qk"LCxx6'ZSjuRT><N^φ彅=lk'ev~1f|K߷z^|(w򥢜 bLdRvy|% ?Tv1ZmRHCڭp/(ܷ`Aq_ "V:\TyC_5E ^: p.d[b+:;pq9 _B>^0>>s ~Wȉ?ѹ&Al&X+;\Lo]D mepC8XG:j#idj6/P+.h-Qr7jRKCal5.+.+λ . l-z³! +"OX m{yk^mNĭ_c3bpt(QNv[=J12Mh\B d0 wxʞnYZ#N'qdO'6xoCcS rTT0It2eiV䥯$`2oJ7Ǡ]rfל; UÎO I t,_=#{xG1}36>|Ī&L^pc lJ vU6|5H82]%ٹqܩ8(VJh8qko꘏#_` QZ$n2Gbnn$npWVĨY"Zk۶JT .ӸƎ V-E.}m 'h9sD[ Jo8!pE҃i <^.tj1PUpo;Pg(k}ȮkI"s`vQ^R0iC/` $W܊lv3f4Ύv$T \ՊTH|<5(=5(s^׉di}N3X*y`X\Kwab3f:%nc*iˣb;N9Ud^X ATjagL+EJ5+TE)c)yˠoc\bJMM~ U")QK aX?Q#B6mbwzDTFˮH5[BF2+4g- 2ҝiBs&.eVt1|7)֯n2e rC`gk(!ŦMBs1~F{SR2AE2^<˹%$4c*; /eWq=KܖW`jT#bv'o&Mk ,AUї)J2~X8b \|XprsRܕb|zhf ]kl/|P݀~)/^8HisO!bay:I@$UR),+E]s/m =J1xDaޒ[!ij#L:J#[bαd<$![gn^4Px.s˝#0}J?Sbʼn :fCSM~@z^ɧ4sszI.2Ò 8}z(W>-yVPFSe'CtŅ]x BgĎeVc~PCx.xs+j4!! ԡSL.}"M/A7~#GUO P[%є;@wG;{i7S^\Pq|$n, ^]Zё)DLMt]= L,G4*蟁l c̰vafSq7n7#±4օgJ'D7.CA;RĬ;*mM&v+v>Vb tM7?]Jb jArm~n5{7haxW-: &b_#D0t\`TO!/[\}>IFVODG֔ןhiȽ`U_@hWȾ 0ls)ɚe SQˈ]rc'B^\,[Hkz?V4tD2:-*-@ԼƱ2lف|5(Pi&O<2g ,@(7=hc#tYtM4 S2 -k7EipSTЋqX F;' !s=sDiȢ0y&Rϳd4L LPit!fGz`#&JP'gBe:CocΜ0 '>ٓJ64fV`$d| yc"5r)R3Wtڸ8ͯ(z$K['1es%#?y{Z3 G] jrةDڄZҞXⴽA@Y XddO%Ek`؍6Hhnq\Ki#mDU)d!Ђ~s/A8DM/2Uo%bynHvc/?q.=ÕåWli -y3`uK]_o j:XwifOgWwlDmb'pP#5>Fe\p˃ p-#l0v~f&Y?b Kz9Eyh E%?6R4I׬Q[D (޿.sœaS%?F́s䈍^1"CuB윧Pl"}BEAp'}ur1Hh{߭X_PA Ɏ  c8='quEVĴ`f+ Lfbwn2PP x ɽ{&_M9؝-Ey:5pIi1Buw>GY{H+ 2|@RlS?$X*QR?$@D7V/Skn 6c!7m!>!p%^{3/fL"},D*лhp솓%6'"?;IMx:YFʃ*!(X:G4u(!VR^*3y{RmJ$,.A 'o}`U֪ <: 'ȶx^1Τ|aWz;Ȏ Ũ}E@JI7❻K6tFfxG=ON0_=wBV5@ 2-=97l&HKʟ 0Uމ|n#3F*iOw}jUp3Li) mgK[S^J?,dF}_WW hmʙ[+4a%(qIٯkvWl^}!HhHSYZц(Ubn60%ݛ3Yy8MV&-d6%1<Uf?b4AԸ@7?m(Ҁ`eGMf4zP ZB.Z]>}$7Cbonz]bYh|k#s2O% *̀-̫3)1^$w/6~0RVxm3f݄AbŠzݩ ќo в0p'Ű$>6~o5d7CzRc,'O/%ްɜ}ڝǼ!A. JL9y͠TRp0 ]_Fgk1X'dҩ x1ͱkvgtnP{Ĵb|7;M7Y/Ȩka>'pX# 9xn3CCKNl1z{XhxG2Q'0 1.ٛIY|k0iq)캂 ; $@ne9Pԅ87Ab!taFYm@;My?{`r[g*2Žk]%# zS"/w |\a504Mo8q_ڋ/H'I;$7*%LoH냈nMSr)htA3էr+3,hC qBJ<Ն]v1 j`\L yEGC(`i{!B /I :-E5}5RͽQ;)iZlA4 ׍{* _^SE)=.+/eoMa5 1QՌY:++IT3HVJj^ǫ΅}XUG6^w0FV%%bLTU%L^y^a4\G(#6d!!-;#SܮsVW Fī'>X8z㾷|^Ԋsfꟛ-/v#0S̃#}픅}F!bS.GPG1ta8,2zzA2i5*Οe"%yDz;RXpXՄ߈Ó8&2}:>jΔfaLCxpǠcʨ3R<9љ6+eA_1[{)# 5r!Q؂ֻ`(ø&+hpc] w8tߙWBC.:+g)EcQI.z|Xh3*2Yќ޴Mt.1U(X B'U=AFлE?FG.o+Ӆ7+pXȋ9(D̸9g8LmЅftx%" GF ڸf!WhL!c$$"!ehhLXMVֱC0}K/gl!Q̵;l5iDƐr;ޣxpPSyD LB :m&,<@O@2Zߧz\iNʩݨ|m3iOž}575U< wC4 '(~2T4GH|&3Z=6'C!̌OQ|?Z,P6k/,-ZLqQ8tl5/l&FXi|rh/>+^_@UpjiC$(dPRdm;'Fnc8cu&pzv#GvNϷ#)-Ucuݴu4QYY4'¦T>t>6 XWbֳ\y)qWֺ?5R*>վvhkn\jx"D2aIgYާl@S zN-hPia^ÿM𨷛D4jqss9M/Ө<U %EW5j#hWp;g*ˆAq;#sۇZTIhQ2x?ZЎg`ⅿ i+E nk[ؐ͛8$:Zfyz}51xR&C^$=!+ʴh2J*(tUM$0=9cZnR:pe 6+r2WaEOxRJP{;/ۋ/UHxFm^v&[l&( HX|6*k+˅qy+oq^d!PVg rFt<_m~D'["=uה;iʚl֬B0-am{MXD' üwO@+7 Ĉ::Z _ |rqReܗxAЖ4bh b&ƚjrʅ5v*!;MsCa>~2'H0G§`uպv5b Hl78#)5cYLҔ5 ѡpؾ^2&EqդսyehIip2˥]?}sD3Ld@³R@Q--;"c 0Gq!xlf8k~qҺ1?:CH{*V gó'CbK?^T$ v$\U'̭WfxYј_f%K}='2ج0UP%vUS!pO.+F]&V㤸8RӸ1{{g\W0?N:^dhnLrÛ AR,44E S.*,ДŇ+t:Ϭ"#{f魗Bk88gT j̠u&Oe.7 Zc, Yr ~%ܢ;bs&YрuLq9YAIwL!n(1GnYMxb?YcP`]v7Y;^_9&˔{py] Z=%\LATrX޸ {q>d91f4;j{ʼnHS ЦHqow%jL~ċ $#cnH ,յI|y@a;x46RkyF`G6l:#e}2Un("ںzG՘rcՅ!;DT>Bu*g윯kA4pfe98`a"~Q3qI%l1Ļx}ͭOzq`g [nT L@cb %0i|b4۸$VMa(R~Fd-DI@6dN@!+ < -YtK]j;5O5XIvD^^I0&@K;F{mum> O22G i}7gېy8霳~.{yUDU~kA AQ8W0/C04qzgFW0 ,=$@i1PyJ+M$1XPӃRRp$y#UR-KN6dh99lU\1h5%8+SG9,}_Xݓ=Xh%Ys]< X.e*9ȱݡ)B t]@+QfذxAh|HWS}/PwU@N0޹WaA'r܍)tbK6`2\Չncε #_I0;bղXZ2͡HV8ϐ>L$/m `R1ʱn?$!NMdmLy:Ǟy R/v$n=F&@\}XG5jږ. Rɂ)`e;f}7}GQaT\֠UY>p# At9<+¥F@Bop]|Wb{dR<yt0yOYA"ujG׸@Bޓ`[qATrzEu+ɺ/;׋<0-:ܲ S:J,)DO&;Isf~3sL}NJɺ"Ǹ̩fcdZm'͂N}AS*gsO\}ƨ`I,Q{n.Š: P(Iz*Τv>MkA k1aM ,*{fd{~U%"'TRT'LQw1:Q{BRė&lT)‘!x0u$uDg%'9{ްz<\f|U;*P}gm\ ^vaQHoŸS$?tL :Fpp22O)!g5=)&R|F))44 9im~I T}(Jj y3.G-XoUDQ@{$Jbig`Foye;l,3* A8̔Q\[qhN+n/ft?rPC42EURd3ӻnVWIr"t-6&`!m]⻉^L%jo8"ߑasp"jQSM4qBjmDÑi8Eg?Q6~)"0ЋYP -_7 {Z?IR+nj a$~g= h߼ڠ@ZdgC~~buFRQn~K}T@('R!¦0e/vKrʑyzx״H8ZDC2}T@|Qyi8:<D24.w֦/eyOT]w LRk2NF^v1:].ɋkm6.bIDzOvM,!@N-L vl 8ֻiDZu3* DM!&N0UOfFppά bկ3$ڣb\dh}(Ɩ& U-:΍cas(zݮ?|ؤV^Q6RgM{~,@|`S4c5_ǧ252&Գ= ϱ-޼T#U ?]۱ḶXLů_&E̤|BMumj*ǃŴ` U1Jgb&xEʸ+0x8y3>A?7R}_78u~{E^Vo o)zc;e!n9=R{g_#:B}?IpI:2rUЕ)OPj3u8e6@KA 6̆Te OxH%"뢳#[uc6V80sR=^^!*I 3m^D/W+@h{""!B JdM+s'O95D}fiH找|T jE4P1hw;LG}n>"dzJˎn`DiGB_yO}k7Кp*/w$??gv l{ 8bvR-XMYa /xܾFӇx?-?ۇe0 Ų̫yS` ʎ~,K g$kEhUv7o\ٟ?\\^  Jǖ6sU }fOZiw3 *s'>|BYה=-"CqɏDZc9ҮE~U8 ;gsAI$퐨K/_Ő:Q] |`a7LdZRn!2m~z/**c;qfdiPcpKoS~؎@dA'LSw@,OkۦcF?6nB`DA,𳺂Iy8J1ɸҌFãU1r[wR}{+@ZMihJYo%Jk+X4(2{I4s&&0@v_ ծGԲOˋ\*L0V(p^zn΃p}6^[#6bR~OkZ+@(?2 BrZ=A6˗K"@]/!bCvL I4hx8<^Mk{Da%C7ytvǛ$DٕGbʎUug|F dAœ#Tlq|nk됾Sۙ8nC]1bܬAAEw}" Av)\<$EkGpHv \J0ſ¬= eJT|Gm#򘗗ߡ .G+ct,5$DKn =j 2G-3>đ_YKȞqlc be,sf"˕N$ |ØH%(H]=DDHGh|(x e`7y# 3A"NlGITP6\`i7,?NUGHEղߦhuWL 5$VxuV:=r\ြI g9 WN6b˻92#\f]^wٸS4kjEȠEsGDӱ}}IBd na |S8K-o57bXA^^KyI!.0+E/Hڕ~L7y(G?HWye`~B?F(?2jOC|`dB[sYvuoPPuc!놘R]p஑䙗eن@BQWw6pG'BĄik2;L[X@p-B^02 PW5FcVzbI)=^S?Hcm2%r潚YjDJh}!uA@Y0IB(%De,P9]M 3f]UmڊNdکMLH8Ir\Q%0# 'l ]p&P4Oy '4ݫ S, Y"X=AL $vEJ^{Ʃa0@@ VC^b ЊLl~gF8X7h3 (#ř.uB)F/! ksa%%]"L|z@۸Q:VZnO4S3M8j tD'H7JWkգW8k<(:gWຏxzϠ)Cc̲̎Gy ?Q1F6nte.#<Ѩ =³z*x}}{OdB T#7@Q5JkȽM $gאLrT9Ծjz?^9?TnoKL} !F#/~&d4뺯s ٶxUx~U[UsM7\~v1"0j9R ) ל ~vqhZyueIHV]8GIqFݵdE(1mOD*i r±gEfKwUNB͕1aul:IǨ'5^ 6T9r dovZc!?ѻ<w'T h c /AUa=ʪ/@76v3\\K$fླfeL^V/e3BŁYHэ 2-"q@=藺\A{7Eʫ:kB N,,F4n->aJѲzҟX EGmp?>@_,&u6I{RRiwҠO-2suL 3SP\ab>eC/FQ=vyk@Np Q! UEDXi/gdX}*Ou5yqEǎ_wPBjtNW!!4rN JE00Է䈎O/0$7ѴECVg8:xT]D'?&T̑- otEtҼ^jєK6x}V냛M/t^g5$.#t>w>:>Qzng ϥ ,-okh/I}۝}a].xe%1q8 vR!Ѷ1ImK e} #zS:¥x.+(4HRոÌ*vHkv 7h8[,cr.9J堣"Q,9gUDA> &ЕvÕP|i #hCϋRۤg.mӂbDD)޽|ocA^_ɳ`3ڕKą6s1SP q {HI"\,TBtMfEQC+]l%fJrzl@>99:Gy}m_!^[Tw* . pmNP%zp oH F& [C:yX9*ĔAȏ_LR|‰U%Z⊗vx/cf;mHV`a:RߩER=gQIJ ZY= * ej0ʆ!N"/YeA(X<ˢB-UҧA1'~w}ty0W"@}nqM>"Q`f}-G 1F=6EۻrfKd&tnC+ Tt Sjv%*->MɐP)[:׋8 <,AΩ^0, %NȈXd+Vw}?f%UQB2.Lh9x;$vL)uQwY:m"y{Z$X/1׆wJfuZzXl +y=ߊԧvsiEJk6%@gJŵ;p2Dɺg=[9xUiMq$!Bhc fjH$- P@Z꩘wl}̌O^9nAH| s/`X}[𾭔ԠR^0Tg mՌ],:?[bbMf: 3!V@>xUwB`' VN4st+G [nT$=*b)G P(aIjV/bUo(l9-/qCV[C+Ha,[G=m].䬝wٯl`(ZIc"HY [},-!f[?>v52ƪ!7ڟ]6UMC hP PY(B'|q!MS!lR᎕<X_cA-D=eBu,cP鸻Pq ! ;c2$¸IcKku<`4o2zl ˆZ`jfͪ {2nOik^udS]#)qt[ 2/S*T~T\RJ"#ciq;fQC=9 F1&B4/ qjAMiRbqP0 %뚾\I&Czg7N˱O(rnW_HYBTa`%5J)몼iLp 9DU;Nm}CmG F:w,-F1Fܲ!NhA4eCaFV1#=Әp7'3H~4R|9bp5n lzYv︈.T^Gp~|i ::bY,K}$:Ϡ 52|rQI+z\ .PROҸz txْ;?/V@ܺ=D%j5ٺlwv z+jB▁ nŹ,|{UݚzXACSuwĢh1Tf4}-Ozp [رR*QϒsK}#kȌJx\OaY2ĵ-5UaU܊repP;LW S, B^k/Ap*3b)ah?0Mh)WQ2 $rx-k 4*2/Z t$'}RHHG%66վ*Tm w"LN*ЇmdƕL_OdnCE,˿Cj2~zRz>7i15F?XZhvuYk .o_YeY76_ 8߬]N{OC, vrCWDG`9/n!ZT@k:XST,Mӭ'm#\{ó9(GR4GW;])i&w *VĔT~@Dk2̩j RC5, 35$Cy_9EtBft9Oₛ v"T1`jPċoBIp]g=|)l[[g҇fUX3Zs=JqWCatW/ypZaڀ)v5L&Ӳ7&G+9tl0KG{PY:QKRv2|Zs挖8D2v.k!cSn'k2۵qܤ(N ,cb"8n=)PA͡5hz!Gj;dӫ1,,=$';]yۙpܳE۶3yB(+QJqQ^7'tJaNƚ 9jYweG.0]~Gpa0r{ N@Z'4.%5`i~TpPS!_8874 .!dDR~LE<00=G%ȵ,:"]LK6^5'E+1CHzJ6EvmA؅4)4";.5/qFC#̄N3R{Ĩ}Hp4jt^,C+Ktz=ZQUT8O\(h`ʚ~zcnᇭg'}xm2>5jad,v[47x;\#]-iHHW` -4ZxXvj=\= }㼄P PMd8yE:TPE}Rd7VlQ/Kׄ}c}~1|RV_=qOetjߡz'NYEf>ma"Uj.զP)9u w2=] "t"5S/qE4pZx:} SPjKCt jwȜW)wj SD':v*H?5W "qNp$Xzbxen[%vگƳ f/)#@۷P4Lo&%\a$%jEgPo%y=rψM 0ޓITfr=":Ϥt, 8ORgs<wY>}lhdzmJ{B_4*Y5rȵ%=:.Acgrnm[2{Cp[}7njn.c=d*DwMTEi$ӽ┱ o(5Ҡ=Hivd.²d>\f`tyoqh9sƨIdiPUsg{kv tq5φ\ \ ¤V~$0?YQswo|5|h);AT싇u Cp.Z1)[ʅrw2#eLjPW!, T oK>o Q \?9&JA d36ÇxxC`m",yż ٗ=Ib_!H5^КB~t%//b_"2!]}37dGϑngEds:j^MQm[{L]Ʋv4)MD,_+0lDG|@ ?;GސD\rIJ3/ݧ_&(w:/M>>6Q'}p&t"|Li`T\zbt7{xH鹕*Eqqlc3o^L02hAg 0+*c6q>*.-|#Ćվ.y"xc +,e-zޥObGۋ 8Y I !Uw0l(XcuxMV'Uypף%$"RR?`!.y쥭,k E.C5Tx ȦYsz4с~i#ˣB8vLdbcѽ]#+6hB ]L@?,f@PMU./͞"rM$,C{mLO7 pyXF7F@i539` L34 ԈbAwiI@S)[L"{|41ǥA@9Ǜ1E<&4P6UsKڹ5yqntWo/ 0Z.1qISjBVDw)fŌjNCF&pg*DփmKCz4_0f0^h/ܰȗMk١{#Y*㦵or|#B)SнNwf'DO/[)>;HSO-ߒ'J%\r|)OQ y̡ T5&gg GQ6 Won(A(Suܚ,Һ)dI""1k|=FgmvC@|7ǵ^cPaJ+0m]FU-G#40mJϱg=xFcLmꭷ$'Sf|-VT/|+ic~Ԛ e-22rJ͎ шq8{e5ͲUQ4x _Zy>Wqx5G=˔.l@mzD`aJ⁔DkMWF(|:c$YLK |E븹7'澏? U*QL9Z}Tp:\^cX@ݦ*:K kDnyNUK?oPCמͅr@QVE7ʾ)8Ydc(rC@=eiRPT|’s?ޜnhk/z}T6ۘo6u&-4(A|$UJl>-"R7rnU2gF>/0lRʽoiƗ% 0=4ɒ8 8,GS ԼFʫDQ8 ;|oB0ss"H-5%QxwfD B+FtQFx%!i,ՏdBTOpXmn{yW:2N@.BU OuW ;%mLo֞RݡztHS;;p?\ ]n}qSFxRtߊ,3G @)?!{@DBS ^}&@;`]il * XShXݹZuMM|FEޫ˻hbu ߥ_ Y? ˆ U-i޵t2A(uQ_%Řvg_!oZn ',D͓4&ל ",ɲؐ:>])"QPbYSQy%>_A$7=D=f̏ZԽ5pkLQs48^y,=:22vE˙s]4N"\Rߔk5\'ٲ-!:FOE[/xD4 CzڃDy4H]vb,G[*Q~v$`2 >A;Y4 Ii9&|F'HgN${DzQE7Hrڡ;TG JFUYpz3K~sȮC]~pTm;.oćh87I\߇596-ƪcHDijmlZ1UzPDAzI!o0cmKPMmCmBκzY 2 C7z Y@wYxD{}.77 уܳA@Z{s*~ɩ5)X\g L!e6VqFT UD 㗍H8(x6[߷.Mr5IюLHtZk4DoNzJV f{$/Ӭ^d'"p{zdPi$&1HGi;T8$ūIڐfڍ(g:PT;uHhj>f)&!6LmnFE]{D/#J?\b{0d٫F#c8)67ip Bf@/lM],j]j-9޵!i㒨[Xl;רyrM8(p;& &^Wa"[ -hgYr ƧRN]:>\b|9sU /{ Ivi}[n,'!,jh0. -6,[x4eS@7h,,\{*m'SA@;g=~Pl D`/-.g|oVs0I]pE)tu$;Q5{VX]nT:RM+}'҉,k3As3y% 83]#ǯbslc_ڄ7@TI Nw .srq✐ڟ,/x=%aNί-1_IY s.IIxUAX;$9o; G3/H46Z(UR5N 䞀V ,^5\ I0, ,Yݿ#V{}޸/-Vw s-7beʤymqƻMWsDA@g[G[ّ XD*A YZ