From 2f8fdd6ef161e6a2d4597cc1db573b0b8832e178 Mon Sep 17 00:00:00 2001 From: Varun Sharma Date: Tue, 16 Jul 2024 23:45:56 -0700 Subject: [PATCH] Update README --- README.md | 53 ++++++++++++++++++++++++++++++------------- images/org-level.png | Bin 0 -> 52841 bytes 2 files changed, 37 insertions(+), 16 deletions(-) create mode 100644 images/org-level.png diff --git a/README.md b/README.md index 53461e1..8288493 100644 --- a/README.md +++ b/README.md @@ -15,20 +15,22 @@ ## Table of Contents -- [Harden GitHub-hosted and self-hosted runners](#harden-github-hosted-and-self-hosted-runners) +- [Introduction](#introduction) - [3,500+ open source projects use Harden-Runner](#3500-open-source-projects-use-harden-runner) - [Trusted By](#trusted-by) - [Case Studies](#case-studies) - [Why use Harden-Runner](#why-use-harden-runner) - [Getting Started](#getting-started) - - [GitHub-Hosted Runners](#github-hosted-runners) + - [Hardening GitHub-Hosted Runners](#hardening-github-hosted-runners) - [Hands-On Tutorials](#hands-on-tutorials) - - [Support for Self-Hosted Runners and Private Repositories](#support-for-self-hosted-runners-and-private-repositories) + - [Support for Private Repositories](#support-for-private-repositories) + - [Hardening Self-Hosted Runners](#hardening-self-hosted-runners) - [Self-Hosted Actions Runner Controller (ARC) Runners](#self-hosted-actions-runner-controller-arc-runners) - [Self-Hosted VM Runners (e.g. on EC2)](#self-hosted-vm-runners-eg-on-ec2) - [Features at a glance](#features-at-a-glance) - - [View outbound network traffic](#view-outbound-network-traffic) - - [View outbound HTTPS traffic](#view-outbound-https-traffic) + - [View outbound network traffic at the job level](#view-outbound-network-traffic-at-the-job-level) + - [View outbound network traffic at the organization level](#view-outbound-network-traffic-at-the-organization-level) + - [View outbound HTTPS traffic at the job level](#view-outbound-https-traffic-at-the-job-level) - [Detect anomalous outbound network traffic](#detect-anomalous-outbound-network-traffic) - [Filter outbound network traffic to allowed endpoints](#filter-outbound-network-traffic-to-allowed-endpoints) - [View recommendation for minimum GITHUB_TOKEN permissions](#view-recommendation-for-minimum-github_token-permissions) @@ -48,9 +50,9 @@ - [Self-Hosted VM Runners (e.g. on EC2)](#self-hosted-vm-runners-eg-on-ec2-2) -## Harden GitHub-hosted and self-hosted runners +## Introduction -Harden-Runner provides network egress filtering and runtime security for GitHub-hosted and self-hosted runners. +Harden-Runner provides network egress filtering and runtime security for GitHub-hosted and self-hosted runners. It is called Harden-Runner because it `hardens` the `runner` on which GitHub Actions workflows run. Learn how Harden-Runner works through the video below, which shows how it detected a supply chain attack on a Google open-source project. @@ -92,9 +94,9 @@ Harden-Runner monitors process, file, and network activity to: ## Getting Started -### GitHub-Hosted Runners +### Hardening GitHub-Hosted Runners -1. Add the `step-security/harden-runner` GitHub Action to your GitHub Actions workflow file as the first step in each job. You can automate this step by pasting your workflow in the [StepSecurity online tool](https://app.stepsecurity.io/secureworkflow). +1. Add the `step-security/harden-runner` GitHub Action to your GitHub Actions workflow file as the first step in each job. You can automate adding Harden-Runner Action to your workflow file by pasting your workflow in the [StepSecurity online tool](https://app.stepsecurity.io/secureworkflow). ```yaml steps: @@ -130,9 +132,9 @@ Hands-on Tutorials for GitHub Actions Runtime Security: 1. [Filter Egress Network Traffic](https://github.com/step-security/github-actions-goat/blob/main/docs/Solutions/RestrictOutboundTraffic.md) 2. [Detect File Tampering](https://github.com/step-security/github-actions-goat/blob/main/docs/Solutions/MonitorSourceCode.md) -### Support for Self-Hosted Runners and Private Repositories +### Support for Private Repositories -Hardening for self-hosted runners and GitHub-hosted runners used in private repositories is supported with a commercial license. Check out the [documentation](https://docs.stepsecurity.io/stepsecurity-platform/billing) for more details. +Hardening of runners used in private repositories is supported with a commercial license. Check out the [documentation](https://docs.stepsecurity.io/stepsecurity-platform/billing) for more details. - To use Harden-Runner in a `Private` repository, you must install the [StepSecurity Actions Security GitHub App](https://github.com/apps/stepsecurity-actions-security). - This is needed to access the GitHub Actions API and to authenticate users to access the insights URL for private repositories. @@ -140,6 +142,10 @@ Hardening for self-hosted runners and GitHub-hosted runners used in private repo Read this [case study on how Kapiche uses Harden-Runner](https://www.stepsecurity.io/case-studies/kapiche/) to improve software supply chain security in their private repositories. +### Hardening Self-Hosted Runners + +Hardening for self-hosted runners is supported with a commercial license. Check out the [documentation](https://docs.stepsecurity.io/stepsecurity-platform/billing) for more details. + #### Self-Hosted Actions Runner Controller (ARC) Runners > Explore demo workflows using self-hosted ARC Runner and ARC Harden-Runner [here](https://docs.stepsecurity.io/harden-runner/how-tos/enable-runtime-security-arc). @@ -162,7 +168,7 @@ Actions Runner Controller (ARC) is a Kubernetes operator that orchestrates self- For details, check out the documentation at https://docs.stepsecurity.io -### View outbound network traffic +### View outbound network traffic at the job level > Applies to both GitHub-hosted and self-hosted runners @@ -172,7 +178,22 @@ Harden-Runner monitors all outbound traffic from each job at the DNS and network - For self-hosted runners, no changes are needed to workflow files to monitor egress traffic - A filtering (block) egress policy is suggested in the insights page based on the current and past job runs -### View outbound HTTPS traffic +### View outbound network traffic at the organization level + +> Applies to both GitHub-hosted and self-hosted runners + +You can view all unique network destinations from all workflow runs in your organization on the `Runtime Security` tab. + +- The `All Observed Endpoints` menu provides a detailed list of all network destinations contacted by your Actions runners. +- For each listed endpoint, the `View Sample Workflow Runs` option enables you to examine individual GitHub Actions workflow runs that interacted with the endpoint. + +For more details refer [Unified Network Egress View: Centralize GitHub Actions Network Destinations for Your Enterprise](https://www.stepsecurity.io/blog/unified-network-egress-view-centralize-github-actions-network-destinations-for-your-enterprise) + +

+ View outbound network traffic at the organization level +

+ +### View outbound HTTPS traffic at the job level > Applies to GitHub-hosted and self-hosted VM runners @@ -183,7 +204,7 @@ Harden-Runner can monitor outbound HTTPS requests. This feature is supported wit - As of now, only HTTPS calls to `github.com`, `api.github.com`, `*.pkg.github.com`, and `ghcr.io` hosts are monitoried.

- Policy recommended by harden-runner + View outbound HTTPS traffic at the job level

### Detect anomalous outbound network traffic @@ -287,8 +308,8 @@ GitHub-hosted runner uses passwordless sudo for running jobs. Install the [StepSecurity Actions Security GitHub App](https://github.com/apps/stepsecurity-actions-security) to get security alerts. -- Email and Slack notifications are supported -- Notifications are sent when outbound traffic is blocked or source code is overwritten +- Email, Slack, and Teams notifications are supported +- Notifications are sent when anomalous outbound network/ HTTPS traffic is detected, outbound traffic is blocked, or source code is overwritten - Notifications are not repeated for the same alert for a given workflow ## Discussions diff --git a/images/org-level.png b/images/org-level.png new file mode 100644 index 0000000000000000000000000000000000000000..21df4e234a67d65d7b9d29d957790ab89894d897 GIT binary patch literal 52841 zcmc$`byOU|w=Rkf?iSoFf#3ui++7k}gS+c63@#x^2<{RzxVvj`w_w48y9{zCzkB|E z>%4W|yLZ-_)ze+otGlXpZTY^vCrVva4hx+O9S#l-OF>>*6Ali60S*ok6BPivVh(E0 zfgRx8HRUAXDkmroVJAq|5-JjKa5ZrlPiDxlb2JxuJ$E=b?7n|r_#x*K3plv(7X@jF zk3Po7Ysi^|yVQX54Ofaa*0nVwO@z0lf!#SDtKl>V5y_)#@gyYGafxJ*dJu@>u@6sA zPxoG~p1juES}f0;I3n6Wot!zVX<2Jou+LrE9oU+mW{FN3_Ia;p^~y*`N9U%}z5Wc+ zlahp8tNi>O3l9&kC02zWcD5q~!2j2Q5)th`7lT40BO?um#Q)RNoQ4+Gw#XHai--5^ z=#4zAY1k8!;s3MS-qS37-iZA@fI;_DC(^K!p$9oyUVIvVfd@&x`sVCc#gW_L0$+;_ z*1ofG5=K*{KBUTL(AoFJxW34!aj&mkC&c+z!zQ^K&wcXmS}JN&AlOtq7fDa*uZ2Vc z2g`TfNnPzrT}V`9B#Y~nSo~9y^v=z`bfr-pvo6^h$IKZPnrhNphOab{2f2CuNcfWi zdo89Y1O)1mP6l@-^}*;=AlCcziHx^2@F7`l~bnM>^lgeDXT%h|}oCM~~zw2CZY)0LiKbJg`$w`4OA?wiMY4#oc^~sbAxSZTQOVHA(P_Pvalibo-F_oLufw&@ zVWUG%HCvQ@iLlmkgf0wY=X>oywC{q%3U9)SK8nI}a#owgVHw|Ts(ecV;}69a?%Owb zcmsgfbcd;rb@wKqetH4DT=`sU)NBEx_tq1+J-x#5xyt}r2Bx5$QG~2Q$H6at!b}Se zD{MEbo=NtLRrXutc-OXQ)xq)wLJbys_Z%Vw1VNw3`4tOd*LHu+|NK^k_|Ao?E}Wb3 z%g80E)^VxAWQoG}-Q^~fWpg?X(T9?DsH6$#Yh>i-5JYih;P{IC;iv>& zqCzmn*Wxhf?Dvu$z+{unr6RmvzI7Zk>b4*%v&6e>*x_k(s$`;{VXq0$ts+7!Ar&|K z$`pB49zXr~!gLFq*1F4^sQrB6m&SF9(b8m03HqCbG0u}Vs*N!_FQ5~9d^wU)C7*O@ z$!Jp9c3eu8^4=ub2#P)2DHUP4^(BcLvW$-9rvY7rSfM71wVweR!2jVzM3f@;mE&zQIWy}^$ zd)6FDK)zq2Bh2Pyd~4^9^%&hh_^lI-p+t|x_(wc&etUnquK}%p^#wNC$MP=A$)J$h zyG_~_*X<&r_|t?ZUpJ*I5Sh&^uANJ}SqmqIj@=Qpj+y>IxAHkOU0Iif$NS3eQMPYPV0$;xS;nx0W`Mt6VeFiN%7lhI8t?!P>G zD=p&>+yI;W>x-Y|K!??0GTc|Cx?Cn#Ms@Y4!fUWCOfv>9h~e_ zpS{1Et7Nqw^RU9BA2d_9&&MDBwMROsG?&JW16P zfQT+%Pdfic2>MgBj*^wq=kkh2^3{4!%m)qfOn(3enwW)O)c~FM<=Iw89*@U*BcB>7 zfy6a!wbtLOM9J8&?B}bCeSA<7m^|%A$1VzvYYuv>cwGN_9Nw&~lBM^CcwVe7n*Y$= zU7bwmb$@De2=jov5DEH^O}nl{G(myv&mdrBRaoF*=!-bZeFyL}@N9=PFXt{)EnGf= zc>I{_n~uU|LhH(m|syE{q6*@^GLCh9@|SQ>jr)!h$@Uooc!lNaRO6-%PQJ{l?|Jea~k> z&%s#@!B$+CY=2AfP%|X;<`2hHDhrP5c4}y00YKgL;a+)v@otAJ>6~~@{MEnORdySf zNHsbU0iWZ-JkN)xIn5ZtZYb?N&w&4tm0cYgwBf7|yrDFyHUd44prwx4Y#u+S^=kA= z3~jg;iwJy>I7`dtuLL2`Hyr4be=An(lLXR5rj`lhnys1xp8b9xmuuw` zi896A3yj6ng*Ave@VsWf`(89YwJKO^H6K9!>i^o1-NCcX$-?GJm3to5n+^0(B(eTxN3lecNCL~Ymn+n96~t9`6LvOC^B98?5M)RM{QFz z{t@tg@OE=s&34OyW{hYoL(b3pgn>Yel&){xPlc+v=^G)tF3tM;iSYQSmE>fV({H~; z?Tnr-MgnzqR?Vmn&Zo(rJ@vbWsL^H_?#^a*&DPs$thTM7$wS|>gyk2MpMcDCice2J zX-9Nucms3A#N}0@fR1-wpuqz{&);+5p$oAB_VVSQCHJE%7ayQE2DSH z+?sYuJ{r{Olo4@T^r`0+5thuWdmS$qUk&wJZ!;fkbaz|SKE~OKLcKS6cRcF?YKBCf zQS!H8DtHt_?RsjJgu|o}VZf{d%T}{E*&5_gHzet}(kNB*!X-S$d6{umXc=d$S-;+q z(D9l5!Rb*MbgDkt^?_H}Wi*Q?;@E&+4Ilzd}_0V5SH!UOE!zlK zc-JaKYr08jUu*=uTWyjKcw|3bR^9OD=Cz<~w!F&R@T3&9=l-nKMht5eY3({M1CN^D zy&%@!cYT7ngn3U7KfV@(u)&5)97cxUri~=QfScEUO<(h3EMQ$2F?u_u;r?89b6%HS zlpdds_cZT1iJL02hm2&$oPD}3qw1_ndlit%0#T)S2T?{9&Lu^9=2i}>cY6k$ydk9= zQp>J&)+;Y27xq;Q4XFXWNHZf~O<=WNGddSm> zIQwUkLY~rt|T*4D)gZkudI3B-l1{4c#tx)=KxR%O68_fbp zY`+nSp0_CuibW@f+76OFtY<`>dM8Fk_HJ*izjqY+_NP$942f1c!%;aV>Sl4p7BHFN zI7z|B9EUVIKdKGa6R3}eg!j}Cf_B=c)KBbzU#{1Z&s*|IifjQ}IJbc1(UL9eCB$Ol z;1H4PWU^}~6znDakpk#D(`iZ6Ef+UB>)cMh6(~v`m>za;i4C_tCE}r$m0r79?7aK5 z_sPw7b!9cY?;Xjn(71>LKW>-O2j_s>>#!j5gKKlCp!7mR&m5_3)wPork=WIv{>4Y- z69FF9n%;RA13o94I9~x_XuyYO9cZ%Lyqo2T0n8laY($vAHyrsQpicD3NOCqXJ}#1Z z$#hVUupi}u=JPY$p3{dLehSDe5GX6}Yh&8-=*gX4_{Zz!c_`RUmvpXo25g7>^I4{^ z$D*4wV7;)!Gy6Rge^%PVB>f>ZYBlrFlYC1UCy^tpMi9FW>eG`96y;m@_dHkr+FEaG zxpCR;%mzOJXK*agw)gGUkpbLVZ7l~2nXFz&Zo;BL!6Rh?s8R3%VVrf=3}OwbpgcQHk%h z`>h>AtIQ5L#8%?I2xanFNPoa39Y7CzmXMlDcr&p=z#EpgT__e}o80madSYE=*ltlc z#Q@humBl3mbHpTvgXraUp(c`5DZw|;<-qD^rN~Hp;a5Zj?Vo|;8DhMF0)1$9ish?4 zuVa@C7-G3zJ6*mXMBw|e>6lVYn{BZk>zi^?@i|=Vetu&k`^2k9nPMqsYjV}MtV7>U z%S6m(V!I&;NzlBlI9RR+9+&=3qj-MzD~ZKwqgM21#)sYLAViC?cyBt&DK>xr;}Ud* z<@G%l5Rq9@bYWV>LD@S#@-4{a@p3jU^u*=sQS1}Hbv7_Ox^%a$Q+2^RI+6t~N>hP+ zsx@RSZ$1?N9hZ$s!jvg~`*hc=c2iXstK1#RXbgFeA7ujhLLhGbRzDRwp?9$tQn*^G z#RfjB0e3wdHhpjcvu9c2iUjdg&&}`!fuHdE=WEbG+Pm37f2WPhrH-?}4HBBZ!xFKV z#|Ypa*G>}2u>l>CVp6^HmU|oRiQi4k<+A*`iX_n3=M%)4gKlwEM{e_42LlufyB4y8S1t2X3%8$x`>>q-XRi0nxkoK$D7-vpNrQz5%yyDVtO`2 zPpZv!hojoG+PCY;c!1&_`XTwAl{@*>?8#w{x|igx3dvR|MwNV!{+%vzfKANsAKUMJ zNPyyZ3s>9EcLC3iBRX|K7OW;xwb~`DdKFzULO?o{Sf7bo*It}9!A1DWUG6yza|D|| zWeb-1G^$2`z_IPj&vI@__vq|ngd^k@8bZg=2QpbUriVX-8WschZf_1jjs%s zVde3mZeW5oI(LJp|MXdh`?~9N7-&2H#&^!LaDDVpsG`<2Y_(Gv29>P*p#|CL763Xd zH_%7t%3zv_PviX!;^hv>NalbRdGH=ty=QS_aAY_hw2J6sa8q~(Qsc$y5As?_8QmqL|<=r#V z{AWudtks9nC!`HdQV9)!#?|H}8de(a?pMz ze>22X1dDlIpf5ZTT|2jc3`UB#nTBK6K=j9uz+K7NN$1zG@7Ul+g=i{Z0}n&G&^c%O z`gINc51*|PBRH%uZyyfm&5+a&oyFK&T^41i?VNQ}7@r79vKESnGm`TGggs+K%>=XU zM4vowatnGffI*TV>FfMzCbSO~r%oD}?QFWNJu@ZFD1r#mjXA#w^2OQec>QHL`n&NI z_j=v$))ofRu-Hav^GSpCv_ z#JLJDEfrb33>fDvA?>NR!$L5B-0m@hsq&AqSOErV)_hsW8oHa2hE)r8SbM!DHrd@A zEtOd}(d{$)Bdh32^3EMyE#H~tv&xb@C}d(;Lp!3W=RUUI7*gwTT`~Kf4Orjk6K=9r zOJW#48IJ~9Lv@i$h%S4BI#GbauV;)v>=a_{z_& zfPzGI$(HxRRihKg5L+8mwP;zaovAO#+%J6+j~KmMK!Q^=)-^li~MnkhH6TmiGa~fYk@NgdU_;P%%WTu!byQyg|Fdv`oe~F z^_#QN!#Zn5olk1R-OdA>D97jTdVO$E#Y^DDQS{H^@xNtg-}j!a8Me56f&mvSIu+7y z2vZHASwB>=6lZk9+FvJ$(J2jUjBEULvv(FiN_dHMz45zPDd$~oCuQM$BHA6*3BJfwDhxL3&`jNKQ4T;#w1`Hc%KlyijFV4qUqY5AkJ(b=R+DRh#! zYTsYgL5Xyxux_aL@8hu&_imHe3D@+-NlzRaJ|3gYG&X~F6m5?ZiK+7m8qI_{KEAT% zuOxC-%RwB8+Lta1G9k&}$c6&h7HXmQj~RSxP!xqn9Oywr3@smz|!NyPAugh>h`mVY!9 z)9VWJRvoL;rH zn1__^ZZCcxotE-?BVmGfwRlb1(~R9SlW&l_!`ja&8AXx~4u=30{??zq*&9NhmJn#~ z6qA-#kQu`nnX!%!6hY<aa{K6?cG2z5OC+u&E` zwQeYQ!YVCI$Q-ouOXgdEW0lQGB!>j6j9(W4gXPbQ;dmI;@cHM+pi)^qor>^dmXVY^-l7H47DcnK~@|*XC^`WDmK=?;# zeCzUIWP+Xk-(fgn|GRujYv6ZgHNYy&+{5S>JeP+{%m2;GeCi(0_(1v}=H(N74>6Sg z-;mxdl_ve`_kW0{`EL*6|A|Y&Ky6%ViW(mMV??sM-4&}?(QE7Z^uQ!|!!ez8P!K0t z>+DO&VQi@1=wKU%x3&x;oBTN?kRTnv4FQx8w6$+m6Pc`CFONTg#APzk#F$JTL*_J5 z@cs`ER9_nP#P zsT@rYmqQEFLowtZ7|KVFK_qQz`HSe z(P<na=U2`K-|G2Z43O;ptm;f4U{+na8|-=qgBwOUy4W@X zpcOzy*XVLt2L9)!y97e8x%sfV`LMRH?~25O{grRjxK!x2c2L{alx2(Cb23ooN8i$# z+lIC9am_uK`H7zIaYl#c-wG8?w{F=(k$|{kG4OcjBBhiSWs)Ld({Rx2qUTcr(Oh+< zs&RYXHX1wv3IJknXWkZ$G*nk-HJ%_50#L{i1@BZettY@n`RnE=+mp)c+y`D7Gf!oO+)@1TAYWp6zV)XxLyCo^1VL- zUM~MOzcu8#d%o0iJFBLwg-Y9Oz1q#TS!^PDkcdU?@@9Rgr(ix#DTi}*U|45(N0ISk172*9CY6MMe?4kY%x z+Mi6RF(0x!(QI;B`{B6SNQQuW`QE72Vv^`pT{!F+vNx9IDe`ZM5Gtgh$zWlHzHfbt zCXfmUm&ItZO0Ctn-Nq65UQhUTIVIO*oy7=#S9ah1)72!STDAz86FM;)3!_qUB0ACA zVQR=z-n_TvXmXOmcczhg+u0v5axH;PkGsWXE4Uqc+Lo@%C1$!U8w1#rYG5uZmj5Ps zCe_??$!^f7+zCAuhV7gvr)y#F(?rFjw}&DnOary1%Nn1)aG-mM6e=doKs5>@>1o;r zO(4&OpZt7YbqDjLB7Sv(p+5`-)n*5VztLL`#ZuC4)60I1pZ}?&G+*|~^GP+RlLl7< z)bG%SfvQNntz*# z9ibw<;0!38h%BJpsFAAWZH!W3ljPthTdvP3{2~62lU%;wLE2@n^ZWO zGwsaecZ(srIqdt4GM8}RtR@JME!x{S(d(0laJn|V_pjQul%1;a{T~~Nh?gM^hBCFq ziMycpzrHUV#hLhPR{m~goJS7_@Xx(%=YEdA&he7pm%CD9J@N!UETGFAVH+pMQT;MU zuD;f!b+)6NDZ)%_PYY%+5K^PjwP2qeUAXGF9i>gPWLJ6+DV19Pkgg;8bd=iQk8)F| z>kOn;9Z>yFmv$@=@JT=Rci|b%B*t@q5KWHml^GCWeOvPgsA}Y?Z`_y+Ed?y^g6!A) zTMmBIm&Ypv7(lc)Cc}O(EL8(0cLmTInDc0R0*~%^ zT&(V5POa79=h@Et&b=L z!?xhLpxMUP?vNq4J?Kf(Mm-z+S?v}~&Sy=dCXt~>pMGkuHBM9;qGsz>g`pG8?5BzN z);`^D$7vSGVxggb@zY|lmv<;~oPSvCMhUxu=J;QZaLUo94nap_9yrAS5IX}na-L44 ziA5xbuc*jNaBwE~QW4m;fpGpBv6RBZwOpp=y(DntV*GUed0kJJN*y@W=G`d(TKLH@ z_3u2^s(LMMmhwdJ_&xm7z7VsQNgz$eakK`-c%J@lX)V8>$!)!b&E6dJe0N|Q-ekt} zXu&ppFa>!sZdYQ8cH=g)ohhYiBO$@t7yZ^f#o6wl*$x@q{BGo@+fL?wU8^6x?iuy{ z5Z;I*(J{+$u`aDu`=?>awfw_!gcYrLe)bHFUwgNN3lZg<^^?Vsvsat^k|5FF8xQFvW!5$4-1 zR6LtsZVQsMUrnDs1I;$#z#I!Cn;qsYcyKX1))NQ3eQgeK$9-Hl$wP}meL`|AmUhbO z#%v~?hBJjq#d+*P|IDh8A15v1mCKYsrQcsWcz zQ)jIlcaqW;c|6&B|tbZF4Mb{U;Hgld@GS?><=s!OYo%_h#oez&&1(QM&I zYRA68`i@fsx(#2-p=%h(yLI_fJYyGq@f{Dp&j1%xo3@WB{z zrMuI$-O}Rh8Oh0GB}`sKvlr%UAIYKdPL5hI9=gL^iRtS?t^^_&i{i%oH7b};?mRGk z!*0Ip&=K*OX(|F|Gz3hXK6UY^s~w6Y!tn^*0;liy2aq(u-_b6494~3CG}tqPp||tC z>Yx)0yLgzvE{BI}II8M=EDNWz7NbDoL883o>Ur#bp@i`_hNh&i5Bt;=&pumWB-brd zzk?A!?z>A5wmG<5HcV7Q)M5km>)3s&uLre3?o0k-;9$|E^Nl~tJ8R?7}Tvl>&sh>PqGA{G#B*x+1WISby>gWBX zA6{EIv}uETyF|i8(ml$o_lrA()3h7TcQ4KQm<#8Mq692M0C&rWyWEMYA|o&( zr!_f54Jn7_7O7;|eV4b$9F1CCipv{>9~UTzg0rru`JlxUY8t#N$wQQ`nh7;?zWF=< zomMJb9(sGyFo>)o=L4Kmg<4*QDuvR{$R=|5mkxnYc~&x33&~N|7AxzE~78rU7*X-P8E7 z{?&-$OI(vN;=zfO^H`#ysT1V_4IkR!i?72!h-KqXvHz4wga61IV$JAjm+g4yAXo<`V+>rLUe2bgq`nIQ^FK4$65VY;cN#`)V6Bw)hC001TNkCuO2cm*BOOyBw5m4BD`?|rUQjP zP0~HoA=y^^`UTDde|%Z1ygwl#|VKEj_lLaa1e5iyo(Ok$U{R8L5_i0dE?pJ97;s4kW%~nr5Y2`4HSr zMG?cJjB`!wOH&hHk4nMy1uTdQh_hp4&(3k@v2mSee-5#2l+X)X9D;XO=8O-eZ;v+< zYX2kZ56{`p@b!&RtH*Q<%6#;F@OE^Rs%i$;i{ru|g1C1KNjwJAtn=G1rerv$~s&Lg*1HjaZ}1&Bp~M)P&^0L`%+Rm#S# zm-n|fb8pzxZ>tlvofcWa`anv-Nv#HhE+3&RQL8O9c3juJNZUW>I@1){x%ZgoUTsf1Oihi-y54-D#$7`796 z$|5FWX`XgPk0Kx^@RKiqJ6mhJbNuAGCw2F7t^tgSEiW;a#&M^hHMI`a{~no|PVC^Y zbwdr$aA(}%clZrwMROWTF&|UJLz1eGtK}ZD-|yJYakZihqKXnC;^YQPDQ!o%v-BLW~cga98Q;{}7B6%ZSB~(A9jAC#(1fhyx~`$iYqT{MCVe_6fQ$f+Iz+k6s@m^{@ZJqu zpbIA5uW7g3e6()IF`Pxx(RnVCvmv_2Sa?)R6A|a=44(>_%_w-Qw6ddr!~=mM`?|~8 zL?~x=B)+%gKDjrbQR?3)6xOg%5&E~(x{`8g9xelVY%JI6KKVFO($!+!oiM!w6((F~ zS(-wdqyBahJ>?NNYje>#r9pr!k~~WBdrKKNlqr-oH2K^#O?`=8V5^*FR(bchI$8^? zL4!jrYAA(h_j6i-1S)!c*R3arYO*y?mAi+`N39!Rh)K|}A%Hso<*{bi8Y7*nrU~41 zAfF4!y&dA+_db}Cz+rPu#*@UrHp~flw1q`VSTxO>`Z_Emz4oGCvYl)db==#ov zu6ZHy@ZBE^DuP9^+K6<-%sj4y>1uQcYOJk2$$gP@iv_h;~S{( z@m)R!lwuZM?CrV0@fogWK0VCcn|L}uHMP$b1EBvMHYTqM3JmfEOT=LIM&5C6Hn?{0 zpMm;1sjJK?8~$L}Wz;wiUHbI7<>JH~x*W6Tdv0-@d4|74H|Kv)jg}qSN;Rda$vYfi ztqnBm{C$r=4<6i!R`v#X7-PkG)3^fOn3#p(N91T{eT!03`*mxsWBGzH(6I29Hu^|i zQUSxxV5&cqte|NlV0FLnU4F0%e`84inu-B?S9cVOozT-3CjEws_~=hyfQSPNaCDT0!hkp*s^^hhXvIG!8%f7L-)FaQ5k^YA|d(@Ah0YMcoe zSz4e~P0o0X$`Rqob5J^s5)giu$N zRPSgKZ1@_67w_UtiT6#5V59@yK)5_2+G(ffQS$G0Uo8YgL{AzRt@1?$@0OO!YzG#L z;1d$U$Sc?*UFm*{2mf;_7-(q3QDB|&n{jQi(9-SHh5t1Z>d;{^6ovmQG-0Wf_M^lP z{a1mK-%JSW1AC5!VRZd}HU7^EPfk2vYX5J z4(ETS{D!Ybm%Lox!Q$p zyH8Dc`|AsIG8-QV!~Bz6w+BaVjuuZ?oBFt$Y-eQ=QH^;VSLz>)&zoWK`;z+rPADx~ z2qNg|nnkBF6Uca)3rhz) z`K~7V4F<_7zC1mgfPM!p=5Skn!A1mN#*d}(j2=~Wy*B~hBmq%iwMOjgh$9=2*9wSA zjJ%JsF8tLSbc`U2tG#iz-CsnYFT?pV(e>R%FhHBXg%tHYD!q+Rlsywe(t9KQ*H(6w zbl%oV&U(jHZ6?)B78ri^8CI6m8q#l1Bf;~vlvE-n63-YbvXrmqxyYAUG|%f#%!l=O z02Y~z<3K#El*L9T*l&ZQ>xu4e%{zxeEWofxHLI*ijPS%w;$sdDhx(p zIL8S{M7u(t5!Snwzs=)p-6-Jkkhuj0?5y8SN#TtA3$U7~eKz4MxGs^A*{JHw`T(FW z%<-ESDI6x)TA*OEgkMSTR?X>1-W$fla8R{Hj^wSw;+%!MKi6Ha&uX$UWQ-l4yM-bc zXy>(b7uqZ2xARS|9t{%~qv7?K!yO^TVX0Y+P8F+BKWv8J9CJdTraS<03U_`)8;|EAGEsUjD30mm(GwKTH;I}3nP2os^?KSBZe!%3XdYkF^ z*p{Wvb6){UArE;J#3S?b&7PGwK+jK@us=S0CdKs6&H>-1@j9;??)Th=(1dgXVY;f* z2d1mM`bmE8A0PZ3*U^nqI`G%4HkBY1@+cuLW3kDB!CdU7QxXJs4K~w~QYb=7fB1t@ zHiujF8|=8s*vc zEt~E6@#g#Sa^0#HkW$CBXdEVhH{jjz44vY|QY|?X>S|SGfs4IK?p$rVv-J*IJ~j9K ziTM{AA6ODH06se!u6}CD#8L*daCjp20FTpKMmnX>KVA7oOl=E zCVq9}K_ajz>o;ZKG4Zm#L{9}lBe2Me!g5Gm2*K9}8d)f``_UYoQ-NUx*Wp;?c8*`_ zID)&TIFMAhQI$#rIm37mG)zr%7m#wp`}Jr(lWMrYR`7TBpCAPC2C)}$c0jM5M+V)K zUN|AEraWv1)ytxRWvVHEyH5gzU`kakL$?~69)qFelLR#-rVUx2AAf@YSD4G6-&8JE zc*!{M1VQL3P7~cQE896>K*N=#OD}8=P!ZbVI}#A?9pt-K^0}GUX>g~rgOMD{SO7bk z-Vjm7z%swN00ESJkX#oouYoC9x@9;HHPwt5<6Gq}+)!p-o-`(W!o35QFY&>l z+4LlZ_JwE}Qj1cCbM??AFtP%`Kpl%GBS0t?5-GHP=3BbuYpAv zgX+bA`=&BAFHUamhp9Lu9VHoN4Qm>S6F57HDTUc?5ueEy<6QX*V19)X zk^&!uv~?aq9e{dx5PcVR9@Z&X6!pubWV-t@pLBTn4w2F;YZO5MgXOI{V)(@5fli1c z9N1>6K8(k?y$S>7WSI@XY*A0tTQ3u^G_I_F7&ecyN4g(f$dUJ^1I8IVa-=VC&d_0{ zUSaaq=XTlJGo2?jkxfq%Dz#}tP5DU!cdNs+W!e{ib~>d1wmTmU1N8~7&Bd+Nc^fwQ zG)%XK*SfEQZPO!BW1lXBU@kyYu}^NbtXXXD!ozQYZ4?OrA2&-V9_CaHaRUwvhp5^A zLJ>@yUW7|GCCK*{wk-bG0;_-=_;g9QXT_<+J%{`+=!SVD*1NgHqe!B>)OmfEF#XXm zi8fKxvrn9)|D8h6?V#~|Lio&vrN=t@=X|jHGXdW8$sfM>+*`yv#IT0C5Idg+YNqzh zm-BSj&j?`x6QSo+E|09Sn;M9LOh^=m`L+m)bKQ82?#milf%`oTit6`>s@?ASc#%dzECKdolt4`+Z~UD=!H_sRJXLgoFX0>>*RxbR#y&oy;z1hM zLCRLSjCj0w45E+`9p)d;DQCoI$;;hQ>&abe!W{ubl(PZfM|+F>T1+341C&2(b2Y%! zi8hU}A+xmU<)uu?uljG1gfh#byJ6lM@d+Y6k&iJtbXPo{@I`6oOD8E##>oxJkIlU@uqG2Uz%Zw3=7=@^Eg_tY&HJMrxgxKG$Hr& zbO3>(I?!1t;E!l1E(Nd+mMR8wQ%_s)FWV0>~==ua@zk%q4yeBkj3Pw z5x4Wi#_dv;`DFIm8-=n%d8(E>XxDWDzb)uur&`W^XoqG1R>f^xO#uaFRo zO#m_ms65$ajy-OF0I}U}{vBv`S&3OpDL?$VQuPmG|nTRY&7&G#;)VgF0#hLvi{Ks51^dCh*EnrI^Qti?d8sLN@+ zoizfRD)FaI)shyh?ww>25e=4NErzNJ{5C2S>dx?X-|6M-zEXsjkSv% zPzpj`GQU3iCGa*E*CetUsQQWCd=c_CFulo zCK6V$>$q?U|DOu$SxP+l%siwfjmV)ClL}nT{Zqf0A|sUL>VTNz)wZEd=11ZuVKpkd z4GnIKVH>pzpAso%g=~=)Hj_qJFyMOgi-`1k0?u|Ow~^O*MqD=LP0=&aSD4E++O*-% zj^k}td@Nc_`PuAhC6$+p|^s4FWI<4pn>vmCf7H zl=m0B;58$uY`@we$7jb%!_f_^u8Mgs>B z!*6*HZaJ>a7%C{ zzv`Iyt?PGg{21*6?$j{*jbwIN+foxTx8L2Nbo^|}fgFA+)hi>}CnF z5s}@iM8UgJ#^7t^@AMHkha&1VZbT24N6v+Jvy+Mo4$HeQR_wd?7X`Iu&q5uqEAu~V z=g@^&M0#@epZ|_>CD6;Ml8XLSGI|jOLl5DMiEx`pxsJ_!>kW!I`xe+UPC&r(Y!km5 zEZ=GsVbb#nnij8j=E)(18>i}2(M#ObW zHkFK~#3ooW?5DE%cm?exPRfrPzE_`0KNgm?Uo3#g&~w0fT}0h0b}EX})(VA+S^EEr zxVH|A`g{8aiJ@Cs8bm<4yHh14Bn1TN?(UREq@+P|2uVR0Qb47_l)1?*}wMM zy`Jm0``bVH$Y+>2bKdv4?^hkz)rqb3bpD4k?+fp;rJ5wRtiRQZkxxr~&M9{Ge@?lY zi6T$Xnrk3gv!`nQm0Ss%)8Bq!jg$>-&|;%IW$yhkZOS zry$(y$Jjgb)l1EyWMVFp`xbtE^b+NySB-XarLs9<-jzJpsU&j>vo6G4ZvAXJtzksZ z47D~Mcn$i}*bNGPEq(prFLE$^>QLW>jp+mtWk?`SrOndDM{1BKex{AdTcnaU1e-=a z{LQRhlUVfPqkf~qV$m9fAauGNodVS+U%h+neznvR|BpGpQ~5C3BluTyN|;&q2cX^WEn!ZZe7+ zk#Gq#Ub!hk9=R6dL|nCyU{o>HI(Lfz&12i$!!9-zE|m~1&@8>z*wk_J3nSE#-oz^Y z7(`A zE?YE|&tEI6<0XH-E-ejIqm<+j_3*NRj@WH#4dtMf?BB3v5Qnwi7JFe~VkSEiwvV63 z4%a@vp98g9a5ge5Dwz+Qg-GbAhFeGN;N4{xdDnBbKtpX!CX*CjiR?(Jhyp zBJ2(YT6pFrkx+h|<$HOMw95EmPSfw3+jhajVB#ntwz_SQMT9U`>d$YXOKBgN;(rzX z7Kw19RN2atekOYls=ReG%Xf*kfl}rYA|Qjbm%9SPNg9o%d4W4g=QC9rrER`@xnnRmRH3o zzK4z+vJ!V%9LBIGtf`!n*D)ll9KIfhDS$Dz^5RCeA|A2aFBoT*s6IB1Po8A` zJFcG-eArrcAJl5>x0CSU+>Y{Wu+uoUu#hcN4IsSv*>5-R#0>(nxm7-?jx?FgP0)Ov zXGpMVPuY@LB8F;);X|3SEl^aTYJSBtRT|x4?sn#=|(My$=@(+aLj6veh&f9|PgUM@c>?sL=r zHrO-r24*}>5T7-m_U{@;>)sB`Zn5cmW%yxrGVSL1zKHv0$M&={3CO1}#(@6`{ewHmxA3( z>fo{XeS`CPDW-Z$Pr4GC7Xrh#pO1V~!9Wih8KoA_ZKrvs^Bry9_)I6d&F$NjFc`NG1NtA zpPINc|HV^bInpVklB$IMvocNSeut|DzuVBg-vXJXDaJ=Z zMg2Vyou!USnN8T6gP@)P>lw#umii$i_~)I zx;7Ar^pmnRLi+kV$b$QGNcj;R!U?1{^#g54kMzPw6%hDeIUh@mT=t5_B1otK7fOLw z72UCek2FqnU32dby$?tPgD;5)Ea4Q!?+h?1<2RfBo|{Z&v~5(Xb_RgVf$4w3w7%fM zNsi|KDGiiuOsWtQv!no@(|C0M6Xf+jjpy=IG$h-vZhsg<%;d8!K!#6#R8^>tEb&3` zh!TPI!q+bkZR0>y_!2I_^*;H*#0WTVk^R;0G08x6*tVYlW}z2g13rOcR^TJ0xb^tb zaw9%zrCnvO3VB}rrp+9X1{dj8Wc{B6tNE-(q;kAB$bV!B*ZHgc*%;2{Ob|PX8pshh z02aNRn4gDprA68AZSdm?6C<&A)H{2wyyv|0_uy`KP6Fin7eO7`b1nzrCG zgOmT6$OM2zQE@4mhs7_mphn+xNZ52uhKb!vHFoA2DvDII!GtM1F`!kUGf2$J{PB_=s;CmV^oBiSDxm=cD7{p4{OK-G(sGhX%O2i)I0!pF}G?xNY9u1mEJGn}bbfjSxMwmXqMDlWMDL66z zsm~jLqfHLuc`IsiS2)&uQvt_QK<8ZS&3+F2`yc`boO!%Y%E4ulJY3>6Q>WYF;~$C6uaYIVpD zk8E~N6v&|>q7Je?ya27}gM8#9(0YfHk7$|a^}g#0!_e0p2i#MJsApBZE23SN5JE_&a-r|>Oe>4K7gGyuSu^{AcujY z3rLx|5-*YAf)C}@%i4f2v8R{m=xE_Wu3CMsT2{&vvvaufXR7t8=-3+f`uhae9<>NKeuu#t&2XkZB1DC9Ql?FZ=l`2Yo9 z^zx%q-Clss&$!BC^OJpes*()IR;Ax9?woXla3(LoT*O)o}#d>k2KS=GadNkgh~fQOlmn3?gSrbI%Em4 zM2c>FpJGd(P0+6QC&?x=o@Ub=XQ9&#@xpieqeriA5*Mtcfv?wHu(-W9MvCy`xQnw7 zccw`f7DLdcIT;;z?SYR{NJ-(zVUP9U56F(8b?xznU6(07{PX%8ME#3-eE!MyUlgPq z>i-`ZknzDi@|~TXF56>_zOeU@9KfPC- z-e;qV{DuopcQQLQWSVk&~V*_4H)?^hi(23Un8a^{H|)I za-=>9*z=VNwVnKAJ(;tu25F9eZ7{6>D33(mm1;p#-0QJC+ zQjJ2H)X1o)RaHQ=A36nhA)7+-A^eOR63U(e(><2VdJQ%oiP-h|idamhtBhQL;jzu0 z@*gR^Vgg9%TK8R@?fIr^flgXJxc}l%(N(rkA?{4zrYg@HS)EKY6b17Hpa)iT@z?6U zAy3)E=!ufyJTm;$2V0&ISc4j9*0(8d_v(g!I=0^z^P_>T?gKfmh1J)naxw1{D|UiR zH*Dw!AV0Jor&=VnNj(yoZ*rUld_VP|VX1xRKD?8;5&G(}p9xcgmVi^zdT;=U1ByHk z7v~Jg7JX!|x?Go!gO)D`c!&R)0p|(3R>5}T>q#G~Mo;&`PDLBk&=vHehQI(OyesCF z1AK^9N}ab>i>=L|#nS;5w?N2(*g`@NMW&{q8&3l4b8$usi{TuqyVV%Z2y*OQW#^`xIMRA4HQoGCxl{84Y6D#NlhE{BD$ zCae=E28wrJ0E9i<*!ss-50f5Nn)QL`jhZSZR;3xU&Q3vx1$3}iU23#T=QTq@Z70i# z@4&8_HKR@vcR2a;qXk>XYs5KS*tJ-7zTWyn{H?wtXdtUq>yRSi)p8|_`YKHd*MctN ztbt^)EZ!hka6m}cRI@}6QLgWczv%*|s|c=cFVL`{8Fco-n`dXbMH{8Aij@vGOUXwI zy~`D{tTtG03FFh9wGt2~Pq#!*F6JF~HQcmTpb6$bWL`7bJQr|Suu8b*1l?6KFunN> zjQ1g{unY|qz?BxuBr!yK+$_|XhT?)+Jg$#AK_sUwB^9K*BJG$9x+G|b z{wJXUSI5OxJzE8J1|sS}>c~2C;43Znx5l18x<4CNo3oxYww;2G&XGb{89WabUbT8T z>owYC0O-5gQFlf5Ha~rsCGg>H&XlBqzLc?3WNRcp^bUAXZ|;B^!xJtzz$6PAS8dDB z=pnUqipF6MQok~lB9CnfX+DOa4t|LGsvCuBqOK_S%l68Pld*Uqrsil|#8{SU$5PBsy9Ml3-gLrqYP}D4Fmp znK1^YqrBpsMP-Ns`Pk}x3J-X*#~Bik83Zkxzd6u9%pG5;E}?=Bpv9|_?iiP-*raQ; zbbHw*ey{D5ms6k}+9Re3IkC$H*SXF|ipQv`+~*R7D3)$=uMLUpfPZ(wDY7mUtOF^} zvbgv3V>!sL2&ss?2&_iw&JdIa3=EXI)8^yW#px1fm|!6FYtYRZIaspe_KqG;eiL9T zIFHb0pV$$SWOB2R|DfLNvJTeD;Hy)&0`!8%?2(rMj>UT_{)FG;6 zqUaccR?JXuG6$x(Zb@SYrO+poXfP4=k`51F?#fs z7|?$e@e_Fc{i-{Aw9@TP-Ek{xjJuFfXME>P`Gynd=6qUskWi2ys)!0J2~x-pP(d-g zOg*P^UKxxWEERTLCL!BiW1(*J-9ylAOzz{WywIi5Rj88yAIbqJ&k#XfN5Y!U;X>|; zI^7b2b)n};BF0CJG9kZqL181r^vD|e57%6#Q<=F)N-XrMuYp}1E3}J8AfKz(U0t0a zL{n>bqKpCFL8?hyKN*9OeI-GwDh#o}BzpMj2CH*r&YMCgSzVQAMT5{nP_y3Ky6sFn zmqj~RsC~u1V-ZPtseK>ZHb0d92K}$ zw~zcFmd1UJ-763&!5O4l0Bk4rHm$8RL zZ69Lh^N}*X*7My%AKq!I&Q|W=b!qhIieZpx(dELQD3qa35C)I$c%cuPJ5Z(Mp1*Fr z{Kq_>^#1#~>VJx8{67a^w4ftD2Nmj}4d_-M;8E!Bv67||X;ZQ!0~g`*J^g!s@H0R( z3{`U_*g@`geF+$~3BFe;AwLID2fzdLL7`_s!=*Ig0!?#)?mq?Y5~^qZ-+ll;02YrI zE;1Dkxch3@9w7cF0K8;D`g^X#APh!O^+!xXf~Da~*SDHQ!4R$(SFUmJ1IV{F4u+6P z!F%$mD=H=Ue_F+?o_GP)u66ubTFUT;xg6P|gUIuq$j7)l{Pp{yjlL{2`FSvu<($tUmy#< zjBz1fAHVQ+pTp9``+3H1>E{1V<&$AK-Yk6y$Ku3otN$#2J0Ek-BK4`2xJ{a!n48|l zIV(pqFUod(b!t{hFmPJW!&+Vb8i8O0Xj7X&);B-Rh#`?@uFy-*qXGA_bk2tQvXtk* zTdRE-S=!nz`W@)I-<@rZzN)iO*`6r-AUT@nXP z4li7#3iI=}UV^n1fvkz%cq&%VB~E+$!y`}_jbVOcO^(LL4KX&ewV#2=TTbHdo$D;f zdr|FfVbQJ0t15Y>U9Pk-kaK8j{!2#AGs3HaE~9=gMeKTCf+dIdbL-O6gx1kJ4q@-( z2r&`oYD13+gylx^Lw$w{>;SGN+;!-P%k~^Qd&fY%ScaJBhnLgpF;2ItSmRm4aebnF zh_@ojf(?(GpcrJ1>SEb2h4x(gk#vN5jTH}vJ`(SmELhGsU@u0U*94> zzU{YI9cN#7zGZYWA5k|}e_w?(bo`u%Sf5_WwcNdST?hl<}) zE53ksU@>Z`kND_&*!CJ&+*v_(#|SMVIs=$(k^y@766A_J0buUPQP8F=BGn={D&|3g z#EnueUT`6pmXldDpZX5~QKcL8>CMVyj!Cm~yP&e`l!S6Rmo#YE=ow$6B*M+lj|Cl| zzalRYfxmV9GLjDTk~ddqG=5y>`arqpCIO{c5Evf}N<{Ti83?t8kEvk8(DT?%v5|w> zz!0uFj<(Z_+8V;=42DeZJO1_2EhkoHSZg6kRGqA|itE`Lx~?o-;9tg<~Y+h{#0loi5$B zk>oeG(oDTxPgdGW=%s|C!OY`A-ZY1wP?b$ELCpT?(%vog?iRkyso~MvwK<|u{BxxD zw*qRQjczne)=1S{p34{_r^-qxbbqwO@*|a_xxPUrk~fj)R}#;k<4G)^_)=T_!)aw% zsdJPDYjlg!-(Dr}IJWKVdCgk>Osn%cj6U~YQXTaUbdaJ0q6B?*A`Nr^`Om?a*d}oE zP(OoAA2`^tnU0`0Ff;(@YLRIO~egTfp?DubMiGq5k( zO!M)32>dI%@gH(Fuz{EaA`zj<+aED+!NaOV~4-96d!WJpt@gVfF`YM5QiE69s{W_fo57i z2+ZrbQ$^}AY$)OW@I^h^g@x?+2E zv@$0K0f9N=`uLl>x5$V0ped*8{_(*S872r3;L2wdNDGI97eKu*VRM7Jtn~10y+kJB z`?t3`UY$Sv)BYUbHHMQn(!@NB4)=o$>(7@0zwUGQM;=GP;#|TgSA6GvCdOk!Hb@;y z`DZp7D1B9pCSe3t0i~BK0>Tz3G!s1tn4Yng4b+x-j^TQ*zwU=2yed@J_qPuVm;c6L zg>aTShsg)R8Is!ta>wT)OQnqC;l6vyDIOf_eHNnZ4TrY8UkkM|3T2vnl~acKAFiP%NrYj}fP)33U)|Af)dhD1J%-Cp zcl{OPy>9;GS#%pSPk=$2>T_QYWmYaXq{UP2 z`oM*3Lsd}W|8d}?+brC?ivgwRv-U{f$>pfiZDNtydf5-DzZi}}vQO&@i;+j9Ph+n8 z)^{118U$8^S@+JMX)1?U*yy0K?;DB~5XZh-Q|fQ=nI4sPJ56HM*9=-mc3Tdkd42On zbs^Am)a~SkGxE>CyT8LVUW1u5`6q=Q-VN406q&a8Q6og5nMD@wcz;&wFiX+IZ*_^B zyL%*Uvxd##JC6DX9-}B8SV>5YL$s<4_5O0`)yn-9$v<5O!`Zn6BBT6WTTZyIfnlasEn#nxfV~aj2Be33oAECy{^0s6RtB zFZhiulI7F{d#Y+?%Fn!evR6;kNQxc92s3k>Jo;dornXNV^xkdKRnT(2`+cZY;v_Q5 zTLWba{9H7Jz&5j@#~Jj2`RB&-&-YBqlF^^Io3OfU z@Y9y`39XdD>=(Bcl;Wg~YW_XKK;dH+eyI z$gHVU(r74>%P;^hStrUwPJke@ZD08~6p;-Pnq9ms;!qfk1+!jlk$(c(P*rD(%peAE zG88+Z67*dB_mayr{V~#^v!xm>{J@kqUaZ~QR}rH3$|kNScsyS;Kiq?iIg9bOt=nV(OH0aEhm@n1V(CdZp|UYBMeAg4wcv8&`EK3VUX>ummQ^EBkrp7qj8f@z zVR34BF;P=oDO~Z(#dv$dj%&8 zG}Soyd>hp@`OP7K;D%+j?BLwfsP_*6i^Ndwr5!_YLX>CZ3;@fXfATughb`NYOpN6P z35-ylOujb$0a(sG7J^?nzsDngkS88dT0PGbG~Lzj#3~#5yr91A9T&z6f9+>wJn3qLWVi$g zUsnvI`uGJ)&1Q*&s7Q4e*KkULqHrTOkz?&LjHqSByWO4|hi$)iZ)~%7EhooM%2sV; zg-^_X$1;sb$E5pQFV^z0#Wem=0Wm7f&`ZVwD$Xk2{=0(z@3cd9eNzh zO5M8)?{A&na}1$M*Flz*Xe{5;F2e(?YF*Y}Wbj!h!_5uVOmAgE1&OA%WJ59`6Yl|J zBY6Ufrqv+okg~JP_!xlFyRm};IHjef=PZ%Kfot&eyx~ihkS&^%0#+*Wy&3HO!l2S$ z+8#25Ei)LlJ-@;^vE#*wl{!oc5#l?B+x4bB?KrUrzGr)3J<-N28s)Vai9NYfL;JIC zjn;6wUKi)mKVRub_;yQQ$3KMrYeeen=GNt(}w!OTzP-A zNe6-3Uw44Z@fKy)YwJC(&^J_mA=R%z6#8^swj1xUWhResuZxU`hpl_m{M(Ijvzm)b zp07=;MqS-LtP*CvQn&gPz<|oJ7+&`dlp6+LWA(z2jZ`o+?QBDX0KvPEmkLq*Yjx3C zR{izqb1(HPFkcx|i-*vLaE0n4@nNmpP^mK4a3{D*jVl8Zsv!_{NcH-9Gq)j8@f7_{ z6L3>q6jqKb)s^Jb#v&Yn05vPAj_n^{q8dHNC*JDWZDU*E=N3j@fa7oDZ(YH2aL}{+ zQ6J}QzGL!*b0>GxGM^Cyg|Dec01~XF!zJCGkuIZ2km=uwtobUG*FUR7T9bJKlDEO| zESxoy$0@i$tE}t7@jWJlnGa96ntT=O#!*f{&9C_bXxO@37~z-A5ePTGmX`)-i245} zeBvLf6UplN_xysrplEw!#0AbmzQ_76W5l(#Y^~?vn_Cj_)-?7`S^vGq?~DTfTTS99 z5QDw>s&Anr;c&QU6zKQw^dJ$$0B`E~1q6)uV+8D&a0XXnbzPs<83t|MZ)4_Qe+);n zcwZw$dm>;Qatb*T!heD2Ft|t5ZMm8}Yi$FbD9acCgaoajs1FK!05u2eo^th-L@BEq zu&i!AfS+LG;!^+je~uA22KThaV$fN@=>Wyz^^gCu~pJ#h5rid z>)gL=Ty$XW|6jhXutkns>7Skl6CO+mM>}TQ1KY(JP00lvvH+L+9l%sTPcr6CY#7T;mA#W>b#ZqY%v~Qv+;`w= z6+5-(bFEEf=?=V$Aj-C6DHx>c&T4L{y1{Sw0rcubwejD^`$@ooKZ8?1!^eP`7g>T^ zjh84qk6PM%&Xa+f>N&7u7Xf8&RjMfZ6Tpi%hBE!6 z;2h)jpPaNeKF=2eZtZ>9TpU}EBS6mBD0Pg8A0n`^v;Dn0O*q?~9?r?E@v27NTZq7= zdIl!>x{@dMi}PB_P2?}q0V`8w3PH;SpSQNeXE_MMZw+TZ0pb1=%=vjMv>g7x>U{#3 zNhLtMpWWU7%*d9^8}QAmZK*=}&%xV+k4bReJ`97f2w)5PqCC#4a+L+$sH=RQ2Zqg? zIlgeISPP-6&dNQQ0>%mz@!&vy>(y#Zll?NfgwV4J!{%Bs&z@cAH`mL?60=v zdkZ+Vb8l|EH+{mx0A*`%>WI$=^LERdFAQ8q|Cm-s#YVBxSzVxC0GRiiP1!*bxrXK$h@$j_lc~H*jp8-zNBn&px#rNGGVhN0cCqJp?Mr zKH%~%T?6#?v@=tkiizYL2x;72Xs$!03tI>3?j3(!l063SB|G?2+s&6Ig>LP6*08VM zjsqm}x4?1B%03NU?P0mWBY9e3mp@TiBJMBR&s4onH$E;jyG9aO^#TFLIr1=&f}q9{ zFeq%D5wq%8^-Bd$0EHG+-w+Z7k}_b11q*=YWEV}saZ&6y7lNoKQN0(39|73+1>pmL zk9XTdpNZne6X5D_H7$9+-m4InO^4dyYO*F99G%T2;8I5k%Olx}X39awAOXhaF_Q?J zpWuPm-lebH{Q2=ET(~j$Ftd!a_w{&P=7UrOHhGtprsxs{Y~kI{l+h4kV{>F<)K=1k z1jJq9{1K_T=(5^aJ8%6a2X?qRkpX+c?H$<4W5c}|q9veUZf}P5Z2|=+*0a{9u&b+u zdS1{$&0{_*T0}&|mO80%l8{W!nT-6S zF4B8=s={U$F7gVFI+^Ls`mZ#2=IqUEej=LjF2d=GFvyP0JEd)<{bSM>)`hoAs*-9E z8I?_AgK->y?^8qQcYi+J;0RgvrwcPdi|le4D|$Zm&C{`MIIUkIG^)`u%()dW>{+W0 zTngEisUEYxum?rV#aU!+BsTu9P4~+WL`B|TCYrS0c?9bvb?lRz^D#h=|&e5e4bmVm_}sgQf#MsGr$n%}FuT=T4r zSYZZxziRGHKFM_^3|E5iZxK!hj42^Y55d zK)zJt-czx*2&FQrX(*i9M5#!e>{H9&VVs#0I&XCEfnG`j>QrVi<{V{Y-4CR7xl=;p z^k_ndf3-GwE_(OD1c4@`-#zpEGj=0P%xC^4dG-<&&A?Q?L@&HH-as+1Q|IyYd=fjJ zuIP=)?n}D_`G;ArIwXbkP2Su#SBftl=puudnIiG~gu68Jko3O0^J!xd2P&0q5N~Ji zMoH~|HfqA^wc~SQLCkmKGc^PMu}h!sy9dbi$RYi*_ZQVK)HVC7t~|)a@@M37jp7EP zhHZhMI*T}jCzw<$<30doj2q>W2J6C>eTUnCBk_<#yTS58afh$}Js8Grg!}?@1N>BV z5Q{EB8zA_n&9p6;c*xB^Tg>}a-!xROFrg{l!Cef#Jr(u{vG+KkNG~s4xjgoCv-?C` zCXf3iB;P-_i_r}PC1BE-l`rzT722hL*cU(sLM4mWHg1CsF<=Q(!6~VFAkrA85x4$K zf|U=F2DG6wn6V=9_Biv#UQlG7-^Isw%*N0zi5Zc+f8T$X;t^%E zbq#c?w_wt`R0YwM4<6^NanfqC~`{OJPLMoc9(% z%BdCAF0m6Nf`RCc--$wzPN@7i!X7bK@aD_1(hTKjIs@NCo(Xl`8;zJR0HthMe``h1WV(28}CR3KLiUmPlHSf++_o2Z~@l;SH&1K3`H1pcT= z_QRz{9WA_v?27S}`o2-;tDKvjzi4#&Coe+^^(nVkUAsh3DJwHCEm9GegrTx^Mw#ap zSEp3G^Oz?7W($6410H6L?12)JC%JXAsPojB8((sHcBen-4eNAP=Q7z~0ozMqE>okn z*c9exeZsfl4wYXN2GMPvRgM&@P_0PEF=cwIGemFJb|pJl>TpfnYVd{}-UC{vL`ArC zh3giDq5L-c=wf)0{bZMU<`By*-~R(PUd7`fZ~+OCWPN_GAS8>{+u z@rxNVef}66d=;4>Dj@+R?3vNL7bFzUUL!<7Ha1#lW{Tz>QBxY}5Aygt!;$50>doFh z#nzAW6m1o=)PH?(jvUB!E0Y$HW{9!N^KTU>1{Cl*?6dGZi6c9?WF)JPWHjA`FaOWwOa_g?E~Y$>!2WI!6@d?bA!pqcR=2_fOs5(%b z-p4e`pBh>z-T@Ydk9_UC=9nRx0$p~c^EBT?YSn{-Vs4kg%%jw+I-+`7#){YJPtaxP zIwwfUQsp%k;2I8pc>0B|VEAcE%}`Bz_92Dh*j9D$1Nw?{Rb-TjV#IkA?zB~f0-695 zCBYi=ASM3_c#dBU4cQQMo~#`|P04pekN0V9x;$FW6!5~nQCY6*9`ai4iT3#ueiZD? zYcij(#T#Yk+k0wilwSC%)za-u)OlVjt%E}-ClM;WqA8-F0ovB!Wc(=b*kd1fQ zH)x$#F?z$5yWo^6#>yaidsDGV7NPUf3NRjz4+aqPI4wTO=Q3<=Mn4b-*(2xDh;$Tk zqBWXL6vvbEDzxJbJ$}b@*4-6ABaNp1(h_!CiXn|4rRW<*7iQJk6gp$3)nQ0|*D$hh-7;(b+4=y9{vA659ojk+rWjTzm^0$YMsi^)t8 zwe)ibY7`ZojVKqMjaZGW{Kx9q{Hu_1YrC)DL>XhyaD`|!*l1UVJb-~?9bjkE8mbB<_ZQ!Mo+f+ObGebQ@K9o{%EHGqOX4Nzetmxb`SvzVCwf+RJ1uE6 z5MyYA?zw;B?o}U=o3zL9wj!t`l{R-YhWQKTVUX}!GY@oE{O<7xLpFmD+Wqp9$ij)> zfvBXG+V{AwnGm84UQy?*@m`>CW2}}YQAq~0PQ9g1TyY;Uois3C(iUXQlnUv>qe1d0 zp82vS5P~`ey^ILOgNPDqP17IK_aKB|l^1>qrqwe;ix!a5L=M@MC*~hQ-v)*u2Ros0 z2tOYIHw)Fu_YPIy)fm+mkJ18yaL>veS$^ug3=B~@K3P+}QPcz~2QMcbgj8Z4aEn=nO89QX@N4iIBb`H^r)M)k+ zu--gdX6C6KekwBZCgCVdDtcNPF;1p0Yx|Mrm2yp}thy}Da}cfL-qOs0>k&0$oqr^I ziY8$T<<<1xZNqI{*<+p1$&IBA$BP>a?VIkoy%6cj05*#rEXaO@*=CEXlsL7T#)YY}F8=zyjXtgm#2*O>w2$g=HRc9;J-OlXB_ee!gJ z(wuNhpY|mMTX%OU;D1tIkNvZ|+s$=!lRi96Adrgpi+FKV@D*G9)55V$dU|I3*%(H44q=L2qdnwLp1lyx1 zHV&;v@6|Q|VUHLKSGkN_! zYGg9r?V#9*{&5k-AQjk+E_XpLS1&Frha#LK*fP%{G);Q*omOhij)bz|25XnTfD4KH zI^H`5R8#Iqb^Li#$dNcYXRMT67=hzMN}z)I(&SYtGcv|^4nGZz$t^Wqx)#l4WvsAA zT74khRO9VCRdThhNALcHP%^UpuLaF8{*-z&IxO@lS2@AkcXra6o=kku&3Uv|ET8fcseT*B%Z9S&kc_U~^^z+X*2Uk#%3bH{4my}SlDh@6?Q!jRxZRlOgN zESMMmz%vcONWC@O@PsJ(X(Dah#rC)&fUuq-qv58!e&a14ssIMba zAcQjr2*sJW;fUAzI=jzKOs1K2=qc0ud*DWOwIY}bT0gh_lR}KzV!rg{2 z1-Og_eycTkXw$;PUee@ncP(=0)Ey-r;d5xm=X8t3BY~V z1vK97G@c-T(Plr4b7g-Gzn~_NSLGg{RwIuCHAC$#vH^=c>1_NWje{KsqLbhbjX~v| zi86N@TmYs__7!S(bUaWWQqZ$v9ff}N+W&8W&Ivk^CCd0-%4N9&@pqzA&wkiMY*#(d z|A@qgV6i-=aRV6IXN^Jy5vqi4OaXPQS^yApg|g`4*oh6nh`-Vd$2pnjHKU^lccG7o z$RG(ka|CnDXdJ~L-+#kjwktSZY;TZJ`~i~v1U$KL+m8PmG08V*!{-1746|cKSAyfE z7btL3&iOI?iV9AKWpR)+w}O_Bn!gIB^=SqSA^)3t2~-L*Pz(6&(&>OD%*Pl^iSCQQ zyQL>+;`jW^N&*?TjBORdI6USsp_7#C*TJ0_!Y)=Y2LJ2QjLyyXPuWgUcy`HF2nUsP zCDAQ`^>*Smn%SC%t~(5u=med7ritMRLe~qxk(?tCI7vk#OQjH!slSXvmPWp%2@3|8 zol*wRyS*}MtA|b)CYtul;k*7sX{;RphCRPI+jgf(lMD<1ciR)}uN_rfmJW6zK3P5l z`X#uNS|onG@1fdiv_OQKJVj%sFO^vXzzh%Ld$)*#Tg5sowY3Ph`eFECyp(5ZnS3k? zgCJw#y;O({Sz^=*K~t1pPb0XZ0A`dwJAB=lKk0^F=}kDnx? zaRl!;FWT|}Tv!~aq2w!TdI)s~cUXYdW&3d%DFs=k1YAvTTm#fbGp;@&pWg;dAms;Q z!<=TeRBR$Zjw254)!UVq?{_4Nyd1A;^F{EH%aI6tz(A`>=z&nW-DztgtDrBqUx}`Q zj*rfNC39ngBooQ)7kso>1FPZfI04?8xtwnB<_Sc)Scw|;vG zPKl9ok2?I(NlN*prNvw~l-YH^&|Cvg8;E)DTAEeEM+<}7$sJ+Wy*aD@?qP@%ypS)x zfZPi0Rgap7`e#)ypNztWjGr)*LtzIyNF8v2?0jMSXMFYob;pVyr`BPM2FZNd&I09(@j$7c0th8%_ zD^~-XMlh0?9?$SI0Sa~)`eI@!V)O(>F>rH?m`+QDMC?pf>>AtESokB1aoezt6i0LZ zfZqZ%KG=f9#sHHu>B6>o(-n$?zh8*%;3d)ely(`YKUCqDz1{QB-isPD@ywVmmv)7H z1QM^U6Cu&3p=C+Z>;y2{rz?bD#q=NT$&PH|-g1I4Kp_4PWulzP$Rr{(%xV~8Htd`& z3ckm?uvVR+S&&f(Ra-ds6^@d(NK-he9$(C0u_U_XyXtxsRmBz9u z9Tf`=O@-f=2OB%%=T)nN}tN%C}AiS5w9&cX!)*dBD8J7Qp0?n{A*z=%{fpAs=_gDC)JiB5N zy?ng@3jc!Dob)V-9xeAs8Ob~P%%j0~?8++NFwB^lvfjy?kKDzte~*UfIs)NHAfa1Q z6g&8+2$<3k!ZVIuJ+h&3E0z5)K|9LQ45=Hw?EJg%@e1{ZNE|B5z`W`x!6*8B*2@79 zBnX~yTLa>~r~m z(uW|kPjuw{MX%z2^idxv@WNTwV~<8f5E1f-?`5IKZ%BFnvas_b7Z zEu1(cV*9rm!OKBI@>_<{IAhZhA#v0VsOThCk+N1Nljg`*^m)~o5{5+%3kpb7ycWvo z5_F5|{S4-Lk$lvVIHZt}`a?z0bMl+27sYIrq8#vmO^~%{A8;W6e3<-|r0`uYGl? zfT&!YRNLfvJG!G`S*>9|I0Wb4rX*Zup^cPDuW;%H-HE~|cgh8}I(cLkltTI~1$sKZ z8v)zYA<1cajp?`Sk0?W2BG~D1HKf%azUqu>N zaV?VzWN%YB0Z9nt+vjcR-sC5jerqVB&dZ?HlYo7x?fV;aG(7lNgqE{hktEPAZJkxy z6<`7aM}N{ua7QCEdfR~SG9^l;KpYpJJ}rD<_HTiv$m9Z2E(A259BG1Q`I~a-(G!7m z?)9>OBDuqY+r~wWn&H9zWiN9vo*n<5m&6)v?~=nB)f4|rgQ2-|T*;UT$12R($9Q~f ze8Kc~#zKu&rJpR?-r6+mfvmb49je)#eAPsh0bIi-656bZfNNH?UuP5iq%Z$0sXq)T z8=pHEBBP8rc$|f>vaT5KPtPLpE3GyZ^9!lQw_wD`2l5qkkZ%TJSZ)_%fust8#}hjH z>`k0&^FiOYCV-=Whc^Z>Io@ymUmB|XXZg{;6~p}7x4{Rnp6m#`1;`fkY+`{Q@twQ~ z>_3H60j)t{9MC=P{7x01|KZ-T9y(qAPi;T{Eh)mc2QV%0g4~$<|LA~5+sU`U2!CjB z9$Dh9)~AjNASg&;GC`jdPyK1JC!Te+>d?W|A|T|j__QK0@b0DLpg`F}=rldEwrr~> zx%AL15hs8~x6F*Dy3ZR1gGeb1%()X>E3liQ$FCHE`$SmK-x$U|dH{3?mY@GzEm5bJ=e5wK{GR`}ajVJdn$JtrWPA2E)Ks*j2A;4@51D>eom zrUp!?vk*JL?XGP#O@0_a)0(yg8V+OPRSQIAmCsELTNx4?LG zZ7R;+!@oe&Cur7=bK42^KQ@L}kVK=svp`^wXLcSEmdM1jal-uP3x5ado&Ed}Sa10E zz^2r&hcw05e>0jX?!KUWA;msxW)U%RtiTbVy>&u%@})T_#Ep-^E>vWdj4kHP$+oU% zBp|hXp(m7A-%Ay8>83nvX3+%kL?3{)&Xktv08nc)LT&{eu~>yml)5e9vrSimB&{st*|An%~z zuiEU;ehKpY0fO&vYzcq3vV&i-Wfi_Kh1KJ7_HPf&;wg4NzF$jT9^J>DULD#mw2s?4 z)50vx;UY+9%Hyx+2Rbv8r?W3X*X?2|*BE(5_V6bd6J}t)UIE;K#v0|o0qKOqk{*{} z0ChvvE)1Qx6=Fa_WRMGCC^-O-r8^+A!Al@Z1tiYBHte2>(ifGt!JJ^PVDKiNrS(vF zuNh&u*htJf4LB`qI8}i-2U||C<9{L6jnC$B`sZ6T%3+G2lSgB74Cf131+Y>&A=A^* z8wON5S%5V@gPv72D?iA}sPp00S$!$OeqNpv^95;mN=roV!vMXtCVkx8nCC_9XZbYc zj=tSrG|I+TJwZ&%A2vcHgZVAUhcEfb8y^LgeU4Ar5P{3}J0_JW&x`LqACdn#>M!(d z)S!S~D@k0}cRf6c$sE)hBB{g-A;3^z)YK?^*vtL;U|9i^V4W;h(8O~_0Any zneg>`=H^UrkI|cl4?so(i-LX2=@*c9K+MihK;1rz4OD#z)w3Q-QUj2A0>lAH@`rL_ zEV0)Bthbg2$oJzD5QvdyKU1Tz1{%Jfk)uF?Kmo)%^9tWHM5rD@41jM0FBSSdoyhrO z8M5hNR7tWD5NGxPp@Wh_@r%1qS))&ju_D8_2e^M^pCVj1Z_m_f0e^TJC<6kS7!gGn z%OAE?1aRq84rK2TR4Zf()SfqW^z#kWR@7bwKn9ezz!#uYY4gi@=4h!4nA+d);ymB0 z1qg>(HF?rPlOV*|P7u#gC-M7EfU>T;kQv87wQ2MkHBnPDI*6i+ ziz9aE{IFG>V?m>K25IYV3`#r7o0PkuJ;uU2n_J*fs>T_9u5aTNy_t76e{NT=n)Q;q?Wn&y)I^_aXUbqpU7+eAUBpe#?n#Lqg| zB&k1KBp@Kjp@|7)7G?eIt$~$R%LXXp6?vgN4?Y=cA~D1je5DoD!g+0p5!*Vc8H{25 zjRS!(=1G}U$8VshTudc4Uzt_X?5M*eJj@-^OZs(LyQ{?GkBDRez+k02oC5&bJayf#K{UU0UaZ7*@7AUoRfC3gkpd1kVk0NI{Spw=t z#TfhmEMKI#Y@rfIhr@Vs$ZmncN?GC$AS*w3lAqxVR~(&$HTv_OP;}N9So{P+Soz;L zb_ZY*eH_KMl4SGV_iVIU%YAQs1RWOxm-|!o(TLd!TV8;(Gf4_;Z!q4AhNm8DA-={0yxH;kx@+ta37>m4K; zYULLDG;9?XRBTnNI`L-t^x1OGRw(WRSWBVxTVMrZ36DdTF`ppkDZCFB=z*l8ni+@r z_(?f9Y zDYFO;GbOYGB@i=wWI_4xHTnCRaj~ONo2LIGvl*`RVEQt|w*v%qnXP;>OAjdj zA^8QwQmCX{r-NTTSAQI^8rzxi@tz8&6*8%aM}^4K3TtFTuYH;Gl?03*=v$g7#G1A2(}5Ey30R;$jX3@ zQ@7zZ_WAewkJM&TRp8^00%05qx&S~kM@CaT&b{VP*T1(O;g{{=u<$EUATPTL2}vZ$ zSoz*QoAA(+x4AG&oMwR}kG*m65FLV_R+^HXoZ2t@fS=hIK}O6^u4K4MJS&@n1Z%F> zCrA=12tqSSqV(Wa{0pmEbsZr<%Q=D=+fz|b`I8=DAO+LtkHjRRK%OIF&TI91JpmRE zE%8ZkHM}H!-v{Vw$v4RgR>Im-4Dj)DPqO0(<%xC=oS!$i(&;?=^F3$8k3vrbR6!)% z#4VpX3$^14sT#;IsgJ@7yhXg=&Ul8<$FPcljW1vo2c$oDO z(Q@)$E`n-=j2{W$8WJ_G_izGEt+!7gro%e39w^1`%!lE;OJupd2S6AlibBKDISY`F{q#j;J?#V1BrAg@vwCCTxDc2VJ> zG;shTn~w#XN3g}CLajn}9W%v*(;CnW^hLP9$+*VzMn z=*(Z|fyl)EuAr|s$6HpK4;q5e*Nh*mX>38--fxb&W!yY&k1AVXxjP~*Dp9G}(@ksz ziUj_MaoFe*yd%j&LFi9$JgI%vT9#>XZyZ4)qj~8SGIko(IC4v+ zD2|0!s>%y$yG-3~#0TQ`sBCP(S{}Hf9M~UOeSHRkTnCGh^3E3ZXxv_=><8qMro4N* z5(YyQeH2}gDY1i2mm_ zC*a0a%!^lwG!PQ?el{;&D076lNNy1WD_^Ch>{BC!pCfrCotHFX-URK0bhQ+tAxcj? zukEv@i+bbV=N`T~=~iFDt=u)*-jargj;TEfsutEELd*-DB^Ih$4z-wlad-=H4;ZpN8m#b$%r7(=WX*OI^R#CKR^qof#Z_2M7%ylg_Nb5D3+T zKL58s?G6A)C^F}j|EvzIyTb#af00j-e^-H4 z-jVhXMc9#CwL1)1>IrP^!7S6ne}oMch=?@pvnxzxNHKQIRo|!7-jwtob{kuZc|hrxo6D$Iy?y`a6rUERD*OrY|4gGFmXY3EX<9 zDarqRDW^w8>2k0@hxJ_Tq0q;+uKXrvm z3KU}qVTbA`^Wpt}PIt8YS}48Qh_jfx84PAYNDH&9K$G zyZ)JBfk0b@%`e5ND*J~3L&XA}^wcTvzt-$vBs=Ho}P1kOj0@dUZ3*F;(bz}8&Icn3W|naQhe))~{1_WJwY>Ljqjf+FSWTz4KoF>+uR zC=Z$$N7a$Q2o8$gBe)HKM=)FY%3u!Cr(=7!ERFP@b}~PnWu+V7?x+9F^ z`+1~hNbx`DYstJ1W+uX%0X#Pud`PM!J#Rl-g=^!+uYvD05Q0@H(WlKuJUs01KWCOpPO?_ z)-zyD2JzX8*sw2pGBywg-c3b=Y4A3gfFb^21%WY-%*b7j?#yz^md>1Tp*AG1to(fdc*NBH^?7w--0Stx)MwBQ3o^R(>ydUbDf&g`yRI zNEj^jk6h;6fx`T=J%CPo93H@HGdgGu@*O|bT}0m48?sfn5=$(l;cb|WEIce*k^f<0 z@}~-&%Y0=crbT!zTqN!7lPh@kQI;fCRl|B3?V`EZq#)siJk!R}i#P3Q5f}U{5Pk|0 zv_Thg-DZXY;vuPy?IYmbTztAaSuO|kE%Z=;p(NyoJl^aV@EaE735q={Kr$2e&lo3@ z#bk%Z_YuTW{D}}jb19kEmJ#?5j@&B+V$sP;+k{yFy5K=|FsvR}{*wAp`ka~Amx)t@ z&rIxJ!lba{x1Y+1z7yd9rH0zN=cQx}+pM17CQ`OyBDy}P?1 zAt%a(?7^x^b|uf((?b+^e1PG#qyVPl#mT6G@56?A^`ITSaSiMkMw(C`%7UvBy;iO= zu*Dwf1QPEY5P5k*fK7g!UDEN1RuK*TbO2E-B(9Q5}LpCFyY#G1Q%zKM}9x2CEUp5M`v78J~!&={w0Dn4y)y2QUfquqSA|G`Y}Ib5fC( zb?#+CH+n?L#q(%^g$$TxFv|5Cjt|0BM&!gXd}r&%dwB0x=}Rf3hlO?m&bqcLv31h; z@}NIY3o;tVNrNDhTp&fM9OPD^03?eTU{9)$&|i*wW*Pu*L!AQTRG)o;S!0&3Hx#sb zk}9r+OHB@mUTm3qIgFd{H4OAF*#jAYW|^6SXD>pKKoaoTFfH=}VW6>&Cp&w;h=0H; z*-&}&HDJ+Vha^BUGkEiGT?rIPaCQ)Tw0y(XRrme_#1#8)Ld;EHa&NlO3^7;|AC9PU zW(2p`U?KjHb*>vok9(1%q~3;0DSQg@4kc|=?rJqu;P={Nk5DwSfNmq#`t_S%;v=Ic znYHMtrr=)i#anj}8yP|9cNRDMOFD5GKJ27CfSzeB2ZBYq#pj40u_x7rhRy{0&;kr1 zK3pO#v?FDD5g?7MBI;`=K+FX^1xQT?`4K5}zCRhDWn!C&v6n0E-n>p&p6WApU;JZ- zm-vWU*-xPxLS-t5Xrj)u(%cvsEO5N^vYC=WM?k4$d(573f_QizNQTEcJdKz!qa{jM z^eXa2+DGb_>|SzM9xV^-3c8>dhm=1ZY#|u1Mi$1l(e#qg!lZnA`og&0_x9$3|3MG2 zR{pU#6@hcUHz+PkAtQbRgq2PE5jBP^cbu$2e&lN_9AgX~!c;*gSj08@uD$0pd(W=j=b?bXZ26m_38SB>W#;PK?S{=&+7{!a84+n9dct{|< zpjt$`Mx!8?Tsg{xGNhvv!bX!j>U%ZDm!W_{VK{Vt43vq(9a&=Cpjuso^q|$xzmYsY zNMZ-^;%g+}bRft80Dt6@(jG7s3x0JrDB6hlqoniBvmlFdOISc@4P3xSr$HGOd)+oe z4cUfbFwbnF#6-_Fpg&zhw{gAMb}`=M5tU?|pzTjV>U^j}=0NA>HW%F@s0KDEpFzAQ z%`W;D+7@LsE(sZrm2s00?)&e9Mu^w4-OH*B<$S4e=-Ss?<3l-5JTQs-TPi}c$5w_b z_4Ss@%q*?;bZmm~m8U&7lgJi4ELeP)p|JZ ztc#cc99TCdSp*bM|CIZ~Q(0!r^E@Lss7XWVH-*~FJA%THw@YyZw^Ew-i7sp4{#8FC z?Q_EsZIw-D1_81>1B35z2@^{sJ)ut%$ z^~BRgq1Ook9#(QIpYLZpvc-+Hz>tDaB<6oZBp~^7sOFGoB(e1{^FDRG1+I7>e1CJx zkf&Qo$~yXjw_XW54z5 zXuIgw_OEg=aW$TNdX0GbWV?7!?ptrnAi6N43z<>>*A=ppC1xr0#{35+O687usjvy)+0D09I@ykpr8UEE2Qhb$y@& z_^;iu)XMXdKzb~&*^Ubgz1tC!Ywaz*X{>vy%*Yb!#tNGi1AA>bNlb=2=wvK_u7A}& zU=Tl$EE_!QWYBHiNG;KIbs04K1Adoymkey%;kMdpeR_8SsfVs>C_$s`W&Z)9SXl_w zj$jZ&4*p$Jq~;auFBU2<>VmXk^Sq^X={qumk#m8b~^zJXhWX0&ei^r zMGZ%B@9U;ze+syTvv1baij{InAS}=Uh8SeQbxorknQTF3OuZifT9wc_65!{qbFH9B zhQgRuMVX97@JNjo;762E9mgUQFY)m1pk9pfzIiv1)ATt%=OGp)Oz{ho!`MPQU` z2m129_}uuyDZUMP{{YAHiCI0mMTyh@96LZP!@&S0M)X?yKmP!U5}eSq?7jKzuf%2d zM?tsd5F``4-)jqL(qzDn0b7&zjhN+%pg_=yh%Yan`L`uYuzO&(bE7ouGjl^vC|ysJ zcy(qaS`fpol9&`5NFeVv#SYer0Ar*v3E!!7EEb*LY4ox27;H>Uvh8o(q2NAeHE{9; zomzvj{T!@+t+T)LM6NZFb+0k$hpik&Aqu`co+b|G9iWwv%#2utp?y$Kw*BV|*BM7! z`HSe6kN-kpA_N5;n7jA?^6O%jFx?4tfVnhq#QcZ@$W9;BaV?@Xo}`F)0tRKRDai29 zF#REpC&NsxmMUZ(eeMAEN?exxx!0mtw?kjqa}9`1l{=>fO~Prt~l za+qU-=(S+)(giwr=D?d>;XWVVd}@g3%pz|4gRs`5{@g-m1hZar zm1>#+I1+4tI;7c;P~3xIC3fH{4Z)WVN>AnJiUrVy=CT=O-WbXbfifMUD;kmw2kG}9 zG4%^d$cfzxFeo7=r?)7N$Tlz!a9{`Q*R_@{Yzm<#4rE|Dz8`H*j!+(o%h4Utxr4m& z9MHAn0ua)GEf4q_^?#f8TozM4lcE_dC zKY?EBrsq8)u|4O#d5Lon6@5n#1KatKPkBJI!UZ6#LNebs5gB?=-nt;>WssIGUAX8o z{`CF0et95P@(U5_?>X_W2cPIwfJNx^MY&KKtveS5|Mv%hut?w9y}){|YxT~(pBMuY zBf)J6pVh14W4Rlcnh8n_v#n0zH3fZ1yAp-e^FGu){9vYt&%A|Qn*JP=?*-6|06qJ5 z`a3=~OZQ>)5_U&fiQGp|39OYEDMVaCTn<#XoE$}!NKyCp?aCBnDnIH9PamZ(O?0DVu6IvA`MmKA`Hf`evi@lI``&);vb6pYKdZg-u_ zmX{4s^{6Crw16Ii_Qbc#RBDQ;AEXb^pRg#fDnL9!%xIOK_EZityu!`K!H&Yt7 ztJWUpBPX(W^sw6cknfq=!r^M;CmW+01a{dYwlYlpHhY-vq`HD#+vOWT{5Yn3zTTd}4?>z8Zze~be?)V)F<1X~O?HrKKE;(* z6}vvN>iUBk5<$dT7Qt4>tf$E@NjBZHPy1@vGd^e9I-=9xp`T2DCspNx>*fN(5MFud zb@(@PL#<>{-xn1*J}4iSbq7w)e`%RKO_V^Tmy^wWVOA`eT@n``js*30z}0M6lp6xhi28J6?LI-0kh{L)_(n z7Jj}2vN8TdAL)Rche1#Ibrq8=xnS=CheT6QI=B(smrbIKQolL}!4d8p;QA?lWb;M) z?Q9hADnEOd7~s~N<&*6&*XYx`cuaAW!a<-#Rdr5vdlqsk+AgIy1D1~0ncdadzK=3# zYs-=YlKHY>d_or|)gp@xqAC+S3HgfPjABi!F-nHOnIxR?( zJyp3DYqD8V)xY%l9D;?h`_!yl+pco*DV&w`FX5H&Q1w7u4@1S5qBl-;M#Ku%Ta-W# zOoKx}cFUjVK0G)Oe*R;hvbFQ#cq^OXJDqw?NO-UZ(*z2dZb#((rIs(E7)(Ri?SsG4 z2I<=N@EYVSQyha&IlNOwie#io57duKRKiXpQznWhELho3#Y>s0MRhHV((B4RlD?Pa z63hpEaSt}Xh+oz3SX||^m8lJh^-0y!8|QN$%X{JDqNZ5XlO*0cC=1+E>>$N-ux&H@ zHi$+z^CEwD+=%s^hjEh@kd0R00)o?a@)F}DhmIf!G4$Q0#J4`d$4Dtoocr6?5Z-H0$; za6R&g@xbJahN-hlQs4hw-DxW?$=aF5v3z*8*!N3oay1D@${rP|5I?x8@_6ODo$e%- ze#w_sSD(H2D&&*1Nxb%&51W_E3SsolJJ?jBGig2-*7_ht;P@3LV9xAdQa8ZhFzJ5Z z?vH2|dLo=rk*!@9WXF$YR3wwUjMjn<#vT6vzF!cvK*Zeb?*9JtRmw>}w9 zScANeq4Idkbnh`+@pTE4xqYxlxOma*DT%G}V&Qv!U+qFL*_9rvGEI!SaxVv#2wh-Y z^2@pc4+=&bXXZNdG#nWQ+rQw++0U63JbdR`1~3NL={-W%giE3h4+^cx;Gq0Jve z{~^2(E8bN)Z%1)sfyf+ezdjUpYY&zy`Z4Y3I}CyR&my(XJgYJ{CKoOqlGk4d_Vu0@|J*c6TaV^j&3?ob;a|;jyL3NcFx_sh9INL?(5GM{KHN zubGFxtyF2FqAD|y_eXxe_4d^it7TKpxa2EFw4lWL{z|@PUDgz$o=J`r!8W=DW(rI$ z8h=9s)uGS0s~E8*-|AJ*GH^cFX1(&@GI;@ZY&SydaN#I;;acvg=#d(6EuxO(fK5d3 z&17~FtBf@hn=K*MtPo7sTZx-F$GTbta5Dh*X{bfiVT9z9U=$kTg7>I7e>l}>oZYqtG z&u~sF6JrTIa-w2atNrvPNcP`aZ|_G)gR60)3Wf7YF=_l8Ll5{daR2 zYLf{+r7Z507W1LFSY#RSB*Q~^SOQ5NuB_Me1JXkS1xj$UqT zGzL7%zh=36_z6A8({3OJ*D)N|F#j*lnHD7ERMAsmBLP;gLW)~kveE4^wUgqN06k|S z^g4Okp>;0I4RY2_NAi$Y%CYkP0LbGp@zl?>E?u>#e3OYfjV-w)M~RZtlnR3fu>|z8 z^`$HCJ*_b}^^B{d3M%~VyIG4jLT>bmjD05^PSTf}_d}`DInohzU8;?6al3r>PXful zeoRQv*VX+52BUu$%TQN$quBg$tE{16+MHhn=(j%8)3cG0k*WN1@KrpP@v03L2Yr;+ z^UO)K9av^gR#q!8J2wNJn&Y*FV>`kCd4riIFyx{nMh1`7e^G=V=nWm|0(vcy5{A&elYc(5w){Okpv5;mm*7M(gZ z0J%TH`AzoEpW|awD`5P6rf`pi#}cJ5Cpbm`8a>=D0fP`QIMQ6I&=~z+JpA#i(R>Ix zT+;M!Hiq}XnZ!DhmVpDmkJJKZ@c;c`q`?jx`=J+F-z3~uKq4J_ez!d2P1}=8&b*4k zP-1g}@$VKw&Y)LN6+>?aRkBn1P~0yL2vzXe}-tA^l$ z+UrBfS^D zTft$n2@9}-_oEA>cdL9cP?o>o-7XVDSBK2q--8wQdLD#_Uyh`7p;g_#u= zZceIqDn?Yxxd((t`bAEkCj*A)5%`&tcfJ;l89W;bW!N~V`|#ldAHeSpuRy233NQ;# zR+_GN9CpCjH4ZQhfhNedcGJbvqe7pi%ip{8A4ExNM)$e+>%A6~X@JtRExY!{^c~z0W&owyO2PGPdhTY`e~}xwZ&aAQK__}t za(lHV2B8vJB~2(T4C-j60?Q!RAGmU7rRP)QjjN|hNkElX@iA21-n}nrqTcp$GUe-q z-blsV=R67x)8aX<<|2WD(eybV3u52dqLNy%rsY7a8)0ufk2aH=i)`Z4vNfjD{qyU{||6Ws-(JJmpf@^_ZjLJyY;%3C-cJRh&?)}L zeN0aP*RIq97^)!^0-qbvAk>gvcWF2d;M}K@V-)d#uZT(hH zUm_y+WFqVI+C5@b<=XwMIE16+@VjMEwJoKtfr!Da@7L?&cH1i5=#%qjdMRieDB9j~ zyIALZIiCI>Dr{DJF5cK!e?w22%=$Hb?al@^&63%~n^;!V))}aHa~EUPcHkr_*`fqj zNwDeFM2_Q&L%_x5mkkGu92okf-j*>EV36_k=BlP{;*+pt4&`yOv9ca}APsinb98ri z*K3F@MREgFO<4}QrISV|@Af`u8*a>X34wN6_2WM^ZPhHs$py9xp1Rff`JD(O4~y#; zi$~_8$oTu$?!Qa|r4ko#6Q%MzT3;+!rvjV=bw95kPpY=6i#s6FtboDayXUqT#xwsS9)Kg@WpyI-Oh6*gs)KU z!4<}zv2LohM%_axL2dJ2F_`b>0Z;QKPym+Q*5z@oC7fdWo=G|UUIHiV7C=&f(|LP3#kJVLQR_iWozY)b_FC<7=Eris{|uW#+i zQ&X>lNZsx>ylFxka;xQYavLeDWw}U_h3TQv7ag0j4Iq}(6)5>Hg)d*X!kEr*P@)lY zIOYJ+*@)?P)6Fsa?q?e3clWt}R;TY!2iEWZBx}T4SOTPxQ)(Vig(}usAi?QgY)}G3 z=+ox*{Z)Zd10YPzy~SLoFcDi9q}dBJ3~$4F+#BHt!fsXv_JOIQyLc8;t|+2N0NL~u zs9;)c{1Nzg)o{PA7F>86#&ZETW#}s{?f2xvpU*rkwLYhMxG7Zpu(NA2wf!_cnmaH@ z!dfsV!Qeht?(K8@M2FA<2fpjQ#yZL5*Fg)`Ih(_0&n7~@xMTd$n{VJjf3|__uS+Pu z_>Q9~p2cQ+uF3aX5~7DH$zuKh_-MPq42jBMgmuTv_Yv6N_G%q5z7B>~TMg0bna7hYIW6f->5zNNn4+EpcmB}lIq zi}o7h&EQDuU>~Tg+S((m*HTCRh^7!>-oIwB!&#LyhVMw`kmM*tml7t&?sukD{}mEo z;31CciMg$$L14&5sbuQ*D+@Q4UoOq84@Z;T}z`9&*| z$8Y{@w~157%)DyDG>li=g}E^9Ul4dO9{><9-(D)h^97{LM1S=1va@XRxz4g=*(Sd1 z@ELCNKk|lk&~Gal2#k@>opHWgcYA9{EQu-d;5aiaDC|WQ(-EUaljJubE6}P}f0lO> z-kB!+M8r;OQG|}^k_E~dcx|V0p80i|qtRQFbffZ8wE(^B)-mlqO|mm6pr7c4)o?r) zA3(M8DoDS_OOS#o)qvu{IL{q(BWQ*==>1E}bnO;h^69f6_P1zyS_JaL>dK03SMzVNFW6oBY0ulJ zZsw87Hrm7-2{eW~oxZR~kLnGgw+_nXcVuL)C5WY~u%otr<~e$fj>J+^c4yA$TNLgL0wP3hDdQmMnQUICY=CuuX z16GRa)qwBK2$|RHcd;|o{$Owki9jiQWuf9ln~%enI503!4MKANRAC`iUa7PSyYQJb zhD5v3=| zgqdkSZT-~r;Fl7fC>bJNzE6&9+!v#M%+q~-_(ob$&Z8EYqO;>}_LVc13=}*MA*<%C zhZf(kMaZr^9IQfv23D10F2Y3xMFT_CM@rd2I{17#1w3;4)A6eKgoMk+U;H^ObK!=x z{khi4$M$M3z^Jz`kc7&+!gf&G7OspWuP6Lic*kSAU6hLcY$nLg-|F1>s)-HFi|10t zA`jy1+LFKpWqaDZI^PbydB1lPjV~*{Z|mh&&}dJ?!~4Xj<%HLjq=o6eY_ksw5Ear# zKqxcREaks^px4ywr#!FtPnf!CHzA^1aepc1hw)#8DV^QJljBrD-Qh^y%Bev67km%y zy?(lRh{9h|7tkbxBHOa!KlG! zp6=}qU-JG7JiS}dZ!qjmX*lqV#tKIi4ITYDw+IOd=|&i1THK!=(+D@6KpuF>`v&Gd ztaun0gQME|4@}sK)FX)ss;PnFvC?-)iiO80(;jxX-(mNWQaF}eHscPp5jwOk9@a8a zipP@teMWad%c>tsM*)+@5&Fsi`_^IohtdDvXC`s-7NK7^y>bkBUgaM6ry!#$T_kB7 G@IL@!yC(4f literal 0 HcmV?d00001